DNS Servers change automatically - DNSChanger virus?
My DNS servers changes automatically away from the routers setup and into a server in the affected ranges by DNSChanger virus.
I make reference to thread https://discussions.apple.com/thread/3975653?start=0&tstart=0.
I have tried the following:
- Virus scan by ClamXav - no viruses
- Flush the DNS Cache as per suggestion in above thread
- Have run the DNSChanger Removal Tool - no infection indicated
- Renew DHCP Lease - changes back to router address, but then changes back to infected range within a minute AUTOMATICALLY
I have checked addresses on all routers / airports in my network and they seem stable with addresses outside the infected ranges.
The only thing, that seems to work is to load the open DNS servers as per the above thread, but I am concerned that using them is using a "crowded space" and would prefer the automatic allocation to be working without the computer defaulting back to the infected range. Please refer to screen dumps below
First the "clear" range:
and then the ranges that the computer changes back to within a minute from Renewing the DHCP Lease:
Any suggestions to what can be the problem and/or solutions?
Thanks in advance
Eyvind
MacBook Pro, Mac OS X (10.7.4)