Hi,
Seeing this on our firewall for a few users.
"sync.console.adtarget.com.tr"
Firewall lists it as malware, threat name CnC, detect method infected domain. It appears to be tracking perhaps? Anyone familiar with it? I am pushing full antivirus scan on all systems, and ran malwarebytes on at least one system that was detected with this, and scans found nothing. loginjet
Thanks in advance for your help.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hi. An attempt to talk to a CnC (BotNet) address does not necessary mean that the client has an infection. It may be an relay from a link on some webpage (like social media f.e.) that user clicked. Hopefully the fw blocked it. /C
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1640 | |
1069 | |
751 | |
443 | |
210 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.