• [Latest KBs] Sophos UTM: How to avoid RDP brute force attacks

    Barb@Sophos
    Barb@Sophos
    Hi all, This article provides details on how to avoid RDP brute force attacks with Sophos UTM. Please see below for details: Sophos UTM: How to avoid RDP brute force attacks Regards,
    • over 6 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • Alert in Network Protection with ATP - C2/Generic-A mrdistrupd.com

    Florian Padua
    Florian Padua
    Hello, First, sorry for my english, you know french guys don't speaks correctly english x) .... I have an alert on Sophos UTM 9 in network protection Advanced threat protection : ip source : (my server DNS) adresse ip de destination : mrdistrupd…
    • over 7 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • Lots of IPS attacks lately One CNC Trufflehunter cant find much info on it (False Positive?)

    StaffordFields
    StaffordFields
    We have been getting a LOT of IPS attacks lately. Getting Snort 38330 MALWARE-CNC TRUFFLEHUNTER SFVRT-1020 attack attempt from several internal IPs. Snort doesnt give much information.... is there a good chance these hosts are infected? Sophos Cloud AV…
    • Answered
    • over 8 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • udp port 41255

    lenyick
    lenyick
    Is anyone seen increase from udp:53 to udp:41255 srcip="65.111.165.141" dstip="xxx.xxx.xxx.xxx" proto="17" length="537" tos="0x00" prec="0x00" ttl="120" srcport="53" dstport="41255 srcip="95.0.160.245" dstip="xxx.xxx.xxx.xxx" proto="17" length="511…
    • over 8 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • How to get details on 2 attacks blocked : rule 32488

    1RegularJoe
    1RegularJoe
    Hi, I had 2 attacks blocked, it is a bummer that I can't drill down on the actual text, but I found more detail in the "Network Protection" menu under "IPS: Top Blocked Attacks" I can figure out the host inside that tried to send the packet out…
    • over 8 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • View related content throughout UTM Firewall
  • More
  • Cancel