Newbie from South Africa and like most I have to kick off my first post with a problem.
I am running a 6 PC peer to peer network at work with one person in particular who pays no attention to the dangers out there especially when it comes to e-mail attachments.
Since coming back from our Seasonal vacations our e-mail accounts are being blocked by our ISP due to a suspected mailbot with this error message:-
"Sending' reported error (0x800CCC67) : ' The server responded: 421 4.0.0 Intrusion prevention active for [22.214.171.124]'"
I have on one PC run 'Malwarebytes Anti-Malware', SuperAntispyware, ExterminateIT and Combofix' I want to add that your instructions for running Combofix were a great help as I rate myself as "mid stream computer literate."
Anyway the problem disappeared for one day and promptly returned this morning and would appreciate any help in identifying the infected PC and clearing the infection, and will the cleaning last long enough for me to clear the other machines 1 day at a time?
5 of the PCs are running 'AVG free' and 1 is running Avira Pro. (I think - bosses laptop and I don't have access at the moment)
Any help will be appreciated.
Edited by Geoff Ogden, 19 January 2012 - 12:33 AM.