Solved What would cause...

Stacman

Banned
Local time
2:37 PM
Messages
32
Me to suddenly be unable to navigate to a public site like emsisoft.com. On a clean install there's no problem, but recently I've been denied with a popup suggesting that if I'm behind a firewall, "make sure Firefox or IE is allowed to access the internet". I've changed no settings, I've thoroughly scanned for malware and viruses, and removed everything, but the problem persists.
 

My Computer

Computer Manufacturer/Model Number
Dell
OS
Windows 7 Ultimate 64-bit
Hi there!

What Firewall software are you using? Have you tried to add Firefox to exception list? Does it happen with IE or other browser?
 

My Computer

Computer Manufacturer/Model Number
Samsung NP550P5C-S02IN
OS
Windows 7 Ultimate - 64-bit | Windows 8 Pro - 64-bit
CPU
Intel® Core™ i7 Processor 3,610QM (2.30Hz, 6MB L3 Cach
Memory
8 GB
Graphics Card(s)
NVIDIA® GeForce® GT 650M 2GB Graphics, Optimus™ techno
Sound Card
SoundAlive™ JBL 3 Speakers (With sub-Woofer)
Monitor(s) Displays
39.62cm (15.6) SuperBright 300nit HD+ LED Display
Screen Resolution
1,600 x 900, Anti-Reflective
Hard Drives
1TB S-ATA II Hard Drive (5,400RPM)
Just the firewall native with Windows 7. It happens with both browsers. I haven't added Firefox to any exceptions list because it works fine for everything else.
 

My Computer

Computer Manufacturer/Model Number
Dell
OS
Windows 7 Ultimate 64-bit
I've thoroughly scanned for malware and viruses, and removed everything, but the problem persists
What did you use to scan with and what was removed?
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
Can you check the LAN Settings and make sure it's set to ""Automatically detect settings"

Tools > Internet Options > Connections > LAN Settings
 

My Computer

Computer Manufacturer/Model Number
Samsung NP550P5C-S02IN
OS
Windows 7 Ultimate - 64-bit | Windows 8 Pro - 64-bit
CPU
Intel® Core™ i7 Processor 3,610QM (2.30Hz, 6MB L3 Cach
Memory
8 GB
Graphics Card(s)
NVIDIA® GeForce® GT 650M 2GB Graphics, Optimus™ techno
Sound Card
SoundAlive™ JBL 3 Speakers (With sub-Woofer)
Monitor(s) Displays
39.62cm (15.6) SuperBright 300nit HD+ LED Display
Screen Resolution
1,600 x 900, Anti-Reflective
Hard Drives
1TB S-ATA II Hard Drive (5,400RPM)
Can you check the LAN Settings and make sure it's set to ""Automatically detect settings"

Tools > Internet Options > Connections > LAN Settings

I have, and it is.

What did you use to scan with and what was removed?

I use Emsisoft Emergency ToolKit for malware, along with Endpoint and AVG for virus.
 

My Computer

Computer Manufacturer/Model Number
Dell
OS
Windows 7 Ultimate 64-bit
Can you check the LAN Settings and make sure it's set to ""Automatically detect settings"

Tools > Internet Options > Connections > LAN Settings

I have, and it is.

What did you use to scan with and what was removed?

I use Emsisoft Emergency ToolKit for malware, along with Endpoint and AVG for virus.

Check the Host file. Go to C:\Windows\System32\Drivers\etc and see if there is any unwanted entries.
 

My Computer

Computer Manufacturer/Model Number
Samsung NP550P5C-S02IN
OS
Windows 7 Ultimate - 64-bit | Windows 8 Pro - 64-bit
CPU
Intel® Core™ i7 Processor 3,610QM (2.30Hz, 6MB L3 Cach
Memory
8 GB
Graphics Card(s)
NVIDIA® GeForce® GT 650M 2GB Graphics, Optimus™ techno
Sound Card
SoundAlive™ JBL 3 Speakers (With sub-Woofer)
Monitor(s) Displays
39.62cm (15.6) SuperBright 300nit HD+ LED Display
Screen Resolution
1,600 x 900, Anti-Reflective
Hard Drives
1TB S-ATA II Hard Drive (5,400RPM)

My Computer

Computer Manufacturer/Model Number
Samsung NP550P5C-S02IN
OS
Windows 7 Ultimate - 64-bit | Windows 8 Pro - 64-bit
CPU
Intel® Core™ i7 Processor 3,610QM (2.30Hz, 6MB L3 Cach
Memory
8 GB
Graphics Card(s)
NVIDIA® GeForce® GT 650M 2GB Graphics, Optimus™ techno
Sound Card
SoundAlive™ JBL 3 Speakers (With sub-Woofer)
Monitor(s) Displays
39.62cm (15.6) SuperBright 300nit HD+ LED Display
Screen Resolution
1,600 x 900, Anti-Reflective
Hard Drives
1TB S-ATA II Hard Drive (5,400RPM)
The Host file appeared normal. I'll have to wait until I get to my home machines to try your tool. I'm forced to use XP at the office.

It's kinda strange that I can run Firefox or Explorer in SandBoxie and there's no problem going anywhere.
 

My Computer

Computer Manufacturer/Model Number
Dell
OS
Windows 7 Ultimate 64-bit
try this: Check your proxy settings, No Proxy, restart browser
edit: or for IE, tools ==> internet options ==> advanced tab - Reset
 
Last edited:

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
HP Pavilion dv6-6c10us
OS
x64 (6.3.9600) Win8.1 Pro & soon dual boot x64 (6.1.7601) Win7_SP1 HomePrem
CPU
AMD A6-3420M APU with Radeon(tm) HD Graphics
Motherboard
Hewlett-Packard 1805
Memory
6.00 GB
Graphics Card(s)
AMD Radeon(TM) HD 6520G
Sound Card
(1) AMD High Definition Audio Device (2) IDT High Definiti
Monitor(s) Displays
HP W2072a 20" LCD (1600 x 900) @ 60 Hz
Screen Resolution
1366 x 768 x 32 bits (4294967296 colors) @ 60 Hz
Hard Drives
ST640LM0 00 HM641JI SATA Disk Device
Keyboard
Logitech k520 wireless KB
Mouse
Logitech m320 wireless mouse (bundled with KB)
Internet Speed
15/5 | 54 MB Wireless 'n'
Antivirus
Realtime: Defender or Avast | On-demand: Malwarebytes, ESET
Browser
IE 11 on Win8, IE 10 on win 7
Other Info
Media: [Gimp, Audacity, VLC] || Comm: [WEmail 2012, Skype] || Productivity: [OpenOffice,| Textpad] || Utils: [Sysinternals, cCleaner, Speccy, Defraggler]
try this: Check your proxy settings, No Proxy, restart browser
edit: or for IE, tools ==> internet options ==> advanced tab - Reset

Tried both, but nothing.

The "no load" page indicates "If your computer or network is protected by a firewall or proxy, make sure that Firefox is permitted to access the Web."
 

My Computer

Computer Manufacturer/Model Number
Dell
OS
Windows 7 Ultimate 64-bit
Ok, perhaps this found here: in an elevated Command Prompt, netsh winsock reset
I was curious, don't want to waste your time, but these seem relatively unintrusive and easy to test.

A client of mine had a virus which was removed and then I thoroughly investigated the browser and TCP configs until the change the bugger made was located. It was obvious once I checked the settings. Wish I could remember what it was, but it might not apply to your situation.
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
HP Pavilion dv6-6c10us
OS
x64 (6.3.9600) Win8.1 Pro & soon dual boot x64 (6.1.7601) Win7_SP1 HomePrem
CPU
AMD A6-3420M APU with Radeon(tm) HD Graphics
Motherboard
Hewlett-Packard 1805
Memory
6.00 GB
Graphics Card(s)
AMD Radeon(TM) HD 6520G
Sound Card
(1) AMD High Definition Audio Device (2) IDT High Definiti
Monitor(s) Displays
HP W2072a 20" LCD (1600 x 900) @ 60 Hz
Screen Resolution
1366 x 768 x 32 bits (4294967296 colors) @ 60 Hz
Hard Drives
ST640LM0 00 HM641JI SATA Disk Device
Keyboard
Logitech k520 wireless KB
Mouse
Logitech m320 wireless mouse (bundled with KB)
Internet Speed
15/5 | 54 MB Wireless 'n'
Antivirus
Realtime: Defender or Avast | On-demand: Malwarebytes, ESET
Browser
IE 11 on Win8, IE 10 on win 7
Other Info
Media: [Gimp, Audacity, VLC] || Comm: [WEmail 2012, Skype] || Productivity: [OpenOffice,| Textpad] || Utils: [Sysinternals, cCleaner, Speccy, Defraggler]
One last suggestion to try, then I'll leave it to the experts. Launch your browers with no add-ons, if that works, then you know where to look.

Ok - so long and good luck.
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
HP Pavilion dv6-6c10us
OS
x64 (6.3.9600) Win8.1 Pro & soon dual boot x64 (6.1.7601) Win7_SP1 HomePrem
CPU
AMD A6-3420M APU with Radeon(tm) HD Graphics
Motherboard
Hewlett-Packard 1805
Memory
6.00 GB
Graphics Card(s)
AMD Radeon(TM) HD 6520G
Sound Card
(1) AMD High Definition Audio Device (2) IDT High Definiti
Monitor(s) Displays
HP W2072a 20" LCD (1600 x 900) @ 60 Hz
Screen Resolution
1366 x 768 x 32 bits (4294967296 colors) @ 60 Hz
Hard Drives
ST640LM0 00 HM641JI SATA Disk Device
Keyboard
Logitech k520 wireless KB
Mouse
Logitech m320 wireless mouse (bundled with KB)
Internet Speed
15/5 | 54 MB Wireless 'n'
Antivirus
Realtime: Defender or Avast | On-demand: Malwarebytes, ESET
Browser
IE 11 on Win8, IE 10 on win 7
Other Info
Media: [Gimp, Audacity, VLC] || Comm: [WEmail 2012, Skype] || Productivity: [OpenOffice,| Textpad] || Utils: [Sysinternals, cCleaner, Speccy, Defraggler]
Ok, perhaps this found here: in an elevated Command Prompt, netsh winsock reset
I was curious, don't want to waste your time, but these seem relatively unintrusive and easy to test.

A client of mine had a virus which was removed and then I thoroughly investigated the browser and TCP configs until the change the bugger made was located. It was obvious once I checked the settings. Wish I could remember what it was, but it might not apply to your situation.

Thanks for your help, I appreciate it.

I'll give this a look, but the remaining difference between no access and my problem is that it only effects one site, and not all sites.

Thanks again!
 

My Computer

Computer Manufacturer/Model Number
Dell
OS
Windows 7 Ultimate 64-bit
I see, "my problem is that it only effects one site, and not all sites."

I misunderstood "unable to navigate to a public site like emsisoft.com" - does that mean emsisoft.com is the one site you cannot connect? Or was that just an example?
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
HP Pavilion dv6-6c10us
OS
x64 (6.3.9600) Win8.1 Pro & soon dual boot x64 (6.1.7601) Win7_SP1 HomePrem
CPU
AMD A6-3420M APU with Radeon(tm) HD Graphics
Motherboard
Hewlett-Packard 1805
Memory
6.00 GB
Graphics Card(s)
AMD Radeon(TM) HD 6520G
Sound Card
(1) AMD High Definition Audio Device (2) IDT High Definiti
Monitor(s) Displays
HP W2072a 20" LCD (1600 x 900) @ 60 Hz
Screen Resolution
1366 x 768 x 32 bits (4294967296 colors) @ 60 Hz
Hard Drives
ST640LM0 00 HM641JI SATA Disk Device
Keyboard
Logitech k520 wireless KB
Mouse
Logitech m320 wireless mouse (bundled with KB)
Internet Speed
15/5 | 54 MB Wireless 'n'
Antivirus
Realtime: Defender or Avast | On-demand: Malwarebytes, ESET
Browser
IE 11 on Win8, IE 10 on win 7
Other Info
Media: [Gimp, Audacity, VLC] || Comm: [WEmail 2012, Skype] || Productivity: [OpenOffice,| Textpad] || Utils: [Sysinternals, cCleaner, Speccy, Defraggler]
I see, "my problem is that it only effects one site, and not all sites."

I misunderstood "unable to navigate to a public site like emsisoft.com" - does that mean emsisoft.com is the one site you cannot connect? Or was that just an example?

That seems to be the one site so far...
 

My Computer

Computer Manufacturer/Model Number
Dell
OS
Windows 7 Ultimate 64-bit
Thanks,

In your original post you said: "I've thoroughly scanned for malware and viruses, and removed everything,"

Jacee asked: "What did you use to scan with and what was removed?"

You posted a reply on what you used, but not what was found and removed. If you have a log of the scan, can you post what was removed? It would be a big help to know what the scanner found and cleaned.

Have you tried another scanner? - Malwarebytes.org and Microsoft Security Essentials are both free.
Sometimes malware targets the AV on a system so as to deny definition updates. You could also try one of the other AV vendor sites - some have online scanners that might elude a bug. Symantec Security Check - Use IE, select virus detection (it's big - downloads their virus defs and ActiveX engine)

Why run another scanner? To detect malware that might have masked itself to emsisoft and AVG. I'm not suggesting running all of the above, start with MalwareBytes, then MSE (pausing AVG / emsisoft if you decide to run another scanner - though most do not interfere with MalwareBytes)

Now the tricky part. What if all report a clean system, you're still where you are when you started.

I don't know of a utility to fix this type of problem, although if you can identify what was removed, you might find a specific malware repair tool on Symantec. I'm not advocating Symantec over any other vendor, you can check other vendors for their tool offerings.

If the malware changed a system file, you could run SFC /scannow in an administrator Command Prompt. I think that a system file attack would manifest itself as a loss of opening all websites.

That's about all I can think of to try. Other members might have more and different suggestions. Please provide as much information about the problem as you can - that always helps.

Good luck.
 

My Computer

Computer type
Laptop
Computer Manufacturer/Model Number
HP Pavilion dv6-6c10us
OS
x64 (6.3.9600) Win8.1 Pro & soon dual boot x64 (6.1.7601) Win7_SP1 HomePrem
CPU
AMD A6-3420M APU with Radeon(tm) HD Graphics
Motherboard
Hewlett-Packard 1805
Memory
6.00 GB
Graphics Card(s)
AMD Radeon(TM) HD 6520G
Sound Card
(1) AMD High Definition Audio Device (2) IDT High Definiti
Monitor(s) Displays
HP W2072a 20" LCD (1600 x 900) @ 60 Hz
Screen Resolution
1366 x 768 x 32 bits (4294967296 colors) @ 60 Hz
Hard Drives
ST640LM0 00 HM641JI SATA Disk Device
Keyboard
Logitech k520 wireless KB
Mouse
Logitech m320 wireless mouse (bundled with KB)
Internet Speed
15/5 | 54 MB Wireless 'n'
Antivirus
Realtime: Defender or Avast | On-demand: Malwarebytes, ESET
Browser
IE 11 on Win8, IE 10 on win 7
Other Info
Media: [Gimp, Audacity, VLC] || Comm: [WEmail 2012, Skype] || Productivity: [OpenOffice,| Textpad] || Utils: [Sysinternals, cCleaner, Speccy, Defraggler]
Thanks again Slartybart.

I always install my OS in a separate partition away from all other data to guard against this very scenario, because there comes a time when you just have to say "screw it" since the fight is rarely worth the battle. I'm convinced that whatever caused it (on multiple machines) was some moron dropping a little something in to change something to give me a headache. So even when the malware/virus is gone, the results remain the same. So in this instance, a reformat and reinstall of the primary partition clears the problem, and a rescan of every other partition makes sure the delivery agent is still gone. I'm a firm believer that a fresh install runs better anyway, so I regularly clean, wipe, and reinstall anyway. I just prefer it to be on my schedule.

The problem is fixed, and I've started utilizing SandBoxie more to run all applications and browsers to keep the bad guys away. A fine little piece of software with enough configurations to have everything run within a sandbox automatically without ever touching the machine itself.
 

My Computer

Computer Manufacturer/Model Number
Dell
OS
Windows 7 Ultimate 64-bit
Thanks again Slartybart.

I always install my OS in a separate partition away from all other data to guard against this very scenario, because there comes a time when you just have to say "screw it" since the fight is rarely worth the battle. I'm convinced that whatever caused it (on multiple machines) was some moron dropping a little something in to change something to give me a headache. So even when the malware/virus is gone, the results remain the same. So in this instance, a reformat and reinstall of the primary partition clears the problem, and a rescan of every other partition makes sure the delivery agent is still gone. I'm a firm believer that a fresh install runs better anyway, so I regularly clean, wipe, and reinstall anyway. I just prefer it to be on my schedule.

The problem is fixed, and I've started utilizing SandBoxie more to run all applications and browsers to keep the bad guys away. A fine little piece of software with enough configurations to have everything run within a sandbox automatically without ever touching the machine itself.
Nice to see somebody else who finnally gets it :shock:Sandboxie...dont open your browser without it.;)
 

My Computer

OS
win 7 64
Back
Top