Author Topic: Fake malware detected on my VPS  (Read 1405 times)

0 Members and 1 Guest are viewing this topic.

Offline feodosij

  • Newbie
  • *
  • Posts: 1
Fake malware detected on my VPS
« on: August 06, 2012, 08:02:37 PM »
Sorry for my poor english.

I have bought a VPS on this IP adress, and avast detect it as malware: [suspicious]http://130.0.235.48/[/suspicious]
How to delete this ip from avast black list?

Site is totally clean and never been earlier in use... Google haven't any results.
« Last Edit: August 06, 2012, 08:04:51 PM by feodosij »

Offline polonus

  • Avast √úberevangelist
  • Probably Bot
  • *****
  • Posts: 32448
  • malware fighter
Re: Fake malware detected on my VPS
« Reply #1 on: August 06, 2012, 09:36:27 PM »
Hi feodosji,

With browser and bots I see 1 user agent found: http://www.botsvsbrowsers.com/ip/130.0.235.?/index.html
There are only 5 domains being blacklisted from your AS, AS Name: ITLAS ITL Company
IPs allocated: 18176
Blacklisted URLs: 5
0 misbehaving complaints  about IP 130.0.235.48
See: http://lexdos.com//130.0.235.48/ & http://lexdos.com/whois/130.0.235.48/
But Sakura exploit alerts for that AS, ET RBN Known Russian Business Network IP alerts as well,
lately active in London Olympics scams,

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!