1. Malwarebytes found some malware. However you didn't do this:
* Make sure that everything is checked, and click Remove Selected.
So the malware entries show:
No Action Taken
Please update Malwarebytes and scan again, taking care to put in the checkmarks.
2. Superantiapyware has a similar feature. If you did not check the line there, UPDATE, scan again>
be sure to check the removal line.
3.
You have entries for both Avira and Symantec security programs. Decide which you want to keep and uninstall the other. If you want to uninstall Symantec/Norton, use the Norton Removal Tool:
http://service1.symantec.com/SUPPORT/tsgeninfo.nsf/docid/2005033108162039
4. If your computer has not had a 'pre-load' cleaning', I suggest you give it one., Every manufacturer pre-loads a lot of 'junk' on a system. Most users don't realize it's there and/or don't use it. In your case, you have a lot of Acer entries that I suspect are in the junk realm. There are too many for me to list, but if you look through the HijackThis log, you'll see them all there, using valuable resources, slowing you down.
You have 13 entries for Acer loading at startup.
5. Please open HijackThis, and select
Do a system scan only.
Place a checkmark next to the following entries (if present):
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll
(See additionsl instructions at end re Ask Bar.)
O4 - Global Startup: Empowering Technology Launcher.lnk = ?
O4 - Global Startup: PCM Media Sharing.lnk = C:\Program Files\Acer Arcade Live\Acer HomeMedia Connect\Kernel\DMS\PCMMediaSharing.exe
Then, close all other open windows, leaving only HijackThis open, and select
Fix checked.
6. Start> Run> type in msconfig> enter> Selective Startup> Startup menu> UNCHECK the following:
AskBar and any Ask related entries
PCMMediaSharing
Then click on Apply> OK>
NOTE: when you reboot the first time after making change on startup menu, you will get a nag message. You can ignore and close it after checking 'don't show this message again.' Stay in Selective Startup.
Special consideration re: ActiveToolBand:
O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - C:\Windows\system32\ActiveToolBand.dll
[*] If, in File Properties, file size is 292 kb and company "HiTRUST": : HiTrust browser plugin - part of Acer eDataSecurity Management software, it is a legitimate browser helper object.
[*] If, in File Properties, file size is 28 kb and company information is missing: parasite, detected as W32/Istbar.WL@dl, chack to have HijackThis remmove it
Special consideration: Ask Bar: this is at least a part of the pop-up problem. Please follow the instructions on this site to completely remove the AskBar:
http://coolbusteratyourservice.blogspot.com/2009/01/how-to-completely-remove-askbar-toolbar.html
I would like a better description of the kinds of pop-ups you're getting. They can indicate a particular type of malware.
7. Please download ComboFix
HERE.
With ComboFix, at the download window,
please rename it to Combo-Fix(.exe) before downloading it.
Please disable all security programs, such as antiviruses, antispywares, and firewalls.
Also disable your internet connection.
•
Run Combo-Fix.exe and follow the prompts.
**Understand that things like your system clock changing and your desktop disappearing might happen. Do not worry, because all will be restored later.
• Wait for the scan to be completed.
• If it requires a reboot, please do it.
• After the scan has completed entirely, please post the log here. The log will be located at C:\ComboFix(.txt)
Do not click on the ComoboFix window, as it may cause it to stall.
CF disconnects your machine from the internet. The connection is automatically restored before CF completes its run. If CF runs into difficulty and terminates prematurely, the connection can be manually restored by restarting your machine.
After completing the steps I have given, attach the new Malwarebytes log, rescan with HijackThis and include new log include the Combofix report.