Can't access a website! What is a Gateway GEO-IP/BOTNET Alert?

This has never happened with me before. I was browsing a few websites using Safari, and decided to check a NGO website. When I first accessed it, everything was fine. For some reason, I accidentally closed the tab I had the website opened, and then tried to access it again. That’s when I got this message:


Gateway GEO-IP/BOTNET Alert

This request is blocked by the SonicWALL Gateway Geo IP Service. Country Name:United Kingdom Initiator IP:XXX.XX.XX.XX


I couldn’t figure out what was going on right away, and any website that says my access is being blocked and shows my IP up on the screen scares the **** out of me!


So I looked around the web and found this:


Geo-IP Filtering allows the administrator to block connections coming to or from a geographic location. Botnet Command & Control Filtering allows the administrator to block communications to suspected command and control IPs based on the reputation database built by the Sonic GRID research network.


So:


- If I first got to access the website without problems, then I don't believe my country is part of a geographic location they are trying to prevent access from.


- I'm really concerned my MacBook may be infected with some sort of virus and it's being considered dangerous by those Geo-IP/Botnet filtering services. Could my computer being used as part of a botnet without my knowledge?



Is there anyone in the community who can explain what’s really happening or tell me if my MB might have some sort of virus in it?



I'm so scared and paranoid! I have iAntiVirus installed and it has never caught anything. I have also used Karspersky for a while but deleted it after I ran out of the trial period. No virus or anything has ever been caught on my MacBook. I'm also afraid my computer might have been hacked? That'd be surprising to me considering that I have good internet surfing habits and never put myself at risk.


Please... can someone enlighten me about what's happening?

MacBook Pro, Mac OS X (10.6.8)

Posted on Jan 13, 2013 9:01 PM

Reply
2 replies

Jan 14, 2013 10:17 AM in response to CassHeger

Most likely, what happened is that you have a dynamic IP address, and it changed to one that had previously been used by a PC that was infected with malware and was being used by a botnet to attack websites. That got the address onto a blacklist shared among firewall users.


You may be able to clear the condition, at least temporarily, by renewing the DHCP lease in your router, or by restarting the router. If you get the same address, contact your ISP.

Jan 14, 2013 2:20 AM in response to CassHeger

Hello:


Lets st art at the beginning.


There are NO documented viruses that affect a Mac running OS X - none (there are instances of Malware).


Gateway GEO-IP/BOTNET Alert


This is a Youtube video that explains what you have (I assume you installed it somehow) on your computer:


http://www.youtube.com/watch?v=JwRi2me2hSk


For openers, I would uninstall any A/V software you have put on your system. It is certainly possible that that junk has put some other stuff on your computer.


I'm also afraid my computer might have been hacked?

Highly unlikely.


Barry

This thread has been closed by the system or the community team. You may vote for any posts you find helpful, or search the Community for additional answers.

Can't access a website! What is a Gateway GEO-IP/BOTNET Alert?

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.