Gringo,
I ran ComboFix - I restarted my computer twice after it was done to make sure I was seeing things correctly, but it looks like both problems are now fixed. This is very good! Below is the log from ComboFix - I'll be looking forward to your reply. Thanks again.
Kevin
******************
ComboFix 11-06-10.05 - Owner 06/10/2011 14:07:14.2.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.255.7 [GMT -4:00]
Running from: c:\documents and settings\Owner\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\data
c:\data\default\us_sres.data
c:\documents and settings\Owner\WINDOWS
c:\program files\Toolbar
c:\winnt\system32\Data
.
.
((((((((((((((((((((((((( Files Created from 2011-05-10 to 2011-06-10 )))))))))))))))))))))))))))))))
.
.
2011-05-27 20:08 . 2011-05-27 20:08 388096 ----a-r- c:\documents and settings\Owner\Application Data\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2011-05-27 20:07 . 2011-05-27 20:07 -------- d-----w- c:\program files\Trend Micro
2011-05-27 18:12 . 2010-12-20 22:09 38224 ----a-w- c:\winnt\system32\drivers\mbamswissarmy.sys
2011-05-27 18:12 . 2010-12-20 22:08 20952 ----a-w- c:\winnt\system32\drivers\mbam.sys
2011-05-27 18:12 . 2011-05-27 18:12 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-05-27 12:18 . 2011-05-27 12:18 -------- d-----w- c:\winnt\system32\wbem\Repository
2011-05-20 17:58 . 2011-05-10 12:03 307928 ----a-w- c:\winnt\system32\drivers\aswSP.sys
2011-05-20 17:58 . 2011-05-10 11:59 19544 ----a-w- c:\winnt\system32\drivers\aswFsBlk.sys
2011-05-20 17:58 . 2011-05-10 12:02 49240 ----a-w- c:\winnt\system32\drivers\aswTdi.sys
2011-05-20 17:58 . 2011-05-10 11:59 25432 ----a-w- c:\winnt\system32\drivers\aswRdr.sys
2011-05-20 17:58 . 2011-05-10 12:03 441176 ----a-w- c:\winnt\system32\drivers\aswSnx.sys
2011-05-20 17:58 . 2011-05-10 12:02 102616 ----a-w- c:\winnt\system32\drivers\aswmon2.sys
2011-05-20 17:58 . 2011-05-10 12:02 96344 ----a-w- c:\winnt\system32\drivers\aswmon.sys
2011-05-20 17:58 . 2011-05-10 11:59 30808 ----a-w- c:\winnt\system32\drivers\aavmker4.sys
2011-05-20 17:58 . 2011-05-10 12:10 40112 ----a-w- c:\winnt\avastSS.scr
2011-05-20 17:58 . 2011-05-10 12:10 199304 ----a-w- c:\winnt\system32\aswBoot.exe
2011-05-20 17:57 . 2011-05-20 17:57 -------- d-----w- c:\program files\AVAST Software
2011-05-20 17:57 . 2011-05-20 17:57 -------- d-----w- c:\documents and settings\All Users\Application Data\AVAST Software
2011-05-20 17:51 . 2011-05-20 17:51 -------- d-----w- c:\program files\VS Revo Group
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-03-21 14:56 . 2011-03-21 14:56 73728 ----a-w- c:\winnt\system32\javacpl.cpl
2011-03-21 14:56 . 2011-03-21 14:56 472808 ----a-w- c:\winnt\system32\deployJava1.dll
2006-10-11 08:04 . 2008-03-31 12:04 61036 ----a-w- c:\program files\mozilla firefox\components\jar50.dll
2006-10-11 08:04 . 2008-03-31 12:04 48742 ----a-w- c:\program files\mozilla firefox\components\jsd3250.dll
2006-10-11 08:05 . 2008-03-31 12:04 29313 ----a-w- c:\program files\mozilla firefox\components\myspell.dll
2006-10-11 08:05 . 2008-03-31 12:04 41082 ----a-w- c:\program files\mozilla firefox\components\spellchk.dll
2006-10-11 08:04 . 2008-03-31 12:04 166510 ----a-w- c:\program files\mozilla firefox\components\xpinstal.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-05-10 12:10 122512 ----a-w- c:\program files\AVAST Software\Avast\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MoneyAgent"="c:\program files\Microsoft Money\System\Money Express.exe" [2001-07-25 184376]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"UpdReg"="c:\winnt\UpdReg.EXE" [2000-05-11 90112]
"Jet Detection"="c:\program files\Creative\SBAudigy\PROGRAM\ADGJDet.exe" [2001-10-04 28672]
"NvCplDaemon"="c:\winnt\System32\NvCpl.dll" [2003-06-13 4734976]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2007-04-27 282624]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2007-05-26 257088]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2008-03-31 185896]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-10-29 249064]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2011-05-10 3459712]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"="c:\program files\Messenger\msmsgs.exe" [2008-04-14 1695232]
"MySpaceIM"="c:\program files\MySpace\IM\MySpaceIM.exe" [2007-03-07 5181440]
.
c:\documents and settings\Owner\Start Menu\Programs\Startup\
PowerReg Scheduler.exe [2003-3-31 256000]
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0aswBoot.exe /M:a388e85e
.
[HKLM\~\startupfolder\C:^Documents and Settings^Owner^Start Menu^Programs^Startup^Screen Saver Control.lnk]
path=c:\documents and settings\Owner\Start Menu\Programs\Startup\Screen Saver Control.lnk
backup=c:\winnt\pss\Screen Saver Control.lnkStartup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdaptecDirectCD]
2002-06-19 06:05 684032 -c--a-w- c:\program files\Roxio\Easy CD Creator 5\DirectCD\Directcd.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTHelper]
2002-07-02 22:56 24576 ----a-w- c:\winnt\system32\cthelper.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GWMDMMSG]
2002-05-07 00:12 65536 ----a-w- c:\winnt\GWMDMMSG.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Hot Key Kbd 9910 Daemon]
2001-01-03 19:50 66048 ----a-w- c:\winnt\system32\SK9910DM.EXE
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPDJ Taskbar Utility]
2001-11-08 18:59 196608 -c--a-w- c:\winnt\system32\spool\drivers\w32x86\3\hpztsb04.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
2007-05-26 16:45 257088 ----a-w- c:\program files\iTunes\iTunesHelper.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LVCOMS]
2002-12-10 21:54 127022 -c--a-w- c:\program files\Common Files\Logitech\QCDriver3\LVComS.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Microsoft Works Portfolio]
2001-08-23 21:52 331830 -c--a-w- c:\program files\Microsoft Works\wkssb.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MoneyStartUp10.0]
2001-07-25 15:00 241714 -c--a-w- c:\program files\Microsoft Money\System\Activation.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
2008-04-14 00:12 1695232 ----a-w- c:\program files\Messenger\msmsgs.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
2007-04-27 13:41 282624 ----a-w- c:\program files\QuickTime\qttask.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RealTray]
2008-03-31 12:05 214560 ----a-w- c:\program files\Real\RealPlayer\realplay.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WorksFUD]
2001-10-06 00:34 24576 -c--a-w- c:\program files\Microsoft Works\wkfud.exe
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\WINNT\\system32\\DKabcoms.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
.
R0 EUBAKUP;EUBAKUP;c:\winnt\system32\drivers\eubakup.sys [8/6/2010 2:37 PM 26248]
R0 EUFS;EUFS;c:\winnt\system32\drivers\eufs.sys [8/6/2010 2:38 PM 20616]
R1 aswSnx;aswSnx;c:\winnt\system32\drivers\aswSnx.sys [5/20/2011 1:58 PM 441176]
R1 aswSP;aswSP;c:\winnt\system32\drivers\aswSP.sys [5/20/2011 1:58 PM 307928]
R2 aswFsBlk;aswFsBlk;c:\winnt\system32\drivers\aswFsBlk.sys [5/20/2011 1:58 PM 19544]
R3 EuDisk;EASEUS Disk Enumerator;c:\winnt\system32\drivers\EuDisk.sys [8/6/2010 2:37 PM 122504]
S3 dkab_device;dkab_device;c:\winnt\System32\DKabcoms.exe -service --> c:\winnt\System32\DKabcoms.exe -service [?]
S3 EUDSKACS;EUDSKACS;c:\winnt\system32\drivers\eudskacs.sys [8/6/2010 2:37 PM 14216]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\winnt\system32\drivers\mbamswissarmy.sys [5/27/2011 2:12 PM 38224]
S3 o1394bul;o1394bul;\??\c:\docume~1\Owner\LOCALS~1\Temp\o1394bul.sys --> c:\docume~1\Owner\LOCALS~1\Temp\o1394bul.sys [?]
S3 PCDRDRV;Pcdr Helper Driver;\??\c:\atf\Qctest\PCDoc\PCDRDRV.sys --> c:\atf\Qctest\PCDoc\PCDRDRV.sys [?]
S3 SWUSBFLT;Microsoft SideWinder VIA Filter Driver;c:\winnt\system32\drivers\SWUSBFLT.SYS [8/23/2002 11:50 PM 3968]
S3 WDC_SAM;WD SCSI Pass Thru driver;c:\winnt\system32\drivers\wdcsam.sys [5/6/2008 4:06 PM 11520]
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - NMSCFG
*NewlyCreated* - NMSSVC
*NewlyCreated* - SYMREDRV
*NewlyCreated* - SYMTDI
*Deregistered* - SYMREDRV
*Deregistered* - SYMTDI
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{A509B1FF-37FF-4bFF-8CFF-4F3A747040FF}]
2009-03-08 09:32 128512 ----a-w- c:\winnt\system32\advpack.dll
.
Contents of the 'Scheduled Tasks' folder
.
2011-05-21 c:\winnt\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2007-01-10 19:42]
.
.
------- Supplementary Scan -------
.
uStart Page = c:\winnt\hp.htm
uDefault_Search_URL = hxxp://%69%65%2D%73%65%61%72%63%68%2E%63%6F%6D/%68%6F%6D%65%2E%68%74%6D%6C
mStart Page = about:blank
mSearch Bar = hxxp://%69%65%2D%73%65%61%72%63%68%2E%63%6F%6D/%73%72%63%68%61%73%73%74%2E%68%74%6D%6C
uInternet Connection Wizard,ShellNext = iexplore
uSearchAssistant =
uCustomizeSearch = hxxp://%69%65%2D%73%65%61%72%63%68%2E%63%6F%6D/%73%72%63%68%61%73%73%74%2E%68%74%6D%6C
uSearchURL,(Default) = hxxp://%69%65%2D%73%65%61%72%63%68%2E%63%6F%6D/%68%6F%6D%65%2E%68%74%6D%6C
IE: &Google Search - c:\program files\Google\GoogleToolbar1.dll/cmsearch.html
IE: Backward Links - c:\program files\Google\GoogleToolbar1.dll/cmbacklinks.html
IE: Cached Snapshot of Page - c:\program files\Google\GoogleToolbar1.dll/cmcache.html
IE: E&xport to Microsoft Excel - c:\progra~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
IE: Similar Pages - c:\program files\Google\GoogleToolbar1.dll/cmsimilar.html
IE: Translate into English - c:\program files\Google\GoogleToolbar1.dll/cmtrans.html
IE: Web Search - c:\winnt\ex.htm
TCP: DhcpNameServer = 192.168.2.1
DPF: Microsoft XML Parser for Java - file://c:\winnt\Java\classes\xmldso.cab
DPF: WebTycho Chatroom
FF - ProfilePath - c:\documents and settings\Owner\Application Data\Mozilla\Firefox\Profiles\9xenv8v4.default\
FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
FF - prefs.js: browser.search.selectedEngine - Yahoo Search
FF - prefs.js: browser.startup.homepage - hxxp://yahoo.com/?ilc=10&fr=ydwnld-home
FF - user.js: yahoo.ytff.general.dontshowhpoffer - true
.
- - - - ORPHANS REMOVED - - - -
.
BHO-{28CAEFF3-0F18-4036-B504-51D73BD81C3A} - REG_SZ
HKCU-Run-DivX Updater - c:\winnt\System32\DivX.Exe
HKCU-Run-Microsoft Works Update Detection - c:\program files\Microsoft Works\WkDetect.exe
HKLM-Run-Keyboard Preload Check - c:\oemdrvrs\KEYB\Preload.exe
HKLM-Run-Windows Shell Library Loader - load shell.dll
MSConfigStartUp-KAZAA - c:\program files\KaZaA\kazaa.exe
MSConfigStartUp-Microsoft Works Update Detection - c:\program files\Microsoft Works\WkDetect.exe
MSConfigStartUp-NeroCheck - c:\winnt\system32\NeroCheck.exe
MSConfigStartUp-Yahoo! Pager - c:\program files\Yahoo!\Messenger\ypager.exe
AddRemove-Creative Driver - c:\winnt\System32\ctdrvins
AddRemove-Network Play System (Patching) - c:\program files\Electronic Arts\Network Play System\NPSPatch.isu
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2011-06-10 14:22
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
Completion time: 2011-06-10 14:27:56
ComboFix-quarantined-files.txt 2011-06-10 18:27
.
Pre-Run: 26,619,461,632 bytes free
Post-Run: 27,674,726,400 bytes free
.
- - End Of File - - 4EF352DD6B8EFA829B144F0EBAD31A11