We run a small business with about 20 clients on a lan and wlan
architecture. We dont have a centralized management. We have about 10
engineers who are connected to a VPN. They are using a remote
application located on a University Server. Today, I received a phone
call from their IT manager. ''We are blocking your IP adress beacause it
seems that someone in your network is scanning us with a network tool.
I am wondering if its necessarily one of the VPN client. I mean what are
the odds that one of the clients who dont know the ip of the
University, is infected and starts a network scan...
I have recomended a full install on all the client of malewarebytes...
I dont know what to do more...I have a rv042 router and a wpn4410 access
point. What more can I do to determinate the origins of the attacks.
November 23, 2010 7:58 PM
November 25, 2010 11:16 PM