![]() |
|
#1
|
|||
|
|||
|
Hi
I'm currently using Nortion AV 2004 & Sygate firewall. In the last couple of days Sygate has detected CCAPP.exe trying to connect to "bunuel-cpe-41.nat-pool.bgd.sbb.co.yu [82.117.192.169] on port 110 (POP3)?? Its an address in Yugoslavia, Serbia I think. I've blocked it everytime its tried. Is there a trojan/backdoor that hijacks CCAPP and uses it for its own devices?? I've scanned with TDS and Norton but my system is "clean". Has anyone seen this behavior before? Thanks |
|
#2
|
||||
|
||||
|
Is the file path correct for the ccapp.exe Sygate is alerting to?
Have you checked the accounts in your e-mail client(s)? I do not think ccapp.exe would/can do this on it's own, but will proxy POP3 and SMTP traffic for applications on your system for NAV scanning purposes. Any unknown .exe's running? Regards, CrazyM
__________________
"The best thing we can do in cyberspace is exactly what we do in the real world: do our best to manage the risks." - Bruce Schneier |
|
#3
|
|||
|
|||
|
Yep the path is correct. I don't have any email clients step up, I always use web mail. I think all my running .exe are accounted for. I searched on google groups to see if anyone else had had similar problems, I founds this post...
http://groups.google.co.uk/groups?q=...gle.com&rnum=2 Scanned with all the anti-trojans, anti spyware u guys reccomened on here and NAV but its not detected and trojans. Any ideas? |
| « Previous Thread | Next Thread » |
| Thread Tools | Search this Thread |
|
|