Resolved! How do I identify which PC made a suspicious DNS query?
Hello
I have setup the Anti-Spyware Profile in our firewall and I have a lot of threat logs of type spyware suspicious DNS queries from a domain controller machine and this is cleansed.
Monitor > Logs > Threat list
As you can see I have configure
...