Quantcast
Channel: Spiceworks Community
Viewing all articles
Browse latest Browse all 7477

Suspicious activity

$
0
0

I just installed Spiceworks a few days ago and i just saw this message in my dashboard:

term (Central Server) has been communicating with suspicious IP address 47.23.49.178. View details of threat.13 hours ago

When i click on the details link it takes me to a page that says:


MALICIOUS HOST

47.23.49.178 is participating in some form of malicious activity;however, the specific malicious activity cannot be confirmed. Be cautious about interacting with this system.

- See more at: http://alienvault.com/apps/rep_monitor/ip/spice/47.23.49.178/?uuid=8eb4dec852b5f66ac2e7cdcd53320937&...

47.23.49.178 Teminal Server (RDP) brute force
should i now block this ip address in my firewall or how do i verify that this is not a device that needs to communicate with my term server?
thanks 

Viewing all articles
Browse latest Browse all 7477

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>