Thanks for the quick reply.
Ok I uninstalled Norton AV, but it is still showing up in the add/remove program list.
"Dan Pearson" - 2007-07-04 12:37:50 - ComboFix 07-07-04.4 - Service Pack 2
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
C:\DOCUME~1\DANPEA~1\APPLIC~1\Dxcknwrd.dll
C:\DOCUME~1\DANPEA~1\APPLIC~1\Dxcuknwrd.dll
C:\DOCUME~1\DANPEA~1\MYDOCU~1.\curity~1
C:\DOCUME~1\LOCALS~1\APPLIC~1\NetMon
C:\DOCUME~1\LOCALS~1\APPLIC~1\NetMon\domains.txt
C:\DOCUME~1\LOCALS~1\APPLIC~1\NetMon\log.txt
C:\Program Files\Common Files\{3496E~1
C:\Program Files\Common Files\{3496E~2
C:\Program Files\Common Files\{B496E~1
C:\Program Files\Common Files\{B496E~2
C:\Program Files\crosof~1.net
C:\Program Files\printview
C:\Program Files\printview\chnlist.dat
C:\Program Files\printview\hotlist.dat
C:\Program Files\printview\remlist.dat
C:\WINDOWS\876056.exe
C:\WINDOWS\keyboard1.dat
C:\WINDOWS\system32\bang-006.ico
C:\WINDOWS\system32\wcpsvcc.exe
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
-------\LEGACY_CMDSERVICE
-------\LEGACY_NETWORK_MONITOR
((((((((((((((((((((((((( Files Created from 2007-06-04 to 2007-07-04 )))))))))))))))))))))))))))))))
2007-07-04 12:37 51,200 --a------ C:\WINDOWS\nircmd.exe
2007-07-03 23:03 <DIR> d-------- C:\Deckard
2007-07-03 15:50 <DIR> d-------- C:\WINDOWS\SYSTEM32\ActiveScan
2007-06-25 15:34 <DIR> d-------- C:\WINDOWS\.jagex_cache_32
2007-06-07 22:50 59,264 --a------ C:\WINDOWS\SYSTEM32\DRIVERS\USBAUDIO.sys
2007-06-07 22:49 53,760 --a------ C:\WINDOWS\SYSTEM32\vfwwdm32.dll
2007-06-07 22:49 31,616 --a------ C:\WINDOWS\SYSTEM32\DRIVERS\usbccgp.sys
2007-06-07 22:47 490,272 --a------ C:\WINDOWS\SYSTEM32\LVUI2.dll
2007-06-07 22:47 465,696 --a------ C:\WINDOWS\SYSTEM32\LVUI2RC.dll
2007-06-07 22:47 416,544 --a------ C:\WINDOWS\SYSTEM32\lvcodec2.dll
2007-06-07 22:47 41,888 --a------ C:\WINDOWS\SYSTEM32\DRIVERS\LVUSBSta.sys
2007-06-07 22:47 3,580,832 --a------ C:\WINDOWS\SYSTEM32\DRIVERS\lvuvc.sys
2007-06-07 22:47 22,560 --a------ C:\WINDOWS\SYSTEM32\DRIVERS\lvuvcflt.sys
2007-06-07 22:47 195,360 --a------ C:\WINDOWS\SYSTEM32\lvci1100.dll
2007-06-07 22:47 15,558 --a------ C:\WINDOWS\SYSTEM32\Repository.reg
2007-06-07 22:47 1,921,184 --a------ C:\WINDOWS\SYSTEM32\DRIVERS\lvpopflt.sys
2007-06-07 22:42 <DIR> d-------- C:\Program Files\Logitech
2007-06-07 22:42 <DIR> d-------- C:\Program Files\Common Files\LogiShrd
2007-06-07 22:42 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Logitech
2007-06-07 22:40 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\LogiShrd
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
2007-07-04 17:34:49 -------- d-----w C:\Program Files\Common Files\Symantec Shared
2007-07-04 17:34:08 -------- d-----w C:\Program Files\Symantec
2007-07-04 17:26:28 -------- d-----w C:\DOCUME~1\DANPEA~1\APPLIC~1\Skype
2007-07-04 00:25:21 -------- d-----w C:\Program Files\Microsoft Works
2007-07-03 23:37:42 -------- d-----r C:\Program Files\Messenger
2007-07-03 23:29:34 -------- d-----w C:\Program Files\Google
2007-06-08 03:32:31 -------- d-----w C:\Program Files\iPod
2007-06-04 09:43:17 -------- d-sh--w C:\Program Files\outlook
2007-05-24 00:57:41 -------- d-----w C:\DOCUME~1\DANPEA~1\APPLIC~1\U3
2007-05-24 00:47:31 -------- d--h--w C:\Program Files\WindowsUpdate
2007-05-24 00:29:58 -------- d-----w C:\DOCUME~1\DANPEA~1\APPLIC~1\Lavasoft
2007-05-24 00:29:48 -------- d-----w C:\Program Files\Lavasoft
2007-05-24 00:27:58 -------- d-----w C:\Program Files\Common Files\Wise Installation Wizard
2007-05-20 19:35:36 -------- d-----w C:\Program Files\TurboTax
2007-05-17 15:25:18 323,624 ----a-w C:\WINDOWS\system32\wiaaut.dll
2007-05-16 15:12:02 683,520 ----a-w C:\WINDOWS\system32\inetcomm.dll
2007-05-13 03:12:00 -------- d-----w C:\Program Files\QuickTime
2007-05-13 03:05:19 -------- d-----w C:\Program Files\Apple Software Update
2007-05-11 22:30:16 25,888 ----a-w C:\WINDOWS\system32\drivers\LVPr2Mon.sys
2007-05-11 22:29:54 2,142,752 ----a-w C:\WINDOWS\system32\drivers\LVMVdrv.sys
2007-05-11 22:27:58 2,107,808 ----a-w C:\WINDOWS\system32\drivers\Lvckap.sys
2007-05-03 01:35:58 77,312 ----a-w C:\WINDOWS\ua2.dll
2007-04-28 03:18:40 664 ----a-w C:\WINDOWS\system32\d3d9caps.dat
2007-04-25 14:21:15 144,896 ----a-w C:\WINDOWS\system32\schannel.dll
2007-04-18 16:12:23 2,854,400 ----a-w C:\WINDOWS\system32\msi.dll
2007-04-17 03:47:36 33,624 ----a-w C:\WINDOWS\system32\wups.dll
2007-04-17 03:45:54 1,710,936 ----a-w C:\WINDOWS\system32\wuaueng.dll
2007-04-17 03:45:48 549,720 ----a-w C:\WINDOWS\system32\wuapi.dll
2007-04-17 03:45:42 325,976 ----a-w C:\WINDOWS\system32\wucltui.dll
2007-04-17 03:45:36 203,096 ----a-w C:\WINDOWS\system32\wuweb.dll
2007-04-17 03:45:28 92,504 ----a-w C:\WINDOWS\system32\cdm.dll
2007-04-17 03:45:20 53,080 ----a-w C:\WINDOWS\system32\wuauclt.exe
2007-04-17 03:45:20 43,352 ----a-w C:\WINDOWS\system32\wups2.dll
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
2004-05-12 02:03 744960 --a------ E:\PROGRA~1\SPYBOT~1\SDHelper.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
2007-03-14 03:43 501400 --a------ C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
2007-01-20 00:55 2403392 -ra------ c:\program files\google\googletoolbar3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Microsoft Works Portfolio"="C:\Program Files\Microsoft Works\WksSb.exe" [2000-08-08 15:00]
"Microsoft Works Update Detection"="C:\Program Files\Microsoft Works\WkDetect.exe" [2000-08-08 15:00]
"nwiz"="nwiz.exe" [2004-03-24 10:04 C:\WINDOWS\SYSTEM32\nwiz.exe]
"ccApp"="C:\Program Files\Common Files\Symantec Shared\ccApp.exe" [2006-02-17 10:05]
"Symantec NetDriver Monitor"="C:\PROGRA~1\SYMNET~1\SNDMon.exe" [2005-04-26 18:58]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe" [2007-03-14 03:43]
"ogp156a4"="w21bd03a.dll" []
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007-04-27 09:41]
"AVG7_CC"="E:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [2007-06-03 12:01]
"iTunesHelper"="E:\Program Files\iTunes\iTunesHelper.exe" [2007-06-01 16:51]
"LogitechCommunicationsManager"="C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe" [2007-05-17 10:52]
"LogitechQuickCamRibbon"="C:\Program Files\Logitech\QuickCam10\QuickCam10.exe" [2007-05-17 10:53]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="C:\Program Files\Skype\Phone\Skype.exe" [2006-09-25 18:50]
"Ataa"="C:\DOCUME~1\DANPEA~1\MYDOCU~1\CURITY~1\wuaclt.exe" []
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe" [2007-01-26 16:49]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 02:56]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^America Online 8.0 Tray Icon.lnk]
backup=C:\WINDOWS\pss\America Online 8.0 Tray Icon.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Microsoft Office.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Microsoft Office.lnk
backup=C:\WINDOWS\pss\Microsoft Office.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^NkVwMon.exe.lnk]
backup=C:\WINDOWS\pss\NkVwMon.exe.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MoneyAgent]
"C:\Program Files\Microsoft Money\System\Money Express.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
"C:\Program Files\Messenger\msmsgs.exe" /background
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ViewMgr]
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WorksFUD]
C:\Program Files\Microsoft Works\wkfud.exe
Contents of the 'Scheduled Tasks' folder
2007-06-02 01:05:00 C:\WINDOWS\tasks\AppleSoftwareUpdate.job
**************************************************************************
catchme 0.3.915 W2K/XP/Vista - rootkit detector by Gmer,
http://www.gmer.net
Rootkit scan 2007-07-04 12:54:19
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
**************************************************************************
Completion time: 2007-07-04 12:58:35 - machine was rebooted
C:\ComboFix-quarantined-files.txt ... 2007-07-04 12:58
--- E O F ---