I am not sure why Root Cause link is missing in my sohpos central page. I want to investigate the malicious traffic alert i am getting.
What happened: Malicious traffic detected: 'C2/Generic-B' at 'C:\Windows\SysWOW64\svchost.exe' (Technical Support reference: 1004668602)
Where it happened: 374K8C2
Path: C:\Windows\SysWOW64\svchost.exe
What was detected: C2/Generic-B
The following link explain how to find out the RCA related to the threat.
https://community.sophos.com/kb/en-us/125143
Please advise.
This thread was automatically locked due to age.