Here is the combofix log:
ComboFix 07-12-02.6 - Administrator 2007-12-05 22:25:57.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.635 [GMT -5:00]
Running from: C:\Documents and Settings\Administrator\Desktop\ComboFix.exe
* Created a new restore point
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\Administrator\Application Data\YSTEM~1
C:\Documents and Settings\Administrator\Application Data\YSTEM~1\?ystem\
C:\Documents and Settings\Administrator\Start Menu\Programs\Internet Speed Monitor
C:\Documents and Settings\Administrator\Start Menu\Programs\Internet Speed Monitor\Check Now.lnk
C:\Documents and Settings\Administrator\Start Menu\Programs\Internet Speed Monitor\Uninstall.lnk
C:\Program Files\ISM
C:\Program Files\ISM\ism.exe
C:\Program Files\ISM\Uninstall.exe
C:\Program Files\QdrDrive
C:\Program Files\QdrDrive\QdrDrive8.dll
C:\Program Files\QdrDrive\qdrloader.exe
C:\Program Files\QdrModule
C:\Program Files\QdrModule\dic.gz
C:\Program Files\QdrModule\kwd.gz
C:\Program Files\QdrModule\QdrModule10.exe
C:\Program Files\QdrPack
C:\Program Files\QdrPack\QdrPack10.exe
C:\Program Files\Temporary
C:\WINDOWS\stem32~1
C:\WINDOWS\stem32~1\?serinit.exe
C:\WINDOWS\system32\awtqr.dll
C:\WINDOWS\system32\rqtwa.bak1
C:\WINDOWS\system32\rqtwa.bak2
C:\WINDOWS\system32\rqtwa.ini
C:\WINDOWS\system32\wnscpsv32.exe
.
((((((((((((((((((((((((( Files Created from 2007-11-06 to 2007-12-06 )))))))))))))))))))))))))))))))
.
2007-12-04 23:17 . 2007-12-04 23:17 <DIR> d-------- C:\Program Files\CCleaner
2007-12-03 19:06 . 2007-12-03 19:06 <DIR> d-------- C:\Program Files\iTunes
2007-12-03 19:06 . 2007-12-03 19:06 <DIR> d-------- C:\Program Files\iPod
2007-12-03 19:06 . 2007-12-03 19:51 <DIR> d-------- C:\Documents and Settings\Administrator\Application Data\Apple Computer
2007-12-03 19:03 . 2007-12-03 19:03 <DIR> d-------- C:\Program Files\Common Files\Apple
2007-12-03 19:03 . 2007-12-03 19:03 <DIR> d-------- C:\Program Files\Apple Software Update
2007-12-03 19:03 . 2007-12-03 19:03 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Apple
2007-12-03 19:03 . 2007-10-31 14:09 30,464 --a------ C:\WINDOWS\system32\drivers\usbaapl.sys
2007-12-02 09:47 . 2007-12-02 09:47 <DIR> d-------- C:\Program Files\Lavasoft
2007-12-02 09:47 . 2007-12-02 09:47 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Lavasoft
2007-12-02 00:24 . 2006-03-03 11:07 143,360 --a------ C:\WINDOWS\system32\dunzip32.dll
2007-12-02 00:24 . 2007-12-05 22:27 11,487 --a------ C:\WINDOWS\system32\Config.MPF
2007-12-02 00:23 . 2007-07-21 09:08 201,288 --a------ C:\WINDOWS\system32\drivers\mfehidk.sys
2007-12-02 00:23 . 2007-07-13 09:20 113,952 --a------ C:\WINDOWS\system32\drivers\Mpfp.sys
2007-12-02 00:23 . 2007-07-24 07:40 79,304 --a------ C:\WINDOWS\system32\drivers\mfeavfk.sys
2007-12-02 00:23 . 2007-07-21 09:08 40,488 --a------ C:\WINDOWS\system32\drivers\mfesmfk.sys
2007-12-02 00:23 . 2007-07-21 09:08 35,240 --a------ C:\WINDOWS\system32\drivers\mfebopk.sys
2007-12-02 00:23 . 2007-07-24 12:02 33,800 --a------ C:\WINDOWS\system32\drivers\mferkdk.sys
2007-12-02 00:22 . 2007-12-02 00:22 <DIR> d-------- C:\Program Files\McAfee.com
2007-12-02 00:22 . 2007-12-04 09:36 <DIR> d-------- C:\Program Files\McAfee
2007-12-02 00:22 . 2007-12-02 00:23 <DIR> d-------- C:\Program Files\Common Files\McAfee
2007-12-02 00:18 . 2007-12-02 00:24 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\McAfee
2007-11-19 15:12 . 2007-12-03 19:04 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2007-11-19 15:12 . 2007-11-19 15:12 1,409 --a------ C:\WINDOWS\QTFont.for
2007-11-17 15:41 . 2004-08-03 22:59 43,136 --a------ C:\WINDOWS\system32\drivers\sbp2port.sys
2007-11-17 15:41 . 2004-08-03 22:59 43,136 --a--c--- C:\WINDOWS\system32\dllcache\sbp2port.sys
2007-11-14 23:43 . 2007-11-14 23:43 65,536 --a------ C:\WINDOWS\system32\QuickTimeVR.qtx
2007-11-14 23:43 . 2007-11-14 23:43 49,152 --a------ C:\WINDOWS\system32\QuickTime.qts
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2007-12-05 04:30 --------- d-----w C:\Documents and Settings\Administrator\Application Data\uTorrent
2007-12-04 00:06 --------- d-----w C:\Documents and Settings\All Users\Application Data\Apple Computer
2007-12-04 00:05 --------- d-----w C:\Program Files\QuickTime
2007-12-02 14:47 --------- d-----w C:\Program Files\Common Files\Wise Installation Wizard
2007-12-02 14:11 --------- d--h--w C:\Program Files\InstallShield Installation Information
2007-12-02 14:11 --------- d-----w C:\Program Files\CyberLink
2007-11-27 00:46 --------- d-----w C:\Documents and Settings\All Users\Application Data\SmartSound Software Inc
2007-11-19 20:08 --------- d-----w C:\Documents and Settings\Administrator\Application Data\Roxio
2007-10-27 20:34 --------- d-----w C:\Documents and Settings\Administrator\Application Data\CyberLink
2007-10-27 20:30 --------- d-----w C:\Documents and Settings\All Users\Application Data\CyberLink
2007-10-25 02:14 --------- d-----w C:\Program Files\MediaMonkey
2007-10-23 04:05 --------- d-----w C:\Documents and Settings\LocalService\Application Data\CyberLink
2007-10-23 02:51 223,128 ----a-w C:\WINDOWS\system32\drivers\vaxscsi.sys
2007-10-23 02:51 --------- d-----w C:\Program Files\Alcohol Soft
2007-10-23 02:49 96,256 ----a-w C:\WINDOWS\system32\drivers\sptd4557.sys
2007-10-23 02:49 642,560 ----a-w C:\WINDOWS\system32\drivers\sptd.sys
2007-10-22 22:15 --------- d-----w C:\Program Files\Common Files\Ulead Systems
2007-10-22 22:15 --------- d-----w C:\Documents and Settings\All Users\Application Data\Ulead Systems
2007-10-22 22:15 --------- d-----w C:\Documents and Settings\Administrator\Application Data\Ulead Systems
2007-10-22 22:14 --------- d-----w C:\Program Files\SmartSound Software
2007-10-22 22:13 --------- d-----w C:\Program Files\Windows Media Components
2007-10-22 22:13 --------- d-----w C:\Program Files\Ulead Systems
2007-10-22 22:13 --------- d-----w C:\Documents and Settings\All Users\Application Data\QuickTime
2007-10-18 00:48 --------- d-----w C:\Program Files\Microsoft Games
2007-10-10 23:42 --------- d-----w C:\Program Files\Java
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"QdrModule10"="C:\Program Files\QdrModule\QdrModule10.exe" []
"QdrPack10"="C:\Program Files\QdrPack\QdrPack10.exe" []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"mcagent_exe"="C:\Program Files\McAfee.com\Agent\mcagent.exe" [2007-08-03 22:33]
"McENUI"="C:\PROGRA~1\McAfee\MHN\McENUI.exe" [2007-07-22 20:29]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"NoResolveSearch"= 1 (0x1)
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\fccayxu]
fccayxu.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
@=""
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
2007-10-10 18:51 39792 --a------ C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATICCC]
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe runtime -Delay
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSScheduler]
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe -start
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDVDDXSrv]
2006-10-20 16:23 118784 --------- C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Picasa Media Detector]
2007-06-15 18:15 366400 --a------ C:\Program Files\Picasa2\PicasaMediaDetector.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RoxioDragToDisc]
2006-08-17 08:00 1116920 --a------ C:\Program Files\Roxio\Drag-to-Disc\DrgToDsc.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RoxWatchTray]
2006-11-05 10:22 221184 --a------ C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomTomHOME.exe]
C:\Program Files\TomTom HOME\TomTomHOME.exe -s
R0 timounter;Acronis True Image Backup Archive Explorer;C:\WINDOWS\system32\DRIVERS\timntr.sys
R1 DLARTL_M;DLARTL_M;C:\WINDOWS\system32\Drivers\DLARTL_M.SYS
R2 tifsfilter;Acronis True Image FS Filter;C:\WINDOWS\system32\DRIVERS\tifsfilt.sys
S2 0028881196779011mcinstcleanup;McAfee Application Installer Cleanup (0028881196779011);C:\WINDOWS\TEMP\
002888~1.EXE C:\PROGRA~1\COMMON~1\McAfee\INSTAL~1\cleanup.ini -cleanup -nolog -service
S3 USBAAPL;Apple Mobile USB Driver;C:\WINDOWS\system32\Drivers\usbaapl.sys
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{c965c4c2-3de4-11dc-9e2b-806d6172696f}]
\Shell\AutoRun\command - D:\autoRcd.exe
.
Contents of the 'Scheduled Tasks' folder
"2007-12-04 00:03:36 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2007-12-02 05:22:52 C:\WINDOWS\Tasks\McDefragTask.job"
- c:\PROGRA~1\mcafee\mqc\QcConsol.exe'
"2007-12-02 05:22:51 C:\WINDOWS\Tasks\McQcTask.job"
- c:\PROGRA~1\mcafee\mqc\QcConsol.exe
.
**************************************************************************
catchme 0.3.1318 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2007-12-05 22:28:48
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2007-12-05 22:29:23 - machine was rebooted
.
--- E O F ---