Post Sun Dec 11, 2022 9:03 am

Potenzial Bot Net comunication

Hi,

my Sophos Home UTM alert a Advanced Threat Protection with these details:

A threat has been detected in your network The source IP/host listed below was found to communicate with a potentially malicious site outside your company.

Details about the alert:

Threat name....: C2/Generic-A
Details........: http://www.sophos.com/en-us/threat-cent ... ric-A.aspx

This connection goes to the ip 188.114.97.3 and come from serviio. I have disabled external metadata and do not know why serviio try to connect this IP. Maybe it is a false positive?

Thanks for comment, Pauli