
Infoblox
infoblocks
<Infoblox free diagnosis service> Diagnosis of targeted attacks seen in DNS
Visualize infection status by hidden bot-type malware and APT hidden in the network
No need to change the system, just send DNS packets! Report sent in about 1 week
Do you have any concerns?
- Concerns about cyberattacks such as drive-by downloads, APT attacks, etc.
- Concern about malware infections that are difficult to detect with next-generation firewalls and antiviruses
- Concerns about hidden malware infections on your network
- Concern about understanding unauthorized communication with external servers
- Concerns that the company's network connection terminals are becoming bots
Communication to be diagnosed
- HTTP, HTTPSトラフィック
- email traffic
- Traffic using port 53
Threats Through Diagnosis
- Threats communicating with C&C servers
- hidden bot malware
- Identifying infected clients
3 diagnostic courses to choose from
For those who want a quick diagnosis
1. Quick diagnostic course
This is recommended for customers who want to quickly check if there are any computers infected with hidden bot-type malware on their network.
- preparations
Packet capture (more than 10 minutes) accessing the DNS cache server - diagnostic report
Infoblox will analyze the acquired captures and provide diagnostic results.
For people using Infoblox products
2. Standard diagnosis course
This is a diagnostic course for customers using Infoblox products as DNS.
- Infoblox NIOS6.6 or higher
- Infoblox DNS Firewall Evaluation License
- global IP address
- preparations
- If you do not have a reporting appliance, we will create it with Infoblox and provide the diagnostic results to you.
For those who want to diagnose quickly
3. Thorough diagnosis course
This service carefully diagnoses the presence of malware-infected terminals and servers for 60 days.
- preparations
- VMWare Vcenter environment
- Infoblox DNS Firewall Diagnostic Kit
- global IP address
- diagnostic report
You can check the diagnosis result with the reporting tool attached to the DNS Firewall diagnosis kit.
If you are interested, please apply here!
*We will consult with you about the timing of the diagnostic service according to your request.
What is Infoblox DNS Firewall?
Block outbound DNS-based communication by malware to prevent connections with botnets and C&C servers.
Main function
- Monitor and block DNS queries to malicious domains
- Visualization of infected terminals
- Automatic update of data feed every 2 hours to reflect rapid changes in IP addresses of malicious domains using Fast-Flux process
- Geographic blocking (e.g. North Korea, Iran, Russia, Syria, etc.)
Inquiry/Document request
Macnica Infoblox
- TEL:045-476-2010
- E-mail:infoblox-sales@macnica.co.jp
Weekdays: 9:00-17:00