mailshell.net & s15389639.onlinehome-server.info

References to these two domains started appearing in TCPview reports about

[System Process]:0 TCP fixe.home:1739 u15294785.mailshell.net:http TIME_WAIT
[System Process]:0 TCP fixe.home:2430 s15389639.onlinehome-server.info:http TIME_WAIT

this system process wasn’t listed by Avast Internet security 5 firewall in highest security /public mode ( it only refers to “system :4”)

Is this some malware activity?
full system scans with avast 5 & Spybot search and destroy didn’t find any threats ?

Can anybody advise?

Thanks in advance

Frederic

I have no idea what that is, but to check for malware activity i would use these (Spybot is not good)

Check your computer for Malware with

Malwarebytes Antimalware http://filehippo.com/download_malwarebytes_anti_malware/
after install click UPDATE and run cuick scan, click on REMOVE SELECTED to quarantine anything found

SUPERAntiSpyware http://filehippo.com/download_superantispyware/
Are cookies really spyware and are they dangerous?
http://www.superantispyware.com/supportfaqdisplay.html?faq=26

If anything is found come back and post the scan logs here

Mailshell.net might be related to antispam protection of avast! IS itself.

Thanks for the tips about antimalware programs
No threat found after thourough scan

I suppose the two mentionned processes are legit as Igor suggests for mailshell.net

all the best

Frederic


Information about onlinehome-server.info :

http://www.robtex.com/dns/onlinehome-server.info.html#summary

http://who.is/whois/onlinehome-server.info/