Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
One of our application servers is alarming on Sourcefire IPS. The rule is “MALWARE-CNC Win.Trojan.NetWiredRC variant send logs (1:38358:1)”.I believe this can be a false positive, because is hitting the database port of the remote server, and I saw s...