Hi, Has anyone seen this before? Svchost (local service network restricted: dhcp, sec center, win audio, events) upon a soft reboot...
Kerodo, Good to know it's not so unusual. Did not think much about it until Itman's query; after all it does indicate to the user what it is...
Itman, I also noticed this info on the Windows startup screen indicating an update 16589 (?)and changes to some reg files. I have also seen this...
Just enabled HIPS-like "process inspection" popups on Firewall. To get Firefox 18 --or IE 9 -- up and running I have to approve as an example:...
This problem has returned intermitently even with -- 1) reinstall 2) switching to different DNS provider(s) It came back after MS updates on...
Itman: If you click the link from Symantec forums at the beginning of this thread, the poster who first found this has elaborated on what he...
Hi, I am using HitmanPro trial version. Default scan/ Early Warning turned up two MS files from (10/10 updates) that I ignored. However,...
Itman: So have I. Got my router fixed (The unrelated HTTP problem), and I am back up and using another DNS provider (Comodo). Now my traces look...
Your explanation sounds good. I'm glad there is a reason for the winhttp not working, all of this together was contributing to a conclusion of...
The WindBringeth: you are so right about the complexity and variability of all this. Your perspective shows your expertise. Would like to ask if...
Do not know if this is related to IP prob or not. All connections to 165.254.27.xxx have ceased starting yesterday 10/9. The caveat is that...
Itman: "I suspect these 165.254.27 connections are IE9 web site cert. validations using IPHTTPS." I too have IPv6, 6 to 4 and teredo turned...
The WindBringeth: Thanks for confirming that MS uses other non-MS servers for downloads. I could not find a confirmation that this was normal --...
TheWindBringeth: per the nice link you posted, I added host column. The kaspersky (avp.exe) initiated connections to the suspect ips...
Thanks for the link on wireshark, TheWindBringeth. The investigation into what is going on with computer is evolving. Long story, short: Last...
This seems to be Etag-ing on steroids. It was unusual to see in wireshark, not something I was used to seeing to the extent I did. I still see...
No longer think this is Norton DNS (have never had an issue with it before). Sorry Norton! Some sort of tagging process or super tracking...
Has anyone here noticed while using Norton DNS, that *many* of their connections are funneled through edgesuite.net ips? Range 165.254.27.0-255....
Running Dnscrypt-proxy.exe 1.0.1 (no gui). Connection and cert retrieval is sporadic at best (works 1 out of 10 times). However, when I do get...
I really need help with DNScrypt. Now trying to use Proxy ver 1.0.1. I only have outbound request, no reply: xxxx.xxx.xxx.xxx 208.67.220.220...
Forgot to back out MSFixit50897 with the "undo" MicrosoftFixIt50898 -- before running July update with the permanent XML fix. Did this oversight...
Previously Norton DNS :thumb: Now DNSCrypt :thumb:
M00nbl00d. Your instructions re: TCP/UDP:443 and UDP:53 was much clearer than what I've seen so far. Will try it. Thanks.
I am also having problems with dnscrypt -- it no longer retrieves server certificates according to the proxy. Wireshark indicates that the...
Rmus, if you mean by "checking manually" that the user checks for updates and chooses which ones to install, I am one of those users. However, is...
Separate names with a comma.