well system still hangs up abruptly and i did run flash disinfector. here is the combo fix log
ComboFix 08-12-21.04 - Owner 2008-12-25 1:05:02.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.1022.612 [GMT 5.5:30]
Running from: c:\documents and settings\Owner\Desktop\ComboFix.exe
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\NetworkService\Application Data\twain_32
c:\documents and settings\NetworkService\Application Data\twain_32\user.ds
.
((((((((((((((((((((((((( Files Created from 2008-11-24 to 2008-12-24 )))))))))))))))))))))))))))))))
.
2008-12-24 12:51 . 2008-12-24 12:58 <DIR> d-------- c:\program files\SpywareBlaster
2008-12-24 12:12 . 2008-12-24 12:12 <DIR> d-------- c:\program files\CCleaner
2008-12-24 11:39 . 2008-12-24 11:39 <DIR> d-------- c:\documents and settings\Administrator
2008-12-21 12:18 . 2008-12-21 12:18 <DIR> d-------- c:\program files\Avira
2008-12-21 12:18 . 2008-12-21 12:18 <DIR> d-------- c:\documents and settings\All Users\Application Data\Avira
2008-12-21 00:14 . 2008-12-21 00:14 <DIR> d-------- c:\documents and settings\All Users\Application Data\Adobe Systems
2008-12-21 00:13 . 2008-12-21 00:13 <DIR> d-------- c:\program files\Common Files\Adobe Systems Shared
2008-12-20 11:57 . 2008-12-20 11:57 <DIR> d-------- c:\program files\Yahoo!
2008-12-20 11:57 . 2008-12-20 11:57 <DIR> d-------- c:\documents and settings\Owner\Application Data\Yahoo!
2008-12-20 11:42 . 2008-12-20 11:43 <DIR> d-------- c:\documents and settings\Owner\Phone Browser
2008-12-20 11:42 . 2008-12-20 11:42 <DIR> d-------- c:\documents and settings\Owner\Application Data\Datalayer
2008-12-20 11:40 . 2008-12-20 11:40 <DIR> d-------- c:\documents and settings\Owner\Application Data\Nokia
2008-12-20 11:39 . 2008-12-20 11:39 <DIR> d-------- c:\program files\DIFX
2008-12-20 11:38 . 2008-12-20 11:39 <DIR> d----c--- c:\windows\system32\DRVSTORE
2008-12-20 11:38 . 2008-12-20 11:38 <DIR> d-------- c:\program files\Nokia
2008-12-20 11:38 . 2008-12-20 11:38 <DIR> d-------- c:\program files\Common Files\PCSuite
2008-12-20 11:38 . 2008-12-20 11:38 <DIR> d-------- c:\program files\Common Files\Nokia
2008-12-20 11:38 . 2008-12-20 11:39 <DIR> d-------- c:\documents and settings\Owner\Application Data\PC Suite
2008-12-20 11:38 . 2008-12-20 11:39 <DIR> d-------- c:\documents and settings\All Users\Application Data\PC Suite
2008-12-20 11:38 . 2006-05-29 19:56 127,488 --a------ c:\windows\system32\drivers\nmwcd.sys
2008-12-20 11:38 . 2006-05-29 19:56 50,688 --a------ c:\windows\system32\nmwcdcls.dll
2008-12-20 11:38 . 2006-05-29 19:56 30,720 --a------ c:\windows\system32\nmwcdcocls.dll
2008-12-20 11:38 . 2006-05-29 19:56 13,312 --a------ c:\windows\system32\drivers\nmwcdcm.sys
2008-12-20 11:38 . 2006-05-29 19:56 8,704 --a------ c:\windows\system32\drivers\nmwcdc.sys
2008-12-20 11:38 . 2006-05-29 19:56 4,608 --a------ c:\windows\system32\nmwcdlog.dll
2008-12-19 04:11 . 2008-12-19 07:45 <DIR> d-------- c:\documents and settings\Owner\Application Data\gtk-2.0
2008-12-19 00:53 . 2008-12-19 10:25 1,589,280 --ahs---- c:\windows\system32\drivers\fidbox.dat
2008-12-19 00:53 . 2008-12-19 10:25 21,788 --ahs---- c:\windows\system32\drivers\fidbox.idx
2008-12-19 00:33 . 2008-12-19 00:34 <DIR> d-------- c:\program files\Any Video Converter
2008-12-19 00:11 . 2008-12-19 00:11 <DIR> d-------- c:\program files\GIMP-2.0
2008-12-19 00:09 . 2008-12-19 00:09 <DIR> d-------- C:\New Folder
2008-12-18 22:36 . 2008-12-18 22:36 <DIR> d-------- c:\windows\system32\xircom
2008-12-18 22:36 . 2008-12-18 22:36 <DIR> d-------- c:\windows\system32\npp
2008-12-18 22:36 . 2008-12-18 22:36 <DIR> d-------- c:\windows\srchasst
2008-12-18 22:36 . 2008-12-18 22:36 <DIR> d-------- c:\program files\microsoft frontpage
2008-12-18 11:43 . 2008-12-18 11:43 <DIR> d-------- c:\program files\Alwil Software
2008-12-18 11:35 . 2008-12-18 11:35 <DIR> d-------- C:\KitTorrent
2008-12-18 11:32 . 2008-12-18 11:48 <DIR> d-------- C:\(Any Video Convertor) (Many Formats..)
2008-12-18 10:43 . 2008-12-18 10:43 <DIR> d-------- c:\documents and settings\All Users\Application Data\Avg7
2008-12-17 11:24 . 2008-12-17 11:24 <DIR> d-------- c:\documents and settings\Owner\.thumbnails
2008-12-17 10:31 . 2008-12-23 22:13 <DIR> d-------- c:\documents and settings\Owner\.gimp-2.2
2008-12-17 10:29 . 2008-12-17 10:29 <DIR> d-------- c:\program files\Common Files\GTK
2008-12-17 06:01 . 2008-12-17 06:01 260 --a------ c:\windows\_delis32.ini
2008-12-16 12:22 . 2008-12-16 12:22 <DIR> d-------- c:\program files\Microsoft Works
2008-12-16 12:21 . 2008-12-16 12:21 <DIR> d-------- c:\program files\MSBuild
2008-12-16 12:20 . 2008-12-16 12:20 <DIR> d-------- c:\program files\Microsoft.NET
2008-12-16 12:14 . 2008-12-16 12:15 <DIR> d-------- c:\program files\Microsoft Visual Studio 8
2008-12-16 12:13 . 2008-12-18 16:57 <DIR> d-------- c:\documents and settings\All Users\Application Data\Microsoft Help
2008-12-16 12:12 . 2008-12-16 12:12 <DIR> dr-h----- C:\MSOCache
2008-12-16 11:54 . 2008-12-16 12:08 <DIR> d-------- c:\program files\MsOffice2007
2008-12-16 11:13 . 2008-12-16 11:13 <DIR> d-------- c:\documents and settings\Owner\Application Data\AdobeUM
2008-12-16 10:49 . 2008-12-16 10:49 26,944 --a------ c:\documents and settings\Owner\Application Data\GDIPFONTCACHEV1.DAT
2008-12-14 12:47 . 2008-12-18 10:42 <DIR> d-------- c:\program files\Winamp
2008-12-14 12:47 . 2008-12-21 06:02 <DIR> d-------- c:\documents and settings\Owner\Application Data\Winamp
2008-12-14 12:43 . 2008-12-14 12:43 <DIR> d-------- c:\program files\Combined Community Codec Pack
2008-12-14 03:10 . 2008-12-14 03:10 <DIR> d-------- c:\program files\Gabest
2008-12-13 23:37 . 2008-12-18 11:44 478 --a------ c:\windows\ODBC.INI
2008-12-13 23:31 . 2008-12-18 16:56 <DIR> d-------- c:\windows\ShellNew
2008-12-13 23:22 . 2008-12-13 23:22 <DIR> d-------- c:\documents and settings\All Users\Application Data\Apple Computer
2008-12-13 23:22 . 2005-12-09 01:26 65,536 --a------ c:\windows\system32\QuickTimeVR.qtx
2008-12-13 23:22 . 2005-12-09 01:26 49,152 --a------ c:\windows\system32\QuickTime.qts
2008-12-13 23:20 . 2008-12-13 23:20 <DIR> d-------- c:\windows\Downloaded Installations
2008-12-13 23:18 . 1998-10-30 04:15 306,688 --a------ c:\windows\IsUninst.exe
2008-12-13 23:11 . 2008-12-13 23:11 <DIR> d-------- c:\documents and settings\Owner\Application Data\Media Player Classic
2008-12-13 23:10 . 2008-12-13 23:11 <DIR> d-------- c:\documents and settings\Owner\Application Data\bsplayer
2008-12-13 23:09 . 2008-12-13 23:23 <DIR> d-------- c:\program files\K-Lite Codec Pack
2008-12-13 23:06 . 2008-12-13 23:06 <DIR> d-------- c:\documents and settings\Owner\Application Data\Ahead
2008-12-13 22:56 . 2008-12-13 22:56 <DIR> d-------- c:\program files\Power Video Converter
2008-12-13 22:55 . 2008-12-21 00:16 <DIR> d-------- c:\program files\Common Files\Adobe
2008-12-13 22:48 . 2008-12-13 22:48 <DIR> d-------- c:\windows\Cache
2008-12-13 22:41 . 2008-12-13 23:21 <DIR> d-------- c:\program files\QuickTime
2008-12-13 22:41 . 1999-11-10 22:35 86,016 --a------ c:\windows\unvise32qt.exe
2008-12-12 15:33 . 2008-12-12 15:33 <DIR> d-------- c:\program files\SmartSound Software Inc
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-12-23 08:44 --------- d-----w c:\documents and settings\Owner\Application Data\uTorrent
2008-12-12 05:46 --------- d-----w c:\program files\Windows Media Connect 2
2008-12-12 05:46 --------- d-----w c:\program files\NotePad++
2008-12-12 05:46 --------- d-----w c:\program files\Foxit
2008-12-11 21:46 --------- d--h--w c:\program files\InstallShield Installation Information
2008-12-11 21:45 --------- d-----w c:\program files\Common Files\InstallShield
2008-12-11 21:42 --------- d-----w c:\program files\Pinnacle Systems
2008-12-11 21:34 --------- d-----w c:\program files\DAP
2008-12-11 21:33 --------- d-----w c:\documents and settings\All Users\Application Data\SpeedBit
2008-12-11 20:01 --------- d-----w c:\program files\Pinnacle
2008-12-11 19:39 --------- d-----w c:\documents and settings\All Users\Application Data\Pinnacle
2008-12-11 19:29 --------- d-----w c:\program files\TC
2008-12-11 19:19 --------- d-----w c:\program files\uTorrent
2008-12-11 19:19 --------- d-----w c:\program files\Google
2008-12-11 19:17 50,688 ----a-w c:\windows\system32\wbhelp2.dll
2008-12-11 19:10 --------- d-----w c:\program files\MiraScan
2008-12-11 19:00 --------- d-----w c:\program files\Ahead
2008-12-11 19:00 --------- d-----w c:\documents and settings\All Users\Application Data\Ahead
2008-12-11 18:59 --------- d-----w c:\program files\Common Files\Nero
2008-12-11 18:57 --------- d-----w c:\program files\Common Files\Ahead
2008-12-21 08:45 67,688 ----a-w c:\program files\mozilla firefox\components\jar50.dll
2008-12-21 08:45 54,368 ----a-w c:\program files\mozilla firefox\components\jsd3250.dll
2008-12-21 08:45 34,944 ----a-w c:\program files\mozilla firefox\components\myspell.dll
2008-12-21 08:45 46,712 ----a-w c:\program files\mozilla firefox\components\spellchk.dll
2008-12-21 08:45 172,136 ----a-w c:\program files\mozilla firefox\components\xpinstal.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2004-08-12 15360]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-12-18 68856]
"DownloadAccelerator"="c:\program files\DAP\DAP.EXE" [2008-12-12 3114496]
"Yahoo! Pager"="c:\progra~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" [2006-06-21 4538368]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2002-03-11 155648]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2002-03-11 106496]
"NeroFilterCheck"="c:\windows\system32\NeroCheck.exe" [2001-07-09 155648]
"googletalk"="c:\program files\Google\Google Talk\googletalk.exe" [2007-01-02 3739648]
"PinnacleDriverCheck"="c:\windows\system32\PSDrvCheck.exe" [2004-03-11 406016]
"PCSuiteTrayApplication"="c:\progra~1\Nokia\NOKIAP~1\LAUNCH~1.EXE" [2006-06-16 229376]
"avgnt"="c:\program files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" [2008-06-13 266497]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"nltide_3"="advpack.dll" [2007-01-09 c:\windows\system32\advpack.dll]
c:\documents and settings\Owner\Start Menu\Programs\Startup\
Adobe Gamma.lnk - c:\program files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2005-03-17 113664]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"ForceClassicControlPanel"= 1 (0x1)
"NoSMConfigurePrograms"= 1 (0x1)
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"ForceClassicControlPanel"= 1 (0x1)
"NoSMConfigurePrograms"= 1 (0x1)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"VIDC.I420"= vdrcodec.dll
"VIDC.MJPG"= Pvmjpg21.dll
"VIDC.PIM1"= pclepim1.dll
"VIDC.X264"= x264vfw.dll
"VIDC.3iv2"= 3ivxVfWCodec.dll
"VIDC.HFYU"= huffyuv.dll
"vidc.i263"= i263_32.drv
"VIDC.VP31"= vp31vfw.dll
"VIDC.FFDS"= c:\progra~1\COMBIN~1\Filters\FFDShow\ff_vfw.dll
"msacm.l3fhg"= mp3fhg.acm
"msacm.imc"= imc32.acm
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Google\\Google Talk\\googletalk.exe"=
"c:\\Program Files\\DAP\\DAP.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"c:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
"c:\\Program Files\\Yahoo!\\Messenger\\YServer.exe"=
R3 BENDER;Pinnacle AV/DV2 Capture;c:\windows\system32\drivers\bender.sys [2008-12-12 180480]
*Newly Created Service* - CATCHME
.
.
------- Supplementary Scan -------
.
IE: &Clean Traces - c:\program files\DAP\Privacy Package\dapcleanerie.htm
IE: &Download with &DAP - c:\program files\DAP\dapextie.htm
IE: Download &all with DAP - c:\program files\DAP\dapextie2.htm
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~1\Office12\EXCEL.EXE/3000
Name-Space Handler: ftp\ZDA - {5BFA1DAF-5EDC-11D2-959E-00C00C02DA5E} - c:\progra~1\DAP\dapie.dll
Name-Space Handler: http\ZDA - {5BFA1DAF-5EDC-11D2-959E-00C00C02DA5E} - c:\progra~1\DAP\dapie.dll
FF - ProfilePath - c:\documents and settings\Owner\Application Data\Mozilla\Firefox\Profiles\d9j6y90l.default\
FF - prefs.js: browser.startup.homepage - hxxp://search.speedbit.com/
FF - prefs.js: keyword.URL - hxxp://search.speedbit.com/searchresults.asp?src=default&q=
FF - component: c:\program files\DAP\DAPFireFox\components\DAPFireFox.dll
.
**************************************************************************
catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2008-12-25 01:07:29
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2008-12-25 1:08:18
ComboFix-quarantined-files.txt 2008-12-24 19:38:14
Pre-Run: 7,496,040,448 bytes free
Post-Run: 7,487,504,384 bytes free
WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
201