Sophos Home flags connection to malicious IP by OpenOffice
Posted: Wed Apr 01, 2020 6:28 pm
Greetings, I am not sure the best place to post this, but am seeking help with the following incident:
I have Sophos Home running, and received the following alert:
Malicious traffic detected: 'C2/Generic-A' at '/Applications/OpenOffice.app/Contents/MacOS/soffice' This application was detected connecting to a known bad website.
Having contacted their support, I have the IP that was connected too, and can provide if required. At the time, Open Office was not running, I am almost certain. I've never had such alerts before, and hadn't updated Open Office recently.
Can anyone shed any light on this? It would be good to know if it is a false positive, or not.
I have Sophos Home running, and received the following alert:
Malicious traffic detected: 'C2/Generic-A' at '/Applications/OpenOffice.app/Contents/MacOS/soffice' This application was detected connecting to a known bad website.
Having contacted their support, I have the IP that was connected too, and can provide if required. At the time, Open Office was not running, I am almost certain. I've never had such alerts before, and hadn't updated Open Office recently.
Can anyone shed any light on this? It would be good to know if it is a false positive, or not.