Here's the first one:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 05-01-2014
Ran by ethornburg (administrator) on ELEKTRA on 08-01-2014 03:40:05
Running from C:\Users\ethornburg\Downloads
Windows 8.1 (X64) OS Language: English(US)
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AMD) C:\Windows\System32\atiesrxx.exe
(Emsisoft GmbH) C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler64.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(Hewlett-Packard ) C:\Program Files\IDT\WDM\Beats64.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(alch) C:\Program Files (x86)\ClamWin\bin\ClamTray.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
(Farbar) C:\Users\ethornburg\Downloads\FRST64(2).exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [BeatsOSDApp] - C:\Program Files\IDT\WDM\Beats64.exe [41664 2012-08-22] (Hewlett-Packard )
HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [1702912 2013-01-30] (IDT, Inc.)
HKLM-x32\...\Run: [ClamWin] - C:\Program Files (x86)\ClamWin\bin\ClamTray.exe [86016 2013-10-18] (alch)
HKLM-x32\...\Run: [emsisoft anti-malware] - C:\Program Files (x86)\Emsisoft Anti-Malware\a2guard.exe [4329408 2013-12-04] (Emsisoft GmbH)
Startup: C:\Users\ethornburg\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk
ShortcutTarget: Adobe Gamma.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
BootExecute: autocheck autochk * sdnclean64.exe
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://google.com/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://g.msn.com/HPDSK13/1
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://g.msn.com/HPDSK13/1
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://g.msn.com/HPDSK13/1
SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPDTDFJS
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPDTDFJS
SearchScopes: HKLM - {4BD891B3-3CF0-4049-9996-6AD339BE6230} URL =
http://www.amazon.com/s/ref=azs_osd...ode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL =
http://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
SearchScopes: HKLM-x32 - {4BD891B3-3CF0-4049-9996-6AD339BE6230} URL =
http://www.amazon.com/s/ref=azs_osd...ode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL =
http://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPDTDFJS
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPDTDFJS
SearchScopes: HKCU - {4BD891B3-3CF0-4049-9996-6AD339BE6230} URL =
http://www.amazon.com/s/ref=azs_osd...ode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL =
http://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\MSOSB.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
FireFox:
========
FF ProfilePath: C:\Users\ethornburg\AppData\Roaming\Mozilla\Firefox\Profiles\azy8u0j6.default
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF Extension: Pin It button - C:\Users\ethornburg\AppData\Roaming\Mozilla\Firefox\Profiles\azy8u0j6.default\Extensions\
pinterest@robertnyman.com.xpi
FF Extension: Remove Cookies for Site - C:\Users\ethornburg\AppData\Roaming\Mozilla\Firefox\Profiles\azy8u0j6.default\Extensions\{06997db0-c027-4d5f-bd37-b0d9230226ea}.xpi
FF Extension: Cookie Monster - C:\Users\ethornburg\AppData\Roaming\Mozilla\Firefox\Profiles\azy8u0j6.default\Extensions\{45d8ff86-d909-11db-9705-005056c00008}.xpi
FF Extension: Adblock Plus - C:\Users\ethornburg\AppData\Roaming\Mozilla\Firefox\Profiles\azy8u0j6.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
Chrome:
=======
CHR Extension: (Google Docs) - C:\Users\ethornburg\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_1
CHR Extension: (Google Drive) - C:\Users\ethornburg\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_1
CHR Extension: (YouTube) - C:\Users\ethornburg\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_1
CHR Extension: (Google Search) - C:\Users\ethornburg\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1
CHR Extension: (Google Wallet) - C:\Users\ethornburg\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0
CHR Extension: (Gmail) - C:\Users\ethornburg\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
==================== Services (Whitelisted) =================
R2 a2AntiMalware; C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe [4161512 2013-12-04] (Emsisoft GmbH)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 OfficeSvc; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [1907896 2013-11-02] (Microsoft Corporation)
S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2013-11-21] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
R3 a2acc; C:\PROGRAM FILES (X86)\EMSISOFT ANTI-MALWARE\a2accx64.sys [70960 2013-08-24] (Emsisoft GmbH)
R1 A2DDA; C:\EEK\RUN\a2ddax64.sys [26176 2014-01-03] (Emsisoft GmbH)
S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)
R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [36520 2012-09-13] (Advanced Micro Devices, Inc.)
S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-12] (Windows (R) Win 7 DDK provider)
R3 cleanhlp; C:\Program Files (x86)\Emsisoft Anti-Malware\cleanhlp64.sys [57024 2013-12-04] (Emsisoft GmbH)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink)
S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation)
S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation)
S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-09] (Intel Corporation)
R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-10] (Microsoft Corporation)
S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)
S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)
S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation)
S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-25] (Microsoft Corporation)
S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-11-21] (Microsoft Corporation)
S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-01-08 03:39 - 2014-01-08 03:39 - 01931762 _____ (Farbar) C:\Users\ethornburg\Downloads\FRST64(2).exe
2014-01-08 03:36 - 2014-01-08 03:36 - 01931762 _____ (Farbar) C:\Users\ethornburg\Downloads\FRST64(1).exe
2014-01-07 11:31 - 2014-01-07 11:31 - 05160001 _____ (Swearware) C:\Users\ethornburg\Downloads\ComboFix.exe
2014-01-07 11:10 - 2014-01-07 11:10 - 01059064 _____ (Bleeping Computer, LLC) C:\Users\ethornburg\Desktop\iExplore64-25915.exe
2014-01-07 11:06 - 2014-01-07 11:06 - 05160001 _____ (Swearware) C:\Users\ethornburg\Desktop\ethornburg.exe
2014-01-07 11:03 - 2014-01-07 11:03 - 01937144 _____ (Bleeping Computer, LLC) C:\Users\ethornburg\Downloads\iExplore.exe
2014-01-06 01:43 - 2014-01-06 03:09 - 00117464 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-01-06 01:42 - 2014-01-06 03:44 - 00000000 ____D C:\Users\ethornburg\Desktop\mbar
2014-01-06 01:42 - 2014-01-06 01:42 - 12582688 _____ (Malwarebytes Corp.) C:\Users\ethornburg\Downloads\mbar-1.07.0.1008.exe
2014-01-06 01:37 - 2014-01-06 01:40 - 00000000 ____D C:\Users\ethornburg\Desktop\RK_Quarantine
2014-01-05 20:52 - 2014-01-05 20:52 - 00000000 ____D C:\Users\ethornburg\Desktop\rkill
2014-01-05 20:51 - 2014-01-07 11:04 - 01937144 _____ (Bleeping Computer, LLC) C:\Users\ethornburg\Desktop\rkill.exe
2014-01-04 15:46 - 2014-01-08 03:40 - 00012567 _____ C:\Users\ethornburg\Downloads\FRST.txt
2014-01-04 15:46 - 2014-01-04 15:46 - 00000000 ____D C:\FRST
2014-01-04 15:45 - 2014-01-04 15:45 - 01931368 _____ (Farbar) C:\Users\ethornburg\Downloads\FRST64.exe
2014-01-03 03:32 - 2014-01-03 03:32 - 00003180 _____ C:\WINDOWS\System32\Tasks\{6E5F516C-5F22-4FD3-B626-EF47AEA717A6}
2014-01-03 03:30 - 2014-01-03 03:30 - 00000085 _____ C:\WINDOWS\wininit.ini
2014-01-03 03:30 - 2014-01-03 03:30 - 00000000 ____D C:\WINDOWS\System32\Tasks\Safer-Networking
2014-01-03 03:23 - 2014-01-03 03:23 - 00000086 _____ C:\Users\ethornburg\Desktop\link.txt
2014-01-03 03:11 - 2014-01-03 03:11 - 00688992 _____ (Swearware) C:\Users\ethornburg\Desktop\dds.com
2014-01-03 03:00 - 2014-01-03 03:00 - 00000000 ____D C:\Program Files (x86)\ESET
2014-01-03 02:29 - 2014-01-03 02:29 - 00009722 _____ C:\Users\ethornburg\Downloads\hijackthis.log
2014-01-03 02:29 - 2014-01-03 02:29 - 00009722 _____ C:\Users\ethornburg\Desktop\hijackthis.log
2014-01-03 02:28 - 2014-01-03 02:28 - 00388608 _____ (Trend Micro Inc.) C:\Users\ethornburg\Downloads\HijackThis.exe
2014-01-03 02:28 - 2014-01-03 02:28 - 00000000 ____D C:\Users\ethornburg\Downloads\TMRBLog
2014-01-03 02:24 - 2014-01-06 03:04 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-01-03 02:24 - 2014-01-03 03:30 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2014-01-03 02:24 - 2014-01-03 02:24 - 00000656 _____ C:\WINDOWS\Tasks\Check for updates (Spybot - Search & Destroy).job
2014-01-03 02:24 - 2014-01-03 02:24 - 00000628 _____ C:\WINDOWS\Tasks\Refresh immunization (Spybot - Search & Destroy).job
2014-01-03 02:24 - 2014-01-03 02:24 - 00000458 _____ C:\WINDOWS\Tasks\Scan the system (Spybot - Search & Destroy).job
2014-01-03 01:50 - 2014-01-03 03:31 - 00000000 ____D C:\Program Files (x86)\Belarc
2014-01-03 01:50 - 2014-01-03 01:50 - 00002147 _____ C:\Users\ethornburg\Belarc Advisor.lnk
2014-01-03 01:45 - 2014-01-03 01:45 - 25647320 _____ (Microsoft Corporation) C:\Users\ethornburg\Downloads\Windows-KB890830-x64-V5.7.exe
2014-01-03 01:39 - 2014-01-03 01:39 - 00000094 _____ C:\index.ini
2014-01-03 01:27 - 2014-01-08 03:33 - 00000000 ____D C:\Program Files (x86)\Emsisoft Anti-Malware
2014-01-03 01:27 - 2014-01-03 01:27 - 00001114 _____ C:\Users\ethornburg\Emsisoft Anti-Malware.lnk
2014-01-03 01:27 - 2014-01-03 01:27 - 00000000 ____D C:\Users\ethornburg\Documents\Anti-Malware
2014-01-03 01:26 - 2014-01-03 01:26 - 00000561 _____ C:\Users\ethornburg\Emsisoft Emergency Kit.lnk
2014-01-03 01:26 - 2014-01-03 01:26 - 00000000 ____D C:\EEK
2013-12-21 00:16 - 2013-12-21 00:16 - 00001768 _____ C:\Users\ethornburg\college review.txt
2013-12-17 04:46 - 2013-12-17 04:46 - 00000000 _____ C:\ProgramData\0x0304A000.sfl
2013-12-15 20:15 - 2013-12-15 20:15 - 00000000 ____D C:\Users\ethornburg\AppData\Local\Windows Live
2013-12-15 20:05 - 2013-12-15 20:07 - 00000000 ____D C:\Users\ethornburg\Desktop\newpinkphonedecember
2013-12-15 16:01 - 2013-11-11 17:27 - 00701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2013-12-15 16:01 - 2013-11-11 17:24 - 00840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2013-12-15 16:01 - 2013-11-10 20:48 - 00039768 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2013-12-15 16:01 - 2013-11-09 05:55 - 00325464 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2013-12-15 16:01 - 2013-11-09 00:37 - 01756160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2013-12-15 16:01 - 2013-11-08 23:56 - 01391104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2013-12-15 16:01 - 2013-11-08 04:26 - 00358896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2013-12-15 16:01 - 2013-11-07 22:43 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2013-12-15 16:01 - 2013-11-07 22:28 - 13177344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2013-12-15 16:01 - 2013-11-07 22:26 - 11674624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2013-12-15 16:01 - 2013-11-07 22:16 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2013-12-15 16:01 - 2013-11-07 22:15 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2013-12-15 16:01 - 2013-11-07 21:14 - 00922624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2013-12-15 16:01 - 2013-11-05 08:19 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2013-12-15 16:01 - 2013-11-05 08:03 - 00637952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2013-12-15 16:01 - 2013-11-05 07:57 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2013-12-15 16:01 - 2013-11-05 07:33 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2013-12-15 16:01 - 2013-11-05 07:32 - 00744448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2013-12-15 16:01 - 2013-11-04 11:13 - 01530200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2013-12-15 16:01 - 2013-11-04 07:07 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2013-12-15 16:01 - 2013-11-04 04:32 - 02570240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2013-12-15 16:01 - 2013-11-03 20:28 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll
2013-12-15 16:01 - 2013-11-01 05:39 - 00086872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2013-12-15 16:01 - 2013-11-01 00:08 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2013-12-15 16:01 - 2013-10-30 18:58 - 00372568 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2013-12-15 16:01 - 2013-10-30 18:42 - 07399256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2013-12-15 16:01 - 2013-10-30 18:33 - 01642016 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2013-12-15 16:01 - 2013-10-30 18:33 - 01506680 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2013-12-15 16:01 - 2013-10-30 18:33 - 01476184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2013-12-15 16:01 - 2013-10-30 18:33 - 01345536 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2013-12-15 16:01 - 2013-10-25 19:54 - 00146776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\SerCx2.sys
2013-12-15 16:01 - 2013-10-24 03:31 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll
2013-12-15 16:01 - 2013-10-24 03:12 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll
2013-12-15 16:01 - 2013-10-17 05:21 - 02896896 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2013-12-15 16:01 - 2013-10-17 04:36 - 02266624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2013-12-15 16:00 - 2013-11-11 17:41 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2013-12-15 16:00 - 2013-11-11 17:40 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2013-12-15 16:00 - 2013-11-07 22:07 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2013-12-15 16:00 - 2013-11-07 21:41 - 01302528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2013-12-15 16:00 - 2013-11-04 11:13 - 00382808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2013-12-15 16:00 - 2013-11-04 05:50 - 02143744 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2013-12-15 16:00 - 2013-11-03 19:30 - 01765376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2013-12-15 16:00 - 2013-10-31 23:57 - 00544768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2013-12-15 16:00 - 2013-10-05 08:21 - 02140888 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2013-12-15 16:00 - 2013-10-05 08:21 - 00516496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2013-12-15 16:00 - 2013-10-05 06:05 - 01765384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2013-12-15 16:00 - 2013-10-05 06:05 - 00406400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2013-12-13 22:18 - 2013-12-13 22:18 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2013-12-12 14:13 - 2013-12-12 14:13 - 00000000 ____D C:\ProgramData\SUPERAntiSpyware.com
2013-12-11 12:38 - 2013-12-11 12:38 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-12-11 09:30 - 2013-11-26 05:54 - 23183360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2013-12-11 09:30 - 2013-11-26 04:11 - 17112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2013-12-11 09:30 - 2013-11-26 03:41 - 02764288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2013-12-11 09:30 - 2013-11-26 02:57 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2013-12-11 09:30 - 2013-11-26 02:38 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2013-12-11 09:30 - 2013-11-26 02:35 - 05769216 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2013-12-11 09:30 - 2013-11-26 02:16 - 04243968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2013-12-11 09:30 - 2013-11-26 02:02 - 01995264 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2013-12-11 09:30 - 2013-11-26 01:48 - 12996608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2013-12-11 09:30 - 2013-11-26 01:32 - 01928192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2013-12-11 09:30 - 2013-11-26 01:26 - 11221504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2013-12-11 09:30 - 2013-11-26 01:07 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2013-12-11 09:30 - 2013-11-26 00:40 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2013-12-11 09:30 - 2013-11-26 00:34 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2013-12-11 09:30 - 2013-11-26 00:34 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2013-12-11 09:30 - 2013-11-26 00:33 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2013-12-11 09:30 - 2013-11-26 00:27 - 01157632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2013-12-11 09:30 - 2013-11-22 22:34 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2013-12-11 09:30 - 2013-11-22 22:13 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2013-12-11 09:30 - 2013-11-22 21:32 - 04105728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2013-12-11 09:30 - 2013-11-22 21:10 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2013-12-11 09:30 - 2013-11-09 00:34 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2013-12-11 09:30 - 2013-11-09 00:34 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2013-12-11 09:30 - 2013-11-08 23:52 - 00240128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2013-12-11 09:30 - 2013-11-08 01:21 - 04191744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2013-12-11 09:30 - 2013-10-19 02:53 - 00075360 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll
2013-12-11 09:30 - 2013-10-19 01:14 - 00070680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll
2013-12-11 09:30 - 2013-10-15 02:54 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
2013-12-11 09:30 - 2013-10-15 02:03 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll
==================== One Month Modified Files and Folders =======
2014-01-08 03:40 - 2014-01-04 15:46 - 00012567 _____ C:\Users\ethornburg\Downloads\FRST.txt
2014-01-08 03:39 - 2014-01-08 03:39 - 01931762 _____ (Farbar) C:\Users\ethornburg\Downloads\FRST64(2).exe
2014-01-08 03:37 - 2013-09-14 06:34 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-01-08 03:36 - 2014-01-08 03:36 - 01931762 _____ (Farbar) C:\Users\ethornburg\Downloads\FRST64(1).exe
2014-01-08 03:36 - 2013-08-19 01:22 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4023594482-3414480012-3205234707-1001
2014-01-08 03:33 - 2014-01-03 01:27 - 00000000 ____D C:\Program Files (x86)\Emsisoft Anti-Malware
2014-01-08 03:31 - 2013-11-21 14:50 - 02007754 _____ C:\WINDOWS\WindowsUpdate.log
2014-01-08 03:31 - 2013-08-22 09:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2014-01-08 03:31 - 2013-08-17 16:23 - 00000000 ____D C:\Users\ethornburg\AppData\Local\Packages
2014-01-08 03:23 - 2013-08-22 09:36 - 00000000 ____D C:\WINDOWS\system32\sru
2014-01-08 03:22 - 2013-09-24 05:23 - 00002210 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2014-01-08 03:22 - 2013-09-24 05:22 - 00000918 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-01-07 12:09 - 2013-09-24 05:22 - 00000922 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-01-07 11:32 - 2013-11-21 14:36 - 00000000 ____D C:\Users\ethornburg
2014-01-07 11:31 - 2014-01-07 11:31 - 05160001 _____ (Swearware) C:\Users\ethornburg\Downloads\ComboFix.exe
2014-01-07 11:26 - 2013-08-22 08:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2014-01-07 11:10 - 2014-01-07 11:10 - 01059064 _____ (Bleeping Computer, LLC) C:\Users\ethornburg\Desktop\iExplore64-25915.exe
2014-01-07 11:06 - 2014-01-07 11:06 - 05160001 _____ (Swearware) C:\Users\ethornburg\Desktop\ethornburg.exe
2014-01-07 11:06 - 2013-08-17 16:25 - 00003942 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{04D6CABB-6E1D-45E7-8972-2F4D5FD4B5D4}
2014-01-07 11:04 - 2014-01-05 20:51 - 01937144 _____ (Bleeping Computer, LLC) C:\Users\ethornburg\Desktop\rkill.exe
2014-01-07 11:03 - 2014-01-07 11:03 - 01937144 _____ (Bleeping Computer, LLC) C:\Users\ethornburg\Downloads\iExplore.exe
2014-01-06 03:44 - 2014-01-06 01:42 - 00000000 ____D C:\Users\ethornburg\Desktop\mbar
2014-01-06 03:09 - 2014-01-06 01:43 - 00117464 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-01-06 03:09 - 2013-11-29 02:08 - 00089304 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2014-01-06 03:04 - 2014-01-03 02:24 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-01-06 03:04 - 2013-09-29 21:55 - 01688626 _____ C:\WINDOWS\PFRO.log
2014-01-06 03:04 - 2013-09-29 21:51 - 00000000 ____D C:\WINDOWS\ShellNew
2014-01-06 01:42 - 2014-01-06 01:42 - 12582688 _____ (Malwarebytes Corp.) C:\Users\ethornburg\Downloads\mbar-1.07.0.1008.exe
2014-01-06 01:40 - 2014-01-06 01:37 - 00000000 ____D C:\Users\ethornburg\Desktop\RK_Quarantine
2014-01-05 20:52 - 2014-01-05 20:52 - 00000000 ____D C:\Users\ethornburg\Desktop\rkill
2014-01-04 15:46 - 2014-01-04 15:46 - 00000000 ____D C:\FRST
2014-01-04 15:46 - 2013-11-29 01:27 - 00027856 _____ C:\Users\ethornburg\Downloads\Addition.txt
2014-01-04 15:45 - 2014-01-04 15:45 - 01931368 _____ (Farbar) C:\Users\ethornburg\Downloads\FRST64.exe
2014-01-03 03:32 - 2014-01-03 03:32 - 00003180 _____ C:\WINDOWS\System32\Tasks\{6E5F516C-5F22-4FD3-B626-EF47AEA717A6}
2014-01-03 03:31 - 2014-01-03 01:50 - 00000000 ____D C:\Program Files (x86)\Belarc
2014-01-03 03:30 - 2014-01-03 03:30 - 00000085 _____ C:\WINDOWS\wininit.ini
2014-01-03 03:30 - 2014-01-03 03:30 - 00000000 ____D C:\WINDOWS\System32\Tasks\Safer-Networking
2014-01-03 03:30 - 2014-01-03 02:24 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2014-01-03 03:23 - 2014-01-03 03:23 - 00000086 _____ C:\Users\ethornburg\Desktop\link.txt
2014-01-03 03:21 - 2013-11-29 01:56 - 00001132 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-01-03 03:21 - 2013-11-29 01:56 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-03 03:11 - 2014-01-03 03:11 - 00688992 _____ (Swearware) C:\Users\ethornburg\Desktop\dds.com
2014-01-03 03:00 - 2014-01-03 03:00 - 00000000 ____D C:\Program Files (x86)\ESET
2014-01-03 02:29 - 2014-01-03 02:29 - 00009722 _____ C:\Users\ethornburg\Downloads\hijackthis.log
2014-01-03 02:29 - 2014-01-03 02:29 - 00009722 _____ C:\Users\ethornburg\Desktop\hijackthis.log
2014-01-03 02:28 - 2014-01-03 02:28 - 00388608 _____ (Trend Micro Inc.) C:\Users\ethornburg\Downloads\HijackThis.exe
2014-01-03 02:28 - 2014-01-03 02:28 - 00000000 ____D C:\Users\ethornburg\Downloads\TMRBLog
2014-01-03 02:24 - 2014-01-03 02:24 - 00000656 _____ C:\WINDOWS\Tasks\Check for updates (Spybot - Search & Destroy).job
2014-01-03 02:24 - 2014-01-03 02:24 - 00000628 _____ C:\WINDOWS\Tasks\Refresh immunization (Spybot - Search & Destroy).job
2014-01-03 02:24 - 2014-01-03 02:24 - 00000458 _____ C:\WINDOWS\Tasks\Scan the system (Spybot - Search & Destroy).job
2014-01-03 01:50 - 2014-01-03 01:50 - 00002147 _____ C:\Users\ethornburg\Belarc Advisor.lnk
2014-01-03 01:45 - 2014-01-03 01:45 - 25647320 _____ (Microsoft Corporation) C:\Users\ethornburg\Downloads\Windows-KB890830-x64-V5.7.exe
2014-01-03 01:39 - 2014-01-03 01:39 - 00000094 _____ C:\index.ini
2014-01-03 01:37 - 2013-08-22 07:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2014-01-03 01:27 - 2014-01-03 01:27 - 00001114 _____ C:\Users\ethornburg\Emsisoft Anti-Malware.lnk
2014-01-03 01:27 - 2014-01-03 01:27 - 00000000 ____D C:\Users\ethornburg\Documents\Anti-Malware
2014-01-03 01:26 - 2014-01-03 01:26 - 00000561 _____ C:\Users\ethornburg\Emsisoft Emergency Kit.lnk
2014-01-03 01:26 - 2014-01-03 01:26 - 00000000 ____D C:\EEK
2014-01-02 23:55 - 2013-09-29 22:04 - 00956476 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2014-01-02 23:51 - 2013-08-22 08:46 - 00297821 _____ C:\WINDOWS\setupact.log
2013-12-21 00:16 - 2013-12-21 00:16 - 00001768 _____ C:\Users\ethornburg\college review.txt
2013-12-18 02:40 - 2013-10-29 20:19 - 00000000 ____D C:\TDSSKiller_Quarantine
2013-12-18 02:09 - 2013-08-22 09:36 - 00000000 ____D C:\WINDOWS\rescache
2013-12-18 01:43 - 2013-11-29 05:27 - 00000000 ____D C:\ProgramData\Panda Security
2013-12-18 01:43 - 2013-08-22 08:44 - 00484272 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2013-12-18 01:43 - 2013-05-15 14:30 - 00000000 ____D C:\ProgramData\Norton
2013-12-18 01:21 - 2013-08-22 07:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM
2013-12-18 01:21 - 2012-07-26 02:12 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2013-12-18 01:17 - 2013-11-29 05:28 - 00000000 ____D C:\Users\ethornburg\AppData\Roaming\Panda Security
2013-12-17 04:46 - 2013-12-17 04:46 - 00000000 _____ C:\ProgramData\0x0304A000.sfl
2013-12-17 04:45 - 2013-08-22 09:36 - 00000000 ___RD C:\WINDOWS\ToastData
2013-12-17 04:45 - 2013-08-22 09:36 - 00000000 ____D C:\WINDOWS\WinStore
2013-12-17 04:45 - 2013-08-22 09:36 - 00000000 ____D C:\WINDOWS\MediaViewer
2013-12-17 04:45 - 2013-08-22 09:36 - 00000000 ____D C:\WINDOWS\FileManager
2013-12-17 04:45 - 2013-08-22 09:36 - 00000000 ____D C:\WINDOWS\Camera
2013-12-16 20:32 - 2013-11-15 04:14 - 00000000 ____D C:\Users\ethornburg\AppData\Local\Last.fm
2013-12-15 20:21 - 2013-09-14 06:47 - 00000000 ____D C:\Users\ethornburg\AppData\Roaming\vlc
2013-12-15 20:15 - 2013-12-15 20:15 - 00000000 ____D C:\Users\ethornburg\AppData\Local\Windows Live
2013-12-15 20:07 - 2013-12-15 20:05 - 00000000 ____D C:\Users\ethornburg\Desktop\newpinkphonedecember
2013-12-15 16:13 - 2013-09-14 06:34 - 00000000 ____D C:\WINDOWS\system32\MRT
2013-12-13 22:18 - 2013-12-13 22:18 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2013-12-12 14:13 - 2013-12-12 14:13 - 00000000 ____D C:\ProgramData\SUPERAntiSpyware.com
2013-12-12 08:52 - 2013-10-29 14:00 - 00000000 ____D C:\Program Files\Microsoft Office 15
2013-12-12 08:35 - 2013-08-19 02:09 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-11 12:38 - 2013-12-11 12:38 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-12-10 12:37 - 2013-09-14 06:34 - 00003718 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2013-12-09 17:04 - 2013-09-24 05:22 - 00003894 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2013-12-09 17:04 - 2013-09-24 05:22 - 00003658 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2013-12-09 16:52 - 2013-11-29 17:44 - 00000000 ____D C:\Users\ethornburg\nikon
Some content of TEMP:
====================
C:\Users\ethornburg\AppData\Local\Temp\avgnt.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-01-07 11:37
==================== End Of Log ============================