CastleCops, Internet Crime Fighters
Need help? Click here to register for free! Absolutely zero advertisements on this site!

$9736.22 of $21422.68
left sidedonated so farneed $11686.46 donated to reach our goalright side, our goal
Help CastleCops serve the community on new servers, Donate Here to reach our goal.

Donation/Premium
spacer
block bottom
Security Central
spacer
· Home
· PIRT/Fried Phish
· MIRT
· SIRT
· Deutsch
· Wiki
· Newsletter
· O16/ActiveX
· CLSID List
· Contest2007
· Downloads
· Feedback (send)
· Forums
· HijackThis
· Hijacktrend
· LSPs
· My Downloads
· O18
· O20
· O21
· O22
· O23
· O9
· Premium
· Private Messages
· Proxomitron
· Reviews
· Search
· StartupList
· Stories Archive
· Submit News
· WsIRT
· Your Account
· Acceptable Use Policy
block bottom
Survey
spacer
Was 2007 a good year?

Yes it was a wonderful year
Yes, but there is always room for improvement
Status quo
It was a challenge
Other (leave comment)



Results
Polls

Votes: 940
Comments: 25
block bottom
spacer spacer

[CBL] 201.200.91.38

 
Post new topic   Reply to topic       All -> FavForums -> SecCheck [del.icio.us!] [digg it!] [reddit!]
View previous topic :: View next topic  
Author Message
stratosrider

Guest
IP: 201.200.*.*






PostPosted: Sun Jun 29, 2008 6:00 am    Post subject: [CBL] 201.200.91.38
Reply with quote

http://sc.mynetwatchman.com/seccheck/SubmissionStatus.jsp?submissionID=6ff3273827ef12bef0b3ecc25043b6cb

Dear experts:

I am a Costa Rican entrepreneur that among production, sales and finances ALSO handles our companys IT needs. I am certainly a beginner when it comes to this things.

Our e-mail has been blocked by at least 3 "Black List" companies according to the DNSStuff.com Spam Database Lookup report.

We did have a lot of Viruses last week, but since then our Antivirus has been properly updated and it has cleaned fairly well our network stations. The following viruses were detected and cleaned: W32/Checkout, Downloader-UA.h, PWS-LegMir.gen.k, Downloader-UA, Generic!atr

I still get a Buffer Overflow detection by the McAfee Antivirus 8.5.0i, Patch 6, in 3 machines. However, the antivirus does not seem able to get rid of it's cause. The above URL is the report for one of those PCs.

At this time my biggest concern is not being able to send any mail from our server. This Buffer overflow issues are not a problem at present time.

My question is: Do you see any infection in the report? What steps should I take to further clean this machines?

I have already contacted the 3 organizations that have our IP listed as a Spam Bot server and request our removal from their lists. Any advise on other actions I should take?

Thank you very much for your help!!

Back to top
Display posts from previous:   
Post new topic   Reply to topic       All -> FavForums -> SecCheck All times are GMT
Page 1 of 1

 
Quick Reply:
Username: 

Quote the last message
Attach signature (signatures can be changed in profile)
 
You can post new topics in this forum
You can reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You can attach files in this forum
You can download files in this forum


Powered by phpBB © 2001 phpBB Group
spacer spacer