You may want to print out these instructions for reference, since you will have to restart your computer during the fix.
Please download
AproposFix from here:
http://swandog46.geekstogo.com/aproposfix.exe
Save it to your desktop but do
NOT run it yet.
Download
KillBox http://www.greyknight17.com/spy/KillBox.exe.
Run KillBox and check the box that says '
End Explorer Shell While Killing File'. Next click on '
Delete on Reboot'. For each of the following files below, check the box that says '
Unregister .dll Before Deleting' if it's not grayed out. Copy and paste each of the following into KillBox (hitting the X button for each file -
Choose YES when informs you the file will be deleted on Reboot.
Choose NO when it asks if you want to reboot):
C:\Documents and Settings\Marissa Chloe\Favorites\1111\1111.url
C:\WINDOWS\SYSTEM32\auto_update_uninstall.log
C:\WINDOWS\SYSTEM32\im64.dll
C:\WINDOWS\SYSTEM32\mstbl.ocx
C:\WINDOWS\SYSTEM32\winnet.ini
C:\WINDOWS\SYSTEM32\DRIVERS\ETC\hosts.bho
C:\WINDOWS\INF\biini.inf
C:\WINDOWS\delprot.ini
C:\WINDOWS\twaintec.ini
C:\WINDOWS\SYSTEM32\cache32dsrf4535dfs
C:\WINDOWS\SYSTEM32\nsvsvc
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\nsv
C:\WINDOWS\inf\biini.inf
C:\WINDOWS\inf\biS.inf
C:\WINDOWS\system32\biS.exe
Then please reboot your computer in Safe Mode by doing the following:
1) Restart your computer
2) After hearing your computer beep once during startup, but before the Windows icon appears, press F8.
3) Instead of Windows loading as normal, a menu should appear
4) Select the first option, to run Windows in Safe Mode.
Once in Safe Mode, please double-click
aproposfix.exe and unzip it to the desktop. Open the aproposfix folder on your desktop and run
RunThis.bat. Follow the prompts.
When the tool is finished, please reboot back into normal mode, and post a new
HijackThis log, along with the entire contents of the
log.txt file in the
aproposfix folder.