What happened here for URL to be flagged at VW: → http://urlquery.net/report.php?id=2737917 & https://www.virustotal.com/nl/url/2f2884ace278a6dce1145654b43c5c119735d31f6ef9664a4099c19aed368053/analysis/1369914649/ host taken down? For IP IDS alert = MALWARE-CNC Win32.Delf outbound connection → https://support.sourcefire.com/supplemental/sf-rules-2012-11-08-mod.html Not found in here: http://www.abuseipdb.com/check/poland.otservlist.org
polonus