Can't Access Microsoft.Com

Discussion in 'Malware Help (A Specialist Will Reply)' started by neilungerleider, Jun 27, 2005.

  1. neilungerleider

    neilungerleider Private E-2

    Do you have any experience with a virus or spyware that only blocks access to Microsoft.com (no other web sites).

    Here are the symptoms of the problem:

    1. I can access all web sites with the exception of microsoft.com
    2. When I ping 207.46.198.30 or 207.46.197.101, the requests time out.
    3. However, when I ping microsoft.com, it pings the local host: 127.0.0.1

    I have run both the Microsoft Anti-Spyware and Ad-Aware programs, as well as the Trend anti-Virus program and the problem persists.

    This virus/spyware also prevents the System Restore program from working.

    Thanks.
     
  2. Kenshin

    Kenshin Private E-2

    hmmmm, what were u doing last before you got the error?
     
  3. neilungerleider

    neilungerleider Private E-2

    I don't know. I didn't realize I had the problem until my Media Center could not access microsoft.com for program guide updates.
     
  4. Kenshin

    Kenshin Private E-2

    Ok some ideas which come to mind, as a last resort you could format. But we'll try steer clear of that first. But the next step could you please specify what OS ur using?
     
  5. neilungerleider

    neilungerleider Private E-2

    Thanks, but I have now solved the problem. The Lien Van de Kelder virus had modified the hosts file. It's a clever virus in that unless you open the hosts file full screen, you don't see the changes it made.

    Here's what it did (Scroll way down to see what is not immediately obvious when you look at it.)

    # Copyright (c) 1993-1999 Microsoft Corp.
    #
    # This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
    #
    # This file contains the mappings of IP addresses to host names. Each
    # entry should be kept on an individual line. The IP address should
    # be placed in the first column followed by the corresponding host name.
    # The IP address and the host name should be separated by at least one
    # space.
    #
    # Additionally, comments (such as these) may be inserted on individual
    # lines or following the machine name denoted by a '#' symbol.
    #
    # For example:
    #
    # 102.54.94.97 rhino.acme.com # source server
    # 38.25.63.10 x.acme.com # x client host

    127.0.0.1 localhost


















    127.0.0.1 www.symantec.com
    127.0.0.1 securityresponse.symantec.com
    127.0.0.1 symantec.com
    127.0.0.1 www.sophos.com
    127.0.0.1 sophos.com
    127.0.0.1 www.mcafee.com
    127.0.0.1 mcafee.com
    127.0.0.1 liveupdate.symantecliveupdate.com
    127.0.0.1 www.viruslist.com
    127.0.0.1 viruslist.com
    127.0.0.1 viruslist.com
    127.0.0.1 f-secure.com
    127.0.0.1 www.f-secure.com
    127.0.0.1 kaspersky.com
    127.0.0.1 kaspersky-labs.com
    127.0.0.1 www.avp.com
    127.0.0.1 www.kaspersky.com
    127.0.0.1 avp.com
    127.0.0.1 www.networkassociates.com
    127.0.0.1 networkassociates.com
    127.0.0.1 www.ca.com
    127.0.0.1 ca.com
    127.0.0.1 mast.mcafee.com
    127.0.0.1 my-etrust.com
    127.0.0.1 www.my-etrust.com
    127.0.0.1 download.mcafee.com
    127.0.0.1 dispatch.mcafee.com
    127.0.0.1 secure.nai.com
    127.0.0.1 nai.com
    127.0.0.1 www.nai.com
    127.0.0.1 update.symantec.com
    127.0.0.1 updates.symantec.com
    127.0.0.1 us.mcafee.com
    127.0.0.1 liveupdate.symantec.com
    127.0.0.1 customer.symantec.com
    127.0.0.1 rads.mcafee.com
    127.0.0.1 trendmicro.com
    127.0.0.1 www.trendmicro.com
    127.0.0.1 www.grisoft.com
    127.0.0.1 www.microsoft.com
    127.0.0.1 microsoft.com
    127.0.0.1 www.msn.com
    127.0.0.1 www.virustotal.com
    127.0.0.1 virustotal.com
    127.0.0.1 www.oxyd.fr
    127.0.0.1 oxyd.fr
    127.0.0.1 www.t35.com
    127.0.0.1 t35.com
    127.0.0.1 www.t35.net
    127.0.0.1 t35.net
     
  6. Kenshin

    Kenshin Private E-2

    lol, oh that's crazy... Well good to see you got it . ^_^
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds