Link to home
Start Free TrialLog in
Avatar of Jason Yu
Jason YuFlag for United States of America

asked on

IE and firefox cannot work but chrome can work after reinstall

I got a very rare and hard issue. I have three browsers installed on my computer, chrome, IE and firefox. Several days ago, after I maintained my application list, I uninstalled some vpn software or other. All my three browsers don't work. Then I uninstall chrome and IE 11, reinstalled them. after reinstall, chrome can work well, but IE and firefox doesn't work. IE gave error 'cannot open serach page' Firefox gave error "cannot open the page".

another thing I noticed is my malwarebyte cannot update since then.

Please help.
Avatar of Jason Yu
Jason Yu
Flag of United States of America image

ASKER

I also noticed anti-virus software cannot be updated online. Formerly, it was working fine.
SOLUTION
Avatar of helpfinder
helpfinder
Flag of Slovakia image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Re Helpfinder:


I checked the place, it doesn't have proxy set up.

Formerly, IE shows "can't find the search page", after I cleaned registry, it shows "page can't find" I will provide copy screen of the result after I come back home. thanks.
On IE, it shows "This page can't be displayed"

On Firefox, it shows "server not found"


For proxy settings of both IE and Firefox, do I need use "auto-detect proxy settings for this network" or not using proxy at all (tick off this option by my understanding), please advise.
IE-start-status.png
IE-error.png
dns-server-is-working.png
Proxy settings picture in both Firefox and IE.
IE-proxy-settings.png
firefox-proxy-setting.png
I also noticed my malwarebytes can't connect to the update server now even after I reinstalled it.

It looks like the error locates in Operation System level as far as my understanding.
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
I will try to create another user account and test it tonight.

I remember I was able to do "nslookup" from the console and was able to ping the public ip of google.com. However, when I input the public ip into IE, it still didn't work. I will double check it tonight when I go back home.
I created another user account, but it's still not working after the login.

the error is different this time.
IE-error.png
I got it resolved. it's a malware called "FunAcce". I followed the following procedure to remove it.


http://malwaretips.com/blogs/remove-funacce-virus/

Here is the log from the scan:

 AdwCleaner v4.201 - Logfile created 14/04/2015 at 19:00:38
# Updated 08/04/2015 by Xplode
# Database : 2015-04-08.1 [Local]
# Operating system : Windows 7 Ultimate Service Pack 1 (x64)
# Username : test - JASON-PC
# Running from : C:\Users\test\Downloads\adwcleaner_4.201.exe
# Option : Cleaning

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Ask
Folder Deleted : C:\ProgramData\baidu
Folder Deleted : C:\Program Files (x86)\DAEMON Tools Toolbar
Folder Deleted : C:\Program Files (x86)\Funshion Online
Folder Deleted : C:\Users\jason\AppData\Local\iLivid
Folder Deleted : C:\Users\jason\AppData\LocalLow\baidu
Folder Deleted : C:\Users\jason\AppData\Roaming\baidu
File Deleted : C:\Users\jason\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\iLivid.lnk
File Deleted : C:\Users\jason\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iLivid.lnk

***** [ Scheduled tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\DTToolbar.ToolBandObj
Key Deleted : HKLM\SOFTWARE\Classes\DTToolbar.ToolBandObj.1
Key Deleted : HKLM\SOFTWARE\Classes\iLivid.torrent
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Key Deleted : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@qq.com/TXSSO
Key Deleted : HKLM\SOFTWARE\Classes\AppID\DownloadProxy.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{51BEE30D-EEC8-4BA3-930B-298B8E759EB1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{70DE12EA-79F4-46BC-9812-86DB50A2FD64}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{6B3732AA-F6D4-4F16-9E22-49EDC52C9514}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{3E288F79-03E4-4983-A48E-0D879B51FF19}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4ADBABBD-E1CA-4F11-BD01-73B0B6E4B5BA}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{32099AAC-C132-4136-9E9A-4E364A424E17}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4ADBABBD-E1CA-4F11-BD01-73B0B6E4B5BA}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{32099AAC-C132-4136-9E9A-4E364A424E17}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{E7270EC6-0113-4A78-B610-E501D0A9E48E}
Value Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Key Deleted : HKLM\SOFTWARE\dt soft\daemon tools toolbar
Key Deleted : HKLM\SOFTWARE\Freeze.com
Key Deleted : HKLM\SOFTWARE\PIP
Key Deleted : HKLM\SOFTWARE\Baidu
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\daemon tools toolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ilivid

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17689


-\\ Google Chrome v41.0.2272.118

[C:\Users\jason\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.daemon-search.com/search?q={searchTerms}
[C:\Users\jason\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://astromenda.com/results.php?f=4&q={searchTerms}&a=ast_wnzp01_14_39_ie&cd=2XzuyEtN2Y1L1QzuyDyEyEtByEzy0F0Azz0A0AtDtA0F0AtDtN0D0Tzu0SzyzyyDtN1L2XzutAtFtBtFtCtFyDtN1L1CzutCyEtBzytDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2SyEtDtA0ByDyCzy0AtG0C0DyDtDtGtB0C0F0DtGtCzy0FyEtGyD0D0CyDzz0C0Bzz0B0EyCyD2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyC0F0CyDtAyBtD0BtGyDyD0DtCtGyEtDyE0DtGzy0CzztCtG0D0A0CtD0A0ByEtBzz0E0DtA2Q&cr=922697507&ir=
[C:\Users\jason\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3324774&octid=EB_ORIGINAL_CTID&ISID=M8E5014E1-4D56-43E5-9C3C-A4D56E3D0E9B&SearchSource=58&CUI=&UM=6&UP=SP0E60604D-DCD0-4558-9A7C-4977B25B1A93&q={searchTerms}&SSPV=
[C:\Users\jason\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
[C:\Users\jason\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.aol.com/aol/search?q={searchTerms}
[C:\Users\jason\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://https://www.experts-exchange.com/searchResults.jsp?searchType=ALL&searchTerms={searchTerms}&searchSubmit=
[C:\Users\jason\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Deleted [Homepage] : hxxp://www.trovi.com/?gd=&ctid=CT3324774&octid=EB_ORIGINAL_CTID&ISID=M8E5014E1-4D56-43E5-9C3C-A4D56E3D0E9B&SearchSource=55&CUI=&UM=6&UP=SP0E60604D-DCD0-4558-9A7C-4977B25B1A93&SSPV=
[C:\Users\jason\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Deleted [Startup_URLs] : hxxp://www.trovi.com/?gd=&ctid=CT3324774&octid=EB_ORIGINAL_CTID&ISID=M8E5014E1-4D56-43E5-9C3C-A4D56E3D0E9B&SearchSource=55&CUI=&UM=6&UP=SP0E60604D-DCD0-4558-9A7C-4977B25B1A93&SSPV=

*************************

AdwCleaner[R0].txt - [5399 bytes] - [14/04/2015 18:59:07]
AdwCleaner[S0].txt - [5400 bytes] - [14/04/2015 19:00:38]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [5459  bytes] ##########
this virus is disgusting. it keep activing itself.
virus1.png
virus2.png
virus3.png
ASKER CERTIFIED SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
That's really a bad news, but I have to take it.