|
报纸
楼主 |
发表于 2014-8-14 20:51:03
|
只看该作者
本帖最后由 Dennis991 于 2014-8-14 21:03 编辑
向大家报告一下,
1)申请了另外一个ISP的固定IP地址(中国*通),进行了反解,绑定什么的,双ISP固定IP利用DNSPOD组合成双线接入,路由器将所有SMTP(out) 的邮件都通过中国*通出去,使用了几天,中国*通的IP没有被spamhaus.org 的黑名单列入过;反而中国*信的IP无辜的又被spamhaus.org列入了XBL(备:中国*信下的IP地址还提供给该公司的内网员工做上网用途)。
2)以下是 http://cbl.abuseat.org/ 贴出来的原因,在下在线翻译了一下,像是说什么中了木马,开了代理一大堆的,不是太清楚具体原因。
IP Address ***.***.***.*** is listed in the CBL. It appears to be infected with a spam sending trojan, proxy or some other form of botnet.
It was last detected at 2014-08-14 09:00 GMT (+/- 30 minutes), approximately 4 hours ago.
It has been relisted following a previous removal at 2014-08-12 14:10 GMT (1 days, 22 hours, 38 minutes ago)
This IP is infected (or NATting for a computer that is infected) with the asprox spambot. In other words, it's participating in a botnet.
If you simply remove the listing without ensuring that the infection is removed (or the NAT secured), it will probably relist again.
3)我现在开始怀疑是内部电脑可能中了病毒,但我现在该从哪方面入手呢,?请大家指点一下
|
|