|
Answer» Has anyone outthere heard of this http://www.0x90-team.com/diablo Everytime we start up our server this starts running. It can be closed but will re-open on next startup. We were hit with a virus lastweek called (gaobot) but has since been cleaned except for this diablo web page. Can anybody GIVE me some info on this or tell me how to get rid of it?
Thank you.% Information related to '62.193.192.0 - 62.193.207.255'
inetnum: 62.193.192.0 - 62.193.207.255 netname: AMEN-FR-NETWORK descr: AMEN France Network descr: For Spam/Abuse COMPLAIN please send mail to [emailprotected] country: FR admin-c: AN1108-RIPE tech-c: AN910-RIPE status: ASSIGNED PA mnt-by: AMEN-MNT mnt-lower: AMEN-MNT mnt-routes: AMEN-MNT rev-srv: ns1.amenworld.com rev-srv: ns2.amenworld.com source: RIPE # Filtered
role: AMEN NOC address: AMEN - Agence des Medias NumeriquesWhat does all that mean???Is this nothing more than a simple browser hijack? CWshredder, Hijackthis.either send them an email>descr: For Spam/Abuse complain please send mail to [emailprotected] or have a spam filter program.....installed//mailwasher
or block the isp ports>>62.193.192.0 - 62.193.207.255 in your firewall......or ie6 tools/internet options/security/restricted sites.......click the sites tab and copy and paste the above WEBSITES into it....
SOMEONE maybe port scanning.....check your LOGS....Thanks, I'll try it in the A.M. Merlin_2, You are a wizard!!!!
Thanks alot! WRWSS
|