I'm getting regular notifications that the firewall is blocking one of my systems from communicating with a known botnet site... but when I run an AV scan on that system it's coming up empty. Any suggestions regarding 'step b'? I'm trying other av and am products now to see if anyone else catches it - so far nothing is.
UTM flags as 'C2/Generic-A' to destination 82.211.30.241 (IPTables).
This thread was automatically locked due to age.