My apologies. Here is the second report:
DDS (Ver_09-07-30.01) - NTFSx86
Run by Owner at 16:54:28.65 on Sun 08/09/2009
Internet Explorer: 6.0.2800.1106
Microsoft Windows XP Home Edition 5.1.2600.1.1252.1.1033.18.254.123 [GMT -7:00]
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k rpcss
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\sdra64.exe
C:\Program Files\Napster\napster.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\PC_Antispyware2010\PC_Antispyware2010.exe
C:\WINDOWS\System32\braviax.exe
C:\Program Files\Messenger\msmsgs.exe
C:\DOCUME~1\Owner\LOCALS~1\Temp\install.exe
svchost
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\Internet Explorer\Iexplore.exe
C:\Documents and Settings\Owner\Desktop\dds.scr
============== Pseudo HJT Report ===============
uStart Page =
hxxp://www.google.comuSearch Page =
hxxp://www.google.comuSearch Bar =
hxxp://www.google.com/iemDefault_Search_URL =
hxxp://www.google.com/iemSearch Page =
hxxp://www.google.commStart Page =
hxxp://www.google.commSearchAssistant =
hxxp://www.google.commWinlogon: Userinit=c:\windows\system32\userinit.exe,c:\windows\system32\sdra64.exe,
BHO: c:\windows\system32\hs7f3uhduhfukde.dll: {bd56a320-23f2-42ad-f4e4-00aac39caa53} - c:\windows\system32\hs7f3uhduhfukde.dll
EB: Media Band: {32683183-48a0-441b-a342-7c2a440a9478} - %SystemRoot%\System32\browseui.dll
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
uRun: [braviax] c:\windows\system32\braviax.exe
uRun: [Windows System Recover!] c:\docume~1\owner\locals~1\temp\install.exe
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [NapsterShell] c:\program files\napster\napster.exe /systray
mRun: [net] "c:\windows\system32\net.net"
mRun: [PC Antispyware 2010] "c:\program files\pc_antispyware2010\PC_Antispyware2010.exe" /hide
mRun: [braviax] braviax.exe
uPolicies-explorer: NoFolderOptions = 1 (0x1)
uPolicies-explorer: ForceClassicControlPanel = 1 (0x1)
uPolicies-system: EnableProfileQuota = 1 (0x1)
uPolicies-system: DisableRegistryTools = 1 (0x1)
IE: {c95fe080-8f5d-11d2-a20b-00aa003c157a} - %SystemRoot%\web\related.htm
DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} -
hxxp://go.microsoft.com/fwlink/?linkid=58813DPF: {17492023-C23A-453E-A040-C7C580BBF700} -
hxxp://go.microsoft.com/fwlink/?linkid=39204DPF: {1E3F1348-4370-4BBE-A67A-CC7ED824CA85} -
hxxp://go.microsoft.com/fwlink/?LinkId=82580DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} -
hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cabNotify: GoToAssist - c:\program files\citrix\gotoassist\514\G2AWinLogon.dll
Notify: igfxcui - igfxsrvc.dll
AppInit_DLLs: c:\windows\system32\cru629.dat
STS: c:\windows\system32\hs7f3uhduhfukde.dll: {bd56a320-23f2-42ad-f4e4-00aac39caa53} - c:\windows\system32\hs7f3uhduhfukde.dll
================= FIREFOX ===================
FF - ProfilePath - c:\docume~1\owner\applic~1\mozilla\firefox\profiles\ymlxmd40.default\
FF - plugin: c:\program files\mozilla firefox\plugins\npstrlnk.dll
---- FIREFOX POLICIES ----
c:\program files\mozilla firefox\greprefs\all.js - pref("media.enforce_same_site_origin", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("media.cache_size", 51200);
c:\program files\mozilla firefox\greprefs\all.js - pref("media.ogg.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("media.wave.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("media.autoplay.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.urlbar.autocomplete.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("capability.policy.mailnews.*.wholeText", "noAccess");
c:\program files\mozilla firefox\greprefs\all.js - pref("dom.storage.default_quota", 5120);
c:\program files\mozilla firefox\greprefs\all.js - pref("content.sink.event_probe_rate", 3);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.http.prompt-temp-redirect", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("layout.css.dpi", -1);
c:\program files\mozilla firefox\greprefs\all.js - pref("layout.css.devPixelsPerPx", -1);
c:\program files\mozilla firefox\greprefs\all.js - pref("gestures.enable_single_finger_input", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("dom.max_chrome_script_run_time", 0);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.tcp.sendbuffer", 131072);
c:\program files\mozilla firefox\greprefs\all.js - pref("geo.enabled", true);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.remember_cert_checkbox_default_setting", true);
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr", "moz35");
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-cjkt", "moz35");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("extensions.blocklist.level", 2);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.urlbar.restrict.typed", "~");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.urlbar.default.behavior", 0);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.history", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.formdata", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.passwords", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.downloads", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.cookies", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.cache", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.sessions", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.offlineApps", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.siteSettings", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.history", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.formdata", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.passwords", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.downloads", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.cookies", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.cache", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.sessions", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.offlineApps", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.siteSettings", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.sanitize.migrateFx3Prefs", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.ssl_override_behavior", 2);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("security.alternate_certificate_error_page", "certerror");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.privatebrowsing.autostart", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.privatebrowsing.dont_prompt_on_enter", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("geo.wifi.uri", "https://www.google.com/loc/json");
============= SERVICES / DRIVERS ===============
=============== Created Last 30 ================
2009-08-09 15:51 19,650 a------- c:\windows\qacexev.scr
2009-08-09 15:51 17,916 a------- c:\windows\jukakyk.vbs
2009-08-09 15:51 15,690 a------- c:\windows\system32\enepoqunov.reg
2009-08-09 15:51 15,104 a------- c:\docume~1\alluse~1\applic~1\iwutu.com
2009-08-09 15:51 14,886 a------- c:\windows\ymiqab.inf
2009-08-09 15:51 13,988 a------- c:\windows\bycyfoteto._dl
2009-08-09 15:51 13,796 a------- c:\windows\ucil.com
2009-08-09 15:51 12,378 a------- c:\docume~1\owner\applic~1\rodukobehi.reg
2009-08-09 15:51 10,604 a------- c:\windows\system32\tebyxogyfi._dl
2009-08-09 15:50 <DIR> --d----- c:\program files\PC_Antispyware2010
2009-08-08 21:16 <DIR> --d----- c:\windows\pss
2009-08-08 18:05 32,256 a------- c:\windows\winkpst.exe
2009-08-07 13:10 19,926 a------- c:\docume~1\owner\applic~1\omevibaq.bin
2009-08-07 13:10 19,650 a------- c:\windows\pogukig.vbs
2009-08-07 13:10 19,553 a------- c:\docume~1\alluse~1\applic~1\tufuv.vbs
2009-08-07 13:10 17,858 a------- c:\docume~1\owner\applic~1\atyxowew.sys
2009-08-07 13:10 16,707 a------- c:\windows\ohateso.inf
2009-08-07 13:10 16,496 a------- c:\docume~1\alluse~1\applic~1\ygoz.scr
2009-08-07 13:10 15,858 a------- c:\docume~1\owner\applic~1\xapej.sys
2009-08-07 13:10 14,435 a------- c:\windows\rawyr.db
2009-08-07 13:10 13,914 a------- c:\windows\afof.pif
2009-08-07 13:10 13,629 a------- c:\windows\system32\wewy.exe
2009-08-07 13:10 11,917 a------- c:\program files\common files\orulyx.scr
2009-08-07 13:10 11,477 a------- c:\windows\system32\gikab.reg
2009-08-07 13:10 10,885 a------- c:\windows\ifipaqucaz.dat
2009-08-07 13:10 347,739 a------- c:\windows\system32\_scui.cpl
2009-08-07 12:50 <DIR> --d----- c:\windows\system32\CatRoot
2009-08-07 12:50 12,288 a------- c:\windows\braviax.exe
2009-08-07 12:50 6,144 a------- c:\windows\system32\cru629.dat
2009-08-07 12:50 6,144 a------- c:\windows\cru629.dat
2009-08-05 16:13 <DIR> --d----- c:\program files\Trend Micro
2009-07-29 06:18 67,072 a------- c:\windows\system32\drivers\vsfoceibvyapma.sys
2009-07-29 06:16 36,864 a------- c:\windows\system32\net.net
2009-07-27 22:32 20,480 a------- c:\windows\system32\setb2.tmp
2009-07-27 22:32 20,480 a------- c:\windows\system32\setb1.tmp
2009-07-27 22:31 316,640 a------- c:\windows\WMSysPr9.prx
2009-07-27 22:31 <DIR> --d----- c:\windows\RegisteredPackages
2009-07-27 22:13 <DIR> --d----- c:\program files\common files\Napster Shared
2009-07-27 22:13 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Napster
2009-07-27 22:13 <DIR> --d----- c:\program files\Napster
2009-07-25 10:04 <DIR> --d----- c:\windows\system32\bits
2009-07-25 10:03 <DIR> --d----- c:\windows\system32\PreInstall
2009-07-25 10:03 22,752 a------- c:\windows\system32\spupdsvc.exe
2009-07-25 10:03 <DIR> --d-h--- c:\windows\$hf_mig$
2009-07-23 21:15 65,536 a------- c:\windows\system32\drivers\vsfocenyrsmnge.sys
2009-07-19 10:18 361,984 ac------ c:\windows\system32\dllcache\qmgr.dll
2009-07-19 10:18 331,776 ac------ c:\windows\system32\dllcache\winhttp.dll
2009-07-19 10:18 17,408 ac------ c:\windows\system32\dllcache\qmgrprxy.dll
2009-07-19 10:18 331,776 a------- c:\windows\system32\winhttp.dll
2009-07-19 10:18 17,408 a------- c:\windows\system32\qmgrprxy.dll
2009-07-19 10:18 7,680 -c------ c:\windows\system32\dllcache\bitsprx2.dll
2009-07-19 10:18 7,168 -c------ c:\windows\system32\dllcache\bitsprx3.dll
2009-07-19 10:18 158,720 -------- c:\windows\system32\xpob2res.dll
2009-07-19 10:18 7,680 -------- c:\windows\system32\bitsprx2.dll
2009-07-19 10:18 7,168 -------- c:\windows\system32\bitsprx3.dll
2009-07-19 10:14 <DIR> --d----- c:\windows\system32\SoftwareDistribution
2009-07-19 10:12 213,528 a------- c:\windows\system32\wuaucpl.cpl
2009-07-19 10:12 186,136 a------- c:\windows\system32\wuaueng1.dll
2009-07-19 10:12 167,704 a------- c:\windows\system32\wuauclt1.exe
2009-07-17 01:44 <DIR> --ds---- c:\documents and settings\owner\UserData
2009-07-16 16:02 155,648 a------- c:\windows\system32\igfxres.dll
2009-07-16 16:01 <DIR> --ds---- c:\windows\system32\Microsoft
2009-07-16 15:58 319,488 a------- c:\windows\system32\igfxsrvc.dll
2009-07-16 15:57 5,888 ac------ c:\windows\system32\dllcache\splitter.sys
2009-07-16 15:56 7,040 ac------ c:\windows\system32\dllcache\mskssrv.sys
2009-07-16 15:56 <DIR> --d----- c:\program files\Analog Devices
2009-07-16 15:50 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Citrix
2009-07-16 15:50 <DIR> --d----- c:\program files\Citrix
2009-07-16 15:42 43,136 a----r-- c:\windows\system32\drivers\bcm4sbxp.sys
2009-07-16 15:42 <DIR> --d----- c:\windows\system32\ReinstallBackups
2009-07-16 15:39 <DIR> --d----- c:\windows\LastGood.Tmp
2009-07-16 15:39 <DIR> --d----- c:\program files\Broadcom
2009-07-16 15:32 446,464 a----r-- c:\windows\system32\hhactivex.dll
2009-07-16 15:32 1,064,456 a------- c:\windows\system32\MSCOMCTL.OCX
2009-07-16 15:32 645,616 a------- c:\windows\system32\MSCOMCT2.OCX
2009-07-16 15:32 414,944 a------- c:\windows\system32\COMCT332.OCX
2009-07-16 15:32 176,128 a------- c:\windows\system32\RcdScan.dll
2009-07-16 15:32 328,480 a------- c:\windows\system32\ssa3d30.ocx
2009-07-16 15:32 171,967 a------- c:\windows\system32\Odbcjet.hlp
2009-07-16 15:32 7,348 a------- c:\windows\system32\Odbcjet.cnt
2009-07-16 15:32 89,360 a------- c:\windows\system32\VB5DB.DLL
2009-07-16 15:32 13,632 -------- c:\windows\system32\drivers\omci.sys
2009-07-16 15:06 <DIR> --dsh--- c:\windows\Installer
2009-07-16 15:06 <DIR> --d----- c:\documents and settings\Owner
2009-07-16 15:05 8,192 a------- c:\windows\REGLOCS.OLD
2009-07-16 15:03 1,875,968 ac------ c:\windows\system32\dllcache\msir3jp.lex
2009-07-16 15:02 312,832 ac------ c:\windows\system32\dllcache\EXCH_aqueue.dll
2009-07-16 15:00 24,576 a------- c:\windows\system32\xpsp1hfm.exe
2009-07-16 14:57 <DIR> --dsh--- c:\documents and settings\all users\DRM
2009-07-16 14:57 488 a---hr-- c:\windows\system32\WindowsLogon.manifest
2009-07-16 14:56 <DIR> --d----- c:\program files\common files\MSSoap
2009-07-16 14:55 <DIR> --d-h--- c:\program files\WindowsUpdate
2009-07-16 14:55 <DIR> --d----- c:\program files\Online Services
2009-07-16 14:55 <DIR> --d----- c:\program files\Messenger
2009-07-16 14:55 <DIR> --d----- c:\program files\MSN Gaming Zone
2009-07-16 14:54 <DIR> --d----- c:\program files\Windows NT
2009-07-16 07:45 <DIR> --d----- c:\program files\common files\ODBC
2009-07-16 07:45 <DIR> --d----- c:\program files\common files\SpeechEngines
2009-07-16 07:45 <DIR> --d--r-- c:\documents and settings\all users\Documents
==================== Find3M ====================
2009-08-09 15:51 18,822 a------- c:\program files\common files\ikukygyrat.ban
2009-08-07 13:20 12,288 a------- c:\windows\system32\braviax.exe
2009-08-07 12:49 90,624 a------- C:\criqmsck.exe
2009-08-07 12:48 27,136 a------- C:\ibts.exe
2009-08-07 12:48 91,648 a------- C:\phheq.exe
2009-08-07 12:48 0 a------- C:\vkywt.exe
2009-08-07 12:48 15,000 a------- c:\windows\system32\hs7f3uhduhfukde.dll
2009-08-07 12:48 9,728 a------- C:\umoikchf.exe
2009-08-07 12:48 19,456 a------- C:\niawndos.exe
2009-08-07 12:48 19,456 a------- C:\hcel.exe
2009-08-07 12:48 190,307 a------- c:\windows\system32\wisdstr.exe
2009-08-07 12:48 75,776 a------- C:\yedfjdy.exe
2009-08-07 12:48 19,456 a------- C:\rcvbm.exe
2009-08-07 12:48 30,208 a------- c:\windows\system32\drivers\beep.sys
2009-08-07 12:48 111,616 a------- C:\zxhK.exe
2009-07-17 15:10 71,627 a------- c:\windows\pchealth\helpctr\offlinecache\index.dat
2009-07-16 14:56 21,640 a------- c:\windows\system32\emptyregdb.dat
============= FINISH: 16:55:51.26 ===============