Thanks for your quick reply.
"nobu" - 06/25/2007 15:13:56 - ComboFix 07-06-26.4 - Service Pack 4 NTFS
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
C:\Program Files\video activex access
C:\Program Files\video activex access\iesbpl.dll
C:\Program Files\video activex access\iesbunst.exe
C:\Program Files\video activex access\iesmin.exe
C:\Program Files\video activex access\iesmn.exe
C:\Program Files\video activex access\iesplg.dll
C:\Program Files\video activex access\iesunst.exe
C:\Program Files\video activex access\imsmain.exe
C:\Program Files\video activex access\imsmn.exe
C:\Program Files\video activex access\imsunst.exe
C:\Program Files\video activex access\ot.ico
C:\Program Files\video activex access\ts.ico
C:\Program Files\video activex access\uninst.exe
((((((((((((((((((((((((( Files Created from 2007-05-25 to 2007-06-25 )))))))))))))))))))))))))))))))
2007-06-25 15:13 49,152 --a------ C:\WINNT\nircmd.exe
2007-06-25 14:58 16,384 --a----t- C:\WINNT\system32\Perflib_Perfdata_130.dat
2007-06-24 20:18 <DIR> d-------- C:\Deckard
2007-06-24 20:01 <DIR> d-------- C:\ie-spyad
2007-06-24 19:55 <DIR> d-------- C:\Program Files\SpywareBlaster
2007-06-24 19:09 <DIR> d-------- C:\WINNT\system32\ActiveScan
2007-06-23 17:03 66,048 --a------ C:\WINNT\system32\wmerrenu.dll
2007-06-23 17:03 53,248 --a------ C:\WINNT\system32\mspmspsv.exe
2007-06-23 17:03 466,944 --a------ C:\WINNT\system32\wmv8dmoe.dll
2007-06-23 17:03 446,464 --a------ C:\WINNT\system32\wmvdmoe.dll
2007-06-23 17:03 368,710 --a------ C:\WINNT\system32\msisam11.dll
2007-06-23 17:03 335,360 --a------ C:\WINNT\system32\wmstream.dll
2007-06-23 17:03 32,768 --a------ C:\WINNT\system32\asferror.dll
2007-06-23 17:03 309,584 --a------ C:\WINNT\system32\wmv8dmod.dll
2007-06-23 17:03 270,336 --a------ C:\WINNT\system32\pdbrowse.dll
2007-06-23 17:03 241,725 --a------ C:\WINNT\system32\msuni11.dll
2007-06-23 17:03 24,064 --a------ C:\WINNT\system32\wmdmlog.dll
2007-06-23 17:03 221,184 --a------ C:\WINNT\system32\msscp.dll
2007-06-23 17:03 188,416 --a------ C:\WINNT\system32\mspmsp.dll
2007-06-23 17:03 184,320 --a------ C:\WINNT\system32\wmpcd.dll
2007-06-23 17:03 163,840 --a------ C:\WINNT\system32\mindex.dll
2007-06-23 17:03 16,384 --a------ C:\WINNT\system32\wmdmps.dll
2007-06-23 17:03 159,744 --a------ C:\WINNT\system32\mswmdm.dll
2007-06-23 17:03 147,456 --a------ C:\WINNT\system32\CEWMDM.dll
2007-06-23 17:03 118,784 --a------ C:\WINNT\system32\wmsdmoe.dll
2007-06-23 17:03 1,290,240 --a------ C:\WINNT\system32\wmploc.dll
2007-06-23 17:03 1,122,304 --a------ C:\WINNT\system32\wmpui.dll
2007-06-22 04:42 16,384 --a----t- C:\WINNT\system32\Perflib_Perfdata_2d8.dat
2007-06-22 04:39 16,384 --a----t- C:\WINNT\system32\Perflib_Perfdata_540.dat
2007-06-20 14:59 <DIR> d-------- C:\WINNT\system32\SoftwareDistribution
2007-06-20 14:58 16,384 --a----t- C:\WINNT\system32\Perflib_Perfdata_4fc.dat
2007-06-19 15:34 16,384 --a----t- C:\WINNT\system32\Perflib_Perfdata_234.dat
2007-06-14 16:36 16,384 --a----t- C:\WINNT\system32\Perflib_Perfdata_4ec.dat
2007-06-13 05:25 16,384 --a----t- C:\WINNT\system32\Perflib_Perfdata_4e4.dat
2007-06-08 05:18 16,384 --a----t- C:\WINNT\system32\Perflib_Perfdata_314.dat
2007-06-07 15:09 16,384 --a----t- C:\WINNT\system32\Perflib_Perfdata_524.dat
2007-05-26 16:15 16,384 --a----t- C:\WINNT\system32\Perflib_Perfdata_518.dat
2007-05-25 08:54 16,384 --a----t- C:\WINNT\system32\Perflib_Perfdata_2d4.dat
2007-05-17 10:39 <DIR> d-------- C:\DOCUME~1\ADMINI~1\APPLIC~1\InterVideo
2007-05-13 12:10 16,384 --a----t- C:\WINNT\system32\Perflib_Perfdata_520.dat
2007-05-12 08:41 16,384 --a----t- C:\WINNT\system32\Perflib_Perfdata_2b4.dat
2007-05-12 08:31 16,384 --a----t- C:\WINNT\system32\Perflib_Perfdata_514.dat
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
2007-06-25 01:32:25 -------- d-----w C:\Program Files\QuickTime
2007-06-25 01:30:19 -------- d-----w C:\Program Files\Microsoft IntelliPoint
2007-06-25 01:27:16 -------- d-----w C:\Program Files\Common Files\Funk Software
2007-06-23 23:04:07 8,192 --s-a-w C:\WINNT\system32\afkvvy.dll
2007-06-22 10:36:02 -------- d-----w C:\Program Files\McAfee
2007-06-14 00:02:16 12,842 ----a-w C:\WINNT\system32\nvModes.dat
2007-05-25 14:56:11 -------- d-----w C:\DOCUME~1\ADMINI~1\APPLIC~1\AdobeUM
2007-04-30 13:16:11 16,384 ----atw C:\WINNT\system32\Perflib_Perfdata_504.dat
2007-04-25 07:52:16 147,216 ----a-w C:\WINNT\system32\SCHANNEL.DLL
2007-04-20 14

15 16,384 ----atw C:\WINNT\system32\Perflib_Perfdata_2cc.dat
2007-04-17 04:47:36 33,624 ----a-w C:\WINNT\system32\wups.dll
2007-04-17 04:45:54 1,710,936 ----a-w C:\WINNT\system32\wuaueng.dll
2007-04-17 04:45:48 549,720 ----a-w C:\WINNT\system32\wuapi.dll
2007-04-17 04:45:42 325,976 ----a-w C:\WINNT\system32\wucltui.dll
2007-04-17 04:45:36 203,096 ----a-w C:\WINNT\system32\wuweb.dll
2007-04-17 04:45:28 92,504 ----a-w C:\WINNT\system32\cdm.dll
2007-04-17 04:45:20 53,080 ----a-w C:\WINNT\system32\wuauclt.exe
2007-04-17 04:45:20 43,352 ----a-w C:\WINNT\system32\wups2.dll
2007-04-17 04:44:20 271,224 ----a-w C:\WINNT\system32\mucltui.dll
2007-04-17 04:44:18 208,248 ----a-w C:\WINNT\system32\muweb.dll
2007-04-16 12:44:08 54,032 ----a-w C:\WINNT\system32\mpr.dll
2007-04-05 07:17:39 2,854,400 ----a-w C:\WINNT\system32\msi.dll
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}=C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll [11/03/03 04:17p]
{36ADA89D-2440-4DC4-820A-3A05E8630935}=C:\Program Files\Video ActiveX Access\iesplg.dll []
{7DB2D5A0-7241-4E79-B68D-6309F01C5231}=c:\program files\mcafee\virusscan\scriptcl.dll [12/22/06 06:02p]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Synchronization Manager"="mobsync.exe" [06/19/03 01:05p C:\WINNT\system32\mobsync.exe]
"NvCplDaemon"="C:\WINNT\System32\NvCpl.dll" [06/24/03 08:32p]
"nwiz"="nwiz.exe" [06/24/03 08:32p C:\WINNT\system32\nwiz.exe]
"IntelliPoint"="C:\Program Files\Microsoft IntelliPoint\ipoint.exe" [02/05/07 05:52p]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [03/01/07 02:40p]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [03/01/07 02:42p]
[HKEY_USERS\.default\software\microsoft\windows\currentversion\runonce]
"^SetupICWDesktop"=C:\Program Files\Internet Explorer\Connection Wizard\icwconn1.exe /desktop
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{4688f900-0d0c-4788-b297-59cc10e70ccc}"="C:\WINNT\system32\afkvvy.dll" [06/23/07 05:04p]
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}
C:\WINNT\System32\setup\wmpocm.exe /ShowWMP
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{22d6f312-b0f6-11d0-94ab-0080c74c7e95}
rundll32.exe advpack.dll,LaunchINFSection C:\WINNT\INF\mplayer2.inf,PerUserStub.NT
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6A5110B5-E14B-4268-A065-EF89FF33C325}
regsvr32.exe /s /n /i:"S 2 true 3 true 4 true 5 true 6 true 7 true" initpki.dll
HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{89820200-ECBD-11cf-8B85-00AA005B4383}
%SystemRoot%\system32\ie4uinit.exe
Contents of the 'Scheduled Tasks' folder
2007-04-01 07:00:09 C:\WINNT\tasks\McQcTask.job
**************************************************************************
catchme 0.3.721 W2K/XP/Vista - userland rootkit detector by Gmer,
http://www.gmer.net
Rootkit scan 2007-06-25 15:15:56
Windows 5.0.2195 Service Pack 4 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
Completion time: 06/25/2007 15:16:39
C:\ComboFix-quarantined-files.txt ... 06/25/07 03:16p
--- E O F ---