We have two FTD 1140n's managed by an FMCv. Both run 7.4.2. We are getting alerts from another device we are testing on our network about a virus named Trojan.Python.AndroxGh0st tha has been detected on one of our internal hosts. We only run AMP for networks. So we dont have AMP on the desktops. Is there any way to detect this malware/virus on the FTDs? I could not find a Snort ID. Any info would be appreciated. We run ESET on the desktops but it has no detections, yet of this. The internal host we detected it on does not have any endpoint protection and runs on our IOT vlan which is segregated internally thankfully.
Thanks