Mac OSX 10.6.8 web browsing hijacked

I seem to have contracted some sort of trojan or malware, or have some sort of DNS changer that I inadvertently installed... or somehow got on my system.
When browsing in any browser (i have used Safari, Chrome, and Firefox), i am often redirected to a chinese advertisement site (should be too suprising, as Ilive in China).  At first, i thought it was the ISP that was redirecting, but after having experienced this issue over the past week at numerous locations, i'm pretty sure my machine has a problem that need to be figured out. 
I have tried MacScan and DNSchanger removal tool.  I have tried dumping the cash in the terminal.  I have deleated my flash cookies and all browsing histlry/cache files.  I've tried a few other things that I thought might work as I found them on older posts for similar issues. None of these have resolved the issue. 
The only thing i can think that may have caused it is i was recently staying at a hotel and having issue with their internet.  They sent an "IT" guy to fix it and he made some changes to the network settings (i wasn't paying close enough atention to what he was doing).... in the end, the internet never worked at that hotel and from that point forward, i've had this problem. I can't say there is cause and effect with that, but corrolation for sure. 
The site i'm being directed to is:  nfdnserror5.wo.com.cn:8080/issueunziped/baidunf120718/index1.jsp?sf=&UserUrl=ww w.facebook.com
I'm runing a MacBook pro 13"
Mac OSX 10.6.8
All my browsers are up to date. 
Any ideas?  Am I forgetting any important details?

Hi all,
I am living in China and getting the same thing. Its very recent but it seems ChinaUnicom are trying to takover Google, BBC, NYT and other URL's and point you to their own web services (of course fully supported by the Chinese Government). Behaviour is very sporadic, sometimes Chrome, but mostly Firefox. I have checked host files, dns, everything and the only way to stop it is to delete all cookies and history from the browser after infection and restart. Its a total pain as I have the Google double sign in system turned on and I have to re-authenticate twice to get into my Gmail.
I also have the greyed out DNS entries but they are legit servers - Google 8.8.8.8 and our company one. Maybe they are taking over the google 8.8.8.8 in the Great firewall of China? However once infected and I am in my office (has a tunnel throught the Chinese Firewall) I still get the re-direct and from reading this thread users returning to the USA still are infected so it can not be the GFC!
The thing that makes me think its not DNS is, on the same system I can have it happen in Firefox but not Chrome at the same time, unless the cookies can somehow override DNS.
I can also see that a site actually begins to load and then sometime through the page load (before it completes) the redirect happens.
I would love to know how they are doing this but I dont want to share my cookies with the world! I am 90% convinced this is where its happening.
Any ideas from any of the big brains out there.

Similar Messages

  • Making Mac OSX (10.8.5) Web Server available to public

    I have successfully set up apache on my laptop ( Macbook Pro with Mac OSX (10.8.5)) and am able to access the html page via http://localhost
    I have disabled firewall on my local router (tried port forwarding and DMZ before this) .
    I have disable Mac OSX firewall (from System Preferences)
    After all this my url is still not publicly accessible.
    What am I missing here?
    Any help is appreciated.

    The web server would need to have a static address on the LAN. This wasn't your question, but exposing a web server to the Internet is dangerous and not something you should do without the skills of a system administrator.

  • Do mac os get virus through web browsing ?

    Hi, i wonder if mac can be infected by virus through web browsing ?
    If yes, how can i protect myself. I have also installed some third party app how can i check if my computer is clean or not.

    You can be caught by some malware through uncareful browsing. To protect yourself simply avoid websites you know nothing about, don't click on a link unless you know what will happen, ignore any pop-ups or alerts telling you that you must immediately download something in order to protect or clean up your computer. These are all scams or are aimed at Windows machines.
    Helpful Links Regarding Malware Protection
    An excellent link to read is Tom Reed's Mac Malware Guide.
    Also, visit The XLab FAQs and read Detecting and avoiding malware and spyware.
    See these Apple articles:
              Mac OS X Snow Leopard and malware detection
              OS X Lion- Protect your Mac from malware
              OS X Mountain Lion- Protect your Mac from malware
              About file quarantine in OS X
    If you require anti-virus protection I recommend using VirusBarrier Express 1.1.6 or Dr.Web Light both from the App Store. They're both free, and since they're from the App Store, they won't destabilize the system. (Thank you to Thomas Reed for these recommendations.)
    From user Joe Bailey comes this equally useful advice:
    The facts are:
    1. There is no anti-malware software that can detect 100% of the malware out there.
    2. There is no anti-malware that can detect anything targeting the Mac because there
         is no Mac malware in the wild, and therefore, no "signatures" to detect.
    3. The very best way to prevent the most attacks is for you as the user to be aware that
         the most successful malware attacks rely on very sophisticated social engineering
         techniques preying on human avarice, ****, and fear.
    4. Internet popups saying the FBI, NSA, Microsoft, your ISP has detected malware on
        your computer is intended to entice you to install their malware thinking it is a
        protection against malware.
    5. Some of the anti-malware products on the market are worse than the malware
        from which they purport to protect you.
    6. Be cautious where you go on the internet.
    7. Only download anything from sites you know are safe.
    8. Avoid links you receive in email, always be suspicious even if you get something
        you think is from a friend, but you were not expecting.
    9. If there is any question in your mind, then assume it is malware.

  • Troubles using Flash on Mac OSX

    Operating System:  Mac OSx 10.5.8
    Web Browser:  Firefox 16.0.2
    Flash Player Version:  10.3.183.90
    It seems to me I have the latest available flash player version for my operating system but I am still unable to view certain videos or strems.
    When I attempt to watch a video I receive the following message "You need Adobe Flash Player to watch this video.  Download it from Adobe."
    I have uninstalled my flash player using the uninstall program for the version I have, then reinstalled the flash player. The installation goes fine but I still receive this message when trying to watch a video.
    On this site here: http://helpx.adobe.com/flash-player.html   It tells me I do not have the latest version of flash player but none of the later versions are supported for my operating system.
    Am I missing something here?
    Thanks in advance for your help.

    Jman3600 wrote:
    My mac uses an Intel core.
    Does this mean that I am unable to use flash player in my browser untill I upgrade my operating system?
    Yes and no...
    If it's a Core™Duo, you're stuck with 10.5.8, because it's a 32 bit processor.
    If it's a Core2™Duo, then you can upgrade to Snow Leopard for just $19.99 through Apple.
    Either way, 10.3.183.90 is the end of the line for Leopard.
    10.5.8, being a "universal binary" OS, has to have compatiblity for PowerPC Macs, and that limits how far it can go with anything. Office 2004 is the newest version that will run on Leopard, and it CAN'T create .doxc, .xlsx. or .pptx documents that 2008 and 2011 use.
    Safari can't go higher than 5, Firefox is limited to 16. There's just a lot that 10.5 can't and won't handle.

  • Problem displaying tabset in mac osx

    i'm using WInXP version of JSC 2 to develop a web app.
    The tabset i created display perfectly in IE but neither safari, opera nor firefox able to display the tabset in my mac osx.
    Is it web app develop by windows version of JSC not compatible to display in mac?

    the SR1 shoots AVCHD in HD mode and MPEG2 in SD ... the AVCHD you can import (and transcode) via Log and Transfer with FCP 6.0.1 or later, the MPEG2 you need to transcode yourself prior to import (you can use the free MOEG Streamclip app to do this: choose Export to Quicktime and set the Compressor to DV/DVCPRO - NTSC)

  • Which web browser is the best?(firefox, chrome, safari)

    I am using mac 10.6.4 which web browser is the best for mac?
    Facebook, youtube etc.
    Thanks
    Ala.

    What could be possibly better than an Apple product for an Apple product.
    Actually there are various areas where Safari is defective compared to other browsers. For example it lacks the ability to override the fonts of a website with fonts of your own choosing. Also it cannot send a different language identifier for multilingual webpages without changing the language for the entire OS. Whether the defects matter depends of course on each user's individual requirements.

  • Using Mac OSX 10.7.1: recently replaced our DSL modum & wireless router and suddently I can't get some web sites to load. Many do, but Twitter and others often do not. I've reset the browsing historty, forms, cookies and cache but it continues to happen.

    Using Mac OSX 10.7.1: recently replaced our DSL modum and wireless router, suddenly I can't get some web sites to load. Many do, but Twitter and others often do not. I've reset the browsing history, forms, cookies and cache but it continues to happen.

    Ok, first thing, why are you doing anything with WAMP or XAMPP when you're running a Mac? MAMP should be what you want unless you're not explaining part of what you are trying to do.
    2nd thing, I haven't used MAMP in a while, but there are two possibilities for not seeing what you want to see once you have MAMP turned on. One possibility is that you already have "Web Sharing" turned on in your Sharing Preference Pane. If that is the case, port 80 will already be taken and you'll be seeing the default Apache install (files are stored at /Library/WebServer/Documents/). This would push MAMP to either not turn on it's web serving capabilities, or to push it to another port. The other possibility is that MAMP defaults to another port anyway. So instead of localhost, you might have to type in localhost:8080 or something similar. I believe the control panel that gets installed can take you to the currently MAMP-served page, and it can also help you change which port your serving on.
    80 is the default port for web serving and the ONLY port that will let you get straight to the server without having to type in webaddress.com:port# instead of just webaddress.com.

  • Web browsing on a Mac is a complete nightmare

    My experience of using OSX for web browsing is a complete nightmare, loads of web pages I visit load really slow even with 1mb broadband, and I always need two browsers open (safari & Camino) because when a web page doesn't load at all in safari, I switch to Camino to get the page to load.
    I would say this is a major design/technical fault with macs as most people I know use a computer for web browsing.
    What makes it worse it Apples' claims about Safari being a really fast browser when in practice it isn't fast at all and is incompatible with loads of sites.
    I've tried loads of browsers OSX including firefox but none of them match the speed and reliability of web browsing on a PC.
    I switched to Macs about a year ago and I'm seriously considering going back to PC's because of this which is a shame because the user experience of OSX is superior to Windows.

    I see a lot of people reporting slowness issues with Safari lately. The cause of this is unknown and pages load instantly on Mac. The page rendering on an Intel Mac is 2x as fast as on a PowerPC, altough this doesn't explain your issue. It should just work fine.
    However you can also try to follow some of the standard routines:
    • Make sure all internet configurations in your system are correct, such as IPv6 address and DNS settings.
    • Repair your permissions, in case of Safari not being able to write information to certain folders it might slow your browsing experience down.
    • Try to reset Safari, this deletes all cash files, history and cookie files. Also information for forms will be lost.
    By working trough these steps a lot of users have a good working Safari again. However, some people still don't have it working. This is probably due to some bugs, since 10.4 and some showed up in 10.4.6.
    eMac G4   Mac OS X (10.4.6)  

  • Bridge CS6 Mac cannot browse Mac OSX server 10.8

    Hello:
    We had a drobo file server which was mounted on the desktop and had no issues browseing the volume in bridge.  After we moved to a new Mac OSX server running 10.8 we can no longer browse the mounted server.  We get a primission violation. Using the finder we're able to browse files and folders and create new files without this same type of issue.
    Is there a preference that allows connection to a network volume via Bridge?
    I hope I was clear on the discritpion of the problem.
    Thanks,
    Rick

    Try a reset of preferences for Bridge using option key while restarting Bridge and choose reset prefs.
    There is also a plist file for Bridge in the user library preferences folder that can be manual deleted and will be refreshed after restarting Bridge.
    And maybe run a check and repair permission with either Apple Disk utility or cocktail.
    Unfortunately Bridge is not designed for use over a network nor official supported by Adobe when it comes networks.

  • Help my safari web browser has been hijacked by some type of malware. My browser is locked in on a web page that pretends to be from the FBI. Is there security software I can purchase to eliminate this malware?

    I am not sure if this is the correct forum but I had these bastards who have stolen my web browser. Natually they ask me to send them monies to unlock my browser. It is a dangerous place out there. I would appreciate any recommendations as to possible security software to remove this malware will be much appreciated
    thank you
    Hijacked Safari Browser

    Information.
    https://discussions.apple.com/message/17680743#17680743

  • Emails sent through Mail 7.0 on Mac won't appear in the Sent folder in the Yahoo web browser or the Mail app for iPad.

    It seems that emails I send via Mail on my mac are stored only in Mail's Sent folder. These emails don't appear in the sent folder of Yahoo web browser, iPad Mail app, or the Y! Mail android app..
    I've tested to see whether my emails are actually sending properly, and they are. I just want to know why the Sent messages on my mac aren't appearing anywhere else. I've read similar issues to this but haven't yet found a reason or solution.
    Thanks in advance

    [edit] I dragged the email I sent through the MBP Mail app (under MAILBOXES > Sent > Yahoo!) to the highlighted Sent folder (YAHOO! > Sent), and now it shows up on all Yahoo Sent folders (iPad app, web browser, phone app). Not entirely solved the issue but will use web browser to sent future emails to keep everything in sync.

  • Can't remember how to enlarge web browser screen on OSX 10.6. Can anyone help?

    Can't remember how to enlarge web browser screen on OSX 10.6. Can anyone help?

    Hi ..
    Click and drag out the bottom right corner of any Safari window.

  • Help to remove opera web browser from OSX

    Hi
    Trying to remove opera from my mac (osx 10.5.5)
    I have deleted the application
    I have deleted the preferences in the libary
    All as per instructions on opera web site.
    However
    When I still see the option
    "open file with"
    opera 9.1
    opera 9.2
    If i do that opera opens !
    If i open the activity monitor with it running I look at files, there is no path for the application. (not shown)
    But its not on my system, I have done complete search for it its not there but it is.
    I dont want it, I want it gone.
    thanks

    I share the same frustration as Robin
    Not a major issue, but I would also like to remove Opera as I never use it. However, like Robin, I have not managed to find where it is stored, even after searching high and low.
    I agree that is seems to follow Adobe Photoshop (or Elements), but where on earth have they hid it??
    And if anyone has a solution - does it "mess" with Photoshop in any way if removed?
    All the best,
    Espen

  • How do i save PDFs directly from web browser to iBooks - on a MAC

    Is it possible to save PDFs directly from a web browser (any web browser) to iBooks?
    it is easy to view and 'open in' iBooks from an iPad/iPhone, but don't see this option on the MAC.
    i have resorted to saving the file and emailing it.  Once viewed on the 'i-device' it can be easily saved.
    iBooks is installed on my MAC and synced, so i can view the library.
    I am just missing this direct step - MAC to iBooks
    Please help,
    Thanks - Rob

    The iphone is not a storage/backup device.
    The sync is one way - computer iphone.  The only exception is itunes purchases:  File>Devices>Transfer Purchases
    Copy everything from your old computer, or your backup copy of your old comptuer, to your new one.

  • Will firefox insall as my default browser on a mac osx 10.4.11?

    Will Firefox install as my default browser on a mac osx 10.4.11 using safari, version 4.1?
    I dont want to use firefox as my default browser, I want to use both browsers.
    == User Agent ==
    Mozilla/5.0 (Macintosh; U; Intel Mac OS X 10_4_11; en) AppleWebKit/533.16 (KHTML, like Gecko) Version/4.1 Safari/533.16

    Firefox will ask if you want to make it the default browser, and you can select no.
    See:
    [[How to make Firefox the default browser]]
    [[Setting Firefox as the default browser does not work]]

Maybe you are looking for

  • ITunes library on network drive

    I want to have all my mp3s reside on a network share, and have multiple computers manage the same library. I have set all iTunes to store their files in that location; however changes made on one computer don't show up in iTunes on the other computer

  • Can a web service be used as the datasource for a View Object?

    Has anyone used a web service as the datasource for a View Object? I am trying to do the same thing as "Publishing BC4J Components as a Web Service" example, except I want to recreate the View Objects on the client so that I can iterate through them

  • Tomcat 5.0.19, JRE 1.5.0 and Jasper Exeception

    I am trying to help someone solve a jsp problem, but while I am not computer stupid I just really don't know anything about jsp. Here is the summary: They had a website running using Tomcat 5.0.19 and JRE 1.5.0. They edited their index.jsp page using

  • What is meant by the term 'IDLE Instance'?

    Hi Sometimes i get the following message when connecting to an Oracle10g database 'Connected to an idle instance' Can some expalin what the term 'idle' means? My database is running according to the MMC Thanks

  • In BP master, payment terms

    Hi Experts, In BP master, payment terms have credit limit and commitment limit, I want to know how it works. Anyone guide me. Thanks and regards, Manikandan