Sorry about the late reply. It turns out three of my folks computers are infected. Oh, well -- let's start with this one...
DDS (Ver_10-03-17.01) - NTFSx86
Run by Cosper Family at 21:45:15.30 on Sat 10/02/2010
Internet Explorer: 8.0.7600.16385
Microsoft Windows 7 Professional 6.1.7600.0.1252.1.1033.18.2039.1272 [GMT -6:00]
============== Running Processes ===============
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Windows Live\Family Safety\fsssvc.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Windows\Explorer.EXE
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Windows Live\Family Safety\fsui.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Users\Cosper Family_2\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Cosper Family_2\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Cosper Family_2\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\Microsoft Office\Office14\WINWORD.EXE
C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
C:\Users\Cosper Family_2\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\LogonUI.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Windows Live\Family Safety\fsui.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Users\Cosper Family\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Users\Cosper Family\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Cosper Family\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Users\Cosper Family\Downloads\dds.scr
C:\Windows\system32\conhost.exe
============== Pseudo HJT Report ===============
uStart Page = hxxp://www.google.com/
uInternet Settings,ProxyOverride = *.local
BHO: {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - No File
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - c:\progra~1\micros~1\office14\URLREDIR.DLL
uRun: [Google Update] "c:\users\cosper family\appdata\local\google\update\GoogleUpdate.exe" /c
mRun: [avast5] "c:\program files\alwil software\avast5\avastUI.exe" /nogui
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [fssui] "c:\program files\windows live\family safety\fsui.exe" -autorun
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport to Microsoft Excel - c:\progra~1\micros~1\office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~1\micros~1\office14\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - c:\program files\microsoft office\office14\ONBttnIELinkedNotes.dll
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:\program files\common files\microsoft shared\office14\MSOXMLMF.DLL
Notify: igfxcui - igfxdev.dll
============= SERVICES / DRIVERS ===============
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2010-9-26 165584]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2010-9-26 17744]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2010-9-26 50768]
R2 avast! Antivirus;avast! Antivirus;c:\program files\alwil software\avast5\AvastSvc.exe [2010-9-26 40384]
R2 fssfltr;fssfltr;c:\windows\system32\drivers\fssfltr.sys [2010-9-26 39264]
R2 fsssvc;Windows Live Family Safety Service;c:\program files\windows live\family safety\fsssvc.exe [2010-8-9 1472352]
R3 avast! Mail Scanner;avast! Mail Scanner;c:\program files\alwil software\avast5\AvastSvc.exe [2010-9-26 40384]
R3 avast! Web Scanner;avast! Web Scanner;c:\program files\alwil software\avast5\AvastSvc.exe [2010-9-26 40384]
R3 osppsvc;Office Software Protection Platform;c:\program files\common files\microsoft shared\officesoftwareprotectionplatform\OSPPSVC.EXE [2010-1-9 4640000]
R3 rt61x86;Linksys Wireless-G PCI Adapter Driver;c:\windows\system32\drivers\netr61.sys [2006-12-29 274432]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2009-6-10 139776]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 StorSvc;Storage Service;c:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-13 20992]
S3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\wat\WatAdminSvc.exe [2010-9-26 1343400]
=============== Created Last 30 ================
2010-09-29 09:04:49 524288 --sha-w- c:\users\cosper family\NTUSER.DAT{3ea499e4-cb62-11df-9298-001921d24151}.TMContainer00000000000000000002.regtrans-ms
2010-09-29 09:04:48 65536 --sha-w- c:\users\cosper family\NTUSER.DAT{3ea499e4-cb62-11df-9298-001921d24151}.TM.blf
2010-09-29 09:04:48 524288 --sha-w- c:\users\cosper family\NTUSER.DAT{3ea499e4-cb62-11df-9298-001921d24151}.TMContainer00000000000000000001.regtrans-ms
2010-09-29 09:00:46 190976 ----a-w- c:\windows\system32\drivers\ks.sys
2010-09-29 00:46:02 2048 ----a-w- c:\windows\system32\tzres.dll
2010-09-28 02:19:29 26600 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2010-09-28 02:19:29 107368 ----a-w- c:\windows\system32\GEARAspi.dll
2010-09-28 02:19:08 0 d-----w- c:\program files\iPod
2010-09-28 02:19:07 0 d-----w- c:\programdata\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
2010-09-28 02:19:07 0 d-----w- c:\program files\iTunes
2010-09-28 02:18:10 0 d-----w- c:\programdata\Apple Computer
2010-09-28 02:17:36 0 d-----w- c:\program files\Bonjour
2010-09-28 02:17:30 0 d-----w- c:\programdata\Apple
2010-09-27 02:06:52 39264 ----a-w- c:\windows\system32\drivers\fssfltr.sys
2010-09-27 01:52:19 0 d-----w- c:\program files\common files\Windows Live
2010-09-27 01:45:55 632 --sha-r- c:\users\cosper family\ntuser.pol
2010-09-27 01:27:16 0 d-----w- c:\windows\system32\Wat
2010-09-27 01:23:57 257024 ----a-w- c:\windows\system32\msv1_0.dll
2010-09-27 01:19:44 1002008 ----a-w- c:\windows\system32\igxpun.exe
2010-09-27 01:19:44 0 d-----w- c:\windows\system32\x64
2010-09-27 01:18:19 221568 ------w- c:\windows\system32\MpSigStub.exe
2010-09-27 01:13:08 99176 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2010-09-27 01:13:08 49472 ----a-w- c:\windows\system32\netfxperf.dll
2010-09-27 01:13:08 297808 ----a-w- c:\windows\system32\mscoree.dll
2010-09-27 01:13:08 295264 ----a-w- c:\windows\system32\PresentationHost.exe
2010-09-27 01:13:08 1130824 ----a-w- c:\windows\system32\dfshim.dll
2010-09-27 01:10:26 292864 ----a-w- c:\windows\system32\apphelp.dll
2010-09-27 01:06:11 0 d-----w- c:\users\cosper~1\appdata\roaming\Malwarebytes
2010-09-27 01:06:03 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-09-27 01:06:02 0 d-----w- c:\programdata\Malwarebytes
2010-09-27 01:06:01 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-09-27 01:06:01 0 d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-09-27 00:58:00 50768 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2010-09-27 00:57:38 38848 ----a-w- c:\windows\avastSS.scr
2010-09-27 00:57:35 0 d-----w- c:\programdata\Alwil Software
2010-09-27 00:47:15 172032 ----a-w- c:\windows\system32\wintrust.dll
2010-09-27 00:46:54 132608 ----a-w- c:\windows\system32\cabview.dll
2010-09-27 00:39:58 0 d-----w- c:\programdata\Ralink Driver
2010-09-26 22:56:09 0 d-----w- C:\Linksys Driver
2010-09-26 07:01:10 0 d-----w- c:\windows\Panther
2010-09-26 07:00:58 8192 --sha-r- C:\BOOTSECT.BAK
2010-09-26 07:00:57 383562 --sha-r- C:\bootmgr
2010-09-26 07:00:56 0 d-sh--w- C:\Boot
2010-09-26 06:03:25 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_09_00.Wdf
2010-09-26 05:23:44 0 d-----w- c:\windows\PCHEALTH
2010-09-26 05:21:34 0 d-----w- c:\program files\Microsoft Analysis Services
2010-09-26 05:21:17 0 d-----w- c:\programdata\Microsoft Help
2010-09-26 05:21:12 0 d-sh--w- c:\windows\Installer
2010-09-26 05:13:44 726316 ----a-w- c:\windows\system32\PerfStringBackup.INI
2010-09-26 05:13:00 0 d-----w- c:\windows\system32\wbem\Performance
2010-09-08 17:17:46 94208 ----a-w- c:\windows\system32\QuickTimeVR.qtx
2010-09-08 17:17:46 69632 ----a-w- c:\windows\system32\QuickTime.qts
==================== Find3M ====================
2010-08-21 05:32:37 316928 ----a-w- c:\windows\system32\spoolsv.exe
2010-07-30 03:39:20 209280 ----a-w- c:\windows\system32\LIVESSP.DLL
2010-07-29 06:30:49 197632 ----a-w- c:\windows\system32\ir32_32.dll
2010-07-29 06:30:34 82944 ----a-w- c:\windows\system32\iccvid.dll
2010-07-28 00:44:10 91424 ----a-w- c:\windows\system32\dnssd.dll
2010-07-28 00:44:10 75040 ----a-w- c:\windows\system32\jdns_sd.dll
2010-07-28 00:44:10 197920 ----a-w- c:\windows\system32\dnssdX.dll
2010-07-28 00:44:10 107808 ----a-w- c:\windows\system32\dns-sd.exe
2009-07-14 04:56:42 31548 ----a-w- c:\windows\inf\perflib\0409\perfd.dat
2009-07-14 04:56:42 31548 ----a-w- c:\windows\inf\perflib\0409\perfc.dat
2009-07-14 04:56:42 291294 ----a-w- c:\windows\inf\perflib\0409\perfi.dat
2009-07-14 04:56:42 291294 ----a-w- c:\windows\inf\perflib\0409\perfh.dat
2009-07-14 04:41:57 174 --sha-w- c:\program files\desktop.ini
2009-07-14 00:34:40 291294 ----a-w- c:\windows\inf\perflib\0000\perfi.dat
2009-07-14 00:34:40 291294 ----a-w- c:\windows\inf\perflib\0000\perfh.dat
2009-07-14 00:34:38 31548 ----a-w- c:\windows\inf\perflib\0000\perfd.dat
2009-07-14 00:34:38 31548 ----a-w- c:\windows\inf\perflib\0000\perfc.dat
2009-06-10 21:26:35 9633792 --sha-r- c:\windows\fonts\StaticCache.dat
2009-07-14 01:14:45 396800 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe
============= FINISH: 21:45:45.95 ===============
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_10-03-17.01)
Microsoft Windows 7 Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 9/25/2010 11:11:24 PM
System Uptime: 10/2/2010 4:57:51 PM (5 hours ago)
Motherboard: ECS | | Livermore
Processor: Intel(R) Pentium(R) 4 CPU 3.20GHz | CPU 1 | 3200/200mhz
==== Disk Partitions =========================
C: is FIXED (NTFS) - 142 GiB total, 96.129 GiB free.
D: is FIXED (NTFS) - 7 GiB total, 7.015 GiB free.
E: is CDROM ()
F: is Removable
==== Disabled Device Manager Items =============
Class GUID:
Description: Photosmart C4700 series
Device ID: USB\VID_03F0&PID_7511&MI_02\6&23BFBEE8&0&0002
Manufacturer:
Name: Photosmart C4700 series
PNP Device ID: USB\VID_03F0&PID_7511&MI_02\6&23BFBEE8&0&0002
Service:
Class GUID:
Description: Photosmart C4700 series
Device ID: USB\VID_03F0&PID_7511&MI_00\6&23BFBEE8&0&0000
Manufacturer:
Name: Photosmart C4700 series
PNP Device ID: USB\VID_03F0&PID_7511&MI_00\6&23BFBEE8&0&0000
Service:
==== System Restore Points ===================
RP1: 9/25/2010 11:20:54 PM - Installed Microsoft Office Professional 2010
RP3: 9/26/2010 6:39:48 PM - Installed Ralink Wireless LAN
RP4: 9/26/2010 6:43:58 PM - Device Driver Package Install: Linksys, A Division of Cisco Systems, Inc. Network adapters
RP5: 9/26/2010 6:57:23 PM - avast! Free Antivirus Setup
RP6: 9/26/2010 7:12:18 PM - Windows Update
RP7: 9/26/2010 7:37:09 PM - Windows Update
RP9: 9/26/2010 8:04:27 PM - Windows Live Essentials
RP10: 9/26/2010 8:05:34 PM - WLSetup
RP11: 9/27/2010 7:08:59 PM - Windows Update
RP12: 9/27/2010 8:18:31 PM - Installed iTunes
RP13: 9/28/2010 6:45:59 PM - Windows Update
RP14: 9/29/2010 3:00:20 AM - Windows Update
RP15: 10/1/2010 8:55:53 AM - Windows Update
RP16: 10/1/2010 8:52:15 PM - Windows Update
RP17: 10/1/2010 8:53:58 PM - Windows Update
==== Installed Programs ======================
Adobe Flash Player 10 ActiveX
Apple Application Support
Apple Mobile Device Support
Apple Software Update
avast! Free Antivirus
Bonjour
D3DX10
Definition update for Microsoft Office 2010 (KB982726)
Google Chrome
Intel(R) Graphics Media Accelerator Driver
iTunes
Malwarebytes' Anti-Malware
Microsoft .NET Framework 4 Client Profile
Microsoft Application Error Reporting
Microsoft Office Access MUI (English) 2010
Microsoft Office Access Setup Metadata MUI (English) 2010
Microsoft Office Excel MUI (English) 2010
Microsoft Office OneNote MUI (English) 2010
Microsoft Office Outlook MUI (English) 2010
Microsoft Office PowerPoint MUI (English) 2010
Microsoft Office Professional 2010
Microsoft Office Proof (English) 2010
Microsoft Office Proof (French) 2010
Microsoft Office Proof (Spanish) 2010
Microsoft Office Proofing (English) 2010
Microsoft Office Publisher MUI (English) 2010
Microsoft Office Shared MUI (English) 2010
Microsoft Office Shared Setup Metadata MUI (English) 2010
Microsoft Office Single Image 2010
Microsoft Office Word MUI (English) 2010
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
MSVCRT
QuickTime
Ralink RT6x Wireless LAN Card
Update for Microsoft Office 2010 (KB2202188)
Update for Microsoft OneNote 2010 (KB2288640)
Update for Microsoft Outlook Social Connector (KB2289116)
Windows Live Communications Platform
Windows Live Essentials Beta
Windows Live Family Safety
Windows Live ID Sign-in Assistant
Windows Live Installer
Windows Live PIMT Platform
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live UX Platform
Windows Live UX Platform Language Pack
==== Event Viewer Messages From Past Week ========
9/30/2010 8:14:43 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Netman service.
9/29/2010 8:05:54 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ShellHWDetection service.
9/27/2010 8:57:37 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the WSearch service.
9/27/2010 8:55:52 PM, Error: Disk [11] - The driver detected a controller error on \Device\Harddisk2\DR2.
9/26/2010 7:24:01 PM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800f0902: Security Update for Windows 7 (KB978601).
9/26/2010 7:15:42 PM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800f0902: Update for Internet Explorer 8 Compatibility View List for Windows 7 (KB982664).
9/26/2010 7:15:41 PM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800f0902: Security Update for Windows 7 (KB979309).
10/1/2010 8:26:23 AM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Wlansvc service.
==== End Of File ===========================