Hi,
Today I our UTM Advenced Threat Protection shows C2/Generic-A drop. the logs has the IP of our DNS server. I did download the Sophos Virus Removal Tool on the DNS server and run it and it came up clean.
I did enable the DNS debug and find out a host in our network try to access the clonyjohn.com.
Should we also run the Virus Removal Tool on this host as well? Our own Mcafee AV did not come up with any virus.
Thanks
This thread was automatically locked due to age.