Ok, did the steps you outlined. Attached a new HJT log and the results of the ActiveScan. FYI, there was no 180Solutions in the Add/Remove Programs and there was no c:\windows\taskbar.exe. The IE popup issue still exists.
HJT Log:
Logfile of HijackThis v1.99.1
Scan saved at 7:56:24 PM, on 7/17/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\System32\khooker.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\WINDOWS\system32\LXSUPMON.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\taskbar.exe
C:\Program Files\Media Gateway\MediaGateway.exe
C:\PROGRA~1\AIM\aim.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\Hijack this\HijackThis.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
O4 - HKLM\..\Run: [SiS KHooker] C:\WINDOWS\System32\khooker.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [LXSUPMON] C:\WINDOWS\system32\LXSUPMON.EXE RUN
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Search Bar] C:\WINDOWS\taskbar.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [Media Gateway] C:\Program Files\Media Gateway\MediaGateway.exe
O4 - HKLM\..\Run: [itunes] c:\dialer.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Weather] C:\Program Files\AWS\WeatherBug\Weather.exe 1
O4 - HKCU\..\Run: [AIM] C:\PROGRA~1\AIM\aim.exe -cnetwait.odl
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\PROGRA~1\AWS\WEATHE~1\Weather.exe (HKCU)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://v5.windowsupd...b?1112744852938O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) -
http://www.pandasoft.../as5/asinst.cabO23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: CWShredder Service - InterMute, Inc. - C:\Tools\cwshredder.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
ActiveScan Log:
Incident Status Location
Adware:Adware/WUpd No disinfected C:\Program Files\Media Gateway\MediaGateway.exe
Adware:adware/wupd No disinfected C:\WINDOWS\SYSTEM32\ide21201.vxd
Adware:adware/mediatickets No disinfected C:\DOCUMENTS AND SETTINGS\GLENN.GLENN-4WFXF9PTD\mt-uninstaller.exe
Adware:adware/ncase No disinfected C:\WINDOWS\DOWNLOADED PROGRAM FILES\clientax.inf
Adware:adware/blazefind No disinfected C:\DOCUMENTS AND SETTINGS\GLENN.GLENN-4WFXF9PTD\LOCAL SETTINGS\TEMP\installer.exe
Adware:Adware/MediaTickets No disinfected C:\Documents and Settings\Glenn.GLENN-4WFXF9PTD\Local Settings\Temp\installer.exe
Adware:Adware/WUpd No disinfected C:\Documents and Settings\Glenn.GLENN-4WFXF9PTD\Local Settings\Temporary Internet Files\Content.IE5\HER6YUUJ\f1re[1].htm
Adware:Adware/PurityScan No disinfected C:\Documents and Settings\Glenn.GLENN-4WFXF9PTD\mt-uninstaller.exe
Adware:Adware/WUpd No disinfected C:\Program Files\Media Gateway\MediaGateway.exe
Adware:Adware/SAHAgent No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\0AE39BA5-27D8-4041-849B-23AA05\8CC0CC18-6E60-45A6-92D1-7169EF
Adware:Adware/WUpd No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\6784B48E-0AF2-41AF-8921-1FAD5F\A943D1B6-AFC8-4F44-90C9-970C74
Adware:Adware/nCase No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\BF211486-97FF-4B38-BC45-0420A6\5ABE1AD9-784F-4FC7-80A6-CBE747
Adware:Adware/nCase No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\BF211486-97FF-4B38-BC45-0420A6\77D9175A-39E2-4750-B762-E15286
Adware:Adware/nCase No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\BF211486-97FF-4B38-BC45-0420A6\AC9FBEBE-A51C-464D-B493-885916
Adware:Adware/SAHAgent No disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\F0FCDB34-7953-4669-9E44-31BC96\1B0479F7-32CF-47D3-B0D3-54FD99
Adware:Adware/nCase No disinfected C:\WINDOWS\Downloaded Program Files\clientax.inf
Adware:Adware/Gator No disinfected D:\MP3\Jayne's Laptop\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\0PAZWPYF\hdplugin_1019_bundle43v5d33[1].cab
Adware:Adware/Gator No disinfected D:\MP3\Jayne's Laptop\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\0PAZWPYF\hdplugin_1019_bundle43v5d33[1].cab[HDPlugin1019.dll]
Adware:Adware/Gator No disinfected D:\MP3\Jayne's Laptop\Documents and Settings\user\Local Settings\Temporary Internet Files\Content.IE5\0PAZWPYF\hdplugin_1019_bundle43v5d33[1].cab[HDPlugin1019.inf]
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\b.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\ba.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\bb.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\bc.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\bd.class
Adware:Adware/MoeMoney No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\be.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\bg.class
Adware:Adware/MoeMoney No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\bh.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\bi.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\bj.class
Adware:Adware/MoeMoney No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\bk.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\bl.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\bm.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\bn.class
Adware:Adware/MoeMoney No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\bo.class
Adware:Adware/MoeMoney No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\bp.class
Adware:Adware/MoeMoney No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\br.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\bs.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\bt.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\bu.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\bv.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\bw.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\bx.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\by.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\bz.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\c.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\ca.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\cb.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\cc.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\cd.class
Adware:Adware/MoeMoney No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\ce.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\cf.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\cg.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\ch.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\ci.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\cj.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\ck.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\cl.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\cm.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\cn.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\co.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\cp.class
Adware:Adware/MoeMoney No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\cq.class
Adware:Adware/MoeMoney No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\cr.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\cs.class
Adware:Adware/MoeMoney No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\ct.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\cu.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\cv.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\cx.class
Adware:Adware/MoeMoney No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\cz.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\d.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\da.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\db.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\dd.class
Adware:Adware/MoeMoney No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\de.class
Adware:Adware/MoeMoney No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\df.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\di.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\dl.class
Adware:Adware/MoeMoney No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\dn.class
Adware:Adware/MoeMoney No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\dp.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\dr.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\ds.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\dt.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\dv.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\dw.class
Adware:Adware/MoeMoney No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\dy.class
Adware:Adware/MoeMoney No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\dz.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\ed.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\f.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\h.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\l.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\m.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\Main.class
Adware:Adware/MoeMoney No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\n.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\r.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\u.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\w.class
Adware:Adware/TopMoxie No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\x.class
Adware:Adware/MoeMoney No disinfected D:\MP3\Jayne's Laptop\Program Files\WebSavingsfromEbates\System\Code\y.class
Adware:Adware/FunWeb No disinfected D:\MP3\Jayne's Laptop\WINNT\Downloaded Program Files\f3initialsetup1.0.0.6.inf
Spyware:Spyware/BetterInet No disinfected D:\MP3\Jayne's Laptop\WINNT\Downloaded Program Files\flash.inf
Spyware:Spyware/BetterInet No disinfected D:\MP3\Jayne's Laptop\WINNT\inf\biini.inf
Adware:Adware/SAHAgent No disinfected D:\MP3\Jayne's Laptop\WINNT\inf\payload.inf
Adware:Adware/Adblaster No disinfected D:\MP3\Jayne's Laptop\WINNT\ngpw34.dll
Adware:Adware/Adblaster No disinfected D:\MP3\Jayne's Laptop\WINNT\ngsw31.dll