Here is the result for combofix.
ComboFix 09-07-09.02 - Daniel 07/09/2009 13:43.1.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.2047.1567 [GMT -6:00]
Running from: c:\documents and settings\Daniel\Desktop\Combo-Fix.exe
AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\All Users\Application Data\15376564
c:\documents and settings\All Users\Application Data\15376564\15376564
c:\documents and settings\All Users\Application Data\15376564\15376564.exe
c:\documents and settings\All Users\Application Data\90946866.ini
c:\documents and settings\Daniel\Daniel.exe
c:\recycler\S-1-5-21-0718494114-1866707683-619660861-4671
c:\recycler\S-1-5-21-1160805227-4959090417-612701221-4084
c:\recycler\S-1-5-21-5155561738-1164446227-841426928-3071
c:\recycler\S-1-5-21-5856383967-3709391649-338712272-8850
c:\windows\Installer\1990ec.msi
c:\windows\system32\aaebadacdaaaecdca.dll
c:\windows\system32\avast!Antivirus.exe
c:\windows\system32\config\systemprofile\Application Data\ShoppingReport
c:\windows\system32\config\systemprofile\Application Data\ShoppingReport\cs\Config.xml
c:\windows\system32\config\systemprofile\Application Data\ShoppingReport\cs\report\aggr_storage.xml
c:\windows\system32\config\systemprofile\Application Data\ShoppingReport\cs\report\send_storage.xml
c:\windows\system32\config\systemprofile\Desktop\System Security 2009.lnk
c:\windows\system32\config\systemprofile\oashdihasidhasuidhiasdhiashdiuasdhasd
c:\windows\system32\config\systemprofile\Start Menu\Programs\System Security
c:\windows\system32\config\systemprofile\Start Menu\Programs\System Security\System Security
c:\windows\system32\drivers\98a15b97.sys
c:\windows\system32\drivers\amd64si.sys
c:\windows\system32\drivers\ati64si.sys
c:\windows\system32\drivers\ecc19235.sys
c:\windows\system32\drivers\hjgruimpcfmukl.sys
c:\windows\system32\drivers\i386si.sys
c:\windows\system32\drivers\netsik.sys
c:\windows\system32\hjgruiowfqjpiq.dll
c:\windows\system32\hjgruiudtpveqb.dat
c:\windows\system32\hjgruiuwmyxyme.dll
c:\windows\system32\hjgruivnswiwio.dat
c:\windows\system32\mukmil.dll
c:\windows\system32\drivers\ndis.sys . . . is infected!!
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Service_hjgruivscdiyqr
-------\Legacy_ati64si
-------\Legacy_avast!antivirus
-------\Legacy_i386si
-------\Legacy_netsik
-------\Legacy_port135sik
-------\Legacy_{79007602-0cdb-4405-9dbf-1257bb3226ed}
-------\Legacy_{79007602-0cdb-4405-9dbf-1257bb3226ee}
-------\Service_98a15b97
-------\Service_ati64si
-------\Service_avast!antivirus
-------\Service_ecc19235
-------\Service_i386si
-------\Service_netsik
-------\Legacy_amd64si
-------\Service_amd64si
((((((((((((((((((((((((( Files Created from 2009-06-09 to 2009-07-09 )))))))))))))))))))))))))))))))
.
2009-07-09 19:18 . 2009-07-09 19:24 -------- d-s---w- C:\ComboFix
2009-07-09 18:44 . 2009-07-09 18:44 -------- d-----w- c:\program files\Trend Micro
2009-07-09 18:14 . 2009-07-09 18:13 286208 ------w- C:\72o1di4f.exe
2009-07-09 17:57 . 2009-07-09 17:57 -------- d-----w- c:\program files\Sophos
2009-07-09 16:43 . 2009-07-09 17:57 744853 ----a-w- C:\PAVARK.exe
2009-07-09 16:42 . 2009-07-09 16:42 1181383 ------w- C:\sarsfx(2).exe
2009-07-09 16:42 . 2009-07-09 16:42 1181383 ------w- C:\sarsfx.exe
2009-07-09 16:40 . 2009-07-09 16:38 3561744 ------w- C:\mbam-setup.exe
2009-07-08 18:07 . 2009-07-08 18:07 -------- d-----w- c:\documents and settings\Daniel\Application Data\Malwarebytes
2009-07-08 18:07 . 2009-06-17 17:27 38160 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-07-08 18:07 . 2009-07-08 18:07 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-07-08 18:07 . 2009-07-08 18:07 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2009-07-08 18:07 . 2009-06-17 17:27 19096 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-07-08 17:46 . 2009-07-08 17:46 -------- d-sh--w- c:\windows\System Volume Information
2009-07-08 05:34 . 2009-07-08 05:28 22940 ---h--w- c:\windows\system32\config\systemprofile\systemprofile.exe
2009-07-07 05:07 . 2009-07-07 05:07 2141 ----a-w- c:\documents and settings\Daniel\Application Data\.purple\certificates\x509\tls_peers\omega.contacts.msn.com
2009-07-06 23:44 . 2009-07-06 23:44 -------- d-----w- c:\program files\Dangerous High School Girls In Trouble
2009-07-06 23:33 . 2009-07-06 23:33 -------- d-----w- c:\program files\Microsoft Games for Windows - LIVE
2009-07-03 05:02 . 2009-07-03 05:02 -------- d-----w- c:\documents and settings\NetworkService\Local Settings\Application Data\Google
2009-07-03 04:42 . 2009-07-03 04:42 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Application Data\Google
2009-06-27 08:15 . 2009-06-27 08:15 -------- d-----w- c:\documents and settings\Daniel\Local Settings\Application Data\SCE
2009-06-25 22:47 . 2009-06-25 22:47 488960 ----a-w- c:\documents and settings\Daniel\Application Data\Macromedia\Flash Player\
www.macromedia.com\bin\octoshape\pmv302-0811070-0-main.dll2009-06-25 22:46 . 2009-06-25 22:46 319488 ----a-w- c:\documents and settings\Daniel\Application Data\Macromedia\Flash Player\
www.macromedia.com\bin\octoshape\octoshape.exe2009-06-24 03:37 . 2009-06-24 03:40 -------- d-----w- c:\documents and settings\Daniel\Application Data\vlc
2009-06-23 08:45 . 2009-06-23 09:30 -------- d-----w- c:\program files\Ryzom
2009-06-23 07:56 . 2009-06-23 07:56 -------- d-----w- c:\program files\Educational Simulations
2009-06-23 06:50 . 2009-06-23 06:50 1089 ----a-w- c:\documents and settings\Daniel\Application Data\.purple\certificates\x509\tls_peers\login.yahoo.com
2009-06-23 06:47 . 2009-06-23 06:47 -------- d-----w- c:\program files\Pidgin
2009-06-23 03:19 . 2009-06-23 04:08 299941 ----a-w- c:\windows\system32\autcache.dll
2009-06-23 03:17 . 2009-06-23 04:10 -------- d---a-w- c:\documents and settings\All Users\Application Data\TEMP
2009-06-23 03:05 . 2009-06-23 03:06 -------- d-----w- c:\program files\WideStep Software
2009-06-22 06:09 . 2009-06-22 06:09 -------- d-----w- c:\program files\Curse
2009-06-22 05:03 . 2009-06-22 05:03 -------- d-----w- c:\documents and settings\Daniel\Application Data\Apple Computer
2009-06-22 02:43 . 2009-06-22 02:43 413696 ----a-w- c:\documents and settings\Daniel\Application Data\yoclient\native\OpenAL32.dll
2009-06-22 02:43 . 2009-06-22 02:43 153600 ----a-w- c:\documents and settings\Daniel\Application Data\yoclient\native\lwjgl.dll
2009-06-22 02:42 . 2009-06-22 02:43 -------- d-----w- c:\documents and settings\Daniel\Application Data\yoclient
2009-06-22 01:04 . 2009-06-28 21:51 -------- d-----w- c:\program files\World of Warcraft
2009-06-21 19:48 . 2009-06-21 19:48 -------- d-----w- c:\documents and settings\All Users\Application Data\Blizzard
2009-06-21 19:47 . 2009-06-22 03:59 -------- d-----w- c:\program files\Common Files\Blizzard Entertainment
2009-06-20 04:02 . 2009-06-20 04:02 2165 ----a-w- c:\documents and settings\Daniel\Application Data\.purple\certificates\x509\tls_peers\rsi.hotmail.com
2009-06-20 04:02 . 2009-06-20 04:02 2099 ----a-w- c:\documents and settings\Daniel\Application Data\.purple\certificates\x509\tls_peers\login.live.com
2009-06-15 21:47 . 2009-06-15 22:14 -------- d-----w- c:\documents and settings\Daniel\Application Data\W Photo Studio
2009-06-15 21:45 . 2009-06-15 21:45 -------- d-----w- c:\documents and settings\All Users\Application Data\Walgreens
2009-06-15 21:45 . 2009-06-15 21:45 -------- d-----w- c:\documents and settings\Daniel\Application Data\Walgreens
2009-06-15 21:45 . 2009-06-15 21:45 -------- d-----w- c:\program files\Common Files\HP
2009-06-15 21:45 . 2009-06-15 21:45 -------- d-----w- c:\program files\Walgreens
2009-06-15 21:35 . 2009-06-15 22:14 -------- d-----w- c:\documents and settings\Daniel\Application Data\W Photo Studio Viewer
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-07-09 19:07 . 2009-03-05 20:40 -------- d-----w- c:\documents and settings\Daniel\Application Data\DNA
2009-07-09 18:36 . 2008-04-22 06:03 -------- d-----w- c:\documents and settings\All Users\Application Data\DAEMON Tools Pro
2009-07-09 18:17 . 2009-03-05 20:40 -------- d-----w- c:\program files\DNA
2009-07-09 18:00 . 2002-01-20 06:55 -------- d-----w- c:\documents and settings\Daniel\Application Data\.purple
2009-07-09 03:57 . 2008-06-09 03:36 -------- d-----w- c:\documents and settings\All Users\Application Data\Google Updater
2009-07-08 17:33 . 2004-08-04 12:00 212480 ----a-w- c:\windows\system32\drivers\ndis.sys
2009-07-08 00:42 . 2002-01-20 06:29 -------- d-----w- c:\documents and settings\Daniel\Application Data\uTorrent
2009-07-08 00:11 . 2009-04-15 00:48 -------- d-----w- c:\documents and settings\All Users\Application Data\PMB Files
2009-07-06 22:11 . 2008-08-13 06:21 -------- d-----w- c:\documents and settings\Daniel\Application Data\CoreFTP
2009-07-06 21:09 . 2002-01-20 07:50 -------- d-----w- c:\program files\Steam
2009-07-05 21:12 . 2008-06-27 19:10 -------- d-----w- c:\documents and settings\Daniel\Application Data\GetRightToGo
2009-07-03 05:41 . 2008-06-23 21:35 -------- d-----w- c:\documents and settings\Daniel\Application Data\codeblocks
2009-07-03 04:43 . 2008-06-09 03:36 -------- d-----w- c:\program files\Google
2009-06-26 00:27 . 2009-05-03 06:38 -------- d-----w- c:\documents and settings\Daniel\Application Data\dvdcss
2009-06-04 02:46 . 2009-06-04 02:26 -------- d-----w- c:\program files\GameSpy Arcade
2009-05-29 05:17 . 2009-05-29 05:11 -------- d-----w- c:\program files\NCH Software
2009-05-29 05:11 . 2009-05-29 05:11 -------- d-----w- c:\documents and settings\All Users\Application Data\NCH Software
2009-05-27 07:29 . 2008-04-28 05:29 -------- d-----w- c:\documents and settings\Daniel\Application Data\gtk-2.0
2009-05-23 19:08 . 2009-05-23 19:08 -------- d-----w- c:\program files\Microsoft Silverlight
2009-05-21 22:46 . 2008-07-30 20:33 -------- d-----w- c:\program files\SystemRequirementsLab
2009-05-21 17:15 . 2009-05-21 17:15 10134 ----a-r- c:\documents and settings\Daniel\Application Data\Microsoft\Installer\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}\ARPPRODUCTICON.exe
2009-05-21 17:15 . 2009-05-21 17:15 -------- d-----w- c:\program files\Microsoft WSE
2009-05-21 17:09 . 2002-04-22 05:50 -------- d-----w- c:\program files\Electronic Arts
2009-05-21 17:09 . 2002-01-20 06:21 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-05-18 01:52 . 2009-05-16 21:57 25 ----a-w- c:\windows\popcinfot.dat
2009-05-17 07:22 . 2009-05-14 05:33 -------- d-----w- c:\program files\andLinux
2009-05-16 21:42 . 2009-05-16 21:42 -------- d-----w- c:\documents and settings\All Users\Application Data\PopCap Games
2009-05-16 21:23 . 2009-05-16 21:15 -------- d-----w- c:\program files\Edraw Max
2009-05-11 03:04 . 2009-03-02 01:00 -------- d-----w- c:\program files\Enterbrain
2009-05-10 15:25 . 2008-05-09 17:50 11952 ----a-w- c:\windows\system32\avgrsstx.dll
2009-05-10 15:25 . 2008-05-09 17:50 325896 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2009-05-10 15:25 . 2008-05-09 17:50 27784 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2009-05-10 15:25 . 2008-05-09 17:50 108552 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2009-04-26 04:56 . 2002-01-20 06:37 74832 ----a-w- c:\documents and settings\Daniel\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-04-16 07:13 . 2009-04-16 07:13 22328 ----a-w- c:\documents and settings\Daniel\Application Data\PnkBstrK.sys
2009-04-16 07:13 . 2009-04-16 07:13 22328 ----a-w- c:\documents and settings\Daniel\Application Data\PnkBstrK.sys
2009-04-16 07:13 . 2008-08-01 20:26 22328 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2009-04-16 07:12 . 2008-08-01 20:26 107832 ----a-w- c:\windows\system32\PnkBstrB.exe
2009-04-16 07:12 . 2009-04-16 07:12 682280 ----a-w- c:\windows\system32\pbsvc.exe
2009-04-16 07:12 . 2008-08-01 20:26 66872 ----a-w- c:\windows\system32\PnkBstrA.exe
2009-03-03 06:35 . 2009-03-03 06:35 56 --sh--r- c:\windows\system32\605D0D681F.sys
2009-03-03 06:40 . 2009-03-03 06:35 1890 --sha-w- c:\windows\system32\KGyGaAvL.sys
.
<<<
>>>>