Results 1 to 5 of 5

Thread: Browsers Cannot Access Any Website on Vista

  1. #1
    Senior Member wiskic10_4's Avatar
    Join Date
    Jan 2004
    Location
    Corpus Christi, TX
    Posts
    254

    Browsers Cannot Access Any Website on Vista

    Hey AO,

    Oh man... what an evening...

    I've just spent 4 hours trying to get the browsers on a Vista machine to access the Internet - to no avail. I finally had the client back up her data and left her to do an HP System Recovery. (that's how I roll - - I'm going back tomorrow to check up)

    Here's the deal - she had previously had some malware or a virus that had removed her Norton System Security icon and was causing browser redirects. She managed to get rid of it using Spybot S&D and then Malwarebyte's. But days later she was unable to access the web. She has another computer on the network that has no problems.

    Here are the things I tried:

    Ran rkill, then Malwarebytes' Antimalware in Safe Mode with Networking which found nothing. Then I ran HijackThis and removed a couple of leftover malicious looking entries that had (file missing). Then I ran combofix - it took about 15 minutes, and it removed some things - I looked at the log, and it looked good to me.

    I was still unable to access the web in Safe Mode with Networking or in Normal Mode. However, I had a router-assigned IP address, I could ping google.com, and my Malwarebyte's was able to download updates. It was also able to get Windows updates and she could check her email using Outlook. I ran SUPERAntispyware to see if Malwarebytes had missed anything, but it came back clean.

    So I installed a new browser (Opera) - same results.

    Then I uninstalled everything from Norton/Symantec (which took some work - I finally had to delete some registry entries that would allow me to delete the folder - the uninstaller would die at the last second - because it couldn't access the internet. )

    I went to her network adapter properties, and uninstalled/reinstalled all of the connection items. No difference.

    I downloaded and ran several fixes for winsock, lps, etc. And I entered the command prompt and did netsh winsock reset and several other commands I don't recollect ATM.

    I checked the hosts file and related files. Nothing.

    I reinstalled her wireless adapter. I tried a new wireless adapter, and I tried resetting the router. Nothing.

    I ran CCleaner, disabled *everything* in startup via msconfig except Microsoft processes.

    After four hours, I had to give in and go for the reinstall (what happened to my 45 minute rule!? )

    Can any of you gurus think of something else I could have or should have tried?
    Last edited by wiskic10_4; April 4th, 2010 at 06:58 AM.
    My Corner of the Intarwebz: Jeremy Dean Online

  2. #2
    HYBR|D
    Guest
    The redirecting sounds familiar to a certain malware that would create in the root directory of any drive or removable drive a folder called resycled

    it would appear as

    ./resycled
    inside there would be
    ./resycled/autorun.ini

    if you deleted it would respwawn upon reboot you had to go into the command prompt and change it's attrib settings then use the search feature to search for the files/folders and delete 'em that way.

    also using combo fix afterwards would delete the remainder bits left around the system.

  3. #3
    I would imagine that installing Opera would have debunked this theory, but I have seen various malware add a registry entry that sets the proxy server of the computer to 127.0.0.1 and break internet connectivity. Just a thought.

  4. #4
    Senior Member wiskic10_4's Avatar
    Join Date
    Jan 2004
    Location
    Corpus Christi, TX
    Posts
    254
    I know it had to have been something like that. But I completely uninstalled Firefox, then ran CCleaner to clean up any entries that might remain for the browser's configuration (and there were some). Then I rebooted and reinstalled Firefox, and still no dice. So that's when I installed Opera, but again, no intrawebz... so hell if I know...

    I went back to finish the job yesterday, and the client was just tickled to death with her fresh reinstall, so I guess the problem is technically solved - she even gave me $20 just for driving over there on top of the $249 she's already had to pay to the company I'm contracting through (of which I get $100). I just wish that I could have found what the deal was.

    Then again, a fresh reinstall is beneficial, since you clean out whatever crap the malware and other programs have left in the registry that CCleaner or similar programs aren't picking up on. The computer was running like a champ! So, mission accomplished I guess...

    Thanks for the replies everyone.
    My Corner of the Intarwebz: Jeremy Dean Online

  5. #5
    HYBR|D
    Guest
    Hey hey.

    here's more detail about what i was trying to explain, i am curious if it was similar?

    http://www.antionline.com/showpost.p...90&postcount=5

    from the search string ./ resycled

    http://www.antionline.com/search.php?searchid=374824

Similar Threads

  1. Vista - Arrogance & Stupidity
    By acidtone in forum AntiOnline's General Chit Chat
    Replies: 21
    Last Post: March 26th, 2007, 04:33 PM
  2. Cracking Windows Vista Beta 2 Local Passwords (SAM and SYSKEY)
    By Irongeek in forum The Security Tutorials Forum
    Replies: 2
    Last Post: September 12th, 2006, 06:17 AM
  3. OS Security Features/Terms
    By catch in forum The Security Tutorials Forum
    Replies: 0
    Last Post: March 31st, 2005, 07:14 AM
  4. Basic Unix security tutorial
    By \/IP3R in forum AntiOnline's General Chit Chat
    Replies: 16
    Last Post: March 7th, 2005, 10:25 PM
  5. ******Bypass Web Censorship******
    By th3spid3r in forum AntiOnline's General Chit Chat
    Replies: 8
    Last Post: October 26th, 2003, 12:17 PM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •