Sangfor Community»Categories Product Internet Access Gateway (IAG) IAM - Host launches DoS attack against external netw ...

IAM - Host launches DoS attack against external network

views: 7603 | comments: 21 | added to Favorites 0
Lights on | 提示:支持键盘翻页<-左 右->
    组图打开中,请稍候......
Created: 22 Nov 2022 13:36

Summary:

I am seeing few alerts from my trusted workstations (which have updated antivirus / antimalware installed) PFA atached image. Time:11-18 14:08:42Username:10.11.18.19Group:-Protocol:UDPURL/Directory:- ...

Reply

Faisal P Posted 05 Dec 2022 10:18
Could a false positive.
arjay Posted 01 Dec 2022 00:54
Maybe it's a false positive. If still doubting, try to isolate the machine from the network using the endpoint protection management.
jetjetd Posted 29 Nov 2022 00:21
looks like the host is executing a DOS attack. Kindly isolate that host and run a scan through it.
Pat Posted 28 Nov 2022 16:32
yes, it is false positive
Imran Tahir Posted 28 Nov 2022 14:07
It maybe positive falase
kmrnliaqat Posted 28 Nov 2022 12:47
this is false positive
KarenD Posted 28 Nov 2022 11:11
In my experience, it is usually an application that is updating, and the strangest is my cloud storage that is updating the backup, which causes the alerts.
Happpy Posted 28 Nov 2022 11:01
It is just an application updating to its servers.
Rashley Posted 28 Nov 2022 10:57
But, in my experience, it is usually an application that is updating, and the strangest is my cloud storage that is updating the backup, which causes the alerts.
damulagski Posted 28 Nov 2022 10:57
False alarm, false postive
Naomi Posted 28 Nov 2022 10:44
This is a false positive.