ESETSmartInstaller@High as CAB hook log:
OnlineScanner.ocx - registred OK
# version=7
# IEXPLORE.EXE=8.00.6001.18702 (longhorn_ie8_rtm(wmbla).090308-0339)
# OnlineScanner.ocx=1.0.0.6211
# api_version=3.0.2
# EOSSerial=ae4b333567aa85479a7a281771453b04
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# utc_time=2010-11-27 04:17:23
# local_time=2010-11-27 10:17:23 (-0600, Central Standard Time)
# country="United States"
# lang=1033
# osver=5.1.2600 NT Service Pack 3
# compatibility_mode=512 16777215 100 0 1527460 1527460 0 0
# compatibility_mode=1797 16775141 100 93 313946 27291023 0 0
# compatibility_mode=8192 67108863 100 0 0 0 0 0
# scanned=91193
# found=25
# cleaned=0
# scan_time=4980
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1250\A0139415.DLL Win32/Adware.FunWeb application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1250\A0139416.DLL Win32/Adware.FunWeb application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1250\A0139418.DLL Win32/Toolbar.MyWebSearch.B application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1250\A0139419.DLL Win32/Toolbar.MyWebSearch application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1250\A0139420.DLL Win32/Toolbar.MyWebSearch application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1250\A0139421.DLL Win32/Adware.FunWeb application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1250\A0139424.DLL Win32/Toolbar.MyWebSearch.D application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1250\A0139427.DLL Win32/Toolbar.MyWebSearch application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1250\A0139428.DLL Win32/FunWeb application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1250\A0139481.dll a variant of Win32/Toolbar.MyWebSearch application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1252\A0143743.DLL Win32/Adware.FunWeb application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1252\A0143744.DLL Win32/Adware.FunWeb application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1252\A0143745.DLL Win32/Toolbar.MyWebSearch.B application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1252\A0143746.DLL Win32/Adware.FunWeb application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1252\A0143753.DLL Win32/Toolbar.MyWebSearch application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1252\A0143754.DLL Win32/Toolbar.MyWebSearch.D application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1252\A0143758.DLL Win32/Toolbar.MyWebSearch application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1252\A0143759.DLL Win32/Toolbar.MyWebSearch application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1252\A0143764.DLL Win32/Toolbar.MyWebSearch application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1252\A0143769.DLL Win32/FunWeb application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1306\A0162883.dll a variant of Win32/Toolbar.MyWebSearch.A application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1306\A0162888.dll probably a variant of Win32/Toolbar.MyWebSearch.F application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1306\A0162889.dll probably a variant of Win32/Toolbar.MyWebSearch.B application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1306\A0162896.dll a variant of Win32/Toolbar.MyWebSearch application 00000000000000000000000000000000 I
C:\WINDOWS\pss\PowerReg Scheduler.exeStartup Win32/PowerReg application 00000000000000000000000000000000 I
# version=7
# IEXPLORE.EXE=8.00.6001.18702 (longhorn_ie8_rtm(wmbla).090308-0339)
# OnlineScanner.ocx=1.0.0.6211
# api_version=3.0.2
# EOSSerial=ae4b333567aa85479a7a281771453b04
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# utc_time=2010-11-27 06:37:13
# local_time=2010-11-27 12:37:13 (-0600, Central Standard Time)
# country="United States"
# lang=1033
# osver=5.1.2600 NT Service Pack 3
# compatibility_mode=512 16777215 100 0 1535669 1535669 0 0
# compatibility_mode=1797 16775141 100 93 322155 27299232 0 0
# compatibility_mode=8192 67108863 100 0 0 0 0 0
# scanned=91203
# found=25
# cleaned=0
# scan_time=5165
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1250\A0139415.DLL Win32/Adware.FunWeb application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1250\A0139416.DLL Win32/Adware.FunWeb application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1250\A0139418.DLL Win32/Toolbar.MyWebSearch.B application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1250\A0139419.DLL Win32/Toolbar.MyWebSearch application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1250\A0139420.DLL Win32/Toolbar.MyWebSearch application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1250\A0139421.DLL Win32/Adware.FunWeb application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1250\A0139424.DLL Win32/Toolbar.MyWebSearch.D application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1250\A0139427.DLL Win32/Toolbar.MyWebSearch application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1250\A0139428.DLL Win32/FunWeb application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1250\A0139481.dll a variant of Win32/Toolbar.MyWebSearch application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1252\A0143743.DLL Win32/Adware.FunWeb application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1252\A0143744.DLL Win32/Adware.FunWeb application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1252\A0143745.DLL Win32/Toolbar.MyWebSearch.B application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1252\A0143746.DLL Win32/Adware.FunWeb application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1252\A0143753.DLL Win32/Toolbar.MyWebSearch application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1252\A0143754.DLL Win32/Toolbar.MyWebSearch.D application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1252\A0143758.DLL Win32/Toolbar.MyWebSearch application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1252\A0143759.DLL Win32/Toolbar.MyWebSearch application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1252\A0143764.DLL Win32/Toolbar.MyWebSearch application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1252\A0143769.DLL Win32/FunWeb application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1306\A0162883.dll a variant of Win32/Toolbar.MyWebSearch.A application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1306\A0162888.dll probably a variant of Win32/Toolbar.MyWebSearch.F application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1306\A0162889.dll probably a variant of Win32/Toolbar.MyWebSearch.B application 00000000000000000000000000000000 I
C:\System Volume Information\_restore{31414675-6CBE-4639-8F67-8C2E395D7683}\RP1306\A0162896.dll a variant of Win32/Toolbar.MyWebSearch application 00000000000000000000000000000000 I
C:\WINDOWS\pss\PowerReg Scheduler.exeStartup Win32/PowerReg application 00000000000000000000000000000000 I
# version=7
# IEXPLORE.EXE=8.00.6001.18702 (longhorn_ie8_rtm(wmbla).090308-0339)
# OnlineScanner.ocx=1.0.0.6211
# api_version=3.0.2
# EOSSerial=ae4b333567aa85479a7a281771453b04
# end=stopped
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# utc_time=2010-11-28 06:06:16
# local_time=2010-11-28 12:06:16 (-0600, Central Standard Time)
# country="United States"
# lang=1033
# osver=5.1.2600 NT Service Pack 3
# compatibility_mode=512 16777215 100 0 1625200 1625200 0 0
# compatibility_mode=1797 16775141 100 93 0 27388763 0 0
# compatibility_mode=8192 67108863 100 0 0 0 0 0
# scanned=2832
# found=0
# cleaned=0
# scan_time=202
ill wait for your reply to see if this is it.