I am glad we are looking good. The computer seems to be running pretty well. One problem that started after the last batch of fixes was that my USB travel drive is not being recognized. I get a message "USB device not recogonized... " as soon as I plug it in.
Below is the combofix log
"Steve" - 07-04-03 18:28:04 Service Pack 1
ComboFix 07-04-04 - Running from: "C:\Documents and Settings\Steve\Desktop"
((((((((((((((((((((((((((((((( Files Created from 2007-03-03 to 2007-04-03 ))))))))))))))))))))))))))))))))))
2007-04-02 19:04 <DIR> d-------- C:\!KillBox
2007-04-02 18:47 3,968 --a------ C:\WINDOWS\SYSTEM32\DRIVERS\AvgAsCln.sys
2007-04-01 11:29 <DIR> d-------- C:\WINDOWS\SYSTEM32\Kaspersky Lab
2007-03-29 21:01 <DIR> d-------- C:\VundoFix Backups
2007-03-21 09:02 118,798 --a------ C:\WINDOWS\SYSTEM32\__c007446A.dat
2007-03-20 16:53 212,480 --a------ C:\WINDOWS\PCDLIB32.DLL
2007-03-20 16:53 <DIR> d-------- C:\Program Files\ArcSoft
2007-03-20 16:39 <DIR> d-------- C:\Program Files\Common Files\HP
2007-03-20 16:38 <DIR> d-------- C:\Program Files\Hewlett-Packard
2007-03-20 16:37 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
2007-03-20 16:23 <DIR> d-------- C:\Program Files\HP
2007-03-20 16:07 78,998 --a------ C:\WINDOWS\hpfins05.dat
2007-03-20 16:07 77,824 -ra------ C:\WINDOWS\SYSTEM32\hpzids01.dll
2007-03-20 16:07 45,056 --a------ C:\WINDOWS\SYSTEM32\hpzll3xu.dll
2007-03-20 16:07 1,395 --------- C:\WINDOWS\hpfmdl05.dat
2007-03-20 16:02 24,960 --a------ C:\WINDOWS\SYSTEM32\DRIVERS\usbprint.sys
2007-03-15 22:25 127,208 --a------ C:\WINDOWS\SYSTEM32\mucltui.dll
2007-03-13 18:32 1,048,576 --ah----- C:\DOCUME~1\ADMINI~1\NTUSER.DAT
2007-03-13 18:32 <DIR> d-------- C:\DOCUME~1\ADMINI~1\APPLIC~1\Symantec
2007-03-13 18:23 3,084 --a------ C:\WINDOWS\SYSTEM32\tmp.reg
2007-03-13 18:22 79,360 --a------ C:\WINDOWS\SYSTEM32\swxcacls.exe
2007-03-13 18:22 53,248 --a------ C:\WINDOWS\SYSTEM32\Process.exe
2007-03-13 18:22 51,200 --a------ C:\WINDOWS\SYSTEM32\dumphive.exe
2007-03-13 18:22 40,960 --a------ C:\WINDOWS\SYSTEM32\swsc.exe
2007-03-13 18:22 288,417 --a------ C:\WINDOWS\SYSTEM32\SrchSTS.exe
2007-03-13 18:22 135,168 --a------ C:\WINDOWS\SYSTEM32\swreg.exe
2007-03-12 21:56 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
2007-03-12 19:11 <DIR> d-------- C:\Program Files\a-squared Free
2007-03-10 20:15 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
2007-03-10 16:26 22,752 --a------ C:\WINDOWS\SYSTEM32\spupdsvc.exe
2007-03-10 16:26 <DIR> d--h----- C:\WINDOWS\$hf_mig$
2007-03-10 16:26 <DIR> d-------- C:\WINDOWS\SYSTEM32\PreInstall
2007-03-10 16:19 <DIR> d-------- C:\WINDOWS\SYSTEM32\Dell
2007-03-10 14:43 <DIR> d-------- C:\Program Files\Lavasoft
2007-03-10 13:04 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))
2007-03-21 09:02 118798 --a------ C:\WINDOWS\SYSTEM32\__c007446a.dat
2007-03-20 17:09 -------- d--h----- C:\Program Files\installshield installation information
2007-03-11 22:16 4212 ---h----- C:\WINDOWS\SYSTEM32\zllictbl.dat
2007-02-26 21:36 -------- d-------- C:\Program Files\itsdeductible2006
2007-02-26 21:35 -------- d-------- C:\Program Files\quicken
2007-02-26 21:33 -------- d-------- C:\Program Files\turbotax
2007-02-16 20:32 -------- d-------- C:\Program Files\google
(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"MSMSGS"="\"C:\\Program Files\\Messenger\\msmsgs.exe\" /background"
"RealPlayer"="\"C:\\Program Files\\Real\\RealPlayer\\realplay.exe\" /RunUPGToolCommandReBoot"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"BCMSMMSG"="BCMSMMSG.exe"
"MoneyStartUp10.0"="\"C:\\Program Files\\Microsoft Money\\System\\Activation.exe\""
"MMTray"="C:\\Program Files\\MUSICMATCH\\MUSICMATCH Jukebox\\mm_tray.exe"
"AdaptecDirectCD"="\"C:\\Program Files\\Roxio\\Easy CD Creator 5\\DirectCD\\DirectCD.exe\""
"DwlClient"="C:\\Program Files\\Common Files\\Dell\\EUSW\\Support.exe"
"TkBellExe"="C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe -osboot"
"iTunesHelper"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\""
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"ViewMgr"="C:\\Program Files\\Viewpoint\\Viewpoint Manager\\ViewMgr.exe"
"ImInstaller_IncrediMail"="C:\\DOCUME~1\\Leanne\\LOCALS~1\\Temp\\ImInstaller\\IncrediMail\\incredimail_install[1].exe -startup -product IncrediMail -cluster 2 "
"Zone Labs Client"="\"C:\\Program Files\\Zone Labs\\ZoneAlarm\\zlclient.exe\""
"AVG7_CC"="C:\\PROGRA~1\\Grisoft\\AVG7\\avgcc.exe /STARTUP"
"HP Software Update"="C:\\Program Files\\HP\\HP Software Update\\HPWuSchd2.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"
HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa
Authentication Packages REG_MULTI_SZ msv1_0\0\0
Security Packages REG_MULTI_SZ kerberos\0msv1_0\0schannel\0wdigest\0\0
Notification Packages REG_MULTI_SZ scecli\0\0
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost]
LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0
NetworkService REG_MULTI_SZ DnsCache\0\0
rpcss REG_MULTI_SZ RpcSs\0\0
imgsvc REG_MULTI_SZ StiSvc\0\0
termsvcs REG_MULTI_SZ TermService\0\0
Contents of the 'Scheduled Tasks' folder
C:\WINDOWS\tasks\ISP signup reminder 1.job
C:\WINDOWS\tasks\Symantec NetDetect.job
********************************************************************
catchme 0.2 W2K/XP/Vista - userland rootkit detector by Gmer, 17 October 2006
http://www.gmer.net
scanning hidden processes ...
scanning hidden services ...
scanning hidden autostart entries ...
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
MMTray = C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe?w???g?&??V??g?&??SOFTWARE\MusicMatch\MusicMatch Jukebox\4.0\TrayApp????X??????????????????>?w0 ?w????3??w???g???????????g?????CY??????-?s?&??2???????????<???? @???X???X???????????????????Y?????F?Q?????
DwlClient = C:\Program Files\Common Files\Dell\EUSW\Support.exe?l?e?s?\?D?e?l?l?\?E?U?S?W?\?S?u?p?p?o?r?t?.?e?x?e???????X:??????x??? ???X??? ??????? ???P???? ?w? ?w)??p????????(???u????U?w????????????0??????w, ?w?M?wW??w???w)??p????????x'@?????????X????????"@?e?????
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
********************************************************************
Completion time: 07-04-03 18:31:25
C:\ComboFix-quarantined-files.txt ... 07-04-03 18:31