Well that is the updated log. The good news, Norton is gone. The bad news, all the adware is still there (although it may not be activated if Superantispyware has them quarantined). You still have the mywebsearch and vundo IN the quarantine correct?
I wish an avast admin would help…wonder what is keeping them. You will probably need to fix the following in HJT, but wait until alwil admin confirms it:
please no one click on the following links, you may get adware, you have been warned. TFL, i have added a space between the Http:// and the url to make the links unclickable. The actual file has them connected, but this creates a clickable link.
O8 - Extra context menu item: &Search - http:// edits.mywebsearch.com/toolbaredits/menusearch.jhtml?p=ZCxdm409EAHK
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} -
O16 - DPF: {FFBB3F3B-0A5A-4106-BE53-DFE1E2340CB1} (DownloadManager¿ØÖÆÔª¼þ) - http:// dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.1.6.cab
O20 - Winlogon Notify: jkhfg - C:\WINDOWS\system32\jkhfg.dll (file missing)
The next couple are possible nasties, but some (or maybe all) are probably not. Please wait for an alwil admin to varify if they are safe or not:
O16 - DPF: HKJC Applet - https:// bet.hongkongjockeyclub.com/ib/ch/HKJC.cab
O16 - DPF: {1FFE232A-BBBF-4234-A040-10C0DBEF1EF4} (ClientX Control) - http:// cop.dusee.cn/p2ptest/clientx12500.cab
O16 - DPF: {2C45DF72-E2DF-41E4-B244-A98694F8FE94} (Project1.CopyMemory) - http:// secchist.moderneducation.com.hk/edu_platform/cab/CopyMem.CAB
O16 - DPF: {8A4943CC-1950-44F9-9045-D3D428FD3948} (SecureX Class) - http:// txn02.hkjc.com/BetSlip/object/eWinCtl.cab
O16 - DPF: {A22B8FD2-4CAA-4EFB-82F7-680CD656D9B0} (NowStarter Control) - http:// w ww.gogobox.com.tw/neo.fld/GNowStarter.cab
I’m just curious, did you run a-squared (the normal program or antidialer) at all? If you didn’t that is fine, but if you did I am wondering if it found anything. And just because the HJT entries of websearch and vundo are still there, they are probably not active if Superantispyware has them in quarantine. Keep them in quarantine for now. I will private message an avast admin that has helped me remove my vundo infection in the past. Please wait for conformation (and remember i’m doing this in my freetime and i am no expert, but I’m still trying to help).
BTW, i noticed that ur Chinese (from the speech to text software). I know it’s early but happy new year (my gf is Chinese). You may also want to watch what you download from bitcommet. That might have also caused this in the first place in addition to porn sites. I’m not trying to embarrass you. I’m just trying to prevent future infections.