here you go

thanks for the look
ComboFix 08-02-25.3 - Joe 2008-02-25 18:01:42.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.1383 [GMT -5:00]
Running from: C:\Documents and Settings\Joe\Desktop\ComboFix.exe
.
((((((((((((((((((((((((( Files Created from 2008-01-25 to 2008-02-25 )))))))))))))))))))))))))))))))
.
2008-02-24 12:27 . 2008-02-24 12:27 <DIR> d-------- C:\Program Files\InterMute
2008-02-24 12:24 . 2008-02-24 12:24 <DIR> d-------- C:\Program Files\Trend Micro
2008-02-24 10:16 . 2008-02-24 10:16 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\TEMP
2008-02-21 20:37 . 2008-02-21 20:37 <DIR> d--h----- C:\Documents and Settings\All Users\Application Data\{0E8E33D8-193A-414A-A909-0F101A142D26}
2008-02-16 10:00 . 2008-02-16 10:00 1,909 --a------ C:\Documents and Settings\Joe\clean.reg
2008-02-16 09:39 . 2008-02-16 09:39 <DIR> d-------- C:\WINDOWS\ERUNT
2008-02-16 09:35 . 2008-02-13 13:22 <DIR> d-------- C:\SDFix
2008-02-12 16:54 . 2008-02-12 16:55 <DIR> d-------- C:\Documents and Settings\Joe\Application Data\Command & Conquer 3 Tiberium Wars
2008-02-12 14:20 . 2008-02-12 14:20 <DIR> d-------- C:\desktop
2008-02-11 17:46 . 2007-11-14 15:18 553 --a------ C:\WINDOWS\USetup.iss
2008-02-11 17:21 . 2008-02-11 17:21 315,392 --a------ C:\WINDOWS\HideWin.exe
2008-02-11 15:55 . 2008-02-11 15:55 <DIR> d-------- C:\Program Files\SystemRequirementsLab
2008-02-11 15:55 . 2008-02-11 15:55 <DIR> d-------- C:\Documents and Settings\Joe\Application Data\SystemRequirementsLab
2008-02-11 15:47 . 2008-02-11 19:13 <DIR> d-------- C:\Program Files\PCPitstop
2008-02-07 13:39 . 2008-02-07 13:38 691,545 --a------ C:\WINDOWS\unins000.exe
2008-02-07 13:39 . 2008-02-07 13:39 3,441 --a------ C:\WINDOWS\unins000.dat
2008-02-06 18:59 . 2007-08-06 19:28 442,368 -ra------ C:\WINDOWS\system32\vp6vfw.dll
2008-02-04 20:29 . 2008-02-04 20:35 <DIR> d-------- C:\World in Conflict
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))) ))
.
2008-02-25 22:57 --------- d-----w C:\Program Files\Symantec AntiVirus
2008-02-25 22:02 22,328 ----a-w C:\WINDOWS\system32\drivers\PnkBstrK.sys
2008-02-25 22:02 107,832 ----a-w C:\WINDOWS\system32\PnkBstrB.exe
2008-02-25 21:50 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-02-25 13:03 --------- d-----w C:\Program Files\LogMeIn
2008-02-24 17:39 43,520 ----a-w C:\WINDOWS\system32\CmdLineExt03.dll
2008-02-11 22:45 --------- d-----w C:\Program Files\Realtek
2008-02-07 22:48 --------- d-----w C:\Program Files\EA Games
2008-02-07 18:43 --------- d-----w C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-02-07 18:42 --------- d-----w C:\Program Files\Spybot - Search & Destroy
2008-02-07 00:16 107,888 ----a-w C:\WINDOWS\system32\CmdLineExt.dll
2008-01-25 00:09 --------- d-----w C:\Program Files\Elaborate Bytes
2008-01-22 23:04 --------- d-----w C:\Program Files\iTunes
2008-01-22 23:04 --------- d-----w C:\Program Files\iPod
2008-01-22 23:03 --------- d-----w C:\Program Files\QuickTime
2008-01-21 04:32 --------- d-----w C:\Program Files\THQ
2008-01-16 00:17 4,652,544 ----a-w C:\WINDOWS\system32\drivers\RtkHDAud.sys
2008-01-09 20:25 16,859,648 ----a-w C:\WINDOWS\RTHDCPL.exe
2008-01-07 03:09 --------- d-----w C:\Documents and Settings\Joe\Application Data\InterVideo
2008-01-07 03:08 --------- d-----w C:\Program Files\InterVideo Information Service
2008-01-07 03:08 --------- d-----w C:\Program Files\Common Files\Ulead
2008-01-07 03:07 --------- d-----w C:\Program Files\InterVideo
2008-01-07 03:07 --------- d-----w C:\Program Files\Common Files\InterVideo
2008-01-07 03:07 --------- d-----w C:\Documents and Settings\All Users\Application Data\InstallShield
2008-01-07 03:06 --------- d-----w C:\Program Files\Common Files\InstallShield
2007-12-07 00:44 666,112 ----a-w C:\WINDOWS\system32\wininet.dll
2007-12-05 07:53 356,352 ----a-w C:\WINDOWS\system32\NVUNINST.EXE
2007-12-04 18:38 550,912 ------w C:\WINDOWS\system32\oleaut32.dll
2007-11-16 05:23 22,328 ----a-w C:\Documents and Settings\Joe\Application Data\PnkBstrK.sys
2007-11-05 15:31 1 ----a-w C:\Documents and Settings\Joe\SI.bin
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\Curre ntVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 05:00 15360]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-01-28 11:43 2097488]
"AnyDVD"="C:\Program Files\SlySoft\AnyDVD\AnyDVD.exe" [2007-08-12 06:28 1465280]
"AIM"="C:\Program Files\AIM\aim.exe" [2006-08-01 14:35 67112]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [2004-10-13 11:24 1694208]
"Yahoo! Pager"="C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" [ ]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Run]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-12-05 01:41 8523776]
"nwiz"="nwiz.exe" [2007-12-05 01:41 1626112 C:\WINDOWS\system32\nwiz.exe]
"Launch LCDMon"="C:\Program Files\Common Files\Logitech\LCD Manager\lcdmon.exe" [2006-11-09 12:45 549376]
"Launch LGDCore"="C:\Program Files\Common Files\Logitech\G-series Software\LGDCore.exe" [2006-11-09 13:10 1126400]
"VirtualCloneDrive"="C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" [2006-04-29 08:21 94208]
"LogMeIn GUI"="C:\Program Files\LogMeIn\x86\LogMeInSystray.exe" [2007-04-17 13:03 63048]
"ccApp"="C:\Program Files\Common Files\Symantec Shared\ccApp.exe" [2006-07-19 18:26 52896]
"vptray"="C:\PROGRA~1\SYMANT~1\VPTray.exe" [2006-09-27 19:33 125168]
"ISUSPM"="C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" [2006-03-20 17:34 213936]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 00:11 132496]
"MimBoot"="C:\PROGRA~1\MUSICM~1\MUSICM~1\mimboot.e xe" [2006-01-19 10:06 11776]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2008-01-10 15:27 385024]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2008-01-15 03:22 267048]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray. dll" [2007-12-05 01:41 81920]
"RTHDCPL"="RTHDCPL.EXE" [2008-01-09 15:25 16859648 C:\WINDOWS\RTHDCPL.exe]
"SkyTel"="SkyTel.EXE" [2007-11-20 18:15 1826816 C:\WINDOWS\SkyTel.exe]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\RunServices]
"SchedulingAgent"="C:\WINDOWS\system32\mstask. exe" [ ]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LMIinit]
LMIinit.dll 2007-11-21 21:33 87352 C:\WINDOWS\system32\LMIinit.dll
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^AutoStart IR.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\AutoStart IR.lnk
backup=C:\WINDOWS\pss\AutoStart IR.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Forget Me Not.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Forget Me Not.lnk
backup=C:\WINDOWS\pss\Forget Me Not.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AIM]
--a------ 2006-08-01 14:35 67112 C:\Program Files\AIM\aim.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
--a------ 2008-01-15 03:22 267048 C:\Program Files\iTunes\iTunesHelper.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MimBoot]
--a------ 2006-01-19 10:06 11776 C:\PROGRA~1\MUSICM~1\MUSICM~1\mimboot.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
--------- 2004-10-13 11:24 1694208 C:\Program Files\Messenger\msmsgs.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
--a------ 2008-01-10 15:27 385024 C:\Program Files\QuickTime\QTTask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
--a------ 2008-01-09 15:25 16859648 C:\WINDOWS\RTHDCPL.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SkyTel]
--a------ 2007-11-20 18:15 1826816 C:\WINDOWS\SkyTel.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
--a------ 2007-09-25 00:11 132496 C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Yahoo! Pager]
C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
[HKLM\~\services\sharedaccess\parameters\firewallpo licy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\Electronic Arts\\Battlefield 2142\\BF2142.exe"=
"C:\\Program Files\\THQ\\Gas Powered Games\\Supreme Commander\\bin\\SupremeCommander.exe"=
"C:\\Program Files\\THQ\\Gas Powered Games\\GPGNet\\GPG.Multiplayer.Client.exe"=
"C:\\StubInstaller.exe"=
"C:\\Program Files\\LimeWire\\LimeWire.exe"=
"C:\\Sid Meier's Civilization 4\\Civilization4.exe"=
"C:\\Sid Meier's Railroads!\\RailRoads.exe"=
"C:\\WINDOWS\\pchealth\\helpctr\\binaries\\HelpCtr .exe"=
"C:\\Program Files\\Common Files\\PocketSoft\\RTPatch\\AutoRTP\\artpschd.exe" =
"C:\\Program Files\\BitTornado\\btdownloadgui.exe"=
"C:\\Program Files\\AIM\\aim.exe"=
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"C:\\Sid Meier's Civilization 4\\Beyond the Sword\\Civ4BeyondSword.exe"=
"C:\\Sid Meier's Civilization 4\\Beyond the Sword\\Civ4BeyondSword_PitBoss.exe"=
"C:\\Sid Meier's Civilization 4\\Warlords\\Civ4Warlords.exe"=
"C:\\Sid Meier's Civilization 4\\Warlords\\Civ4Warlords_PitBoss.exe"=
"C:\\Program Files\\Microsoft Games\\Microsoft Flight Simulator X\\fsx.exe"=
"C:\\WINDOWS\\system32\\dpvsetup.exe"=
"C:\\WINDOWS\\system32\\rundll32.exe"=
"C:\\Program Files\\UltraFXP\\UltraFxp.exe"=
"C:\\WINDOWS\\system32\\PnkBstrA.exe"=
"C:\\WINDOWS\\system32\\PnkBstrB.exe"=
"C:\\Crysis\\Bin32\\Crysis.exe"=
"C:\\Crysis\\Bin32\\CrysisDedicatedServer.exe" =
"C:\\Program Files\\InterVideo\\DVD8\\WinDVD.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=
"C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE"=
"G:\\Sins of a Solar Empire\\Sins of a Solar Empire.exe"=
"G:\\MOHAA Classic\\MOHAA.exe"=
"C:\\Call of Duty 4 - Modern Warfare\\iw3mp.exe"=
"G:\\THQ\\Dawn of War\\Dark Crusade\\Dawn of War - Dark Crusade\\DarkCrusade.exe"=
R2 LMIInfo;LogMeIn Kernel Information Provider;C:\Program Files\LogMeIn\x86\RaInfo.sys [2007-04-17 13:00]
R2 LMIRfsDriver;LogMeIn Remote File System Driver;C:\WINDOWS\system32\drivers\LMIRfsDriver.sy s [2007-04-05 10:55]
R3 HCWBT8xx;Hauppauge WinTV 848/9 WDM Video Driver;C:\WINDOWS\system32\drivers\HCWBT8XX.sys [2006-01-25 16:14]
[HKEY_CURRENT_USER\software\microsoft\windows\curre ntversion\explorer\mountpoints2\E]
\Shell\AutoRun\command - E:\setup.exe
[HKEY_CURRENT_USER\software\microsoft\windows\curre ntversion\explorer\mountpoints2\{bebecb7a-8747-11dc-b174-00044b024a1e}]
\Shell\AutoRun\command - D:\autorun.exe
.
Contents of the 'Scheduled Tasks' folder
"2008-02-19 21:07:00 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
.
************************************************** ************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-02-25 18:06:59
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
************************************************** ************************
.
Completion time: 2008-02-25 18:08:03
.
2008-02-14 08:01:39 --- E O F ---