I think the spelling is still not correct
try saving the Virus-report from avast and COPY&PASTE the relevant parts here…

e.g. there’s no “Win32.Kuang32”
but only a
“Win32:Kuang2” or “Win32:kuang”
likewise, avast doesn’t detect a
"Win32.trojan

but detects
Win32:Trojan

Look here:
http://www.avast.com/eng/vps_history.html
and here:
http://www.virusbtn.com/perlbin/vgrep/vgrep.cgi?terms=win32.trojan&product=1

→ Are you sure that e.g. “77CHa0368” was not part of the FILE name rather than the VIRUS name ?

your Hijackthis-log seems clean now at first glance,
try this:

  • update avast (BOTH vps & program, currently 4.6.xxx)
  • schedule/run a boot-time scan with avast
  • reboot to safeMode & do a complete, thorough & archive scan with avast
  • do a complete scan with ESCAN: for link/Info, see “VirusRemoval” below

:wink:

P.S.: KUANG is probably sort of a false positive (PANDA’s fault): see forum search or FAQ an www.avast.com for tons of info on this

:wink: