Seeing some strange DNS queries?
Seeing some DNS queries in my work network that I cannot explain. Would anyone have any insight for me? Thank you. https://i.imgur.com/1WZ9wra.jpg
Seeing some DNS queries in my work network that I cannot explain. Would anyone have any insight for me? Thank you. https://i.imgur.com/1WZ9wra.jpg
Looks like the .67 node is looking for Windows shares that don't exist.
If there is nothing obvious in the system config, you can dig deeper with Windows sysinternals.
Here are examples of using sysinternals tools to look at network traffic on Windows:
Get IP/host informations of an app.
UDP Port 889 Broadcast (ip.ttl "Time to Live" only 1)
Asked: 2020-12-03 15:49:50 +0000
Seen: 531 times
Last updated: Dec 03 '20