Primary DNS server

Hi guys :slight_smile:

I am new here and defenately not a security expert, so have a little patience with me …

This is the case.

I am getting a lot of these messages :

Date/Time :2006-09-26 17:52:32
Severity :High
Reporter :Network Monitor
Description: UDP Port Scan
Attacker: 195.121.1.34
Ports: 49668, 41732, 41988, 42244, 42500, 42756, 43012, 43268, 43524, 43780, 44036, 44292, 44804, 45060, 45828, 46340, 46596, 47108, 47364, 47876, 47620, 48388, 48644, 48900, 49156, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0
The attacker has been temporarily blocked

With " Whois " I found out that the " attacker " ( ip 195.121.1.34 ) is in fact the primary DNS server of my internet provider (I found that confirmed on their website ). So nothing is wrong I presume. But I don’t know what to do with it. Can you guys help me out ?

Thank you very much :slight_smile:

Greetz, Red.