IE 8 Weird
Results 1 to 15 of 15

Thread: IE 8 Weird

  1. #1
    Registered User Zonie's Avatar
    Join Date
    Apr 2001
    Location
    Phoenix, Arizona
    Posts
    1,461

    IE 8 Weird

    Background, Windows XP SP3, IE 8.0, all checks for virus, malware, spyware & etc. Clients PC is on a peer to peer network, no domain and no server. You can type in any address in the address bar with only 2 exceptions. If you try to type in google.com or bing.com it comes up with the error: http 403 forbidden. If you are in MSN or Yahoo and type in their search bar same results.

    I have checked content advisor, security settings, reset, and restore advance settings and made sure all user settings were deleted to default. Still the same. Is this one of those wipe out and star over problems?
    It's not the computers that keep having problems, it's the users!!

  2. #2
    Registered User xpuser357's Avatar
    Join Date
    Apr 2004
    Location
    Poplar Bluff, Mo.
    Posts
    1,328
    Peer to Peer like they share there files? Whew If that is the case they could have a real booger and gave it to your customer. Sometimes I found the best for me Write zeros to the drive and reload
    Last thing I remember, running for the door,
    I had to find the passage back to the place
    I was before.

  3. #3
    Super Moderator SpywareDr's Avatar
    Join Date
    Jul 2012
    Location
    Maryland, USA
    Posts
    389
    See if it can get to google.com through http://proxy.ghul.net.
    Last edited by SpywareDr; May 4th, 2013 at 10:04 AM.
    --
    Doc
    ___________Microsoft Safety & Security Center___________
    \____________________ ____.-.____ ____________________/
    \_____________\ -._)!(_.- /_____________/
    \_______\. ~\ /~ ./_______/
    \_______/

    "Men never do evil so completely and cheerfully as when they do it from religious conviction" -Blaise Pascal

  4. #4
    Registered User Zonie's Avatar
    Join Date
    Apr 2001
    Location
    Phoenix, Arizona
    Posts
    1,461
    Quote Originally Posted by xpuser357 View Post
    Peer to Peer like they share there files? Whew If that is the case they could have a real booger and gave it to your customer. Sometimes I found the best for me Write zeros to the drive and reload
    No shared files. PC is in doctors office and all of them have their widows firewall enabled, antivirus programs, and they only access an EHR program on the web. They will do searches through Google to find a specific doctor or health facility.
    It's not the computers that keep having problems, it's the users!!

  5. #5
    Registered User slgrieb's Avatar
    Join Date
    Feb 2003
    Posts
    4,103
    Have you looked at the adapter settings to verify that DNS doesn't point to some rogue server? If you open a command prompt, can you ping either google.com or 173.194.46.21? My guess would be that the machine at some point has been infected with a DNSChanger variant, or one of those bogus search engines that will also redirect your DNS settings. Removal of the malware won't reset DNS settings for the adapter.

  6. #6
    Registered User Zonie's Avatar
    Join Date
    Apr 2001
    Location
    Phoenix, Arizona
    Posts
    1,461
    Quote Originally Posted by slgrieb View Post
    Have you looked at the adapter settings to verify that DNS doesn't point to some rogue server? If you open a command prompt, can you ping either google.com or 173.194.46.21? My guess would be that the machine at some point has been infected with a DNSChanger variant, or one of those bogus search engines that will also redirect your DNS settings. Removal of the malware won't reset DNS settings for the adapter.
    Sorry took the day off. I can ping google and get reply. Had already checked settings as the pc is static IP. DNS 1 is gateway and DNS 2 is 4.2.2.2. Really weird.
    It's not the computers that keep having problems, it's the users!!

  7. #7
    Registered User slgrieb's Avatar
    Join Date
    Feb 2003
    Posts
    4,103
    Quote Originally Posted by Zonie View Post
    Sorry took the day off. I can ping google and get reply. Had already checked settings as the pc is static IP. DNS 1 is gateway and DNS 2 is 4.2.2.2. Really weird.
    I would expect that fixing those settings will solve the issue. All the same, if you haven't already run ComboFix on the machine, I'd do it. It never ceases to amaze me that it will detect and remove so much junk that no other software can find. I did a machine this weekend that both their Norton 360 and MBAM reported as clean, but ComboFix ran for over an hour, and generated a 4 page report of stuff it removed.

  8. #8
    Registered User Zonie's Avatar
    Join Date
    Apr 2001
    Location
    Phoenix, Arizona
    Posts
    1,461
    Know what you are saying, however those settings were already set. Had already run the combofix and the Emsisoft Emergency Kit in deep scan as well.
    It's not the computers that keep having problems, it's the users!!

  9. #9
    Super Moderator SpywareDr's Avatar
    Join Date
    Jul 2012
    Location
    Maryland, USA
    Posts
    389
    Can it get to google or bing via proxy.ghul.net?

    Have you run MBAR (Malwarebytes Anti-Rootkit) on it yet?
    --
    Doc
    ___________Microsoft Safety & Security Center___________
    \____________________ ____.-.____ ____________________/
    \_____________\ -._)!(_.- /_____________/
    \_______\. ~\ /~ ./_______/
    \_______/

    "Men never do evil so completely and cheerfully as when they do it from religious conviction" -Blaise Pascal

  10. #10
    Registered User Niclo Iste's Avatar
    Join Date
    Oct 2007
    Location
    Pgh, PA
    Posts
    2,051
    Sounds to me like the hosts file is corrupt/damaged. Have you tried repairing it or editing it?
    One Script to rule them all.
    One Script to find them.
    One Script to bring them all,
    and clean up after itself.

  11. #11
    Registered User Zonie's Avatar
    Join Date
    Apr 2001
    Location
    Phoenix, Arizona
    Posts
    1,461
    Quote Originally Posted by Niclo Iste View Post
    Sounds to me like the hosts file is corrupt/damaged. Have you tried repairing it or editing it?
    Had not thought about the host file. I will see if can get remote access today and check that. The office is about 30 miles away and sometimes hard for me to get out here.
    It's not the computers that keep having problems, it's the users!!

  12. #12
    Registered User slgrieb's Avatar
    Join Date
    Feb 2003
    Posts
    4,103
    Quote Originally Posted by Zonie View Post
    Know what you are saying, however those settings were already set. Had already run the combofix and the Emsisoft Emergency Kit in deep scan as well.
    The DNS setup still looks screwy. The gateway certainly isn't going to function as a DNS server, and the 4.2.2.2 address points to Level 3 Communications in Boulder Colorado, which seems like a bit of a stretch for your ISP.
    Last edited by slgrieb; May 8th, 2013 at 11:40 AM.

  13. #13
    Registered User Zonie's Avatar
    Join Date
    Apr 2001
    Location
    Phoenix, Arizona
    Posts
    1,461
    Well at this point, everything is mute. I installed Firefox and got the same error, 403 Forbidden. So now I am going to wipe this and reinstall. I bet it will work then.
    It's not the computers that keep having problems, it's the users!!

  14. #14
    Registered User slgrieb's Avatar
    Join Date
    Feb 2003
    Posts
    4,103
    Yeah, I bet this will work At some point, we all have to cut our losses and get back to basics.

  15. #15
    Registered User nunob's Avatar
    Join Date
    Oct 2002
    Location
    Washington
    Posts
    597
    Can't never did anything except whine about what he couldn't do.
    Do, or do not. There is no try.


    http://www.northernaurora.com/page/index.html
    http://www.northernaurora.com/page/chat.html Free Chat

Similar Threads

  1. Weird
    By Morticia Addams in forum Tech Lounge & Tales
    Replies: 9
    Last Post: March 1st, 2002, 11:36 AM
  2. Weird????
    By paul.rowling in forum Tech-To-Tech
    Replies: 5
    Last Post: February 15th, 2002, 02:03 PM
  3. [RESOLVED] @@HOW WEIRD IS THIS@@???
    By sesquim in forum Tech Lounge & Tales
    Replies: 9
    Last Post: September 27th, 2001, 09:10 AM
  4. weird!!!
    By C0NF0RTY in forum Video Adapter/Monitor Drivers
    Replies: 11
    Last Post: August 31st, 2001, 03:49 PM
  5. Your weird name is...
    By JungleMan1 in forum Tech Lounge & Tales
    Replies: 45
    Last Post: July 27th, 2001, 01:26 PM

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •