Hi

Sorry for posting to often be4 any replies, in future I will post how I should. And don't worry about late replies when i do something wrong
ComboFix 07-08-04.3 - "Robin Mos" 2007-08-08 14:44:14.1 [GMT 2:00] - NTFS
Microsoft Windows XP Home Edition 5.1.2600.2.1252.44.1043.18.Waar
* Created a new restore point
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
C:\DOCUME~1\ROBINM~1\APPLIC~1\tmp1.tmp.exe
C:\DOCUME~1\ROBINM~1\APPLIC~1\tmp12.tmp.exe
C:\DOCUME~1\ROBINM~1\APPLIC~1\tmp13.tmp.exe
C:\DOCUME~1\ROBINM~1\APPLIC~1\tmp14.tmp.exe
C:\DOCUME~1\ROBINM~1\APPLIC~1\tmp15.tmp.exe
C:\DOCUME~1\ROBINM~1\APPLIC~1\tmp3.tmp.exe
C:\DOCUME~1\ROBINM~1\APPLIC~1\tmp4.tmp.exe
C:\DOCUME~1\ROBINM~1\APPLIC~1\tmp5.tmp.exe
C:\DOCUME~1\ROBINM~1\APPLIC~1\tmpB.tmp.exe
C:\DOCUME~1\ROBINM~1\APPLIC~1\tmpC.tmp.exe
C:\DOCUME~1\ROBINM~1\APPLIC~1\tmpD.tmp.exe
C:\DOCUME~1\ROBINM~1\APPLIC~1\tmpE.tmp.exe
C:\DOCUME~1\ROBINM~1\BUREAU~1.\internet explorer.lnk
C:\WINDOWS\b122.exe
C:\WINDOWS\jkjijg.dll
C:\WINDOWS\qrqtut.ini
C:\WINDOWS\system32\dbmprf.dll
C:\WINDOWS\system32\gebcyxy.dll
C:\WINDOWS\system32\jkkjg.dll
C:\WINDOWS\system32\mllji.exe
C:\WINDOWS\system32\qwerty12.exe
C:\WINDOWS\system32\ssqpn.exe
C:\WINDOWS\system32\ssttrrs.dll
C:\WINDOWS\system32\tmp13.tmp.dll
C:\WINDOWS\system32\tmp3.tmp.dll
C:\WINDOWS\system32\tmpC.tmp.dll
C:\WINDOWS\tutqrq.dll
C:\WINDOWS\wr.txt
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
-------\LEGACY_DOMAINSERVICE
-------\DomainService
((((((((((((((((((((((((( Files Created from 2007-07-08 to 2007-08-08 )))))))))))))))))))))))))))))))
2007-08-08 14:43 51,200 --a------ C:\WINDOWS\nircmd.exe
2007-07-29 14:42 12,413,440 --a------ C:\avgas-setup-7.5.1.43.exe
2007-07-28 22:26 <DIR> d-------- C:\Program Files\Star Downloader
2007-07-28 22:25 2,452,082 --a------ C:\sdfree.exe
2007-07-27 16:51 429,781 --a------ C:\efjoiner.exe
2007-07-27 16:46 355,524 --------- C:\afjoiner.exe
2007-07-23 14:11 <DIR> d-------- C:\DOCUME~1\ROBINM~1\APPLIC~1\Turbine
2007-07-23 13:53 <DIR> d-------- C:\WINDOWS\system32\URTTEMP
2007-07-20 13:06 <DIR> d-------- C:\Program Files\VentSrv
2007-07-20 13:05 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
2007-07-20 13:04 <DIR> d--h----- C:\WINDOWS\PIF
2007-07-20 13:01 537,600 --a------ C:\ventrilo_srv-2.3.1-Windows.exe
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
2007-08-08 14:40 --------- d-------- C:\DOCUME~1\ROBINM~1\APPLIC~1\Skype
2007-07-30 09:45 --------- d-------- C:\DOCUME~1\ROBINM~1\APPLIC~1\Xfire
2007-07-29 23:13 --------- d-------- C:\Program Files\TrackMania Nations ESWC
2007-07-29 17:43 22328 --a------ C:\WINDOWS\system32\drivers\PnkBstrK.sys
2007-07-29 17:42 103736 --a------ C:\WINDOWS\system32\PnkBstrB.exe
2007-07-28 11:31 --------- d---s---- C:\Program Files\Xfire
2007-07-27 16:57 --------- d-------- C:\DOCUME~1\ROBINM~1\APPLIC~1\DivX
2007-07-26 16:43 66872 --a------ C:\WINDOWS\system32\PnkBstrA.exe
2007-07-23 13:55 88842 --a------ C:\WINDOWS\system32\perfc013.dat
2007-07-23 13:55 482982 --a------ C:\WINDOWS\system32\perfh013.dat
2007-07-21 01:54 --------- d--h----- C:\Program Files\InstallShield Installation Information
2007-07-21 01:53 --------- d-------- C:\DOCUME~1\ROBINM~1\APPLIC~1\Atari
2007-07-09 14:27 --------- d-------- C:\Program Files\PKR
2007-06-24 15:16 --------- d-------- C:\Program Files\Octoshape Streaming Services
2007-06-21 17:55 --------- d-------- C:\Program Files\Quake III Arena
2007-06-12 13:08 --------- d-------- C:\DOCUME~1\ROBINM~1\APPLIC~1\Sony
2007-06-12 13:08 --------- d-------- C:\DOCUME~1\ROBINM~1\APPLIC~1\Publish Providers
2007-06-12 13:02 --------- d-------- C:\Program Files\Microsoft SQL Server
2007-06-12 13:00 --------- d-------- C:\Program Files\Vstplugins
2007-06-12 12:59 --------- d-------- C:\Program Files\Sony
2007-06-12 12:56 --------- d-------- C:\Program Files\Sony Setup
2007-06-12 12:34 147544881 --------- C:\vegas70e-trial_enu.exe
2007-06-11 17:10 --------- d-------- C:\Program Files\DivX
2007-06-11 17:09 21736784 --------- C:\DivXInstaller.exe
2007-06-08 19:17 22456888 --------- C:\AdbeRdr80_nl_NL.exe
2007-05-31 08:45 524288 --a------ C:\WINDOWS\system32\DivXsm.exe
2007-05-31 08:44 823296 --a------ C:\WINDOWS\system32\divx_xx0c.dll
2007-05-31 08:44 823296 --a------ C:\WINDOWS\system32\divx_xx07.dll
2007-05-31 08:44 802816 --a------ C:\WINDOWS\system32\divx_xx11.dll
2007-05-31 08:44 740442 --a------ C:\WINDOWS\system32\DivX.dll
2007-05-27 13:57 108144 --a------ C:\WINDOWS\system32\CmdLineExt.dll
2007-05-19 16:31 19994184 --------- C:\QuickTimeInstaller.exe
2007-05-16 17:19 86528 --------- C:\WINDOWS\system32\dllcache\directdb.dll
2007-05-16 17:19 85504 --------- C:\WINDOWS\system32\dllcache\wabimp.dll
2007-05-16 17:19 683520 --a------ C:\WINDOWS\system32\inetcomm.dll
2007-05-16 17:19 683520 --------- C:\WINDOWS\system32\dllcache\inetcomm.dll
2007-05-16 17:19 510976 --------- C:\WINDOWS\system32\dllcache\wab32.dll
2007-05-16 17:19 1314816 --------- C:\WINDOWS\system32\dllcache\msoe.dll
2007-05-08 11:01 3583488 --a------ C:\WINDOWS\system32\dllcache\mshtml.dll
2007-04-08 09:08 871415 --------- C:\Program Files\PowerISO36.exe
2006-10-14 11:42 19666504 --------- C:\Program Files\QuickTimeInstaller.exe
2006-05-26 13:34 9406664 --------- C:\Program Files\Install_MSN_Messenger.EXE
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NVMixerTray"="C:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe" [2004-12-20 17:12]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2006-03-09 15:29]
"nwiz"="nwiz.exe" [2006-03-09 15:29 C:\WINDOWS\system32\nwiz.exe]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2006-03-09 15:29]
"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 11:50]
"RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [2004-07-15 01:07]
"Protect"="SHVRTF.EXE" [2005-06-16 14:29 C:\WINDOWS\system32\SHVRTF.EXE]
"CaAvTray"="C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\CAVTray.exe" [2006-05-06 15:24]
"CAVRID"="C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\CAVRID.exe" [2006-05-06 15:24]
"SemanticInsight"="C:\Program Files\RXToolBar\Semantic Insight\SemanticInsight.exe" []
"DAEMON Tools"="C:\Program Files\DAEMON Tools\daemon.exe" [2006-11-12 12:48]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007-02-16 10:54]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-05-11 03:06]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 01:03]
"Skype"="C:\Program Files\Skype\Phone\Skype.exe" [2006-11-24 18:16]
"Octoshape Streaming Services"="C:\Program Files\Octoshape Streaming Services\Robin Mos\OctoshapeClient.exe" []
R0 sfvfs02;StarForce Protection VFS Driver (version 2.x);C:\WINDOWS\system32\drivers\sfvfs02.sys
R1 AmdK8;Stuurprogramma voor AMD-processor;C:\WINDOWS\system32\DRIVERS\AmdK8.sys
R3 nvax;Service for NVIDIA(R) nForce(TM) Audio Enumerator;C:\WINDOWS\system32\drivers\nvax.sys
R3 nvnforce;Service for NVIDIA(R) nForce(TM) Audio;C:\WINDOWS\system32\drivers\nvapu.sys
S3 MSSQL$SONY_MEDIAMGR;MSSQL$SONY_MEDIAMGR;C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlservr.exe -sSONY_MEDIAMGR
S3 PnkBstrK;PnkBstrK;\??\C:\WINDOWS\system32\drivers\PnkBstrK.sys
S3 SQLAgent$SONY_MEDIAMGR;SQLAgent$SONY_MEDIAMGR;C:\Program Files\Sony\Shared Plug-Ins\Media Manager\MSSQL$SONY_MEDIAMGR\Binn\sqlagent.EXE -i SONY_MEDIAMGR
S3 XDva009;XDva009;\??\C:\WINDOWS\system32\XDva009.sys
S3 XDva016;XDva016;\??\C:\WINDOWS\system32\XDva016.sys
S3 XTrapD12;XTrapD12;\??\C:\WINDOWS\system32\XTrapD12.sys
Contents of the 'Scheduled Tasks' folder
2007-05-26 09:21:17 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job - C:\Program Files\Apple Software Update\SoftwareUpdate.exe
**************************************************************************
catchme 0.3.1061 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2007-08-08 14:48:56
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden registry entries ...
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{F48044BF-D14B-05A5-BE15-576D95964228}]
"abknamkmgdgkpehjpgakmfpkdlnjelahcb"=hex:66,61,69,6c,68,68,62,6d,61,64,6d,65,00,e7
"bbknamkmgdgkpehjpgbkldenbkodhedldhmf"=hex:6a,61,6c,70,6a,6e,62,67,70,6d,63,67,6e,67,65,68,66,65,61,6a,00,..
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
Completion time: 2007-08-08 14:50:47 - machine was rebooted
C:\ComboFix-quarantined-files.txt ... 2007-08-08 14:50
--- E O F ---