Posted 06 November 2014 - 11:27 AM
Didier Stevens
http://blog.DidierStevens.com
SANS ISC Senior Handler
Microsoft MVP 2011-2016 Consumer Security, Windows Insider MVP 2016-2023
If you send me messages, per Bleeping Computer's Forum policy, I will not engage in a conversation, but try to answer your question in the relevant forum post. If you don't want this, don't send me messages.
Stevens' law: "As an online security discussion grows longer, the probability of a reference to BadUSB approaches 1.0"
Posted 06 November 2014 - 01:23 PM
Microsoft Windows [Version 6.1.7601]
Copyright © 2009 Microsoft Corporation. All rights reserved.
Windows IP Configuration
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : home
Wireless LAN adapter Wireless Network Connection 2:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft Virtual WiFi Miniport Adapter
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Wireless LAN adapter Wireless Network Connection:
Connection-specific DNS Suffix . : home
Description . . . . . . . . . . . : Realtek RTL8188CE 802.11b/g/n WiFi Adapte
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Subnet Mask . . . . . . . . . . . : 255.255.254.0
Default Gateway . . . . . . . . . : 172.31.98.1
DHCP Server . . . . . . . . . . . : 172.31.98.1
DHCPv6 IAID . . . . . . . . . . . : 320868474
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-18-9D-2B-7A-08-2E-5F-84-5F-AB
DNS Servers . . . . . . . . . . . : 2001:558:feed::1
2001:558:feed::2
8.8.8.8
8.8.4.4
NetBIOS over Tcpip. . . . . . . . : Enabled
Ethernet adapter Local Area Connection:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . : hsd1.ca.comcast.net.
Description . . . . . . . . . . . : Realtek PCIe GBE Family Controller
Physical Address. . . . . . . . . : 08-2E-5F-84-5F-AB
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Tunnel adapter isatap.{0BC9F964-5076-434F-A736-99E9C332BCDC}:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Tunnel adapter isatap.home:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . : home
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #4
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Tunnel adapter Local Area Connection* 12:
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
IPv6 Address. . . . . . . . . . . : 2001:0:9d38:6abd:42a:751:cd0a:56a4(Prefer
red)
Link-local IPv6 Address . . . . . : fe80::42a:751:cd0a:56a4%19(Preferred)
Default Gateway . . . . . . . . . : ::
NetBIOS over Tcpip. . . . . . . . : Disabled
thats what came up
Posted 06 November 2014 - 01:45 PM
You censored information by removing it? Like your IP addresses?
Do you have an IPv4 and IPv6 address for your wireless adapter?
Didier Stevens
http://blog.DidierStevens.com
SANS ISC Senior Handler
Microsoft MVP 2011-2016 Consumer Security, Windows Insider MVP 2016-2023
If you send me messages, per Bleeping Computer's Forum policy, I will not engage in a conversation, but try to answer your question in the relevant forum post. If you don't want this, don't send me messages.
Stevens' law: "As an online security discussion grows longer, the probability of a reference to BadUSB approaches 1.0"
Posted 06 November 2014 - 03:40 PM
wtf, i swore i left those in there...... Link-local IPv6 Address . . . . . : fe80::c98c:5b48:8d1c:ff19%12(Preferred)
IPv4 Address. . . . . . . . . . . : 172.31.98.69(Preferred).
Posted 06 November 2014 - 04:38 PM
OK. start nslookup again, and report the output here.
Then type didierstevens.com (at the nslookup prompt), and also report the output.
Didier Stevens
http://blog.DidierStevens.com
SANS ISC Senior Handler
Microsoft MVP 2011-2016 Consumer Security, Windows Insider MVP 2016-2023
If you send me messages, per Bleeping Computer's Forum policy, I will not engage in a conversation, but try to answer your question in the relevant forum post. If you don't want this, don't send me messages.
Stevens' law: "As an online security discussion grows longer, the probability of a reference to BadUSB approaches 1.0"
Posted 06 November 2014 - 05:10 PM
And what about when you type didierstevens.com? Do you get the IP address of my server?
Didier Stevens
http://blog.DidierStevens.com
SANS ISC Senior Handler
Microsoft MVP 2011-2016 Consumer Security, Windows Insider MVP 2016-2023
If you send me messages, per Bleeping Computer's Forum policy, I will not engage in a conversation, but try to answer your question in the relevant forum post. If you don't want this, don't send me messages.
Stevens' law: "As an online security discussion grows longer, the probability of a reference to BadUSB approaches 1.0"
Posted 06 November 2014 - 05:45 PM
so i get the same things as before when i type in your site.
Posted 06 November 2014 - 07:49 PM
And what when you type in a site that you can access?
Didier Stevens
http://blog.DidierStevens.com
SANS ISC Senior Handler
Microsoft MVP 2011-2016 Consumer Security, Windows Insider MVP 2016-2023
If you send me messages, per Bleeping Computer's Forum policy, I will not engage in a conversation, but try to answer your question in the relevant forum post. If you don't want this, don't send me messages.
Stevens' law: "As an online security discussion grows longer, the probability of a reference to BadUSB approaches 1.0"
Posted 07 November 2014 - 08:23 PM
k so i tried youtube and i got the same result as before. I know it works since i was on it just after doing it.
Posted 08 November 2014 - 05:38 AM
I have no explanation why nslookup doesn't find www.youtube.com, but that you can browse to it.
After you have browsed to www.youtube.com, can you open a command-line (cmd.exe) and type ipconfig.exe /displaydns
And then report here all the entries you find for www.youtube.com with their IP address?
Didier Stevens
http://blog.DidierStevens.com
SANS ISC Senior Handler
Microsoft MVP 2011-2016 Consumer Security, Windows Insider MVP 2016-2023
If you send me messages, per Bleeping Computer's Forum policy, I will not engage in a conversation, but try to answer your question in the relevant forum post. If you don't want this, don't send me messages.
Stevens' law: "As an online security discussion grows longer, the probability of a reference to BadUSB approaches 1.0"
Posted 08 November 2014 - 01:26 PM
It kind of came up with a super long list and could fit all of it into the cmd display, but this is what i could copy that makes sense
Posted 08 November 2014 - 02:20 PM
I can only conclude that it is not a DNS problem, even if nslookup doesn't give you the expected reply.
Let's go back to your connection problem.
I installed gyazo in a virtual machine, launched Wireshark and uploaded a screenshot.
The screenshot was a PNG file uploaded to upload.gyazo.com
What happens when you visit this URL with your browser?
Didier Stevens
http://blog.DidierStevens.com
SANS ISC Senior Handler
Microsoft MVP 2011-2016 Consumer Security, Windows Insider MVP 2016-2023
If you send me messages, per Bleeping Computer's Forum policy, I will not engage in a conversation, but try to answer your question in the relevant forum post. If you don't want this, don't send me messages.
Stevens' law: "As an online security discussion grows longer, the probability of a reference to BadUSB approaches 1.0"
Posted 08 November 2014 - 03:49 PM
whats happens is that it just goes to a page that says upload.gyazo.com in normal text. the rest of the page is white
Posted 08 November 2014 - 04:39 PM
That is normal, I have the same thing.
And if you now try to upload a screenshot with gyazo, does it work?
Didier Stevens
http://blog.DidierStevens.com
SANS ISC Senior Handler
Microsoft MVP 2011-2016 Consumer Security, Windows Insider MVP 2016-2023
If you send me messages, per Bleeping Computer's Forum policy, I will not engage in a conversation, but try to answer your question in the relevant forum post. If you don't want this, don't send me messages.
Stevens' law: "As an online security discussion grows longer, the probability of a reference to BadUSB approaches 1.0"
0 members, 1 guests, 0 anonymous users