Hi there!
Thank you for getting back to me and sorry for the late reply with this

Just for reference when I was running combofix a message came up early on and it said the google had prevented another programme from changing your internet settings. I thought it would be best to pass this on incase it may have a knock on effect to the log posted below?
ran atf cleaner and here is the log from combofix
ComboFix 07-12-21.4 - Administrator 2007-12-23 11:24:04.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.1.1252.1.1033.18.171 [GMT 0:00]
Running from: C:\Documents and Settings\Administrator\Desktop\ComboFix.exe
* Created a new restore point
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\RECYCLER\svwhost.exe.bak
.
((((((((((((((((((((((((( Files Created from 2007-11-23 to 2007-12-23 )))))))))))))))))))))))))))))))
.
2007-12-22 17:18 . 2007-01-18 12:00 3,968 --a------ C:\WINDOWS\system32\drivers\AvgArCln.sys
2007-12-22 16:11 . 2007-12-22 16:11 <DIR> d-------- C:\Documents and Settings\Administrator\Application Data\Grisoft
2007-12-22 16:11 . 2007-05-30 12:10 10,872 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
2007-12-21 17:17 . 2005-05-20 00:58 356,352 --a------ C:\WINDOWS\system32\eSellerateEngine.dll
2007-12-21 17:17 . 2004-02-11 18:27 102,912 --a------ C:\WINDOWS\system32\islzma.dll
2007-12-21 17:17 . 2003-06-06 10:21 81,920 --a------ C:\WINDOWS\system32\eSellerateControl350.dll
2007-12-21 17:17 . 2005-11-18 12:05 78,336 --a------ C:\WINDOWS\system32\drivers\ssi.sys
2007-12-21 16:32 . 2007-12-21 16:32 <DIR> d-------- C:\Program Files\Webroot
2007-12-21 16:32 . 2007-12-21 16:32 <DIR> d-------- C:\Documents and Settings\LocalService\Application Data\Webroot
2007-12-21 16:32 . 2007-12-21 16:32 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Webroot
2007-12-21 16:32 . 2007-12-21 16:32 <DIR> d-------- C:\Documents and Settings\Administrator\Application Data\Webroot
2007-12-21 16:32 . 2007-10-01 16:40 1,526,072 --a------ C:\WINDOWS\WRSetup.dll
2007-12-21 16:32 . 2007-10-01 16:24 163,640 --a------ C:\WINDOWS\system32\drivers\ssidrv.sys
2007-12-21 16:32 . 2007-10-01 16:24 23,864 --a------ C:\WINDOWS\system32\drivers\sskbfd.sys
2007-12-21 16:32 . 2007-10-01 16:24 21,816 --a------ C:\WINDOWS\system32\drivers\sshrmd.sys
2007-12-21 16:32 . 2007-10-01 16:24 20,280 --a------ C:\WINDOWS\system32\drivers\SSFS0BB9.sys
2007-12-21 16:30 . 2007-12-21 16:30 164 --a------ C:\install.dat
2007-12-19 19:27 . 2007-12-20 15:18 <DIR> d-------- C:\Program Files\Spyware Doctor
2007-12-19 19:27 . 2007-12-23 11:33 <DIR> d-a------ C:\Documents and Settings\All Users\Application Data\TEMP
2007-12-19 19:27 . 2007-12-19 19:27 <DIR> d-------- C:\Documents and Settings\Administrator\Application Data\PC Tools
2007-12-19 19:27 . 2005-09-23 07:29 626,688 --a------ C:\WINDOWS\system32\msvcr80.dll
2007-12-19 19:27 . 2007-10-04 17:10 79,688 --a------ C:\WINDOWS\system32\drivers\iksyssec.sys
2007-12-19 19:27 . 2007-10-04 17:10 62,280 --a------ C:\WINDOWS\system32\drivers\iksysflt.sys
2007-12-19 19:27 . 2007-10-04 17:10 41,288 --a------ C:\WINDOWS\system32\drivers\ikfilesec.sys
2007-12-19 19:27 . 2007-10-04 17:11 29,000 --a------ C:\WINDOWS\system32\drivers\kcom.sys
2007-12-19 19:25 . 2007-12-19 20:54 <DIR> d-------- C:\Program Files\Norton Security Scan
2007-12-19 19:24 . 2007-12-23 11:17 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Google Updater
2007-12-16 17:13 . 2007-12-16 17:13 <DIR> d-------- C:\Program Files\ZoneAlarmSB
2007-12-04 18:29 . 2007-12-04 18:29 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Musicnotes
2007-12-04 01:33 . 2007-12-04 01:33 823,296 --a------ C:\WINDOWS\system32\divx_xx0c.dll
2007-12-04 01:33 . 2007-12-04 01:33 823,296 --a------ C:\WINDOWS\system32\divx_xx07.dll
2007-12-04 01:33 . 2007-12-04 01:33 802,816 --a------ C:\WINDOWS\system32\divx_xx11.dll
2007-12-04 01:33 . 2007-12-04 01:33 682,496 --a------ C:\WINDOWS\system32\DivX.dll
2007-12-04 01:33 . 2007-12-04 01:33 630,784 --a------ C:\WINDOWS\system32\divxdec.ax
2007-11-30 16:21 . 2007-12-20 15:47 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2007-11-30 16:21 . 2007-11-30 16:21 1,409 --a------ C:\WINDOWS\QTFont.for
2007-11-29 22:30 . 2007-11-29 22:30 3,596,288 --a------ C:\WINDOWS\system32\qt-dx331.dll
2007-11-29 22:30 . 2007-11-29 22:30 1,044,480 --a------ C:\WINDOWS\system32\libdivx.dll
2007-11-29 22:30 . 2007-11-29 22:30 524,288 --a------ C:\WINDOWS\system32\DivXsm.exe
2007-11-29 22:30 . 2007-11-29 22:30 200,704 --a------ C:\WINDOWS\system32\ssldivx.dll
2007-11-29 22:30 . 2007-11-29 22:30 4,816 --a------ C:\WINDOWS\system32\divxsm.tlb
2007-11-29 22:28 . 2007-11-29 22:28 196,608 --a------ C:\WINDOWS\system32\dtu100.dll
2007-11-29 22:28 . 2007-11-29 22:28 81,920 --a------ C:\WINDOWS\system32\dpl100.dll
2007-11-29 22:28 . 2007-11-29 22:28 416 --a------ C:\WINDOWS\system32\dtu100.dll.manifest
2007-11-29 22:28 . 2007-11-29 22:28 416 --a------ C:\WINDOWS\system32\dpl100.dll.manifest
2007-11-28 21:55 . 2007-11-28 21:55 156,992 --a------ C:\WINDOWS\system32\DivXCodecVersionChecker.exe
2007-11-28 21:53 . 2007-11-28 21:53 593,920 --a------ C:\WINDOWS\system32\dpuGUI11.dll
2007-11-28 21:53 . 2007-11-28 21:53 344,064 --a------ C:\WINDOWS\system32\dpus11.dll
2007-11-28 21:53 . 2007-11-28 21:53 294,912 --a------ C:\WINDOWS\system32\dpu11.dll
2007-11-28 21:53 . 2007-11-28 21:53 294,912 --a------ C:\WINDOWS\system32\dpu10.dll
2007-11-28 21:53 . 2007-11-28 21:53 57,344 --a------ C:\WINDOWS\system32\dpv11.dll
2007-11-28 21:53 . 2007-11-28 21:53 53,248 --a------ C:\WINDOWS\system32\dpuGUI10.dll
2007-11-28 21:52 . 2007-11-28 21:52 12,288 --a------ C:\WINDOWS\system32\DivXWMPExtType.dll
2007-11-25 11:58 . 2007-11-25 11:58 <DIR> d-------- C:\Documents and Settings\Administrator\Application Data\Sibelius Software
2007-11-25 11:54 . 2007-11-25 11:54 <DIR> d-------- C:\Program Files\Sibelius Software
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2007-12-23 08:00 --------- d-----w C:\Documents and Settings\LocalService\Application Data\AVG7
2007-12-22 18:12 --------- d-----w C:\Program Files\Apple Software Update
2007-12-22 16:11 --------- d-----w C:\Documents and Settings\All Users\Application Data\Grisoft
2007-12-21 16:34 68,943,060 ----a-w C:\WINDOWS\Internet Logs\tvDebug.zip
2007-12-21 16:23 --------- d-----w C:\Program Files\Java Web Start
2007-12-21 16:23 --------- d-----w C:\Program Files\DivX
2007-12-21 16:23 --------- d-----w C:\Program Files\aod
2007-12-19 20:09 --------- d-----w C:\Program Files\Lycos
2007-12-19 20:09 --------- d-----w C:\Documents and Settings\Administrator\Application Data\Lycos
2007-12-19 19:26 --------- d-----w C:\Program Files\Google
2007-12-19 17:24 --------- d-----w C:\Documents and Settings\Administrator\Application Data\AVG7
2007-11-14 16:05 75,248 ----a-w C:\WINDOWS\zllsputility.exe
2007-11-06 17:28 --------- d--h--w C:\Program Files\InstallShield Installation Information
2007-11-06 17:27 --------- d-----w C:\Program Files\Canon
2007-11-03 12:43 --------- d-----w C:\Documents and Settings\Administrator\Application Data\Canon
2007-10-25 15:46 --------- d-----w C:\Program Files\PeaZip
2007-03-28 18:45 25,752,376 ----a-w C:\Program Files\wmp11-windowsxp-x86-enu.exe
2007-03-21 16:41 14,731,088 ----a-w C:\Program Files\DivXInstaller.exe
2006-11-07 19:27 5,037,072 ----a-w C:\Program Files\spybotsd14.exe
2004-12-30 09:20 3,276,296 ----a-w C:\Program Files\BSINSTALL.exe
2004-03-24 19:25 6,377,789 ----a-w C:\Program Files\vlc-0.7.1-win32.exe
2001-03-28 11:02 122,880 ----a-w C:\WINDOWS\inf\AGFA\message.exe
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA}]
2007-12-16 17:13 262144 --a------ C:\Program Files\ZoneAlarmSB\bar\1.bin\SPYBLOCK.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11D4-9B18-009027A5CD4F}
{F0D4B239-DA4B-4DAF-81E4-DFEE4931A4AA}
[HKEY_CLASSES_ROOT\clsid\{f0d4b239-da4b-4daf-81e4-dfee4931a4aa}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{F0D4B239-DA4B-4DAF-81E4-DFEE4931A4AA}"= C:\Program Files\ZoneAlarmSB\bar\1.bin\SPYBLOCK.DLL [2007-12-16 17:13 262144]
[HKEY_CLASSES_ROOT\clsid\{f0d4b239-da4b-4daf-81e4-dfee4931a4aa}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\ctfmon.exe" [2002-08-29 02:41]
"NvMediaCenter"="RUNDLL32.exe" [2001-08-23 12:00 C:\WINDOWS\system32\rundll32.exe]
"MsnMsgr"="C:\Program Files\MSN Messenger\MsnMsgr.exe" [2004-05-28 15:22]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-12-19 19:24]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DeltTray"="DeltTray.exe" [2004-08-26 22:43 C:\WINDOWS\system32\delttray.exe]
"AVG7_CC"="C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe" [2007-12-21 09:16]
"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 10:50]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2006-09-05 16:23]
"ShowIcon_Fujifilm_Fujifilm Digital Memory Card Reader 7 in 1 DCR-71"="C:\Program Files\Fujifilm Card Reader\shwicon.exe" [2003-01-27 15:20]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007-04-27 08:41]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 18:51]
"SDTray"="C:\Program Files\Spyware Doctor\SDTrayApp.exe" [2007-10-02 16:27]
"ZoneAlarm Client"="C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" [2007-11-14 16:05]
"SpySweeper"="C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" [2007-10-01 16:40]
"!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [2007-06-11 09:25]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2002-08-29 02:41]
"AVG7_Run"="C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe" [2007-10-24 09:22]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Gamma Loader.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2003-06-07 15:15:10]
Google Updater.lnk - C:\Program Files\Google\Google Updater\GoogleUpdater.exe [2007-12-19 19:24:46]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableRegistryTools"= 0 (0x0)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdauxservice]
@=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdcoreservice]
@=""
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Gainward]
C:\WINDOWS\TBPanel.exe /A
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
C:\Program Files\Messenger\msmsgs.exe /background
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
nwiz.exe /install
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Smapp]
2002-11-08 14:50 98304 --a------ C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\windows auto update]
msblast.exe
R0 ppa;Iomega Parallel Port Filter Driver;C:\WINDOWS\System32\DRIVERS\ppa.sys [2001-08-17 12:53]
R0 SSFS0BB9;Spy Sweeper File System Filer Driver: 0BB9;C:\WINDOWS\System32\Drivers\SSFS0BB9.SYS [2007-10-01 16:24]
R1 Asapi;Asapi;C:\WINDOWS\System32\drivers\Asapi.sys [2000-01-08 09:22]
*Newly Created Service* - SHAREDACCESS
.
Contents of the 'Scheduled Tasks' folder
"2007-12-22 17:44:20 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2007-12-19 19:25:32 C:\WINDOWS\Tasks\Norton Security Scan.job"
- C:\Program Files\Norton Security Scan\Nss.exe
"2007-12-21 16:32:25 C:\WINDOWS\Tasks\wrSpySweeperTrialSweep.job"
- C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe&/ScheduleSweep=wrSpySweeperTrialSweep
- C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.ex
- A:\
.
**************************************************************************
catchme 0.3.1333 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2007-12-23 11:32:39
Windows 5.1.2600 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2007-12-23 11:35:50 - machine was rebooted
here is the new log from hijack this.....................................
ComboFix 07-12-21.4 - Administrator 2007-12-23 11:24:04.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.1.1252.1.1033.18.171 [GMT 0:00]
Running from: C:\Documents and Settings\Administrator\Desktop\ComboFix.exe
* Created a new restore point
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\RECYCLER\svwhost.exe.bak
.
((((((((((((((((((((((((( Files Created from 2007-11-23 to 2007-12-23 )))))))))))))))))))))))))))))))
.
2007-12-22 17:18 . 2007-01-18 12:00 3,968 --a------ C:\WINDOWS\system32\drivers\AvgArCln.sys
2007-12-22 16:11 . 2007-12-22 16:11 <DIR> d-------- C:\Documents and Settings\Administrator\Application Data\Grisoft
2007-12-22 16:11 . 2007-05-30 12:10 10,872 --a------ C:\WINDOWS\system32\drivers\AvgAsCln.sys
2007-12-21 17:17 . 2005-05-20 00:58 356,352 --a------ C:\WINDOWS\system32\eSellerateEngine.dll
2007-12-21 17:17 . 2004-02-11 18:27 102,912 --a------ C:\WINDOWS\system32\islzma.dll
2007-12-21 17:17 . 2003-06-06 10:21 81,920 --a------ C:\WINDOWS\system32\eSellerateControl350.dll
2007-12-21 17:17 . 2005-11-18 12:05 78,336 --a------ C:\WINDOWS\system32\drivers\ssi.sys
2007-12-21 16:32 . 2007-12-21 16:32 <DIR> d-------- C:\Program Files\Webroot
2007-12-21 16:32 . 2007-12-21 16:32 <DIR> d-------- C:\Documents and Settings\LocalService\Application Data\Webroot
2007-12-21 16:32 . 2007-12-21 16:32 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Webroot
2007-12-21 16:32 . 2007-12-21 16:32 <DIR> d-------- C:\Documents and Settings\Administrator\Application Data\Webroot
2007-12-21 16:32 . 2007-10-01 16:40 1,526,072 --a------ C:\WINDOWS\WRSetup.dll
2007-12-21 16:32 . 2007-10-01 16:24 163,640 --a------ C:\WINDOWS\system32\drivers\ssidrv.sys
2007-12-21 16:32 . 2007-10-01 16:24 23,864 --a------ C:\WINDOWS\system32\drivers\sskbfd.sys
2007-12-21 16:32 . 2007-10-01 16:24 21,816 --a------ C:\WINDOWS\system32\drivers\sshrmd.sys
2007-12-21 16:32 . 2007-10-01 16:24 20,280 --a------ C:\WINDOWS\system32\drivers\SSFS0BB9.sys
2007-12-21 16:30 . 2007-12-21 16:30 164 --a------ C:\install.dat
2007-12-19 19:27 . 2007-12-20 15:18 <DIR> d-------- C:\Program Files\Spyware Doctor
2007-12-19 19:27 . 2007-12-23 11:33 <DIR> d-a------ C:\Documents and Settings\All Users\Application Data\TEMP
2007-12-19 19:27 . 2007-12-19 19:27 <DIR> d-------- C:\Documents and Settings\Administrator\Application Data\PC Tools
2007-12-19 19:27 . 2005-09-23 07:29 626,688 --a------ C:\WINDOWS\system32\msvcr80.dll
2007-12-19 19:27 . 2007-10-04 17:10 79,688 --a------ C:\WINDOWS\system32\drivers\iksyssec.sys
2007-12-19 19:27 . 2007-10-04 17:10 62,280 --a------ C:\WINDOWS\system32\drivers\iksysflt.sys
2007-12-19 19:27 . 2007-10-04 17:10 41,288 --a------ C:\WINDOWS\system32\drivers\ikfilesec.sys
2007-12-19 19:27 . 2007-10-04 17:11 29,000 --a------ C:\WINDOWS\system32\drivers\kcom.sys
2007-12-19 19:25 . 2007-12-19 20:54 <DIR> d-------- C:\Program Files\Norton Security Scan
2007-12-19 19:24 . 2007-12-23 11:17 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Google Updater
2007-12-16 17:13 . 2007-12-16 17:13 <DIR> d-------- C:\Program Files\ZoneAlarmSB
2007-12-04 18:29 . 2007-12-04 18:29 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Musicnotes
2007-12-04 01:33 . 2007-12-04 01:33 823,296 --a------ C:\WINDOWS\system32\divx_xx0c.dll
2007-12-04 01:33 . 2007-12-04 01:33 823,296 --a------ C:\WINDOWS\system32\divx_xx07.dll
2007-12-04 01:33 . 2007-12-04 01:33 802,816 --a------ C:\WINDOWS\system32\divx_xx11.dll
2007-12-04 01:33 . 2007-12-04 01:33 682,496 --a------ C:\WINDOWS\system32\DivX.dll
2007-12-04 01:33 . 2007-12-04 01:33 630,784 --a------ C:\WINDOWS\system32\divxdec.ax
2007-11-30 16:21 . 2007-12-20 15:47 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2007-11-30 16:21 . 2007-11-30 16:21 1,409 --a------ C:\WINDOWS\QTFont.for
2007-11-29 22:30 . 2007-11-29 22:30 3,596,288 --a------ C:\WINDOWS\system32\qt-dx331.dll
2007-11-29 22:30 . 2007-11-29 22:30 1,044,480 --a------ C:\WINDOWS\system32\libdivx.dll
2007-11-29 22:30 . 2007-11-29 22:30 524,288 --a------ C:\WINDOWS\system32\DivXsm.exe
2007-11-29 22:30 . 2007-11-29 22:30 200,704 --a------ C:\WINDOWS\system32\ssldivx.dll
2007-11-29 22:30 . 2007-11-29 22:30 4,816 --a------ C:\WINDOWS\system32\divxsm.tlb
2007-11-29 22:28 . 2007-11-29 22:28 196,608 --a------ C:\WINDOWS\system32\dtu100.dll
2007-11-29 22:28 . 2007-11-29 22:28 81,920 --a------ C:\WINDOWS\system32\dpl100.dll
2007-11-29 22:28 . 2007-11-29 22:28 416 --a------ C:\WINDOWS\system32\dtu100.dll.manifest
2007-11-29 22:28 . 2007-11-29 22:28 416 --a------ C:\WINDOWS\system32\dpl100.dll.manifest
2007-11-28 21:55 . 2007-11-28 21:55 156,992 --a------ C:\WINDOWS\system32\DivXCodecVersionChecker.exe
2007-11-28 21:53 . 2007-11-28 21:53 593,920 --a------ C:\WINDOWS\system32\dpuGUI11.dll
2007-11-28 21:53 . 2007-11-28 21:53 344,064 --a------ C:\WINDOWS\system32\dpus11.dll
2007-11-28 21:53 . 2007-11-28 21:53 294,912 --a------ C:\WINDOWS\system32\dpu11.dll
2007-11-28 21:53 . 2007-11-28 21:53 294,912 --a------ C:\WINDOWS\system32\dpu10.dll
2007-11-28 21:53 . 2007-11-28 21:53 57,344 --a------ C:\WINDOWS\system32\dpv11.dll
2007-11-28 21:53 . 2007-11-28 21:53 53,248 --a------ C:\WINDOWS\system32\dpuGUI10.dll
2007-11-28 21:52 . 2007-11-28 21:52 12,288 --a------ C:\WINDOWS\system32\DivXWMPExtType.dll
2007-11-25 11:58 . 2007-11-25 11:58 <DIR> d-------- C:\Documents and Settings\Administrator\Application Data\Sibelius Software
2007-11-25 11:54 . 2007-11-25 11:54 <DIR> d-------- C:\Program Files\Sibelius Software
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2007-12-23 08:00 --------- d-----w C:\Documents and Settings\LocalService\Application Data\AVG7
2007-12-22 18:12 --------- d-----w C:\Program Files\Apple Software Update
2007-12-22 16:11 --------- d-----w C:\Documents and Settings\All Users\Application Data\Grisoft
2007-12-21 16:34 68,943,060 ----a-w C:\WINDOWS\Internet Logs\tvDebug.zip
2007-12-21 16:23 --------- d-----w C:\Program Files\Java Web Start
2007-12-21 16:23 --------- d-----w C:\Program Files\DivX
2007-12-21 16:23 --------- d-----w C:\Program Files\aod
2007-12-19 20:09 --------- d-----w C:\Program Files\Lycos
2007-12-19 20:09 --------- d-----w C:\Documents and Settings\Administrator\Application Data\Lycos
2007-12-19 19:26 --------- d-----w C:\Program Files\Google
2007-12-19 17:24 --------- d-----w C:\Documents and Settings\Administrator\Application Data\AVG7
2007-11-14 16:05 75,248 ----a-w C:\WINDOWS\zllsputility.exe
2007-11-06 17:28 --------- d--h--w C:\Program Files\InstallShield Installation Information
2007-11-06 17:27 --------- d-----w C:\Program Files\Canon
2007-11-03 12:43 --------- d-----w C:\Documents and Settings\Administrator\Application Data\Canon
2007-10-25 15:46 --------- d-----w C:\Program Files\PeaZip
2007-03-28 18:45 25,752,376 ----a-w C:\Program Files\wmp11-windowsxp-x86-enu.exe
2007-03-21 16:41 14,731,088 ----a-w C:\Program Files\DivXInstaller.exe
2006-11-07 19:27 5,037,072 ----a-w C:\Program Files\spybotsd14.exe
2004-12-30 09:20 3,276,296 ----a-w C:\Program Files\BSINSTALL.exe
2004-03-24 19:25 6,377,789 ----a-w C:\Program Files\vlc-0.7.1-win32.exe
2001-03-28 11:02 122,880 ----a-w C:\WINDOWS\inf\AGFA\message.exe
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA}]
2007-12-16 17:13 262144 --a------ C:\Program Files\ZoneAlarmSB\bar\1.bin\SPYBLOCK.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11D4-9B18-009027A5CD4F}
{F0D4B239-DA4B-4DAF-81E4-DFEE4931A4AA}
[HKEY_CLASSES_ROOT\clsid\{f0d4b239-da4b-4daf-81e4-dfee4931a4aa}]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{F0D4B239-DA4B-4DAF-81E4-DFEE4931A4AA}"= C:\Program Files\ZoneAlarmSB\bar\1.bin\SPYBLOCK.DLL [2007-12-16 17:13 262144]
[HKEY_CLASSES_ROOT\clsid\{f0d4b239-da4b-4daf-81e4-dfee4931a4aa}]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\ctfmon.exe" [2002-08-29 02:41]
"NvMediaCenter"="RUNDLL32.exe" [2001-08-23 12:00 C:\WINDOWS\system32\rundll32.exe]
"MsnMsgr"="C:\Program Files\MSN Messenger\MsnMsgr.exe" [2004-05-28 15:22]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-12-19 19:24]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DeltTray"="DeltTray.exe" [2004-08-26 22:43 C:\WINDOWS\system32\delttray.exe]
"AVG7_CC"="C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe" [2007-12-21 09:16]
"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 10:50]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2006-09-05 16:23]
"ShowIcon_Fujifilm_Fujifilm Digital Memory Card Reader 7 in 1 DCR-71"="C:\Program Files\Fujifilm Card Reader\shwicon.exe" [2003-01-27 15:20]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007-04-27 08:41]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 18:51]
"SDTray"="C:\Program Files\Spyware Doctor\SDTrayApp.exe" [2007-10-02 16:27]
"ZoneAlarm Client"="C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" [2007-11-14 16:05]
"SpySweeper"="C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" [2007-10-01 16:40]
"!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [2007-06-11 09:25]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2002-08-29 02:41]
"AVG7_Run"="C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe" [2007-10-24 09:22]
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Gamma Loader.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2003-06-07 15:15:10]
Google Updater.lnk - C:\Program Files\Google\Google Updater\GoogleUpdater.exe [2007-12-19 19:24:46]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableRegistryTools"= 0 (0x0)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdauxservice]
@=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdcoreservice]
@=""
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Gainward]
C:\WINDOWS\TBPanel.exe /A
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
C:\Program Files\Messenger\msmsgs.exe /background
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
nwiz.exe /install
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Smapp]
2002-11-08 14:50 98304 --a------ C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\windows auto update]
msblast.exe
R0 ppa;Iomega Parallel Port Filter Driver;C:\WINDOWS\System32\DRIVERS\ppa.sys [2001-08-17 12:53]
R0 SSFS0BB9;Spy Sweeper File System Filer Driver: 0BB9;C:\WINDOWS\System32\Drivers\SSFS0BB9.SYS [2007-10-01 16:24]
R1 Asapi;Asapi;C:\WINDOWS\System32\drivers\Asapi.sys [2000-01-08 09:22]
*Newly Created Service* - SHAREDACCESS
.
Contents of the 'Scheduled Tasks' folder
"2007-12-22 17:44:20 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2007-12-19 19:25:32 C:\WINDOWS\Tasks\Norton Security Scan.job"
- C:\Program Files\Norton Security Scan\Nss.exe
"2007-12-21 16:32:25 C:\WINDOWS\Tasks\wrSpySweeperTrialSweep.job"
- C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe&/ScheduleSweep=wrSpySweeperTrialSweep
- C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.ex
- A:\
.
**************************************************************************
catchme 0.3.1333 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2007-12-23 11:32:39
Windows 5.1.2600 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2007-12-23 11:35:50 - machine was rebooted