06-07-2020 03:43 AM
Has anyone else started getting DNS sinkhole threat alerts for the below domain? About half a day ago I started getting a tonne of sinkhole alarms from our PA for this URL. It looks to be a legitimate Microsoft domain and IP. In the PA threat log it comes up as Spyware.
skypedataprdcolase04.cloudapp.net
The PA threat vault shows the below:
Anyone else seeing this and any word of why it is happening? I'm getting alerts all day and from a whole lot of different internal hosts.
Thanks