Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:10-09-2015 01
Ran by icenhour76 (administrator) on ICENHOUR76-PC (10-09-2015 21:52:41)
Running from C:\Users\icenhour76\Desktop
Loaded Profiles: icenhour76 (Available Profiles: icenhour76)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRService.exe
(Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Software Updater\SSUService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(Motorola Mobility LLC) C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe
(Motorola Mobility LLC) C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe
(Motorola) C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe
(Check Point Software Technologies, Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZAPrivacyService.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM\...\Run: [ProfilerU] => C:\Program Files\Saitek\SD6\Software\ProfilerU.exe [310272 2010-07-29] (Saitek)
HKLM\...\Run: [SaiMfd] => C:\Program Files\Saitek\SD6\Software\SaiMfd.exe [158208 2010-07-29] (Saitek)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13320808 2011-10-25] (Realtek Semiconductor)
HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634872 2015-08-21] (NVIDIA Corporation)
HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3100440 2015-01-12] (Logitech, Inc.)
HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [14601160 2015-08-20] (Logitech Inc.)
HKLM-x32\...\Run: [Zboard] => C:\Program Files (x86)\Ideazon\ZEngine\Zboard.exe [182784 2011-02-22] (Ideazon, Inc.)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [89456 2011-03-07] (Elaborate Bytes AG)
HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2014-01-10] ()
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [6111824 2015-08-25] (AVAST Software)
HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [448856 2015-01-10] (DivX, LLC)
HKLM-x32\...\Run: [ZoneAlarm] => C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe [134792 2015-08-11] (Check Point Software Technologies Ltd.)
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
HKU\S-1-5-21-3248671020-3738731255-3598294349-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3673696 2013-08-01] (Disc Soft Ltd)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-08-05] (AVAST Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Content Manager Assistant for PlayStation(R).lnk [2013-12-06]
ShortcutTarget: Content Manager Assistant for PlayStation(R).lnk -> C:\Program Files (x86)\Sony\Content Manager Assistant\CMA.exe (Sony Computer Entertainment Inc.)
Startup: C:\Users\icenhour76\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk [2012-11-19]
ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.1
Tcpip\..\Interfaces\{86AB6FA6-FCFA-46CA-982F-A74586D9A137}: [NameServer] 208.67.220.222
Tcpip\..\Interfaces\{86AB6FA6-FCFA-46CA-982F-A74586D9A137}: [DhcpNameServer] 10.0.0.1
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3248671020-3738731255-3598294349-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://
www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://
www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3248671020-3738731255-3598294349-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://
www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3248671020-3738731255-3598294349-1001 -> {8EEAC88A-079B-4b2c-80C1-7836F79EB40A} URL = hxxp://us.search.yahoo.com/search?p={searchTerms}&fr=chr-comodo
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-10-03] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-08-05] (AVAST Software)
BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2014-05-19] (Logitech, Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-10-03] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-07-25] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-08-05] (AVAST Software)
BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2014-05-19] (Logitech, Inc.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-07-25] (Oracle Corporation)
DPF: HKLM-x32 {E6F480FC-BD44-4CBA-B74A-89AF7842937D} hxxp://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_cyri_4.5.1.0.cab
FireFox:
========
FF ProfilePath: C:\Users\icenhour76\AppData\Roaming\Mozilla\Firefox\Profiles\ntebj8uu.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll [2015-08-12] ()
FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-10-03] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-10-03] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.0.7 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-12] ()
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.)
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll [2014-11-21] (DivX, LLC)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-09-05] (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-07-25] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2014-07-25] (Oracle Corporation)
FF Plugin-x32: @messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6 -> C:\Program Files (x86)\Yahoo!\Shared\npYState.dll [2011-06-16] (Yahoo! Inc.)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-08-21] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-08-21] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.13\npGoogleUpdate3.dll [2015-08-29] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.13\npGoogleUpdate3.dll [2015-08-29] (Google Inc.)
FF Plugin-x32: @veetle.com/veetleCorePlugin,version=0.9.19 -> C:\Program Files (x86)\Veetle\plugins\npVeetle.dll [2012-01-13] (Veetle Inc)
FF Plugin-x32: @veetle.com/veetlePlayerPlugin,version=0.9.18 -> C:\Program Files (x86)\Veetle\Player\npvlc.dll [2012-01-13] (Veetle Inc)
FF Plugin-x32: @videolan.org/vlc,version=2.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.0.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.1.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3248671020-3738731255-3598294349-1001: @onlive.com/OnLiveGameClientDetector,version=1.0.0 -> C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll [2012-06-28] (OnLive)
FF Plugin HKU\S-1-5-21-3248671020-3738731255-3598294349-1001: @plugin.couponnetwork.com/Coupon Print Activator;version=4.5 -> C:\Users\icenhour76\AppData\Roaming\E-centives\NPcolPM460.dll [2011-12-31] (Invenda)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll [2013-05-24] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll [2013-05-24] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll [2013-05-24] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll [2013-05-24] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll [2013-05-24] (Apple Inc.)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-09-28]
FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2015-01-12]
Chrome:
=======
CHR HomePage: Default -> hxxp://
www.google.com
CHR StartupUrls: Default -> "hxxp://
www.google.com","hxxps://
www.yahoo.com/?fr=hp-avast&type=odc179"
CHR Profile: C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-09-10]
CHR Extension: (Google Docs) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-09-10]
CHR Extension: (Google Drive) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-09-10]
CHR Extension: (Adguard AdBlocker) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgnkhhnnamicmpeenaelnjfhikgbkllg [2015-09-10]
CHR Extension: (WOT: Web of Trust, Website Reputation Ratings) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp [2015-09-09]
CHR Extension: (YouTube) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-10]
CHR Extension: (Google Cast) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\boadgeojelhgndaghljhdicfkmllpafd [2015-09-09]
CHR Extension: (Classic Games) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpckajjkmjncafjlkielcgheibdlnfgc [2015-09-09]
CHR Extension: (Guitarist's Reference) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\cddaabhppoebkmalboinjhgofbhdbcgk [2015-09-09]
CHR Extension: (Adblock Plus) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-09-09]
CHR Extension: (Adblock for Youtube™) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2015-09-10]
CHR Extension: (Google Search) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-09-09]
CHR Extension: (Netflix) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\deceagebecbceejblnlcjooeohmmeldh [2015-09-09]
CHR Extension: (uBlock) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\epcnnfbjfcgphgdmggkamkmgojdagdnn [2015-09-09]
CHR Extension: (Google Sheets) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-09-10]
CHR Extension: (Full Screen Weather) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkkaebihfmbofclegkcfkkemepfehibg [2015-09-09]
CHR Extension: (Chrome Remote Desktop) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2015-09-09]
CHR Extension: (Google Docs Offline) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-10]
CHR Extension: (Click&Clean) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghgabhipcejejjmhhchfonmamedcbeod [2015-09-09]
CHR Extension: (No Name) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-09-10]
CHR Extension: (Avast Online Security) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-08-18]
CHR Extension: (Crackle) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibfamoapbmmmlknoopmmfofgladlinic [2015-09-09]
CHR Extension: (Disconnect) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeoacafpbcihiomhlakheieifhpjdfeo [2015-09-09]
CHR Extension: (Google Play) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\komhbcfkdcgmcdoenjcjheifdiabikfi [2015-09-09]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-08-18]
CHR Extension: (Chrome Web Store Payments) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-18]
CHR Extension: (Monster Force 5) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\olnalgkbpcpkocdkonfbnghhgjccnnga [2015-09-09]
CHR Extension: (Click&Clean App) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\pdabfienifkbhoihedcgeogidfmibmhp [2015-09-09]
CHR Extension: (Gmail) - C:\Users\icenhour76\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-09]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-04-11]
Opera:
=======
OPR Extension: (Adblock Plus) - C:\Users\icenhour76\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2014-09-18]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-08-05] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4047768 2015-08-05] (Avast Software)
S2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\45.0.2454.17\remoting_host.exe [69448 2015-08-18] (Google Inc.)
S2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155192 2015-08-21] (NVIDIA Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-08-18] (Malwarebytes Corporation)
R2 Motorola Device Manager; C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe [137528 2015-04-17] (Motorola Mobility LLC)
S2 nTuneService; C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneService.exe [278336 2011-09-19] (NVIDIA)
S2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872504 2015-08-21] (NVIDIA Corporation)
S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544568 2015-08-21] (NVIDIA Corporation)
R2 PST Service; C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe [65657 2015-04-17] (Motorola) [File not signed]
S2 vsmon; C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe [3722912 2015-08-11] (Check Point Software Technologies Ltd.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 ZAPrivacyService; C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZaPrivacyService.exe [96272 2014-08-14] (Check Point Software Technologies, Ltd.)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 Alpham1; C:\Windows\System32\DRIVERS\Alpham164.sys [52992 2007-07-23] (Ideazon Corporation)
R3 Alpham2; C:\Windows\System32\DRIVERS\Alpham264.sys [21760 2007-03-20] (Ideazon Corporation)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-13] (Microsoft Corporation)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-08-05] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [90968 2015-08-05] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-08-05] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-08-05] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1048344 2015-08-13] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [447944 2015-08-05] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [150672 2015-08-05] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [274808 2015-08-05] (AVAST Software)
R3 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-08-19] (Disc Soft Ltd)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R0 GUBootStartup; C:\Windows\System32\drivers\GUBootStartup.sys [20672 2014-06-22] (Glarysoft Ltd)
S3 L6PODHDBEAN; C:\Windows\System32\Drivers\L6PODHDBEAN64.sys [772864 2015-04-15] (Line 6)
S3 L6PODX3; C:\Windows\System32\Drivers\L6PODX364.sys [772096 2011-11-30] (Line 6)
R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech)
R3 LGJoyXlCore; C:\Windows\System32\drivers\LGJoyXlCore.sys [68384 2015-08-20] (Logitech Inc.)
R3 LGSHidFilt; C:\Windows\System32\DRIVERS\LGSHidFilt.Sys [64280 2015-08-20] (Logitech Inc.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-08-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-08-18] (Malwarebytes Corporation)
R0 ngvss; C:\Windows\System32\Drivers\ngvss.sys [115152 2015-08-05] (AVAST Software)
S3 NTIOLib_1_0_4; C:\Program Files (x86)\MSI\Live Update 5\NTIOLib_X64.sys [14136 2010-10-22] (MSI)
R3 nvoclk64; C:\Windows\System32\DRIVERS\nvoclk64.sys [42088 2009-09-15] (NVIDIA Corp.)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50472 2015-08-21] (NVIDIA Corporation)
S3 RivaTuner64; C:\Program Files (x86)\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner64.sys [19952 2012-02-04] ()
S3 SaiKF622; C:\Windows\System32\DRIVERS\SaiKF622.sys [140800 2009-06-02] (Saitek)
R3 SaiMini; C:\Windows\System32\DRIVERS\SaiMini.sys [22792 2010-08-10] (Saitek)
R3 SaiNtBus; C:\Windows\System32\drivers\SaiBus.sys [50056 2010-08-10] (Saitek)
S3 SSMO3v2Filter; C:\Windows\System32\drivers\MO3v2Driver.sys [23040 2010-12-17] (Sagatek Co. Ltd.) [File not signed]
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [35064 2015-09-10] ()
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [273824 2015-08-05] (Avast Software)
R1 Vsdatant; C:\Windows\System32\DRIVERS\vsdatant.sys [461792 2015-08-11] (Check Point Software Technologies Ltd.)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 DisplayLinkUsbPort; system32\DRIVERS\DisplayLinkUsbPort_7.0.41409.0.sys [X]
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 MSI_MSIBIOS_010507; \??\C:\Program Files (x86)\MSI\Live Update 5\msibios64_100507.sys [X]
S3 NLNdisMP; system32\DRIVERS\nlndis.sys [X]
S3 NLNdisPT; system32\DRIVERS\nlndis.sys [X]
S3 X6va008; \??\C:\Windows\SysWOW64\Drivers\X6va008 [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-09-10 21:52 - 2015-09-10 21:52 - 00026306 _____ C:\Users\icenhour76\Desktop\FRST.txt
2015-09-10 21:41 - 2015-09-10 21:41 - 00051985 _____ C:\ComboFix.txt
2015-09-10 21:22 - 2015-09-10 21:22 - 05635119 ____R (Swearware) C:\Users\icenhour76\Desktop\ComboFix.exe
2015-09-10 21:22 - 2015-09-10 21:22 - 05635119 _____ (Swearware) C:\Users\icenhour76\Downloads\ComboFix (1).exe
2015-09-10 21:12 - 2015-09-10 21:12 - 00001357 _____ C:\Users\icenhour76\Desktop\JRT.txt
2015-09-10 21:06 - 2015-09-10 21:06 - 01800104 _____ (Malwarebytes Corporation) C:\Users\icenhour76\Desktop\JRT.exe
2015-09-10 20:39 - 2015-09-10 20:39 - 00001054 _____ C:\Users\icenhour76\Desktop\mwab.txt
2015-09-10 19:52 - 2015-09-10 19:52 - 01660416 _____ C:\Users\icenhour76\Desktop\adwcleaner_5.007.exe
2015-09-10 19:51 - 2015-09-10 19:51 - 01800104 _____ (Malwarebytes Corporation) C:\Users\icenhour76\Desktop\JRT (1).exe
2015-09-10 19:49 - 2015-09-10 19:49 - 24345872 _____ (Malwarebytes Corporation ) C:\Users\icenhour76\Downloads\mbam-setup-2.1.8.1057.exe
2015-09-10 19:49 - 2015-09-10 19:49 - 18779208 _____ C:\Users\icenhour76\Desktop\RogueKiller.exe
2015-09-10 19:49 - 2015-09-10 19:49 - 00000000 ____D C:\Users\icenhour76\Desktop\New folder
2015-09-10 19:24 - 2015-09-10 19:33 - 00002555 _____ C:\Users\icenhour76\Desktop\Search.txt
2015-09-10 19:23 - 2015-09-10 19:23 - 02190848 _____ (Farbar) C:\Users\icenhour76\Desktop\FRST64.exe
2015-09-10 19:23 - 2015-09-10 19:23 - 00000000 ____D C:\Users\icenhour76\Desktop\FRST-OlderVersion
2015-09-10 19:22 - 2015-09-10 19:22 - 02190848 _____ (Farbar) C:\Users\icenhour76\Downloads\FRST64 (1).exe
2015-09-10 17:18 - 2015-09-10 17:18 - 00000000 ____D C:\Program Files\Common Files\AV
2015-09-10 17:15 - 2015-09-10 17:17 - 00430818 _____ C:\Windows\system32\Drivers\vsconfig.xml
2015-09-10 17:14 - 2015-09-10 17:14 - 00000762 _____ C:\Users\Public\Desktop\ZoneAlarm Security.lnk
2015-09-10 17:14 - 2015-09-10 17:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Check Point
2015-09-10 17:11 - 2015-09-10 17:14 - 00000000 ____D C:\Program Files (x86)\CheckPoint
2015-09-10 17:11 - 2015-09-10 17:11 - 03387352 _____ (Check Point Software Technologies Ltd.) C:\Users\icenhour76\Downloads\zafwSetupWeb_140_508_000 (1).exe
2015-09-10 17:11 - 2015-09-10 17:11 - 00000000 ____D C:\ProgramData\CheckPoint
2015-09-10 17:10 - 2015-09-10 17:10 - 03387352 _____ (Check Point Software Technologies Ltd.) C:\Users\icenhour76\Downloads\zafwSetupWeb_140_508_000.exe
2015-09-10 01:30 - 2015-09-10 01:31 - 00179206 _____ C:\Users\icenhour76\Downloads\Addition.txt
2015-09-10 01:30 - 2015-09-10 01:31 - 00046383 _____ C:\Users\icenhour76\Downloads\FRST.txt
2015-09-10 01:29 - 2015-09-10 21:52 - 00000000 ____D C:\FRST
2015-09-10 01:29 - 2015-09-10 01:29 - 02190336 _____ (Farbar) C:\Users\icenhour76\Downloads\FRST64.exe
2015-09-10 00:40 - 2011-06-26 02:45 - 00256000 _____ C:\Windows\PEV.exe
2015-09-10 00:40 - 2010-11-07 13:20 - 00208896 _____ C:\Windows\MBR.exe
2015-09-10 00:40 - 2009-04-20 00:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-09-10 00:40 - 2000-08-30 20:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-09-10 00:40 - 2000-08-30 20:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-09-10 00:40 - 2000-08-30 20:00 - 00098816 _____ C:\Windows\sed.exe
2015-09-10 00:40 - 2000-08-30 20:00 - 00080412 _____ C:\Windows\grep.exe
2015-09-10 00:40 - 2000-08-30 20:00 - 00068096 _____ C:\Windows\zip.exe
2015-09-09 23:47 - 2015-09-09 23:47 - 00000000 ____D C:\Users\icenhour76\Desktop\mbar
2015-09-09 19:02 - 2015-09-09 19:02 - 04404952 _____ (Kaspersky Lab ZAO) C:\Users\icenhour76\Desktop\TDSSKiller.exe
2015-09-09 19:01 - 2015-09-09 19:01 - 04383777 _____ C:\Users\icenhour76\Desktop\tdsskiller.zip
2015-09-09 18:45 - 2015-09-10 20:56 - 00000896 _____ C:\Windows\setupact.log
2015-09-09 18:45 - 2015-09-10 16:48 - 00002178 _____ C:\Windows\PFRO.log
2015-09-09 18:45 - 2015-09-09 18:45 - 00283448 _____ C:\Windows\system32\FNTCACHE.DAT
2015-09-09 18:45 - 2015-09-09 18:45 - 00000000 _____ C:\Windows\setuperr.log
2015-09-09 18:11 - 2015-09-09 18:11 - 00002259 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-09-09 18:11 - 2015-09-09 18:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-09-09 18:09 - 2015-09-09 18:09 - 00059992 _____ C:\Users\icenhour76\AppData\Local\GDIPFONTCACHEV1.DAT
2015-09-04 19:23 - 2015-09-04 19:28 - 147484216 _____ (Seagate) C:\Users\icenhour76\Documents\Seagate Dashboard Installer.exe
2015-09-03 11:34 - 2015-09-03 11:34 - 00178915 _____ C:\Users\icenhour76\Desktop\smdk_fat322.zip
2015-09-03 11:30 - 2015-09-03 11:31 - 00000000 ____D C:\Users\icenhour76\Desktop\ExtFat32_v2.00
2015-09-03 11:30 - 2015-09-03 11:30 - 00564213 _____ C:\Users\icenhour76\Desktop\ExtFat32_v2.00.zip
2015-09-03 10:24 - 2015-09-03 10:25 - 00000000 ____D C:\Users\icenhour76\Desktop\PS4
2015-08-21 07:44 - 2015-08-21 07:44 - 00573048 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2015-08-21 07:43 - 2015-08-21 07:43 - 00937592 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-08-21 07:43 - 2015-08-07 00:34 - 06883448 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-08-21 07:43 - 2015-08-07 00:34 - 03492144 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-08-21 07:43 - 2015-08-07 00:34 - 02558768 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-08-21 07:43 - 2015-08-07 00:34 - 00385328 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-08-21 07:43 - 2015-08-07 00:34 - 00062768 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-08-21 07:43 - 2015-08-03 06:12 - 05133709 _____ C:\Windows\system32\nvcoproc.bin
2015-08-21 07:40 - 2015-08-21 07:43 - 01567576 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2015-08-21 07:40 - 2015-08-21 07:43 - 00204648 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2015-08-21 07:40 - 2015-08-21 07:43 - 00040280 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 37819000 _____ C:\Windows\SysWOW64\nvcompiler.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 22520624 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 18540336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 17124832 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 16630096 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 15510112 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 14928048 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 14673920 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 13656016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 12513288 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 12179496 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 11076216 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-08-21 07:40 - 2015-08-21 07:41 - 03518248 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 03106384 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 02937648 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 02624816 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 01104440 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 01063216 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 01059960 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 00985208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 00942688 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 00931448 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 00177088 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 00155792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 00150648 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-08-21 07:40 - 2015-08-21 07:41 - 00128512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-08-21 07:40 - 2015-08-07 07:06 - 42840184 _____ C:\Windows\system32\nvcompiler.dll
2015-08-21 07:40 - 2015-08-07 07:06 - 00033050 _____ C:\Windows\system32\nvinfo.pb
2015-08-21 06:49 - 2015-08-21 06:49 - 01898128 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435362.dll
2015-08-21 06:49 - 2015-08-21 06:49 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435362.dll
2015-08-21 05:57 - 2015-08-21 05:58 - 01898104 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435560.dll
2015-08-21 05:57 - 2015-08-21 05:58 - 01558832 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435560.dll
2015-08-21 02:55 - 2015-08-21 02:55 - 00069416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2015-08-21 02:55 - 2015-08-21 02:55 - 00050472 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2015-08-20 23:43 - 2015-08-20 23:43 - 08667136 _____ C:\Users\icenhour76\Desktop\SCEVMC1.VME
2015-08-20 23:43 - 2015-08-20 23:43 - 00334591 _____ C:\Users\icenhour76\Desktop\DJKM 2015 STARTER PACK.max
2015-08-20 18:59 - 2015-08-20 18:59 - 00000000 ____D C:\Users\icenhour76\AppData\Local\Logitech
2015-08-20 18:55 - 2015-08-20 18:58 - 00000000 ____D C:\Program Files\Logitech Gaming Software
2015-08-20 18:44 - 2015-08-20 18:46 - 82596072 _____ (Logitech Inc.) C:\Users\icenhour76\Desktop\LGS_8.70.315_x64_Logitech.exe
2015-08-20 18:37 - 2015-08-20 18:37 - 01164056 _____ (Logitech Inc.) C:\Users\icenhour76\Desktop\G602Flash.exe
2015-08-18 01:26 - 2015-08-18 01:26 - 01791580 _____ (Malwarebytes Corporation) C:\Users\icenhour76\Downloads\JRT.exe
2015-08-18 00:23 - 2015-09-10 21:46 - 01339438 _____ C:\Windows\WindowsUpdate.log
2015-08-17 12:34 - 2015-08-17 12:34 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUSB_01011.Wdf
2015-08-17 12:33 - 2015-08-17 12:33 - 00000044 _____ C:\Users\icenhour76\Desktop\StdOut_native.txt
2015-08-17 12:33 - 2015-08-17 12:33 - 00000044 _____ C:\Users\icenhour76\Desktop\StdOut.txt
2015-08-17 12:33 - 2015-08-17 12:33 - 00000000 ____D C:\usb_driver
2015-08-17 12:33 - 2015-08-17 12:33 - 00000000 _____ C:\Users\icenhour76\Desktop\Stderr_Native.txt
2015-08-17 12:33 - 2015-08-17 12:33 - 00000000 _____ C:\Users\icenhour76\Desktop\Stderr.txt
2015-08-17 12:25 - 2012-11-05 22:26 - 01983440 _____ (Microsoft Corporation) C:\Windows\system32\msvcr110d.dll
2015-08-17 12:19 - 2015-08-17 12:19 - 00039918 _____ C:\Users\icenhour76\Desktop\SX330-iPV3Li-Upgrade-200W-V1.6-20150623-1435556516.rar
2015-08-17 12:17 - 2015-08-17 12:17 - 00001051 _____ C:\Users\Public\Desktop\SXi.lnk
2015-08-17 12:17 - 2015-08-17 12:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YiHi SXi
2015-08-17 12:17 - 2015-08-17 12:17 - 00000000 ____D C:\Program Files (x86)\YiHiEcigar
2015-08-17 01:50 - 2015-08-17 01:50 - 05324377 _____ C:\Users\icenhour76\Desktop\1636 - Pokemon Fire Red (U)(Squirrels).zip
2015-08-11 03:39 - 2015-08-11 03:39 - 00461792 _____ (Check Point Software Technologies Ltd.) C:\Windows\system32\Drivers\vsdatant.sys
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-09-10 21:53 - 2014-01-19 04:43 - 00000898 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-09-10 21:41 - 2014-01-16 09:20 - 00000000 ____D C:\Qoobox
2015-09-10 21:38 - 2009-07-13 22:34 - 00000215 _____ C:\Windows\system.ini
2015-09-10 21:23 - 2012-10-25 14:18 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-09-10 21:22 - 2013-02-14 03:41 - 00000000 ____D C:\ProgramData\TEMP
2015-09-10 21:14 - 2009-07-14 00:45 - 00028944 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-09-10 21:14 - 2009-07-14 00:45 - 00028944 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-09-10 21:07 - 2012-09-25 19:44 - 00000000 ____D C:\temp
2015-09-10 20:58 - 2014-09-29 01:56 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2015-09-10 20:55 - 2014-01-19 04:43 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-09-10 20:55 - 2012-04-03 18:53 - 00000334 _____ C:\Windows\Tasks\GlaryInitialize.job
2015-09-10 20:55 - 2009-07-14 01:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-09-10 20:54 - 2012-02-04 02:06 - 00000000 ____D C:\ProgramData\NVIDIA
2015-09-10 20:51 - 2013-09-03 20:24 - 00000000 ____D C:\AdwCleaner
2015-09-10 20:04 - 2014-07-24 16:21 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-09-10 19:54 - 2014-07-21 00:26 - 00035064 _____ C:\Windows\system32\Drivers\TrueSight.sys
2015-09-10 17:06 - 2013-02-11 23:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo
2015-09-10 01:17 - 2013-06-18 09:36 - 00000000 ____D C:\Windows\erdnt
2015-09-10 01:06 - 2013-02-11 23:46 - 00000000 ____D C:\ProgramData\COMODO
2015-09-10 00:39 - 2013-02-11 23:48 - 00000000 ____D C:\Windows\System32\Tasks\COMODO
2015-09-10 00:26 - 2014-01-22 20:09 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-09-09 23:47 - 2014-01-13 03:51 - 00089304 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-09-09 18:41 - 2014-06-07 16:06 - 00000000 ____D C:\ProgramData\RogueKiller
2015-09-09 18:18 - 2015-03-23 08:29 - 00000848 _____ C:\Users\Public\Desktop\RogueKiller.lnk
2015-09-09 18:18 - 2015-03-15 04:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
2015-09-09 18:18 - 2015-03-15 04:21 - 00000000 ____D C:\Program Files\RogueKiller
2015-09-09 18:14 - 2014-01-01 20:39 - 00000000 ____D C:\Users\icenhour76\AppData\Local\CrashDumps
2015-09-09 18:11 - 2011-12-29 16:10 - 00000000 ____D C:\Program Files (x86)\Google
2015-09-09 18:09 - 2015-04-20 04:27 - 00000000 __SHD C:\Users\icenhour76\AppData\Local\EmieBrowserModeList
2015-09-09 18:09 - 2014-06-07 16:27 - 00000000 __SHD C:\Users\icenhour76\AppData\Local\EmieUserList
2015-09-09 18:09 - 2014-06-07 16:27 - 00000000 __SHD C:\Users\icenhour76\AppData\Local\EmieSiteList
2015-09-05 04:12 - 2012-01-31 05:31 - 00000000 ____D C:\Program Files (x86)\Steam
2015-09-04 19:28 - 2009-07-14 01:13 - 00897522 _____ C:\Windows\system32\PerfStringBackup.INI
2015-08-30 10:45 - 2011-12-29 16:13 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
2015-08-30 10:45 - 2011-12-29 16:13 - 00000000 ____D C:\Program Files\CCleaner
2015-08-29 15:48 - 2014-01-19 04:43 - 00003894 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-08-29 15:48 - 2014-01-19 04:43 - 00003642 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-08-23 21:36 - 2009-07-13 23:20 - 00000000 ____D C:\Windows\system32\NDF
2015-08-21 16:53 - 2012-11-20 00:18 - 00000000 ____D C:\Users\icenhour76\Desktop\Games
2015-08-21 07:51 - 2012-02-04 20:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-08-21 07:44 - 2012-02-04 22:29 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2015-08-21 07:43 - 2012-02-04 02:05 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2015-08-21 07:42 - 2012-02-04 02:06 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2015-08-21 06:22 - 2015-06-24 11:48 - 00000000 ____D C:\ProgramData\boost_interprocess
2015-08-21 02:56 - 2013-05-24 16:44 - 00001381 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2015-08-21 02:55 - 2013-09-03 07:30 - 00072504 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2015-08-20 18:58 - 2015-06-10 19:33 - 00068384 _____ (Logitech Inc.) C:\Windows\system32\Drivers\LGJoyXlCore.sys
2015-08-20 18:58 - 2015-06-10 19:33 - 00037408 _____ (Logitech Inc.) C:\Windows\system32\Drivers\LGBusEnum.sys
2015-08-20 18:58 - 2015-06-10 19:33 - 00026912 _____ (Logitech Inc.) C:\Windows\system32\Drivers\LGVirHid.sys
2015-08-20 18:57 - 2013-05-31 15:19 - 01843480 _____ (Logitech, Inc.) C:\Windows\system32\LkmdfCoInst.dll
2015-08-20 18:57 - 2013-05-30 12:16 - 00064280 _____ (Logitech Inc.) C:\Windows\system32\Drivers\LGSHidFilt.Sys
2015-08-20 18:57 - 2011-12-29 16:34 - 00018960 _____ (Logitech, Inc.) C:\Windows\system32\Drivers\LNonPnP.sys
2015-08-20 18:56 - 2011-12-29 16:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2015-08-20 18:55 - 2013-12-16 10:44 - 00000000 ____D C:\ProgramData\Package Cache
2015-08-20 18:53 - 2011-12-29 16:28 - 00000000 ____D C:\Users\icenhour76\AppData\Roaming\Logishrd
2015-08-19 14:25 - 2014-11-28 22:18 - 00003840 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1411089266
2015-08-19 14:25 - 2011-12-29 16:03 - 00000000 ____D C:\Program Files (x86)\Opera
2015-08-18 03:29 - 2011-12-30 07:46 - 00000000 ____D C:\Windows\Panther
2015-08-18 03:16 - 2015-07-10 09:39 - 00000000 ____D C:\$Windows.~BT
2015-08-18 02:31 - 2012-04-27 21:35 - 00000000 ____D C:\Windows\Minidump
2015-08-18 00:44 - 2014-07-24 16:21 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-08-18 00:44 - 2014-07-24 16:21 - 00001106 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-08-18 00:44 - 2014-07-24 16:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-08-18 00:44 - 2013-07-21 18:47 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-08-18 00:44 - 2012-02-03 13:19 - 00000000 ____D C:\Program Files (x86)\MALWAREBYTES ANTI-MALWARE
2015-08-17 19:30 - 2014-07-20 21:07 - 01316184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-08-17 19:30 - 2013-10-30 04:44 - 01423120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-08-17 19:29 - 2014-07-20 21:07 - 01756608 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-08-17 19:29 - 2013-10-30 04:44 - 01710568 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-08-17 12:33 - 2009-07-13 23:20 - 00000000 ___HD C:\Windows\system32\GroupPolicy
2015-08-15 11:45 - 2011-12-29 23:17 - 00000000 ____D C:\Users\icenhour76\.FBReader
2015-08-13 18:59 - 2014-09-29 01:56 - 01048344 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2015-08-12 06:23 - 2012-10-25 14:18 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-08-12 06:23 - 2012-03-30 00:19 - 00778440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-08-12 06:23 - 2011-12-29 16:26 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
==================== Files in the root of some directories =======
2012-05-26 02:13 - 2012-05-26 02:13 - 0074181 _____ () C:\Users\icenhour76\AppData\Roaming\icarus-dxdiag.xml
2011-12-29 22:29 - 2012-11-16 08:40 - 0007668 _____ () C:\Users\icenhour76\AppData\Local\Resmon.ResmonCfg
2011-12-31 19:55 - 2011-12-31 19:55 - 0000057 _____ () C:\ProgramData\Ament.ini
2012-06-17 12:19 - 2012-04-18 12:19 - 0000032 ____R () C:\ProgramData\hash.dat
Files to move or delete:
====================
C:\ProgramData\hash.dat
C:\Users\icenhour76\DisplayLink_6.3M1.exe
C:\Users\icenhour76\Link Paring Tool v3.exe
C:\Users\icenhour76\RivaTuner224c-[Guru3D.com].exe
C:\Users\icenhour76\Saitek_Cyborg_V3_Pad_SD6_64_Drivers_pfw.exe
C:\Users\icenhour76\SAMSUNG_USB_Driver_for_Mobile_Phones.exe
C:\Users\icenhour76\Smart_Technology_7_0_2_7_64bit.exe
C:\Users\icenhour76\SUPERAntiSpyware.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-09-01 00:23
==================== End of FRST.txt ============================