Snort SID 1:31600 "Win.Trojan.Glupteba" ?
chudak last edited by
I am seeing this snort Alert "BLACKLIST DNS reverse lookup response for known malware domain spheral.ru - Win.Trojan.Glupteb"
Source IP 188.8.131.52 and Class "A Network Trojan was Detected"
Wonder if other people had seen this, what it means and if I need to do anything about it?
Thanks in advance!