Author Topic: IDS shows Avast IP address as target when reporting DNS protocol error  (Read 506 times)

0 Members and 1 Guest are viewing this topic.

Offline tonyscanga

  • Newbie
  • *
  • Posts: 1
I am not an user of Avast software but I believe a system on the network I recently started monitoring is running Avast software
Is there a reason why the system should be attempting to connect to an Avast owned IP address(5.45.62.49) via port 53? The IDS reports DNS protocol
 issues with the traffic.

Tony

Offline kitmubet

  • Jr. Member
  • **
  • Posts: 22
im not sure but im assuming

Outgoing UDP remote port 53 is usually used for DNS (i think there's also chance using TCP )

though i not using the premium version with Avast Real site/Secure DNS so not sure if it uses that for it.
Unless off course its an Incoming instead of Outgoing then that very weird

Im just only a regular avast free User so just me assuming

« Last Edit: May 04, 2021, 05:07:32 PM by kitmubet »