OK that I can do. Kaspersky failed even after three more attempts.
Owner - 06-10-21 20:01:09.29 Service Pack 2
ComboFix 06.10.16 - Running from: "C:\Documents and Settings\Owner\Desktop"
((((((((((((((((((((((((((((((( Files Created from 2006-09-21 to 2006-10-21 ))))))))))))))))))))))))))))))))))
2006-09-24 23:03 51,072 --a------ C:\WINDOWS\SYSTEM32\drivers\ikhlayer.sys
2006-09-24 23:03 30,592 --a------ C:\WINDOWS\SYSTEM32\drivers\ikhfile.sys
2006-09-24 21:25 970,752 --a------ C:\WINDOWS\SYSTEM32\VchReg.dll
2006-09-23 18:39 28,672 --a------ C:\WINDOWS\SYSTEM32\drivers\CO_Mon.sys
(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))
2006-10-21 18:43 -------- d--h----- C:\Program Files\InstallShield Installation Information
2006-10-21 18:34 -------- d-------- C:\Program Files\eBay
2006-10-21 04:39 -------- d-------- C:\Program Files\Common Files\Symantec Shared
2006-10-20 03:18 -------- d-------- C:\Program Files\ewido anti-spyware 4.0
2006-10-17 19:17 -------- d---s---- C:\Documents and Settings\Owner\Application Data\Microsoft
2006-10-17 18:44 -------- d-------- C:\Program Files\LimeWire
2006-10-17 18:41 -------- d-------- C:\Program Files\Java
2006-10-17 18:32 -------- d-------- C:\Program Files\Common Files\Java
2006-10-17 18:32 -------- d-------- C:\Program Files\Common Files
2006-10-17 14:45 -------- d-------- C:\Program Files\Spyware Doctor
2006-10-16 19:24 -------- d-------- C:\Program Files\Norton SystemWorks
2006-10-04 14:06 -------- d-------- C:\Program Files\Enigma Software Group
2006-09-28 17:07 -------- d-------- C:\Program Files\Common Files\Microsoft Shared
2006-09-26 14:52 -------- d-------- C:\Documents and Settings\Owner\Application Data\Real
2006-09-26 14:40 -------- d-------- C:\Program Files\Common Files\xing shared
2006-09-26 14:40 -------- d-------- C:\Program Files\Common Files\Real
2006-09-26 14:37 -------- d-------- C:\Program Files\Real
2006-09-25 09:25 -------- d-------- C:\Program Files\Common Files\InstallShield
2006-09-24 23:02 -------- d-------- C:\Documents and Settings\Owner\Application Data\PC Tools
2006-09-23 23:01 -------- d-------- C:\Program Files\Symantec
2006-09-23 20:09 -------- d-------- C:\Program Files\Norton Internet Security
2006-09-15 22:04 48816 --a------ C:\WINDOWS\SYSTEM32\S32EVNT1.DLL
2006-09-15 22:04 109744 --a------ C:\WINDOWS\SYSTEM32\drivers\SYMEVENT.SYS
2006-09-13 15:01 1084416 --a------ C:\WINDOWS\SYSTEM32\msxml3.dll
2006-09-12 10:19 -------- d-------- C:\Program Files\QuickTime
2006-09-11 16:30 275112 --a------ C:\WINDOWS\SYSTEM32\drivers\srtspl.sys
2006-09-11 16:30 243368 --a------ C:\WINDOWS\SYSTEM32\drivers\srtsp.sys
2006-09-11 16:30 24232 --a------ C:\WINDOWS\SYSTEM32\drivers\srtspx.sys
2006-09-11 12:51 -------- d-------- C:\Program Files\Destroyer Command
2006-09-04 18:29 -------- d-------- C:\Documents and Settings\Owner\Application Data\Apple Computer
2006-09-04 18:20 -------- d-------- C:\Program Files\iPod
2006-09-03 05:35 613056 --a------ C:\WINDOWS\SYSTEM32\SymNeti.dll
2006-09-03 05:35 36032 --a------ C:\WINDOWS\SYSTEM32\drivers\symndisv.sys
2006-09-03 05:35 239808 --a------ C:\WINDOWS\SYSTEM32\SymRedir.dll
2006-09-03 05:35 186048 --a------ C:\WINDOWS\SYSTEM32\drivers\symtdi.sys
2006-09-03 05:34 39104 --a------ C:\WINDOWS\SYSTEM32\drivers\symids.sys
2006-09-03 05:34 33216 --a------ C:\WINDOWS\SYSTEM32\drivers\symndis.sys
2006-09-03 05:34 26432 --a------ C:\WINDOWS\SYSTEM32\drivers\symredrv.sys
2006-09-03 05:34 144832 --a------ C:\WINDOWS\SYSTEM32\drivers\symfw.sys
2006-09-03 05:34 11968 --a------ C:\WINDOWS\SYSTEM32\drivers\symdns.sys
2006-08-26 01:45 617472 --a------ C:\WINDOWS\SYSTEM32\comctl32.dll
2006-08-22 17:08 -------- d-------- C:\Documents and Settings\Owner\Application Data\Macromedia
2006-08-21 22:21 16896 --a------ C:\WINDOWS\SYSTEM32\fltlib.dll
2006-08-21 19:14 23040 --a------ C:\WINDOWS\SYSTEM32\fltmc.exe
2006-08-21 19:14 128896 --------- C:\WINDOWS\SYSTEM32\drivers\fltmgr.sys
2006-08-16 21:58 100352 --a------ C:\WINDOWS\SYSTEM32\6to4svc.dll
2006-07-27 23:24 679424 --a------ C:\WINDOWS\SYSTEM32\inetcomm.dll
2006-07-21 18:24 72704 --a------ C:\WINDOWS\SYSTEM32\hlink.dll
(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries are not shown
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe"
"Spyware Doctor"="\"C:\\Program Files\\Spyware Doctor\\swdoctor.exe\" /Q"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"hpsysdrv"="c:\\windows\\system\\hpsysdrv.exe"
"KBD"="C:\\HP\\KBD\\KBD.EXE"
"WorksFUD"="C:\\Program Files\\Microsoft Works\\wkfud.exe"
"Microsoft Works Portfolio"="C:\\Program Files\\Microsoft Works\\WksSb.exe /AllUsers"
"Microsoft Works Update Detection"="C:\\Program Files\\Microsoft Works\\WkDetect.exe"
"Recguard"="C:\\WINDOWS\\SMINST\\RECGUARD.EXE"
"NvCplDaemon"="RUNDLL32.EXE NvQTwk,NvCplDaemon initialize"
"IgfxTray"="C:\\WINDOWS\\System32\\igfxtray.exe"
"HotKeysCmds"="C:\\WINDOWS\\System32\\hkcmd.exe"
"PS2"="C:\\WINDOWS\\system32\\ps2.exe"
"Share-to-Web Namespace Daemon"="C:\\Program Files\\Hewlett-Packard\\HP Share-to-Web\\hpgs2wnd.exe"
"SpeedTouch USB Diagnostics"="\"C:\\Program Files\\Alcatel\\SpeedTouch USB\\Dragdiag.exe\" /icon"
"ccApp"="\"C:\\Program Files\\Common Files\\Symantec Shared\\ccApp.exe\""
"osCheck"="\"C:\\Program Files\\Norton Internet Security\\osCheck.exe\""
"TkBellExe"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot"
"SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre1.5.0_08\\bin\\jusched.exe\""
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components]
"DeskHtmlVersion"=dword:00000110
"DeskHtmlMinorVersion"=dword:00000005
"Settings"=dword:00000001
"GeneralFlags"=dword:00000001
[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"
"Flags"=dword:00000002
"Position"=hex:2c,00,00,00,cc,00,00,00,00,00,00,00,34,03,00,00,de,02,00,00,00,\
00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00
"CurrentState"=hex:04,00,00,40
"OriginalStateInfo"=hex:18,00,00,00,ff,ff,00,00,ff,ff,00,00,ff,ff,ff,ff,ff,ff,\
ff,ff,04,00,00,00
"RestoredStateInfo"=hex:18,00,00,00,6a,02,00,00,23,00,00,00,a4,00,00,00,9a,00,\
00,00,01,00,00,00
[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"MSMSGS"="\"C:\\Program Files\\Messenger\\msmsgs.exe\" /background"
"Spyware Doctor"="\"C:\\Program Files\\Spyware Doctor\\swdoctor.exe\" /Q"
[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\run]
"MSMSGS"="\"C:\\Program Files\\Messenger\\msmsgs.exe\" /background"
"Spyware Doctor"="\"C:\\Program Files\\Spyware Doctor\\swdoctor.exe\" /Q"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\sharedtaskscheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="ewido anti-spyware 4.0"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
"NoDrives"=dword:00000000
"NoViewOnDrive"=dword:00000000
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001
[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"
Contents of the 'Scheduled Tasks' folder
C:\WINDOWS\tasks\Norton Internet Security - Run Full System Scan - Owner.job
C:\WINDOWS\tasks\Norton SystemWorks One Button Checkup.job
C:\WINDOWS\tasks\Symantec Drmc.job
Completion time: 06-10-21 20:05:07.93
C:\ComboFix.txt ... 06-10-21 20:05
C:\ComboFix2.txt ... 06-10-18 19:33
C:\ComboFix3.txt ... 06-10-17 20:53