Well, I don't see any signs of Aurora/Nail in your log :).
Did you look through that Ewido log? It looks like you had a lot more going on then you thought! (Probably from using file sharing programs.)
Before continuing, you should also follow the recommendations in the Protection and Cleaning threads (links below).
Then, go to Add/Remove Programs in your Control Panel and remove (if present):
Media Access
180searchassistant
BetterInternet
SAH
Cdmdownld
I would also recommend removing BearShare.
Download the removal tool for BetterInternet from here:
http://securityresponse.symantec.com/avcenter/FixBinet.exe
Open FixBinet.exe and click Start to begin the removal process.
Next, download, install, update, and run these utilities:
CWShredder -- http://www.intermute.com/spysubtract/cwshredder_download.html
about:Buster -- http://www.majorgeeks.com/download4289.html
HSRemove -- http://www.majorgeeks.com/download4286.html
PurityScan uninstaller -- http://www.purityscan.com/uninstall.html
CCleaner –- http://www.filehippo.com/download/Qi6RR0U86febzhqUrQQIBQ2/download.html (don't run this one yet)
After that, scan with HJT and have it fix the following entries:
R3 - Default URLSearchHook is missing
O2 - BHO: AuroraHandlerObj Class - {4AA870AC-8427-42a4-B92E-ECD956197489} - C:\WINDOWS\AuroraHandler.dll (file missing)
O2 - BHO: (no name) - {6988740F-2990-3160-7ED2-B86380211C8C} - C:\Program Files\cdmdownld\mqcsmdkmvs.dll (file missing)
O4 - HKLM\..\Run: [Media Access] C:\Program Files\Media Access\MediaAccK.exe
O4 - HKLM\..\Run: [salm] c:\program files\180searchassistant\salm.exe
O4 - HKLM\..\Run: [SAHBundle] C:\WINDOWS\TEMP\bundle_cdt1006.exe run
O4 - HKLM\..\Run: [lklzes] c:\windows\system32\arwdscm.exe r
O23 - Service: tsecure - Unknown owner - C:\WINDOWS\tsecure.exe (file missing)
Remember to close any open windows, other then HJT, before hitting Fix checked.
Go to the following locations and delete the highlighted files and folders (if present):
C:\WINDOWS\AuroraHandler.dll
C:\WINDOWS\tsecure.exe
C:\WINDOWS\TEMP\bundle_cdt1006.exe
C:\windows\system32\arwdscm.exe
C:\Program Files\Media Access
C:\program files\180searchassistant
C:\Program Files\cdmdownld
C:\Program Files\BetterInternet
C:\Program Files\SAH
C:\Program Files\ABetterInternet
If any of these files could not be deleted, try booting into Safe Mode and deleting them from there.
Now you can run CCleaner.
Go to C:\WINDOWS and locate cxid.exe; right-click on it and select Properties. Give us whatever info you can on it (Company, version, etc.).
Matcli.exe is spyware from Blueyonder, if you remove it, some help menus in help and support will not be available. You decide whether or not you wish to keep it. If you wish to remove it, let us know and we'll tell you how.
Reboot, close any open browser windows, scan with HJT, and post a new log please.