Cannot connect to https sites after virus removal

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by det4100, Mar 2, 2009.

  1. det4100

    det4100 Private E-2

    After removing several hundred virus/malware entries and repair installs of XP, I cannot connect to any https site with either IE7 or Firefox, except while in safe mode. This is for all accounts on this machine. I've googled for an answer, but have come up dry. It is not my ISP or my router. I have already checked my Internet Options etc...I have seven other machines on this network running XP Vista and Linux without problems. I have run the suggested programs to clean the machine prior to posting, I am attaching them to this post. Any help would be appreciated. Thank you.

    det4100
     

    Attached Files:

  2. det4100

    det4100 Private E-2

    I was also going to post the Malwarebytes Anti-Malware log, but for the life of me I can't seem to find it. I did run it. Not sure if I should run it again.

    det4100
     
  3. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Your MBAM log is here:
    Code:
    C:\Documents and Settings\Kelly\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\"
    mbam-l~1.txt  Mar  2 2009         920  "mbam-log-2009-03-02 (12-26-44).txt"
    
    The only thing I am seeing is nothing that should cause your internet issues.
    You can use windows explorer to find and delete:
    c:\windows\system32\REN12.tmp
    c:\windows\system32\REN11.tmp
    c:\windows\system32\REN9.tmp
    c:\windows\system32\REN8.tmp
    c:\windows\system32\REN7.tmp
    c:\windows\TMP0001.TMP

    You also need to download and install:
    Java Runtime 6

    What exactly happens when you try to browse in normal mode?
     
  4. det4100

    det4100 Private E-2

    Thank you TimW for your reply.

    When browsing in normal mode with either IE or Firefox, I can reach any HTTP site without a problem. If I try to log into any HTTPS site, such as hotmail accounts I get the following:

    Internet Explorer cannot display the webpage

    This problem can be caused by a variety of issues, including:

    Internet connectivity has been lost.
    The website is temporarily unavailable.
    The Domain Name Server (DNS) is not reachable.
    The Domain Name Server (DNS) does not have a listing for the website's domain.
    If this is an HTTPS (secure) address, click tools, click Internet Options, click Advanced, and check to be sure the SSL and TLS protocols are enabled under the security section.


    I've tried everything I can think of to resolve this problem. I disabled the firewall, opening ports, bypassed the router, copied exactly the network settings of other XP machines on my network, etc...driving me nuts. All the other machines work fine. The only thing I can think of, is that this machine had some version of Nortons internet security on it. I ran Nortons removal tools and then searched through the registry to make sure it was uninstalled. I have had so much trouble with Nortons after it gets corrupted, I thought that maybe this could be a problem.

    I'm including the missing log file. Thanks for pointing out the location...:-o

    det4100
     

    Attached Files:

  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Use windows explorer to find and delete:
    c:\temp\https.reg

    See if that does it.
     
  6. det4100

    det4100 Private E-2

    Thanks again for the reply.

    I deleted that file. No change. I can't figure it out. I've googled my butt off for an answer. I checked for hidden proxies, checked all the internet options. disabled and then reenabled ssl, I went though MS's fix it for rebuilding winsock. I checked and rechecked the firewall settings. Shut down the firewall and bypassed my router, just to be sure my router somehow decided it didn't like this computer and blocked it. I added a second network card and tried to get to an https site with no luck. It is as if there is a block on one of the ports that allows communication to ssl sites, or some sort of proxy redirecting the requests and I can't find it. Driving me nuts. And you just know that the answer is probably going to be a simple thing that was overlooked. I really do not want to format this drive and locate all the software for this machine. I'd rather put linux on it than do another reinstall. Unfortunatly, it's not my machine, and my sister insists on having windows.

    Is there a network Diagnostic program out there that can trace this type of problem? I've looked everywhere.

    I'm game for any other suggestions. I do appreciate the help.

    det4100
     
  7. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Last edited: Mar 11, 2009

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds