Link to home
Start Free TrialLog in
Avatar of entint
entint

asked on

DCOM packets dropped

I am trying to run an inventory on our servers. All I get in return are DCOM errors in event logs. I speculate the firewalls are blocking traffic but I cannot see anything helpful in Wireshark. I thought that telnet over 135 would fail but does not. Also ICMP is not blocked or I would not be able to ping the servers

Event Viewer
DCOM was unable to communicate with the computer XXXXXX using any of the configured protocols; requested by PID     2780 (C:\Windows\SysWOW64\cscript.EXE), while activating CLSID {8BC3F05E-D86B-11D0-A075-00C04FB68820}.


I have attached the Wireshark capture
pac.pcapng
Avatar of entint
entint

ASKER

Anyone?
Avatar of entint

ASKER

???
Avatar of entint

ASKER

Experts?
This question needs an answer!
Become an EE member today
7 DAY FREE TRIAL
Members can start a 7-Day Free trial then enjoy unlimited access to the platform.
View membership options
or
Learn why we charge membership fees
We get it - no one likes a content blocker. Take one extra minute and find out why we block content.