Here is a combo fix log:
ComboFix 08-06-01.6 - VK3FCLL 2008-06-06 19:11:10.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.521 [GMT 10:00]
Running from: C:\Downloads\ComboFix.exe
* Created a new restore point
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\WINDOWS\Downloaded Program Files\setup.inf
C:\WINDOWS\msnimport.exe
C:\WINDOWS\system32\pskill.exe
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_NPF
((((((((((((((((((((((((( Files Created from 2008-05-06 to 2008-06-06 )))))))))))))))))))))))))))))))
.
2008-06-06 17:05 . 2008-06-06 17:05 <DIR> d-------- C:\Documents and Settings\VK3FCLL\dwhelper
2008-06-01 16:56 . 2008-06-01 16:56 <DIR> d-------- C:\Program Files\RemoteObserverClient
2008-06-01 16:56 . 2008-06-01 16:56 <DIR> d-------- C:\Program Files\RemoteObserver
2008-05-28 18:56 . 2008-05-28 18:56 <DIR> d-------- C:\Program Files\Wondershare
2008-05-28 18:56 . 2008-05-28 18:58 <DIR> d-------- C:\Documents and Settings\VK3FCLL\Application Data\DemoCreator
2008-05-26 06:55 . 2008-05-26 06:55 <DIR> d-------- C:\Program Files\Cornera
2008-05-25 17:08 . 2008-05-25 17:08 <DIR> d-------- C:\Documents and Settings\All Users.WINDOWS\Application Data\nView_Profiles
2008-05-25 17:01 . 2008-05-25 17:04 <DIR> d-------- C:\WINDOWS\nview
2008-05-25 17:01 . 2008-06-06 19:22 81,496 --a------ C:\WINDOWS\system32\nvapps.xml
2008-05-25 17:01 . 2006-10-31 08:35 17,056 --a------ C:\WINDOWS\system32\nvdisp.nvu
2008-05-21 16:27 . 2008-05-21 16:27 405,504 --a------ C:\WINDOWS\system32\wrap_oal.dll
2008-05-21 16:05 . 2006-03-20 09:47 5,781 --a------ C:\WINDOWS\system32\Ludap17.ini
2008-05-21 16:05 . 2005-03-08 14:14 39 -ra------ C:\WINDOWS\system32\ctzapxx.ini
2008-05-18 21:40 . 2008-05-18 21:40 3,495,784 --a------ C:\WINDOWS\system32\d3dx9_33.dll
2008-05-14 16:55 . 2008-05-14 16:56 <DIR> d-------- C:\Program Files\CCleaner
2008-05-13 21:38 . 2008-05-13 21:38 <DIR> d-------- C:\Program Files\Common Files\Adobe AIR
2008-05-13 21:38 . 2008-05-13 21:38 <DIR> d-------- C:\Program Files\Adobe Media Player
2008-05-12 20:10 . 2008-05-12 20:10 <DIR> d-------- C:\Program Files\Common Files\Macromedia
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-06-06 09:22 --------- d-----w C:\Program Files\WinFlip
2008-06-06 08:53 --------- d-----w C:\Documents and Settings\VK3FCLL\Application Data\Skype
2008-06-06 06:04 --------- d-----w C:\Documents and Settings\VK3FCLL\Application Data\skypePM
2008-06-06 05:44 --------- d-----w C:\Documents and Settings\VK3FCLL\Application Data\MailWasherPro
2008-06-04 20:56 --------- d-----w C:\Documents and Settings\VK3FCLL\Application Data\LimeWire
2008-06-03 06:16 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\avg8
2008-05-31 06:39 --------- d-----w C:\Program Files\Xilisoft
2008-05-29 07:55 --------- d-----w C:\Documents and Settings\VK3FCLL\Application Data\AVGTOOLBAR
2008-05-24 21:24 --------- d-----w C:\Program Files\Windows Live
2008-05-21 06:27 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-05-21 06:27 --------- d-----w C:\Program Files\Creative
2008-05-14 07:13 --------- d-----w C:\Program Files\Yahoo!
2008-05-12 10:11 --------- d-----w C:\Program Files\Macromedia
2008-05-07 11:44 --------- d-----w C:\Program Files\SightSpeed
2008-05-06 06:01 16,512 ----a-w C:\WINDOWS\system32\drivers\ASPI32.SYS
2008-05-05 08:51 --------- d-----w C:\Documents and Settings\VK3FCLL\Application Data\Audacity
2008-05-01 09:32 --------- d-----w C:\Program Files\Common Files\Stardock
2008-04-30 08:24 --------- d-----w C:\Program Files\Mozilla Firefox 3 Beta 4
2008-04-29 20:50 --------- d-----w C:\Program Files\Free DVD Ripper
2008-04-28 06:08 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\Skype
2008-04-27 00:03 96,520 ----a-w C:\WINDOWS\system32\drivers\avgldx86.sys
2008-04-26 04:06 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\WLInstaller
2008-04-25 08:28 --------- d-----w C:\Program Files\Messenger Plus! Live
2008-04-25 06:11 --------- d-----w C:\Program Files\XoftSpySE
2008-04-24 21:51 --------- d-----w C:\Documents and Settings\VK3FCLL\Application Data\RCP 5
2008-04-24 11:54 --------- d-----w C:\Program Files\ReaConverter 5.5 Pro
2008-04-24 07:26 --------- d-----w C:\Documents and Settings\All Users.WINDOWS\Application Data\Grisoft
2008-04-24 07:25 --------- d-----w C:\Program Files\AVG
2008-04-23 09:08 --------- d-----w C:\Program Files\Scanitto
2008-04-23 09:08 --------- d-----w C:\Program Files\BlindScanner Pro
2008-04-22 06:26 --------- d-----w C:\Program Files\Windows Media Connect 2
2008-04-19 09:55 --------- d-----w C:\Documents and Settings\VK3FCLL\Application Data\Apple Computer
2008-04-19 09:40 --------- d-----w C:\Program Files\Safari
2008-04-19 09:40 --------- d-----w C:\Program Files\Bonjour
2008-04-19 09:39 --------- d-----w C:\Program Files\Apple Software Update
2008-04-09 11:25 --------- d-----w C:\Documents and Settings\VK3FCLL\Application Data\Ahead
2008-04-07 03:15 --------- d-----w C:\Program Files\K1RFD
2008-04-06 21:30 --------- d-----w C:\Documents and Settings\VK3FCLL\Application Data\Desktop Sidebar
2008-04-06 21:28 --------- d-----w C:\Program Files\iTunes
2008-04-06 21:28 --------- d-----w C:\Program Files\iPod
2008-04-06 21:27 --------- d-----w C:\Program Files\QuickTime
2008-03-28 04:25 32 ----a-w C:\Documents and Settings\All Users.WINDOWS\Application Data\ezsid.dat
2008-03-23 00:02 356,352 ----a-w C:\WINDOWS\eSellerateEngine.dll
2008-03-22 20:47 482 ----a-w C:\Program Files\CamStudio.lnk
2008-01-07 22:20 24,192 ----a-w C:\Documents and Settings\VK3FCLL\usbsermptxp.sys
2008-01-07 22:20 22,768 ----a-w C:\Documents and Settings\VK3FCLL\usbsermpt.sys
.
------- Sigcheck -------
2008-03-07 15:21 502272 6225f14b8ce08ccba8b25ad27843c674 C:\WINDOWS\system32\winlogon.exe
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A057A204-BACC-4D26-9990-79A187E2698E}]
2008-04-27 10:03 2050816 --a------ C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{A057A204-BACC-4D26-9990-79A187E2698E}"= "C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL" [2008-04-27 10:03 2050816]
[HKEY_CLASSES_ROOT\clsid\{a057a204-bacc-4d26-9990-79a187e2698e}]
[HKEY_CLASSES_ROOT\avgtoolbar.AVGTOOLBAR]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{A057A204-BACC-4D26-9990-79A187E2698E}"= C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL [2008-04-27 10:03 2050816]
[HKEY_CLASSES_ROOT\clsid\{a057a204-bacc-4d26-9990-79a187e2698e}]
[HKEY_CLASSES_ROOT\avgtoolbar.AVGTOOLBAR]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.exe" [2007-11-07 15:34 3739672]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [2004-08-04 19:06 1667584]
"RocketDock"="C:\Program Files\RocketDock\RocketDock.exe" [2007-09-01 18:19 495616]
"WinFlip"="C:\Program Files\WinFlip\WinFlip.exe" [2007-10-25 01:12 462848]
"scheduler_monitor"="C:\Program Files\ReaConverter 5.5 Pro\init_scheduler.exe" [2007-06-15 11:17 27136]
"Skype"="C:\Program Files\Skype\Phone\Skype.exe" [2007-12-07 15:08 21686568]
"SightSpeed"="C:\Program Files\SightSpeed\SightSpeed.exe" [2008-01-05 06:56 3637760]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2007-02-26 17:03 16125440 C:\WINDOWS\RTHDCPL.exe]
"SkyTel"="SkyTel.EXE" [2006-05-16 20:04 2879488 C:\WINDOWS\SkyTel.exe]
"GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 23:47 31016]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 18:51 39792]
"LifeCam"="C:\Program Files\Microsoft LifeCam\LifeExp.exe" [2007-01-13 11:48 275800]
"VX3000"="C:\WINDOWS\vVX3000.exe" [2006-12-06 09:38 707360]
"NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [2007-03-01 14:57 153136]
"RemoteControl"="C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" [2006-11-23 14:10 56928]
"LanguageShortcut"="C:\Program Files\CyberLink\PowerDVD\Language\Language.exe" [2006-12-05 21:55 54832]
"SecurDisc"="C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe" [2007-05-15 14:55 1628208]
"InCD"="C:\Program Files\Nero\Nero 7\InCD\InCD.exe" [2007-05-15 14:55 1057328]
"CTSysVol"="C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe" [2005-10-31 09:51 57344]
"UpdReg"="C:\WINDOWS\UpdReg.EXE" [2000-05-11 01:00 90112]
"DrvIcon"="C:\Program Files\Vista Drive Icon\DrvIcon.exe" [2007-07-05 05:59 45056]
"Acrobat Assistant 8.0"="C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe" [2007-05-10 21:46 624248]
"Adobe_ID0EYTHM"="C:\PROGRA~1\COMMON~1\Adobe\ADOBEV~1\Server\bin\VERSIO~2.EXE" [2007-03-20 15:40 1884160]
"LocalCooling"="C:\Program Files\LocalCooling\localcooling.exe" [2006-12-01 17:09 2056875]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2008-03-28 23:37 413696]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2008-03-30 10:36 267048]
"AVG8_TRAY"="C:\PROGRA~1\AVG\AVG8\avgtray.exe" [2008-04-27 10:03 1177368]
"LogonStudio"="C:\Program Files\WinCustomize\LogonStudio\logonstudio.exe" [2002-09-03 18:38 987187]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 04:25 144784]
"P17Helper"="P17.dll" [2006-03-17 16:11 81408 C:\WINDOWS\system32\P17.dll]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2006-10-31 08:35 7634944]
"nwiz"="nwiz.exe" [2006-10-31 08:35 1622016 C:\WINDOWS\system32\nwiz.exe]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2006-10-31 08:35 86016]
C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\
MailWasherPro.lnk - C:\Program Files\FireTrust\MailWasher Pro\MailWasher.exe [2007-12-27 12:28:23 5661184]
Microsoft Office Groove.lnk - C:\Program Files\Microsoft Office\Office12\GROOVE.EXE [2006-10-27 14:37:44 338216]
C:\Documents and Settings\VK3FCLL\Start Menu\Programs\Startup\
MailWasherPro.lnk - C:\Program Files\FireTrust\MailWasher Pro\MailWasher.exe [2007-12-27 12:28:23 5661184]
OneNote 2007 Screen Clipper and Launcher.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE [2006-10-26 19:24:54 98632]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"AllowLegacyWebView"= 1 (0x1)
"AllowUnhashedWebView"= 1 (0x1)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"UIHost"="C:\\WINDOWS\\system32\\logonui.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LMIinit]
LMIinit.dll 2007-11-15 17:46 87352 C:\WINDOWS\system32\LMIinit.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=avgrsstx.dll
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
"C:\\Program Files\\Microsoft Office\\Office12\\GROOVE.EXE"=
"C:\\Program Files\\Microsoft Office\\Office12\\ONENOTE.EXE"=
"C:\\Program Files\\Microsoft LifeCam\\LifeCam.exe"=
"C:\\Program Files\\Microsoft LifeCam\\LifeExp.exe"=
"C:\\Program Files\\BitComet\\BitComet.exe"=
"C:\\WINDOWS\\system32\\usmt\\migwiz.exe"=
"C:\\Program Files\\LimeWire\\LimeWire.exe"=
"C:\\Program Files\\Common Files\\Adobe\\Adobe Version Cue CS3\\Server\\bin\\VersionCueCS3.exe"=
"C:\\WINDOWS\\pchealth\\helpctr\\binaries\\HelpCtr.exe"=
"C:\\Program Files\\SiSoftware\\SiSoftware Sandra Lite XII.SP1\\Win32\\RpcDataSrv.exe"=
"C:\\Program Files\\SiSoftware\\SiSoftware Sandra Lite XII.SP1\\RpcSandraSrv.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=
"C:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"C:\\Program Files\\AVG\\AVG8\\avgupd.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
"C:\\Program Files\\Skype\\Phone\\Skype.exe"=
"C:\\Program Files\\SightSpeed\\SightSpeed.exe"=
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"20685:TCP"= 20685:TCP:BitComet 20685 TCP
"20685:UDP"= 20685:UDP:BitComet 20685 UDP
"3389:TCP"= 3389:TCP

xpsp2res.dll,-22009
"3703:TCP"= 3703:TCP:Adobe Version Cue CS3 Server
"3704:TCP"= 3704:TCP:Adobe Version Cue CS3 Server
"50900:TCP"= 50900:TCP:Adobe Version Cue CS3 Server
"50901:TCP"= 50901:TCP:Adobe Version Cue CS3 Server
"11961:TCP"= 11961:TCP:BitCometBeta 11961 TCP
"11961:UDP"= 11961:UDP:BitCometBeta 11961 UDP
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\IcmpSettings]
"AllowInboundEchoRequest"= 1 (0x1)
R1 AvgLdx86;AVG AVI Loader Driver x86;C:\WINDOWS\system32\Drivers\avgldx86.sys [2008-04-27 10:03]
R2 avg8wd;AVG8 WatchDog;C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2008-04-27 10:03]
R2 LMIRfsDriver;LogMeIn Remote File System Driver;C:\WINDOWS\system32\drivers\LMIRfsDriver.sys [2007-08-03 14:09]
R2 MSCamSvc;MSCamSvc;"C:\Program Files\Microsoft LifeCam\MSCamS32.exe" [2007-01-05 08:13]
R2 roclient;roclient;C:\Program Files\RemoteObserverClient\roclient.exe [2008-06-01 16:56]
R3 p17filt;p17filt;C:\WINDOWS\system32\drivers\p17filt.sys [2006-03-20 18:34]
S3 ALSysIO;ALSysIO;C:\DOCUME~1\VK3FCLL\LOCALS~1\Temp\ALSysIO.sys []
S3 ASPI;Advanced SCSI Programming Interface Driver;C:\WINDOWS\System32\DRIVERS\ASPI32.sys [2008-05-06 16:01]
S3 MSSQL$SONY_MEDIAMGR2;SQL Server (SONY_MEDIAMGR2);"c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sSONY_MEDIAMGR2 []
S3 rcp_service;ReaConverter scheduler service;C:\Program Files\ReaConverter 5.5 Pro\rcp_scheduler.exe [2007-11-30 12:27]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\E]
\Shell\AutoRun\command - E:\
.
Contents of the 'Scheduled Tasks' folder
"2008-06-04 10:20:00 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2008-06-06 09:21:20 C:\WINDOWS\Tasks\XoftSpySE 2.job"
- C:\Program Files\XoftSpySE\XoftSpy.exe
"2008-04-11 18:15:42 C:\WINDOWS\Tasks\XoftSpySE.job"
- C:\Program Files\XoftSpySE\XoftSpy.exe
.
**************************************************************************
catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-06-06 19:21:38
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\CTSVCCDA.EXE
C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\Program Files\AVG\AVG8\avgrsx.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
.
**************************************************************************
.
Completion time: 2008-06-06 19:56:06 - machine was rebooted
ComboFix-quarantined-files.txt 2008-06-06 09:55:02
Pre-Run: 105,326,780,416 bytes free
Post-Run: 105,866,022,912 bytes free
245