T
tokyosky
Hello everyone I hope I am in the right place,
I have a problem sending mail!
I get the following error message box.
---------
An error occurred while sending mail.The mail server responded.
x-warning:212.180.*.* is listed at dnsbl.njabl.org
(127.0.0.9pen proxy--1059092404)
---------
The above ip address is listed as the adsl port ipaddress on my
netgear DG834GT
router.
As I don't have a fixed IP address simply powering off and on my router
I am
allocated a new IP address, but...
The first time this happend I had just logged on to my ISP to send an
email,
and detected the send mail problem. I suspected the ISP of giving me a
banned IP address. This happend a further twice.
Since then every time I log on to my ISP I do a mail send test.
However it
has now happend to me after a log on period of some 6hrs logged on and
suspect my machine is compromised some how. What do you think ?
I am running xppro sp2 with all the latest patches. I have run
NISecurity and it has found nothing, likewise addaware and spybot comeup
with nothing too. Windows Security Task Manager shows nothing either.
I had gone to the following site http://www.grc.com/x/ne.dll?rh1dkyd2
to check out my internet vulnerability profiling and all is secure
but I can't help feeling my machine is compromised in some way.
I have been useing the netstat -b command to see the activity on my
machine but am at a loss to understand what is going on. I know that
ccProxy.exe is part of symantec and is in it's normal directory
C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\ccproxy.exe
I am more interested in the Foreign Address part? Like this one earlier
TCP Dell-:3686 66.249.93.99:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3688 66.249.93.104:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3735
a212-180-125-169.deploy.akamaitechnologies.com:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3737
a212-180-125-169.deploy.akamaitechnologies.com:http ESTABLISHED 1568
[ccProxy.exe]
----------------------
C:\Documents and Settings\alan>netstat -b
Active Connections
Proto Local Address Foreign Address State PID
TCP Dell-:3297 localhost:3298 ESTABLISHED 3576
[firefox.exe]
TCP Dell-:3298 localhost:3297 ESTABLISHED 3576
[firefox.exe]
TCP Dell-:3395 cache.napster.com:http TIME_WAIT 0
TCP Dell-:3398
a194-158-126-22.deploy.akamaitechnologies.com:http TIME_WAIT 0
TCP Dell-:3401
a194-158-126-24.deploy.akamaitechnologies.com:http TIME_WAIT 0
----------------------------
And more recently this:
C:\Documents and Settings\alan>netstat -b
Active Connections
Proto Local Address Foreign Address State PID
TCP Dell-:1025 localhost:3902 ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:1025 localhost:3844 ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:1025 localhost:3846 ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:1025 localhost:3900 ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3683 localhost:3684 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3684 localhost:3683 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3844 localhost:1025 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3846 localhost:1025 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3900 localhost:1025 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3902 localhost:1025 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3845 198.65.111.254:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3847 198.65.111.254:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3901 66.249.93.99:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3903 66.249.93.99:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:1025 localhost:3783 TIME_WAIT 0
TCP Dell-:1025 localhost:3904 TIME_WAIT 0
TCP Dell-:1025 localhost:3896 TIME_WAIT 0
TCP Dell-:3899 p15193564.pureserver.info:http TIME_WAIT
0
TCP Dell-:10865 192.168.0.1:49153 TIME_WAIT 0
TCP Dell-:64903 192.168.0.1:49153 TIME_WAIT 0
-------------------------------------------------------
C:\Documents and Settings\alan>netstat -b
Active Connections
Proto Local Address Foreign Address State PID
TCP Dell-:1025 localhost:3902 ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:1025 localhost:3900 ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3683 localhost:3684 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3684 localhost:3683 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3900 localhost:1025 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3902 localhost:1025 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3901 66.249.93.99:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3903 66.249.93.99:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:1025 localhost:3896 TIME_WAIT 0
TCP Dell-:1025 localhost:3783 TIME_WAIT 0
TCP Dell-:1025 localhost:3904 TIME_WAIT 0
TCP Dell-:3844 localhost:1025 TIME_WAIT 0
TCP Dell-:3846 localhost:1025 TIME_WAIT 0
TCP Dell-:3845 198.65.111.254:http TIME_WAIT 0
TCP Dell-:3847 198.65.111.254:http TIME_WAIT 0
TCP Dell-:3899 p15193564.pureserver.info:http TIME_WAIT
0
TCP Dell-:10865 192.168.0.1:49153 TIME_WAIT 0
TCP Dell-:64903 192.168.0.1:49153 TIME_WAIT 0
---------------------------------------------------------
C:\Documents and Settings\alan>netstat -b
Active Connections
Proto Local Address Foreign Address State PID
TCP Dell-:1025 localhost:3925 ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:1025 localhost:3923 ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3683 localhost:3684 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3684 localhost:3683 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3923 localhost:1025 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3925 localhost:1025 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3924 66.249.93.99:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3926 66.249.93.96:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:1025 localhost:3935 TIME_WAIT 0
TCP Dell-:1025 localhost:3931 TIME_WAIT 0
TCP Dell-:1025 localhost:3900 TIME_WAIT 0
TCP Dell-:1025 localhost:3933 TIME_WAIT 0
TCP Dell-:1025 localhost:3939 TIME_WAIT 0
TCP Dell-:1025 localhost:3902 TIME_WAIT 0
TCP Dell-:1025 localhost:3912 TIME_WAIT 0
TCP Dell-:1025 localhost:3910 TIME_WAIT 0
TCP Dell-:1025 localhost:3937 TIME_WAIT 0
TCP Dell-:3921 localhost:1025 TIME_WAIT 0
TCP Dell-:3927 localhost:1025 TIME_WAIT 0
TCP Dell-:3929 localhost:1025 TIME_WAIT 0
TCP Dell-:3915 p15193564.pureserver.info:http TIME_WAIT
0
TCP Dell-:3920 p15193564.pureserver.info:http TIME_WAIT
0
TCP Dell-:3922 p15193564.pureserver.info:http TIME_WAIT
0
TCP Dell-:3928 64.41.142.230:http TIME_WAIT 0
TCP Dell-:3930 64.41.142.230:http TIME_WAIT 0
TCP Dell-:52723 192.168.0.1:49153 TIME_WAIT 0
You help in this regard would be most welcome.
--
Alan
_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/
If you're going through hell, keep going.
Sir Winston Churchill (1874 - 1965)
British Statesman, Prime Minister, Author
I have a problem sending mail!
I get the following error message box.
---------
An error occurred while sending mail.The mail server responded.
x-warning:212.180.*.* is listed at dnsbl.njabl.org
(127.0.0.9pen proxy--1059092404)
---------
The above ip address is listed as the adsl port ipaddress on my
netgear DG834GT
router.
As I don't have a fixed IP address simply powering off and on my router
I am
allocated a new IP address, but...
The first time this happend I had just logged on to my ISP to send an
email,
and detected the send mail problem. I suspected the ISP of giving me a
banned IP address. This happend a further twice.
Since then every time I log on to my ISP I do a mail send test.
However it
has now happend to me after a log on period of some 6hrs logged on and
suspect my machine is compromised some how. What do you think ?
I am running xppro sp2 with all the latest patches. I have run
NISecurity and it has found nothing, likewise addaware and spybot comeup
with nothing too. Windows Security Task Manager shows nothing either.
I had gone to the following site http://www.grc.com/x/ne.dll?rh1dkyd2
to check out my internet vulnerability profiling and all is secure
but I can't help feeling my machine is compromised in some way.
I have been useing the netstat -b command to see the activity on my
machine but am at a loss to understand what is going on. I know that
ccProxy.exe is part of symantec and is in it's normal directory
C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\ccproxy.exe
I am more interested in the Foreign Address part? Like this one earlier
TCP Dell-:3686 66.249.93.99:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3688 66.249.93.104:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3735
a212-180-125-169.deploy.akamaitechnologies.com:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3737
a212-180-125-169.deploy.akamaitechnologies.com:http ESTABLISHED 1568
[ccProxy.exe]
----------------------
C:\Documents and Settings\alan>netstat -b
Active Connections
Proto Local Address Foreign Address State PID
TCP Dell-:3297 localhost:3298 ESTABLISHED 3576
[firefox.exe]
TCP Dell-:3298 localhost:3297 ESTABLISHED 3576
[firefox.exe]
TCP Dell-:3395 cache.napster.com:http TIME_WAIT 0
TCP Dell-:3398
a194-158-126-22.deploy.akamaitechnologies.com:http TIME_WAIT 0
TCP Dell-:3401
a194-158-126-24.deploy.akamaitechnologies.com:http TIME_WAIT 0
----------------------------
And more recently this:
C:\Documents and Settings\alan>netstat -b
Active Connections
Proto Local Address Foreign Address State PID
TCP Dell-:1025 localhost:3902 ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:1025 localhost:3844 ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:1025 localhost:3846 ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:1025 localhost:3900 ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3683 localhost:3684 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3684 localhost:3683 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3844 localhost:1025 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3846 localhost:1025 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3900 localhost:1025 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3902 localhost:1025 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3845 198.65.111.254:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3847 198.65.111.254:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3901 66.249.93.99:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3903 66.249.93.99:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:1025 localhost:3783 TIME_WAIT 0
TCP Dell-:1025 localhost:3904 TIME_WAIT 0
TCP Dell-:1025 localhost:3896 TIME_WAIT 0
TCP Dell-:3899 p15193564.pureserver.info:http TIME_WAIT
0
TCP Dell-:10865 192.168.0.1:49153 TIME_WAIT 0
TCP Dell-:64903 192.168.0.1:49153 TIME_WAIT 0
-------------------------------------------------------
C:\Documents and Settings\alan>netstat -b
Active Connections
Proto Local Address Foreign Address State PID
TCP Dell-:1025 localhost:3902 ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:1025 localhost:3900 ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3683 localhost:3684 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3684 localhost:3683 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3900 localhost:1025 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3902 localhost:1025 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3901 66.249.93.99:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3903 66.249.93.99:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:1025 localhost:3896 TIME_WAIT 0
TCP Dell-:1025 localhost:3783 TIME_WAIT 0
TCP Dell-:1025 localhost:3904 TIME_WAIT 0
TCP Dell-:3844 localhost:1025 TIME_WAIT 0
TCP Dell-:3846 localhost:1025 TIME_WAIT 0
TCP Dell-:3845 198.65.111.254:http TIME_WAIT 0
TCP Dell-:3847 198.65.111.254:http TIME_WAIT 0
TCP Dell-:3899 p15193564.pureserver.info:http TIME_WAIT
0
TCP Dell-:10865 192.168.0.1:49153 TIME_WAIT 0
TCP Dell-:64903 192.168.0.1:49153 TIME_WAIT 0
---------------------------------------------------------
C:\Documents and Settings\alan>netstat -b
Active Connections
Proto Local Address Foreign Address State PID
TCP Dell-:1025 localhost:3925 ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:1025 localhost:3923 ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3683 localhost:3684 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3684 localhost:3683 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3923 localhost:1025 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3925 localhost:1025 ESTABLISHED 1412
[firefox.exe]
TCP Dell-:3924 66.249.93.99:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:3926 66.249.93.96:http ESTABLISHED 1568
[ccProxy.exe]
TCP Dell-:1025 localhost:3935 TIME_WAIT 0
TCP Dell-:1025 localhost:3931 TIME_WAIT 0
TCP Dell-:1025 localhost:3900 TIME_WAIT 0
TCP Dell-:1025 localhost:3933 TIME_WAIT 0
TCP Dell-:1025 localhost:3939 TIME_WAIT 0
TCP Dell-:1025 localhost:3902 TIME_WAIT 0
TCP Dell-:1025 localhost:3912 TIME_WAIT 0
TCP Dell-:1025 localhost:3910 TIME_WAIT 0
TCP Dell-:1025 localhost:3937 TIME_WAIT 0
TCP Dell-:3921 localhost:1025 TIME_WAIT 0
TCP Dell-:3927 localhost:1025 TIME_WAIT 0
TCP Dell-:3929 localhost:1025 TIME_WAIT 0
TCP Dell-:3915 p15193564.pureserver.info:http TIME_WAIT
0
TCP Dell-:3920 p15193564.pureserver.info:http TIME_WAIT
0
TCP Dell-:3922 p15193564.pureserver.info:http TIME_WAIT
0
TCP Dell-:3928 64.41.142.230:http TIME_WAIT 0
TCP Dell-:3930 64.41.142.230:http TIME_WAIT 0
TCP Dell-:52723 192.168.0.1:49153 TIME_WAIT 0
You help in this regard would be most welcome.
--
Alan
_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/
If you're going through hell, keep going.
Sir Winston Churchill (1874 - 1965)
British Statesman, Prime Minister, Author