Snort SID 1:31600 "Win.Trojan.Glupteba" ?



  • I am seeing this snort Alert "BLACKLIST DNS reverse lookup response for known malware domain spheral.ru - Win.Trojan.Glupteb"
    Source IP 144.76.252.253 and Class "A Network Trojan was Detected"

    Wonder if other people had seen this, what it means and if I need to do anything about it?

    Thanks in advance!


Log in to reply