One of our application servers is alarming on Sourcefire IPS. The rule is “MALWARE-CNC Win.Trojan.NetWiredRC variant send logs (1:38358:1)”.I believe this can be a false positive, because is hitting the database port of the remote server, and I saw s...