oops :S - here is the right log
"Ben" - 2007-07-09 23:06:00 - ComboFix 07-07-10.1 - Service Pack 2
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
C:\Program Files\winpop
C:\WINDOWS\system32\drivers\sfsync02.sys
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
-------\LEGACY_SFSYNC02
-------\sfsync02
((((((((((((((((((((((((( Files Created from 2007-06-09 to 2007-07-09 )))))))))))))))))))))))))))))))
2007-07-09 23:18 0 --a------ C:\WINDOWS\system32\sfsync02.dll
2007-07-09 23:05 51,200 --a------ C:\WINDOWS\nircmd.exe
2007-07-08 22:16 <DIR> d-------- C:\WINDOWS\ERUNT
2007-07-08 15:25 <DIR> d-------- C:\silentrunners
2007-07-07 17:34 <DIR> d-------- C:\DOCUME~1\Ben\APPLIC~1\Ventrilo
2007-07-07 16:53 10,872 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
2007-07-05 17:18 1,308,216 --a------ C:\Program Files\scanner.exe
2007-07-02 10:51 <DIR> d-------- C:\DOCUME~1\Michael\APPLIC~1\RegistrySmart
2007-07-01 19:34 <DIR> d-------- C:\WINDOWS\system32\New Folder
2007-07-01 19:06 <DIR> d-------- C:\DOCUME~1\Andrea\Contacts
2007-07-01 18:56 <DIR> d-------- C:\DOCUME~1\Andrea\APPLIC~1\RegistrySmart
2007-07-01 14:40 <DIR> d-------- C:\DOCUME~1\Ben\APPLIC~1\RegistrySmart
2007-07-01 14:01 <DIR> d-------- C:\Program Files\MSN Messenger
2007-06-30 15:14 <DIR> d-------- C:\DOCUME~1\Andrea\APPLIC~1\Media Player Classic
2007-06-30 15:13 <DIR> d-------- C:\DOCUME~1\Andrea\APPLIC~1\DivX
2007-06-29 17:21 <DIR> d-------- C:\Program Files\Common Files\EasyInfo
2007-06-29 17:19 <DIR> d-------- C:\DOCUME~1\Andrea\APPLIC~1\HP
2007-06-29 17:18 <DIR> d-------- C:\DOCUME~1\Andrea\APPLIC~1\Teleca
2007-06-29 17:17 <DIR> d-------- C:\DOCUME~1\Andrea\APPLIC~1\Sony Ericsson
2007-06-29 17:16 <DIR> d-------- C:\DOCUME~1\Andrea\APPLIC~1\PGP Corporation
2007-06-29 17:11 <DIR> d-------- C:\Program Files\GameSpy
2007-06-29 17:05 <DIR> d-------- C:\Program Files\Electronic Arts
2007-06-28 13:45 <DIR> d-------- C:\Program Files\Prey
2007-06-27 17:25 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
2007-06-27 12:53 52,736 --a------ C:\WINDOWS\ipuninst.exe
2007-06-27 12:52 <DIR> d-------- C:\Program Files\BlackIsle
2007-06-26 14:36 <DIR> d-------- C:\Program Files\Save
2007-06-26 14:35 <DIR> d-------- C:\Program Files\DaemonTools_WhenUSave_Installer
2007-06-26 14:35 <DIR> d-------- C:\Program Files\Common Files\WhenU
2007-06-26 14:16 685,816 --a------ C:\WINDOWS\system32\drivers\sptd.sys
2007-06-26 13:47 <DIR> d-------- C:\Program Files\THQ
2007-06-26 13:20 68,888 --a------ C:\WINDOWS\system32\xinput1_3.dll
2007-06-26 13:20 62,744 --a------ C:\WINDOWS\system32\xinput1_2.dll
2007-06-26 13:20 3,426,072 --a------ C:\WINDOWS\system32\d3dx9_32.dll
2007-06-26 13:20 251,672 --a------ C:\WINDOWS\system32\xactengine2_5.dll
2007-06-26 13:20 237,848 --a------ C:\WINDOWS\system32\xactengine2_4.dll
2007-06-26 13:20 236,824 --a------ C:\WINDOWS\system32\xactengine2_3.dll
2007-06-26 13:20 2,414,360 --a------ C:\WINDOWS\system32\d3dx9_31.dll
2007-06-26 13:20 15,128 --a------ C:\WINDOWS\system32\x3daudio1_1.dll
2007-06-25 13:11 <DIR> d-------- C:\Program Files\Common Files\DirectX
2007-06-25 12:49 <DIR> d-------- C:\WINDOWS\system32\AGEIA
2007-06-25 12:48 <DIR> d-------- C:\Program Files\AGEIA Technologies
2007-06-24 17:29 <DIR> d-------- C:\DOCUME~1\Ben\APPLIC~1\InstallShield
2007-06-24 17:07 <DIR> d-------- C:\DOCUME~1\Ben\APPLIC~1\GetRightToGo
2007-06-18 23:26 <DIR> d-------- C:\DOCUME~1\Ben\APPLIC~1\Apple Computer
2007-06-15 23:41 <DIR> d-------- C:\DOCUME~1\Sam\APPLIC~1\Media Player Classic
2007-06-15 23:40 <DIR> d-------- C:\DOCUME~1\Sam\APPLIC~1\DivX
2007-06-15 17:22 <DIR> d--hs---- C:\WINDOWS\system32\aghlaqt
2007-06-15 16:56 <DIR> d-------- C:\Program Files\Symbian
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
2007-07-09 12:50:26 -------- d-----w C:\Program Files\Napster
2007-07-09 12:10:04 -------- d-----w C:\DOCUME~1\Ben\APPLIC~1\OpenOffice.org2
2007-07-07 16:06:02 -------- d-----w C:\Program Files\Common Files\Symantec Shared
2007-07-05 08:18:22 -------- d-----w C:\Program Files\Symantec
2007-07-05 08:18:21 -------- d--h--w C:\Program Files\InstallShield Installation Information
2007-07-01 13:47:32 502,272 ----a-w C:\WINDOWS\system32\winlogon.exe
2007-06-30 08:10:07 -------- d-----w C:\DOCUME~1\Ben\APPLIC~1\uTorrent
2007-06-28 21:08:57 -------- d-----w C:\Program Files\Ubisoft
2007-06-28 19:19:41 -------- d-----w C:\Program Files\World of Warcraft
2007-06-25 12:10:51 108,144 ----a-w C:\WINDOWS\system32\CmdLineExt.dll
2007-06-25 11:48:40 -------- d-----w C:\Program Files\Common Files\Wise Installation Wizard
2007-06-19 19:16:02 -------- d-----w C:\Program Files\Lx_cats
2007-06-16 16:19:51 -------- d-----w C:\DOCUME~1\Ben\APPLIC~1\Roxio
2007-06-15 22:57:42 359,808 ----a-w C:\WINDOWS\system32\drivers\tcpip.sys
2007-06-15 15:59:48 -------- d-----w C:\DOCUME~1\Ben\APPLIC~1\Teleca
2007-06-15 15:56:33 -------- d-----w C:\Program Files\Common Files\Teleca Shared
2007-06-15 15:56:28 -------- d-----w C:\Program Files\Common Files\Sony Ericsson Shared
2007-06-01 17:14:21 -------- d-----w C:\Program Files\Microids
2007-06-01 07:48:49 -------- d-----w C:\DOCUME~1\Ben\APPLIC~1\Skype
2007-05-31 09:06:49 -------- d-----w C:\DOCUME~1\Ben\APPLIC~1\Lionhead Studios
2007-05-23 00:21:09 -------- d-----w C:\DOCUME~1\Ben\APPLIC~1\AdobeUM
2007-05-21 16:24:39 -------- d-----w C:\Program Files\Tencent
2007-05-21 11:51:34 664 ----a-w C:\WINDOWS\system32\d3d9caps.dat
2007-05-20 16:44:08 -------- d-----w C:\DOCUME~1\Ben\APPLIC~1\Creative
2007-05-18 16:42:25 -------- d-----w C:\DOCUME~1\Ben\APPLIC~1\Turbine
2007-05-16 17:38:21 -------- d-----w C:\DOCUME~1\Ben\APPLIC~1\teamspeak2
2007-05-16 15:12:02 683,520 ----a-w C:\WINDOWS\system32\inetcomm.dll
2007-05-15 18:06:58 71,208 ----a-w C:\WINDOWS\system32\PhysXLoader.dll
2007-05-13 09:58:32 -------- d-----w C:\Program Files\Kontiki
2007-05-13 09:58:28 -------- d-----w C:\Program Files\KService
2007-05-12 21:14:44 -------- d-----w C:\Program Files\Channel4
2007-05-11 16:16:18 -------- d-----w C:\Program Files\rip.NET
2007-05-10 17:08:11 -------- d-----w C:\Program Files\avi.NET
2007-05-10 15:36:40 -------- d-----w C:\Program Files\cladDVD .NET 3.5.6
2007-05-09 07:40:33 -------- d-----w C:\Program Files\Microsoft CAPICOM 2.1.0.2
2007-04-25 14:21:15 144,896 ----a-w C:\WINDOWS\system32\schannel.dll
2007-04-20 12:47:39 48,776 ----a-w C:\WINDOWS\system32\S32EVNT1.DLL
2007-04-18 16:12:23 2,854,400 ----a-w C:\WINDOWS\system32\msi.dll
2007-04-16 21:47:36 33,624 ----a-w C:\WINDOWS\system32\wups.dll
2007-04-16 21:45:54 1,710,936 ----a-w C:\WINDOWS\system32\wuaueng.dll
2007-04-16 21:45:48 549,720 ----a-w C:\WINDOWS\system32\wuapi.dll
2007-04-16 21:45:42 325,976 ----a-w C:\WINDOWS\system32\wucltui.dll
2007-04-16 21:45:36 203,096 ----a-w C:\WINDOWS\system32\wuweb.dll
2007-04-16 21:45:28 92,504 ----a-w C:\WINDOWS\system32\cdm.dll
2007-04-16 21:45:20 53,080 ----a-w C:\WINDOWS\system32\wuauclt.exe
2007-04-16 21:45:20 43,352 ----a-w C:\WINDOWS\system32\wups2.dll
2007-04-16 21:44:20 271,224 ----a-w C:\WINDOWS\system32\mucltui.dll
2007-04-16 21:44:18 208,248 ----a-w C:\WINDOWS\system32\muweb.dll
2007-04-14 14:57:06 53,248 ----a-w C:\WINDOWS\system32\AgCPanelTraditionalChinese.dll
2007-04-14 14:57:06 53,248 ----a-w C:\WINDOWS\system32\AgCPanelSwedish.dll
2007-04-14 14:57:06 53,248 ----a-w C:\WINDOWS\system32\AgCPanelSpanish.dll
2007-04-14 14:57:04 53,248 ----a-w C:\WINDOWS\system32\AgCPanelSimplifiedChinese.dll
2007-04-14 14:57:04 53,248 ----a-w C:\WINDOWS\system32\AgCPanelPortugese.dll
2007-04-14 14:57:04 53,248 ----a-w C:\WINDOWS\system32\AgCPanelKorean.dll
2007-04-14 14:57:04 53,248 ----a-w C:\WINDOWS\system32\AgCPanelJapanese.dll
2007-04-14 14:57:04 53,248 ----a-w C:\WINDOWS\system32\AgCPanelGerman.dll
2007-04-14 14:57:04 53,248 ----a-w C:\WINDOWS\system32\AgCPanelFrench.dll
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}]
2006-09-29 13:53 440384 --a------ C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
2006-12-18 05:16 59032 --a------ C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897}]
2005-05-26 12:39 181352 --------- C:\PROGRA~1\Yahoo!\Common\yiesrvc.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{65D886A2-7CA7-479B-BB95-14D1EFB7946A}]
2005-01-24 10:55 115832 --------- C:\PROGRA~1\Yahoo!\Common\YIeTagBm.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
2006-11-19 15:32 501384 --a------ C:\Program Files\Java\jre1.6.0\bin\ssv.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
2006-07-07 12:29 324416 --a------ C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{9ECB9560-04F9-4bbc-943D-298DDF1699E1}]
2006-04-14 12:20 94384 --a------ C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A8F38D8D-E480-4D52-B7A2-731BB6995FDD}]
2007-05-23 12:13 140912 --a------ C:\Program Files\Yahoo!\NAV\NavShExt.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D81AB57B-7327-4347-B7C7-9EF7CA87CE09}]
2001-12-19 13:06 49152 --a------ C:\WINDOWS\system32\SlimBho2.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{F2AA9440-6328-4933-B7C9-A6CCDF9CBF6D}]
2005-02-03 18:07 124032 --a------ C:\Program Files\Yahoo!\browser\YSidebarIEBHO.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NVIDIA nTune"="C:\Program Files\NVIDIA Corporation\nTune\\nTune.exe" [2004-12-06 12:06]
"ASUS Probe"="C:\Program Files\ASUS\Probe\AsusProb.exe" [2002-12-06 16:07]
"Launch Ai Booster"="C:\Program Files\ASUS\Ai Booster\OverClk.exe" [2004-12-10 17:30]
"nwiz"="nwiz.exe" [2006-11-17 18:29 C:\WINDOWS\system32\nwiz.exe]
"WinFast2KLoadDefault"="wf2kcpl.dll" [2005-04-14 10:32 C:\WINDOWS\system32\WF2KCPL.dll]
"SoundMan"="SOUNDMAN.EXE" [2004-11-15 11:20 C:\WINDOWS\SOUNDMAN.EXE]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0\bin\jusched.exe" [2006-11-19 15:32]
"YBrowser"="C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe" [2006-07-21 17:19]
"YOP"="C:\PROGRA~1\Yahoo!\YOP\yop.exe" [2006-08-31 17:01]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2006-03-28 20:18]
"Adobe Photo Downloader"="C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe" [2005-06-06 23:46]
"NapsterShell"="C:\Program Files\Napster\napster.exe" [2006-06-29 14:17]
"ccApp"="C:\Program Files\Common Files\Symantec Shared\ccApp.exe" [2007-01-22 23:19]
"SCDEmuApp.exe"="C:\Program Files\PowerISO\SCDEmuApp.exe" [2005-10-16 02:15]
"btbb_wcm_McciTrayApp"="C:\Program Files\btbb_wcm\McciTrayApp.exe" [2006-11-30 11:51]
"BTVision Media Manager Tray"="C:\Program Files\Entriq\MediaSphere\Bin\EntriqMediaTray.exe" [2006-07-30 10:25]
"IntelliPoint"="C:\Program Files\Microsoft IntelliPoint\point32.exe" [2005-03-24 00:26]
"mmtask"="c:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe" [2004-01-29 15:51]
"CreativeTaskScheduler"="C:\Program Files\Creative\Shared Files\CTSched.exe" [2006-01-09 03:43]
"AVFX Engine"="C:\Program Files\Creative\Creative Live! Cam\VideoFX\StartFX.exe" [2006-10-09 14:49]
"HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [2006-02-19 03:41]
"PC Suite for Smartphones"="C:\Program Files\Sony Ericsson\Mobile4\Application Launcher\Application Launcher.exe" [2007-05-28 10:14]
"CahootWebcard"="C:\Program Files\cahoot webcard\CahootWebcard.exe" [2001-12-19 13:06]
"Motive SmartBridge"="C:\PROGRA~1\BTBROA~2\SMARTB~1\BTHelpNotifier.exe" [2006-05-24 14:20]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007-04-27 09:41]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2007-04-27 11:25]
"4oD"="C:\Program Files\Kontiki\KHost.exe" [2006-11-08 17:32]
"AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [2007-06-20 22:23]
"!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [2007-06-11 10:25]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 13:00]
"msnmsgr"="C:\Program Files\MSN Messenger\MsnMsgr.exe" [2007-01-19 12:54]
"kdx"="C:\Program Files\Kontiki\KHost.exe" [2006-11-08 17:32]
"mRouterConfig"="c:\Program Files\Intuwave Ltd\Shared\mRouterRunTime\mRouterConfig.exe" [2006-03-02 11:54]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\runservices]
"DJSNetCN"=C:\Program Files\Common Files\Symantec Shared\DJSNETCN.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll" [2007-05-30 13:29]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"appinit_dlls"=PGPmapih.dll
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Notification Packages scecli PGPpwflt
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\AVG Anti-Spyware Driver]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\AVG Anti-Spyware Guard]
*Newly Created Service* - WINFOXIO
Contents of the 'Scheduled Tasks' folder
2007-07-08 15:40:01 C:\WINDOWS\tasks\AppleSoftwareUpdate.job
2007-07-10 06:28:00 C:\WINDOWS\tasks\Check Updates for Windows Live Toolbar.job
2007-07-06 19:00:00 C:\WINDOWS\tasks\Norton AntiVirus - Run Full System Scan - Michael.job
2007-07-10 06:00:00 C:\WINDOWS\tasks\Norton AntiVirus - Run Norton QuickScan - Michael.job
2007-07-10 02:30:00 C:\WINDOWS\tasks\RegistrySmart Scheduled Scan.job
**************************************************************************
catchme 0.3.915 W2K/XP/Vista - rootkit detector by Gmer,
http://www.gmer.net
Rootkit scan 2007-07-10 08:12:46
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
Completion time: 2007-07-10 8:16:22
C:\ComboFix-quarantined-files.txt ... 2007-07-10 08:16
--- E O F ---