Jump to content

Search the Community

Showing results for tags 'dns'.



More search options

  • Search By Tags

    Type tags separated by commas.
  • Search By Author

Content Type


Forums

  • Announcements
    • Malwarebytes News
    • Beta Testing Program
  • Malware Removal Help
    • Windows Malware Removal Help & Support
    • Mac Malware Removal Help & Support
    • Mobile Malware Removal Help & Support
    • Malware Removal Self-Help Guides
  • Malwarebytes for Home Support
    • Malwarebytes 3 Support Forum
    • Malwarebytes for Mac Support Forum
    • Malwarebytes for Android Support Forum
    • Malwarebytes for iOS Support
    • Malwarebytes Browser Guard
    • False Positives
    • Comments and Suggestions
  • Malwarebytes for Business Support
    • Malwarebytes Endpoint Protection
    • Malwarebytes Incident Response (includes Breach Remediation)
    • Malwarebytes Endpoint Security
    • Malwarebytes Business Products Comments and Suggestions
  • Malwarebytes Tools and Other Products
    • Malwarebytes AdwCleaner
    • Malwarebytes Junkware Removal Tool Support
    • Malwarebytes Anti-Rootkit BETA Support
    • Malwarebytes Techbench USB (Legacy)
    • Malwarebytes Secure Backup discontinued
    • Other Tools
    • Malwarebytes Tools Comments and Suggestions
  • General Computer Help and Security Updates
    • BSOD, Crashes, Kernel Debugging
    • General Windows PC Help
  • Research Center
    • Newest Rogue-Ransomware Threats
    • Newest Malware Threats
    • Newest Mobile Threats
    • Newest IP or URL Threats
    • Newest Mac Threats
    • Report Scam Phone Numbers
  • General
    • General Chat
    • Forums Announcements & Feedback

Find results in...

Find results that contain...


Date Created

  • Start

    End


Last Updated

  • Start

    End


Filter by number of...

Joined

  • Start

    End


Group


AIM


MSN


Website URL


ICQ


Yahoo


Jabber


Location


Interests

Found 7 results

  1. Hi everyone, a few days ago I ran an ipconfig and noticed I had a DNS prefix: utopia.net. After a few more scans, I noticed that all my traffic was redirected through that site. I tried running Malwarebytes, but it wouldn't open. After running adwcleaner, I could run it, but it didn't find anything. ipconfig still reported that utopia.net redirection was still there. I scanned the registry and manually deleted all entries containing this name, I edited the DNS registry entry to point to my DNS and locked the entry to prevent it from being modified. I did a flushdns and ipconfig reported that the redirection was finally gone. I added rules in my firewall to prevent any access to the site or any of the IPs I found associated to it. Now, after a week or so, I find again that this DNS prefix has come back! Again I ran MB, but it doesn't find anything. I'm not cleaning the registry by hand again, as it proved to be only a temporary solution. I'm attaching FRST's and mbam's reports. Thank you! MB Report.txt Shortcut.txt Addition.txt FRST.txt
  2. I installed Malwarebytes 3.3.1.2183 on our Server 2008 R2 Domain Controller / Exchange Server. "Website Blocking" breaks all functions on the Domain Controller that require internet access, including the Exchange Server, Malewarebytes Licensing and Malewarebytes Updates. Microsoft Domain Controllers use their own internal DNS server for on-board applications with the internal DNS server handling those DNS requests for internet web sites. This would be problem for all Microsoft Domain Controllers with Malwarebytes 3 so I am hoping there is a well-known solution. One work-around, is to add an external DNS server address to the Domain Controller's network adaptor, but that is not a recommended configuration for a Domain Controller. The domain controller is supposed to use its own DNS server which forwards DNS requests to a public DNS server for internal clients including itself.
  3. Hello all, I am trialing a VPN solution for my workplace. We are using the in built CISCO Meraki VPN Client Server to setup and maintain the VPN. The main goal of the VPN is to allow sales and technical staff access to network mapped resources back at HQ, and to allow the technicians to remotely enter customers sites. We setup all sites so that only our HQ IP address can access them remotely for security purposes. One of the key requirements of this VPN is to have FQDN (Fully Qualified Domain Name) resolve correctly both onsite and offsite of HQ. Onto the issue at hand. On clients not running Malwarebytes, I can successfully connect to the VPN, ping network resources by both their IP and FQDN, and map network drives. On my test laptop running Windows 10 and Malwarebytes 3, I cannot ping FQDN and as a result cannot map network drives. I can ping network resources via their IP, however this is not ideal due to possible IP changes in the near future then requiring that all client PC's have their network mappings updated. After some troubleshooting I was able to narrow the issue down to Malwarebytes by first disabling it and been able to successfully ping FQDN, and then further narrowed down to Web Protection by following the same process. I have tried adding an exclusion for the external IP of the VPN server but this has not helped. Details of the type of VPN used are below: VPN Server: Cisco Meraki Firewall Type: IPsec2 / Pre-shared Key VPN Server using onsite nameserver as DNS. We are currently investigating antivirus solutions to role out to our whole team and unfortunately this is painting a black spot on Malwarebytes as been the choosen solution. I have used Malwarebytes for years and hold it in high regard, hopefully this can be resolved with the communities help Thanks, Lord_LolzWorth
  4. Hi, I installed Malwarebyte 3.4.5 Premium, all work witout problem until I connect with VPN (ex. my office's vpn). After I enabled vpn connection after some time, my system stop dns name resolution; not all domains and every time blocked sites are different. (Ex. some time google.com, some time other sites) VPN is a PPTP VPN and I connect using Windows 10 with windows build-in client. Just for example : Before VPN connection: C: \ Users \ fabia> nslookup flapsystem.monday.com Server: afdcprd001.af-group.private Address: 172.20.0.200 Response from a non-authoritative server: Name: flapsystem.monday.com Addresses: 2400: cb00: 2048: 1 :: 6819: 4061 2400: cb00: 2048: 1 :: 6819: 3f61 104.25.63.97 104.25.64.97 After establishing the VPN connection: C: \ Users \ fabia> nslookup flapsystem.monday.com Server: afdcprd001.af-group.private Address: 172.20.0.200 DNS request timed out. timeout was 2 seconds. DNS request timed out. timeout was 2 seconds. DNS request timed out. timeout was 2 seconds. If I disable Malwarebyte real time web protection all work again. If I enable again real time web protection the problem come back again after some moment. Can someone help me? Thank a lot. Fabiano
  5. Greetings. I have inherited an installation of MWB Management Console/Server, v. 1.6.0.2816. I'm currently making preparations to upgrade to v. 1.8, but there's a specific issue I'm hoping to address that does not appear to be mentioned in the documentation: client IP for our end users is acquired using DNS, and since some of our endpoints are laptops that travel off-campus and other endpoints are machines that will occasionally be powered off for several days at a time, I find I am spending a lot of time curating the client database to deal with stale IPs and duplicate user endpoints. My question, therefore, is: does the Management Console offer a means of acquiring IP through DHCP instead, and if not, does MWB offer a different product with that functionality that I should investigate instead? Yours in gratitude for your time and expertise, -Kyle
  6. Have an odd situation. My MalwareBytes Premium is repeatedly showing blocks for an inbound IP address (we'll call it 199.99.9.9 for example) on port 53. I am running this on a personal 2008 server that does have MS DNS running and the server is behind a Cisco router that has an explicit ACL deny for 199.99.9.0/24. I've scanned the inbound connections on both the router and the server and do NOT see that IP address connected nor does the access-list show any matches for that IP being denied. Still, MalwareBytes is repeatedly blocking that IP about 50 times every 15 minutes. Any ideas where I should be digging deeper?
  7. Hey folks and moderators i need some fast and quick help here! So i was playing my game and suddenly my monitor continously went close- off close-off that annoyed me and i went to my desktop and suddenly there were some russian programs i paniced a lot (was trying to download pirated game) i managed to delete that with malwarebytes (Thank God) but after restarting many times i managed to delete that (not sureif it got deleted) after that i was trying to open my browser it says no internet connection but i had ethernet+wifi adapter with full strenght of connection please reply quickly. Info: Os:Windows 8.1 x64 system Cpu:Amd A10 pro Gpu:Amd R7 series (not sure)
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.