CPF UDP connection to 72.9.241.58

Any particular reason why CIS’s CPF.EXE wants an UDP OUT connection to 72.9.241.58 on Port 1184?

This has only started with this latest release. Just checking it is OK.

Mark

network:Network-Name:Comodo-ND-10136 network:IP-Network:72.9.241.56/29 network:Organization;I:Comodo
Source: [url=http://www.iptools.com/dnstools.php?tool=ipwhois&user_data=72.9.241.58&submit=Go]IP Tools[/url] If it recently appeared, then something to do with ThreatCast perhaps.

Confirmed, it is the ThreatCast look-up. I tested it; to 72.9.241.58 UDP 1184.

Thanks. Rule now added.

Mark

No problem. But, I would recommend using the hostname (threatcast.comodo.com) rather than the IP address (72.9.241.58) in any rule. CIS, itself, uses the hostname… and as such the IP address would be subject to change without notification.

Good point, hadn’t considered that. Noted and done! Thanks for your help.

Mark