long story short
i cannot connect to microsoft or other antivirus/spyware sites. all other sites are ok it seems
i visited a site that was under attack and opened a podcast and my computer locked up and after restart it would not work. pretty much just a black screen.
i replaced the hard drive and loaded the original OS, drivers, etc from the original disc's. then installed windows XP upgrade.
i am able to connect to microsoft after following these steps as previously instructed:
1. Click Start > Run.
2. In the Run box, type the following: cmd
3. Click OK.
4. Type the following and then press Enter. cd..
5. Repeat the previous step until you get to the root level, or C:\>. Note that if your root drive is not C, the letter will be different.
6. At C:\> type the following: net stop dnscache
7. Press Enter. This disables the domain blocking feature of Conficker and you should now be able to reach security Web sites.
another symptom is also to update from microsoft it is necessary to RUN "services.msc" and restart "automatic updates" and "background intelligence transfer service"
i ran microsoft security essentials program and it removed worm conficker so it said......(problem still occurs).
i ran malwarebytes and it and it found nothing (log below)
Malwarebytes' Anti-Malware 1.41
Database version: 3129
Windows 5.1.2600 Service Pack 3
11/8/2009 11:57:55 AM
mbam-log-2009-11-08 (11-57-54).txt
Scan type: Full Scan (C:\|)
Objects scanned: 128135
Time elapsed: 27 minute(s), 13 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
then I ran Windows Live OneCare Safety Scanner and Malicious Software Removal Tool.
I still have to bypass the dns and restart auto update and BITS
if i run "regredit" there in every folder there is a file named "default" with no value dat 0000 is this normal?
thanks again for any help
NW