Hi,
Still no security pop ups, things have improved it seems. I still am having trouble loading via the internet, seems that maybe firefox settings are blocking, I might have to check that out. Anyway, app copied over and run. DDS.txt data is below.
Thanks again,
Mike
DDS (Ver_09-02-01.01) - NTFSx86
Run by user at 11:31:27.75 on Sat 02/21/2009
Internet Explorer: 7.0.5730.13 BrowserJavaVersion: 1.6.0_05
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.766.434 [GMT -7:00]
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\lxddcoms.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\Lexmark 2500 Series\lxddmon.exe
C:\Program Files\Lexmark 2500 Series\lxddamon.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\user\Desktop\dds.com
============== Pseudo HJT Report ===============
uStart Page =
hxxp://www.yahoo.com/uSearch Page =
hxxp://us.rd.yahoo.com/customize/ie/defaults/sp/msgr9/*http://www.yahoo.comuSearch Bar =
hxxp://us.rd.yahoo.com/customize/ie/defaults/sb/msgr9/*http://www.yahoo.com/ext/search/search.htmlmDefault_Search_URL =
hxxp://us.rd.yahoo.com/customize/ie/defaults/su/msgr9/*http://www.yahoo.commSearch Page =
hxxp://us.rd.yahoo.com/customize/ie/defaults/sp/msgr9/*http://www.yahoo.commSearch Bar =
hxxp://us.rd.yahoo.com/customize/ie/defaults/sb/msgr9/*http://www.yahoo.com/ext/search/search.htmluInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) =
hxxp://us.rd.yahoo.com/customize/ie/defaults/su/msgr9/*http://www.yahoo.comuURLSearchHooks: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\progra~1\yahoo!\companion\installs\cpn0\yt.dll
BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\progra~1\yahoo!\companion\installs\cpn0\yt.dll
BHO: NoExplorer - No File
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll
BHO: Yahoo! IE Services Button: {5bab4b5b-68bc-4b02-94d6-2fc0de4a7897} - c:\program files\yahoo!\common\yiesrvc.dll
BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre1.6.0_05\bin\ssv.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\googletoolbar1.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\3.1.807.1746\swg.dll
BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - c:\progra~1\yahoo!\companion\installs\cpn0\YTSingleInstance.dll
TB: &Google: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\googletoolbar1.dll
TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\progra~1\yahoo!\companion\installs\cpn0\yt.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [swg] c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe
mRun: [lxddmon.exe] "c:\program files\lexmark 2500 series\lxddmon.exe"
mRun: [lxddamon] "c:\program files\lexmark 2500 series\lxddamon.exe"
mRun: [FaxCenterServer] "c:\program files\lexmark fax solutions\fm3032.exe" /s
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [AppleSyncNotifier] c:\program files\common files\apple\mobile device support\bin\AppleSyncNotifier.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0_05\bin\ssv.dll
IE: {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - c:\program files\yahoo!\common\yiesrvc.dll
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll
DPF: {48DD0448-9209-4F81-9F6D-D83562940134} -
hxxp://lads.myspace.com/upload/MySpaceUploader1006.cabDPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cabDPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} -
hxxp://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cabDPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cabDPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cabNotify: igfxcui - igfxsrvc.dll
================= FIREFOX ===================
FF - ProfilePath - c:\docume~1\user\applic~1\mozilla\firefox\profiles\yto3drd5.default\
FF - plugin: c:\program files\mozilla firefox\plugins\npCouponPrinter.dll
============= SERVICES / DRIVERS ===============
R2 lxdd_device;lxdd_device;c:\windows\system32\lxddcoms.exe -service --> c:\windows\system32\lxddcoms.exe -service [?]
S2 lxddCATSCustConnectService;lxddCATSCustConnectService;c:\windows\system32\spool\drivers\w32x86\3\lxddserv.exe [2008-8-17 99248]
=============== Created Last 30 ================
2009-02-21 10:54
--d----- c:\docume~1\user\applic~1\Malwarebytes
2009-02-21 10:54 15,504 a------- c:\windows\system32\drivers\mbam.sys
2009-02-21 10:54 38,496 a------- c:\windows\system32\drivers\mbamswissarmy.sys
2009-02-21 10:54 --d----- c:\program files\Malwarebytes' Anti-Malware
2009-02-21 10:54 --d----- c:\docume~1\alluse~1\applic~1\Malwarebytes
2009-02-19 21:14 --d----- C:\_OTMoveIt
==================== Find3M ====================
2009-01-15 11:42 18,240 a---h--- c:\windows\system32\mlfcache.dat
2008-12-20 16:15 826,368 a------- c:\windows\system32\wininet.dll
2008-12-12 11:18 87,336 a------- c:\windows\system32\dns-sd.exe
2008-12-12 11:11 61,440 a------- c:\windows\system32\dnssd.dll
2007-04-22 13:29 308,304 a------- c:\windows\inf\uiu\recycler\s-1-5-21-761282051-2000171375-326769644-1000\Df2.exe
2006-03-10 22:13 1,581,056 a------- c:\windows\inf\uiu\a1600\MIXER.EXE
2006-03-10 22:12 294,912 a------- c:\windows\inf\uiu\b_15592\atiiiexx.dll
2006-03-10 22:11 2,121,728 a------- c:\windows\inf\uiu\a1200\MicCal.exe
2006-03-10 22:10 1,740,800 a------- c:\windows\inf\uiu\a0400\sisgl.dll
2006-03-10 22:09 344,064 a------- c:\windows\inf\uiu\a0100\igfxsrvc.dll
2006-03-06 15:20 243,712 a------- c:\windows\inf\uiu\yk51x86.sys
2006-03-06 15:19 40,960 a------- c:\windows\inf\uiu\ialmuRUS.dll
2006-03-06 15:18 921,600 a------- c:\windows\inf\uiu\a1900\g200icd.dll
2006-03-06 15:17 172,032 a------- c:\windows\inf\uiu\a0101\nvwrsde.dll
2004-08-03 23:06 544,768 a------- c:\windows\inf\uiu\sysprepxp\setupmgr.exe
2004-08-03 23:06 88,576 a------- c:\windows\inf\uiu\sysprepxp\sysprep.exe
2004-08-03 23:06 88,576 a------- c:\program files\sysprep.exe
2004-08-03 23:06 25,600 a------- c:\windows\inf\uiu\sysprepxp\setupcl.exe
2004-08-03 23:06 25,600 a------- c:\program files\setupcl.exe
2000-08-27 15:07 64,272 a------- c:\windows\inf\uiu\tools\sysprep.exe
1999-10-20 07:18 27,920 a------- c:\windows\inf\uiu\tools\setupcl.exe
1999-07-08 07:02 34,816 a------- c:\windows\inf\uiu\tools\pnpids.exe
2008-09-06 08:05 32,768 a--sh--- c:\windows\system32\config\systemprofile\local settings\history\history.ie5\mshist012008090620080907\index.dat
============= FINISH: 11:32:03.54 ===============