[Dshield] DNS Question

Bjorn Stromberg bjorn at thechemistrylab.com
Thu Sep 25 16:01:27 GMT 2003


Does anyone know why I'd be getting UDP Packets from my ISP's DNS Servers
from port 53 to port 1031?

It doesn't happen regularly, but in my logs I see it going back for several
months. Am I missing something? It happens so sporadically that I'd have a
hard time catching the packets without grabbing a ton of other junk.

2003-09-23 22:59:40 209.159.192.xxx 204.181.54.xxx Udp 53 1031 - BLOCKED
2003-09-23 22:59:40 209.159.192.xxx 204.181.54.xxx Udp 53 1031 - BLOCKED
2003-09-23 22:59:40 209.159.192.xxx 204.181.54.xxx Udp 53 1031 - BLOCKED
2003-09-23 22:59:40 209.159.192.xxx 204.181.54.xxx Udp 53 1031 - BLOCKED
2003-09-23 22:59:40 209.159.192.xxx 204.181.54.xxx Udp 53 1031 - BLOCKED

Thanks,

Bjorn Stromberg
Mid-Continent Testing Laboratories, Inc.
http://www.TheChemistryLab.com/




More information about the list mailing list