Here my log file for ComboFix:
"mimi" - 2007-07-15 15:07:45 - ComboFix 07-07-13.8 - Service Pack 2 NTFS
(((((((((((((((((((((((((((((((((((((((((((( V Log )))))))))))))))))))))))))))))))))))))))))))))))))))))))
C:\WINDOWS\system32\geedecy.dll
C:\WINDOWS\system32\mucxvsmw.dll
C:\WINDOWS\system32\nqejfsqm.dll
C:\WINDOWS\system32\qomjghe.dll
C:\WINDOWS\system32\geedecy.dll
C:\WINDOWS\system32\qomjghe.dll
C:\WINDOWS\system32\winrkp32.dll
C:\WINDOWS\SYSTEM32\bbeeg.bak1
C:\WINDOWS\SYSTEM32\bbeeg.bak2
C:\WINDOWS\SYSTEM32\bbeeg.ini
C:\WINDOWS\SYSTEM32\bbeeg.tmp
C:\WINDOWS\SYSTEM32\wmsvxcum.ini
C:\WINDOWS\system32\geebb.dll
C:\WINDOWS\system32\ssqqpnm.dll
C:\WINDOWS\system32\ssqqpnm.dll
* * * POST RUN FILES/FOLDERS * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * *
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
C:\Program Files\outerinfo
C:\Program Files\outerinfo\OiUninstaller.exe
C:\Program Files\outerinfo\outerinfo.ico
C:\Program Files\outerinfo\Terms.rtf
C:\WINDOWS\fnts~1
C:\WINDOWS\fnts~1\taskmgr.exe
C:\WINDOWS\system32\jltth.dll
C:\WINDOWS\system32\jwnop.dll
C:\WINDOWS\system32\wnsinticomsv.exe
C:\WINDOWS\wr.txt
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
-------\nm
((((((((((((((((((((((((( Files Created from 2007-06-15 to 2007-07-15 )))))))))))))))))))))))))))))))
2007-07-15 15:11 40,183 ---hs---- C:\Program Files\Common Files\Yazzle1162OinUninstaller.exe
2007-07-15 15:06 51,200 --a------ C:\WINDOWS\nircmd.exe
2007-07-15 12:51 <DIR> d----c--- C:\Hijackthis
2007-07-15 12:39 66,624 --a------ C:\WINDOWS\SYSTEM32\ibfgyhrg.dll
2007-07-15 12:36 66,112 --a------ C:\WINDOWS\SYSTEM32\amslrmup.exe
2007-07-14 14:05 <DIR> d-------- C:\Program Files\Lavasoft
2007-07-14 14:05 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Lavasoft
2007-07-14 12:42 66,624 --a------ C:\WINDOWS\SYSTEM32\yterbman.dll
2007-07-14 12:36 66,112 --a------ C:\WINDOWS\SYSTEM32\rdcodtak.exe
2007-07-13 11:46 66,624 --a------ C:\WINDOWS\SYSTEM32\grooeqac.dll
2007-07-08 16:35 7,882 --a------ C:\WINDOWS\SYSTEM32\GTKCMOS.sys
2007-07-08 16:35 7,626 --a------ C:\WINDOWS\SYSTEM32\GPCIEnum.sys
2007-07-08 16:35 7,168 --a------ C:\WINDOWS\SYSTEM32\DLPT64.sys
2007-07-08 16:35 6,656 --a------ C:\WINDOWS\SYSTEM32\DLPT2.sys
2007-07-08 16:35 5,632 --a------ C:\WINDOWS\SYSTEM32\GPCIEn64.sys
2007-07-08 16:35 5,120 --a------ C:\WINDOWS\SYSTEM32\GTKCMO64.sys
2007-07-08 16:35 4,608 --a------ C:\WINDOWS\SYSTEM32\DDMI64.sys
2007-06-17 16:22 <DIR> d-------- C:\WINDOWS\SYSTEM32\VirtualExpander
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
2007-07-15 19:33:09 -------- d-----w C:\Program Files\Symantec AntiVirus
2007-07-15 19:04:26 -------- d-----w C:\DOCUME~1\mimi\APPLIC~1\MSN6
2007-07-15 18:05:15 -------- d-----w C:\DOCUME~1\mimi\APPLIC~1\WeatherBug
2007-07-14 18:05:42 -------- d-----w C:\DOCUME~1\mimi\APPLIC~1\Lavasoft
2007-07-14 18:04:10 -------- d-----w C:\Program Files\Common Files\Wise Installation Wizard
2007-07-13 23:00:03 -------- d-----w C:\DOCUME~1\mimi\APPLIC~1\Move Networks
2007-07-01 22:06:29 -------- d--h--w C:\Program Files\WindowsUpdate
2007-06-30 20:26:12 -------- d-----w C:\DOCUME~1\mimi\APPLIC~1\MSNInstaller
2007-06-26 20:44:57 359,808 ----a-w C:\WINDOWS\system32\drivers\tcpip.sys
2007-06-24 18:52:06 -------- d-----w C:\DOCUME~1\mimi\APPLIC~1\U3
2007-06-14 15:32:53 -------- d-----w C:\Program Files\Solid Edge V18
2007-06-14 15:32:53 -------- d-----w C:\Program Files\iTunes
2007-06-04 21:36:55 -------- d-----w C:\Program Files\progeSOFT
2007-06-04 19:18:48 9,344 ----a-w C:\WINDOWS\system32\drivers\NSDriver.sys
2007-06-04 19:17:02 8,320 ----a-w C:\WINDOWS\system32\drivers\AWRTRD.sys
2007-06-04 19:14:56 6,272 ----a-w C:\WINDOWS\system32\drivers\AWRTPD.sys
2007-06-03 00:36:30 -------- d-----w C:\DOCUME~1\mimi\APPLIC~1\Unigraphics Solutions
2007-06-03 00:16:08 -------- d-----w C:\Program Files\Rainbow Technologies
2007-05-29 22:37:35 -------- d--h--w C:\Program Files\InstallShield Installation Information
2007-05-29 22:37:09 -------- d-----w C:\Program Files\Google
2007-05-26 23:40:58 -------- d-----w C:\Program Files\WinCleaner Memory Optimizer
2007-05-25 01:01:14 -------- d-----w C:\Program Files\Microsoft Works
2007-05-24 02:42:35 -------- d-----w C:\DOCUME~1\mimi\APPLIC~1\Real
2007-05-16 15:12:02 683,520 ----a-w C:\WINDOWS\system32\inetcomm.dll
2007-05-01 15:35:12 146,432 --sh--w C:\Program Files\Common Files\Yazzle1162OinAdmin.exe
2007-04-25 14:21:15 144,896 ----a-w C:\WINDOWS\system32\schannel.dll
2007-04-18 16:12:23 2,854,400 ----a-w C:\WINDOWS\system32\msi.dll
2007-04-17 02:47:36 33,624 ----a-w C:\WINDOWS\system32\wups.dll
2007-04-17 02:45:54 1,710,936 ----a-w C:\WINDOWS\system32\wuaueng.dll
2007-04-17 02:45:48 549,720 ----a-w C:\WINDOWS\system32\wuapi.dll
2007-04-17 02:45:42 325,976 ----a-w C:\WINDOWS\system32\wucltui.dll
2007-04-17 02:45:36 203,096 ----a-w C:\WINDOWS\system32\wuweb.dll
2007-04-17 02:45:28 92,504 ----a-w C:\WINDOWS\system32\cdm.dll
2007-04-17 02:45:20 53,080 ----a-w C:\WINDOWS\system32\wuauclt.exe
2007-04-17 02:45:20 43,352 ----a-w C:\WINDOWS\system32\wups2.dll
2007-04-17 02:44:20 271,224 ----a-w C:\WINDOWS\system32\mucltui.dll
2007-04-17 02:43:40 208,248 ----a-w C:\WINDOWS\system32\muweb.dll
2006-03-20 23:04:16 205,016 ----a-w C:\Program Files\UserChanges.tb2
2005-06-05 15:16:34 3,370 ----a-w C:\Program Files\A1Clean.ini
2004-11-14 20:33:29 33 -c--a-w C:\DOCUME~1\mimi\APPLIC~1\tvmcwrd.dll
2003-11-10 02:06:18 808 -c--a-w C:\Program Files\INSTALL.LOG
2003-10-01 08:28:00 78,080 -c--a-w C:\DOCUME~1\mimi\APPLIC~1\GDIPFONTCACHEV1.DAT
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}]
2006-06-06 09:28 439872 --a------ C:\Program Files\Yahoo!\Companion\Companion\Installs\cpn\yt.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
2006-01-12 20:38 63128 --a------ C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}]
C:\Program Files\BitComet\tools\BitCometBHO_1.1.6.14.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897}]
2006-01-06 12:52 181752 --a------ C:\Program Files\Yahoo!\Common\yiesrvc.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{7D9E713D-0388-4384-BDD8-2A42EB1C4F04}]
C:\Program Files\Proxyconn\PrxcnBrsrCtrl.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
c:\program files\google\googletoolbar1.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{FDD3B846-8D59-4ffb-8758-209B6AD74ACC}]
2001-07-25 11:00 143420 --a------ C:\Program Files\Microsoft Money\System\mnyviewer.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MMTray"="C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe" [2002-09-15 11:47]
"Dell|Alert"="C:\Program Files\Dell\Support\Alert\bin\DAMon.exe" [2002-07-11 16:15]
"IPInSightMonitor 01"="C:\Program Files\Verizon Online\VisualIPInsight\IPMon32.exe" []
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2003-10-06 15:16]
"nwiz"="nwiz.exe" [2003-10-06 15:16 C:\WINDOWS\SYSTEM32\nwiz.exe]
"BCMSMMSG"="BCMSMMSG.exe" [2003-08-29 04:59 C:\WINDOWS\BCMSMMSG.exe]
"vptray"="C:\PROGRA~1\SYMANT~1\VPTray.exe" [2004-03-12 16:18]
"DownloadAccelerator"="C:\PROGRA~1\DAP\DAP.exe" [2005-05-31 21:25]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe" [2005-04-13 03:48]
"AOLDialer"="C:\Program Files\Common Files\AOL\ACS\AOLDial.exe" []
"Pure Networks Port Magic"="C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe" []
"HostManager"="C:\Program Files\Common Files\AOL\1135242701\ee\AOLHostManager.exe" []
"Microsoft Works Update Detection"="C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe" [2003-09-13 22:36]
"WinampAgent"="C:\Program Files\Winamp3\winampa.exe" []
"WhenUSave"="C:\PROGRA~1\Save\Save.exe" []
"SpyHunter"="C:\Program Files\SpyHunter\SpyHunter.exe" []
"PxClient.exe"="C:\Program Files\Proxyconn\PxUi.exe" []
"Motive SmartBridge"="C:\PROGRA~1\VERIZO~1\SUPPOR~1\SMARTB~1\MotiveSB.exe" []
"KAZAA"="C:\Program Files\Kazaa\kazaa.exe" [2003-02-06 15:21]
"IPInSightLAN 01"="C:\Program Files\Verizon Online\VisualIPInsight\IPClient.exe" []
"DownloadWare Engine"="C:\Program Files\DownloadWare Engine\DWE.exe" []
"ccRegVfy"="C:\Program Files\Common Files\Symantec Shared\ccRegVfy.exe" []
"ccApp"="C:\Program Files\Common Files\Symantec Shared\ccApp.exe" []
"AdaptecDirectCD"="C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe" [2002-04-10 17:44]
"Adobe Photo Downloader"="C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" [2005-06-06 23:46]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2006-06-14 17:24]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2006-10-29 15:53]
"HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [2005-05-12 00:12]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2006-12-24 01:01]
"wfmlibal.exe"="C:\Documents and Settings\All Users\Application Data\wfmlibal.exe" []
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Weather"="C:\Program Files\AWS\WeatherBug\Weather.exe" [2004-12-10 15:46]
"msnmsgr"="C:\Program Files\MSN Messenger\msnmsgr.exe" [2005-06-14 11:05]
"Windows Registry Repair Pro"="C:\Program Files\3B Software\Windows Registry Repair Pro\RegistryRepairPro.exe" []
"Microsoft Works Update Detection"="C:\Program Files\Microsoft Works\WkDetect.exe" []
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 03:56]
"Yahoo! Pager"="C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" [2007-01-19 13:49]
"MoneyAgent"="C:\Program Files\Microsoft Money\System\Money Express.exe" [2001-07-25 11:00]
"Forbes"="C:\Program Files\Forbes\ForbesAlerts.exe" []
"ClockSync"="C:\PROGRA~1\CLOCKS~1\Sync.exe" []
[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"msnmsgr"="C:\Program Files\MSN Messenger\msnmsgr.exe" /background
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"AllowLegacyWebView"=1 (0x1)
"AllowUnhashedWebView"=1 (0x1)
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\aawservice]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\F]
AutoRun\command- F:\LaunchU3.exe -a
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{1934cfba-107a-11dc-b031-00038a000015}]
AutoRun\command- F:\LaunchU3.exe -a
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{479b339e-2282-11dc-b052-00038a000015}]
AutoRun\command- F:\LaunchU3.exe -a
Contents of the 'Scheduled Tasks' folder
2007-07-15 19:37:03 C:\WINDOWS\tasks\Symantec NetDetect.job
**************************************************************************
catchme 0.3.915 W2K/XP/Vista - rootkit detector by Gmer,
http://www.gmer.net
Rootkit scan 2007-07-15 15:34:12
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
**************************************************************************
Completion time: 2007-07-15 15:40:21 - machine was rebooted
C:\ComboFix-quarantined-files.txt ... 2007-07-15 15:39
--- E O F ---