Indeed, I attempted the ATI Catalyst driver uninstall/reinstall after I ran GooredFix. However, I created a new restore point after GooredFix, and just prior to the uninstall/reinstall. When the reinstall failed, I then restored to that point.
I think that means that the new restore point should have been clean.
Just to be sure, below is a rerun of DDS.
Thanks.
- Eric
DDS (Ver_09-10-13.01) - NTFSx86
Run by [removed] at 21:10:37.90 on Mon 10/26/2009
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_15
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1535.860 [GMT -4:00]
AV: avast! antivirus 4.8.1351 [VPS 091026-0] *On-access scanning enabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
============== Running Processes ===============
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
svchost.exe
svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\System32\CTsvcCDA.exe
c:\program files\dell printers\Additional Color Laser Software\Status Monitor\DLSDBNT.EXE
C:\Program Files\DriveCrypt\DcrServ.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\M-Audio\M-Audio Series II MIDI\MA_CMIDI_Inst.exe
C:\WINDOWS\System32\svchost.exe -k imgsvc
C:\WINDOWS\System32\dllhost.exe
C:\Program Files\UPHClean\uphclean.exe
C:\WINDOWS\System32\vssvc.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\system32\ZuneBusEnum.exe
c:\program files\dell printers\Additional Color Laser Software\Status Monitor\DLPWDNT.EXE
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\System32\dllhost.exe
C:\WINDOWS\System32\wbem\wmiapsrv.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Creative\SBAudigy2ZS\Surround Mixer\CTSysVol.exe
C:\Program Files\Creative\Prodikeys\Prodload.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Roland\VSC32\vsc32cnf.exe
C:\Program Files\Roland\VSC32\vscvol.exe
C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
C:\program files\dell printers\Additional Color Laser Software\Status Monitor\DLPSP.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Zune\ZuneLauncher.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Logitech\Profiler\lwemon.exe
C:\Program Files\Creative\MediaSource\RemoteControl\RcMan.exe
C:\Program Files\Creative\MediaSource\Go\CTCMSGo.exe
C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Brother\ControlCenter3\brccMCtl.exe
C:\Program Files\Brother\Brmfcmon\BrMfimon.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
D:\Users\Eric\Desktop\Oct 2009 PC Problems\What the Tech\dds.scr
============== Pseudo HJT Report ===============
uStart Page = hxxp://www.google.com/
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}
mStart Page = hxxp://www.google.com
uInternet Settings,ProxyOverride = *.local
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: {4064EA35-578D-4073-A834-C96D82CBCF40} - No File
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [Start WingMan Profiler] "c:\program files\logitech\profiler\lwemon.exe" /noui
uRun: [RemoteCenter] c:\program files\creative\mediasource\remotecontrol\RcMan.exe
uRun: [Creative MediaSource Go] c:\program files\creative\mediasource\go\CTCMSGo.exe /SCB
uRun: [Google Update] "c:\documents and settings\eric\local settings\application data\google\update\GoogleUpdate.exe" /c
mRun: [CTSysVol] c:\program files\creative\sbaudigy2zs\surround mixer\CTSysVol.exe /r
mRun: [CTDVDDET] c:\program files\creative\sbaudigy2zs\dvdaudio\CTDVDDET.EXE
mRun: [CTHelper] CTHELPER.EXE
mRun: [SBDrvDet] c:\program files\creative\sb drive det\SBDrvDet.exe /r
mRun: [UpdReg] c:\windows\UpdReg.EXE
mRun: [ATIPTA] c:\program files\ati technologies\ati control panel\atiptaxx.exe
mRun: [RoxioEngineUtility] "c:\program files\common files\roxio shared\system\EngUtil.exe"
mRun: [PinnacleDriverCheck] c:\windows\system32\PSDrvCheck.exe -CheckReg
mRun: [ProdikeysAutorun] "c:\program files\creative\prodikeys\Prodload.exe"
mRun: [avast!] c:\progra~1\alwils~1\avast4\ashDisp.exe
mRun: [vsc32cnf.exe] c:\program files\roland\vsc32\vsc32cnf.exe
mRun: [vscvol.exe] c:\program files\roland\vsc32\vscvol.exe
mRun: [SsAAD.exe] c:\progra~1\sony\sonics~1\SsAAD.exe
mRun: [DLPSP] "c:\program files\dell printers\additional color laser software\status monitor\DLPSP.EXE"
mRun: [ISUSPM Startup] "c:\program files\common files\installshield\updateservice\isuspm.exe" -startup
mRun: [ISUSScheduler] "c:\program files\common files\installshield\updateservice\issch.exe" -start
mRun: [SSBkgdUpdate] "c:\program files\common files\scansoft shared\ssbkgdupdate\SSBkgdupdate.exe" -Embedding -boot
mRun: [ControlCenter3] c:\program files\brother\controlcenter3\brctrcen.exe /autorun
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
mRun: [Zune Launcher] "c:\program files\zune\ZuneLauncher.exe"
mRun: [Malwarebytes Anti-Malware (reboot)] "c:\program files\malwarebytes' anti-malware\mbam.exe" /runcleanupscript
mRun: [Windows Defender] "c:\program files\windows defender\MSASCui.exe" -hide
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office\OSA9.EXE
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\status~1.lnk - c:\program files\brother\brmfcmon\BrMfcWnd.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
DPF: {01113300-3E00-11D2-8470-0060089874ED} - hxxps://activatemyfios.verizon.net/sdcCommon/download/FIOS/Verizon%20FiOS%20Installer.cab
DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} - hxxp://www.creative.com/su/ocx/15026/CTSUEng.cab
DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} - hxxp://www.pcpitstop.com/betapit/PCPitStop.CAB
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://fpdownload.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {233C1507-6A77-46A4-9443-F871F945D258} - hxxp://fpdownload.macromedia.com/get/shockwave/cabs/director/sw.cab
DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} - hxxp://www.snapfish.com/SnapfishActivia.cab
DPF: {4CCA4E6B-9259-11D9-AC6E-444553544200} - hxxp://h30155.www3.hp.com/ediags/dd/install/HPInstallMgr_v01.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1136547307687
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1252336575984
DPF: {8A0019EB-51FA-4AE5-A40B-C0496BBFC739} - hxxp://picture.vzw.com/activex/VerizonWirelessUploadControl.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab
DPF: {99FE5072-78AA-4FEE-89BA-69A5FA55343F} - hxxp://download.microsoft.com/download/B/3/A/B3A2EA73-793D-4ABE-992D-C81140384044/igdtoolx.cab
DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} - hxxp://www.crucial.com/controls/cpcScanner.cab
DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} - hxxp://www.creative.com/su/ocx/15026/CTPID.cab
Notify: AtiExtEvent - Ati2evxx.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: Microsoft AntiMalware ShellExecuteHook: {091eb208-39dd-417d-a5dd-7e2c2d8fb9cb} - c:\progra~1\wifd1f~1\MpShHook.dll
================= FIREFOX ===================
FF - ProfilePath - c:\docume~1\eric\applic~1\mozilla\firefox\profiles\s7rib94w.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://start.mozilla.org/firefox?client=firefox-a&rls;=org.mozilla:en-US:official
FF - plugin: c:\documents and settings\eric\local settings\application data\google\update\1.2.183.7\npGoogleOneClick8.dll
FF - plugin: c:\program files\firefox\plugins\npFoxitReaderPlugin.dll
FF - plugin: c:\program files\opera7\program\plugins\np32dsw.dll
FF - plugin: c:\program files\opera7\program\plugins\npdrmv2.dll
FF - plugin: c:\program files\opera7\program\plugins\npdsplay.dll
FF - plugin: c:\program files\opera7\program\plugins\NPJava11.dll
FF - plugin: c:\program files\opera7\program\plugins\NPJava12.dll
FF - plugin: c:\program files\opera7\program\plugins\NPJava13.dll
FF - plugin: c:\program files\opera7\program\plugins\NPJava14.dll
FF - plugin: c:\program files\opera7\program\plugins\NPJava32.dll
FF - plugin: c:\program files\opera7\program\plugins\NPJPI142_03.dll
FF - plugin: c:\program files\opera7\program\plugins\npjpi160_14.dll
FF - plugin: c:\program files\opera7\program\plugins\npoji610.dll
FF - plugin: c:\program files\opera7\program\plugins\NPOJI610.dll
FF - plugin: c:\program files\opera7\program\plugins\nppdf32.dll
FF - plugin: c:\program files\opera7\program\plugins\nppl3260.dll
FF - plugin: c:\program files\opera7\program\plugins\nprjplug.dll
FF - plugin: c:\program files\opera7\program\plugins\nprpjplug.dll
FF - plugin: c:\program files\opera7\program\plugins\NPSWF32.dll
FF - plugin: c:\program files\opera7\program\plugins\npwmsdrm.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\dotnetassistantextension\
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\firefox\extensions\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\firefox\extensions\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\firefox\extensions\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\firefox\extensions\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}
============= SERVICES / DRIVERS ===============
R0 DCR;DCR;c:\windows\system32\drivers\DCR.sys [2004-4-3 224800]
R0 viasraid;viasraid;c:\windows\system32\drivers\viasraid.sys [2004-3-13 77312]
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2008-4-5 114768]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2008-4-5 20560]
R2 DLSDB;Dell Printer Status Database;c:\program files\dell printers\additional color laser software\status monitor\dlsdbnt.exe [2006-3-4 135168]
R2 DriveCryptService;DriveCrypt Service;c:\program files\drivecrypt\DcrServ.exe [2004-4-3 208012]
R2 PfDetNT;PfDetNT;c:\windows\system32\drivers\PFModNT.sys [2004-3-26 15840]
R2 RVIEGVST;VSC VST Engine;c:\program files\roland\virtual sound canvas vst\RVIEg01VST.sys [2005-6-21 188276]
R3 Prodikeys;Creative Prodikeys Driver;c:\windows\system32\drivers\ProdDrvr.sys [2004-6-6 14392]
R3 vsc32;Virtual Sound Canvas 3.2;c:\windows\system32\drivers\vsc.sys [2005-6-21 951284]
S2 BridDfu;LINKSYS WAP11 USB Device Driver;c:\windows\system32\drivers\BridDFU.sys [2004-5-1 16302]
S3 ATIXPGAA;ATIXPGAA;\??\c:\program files\asus\smartdoctor\atixpgaa.sys –> c:\program files\asus\smartdoctor\ATIXPGAA.SYS [?]
=============== Created Last 30 ================
2009-10-20 21:27 –d—– c:\windows\system32\wbem\Repository
2009-10-20 21:14 –d—– C:\ATI
2009-10-18 16:32 –d—– C:\DECCHECK
2009-10-16 15:52 116,224 ac—— c:\windows\system32\dllcache\xrxwiadr.dll
2009-10-16 15:52 23,040 ac—— c:\windows\system32\dllcache\xrxwbtmp.dll
2009-10-16 15:52 18,944 ac—— c:\windows\system32\dllcache\xrxscnui.dll
2009-10-16 15:52 27,648 ac—— c:\windows\system32\dllcache\xrxftplt.exe
2009-10-16 15:52 4,608 ac—— c:\windows\system32\dllcache\xrxflnch.exe
2009-10-16 15:50 35,871 ac—— c:\windows\system32\dllcache\wbfirdma.sys
2009-10-16 15:49 440,576 ac—— c:\windows\system32\dllcache\tridkb.dll
2009-10-16 15:48 7,552 ac—— c:\windows\system32\dllcache\sonyait.sys
2009-10-16 15:47 17,280 ac—— c:\windows\system32\dllcache\scr111.sys
2009-10-16 15:46 130,942 ac—— c:\windows\system32\dllcache\ptserlv.sys
2009-10-16 15:45 54,528 ac—— c:\windows\system32\dllcache\opl3sax.sys
2009-10-16 15:44 35,200 ac—— c:\windows\system32\dllcache\msgame.sys
2009-10-16 15:43 253,952 ac—— c:\windows\system32\dllcache\kdsusd.dll
2009-10-16 15:42 372,824 ac—— c:\windows\system32\dllcache\iconf32.dll
2009-10-16 15:41 165,888 ac—— c:\windows\system32\dllcache\hpgt53.dll
2009-10-16 15:40 34,816 ac—— c:\windows\system32\dllcache\esuimg.dll
2009-10-16 15:39 102,484 ac—— c:\windows\system32\dllcache\digiinf.dll
2009-10-16 15:38 272,640 ac—— c:\windows\system32\dllcache\cinemclc.sys
2009-10-16 15:37 66,082 ac—— c:\windows\system32\dllcache\c_1149.nls
2009-10-16 15:36 268,160 ac—— c:\windows\system32\dllcache\atidvai.dll
2009-10-16 15:35 66,048 ac—— c:\windows\system32\dllcache\s3legacy.dll
2009-10-16 15:18 8,396,800 a——- c:\windows\sectest.db
2009-10-16 12:53 178,176 a——- c:\windows\system32\unrar.dll
2009-10-16 12:53 –d—– c:\program files\K-Lite Codec Pack
2009-10-10 20:27 –d—– c:\program files\mpg123dsf
2009-10-02 20:26 195,440 ——– c:\windows\system32\MpSigStub.exe
==================== Find3M ====================
2009-09-20 17:34 0 a—h— c:\windows\system32\drivers\Msft_User_ZuneDriver_01_09_00.Wdf
2009-09-20 17:34 0 a—h— c:\windows\system32\drivers\Msft_Kernel_WinUSB_01009.Wdf
2009-09-20 17:33 0 a—h— c:\windows\system32\drivers\MsftWdf_user_01_09_00.Wdf
2009-09-15 16:26 0 a—h— c:\windows\system32\drivers\Msft_Kernel_zumbus_01009.Wdf
2009-09-15 16:26 0 a—h— c:\windows\system32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
2009-09-11 10:18 136,192 a——- c:\windows\system32\msv1_0.dll
2009-09-10 14:54 38,224 a——- c:\windows\system32\drivers\mbamswissarmy.sys
2009-09-10 14:53 19,160 a——- c:\windows\system32\drivers\mbam.sys
2009-09-04 17:03 58,880 a——- c:\windows\system32\msasn1.dll
2009-09-04 13:17 447,216 a——- c:\windows\system32\ZuneWlanCfgSvc.exe
2009-09-04 13:16 58,592 a——- c:\windows\system32\ZuneBusEnum.exe
2009-09-02 00:29 74,240 a——- c:\windows\system32\ZuneUsbTransport.dll
2009-09-02 00:29 57,344 a——- c:\windows\system32\ZuneRegUtil.dll
2009-09-02 00:29 18,944 a——- c:\windows\system32\ZuneTcp2Udp.dll
2009-09-02 00:29 12,800 a——- c:\windows\system32\ZunePTDNS.dll
2009-09-02 00:29 310,784 a——- c:\windows\system32\ZuneNetProxy.dll
2009-09-02 00:29 147,456 a——- c:\windows\system32\ZuneMTPZ.dll
2009-09-02 00:28 40,832 a——- c:\windows\system32\drivers\zumbus.sys
2009-08-29 04:08 916,480 a——- c:\windows\system32\wininet.dll
2009-08-26 04:00 247,326 a——- c:\windows\system32\strmdll.dll
2009-08-17 12:37 1,837,296 a——- c:\windows\system32\WUDFUpdate_01009.dll
2009-08-17 12:37 1,461,992 a——- c:\windows\system32\WdfCoInstaller01009.dll
2009-08-05 05:01 204,800 a——- c:\windows\system32\mswebdvd.dll
2009-08-04 20:44 2,189,184 ——– c:\windows\system32\ntoskrnl.exe
2009-08-04 10:20 2,066,048 ——– c:\windows\system32\ntkrnlpa.exe
2007-10-27 20:28 47,360 a——- c:\docume~1\eric\applic~1\pcouffin.sys
2006-05-17 21:28 330 a—h— c:\documents and settings\all users\hpothb07.dat
2005-01-15 15:10 309 a—h— c:\documents and settings\eric\hpothb07.dat
2003-07-31 05:53 147,456 a——- c:\windows\inf\EL2K_XP.sys
2003-07-31 05:50 448,768 a——- c:\windows\inf\EL2K_N64.sys
2003-07-31 05:43 147,456 a——- c:\windows\inf\EL2K_2K.sys
2008-08-17 19:36 32,768 a–sh— c:\windows\system32\config\systemprofile\local settings\history\history.ie5\mshist012008081720080818\index.dat
============= FINISH: 21:11:27.82 ===============
📎Attach.txt