just a couple of things I use or do ,google search for a lot of the bad DLL's
I use BHOList.exe to search this and its also searche for bad Toolbars#221E8D90-C439-4297-B84A-EA3291D7CB1A
you can get it here .
http://www.sysinfo.org/bhoinfo.html
If you have CWShredder install on you computer ,create a shortcut to it on you sesktop ,right click it and go to properties.in the target line add this , /debug not there is a space between whats there and the /,
now when you click on the short cut you created you use shredder as a tool to search CWS ,like this .R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://www.couldnotfind.com/search_....id=138308.From that line you copy and past this into the shredder tool.
couldnotfind.com ,and it will tell you if is or isn't CWS.
you can also search for the bad 016's ,in SpywareBlaster if you have it installed on you computer .that program can be found in my signature in How i Got Infected In the first place .just open Spywareblaster and click on /internet explorer along the top and then right click on one of the idems in the list and click search .
I use this site for Hijackthis tutoral.
http://www.spywareinfo.com/~merijn/htlogtutorial.html
and this one for good and bad LPS's=010's in the log
http://www.angeltowns.com/members/zupe/lsps.html
and this one to search 017's IP addresses.
http://www.arin.net/whois/
I use canned speaches for my posts with all the links to the programs for the person to use on the affected computer.i got these speaches from the experts at the Spywareinfo.com ,i joined up for the bootcamp to learn how to read logs .I should spend more time there actuall to learn more,so I could be a better help with the hard logs [I leave them to Crunchie

].