Hello all,

I am currently configuring Netflow on one of our routers and have been
finding some pretty interesting things. Apparently the mpac trojan is
affecting us as I am seeing up to 1 gig of incoming traffic coming from
italian domains. Now im trying to localize it to which office it's
coming from so I have to configure netflow on multiple serial
interfaces. Not sure if I should do them one at a time or turn them all
on at once?

anyone know anything about this?