This was just asked....
You got one prayer only - an emergency USB stick ....
SEE
a-squared Emergency USB Stick
http://www.emsisoft.com/en/software/stick/
A-Squared AntiMalware is antispyware and antivirus as they added Ikarus AV (antivirus). It has over 2 and half million removal defintions. One million of those are the antivirus as there are just topping 1 million known viruses in the world web. For antispyware - they about 1 and a half million defintions or more and compare that to a popular PC Tools Spyware Doctor that just passed 650,000 defintions. It is a real roto rooter. Visit VirusTotal and you will see Ikarus AV is equaling and topping others like USA Symantec Norton and UK Based Sophos AV which both have an unprecedented 40 plus VB100 Awards and they indeed remove botnet infestations as I just went through an attack and it removed this botnet payload (MASSIVE AND CATASTROPHIC DAMAGES....
PAYLOAD DETECTED:
Trace.Registry.Blubster (several)
Trace.Registry.SpyPc 8.0!A2 (several)
Worm.Win32.Otwycal.c
Trace.File.Borzoi
Trojan-Downloader.Win32.Agent.bkw
Trace.Registry.Internet Cleanup 5.0 (couple)
Trojan.Small.jhy.5632
Virus.Win32.Patched.B!IK
Virus.Win32.Patched.B!IK
Win32.Luder!IK (several)
Virus.Win32.Nsag.A!IK (several)
Virus.Win32.Virut.q!IK (several)
Trojan.Win32.Anomaly.D!IK
Virus.Win32.Virut.bo!IK
Win32.Virtob.8!IK (couple)
Virus.Win32.Virut.ar!IK
Virus.Win32.Virut.as!IK (couple)
Virus.Win32.Luder.B!IK
Win32.Luder!IK (several)
Virus.Win32.Nsag.A!IK (several)
Trojan-Downloader.Win32.Small!IK
Trojan-Dropper.Agent!IK
Trojan-Downloader.Win32.Agent.bkw
(Pseudo 14 Teredo Trojan Botnet Attack")
Look at these ....
C:\WINDOWS\I386\WINHLP32.EX_/winhlp32.exe Quarantined Virus.Win32.Virut.ar!IK
C:\WINDOWS\I386\SETUP50.EX_/setup50.exe Quarantined Virus.Win32.Virut.as!IK
C:\WINDOWS\I386\OEMIG50.EX_/oemig50.exe Quarantined Win32.Virtob.8!IK
C:\WINDOWS\I386\ODBCCONF.EX_/odbcconf.exe Quarantined Virus.Win32.Virut.bo!IK
C:\WINDOWS\I386\DEFRAG.EX_/defrag.exe Quarantined Win32.Luder!IK
C:\WINDOWS\I386\DIANTZ.EX_/diantz.exe Quarantined Win32.Luder!IK
C:\WINDOWS\I386\MSCONFIG.EX_/msconfig.exe Quarantined Win32.Luder!IK
C:\WINDOWS\I386\NETDDE.EX_/netdde.exe Quarantined Win32.Luder!IK
C:\WINDOWS\I386\NSLOOKUP.EX_/nslookup.exe Quarantined Win32.Luder!IK
C:\WINDOWS\I386\RDSHOST.EX_/rdshost.exe Quarantined Win32.Luder!IK
C:\WINDOWS\I386\RSVP.EX_/rsvp.exe Quarantined Win32.Luder!IK
C:\WINDOWS\I386\SESSMGR.EX_/sessmgr.exe Quarantined Win32.Luder!IK
C:\WINDOWS\I386\CMSTP.EX_/cmstp.exe Quarantined Trojan.Win32.Anomaly.D!IK
C:\WINDOWS\I386\BCKGZM.EX_/bckgzm.exe Quarantined Virus.Win32.Virut.q!IK
C:\WINDOWS\I386\HRTZZM.EX_/hrtzzm.exe Quarantined Virus.Win32.Virut.q!IK
C:\WINDOWS\I386\AGENTSVR.EX_/agentsvr.exe Quarantined Virus.Win32.Luder.B!IK
C:\WINDOWS\I386\OSK.EX_/osk.exe Quarantined Virus.Win32.Luder.B!IK
C:\WINDOWS\I386\WBEMTEST.EX_/wbemtest.exe Quarantined Virus.Win32.Luder.B!IK
C:\WINDOWS\$NtUninstallKB834707$\wininet.dll Quarantined Virus.Win32.Nsag.A!IK
C:\WINDOWS\$NtUninstallKB867282$\wininet.dll Quarantined Virus.Win32.Nsag.A!IK
C:\WINDOWS\$NtUninstallKB883939$\wininet.dll Quarantined Virus.Win32.Nsag.A!IK
C:\WINDOWS\$NtUninstallKB890923$\wininet.dll
C:\WINDOWS\$NtUninstallKB890923$\wininet.dll Quarantined Virus.Win32.Nsag.A!IK
Went after Service Packs to destroy all versions of the Windows Installer which can not be fixed (google it) even after uninstalling Service Packs to attempt re-writing in the upgraded versions from 2.0 to the version 4 now. No luck. Retrograding from Service Pack 3 to 2 and if you go to SP1 you no longer have Windows Updates access.
All connectivity was lost as all DNS was wiped including browser ID and they attempted IP Spoofing and to reconnect my PC into a botnet / zombie network (unsuccesssful). The entire machine (XP) was rebuilt by me and the only damage left was to the Windows Installer. It has one corrupted registry key that I am locating now to rewrite into the registry and finally done. Completely restored without reinstalling Windows.
Like I said they (Emsisoft) know what they are doing. You're very, very, very lucky if your Windows Installer is still operational or you are screwed. I went up and down the internet and there is NO other way to install software even to trying a type of CAB files upload of software and install from that package.
Just read the payload and damage here and maybe further help
http://bluecollarpc.net/smf/index.php?topic=346.0
One other point is to look up the recent USB Plug and Play threats and hopefully it was patched from Windows Updates or again sorry too bad that won't work. Move to Emergency Disaster Recovery CD that came with the new pc. You need to reinstall Windows. No disk... too late you can't make one now...
SEE
Create an emergency repair CD
http://articles.techrepublic.com.com/5100-10878_11-1053250.html
MORE
Back-Up and Recovery List - Softpedia.com
Home / Windows / Categories / System / Back-Up and Recovery
http://www.softpedia.com/get/System/Back-Up-and-Recovery/
That was a very, very, very irrespsonsible thing to do - the person listened to someone to turn off Vista UAC User Account Control. In Vista, viruses cannot write to the disk - only to temporary files which cannot execute unless clicked. Vista UAC beat ALL world anti rootkit softwares and does not allow rootkits to run on it. The only way this happened is the User turned off UAC like they were told not to. Sorry. They are looking at the truth....
Techworld.com - Vista's UAC spots rootkits, tests find
http://www.techworld.com/security/news/index.cfm?newsid=101583
The test results show that Vista beat ALL known anti rootkit softwares availble. Read it. Rootkits are worst than Backdoor Trojan Downloaders (cheap rootkit) which hide from all known security software if not caught immediately and continually install more malware.
PS..... next time turn off "Allow Active Content To Run" in the CD Drawer ! And look in WINDOWS system32 for Dr.Watson Debugger and run it manually (google it)... might cure some evils.
I ONLY mentioned all that because obviously you have more than just damage. It is leaning towards catasrophic damage as connectivity has been lost and installtion services.