Security information about Sourcefire URL or IP address

Hi all

I have recently deployed module SFR on ASA 5512-X and I am faced with the following question: a Web site that is used on a daily basis is blocked since we deployed the service of firepower. In fact, it is classified as "Site of Malware" with a bad reputation "high risk."

I've added this URL to a white list, so we can get there but the customer wants to collect information about why it's been categorized like that. My question is: is there a tool where you can see the history of a particular domain or IP address Sourcefire or Cisco?

I checked on senderbase.org but there is no information like this and I know that Sourcefire does not anyway SenderBase.

My guess is maybe that this site has been hacked in the past and delivers malware since.

Thanks in advance,

Vincent

I think that Sourcefire using brightcloud as a web reputation. Check how by category is site you access.

http://www.brightcloud.com/tools/change-request-URL-IP.php

Tags: Cisco Security

Similar Questions

  • You made too many attempts to answer your security questions. You can try again later or use your rescue email address to reset your security information.

    Hello

    My encounter with this error:

    You made too many attempts to answer your security questions. You can try again later or use your rescue email address to reset your security information.

    If you forgot the answers to your questions of security of Apple ID - Apple Support

  • Also cannot open file Association problem: Addor remove problems, security centers of basic information about computer, etc. due to rundl.32.exe

    I have a program with: file Association problems: also failed to open: Addor remove problems, security centers of basic information about computer, etc. due to rundl.32.exe.

    I put security update, Internet XP but still the problem!

    Hi StanleyMcDowell,
     
    This problem occurs because of a missing or corrupted Rundll32.exe file. This problem can also be caused by a virus.
     

    Follow the steps listed in the article below and check if the problem is resolved.

    Cannot find the Rundll32.exe file when you open Control Panel

  • My security information of win 8 are related to an abandoned e-mail address...

    My security information of win 8 are related to an abandoned e-mail address, and when I get to the page "call us overprotective...» ", I can't verify my identity. This means that I can't to my email on outlook.com, and in September, I will have to go through this all-new.

    How will I receive via the process when the address of only checking that Microsoft seems to have is one I got like 18 years agoand is long gone?

    Given that the account of emissions contain confidential information, you must use the below secure support portal.  They are the only ones who have access to your account information, we simply don't have.


    The forum has Microsoft has been removed and all associated accounts must now wonder online using the eForm Microsoft


    Select the error you must help with and fill in the information requested on the next page.  You must be connected to a Microsoft account to access the form.
    If you are unable to access your main account, you can use another account (if you have one) or create a new one to https://signup.live.com
  • Whenever I am trying to find information about the album in Windows Media Player I get Script error

    Original title: tagging music in WMP

    Whenever I try to find information about the album in WMP, I get an error message that says:

    An error has occurred in the script on this page

    Line: 1

    Tank: 243

    Error: Automation server can't create object

    Code: 0

    URL: http://fai.music.metaservices.microsoft.com/FAI/scripts/default.js

    Do you want to continue?   Yes or no

    (Sorry, didn't know how to do the screenshot)

    This has happened for several weeks now

    Hi,

    ·         What operating system do you use?

    ·         What version of Windows Media Player do you use?

    Method 1:

    Follow these steps and check if that helps:

    (a) launch Windows MediaPlayer

    (b) click on the file-> tools-> Options-> tab security->

    Uncheck the box c) the following

    (d) to run the command script when it is present

    (e) the script commands and rich media streams runs when the player is in a Web page

    Method 2:

    If the problem persists, disable script debugging in Internet Explorer, and then check the issue.

    a. open Internet Explorer, click Tools and then click Internet Options.

    b. in the Internet Options dialog box, click the Advanced tab.

    c. Click to select the script turn off debugging (Internet Explorer) and disable script debugging (other) check boxes, and then click to clear the display a notification of every script error box.

    d. click OK to close the Internet Options dialog box.

    Review the links below, I'm sure that this will help solve your problem better:

    How to fix script errors in Internet Explorer on Windows computers?
    http://support.Microsoft.com/kb/308260

  • Security information requested, how will I know if it is safe to disclose?

    Today I received an email allegedly from Windows Live, saying someone had tried several times to enter my account with incorrect password.   He asked me several pieces of personal information.  (date of birth, password, when the account was opened, the contact number etc.).  They also say that my account would be blocked if this information has not been received within 24 hours.  How will I know that it is safe to use or disclose this information?  I don't want to risk my blocked account nor do I want to distribute personal data.  Help, please.

    Hello

    Another scam.

    Please read this Microsoft for information about these types of scams.

    "Scams by email or web: how to protect yourself.

    http://www.Microsoft.com/security/online-privacy/phishing-scams.aspx

    Scams can contain the following:

    • Alarmist messages and threats of closure of the account.

    • Promises of money for little or no effort.

    • Treats as its too good to be true.

    • Requests to make a donation to a charity after a disaster that has been in the news.

    • Bad grammar and spelling.

    How to report a scam

    You can use Microsoft tools to report an alleged scam.

    • Internet Explorer. While you are on a suspicious site, click on the gear icon, then tap on Security. Then click on Report Unsafe website and use the web page that is displayed to inform the Web site.

    • Hotmail. If you receive a suspicious email message that asks for personal information, click on the checkbox next to the message in your Hotmail Inbox. Click on mark as , then point to Phishing scam.

    • Microsoft Office Outlook. Attach the suspicious email message to a new e-mail message and send it to * address email is removed from the privacy *. To find out how to join an e-mail message to an e-mail message, see attach a file or other item to an e-mail message.

    See you soon.

  • Repay the help update security information

    I had to buy a new copy of Windows 8 Pro. So, I used the laptop settings interface to buy it and he informed me that the prosecution had not and that I should re - enter my billing information and try again; I did it, same result. Not wanting to not charged again and again, I checked my online checking history and concluded that there are two charges $ 200 on my account.

    I went to the Microsoft customer service to remedy that, but found that I was due for an update of the information of access security. My email address was outdated, and now, Microsoft doesn't let me access my information from billing until 15 October, there is not even a phone number that I see that they'll call until they are "ready for me." Quite lost here.

    Hi Cmschiller,

    Thanks for posting your query in Microsoft Community. The post office, I understand that you need help with security information in the Microsoft account. Do not worry, I will guide you to the right service, you help on this issue.

    For up-to-date Information, please contact the Windows Live Support.

    http://Windows.Microsoft.com/en-us/Windows-Live/ID-support

    Also check out this link:

    http://Windows.Microsoft.com/en-us/Windows-Live/account-security-password-information

    For questions about the refund, you can communicate with the Windows store.

    http://www.microsoftstore.com/store/msusa/en_US/DisplayHelpContactUsPage

    Hope that the information provided is useful.

  • RIDC API: Which service to call to get information about all content in a file at end of BPM-piece attached?

    In my application, it is possible for users to upload documents to WebCenter Content server. Later, when a BPM process is started, I need to attach these documents to this process. Based on this article, I need the following information on each document:

    • Do you have
    • dRevisionID
    • dFormat
    • dDocType
    • dSecurityGroup
    • DocUrl

    I tried a few services such as 'COLLECTION_GET_CONTENTS' and 'COLLECTION_DISPLAY', but they could not give me all of the above information. My goal is to get all the documents in a folder and all of the above information in 1 single service call. I try to avoid using "COLLECTION_GET_CONTENTS" just to get a list of the documents and then call "DOC_INFO" on each document in the list to get detailed information, as it seems to cost too much service calls.

    I also tried using "GET_SEARCH_RESULTS" but I could not understand the correct "QueryText" to search for all documents in a folder.

    I would be very grateful if you could show me if there is a service that can return detailed information about all the documents in a folder.

    Best regards

    James Tran

    Hi James,

    With the help of this COLLECTION_GET_CONTENTS - RIDC you can get your required document information.

    Try this code example: -.

    dataBinder.putLocal ("IdcService", "COLLECTION_GET_CONTENTS");

    dataBinder.putLocal ("hasCollectionID", "true");

    dataBinder.putLocal ("dCollectionID", "235418074907008521");

    Where 235418074907008521 replace with your record Collection ID

    Send the request to the content server

    ServiceResponse response = idcClient.sendRequest (userContext, dataBinder);

    Download the workbook of data for the response of the content server

    DataBinder responseData = response.getResponseAsBinder ();

    The list of results = responseData.getResultSet("CONTENTS").getRows ();

    for (DataObject result: results) {}

    System.out.println ("\t Document ID =" + result.get ("dID"));

    System.out.println ("\t revision ID =" + result.get ("dRevisionID"));

    System.out.println ("\t Document Format =" + result.get ("dFormat"));

    System.out.println ("\t Document Type =" + result.get ("dDocType"));

    System.out.println ("\t Security Group =" + result.get ("dSecurityGroup"));

    System.out.println ("\t Docu URL =" + result.get ("dWebURL"));

    }

    -Prashant

  • Microsoft Silverlight will / can send information about the people and the info on their computer. What are the plans for Firefox to protect its community of users of this?

    After reading the privacy statement from Microsoft regarding their Silverlight 5, it has troubling information about the loss of his privacy, under the "collection and use of information...". "the personal information and the information on my computer! In addition, information may be stored outside of the United States! (paragraph 4 under "collection and use of information... »). As part of the FireFox community, what other options do we have?

    P. S.
    I clicked on "Shared Data" on my Firefox browser, that means all average data? All good or bad I should know about?

    Hello 010matrix010, firefox will not run on the default Web sites, but only silverlight content when a user activates explicitly the plug-in through the icon in the address bar or click on the embedded content.
    also the support for plugins like silverlight in the browser will be dismantled at the end of next year: https://blog.mozilla.org/futurereleases/2015/10/08/npapi-plugins-in-firefox/

  • Why is that now, when I click on a link for a Web site I have saved, it does NOT show the URL in the address bar? I don't and then drag it to an email to share the link.

    How is it that, in these new versions of Firefox (I have 21.0), when I opened a link that I recorded, it does NOT display the URL in the bar of addresses?

    I can't drag and drop the link in an email, and I don't see the actual address that I'm connected to for reference OR for security reasons. Why is - this has changed?

    It becomes necessary to reveal the properties of the URL link that I saved, by using the 'Properties' window, then copy and paste the URL in the address bar of Firefox, until I can do something with it.

    I had the same problem. Looked at all the addons and extensions referred to in the conversation between philipp and dadmr. All extensions and plugins off and on again with each shot. Problem has been resolved by disabling app 1.0.85 Goodshop and RealDownloader 1.3.2.28. It may be that these versions were outdated, but were postponed during the upgrade from previous versions of Firefox. I hope this helps.

  • How can I view the FULL url in the address bar?

    I want TO be able to see ALL the URLS and addresses in the address bar! You changed it so the address is hidden or obscured without any possibility to see clearly without highlighting it. Vision of the persons with disabilities blind to things such as where on the site they are on and https:// vs. http:// is annoying and evil. How can I change it back without a retro back to FF 3.6?

    Masking of the http: part



    The Protocol (http://) was removed from the URL in the address bar to the http:// pages only. https:// pages will always have the Protocol. There is also a bug known, where if you copy the URL after selection of the awesome bar dropdown (but before the page is loaded), it does not include the http:// part. Users can revert to the old behavior by setting browser.urlbar.trimURLs to false in Subject: config.



    Obtained by highlighting



    It is a feature in Firefox to highlight the domain in the URL bar. Other parts will become gray. You can change a preference to do the full URL darkness. Users can revert to the old behavior by setting browser.urlbar.formatting.enabled to false in Subject: config.



    To change this preference:



    Enter about: config in the location/URL bar and press ENTER.

    If you see a warning, accept (promise to be careful)

    Filter: browser.urlbar.formatting.enabled

    in the lower panel, double-click that element to switch the value false

  • Need information about Satellite L30-134

    Hey, I know this off another machine brand new Tablet and all, but hey, I can't find a single web page with information on this machine other than what is in the manual sold with the laptop.

    I like a seasoned PC enthusiast I had a lot of questions about this machine also, (I'm already impressed with its capabilities for the price you get really shot for your bucks...) I would like to know the socket U23 does not say my much.

    Can I upgrade the processor? The BIOS is also very limited. Y at - it an upgrade? I would like to know if I can disable smart perform duel memory modules or change the amount of memory dedicated to graphics? I was seriously thinking of launching a forum of my own to find out these mysteries, after all it is a popular purchase, I saw two other people, the purchase of this machine on the same day as me...

    I need input, anyone can meet my desire for more information?

    Hello Tom

    Weather, you are passionate about PC, but I fear that you will be a little disappointed because with laptops you can not do much. I hope you know a lot about desktop computers and upgrade opportunities. The situation with laptops is completely different. Upgrade opportunities are minimal and there is not much to do.

    When you buy from office, you will get a user manuals of motherboard with all the information about it. Computer laptop manufacturer doesn t give something like that because there is no possibility of upgrade for processor and graphics card. The construction of the laptop is very complicated and many powerful hardware components are placed on the very small box. A common problem with laptops is cooling and how to remove the heat.

    Laptop manufacturer has two priorities: build the right machine and also build with unassailable cooling system to protect the material and portable secure long life. There are many things that must work harmonic.

    You can upgrade RAM to HARD drive, but not anymore. Using different settings, you can try to improve your laptop for use. All that s!

    Through Satellite L30 really isn't the best Toshiba laptop and one of the units of low-budget and you can not expect impressive performance.

  • Windows Defender who need more information about certain files?

    Hello - I just receive a windows defender popup after a game of Battlefield 2, requesting more information about 2 files that are used by punkbuster - w resident c:\windows\system32\drivers\pnkbstrk.sys in the folder system32\drivers and pnkbstrb.exe in the system32 folder.

    It seems that anti-malware apps are prone to detect falsely as a virus because of the way they work, and when I scan them with my other anti-virus/anti-malware tools they find nothing wrong - but when I checked the windows Defender directly, I noticed there are several guests in a history dating back to early November, saying "this program has undesirable behaviors."

    I wonder if it is normal to get this fast - I'm using Vista for several years now and this is the first time I ever saw him, it is a legitimate part of Windows Defender? the prompt has been along the lines of "Microsoft needs more information about this software These files can help Microsoft improve the effectiveness of Windows Defender to help protect your system. If you do not want to send a file deactivate the checkbox next to it. "Followed by w c:\windows\system32\drivers\pnkbstrk.sys, then another with pnkbstrb.exe.

    Thanks in advance.

    Hello

    All this is normal. There has been releases of versions of malware to these files if Windows Defender
    is to ensure that those of your system are legitimate.

    Games is particularly known for the possibility of introducing malware so most antivirus/antispyware/security
    programs check these viligently. Added that often a developer (game) will change something it then
    causes a part of their program to be detected as malware. It works in two ways, the detection program
    changes in its methods and/or the detected program has changed and is causing a false positive.

    ===================================================================

    Here's what I use and recommend: (these are all free and very effective versions.)

    Avast and Prevx proved extremely reliable and compatible with all I have
    launched on them. Microsoft Security Essentials and Prevx have also proven to be very
    reliable and compatible. Use MSE or Avast and Prevx, Prevx 3 but not all.

    Avast Home free - stop any shields is not necessary except leaving Standard, Web, and
    Operation of the network.

    Prevx - Home - free

    Windows Firewall

    Windows Defender (is not necessary if you use MSE)

    Protected IE - mode

    IE 8 - SmartScreen filter WE (IE 7 phishing filter)

    I also IE always start with asset if filter InPrivate IE 8.
    (It may temporarily turn off with the little icon to the left of the + bottom
    right of IE)

    Two versions of Avast are available 5.x and 4.8 x

    Avast - home - free - 5.x stop shields you do not use (except files, Web, network, &)
    Shields of behavior) - double click on the icon in the Notification area - real time Orange - click on the
    Shield that you want to stop - STOP. To stop the Orange icon to show an error indicator-
    Click on the Orange icon - top right - settings - click on the status bar - uncheck shields you
    disabled - click OK
    http://www.avast.com/free-antivirus-download

    Avast 4.8 x - home - free - stop shields, you don't need except leaving Standard, Web,.
    and the network running. (Double-click the blue icon - look OK. - upper left - Shields details
    Finish those you don't use).
    http://www.avast.com/free-antivirus-download#TAB4

    Or use Microsoft Security Essentials - free
    http://www.Microsoft.com/Security_Essentials/

    Prevx works well alongside MSE or Avast

    Prevx - home - free small, fast, exceptional protection CLOUD, working with other security
    programs. It is a single scanner, VERY EFFICIENT, if it finds something come back here
    or use Google to see how to remove.
    http://www.prevx.com/   <-->
    http://info.prevx.com/downloadcsi.asp  <-->

    PCmag - Prevx - Editor's choice
    http://www.PCMag.com/Article2/0, 2817,2346862,00.asp

    Also get Malwarebytes - free - use as scanner only. If you ever think malware and that
    would be unusual with Avast and occasional Prevx running with the exception of a low level cookie
    (not much), to UPDATE and then run it as a scanner. I have a lot of scanners and they
    never find anything of note that I started to use this configuration.

    http://www.Malwarebytes.org/

    I hope this helps.

    Rob Brown - MS MVP - Windows Desktop Experience: Bike - Mark Twain said it right.

  • OSD-04011: GetFileInformationbyHandle() failure, unable to get information about the file

    Hi all

    I try to get my ORACLE ASM (v 11.1.0.7) software works on Windows Server 2008 Standard SP2 (32-bit), but unfortunately, I hit the next windows operating system error with no resolution in sight.

    OSD-04011: GetFileInformationbyHandle() failure, unable to get information about the file
    S/O-error: incorrect function (OS 1)

    Basically ORACLE software try to read the header information of a partition of existing online RAW drive. According to the error made ORACLE unrecognized function call. How can I make this feature available? Need help ASAP please.

    http://www.Microsoft.com/windowsserver2008/en/us/community.aspx

    They will help you in Windows Server communities at the above address.

    Here is the Vista Forums.

    See you soon. Mick Murphy - Microsoft partner

  • Something going wrong on a server that contains information about your user account and the mailbox can not be found.

    Cannot open the e-mail.  I can connect on the MSN home page and when I right-click the outlook icon it shows the e-mail Inbox, but cannot access e-mail.  I just get this error

    "Something going wrong on a server that contains information about your user account and the mailbox is not found."

    This error is on the MS and they are aware and working on a fix.  Have you tried connecting mail.live.com directly using your e-mail address and the password?

    For later use, you would get more (and larger) response if you posted this in the Outlook.com (e-mail) section, where are the experts.

Maybe you are looking for

  • Envy 17-j053ea hardware drivers.

    Hi people, I hope someone can help me. I just bought a new laptop, the HP Envy 17-j053ea and equipped with an SSD to it with Windows 7 Pro. I managed to find the drivers and make things more work, but there are still a few outstanding things that I c

  • HP Photosmart B110 all-in-one: wireless printing is not possible

    Hello I have my printer connected to my desktop via USB and other computers connect using my wireless network. Sometimes printing from one of the other computers works, sometimes it doesn't. If printing does not work I have check the printer and it i

  • After doing a restore of the system under XP, today lost favorites and documents files

    I did a system restore point a week earlier. Now all my favorites, documents etc. are missing. When I try to make records, I am told that they already exist. I can find them somewhere? I tried, without success.

  • Pavillion G6 A1J18AV: What is the appropriate wireless card replacement

    Existing wireless adapter seems dead (wireless light remains orange and the wireless card does not appear in Device Manager). After reading the owner's manual, I chose one of the pieces of the table - 593127-001.  Unfortunately, when starting, I get

  • Windows 7: I hate it. =(

    On my last laptop was a premature end, I replaced it with the same model. The only upside was that he had an updated operating system up-to-date. Spiffy. However, once I have a crack for windows 7, I was impressed. I had a tandy as a kid. a TANDY. do