Tech Support Guy banner
  • IMPORTANT: Only authorized members may reply to threads in this forum due to the complexity of the malware removal process. Authorized members include Malware Specialists and Trainees, Administrators, Moderators, and Trusted Advisors. Regular members are not permitted to reply, and any such posts will be deleted without notice or further explanation. Notice

Computer slow, flash program freezes videos.

4161 Views 50 Replies 2 Participants Last post by  Cookiegal
Some videos won't play at all; others freeze/pause very frequently. FYI, I'm an old guy who came to computing late in life. I'm not stupid, just don't know a lot about computers. I will do my best to follow your instructions.

Thanks, Boyd Bilbo.

Tech Support Guy System Info Utility version 1.0.0.2
OS Version: Microsoft Windows 7 Home Premium, Service Pack 1, 64 bit
Processor: Intel(R) Core(TM) i3-2350M CPU @ 2.30GHz, Intel64 Family 6 Model 42 Stepping 7
Processor Count: 4
RAM: 4043 Mb
Graphics Card: Intel(R) HD Graphics Family, 1797 Mb
Hard Drives: C: Total - 584792 MB, Free - 461338 MB; D: Total - 21422 MB, Free - 2278 MB; E: Total - 4055 MB, Free - 10 MB;
Motherboard: Hewlett-Packard, 1695
Antivirus: avast! Antivirus, Updated and Enabled
Status
Not open for further replies.
1 - 20 of 51 Posts
Please download ADWCleaner. Click on the Download Now button and save it to your desktop.

Close your browser and double-click on the AdwCleaner icon on your desktop to run the program.

Click on the Scan button. It may take several minutes to complete. When it is done click on the Report button and copy and paste the log here please.
# AdwCleaner v3.309 - Report created 06/09/2014 at 14:04:13
# Updated 02/09/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : boydphoto - BOYDPHOTO-HP
# Running from : C:\Users\boydphoto\Downloads\AdwCleaner(1).exe
# Option : Scan

***** [ Services ] *****

***** [ Files / Folders ] *****

Folder Found : C:\ProgramData\Windows Genuine Advantage
Folder Found : C:\Users\boydphoto\AppData\Roaming\SecureSearch

***** [ Scheduled Tasks ] *****

***** [ Shortcuts ] *****

***** [ Registry ] *****

Key Found : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.superfish.com
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
Key Found : HKCU\Software\usyndication.com
Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
Key Found : [x64] HKCU\Software\usyndication.com
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62155D33-3CE2-401E-8967-5A270628A3D5}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6C97A91E-4524-4019-86AF-2AA2D567BF5C}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Toolbar Cleaner
Key Found : [x64] HKLM\SOFTWARE\Classes\CLSID\{6C97A91E-4524-4019-86AF-2AA2D567BF5C}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62155D33-3CE2-401E-8967-5A270628A3D5}
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
Key Found : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1A594BF8F3A4D1C4DB72F3A32B6E7636

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17239

-\\ Mozilla Firefox v31.0 (x86 en-US)

[ File : C:\Users\boydphoto\AppData\Roaming\Mozilla\Firefox\Profiles\5aoqihta.default-1406917539670\prefs.js ]

-\\ Google Chrome v

*************************

AdwCleaner[R11].txt - [4552 octets] - [09/08/2014 15:54:45]
AdwCleaner[R12].txt - [2097 octets] - [06/09/2014 14:04:13]
AdwCleaner[S8].txt - [3749 octets] - [09/08/2014 16:26:59]

########## EOF - C:\AdwCleaner\AdwCleaner[R12].txt - [2218 octets] ##########
See less See more
Please run AdwCleaner again and this time select the option to "clean" and then post the new log.
# AdwCleaner v3.309 - Report created 06/09/2014 at 15:53:14
# Updated 02/09/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : boydphoto - BOYDPHOTO-HP
# Running from : C:\Users\boydphoto\Downloads\AdwCleaner(2).exe
# Option : Clean

***** [ Services ] *****

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\Windows Genuine Advantage
Folder Deleted : C:\Users\boydphoto\AppData\Roaming\SecureSearch

***** [ Scheduled Tasks ] *****

***** [ Shortcuts ] *****

***** [ Registry ] *****

Key Deleted : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.superfish.com
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6C97A91E-4524-4019-86AF-2AA2D567BF5C}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62155D33-3CE2-401E-8967-5A270628A3D5}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{6C97A91E-4524-4019-86AF-2AA2D567BF5C}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62155D33-3CE2-401E-8967-5A270628A3D5}
Key Deleted : HKCU\Software\usyndication.com
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Toolbar Cleaner
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\1A594BF8F3A4D1C4DB72F3A32B6E7636

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17239

-\\ Mozilla Firefox v31.0 (x86 en-US)

[ File : C:\Users\boydphoto\AppData\Roaming\Mozilla\Firefox\Profiles\5aoqihta.default-1406917539670\prefs.js ]

-\\ Google Chrome v

*************************

AdwCleaner[R11].txt - [4552 octets] - [09/08/2014 15:54:45]
AdwCleaner[R12].txt - [2323 octets] - [06/09/2014 14:04:13]
AdwCleaner[R13].txt - [2384 octets] - [06/09/2014 15:50:32]
AdwCleaner[S8].txt - [3749 octets] - [09/08/2014 16:26:59]
AdwCleaner[S9].txt - [2149 octets] - [06/09/2014 15:53:14]

########## EOF - C:\AdwCleaner\AdwCleaner[S9].txt - [2209 octets] ##########
See less See more
Please download FRST (Farbar Recovery Scan Tool) and save it to your desktop. Be Sure to save it to your desktop as you didn't do that with the last program.

Note: You need to run the version that's compatible with your system (32-bit or 64-bit).

  • Double-click FRST to run it. When the tool opens click Yes to the disclaimer.
  • Press the Scan button.
  • It will make a log named (FRST.txt) in the same directory the tool is run (which should be on the desktop). Please copy and paste the contents of the log in your reply.
  • The first time the tool is run it makes a second log named (Addition.txt). Please copy and paste the contents of that log as well.
Hi. How do I save it to my desktop? I right-click and don't see an option as far as where to save it.

Thanks.
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-09-2014
Ran by boydphoto at 2014-09-06 18:27:46
Running from C:\Users\boydphoto\Downloads
Boot Mode: Normal
==========================================================

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat X Pro - English, Français, Deutsch (HKLM-x32\...\{AC76BA86-1033-F400-7760-000000000005}) (Version: 10.1.11 - Adobe Systems)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 14.0.0.178 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 14.0.0.178 - Adobe Systems Incorporated) Hidden
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 2.2.0.248 - Adobe Systems Incorporated)
Adobe Digital Editions 3.0 (HKLM-x32\...\Adobe Digital Editions 3.0) (Version: 3.0 - Adobe Systems Incorporated)
Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.179 - Adobe Systems Incorporated)
Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated)
Adobe Help Manager (x32 Version: 4.0.244 - Adobe Systems Incorporated) Hidden
Adobe Photoshop Lightroom 4 64-bit (HKLM\...\{669A82E0-43E2-4645-8A2E-1A3DE78F8312}) (Version: 4.0.1 - Adobe)
Adobe Reader XI (11.0.08) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.08 - Adobe Systems Incorporated)
Adobe Widget Browser (HKLM-x32\...\com.adobe.WidgetBrowser) (Version: 2.0 Build 348 - Adobe Systems Incorporated.)
Adobe Widget Browser (x32 Version: 2.0.348 - Adobe Systems Incorporated.) Hidden
Adobe® Content Viewer (HKLM-x32\...\com.adobe.dmp.contentviewer) (Version: 3.4.0 - Adobe Systems Incorporated)
Adobe® Content Viewer (x32 Version: 3.4.0 - Adobe Systems Incorporated) Hidden
Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}) (Version: 7.0.0.117 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Audacity 2.0.2 (HKLM-x32\...\Audacity_is1) (Version: 2.0.2 - Audacity Team)
avast! Premier (HKLM-x32\...\Avast) (Version: 9.0.2021 - AVAST Software)
Bejeweled 3 (x32 Version: 2.2.0.97 - WildTangent) Hidden
Blackhawk Striker 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden
Canon Easy-PhotoPrint EX (HKLM-x32\...\Easy-PhotoPrint EX) (Version: 4.1.6 - Canon Inc.)
Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.4.0.0 - Canon Inc.)
Canon IJWCS - Common Profile Extention Data (HKLM-x32\...\IJWCS - Common Profile Extention Data) (Version: 1.0.0 - Canon Inc.)
Canon IJWCS - PRO-1 series Extention Data (HKLM-x32\...\IJWCS - PRO-1 series Extention Data) (Version: 1.0.0 - Canon Inc.)
Canon IJWCS - PRO-10 series Extention Data (HKLM-x32\...\IJWCS - PRO-10 series Extention Data) (Version: 1.0.0 - Canon Inc.)
Canon IJWCS - PRO-100 series Extention Data (HKLM-x32\...\IJWCS - PRO-100 series Extention Data) (Version: 1.0.0 - Canon Inc.)
Canon Inkjet Printer Driver Add-On Module (HKLM\...\CANONIJINBOXADDON100) (Version: - )
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 4.0.0 - Canon Inc.)
Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 1.0.0 - Canon Inc.)
Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 1.0.0 - Canon Inc.)
Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.0.0 - Canon Inc.)
Canon Print Studio Pro (HKLM-x32\...\Print Studio Pro) (Version: 1.3.0 - Canon Inc.)
Canon PRO-100 series On-screen Manual (HKLM-x32\...\Canon PRO-100 series On-screen Manual) (Version: 7.5.0 - Canon Inc.)
Canon PRO-100 series Printer Driver (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_PRO-100_series) (Version: - Canon Inc.)
Canon PRO-100 series User Registration (HKLM-x32\...\Canon PRO-100 series User Registration) (Version: - Canon Inc.‎)
Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)
Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.)
Cradle of Rome 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden
CyberLink PowerDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.5.3817 - CyberLink Corp.)
CyberLink PowerDVD (x32 Version: 10.0.5.3817 - CyberLink Corp.) Hidden
CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.5.0.4422 - CyberLink Corp.)
CyberLink YouCam (x32 Version: 3.5.0.4422 - CyberLink Corp.) Hidden
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dora's World Adventure (x32 Version: 2.2.0.95 - WildTangent) Hidden
Eraser 6.0.10.2620 (HKLM\...\{6E5159B4-A519-41EF-80EF-AD58371515DF}) (Version: 6.0.2620 - The Eraser Project)
ESU for Microsoft Windows 7 SP1 (HKLM-x32\...\{E96CAA2A-0244-4A2A-8403-0C3C9534778B}) (Version: 2.1.1 - Hewlett-Packard)
Farm Frenzy (x32 Version: 2.2.0.98 - WildTangent) Hidden
Farmscapes (x32 Version: 2.2.0.98 - WildTangent) Hidden
FATE (x32 Version: 2.2.0.97 - WildTangent) Hidden
FileOpen Client (x64) (HKLM\...\{C3E00BDD-2811-4720-A6BC-3B8232CD5BA3}) (Version: 3.0.89.925 - FileOpen Systems, Inc.)
Filter Forge Freepack 3 - Frames 2.013 (HKLM-x32\...\Filter Forge Freepack 3 - Frames_is1) (Version: - Filter Forge, Inc.)
Final Drive Fury (x32 Version: 2.2.0.95 - WildTangent) Hidden
FlashGet 1.9.6.1073 (HKLM-x32\...\FlashGet) (Version: 1.9.6.1073 - http://www.FlashGet.com)
FormatFactory 3.3.5.0 (HKLM-x32\...\FormatFactory) (Version: 3.3.5.0 - Format Factory)
Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
Hoyle Card Games (x32 Version: 2.2.0.95 - WildTangent) Hidden
HP Application Assistant (HKLM\...\{0CE7EBAF-157D-4111-9146-057CB2A4023E}) (Version: 1.1.466.3970 - Hewlett-Packard)
HP Auto (Version: 1.0.12935.3667 - Hewlett-Packard Company) Hidden
HP Client Services (Version: 1.1.12938.3539 - Hewlett-Packard) Hidden
HP Customer Experience Enhancements (x32 Version: 6.0.1.8 - Hewlett-Packard) Hidden
HP Documentation (HKLM-x32\...\{3D5C7E0E-AEC0-40EB-99D3-C40469738040}) (Version: 1.1.0.0 - Hewlett-Packard)
HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.2.5 - WildTangent)
HP Launch Box (HKLM\...\{9CAB2212-0732-4827-8EC4-61D8EF0AA65B}) (Version: 1.0.11 - Hewlett-Packard Company)
HP MovieStore (HKLM-x32\...\{9008D736-35CA-40DB-A2BE-5F32D954E5AA}) (Version: 2.1.21091.0 - Hewlett-Packard Company)
HP MovieStore (x32 Version: 2.1.091 - Hewlett-Packard) Hidden
HP On Screen Display (HKLM-x32\...\{ED1BD69A-07E3-418C-91F1-D856582581BF}) (Version: 1.3.5 - Hewlett-Packard Company)
HP Quick Launch (HKLM-x32\...\{53B17A98-5BF0-40BC-AAFF-850A357975AC}) (Version: 2.7.2 - Hewlett-Packard Company)
HP Recovery Manager (x32 Version: 2.0.0 - Hewlett-Packard) Hidden
HP Security Assistant (HKLM\...\{ED6CD3AC-616B-4B20-BCF3-6E637B92A5AD}) (Version: 3.0.4 - Hewlett-Packard Company)
HP Setup (HKLM-x32\...\{F5E7D9AF-60F6-4A30-87E3-4EA94D322CE1}) (Version: 9.0.15076.3891 - Hewlett-Packard Company)
HP Setup Manager (HKLM-x32\...\{AE856388-AFAD-4753-81DF-D96B19D0A17C}) (Version: 1.2.14901.3869 - Hewlett-Packard Company)
HP SimplePass PE 2012 (HKLM-x32\...\{423FBEB8-21C6-4720-A8DA-B19B06FDB607}) (Version: 5.3.1.7 - Hewlett-Packard)
HP Software Framework (HKLM-x32\...\{962CB079-85E6-405F-8704-1C62365AE46F}) (Version: 4.5.10.1 - Hewlett-Packard Company)
HP Support Solutions Framework (HKLM-x32\...\{C43602FE-988C-47BA-9F9F-B95FDDAFB624}) (Version: 11.50.0031 - Hewlett-Packard Company)
iCloud (HKLM\...\{81E20D41-C277-4526-934D-F2380AF91B78}) (Version: 3.1.0.40 - Apple Inc.)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Identity Protection Technology 1.1.2.0 (HKLM-x32\...\{C01A86F5-56E7-101F-9BC9-E3F1025EB779}) (Version: 1.1.2.0 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.6.0.1002 - Intel Corporation)
iTunes (HKLM\...\{D601CEAD-2E4F-4BBB-85CC-C29A4CE6A3C0}) (Version: 11.1.3.8 - Apple Inc.)
Java 7 Update 67 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417067FF}) (Version: 7.0.670 - Oracle)
Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle)
Java Auto Updater (x32 Version: 2.1.67.1 - Oracle, Inc.) Hidden
Jewel Match 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Jewel Quest Mysteries: The Seventh Gate Collector's Edition (x32 Version: 2.2.0.98 - WildTangent) Hidden
John Deere Drive Green (x32 Version: 2.2.0.95 - WildTangent) Hidden
Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
KUSO EXIF Viewer (HKLM-x32\...\KUSO EXIF Viewer) (Version: - )
Letters from Nowhere 2 (x32 Version: 2.2.0.97 - WildTangent) Hidden
Luxor HD (x32 Version: 2.2.0.98 - WildTangent) Hidden
Mah Jong Medley (x32 Version: 2.2.0.95 - WildTangent) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Click-to-Run 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Click-to-Run 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Starter 2010 - English (HKLM-x32\...\{90140011-0066-0409-0000-0000000FF1CE}) (Version: 14.0.5139.5005 - Microsoft Corporation)
Microsoft OneDrive (HKCU\...\OneDriveSetup.exe) (Version: 17.0.4035.0328 - Microsoft Corporation)
Microsoft PowerPoint Viewer (HKLM-x32\...\{95140000-00AF-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0 - Microsoft Corp.) Hidden
Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000 - Adobe) Hidden
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 31.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 31.0 (x86 en-US)) (Version: 31.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 31.0 - Mozilla)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden
MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
OpenOffice.org 3.1 (HKLM-x32\...\{E6B87DC4-2B3D-4483-ADFF-E483BF718991}) (Version: 3.1.9399 - OpenOffice.org)
opensource (x32 Version: 1.0.14960.3876 - Your Company Name) Hidden
PDF Settings CC (x32 Version: 12.0 - Adobe Systems Incorporated) Hidden
PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
Penguins! (x32 Version: 2.2.0.98 - WildTangent) Hidden
Perfect Effects 4.0.4 (HKLM-x32\...\{385E6A4D-A440-43E2-9BAF-A012FB5FC2E2}) (Version: 4.0.4 - onOne Software)
Perfect Effects 8 (HKLM-x32\...\{ABC791C9-E95B-40C8-8BDD-F5E84E2E268B}) (Version: 8.1.0 - onOne Software)
Photo Gallery (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
PhotoFrame 4.6.5 Free (HKLM-x32\...\{76E2A1A0-CE72-48A0-8D8E-767A1B0C2191}) (Version: 4.6.5 - onOne Software)
PhotoPresets with One-Click WOW! for Adobe Camera Raw (HKLM-x32\...\{EB083118-49ED-4CD7-8CE8-241C1F958E2C}) (Version: 1.0 - onOne Software)
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
PlayReady PC Runtime x86 (HKLM-x32\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation)
Poker Superstars III (x32 Version: 2.2.0.95 - WildTangent) Hidden
Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden
Polar Golfer (x32 Version: 2.2.0.98 - WildTangent) Hidden
QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.)
RealDownloader (x32 Version: 1.3.0 - RealNetworks, Inc.) Hidden
RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden
RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0 - RealNetworks, Inc) Hidden
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.46.610.2011 - Realtek)
Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.7601.84 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Driver (HKLM-x32\...\{9D3D8C60-A55F-4123-B2B9-173F09590E16}) (Version: 1.00.11.0706 - REALTEK Semiconductor Corp.)
RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
RollerCoaster Tycoon 3: Platinum (x32 Version: 2.2.0.98 - WildTangent) Hidden
Sothink FLV Player (HKLM-x32\...\{CAAB0192-5704-469F-A0BE-2D842D70E93B}_is1) (Version: 2.3 - SourceTec Software Co., LTD)
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1130 - SUPERAntiSpyware.com)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Synaptics TouchPad Driver (HKLM\...\SynTPDeinstKey) (Version: 15.3.29.0 - Synaptics Incorporated)
TeamViewer 6 (HKLM-x32\...\TeamViewer 6) (Version: 6.0.17222 - TeamViewer GmbH)
The Treasures of Mystery Island: The Ghost Ship (x32 Version: 2.2.0.98 - WildTangent) Hidden
Torchlight (x32 Version: 2.2.0.98 - WildTangent) Hidden
Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden
Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.98 - WildTangent) Hidden
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
WildTangent Games App (HP Games) (x32 Version: 4.0.5.32 - WildTangent) Hidden
Windows 7 Codec Pack 4.0.6 (HKLM-x32\...\Windows 7 - Codec Pack) (Version: 4.0.6 - Windows 7 Codec Pack)
Windows Live Communications Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
Yahoo SiteBuilder (HKLM-x32\...\Yahoo SiteBuilder) (Version: 2.8.6 - Yahoo! Inc.)
Yahoo! Toolbar (HKLM-x32\...\Yahoo! Companion) (Version: - Yahoo! Inc.)
Zuma's Revenge (x32 Version: 2.2.0.98 - WildTangent) Hidden

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-1479091243-4294284354-2124732490-1000_Classes\CLSID\{0F14C970-5557-4AA3-B88C-0AD751400AF4}\InprocServer32 -> C:\Users\boydphoto\AppData\Local\TNT2\Profiles\10261\passport64.dll No File
CustomCLSID: HKU\S-1-5-21-1479091243-4294284354-2124732490-1000_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\boydphoto\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1479091243-4294284354-2124732490-1000_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\boydphoto\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1479091243-4294284354-2124732490-1000_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\boydphoto\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1479091243-4294284354-2124732490-1000_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\boydphoto\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1479091243-4294284354-2124732490-1000_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\boydphoto\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\FileSyncApi64.dll (Microsoft Corporation)

==================== Restore Points =========================

26-08-2014 16:38:42 Windows Update
29-08-2014 04:40:56 Windows Update
30-08-2014 12:48:23 AA11
02-09-2014 12:20:25 Windows Update
03-09-2014 19:23:58 avast! antivirus system restore point
03-09-2014 19:28:25 Device Driver Package Install: Avast Network Service
03-09-2014 19:33:52 Revo Uninstaller's restore point - Ad-Aware Security Toolbar
03-09-2014 19:43:42 AA11
05-09-2014 13:07:30 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-13 19:34 - 2014-08-06 12:02 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {0218C388-A90A-4E5A-A33B-9DDD1DE6201E} - System32\Tasks\{A03E838D-B95C-4FBD-923C-71857392BED0} => C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
Task: {0C969156-90E2-4EE4-8C06-433E608B7766} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Tuneup => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {15F42D34-E055-41BE-8463-1A03A9C363E2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {20F6B5C2-7053-4F79-89D3-9F307926F70D} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-1479091243-4294284354-2124732490-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [2012-11-29] (RealNetworks, Inc.)
Task: {2838D244-1A30-4FD7-B095-958F0E502AEA} - System32\Tasks\GPUP => C:\Program Files (x86)\GetPrivate\gpup.exe
Task: {2A5FF5BC-C031-46A8-ACCA-30E43A2D50C5} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1479091243-4294284354-2124732490-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2012-11-30] (RealNetworks, Inc.)
Task: {4BC7AC7E-00CA-4C04-BA6B-5323BEE302BA} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-1479091243-4294284354-2124732490-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2012-11-30] (RealNetworks, Inc.)
Task: {5A89DEFF-B027-415C-94E6-534C0BDBC88E} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
Task: {664FEECE-E386-4D30-BFAB-712A9AA81C9A} - System32\Tasks\HPCeeScheduleForboydphoto => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2011-07-15] (Hewlett-Packard)
Task: {7FD0D010-04A6-4E4E-9BDD-456182C7E6D9} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-09-03] (AVAST Software)
Task: {8579DAF7-3162-4E9C-B933-E0A46FA9B042} - System32\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-1479091243-4294284354-2124732490-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\recordingmanager.exe [2012-11-29] (RealNetworks, Inc.)
Task: {A72E77B1-D111-4B11-A7D4-DBE00E800141} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2011-08-22] (CyberLink)
Task: {AFC2490A-3987-48DD-98F6-07006D2C3261} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2014-03-21] (Hewlett-Packard)
Task: {BCBBCC4E-00B2-4BA2-8051-6650E9DEBC56} - \ArcadeParlor No Task File <==== ATTENTION
Task: {BFC249D0-3778-4058-8073-F85E3108A125} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1479091243-4294284354-2124732490-1000 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe [2012-11-29] (RealNetworks, Inc.)
Task: {C26D6148-A451-4BBE-88D0-51D87786821E} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-03] (Adobe Systems Incorporated)
Task: {C26EA670-0B2D-4EEE-AA0E-8823B5EFACD4} - System32\Tasks\Registration => C:\Program Files (x86)\Hewlett-Packard\HP Setup\Dependencies\RemEngine.exe [2011-09-28] ()
Task: {C345678D-1E09-4859-89C5-504981BA93DF} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {C945DA1F-E603-4AA1-A162-A8A96638DC08} - System32\Tasks\AdobeAAMUpdater-1.0-boydphoto-HP-boydphoto => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-09-25] (Adobe Systems Incorporated)
Task: {C98D3C36-58F3-4432-A2D9-AA0C0B846902} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1479091243-4294284354-2124732490-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2012-11-30] (RealNetworks, Inc.)
Task: {CB1D4D93-95D2-4D56-91AE-D47F9D5BEB25} - System32\Tasks\{6668533C-BC91-4F09-9377-04669932BA50} => C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
Task: {D2A0200D-25BD-4BF1-992B-6AA6E49DBD82} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {DC73E6A7-1BF0-4161-BB58-B45168B57A88} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company)
Task: {E04CFA6B-1859-487B-878A-704C1D530B95} - System32\Tasks\ParetoLogic Update Version3 Startup Task => C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe
Task: {EC3CA254-5D20-4F99-AF08-2063F800D1FE} - System32\Tasks\{FB19F2CA-7258-4905-90B7-AD079C603625} => C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
Task: {F6878535-6E51-42CC-ABF2-473E09AF1408} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-1479091243-4294284354-2124732490-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2012-11-30] (RealNetworks, Inc.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\HPCeeScheduleForboydphoto.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Loaded Modules (whitelisted) =============

2013-10-16 18:02 - 2013-10-16 18:02 - 03358064 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll
2014-02-11 14:24 - 2012-03-27 20:49 - 00140456 _____ () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
2012-11-29 21:31 - 2012-11-29 21:31 - 00038608 _____ () C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
2011-08-09 08:44 - 2011-08-09 08:44 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2014-09-03 12:27 - 2014-09-03 12:27 - 00301152 _____ () C:\Program Files\AVAST Software\Avast\aswProperty.dll
2014-09-06 11:45 - 2014-09-06 11:45 - 02845184 _____ () C:\Program Files\AVAST Software\Avast\defs\14090601\algo.dll
2012-08-27 22:33 - 2012-08-27 22:33 - 00087912 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2012-08-27 22:33 - 2012-08-27 22:33 - 01242512 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2014-09-03 12:27 - 2014-09-03 12:27 - 19329904 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2014-06-11 11:20 - 2014-07-16 22:42 - 03800688 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2014-08-16 07:14 - 2014-08-16 07:14 - 00172544 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\e1dca04e43d05aff13c672a916b3e8ef\IsdiInterop.ni.dll
2012-07-19 12:22 - 2011-05-20 10:05 - 00059904 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll
2014-09-03 12:49 - 2014-09-03 12:49 - 17048240 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_179.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)

==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^CodecPackTrayMenu.lnk => C:\Windows\pss\CodecPackTrayMenu.lnk.CommonStartup
MSCONFIG\startupreg: Acrobat Assistant 8.0 => "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe"
MSCONFIG\startupreg: Adobe Acrobat Speed Launcher => "C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe"
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: Adobe Creative Cloud => "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
MSCONFIG\startupreg: AdobeCEPServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe" -launchedbylogin
MSCONFIG\startupreg: AdobeCS6ServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
MSCONFIG\startupreg: BDRegion => C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
MSCONFIG\startupreg: DownBook => "C:\Users\boydphoto\AppData\Local\DownBook\DownBook.exe" c127befb2a56523b5396b54562650e8f 6
MSCONFIG\startupreg: Eraser => "C:\PROGRA~1\Eraser\Eraser.exe" --atRestart
MSCONFIG\startupreg: FileOpenBroker => C:\Program Files\FileOpen\Services\FileOpenBroker64.exe
MSCONFIG\startupreg: Flashget => "C:\Program Files (x86)\FlashGet\FlashGet.exe" /min
MSCONFIG\startupreg: HP Quick Launch => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
MSCONFIG\startupreg: HPOSD => C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: mobilegeni daemon => C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: RemoteControl10 => "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
MSCONFIG\startupreg: SetDefault => C:\Program Files\Hewlett-Packard\HP LaunchBox\SetDefault.exe
MSCONFIG\startupreg: Sothink YouTube Downloader => "C:\Program Files (x86)\Sothink YouTube Downloader\YouTubeDownloader.exe" -hide
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: SUPERAntiSpyware => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
MSCONFIG\startupreg: SwitchBoard => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
MSCONFIG\startupreg: SysTrayApp => C:\Program Files\IDT\WDM\sttray64.exe
MSCONFIG\startupreg: TelevisionFanatic Browser Plugin Loader => C:\Program Files (x86)\TelevisionFanatic\bar\1.bin\64brmon.exe
MSCONFIG\startupreg: TelevisionFanatic Browser Plugin Loader 64 => C:\Program Files (x86)\TelevisionFanatic\bar\1.bin\64brmon64.exe
MSCONFIG\startupreg: TelevisionFanatic EPM Support => "C:\PROGRA~2\TELEVI~2\bar\1.bin\64medint.exe" T8EPMSUP.DLL,S
MSCONFIG\startupreg: TelevisionFanatic Home Page Guard 64 bit => "C:\PROGRA~2\TELEVI~2\bar\1.bin\AppIntegrator64.exe"
MSCONFIG\startupreg: TelevisionFanatic Search Scope Monitor => "C:\PROGRA~2\TELEVI~2\bar\1.bin\64srchmn.exe" /m=2 /w /h
MSCONFIG\startupreg: TkBellExe => "c:\program files (x86)\real\realplayer\Update\realsched.exe" -osboot
MSCONFIG\startupreg: Web Video Downloader => "C:\Program Files (x86)\Sothink Web Video Downloader Stand-alone\VideoDownloader.exe"

==================== Faulty Device Manager Devices =============

==================== Event log errors: =========================

Application errors:
==================
Error: (09/06/2014 03:54:40 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/06/2014 02:19:17 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/06/2014 04:45:02 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/05/2014 00:09:01 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program IEXPLORE.EXE version 11.0.9600.17239 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: df0

Start Time: 01cfc93bd3f6ed4a

Termination Time: 223

Application Path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE

Report Id:

Error: (09/05/2014 09:38:51 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (09/05/2014 09:22:27 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/05/2014 05:31:00 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/03/2014 00:34:34 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: plugin-container.exe, version: 31.0.0.5310, time stamp: 0x53c75e91
Faulting module name: mozalloc.dll, version: 31.0.0.5310, time stamp: 0x53c72e91
Exception code: 0x80000003
Fault offset: 0x0000141b
Faulting process id: 0x1cdc
Faulting application start time: 0xplugin-container.exe0
Faulting application path: plugin-container.exe1
Faulting module path: plugin-container.exe2
Report Id: plugin-container.exe3

Error: (09/03/2014 05:13:46 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: adawarebp.exe, version: 1.0.1.124, time stamp: 0x52444fdc
Faulting module name: msvcrt.dll, version: 7.0.7601.17744, time stamp: 0x4eeaf722
Exception code: 0xc0000409
Fault offset: 0x00023e64
Faulting process id: 0xd80
Faulting application start time: 0xadawarebp.exe0
Faulting application path: adawarebp.exe1
Faulting module path: adawarebp.exe2
Report Id: adawarebp.exe3

Error: (09/02/2014 06:25:01 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Explorer.EXE, version: 6.1.7601.17567, time stamp: 0x4d672ee4
Faulting module name: msvcrt.dll, version: 7.0.7601.17744, time stamp: 0x4eeb033f
Exception code: 0x40000015
Fault offset: 0x000000000002a84e
Faulting process id: 0x77c
Faulting application start time: 0xExplorer.EXE0
Faulting application path: Explorer.EXE1
Faulting module path: Explorer.EXE2
Report Id: Explorer.EXE3

System errors:
=============
Error: (09/06/2014 01:38:52 PM) (Source: NetBT) (EventID: 4319) (User: )
Description: A duplicate name has been detected on the TCP network. The IP address of
the computer that sent the message is in the data. Use nbtstat -n in a
command window to see which name is in the Conflict state.

Error: (09/06/2014 00:36:54 PM) (Source: Server) (EventID: 2505) (User: )
Description: The server could not bind to the transport \Device\NetBT_Tcpip_{8F7489A6-8F5C-4C2A-BBA9-57DFBA84D824} because another computer on the network has the same name. The server could not start.

Error: (09/06/2014 00:36:51 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk1\DR1.

Error: (09/05/2014 08:23:39 AM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk1\DR1.

Error: (09/04/2014 07:45:04 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk1\DR6.

Error: (09/04/2014 11:50:46 AM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk1\DR6.

Error: (09/04/2014 08:29:55 AM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk1\DR6.

Error: (09/04/2014 05:10:17 AM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk1\DR6.

Error: (09/03/2014 09:34:20 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk1\DR6.

Error: (09/03/2014 05:13:43 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Schedule service.

Microsoft Office Sessions:
=========================
Error: (09/06/2014 03:54:40 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/06/2014 02:19:17 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/06/2014 04:45:02 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/05/2014 00:09:01 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: IEXPLORE.EXE11.0.9600.17239df001cfc93bd3f6ed4a223C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE

Error: (09/05/2014 09:38:51 AM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\boydphoto\Downloads\esetsmartinstaller_enu.exe

Error: (09/05/2014 09:22:27 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/05/2014 05:31:00 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (09/03/2014 00:34:34 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: plugin-container.exe31.0.0.531053c75e91mozalloc.dll31.0.0.531053c72e91800000030000141b1cdc01cfc7ac15a93aedC:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dll54a96940-33a1-11e4-934c-78e3b575eacb

Error: (09/03/2014 05:13:46 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: adawarebp.exe1.0.1.12452444fdcmsvcrt.dll7.0.7601.177444eeaf722c000040900023e64d8001cfc6a6b404c126C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exeC:\Windows\syswow64\msvcrt.dllc0ee8782-3363-11e4-934c-78e3b575eacb

Error: (09/02/2014 06:25:01 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Explorer.EXE6.1.7601.175674d672ee4msvcrt.dll7.0.7601.177444eeb033f40000015000000000002a84e77c01cfc6a6a1625471C:\Windows\Explorer.EXEC:\Windows\system32\msvcrt.dll1f5bc53f-3309-11e4-934c-78e3b575eacb

CodeIntegrity Errors:
===================================
Date: 2014-08-06 11:58:12.180
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2014-08-06 11:58:12.102
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2014-08-06 11:58:12.024
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2014-08-06 11:58:11.946
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2014-04-08 09:57:25.651
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2014-04-08 09:57:25.558
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2013-06-09 21:02:07.787
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET NOD32 Antivirus\eplgHooks.dll because the set of per-page image hashes could not be found on the system.

Date: 2013-06-09 21:01:29.943
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET NOD32 Antivirus\eplgHooks.dll because the set of per-page image hashes could not be found on the system.

==================== Memory info ===========================

Processor: Intel(R) Core(TM) i3-2350M CPU @ 2.30GHz
Percentage of memory in use: 49%
Total physical RAM: 4043.86 MB
Available physical RAM: 2024.34 MB
Total Pagefile: 8085.9 MB
Available Pagefile: 5903.76 MB
Total Virtual: 8192 MB
Available Virtual: 8191.84 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:571.09 GB) (Free:449.67 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (Recovery) (Fixed) (Total:20.92 GB) (Free:2.23 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive e: (HP_TOOLS) (Fixed) (Total:3.96 GB) (Free:0.01 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596.2 GB) (Disk ID: 6F916D90)
Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=571.1 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=20.9 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=4 GB) - (Type=0C)

==================== End Of Log ============================
See less See more
Go to Tools - Options - General Tab and change where downloads go.
I changed the destination to, "documents".
OK but I'm still waiting for the frst.txt log. You only posted the Addition.txt log.

But I think the best thing to do would be to uninstall FRST by dragging it to the Recycle Bin and then redownload it correctly to the desktop and run a new scan. Then post the frst.txt log. You won't get a second log this time.
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 07-09-2014 01
Ran by boydphoto (administrator) on BOYDPHOTO-HP on 08-09-2014 09:46:03
Running from C:\Users\boydphoto\Desktop
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal

Log edited out by Cookiegal due to inappropriate content.
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 07-09-2014 01
Ran by boydphoto (administrator) on BOYDPHOTO-HP on 08-09-2014 09:46:03
Running from C:\Users\boydphoto\Desktop
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(HP) C:\Program Files (x86)\HP SimplePass 2012\TrueSuiteService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(HP) C:\Program Files (x86)\HP SimplePass 2012\TouchControl.exe
(HP) C:\Program Files (x86)\HP SimplePass 2012\BioMonitor.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(FileOpen Systems Inc.) C:\Program Files\FileOpen\Services\FileOpenManagerService64.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
() C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
() C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Yahoo! Inc.) C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
(RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_179.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_179.exe

==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [472984 2013-09-25] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [41336 2014-05-08] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [840568 2014-05-08] (Adobe Systems Inc.)
HKLM-x32\...\Run: [TkBellExe] => C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe [295072 2013-01-05] (RealNetworks, Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-09-03] (AVAST Software)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM\...\RunOnce: [NCPluginUpdater] => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [21720 2014-08-19] (Hewlett-Packard)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1479091243-4294284354-2124732490-1000\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [7762712 2014-08-14] (SUPERAntiSpyware)
ShellIconOverlayIdentifiers: AccExtIco1 -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll ()
ShellIconOverlayIdentifiers: AccExtIco2 -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll ()
ShellIconOverlayIdentifiers: AccExtIco3 -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll ()
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexbho.dll (CANON INC.)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: TrueSuite Website Log On -> {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} -> C:\Program Files (x86)\HP SimplePass 2012\x64\IEBHO.dll (HP)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: FGCatchUrl -> {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} -> C:\Program Files (x86)\FlashGet\jccatch.dll (www.flashget.com)
BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: TrueSuite Website Log On -> {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} -> C:\Program Files (x86)\HP SimplePass 2012\IEBHO.dll (HP)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: IEDownloadCatcher.DownloadManager -> {AECB3C96-189C-35F9-9C0B-A3832B3C1839} -> C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
BHO-x32: FlashGet GetFlash Class -> {F156768E-81EF-470C-9057-481BA8380DBA} -> C:\Program Files (x86)\FlashGet\getflash.dll (www.flashget.com)
BHO-x32: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\addon64\ewpexhlp.dll (CANON INC.)
DPF: HKLM-x32 {1851174C-97BD-4217-A0CC-E908F60D5B7A} https://h50203.www5.hp.com/HPISWeb/Customer/cabs/HPISDataManager.CAB
Tcpip\Parameters: [DhcpNameServer] 209.18.47.61 209.18.47.62

FireFox:
========
FF ProfilePath: C:\Users\boydphoto\AppData\Roaming\Mozilla\Firefox\Profiles\5aoqihta.default-1406917539670
FF DefaultSearchEngine: Bing
FF SelectedSearchEngine: Bing
FF Homepage: hxxp://drudgereport.com/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_179.dll ()
FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
FF Plugin: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_179.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1212152.dll No File
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @real.com/nppl3260;version=16.0.0.282 -> c:\program files (x86)\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlchromebrowserrecordext;version=1.3.0 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=1.3.0 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprndlpepperflashvideoshim;version=1.3.0 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpplugin;version=16.0.0.282 -> c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
FF Plugin-x32: @realnetworks.com/npdlplugin;version=1 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems)
FF Plugin-x32: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll (Adobe Systems)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Extension: Download YouTube Videos as MP4 - C:\Users\boydphoto\AppData\Roaming\Mozilla\Firefox\Profiles\5aoqihta.default-1406917539670\Extensions\{b9bfaf1c-a63f-47cd-8b9a-29526ced9060}.xpi [2014-08-15]
FF Extension: Sothink Web Video Downloader for Firefox - C:\Users\boydphoto\AppData\Roaming\Mozilla\Firefox\Profiles\5aoqihta.default-1406917539670\Extensions\{FCAB6FDD-5585-425b-95C1-5ED856F3FD08}.xpi [2014-08-02]
FF Extension: TrueSuite Website Logon - C:\Program Files (x86)\Mozilla Firefox\extensions\[email protected] [2014-06-11]
FF HKLM\...\Thunderbird\Extensions: [[email protected]] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF Extension: RealDownloader - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013-01-05]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2012-09-18]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-09-03]
FF HKLM-x32\...\Thunderbird\Extensions: [[email protected]] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
FF StartMenuInternet: FIREFOX.EXE - firefox.exe

Chrome:
=======
CHR Profile: C:\Users\boydphoto\AppData\Local\Google\Chrome\User Data\default
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-09-03]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [172344 2014-07-22] (SUPERAntiSpyware.com)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-09-03] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [106488 2014-09-03] (AVAST Software)
S2 CLKMSVC10_38F51D56; C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe [244720 2012-02-08] (CyberLink)
R2 FileOpenManagerService; C:\Program Files\FileOpen\Services\FileOpenManagerService64.exe [335288 2012-10-17] (FileOpen Systems Inc.)
R2 FPLService; C:\Program Files (x86)\HP SimplePass 2012\TrueSuiteService.exe [260424 2011-08-26] (HP)
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2013-11-04] (Hewlett-Packard Company) [File not signed]
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [72992 2014-07-07] (Hewlett-Packard Company)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [140456 2012-03-27] ()
R2 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [38608 2012-11-29] ()
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-13] (Microsoft Corporation)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-09-03] ()
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [28184 2014-09-03] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-09-03] (AVAST Software)
R0 aswNdisFlt; C:\Windows\System32\DRIVERS\aswNdisFlt.sys [448400 2014-09-03] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-09-03] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-09-03] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-09-03] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-09-03] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-09-03] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-09-03] ()
S3 rcmirror; C:\Windows\System32\DRIVERS\rcmirror64.sys [13120 2012-08-13] (Windows (R) Win 7 DDK provider)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-13] (Brother Industries Ltd.)
S3 cpuz134; \??\C:\Users\BOYDPH~1\AppData\Local\Temp\cpuz134\cpuz134_x64.sys [X]
S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)

==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-08 09:46 - 2014-09-08 09:46 - 00021388 _____ () C:\Users\boydphoto\Desktop\FRST.txt
2014-09-08 09:45 - 2014-09-08 09:45 - 02105344 _____ (Farbar) C:\Users\boydphoto\Desktop\FRST64.exe
2014-09-08 08:49 - 2014-09-08 08:49 - 06574328 _____ () C:\Users\boydphoto\Desktop\TONYA DZURILLA BEST PHOTO.tif
2014-09-08 08:48 - 2014-09-08 08:48 - 17484756 _____ () C:\Users\boydphoto\Desktop\TONYA DZURILLA BEST PHOTO.psd
2014-09-07 14:36 - 2014-09-07 14:45 - 01006664 _____ () C:\Users\boydphoto\Desktop\MICH SOFT COPY.tif
2014-09-07 14:15 - 2014-09-07 14:15 - 00267640 _____ (Fusion Install ) C:\Users\boydphoto\Downloads\Setup.exe
2014-09-07 12:07 - 2014-09-07 15:28 - 02574288 _____ () C:\Users\boydphoto\Desktop\LOREN BLACKWOOD IN RED-BLACK PRINT.tif
2014-09-07 11:26 - 2014-09-07 11:26 - 00659480 _____ (optikVerve Labs ) C:\Users\boydphoto\Downloads\vPsetup.exe
2014-09-07 10:45 - 2014-09-07 14:33 - 05899332 _____ () C:\Users\boydphoto\Desktop\mich wed 1 120 COPY.tif
2014-09-07 10:14 - 2014-09-07 10:14 - 00647912 _____ () C:\Users\boydphoto\Desktop\KM_dance_painted_COPY.tif
2014-09-07 09:13 - 2014-09-07 09:14 - 01578540 _____ () C:\Users\boydphoto\Desktop\NOTES WITH CARRIE PIEL.tif
2014-09-06 18:27 - 2014-09-06 18:31 - 00047150 _____ () C:\Users\boydphoto\Downloads\Addition.txt
2014-09-06 18:26 - 2014-09-08 09:46 - 00000000 ____D () C:\FRST
2014-09-06 18:26 - 2014-09-06 18:31 - 00071707 _____ () C:\Users\boydphoto\Downloads\FRST.txt
2014-09-06 18:24 - 2014-09-06 18:24 - 00024764 _____ () C:\Users\boydphoto\Desktop\1aVZ2nlw.htm
2014-09-06 15:50 - 2014-09-06 15:50 - 01370467 _____ () C:\Users\boydphoto\Downloads\AdwCleaner(2).exe
2014-09-06 14:03 - 2014-09-06 14:03 - 01370467 _____ () C:\Users\boydphoto\Downloads\AdwCleaner(1).exe
2014-09-06 13:44 - 2014-09-06 13:44 - 08670956 _____ () C:\Users\boydphoto\Downloads\Untitled1.avi
2014-09-05 11:43 - 2014-09-05 11:43 - 00000000 _____ () C:\Users\boydphoto\Downloads\video_mp4_ 1549100_675301569197589_1764792559_n.mp4
2014-09-05 10:48 - 2014-09-05 10:48 - 00509440 _____ (Tech Support Guy System) C:\Users\boydphoto\Downloads\SysInfo(2).exe
2014-09-05 09:36 - 2014-09-05 09:38 - 13439600 _____ () C:\Users\boydphoto\Desktop\FP 2014-1_COPY.tif
2014-09-05 09:22 - 2014-09-08 05:38 - 00003230 _____ () C:\Windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1479091243-4294284354-2124732490-1000
2014-09-04 20:27 - 2014-09-04 20:27 - 00000022 _____ () C:\Users\boydphoto\Desktop\INDIEGOGO INFO.txt
2014-09-04 12:46 - 2014-09-04 12:45 - 00272808 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-09-04 12:45 - 2014-09-04 12:45 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-09-04 12:45 - 2014-09-04 12:45 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-09-04 12:45 - 2014-09-04 12:45 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-09-04 12:43 - 2014-09-04 12:43 - 00001845 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-09-04 12:43 - 2014-09-04 12:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2014-09-04 08:43 - 2014-09-04 08:43 - 00000549 _____ () C:\Users\boydphoto\Desktop\MY NOTE TO RENE, 9-4-2014.txt
2014-09-03 20:02 - 2014-09-03 20:02 - 02455087 _____ () C:\Users\boydphoto\Downloads\movie4.wmv
2014-09-03 19:46 - 2014-09-03 19:46 - 00003897 _____ () C:\Users\boydphoto\Desktop\JOKES FOR ENGINEERS.txt
2014-09-03 12:49 - 2014-09-03 12:48 - 00319912 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-09-03 12:49 - 2014-09-03 12:48 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-09-03 12:49 - 2014-09-03 12:48 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-09-03 12:49 - 2014-09-03 12:48 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-09-03 12:48 - 2014-09-03 12:48 - 00000000 ____D () C:\Program Files\Java
2014-09-03 12:37 - 2014-09-03 12:39 - 04809524 _____ () C:\Users\boydphoto\Downloads\avast_premier_antivirus_setup_online(1).exe
2014-09-03 12:30 - 2014-09-03 12:30 - 00000000 ____D () C:\Users\boydphoto\AppData\Roaming\AVAST Software
2014-09-03 12:29 - 2014-09-03 12:29 - 00001972 _____ () C:\Users\Public\Desktop\avast! SafeZone.lnk
2014-09-03 12:29 - 2014-09-03 12:29 - 00001912 _____ () C:\Users\Public\Desktop\avast! Premier.lnk
2014-09-03 12:29 - 2014-09-03 12:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
2014-09-03 12:28 - 2014-09-08 05:06 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-09-03 12:27 - 2014-09-03 12:28 - 00427360 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-09-03 12:27 - 2014-09-03 12:27 - 01041168 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2014-09-03 12:27 - 2014-09-03 12:27 - 00307344 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-09-03 12:27 - 2014-09-03 12:27 - 00224896 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-09-03 12:27 - 2014-09-03 12:27 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-09-03 12:27 - 2014-09-03 12:27 - 00092008 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2014-09-03 12:27 - 2014-09-03 12:27 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-09-03 12:27 - 2014-09-03 12:27 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-09-03 12:27 - 2014-09-03 12:27 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-09-03 12:27 - 2014-09-03 12:27 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-09-03 12:27 - 2014-09-03 12:27 - 00028184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2014-09-03 12:26 - 2014-09-03 12:26 - 00448400 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNdisFlt.sys
2014-09-03 12:24 - 2014-09-03 12:24 - 00000000 ____D () C:\Program Files\AVAST Software
2014-09-03 12:22 - 2014-09-03 12:22 - 04834344 _____ (AVAST Software) C:\Users\boydphoto\Downloads\avast_premier_antivirus_setup_online.exe
2014-09-03 10:15 - 2014-09-03 10:15 - 00002567 _____ () C:\Users\boydphoto\Desktop\TFW - HOLDER PUNISHES TEXAS BUSINESS FOR CHECKING WORKERS' CITIZENSHIP PAPERS.txt
2014-09-02 19:22 - 2014-09-02 19:22 - 00000000 ____D () C:\Users\boydphoto\Desktop\LAST COYOTE 31
2014-09-02 13:13 - 2013-09-11 10:23 - 04192856 ____H () C:\Users\boydphoto\Desktop\RENE AND SHIRIN SHOWER TOGETHER.tif
2014-09-02 05:38 - 2014-09-08 05:42 - 00003210 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForboydphoto
2014-09-02 05:38 - 2014-09-08 05:42 - 00000348 _____ () C:\Windows\Tasks\HPCeeScheduleForboydphoto.job
2014-09-01 04:20 - 2014-09-01 04:20 - 00000000 _____ () C:\Users\boydphoto\Downloads\1409567572869.webm_1409567572869..ebm
2014-08-30 19:19 - 2014-08-30 19:19 - 00007192 _____ () C:\Users\boydphoto\Desktop\TFW'S EMASCULATING THE U.S. MILITARY...THERE'S VERY LITTLE LEFT..txt
2014-08-30 05:48 - 2014-08-30 05:48 - 02806920 _____ () C:\Users\boydphoto\Downloads\Adaware_Installer(2).exe
2014-08-30 04:55 - 2014-09-08 05:38 - 00003356 _____ () C:\Windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1479091243-4294284354-2124732490-1000
2014-08-29 05:37 - 2014-08-29 05:37 - 02806920 _____ () C:\Users\boydphoto\Downloads\Adaware_Installer(1).exe
2014-08-28 20:16 - 2003-06-18 14:20 - 02050920 _____ () C:\Users\boydphoto\Desktop\rc pasa 3.tif
2014-08-28 20:16 - 2003-06-17 07:51 - 23529576 _____ () C:\Users\boydphoto\Desktop\bch bkgd.tif
2014-08-28 20:15 - 2003-08-19 08:06 - 00773472 _____ () C:\Users\boydphoto\Desktop\shadow 2.tif
2014-08-28 18:15 - 2014-08-28 18:15 - 00827416 _____ ( ) C:\Users\boydphoto\Downloads\FlvPlayerSetup.exe
2014-08-28 16:42 - 2005-02-11 11:39 - 34353396 _____ () C:\Users\boydphoto\Desktop\scenic 017.tif
2014-08-28 15:33 - 2006-12-26 12:15 - 36428800 _____ () C:\Users\boydphoto\Desktop\DSCF0065.TIF
2014-08-28 15:32 - 2007-06-01 17:40 - 42414512 _____ () C:\Users\boydphoto\Desktop\bw forest primeival copy.tif
2014-08-28 14:50 - 2014-08-29 08:47 - 04685618 ____H () C:\Users\boydphoto\Desktop\DSCF0777 copy copy.tif
2014-08-28 14:43 - 2014-08-28 14:56 - 33576326 _____ () C:\Users\boydphoto\Desktop\CARMEL WAVES.tif
2014-08-28 14:38 - 2014-08-28 14:56 - 27230732 _____ () C:\Users\boydphoto\Desktop\ASILOMAR COAST COPY.tif
2014-08-28 11:20 - 2014-08-28 11:20 - 02060172 _____ () C:\Users\boydphoto\Desktop\REESE AT HEISLER PARK_COPY.tif
2014-08-28 05:48 - 2014-08-22 19:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-28 05:48 - 2014-08-22 18:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-28 05:48 - 2014-08-22 17:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-08-26 12:23 - 2014-08-26 12:23 - 04341185 _____ () C:\Users\boydphoto\Downloads\grope260prv.wmv
2014-08-26 12:22 - 2014-08-26 12:22 - 04349977 _____ () C:\Users\boydphoto\Downloads\grope269prv.wmv
2014-08-26 11:57 - 2014-09-03 17:06 - 36668996 _____ () C:\Users\boydphoto\Desktop\DSC_0028.tif
2014-08-26 10:12 - 2014-08-26 10:12 - 00000148 _____ () C:\Users\boydphoto\Desktop\PIXEL BENDER.txt
2014-08-26 09:45 - 2014-08-26 09:45 - 00001476 _____ () C:\Users\boydphoto\Downloads\oilpaintaction.zip
2014-08-26 09:25 - 2014-08-26 09:25 - 00001515 _____ () C:\Users\boydphoto\Desktop\Adobe Pixel Bender Toolkit 2.lnk
2014-08-26 09:10 - 2014-08-26 09:10 - 58661931 _____ () C:\Users\boydphoto\Downloads\pixelbender_toolkit_2.5.zip
2014-08-26 09:08 - 2014-08-26 09:08 - 00002135 _____ () C:\Users\boydphoto\Desktop\HOLDER PAYS FERGUSON GANG LEADER TO LEAD RIOTS, LOOTING.txt
2014-08-26 08:22 - 2014-08-26 08:22 - 08312012 _____ () C:\Users\boydphoto\Downloads\01-iam.m4a
2014-08-26 07:54 - 2014-08-26 07:54 - 00000000 _____ () C:\Users\boydphoto\Downloads\video_mp4_ 10332382_10152184065052024_765482382_n.mp4
2014-08-25 18:45 - 2014-08-25 18:45 - 00005530 _____ () C:\Users\boydphoto\Desktop\LERNER'S EMAILS NEVER DISAPPEARED!.txt
2014-08-25 16:51 - 2014-08-25 16:51 - 01120392 _____ () C:\Users\boydphoto\Downloads\Player_Setup.exe
2014-08-25 16:51 - 2014-08-25 16:51 - 01120392 _____ () C:\Users\boydphoto\Downloads\Player_Setup(1).exe
2014-08-25 16:00 - 2014-08-28 16:41 - 00000000 ____D () C:\Users\boydphoto\Desktop\MIKE AND MIMI TO PRINT
2014-08-25 16:00 - 2014-08-25 16:00 - 00000000 ____D () C:\Users\boydphoto\Desktop\MMC 2
2014-08-25 15:56 - 2009-12-05 06:58 - 00000183 _____ () C:\Users\boydphoto\Desktop\IMAGES FROM MY RECENT TRIPS.txt
2014-08-25 14:33 - 2014-08-25 14:33 - 00000000 _____ () C:\Users\boydphoto\Downloads\guy_tapes_his_wife_sucking_****___._porn_tube_m_d6f57fc1811fbeaf0c62d58f37afa3ed.mp4
2014-08-25 11:33 - 2014-08-25 11:33 - 00006469 _____ () C:\Users\boydphoto\Desktop\TFW IS A MUSLIM, PERIOD.txt
2014-08-24 21:41 - 2014-09-07 05:14 - 00003378 _____ () C:\Windows\System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1479091243-4294284354-2124732490-1000
2014-08-24 21:41 - 2014-09-07 05:14 - 00003252 _____ () C:\Windows\System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-1479091243-4294284354-2124732490-1000
2014-08-24 16:49 - 2014-08-24 16:49 - 00851632 _____ (Adobe Systems Incorporated) C:\Users\boydphoto\Downloads\uninstall_flash_player.exe
2014-08-24 16:48 - 2014-08-24 16:48 - 00000860 _____ () C:\Users\boydphoto\Desktop\FIX SHOCKWAVE.txt
2014-08-24 14:37 - 2014-08-24 14:37 - 00000000 _____ () C:\Users\boydphoto\Downloads\video_mp4_ 1050082_224238101071089_1202554638_n.mp4
2014-08-24 07:55 - 2014-08-24 11:22 - 00000205 _____ () C:\Users\boydphoto\Desktop\Calling a rifle an, 'Assault Rifle'.txt
2014-08-23 23:44 - 2014-08-23 23:44 - 00000060 _____ () C:\Users\boydphoto\Desktop\law and order saturday evening.txt
2014-08-23 18:51 - 2014-08-23 18:51 - 00000000 _____ () C:\Users\boydphoto\Downloads\Boy_Swallows_Cum___Videos_895695_cute_teen_swallows_a_nasty_load_of_cum.flv
2014-08-23 18:02 - 2014-08-23 18:02 - 00002851 _____ () C:\Users\boydphoto\Desktop\U.S. vet writes to ISIS.txt
2014-08-23 16:53 - 2014-08-23 16:52 - 00093469 _____ () C:\Users\boydphoto\Downloads\Windows Media Player [1].exe
2014-08-23 16:36 - 2014-08-23 16:36 - 00509440 _____ (Tech Support Guy System) C:\Users\boydphoto\Downloads\SysInfo(1).exe
2014-08-23 16:35 - 2014-08-23 16:35 - 00509440 _____ (Tech Support Guy System) C:\Users\boydphoto\Downloads\SysInfo.exe
2014-08-22 17:03 - 2012-11-22 19:11 - 00000124 _____ () C:\Users\boydphoto\Desktop\THRILLER AUTHORS.txt
2014-08-22 16:57 - 2012-12-23 05:38 - 00006279 _____ () C:\Users\boydphoto\Desktop\MISSING PIECES ABOUT TFW'S FUNDING IN EARLIER YEARS.txt
2014-08-22 12:45 - 2014-04-13 11:31 - 00000960 _____ () C:\Users\boydphoto\Desktop\BURKE.txt
2014-08-22 12:45 - 2014-04-05 05:34 - 00000797 _____ () C:\Users\boydphoto\Desktop\James Lee Burke, beautiful words.txt
2014-08-22 12:38 - 2014-07-05 06:58 - 00000014 _____ () C:\Users\boydphoto\Desktop\POSSIBLE SOURCE OF $ FOR ME, MAYBE.txt
2014-08-22 09:11 - 2014-08-22 09:12 - 00000000 ____D () C:\Users\boydphoto\Desktop\REASS AL
2014-08-22 05:18 - 2014-08-22 09:17 - 00000000 ____D () C:\Users\boydphoto\Desktop\REASS DVD
2014-08-21 13:39 - 2014-08-21 13:39 - 00000000 _____ () C:\Users\boydphoto\Downloads\SHE_LIKES_TO_WATCH_HER_BOYFRIEND_SUCK_DICK_AND_GET_****ED_480P_241K_2027745.mp4
2014-08-21 09:06 - 2014-08-21 09:06 - 00006285 _____ () C:\Users\boydphoto\Desktop\NBC IS JUST AS SLIMY AS SHARPTON NOW.txt
2014-08-19 18:38 - 2014-08-19 18:38 - 00007308 _____ () C:\Users\boydphoto\Desktop\WALTER QUESTIONS OBAMA.txt
2014-08-18 15:34 - 2014-09-02 05:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2014-08-18 15:34 - 2014-08-18 15:34 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
2014-08-18 15:33 - 2014-08-18 15:33 - 18841864 _____ (SUPERAntiSpyware) C:\Users\boydphoto\Downloads\SUPERAntiSpyware(2).exe
2014-08-18 15:33 - 2014-08-18 15:33 - 18841864 _____ (SUPERAntiSpyware) C:\Users\boydphoto\Downloads\SUPERAntiSpyware(1).exe
2014-08-18 08:59 - 2014-08-18 08:59 - 00000000 _____ () C:\Users\boydphoto\Downloads\Free_Online_Creative_Class___Live_Video_Broadcast_____Learn._Be_Inspired_live_1_1408372712_281156005.flv
2014-08-17 14:17 - 2014-08-17 14:17 - 01373824 _____ () C:\Users\boydphoto\Downloads\Player.exe
2014-08-16 19:33 - 2014-08-16 19:33 - 00000000 ____D () C:\Users\boydphoto\Desktop\SHALL WE TELL THE PRESIDENT 310
2014-08-15 20:54 - 2014-06-30 15:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2014-08-15 20:54 - 2014-06-30 15:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll
2014-08-15 20:54 - 2014-06-05 23:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2014-08-15 20:54 - 2014-06-05 23:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2014-08-15 20:54 - 2014-03-09 14:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2014-08-15 20:54 - 2014-03-09 14:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2014-08-15 20:54 - 2014-03-09 14:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe
2014-08-15 20:54 - 2014-03-09 14:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll
2014-08-15 10:51 - 2014-08-15 10:51 - 13691806 _____ () C:\Users\boydphoto\Downloads\videodownloader.zip
2014-08-15 10:50 - 2014-08-15 10:50 - 00699016 _____ (CNET Download.com) C:\Users\boydphoto\Downloads\cbsidlm-cbsi213-Sothink_Web_Video_Downloader-SEO-10769050.exe
2014-08-15 05:44 - 2014-07-15 20:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-08-15 05:44 - 2014-07-15 19:46 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-08-15 05:44 - 2014-07-08 19:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2014-08-15 05:44 - 2014-07-08 19:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2014-08-15 05:44 - 2014-07-08 19:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2014-08-15 05:44 - 2014-07-08 19:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2014-08-15 05:44 - 2014-07-08 19:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2014-08-15 05:44 - 2014-07-08 18:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
2014-08-15 05:44 - 2014-07-08 18:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL
2014-08-15 05:44 - 2014-07-08 18:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
2014-08-15 05:44 - 2014-07-08 18:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
2014-08-15 05:44 - 2014-07-08 18:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2014-08-15 05:44 - 2014-07-08 15:38 - 00419992 _____ () C:\Windows\system32\locale.nls
2014-08-15 05:44 - 2014-07-08 15:30 - 00419992 _____ () C:\Windows\SysWOW64\locale.nls
2014-08-15 05:43 - 2014-07-31 16:41 - 00348856 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-08-15 05:43 - 2014-07-31 16:16 - 00307384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-08-15 05:43 - 2014-07-25 07:52 - 23645696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-08-15 05:43 - 2014-07-25 07:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-08-15 05:43 - 2014-07-25 07:01 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-08-15 05:43 - 2014-07-25 06:51 - 17524224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-08-15 05:43 - 2014-07-25 06:30 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-08-15 05:43 - 2014-07-25 06:28 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-08-15 05:43 - 2014-07-25 06:28 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-08-15 05:43 - 2014-07-25 06:25 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-08-15 05:43 - 2014-07-25 06:25 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-08-15 05:43 - 2014-07-25 06:11 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-08-15 05:43 - 2014-07-25 06:10 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-08-15 05:43 - 2014-07-25 06:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-08-15 05:43 - 2014-07-25 06:03 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-08-15 05:43 - 2014-07-25 06:00 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-08-15 05:43 - 2014-07-25 06:00 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-08-15 05:43 - 2014-07-25 05:59 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-08-15 05:43 - 2014-07-25 05:47 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-08-15 05:43 - 2014-07-25 05:40 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-08-15 05:43 - 2014-07-25 05:34 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-08-15 05:43 - 2014-07-25 05:34 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-08-15 05:43 - 2014-07-25 05:33 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-08-15 05:43 - 2014-07-25 05:30 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-08-15 05:43 - 2014-07-25 05:28 - 05824512 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-08-15 05:43 - 2014-07-25 05:28 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-08-15 05:43 - 2014-07-25 05:21 - 02184704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-08-15 05:43 - 2014-07-25 05:19 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-08-15 05:43 - 2014-07-25 05:18 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-08-15 05:43 - 2014-07-25 05:17 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-08-15 05:43 - 2014-07-25 05:17 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-08-15 05:43 - 2014-07-25 05:12 - 00438784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-08-15 05:43 - 2014-07-25 05:10 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-08-15 05:43 - 2014-07-25 05:10 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-08-15 05:43 - 2014-07-25 05:08 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-08-15 05:43 - 2014-07-25 05:06 - 04204032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-08-15 05:43 - 2014-07-25 04:52 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-08-15 05:43 - 2014-07-25 04:47 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-08-15 05:43 - 2014-07-25 04:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-08-15 05:43 - 2014-07-25 04:42 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-08-15 05:43 - 2014-07-25 04:39 - 02087936 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-08-15 05:43 - 2014-07-25 04:39 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-08-15 05:43 - 2014-07-25 04:36 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-08-15 05:43 - 2014-07-25 04:34 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-08-15 05:43 - 2014-07-25 04:29 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-08-15 05:43 - 2014-07-25 04:23 - 13547008 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-08-15 05:43 - 2014-07-25 04:13 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-08-15 05:43 - 2014-07-25 04:07 - 02001920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-08-15 05:43 - 2014-07-25 04:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-08-15 05:43 - 2014-07-25 04:03 - 11772928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-08-15 05:43 - 2014-07-25 03:52 - 02266624 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-08-15 05:43 - 2014-07-25 03:26 - 01431040 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-08-15 05:43 - 2014-07-25 03:17 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-08-15 05:43 - 2014-07-25 03:09 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-08-15 05:43 - 2014-07-25 03:05 - 01792512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-08-15 05:43 - 2014-07-25 03:00 - 01169920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-08-15 05:43 - 2014-06-24 19:05 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-08-15 05:43 - 2014-06-24 18:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-08-15 05:43 - 2014-06-12 00:52 - 00986560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2014-08-15 05:43 - 2014-06-03 03:02 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-08-15 05:43 - 2014-06-03 03:02 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-08-15 05:43 - 2014-06-03 03:02 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2014-08-15 05:43 - 2014-06-03 03:02 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-08-15 05:43 - 2014-06-03 02:29 - 02363392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-08-15 05:43 - 2014-06-03 02:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-08-15 05:43 - 2014-06-03 02:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2014-08-15 05:42 - 2014-08-06 19:06 - 00529920 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-08-15 05:42 - 2014-08-06 19:01 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-08-15 05:42 - 2014-07-13 19:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2014-08-15 05:42 - 2014-07-13 18:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2014-08-14 22:39 - 2014-08-14 22:39 - 00000000 _____ () C:\Users\boydphoto\Downloads\▶_Booty_Swing_Shuffle_main_2493896_kpeid_m7U2qxQrp0PxivthTjcQsg_kpid_2493896_kpu_lebensfrequenz_kvid_DvWor5rx0hk_mpvid_oqnsN.asf
2014-08-13 11:17 - 2014-08-13 11:18 - 00811368 _____ () C:\Windows\Minidump\081314-17409-01.dmp
2014-08-11 17:30 - 2014-08-11 17:31 - 00262144 _____ () C:\Windows\Minidump\081114-24445-01.dmp
2014-08-11 08:34 - 2014-08-11 08:34 - 00000000 _____ () C:\Users\boydphoto\Downloads\Blood__sweat_and_tears_made_beautiful....___Karen_Wall_Garrison_10538059_847435781933736_192529427_n.mp4
2014-08-11 04:07 - 2014-08-11 04:07 - 00000461 _____ () C:\Users\boydphoto\Desktop\My Book (H) - Shortcut.lnk
2014-08-10 21:03 - 2014-08-10 21:03 - 01707144 _____ () C:\Users\boydphoto\Downloads\Adaware_Installer.exe
2014-08-10 10:06 - 2014-08-10 10:06 - 02347384 _____ (ESET) C:\Users\boydphoto\Downloads\esetsmartinstaller_enu.exe
2014-08-09 15:55 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-08-09 15:54 - 2014-09-06 15:53 - 00000000 ____D () C:\AdwCleaner
2014-08-09 15:54 - 2014-08-09 15:54 - 01366203 _____ () C:\Users\boydphoto\Downloads\AdwCleaner.exe
2014-08-09 15:02 - 2014-08-09 15:02 - 00096256 _____ () C:\Users\boydphoto\Downloads\SystemLook_x64.exe
2014-08-09 14:40 - 2014-09-04 21:00 - 00000000 ____D () C:\Users\boydphoto\Desktop\REASS WED
2014-08-09 14:24 - 2014-08-09 14:24 - 00000000 ____D () C:\Users\boydphoto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
2014-08-09 11:49 - 2014-08-09 11:49 - 00000000 _____ () C:\Users\boydphoto\Downloads\▶_Congressman_Trey_Gowdy_Visits_Maryland_GOP_Full_Speech_main_10244175_kpeid_sdYklGURgu3da1_cpe6USw_kpid_10244175_kpu_themar.asf
2014-08-09 11:21 - 2014-08-09 11:21 - 00000000 _____ () C:\Users\boydphoto\Downloads\▶_Debating_A_Gun_Control_Fanatic_main_9342407_kpeid_u1CepJGKypinrhLmwdbEIQ_kpid_9342407_kpu_Storyleak_kvid_CNb34vPqrN0_mpvid.asf
2014-08-09 06:20 - 2014-08-09 06:20 - 18664944 _____ (SUPERAntiSpyware) C:\Users\boydphoto\Downloads\SUPERAntiSpyware.exe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-09-08 09:46 - 2014-09-08 09:46 - 00021388 _____ () C:\Users\boydphoto\Desktop\FRST.txt
2014-09-08 09:46 - 2014-09-06 18:26 - 00000000 ____D () C:\FRST
2014-09-08 09:45 - 2014-09-08 09:45 - 02105344 _____ (Farbar) C:\Users\boydphoto\Desktop\FRST64.exe
2014-09-08 09:41 - 2014-05-21 05:19 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-09-08 08:49 - 2014-09-08 08:49 - 06574328 _____ () C:\Users\boydphoto\Desktop\TONYA DZURILLA BEST PHOTO.tif
2014-09-08 08:48 - 2014-09-08 08:48 - 17484756 _____ () C:\Users\boydphoto\Desktop\TONYA DZURILLA BEST PHOTO.psd
2014-09-08 08:37 - 2009-07-13 22:32 - 00000000 ____D () C:\Windows\system32\FxsTmp
2014-09-08 05:45 - 2009-07-13 21:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-08 05:45 - 2009-07-13 21:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-08 05:42 - 2014-09-02 05:38 - 00003210 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForboydphoto
2014-09-08 05:42 - 2014-09-02 05:38 - 00000348 _____ () C:\Windows\Tasks\HPCeeScheduleForboydphoto.job
2014-09-08 05:41 - 2012-07-19 12:20 - 01352759 _____ () C:\Windows\WindowsUpdate.log
2014-09-08 05:39 - 2013-06-08 11:00 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-09-08 05:38 - 2014-09-05 09:22 - 00003230 _____ () C:\Windows\System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1479091243-4294284354-2124732490-1000
2014-09-08 05:38 - 2014-08-30 04:55 - 00003356 _____ () C:\Windows\System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1479091243-4294284354-2124732490-1000
2014-09-08 05:38 - 2009-07-13 22:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-08 05:37 - 2009-07-13 21:51 - 00093748 _____ () C:\Windows\setupact.log
2014-09-08 05:07 - 2012-09-18 00:13 - 00003958 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{F4A58266-5990-427E-9D1F-6F96DEC020B6}
2014-09-08 05:06 - 2014-09-03 12:28 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-09-08 05:06 - 2013-10-04 04:55 - 00000000 ____D () C:\Users\boydphoto\AppData\Local\Adobe
2014-09-07 19:28 - 2014-03-18 18:33 - 00000000 ____D () C:\Users\boydphoto\Desktop\PHOTOS, 3-18-14
2014-09-07 19:27 - 2014-01-23 11:11 - 00000000 ____D () C:\Users\boydphoto\Desktop\INFO
2014-09-07 15:28 - 2014-09-07 12:07 - 02574288 _____ () C:\Users\boydphoto\Desktop\LOREN BLACKWOOD IN RED-BLACK PRINT.tif
2014-09-07 14:45 - 2014-09-07 14:36 - 01006664 _____ () C:\Users\boydphoto\Desktop\MICH SOFT COPY.tif
2014-09-07 14:33 - 2014-09-07 10:45 - 05899332 _____ () C:\Users\boydphoto\Desktop\mich wed 1 120 COPY.tif
2014-09-07 14:15 - 2014-09-07 14:15 - 00267640 _____ (Fusion Install ) C:\Users\boydphoto\Downloads\Setup.exe
2014-09-07 13:37 - 2009-07-13 22:13 - 00783360 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-07 12:46 - 2012-10-18 13:52 - 00000000 ____D () C:\Users\boydphoto\AppData\Roaming\Audacity
2014-09-07 11:26 - 2014-09-07 11:26 - 00659480 _____ (optikVerve Labs ) C:\Users\boydphoto\Downloads\vPsetup.exe
2014-09-07 10:14 - 2014-09-07 10:14 - 00647912 _____ () C:\Users\boydphoto\Desktop\KM_dance_painted_COPY.tif
2014-09-07 09:14 - 2014-09-07 09:13 - 01578540 _____ () C:\Users\boydphoto\Desktop\NOTES WITH CARRIE PIEL.tif
2014-09-07 05:14 - 2014-08-24 21:41 - 00003378 _____ () C:\Windows\System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1479091243-4294284354-2124732490-1000
2014-09-07 05:14 - 2014-08-24 21:41 - 00003252 _____ () C:\Windows\System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-1479091243-4294284354-2124732490-1000
2014-09-06 21:25 - 2014-05-28 13:05 - 00000000 ____D () C:\FFOutput
2014-09-06 20:31 - 2013-10-12 04:59 - 00000000 ____D () C:\Users\boydphoto\AppData\Local\CrashDumps
2014-09-06 18:31 - 2014-09-06 18:27 - 00047150 _____ () C:\Users\boydphoto\Downloads\Addition.txt
2014-09-06 18:31 - 2014-09-06 18:26 - 00071707 _____ () C:\Users\boydphoto\Downloads\FRST.txt
2014-09-06 18:24 - 2014-09-06 18:24 - 00024764 _____ () C:\Users\boydphoto\Desktop\1aVZ2nlw.htm
2014-09-06 15:54 - 2010-11-20 20:47 - 01463712 _____ () C:\Windows\PFRO.log
2014-09-06 15:53 - 2014-08-09 15:54 - 00000000 ____D () C:\AdwCleaner
2014-09-06 15:50 - 2014-09-06 15:50 - 01370467 _____ () C:\Users\boydphoto\Downloads\AdwCleaner(2).exe
2014-09-06 14:03 - 2014-09-06 14:03 - 01370467 _____ () C:\Users\boydphoto\Downloads\AdwCleaner(1).exe
2014-09-06 13:44 - 2014-09-06 13:44 - 08670956 _____ () C:\Users\boydphoto\Downloads\Untitled1.avi
2014-09-05 11:43 - 2014-09-05 11:43 - 00000000 _____ () C:\Users\boydphoto\Downloads\video_mp4_ 1549100_675301569197589_1764792559_n.mp4
2014-09-05 10:48 - 2014-09-05 10:48 - 00509440 _____ (Tech Support Guy System) C:\Users\boydphoto\Downloads\SysInfo(2).exe
2014-09-05 09:38 - 2014-09-05 09:36 - 13439600 _____ () C:\Users\boydphoto\Desktop\FP 2014-1_COPY.tif
2014-09-05 05:29 - 2013-08-20 11:10 - 00000000 ____D () C:\Program Files\WinRAR
2014-09-04 21:00 - 2014-08-09 14:40 - 00000000 ____D () C:\Users\boydphoto\Desktop\REASS WED
2014-09-04 20:27 - 2014-09-04 20:27 - 00000022 _____ () C:\Users\boydphoto\Desktop\INDIEGOGO INFO.txt
2014-09-04 12:45 - 2014-09-04 12:46 - 00272808 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-09-04 12:45 - 2014-09-04 12:45 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-09-04 12:45 - 2014-09-04 12:45 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-09-04 12:45 - 2014-09-04 12:45 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-09-04 12:45 - 2013-02-13 10:30 - 00000000 ____D () C:\Program Files (x86)\Java
2014-09-04 12:44 - 2013-02-13 19:03 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-09-04 12:43 - 2014-09-04 12:43 - 00001845 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-09-04 12:43 - 2014-09-04 12:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2014-09-04 08:43 - 2014-09-04 08:43 - 00000549 _____ () C:\Users\boydphoto\Desktop\MY NOTE TO RENE, 9-4-2014.txt
2014-09-03 20:02 - 2014-09-03 20:02 - 02455087 _____ () C:\Users\boydphoto\Downloads\movie4.wmv
2014-09-03 19:46 - 2014-09-03 19:46 - 00003897 _____ () C:\Users\boydphoto\Desktop\JOKES FOR ENGINEERS.txt
2014-09-03 17:06 - 2014-08-26 11:57 - 36668996 _____ () C:\Users\boydphoto\Desktop\DSC_0028.tif
2014-09-03 12:49 - 2014-05-21 05:19 - 00699568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-03 12:49 - 2014-05-21 05:19 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-03 12:49 - 2014-05-21 05:19 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-09-03 12:48 - 2014-09-03 12:49 - 00319912 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-09-03 12:48 - 2014-09-03 12:49 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-09-03 12:48 - 2014-09-03 12:49 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-09-03 12:48 - 2014-09-03 12:49 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-09-03 12:48 - 2014-09-03 12:48 - 00000000 ____D () C:\Program Files\Java
2014-09-03 12:47 - 2013-08-20 11:10 - 00000000 ____D () C:\Users\boydphoto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-09-03 12:47 - 2013-08-20 11:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-09-03 12:39 - 2014-09-03 12:37 - 04809524 _____ () C:\Users\boydphoto\Downloads\avast_premier_antivirus_setup_online(1).exe
2014-09-03 12:34 - 2014-05-25 06:53 - 00000000 ____D () C:\Program Files (x86)\Lavasoft
2014-09-03 12:30 - 2014-09-03 12:30 - 00000000 ____D () C:\Users\boydphoto\AppData\Roaming\AVAST Software
2014-09-03 12:29 - 2014-09-03 12:29 - 00001972 _____ () C:\Users\Public\Desktop\avast! SafeZone.lnk
2014-09-03 12:29 - 2014-09-03 12:29 - 00001912 _____ () C:\Users\Public\Desktop\avast! Premier.lnk
2014-09-03 12:29 - 2014-09-03 12:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
2014-09-03 12:28 - 2014-09-03 12:27 - 00427360 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-09-03 12:27 - 2014-09-03 12:27 - 01041168 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2014-09-03 12:27 - 2014-09-03 12:27 - 00307344 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-09-03 12:27 - 2014-09-03 12:27 - 00224896 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-09-03 12:27 - 2014-09-03 12:27 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-09-03 12:27 - 2014-09-03 12:27 - 00092008 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2014-09-03 12:27 - 2014-09-03 12:27 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-09-03 12:27 - 2014-09-03 12:27 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-09-03 12:27 - 2014-09-03 12:27 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-09-03 12:27 - 2014-09-03 12:27 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-09-03 12:27 - 2014-09-03 12:27 - 00028184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2014-09-03 12:26 - 2014-09-03 12:26 - 00448400 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNdisFlt.sys
2014-09-03 12:24 - 2014-09-03 12:24 - 00000000 ____D () C:\Program Files\AVAST Software
2014-09-03 12:24 - 2013-11-23 13:36 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-09-03 12:22 - 2014-09-03 12:22 - 04834344 _____ (AVAST Software) C:\Users\boydphoto\Downloads\avast_premier_antivirus_setup_online.exe
2014-09-03 10:43 - 2012-09-19 19:06 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log
2014-09-03 10:15 - 2014-09-03 10:15 - 00002567 _____ () C:\Users\boydphoto\Desktop\TFW - HOLDER PUNISHES TEXAS BUSINESS FOR CHECKING WORKERS' CITIZENSHIP PAPERS.txt
2014-09-03 08:56 - 2014-02-11 13:45 - 00000000 ____D () C:\ProgramData\CanonIJPLM
2014-09-02 19:22 - 2014-09-02 19:22 - 00000000 ____D () C:\Users\boydphoto\Desktop\LAST COYOTE 31
2014-09-02 05:09 - 2014-08-18 15:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2014-09-01 04:20 - 2014-09-01 04:20 - 00000000 _____ () C:\Users\boydphoto\Downloads\1409567572869.webm_1409567572869..ebm
2014-08-30 19:19 - 2014-08-30 19:19 - 00007192 _____ () C:\Users\boydphoto\Desktop\TFW'S EMASCULATING THE U.S. MILITARY...THERE'S VERY LITTLE LEFT..txt
2014-08-30 05:48 - 2014-08-30 05:48 - 02806920 _____ () C:\Users\boydphoto\Downloads\Adaware_Installer(2).exe
2014-08-29 08:47 - 2014-08-28 14:50 - 04685618 ____H () C:\Users\boydphoto\Desktop\DSCF0777 copy copy.tif
2014-08-29 05:37 - 2014-08-29 05:37 - 02806920 _____ () C:\Users\boydphoto\Downloads\Adaware_Installer(1).exe
2014-08-29 05:33 - 2009-07-13 21:45 - 04977384 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-08-28 18:15 - 2014-08-28 18:15 - 00827416 _____ ( ) C:\Users\boydphoto\Downloads\FlvPlayerSetup.exe
2014-08-28 16:41 - 2014-08-25 16:00 - 00000000 ____D () C:\Users\boydphoto\Desktop\MIKE AND MIMI TO PRINT
2014-08-28 14:56 - 2014-08-28 14:43 - 33576326 _____ () C:\Users\boydphoto\Desktop\CARMEL WAVES.tif
2014-08-28 14:56 - 2014-08-28 14:38 - 27230732 _____ () C:\Users\boydphoto\Desktop\ASILOMAR COAST COPY.tif
2014-08-28 11:20 - 2014-08-28 11:20 - 02060172 _____ () C:\Users\boydphoto\Desktop\REESE AT HEISLER PARK_COPY.tif
2014-08-26 12:23 - 2014-08-26 12:23 - 04341185 _____ () C:\Users\boydphoto\Downloads\grope260prv.wmv
2014-08-26 12:22 - 2014-08-26 12:22 - 04349977 _____ () C:\Users\boydphoto\Downloads\grope269prv.wmv
2014-08-26 10:12 - 2014-08-26 10:12 - 00000148 _____ () C:\Users\boydphoto\Desktop\PIXEL BENDER.txt
2014-08-26 09:45 - 2014-08-26 09:45 - 00001476 _____ () C:\Users\boydphoto\Downloads\oilpaintaction.zip
2014-08-26 09:25 - 2014-08-26 09:25 - 00001515 _____ () C:\Users\boydphoto\Desktop\Adobe Pixel Bender Toolkit 2.lnk
2014-08-26 09:20 - 2012-09-18 00:40 - 00000000 ____D () C:\Users\boydphoto\Documents\Adobe
2014-08-26 09:15 - 2013-07-02 18:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe
2014-08-26 09:15 - 2011-10-15 19:51 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-08-26 09:10 - 2014-08-26 09:10 - 58661931 _____ () C:\Users\boydphoto\Downloads\pixelbender_toolkit_2.5.zip
2014-08-26 09:08 - 2014-08-26 09:08 - 00002135 _____ () C:\Users\boydphoto\Desktop\HOLDER PAYS FERGUSON GANG LEADER TO LEAD RIOTS, LOOTING.txt
2014-08-26 08:22 - 2014-08-26 08:22 - 08312012 _____ () C:\Users\boydphoto\Downloads\01-iam.m4a
2014-08-26 07:54 - 2014-08-26 07:54 - 00000000 _____ () C:\Users\boydphoto\Downloads\video_mp4_ 10332382_10152184065052024_765482382_n.mp4
2014-08-25 18:45 - 2014-08-25 18:45 - 00005530 _____ () C:\Users\boydphoto\Desktop\LERNER'S EMAILS NEVER DISAPPEARED!.txt
2014-08-25 16:51 - 2014-08-25 16:51 - 01120392 _____ () C:\Users\boydphoto\Downloads\Player_Setup.exe
2014-08-25 16:51 - 2014-08-25 16:51 - 01120392 _____ () C:\Users\boydphoto\Downloads\Player_Setup(1).exe
2014-08-25 16:00 - 2014-08-25 16:00 - 00000000 ____D () C:\Users\boydphoto\Desktop\MMC 2
2014-08-25 14:33 - 2014-08-25 14:33 - 00000000 _____ () C:\Users\boydphoto\Downloads\guy_tapes_his_wife_sucking_****___._porn_tube_m_d6f57fc1811fbeaf0c62d58f37afa3ed.mp4
2014-08-25 11:33 - 2014-08-25 11:33 - 00006469 _____ () C:\Users\boydphoto\Desktop\TFW IS A MUSLIM, PERIOD.txt
2014-08-25 06:53 - 2010-11-20 20:27 - 00270496 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-08-24 16:49 - 2014-08-24 16:49 - 00851632 _____ (Adobe Systems Incorporated) C:\Users\boydphoto\Downloads\uninstall_flash_player.exe
2014-08-24 16:48 - 2014-08-24 16:48 - 00000860 _____ () C:\Users\boydphoto\Desktop\FIX SHOCKWAVE.txt
2014-08-24 14:37 - 2014-08-24 14:37 - 00000000 _____ () C:\Users\boydphoto\Downloads\video_mp4_ 1050082_224238101071089_1202554638_n.mp4
2014-08-24 11:22 - 2014-08-24 07:55 - 00000205 _____ () C:\Users\boydphoto\Desktop\Calling a rifle an, 'Assault Rifle'.txt
2014-08-23 23:44 - 2014-08-23 23:44 - 00000060 _____ () C:\Users\boydphoto\Desktop\law and order saturday evening.txt
2014-08-23 18:51 - 2014-08-23 18:51 - 00000000 _____ () C:\Users\boydphoto\Downloads\Boy_Swallows_Cum___Videos_895695_cute_teen_swallows_a_nasty_load_of_cum.flv
2014-08-23 18:02 - 2014-08-23 18:02 - 00002851 _____ () C:\Users\boydphoto\Desktop\U.S. vet writes to ISIS.txt
2014-08-23 16:52 - 2014-08-23 16:53 - 00093469 _____ () C:\Users\boydphoto\Downloads\Windows Media Player [1].exe
2014-08-23 16:36 - 2014-08-23 16:36 - 00509440 _____ (Tech Support Guy System) C:\Users\boydphoto\Downloads\SysInfo(1).exe
2014-08-23 16:35 - 2014-08-23 16:35 - 00509440 _____ (Tech Support Guy System) C:\Users\boydphoto\Downloads\SysInfo.exe
2014-08-22 21:22 - 2012-09-18 00:08 - 00000000 ____D () C:\Users\boydphoto
2014-08-22 21:19 - 2014-04-13 15:18 - 00000000 ____D () C:\Users\boydphoto\Documents\DESKTOP 1-23-14
2014-08-22 21:19 - 2012-10-19 11:45 - 00000000 ____D () C:\Users\boydphoto\AppData\Roaming\SoftGrid Client
2014-08-22 21:19 - 2009-07-13 20:20 - 00000000 ____D () C:\Windows\registration
2014-08-22 21:18 - 2014-08-08 08:20 - 00000000 ____D () C:\Program Files (x86)\Hp
2014-08-22 21:18 - 2012-11-21 05:43 - 00000000 ____D () C:\ProgramData\Real
2014-08-22 19:07 - 2014-08-28 05:48 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-22 18:45 - 2014-08-28 05:48 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-22 17:59 - 2014-08-28 05:48 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-08-22 09:17 - 2014-08-22 05:18 - 00000000 ____D () C:\Users\boydphoto\Desktop\REASS DVD
2014-08-22 09:12 - 2014-08-22 09:11 - 00000000 ____D () C:\Users\boydphoto\Desktop\REASS AL
2014-08-21 13:39 - 2014-08-21 13:39 - 00000000 _____ () C:\Users\boydphoto\Downloads\SHE_LIKES_TO_WATCH_HER_BOYFRIEND_SUCK_DICK_AND_GET_****ED_480P_241K_2027745.mp4
2014-08-21 09:06 - 2014-08-21 09:06 - 00006285 _____ () C:\Users\boydphoto\Desktop\NBC IS JUST AS SLIMY AS SHARPTON NOW.txt
2014-08-19 18:38 - 2014-08-19 18:38 - 00007308 _____ () C:\Users\boydphoto\Desktop\WALTER QUESTIONS OBAMA.txt
2014-08-19 10:32 - 2014-01-23 11:09 - 00000000 ____D () C:\Users\boydphoto\Downloads\DESKTOP 1-23-14
2014-08-18 18:06 - 2009-07-13 22:08 - 00032596 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-08-18 15:34 - 2014-08-18 15:34 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
2014-08-18 15:33 - 2014-08-18 15:33 - 18841864 _____ (SUPERAntiSpyware) C:\Users\boydphoto\Downloads\SUPERAntiSpyware(2).exe
2014-08-18 15:33 - 2014-08-18 15:33 - 18841864 _____ (SUPERAntiSpyware) C:\Users\boydphoto\Downloads\SUPERAntiSpyware(1).exe
2014-08-18 08:59 - 2014-08-18 08:59 - 00000000 _____ () C:\Users\boydphoto\Downloads\Free_Online_Creative_Class___Live_Video_Broadcast_____Learn._Be_Inspired_live_1_1408372712_281156005.flv
2014-08-17 17:49 - 2009-07-13 20:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-08-17 14:17 - 2014-08-17 14:17 - 01373824 _____ () C:\Users\boydphoto\Downloads\Player.exe
2014-08-17 13:03 - 2013-06-07 13:55 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-08-16 19:33 - 2014-08-16 19:33 - 00000000 ____D () C:\Users\boydphoto\Desktop\SHALL WE TELL THE PRESIDENT 310
2014-08-16 08:06 - 2009-07-13 20:20 - 00000000 ____D () C:\Windows\rescache
2014-08-16 05:04 - 2009-07-13 20:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-08-15 21:03 - 2013-08-14 20:15 - 00000000 ____D () C:\Windows\system32\MRT
2014-08-15 20:59 - 2012-09-20 00:48 - 99218768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-08-15 20:54 - 2014-05-06 20:05 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-08-15 10:51 - 2014-08-15 10:51 - 13691806 _____ () C:\Users\boydphoto\Downloads\videodownloader.zip
2014-08-15 10:50 - 2014-08-15 10:50 - 00699016 _____ (CNET Download.com) C:\Users\boydphoto\Downloads\cbsidlm-cbsi213-Sothink_Web_Video_Downloader-SEO-10769050.exe
2014-08-14 22:39 - 2014-08-14 22:39 - 00000000 _____ () C:\Users\boydphoto\Downloads\▶_Booty_Swing_Shuffle_main_2493896_kpeid_m7U2qxQrp0PxivthTjcQsg_kpid_2493896_kpu_lebensfrequenz_kvid_DvWor5rx0hk_mpvid_oqnsN.asf
2014-08-13 11:18 - 2014-08-13 11:17 - 00811368 _____ () C:\Windows\Minidump\081314-17409-01.dmp
2014-08-13 11:17 - 2014-05-20 20:39 - 00000000 ____D () C:\Windows\Minidump
2014-08-13 11:17 - 2014-05-20 20:38 - 453723354 _____ () C:\Windows\MEMORY.DMP
2014-08-11 17:31 - 2014-08-11 17:30 - 00262144 _____ () C:\Windows\Minidump\081114-24445-01.dmp
2014-08-11 08:34 - 2014-08-11 08:34 - 00000000 _____ () C:\Users\boydphoto\Downloads\Blood__sweat_and_tears_made_beautiful....___Karen_Wall_Garrison_10538059_847435781933736_192529427_n.mp4
2014-08-11 08:29 - 2009-07-13 20:20 - 00000000 ____D () C:\Windows\Help
2014-08-11 04:07 - 2014-08-11 04:07 - 00000461 _____ () C:\Users\boydphoto\Desktop\My Book (H) - Shortcut.lnk
2014-08-10 21:03 - 2014-08-10 21:03 - 01707144 _____ () C:\Users\boydphoto\Downloads\Adaware_Installer.exe
2014-08-10 17:44 - 2014-04-08 09:41 - 00000000 ____D () C:\Windows\erdnt
2014-08-10 10:06 - 2014-08-10 10:06 - 02347384 _____ (ESET) C:\Users\boydphoto\Downloads\esetsmartinstaller_enu.exe
2014-08-09 16:29 - 2013-12-19 18:45 - 00000000 ____D () C:\Users\boydphoto\AppData\Local\LogMeIn Rescue Applet
2014-08-09 16:27 - 2013-06-12 14:45 - 00001065 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-08-09 16:27 - 2012-09-18 00:13 - 00000957 _____ () C:\Users\boydphoto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-08-09 15:54 - 2014-08-09 15:54 - 01366203 _____ () C:\Users\boydphoto\Downloads\AdwCleaner.exe
2014-08-09 15:02 - 2014-08-09 15:02 - 00096256 _____ () C:\Users\boydphoto\Downloads\SystemLook_x64.exe
2014-08-09 14:24 - 2014-08-09 14:24 - 00000000 ____D () C:\Users\boydphoto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
2014-08-09 11:49 - 2014-08-09 11:49 - 00000000 _____ () C:\Users\boydphoto\Downloads\▶_Congressman_Trey_Gowdy_Visits_Maryland_GOP_Full_Speech_main_10244175_kpeid_sdYklGURgu3da1_cpe6USw_kpid_10244175_kpu_themar.asf
2014-08-09 11:21 - 2014-08-09 11:21 - 00000000 _____ () C:\Users\boydphoto\Downloads\▶_Debating_A_Gun_Control_Fanatic_main_9342407_kpeid_u1CepJGKypinrhLmwdbEIQ_kpid_9342407_kpu_Storyleak_kvid_CNb34vPqrN0_mpvid.asf
2014-08-09 06:20 - 2014-08-09 06:20 - 18664944 _____ (SUPERAntiSpyware) C:\Users\boydphoto\Downloads\SUPERAntiSpyware.exe

Some content of TEMP:
====================
C:\Users\boydphoto\AppData\Local\Temp\be4bb4b9-0b7c-4679-b12f-90a7420ac1e7.exe
C:\Users\boydphoto\AppData\Local\Temp\Quarantine.exe

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2014-09-08 06:13

==================== End Of Log ============================
See less See more
Hi. I think I've sent what you asked for, but it's not showing up. What can I do?

Thanks,

Boyd.
It was there but I deleted it due to inappropriate content in the log.

Please download the attached fixlist.txt file and save it where you saved FRST (which should be the desktop).

NOTE: It's important that both files, FRST and fixlist.txt are in the same location (preferably on the desktop) or the fix will not work.

Run FRST/FRST64 and press the Fix button just once and then wait.

If the tool needs a restart please make sure you let the system restart normally and let the tool complete its run after the restart.

NOTICE: This script was written specifically for this user, for use on this particular machine. Running this on another machine may cause damage to your operating system.

The tool will make a log on the Desktop (Fixlog.txt). Please post it in your reply.

Attachments

See less See more
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 07-09-2014 01
Ran by boydphoto at 2014-09-08 13:13:47 Run:1
Running from C:\Users\boydphoto\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
2014-09-07 14:15 - 2014-09-07 14:15 - 00267640 _____ (Fusion Install ) C:\Users\boydphoto\Downloads\Setup.exe
2014-09-06 18:27 - 2014-09-06 18:31 - 00047150 _____ () C:\Users\boydphoto\Downloads\Addition.txt
2014-09-06 18:26 - 2014-09-08 09:46 - 00000000 ____D () C:\FRST
2014-09-06 18:26 - 2014-09-06 18:31 - 00071707 _____ () C:\Users\boydphoto\Downloads\FRST.txt
2014-09-06 15:50 - 2014-09-06 15:50 - 01370467 _____ () C:\Users\boydphoto\Downloads\AdwCleaner(2).exe
2014-09-06 14:03 - 2014-09-06 14:03 - 01370467 _____ () C:\Users\boydphoto\Downloads\AdwCleaner(1).exe
2014-09-05 10:48 - 2014-09-05 10:48 - 00509440 _____ (Tech Support Guy System) C:\Users\boydphoto\Downloads\SysInfo(2).exe
2014-08-30 05:48 - 2014-08-30 05:48 - 02806920 _____ () C:\Users\boydphoto\Downloads\Adaware_Installer(2).exe
2014-08-29 05:37 - 2014-08-29 05:37 - 02806920 _____ () C:\Users\boydphoto\Downloads\Adaware_Installer(1).exe

*****************

C:\Users\boydphoto\Downloads\Setup.exe => Moved successfully.
C:\Users\boydphoto\Downloads\Addition.txt => Moved successfully.

"C:\FRST" directory move:

C:\FRST\users00 => Moved successfully.
C:\FRST\Quarantine\C\Users\boydphoto\Downloads\Addition.txt.xBAD => Moved successfully.
C:\FRST\Quarantine\C\Users\boydphoto\Downloads\Setup.exe.xBAD => Moved successfully.
C:\FRST\Logs\Addition.txt => Moved successfully.
C:\FRST\Logs\Addition_06-09-2014_18-30-43.txt => Moved successfully.
C:\FRST\Logs\ct => Moved successfully.
C:\FRST\Logs\FRST_06-09-2014_18-28-18.txt => Moved successfully.
C:\FRST\Logs\FRST_06-09-2014_18-31-09.txt => Moved successfully.
C:\FRST\Logs\FRST_08-09-2014_09-46-54.txt => Moved successfully.
C:\FRST\Logs\FRST_08-09-2014_12-08-12.txt => Moved successfully.
C:\FRST\Hives\BCD => Moved successfully.
C:\FRST\Hives\default => Moved successfully.
C:\FRST\Hives\ERDNT.CON => Moved successfully.
C:\FRST\Hives\ERDNT.EXE => Moved successfully.
C:\FRST\Hives\ERDNT.INF => Moved successfully.
C:\FRST\Hives\ERDNTDOS.LOC => Moved successfully.
C:\FRST\Hives\ERDNTWIN.LOC => Moved successfully.
C:\FRST\Hives\sam => Moved successfully.
C:\FRST\Hives\security => Moved successfully.
C:\FRST\Hives\software => Moved successfully.
C:\FRST\Hives\system => Moved successfully.
C:\FRST\Hives\Users\00000002\UsrClass.dat => Moved successfully.
C:\FRST\Hives\Users\00000001\ntuser.dat => Moved successfully.
Could not move "C:\FRST" directory. => Scheduled to move on reboot.

C:\Users\boydphoto\Downloads\FRST.txt => Moved successfully.
C:\Users\boydphoto\Downloads\AdwCleaner(2).exe => Moved successfully.
C:\Users\boydphoto\Downloads\AdwCleaner(1).exe => Moved successfully.
C:\Users\boydphoto\Downloads\SysInfo(2).exe => Moved successfully.
C:\Users\boydphoto\Downloads\Adaware_Installer(2).exe => Moved successfully.
C:\Users\boydphoto\Downloads\Adaware_Installer(1).exe => Moved successfully.

=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-09-08 13:16:59)<=

"C:\FRST" => Directory could not move.

==== End of Fixlog ====
See less See more
1 - 20 of 51 Posts
Status
Not open for further replies.
Top