Hi. I used an older pc and was able to get the program to run.
Here are the logs:
From DDS:
DDS (Ver_09-07-30.01) - NTFSx86
Run by Admin at 18:11:18.90 on Sun 08/30/2009
Internet Explorer: 8.0.6001.18702
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2558.2103 [GMT -7:00]
AV: EMBARQ® Online Security 8.02 *On-access scanning enabled* (Outdated) {E7512ED5-4245-4B4D-AF3A-382D3F313F15}
FW: EMBARQ® Online Security 8.02 *enabled* {D4747503-0346-49EB-9262-997542F79BF4}
============== Running Processes ===============
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\windows\ld14.exe
C:\windows\pp11.exe
C:\Program Files\Embarq Online Security 8\Common\FSM32.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
svchost.exe
C:\WINDOWS\sySTEM32\SvchoSt.ExE -k ddnsfilter
C:\Program Files\Embarq Online Security 8\Anti-Virus\fsgk32st.exe
C:\Program Files\Embarq Online Security 8\Common\FSMA32.EXE
C:\Program Files\Embarq Online Security 8\Anti-Virus\FSGK32.EXE
C:\Program Files\Embarq Online Security 8\Common\FSMB32.EXE
C:\Program Files\Embarq Online Security 8\Common\FCH32.EXE
C:\Program Files\Embarq Online Security 8\Anti-Virus\fsqh.exe
C:\Program Files\Embarq Online Security 8\Common\FAMEH32.EXE
C:\Program Files\Embarq Online Security 8\FSPC\fspc.exe
C:\Program Files\Embarq Online Security 8\FSGUI\fsguidll.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Embarq Online Security 8\FSAUA\program\fsaua.exe
C:\Program Files\Embarq Online Security 8\Anti-Virus\fssm32.exe
C:\Program Files\Embarq Online Security 8\FWES\Program\fsdfwd.exe
C:\Program Files\Embarq Online Security 8\FSAUA\program\fsus.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Embarq Online Security 8\Anti-Virus\fsav32.exe
C:\Documents and Settings\Admin\Application Data\U3\000015A08A60466B\LaunchPad.exe
C:\Documents and Settings\Admin\Desktop\Everybody.exe
C:\Documents and Settings\Admin\Desktop\dds.scr
C:\WINDOWS\vkl_1251681082
c:\windows\pp11.exe
============== Pseudo HJT Report ===============
uInternet Connection Wizard,ShellNext = iexplore
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.1.1309.15642\swg.dll
BHO: Google Dictionary Compression sdch: {c84d72fe-e17d-4195-bb24-76c02e2e7c4e} - c:\program files\google\google toolbar\component\fastsearch_A8904FB862BD9564.dll
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [swg] c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
mRun: [SoundMAXPnP] c:\program files\analog devices\core\smax4pnp.exe
mRun: [ATIPTA] "c:\program files\ati technologies\ati control panel\atiptaxx.exe"
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [sysldtray] c:\windows\ld14.exe
mRun: [pp] c:\windows\pp11.exe
mRun: [sysfbtray] c:\windows\freddy60.exe
mRun: [F-Secure Manager] "c:\program files\embarq online security 8\common\FSM32.EXE" /splash
mRun: [F-Secure TNB] "c:\program files\embarq online security 8\fsgui\TNBUtil.exe" /CHECKALL /WAITFORSW
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {200DB664-75B5-47c0-8B45-A44ACCF73C00} - {D68926FD-18FD-4B0E-A1C7-917D13FAB760} - c:\program files\embarq online security 8\fspc\fspcmsie.dll
IE: {200DB664-75B5-47c0-8B45-A44ACCF73F01} - {D68926FD-18FD-4B0E-A1C7-917D13FAB760} - c:\program files\embarq online security 8\fspc\fspcmsie.dll
LSP: c:\program files\embarq online security 8\fsps\program\FSLSP.DLL
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1093251208187
DPF: {BDBDE413-7B1C-4C68-A8FF-C5B2B4090876} - hxxp://content.embarq.synacor.com/gigantes/embarq/support/OnlineScanner/fscax.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - c:\program files\google\google toolbar\component\fastsearch_A8904FB862BD9564.dll
================= FIREFOX ===================
FF - ProfilePath - c:\docume~1\admin\applic~1\mozilla\firefox\profiles\zho2as0p.default\
---- FIREFOX POLICIES ----
c:\program files\mozilla firefox\greprefs\all.js - pref("media.enforce_same_site_origin", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("media.cache_size", 51200);
c:\program files\mozilla firefox\greprefs\all.js - pref("media.ogg.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("media.wave.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("media.autoplay.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.urlbar.autocomplete.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("capability.policy.mailnews.*.wholeText", "noAccess");
c:\program files\mozilla firefox\greprefs\all.js - pref("dom.storage.default_quota", 5120);
c:\program files\mozilla firefox\greprefs\all.js - pref("content.sink.event_probe_rate", 3);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.http.prompt-temp-redirect", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("layout.css.dpi", -1);
c:\program files\mozilla firefox\greprefs\all.js - pref("layout.css.devPixelsPerPx", -1);
c:\program files\mozilla firefox\greprefs\all.js - pref("gestures.enable_single_finger_input", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("dom.max_chrome_script_run_time", 0);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.tcp.sendbuffer", 131072);
c:\program files\mozilla firefox\greprefs\all.js - pref("geo.enabled", true);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.remember_cert_checkbox_default_setting", true);
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr", "moz35");
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-cjkt", "moz35");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("extensions.blocklist.level", 2);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.urlbar.restrict.typed", "~");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.urlbar.default.behavior", 0);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.history", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.formdata", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.passwords", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.downloads", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.cookies", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.cache", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.sessions", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.offlineApps", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.siteSettings", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.history", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.formdata", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.passwords", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.downloads", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.cookies", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.cache", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.sessions", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.offlineApps", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.siteSettings", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.sanitize.migrateFx3Prefs", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.ssl_override_behavior", 2);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("security.alternate_certificate_error_page", "certerror");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.privatebrowsing.autostart", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.privatebrowsing.dont_prompt_on_enter", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("geo.wifi.uri", "https://www.google.com/loc/json");
============= SERVICES / DRIVERS ===============
R?2 ddnsfilter;ddnsfilter;c:\windows\system32\SvchoSt.ExE -k ddnsfilter [2004-8-12 14336]
R0 fsbts;fsbts;c:\windows\system32\drivers\fsbts.sys [2009-8-24 30816]
R0 FSFW;F-Secure Firewall Driver;c:\windows\system32\drivers\fsdfw.sys [2009-8-24 79872]
R1 DnsFilter;DnsFilter;c:\windows\system32\drivers\DnsFilter.sys [2009-8-24 38016]
R1 F-Secure HIPS;F-Secure HIPS Driver;c:\program files\embarq online security 8\hips\drivers\fshs.sys [2009-8-24 67808]
R2 F-Secure Gatekeeper Handler Starter;FSGKHS;c:\program files\embarq online security 8\anti-virus\fsgk32st.exe [2009-8-24 215648]
R3 F-Secure Gatekeeper;F-Secure Gatekeeper;c:\program files\embarq online security 8\anti-virus\minifilter\fsgk.sys [2009-8-24 83040]
R3 FSORSPClient;F-Secure ORSP Client;c:\program files\embarq online security 8\orsp client\fsorsp.exe [2009-8-24 55904]
S4 F-Secure Filter;F-Secure File System Filter;c:\program files\embarq online security 8\anti-virus\win2k\fsfilter.sys [2009-8-24 39776]
S4 F-Secure Recognizer;F-Secure File System Recognizer;c:\program files\embarq online security 8\anti-virus\win2k\fsrec.sys [2009-8-24 25184]
=============== Created Last 30 ================
2009-08-30 18:11 36,864 a------- c:\windows\vkl_1251681082
2009-08-30 18:11 97,280 a------- c:\windows\vkl_1251681078
2009-08-30 18:11 18,432 a------- c:\windows\srpira1251681077.eXE
2009-08-30 18:11 2 a------- c:\windows\0535251103110107106.yux
2009-08-30 18:11 2 a------- c:\windows\0101120101464954.xe
2009-08-30 18:09 2 a------- c:\windows\010112010146101105.xe
2009-08-24 18:57 <DIR> --d----- c:\docume~1\admin\applic~1\F-Secure
2009-08-24 18:52 30,816 a------- c:\windows\system32\drivers\fsbts.sys
2009-08-24 18:52 79,872 a------- c:\windows\system32\drivers\fsdfw.sys
2009-08-24 18:51 <DIR> --d----- c:\program files\Embarq Online Security 8
2009-08-24 18:50 <DIR> --d----- c:\docume~1\alluse~1\applic~1\fssg
2009-08-24 18:49 <DIR> --d----- c:\docume~1\alluse~1\applic~1\f-secure
2009-08-24 16:45 <DIR> --d----- c:\docume~1\admin\applic~1\MSNInstaller
2009-08-24 16:30 <DIR> --d----- C:\fsaua.data
2009-08-24 13:01 1 a------- c:\windows\ectbbyn.dat
2009-08-24 13:00 1 ----h--- c:\windows\ex23567.dat
2009-08-24 12:59 38,016 a------- c:\windows\system32\drivers\DnsFilter.sys
2009-08-24 12:59 <DIR> --d----- c:\program files\DDnsFilter
2009-08-24 12:59 1 a------- c:\windows\fdgg34353edfgdfdf
2009-08-24 12:59 32,768 ----h--- c:\windows\pp11.exe
2009-08-24 12:59 69,632 a------- c:\windows\freddy60.exe
2009-08-24 12:59 2 a------- c:\windows\0101120101464857.xe
2009-08-24 12:59 2 a------- c:\windows\0101120101464854.xe
2009-08-24 12:59 36,864 -------- c:\windows\ld14.exe
2009-08-18 11:06 754 a------- c:\windows\WORDPAD.INI
2009-08-17 16:42 <DIR> --d----- c:\program files\World of Warcraft Trial
2009-08-17 10:41 25,856 ac------ c:\windows\system32\dllcache\usbprint.sys
2009-08-17 10:41 25,856 a------- c:\windows\system32\drivers\usbprint.sys
2009-08-11 16:41 128,512 -c------ c:\windows\system32\dllcache\dhtmled.ocx
2009-08-11 16:36 1,315,328 -c------ c:\windows\system32\dllcache\msoe.dll
2009-08-08 12:21 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Blizzard
2009-08-08 12:19 <DIR> --d----- c:\program files\common files\Blizzard Entertainment
2009-08-06 20:42 <DIR> --d----- c:\windows\system32\Adobe
2009-08-05 09:59 55,635 a------- c:\windows\War3Unin.dat
2009-08-05 09:59 139,264 a------- c:\windows\War3Unin.exe
2009-08-05 09:59 2,829 a------- c:\windows\War3Unin.pif
2009-08-05 02:01 204,800 -c------ c:\windows\system32\dllcache\mswebdvd.dll
2009-08-04 20:09 <DIR> --dsh--- c:\documents and settings\admin\IECompatCache
2009-08-04 20:09 <DIR> --dsh--- c:\documents and settings\admin\PrivacIE
2009-08-04 20:08 <DIR> --dsh--- c:\documents and settings\admin\IETldCache
2009-08-04 20:06 <DIR> --d----- c:\program files\ATI Technologies
2009-08-04 20:02 12,800 -c------ c:\windows\system32\dllcache\xpshims.dll
2009-08-04 20:02 11,067,392 -c------ c:\windows\system32\dllcache\ieframe.dll
2009-08-04 20:02 1,985,536 -c------ c:\windows\system32\dllcache\iertutil.dll
2009-08-04 20:02 594,432 -c------ c:\windows\system32\dllcache\msfeeds.dll
2009-08-04 20:02 246,272 -c------ c:\windows\system32\dllcache\ieproxy.dll
2009-08-04 20:02 55,296 -c------ c:\windows\system32\dllcache\msfeedsbs.dll
2009-08-04 20:02 <DIR> --d----- c:\windows\ie8updates
2009-08-04 20:02 101,376 -c------ c:\windows\system32\dllcache\iecompat.dll
2009-08-04 20:00 <DIR> --d----- c:\program files\Analog Devices
2009-08-04 19:50 16,128 ac------ c:\windows\system32\dllcache\modemcsa.sys
2009-08-04 19:50 16,128 a------- c:\windows\system32\drivers\MODEMCSA.sys
2009-08-04 19:50 129,536 ac------ c:\windows\system32\dllcache\ksproxy.ax
2009-08-04 19:50 4,096 ac------ c:\windows\system32\dllcache\ksuser.dll
2009-08-04 19:50 129,536 a------- c:\windows\system32\ksproxy.ax
2009-08-04 19:50 4,096 a------- c:\windows\system32\ksuser.dll
2009-08-04 19:50 <DIR> --d----- c:\program files\CONEXANT
2009-08-04 19:38 <DIR> --d----- c:\windows\system32\scripting
2009-08-04 19:38 <DIR> --d----- c:\windows\l2schemas
2009-08-04 19:38 <DIR> --d----- c:\windows\system32\en
2009-08-04 19:38 <DIR> --d----- c:\windows\system32\bits
2009-08-04 19:37 <DIR> --d----- c:\windows\ServicePackFiles
2009-08-04 19:35 <DIR> --d----- c:\windows\network diagnostic
2009-08-04 19:34 <DIR> --d----- c:\windows\system32\ReinstallBackups
2009-08-04 19:29 1,502,208 ac------ c:\windows\system32\dllcache\ati2mtag.sys
2009-08-04 19:20 272,128 -c------ c:\windows\system32\dllcache\bthport.sys
2009-08-04 19:18 333,952 -c------ c:\windows\system32\dllcache\srv.sys
2009-08-04 19:18 331,776 -c------ c:\windows\system32\dllcache\msadce.dll
2009-08-04 19:18 691,712 -c------ c:\windows\system32\dllcache\inetcomm.dll
2009-08-04 19:18 337,408 -c------ c:\windows\system32\dllcache\netapi32.dll
2009-08-04 19:18 1,106,944 -c------ c:\windows\system32\dllcache\msxml3.dll
2009-08-04 19:17 2,560 -------- c:\windows\system32\xpsp4res.dll
2009-08-04 19:17 1,203,922 -c------ c:\windows\system32\dllcache\sysmain.sdb
2009-08-04 19:17 215,552 -c------ c:\windows\system32\dllcache\wordpad.exe
2009-08-04 19:14 <DIR> --d----- c:\windows\system32\PreInstall
2009-08-04 19:14 26,144 a------- c:\windows\system32\spupdsvc.exe
2009-08-04 19:14 <DIR> --d-h--- c:\windows\$hf_mig$
==================== Find3M ====================
2009-08-05 02:01 204,800 a------- c:\windows\system32\mswebdvd.dll
2009-08-04 19:40 87,263 a------- c:\windows\pchealth\helpctr\offlinecache\index.dat
2009-07-31 05:47 499,712 a------- c:\windows\system32\msvcp71.dll
2009-07-31 05:47 348,160 a------- c:\windows\system32\msvcr71.dll
2009-07-17 12:01 58,880 a------- c:\windows\system32\atl.dll
2009-07-12 12:21 233,472 a------- c:\windows\system32\wmpdxm.dll
2009-07-03 10:09 915,456 a------- c:\windows\system32\wininet.dll
2009-06-26 09:50 81,920 -------- c:\windows\system32\ieencode.dll
2009-06-16 07:36 119,808 a------- c:\windows\system32\t2embed.dll
2009-06-16 07:36 81,920 a------- c:\windows\system32\fontsub.dll
2009-06-12 05:31 80,896 a------- c:\windows\system32\tlntsess.exe
2009-06-12 05:31 76,288 a------- c:\windows\system32\telnet.exe
2009-06-10 09:19 2,066,432 a------- c:\windows\system32\mstscax.dll
2009-06-10 07:13 84,992 a------- c:\windows\system32\avifil32.dll
2009-06-09 23:14 132,096 a------- c:\windows\system32\wkssvc.dll
2009-06-03 12:09 1,291,264 a------- c:\windows\system32\quartz.dll
============= FINISH: 18:11:52.15 ===============
From GMER:
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_09-07-30.01)
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 8/23/2004 1:08:35 AM
System Uptime: 8/30/2009 6:06:58 PM (0 hours ago)
Motherboard: Dell Inc. | | 0M3918
Processor: Intel(R) Pentium(R) 4 CPU 2.80GHz | Microprocessor | 2793/800mhz
==== Disk Partitions =========================
A: is Removable
C: is FIXED (NTFS) - 149 GiB total, 140.128 GiB free.
D: is FIXED (NTFS) - 34 GiB total, 23.286 GiB free.
E: is CDROM (CDFS)
F: is CDROM ()
G: is CDROM (CDFS)
H: is Removable
==== Disabled Device Manager Items =============
Class GUID: TI Technologies Inc.
Description: RADEON X300 Series Secondary
Device ID: PCI\VEN_1002&DEV_5B70&SUBSYS_03031002&REV_00\4&166AB6CD&0&0108
Manufacturer: ATI Technologies Inc.
Name: RADEON X300 Series Secondary
PNP Device ID: PCI\VEN_1002&DEV_5B70&SUBSYS_03031002&REV_00\4&166AB6CD&0&0108
Service: ati2mtag
==== System Restore Points ===================
RP2: 8/4/2009 7:13:59 PM - Software Distribution Service 3.0
RP3: 8/4/2009 7:31:08 PM - Software Distribution Service 3.0
RP4: 8/4/2009 7:50:30 PM - Software Distribution Service 3.0
RP5: 8/4/2009 8:08:41 PM - Installed Windows XP WgaNotify.
RP6: 8/6/2009 12:53:46 AM - System Checkpoint
RP7: 8/7/2009 1:40:01 AM - System Checkpoint
RP8: 8/8/2009 2:21:41 AM - System Checkpoint
RP9: 8/8/2009 12:05:38 PM - Installed Adobe Reader 9.1.
RP10: 8/9/2009 4:38:02 PM - System Checkpoint
RP11: 8/10/2009 6:02:48 PM - System Checkpoint
RP12: 8/12/2009 12:18:06 AM - Software Distribution Service 3.0
RP13: 8/13/2009 1:03:25 AM - System Checkpoint
RP14: 8/23/2004 12:31:29 AM - System Checkpoint
RP15: 8/24/2004 2:19:21 AM - System Checkpoint
RP16: 8/25/2004 3:06:11 AM - System Checkpoint
RP17: 8/26/2004 4:52:54 AM - System Checkpoint
RP18: 8/17/2009 8:31:50 AM - System Checkpoint
RP19: 8/18/2009 8:51:35 AM - System Checkpoint
RP20: 8/19/2009 9:45:25 AM - System Checkpoint
RP21: 8/20/2009 10:37:57 AM - System Checkpoint
RP22: 8/21/2009 10:40:32 AM - System Checkpoint
RP23: 8/22/2009 1:44:22 PM - System Checkpoint
RP24: 8/23/2009 1:55:22 PM - System Checkpoint
RP25: 8/24/2009 2:24:58 PM - System Checkpoint
RP26: 8/24/2009 6:51:05 PM - psc 8.02 build 109 Installation
RP27: 8/25/2009 6:57:13 PM - System Checkpoint
==== Installed Programs ======================
Acrobat.com
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Reader 9.1
Adobe Shockwave Player 11.5
ATI - Software Uninstall Utility
ATI Control Panel
ATI Display Driver
Conexant D850 56K V.9x DFVc Modem
Dell ResourceCD
EMBARQ® Online Security
Google Toolbar for Internet Explorer
HijackThis 2.0.2
Hotfix for Windows XP (KB952287)
Intel(R) PRO Network Adapters and Drivers
Mozilla Firefox (3.5.2)
Security Update for Windows Internet Explorer 8 (KB972260)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player (KB973540)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB923789)
Security Update for Windows XP (KB938464-v2)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB954459)
Security Update for Windows XP (KB954600)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956744)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958687)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961371)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB968537)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB971557)
Security Update for Windows XP (KB971633)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB972260)
Security Update for Windows XP (KB973346)
Security Update for Windows XP (KB973354)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973869)
SoundMAX
Update for Windows Internet Explorer 8 (KB972636)
Update for Windows XP (KB951978)
Update for Windows XP (KB955839)
Update for Windows XP (KB967715)
Update for Windows XP (KB973815)
Warcraft III: All Products
WebFldrs XP
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Internet Explorer 8
Windows XP Service Pack 3
World of Warcraft Trial
==== Event Viewer Messages From Past Week ========
8/24/2009 6:57:28 PM, error: MRxSmb [8003] - The master browser has received a server announcement from the computer KATHY-PC that believes that it is the master browser for the domain on transport NetBT_Tcpip_{24FE4B91-652C-4276-. The master browser is stopping or an election is being forced.
8/24/2009 4:46:00 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the crd service to connect.
8/24/2009 4:46:00 PM, error: Service Control Manager [7000] - The crd service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
8/24/2009 4:21:54 PM, error: Service Control Manager [7022] - The ddnsfilter service hung on starting.
==== End Of File ===========================
And HJT:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:46:54 PM, on 8/30/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\windows\pp11.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\sySTEM32\SvchoSt.ExE
C:\Program Files\Embarq Online Security 8\Anti-Virus\fsgk32st.exe
C:\Program Files\Embarq Online Security 8\Common\FSMA32.EXE
C:\Program Files\Embarq Online Security 8\Anti-Virus\FSGK32.EXE
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Embarq Online Security 8\Anti-Virus\fssm32.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Admin\Application Data\U3\000015A08A60466B\LaunchPad.exe
C:\Documents and Settings\Admin\Desktop\Everybody.exe
C:\Program Files\Embarq Online Security 8\Common\FSLAUNCH.EXE
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.15642\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [sysldtray] C:\windows\ld14.exe
O4 - HKLM\..\Run: [pp] C:\windows\pp11.exe
O4 - HKLM\..\Run: [sysfbtray] c:\windows\freddy60.exe
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Embarq Online Security 8\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Embarq Online Security 8\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O9 - Extra button: Parental... - {200DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\Embarq Online Security 8\FSPC\fspcmsie.dll
O9 - Extra button: (no name) - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\Embarq Online Security 8\FSPC\fspcmsie.dll
O9 - Extra 'Tools' menuitem: Parental... - {200DB664-75B5-47c0-8B45-A44ACCF73F01} - C:\Program Files\Embarq Online Security 8\FSPC\fspcmsie.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1093251208187
O16 - DPF: {BDBDE413-7B1C-4C68-A8FF-C5B2B4090876} (F-Secure Online Scanner 3.3) -
http://content.embarq.synacor.com/gigantes/embarq/support/OnlineScanner/fscax.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} -
http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\Embarq Online Security 8\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\Embarq Online Security 8\FSAUA\program\fsaua.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Embarq Online Security 8\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Embarq Online Security 8\Common\FSMA32.EXE
O23 - Service: F-Secure ORSP Client (FSORSPClient) - F-Secure Corporation - C:\Program Files\Embarq Online Security 8\ORSP Client\fsorsp.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
--
End of file - 6064 bytes
Thanks!