BetaArchive Logo
Total Current Archive Size: 4925.26GB in 15820 files
Navigation Home Screenshots Image Uploader Server Info FTP Servers Wiki Forum RSS Feed Rules Please Donate
UP: 5d, 19h, 33m | CPU: 12% | MEM: 4267MB of 12279MB used
{The community for beta collectors}

Forum rules


Before you post, please make sure...

- ...your topic is related to betas or abandonware. If it is not, don't post it here. Better help sites exist else where.
- ...you have first used Google to look for an answer, and you have asked other people you know via other methods (IM, e-mail, etc).
- ...your question has not been asked before. Search the forum first before posting.

If you meet those criteria, go ahead and post your question. Be sure to provide as much information you can about the problem and how to recreate it. Also provide information on hardware and software if applicable.


Post new topic Reply to topic  [ 6 posts ] 
Author Message
 PostPost subject: OpenDNS and Botnets        Posted: Wed May 16, 2012 3:58 pm 
Pro Beta Collector
Pro Beta Collector
User avatar
Offline

Joined
Fri Nov 12, 2010 1:21 am

Posts
307

Favourite OS
OS 9, System 6.0.8, Ubuntu 11.10
so i use OpenDNS and today i when and logged into my account and on my dashboard its saying that my laptop has a botnet. so I ran Malwarebytes and i am going to be running MSE but so far there is nothing. could it be a false positive?

(also the OpenDNS software says that someone else is using my IP address)

_________________
Desktop: Power Mac G4 Running 10.2.8, 9.2.2, 8.7b, OS X Server 1.2
Laptop: Dell Inspiron 2.00ghz processor, 4gb of ram, 300gb hd, Windows 7 Home Premium

http://www.about.me/kendallseabury

"Lets make a dent in the universe" - Steve Jobs


Top  Profile  WWW
 PostPost subject: Re: OpenDNS and Botnets        Posted: Thu May 17, 2012 8:56 am 
Newbie Beta Collector
Newbie Beta Collector
Offline

Joined
Mon May 14, 2012 9:18 am

Posts
14

Location
Melbourne, Australia

Favourite OS
OS X Lion
Are you using a static or dynamic IP address through your ISP?

Double check your IP details on OpenDNS match up with your actual IP address.
You may need to login to your router to confirm, or visit www.whatismyip.com

I'm guessing the OpenDNS software isn't able to "phone home" correctly, and isn't matching your IP address against your account.


Top  Profile
 PostPost subject: Re: OpenDNS and Botnets        Posted: Thu May 17, 2012 1:44 pm 
Pro Beta Collector
Pro Beta Collector
User avatar
Offline

Joined
Fri Nov 12, 2010 1:21 am

Posts
307

Favourite OS
OS 9, System 6.0.8, Ubuntu 11.10
mattnotley2004 wrote:
Are you using a static or dynamic IP address through your ISP?

Double check your IP details on OpenDNS match up with your actual IP address.
You may need to login to your router to confirm, or visit http://www.whatismyip.com

I'm guessing the OpenDNS software isn't able to "phone home" correctly, and isn't matching your IP address against your account.


IP address is back to normal now, but the OpenDNS dashboard still says I have malware on my system :P and I have ran Malwarebytes and MSE but they found nothing. is this a false positive or is there anything else I can run to fix this problem?

this is a screenshot of the top requested domains from May 3rd to the 16th:

Image

I am unable to go back to the date of the original request (April 28th) since I do not have a pro account. could it be because of these it was flagged as malware?

_________________
Desktop: Power Mac G4 Running 10.2.8, 9.2.2, 8.7b, OS X Server 1.2
Laptop: Dell Inspiron 2.00ghz processor, 4gb of ram, 300gb hd, Windows 7 Home Premium

http://www.about.me/kendallseabury

"Lets make a dent in the universe" - Steve Jobs


Top  Profile  WWW
 PostPost subject: Re: OpenDNS and Botnets        Posted: Fri May 18, 2012 12:17 pm 
Newbie Beta Collector
Newbie Beta Collector
Offline

Joined
Mon May 14, 2012 9:18 am

Posts
14

Location
Melbourne, Australia

Favourite OS
OS X Lion
You may not have malware on your system.
It's possible someone else on your network has malware, or even a fault on OpenDNS's systems - giving you completely false data.

Does your ISP provide you with a static IP address, or is it dynamic?
Are you running Dynamic DNS on your router?
Are there any other users connected to your WiFi/Router?

Try changing your WiFi password, maybe someone knows your password.

There are still a number of possibilities, unfortunately it's a bit hard to narrow down without knowing your setup.


Top  Profile
 PostPost subject: Re: OpenDNS and Botnets        Posted: Fri May 18, 2012 4:50 pm 
Pro Beta Collector
Pro Beta Collector
User avatar
Offline

Joined
Fri Nov 12, 2010 1:21 am

Posts
307

Favourite OS
OS 9, System 6.0.8, Ubuntu 11.10
mattnotley2004 wrote:
You may not have malware on your system.
It's possible someone else on your network has malware, or even a fault on OpenDNS's systems - giving you completely false data.

Does your ISP provide you with a static IP address, or is it dynamic?
Are you running Dynamic DNS on your router?
Are there any other users connected to your WiFi/Router?

Try changing your WiFi password, maybe someone knows your password.

There are still a number of possibilities, unfortunately it's a bit hard to narrow down without knowing your setup.


ISP give me a dynamic address

no I am not running dynamic dns on my router

our desktop computer is connected via Ethernet to my router, sometimes.

_________________
Desktop: Power Mac G4 Running 10.2.8, 9.2.2, 8.7b, OS X Server 1.2
Laptop: Dell Inspiron 2.00ghz processor, 4gb of ram, 300gb hd, Windows 7 Home Premium

http://www.about.me/kendallseabury

"Lets make a dent in the universe" - Steve Jobs


Top  Profile  WWW
 PostPost subject: Re: OpenDNS and Botnets        Posted: Tue Jun 05, 2012 5:51 am 
Newbie Beta Collector
Newbie Beta Collector
Offline

Joined
Sat Apr 28, 2012 6:45 am

Posts
25
If you've scanned all of the machines on your network then it should be fine. I've had OpenDNS report that their was botnet activity but in fact they incorrectly flagged the Dell website, also it could have been part of a drive by download that OpenDNS blocked and simply flagged as a known domain for a botnet C&C server.


Top  Profile
Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 6 posts ] 




Who is online

Users browsing this forum: No registered users and 3 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum

Search for:
Jump to:  

All views expressed in these forums are those of the author and do not necessarily represent the views of the BetaArchive site owner.

Powered by phpBB® Forum Software © phpBB Group

Copyright © 2006-2013

 

Sitemap | XML | RSS