Can only surf in safe mode. Both IE and Firefox

Discussion in 'Malware Help - MG (A Specialist Will Reply)' started by Old Salt, Jan 12, 2009.

  1. Old Salt

    Old Salt Private E-2

    I have been going crazy on this one.
    I have a HP pavillion 1023c with XP Home. I was on the net and both Firefox 3.0. 5 and IE6 were surfing fine. I suddenly lost access with Firefox but could still access with IE and Outlook Express.
    I could still get on in windows safe mode with both but not Firefox safe mode.
    Then I suddenly lost access with IE as well and finally Outlook Express.
    I can ping the net just fine and network diagnostics says everything is fine and the connections in network connections say they are connected at 100mb.
    I have tried repairing the connections to no effect. I scanned with everything except combofix as I need to do a backup first. AVG disd fine a variant of Baegle worm and removed it as well as some smaller malware with spybot.
    Trend and symantec online scans were clean but of course now I can't even do online scans.
    In safe mode however I can get on. I have tried to uninstall and reinstall both the NIC and Firefox to no avail. I turned on the guest account and same same.
    !!! Help.

    I will run SFC next. PS I tried both netsh commands to reset winsocks etc and also no go.
    I really don't want to have to do a system recovery/reinstall as this is a book keeping computer with no good backup.

    PS I have the firewall disabled and can find no ther firewalls but something is blocking it! When I type a known good ip in the address bar of either browser I get nowhere yet the tool network diagnostics sasys everything is just fine and the built in internet diagnostics in IE says it can not contact http 80 https 443 or ftp 21 that the firewall is blocking it though the firewall is disabled and then replaced with PC tools firewall and that is now disabled.
    I finally ran Combofix and I got IE back up for about ten minutes and then it is off again.

    What the?

    Only in windows safe mode can I use both browsers no problem.
     
  2. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member

    Please follow the instructions in the READ & RUN ME FIRST link given futher down and attach the requested logs when you finish these instructions.
    • If you have problems where no tools seem to run, please try following the steps given in the below and then continue on no matter what you find. You only need to try the TDSSserv steps if having problems getting scans in the Read & Run Me First.
    • If something does not run, write down the info to explain to us later but keep on going.
    • Do not assume that because one step does not work that they all will not.
    READ & RUN ME FIRST. Malware Removal Guide


    Helpful Notes:


    1. If you run into problems trying to run the READ & RUN ME or any of the scans in normal boot mode, you can run the steps in safe boot mode but make sure you tell us what you did later when you post logs. See the below if you do not know how to boot in safe mode:
    2. If you have problems downloading on the problem PC, download the tools and the manual updates for SUPERAntiSpyware, Malwarebytes and Spybot ( links are given in the READ & RUN ME) onto another PC and then burn to a CD. Then copy them to the problem PC. You will have to skip getting updates if (and only if) your internet connection does not work. Yes you could use a flash drive too but flash drives are writeable and infections can spread to them.
    3. To avoid additional delay in getting a response, it is strongly advised that after completing the READ & RUN ME you also read this sticky:
    Any additional post is a bump which will add more delay. Once you attach the logs, your thread will be in the work queue and as stated our system works the oldest threads FIRST.
     
  3. Old Salt

    Old Salt Private E-2

    I do thank you for all of the help and didn't post the logs as they were all clean.
    I just had to do it so I backed up and reformatted.
    The machine runs great now so my lesson is learn when to give in and say enough. I don't often but this was weird.
    Thanks again.

    OS
     
  4. chaslang

    chaslang MajorGeeks Admin - Master Malware Expert Staff Member


MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds