Hallo zusammen,
seit ca. 3 Tagen laufen im Ereignisprotokoll (Windows 8 sowie Windows 7) an unterschiedlichen Standorten mit unterschiedlichen Geräten DNS Client Events auf: z.B. Zeitüberschreitung bei der Namensauflösung für den Namen stats.norton.com, nachdem keiner der konfigurierten DNS-Server geantwortet hat.
Spoiler (Zum Lesen markieren)
<Provider Name="Microsoft-Windows-DNS-Client" Guid="{1C95126E-7EEA-49A9-A3FE-A378B03DDB4D}" />
<EventID>1014</EventID>
<Version>0</Version>
<Level>3</Level>
<Task>1014</Task>
<Opcode>0</Opcode>
<Keywords>0x4000000010000000</Keywords>
<TimeCreated SystemTime="2013-07-27T16:20:26.437632400Z" />
<EventRecordID>29503</EventRecordID>
<Correlation />
<Execution ProcessID="1584" ThreadID="5060" />
<Channel>System</Channel>
<Computer>XXXXXXX</Computer>
<Security UserID="S-1-5-20" />
</System>
<Data Name="QueryName">stats.norton.com</Data>
<Data Name="AddressLength">128</Data>
<Data Name="Address">1700000000000000FD00000000000000C22506FFFE2E21BA0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000</Data>
</EventData>
</Event>
- <Event xmlns="http://schemas.microsoft.com/win/2004/08/events /event">- <System> <Provider Name="Microsoft-Windows-DNS-Client" Guid="{1C95126E-7EEA-49A9-A3FE-A378B03DDB4D}" /> <EventID>1014</EventID> <Version>0</Version> <Level>3</Level> <Task>1014</Task> <Opcode>0</Opcode> <Keywords>0x4000000010000000</Keywords> <TimeCreated SystemTime="2013-07-27T16:20:26.437632400Z" /> <EventRecordID>29503</EventRecordID> <Correlation /> <Execution ProcessID="1584" ThreadID="5060" /> <Channel>System</Channel> <Computer>XXXXXXX</Computer> <Security UserID="S-1-5-20" /> </System>- <EventData> <Data Name="QueryName">stats.norton.com</Data> <Data Name="AddressLength">128</Data> <Data Name="Address">1700000000000000FD00000000000000C22506FFFE2E21BA0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000</Data> </EventData> </Event>
Dies betrifft die folgenden Norton Clients > stats.norton.com > nobu-nis.backup.com > onlinefamily.norton.com DNS Server wurden bereits gewechselt (von Provider Standard > zu manuell Vergebenden.
Gibt es hierfür eine Erklärung (Serverausfall etc.)?
Edit: Produktgruppe Norton AntiVirus Version 20.4.0.40