RIPE Whois Server
Results 1 to 2 of 2

Thread: RIPE Whois Server

  1. #1
    Member
    Join Date
    Aug 2003
    Posts
    38

    RIPE Whois Server

    Hi.
    Lately, ever since I installed Sygate Personal firewall Pro... it has been blocking some traffic from RIPE Whois Server. Most of the blockage traffic comes from 'em.
    It seems the RIPE Whois Server always scans my port? and today, I got this security log which had the security type as intrusion detection & the description is '[181.1] Inbound DCE BIND to potentially vulnerable RPC DCOM interface attempt detected'. The 2nd one is '[182.1] RPC DCOM buffer overflow attempt detected'.

    What are the 2 descriptions?

    I'm paranoid whether this all meant any harm to my computer or something? I'd appreciate it if anyone replies.

    Thanks.

  2. #2
    Leftie Linux Lover the_JinX's Avatar
    Join Date
    Nov 2001
    Location
    Beverwijk Netherlands
    Posts
    2,535
    IMHO
    The RIPE whois tries to update it's info by connecting to your nameserver (DCE BIND)
    Propably the RIPE whois Server "thinks" you are running a DNS (which you are not, I guess)
    ASCII stupid question, get a stupid ANSI.
    When in Russia, pet a PETSCII.

    Get your ass over to SLAYRadio the best station for C64 Remixes !

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  

 Security News

     Patches

       Security Trends

         How-To

           Buying Guides