After trying several well known spyware apps I used a recommended app called Malwarebytes found here:
http://www.malwarebytes.org/ it found an obscure Trojan removed it and all is well. Here is Trojan info:
Malwarebytes' Anti-Malware 1.31
Database version: 1571
12/29/2008 5:55:22 PM
mbam-log-2008-12-29 (17-55-22).txt
Scan type: Full Scan (C:\|)
Objects scanned: 146028
Time elapsed: 44 minute(s), 41 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 2
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 1
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\nwajumuqobo (Trojan.Agent) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\fwahetaco (Trojan.Agent) -> Delete on reboot.
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
C:\WINDOWS\Wpiyewateb.dll (Trojan.Agent) -> Delete on reboot.