Go Back   Tech Support Forum > Security Center > Virus/Trojan/Spyware Help

Broken hyperlinks takes me www. anrdoezrs. net etc

This is a discussion on Broken hyperlinks takes me www. anrdoezrs. net etc within the Virus/Trojan/Spyware Help forums, part of the Tech Support Forum category. Hi, When I click on any hyper links on webpages, that takes me to "www. anrdoezrs. net" like many other


Reply
 
Thread Tools Search this Thread
Old 02-25-2010, 08:12 AM   #1
Registered Member
 
Join Date: Dec 2008
Posts: 19
OS: windowsXP



Hi,
When I click on any hyper links on webpages, that takes me to "www. anrdoezrs. net" like many other websites. For example today I clicked on some laptop deal link in Deals2buy.com and I got the following results

Oops! This link appears to be broken.
Suggestions:
Go to www. anrdoezrs. net
Search anrdoezrs.net for click 12 6029 1 10 4281 84
Search on Google:

Go to tkqlhce. com
Search tkqlhce.com for click 12 6029 1 1069 3102
Search on Google:

Each time it take me to different websites. Please see attached logs. I am not able to run gmer.exe, as I am getting blue warning screen from Microsoft.
My computer is behaving for last 1 year. I am very frustrated with this. Please help me.


DDS (Ver_09-12-01.01) - NTFSx86
Run by Siri at 10:43:40.03 on Thu 02/25/2010
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_15
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.2550.1774 [GMT -5:00]

AV: Spyware Doctor with AntiVirus *On-access scanning enabled* (Updated) {D3C23B96-C9DC-477F-8EF1-69AF17A6EFF6}

============== Running Processes ===============

C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
svchost.exe
svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Google\Update\1.2.183.17\GoogleCrashHandler.exe
svchost.exe
C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
C:\WINDOWS\system32\FsUsbExService.Exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Spyware Doctor\pctsAuxs.exe
C:\Program Files\Spyware Doctor\pctsSvc.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\Spyware Doctor\pctsTray.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Google\Google Talk\googletalk.exe
C:\Program Files\MP4 Player\mp4Player.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\ymsgr_tray.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\WINDOWS\system32\mdm.exe
C:\Documents and Settings\Siri.GURUSIRI\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Siri.GURUSIRI\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Siri.GURUSIRI\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Siri.GURUSIRI\Local Settings\Application Data\Google\Update\1.2.183.17\GoogleCrashHandler.exe
C:\Documents and Settings\Siri.GURUSIRI\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Siri.GURUSIRI\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Siri.GURUSIRI\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Siri.GURUSIRI\Local Settings\Application Data\Google\Google Talk Plugin\googletalkplugin.exe
C:\Documents and Settings\Siri.GURUSIRI\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Siri.GURUSIRI\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Siri.GURUSIRI\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Siri.GURUSIRI\My Documents\Downloads\dds.scr

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.google.com/
uSearch Page = hxxp://www.google.com
uDefault_Search_URL = hxxp://www.google.com/ie
uSearch Bar = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search/?q=%s
mSearchAssistant = hxxp://www.google.com/ie
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: IERationalEnabler Class: {1e9fb1c4-f40b-4e10-898e-d6209b122f6b} - f:\apps\ibm\sdp\functionaltester\bin\RTXIEEnabler.dll
BHO: Skype add-on (mastermind): {22bf413b-c6d2-4d91-82a9-a0f997ba588c} - c:\program files\skype\toolbars\internet explorer\SkypeIEPlugin.dll
BHO: BHOManager Class: {474264bc-9571-47c1-85b9-780f756dc9ce} - c:\windows\system32\BHOManager.dll
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SearchHelper.dll
BHO: {7E853D72-626A-48EC-A868-BA8D5E23E045} - No File
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.5.4723.1820\swg.dll
BHO: MSN Toolbar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\program files\msn\toolbar\3.0.1125.0\msneshellx.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: MSN Toolbar: {1e61ed7c-7cb8-49d6-b9e9-ab4c880c8414} - c:\program files\msn\toolbar\3.0.1125.0\msneshellx.dll
TB: {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
TB: {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No File
TB: {472734EA-242A-422B-ADF8-83D1E48CC825} - No File
uRun: [MP4 Player] "c:\program files\mp4 player\mp4Player.exe" hmw
uRun: [Yahoo! Pager] "c:\progra~1\yahoo!\messen~1\YAHOOM~1.EXE" -quiet
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
uRun: [Google Update] "c:\documents and settings\siri.gurusiri\local settings\application data\google\update\GoogleUpdate.exe" /c
uRun: [swg] "c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe"
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Skype] "c:\program files\skype\\phone\Skype.exe" /nosplash /minimized
mRun: [TkBellExe] "c:\program files\common files\real\update_ob\realsched.exe" -osboot
mRun: [Malwarebytes Anti-Malware (reboot)] "c:\program files\malwarebytes' anti-malware\mbam.exe" /runcleanupscript
mRun: [Google Desktop Search] "c:\program files\google\google desktop search\GoogleDesktop.exe" /startup
mRun: [ISTray] "c:\program files\spyware doctor\pctsTray.exe"
mRun: [googletalk] c:\program files\google\google talk\googletalk.exe /autostart
StartupFolder: c:\docume~1\alluse~1.win\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office\OSA9.EXE
StartupFolder: c:\docume~1\alluse~1.win\startm~1\programs\startup\vpncli~1.lnk - c:\windows\installer\{14fcfe7c-ab86-428a-9d2e-bfb6f5a7aa6e}\Icon3E5562ED7.ico
mPolicies-explorer: EnableShellExecuteHooks = 1 (0x1)
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: Google Sidewiki... - c:\program files\google\google toolbar\component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {5067A26B-1337-4436-8AFE-EE169C2DA79F} - {77BF5300-1474-4EC7-9980-D32B190E9B07} - c:\program files\skype\toolbars\internet explorer\SkypeIEPlugin.dll
IE: {77BF5300-1474-4EC7-9980-D32B190E9B07} - {77BF5300-1474-4EC7-9980-D32B190E9B07} - c:\program files\skype\toolbars\internet explorer\SkypeIEPlugin.dll
Trusted Zone: aol.com\free
DPF: {01113300-3E00-11D2-8470-0060089874ED} - hxxp://pccheckup.dellfix.com/sdccommon/download/tgctlcm.cab
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://go.microsoft.com/fwlink/?linkid=39204
DPF: {3EA4FA88-E0BE-419A-A732-9B79B87A6ED0} - hxxp://dl.tvunetworks.com/TVUAx.cab
DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} - hxxp://www.eset.eu/buxus/docs/OnlineScanner.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} - hxxp://cdn2.zone.msn.com/binFramework/v10/ZIntro.cab56649.cab
DPF: {CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_10-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
Handler: HTLFP - {03B7A5D4-96B0-4316-95F8-072D326A58F1} -
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
Handler: vfsp - {E4CB5121-E242-11D4-8ED6-00010219EB22} -
Notify: igfxcui - igfxsrvc.dll
AppInit_DLLs: c:\progra~1\google\go333c~1\GOEC62~1.DLL
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: ShHook Class: {a5949e07-8536-4625-a3d0-2dd83f559990} - c:\windows\system32\ShellHook.dll
Hosts: 127.0.0.1 www.spywareinfo.com

================= FIREFOX ===================

FF - ProfilePath - c:\docume~1\siri~1.gur\applic~1\mozilla\firefox\profiles\uix1j3ta.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/webhp?complete=1&hl=en
FF - component: c:\program files\mozilla firefox\components\GoogleDesktopMozilla.dll
FF - plugin: c:\documents and settings\siri.gurusiri\application data\mozilla\firefox\profiles\uix1j3ta.default\extensions\firefox@tvunetworks.com\plugins\npTVUAx.dll
FF - plugin: c:\documents and settings\siri.gurusiri\application data\mozilla\plugins\npgoogletalk.dll
FF - plugin: c:\documents and settings\siri.gurusiri\local settings\application data\google\update\1.2.183.13\npGoogleOneClick8.dll
FF - plugin: c:\program files\google\google earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\google\google updater\2.4.1851.5542\npCIDetect14.dll
FF - plugin: c:\program files\google\update\1.2.141.5\npGoogleOneClick7.dll
FF - plugin: c:\program files\google\update\1.2.145.5\npGoogleOneClick8.dll
FF - plugin: c:\program files\google\update\1.2.183.13\npGoogleOneClick8.dll
FF - plugin: c:\program files\google\update\1.2.183.7\npGoogleOneClick8.dll
FF - plugin: c:\program files\picasa2\npPicasa2.dll
FF - plugin: c:\program files\picasa2\npPicasa3.dll
FF - plugin: c:\program files\veoh networks\veoh\plugins\noreg\NPVeohVersion.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\dotnetassistantextension\
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}

============= SERVICES / DRIVERS ===============

R0 PCTCore;PCTools KDS;c:\windows\system32\drivers\PCTCore.sys [2010-1-2 207792]
R1 VBoxDrv;VirtualBox Service;c:\windows\system32\drivers\VBoxDrv.sys [2009-3-16 100944]
R1 VBoxUSBMon;VirtualBox USB Monitor Driver;c:\windows\system32\drivers\VBoxUSBMon.sys [2009-3-16 41424]
R2 FsUsbExService;FsUsbExService;c:\windows\system32\FsUsbExService.Exe [2009-3-17 233472]
R2 paldrv;paldrv;c:\windows\system32\pal_drv.sys [2009-3-15 5536]
R2 sdAuxService;PC Tools Auxiliary Service;c:\program files\spyware doctor\pctsAuxs.exe [2010-1-2 359624]
R2 sdCoreService;PC Tools Security Service;c:\program files\spyware doctor\pctsSvc.exe [2010-1-2 1141712]
R3 FsUsbExDisk;FsUsbExDisk;c:\windows\system32\FsUsbExDisk.Sys [2009-3-17 36608]
R3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\drivers\VBoxNetAdp.sys [2009-5-2 79888]
R3 VBoxNetFlt;VBoxNetFlt Service;c:\windows\system32\drivers\VBoxNetFlt.sys [2009-3-16 87568]
S2 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2009-12-26 135664]
S3 ASPI;Advanced SCSI Programming Interface Driver;c:\windows\system32\drivers\Aspi32.sys [2008-12-23 16512]
S3 GoogleDesktopManager-110309-193829;Google Desktop Manager 5.9.911.3589;c:\program files\google\google desktop search\GoogleDesktop.exe [2010-1-2 30192]
S3 PD1030VID;Creative WebCam Pro;c:\windows\system32\drivers\p1030vid.sys [2008-6-14 167673]
S3 vsdatant;vsdatant;c:\windows\system32\vsdatant.sys [2005-1-26 280344]

=============== Created Last 30 ================

2010-02-11 03:46:11 244 ---ha-w- C:\sqmnoopt08.sqm
2010-02-11 03:46:11 232 ---ha-w- C:\sqmdata08.sqm
2010-02-03 01:45:43 0 d-----w- c:\documents and settings\siri.gurusiri\Tracing
2010-02-03 01:42:29 82696 ----a-w- c:\windows\system32\lmdimon8.dll
2010-02-03 01:42:05 0 d-----w- c:\docume~1\alluse~1.win\applic~1\Applications

==================== Find3M ====================


============= FINISH: 10:44:08.45 ===============
Attached Files
File Type: zip Attach.zip (8.5 KB, 14 views)

__________________
gpaladi is offline   Reply With Quote
Old 02-26-2010, 04:56 PM   #2
Security Team
Analyst
 
Join Date: Jan 2008
Location: Queensland, Australia
Posts: 1,479
OS: XP SP3



Hi and welcome to TSF.

I am currently reviewing your log. Please note that this is under the supervision of an expert analyst, and I will be back with a fix for your problem as soon as possible.

You may wish to subscribe to this thread to get immediate notification of replies as soon as they are posted. To do this click Thread Tools, then click Subscribe to this Thread. Make sure it is set to Instant Notification, then click Subscribe.

Please be patience with me during this time.

__________________
Vick is offline   Reply With Quote
Old 02-26-2010, 10:07 PM   #3
Security Team
Analyst
 
Join Date: Jan 2008
Location: Queensland, Australia
Posts: 1,479
OS: XP SP3



Hi gpaladi,

Thanks for your patience.
By any chance do you use hosts file?

------------------

Let's try this version of gmer. We're going to try running it in a different fashion, also.


Download GMER Rootkit Scanner from here to your desktop. It will be a randomly named executable.

* Before scanning, make sure all other running programs are closed and no other actions like a scheduled antivirus scan will occur while the scan is being performed. Do not use your computer for anything else during the scan.
* Double click the exe file.
* The program will begin to run, and perform an initial scan. If possible rootkit activity is found, you will be asked if you would like to perform a full scan. Click No.
* In any case, after the initial scan is complete, click on the Save button, and save the log file somewhere you can easily find it, such as your desktop, and attach it in reply
__________________
Vick is offline   Reply With Quote
Old 02-27-2010, 08:39 PM   #4
Registered Member
 
Join Date: Dec 2008
Posts: 19
OS: windowsXP



Hi VIck,
Still I am not able to run the exe you provided. As soon as I double click the downloaded exe I get the following error and my computer got shutdown.

"A problem has been detected and windows has been shutdown to prevent damage to your computer"
BAD_POOL_HEADER
blah..........

So I am not able to send you gmer.exe generated log files. Is there any another exe that I can run alternatively to generate diagnosis logs?
__________________
gpaladi is offline   Reply With Quote
Old 02-27-2010, 08:59 PM   #5
Security Team
Analyst
 
Join Date: Jan 2008
Location: Queensland, Australia
Posts: 1,479
OS: XP SP3


Hi gpaladi,

Please let me know if you use hosts file?

In addition to answering the query about the hosts file, please perform this:

Please delete the existing copy and download a new randomly named copy of Gmer from here and follow my instruction in post 3, except we'll run it in Safe Mode.

Restart your computer and boot into Safe Mode by hitting the F8 key repeatedly until a menu shows up (and choose Safe Mode from the list). In some systems, this may be the F5 key, so try that if F8 doesn't work. Login on your usual account.
__________________
Vick is offline   Reply With Quote
Old 02-28-2010, 12:44 PM   #6
Registered Member
 
Join Date: Dec 2008
Posts: 19
OS: windowsXP



Hello,
I am not using hosts file. But spyware removal software I have been using made lot of entries in it. Please see gmer logs and hosts file in the attached zip file.
Attached Files
File Type: zip ark.zip (178.3 KB, 13 views)
__________________
gpaladi is offline   Reply With Quote
Old 02-28-2010, 11:57 PM   #7
Security Team
Analyst
 
Join Date: Jan 2008
Location: Queensland, Australia
Posts: 1,479
OS: XP SP3



Hi gpaladi,

Click > Start > Control Panel > Add or Remove Programs and uninstall the following programs (if they exist):

MP4 Player - Refer here

Once you completed the above, delete the following folder in RED:

C:\Program Files\MP4 Player


------------------------

This is most likely not malware related.
Your hosts file is blocking your ability to click some links. It depends on where the link on the deal site is leading. There are some poor reputation sites linked to on those deal sites.

We will restore to default MS Hosts file.

Download HostsXpert.
  • Unzip HostsXpert to it's own folder.
  • Run HostsXpert.exe
  • Click "Make Writable?" in the upper left corner.
  • Click "Restore MS Hosts file" and then click OK.
  • Close HostsXpert.

Please let me know if you still having the problem described in Post 1

----------------
__________________
Vick is offline   Reply With Quote
Old 03-02-2010, 06:51 PM   #8
Registered Member
 
Join Date: Dec 2008
Posts: 19
OS: windowsXP



Thanks a lot Vick, that worked. I am able to click the links and are taking me to correct websites.
__________________
gpaladi is offline   Reply With Quote
Old 03-04-2010, 01:12 AM   #9
Security Team
Analyst
 
Join Date: Jan 2008
Location: Queensland, Australia
Posts: 1,479
OS: XP SP3



Hi gpaladi,

Your Java is out of date. Older versions have vulnerabilities that malware can use to infect your system. Please follow these steps to remove older version Java components and update.
  • Download the latest version of Java Runtime Environment (JRE) 18 and save it to your desktop.
  • Scroll down to where it says "Java SE Runtime Environment (JRE) - JRE 6 Update 18 -"
  • Click the "Download" button to the right.
  • Select the Windows platform from the dropdown menu.
  • Read the License Agreement and then check the box that says: "I agree to the Java SE Runtime Environment 6 with JavaFX License Agreement". Click on Continue.The page will refresh.
  • Click on the link to download Windows Offline Installation and save the file to your desktop.
  • Close any programs you may have running - especially your web browser.
  • Go to Start > Control Panel, double-click on Add or Remove Programs and remove all older versions of Java.
  • Check (highlight) any item with Java Runtime Environment (JRE or J2SE or Java(TM) 6) in the name.
  • Click the Remove or Change/Remove button.
  • Repeat as many times as necessary to remove each Java versions.
  • Reboot your computer once all Java components are removed.
  • Then from your desktop double-click on jre-6u18-windows-i586-p.exe to install the newest version.
  • After the install is complete, go into the Control Panel (using Classic View) and double-click the Java Icon. (looks like a coffee cup)
    • On the General tab, under Temporary Internet Files, click the Settings button.
    • Next, click on the Delete Files button
    • There are two options in the window to clear the cache - Leave BOTH Checked
      • Applications and Applets
        Trace and Log Files
    • Click OK on Delete Temporary Files Window
      Note: This deletes ALL the Downloaded Applications and Applets from the CACHE.
    • Click OK to leave the Temporary Files Window
    • Click OK to leave the Java Control Panel.

-----------------

You do not have hosts file on the system as we have reset it. This is not advisable as you may unintentional visit sites that might cause your system to infected. Hosts file will also reduces advertisement while you browse the internet. This website will be a good read if you want further understanding on hosts file.

If you would like to activate hosts file:
Double click on HostsXpert to run it.
Click "Make Writable?" in the upper left corner.
Click "Tools" in bottom left corner and then click OK.
Click " Memopad" in the upper left corner >> "Open in memopad"

Now open the hosts.txt in Post 6 that you have submitted. copy all the entries with IP number and paste it in the right pane of memopad.
Click "Memopad >> Save >>> Save Hosts - Exit Memopad
Close HostsXpert.

Now you should have entries in your hosts file.
If hosts file is blocking the site that you want to visit, start HostXpert >>>Look for the site that you want to unblock and right click and select "toggle comment". This will disable the site on your hosts file and you can visit without any issue. You can also reverse this action by following the same step above.

As per your complain, the following website were preventing you from accessing the links you wanted to visit. You can either remove it from the hosts file using memopad or use the toggle comment to disable.

Code:
127.0.0.1  www.anrdoezrs.net
127.0.0.1  www.tkqlhce.com
-----------------

Though your issue is not malware related....the following will guide you to protect your computer in future.

How Are Computers Infected?
http://www.microsoft.com/windows/ie/...rotection.mspx

How to Prevent the Online Invasion of Spyware and Adware

http://www.internetworldstats.com/articles/art053.htm


Microsoft
It is VERY important that you frequently update microsoft and internet explorer. You may find all the critical updates here. Ensure you download them to avoid possible infection in future. Keeping your OS and browser up to date will help make you less susceptible to attacks by Trojans and viruses.

Spyware Prevention
I have included some spyware preventation tips. I would strongly recommend that you spend some time to read them. It gives you a better understanding of malware and prevention.

1. How Are Computers Infected?

2. How to Prevent the Online Invasion of Spyware and Adware

Keep your antivirus program and antispyware programs updated and scan with them on a regular basis.You need an antivirus that is continually updated, a good firewall, a spyware blocker such as Spyware Blaster, and a real time spyware program such as Spyware Guard, to prevent spyware intrusions. IE-Spyad is another excellent program that places over 4000 websites and domains in the IE Restricted list, which will help prevent attempts to infect your system. All of the above have good free versions available. However, be very wary with any security software that is advertised in popups or in other ways. They are not only usually of no use, but often have malware in them.

More information and downloads are available at the following links:
Spybot - Search and Destroy
Spyware Blaster
Spyware Guard
IE-Spyad

Please respond to this thread one more time so we can mark this thread as resolved.

__________________
Vick is offline   Reply With Quote
Reply

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is on
Smilies are on
[IMG] code is on
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off


Post a Question


» Site Navigation
 > FAQ
  > 10.0.0.2


All times are GMT -7. The time now is 02:29 AM.


Copyright 2001 - 2014, Tech Support Forum

Windows 7 - Windows XP - Windows Vista - Trojan Removal - Spyware Removal - Virus Removal - Networking - Security - Top Web Hosts