From what I have seen from this infection nothing is safe.
This part of the ComboFix log:
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\Install.txt
c:\windows\system32\drivers\ntndis.sys
c:\windows\system32\Install.txt
c:\windows\system32\userinit.exe . . . is infected!!
c:\windows\system32\spoolsv.exe . . . is infected!!
c:\windows\explorer.exe . . . is infected!!
.
The red entries are where ComboFix tried to find and replace those files with clean ones but none were found. This means that the Virut has gotten through the entire computer and injected itself into everything.