Internet Explorer problem

bentz626

Member
Feb 9, 2005
31
0
0
this may or may not belong here...I'm trying to get on my favorite website. www.galantvr4.org Whenever I type it in IE, this url pops up and throws some pop up ads at me. http://64.235.246.142/?a_id=794&adultfilter=on&domainname=galantvr4.org

I've ran spybot, hijackthis, adaware, and clean up this. I've deleted all my IE files (cookies, temp files, etc...) How the hell can I get this thing to work so I can go the website? I can get on every website except this one. I did a search on google and yahoo and can't really find anyhting on it. Any help will be greatly appreciated!

Thanks
Geoff
 

mechBgon

Super Moderator<br>Elite Member
Oct 31, 1999
30,699
1
0
You ran all those tools. Well, did they find anything, and if so, do you recall the names of the junk :)

You might try Microsoft AntiSpyware Beta next. Update it and do the full-scan (not the Quick Scan), then go to the Advanced Tools and have it reset all your IE settings. You're running a current-generation antivirus product, right? Done a scan lately?
 

bentz626

Member
Feb 9, 2005
31
0
0
I'm not at my home computer, I'm at my work computer so there is no junk on here at all. Just my work programs and the interent :) I have norton and ran that and found nothing. One of the biggest problems is that I cannot access all of my interent options due too the security levels at my work. I was able to get on this site for 3 weeks in a row and now this is happening...

geoff
 

bentz626

Member
Feb 9, 2005
31
0
0
here is my hijackthis log

Logfile of HijackThis v1.99.1
Scan saved at 9:42:50 AM, on 4/21/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\hkcmd.exe
C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
C:\WINDOWS\System32\NWTRAY.EXE
C:\PROGRA~1\Compaq\COMPAQ~1\CHKADMIN.EXE
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
C:\EPOAgent\naimag32.exe
C:\Program Files\Sybase\SQL Anywhere 9\win32\dbisqlg.exe
C:\Program Files\Sybase\Shared\Sybase Central 4.3\win32\scjview.exe
C:\Program Files\Novell\ZENworks\NALDESK.EXE
C:\Program Files\Metavante\TellerInsight\V5.0\PrintManager5223Exe.exe
C:\Program Files\Attachmate\E!E2K\EXTRA.EXE
C:\Program Files\Attachmate\E!E2K\EXTRA.EXE
C:\WINDOWS\system32\ntvdm.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Network Associates\VirusScan\scncfg32.exe
C:\Program Files\Network Associates\VirusScan\scan32.exe
D:\Profiles\j896575\Desktop\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.hub.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Hudson United Bank 6.0.4
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = mahwah-isa:8080
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.hub.com;<local>
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [DrvLsnr] C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
O4 - HKLM\..\Run: [NWTRAY] NWTRAY.EXE
O4 - HKLM\..\Run: [ChkAdmin] C:\PROGRA~1\Compaq\COMPAQ~1\CHKADMIN.EXE
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [ZENRC Tray Icon] zentray.exe
O4 - HKLM\..\Run: [NaimAgent_UI] C:\EPOAgent\naimag32.exe
O4 - HKCU\..\Run: [DBISQL9] "C:\Program Files\Sybase\SQL Anywhere 9\win32\dbisqlg.exe" -preload
O4 - HKCU\..\Run: [SybaseCentral43] "C:\Program Files\Sybase\Shared\Sybase Central 4.3\win32\scjview.exe" -preload
O4 - Startup: naldesk.lnk = ?
O4 - Global Startup: Application Explorer.lnk = C:\Program Files\Novell\ZENworks\NALDESK.EXE
O4 - Global Startup: CRT_TLR.lnk = C:\Documents and Settings\All Users\Documents\Attachmate\Sessions\CRT-TLR.elf
O4 - Global Startup: Print Manager.lnk = C:\Program Files\Metavante\TellerInsight\V5.0\PrintManager5223Exe.exe
O4 - Global Startup: TI_LCopy.bat
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O9 - Extra button: Novell delivered applications - {C1994287-422F-47aa-8E5E-6323E210A125} - C:\Program Files\Novell\ZENworks\AxNalServer.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O16 - DPF: AFS Evision Check Research - http://192.168.100.90/evision/Check/EvCheck_ms.cab
O16 - DPF: WebWorks Help 2.0 - http://reports/bac/help/wwhelp2.cab
O16 - DPF: {06CFBF60-DA35-45A9-963F-2B4E7E785E6B} (SERfontcolor Control) - http://reports/bac/cab/SERfontcolor.cab
O16 - DPF: {1D21DF63-57A0-4BF5-9F33-45DBB97606D8} (SERcriteria) - http://reports/bac/cab/SERcriteria.cab
O16 - DPF: {1EFB6596-857C-11D1-B16A-00C0F0283628} (Microsoft TabStrip Control 6.0 (SP4)) - http://reports/bac/cab/MSCOMCTL.CAB
O16 - DPF: {1F33EA91-3000-4B10-94B9-2F017453D748} (SERsearch) - http://reports/bac/cab/SERsearch.cab
O16 - DPF: {1FE9CF28-E98C-11D5-9C05-00B0D0719D62} (SERhitlist Control) - http://reports/bac/cab/SERhitlist.cab
O16 - DPF: {267063EB-B462-4A70-A6D8-17D75BB6824D} (SERcalendar Control) - http://reports/bac/cab/SERcalendar.cab
O16 - DPF: {2AFEA8C3-0E46-4A80-863F-A6E874080D40} (SERIndex Control) - http://reports/bac/cab/SERindex.cab
O16 - DPF: {453C434D-7695-4D8B-8BE1-746711E4827D} (SERlistCtrl Control) - http://reports/bac/cab/SERlistctrl.cab
O16 - DPF: {46AF6503-A8FD-4EB1-B2F7-E4345A654DDE} (SERprint Control) - http://reports/bac/cab/SERprint.cab
O16 - DPF: {974E63A9-A5E9-11D5-9BED-00B0D0719D62} (SERMenuToolbar Control) - http://reports/bac/cab/SERmenutoolbar.cab
O16 - DPF: {AD6609ED-55D8-4DB1-8586-A962A97D5548} (SERdocviewer Control) - http://reports/bac/cab/SERdocviewer.cab
O16 - DPF: {DB8EF03F-9C1A-4BC1-9E0B-965CC4204CA8} (SERemWriter Control) - http://reports/bac/cab/SERemwriter.cab
O16 - DPF: {F5131C24-E56D-11CF-B78A-444553540000} (Ikonic Menu Control) - https://wc.wachovia.com/Common/cab/ikcntrls.cab
O16 - DPF: {FBA751D9-86F8-4DBB-9554-F34B2608AC10} (SERgear Control) - http://reports/bac/cab/SERgear.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: Insight Local Alerter (CPQALERT) - Hewlett-Packard Company - C:\Program Files\Compaq\Compaq Management Agents\cpqalert.exe
O23 - Service: cpqdmi - Compaq Computer Corporation - C:\PROGRA~1\Compaq\COMPAQ~1\cpqdmi.exe
O23 - Service: Client Update Service for Novell (cusrvc) - Novell, Inc. - C:\WINDOWS\System32\cusrvc.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\mcshield.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\vstskmgr.exe
O23 - Service: NAI ePolicy Orchestrator Agent (NAIMAGENT32) - Network Associates, Inc. - C:\EPOAgent\naimas32.exe
O23 - Service: Novell Application Launcher (NALNTSERVICE) - Novell, Inc. - C:\Program Files\Novell\ZENworks\nalntsrv.exe
O23 - Service: Novell ZfD Wake on LAN Status Agent (Prometheus Wake-On-LAN Status Agent) - Novell Inc. - C:\Program Files\Novell\ZENworks\RemoteManagement\RMAgent\WolSerNT.exe
O23 - Service: Novell ZfD Remote Management (Remote Management Agent) - Novell Inc. - C:\Program Files\Novell\ZENworks\RemoteManagement\RMAgent\ZenRem32.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Win32Sl (WIN32SL) - Intel - C:\Program Files\Compaq\Compaq Management Agents\Dmi\Win32\bin\Win32sl.exe
O23 - Service: Workstation Manager (ZFDWM) - Novell, INC. - C:\Program Files\Novell\ZENworks\wm.exe