196.215.150.100

richman

BANNED
Joined
Jan 8, 2009
Messages
321
Reaction score
312
I got this ip number from my Kapersky antivirus netwok monitoring
This ip recorder send bit every hour

196.215.150.100

Anyone can explain me , what actually this ip ?
Whois Record

inetnum: 196.212.0.0 - 196.215.255.255
netname: TIS-20061026
descr: all abuse queries must be sent to
descr:
country: ZA
admin-c: ZT12-AFRINIC
tech-c: ZT12-AFRINIC
status: ASSIGNED PA
mnt-by: AFRINIC-HM-MNT
remarks: all abuse queries must be sent to
remarks:
source: AFRINIC # Filtered
parent: 196.0.0.0 - 196.255.255.255

person: IS Hostmaster
address: The Campus, 57 Sloane Street
address: Bryanston
address: Johannesburg
address: Gauteng
address: 2021
phone: +27(11) 5750550
fax-no: +27(11) 5760550
e-mail:
org: ORG-TIS1-AFRINIC
nic-hdl: ZT12-AFRINIC
source: AFRINIC # Filtered

 
your computer is just calling home every now and then... not much of a problem, most of us depend on botnets for proxies, so your just doing your part right now :P
 
Code:
www.comodo.com
= Free firewall and anti virus 4 life... That's one of the apps I use.
 
what is botnets effect ?
Is it very dangerous ?
 
what is botnets effect ?
Is it very dangerous ?

Can be used for a lot of things, DoS attacks, spambots, click fraud, spamdexing, and of course, good ol' identity theft. Yes it can be very dangerous.
 
Yes, its very dangerous... ur computer can be used as mule and they can use ur ip to hack/card and do other bad things, also they can steal all of your information.
I think, if its a good bot, the best way to remove it is unplug network, format and install of fresh OS.
Regards.
 
kaps.gif


I formated my last windows OS, but still found IP 196.215.105.100

anyone can explain me ?
 
you problay spreaded it to other computers connected to your network do you have more in your network?
 
UDP Port 137 is Netbios Name Service...

196.215.105.100 is South Africa

I would run two or three different antivirus systems and clean all you can.

Then do a Hardware Format of your hard disk with the HD manufacturers downloadable tools. Might even do that twice. Wipe it totally clean (boot tracks, everything).

Then load the OS, and Apps from the ORIGINAL CD's

Then load clam anti-virus AND Comodo or AVG

And finally only bring over data from your backups that you can't live without. And only after you've used BOTH clam anti-virus AND Comodo or AVG to scan and make sure they're clean before bringing it over (and only if it's clean).

Yeah, I know it's a pain. But worth it if your botted.
 
I just formated it with new OS, but still get this trojan/virus

what antivirus can delete this ????
 
I just formated it with new OS, but still get this trojan/virus

what antivirus can delete this ????

Carefully and slowly follow the directions on this site:
hxxp*forums*majorgeeks*com/showthread.php?t=35407

This is a great guide for removing malware.
 
nah..its a rootkit.. i had it..

the only thing that worked fr me is installing a different version of windows

time to look at vista
 
kaps.gif


I formated my last windows OS, but still found IP 196.215.105.100

anyone can explain me ?

stop stop stop. What BS in the comments above? If you reinstall your os freshly, this is completely sufficient and you don't have to scratch your harddisk with a screwdriver, provided that you did not reinstall your favorite blackhat tool from this forums download section.

Check first, if you have only incoming connections or also outgoing. In the first case, just setup correctly your firewall. Only when you have outgoing connections to that IP you have actually really to care.

Well this is just my first assumption, but you should give here more details (other computers in your net, directly connected to the internet or via a dsl-router, etc etc).
 
How about installing some of these black hat programs in a virtualized environment and behind a firewall? Does anybody think that this would be safer?
 
Back
Top