WIN 7 x64 SP1, NAV 2012
I have been using NortonDNS with very satisfactoy results. Quick connections, etc.
Lately however, some very suspect activity has been going on with my connections. First, when I open up Resource Manager in WIN 7, I see unassigned.nortondns.com which does resolve to Symantec 128.xxx.xxx.xxx instead of one the usual NortonDNS IP address assigned to my LAN connection; 198.153.192.40 or 198.153.194.40.
Next I have observed multiple connections to Edgecast IP addresses hosted on RIPE: 165.254. 27.xxx and 93.184.216.169. I am most concerned about the later IP address since it is associated with past intrusion activity. These IPs connections are coming from NortonDNS servers since they have disappeared when I eliminated use of NortonDNS servers.
This looks like tracking activity to me?