For whatever it's worth, it's always a very bad idea to delete a file until you know for sure what it does. It's too late now but for future reference I would leave it in the Chest and send a copy to Alwil for analysis before deleting.
You're right Norel, I sort of got worried after ignoring the file didn't fix the problem the first time, so I overreacted and deleted it the second time. At least from this point forward I'll know to always put the suspect files into the quarantine chest rather than delete them, correct?
I completed a malwarebytes' scan, as you guys suggested, and 5 infected files were found and quarantined, including that old familiar nemesis of mine, system32/drivers/dbliw.sys
Here is the log of the scan:
Malwarebytes' Anti-Malware 1.44
Database version: 3681
Windows 6.0.6001 Service Pack 1
Internet Explorer 7.0.6001.18000
2/2/2010 6:13:58 PM
mbam-log-2010-02-02 (18-13-58).txt
Scan type: Quick Scan
Objects scanned: 104983
Time elapsed: 10 minute(s), 40 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 2
Registry Values Infected: 1
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 2
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{b64f4a7c-97c9-11da-8bde-f66bad1e3f3a} (Rogue.WinAntiVirus) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1a26f07f-0d60-4835-91cf-1e1766a0ec56} (Trojan.Agent) -> Quarantined and deleted successfully.
Registry Values Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mssmsgs (Backdoor.Bot) -> Quarantined and deleted successfully.
Registry Data Items Infected:
(No malicious items detected)
Hope this is informative for you guys, because it's way over my head. Any suggestions for what needs to be done next?
Again, Pondus, Norel, and Yanto, thank you so much for your advice and help. Cheers.