Infoblox

infoblocks

<Infoblox free diagnosis service> Diagnosis of targeted attacks seen in DNS

Visualize infection status by hidden bot-type malware and APT hidden in the network
No need to change the system, just send DNS packets! Report sent in about 1 week

Do you have any concerns?

  1. Concerns about cyberattacks such as drive-by downloads, APT attacks, etc.
  2. Concern about malware infections that are difficult to detect with next-generation firewalls and antiviruses
  3. Concerns about hidden malware infections on your network
  4. Concern about understanding unauthorized communication with external servers
  5. Concerns that the company's network connection terminals are becoming bots

Communication to be diagnosed

  • HTTP, HTTPSトラフィック
  • email traffic
  • Traffic using port 53

Threats Through Diagnosis

  • Threats communicating with C&C servers
  • hidden bot malware
  • Identifying infected clients

3 diagnostic courses to choose from

For those who want a quick diagnosis

1. Quick diagnostic course

This is recommended for customers who want to quickly check if there are any computers infected with hidden bot-type malware on their network.

  • preparations
    Packet capture (more than 10 minutes) accessing the DNS cache server
  • diagnostic report
    Infoblox will analyze the acquired captures and provide diagnostic results.

For people using Infoblox products

2. Standard diagnosis course

This is a diagnostic course for customers using Infoblox products as DNS.

      preparations
      • Infoblox NIOS6.6 or higher
      • Infoblox DNS Firewall Evaluation License
      • global IP address
      diagnostic report

    If you do not have a reporting appliance, we will create it with Infoblox and provide the diagnostic results to you.

For those who want to diagnose quickly

3. Thorough diagnosis course

This service carefully diagnoses the presence of malware-infected terminals and servers for 60 days.

  • preparations
    • VMWare Vcenter environment
    • Infoblox DNS Firewall Diagnostic Kit
    • global IP address
  • diagnostic report
    You can check the diagnosis result with the reporting tool attached to the DNS Firewall diagnosis kit.

If you are interested, please apply here!

Sign up here

*We will consult with you about the timing of the diagnostic service according to your request.

What is Infoblox DNS Firewall?

Block outbound DNS-based communication by malware to prevent connections with botnets and C&C servers.

Main function

  • Monitor and block DNS queries to malicious domains
  • Visualization of infected terminals
  • Automatic update of data feed every 2 hours to reflect rapid changes in IP addresses of malicious domains using Fast-Flux process
  • Geographic blocking (e.g. North Korea, Iran, Russia, Syria, etc.)

Inquiry/Document request

Macnica Infoblox

Mon-Fri 8:45-17:30