Hi. I've done what you've said.....or tried at least.
Here is the ComboFix log
ComboFix 08-09-16.05 - eoin quinn 2008-09-19 6:30:12.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.3.932.81.1033.18.249 [GMT 9:00]
Running from: C:\Documents and Settings\eoin quinn\Desktop\ComboFix.exe
* Created a new restore point
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\DOCUME~1\EOINQU~1\LOCALS~1\Temp\tmp1.tmp
C:\DOCUME~1\EOINQU~1\LOCALS~1\Temp\tmp2.tmp
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_TDSSSERV
-------\Service_TDSSserv
((((((((((((((((((((((((( Files Created from 2008-08-18 to 2008-09-18 )))))))))))))))))))))))))))))))
.
2008-09-18 22:06 . 2008-09-18 22:08 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\DriverScanner
2008-09-18 22:05 . 2008-09-18 22:06 <DIR> d--h-c--- C:\Documents and Settings\All Users\Application Data\{D5ABFFAD-D592-4F98-B02B-587125B4801F}
2008-09-18 21:30 . 2008-09-18 22:06 <DIR> d-------- C:\Documents and Settings\eoin quinn\Application Data\Uniblue
2008-09-18 21:29 . 2008-09-18 22:08 <DIR> d-------- C:\Program Files\Uniblue
2008-09-18 21:29 . 2008-09-18 21:29 <DIR> d--h-c--- C:\Documents and Settings\All Users\Application Data\{2840BBCB-9BEC-47F6-BA0F-10D3C34BF151}
2008-09-18 20:09 . 2008-09-18 20:09 61,440 --a------ C:\WINDOWS\system32\drivers\vprodau.sys
2008-09-18 19:26 . 2008-09-18 19:26 <DIR> d-------- C:\Program Files\SUPERAntiSpyware
2008-09-18 19:26 . 2008-09-18 19:26 <DIR> d-------- C:\Documents and Settings\eoin quinn\Application Data\SUPERAntiSpyware.com
2008-09-18 19:26 . 2008-09-18 19:26 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2008-09-18 19:01 . 2008-09-18 19:08 <DIR> d-------- C:\Program Files\Malwarebytes' Anti-Malware
2008-09-18 19:01 . 2008-09-18 19:01 <DIR> d-------- C:\Documents and Settings\eoin quinn\Application Data\Malwarebytes
2008-09-18 19:01 . 2008-09-18 19:01 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-09-18 19:01 . 2008-09-10 00:04 38,528 --a------ C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2008-09-18 19:01 . 2008-09-10 00:03 17,200 --a------ C:\WINDOWS\system32\drivers\mbam.sys
2008-09-17 19:56 . 2008-09-18 19:25 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
2008-09-17 19:21 . 2008-09-17 19:21 <DIR> d-------- C:\Program Files\Trend Micro
2008-09-06 12:19 . 2008-09-06 12:19 <DIR> d-a------ C:\Documents and Settings\All Users\Application Data\TEMP
2008-09-04 21:39 . 2008-09-04 21:39 <DIR> d-------- C:\WINDOWS\system32\scripting
2008-09-04 21:39 . 2008-09-04 21:39 <DIR> d-------- C:\WINDOWS\system32\en
2008-09-04 21:39 . 2008-09-04 21:39 <DIR> d-------- C:\WINDOWS\system32\bits
2008-09-04 21:39 . 2008-09-04 21:39 <DIR> d-------- C:\WINDOWS\l2schemas
2008-09-04 21:36 . 2008-09-04 21:39 <DIR> d-------- C:\WINDOWS\ServicePackFiles
2008-09-04 21:25 . 2008-09-04 21:25 <DIR> d-------- C:\WINDOWS\EHome
2008-09-04 20:36 . 2008-04-14 09:12 1,737,856 --------- C:\WINDOWS\system32\mtxparhd.dll
2008-09-04 20:35 . 2008-04-14 09:11 1,888,992 --------- C:\WINDOWS\system32\ati3duag.dll
2008-09-02 18:38 . 2008-09-02 18:38 7,333,224 --a------ C:\Firefox Setup 3.0.1.exe
2008-08-19 18:35 . 2008-04-12 04:04 691,712 --------- C:\WINDOWS\system32\dllcache\inetcomm.dll
2008-08-19 18:34 . 2008-05-01 23:33 331,776 --------- C:\WINDOWS\system32\dllcache\msadce.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-09-18 13:19 --------- d-----w C:\Program Files\TV on PC Pro
2008-09-18 11:06 --------- d-----w C:\Documents and Settings\eoin quinn\Application Data\Skype
2008-09-18 10:47 --------- d-----w C:\Documents and Settings\eoin quinn\Application Data\skypePM
2008-09-17 13:58 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-09-17 13:54 --------- d-----w C:\Program Files\NCH Swift Sound
2008-09-17 13:47 --------- d-----w C:\Documents and Settings\eoin quinn\Application Data\Apple Computer
2008-09-17 10:57 --------- d-----w C:\Program Files\Lavasoft
2008-09-17 10:55 --------- d-----w C:\Documents and Settings\All Users\Application Data\Lavasoft
2008-08-02 06:08 --------- d-----w C:\Program Files\iTunes
2008-08-02 06:07 --------- d-----w C:\Program Files\QuickTime
2008-08-02 06:07 --------- d-----w C:\Program Files\Bonjour
2008-08-02 06:06 --------- d-----w C:\Documents and Settings\All Users\Application Data\Apple Computer
2008-08-02 06:04 --------- d-----w C:\Program Files\Apple Software Update
2008-08-02 06:02 --------- d-----w C:\Program Files\Common Files\Apple
2008-07-30 09:23 --------- d-----w C:\Program Files\NCH Software
2008-07-30 09:14 --------- d-----w C:\Documents and Settings\eoin quinn\Application Data\NCH Swift Sound
2008-07-30 09:14 --------- d-----w C:\Documents and Settings\All Users\Application Data\NCH Swift Sound
2007-02-18 11:10 6,144 -c--a-w C:\Documents and Settings\eoin quinn\cfg2.dat
2005-12-24 04:06 774,144 -c--a-w C:\Program Files\RngInterstitial.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2008-04-14 15360]
"LogitechSoftwareUpdate"="C:\Program Files\Logitech\Video\ManifestEngine.exe" [2004-10-08 196608]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-07-31 68856]
"Yahoo! Pager"="C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" [2007-01-19 4670968]
"updateMgr"="C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" [2006-03-30 313472]
"SUPERAntiSpyware"="C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2008-08-19 1576176]
"Uniblue RegistryBooster 2009"="C:\Program Files\Uniblue\RegistryBooster\RegistryBooster.exe" [2008-08-27 2019624]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SoundMAXPnP"="C:\Program Files\Analog Devices\Core\smax4pnp.exe" [2004-10-14 1404928]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" [2008-06-10 144784]
"DVDLauncher"="C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe" [2005-02-23 53248]
"ISUSScheduler"="C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [2005-08-11 81920]
"SSBkgdUpdate"="C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2003-10-14 155648]
"PaperPort PTD"="C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe" [2005-03-17 57393]
"IndexSearch"="C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe" [2005-03-17 40960]
"SetDefPrt"="C:\Program Files\Brother\Brmfl05a\BrStDvPt.exe" [2005-01-26 49152]
"ControlCenter2.0"="C:\Program Files\Brother\ControlCenter2\brctrcen.exe" [2005-05-17 933888]
"LVCOMSX"="C:\WINDOWS\system32\LVCOMSX.EXE" [2004-10-08 221184]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2005-12-24 180269]
"LogitechVideoRepair"="C:\Program Files\Logitech\Video\ISStart.exe" [2004-10-08 458752]
"LogitechVideoTray"="C:\Program Files\Logitech\Video\LogiTray.exe" [2004-10-08 217088]
"igfxtray"="C:\WINDOWS\system32\igfxtray.exe" [2005-09-20 94208]
"igfxhkcmd"="C:\WINDOWS\system32\hkcmd.exe" [2005-09-20 77824]
"igfxpers"="C:\WINDOWS\system32\igfxpers.exe" [2005-09-20 114688]
"DMXLauncher"="C:\Program Files\Dell\Media Experience\DMXLauncher.exe" [2005-01-26 86016]
"ssdiag"="C:\WINDOWS\ssdiag.exe" [2005-05-13 57401]
"Google Desktop Search"="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" [2007-08-23 1838592]
"Ovt Wia"="C:\WINDOWS\OV530EM.exe" [2006-08-21 32768]
"AppleSyncNotifier"="C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [2008-07-22 116040]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2008-05-27 413696]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2008-07-30 289064]
"Logitech Hardware Abstraction Layer"="KHALMNPR.EXE" [2005-07-22 C:\WINDOWS\KHALMNPR.Exe]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"MySpaceIM"="C:\Program Files\MySpace\IM\MySpaceIM.exe" [2007-01-09 4898816]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2008-04-14 15360]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-09-24 29696]
Status Monitor.lnk - C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe [2005-12-18 802816]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "C:\Program Files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2008-07-23 16:28 352256 C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"vidc.dvsd"= pdvcodec.dll
"vidc.aflc"= flccodec32.dll
"vidc.afli"= flccodec32.dll
"vidc.aasc"= aasc32.dll
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
--a------ 2008-07-30 10:47 289064 C:\Program Files\iTunes\iTunesHelper.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"wscsvc"=2 (0x2)
"iPodService"=3 (0x3)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\Program Files\\LimeWire\\LimeWire.exe"=
"C:\\StubInstaller.exe"=
"C:\\Program Files\\Real\\RealPlayer\\realplay.exe"=
"C:\\Program Files\\Mercora\\MercoraClient.exe"=
"C:\\Program Files\\Yahoo!\\Messenger\\YServer.exe"=
"C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
"C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\LogitechDesktopMessenger.exe"=
"C:\\Program Files\\Shareaza\\Shareaza.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"C:\\Program Files\\MSN Messenger\\livecall.exe"=
"C:\\Program Files\\Veoh Networks\\Veoh\\VeohClient.exe"=
"C:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=
"C:\\Program Files\\Skype\\Phone\\Skype.exe"=
R1 aswSP;avast! Self Protection;C:\WINDOWS\system32\drivers\aswSP.sys [2008-07-19 78416]
R1 oreans32;oreans32;C:\WINDOWS\system32\drivers\oreans32.sys [2007-08-22 33824]
R2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [2008-07-19 20560]
R3 ovt530;USB PC CAMERA;C:\WINDOWS\system32\Drivers\ov530vid.sys [2006-02-08 173939]
.
Contents of the 'Scheduled Tasks' folder
.
- - - - ORPHANS REMOVED - - - -
HKLM-Run-aMPStation - C:\Program Files\KDDI\auMusicPort\aMPStation.exe
.
------- Supplementary Scan -------
.
FireFox -: Profile - C:\Documents and Settings\eoin quinn\Application Data\Mozilla\Firefox\Profiles\amjpd5ea.default\
FF -: plugin - C:\PROGRA~1\Mozilla Firefox\plugins\np32dsw.dll
FF -: plugin - C:\PROGRA~1\Mozilla Firefox\plugins\npdivx32.dll
FF -: plugin - C:\PROGRA~1\Mozilla Firefox\plugins\npDivxPlayerPlugin.dll
FF -: plugin - C:\PROGRA~1\Mozilla Firefox\plugins\npLegitCheckPlugin.dll
FF -: plugin - C:\PROGRA~1\Mozilla Firefox\plugins\npmozax.dll
FF -: plugin - C:\PROGRA~1\Mozilla Firefox\plugins\npnul32.dll
FF -: plugin - C:\PROGRA~1\Mozilla Firefox\plugins\nppl3260.dll
FF -: plugin - C:\PROGRA~1\Mozilla Firefox\plugins\npqtplugin.dll
FF -: plugin - C:\PROGRA~1\Mozilla Firefox\plugins\npqtplugin2.dll
FF -: plugin - C:\PROGRA~1\Mozilla Firefox\plugins\npqtplugin3.dll
FF -: plugin - C:\PROGRA~1\Mozilla Firefox\plugins\npracplug.dll
FF -: plugin - C:\PROGRA~1\Mozilla Firefox\plugins\nprjplug.dll
FF -: plugin - C:\PROGRA~1\Mozilla Firefox\plugins\nprpjplug.dll
FF -: plugin - C:\PROGRA~1\Mozilla Firefox\plugins\npvirtools.dll
FF -: plugin - C:\PROGRA~1\Mozilla Firefox\plugins\npyaxmpb.dll
FF -: plugin - C:\Program Files\Adobe\Acrobat 7.0\Reader\browser\nppdf32.dll
FF -: plugin - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
FF -: plugin - C:\Program Files\Mozilla Firefox\plugins\npmozax.dll
FF -: plugin - C:\Program Files\Mozilla Firefox\plugins\npracplug.dll
FF -: plugin - C:\Program Files\Mozilla Firefox\plugins\npvirtools.dll
FF -: plugin - C:\Program Files\Mozilla Firefox\plugins\npyaxmpb.dll
FF -: plugin - C:\Program Files\Real\RealArcade\Plugins\Mozilla\npracplug.dll
FF -: plugin - C:\Program Files\Veoh Networks\Veoh\Plugins\noreg\NPVeohVersion.dll
FF -: plugin - C:\Program Files\Yahoo!\Shared\npYState.dll
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2008-09-19 06:36:03
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\brss01a.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\system32\bgsvcgen.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\conime.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\Ymsgr_tray.exe
.
**************************************************************************
.
Completion time: 2008-09-19 6:40:47 - machine was rebooted
ComboFix-quarantined-files.txt 2008-09-18 21:40:37
Pre-Run: 38,079,119,360 bytes free
Post-Run: 39,419,613,184 bytes free
213 --- E O F --- 2008-09-10 21:54:33