Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Botnet-scanner?


  • Please log in to reply

#1
IO-error

IO-error

    Member

  • Member
  • PipPipPip
  • 276 posts
Hi fellow geeks.

As we speak, my pc is busy pinging the [bleep] out of wikileaks.
It's IP-adres is showing up in netstat all the time.

This is a list of netstat output I wanna share.
Please keep in mind that I have already ran through hijackthis and the whole of the malware-removal procedures.
I did quite a lot of this myself as I work in a computer store, so I know what to do and what to use.

Proto Lokaal adres Extern adres Status
TCP 127.0.0.1:58779 PC:58780 ESTABLISHED
TCP 127.0.0.1:58780 PC:58779 ESTABLISHED
TCP 127.0.0.1:59418 PC:59419 ESTABLISHED
TCP 127.0.0.1:59419 PC:59418 ESTABLISHED
TCP 127.0.0.1:59420 PC:59421 ESTABLISHED
TCP 127.0.0.1:59421 PC:59420 ESTABLISHED
TCP 192.168.1.65:38617 2.99.171.158:59073 TIME_WAIT
TCP 192.168.1.65:38617 ool-182ed4b9:59285 TIME_WAIT
TCP 192.168.1.65:38617 ool-182f157e:63245 TIME_WAIT
TCP 192.168.1.65:38617 S010600195b4c7488:62906 TIME_WAIT
TCP 192.168.1.65:38617 S010600195b4c7488:63063 FIN_WAIT_2
TCP 192.168.1.65:38617 S010600226b73a3b9:62366 TIME_WAIT
TCP 192.168.1.65:38617 S010600226b73a3b9:62522 TIME_WAIT
TCP 192.168.1.65:38617 cpe-24-160-97-210:53243 TIME_WAIT
TCP 192.168.1.65:38617 ool-18b8579d:62941 TIME_WAIT
TCP 192.168.1.65:38617 41-132-27-223:58367 TIME_WAIT
TCP 192.168.1.65:38617 41-133-77-155:54438 TIME_WAIT
TCP 192.168.1.65:38617 ip3e83b627:59209 TIME_WAIT
TCP 192.168.1.65:38617 gl142:58745 TIME_WAIT
TCP 192.168.1.65:38617 62:52998 TIME_WAIT
TCP 192.168.1.65:38617 i27172:49546 TIME_WAIT
TCP 192.168.1.65:38617 fw1:2115 TIME_WAIT
TCP 192.168.1.65:38617 bas2-kitchener06-1096747583:61607 TIME_WAIT
TCP 192.168.1.65:38617 cpe-066-057-023-031:50286 TIME_WAIT
TCP 192.168.1.65:38617 66:54073 TIME_WAIT
TCP 192.168.1.65:38617 66:54137 TIME_WAIT
TCP 192.168.1.65:38617 ool-43538508:51009 TIME_WAIT
TCP 192.168.1.65:38617 c-67-183-49-120:59079 TIME_WAIT
TCP 192.168.1.65:38617 d67-193-176-44:51581 TIME_WAIT
TCP 192.168.1.65:38617 cpe-67-240-22-243:65361 TIME_WAIT
TCP 192.168.1.65:38617 cpe-67-242-16-110:60755 TIME_WAIT
TCP 192.168.1.65:38617 cpe-67-242-16-110:60763 TIME_WAIT
TCP 192.168.1.65:38617 c-68-50-77-181:51648 TIME_WAIT
TCP 192.168.1.65:38617 c-68-62-114-65:63795 TIME_WAIT
TCP 192.168.1.65:38617 c-68-62-114-65:63957 TIME_WAIT
TCP 192.168.1.65:38617 ip68-96-141-147:53620 TIME_WAIT
TCP 192.168.1.65:38617 68.159.130.2:55801 TIME_WAIT
TCP 192.168.1.65:38617 cpe-68-174-29-101:62368 TIME_WAIT
TCP 192.168.1.65:38617 netblock-68-183-201-179:58370 TIME_WAIT
TCP 192.168.1.65:38617 68-189-211-25:54834 TIME_WAIT
TCP 192.168.1.65:38617 ip68-225-194-173:59780 TIME_WAIT
TCP 192.168.1.65:38617 69.41.12.112:62732 TIME_WAIT
TCP 192.168.1.65:38617 d47-69-227-190:62310 TIME_WAIT
TCP 192.168.1.65:38617 adsl-69-105-142-251:37736 TIME_WAIT
TCP 192.168.1.65:38617 ool-45717591:5875 TIME_WAIT
TCP 192.168.1.65:38617 69-165-142-215:59237 TIME_WAIT
TCP 192.168.1.65:38617 c-69-181-80-128:60167 TIME_WAIT
TCP 192.168.1.65:38617 c-69-247-50-243:62066 TIME_WAIT
TCP 192.168.1.65:38617 cpe-70-116-21-90:60502 TIME_WAIT
TCP 192.168.1.65:38617 70-139-66-160:50575 TIME_WAIT
TCP 192.168.1.65:38617 70-140-30-26:59190 TIME_WAIT
TCP 192.168.1.65:38617 70-140-30-26:59283 TIME_WAIT
TCP 192.168.1.65:38617 ool-182ed4b9:59285 TIME_WAIT
TCP 192.168.1.65:38617 ool-182f157e:63245 TIME_WAIT
TCP 192.168.1.65:38617 S010600195b4c7488:63063 FIN_WAIT_2
TCP 192.168.1.65:38617 S010600226b73a3b9:62522 TIME_WAIT
TCP 192.168.1.65:38617 cpe-24-160-97-210:53243 TIME_WAIT
TCP 192.168.1.65:38617 ool-18b8579d:62941 TIME_WAIT
TCP 192.168.1.65:38617 41-132-27-223:58367 TIME_WAIT
TCP 192.168.1.65:38617 41-133-77-155:54438 TIME_WAIT
TCP 192.168.1.65:38617 ip3e83b627:59209 TIME_WAIT
TCP 192.168.1.65:38617 62:52998 TIME_WAIT
TCP 192.168.1.65:38617 i27172:49546 TIME_WAIT
TCP 192.168.1.65:38617 fw1:2115 TIME_WAIT
TCP 192.168.1.65:38617 bas2-kitchener06-1096747583:61607 TIME_WAIT
TCP 192.168.1.65:38617 66:54137 TIME_WAIT
TCP 192.168.1.65:38617 ool-43538508:51009 TIME_WAIT
TCP 192.168.1.65:38617 c-67-183-49-120:59079 TIME_WAIT
TCP 192.168.1.65:38617 d67-193-176-44:51581 TIME_WAIT
TCP 192.168.1.65:38617 cpe-67-240-22-243:65361 TIME_WAIT
TCP 192.168.1.65:38617 c-68-50-77-181:51648 TIME_WAIT
TCP 192.168.1.65:38617 c-68-62-114-65:63957 TIME_WAIT
TCP 192.168.1.65:38617 68.159.130.2:55801 TIME_WAIT
TCP 192.168.1.65:38617 cpe-68-174-29-101:62368 TIME_WAIT
TCP 192.168.1.65:38617 netblock-68-183-201-179:58370 TIME_WAIT
TCP 192.168.1.65:38617 68-189-211-25:54834 TIME_WAIT
TCP 192.168.1.65:38617 ip68-225-194-173:59780 TIME_WAIT
TCP 192.168.1.65:38617 d47-69-227-190:62310 TIME_WAIT
TCP 192.168.1.65:38617 adsl-69-105-142-251:37736 TIME_WAIT
TCP 192.168.1.65:38617 ool-45717591:5875 TIME_WAIT
TCP 192.168.1.65:38617 69-165-142-215:59237 TIME_WAIT
TCP 192.168.1.65:38617 c-69-181-80-128:60167 TIME_WAIT
TCP 192.168.1.65:38617 c-69-247-50-243:62066 TIME_WAIT
TCP 192.168.1.65:38617 cpe-70-116-21-90:60502 TIME_WAIT
TCP 192.168.1.65:38617 70-139-66-160:50575 TIME_WAIT
TCP 192.168.1.65:38617 70-140-30-26:59190 TIME_WAIT
TCP 192.168.1.65:38617 70-140-30-26:59283 TIME_WAIT
TCP 192.168.1.65:38617 71-8-121-184:58158 TIME_WAIT
TCP 192.168.1.65:38617 71-23-161-99:59739 TIME_WAIT
TCP 192.168.1.65:38617 71-35-225-34:2163 TIME_WAIT
TCP 192.168.1.65:38617 cpe-71-67-109-3:59893 TIME_WAIT
TCP 192.168.1.65:38617 71-89-16-27:50219 TIME_WAIT
TCP 192.168.1.65:38617 71-93-42-142:58592 TIME_WAIT
TCP 192.168.1.65:38617 pool-71-165-12-253:60746 TIME_WAIT
TCP 192.168.1.65:38617 c-71-194-86-103:64343 TIME_WAIT
TCP 192.168.1.65:38617 c-71-195-94-185:51529 TIME_WAIT
TCP 192.168.1.65:38617 pool-71-244-232-224:50212 TIME_WAIT
TCP 192.168.1.65:38617 pool-71-247-37-123:2740 TIME_WAIT
TCP 192.168.1.65:38617 210:59617 TIME_WAIT
TCP 192.168.1.65:38617 cpe-72-185-78-199:5140 TIME_WAIT
TCP 192.168.1.65:38617 74-33-33-236:60943 TIME_WAIT
TCP 192.168.1.65:38617 cpe-74-67-176-61:49783 TIME_WAIT
TCP 192.168.1.65:38617 cpe-74-68-118-151:59494 TIME_WAIT
TCP 192.168.1.65:38617 cpe-74-78-121-34:59435 TIME_WAIT
TCP 192.168.1.65:38617 74-137-104-241:63044 TIME_WAIT
TCP 192.168.1.65:38617 r74-192-97-159:49168 TIME_WAIT
TCP 192.168.1.65:38617 c74-197-96-13:52641 TIME_WAIT
TCP 192.168.1.65:38617 75.80.46.209:64125 TIME_WAIT
TCP 192.168.1.65:38617 d75-156-192-39:61075 TIME_WAIT
TCP 192.168.1.65:38617 d75-159-39-76:60081 TIME_WAIT
TCP 192.168.1.65:38617 75-172-159-30:52949 TIME_WAIT
TCP 192.168.1.65:38617 cpe-075-177-124-078:49588 TIME_WAIT
TCP 192.168.1.65:38617 cpe-075-177-149-003:59497 TIME_WAIT
TCP 192.168.1.65:38617 tx-76-4-62-180:20129 TIME_WAIT
TCP 192.168.1.65:38617 c-76-22-189-2:60610 TIME_WAIT
TCP 192.168.1.65:38617 CPE-76-92-71-32:65454 TIME_WAIT
TCP 192.168.1.65:38617 c-76-105-208-194:62077 TIME_WAIT
TCP 192.168.1.65:38617 c-76-106-242-235:60473 TIME_WAIT
TCP 192.168.1.65:38617 cpe-76-167-28-126:61971 TIME_WAIT
TCP 192.168.1.65:38617 cpe-76-174-167-8:63534 TIME_WAIT
TCP 192.168.1.65:38617 cpe-76-181-197-132:57473 TIME_WAIT
TCP 192.168.1.65:38617 adsl-76-234-133-235:52665 TIME_WAIT
TCP 192.168.1.65:38617 77.70.56.120:51944 TIME_WAIT
TCP 192.168.1.65:38617 77.211.128.236:61600 TIME_WAIT
TCP 192.168.1.65:38617 77.211.128.236:61656 TIME_WAIT
TCP 192.168.1.65:38617 77.239.254.7:58188 TIME_WAIT
TCP 192.168.1.65:38617 77-255-139-85:61657 TIME_WAIT
TCP 192.168.1.65:38617 77-255-174-209:1421 TIME_WAIT
TCP 192.168.1.65:38617 dynamic-adsl-78-14-239-137:59472 TIME_WAIT
TCP 192.168.1.65:38617 78.58.125.156:65112 TIME_WAIT
TCP 192.168.1.65:38617 130-49-80-78:21066 TIME_WAIT
TCP 192.168.1.65:38617 78.97.196.228:65139 TIME_WAIT
TCP 192.168.1.65:38617 adsl-dyn223:53061 TIME_WAIT
TCP 192.168.1.65:38617 78-105-13-41:49656 TIME_WAIT
TCP 192.168.1.65:38617 30:52337 TIME_WAIT
TCP 192.168.1.65:38617 adsl-53:4570 TIME_WAIT
TCP 192.168.1.65:38617 79-116-164-131:11310 TIME_WAIT
TCP 192.168.1.65:38617 79-117-16-110:54865 TIME_WAIT
TCP 192.168.1.65:38617 ip-79-120-86-233:64725 TIME_WAIT
TCP 192.168.1.65:38617 ip-79-120-86-233:64727 TIME_WAIT
TCP 192.168.1.65:38617 host-79-121-34-216:3351 TIME_WAIT
TCP 192.168.1.65:38617 23:54973 TIME_WAIT
TCP 192.168.1.65:38617 a79-168-51-24:56079 TIME_WAIT
TCP 192.168.1.65:38617 aect106:59603 TIME_WAIT
TCP 192.168.1.65:38617 p4FEA8E96:52166 TIME_WAIT
TCP 192.168.1.65:38617 80.31.156.49:24120 TIME_WAIT
TCP 192.168.1.65:38617 na-10:57852 TIME_WAIT
TCP 192.168.1.65:38617 na-10:57878 TIME_WAIT
TCP 192.168.1.65:38617 80.85.118.53:3468 TIME_WAIT
TCP 192.168.1.65:38617 dsl-olubrasgw1-feaedc00-29:50444 TIME_WAIT
TCP 192.168.1.65:38617 cable-lpr2-feeedd00-144:64232 TIME_WAIT
TCP 192.168.1.65:38617 107-70:57315 TIME_WAIT
TCP 192.168.1.65:38617 81-178-241-79:50141 TIME_WAIT
TCP 192.168.1.65:38617 183-39-114:62390 TIME_WAIT
TCP 192.168.1.65:38617 host-81:59487 TIME_WAIT
TCP 192.168.1.65:38617 81-231-67-170-no20:63935 TIME_WAIT
TCP 192.168.1.65:38617 host60-90-dynamic:65232 TIME_WAIT
TCP 192.168.1.65:38617 524B0A9F:56802 TIME_WAIT
TCP 192.168.1.65:38617 bl5-207-92:64363 TIME_WAIT



Is there any way to clean my installation from this crap, or should I re-install?
  • 0

Advertisements


#2
rshaffer61

rshaffer61

    Moderator

  • Moderator
  • 34,114 posts
I suspect that you have some malware on your computer causing issues that we are not able to solve through means we can use here in the Tech Forums. I suggest you read the 'Start Here' topic found here. With these self-help tools you have a high chance of fixing the problems on your own. If you are still having problems after following Step 3 of the guide, continue with Step 4 and 5 and post in the Malware Forum. If you are unable to run any programs, Please create a topic stating what you have tried so far and that you are unable to run any programs. Also, Please do NOT post the logs in this thread.

If you are still having issues after the malware expert gives you a clean bill of health, Please return to THIS thread and we will pursue other options to help you solve your current problem(s).
Add a link to this topic so that malware tech can see what steps have been taken here
  • 0

#3
IO-error

IO-error

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 276 posts

Please keep in mind that I have already ran through hijackthis and the whole of the malware-removal procedures.
I did quite a lot of this myself as I work in a computer store, so I know what to do and what to use.



Like I said, I already did those procedures myself.
There are still backdoors installed appearantly.

Oh well, thanks for the effort, but I don't think botnets will be detectable any time soon.
Will do a re-install.
  • 0

#4
rshaffer61

rshaffer61

    Moderator

  • Moderator
  • 34,114 posts
Did you start a topic in the malware forum and have the techs there go through your system with even deeper scans and programs?
If not then you have not done the complete instructions as they were posted.
If you have them go through your system they will be able to help you but I can't stress it enough if you want to not do it. :D
  • 0

#5
IO-error

IO-error

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 276 posts
Thank you, I will soon have time to do that.
This thread can be locked, or whatever the policy is :D .
  • 0

#6
rshaffer61

rshaffer61

    Moderator

  • Moderator
  • 34,114 posts
We don't close topics here and if after they are through with you and declare your system healthy, then you can return to this topic if you need further assistance. :D
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP