Page 1 of 4 123 ... LastLast
Results 1 to 10 of 36
Like Tree15Likes

Thread: Unusual traffic from your computer network

  1. #1
    Experienced User
    Overall activity: 4.0%

    Join Date
    Jun 2009
    Posts
    210
    Liked
    38 times
    Points
    5,122

    Unusual traffic from your computer network

    http://support.google.com/websearch/bin/answer.py?hl=en&answer=86640





    Unusual traffic.jpg

    Malwarebytes Pro, Avast Free, Online Armor Premium Firewall, Comodo Firewall, all say clean.

    CA Yahoo Antispy says MFplay.dll is a home page hijacker. Unlocker is not working, Windows 7 64 bit Ultimate. All these starts very recently.

    Mobile broadband option get automatically disabled in Ubuntu (can't enable from Network settings). Please help.
    Last edited by Networx; 01-23-2012 at 02:48 PM.
    One day, you'll be just a memory for some people. Do your best to be a good one.

  2. #2
    Guest
    Overall activity: 54.0%

    Join Date
    May 2007
    Location
    Philippines
    Posts
    4,006
    Liked
    710 times
    Points
    47,645
    Malwarebytes Pro, Avast Free, Online Armor Premium Firewall, Comodo Firewall, all say clean.
    This set-up is overkill, if you ask me.

    Follow what Google had asked you to do. You have 3 options there. In some instances, it has something do with a sluggish/faulty internet connection and the worse is your system is leaking outside due to a malware infestation ( zombie infested pc ). You have to confirm first if your Pc is clean and so follow the next step...
    "Stars and the Sun"


  3. #3
    Experienced User
    Overall activity: 4.0%

    Join Date
    Jun 2009
    Posts
    210
    Liked
    38 times
    Points
    5,122
    I had Avast Free + OA Premium

    -- > Changed to comodo

    --> Installed Malwarebytes

    CA Yahoo anitspy does not have real time protection. It runs as and when we do it.

    Hijack this is not saving a log and when I click analyze, it simple shows a page saying analyzing, but nothing happens.

    ---------- Post added at 02:07 PM ---------- Previous post was at 02:05 PM ----------

    And my bandwidth meter shows much higher usage than normal even after setting it to monitor only my USB based CDMA modem.

  4. #4
    Administrator
    Overall activity: 62.0%

    Join Date
    Nov 2006
    Location
    Malaysia
    Posts
    9,804
    Liked
    1656 times
    Points
    48,752
    I would suggest you to install NetLimiter and check what process is using the traffic.

  5. #5
    Experienced User
    Overall activity: 4.0%

    Join Date
    Jun 2009
    Posts
    210
    Liked
    38 times
    Points
    5,122
    Thanks Ray. Installing Netlimiter. Attaching the Hijack This pro log got through Anvir.

    hijack this to do.txt

  6. #6
    Experienced User
    Overall activity: 4.0%

    Join Date
    Jun 2009
    Posts
    210
    Liked
    38 times
    Points
    5,122
    Netstat log

    http://www.mediafire.com/?orh6k3qd28188x1

  7. #7
    Experienced User
    Overall activity: 4.0%

    Join Date
    Jun 2009
    Posts
    210
    Liked
    38 times
    Points
    5,122
    Traffic details 2.jpg

    Traffic details.jpg

    Traffic stats.jpg

    My traffic details. More or less similar tool as Netlimiter.

  8. #8
    Moderator
    Overall activity: 73.0%

    Join Date
    Dec 2008
    Location
    Italy
    Posts
    6,895
    Liked
    1067 times
    Points
    71,755
    Clean your browser cache.
    Then click Start>run type "cmd" (without brackets), then type "ipconfig -flushdns" (without brackets), hit Enter.
    Disconnect your router/modem for about 10 minutes.
    Reboot Windows.
    Get connected again.
    Your ISP should give you a new IP address.

    Google won't display that message again.

    On a side note: I would unistall immediately "CA Yahoo Antispy " toolbar
    Roger and out

  9. #9
    Experienced User
    Overall activity: 4.0%

    Join Date
    Jun 2009
    Posts
    210
    Liked
    38 times
    Points
    5,122
    Thanks leo. I formatted C drive and reinstall Windows 7. But funny things are happening, page loading is terrible and at times does not load with connection. Now using hotspot shield and the difference is amazing. Even the download speed is kind of 5 to 10 times otherwise.

    Also mobile broadband gets disabled by itself in Ubuntu. I take network settings and try to enable by moving the button, but it simply stays disabled. Could there be a cross platform malware. Now no Ubuntu (I mean yet to enabled GRUB2), left avast as avastsvc.exe was behaving strangely, downloading even when updates are turned off.

  10. #10
    Administrator
    Overall activity: 62.0%

    Join Date
    Nov 2006
    Location
    Malaysia
    Posts
    9,804
    Liked
    1656 times
    Points
    48,752
    Sorry for not responding because I had very limited internet connection in my hometown for chinese new year.
    Hijackthis log is incomplete.
    Netstat log is pretty useless since rootkits can bypass that.
    Never tried Kingsoft PC Doctor so don't know how accurate is the traffic monitoring feature.

    Should have given Netlimiter a try since it uses a low level driver and is able to monitor any hidden traffic including rootkits.

 

 
Page 1 of 4 123 ... LastLast
All times are GMT +8. The time now is 10:02 AM.