Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

What does this line from ATP protocol tell me?

We have had an ATP alert at one of our sites, so I went back a bit in history and found other, older alerts.

When looking at this line, I don't quite understand what this guy is trying to do?

2021:09:16-08:44:20 ssl2 named[4924]: rpz: client @0xcc6a710 172.28.2.131#52987 (ww7.pmdtc.org): view default: rpz IP NXDOMAIN rewrite 72450.bodis.com via 32.153.242.59.199.rpz-ip.rpz

Thanks for any hint.



This thread was automatically locked due to age.