Hi! I'm a fairly advanced user, can usually take care of these things myself. Not today though. Having some issues with thing getting very sluggish, etc.
Here's my FRST.txt, 1st part:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:25-10-2015
Ran by Trent (administrator) on HELL-PC1 (24-10-2015 19:46:50)
Running from C:\Users\Trent\Downloads
Loaded Profiles: Trent (Available Profiles: Trent)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(VIA) C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler64.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Farbar) C:\Users\Trent\Downloads\FRST64(1).exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1337000 2015-04-30] (Microsoft Corporation)
HKLM-x32\...\Run: [HDAudDeck] => C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [5263504 2012-08-09] (VIA)
HKU\S-1-5-21-3822528139-1650123135-726693888-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-18\...\RunOnce: [iCloud] => "C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe"
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-10-12] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-10-12] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-10-12] (Google)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{53F25C74-60CF-4759-939E-9FC7D98FA93A}: [DhcpNameServer] 192.168.1.254
Internet Explorer:
==================
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3822528139-1650123135-726693888-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
DPF: HKLM-x32 {0E8D0700-75DF-11D3-8B4A-0008C7450C4A} hxxp://www.caminova.net/en/downloads/getmodule.aspx?lang=en
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab
FireFox:
========
FF ProfilePath: C:\Users\Trent\AppData\Roaming\Mozilla\Firefox\Profiles\lrue508o.default
FF DefaultSearchEngine: Google
FF DefaultSearchEngine.US: Google
FF Homepage: hxxps://www.google.com/
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_226.dll [2015-10-18] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_226.dll [2015-10-18] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-01-06] ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2015-02-11] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2015-02-11] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2015-02-11] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2015-02-11] (Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-04-16] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-04-16] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @Motive.com/NpMotive,version=1.1 -> C:\Program Files (x86)\ATT\8.5.0.48\ma\bin\npMotive.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-10-24] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-10-24] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3822528139-1650123135-726693888-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Trent\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-01-26] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-3822528139-1650123135-726693888-1000: CouponNetwork.com/CMDUniversalCouponPrintActivator -> C:\Users\Trent\AppData\Roaming\CATALI~1\NPBCSK~1.DLL [2013-02-14] (Catalina Marketing Corporation)
FF Plugin HKU\S-1-5-21-3822528139-1650123135-726693888-1000: hopster.com/CouponPrinterPlugin -> C:\Users\Trent\AppData\Roaming\Hopster\CouponPrinterPlugin\2.0.2.0\npCouponPrinterPlugin.dll [2013-02-21] (Hopster)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\browser\plugins\npMozCouponPrinter.dll [2015-02-26] (Coupons, Inc.)
FF SearchPlugin: C:\Users\Trent\AppData\Roaming\Mozilla\Firefox\Profiles\lrue508o.default\searchplugins\amazon-search-suggestions.xml [2014-06-21]
FF SearchPlugin: C:\Users\Trent\AppData\Roaming\Mozilla\Firefox\Profiles\lrue508o.default\searchplugins\bookfindercom.xml [2015-10-17]
FF Extension: Flash Video Downloader - YouTube HD Download [4K] - C:\Users\Trent\AppData\Roaming\Mozilla\Firefox\Profiles\lrue508o.default\Extensions\artur.dubovoy@gmail.com [2015-09-24]
FF Extension: Adblock Plus - C:\Users\Trent\AppData\Roaming\Mozilla\Firefox\Profiles\lrue508o.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-09-24]
FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt => not found
Chrome:
=======
CHR Profile: C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-10-24]
CHR Extension: (Google Docs) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-10-24]
CHR Extension: (Google Drive) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-24]
CHR Extension: (YouTube) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-24]
CHR Extension: (Google Search) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-24]
CHR Extension: (Google Sheets) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-10-24]
CHR Extension: (Google Docs Offline) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-10-24]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-10-24]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-10-24]
CHR Extension: (Gmail) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-10-24]
CHR HKU\S-1-5-21-3822528139-1650123135-726693888-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-05-29] (Apple Inc.)
S3 ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [160256 2011-08-30] (Intel Corporation) [File not signed]
S4 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23816 2015-04-30] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [366544 2015-04-30] (Microsoft Corporation)
S4 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH)
S4 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH)
R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27792 2012-08-03] (VIA Technologies, Inc.)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AndNetDiag; C:\Windows\System32\DRIVERS\lgandnetdiag64.sys [30720 2014-10-10] (LG Electronics Inc.)
S3 ANDNetModem; C:\Windows\System32\DRIVERS\lgandnetmodem64.sys [37376 2014-10-10] (LG Electronics Inc.)
R1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [22128 2012-03-08] ()
S4 C7EE2EF2; C:\Windows\System32\drivers\C7EE2EF2.sys [478392 2015-09-25] (Kaspersky Lab ZAO)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 GVTDrv64; C:\Windows\GVTDrv64.sys [30528 2015-10-11] ()
S4 mbamchameleon; C:\Windows\system32\drivers\mbamchameleon.sys [107736 2015-04-09] (Malwarebytes Corporation)
S4 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [136408 2015-04-09] (Malwarebytes Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [280376 2015-03-04] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124568 2015-03-04] (Microsoft Corporation)
S3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [748648 2010-08-12] (Realtek Semiconductor Corporation )
S4 SaiH0109; C:\Windows\System32\DRIVERS\SaiH0109.sys [171144 2007-05-01] (Saitek)
S4 SaiH0160; C:\Windows\System32\DRIVERS\SaiH0160.sys [179584 2008-11-24] (Saitek)
S4 SaiMini; C:\Windows\System32\DRIVERS\SaiMini.sys [25120 2013-04-30] (Saitek)
S4 SaiNtBus; C:\Windows\System32\drivers\SaiBus.sys [52640 2013-04-30] (Saitek)
S4 SaiU0109; C:\Windows\System32\DRIVERS\SaiU0109.sys [34304 2007-05-01] (Saitek)
S4 WiseHDInfo; C:\Windows\WiseHDInfo64.dll [14800 2015-07-21] (wisecleaner.com)
S4 catchme; \??\C:\ComboFix\catchme.sys [X]
S4 MREMP50; \??\C:\PROGRA~2\COMMON~1\Motive\MREMP50.SYS [X]
S4 MREMP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS [X]
S4 MREMPR5; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS [X]
S4 MRENDIS5; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [X]
S4 MRESP50; \??\C:\PROGRA~2\COMMON~1\Motive\MRESP50.SYS [X]
S4 MRESP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS [X]
S4 NVHDA; system32\drivers\nvhda64v.sys [X]
S4 nvvad_WaveExtensible; system32\drivers\nvvad64v.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-10-24 19:46 - 2015-10-24 19:46 - 02196992 _____ (Farbar) C:\Users\Trent\Downloads\FRST64(1).exe
2015-10-24 19:34 - 2015-10-24 19:34 - 00000112 _____ C:\Windows\setupact.log
2015-10-24 19:34 - 2015-10-24 19:34 - 00000000 _____ C:\Windows\setuperr.log
2015-10-24 18:58 - 2015-10-24 18:58 - 02196992 _____ (Farbar) C:\Users\Trent\Downloads\FRST64.exe
2015-10-24 18:56 - 2015-10-24 18:56 - 06677440 _____ (Piriform Ltd) C:\Users\Trent\Downloads\ccsetup510.exe
2015-10-24 18:55 - 2015-10-24 18:55 - 00002790 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2015-10-24 16:42 - 2015-10-24 16:44 - 00000000 ____D C:\Users\Trent\AppData\Local\2Browse
2015-10-24 14:03 - 2015-10-24 14:10 - 00000000 ____D C:\ProgramData\UVK
2015-10-24 14:03 - 2015-10-24 14:03 - 00001806 _____ C:\Users\Public\Desktop\UVK - Ultra Virus Killer.lnk
2015-10-24 13:08 - 2015-10-24 18:19 - 00000000 ___RD C:\Users\Trent\Google Drive
2015-10-24 13:08 - 2015-10-24 13:08 - 00001695 _____ C:\Users\Trent\Desktop\Google Drive.lnk
2015-10-24 13:05 - 2015-10-24 13:05 - 00002042 _____ C:\Users\Public\Desktop\Google Slides.lnk
2015-10-24 13:05 - 2015-10-24 13:05 - 00002040 _____ C:\Users\Public\Desktop\Google Sheets.lnk
2015-10-24 13:05 - 2015-10-24 13:05 - 00002030 _____ C:\Users\Public\Desktop\Google Docs.lnk
2015-10-24 13:05 - 2015-10-24 13:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2015-10-24 13:04 - 2015-10-24 13:04 - 00929872 _____ (Google Inc.) C:\Users\Trent\Downloads\googledrivesync.exe
2015-10-24 13:04 - 2015-10-24 13:04 - 00929872 _____ (Google Inc.) C:\Users\Trent\Downloads\googledrivesync (2).exe
2015-10-24 13:04 - 2015-10-24 13:04 - 00929872 _____ (Google Inc.) C:\Users\Trent\Downloads\googledrivesync (1).exe
2015-10-24 04:37 - 2015-10-24 13:10 - 00000000 ____D C:\Users\Trent\Desktop\New folder (2)
2015-10-24 04:16 - 2015-10-24 04:16 - 00002255 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-10-24 04:16 - 2015-10-24 04:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-10-24 04:15 - 2015-10-24 19:20 - 00000896 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-10-24 04:15 - 2015-10-24 18:18 - 00000892 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-10-24 04:15 - 2015-10-24 04:15 - 00003892 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-10-24 04:15 - 2015-10-24 04:15 - 00003640 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-10-24 04:14 - 2015-10-24 13:05 - 00000000 ____D C:\Users\Trent\AppData\Local\Google
2015-10-24 04:14 - 2015-10-24 13:05 - 00000000 ____D C:\Program Files (x86)\Google
2015-10-24 04:14 - 2015-10-24 04:14 - 00929872 _____ (Google Inc.) C:\Users\Trent\Downloads\ChromeSetup.exe
2015-10-24 04:07 - 2015-10-24 04:39 - 00000000 ____D C:\Users\Trent\AppData\Local\Apple Inc
2015-10-24 03:46 - 2015-10-24 03:46 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2015-10-24 03:38 - 2015-10-24 03:41 - 125138200 _____ (Apple Inc.) C:\Users\Trent\Downloads\icloudsetup.exe
2015-10-24 01:14 - 2015-10-24 01:14 - 00398732 _____ C:\Users\Trent\Desktop\Letters to the Editor April 2, 2013 _ Letters to the Editor _ North Bay Bohemian.htm
2015-10-24 01:14 - 2015-10-24 01:14 - 00000000 ____D C:\Users\Trent\Desktop\Letters to the Editor April 2, 2013 _ Letters to the Editor _ North Bay Bohemian_files
2015-10-23 03:15 - 2015-10-24 02:22 - 00000213 _____ C:\Users\Trent\Desktop\october23.txt
2015-10-22 00:52 - 2015-10-22 00:52 - 00784679 _____ C:\Users\Trent\Desktop\These Florida Tea Partiers plan to set up a secret vigilante court to arrest — and possibly execute — Obama.htm
2015-10-22 00:52 - 2015-10-22 00:52 - 00000000 ____D C:\Users\Trent\Desktop\These Florida Tea Partiers plan to set up a secret vigilante court to arrest — and possibly execute — Obama_files
2015-10-20 13:21 - 2015-10-20 13:21 - 00097114 _____ C:\Users\Trent\Desktop\Transaction History.htm
2015-10-20 13:21 - 2015-10-20 13:21 - 00000000 ____D C:\Users\Trent\Desktop\Transaction History_files
2015-10-20 00:07 - 2015-10-20 00:07 - 00014658 _____ C:\Users\Trent\Desktop\A. Lorene Mullins - Springfield, Missouri (MO) _ Crestleaf.htm
2015-10-20 00:07 - 2015-10-20 00:07 - 00000000 ____D C:\Users\Trent\Desktop\A. Lorene Mullins - Springfield, Missouri (MO) _ Crestleaf_files
2015-10-19 00:24 - 2015-10-19 00:24 - 00221428 _____ C:\Users\Trent\Desktop\Virus and Malware Removal - TechSpot Forums.htm
2015-10-19 00:24 - 2015-10-19 00:24 - 00000000 ____D C:\Users\Trent\Desktop\Virus and Malware Removal - TechSpot Forums_files
2015-10-19 00:21 - 2015-10-19 00:21 - 00293222 _____ C:\Users\Trent\Desktop\Speed Up Windows 7 - Ultimate Tweaks For a Blazing Fast Windows 7.htm
2015-10-19 00:21 - 2015-10-19 00:21 - 00000000 ____D C:\Users\Trent\Desktop\Speed Up Windows 7 - Ultimate Tweaks For a Blazing Fast Windows 7_files
2015-10-18 23:06 - 2015-10-18 23:06 - 00045259 _____ C:\Users\Trent\Desktop\Disable Visual Effects in Windows for Better Performance.htm
2015-10-18 23:06 - 2015-10-18 23:06 - 00000000 ____D C:\Users\Trent\Desktop\Disable Visual Effects in Windows for Better Performance_files
2015-10-18 22:00 - 2015-10-19 01:50 - 00000000 ____D C:\Users\Trent\Desktop\New folder
2015-10-18 21:59 - 2015-10-18 21:59 - 02037177 _____ C:\Users\Trent\Downloads\taskfree.zip
2015-10-18 21:04 - 2015-10-18 20:55 - 07303271 _____ C:\Users\Trent\Desktop\CBS.log
2015-10-18 19:23 - 2015-10-18 19:23 - 00000844 _____ C:\Users\Trent\Desktop\JRT.txt
2015-10-18 18:53 - 2015-10-18 18:53 - 00000513 _____ C:\Users\Trent\Desktop\jhjhjhjh.txt
2015-10-18 14:12 - 2015-10-18 14:12 - 00000000 ____D C:\Users\Trent\Desktop\Fix Today
2015-10-18 00:49 - 2015-10-18 00:52 - 56755032 _____ C:\Users\Trent\Desktop\test.mp4
2015-10-17 20:03 - 2015-10-17 20:03 - 00000034 _____ C:\Users\Trent\Desktop\fggfgfgfgf.txt
2015-10-16 23:14 - 2015-10-16 23:14 - 00289503 _____ C:\Users\Trent\Desktop\Folk Art _ Skinner Auctioneers.htm
2015-10-16 23:14 - 2015-10-16 23:14 - 00000000 ____D C:\Users\Trent\Desktop\Folk Art _ Skinner Auctioneers_files
2015-10-16 01:57 - 2015-10-16 01:58 - 00000000 ____D C:\Users\Trent\Downloads\bootkit_remover
2015-10-16 01:56 - 2015-10-16 01:56 - 00044607 _____ C:\Users\Trent\Downloads\bootkit_remover.zip
2015-10-16 00:55 - 2015-10-16 00:55 - 01801288 _____ (Malwarebytes) C:\Users\Trent\Desktop\JRT(2).exe
2015-10-16 00:55 - 2015-10-16 00:54 - 05636101 ____R (Swearware) C:\Users\Trent\Desktop\ComboFix.exe
2015-10-16 00:42 - 2015-10-18 19:15 - 00004566 _____ C:\Users\Trent\Desktop\Rkill.txt
2015-10-16 00:26 - 2015-10-16 00:27 - 00045382 _____ C:\Users\Trent\Downloads\Addition.txt
2015-10-16 00:24 - 2015-10-24 19:46 - 00015105 _____ C:\Users\Trent\Downloads\FRST.txt
2015-10-16 00:19 - 2015-10-16 00:20 - 00000000 ____D C:\Users\Trent\Desktop\New folder (9)
2015-10-16 00:19 - 2015-10-16 00:19 - 02019656 _____ (Bleeping Computer, LLC) C:\Users\Trent\Desktop\rkill(1).exe
2015-10-15 23:58 - 2015-10-15 23:58 - 00380416 _____ C:\Users\Trent\Desktop\9y2q50pm.exe
2015-10-15 20:57 - 2015-10-15 21:00 - 00005517 _____ C:\Users\Trent\Downloads\hijackthis.log
2015-10-15 00:34 - 2015-10-15 00:35 - 11336600 _____ (SurfRight B.V.) C:\Users\Trent\Desktop\HitmanPro_x64.exe
2015-10-14 22:17 - 2015-10-14 22:17 - 00001214 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD VDeck.lnk
2015-10-14 21:59 - 2012-08-03 00:27 - 02993296 _____ (VIA Technologies, Inc.) C:\Windows\system32\VIAPropPageExt.dll
2015-10-14 21:59 - 2012-08-03 00:27 - 02206352 _____ (VIA Technologies, Inc.) C:\Windows\system32\Drivers\viahduaa.sys
2015-10-14 21:59 - 2012-08-03 00:27 - 00681104 _____ (VIA Technologies, Inc.) C:\Windows\system32\VIASysFx.dll
2015-10-14 21:40 - 2015-10-14 21:40 - 00000022 _____ C:\Users\Trent\Downloads\Autoruns.zip
2015-10-14 21:40 - 2015-10-14 21:40 - 00000000 ____D C:\Auto
2015-10-13 18:41 - 2015-09-28 22:16 - 05569472 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-10-13 18:41 - 2015-09-28 22:13 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-10-13 18:41 - 2015-09-28 22:11 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-10-13 18:41 - 2015-09-28 22:11 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2015-10-13 18:41 - 2015-09-28 22:11 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-10-13 18:41 - 2015-09-28 22:11 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-10-13 18:41 - 2015-09-28 22:11 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-10-13 18:41 - 2015-09-28 22:11 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-10-13 18:41 - 2015-09-28 22:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-10-13 18:41 - 2015-09-28 22:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-10-13 18:41 - 2015-09-28 22:10 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-10-13 18:41 - 2015-09-28 22:10 - 01164800 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-10-13 18:41 - 2015-09-28 22:10 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-10-13 18:41 - 2015-09-28 22:10 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-10-13 18:41 - 2015-09-28 22:10 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-10-13 18:41 - 2015-09-28 22:10 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-10-13 18:41 - 2015-09-28 22:10 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-10-13 18:41 - 2015-09-28 22:10 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-10-13 18:41 - 2015-09-28 22:10 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-10-13 18:41 - 2015-09-28 22:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-10-13 18:41 - 2015-09-28 22:10 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-10-13 18:41 - 2015-09-28 22:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-10-13 18:41 - 2015-09-28 22:09 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-10-13 18:41 - 2015-09-28 22:05 - 03990976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-10-13 18:41 - 2015-09-28 22:05 - 03936192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-10-13 18:41 - 2015-09-28 22:02 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 21:59 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-10-13 18:41 - 2015-09-28 21:59 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-10-13 18:41 - 2015-09-28 21:59 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-10-13 18:41 - 2015-09-28 21:59 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-10-13 18:41 - 2015-09-28 21:59 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-10-13 18:41 - 2015-09-28 21:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-10-13 18:41 - 2015-09-28 21:58 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-10-13 18:41 - 2015-09-28 21:58 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2015-10-13 18:41 - 2015-09-28 21:58 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-10-13 18:41 - 2015-09-28 21:58 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-10-13 18:41 - 2015-09-28 21:57 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-10-13 18:41 - 2015-09-28 21:57 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-10-13 18:41 - 2015-09-28 21:57 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-10-13 18:41 - 2015-09-28 21:57 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-10-13 18:41 - 2015-09-28 21:49 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-10-13 18:41 - 2015-09-28 21:49 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
Here's my FRST.txt, 1st part:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:25-10-2015
Ran by Trent (administrator) on HELL-PC1 (24-10-2015 19:46:50)
Running from C:\Users\Trent\Downloads
Loaded Profiles: Trent (Available Profiles: Trent)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(VIA) C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.15\GoogleCrashHandler64.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Farbar) C:\Users\Trent\Downloads\FRST64(1).exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1337000 2015-04-30] (Microsoft Corporation)
HKLM-x32\...\Run: [HDAudDeck] => C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [5263504 2012-08-09] (VIA)
HKU\S-1-5-21-3822528139-1650123135-726693888-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-18\...\RunOnce: [iCloud] => "C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe"
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-10-12] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-10-12] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-10-12] (Google)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{53F25C74-60CF-4759-939E-9FC7D98FA93A}: [DhcpNameServer] 192.168.1.254
Internet Explorer:
==================
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3822528139-1650123135-726693888-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
DPF: HKLM-x32 {0E8D0700-75DF-11D3-8B4A-0008C7450C4A} hxxp://www.caminova.net/en/downloads/getmodule.aspx?lang=en
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab
FireFox:
========
FF ProfilePath: C:\Users\Trent\AppData\Roaming\Mozilla\Firefox\Profiles\lrue508o.default
FF DefaultSearchEngine: Google
FF DefaultSearchEngine.US: Google
FF Homepage: hxxps://www.google.com/
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_226.dll [2015-10-18] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_226.dll [2015-10-18] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-01-06] ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2015-02-11] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2015-02-11] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2015-02-11] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2015-02-11] (Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-04-16] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-04-16] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @Motive.com/NpMotive,version=1.1 -> C:\Program Files (x86)\ATT\8.5.0.48\ma\bin\npMotive.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-10-24] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-10-24] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3822528139-1650123135-726693888-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Trent\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-01-26] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-3822528139-1650123135-726693888-1000: CouponNetwork.com/CMDUniversalCouponPrintActivator -> C:\Users\Trent\AppData\Roaming\CATALI~1\NPBCSK~1.DLL [2013-02-14] (Catalina Marketing Corporation)
FF Plugin HKU\S-1-5-21-3822528139-1650123135-726693888-1000: hopster.com/CouponPrinterPlugin -> C:\Users\Trent\AppData\Roaming\Hopster\CouponPrinterPlugin\2.0.2.0\npCouponPrinterPlugin.dll [2013-02-21] (Hopster)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\browser\plugins\npMozCouponPrinter.dll [2015-02-26] (Coupons, Inc.)
FF SearchPlugin: C:\Users\Trent\AppData\Roaming\Mozilla\Firefox\Profiles\lrue508o.default\searchplugins\amazon-search-suggestions.xml [2014-06-21]
FF SearchPlugin: C:\Users\Trent\AppData\Roaming\Mozilla\Firefox\Profiles\lrue508o.default\searchplugins\bookfindercom.xml [2015-10-17]
FF Extension: Flash Video Downloader - YouTube HD Download [4K] - C:\Users\Trent\AppData\Roaming\Mozilla\Firefox\Profiles\lrue508o.default\Extensions\artur.dubovoy@gmail.com [2015-09-24]
FF Extension: Adblock Plus - C:\Users\Trent\AppData\Roaming\Mozilla\Firefox\Profiles\lrue508o.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-09-24]
FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt => not found
Chrome:
=======
CHR Profile: C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-10-24]
CHR Extension: (Google Docs) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-10-24]
CHR Extension: (Google Drive) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-24]
CHR Extension: (YouTube) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-24]
CHR Extension: (Google Search) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-24]
CHR Extension: (Google Sheets) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-10-24]
CHR Extension: (Google Docs Offline) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-10-24]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-10-24]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-10-24]
CHR Extension: (Gmail) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-10-24]
CHR HKU\S-1-5-21-3822528139-1650123135-726693888-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-05-29] (Apple Inc.)
S3 ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [160256 2011-08-30] (Intel Corporation) [File not signed]
S4 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23816 2015-04-30] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [366544 2015-04-30] (Microsoft Corporation)
S4 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH)
S4 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH)
R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27792 2012-08-03] (VIA Technologies, Inc.)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AndNetDiag; C:\Windows\System32\DRIVERS\lgandnetdiag64.sys [30720 2014-10-10] (LG Electronics Inc.)
S3 ANDNetModem; C:\Windows\System32\DRIVERS\lgandnetmodem64.sys [37376 2014-10-10] (LG Electronics Inc.)
R1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [22128 2012-03-08] ()
S4 C7EE2EF2; C:\Windows\System32\drivers\C7EE2EF2.sys [478392 2015-09-25] (Kaspersky Lab ZAO)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 GVTDrv64; C:\Windows\GVTDrv64.sys [30528 2015-10-11] ()
S4 mbamchameleon; C:\Windows\system32\drivers\mbamchameleon.sys [107736 2015-04-09] (Malwarebytes Corporation)
S4 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [136408 2015-04-09] (Malwarebytes Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [280376 2015-03-04] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124568 2015-03-04] (Microsoft Corporation)
S3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [748648 2010-08-12] (Realtek Semiconductor Corporation )
S4 SaiH0109; C:\Windows\System32\DRIVERS\SaiH0109.sys [171144 2007-05-01] (Saitek)
S4 SaiH0160; C:\Windows\System32\DRIVERS\SaiH0160.sys [179584 2008-11-24] (Saitek)
S4 SaiMini; C:\Windows\System32\DRIVERS\SaiMini.sys [25120 2013-04-30] (Saitek)
S4 SaiNtBus; C:\Windows\System32\drivers\SaiBus.sys [52640 2013-04-30] (Saitek)
S4 SaiU0109; C:\Windows\System32\DRIVERS\SaiU0109.sys [34304 2007-05-01] (Saitek)
S4 WiseHDInfo; C:\Windows\WiseHDInfo64.dll [14800 2015-07-21] (wisecleaner.com)
S4 catchme; \??\C:\ComboFix\catchme.sys [X]
S4 MREMP50; \??\C:\PROGRA~2\COMMON~1\Motive\MREMP50.SYS [X]
S4 MREMP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS [X]
S4 MREMPR5; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS [X]
S4 MRENDIS5; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [X]
S4 MRESP50; \??\C:\PROGRA~2\COMMON~1\Motive\MRESP50.SYS [X]
S4 MRESP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS [X]
S4 NVHDA; system32\drivers\nvhda64v.sys [X]
S4 nvvad_WaveExtensible; system32\drivers\nvvad64v.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-10-24 19:46 - 2015-10-24 19:46 - 02196992 _____ (Farbar) C:\Users\Trent\Downloads\FRST64(1).exe
2015-10-24 19:34 - 2015-10-24 19:34 - 00000112 _____ C:\Windows\setupact.log
2015-10-24 19:34 - 2015-10-24 19:34 - 00000000 _____ C:\Windows\setuperr.log
2015-10-24 18:58 - 2015-10-24 18:58 - 02196992 _____ (Farbar) C:\Users\Trent\Downloads\FRST64.exe
2015-10-24 18:56 - 2015-10-24 18:56 - 06677440 _____ (Piriform Ltd) C:\Users\Trent\Downloads\ccsetup510.exe
2015-10-24 18:55 - 2015-10-24 18:55 - 00002790 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2015-10-24 16:42 - 2015-10-24 16:44 - 00000000 ____D C:\Users\Trent\AppData\Local\2Browse
2015-10-24 14:03 - 2015-10-24 14:10 - 00000000 ____D C:\ProgramData\UVK
2015-10-24 14:03 - 2015-10-24 14:03 - 00001806 _____ C:\Users\Public\Desktop\UVK - Ultra Virus Killer.lnk
2015-10-24 13:08 - 2015-10-24 18:19 - 00000000 ___RD C:\Users\Trent\Google Drive
2015-10-24 13:08 - 2015-10-24 13:08 - 00001695 _____ C:\Users\Trent\Desktop\Google Drive.lnk
2015-10-24 13:05 - 2015-10-24 13:05 - 00002042 _____ C:\Users\Public\Desktop\Google Slides.lnk
2015-10-24 13:05 - 2015-10-24 13:05 - 00002040 _____ C:\Users\Public\Desktop\Google Sheets.lnk
2015-10-24 13:05 - 2015-10-24 13:05 - 00002030 _____ C:\Users\Public\Desktop\Google Docs.lnk
2015-10-24 13:05 - 2015-10-24 13:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2015-10-24 13:04 - 2015-10-24 13:04 - 00929872 _____ (Google Inc.) C:\Users\Trent\Downloads\googledrivesync.exe
2015-10-24 13:04 - 2015-10-24 13:04 - 00929872 _____ (Google Inc.) C:\Users\Trent\Downloads\googledrivesync (2).exe
2015-10-24 13:04 - 2015-10-24 13:04 - 00929872 _____ (Google Inc.) C:\Users\Trent\Downloads\googledrivesync (1).exe
2015-10-24 04:37 - 2015-10-24 13:10 - 00000000 ____D C:\Users\Trent\Desktop\New folder (2)
2015-10-24 04:16 - 2015-10-24 04:16 - 00002255 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-10-24 04:16 - 2015-10-24 04:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-10-24 04:15 - 2015-10-24 19:20 - 00000896 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-10-24 04:15 - 2015-10-24 18:18 - 00000892 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-10-24 04:15 - 2015-10-24 04:15 - 00003892 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-10-24 04:15 - 2015-10-24 04:15 - 00003640 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-10-24 04:14 - 2015-10-24 13:05 - 00000000 ____D C:\Users\Trent\AppData\Local\Google
2015-10-24 04:14 - 2015-10-24 13:05 - 00000000 ____D C:\Program Files (x86)\Google
2015-10-24 04:14 - 2015-10-24 04:14 - 00929872 _____ (Google Inc.) C:\Users\Trent\Downloads\ChromeSetup.exe
2015-10-24 04:07 - 2015-10-24 04:39 - 00000000 ____D C:\Users\Trent\AppData\Local\Apple Inc
2015-10-24 03:46 - 2015-10-24 03:46 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2015-10-24 03:38 - 2015-10-24 03:41 - 125138200 _____ (Apple Inc.) C:\Users\Trent\Downloads\icloudsetup.exe
2015-10-24 01:14 - 2015-10-24 01:14 - 00398732 _____ C:\Users\Trent\Desktop\Letters to the Editor April 2, 2013 _ Letters to the Editor _ North Bay Bohemian.htm
2015-10-24 01:14 - 2015-10-24 01:14 - 00000000 ____D C:\Users\Trent\Desktop\Letters to the Editor April 2, 2013 _ Letters to the Editor _ North Bay Bohemian_files
2015-10-23 03:15 - 2015-10-24 02:22 - 00000213 _____ C:\Users\Trent\Desktop\october23.txt
2015-10-22 00:52 - 2015-10-22 00:52 - 00784679 _____ C:\Users\Trent\Desktop\These Florida Tea Partiers plan to set up a secret vigilante court to arrest — and possibly execute — Obama.htm
2015-10-22 00:52 - 2015-10-22 00:52 - 00000000 ____D C:\Users\Trent\Desktop\These Florida Tea Partiers plan to set up a secret vigilante court to arrest — and possibly execute — Obama_files
2015-10-20 13:21 - 2015-10-20 13:21 - 00097114 _____ C:\Users\Trent\Desktop\Transaction History.htm
2015-10-20 13:21 - 2015-10-20 13:21 - 00000000 ____D C:\Users\Trent\Desktop\Transaction History_files
2015-10-20 00:07 - 2015-10-20 00:07 - 00014658 _____ C:\Users\Trent\Desktop\A. Lorene Mullins - Springfield, Missouri (MO) _ Crestleaf.htm
2015-10-20 00:07 - 2015-10-20 00:07 - 00000000 ____D C:\Users\Trent\Desktop\A. Lorene Mullins - Springfield, Missouri (MO) _ Crestleaf_files
2015-10-19 00:24 - 2015-10-19 00:24 - 00221428 _____ C:\Users\Trent\Desktop\Virus and Malware Removal - TechSpot Forums.htm
2015-10-19 00:24 - 2015-10-19 00:24 - 00000000 ____D C:\Users\Trent\Desktop\Virus and Malware Removal - TechSpot Forums_files
2015-10-19 00:21 - 2015-10-19 00:21 - 00293222 _____ C:\Users\Trent\Desktop\Speed Up Windows 7 - Ultimate Tweaks For a Blazing Fast Windows 7.htm
2015-10-19 00:21 - 2015-10-19 00:21 - 00000000 ____D C:\Users\Trent\Desktop\Speed Up Windows 7 - Ultimate Tweaks For a Blazing Fast Windows 7_files
2015-10-18 23:06 - 2015-10-18 23:06 - 00045259 _____ C:\Users\Trent\Desktop\Disable Visual Effects in Windows for Better Performance.htm
2015-10-18 23:06 - 2015-10-18 23:06 - 00000000 ____D C:\Users\Trent\Desktop\Disable Visual Effects in Windows for Better Performance_files
2015-10-18 22:00 - 2015-10-19 01:50 - 00000000 ____D C:\Users\Trent\Desktop\New folder
2015-10-18 21:59 - 2015-10-18 21:59 - 02037177 _____ C:\Users\Trent\Downloads\taskfree.zip
2015-10-18 21:04 - 2015-10-18 20:55 - 07303271 _____ C:\Users\Trent\Desktop\CBS.log
2015-10-18 19:23 - 2015-10-18 19:23 - 00000844 _____ C:\Users\Trent\Desktop\JRT.txt
2015-10-18 18:53 - 2015-10-18 18:53 - 00000513 _____ C:\Users\Trent\Desktop\jhjhjhjh.txt
2015-10-18 14:12 - 2015-10-18 14:12 - 00000000 ____D C:\Users\Trent\Desktop\Fix Today
2015-10-18 00:49 - 2015-10-18 00:52 - 56755032 _____ C:\Users\Trent\Desktop\test.mp4
2015-10-17 20:03 - 2015-10-17 20:03 - 00000034 _____ C:\Users\Trent\Desktop\fggfgfgfgf.txt
2015-10-16 23:14 - 2015-10-16 23:14 - 00289503 _____ C:\Users\Trent\Desktop\Folk Art _ Skinner Auctioneers.htm
2015-10-16 23:14 - 2015-10-16 23:14 - 00000000 ____D C:\Users\Trent\Desktop\Folk Art _ Skinner Auctioneers_files
2015-10-16 01:57 - 2015-10-16 01:58 - 00000000 ____D C:\Users\Trent\Downloads\bootkit_remover
2015-10-16 01:56 - 2015-10-16 01:56 - 00044607 _____ C:\Users\Trent\Downloads\bootkit_remover.zip
2015-10-16 00:55 - 2015-10-16 00:55 - 01801288 _____ (Malwarebytes) C:\Users\Trent\Desktop\JRT(2).exe
2015-10-16 00:55 - 2015-10-16 00:54 - 05636101 ____R (Swearware) C:\Users\Trent\Desktop\ComboFix.exe
2015-10-16 00:42 - 2015-10-18 19:15 - 00004566 _____ C:\Users\Trent\Desktop\Rkill.txt
2015-10-16 00:26 - 2015-10-16 00:27 - 00045382 _____ C:\Users\Trent\Downloads\Addition.txt
2015-10-16 00:24 - 2015-10-24 19:46 - 00015105 _____ C:\Users\Trent\Downloads\FRST.txt
2015-10-16 00:19 - 2015-10-16 00:20 - 00000000 ____D C:\Users\Trent\Desktop\New folder (9)
2015-10-16 00:19 - 2015-10-16 00:19 - 02019656 _____ (Bleeping Computer, LLC) C:\Users\Trent\Desktop\rkill(1).exe
2015-10-15 23:58 - 2015-10-15 23:58 - 00380416 _____ C:\Users\Trent\Desktop\9y2q50pm.exe
2015-10-15 20:57 - 2015-10-15 21:00 - 00005517 _____ C:\Users\Trent\Downloads\hijackthis.log
2015-10-15 00:34 - 2015-10-15 00:35 - 11336600 _____ (SurfRight B.V.) C:\Users\Trent\Desktop\HitmanPro_x64.exe
2015-10-14 22:17 - 2015-10-14 22:17 - 00001214 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD VDeck.lnk
2015-10-14 21:59 - 2012-08-03 00:27 - 02993296 _____ (VIA Technologies, Inc.) C:\Windows\system32\VIAPropPageExt.dll
2015-10-14 21:59 - 2012-08-03 00:27 - 02206352 _____ (VIA Technologies, Inc.) C:\Windows\system32\Drivers\viahduaa.sys
2015-10-14 21:59 - 2012-08-03 00:27 - 00681104 _____ (VIA Technologies, Inc.) C:\Windows\system32\VIASysFx.dll
2015-10-14 21:40 - 2015-10-14 21:40 - 00000022 _____ C:\Users\Trent\Downloads\Autoruns.zip
2015-10-14 21:40 - 2015-10-14 21:40 - 00000000 ____D C:\Auto
2015-10-13 18:41 - 2015-09-28 22:16 - 05569472 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-10-13 18:41 - 2015-09-28 22:13 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-10-13 18:41 - 2015-09-28 22:11 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-10-13 18:41 - 2015-09-28 22:11 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2015-10-13 18:41 - 2015-09-28 22:11 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-10-13 18:41 - 2015-09-28 22:11 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-10-13 18:41 - 2015-09-28 22:11 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-10-13 18:41 - 2015-09-28 22:11 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-10-13 18:41 - 2015-09-28 22:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-10-13 18:41 - 2015-09-28 22:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-10-13 18:41 - 2015-09-28 22:10 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-10-13 18:41 - 2015-09-28 22:10 - 01164800 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-10-13 18:41 - 2015-09-28 22:10 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-10-13 18:41 - 2015-09-28 22:10 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-10-13 18:41 - 2015-09-28 22:10 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-10-13 18:41 - 2015-09-28 22:10 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-10-13 18:41 - 2015-09-28 22:10 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-10-13 18:41 - 2015-09-28 22:10 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-10-13 18:41 - 2015-09-28 22:10 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-10-13 18:41 - 2015-09-28 22:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-10-13 18:41 - 2015-09-28 22:10 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-10-13 18:41 - 2015-09-28 22:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-10-13 18:41 - 2015-09-28 22:09 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-10-13 18:41 - 2015-09-28 22:05 - 03990976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-10-13 18:41 - 2015-09-28 22:05 - 03936192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-10-13 18:41 - 2015-09-28 22:02 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 22:01 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-10-13 18:41 - 2015-09-28 21:59 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-10-13 18:41 - 2015-09-28 21:59 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-10-13 18:41 - 2015-09-28 21:59 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-10-13 18:41 - 2015-09-28 21:59 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-10-13 18:41 - 2015-09-28 21:59 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-10-13 18:41 - 2015-09-28 21:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-10-13 18:41 - 2015-09-28 21:58 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-10-13 18:41 - 2015-09-28 21:58 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2015-10-13 18:41 - 2015-09-28 21:58 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-10-13 18:41 - 2015-09-28 21:58 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-10-13 18:41 - 2015-09-28 21:57 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-10-13 18:41 - 2015-09-28 21:57 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-10-13 18:41 - 2015-09-28 21:57 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-10-13 18:41 - 2015-09-28 21:57 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-10-13 18:41 - 2015-09-28 21:49 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-10-13 18:41 - 2015-09-28 21:49 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll