A sub-subdomain from my Dynamic DNS subdomain resolves to fake IP address pool under a DNS resolver from this organization:
Baidu Netcom Science & Tech Co.
eg.:
own subdomain: subdomain.example.com (resolving to my own dynamic IP address)
fake subdomain: www.subdomain.example.com (resolving to unrelated IP addresses and changing quickly)
Found on https://dnschecker.org
DDNS provider is: https://freedns.afraid.org
Anyone has experienced this strange behaviour?
@multifact Here's alt text describing the image:
A screenshot shows a DNS list interface. The left side lists various locations (cities and countries) with associated internet providers, some marked with green checkmarks and others with red 'X' marks. One entry, for Beijing, China, is highlighted with an arrow pointing to its IP address (54.76.135.1), which is also marked with a green check. The right side displays options to filter the list by IP type (IPv4 and IPv6) and lists continents and countries.
@multifact could be subdomain hijacking - f.i. via unused github pages and subdomains used for that: https://docs.github.com/en/pages/configuring-a-custom-domain-for-your-github-pages-site/verifying-your-custom-domain-for-github-pages