Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Slow PC, Fan goes on and off, always says "Waiting for Cache"

windows 7 cache fan malware not responding multiple chrome.exe 32 fan on and off

  • Please log in to reply

#1
traunt53

traunt53

    Member

  • Member
  • PipPip
  • 45 posts

I have to run to a class until 9:30 but I wanted to get this thread started.

 

I will add more when I get back.  Basically I have ran every malware thing I could find, I have AVG and CCLeaner. Today I ran OTL and AdwCleaner and I wiped away a lot of things I did not want to. So I need to try and restore. Thankfully I have backed up everything earlier this month. :Laptop is about 6 years old so maybe it's time to die? I don;t know but I can't deal with this things anymore.  

 

 


  • 0

Advertisements


#2
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

Please post your OTL log.  OTL does not normally remove anything.  The stuff that adwcleaner removes is normally unwanted but simple to reinstall.  Also please run FRST scan:

 

 
Please download Farbar Recovery Scan Tool and save it to your Desktop. 
 
Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version. 
 
  •  
  • Right click to run as administrator (XP users click run after receipt of Windows Security Warning - Open File). When the tool opens click Yes to disclaimer. 
  • Press Scan button. 
  • It will produce a log called FRST.txt in the same directory the tool is run from.  
  • Please copy and paste log back here. 
  • The first time the tool is run it generates another log (Addition.txt - also located in the same directory as FRST.exe/FRST64.exe). Please also paste that along with the FRST.txt into your reply. 
  •  
    What exactly is not working or is it just slow?

    • 0

    #3
    traunt53

    traunt53

      Member

    • Topic Starter
    • Member
    • PipPip
    • 45 posts

    Thanks for the reply

    Here is the OTL Quick Scan:

     

    OTL logfile created on: 1/28/2015 3:02:58 PM - Run 1
    OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Trent\Downloads
    64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
    Internet Explorer (Version = 9.11.9600.17501)
    Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
     
    3.96 Gb Total Physical Memory | 2.08 Gb Available Physical Memory | 52.50% Memory free
    7.92 Gb Paging File | 5.90 Gb Available in Paging File | 74.51% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]
     
    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
    Drive C: | 287.93 Gb Total Space | 82.65 Gb Free Space | 28.70% Space Free | Partition Type: NTFS
     
    Computer Name: TRENT-PC | User Name: Trent | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
    Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
     
    ========== Processes (SafeList) ==========
     
    PRC - File not found -- 
    PRC - [2015/01/28 14:55:09 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Trent\Downloads\OTL.exe
    PRC - [2015/01/19 15:28:59 | 000,035,008 | ---- | M] (Starfield Technologies) -- C:\Users\Trent\AppData\Local\Workspace\workspaceupdate.exe
    PRC - [2014/12/18 09:54:30 | 003,432,976 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
    PRC - [2014/12/18 09:51:14 | 003,667,472 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2015\avgui.exe
    PRC - [2014/12/18 09:45:26 | 000,298,080 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
    PRC - [2014/10/20 12:45:18 | 000,697,472 | ---- | M] (Starfield Technologies) -- C:\Program Files (x86)\Workspace\offSyncService.exe
    PRC - [2014/09/26 18:19:22 | 000,530,816 | ---- | M] (Oracle Corporation) -- C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
    PRC - [2014/08/15 02:01:12 | 002,640,408 | ---- | M] () -- C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe
    PRC - [2014/08/15 02:01:12 | 001,820,184 | ---- | M] (AVG Secure Search) -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.9\ToolbarUpdater.exe
    PRC - [2014/08/15 02:01:12 | 000,159,768 | ---- | M] () -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.9\loggingserver.exe
    PRC - [2014/08/07 23:39:08 | 000,043,816 | ---- | M] (Apple Inc.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
    PRC - [2014/08/07 07:52:52 | 000,438,616 | ---- | M] (Garmin Ltd or its subsidiaries) -- C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
    PRC - [2013/12/18 13:42:32 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    PRC - [2013/11/01 15:11:20 | 000,067,584 | ---- | M] (PasswordBox, Inc.) -- C:\Program Files (x86)\PasswordBox\pbbtnService.exe
    PRC - [2012/10/09 15:38:29 | 000,296,096 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
    PRC - [2012/06/27 12:01:14 | 000,096,768 | ---- | M] (Freemake) -- C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
    PRC - [2011/07/08 05:59:18 | 000,862,032 | R--- | M] (Storage Appliance Corp.) -- C:\ProgramData\OfficeGuardianV2N\Reminder\SacReminder.exe
    PRC - [2011/07/08 05:59:17 | 000,163,664 | R--- | M] (Storage Appliance Corporation) -- C:\ProgramData\OfficeGuardianV2N\Reminder\SacNetAgent.exe
    PRC - [2011/07/08 05:59:17 | 000,083,792 | R--- | M] (Storage Appliance Corp.) -- C:\ProgramData\OfficeGuardianV2N\UACProxy.exe
    PRC - [2009/12/29 16:35:38 | 000,140,520 | ---- | M] (CyberLink Corp.) -- C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe
    PRC - [2009/06/09 09:11:14 | 000,155,648 | ---- | M] (Stardock Corporation) -- C:\Program Files\Dell\DellDock\DockLogin.exe
    PRC - [2009/06/04 19:03:32 | 000,186,904 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
    PRC - [2009/06/04 19:03:06 | 000,354,840 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
    PRC - [2009/02/23 14:43:56 | 000,307,200 | ---- | M] (Creative Technology Ltd) -- C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
     
     
    ========== Modules (No Company Name) ==========
     
    MOD - [2015/01/25 01:08:43 | 014,913,864 | ---- | M] () -- C:\Users\Trent\AppData\Local\Google\Chrome\Application\40.0.2214.93\PepperFlash\pepflashplayer.dll
    MOD - [2015/01/25 01:08:41 | 009,170,760 | ---- | M] () -- C:\Users\Trent\AppData\Local\Google\Chrome\Application\40.0.2214.93\pdf.dll
    MOD - [2015/01/25 01:08:37 | 001,117,512 | ---- | M] () -- C:\Users\Trent\AppData\Local\Google\Chrome\Application\40.0.2214.93\libglesv2.dll
    MOD - [2015/01/25 01:08:35 | 000,211,272 | ---- | M] () -- C:\Users\Trent\AppData\Local\Google\Chrome\Application\40.0.2214.93\libegl.dll
    MOD - [2014/10/11 12:05:58 | 001,044,776 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
    MOD - [2014/08/15 02:01:12 | 002,640,408 | ---- | M] () -- C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe
    MOD - [2014/08/15 02:01:12 | 001,654,296 | ---- | M] () -- C:\Program Files (x86)\AVG SafeGuard toolbar\TBAPI.dll
    MOD - [2014/08/15 02:01:12 | 000,519,704 | ---- | M] () -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.9\log4cplusU.dll
     
     
    ========== Services (SafeList) ==========
     
    SRV:64bit: - [2014/11/21 21:35:29 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
    SRV:64bit: - [2014/04/09 08:13:48 | 000,289,256 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe -- (McComponentHostService)
    SRV:64bit: - [2013/05/27 00:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
    SRV:64bit: - [2013/04/18 17:15:18 | 003,388,144 | ---- | M] (Intel® Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe -- (ZeroConfigService)
    SRV:64bit: - [2013/04/18 17:14:58 | 000,273,136 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe -- (MyWiFiDHCPDNS)
    SRV:64bit: - [2013/04/18 17:14:46 | 000,621,296 | ---- | M] (Intel® Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng)
    SRV:64bit: - [2013/04/18 17:14:20 | 000,149,744 | ---- | M] (Intel® Corporation) [Auto | Running] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc)
    SRV:64bit: - [2013/04/11 01:12:50 | 000,772,064 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe -- (AMPPALR3)
    SRV:64bit: - [2012/09/12 17:07:06 | 000,135,984 | ---- | M] (Intel® Corporation) [Auto | Running] -- C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe -- (BTHSSecurityMgr)
    SRV:64bit: - [2009/06/29 15:44:38 | 000,240,128 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\stacsv64.exe -- (STacSV)
    SRV:64bit: - [2009/06/09 09:11:14 | 000,155,648 | ---- | M] (Stardock Corporation) [Auto | Running] -- C:\Program Files\Dell\DellDock\DockLogin.exe -- (DockLoginService)
    SRV:64bit: - [2007/02/12 19:43:44 | 000,065,536 | ---- | M] (O2Micro International) [Auto | Running] -- C:\Windows\SysNative\drivers\o2flash.exe -- (O2FLASH)
    SRV - [2015/01/27 09:14:02 | 000,267,440 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
    SRV - [2014/12/18 09:54:30 | 003,432,976 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe -- (AVGIDSAgent)
    SRV - [2014/12/18 09:45:26 | 000,298,080 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe -- (avgwd)
    SRV - [2014/10/20 12:45:18 | 000,697,472 | ---- | M] (Starfield Technologies) [Auto | Running] -- C:\Program Files (x86)\Workspace\offSyncService.exe -- (File Backup)
    SRV - [2014/08/15 02:01:12 | 001,820,184 | ---- | M] (AVG Secure Search) [Auto | Running] -- C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.9\ToolbarUpdater.exe -- (vToolbarUpdater18.1.9)
    SRV - [2014/08/07 07:52:52 | 000,438,616 | ---- | M] (Garmin Ltd or its subsidiaries) [Auto | Running] -- C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe -- (Garmin Core Update Service)
    SRV - [2014/03/20 17:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
    SRV - [2013/12/18 13:42:32 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
    SRV - [2013/11/01 15:11:20 | 000,067,584 | ---- | M] (PasswordBox, Inc.) [Auto | Running] -- C:\Program Files (x86)\PasswordBox\pbbtnService.exe -- (PasswordBox)
    SRV - [2013/10/23 07:15:08 | 000,172,192 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
    SRV - [2013/09/11 21:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
    SRV - [2012/06/27 12:01:14 | 000,096,768 | ---- | M] (Freemake) [Auto | Running] -- C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe -- (Freemake Improver)
    SRV - [2012/03/21 20:33:02 | 000,079,360 | ---- | M] (Creative Labs) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe -- (Creative ALchemy AL6 Licensing Service)
    SRV - [2012/03/21 20:32:26 | 000,079,360 | ---- | M] (Creative Labs) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe -- (Creative Audio Engine Licensing Service)
    SRV - [2012/03/21 20:31:40 | 000,079,360 | ---- | M] (Creative Labs) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\XMBLicensing.exe -- (Sound Blaster X-Fi MB Licensing Service)
    SRV - [2011/07/08 05:59:17 | 000,163,664 | R--- | M] (Storage Appliance Corporation) [Auto | Running] -- C:\ProgramData\OfficeGuardianV2N\Reminder\SacNetAgent.exe -- (SacNetAgentService_C57C4F854F53)
    SRV - [2011/07/08 05:59:17 | 000,083,792 | R--- | M] (Storage Appliance Corp.) [Auto | Running] -- C:\ProgramData\OfficeGuardianV2N\UACProxy.exe -- (CFUACProxy_officeguardianv2n)
    SRV - [2009/06/29 15:44:38 | 000,240,128 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\STacSV64.exe -- (STacSV)
    SRV - [2009/06/04 19:03:06 | 000,354,840 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON)
    SRV - [2009/02/23 14:43:56 | 000,307,200 | ---- | M] (Creative Technology Ltd) [Auto | Running] -- C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe -- (CTAudSvcService)
     
     
    ========== Driver Services (SafeList) ==========
     
    DRV:64bit: - [2014/12/08 21:24:26 | 000,260,888 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgidsdrivera.sys -- (AVGIDSDriver)
    DRV:64bit: - [2014/11/18 21:42:04 | 000,203,544 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgidsha.sys -- (AVGIDSHA)
    DRV:64bit: - [2014/10/10 15:14:32 | 000,274,200 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgtdia.sys -- (Avgtdia)
    DRV:64bit: - [2014/10/05 20:41:40 | 000,124,184 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgmfx64.sys -- (Avgmfx64)
    DRV:64bit: - [2014/08/28 20:47:24 | 000,243,480 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgldx64.sys -- (Avgldx64)
    DRV:64bit: - [2014/08/15 22:35:00 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
    DRV:64bit: - [2014/08/15 02:01:12 | 000,050,976 | ---- | M] (AVG Technologies) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgtpx64.sys -- (avgtp)
    DRV:64bit: - [2014/07/18 14:53:26 | 000,313,624 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgloga.sys -- (Avgloga)
    DRV:64bit: - [2014/06/18 20:03:34 | 000,153,368 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgdiska.sys -- (Avgdiska)
    DRV:64bit: - [2014/06/18 20:03:20 | 000,031,512 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgrkx64.sys -- (Avgrkx64)
    DRV:64bit: - [2013/08/06 15:13:30 | 000,023,040 | ---- | M] (Apple Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netaapl64.sys -- (Netaapl)
    DRV:64bit: - [2013/04/11 01:13:08 | 000,164,832 | ---- | M] (Windows ® Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AmpPal.sys -- (AMPPALP)
    DRV:64bit: - [2013/04/11 01:13:08 | 000,164,832 | ---- | M] (Windows ® Win 7 DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AmpPal.sys -- (AMPPAL)
    DRV:64bit: - [2012/08/23 09:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
    DRV:64bit: - [2012/08/23 09:07:35 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
    DRV:64bit: - [2012/08/21 12:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
    DRV:64bit: - [2012/03/20 10:59:49 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
    DRV:64bit: - [2012/03/20 10:59:49 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
    DRV:64bit: - [2012/03/01 01:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
    DRV:64bit: - [2012/01/23 13:44:12 | 008,616,960 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NETwNs64.sys -- (NETwNs64)
    DRV:64bit: - [2011/06/15 08:10:14 | 000,557,848 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
    DRV:64bit: - [2011/06/10 05:34:52 | 000,539,240 | ---- | M] (Realtek                                            ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
    DRV:64bit: - [2011/02/11 18:16:38 | 010,628,640 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
    DRV:64bit: - [2010/11/20 08:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
    DRV:64bit: - [2010/11/20 04:37:42 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
    DRV:64bit: - [2009/10/29 21:02:48 | 000,299,056 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
    DRV:64bit: - [2009/09/18 05:33:00 | 000,023,912 | ---- | M] (ST Microelectronics) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Acceler.sys -- (Acceler)
    DRV:64bit: - [2009/09/15 15:40:42 | 006,952,960 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NETw5s64.sys -- (NETw5s64)
    DRV:64bit: - [2009/07/13 20:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
    DRV:64bit: - [2009/07/13 20:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
    DRV:64bit: - [2009/07/13 20:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
    DRV:64bit: - [2009/07/13 19:39:20 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WSDPrint.sys -- (WSDPrintDevice)
    DRV:64bit: - [2009/07/13 19:35:32 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\serscan.sys -- (StillCam)
    DRV:64bit: - [2009/07/09 03:00:00 | 000,055,280 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
    DRV:64bit: - [2009/06/29 15:44:38 | 000,487,424 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\stwrt64.sys -- (STHDA)
    DRV:64bit: - [2009/06/15 13:06:42 | 000,172,704 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CtClsFlt.sys -- (CtClsFlt)
    DRV:64bit: - [2009/06/10 15:34:38 | 001,311,232 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BCMWL664.SYS -- (BCM43XX)
    DRV:64bit: - [2009/06/10 15:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
    DRV:64bit: - [2009/06/10 15:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
    DRV:64bit: - [2009/06/10 15:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
    DRV:64bit: - [2009/06/10 15:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
    DRV:64bit: - [2009/05/22 20:18:20 | 000,069,152 | ---- | M] (O2Micro ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\o2mdgx64.sys -- (O2MDGRDR)
    DRV:64bit: - [2009/03/25 06:44:39 | 000,053,816 | R--- | M] (Samsung Electronics Co., Ltd.) [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\DgivEcp.sys -- (DgiVecp)
    DRV:64bit: - [2007/10/22 01:58:43 | 000,011,576 | R--- | M] (Samsung Electronics) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\SSPORT.SYS -- (SSPORT)
    DRV:64bit: - [2005/09/23 23:18:34 | 000,261,120 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\MarvinBus64.sys -- (MarvinBus)
    DRV - [2009/07/13 20:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
     
     
    ========== Standard Registry (SafeList) ==========
     
     
    ========== Internet Explorer ==========
     
    IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
    IE:64bit: - HKLM\..\SearchScopes\{534213C9-51ED-47AA-BD1D-1A46D4164F97}: "URL" = http://www.bing.com/...rc=IE-SearchBox
    IE:64bit: - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...g}&sourceid=ie7
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
    IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
    IE - HKLM\..\SearchScopes\{534213C9-51ED-47AA-BD1D-1A46D4164F97}: "URL" = http://www.bing.com/...rc=IE-SearchBox
    IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...g}&sourceid=ie7
     
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/USCON/1
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://tra.mlxtempo.com/ [binary data]
    IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.condui...&ctid=CT3289847
    IE - HKCU\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
    IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.co...1I7GGHP_enUS476
    IE - HKCU\..\SearchScopes\{CFF4DB9B-135F-47c0-9269-B4C6572FD61A}: "URL" = http://mystart.incre...archTerms}&i=26
    IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
    IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
     
     
    ========== FireFox ==========
     
    FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_296.dll File not found
    FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation)
    FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
    FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_296.dll ()
    FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=:  File not found
    FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
    FF - HKLM\Software\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin: C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\18.1.9\\npsitesafety.dll File not found
    FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.71.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
    FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.71.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
    FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=14.0.8081.0709: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=15.0.6.14: C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
    FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=15.0.6.14: C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
    FF - HKLM\Software\MozillaPlugins\@real.com/nprpchromebrowserrecordext;version=15.0.6.14: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
    FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=15.0.6.14: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
    FF - HKLM\Software\MozillaPlugins\@real.com/nprpplugin;version=15.0.6.14: C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll (RealPlayer)
    FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll File not found
    FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll File not found
    FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
    FF - HKCU\Software\MozillaPlugins\@nds.com/PCShowPlugin: C:\Users\Trent\AppData\Local\DIRECTV Player\npPCShowPlugin.dll File not found
    FF - HKCU\Software\MozillaPlugins\@nds.com/PlayerPlugin: C:\Users\Trent\AppData\Local\DIRECTV Player\npPlayerPlugin.dll File not found
    FF - HKCU\Software\MozillaPlugins\@starfield.com/off: C:\Users\Trent\AppData\Roaming\Mozilla\Plugins\npoff.dll ( Starfield Technologies, LLC.)
    FF - HKCU\Software\MozillaPlugins\@starfield.com/off64: C:\Users\Trent\AppData\Roaming\Mozilla\Plugins\npoff64.dll ( Starfield Technologies, LLC.)
    FF - HKCU\Software\MozillaPlugins\@starfield.com/wbe: C:\Users\Trent\AppData\Roaming\Mozilla\Plugins\npwbe.dll (Starfield Technology, LLC)
    FF - HKCU\Software\MozillaPlugins\@starfield.com/wbe64: C:\Users\Trent\AppData\Roaming\Mozilla\Plugins\npwbe64.dll (Starfield Technology, LLC)
    FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Trent\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
    FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Trent\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
     
    64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{336D0C35-8A85-403a-B9D2-65C292C39087}: C:\PROGRAM FILES\IB UPDATER\FIREFOX
    64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}: C:\PROGRAM FILES\IB UPDATER\FIREFOX
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{0153E448-190B-4987-BDE1-F256CADA672F}: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2012/10/09 15:38:49 | 000,000,000 | ---D | M]
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2012/11/28 17:31:28 | 000,000,000 | ---D | M]
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{336D0C35-8A85-403a-B9D2-65C292C39087}: C:\Program Files\IB Updater\Firefox
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}: C:\Program Files\IB Updater\Firefox
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\avg@toolbar: C:\ProgramData\AVG SafeGuard toolbar\FireFoxExt\17.3.2.101 [2014/01/11 16:48:56 | 000,000,000 | ---D | M]
    FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2012/11/28 17:31:28 | 000,000,000 | ---D | M]
     
    [2012/03/26 18:46:59 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Trent\AppData\Roaming\Mozilla\Extensions
    [2013/09/10 09:15:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Trent\AppData\Roaming\Mozilla\Firefox\Profiles\extensions
    [2013/07/02 14:46:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Trent\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\extensions
    [2013/10/01 13:20:35 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Trent\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\searchplugins
    [2012/11/29 09:47:10 | 000,197,580 | ---- | M] () (No name found) -- C:\Users\Trent\AppData\Roaming\Mozilla\Firefox\Profiles\extensions\[email protected]
    [2012/12/12 11:26:14 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
     
    ========== Chrome  ==========
     
    CHR - default_search_provider:  (Enabled)
    CHR - default_search_provider: search_url = 
    CHR - default_search_provider: suggest_url = 
    CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Trent\AppData\Local\Google\Chrome\Application\40.0.2214.93\PepperFlash\pepflashplayer.dll
    CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
    CHR - plugin: Native Client (Enabled) = C:\Users\Trent\AppData\Local\Google\Chrome\Application\40.0.2214.93\ppGoogleNaClPluginChrome.dll
    CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Trent\AppData\Local\Google\Chrome\Application\40.0.2214.93\pdf.dll
    CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
    CHR - plugin: QuickTime Plug-in 7.7.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll
    CHR - plugin: QuickTime Plug-in 7.7.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll
    CHR - plugin: QuickTime Plug-in 7.7.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll
    CHR - plugin: QuickTime Plug-in 7.7.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll
    CHR - plugin: QuickTime Plug-in 7.7.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll
    CHR - plugin: QuickTime Plug-in 7.7.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll
    CHR - plugin: QuickTime Plug-in 7.7.3 (Enabled) = C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll
    CHR - plugin: Online Storage plug-in (Enabled) = C:\Users\Trent\AppData\Roaming\Mozilla\plugins\npoff.dll
    CHR - plugin: Workspace Webmail plug-in 1.0.21.46 (Enabled) = C:\Users\Trent\AppData\Roaming\Mozilla\plugins\npwbe.dll
    CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll
    CHR - plugin: Java™ Platform SE 7 U17 (Enabled) = C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
    CHR - plugin: McAfee Security Scanner + (Enabled) = C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMss.dll
    CHR - plugin: RealPlayer™ G2 LiveConnect-Enabled Plug-In (32-bit)  (Disabled) = C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll
    CHR - plugin: RealJukebox NS Plugin (Disabled) = C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprjplug.dll
    CHR - plugin: RealPlayer Download Plugin (Disabled) = C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll
    CHR - plugin: Windows Live® Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
    CHR - plugin: iTunes Application Detector (Disabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
    CHR - plugin: RealNetworks™ Chrome Background Extension Plug-In (32-bit)  (Enabled) = C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll
    CHR - plugin: RealPlayer™ HTML5VideoShim Plug-In (32-bit)  (Disabled) = C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
    CHR - plugin: NDS PCShow Plugin (Enabled) = C:\Users\Trent\AppData\Local\DIRECTV Player\npPCShowPlugin.dll
    CHR - plugin: PCShow Player Plugin (Enabled) = C:\Users\Trent\AppData\Local\DIRECTV Player\npPlayerPlugin.dll
    CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll
    CHR - plugin: Java Deployment Toolkit 7.0.170.2 (Enabled) = C:\Windows\SysWOW64\npDeployJava1.dll
    CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll
    CHR - Extension: No name found = C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\
    CHR - Extension: No name found = C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
    CHR - Extension: No name found = C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn\0.1.1.5023_0\
    CHR - Extension: No name found = C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
    CHR - Extension: No name found = C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\bopakagnckmlgajfccecajhnimjiiedh\3.8.141.12_0\
    CHR - Extension: No name found = C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
    CHR - Extension: No name found = C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgpdioedihjhncjafcpgbbjdpbbkikmi\2.5.7_0\
    CHR - Extension: No name found = C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkjoindjjcmbdpbfppabdgflnkgbbcli\1.6_0\
    CHR - Extension: No name found = C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgbpjlnkjhllfgfdmieompodgaefjcfh\1.0.6_0\
    CHR - Extension: No name found = C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj\1.0.0_0\
    CHR - Extension: No name found = C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk\1.5_0\
    CHR - Extension: No name found = C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\jifflliplgeajjdhmkcfnngfpgbjonjg\1.0.0_0\
    CHR - Extension: No name found = C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\mffdcionknddopdmdnloanoafafkmckb\1.8.2.623_0\
    CHR - Extension: No name found = C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff\4.4.0_0\
    CHR - Extension: No name found = C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmameahlembdcigphohgiodcgjomcgeo\1.27_0\
    CHR - Extension: No name found = C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
    CHR - Extension: No name found = C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
     
    O1 HOSTS File: ([2015/01/28 14:56:22 | 000,000,098 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
    O1 - Hosts: 127.0.0.1       localhost
    O1 - Hosts: ::1       localhost
    O2:64bit: - BHO: (no name) - {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} - No CLSID value found.
    O2:64bit: - BHO: (no name) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - No CLSID value found.
    O2:64bit: - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
    O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
    O2 - BHO: (MSS+ Identifier) - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
    O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
    O2 - BHO: (no name) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - No CLSID value found.
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
    O2 - BHO: (PasswordBox Helper) - {5DB69B97-934B-451D-94DB-32EF802A01CD} - C:\Program Files (x86)\PasswordBox\Application\pbbtn.dll (PasswordBox, Inc.)
    O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
    O2 - BHO: (AVG SafeGuard toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\18.1.9.790\AVG SafeGuard toolbar_toolbar.dll (AVG Secure Search)
    O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll File not found
    O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
    O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll File not found
    O3 - HKLM\..\Toolbar: (AVG SafeGuard toolbar) - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\18.1.9.790\AVG SafeGuard toolbar_toolbar.dll (AVG Secure Search)
    O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
    O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
    O4:64bit: - HKLM..\Run: [IAAnotif] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe (Intel Corporation)
    O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
    O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
    O4:64bit: - HKLM..\Run: [QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe (Dell Inc.)
    O4:64bit: - HKLM..\Run: [RunDLLEntry] C:\Windows\SysNative\AmbRunE.DLL (Creative Technology Ltd.)
    O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
    O4 - HKLM..\Run: []  File not found
    O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
    O4 - HKLM..\Run: [AVG_UI] C:\Program Files (x86)\AVG\AVG2015\avgui.exe (AVG Technologies CZ, s.r.o.)
    O4 - HKLM..\Run: [PDVDDXSrv] C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe (CyberLink Corp.)
    O4 - HKLM..\Run: [TkBellExe] C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe (RealNetworks, Inc.)
    O4 - HKLM..\Run: [UpdReg] C:\Windows\Updreg.EXE (Creative Technology Ltd.)
    O4 - HKLM..\Run: [VolPanel] C:\Program Files (x86)\Creative\SB X-Fi MB\Volume Panel\VolPanlu.exe (Creative Technology Ltd)
    O4 - HKLM..\Run: [vProt] C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe ()
    O4 - HKCU..\Run: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (Apple Inc.)
    O4 - HKCU..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
    O4 - HKCU..\Run: [DellSystemDetect] C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dell\Dell System Detect.appref-ms ()
    O4 - HKCU..\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (Apple Inc.)
    O4 - HKCU..\Run: [SacReminderHDDV2N] C:\ProgramData\OfficeGuardianV2N\Reminder\SacReminder.exe (Storage Appliance Corp.)
    O4 - HKCU..\Run: [Starfield Updater] C:\Users\Trent\AppData\Local\Workspace\workspaceupdate.exe (Starfield Technologies)
    O4 - HKCU..\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" File not found
    O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\control panel present
    O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
    O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
    O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\control panel present
    O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\restrictions present
    O8:64bit: - Extra context menu item: SmarThru4 Capture Selection - C:\Program Files (x86)\SmarThru 4\WEBCapture.dll2.htm ()
    O8:64bit: - Extra context menu item: SmarThru4 Save as HTML - C:\Program Files (x86)\SmarThru 4\WEBCapture.dll1.htm ()
    O8:64bit: - Extra context menu item: SmarThru4 Save Selected Text - C:\Program Files (x86)\SmarThru 4\WEBCapture.dll.htm ()
    O8:64bit: - Extra context menu item: SmarThru4 Web Capture - C:\Program Files (x86)\SmarThru 4\WebCapture.dll ()
    O8 - Extra context menu item: SmarThru4 Capture Selection - C:\Program Files (x86)\SmarThru 4\WEBCapture.dll2.htm ()
    O8 - Extra context menu item: SmarThru4 Save as HTML - C:\Program Files (x86)\SmarThru 4\WEBCapture.dll1.htm ()
    O8 - Extra context menu item: SmarThru4 Save Selected Text - C:\Program Files (x86)\SmarThru 4\WEBCapture.dll.htm ()
    O8 - Extra context menu item: SmarThru4 Web Capture - C:\Program Files (x86)\SmarThru 4\WebCapture.dll ()
    O9:64bit: - Extra Button: AVG Do Not Track - {68BCFFE1-A2DA-4B40-9068-87ECBFC19D16} - Reg Error: Key error. File not found
    O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
    O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
    O15 - HKCU\..Trusted Domains: dell.com ([]* in Trusted sites)
    O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.1.0)
    O16:64bit: - DPF: {CAFEEFAC-0017-0000-0001-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.7.0_01)
    O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Reg Error: Key error.)
    O16 - DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} https://secure.logme...rl.cab?lmi=1081 (Reg Error: Key error.)
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 209.18.47.61 209.18.47.62
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{454C9C83-AB00-4AB8-BC68-CD744C4E9B50}: DhcpNameServer = 209.18.47.61 209.18.47.62
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{BA11D833-E2AF-40F2-B913-45E639EFDC9F}: DhcpNameServer = 209.18.47.61 209.18.47.62
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C9F19FA2-BD2C-44B5-82A6-7EA4B9D4F479}: DhcpNameServer = 172.20.10.1
    O18:64bit: - Protocol\Handler\grooveLocalGWS - No CLSID value found
    O18:64bit: - Protocol\Handler\linkscanner - No CLSID value found
    O18:64bit: - Protocol\Handler\livecall - No CLSID value found
    O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
    O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
    O18:64bit: - Protocol\Handler\msnim - No CLSID value found
    O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
    O18:64bit: - Protocol\Handler\viprotocol - No CLSID value found
    O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
    O18 - Protocol\Handler\linkscanner - No CLSID value found
    O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
    O18 - Protocol\Handler\viprotocol {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.1.9\ViProtocol.dll (AVG Secure Search)
    O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
    O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
    O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
    O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
    O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
    O32 - HKLM CDRom: AutoRun - 1
    O32 - AutoRun File - [2013/08/29 15:53:23 | 000,000,072 | ---- | M] () - C:\Autoconfig.ini -- [ NTFS ]
    O33 - MountPoints2\{b461b893-73b9-11e1-88d9-0024e8ed7f98}\Shell - "" = AutoRun
    O33 - MountPoints2\{b461b893-73b9-11e1-88d9-0024e8ed7f98}\Shell\AutoRun\command - "" = E:\StartClickFreeBackup.exe
    O34 - HKLM BootExecute: (autocheck autochk *)
    O34 - HKLM BootExecute: (/sync /restart)
    O34 - HKLM BootExecute: (/sync /restart)
    O34 - HKLM BootExecute: (/sync /restart)
    O34 - HKLM BootExecute: (/sync /restart)
    O34 - HKLM BootExecute: (/sync /restart)
    O34 - HKLM BootExecute: (/sync /restart)
    O34 - HKLM BootExecute: (/sync /restart)
    O34 - HKLM BootExecute: (/sync /restart)
    O34 - HKLM BootExecute: (/sync /restart)
    O34 - HKLM BootExecute: (/sync /restart)
    O35:64bit: - HKLM\..comfile [open] -- "%1" %*
    O35:64bit: - HKLM\..exefile [open] -- "%1" %*
    O35 - HKLM\..comfile [open] -- "%1" %*
    O35 - HKLM\..exefile [open] -- "%1" %*
    O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
    O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
    O37 - HKLM\...com [@ = comfile] -- "%1" %*
    O37 - HKLM\...exe [@ = exefile] -- "%1" %*
    O37 - HKCU\...exe [@ = exefile] -- Reg Error: Key error. File not found
    O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
    O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
    O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
     
    ========== Files/Folders - Created Within 30 Days ==========
     
    [2015/01/28 14:56:20 | 000,000,000 | ---D | C] -- C:\_OTL
    [2015/01/28 13:45:27 | 000,000,000 | ---D | C] -- C:\Windows\pss
    [2015/01/22 17:40:27 | 000,129,752 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys
    [2015/01/22 17:39:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
    [2015/01/22 17:39:32 | 000,093,400 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbamchameleon.sys
    [2015/01/22 17:39:32 | 000,063,704 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mwac.sys
    [2015/01/22 17:39:32 | 000,025,816 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
    [2015/01/22 17:39:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes Anti-Malware
    [2015/01/22 16:53:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
    [2015/01/22 16:53:20 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
    [2015/01/22 12:59:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K9-PCFixer
    [2015/01/22 12:59:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\K9-PCFixer
    [2015/01/22 12:59:29 | 000,000,000 | ---D | C] -- C:\Users\Trent\AppData\Roaming\K9-PCFixer
    [2015/01/21 12:43:34 | 000,000,000 | ---D | C] -- C:\Users\Trent\AppData\Roaming\AVG2015
    [2015/01/21 12:36:49 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG2015
    [2015/01/21 12:31:49 | 000,000,000 | ---D | C] -- C:\Users\Trent\AppData\Local\Avg2015
    [2015/01/19 15:30:00 | 000,000,000 | ---D | C] -- C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Workspace
    [2015/01/16 12:34:46 | 000,000,000 | ---D | C] -- C:\Users\Trent\AppData\Local\Wondershare
    [2015/01/16 12:34:44 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Wondershare
    [2015/01/16 12:34:14 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Dr.Fone_Temp
    [2015/01/16 12:34:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Wondershare
    [2015/01/16 12:34:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Wondershare
    [2015/01/16 12:02:02 | 000,000,000 | ---D | C] -- C:\Users\Trent\Documents\Backup
    [2013/07/02 13:36:28 | 000,889,416 | ---- | C] (Microsoft Corporation) -- C:\Users\Trent\AppData\Roaming\dotNetFx40_Full_setup.exe
    [4 C:\Users\Trent\Documents\*.tmp files -> C:\Users\Trent\Documents\*.tmp -> ]
    [2 C:\Users\Trent\Desktop\*.tmp files -> C:\Users\Trent\Desktop\*.tmp -> ]
     
    ========== Files - Modified Within 30 Days ==========
     
    [2015/01/28 15:06:13 | 000,022,464 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
    [2015/01/28 15:06:13 | 000,022,464 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
    [2015/01/28 15:04:39 | 000,786,662 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
    [2015/01/28 15:04:39 | 000,665,592 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
    [2015/01/28 15:04:39 | 000,123,368 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
    [2015/01/28 15:03:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
    [2015/01/28 14:58:33 | 000,000,894 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
    [2015/01/28 14:58:21 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
    [2015/01/28 14:58:14 | 3190,525,952 | -HS- | M] () -- C:\hiberfil.sys
    [2015/01/28 14:56:22 | 000,000,098 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\Hosts
    [2015/01/28 14:45:08 | 000,000,908 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4108897128-1100751025-739537080-1001UA.job
    [2015/01/28 14:22:53 | 000,129,752 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys
    [2015/01/28 14:21:00 | 000,000,898 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
    [2015/01/28 14:03:50 | 000,314,312 | ---- | M] () -- C:\Users\Trent\Documents\cc_20150128_140245.reg
    [2015/01/28 12:45:01 | 000,000,856 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4108897128-1100751025-739537080-1001Core.job
    [2015/01/26 20:12:34 | 000,002,368 | ---- | M] () -- C:\Users\Trent\Desktop\Google Chrome.lnk
    [2015/01/26 12:42:11 | 000,000,336 | ---- | M] () -- C:\Windows\BRCALIB.INI
    [2015/01/22 17:39:40 | 000,001,104 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
    [2015/01/22 16:53:23 | 000,000,824 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
    [2015/01/21 12:38:54 | 000,000,967 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2015.lnk
    [2015/01/19 15:30:00 | 000,001,105 | ---- | M] () -- C:\Users\Trent\Desktop\desktoptools.lnk
    [4 C:\Users\Trent\Documents\*.tmp files -> C:\Users\Trent\Documents\*.tmp -> ]
    [2 C:\Users\Trent\Desktop\*.tmp files -> C:\Users\Trent\Desktop\*.tmp -> ]
     
    ========== Files Created - No Company Name ==========
     
    [2015/01/28 14:03:00 | 000,314,312 | ---- | C] () -- C:\Users\Trent\Documents\cc_20150128_140245.reg
    [2015/01/22 17:39:40 | 000,001,104 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
    [2015/01/22 16:53:23 | 000,000,824 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
    [2015/01/21 12:38:54 | 000,000,967 | ---- | C] () -- C:\Users\Public\Desktop\AVG 2015.lnk
    [2015/01/19 15:30:00 | 000,001,105 | ---- | C] () -- C:\Users\Trent\Desktop\desktoptools.lnk
    [2014/08/22 19:24:59 | 000,218,200 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
    [2013/07/02 13:39:54 | 000,779,276 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
    [2013/01/05 09:54:41 | 000,000,106 | ---- | C] () -- C:\Users\Trent\AppData\Roaming\wklnhst.dat
    [2012/07/24 12:02:22 | 000,060,304 | ---- | C] () -- C:\Users\Trent\g2mdlhlpx.exe
    [2012/04/12 12:44:10 | 007,713,860 | ---- | C] () -- C:\ProgramData\SamPCFax000019600000
    [2012/03/26 10:41:29 | 000,011,399 | ---- | C] () -- C:\Users\Trent\AppData\Roaming\SmarThruOptions.xml
    [2012/03/24 23:54:32 | 000,012,800 | ---- | C] () -- C:\Users\Trent\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
     
    ========== ZeroAccess Check ==========
     
    [2009/07/13 23:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
     
    [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
     
    [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
     
    [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
     
    [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
     
    [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
    "" = C:\Windows\SysNative\shell32.dll -- [2014/06/24 21:05:42 | 014,175,744 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Apartment
     
    [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
    "" = %SystemRoot%\system32\shell32.dll -- [2014/06/24 20:41:30 | 012,874,240 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Apartment
     
    [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
    "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 20:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Free
     
    [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
    "" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 07:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Free
     
    [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
    "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 20:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
    "ThreadingModel" = Both
     
    [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
     
    ========== LOP Check ==========
     
    [2015/01/21 12:43:34 | 000,000,000 | ---D | M] -- C:\Users\Trent\AppData\Roaming\AVG2015
    [2013/12/10 20:16:00 | 000,000,000 | ---D | M] -- C:\Users\Trent\AppData\Roaming\com.Shutterfly.ExpressUploader
    [2014/07/22 09:47:44 | 000,000,000 | ---D | M] -- C:\Users\Trent\AppData\Roaming\Garmin
    [2015/01/22 12:59:36 | 000,000,000 | ---D | M] -- C:\Users\Trent\AppData\Roaming\K9-PCFixer
    [2014/08/22 20:38:01 | 000,000,000 | ---D | M] -- C:\Users\Trent\AppData\Roaming\MPC-HC
    [2013/03/26 11:01:55 | 000,000,000 | ---D | M] -- C:\Users\Trent\AppData\Roaming\Oddih
    [2012/07/12 16:28:12 | 000,000,000 | ---D | M] -- C:\Users\Trent\AppData\Roaming\OpenCandy
    [2014/07/15 14:01:48 | 000,000,000 | ---D | M] -- C:\Users\Trent\AppData\Roaming\PCDr
    [2012/03/26 10:41:31 | 000,000,000 | ---D | M] -- C:\Users\Trent\AppData\Roaming\SmarThru4
    [2013/07/02 14:31:52 | 000,000,000 | ---D | M] -- C:\Users\Trent\AppData\Roaming\SystemRequirementsLab
    [2013/01/05 09:54:43 | 000,000,000 | ---D | M] -- C:\Users\Trent\AppData\Roaming\Template
    [2012/12/14 00:29:44 | 000,000,000 | ---D | M] -- C:\Users\Trent\AppData\Roaming\TuneUp Software
     
    ========== Purity Check ==========
     
     
     
    < End of report >

    • 0

    #4
    traunt53

    traunt53

      Member

    • Topic Starter
    • Member
    • PipPip
    • 45 posts

    This was run 5 minutes before the quick scan:

     

    Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 28-01-2015
    Ran by Trent (administrator) on TRENT-PC on 30-01-2015 14:31:19
    Running from C:\Users\Trent\Downloads
    Loaded Profiles: Trent (Available profiles: Trent & Guest)
    Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
    Internet Explorer Version 11 (Default browser: Chrome)
    Boot Mode: Normal
    Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
     
    ==================== Processes (Whitelisted) =================
     
    (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
     
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgrsa.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe
    (IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\stacsv64.exe
    (Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
    (Stardock Corporation) C:\Program Files\Dell\DellDock\DockLogin.exe
    (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
    (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
    (Storage Appliance Corp.) C:\ProgramData\OfficeGuardianV2N\UACProxy.exe
    (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
    (Starfield Technologies) C:\Program Files (x86)\Workspace\offSyncService.exe
    (Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
    (Garmin Ltd or its subsidiaries) C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
    (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
    (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
    (O2Micro International) C:\Windows\System32\drivers\o2flash.exe
    (PasswordBox, Inc.) C:\Program Files (x86)\PasswordBox\pbbtnService.exe
    (Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
    (Microsoft Corporation) C:\Windows\System32\rundll32.exe
    (Intel Corporation) C:\Windows\System32\igfxtray.exe
    (Intel Corporation) C:\Windows\System32\hkcmd.exe
    (Intel Corporation) C:\Windows\System32\igfxpers.exe
    (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
    (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
    (Intel® Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
    (Storage Appliance Corp.) C:\ProgramData\OfficeGuardianV2N\Reminder\SacReminder.exe
    (Starfield Technologies) C:\Users\Trent\AppData\Local\Workspace\workspaceupdate.exe
    (Storage Appliance Corporation) C:\ProgramData\OfficeGuardianV2N\Reminder\SacNetAgent.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe
    (RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgui.exe
    (Dell) C:\Users\Trent\AppData\Local\Apps\2.0\4NCMVPL1.RHM\Z7L5KTHY.536\dell..tion_0f612f649c4a10af_0005.0004_3ddfe37344028d2c\DellSystemDetect.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
    (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
    (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
    (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
    (Intel® Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
    (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
     
     
    ==================== Registry (Whitelisted) ==================
     
    (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
     
    HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1882920 2009-10-29] (Synaptics Incorporated)
    HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [444416 2009-06-29] (IDT, Inc.)
    HKLM\...\Run: [QuickSet] => C:\Program Files\Dell\QuickSet\QuickSet.exe [3180624 2009-07-02] (Dell Inc.)
    HKLM\...\Run: [IAAnotif] => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-06-04] (Intel Corporation)
    HKLM\...\Run: [RunDLLEntry] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\AmbRunE.dll,RunDLLEntry
    HKLM-x32\...\Run: [PDVDDXSrv] => C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe [140520 2009-12-29] (CyberLink Corp.)
    HKLM-x32\...\Run: [VolPanel] => C:\Program Files (x86)\Creative\SB X-Fi MB\Volume Panel\VolPanlu.exe [241789 2009-05-04] (Creative Technology Ltd)
    HKLM-x32\...\Run: [UpdReg] => C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.)
    HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
    HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2014-10-11] (Apple Inc.)
    HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [TkBellExe] => C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe [296096 2012-10-09] (RealNetworks, Inc.)
    HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2015\avgui.exe [3667472 2014-12-18] (AVG Technologies CZ, s.r.o.)
    HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.)
    HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [271744 2014-09-26] (Oracle Corporation)
    HKLM-x32\...\Run: [] => [X]
    Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [Google Update] => C:\Users\Trent\AppData\Local\Google\Update\GoogleUpdate.exe [107912 2014-10-20] (Google Inc.)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [43816 2014-08-14] (Apple Inc.)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [DellSystemDetect] => C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dell\Dell System Detect.appref-ms
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [GoogleChromeAutoLaunch_D61670D39A2C7C5D474E64BB881C7D23] => C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe [843592 2015-01-25] (Google Inc.)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [swg] => "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2014-08-07] (Apple Inc.)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [SacReminderHDDV2N] => C:\ProgramData\OfficeGuardianV2N\reminder\SacReminder.exe [862032 2011-07-08] (Storage Appliance Corp.)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [Starfield Updater] => C:\Users\Trent\AppData\Local\Workspace\WorkspaceUpdate.exe [35008 2015-01-19] (Starfield Technologies)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\MountPoints2: {b461b893-73b9-11e1-88d9-0024e8ed7f98} - E:\StartClickFreeBackup.exe
    HKU\S-1-5-18\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [688984 2014-08-07] (Garmin Ltd or its subsidiaries)
    Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk
    ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)
    Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk
    ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)
    Startup: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock.lnk
    ShortcutTarget: Dell Dock.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)
    ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} =>  No File
    ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} =>  No File
    ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} =>  No File
    ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} =>  No File
    ShellIconOverlayIdentifiers: [off0] -> {8E33AEC3-C5F2-43C4-B048-9E3EB19B1DD5} => C:\Program Files (x86)\Workspace\offsyncext64.dll (Starfield Technologies, LLC)
    ShellIconOverlayIdentifiers: [off1] -> {8E33AEC4-C5F2-43C4-B048-9E3EB19B1DD5} => C:\Program Files (x86)\Workspace\offsyncext64.dll (Starfield Technologies, LLC)
    BootExecute: autocheck autochk *  /sync /restart /sync /restart /sync /restart /sync /restart /sync /restart /sync /restart /sync /restart /sync /restart /sync /restart /sync /restart
     
    ==================== Internet (Whitelisted) ====================
     
    (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
     
    HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/USCON/1
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://tra.mlxtempo.com/
    SearchScopes: HKLM -> {534213C9-51ED-47AA-BD1D-1A46D4164F97} URL = http://www.bing.com/...rc=IE-SearchBox
    SearchScopes: HKLM-x32 -> {534213C9-51ED-47AA-BD1D-1A46D4164F97} URL = http://www.bing.com/...rc=IE-SearchBox
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    SearchScopes: HKU\S-1-5-21-4108897128-1100751025-739537080-1001 -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = https://www.google.c...q={searchTerms}
    SearchScopes: HKU\S-1-5-21-4108897128-1100751025-739537080-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = https://www.google.c...q={searchTerms}
    BHO: No Name -> {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} ->  No File
    BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
    BHO-x32: HP Print Enhancer -> {0347C33E-8762-4905-BF09-768834316C61} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
    BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
    BHO-x32: RealPlayer Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
    BHO-x32: No Name -> {5C255C8A-E604-49b4-9D64-90988571CECB} ->  No File
    BHO-x32: PasswordBox Helper -> {5DB69B97-934B-451D-94DB-32EF802A01CD} -> C:\Program Files (x86)\PasswordBox\Application\pbbtn.dll (PasswordBox, Inc.)
    BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
    BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
    BHO-x32: Windows Live Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
    BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll No File
    BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
    BHO-x32: HP Smart BHO Class -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
    Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll No File
    Toolbar: HKU\S-1-5-21-4108897128-1100751025-739537080-1001 -> No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} -  No File
    DPF: HKLM-x32 {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} https://secure.logme...rl.cab?lmi=1081
    Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} -  No File
    Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
    Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
    Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
    Tcpip\Parameters: [DhcpNameServer] 209.18.47.61 209.18.47.62
     
    FireFox:
    ========
    FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_296.dll ()
    FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation)
    FF Plugin: @microsoft.com/GENUINE -> disabled No File
    FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
    FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_296.dll ()
    FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
    FF Plugin-x32: @java.com/DTPlugin,version=10.71.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
    FF Plugin-x32: @java.com/JavaPlugin,version=10.71.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
    FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
    FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
    FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
    FF Plugin-x32: @real.com/nppl3260;version=15.0.6.14 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
    FF Plugin-x32: @real.com/nprjplug;version=15.0.6.14 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
    FF Plugin-x32: @real.com/nprpchromebrowserrecordext;version=15.0.6.14 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
    FF Plugin-x32: @real.com/nprphtml5videoshim;version=15.0.6.14 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
    FF Plugin-x32: @real.com/nprpplugin;version=15.0.6.14 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll (RealPlayer)
    FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll No File
    FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll No File
    FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @nds.com/PCShowPlugin -> C:\Users\Trent\AppData\Local\DIRECTV Player\npPCShowPlugin.dll No File
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @nds.com/PlayerPlugin -> C:\Users\Trent\AppData\Local\DIRECTV Player\npPlayerPlugin.dll No File
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @starfield.com/off -> C:\Users\Trent\AppData\Roaming\Mozilla\Plugins\npoff.dll ( Starfield Technologies, LLC.)
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @starfield.com/off64 -> C:\Users\Trent\AppData\Roaming\Mozilla\Plugins\npoff64.dll ( Starfield Technologies, LLC.)
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @starfield.com/wbe -> C:\Users\Trent\AppData\Roaming\Mozilla\Plugins\npwbe.dll (Starfield Technology, LLC)
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @starfield.com/wbe64 -> C:\Users\Trent\AppData\Roaming\Mozilla\Plugins\npwbe64.dll (Starfield Technology, LLC)
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Trent\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Trent\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
    FF Plugin ProgramFiles/Appdata: C:\Users\Trent\AppData\Roaming\mozilla\plugins\npoff.dll ( Starfield Technologies, LLC.)
    FF Plugin ProgramFiles/Appdata: C:\Users\Trent\AppData\Roaming\mozilla\plugins\npoff64.dll ( Starfield Technologies, LLC.)
    FF Plugin ProgramFiles/Appdata: C:\Users\Trent\AppData\Roaming\mozilla\plugins\npwbe.dll (Starfield Technology, LLC)
    FF Plugin ProgramFiles/Appdata: C:\Users\Trent\AppData\Roaming\mozilla\plugins\npwbe64.dll (Starfield Technology, LLC)
    FF Extension: WBE Paste - C:\Users\Trent\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\wbepaste@starfield [2015-01-19]
    FF HKLM-x32\...\Firefox\Extensions: [{0153E448-190B-4987-BDE1-F256CADA672F}] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
    FF Extension: RealPlayer Browser Record Plugin - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2012-10-09]
    FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
    FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2012-11-28]
    FF HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
     
    Chrome: 
    =======
    CHR HomePage: Default -> hxxp://www.google.com/
    CHR StartupUrls: Default -> "chrome://speeddial/", "hxxp://search.conduit.com/?ctid=CT3289847&SearchSource=48&CUI=UN20679539459122171&UM=2"
    CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
    CHR Profile: C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default
    CHR Extension: (Google Docs) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-04-16]
    CHR Extension: (Google Drive) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-04-16]
    CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-05-23]
    CHR Extension: (YouTube) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-04-16]
    CHR Extension: (Google Search) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-04-16]
    CHR Extension: (Speed Dial) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgpdioedihjhncjafcpgbbjdpbbkikmi [2015-01-28]
    CHR Extension: (Foxtab Speed Dial) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp [2015-01-28]
    CHR Extension: (Flixster) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgbpjlnkjhllfgfdmieompodgaefjcfh [2013-07-02]
    CHR Extension: (RealPlayer HTML5Video Downloader Extension) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk [2013-04-16]
    CHR Extension: (Speed Dial [FVD] - New Tab Page, 3D, Sync...) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\llaficoajjainaijghjlofdfmbjpebpa [2015-01-28]
    CHR Extension: (Google Mail Checker) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2013-07-02]
    CHR Extension: (Facebook Notifications) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmameahlembdcigphohgiodcgjomcgeo [2013-07-02]
    CHR Extension: (Google Wallet) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-27]
    CHR Extension: (Gmail) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-04-16]
    CHR HKLM-x32\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Chrome\Ext\rphtml5video.crx [2012-10-09]
    StartMenuInternet: Google Chrome - C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
     
    ==================== Services (Whitelisted) =================
     
    (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
     
    R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [3432976 2014-12-18] (AVG Technologies CZ, s.r.o.)
    R2 avgwd; C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [298080 2014-12-18] (AVG Technologies CZ, s.r.o.)
    R2 CFUACProxy_officeguardianv2n; C:\ProgramData\OfficeGuardianV2N\UACProxy.exe [83792 2011-07-08] (Storage Appliance Corp.)
    S3 Creative ALchemy AL6 Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [79360 2012-03-21] (Creative Labs) [File not signed]
    S3 Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [79360 2012-03-21] (Creative Labs) [File not signed]
    R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [307200 2009-02-23] (Creative Technology Ltd) [File not signed]
    R2 DockLoginService; C:\Program Files\Dell\DellDock\DockLogin.exe [155648 2009-06-09] (Stardock Corporation) [File not signed]
    R2 File Backup; C:\Program Files (x86)\Workspace\offSyncService.exe [697472 2014-10-20] (Starfield Technologies)
    R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [96768 2012-06-27] (Freemake) [File not signed]
    R2 Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [438616 2014-08-07] (Garmin Ltd or its subsidiaries)
    R3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-20] (Hewlett-Packard Co.) [File not signed]
    R2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-20] (Hewlett-Packard Co.) [File not signed]
    S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
    S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273136 2013-04-18] ()
    S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
    R2 PasswordBox; C:\Program Files (x86)\PasswordBox\pbbtnService.exe [67584 2013-11-01] (PasswordBox, Inc.) [File not signed]
    S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
    R2 SacNetAgentService_C57C4F854F53; C:\ProgramData\OfficeGuardianV2N\Reminder\SacNetAgent.exe [163664 2011-07-08] (Storage Appliance Corporation)
    S3 Sound Blaster X-Fi MB Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\XMBLicensing.exe [79360 2012-03-21] (Creative Labs) [File not signed]
    R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\STacSV64.exe [240128 2009-06-29] (IDT, Inc.)
    S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
    S2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3388144 2013-04-18] (Intel® Corporation)
    S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
    S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
    S3 gusvc; "C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe" [X]
     
    ==================== Drivers (Whitelisted) ====================
     
    (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
     
    R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [153368 2014-06-18] (AVG Technologies CZ, s.r.o.)
    R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [260888 2014-12-08] (AVG Technologies CZ, s.r.o.)
    R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [203544 2014-11-18] (AVG Technologies CZ, s.r.o.)
    R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [243480 2014-08-28] (AVG Technologies CZ, s.r.o.)
    R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [313624 2014-07-18] (AVG Technologies CZ, s.r.o.)
    R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [124184 2014-10-05] (AVG Technologies CZ, s.r.o.)
    R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31512 2014-06-18] (AVG Technologies CZ, s.r.o.)
    R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [274200 2014-10-10] (AVG Technologies CZ, s.r.o.)
    R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [50976 2014-08-15] (AVG Technologies)
    S2 DgiVecp; C:\Windows\system32\Drivers\DgiVecp.sys [53816 2009-03-25] (Samsung Electronics Co., Ltd.)
    S2 sbapifs; system32\DRIVERS\sbapifs.sys [X]
     
    ==================== NetSvcs (Whitelisted) ===================
     
    (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
     
     
    ==================== One Month Created Files and Folders ========
     
    (If an entry is included in the fixlist, the file\folder will be moved.)
     
    2015-01-30 14:31 - 2015-01-30 14:32 - 00028250 _____ () C:\Users\Trent\Downloads\FRST.txt
    2015-01-30 14:28 - 2015-01-30 14:31 - 00000000 ____D () C:\FRST
    2015-01-30 14:28 - 2015-01-30 14:28 - 02130432 _____ (Farbar) C:\Users\Trent\Downloads\FRST64.exe
    2015-01-29 11:33 - 2015-01-29 11:33 - 00000000 __SHD () C:\Users\Trent\AppData\Local\EmieBrowserModeList
    2015-01-28 16:29 - 2015-01-28 16:29 - 00602112 _____ (OldTimer Tools) C:\Users\Trent\Downloads\OTL (1).exe
    2015-01-28 15:50 - 2015-01-30 09:43 - 00003340 _____ () C:\Windows\System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-4108897128-1100751025-739537080-1001
    2015-01-28 15:50 - 2015-01-30 09:43 - 00003206 _____ () C:\Windows\System32\Tasks\RealUpgradeLogonTaskS-1-5-21-4108897128-1100751025-739537080-1001
    2015-01-28 15:36 - 2015-01-28 15:36 - 00000310 _____ () C:\Windows\PFRO.log
    2015-01-28 15:28 - 2015-01-28 15:34 - 00000000 ____D () C:\AdwCleaner
    2015-01-28 15:26 - 2015-01-28 15:26 - 00111990 _____ () C:\Users\Trent\Downloads\OTL scan quick.txt
    2015-01-28 15:26 - 2015-01-28 15:26 - 00090746 _____ () C:\Users\Trent\Downloads\Extras.Txt
    2015-01-28 15:19 - 2015-01-28 15:19 - 00111990 _____ () C:\Users\Trent\Downloads\OTL.Txt
    2015-01-28 15:04 - 2015-01-28 15:04 - 02194432 _____ () C:\Users\Trent\Downloads\AdwCleaner.exe
    2015-01-28 14:56 - 2015-01-28 14:56 - 00000000 ____D () C:\_OTL
    2015-01-28 14:55 - 2015-01-28 14:55 - 00602112 _____ (OldTimer Tools) C:\Users\Trent\Downloads\OTL.exe
    2015-01-28 14:54 - 2015-01-28 14:54 - 00775968 _____ (Reimage®) C:\Users\Trent\Downloads\ReimageRepair.exe
    2015-01-28 14:10 - 2015-01-30 09:43 - 00000504 _____ () C:\Windows\setupact.log
    2015-01-28 14:10 - 2015-01-28 14:10 - 00000000 _____ () C:\Windows\setuperr.log
    2015-01-28 14:03 - 2015-01-28 14:03 - 00314312 _____ () C:\Users\Trent\Documents\cc_20150128_140245.reg
    2015-01-28 14:01 - 2015-01-28 14:01 - 00104616 _____ () C:\Users\Trent\Documents\duplicate.txt
    2015-01-28 13:47 - 2015-01-28 13:47 - 00009022 _____ () C:\Users\Trent\Documents\startup.txt
    2015-01-28 13:45 - 2015-01-28 13:45 - 00000000 ____D () C:\Windows\pss
    2015-01-27 11:41 - 2015-01-27 11:41 - 00019129 _____ () C:\Users\Trent\Downloads\Itemized Features.ods
    2015-01-22 17:40 - 2015-01-28 14:22 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
    2015-01-22 17:39 - 2015-01-22 17:39 - 00001104 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
    2015-01-22 17:39 - 2015-01-22 17:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
    2015-01-22 17:39 - 2015-01-22 17:39 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
    2015-01-22 17:39 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
    2015-01-22 17:39 - 2014-11-21 06:14 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
    2015-01-22 17:39 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
    2015-01-22 17:38 - 2015-01-22 17:38 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Trent\Downloads\mbam-setup-2.0.4.1028.exe
    2015-01-22 16:53 - 2015-01-22 16:53 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
    2015-01-22 16:53 - 2015-01-22 16:53 - 00000824 _____ () C:\Users\Public\Desktop\CCleaner.lnk
    2015-01-22 16:53 - 2015-01-22 16:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
    2015-01-22 16:53 - 2015-01-22 16:53 - 00000000 ____D () C:\Program Files\CCleaner
    2015-01-22 16:52 - 2015-01-22 16:52 - 05317104 _____ (Piriform Ltd) C:\Users\Trent\Downloads\ccsetup501.exe
    2015-01-22 13:03 - 2015-01-22 13:03 - 03551568 _____ (K9 Tools ) C:\Users\Trent\Downloads\setup (1).exe
    2015-01-22 12:59 - 2015-01-22 13:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K9-PCFixer
    2015-01-22 12:59 - 2015-01-22 13:00 - 00000000 ____D () C:\Program Files (x86)\K9-PCFixer
    2015-01-22 12:59 - 2015-01-22 12:59 - 00000000 ____D () C:\Users\Trent\AppData\Roaming\K9-PCFixer
    2015-01-21 12:43 - 2015-01-21 12:43 - 00000000 ____D () C:\Users\Trent\AppData\Roaming\AVG2015
    2015-01-21 12:38 - 2015-01-21 12:38 - 00000967 _____ () C:\Users\Public\Desktop\AVG 2015.lnk
    2015-01-21 12:36 - 2015-01-22 13:00 - 00000000 ____D () C:\ProgramData\AVG2015
    2015-01-21 12:31 - 2015-01-22 12:51 - 00000000 ____D () C:\Users\Trent\AppData\Local\Avg2015
    2015-01-19 15:30 - 2015-01-19 15:30 - 00001105 _____ () C:\Users\Trent\Desktop\desktoptools.lnk
    2015-01-19 15:30 - 2015-01-19 15:30 - 00000000 ____D () C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Workspace
    2015-01-16 12:34 - 2015-01-16 17:15 - 00000000 ____D () C:\Program Files (x86)\Wondershare
    2015-01-16 12:34 - 2015-01-16 12:35 - 00000000 ____D () C:\ProgramData\Wondershare
    2015-01-16 12:34 - 2015-01-16 12:34 - 00000000 ___HD () C:\Program Files (x86)\Dr.Fone_Temp
    2015-01-16 12:34 - 2015-01-16 12:34 - 00000000 ____D () C:\Users\Trent\AppData\Local\Wondershare
    2015-01-16 12:32 - 2015-01-16 12:33 - 28656128 _____ (Wondershare Software Co.,Ltd. ) C:\Users\Trent\Downloads\ios-recovery.exe
    2015-01-16 12:02 - 2015-01-16 12:02 - 00000000 ____D () C:\Users\Trent\Documents\Backup
    2015-01-14 09:43 - 2014-12-18 22:06 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
    2015-01-14 09:42 - 2014-12-18 20:46 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
    2015-01-14 09:42 - 2014-12-11 12:47 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
    2015-01-14 09:42 - 2014-12-05 23:17 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
    2015-01-14 09:42 - 2014-12-05 22:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
    2015-01-14 09:42 - 2014-12-05 22:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
    2015-01-14 09:41 - 2014-12-12 00:35 - 05553592 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
    2015-01-14 09:41 - 2014-12-12 00:31 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
    2015-01-14 09:41 - 2014-12-12 00:31 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
    2015-01-14 09:41 - 2014-12-12 00:31 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
    2015-01-14 09:41 - 2014-12-12 00:11 - 03971512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
    2015-01-14 09:41 - 2014-12-12 00:11 - 03916728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
    2015-01-14 09:41 - 2014-12-12 00:07 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
    2015-01-10 13:50 - 2015-01-10 13:50 - 00000000 __SHD () C:\Users\Guest\AppData\Local\EmieBrowserModeList
    2015-01-03 16:33 - 2015-01-28 13:42 - 00003122 _____ () C:\Windows\System32\Tasks\PCDoctorBackgroundMonitorTask-Retry
     
    ==================== One Month Modified Files and Folders =======
     
    (If an entry is included in the fixlist, the file\folder will be moved.)
     
    2015-01-30 14:32 - 2012-04-09 10:30 - 00000000 ____D () C:\ProgramData\MFAData
    2015-01-30 14:21 - 2012-03-21 20:04 - 00000898 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
    2015-01-30 14:03 - 2012-04-11 18:33 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
    2015-01-30 13:45 - 2012-03-21 20:21 - 00000908 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4108897128-1100751025-739537080-1001UA.job
    2015-01-30 13:40 - 2012-03-21 20:21 - 00000856 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4108897128-1100751025-739537080-1001Core.job
    2015-01-30 13:40 - 2009-07-14 00:10 - 01579908 _____ () C:\Windows\WindowsUpdate.log
    2015-01-30 09:52 - 2009-07-13 23:45 - 00022464 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
    2015-01-30 09:52 - 2009-07-13 23:45 - 00022464 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
    2015-01-30 09:45 - 2013-07-02 13:27 - 00000000 ____D () C:\Users\Trent\AppData\Local\Deployment
    2015-01-30 09:43 - 2012-03-21 20:04 - 00000894 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
    2015-01-30 09:43 - 2009-07-14 00:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
    2015-01-30 09:11 - 2009-07-13 22:20 - 00000000 ____D () C:\Windows\system32\NDF
    2015-01-30 03:05 - 2013-07-02 13:39 - 00779276 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
    2015-01-30 03:05 - 2009-07-14 00:13 - 00779276 _____ () C:\Windows\system32\PerfStringBackup.INI
    2015-01-29 16:35 - 2013-11-15 16:16 - 00003440 _____ () C:\Windows\System32\Tasks\PCDEventLauncherTask
    2015-01-28 15:34 - 2012-12-12 11:26 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
    2015-01-28 13:42 - 2014-07-22 09:44 - 00003556 _____ () C:\Windows\System32\Tasks\GarminUpdaterTask
    2015-01-28 13:42 - 2013-11-15 16:16 - 00003986 _____ () C:\Windows\System32\Tasks\PCDoctorBackgroundMonitorTask
    2015-01-27 09:14 - 2012-04-11 18:33 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
    2015-01-27 09:14 - 2012-04-11 18:33 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
    2015-01-27 09:14 - 2012-03-21 20:19 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
    2015-01-26 20:12 - 2012-03-21 20:22 - 00002368 _____ () C:\Users\Trent\Desktop\Google Chrome.lnk
    2015-01-26 12:42 - 2012-09-27 09:03 - 00000336 _____ () C:\Windows\BRCALIB.INI
    2015-01-23 11:33 - 2012-03-24 18:28 - 00000000 ____D () C:\Users\Trent\AppData\Roaming\Skype
    2015-01-22 17:03 - 2012-07-07 17:21 - 00000000 ____D () C:\Windows\Minidump
    2015-01-22 17:03 - 2012-03-20 10:49 - 00000000 ____D () C:\Windows\Panther
    2015-01-22 12:55 - 2012-04-04 12:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
    2015-01-22 12:55 - 2012-04-04 12:29 - 00000000 ____D () C:\Program Files (x86)\HP
    2015-01-22 12:54 - 2012-04-04 12:29 - 00000000 ____D () C:\Users\Trent\AppData\Roaming\HpUpdate
    2015-01-21 13:11 - 2012-12-14 00:27 - 00000000 ____D () C:\ProgramData\AVG2013
    2015-01-21 13:09 - 2013-03-21 21:29 - 00000000 ____D () C:\Users\Trent\Desktop\TAXES
    2015-01-21 12:44 - 2012-04-09 10:38 - 00000000 ____D () C:\Program Files (x86)\AVG
    2015-01-21 12:41 - 2014-11-19 14:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
    2015-01-21 12:41 - 2012-04-09 10:39 - 00000000 ___HD () C:\$AVG
    2015-01-19 15:30 - 2012-03-26 19:37 - 00000000 ____D () C:\Program Files (x86)\Workspace
    2015-01-19 15:29 - 2012-03-26 18:46 - 00000000 ____D () C:\Users\Trent\AppData\Local\Workspace
    2015-01-16 17:30 - 2012-03-21 20:37 - 00000000 ____D () C:\ProgramData\McAfee
    2015-01-16 17:23 - 2013-12-10 20:15 - 00000000 ____D () C:\Program Files (x86)\Shutterfly
    2015-01-16 17:17 - 2012-03-21 20:22 - 00000000 ____D () C:\Program Files (x86)\Citrix
    2015-01-16 12:00 - 2012-03-21 19:46 - 00000000 ____D () C:\Users\Trent
    2015-01-15 15:53 - 2013-02-18 11:13 - 00000000 ____D () C:\Users\Trent\Downloads\doggy
    2015-01-15 03:10 - 2013-07-13 02:02 - 00000000 ____D () C:\Windows\system32\MRT
    2015-01-15 03:00 - 2012-03-22 00:34 - 113365784 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
    2015-01-14 20:49 - 2013-09-24 19:37 - 00000000 ____D () C:\Users\Trent\Desktop\Chapel Ridge
    2015-01-14 16:55 - 2013-10-25 12:39 - 00000000 ____D () C:\Users\Trent\Desktop\Brandon
    2015-01-08 09:55 - 2012-03-23 14:23 - 00298120 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
     
    ==================== Files in the root of some directories =======
     
    2013-07-02 13:36 - 2013-07-02 13:36 - 0889416 _____ (Microsoft Corporation) C:\Users\Trent\AppData\Roaming\dotNetFx40_Full_setup.exe
    2012-03-26 10:41 - 2012-05-08 13:36 - 0011399 _____ () C:\Users\Trent\AppData\Roaming\SmarThruOptions.xml
    2013-01-05 09:54 - 2013-02-04 18:16 - 0000106 _____ () C:\Users\Trent\AppData\Roaming\wklnhst.dat
    2012-03-24 23:54 - 2014-11-06 16:25 - 0012800 _____ () C:\Users\Trent\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    2012-11-28 17:21 - 2013-04-09 13:10 - 0001799 _____ () C:\ProgramData\hpzinstall.log
    2012-04-12 12:44 - 2012-04-12 12:44 - 7713860 _____ () C:\ProgramData\SamPCFax000019600000
    2014-03-05 12:48 - 2014-03-05 12:48 - 0001744 _____ () C:\ProgramData\__wdump.txt
     
    Some content of TEMP:
    ====================
    C:\Users\Trent\AppData\Local\Temp\Quarantine.exe
    C:\Users\Trent\AppData\Local\Temp\sqlite3.dll
     
     
    ==================== Bamital & volsnap Check =================
     
    (There is no automatic fix for files that do not pass verification.)
     
    C:\Windows\System32\winlogon.exe => File is digitally signed
    C:\Windows\System32\wininit.exe => File is digitally signed
    C:\Windows\SysWOW64\wininit.exe => File is digitally signed
    C:\Windows\explorer.exe => File is digitally signed
    C:\Windows\SysWOW64\explorer.exe => File is digitally signed
    C:\Windows\System32\svchost.exe => File is digitally signed
    C:\Windows\SysWOW64\svchost.exe => File is digitally signed
    C:\Windows\System32\services.exe => File is digitally signed
    C:\Windows\System32\User32.dll => File is digitally signed
    C:\Windows\SysWOW64\User32.dll => File is digitally signed
    C:\Windows\System32\userinit.exe => File is digitally signed
    C:\Windows\SysWOW64\userinit.exe => File is digitally signed
    C:\Windows\System32\rpcss.dll => File is digitally signed
    C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
     
     
    LastRegBack: 2014-10-22 02:31
     
    ==================== End Of Log ============================

    • 0

    #5
    traunt53

    traunt53

      Member

    • Topic Starter
    • Member
    • PipPip
    • 45 posts
    FRST Scan


    Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 28-01-2015
    Ran by Trent (administrator) on TRENT-PC on 30-01-2015 14:31:19
    Running from C:\Users\Trent\Downloads
    Loaded Profiles: Trent (Available profiles: Trent & Guest)
    Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
    Internet Explorer Version 11 (Default browser: Chrome)
    Boot Mode: Normal
    Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
     
    ==================== Processes (Whitelisted) =================
     
    (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
     
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgrsa.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe
    (IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\stacsv64.exe
    (Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
    (Stardock Corporation) C:\Program Files\Dell\DellDock\DockLogin.exe
    (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
    (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
    (Storage Appliance Corp.) C:\ProgramData\OfficeGuardianV2N\UACProxy.exe
    (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
    (Starfield Technologies) C:\Program Files (x86)\Workspace\offSyncService.exe
    (Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
    (Garmin Ltd or its subsidiaries) C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
    (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
    (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
    (O2Micro International) C:\Windows\System32\drivers\o2flash.exe
    (PasswordBox, Inc.) C:\Program Files (x86)\PasswordBox\pbbtnService.exe
    (Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
    (Microsoft Corporation) C:\Windows\System32\rundll32.exe
    (Intel Corporation) C:\Windows\System32\igfxtray.exe
    (Intel Corporation) C:\Windows\System32\hkcmd.exe
    (Intel Corporation) C:\Windows\System32\igfxpers.exe
    (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
    (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
    (Intel® Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
    (Storage Appliance Corp.) C:\ProgramData\OfficeGuardianV2N\Reminder\SacReminder.exe
    (Starfield Technologies) C:\Users\Trent\AppData\Local\Workspace\workspaceupdate.exe
    (Storage Appliance Corporation) C:\ProgramData\OfficeGuardianV2N\Reminder\SacNetAgent.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe
    (RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgui.exe
    (Dell) C:\Users\Trent\AppData\Local\Apps\2.0\4NCMVPL1.RHM\Z7L5KTHY.536\dell..tion_0f612f649c4a10af_0005.0004_3ddfe37344028d2c\DellSystemDetect.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
    (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
    (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
    (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
    (Intel® Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
    (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
     
     
    ==================== Registry (Whitelisted) ==================
     
    (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
     
    HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1882920 2009-10-29] (Synaptics Incorporated)
    HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [444416 2009-06-29] (IDT, Inc.)
    HKLM\...\Run: [QuickSet] => C:\Program Files\Dell\QuickSet\QuickSet.exe [3180624 2009-07-02] (Dell Inc.)
    HKLM\...\Run: [IAAnotif] => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-06-04] (Intel Corporation)
    HKLM\...\Run: [RunDLLEntry] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\AmbRunE.dll,RunDLLEntry
    HKLM-x32\...\Run: [PDVDDXSrv] => C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe [140520 2009-12-29] (CyberLink Corp.)
    HKLM-x32\...\Run: [VolPanel] => C:\Program Files (x86)\Creative\SB X-Fi MB\Volume Panel\VolPanlu.exe [241789 2009-05-04] (Creative Technology Ltd)
    HKLM-x32\...\Run: [UpdReg] => C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.)
    HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
    HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2014-10-11] (Apple Inc.)
    HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [TkBellExe] => C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe [296096 2012-10-09] (RealNetworks, Inc.)
    HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2015\avgui.exe [3667472 2014-12-18] (AVG Technologies CZ, s.r.o.)
    HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.)
    HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [271744 2014-09-26] (Oracle Corporation)
    HKLM-x32\...\Run: [] => [X]
    Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [Google Update] => C:\Users\Trent\AppData\Local\Google\Update\GoogleUpdate.exe [107912 2014-10-20] (Google Inc.)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [43816 2014-08-14] (Apple Inc.)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [DellSystemDetect] => C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dell\Dell System Detect.appref-ms
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [GoogleChromeAutoLaunch_D61670D39A2C7C5D474E64BB881C7D23] => C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe [843592 2015-01-25] (Google Inc.)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [swg] => "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2014-08-07] (Apple Inc.)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [SacReminderHDDV2N] => C:\ProgramData\OfficeGuardianV2N\reminder\SacReminder.exe [862032 2011-07-08] (Storage Appliance Corp.)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [Starfield Updater] => C:\Users\Trent\AppData\Local\Workspace\WorkspaceUpdate.exe [35008 2015-01-19] (Starfield Technologies)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\MountPoints2: {b461b893-73b9-11e1-88d9-0024e8ed7f98} - E:\StartClickFreeBackup.exe
    HKU\S-1-5-18\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [688984 2014-08-07] (Garmin Ltd or its subsidiaries)
    Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk
    ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)
    Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk
    ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)
    Startup: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock.lnk
    ShortcutTarget: Dell Dock.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)
    ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} =>  No File
    ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} =>  No File
    ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} =>  No File
    ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} =>  No File
    ShellIconOverlayIdentifiers: [off0] -> {8E33AEC3-C5F2-43C4-B048-9E3EB19B1DD5} => C:\Program Files (x86)\Workspace\offsyncext64.dll (Starfield Technologies, LLC)
    ShellIconOverlayIdentifiers: [off1] -> {8E33AEC4-C5F2-43C4-B048-9E3EB19B1DD5} => C:\Program Files (x86)\Workspace\offsyncext64.dll (Starfield Technologies, LLC)
    BootExecute: autocheck autochk *  /sync /restart /sync /restart /sync /restart /sync /restart /sync /restart /sync /restart /sync /restart /sync /restart /sync /restart /sync /restart
     
    ==================== Internet (Whitelisted) ====================
     
    (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
     
    HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/USCON/1
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://tra.mlxtempo.com/
    SearchScopes: HKLM -> {534213C9-51ED-47AA-BD1D-1A46D4164F97} URL = http://www.bing.com/...rc=IE-SearchBox
    SearchScopes: HKLM-x32 -> {534213C9-51ED-47AA-BD1D-1A46D4164F97} URL = http://www.bing.com/...rc=IE-SearchBox
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    SearchScopes: HKU\S-1-5-21-4108897128-1100751025-739537080-1001 -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = https://www.google.c...q={searchTerms}
    SearchScopes: HKU\S-1-5-21-4108897128-1100751025-739537080-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = https://www.google.c...q={searchTerms}
    BHO: No Name -> {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} ->  No File
    BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
    BHO-x32: HP Print Enhancer -> {0347C33E-8762-4905-BF09-768834316C61} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
    BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
    BHO-x32: RealPlayer Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
    BHO-x32: No Name -> {5C255C8A-E604-49b4-9D64-90988571CECB} ->  No File
    BHO-x32: PasswordBox Helper -> {5DB69B97-934B-451D-94DB-32EF802A01CD} -> C:\Program Files (x86)\PasswordBox\Application\pbbtn.dll (PasswordBox, Inc.)
    BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
    BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
    BHO-x32: Windows Live Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
    BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll No File
    BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
    BHO-x32: HP Smart BHO Class -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
    Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll No File
    Toolbar: HKU\S-1-5-21-4108897128-1100751025-739537080-1001 -> No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} -  No File
    DPF: HKLM-x32 {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} https://secure.logme...rl.cab?lmi=1081
    Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} -  No File
    Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
    Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
    Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
    Tcpip\Parameters: [DhcpNameServer] 209.18.47.61 209.18.47.62
     
    FireFox:
    ========
    FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_296.dll ()
    FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation)
    FF Plugin: @microsoft.com/GENUINE -> disabled No File
    FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
    FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_296.dll ()
    FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
    FF Plugin-x32: @java.com/DTPlugin,version=10.71.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
    FF Plugin-x32: @java.com/JavaPlugin,version=10.71.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
    FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
    FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
    FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
    FF Plugin-x32: @real.com/nppl3260;version=15.0.6.14 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
    FF Plugin-x32: @real.com/nprjplug;version=15.0.6.14 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
    FF Plugin-x32: @real.com/nprpchromebrowserrecordext;version=15.0.6.14 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
    FF Plugin-x32: @real.com/nprphtml5videoshim;version=15.0.6.14 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
    FF Plugin-x32: @real.com/nprpplugin;version=15.0.6.14 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll (RealPlayer)
    FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll No File
    FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll No File
    FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @nds.com/PCShowPlugin -> C:\Users\Trent\AppData\Local\DIRECTV Player\npPCShowPlugin.dll No File
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @nds.com/PlayerPlugin -> C:\Users\Trent\AppData\Local\DIRECTV Player\npPlayerPlugin.dll No File
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @starfield.com/off -> C:\Users\Trent\AppData\Roaming\Mozilla\Plugins\npoff.dll ( Starfield Technologies, LLC.)
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @starfield.com/off64 -> C:\Users\Trent\AppData\Roaming\Mozilla\Plugins\npoff64.dll ( Starfield Technologies, LLC.)
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @starfield.com/wbe -> C:\Users\Trent\AppData\Roaming\Mozilla\Plugins\npwbe.dll (Starfield Technology, LLC)
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @starfield.com/wbe64 -> C:\Users\Trent\AppData\Roaming\Mozilla\Plugins\npwbe64.dll (Starfield Technology, LLC)
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Trent\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Trent\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
    FF Plugin ProgramFiles/Appdata: C:\Users\Trent\AppData\Roaming\mozilla\plugins\npoff.dll ( Starfield Technologies, LLC.)
    FF Plugin ProgramFiles/Appdata: C:\Users\Trent\AppData\Roaming\mozilla\plugins\npoff64.dll ( Starfield Technologies, LLC.)
    FF Plugin ProgramFiles/Appdata: C:\Users\Trent\AppData\Roaming\mozilla\plugins\npwbe.dll (Starfield Technology, LLC)
    FF Plugin ProgramFiles/Appdata: C:\Users\Trent\AppData\Roaming\mozilla\plugins\npwbe64.dll (Starfield Technology, LLC)
    FF Extension: WBE Paste - C:\Users\Trent\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\wbepaste@starfield [2015-01-19]
    FF HKLM-x32\...\Firefox\Extensions: [{0153E448-190B-4987-BDE1-F256CADA672F}] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
    FF Extension: RealPlayer Browser Record Plugin - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2012-10-09]
    FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
    FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2012-11-28]
    FF HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
     
    Chrome: 
    =======
    CHR HomePage: Default -> hxxp://www.google.com/
    CHR StartupUrls: Default -> "chrome://speeddial/", "hxxp://search.conduit.com/?ctid=CT3289847&SearchSource=48&CUI=UN20679539459122171&UM=2"
    CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
    CHR Profile: C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default
    CHR Extension: (Google Docs) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-04-16]
    CHR Extension: (Google Drive) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-04-16]
    CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-05-23]
    CHR Extension: (YouTube) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-04-16]
    CHR Extension: (Google Search) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-04-16]
    CHR Extension: (Speed Dial) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgpdioedihjhncjafcpgbbjdpbbkikmi [2015-01-28]
    CHR Extension: (Foxtab Speed Dial) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp [2015-01-28]
    CHR Extension: (Flixster) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgbpjlnkjhllfgfdmieompodgaefjcfh [2013-07-02]
    CHR Extension: (RealPlayer HTML5Video Downloader Extension) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk [2013-04-16]
    CHR Extension: (Speed Dial [FVD] - New Tab Page, 3D, Sync...) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\llaficoajjainaijghjlofdfmbjpebpa [2015-01-28]
    CHR Extension: (Google Mail Checker) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2013-07-02]
    CHR Extension: (Facebook Notifications) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmameahlembdcigphohgiodcgjomcgeo [2013-07-02]
    CHR Extension: (Google Wallet) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-27]
    CHR Extension: (Gmail) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-04-16]
    CHR HKLM-x32\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Chrome\Ext\rphtml5video.crx [2012-10-09]
    StartMenuInternet: Google Chrome - C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
     
    ==================== Services (Whitelisted) =================
     
    (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
     
    R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [3432976 2014-12-18] (AVG Technologies CZ, s.r.o.)
    R2 avgwd; C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [298080 2014-12-18] (AVG Technologies CZ, s.r.o.)
    R2 CFUACProxy_officeguardianv2n; C:\ProgramData\OfficeGuardianV2N\UACProxy.exe [83792 2011-07-08] (Storage Appliance Corp.)
    S3 Creative ALchemy AL6 Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [79360 2012-03-21] (Creative Labs) [File not signed]
    S3 Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [79360 2012-03-21] (Creative Labs) [File not signed]
    R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [307200 2009-02-23] (Creative Technology Ltd) [File not signed]
    R2 DockLoginService; C:\Program Files\Dell\DellDock\DockLogin.exe [155648 2009-06-09] (Stardock Corporation) [File not signed]
    R2 File Backup; C:\Program Files (x86)\Workspace\offSyncService.exe [697472 2014-10-20] (Starfield Technologies)
    R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [96768 2012-06-27] (Freemake) [File not signed]
    R2 Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [438616 2014-08-07] (Garmin Ltd or its subsidiaries)
    R3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-20] (Hewlett-Packard Co.) [File not signed]
    R2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-20] (Hewlett-Packard Co.) [File not signed]
    S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
    S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273136 2013-04-18] ()
    S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
    R2 PasswordBox; C:\Program Files (x86)\PasswordBox\pbbtnService.exe [67584 2013-11-01] (PasswordBox, Inc.) [File not signed]
    S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
    R2 SacNetAgentService_C57C4F854F53; C:\ProgramData\OfficeGuardianV2N\Reminder\SacNetAgent.exe [163664 2011-07-08] (Storage Appliance Corporation)
    S3 Sound Blaster X-Fi MB Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\XMBLicensing.exe [79360 2012-03-21] (Creative Labs) [File not signed]
    R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\STacSV64.exe [240128 2009-06-29] (IDT, Inc.)
    S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
    S2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3388144 2013-04-18] (Intel® Corporation)
    S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
    S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
    S3 gusvc; "C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe" [X]
     
    ==================== Drivers (Whitelisted) ====================
     
    (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
     
    R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [153368 2014-06-18] (AVG Technologies CZ, s.r.o.)
    R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [260888 2014-12-08] (AVG Technologies CZ, s.r.o.)
    R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [203544 2014-11-18] (AVG Technologies CZ, s.r.o.)
    R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [243480 2014-08-28] (AVG Technologies CZ, s.r.o.)
    R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [313624 2014-07-18] (AVG Technologies CZ, s.r.o.)
    R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [124184 2014-10-05] (AVG Technologies CZ, s.r.o.)
    R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31512 2014-06-18] (AVG Technologies CZ, s.r.o.)
    R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [274200 2014-10-10] (AVG Technologies CZ, s.r.o.)
    R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [50976 2014-08-15] (AVG Technologies)
    S2 DgiVecp; C:\Windows\system32\Drivers\DgiVecp.sys [53816 2009-03-25] (Samsung Electronics Co., Ltd.)
    S2 sbapifs; system32\DRIVERS\sbapifs.sys [X]
     
    ==================== NetSvcs (Whitelisted) ===================
     
    (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
     
     
    ==================== One Month Created Files and Folders ========
     
    (If an entry is included in the fixlist, the file\folder will be moved.)
     
    2015-01-30 14:31 - 2015-01-30 14:32 - 00028250 _____ () C:\Users\Trent\Downloads\FRST.txt
    2015-01-30 14:28 - 2015-01-30 14:31 - 00000000 ____D () C:\FRST
    2015-01-30 14:28 - 2015-01-30 14:28 - 02130432 _____ (Farbar) C:\Users\Trent\Downloads\FRST64.exe
    2015-01-29 11:33 - 2015-01-29 11:33 - 00000000 __SHD () C:\Users\Trent\AppData\Local\EmieBrowserModeList
    2015-01-28 16:29 - 2015-01-28 16:29 - 00602112 _____ (OldTimer Tools) C:\Users\Trent\Downloads\OTL (1).exe
    2015-01-28 15:50 - 2015-01-30 09:43 - 00003340 _____ () C:\Windows\System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-4108897128-1100751025-739537080-1001
    2015-01-28 15:50 - 2015-01-30 09:43 - 00003206 _____ () C:\Windows\System32\Tasks\RealUpgradeLogonTaskS-1-5-21-4108897128-1100751025-739537080-1001
    2015-01-28 15:36 - 2015-01-28 15:36 - 00000310 _____ () C:\Windows\PFRO.log
    2015-01-28 15:28 - 2015-01-28 15:34 - 00000000 ____D () C:\AdwCleaner
    2015-01-28 15:26 - 2015-01-28 15:26 - 00111990 _____ () C:\Users\Trent\Downloads\OTL scan quick.txt
    2015-01-28 15:26 - 2015-01-28 15:26 - 00090746 _____ () C:\Users\Trent\Downloads\Extras.Txt
    2015-01-28 15:19 - 2015-01-28 15:19 - 00111990 _____ () C:\Users\Trent\Downloads\OTL.Txt
    2015-01-28 15:04 - 2015-01-28 15:04 - 02194432 _____ () C:\Users\Trent\Downloads\AdwCleaner.exe
    2015-01-28 14:56 - 2015-01-28 14:56 - 00000000 ____D () C:\_OTL
    2015-01-28 14:55 - 2015-01-28 14:55 - 00602112 _____ (OldTimer Tools) C:\Users\Trent\Downloads\OTL.exe
    2015-01-28 14:54 - 2015-01-28 14:54 - 00775968 _____ (Reimage®) C:\Users\Trent\Downloads\ReimageRepair.exe
    2015-01-28 14:10 - 2015-01-30 09:43 - 00000504 _____ () C:\Windows\setupact.log
    2015-01-28 14:10 - 2015-01-28 14:10 - 00000000 _____ () C:\Windows\setuperr.log
    2015-01-28 14:03 - 2015-01-28 14:03 - 00314312 _____ () C:\Users\Trent\Documents\cc_20150128_140245.reg
    2015-01-28 14:01 - 2015-01-28 14:01 - 00104616 _____ () C:\Users\Trent\Documents\duplicate.txt
    2015-01-28 13:47 - 2015-01-28 13:47 - 00009022 _____ () C:\Users\Trent\Documents\startup.txt
    2015-01-28 13:45 - 2015-01-28 13:45 - 00000000 ____D () C:\Windows\pss
    2015-01-27 11:41 - 2015-01-27 11:41 - 00019129 _____ () C:\Users\Trent\Downloads\Itemized Features.ods
    2015-01-22 17:40 - 2015-01-28 14:22 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
    2015-01-22 17:39 - 2015-01-22 17:39 - 00001104 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
    2015-01-22 17:39 - 2015-01-22 17:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
    2015-01-22 17:39 - 2015-01-22 17:39 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
    2015-01-22 17:39 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
    2015-01-22 17:39 - 2014-11-21 06:14 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
    2015-01-22 17:39 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
    2015-01-22 17:38 - 2015-01-22 17:38 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Trent\Downloads\mbam-setup-2.0.4.1028.exe
    2015-01-22 16:53 - 2015-01-22 16:53 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
    2015-01-22 16:53 - 2015-01-22 16:53 - 00000824 _____ () C:\Users\Public\Desktop\CCleaner.lnk
    2015-01-22 16:53 - 2015-01-22 16:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
    2015-01-22 16:53 - 2015-01-22 16:53 - 00000000 ____D () C:\Program Files\CCleaner
    2015-01-22 16:52 - 2015-01-22 16:52 - 05317104 _____ (Piriform Ltd) C:\Users\Trent\Downloads\ccsetup501.exe
    2015-01-22 13:03 - 2015-01-22 13:03 - 03551568 _____ (K9 Tools ) C:\Users\Trent\Downloads\setup (1).exe
    2015-01-22 12:59 - 2015-01-22 13:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K9-PCFixer
    2015-01-22 12:59 - 2015-01-22 13:00 - 00000000 ____D () C:\Program Files (x86)\K9-PCFixer
    2015-01-22 12:59 - 2015-01-22 12:59 - 00000000 ____D () C:\Users\Trent\AppData\Roaming\K9-PCFixer
    2015-01-21 12:43 - 2015-01-21 12:43 - 00000000 ____D () C:\Users\Trent\AppData\Roaming\AVG2015
    2015-01-21 12:38 - 2015-01-21 12:38 - 00000967 _____ () C:\Users\Public\Desktop\AVG 2015.lnk
    2015-01-21 12:36 - 2015-01-22 13:00 - 00000000 ____D () C:\ProgramData\AVG2015
    2015-01-21 12:31 - 2015-01-22 12:51 - 00000000 ____D () C:\Users\Trent\AppData\Local\Avg2015
    2015-01-19 15:30 - 2015-01-19 15:30 - 00001105 _____ () C:\Users\Trent\Desktop\desktoptools.lnk
    2015-01-19 15:30 - 2015-01-19 15:30 - 00000000 ____D () C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Workspace
    2015-01-16 12:34 - 2015-01-16 17:15 - 00000000 ____D () C:\Program Files (x86)\Wondershare
    2015-01-16 12:34 - 2015-01-16 12:35 - 00000000 ____D () C:\ProgramData\Wondershare
    2015-01-16 12:34 - 2015-01-16 12:34 - 00000000 ___HD () C:\Program Files (x86)\Dr.Fone_Temp
    2015-01-16 12:34 - 2015-01-16 12:34 - 00000000 ____D () C:\Users\Trent\AppData\Local\Wondershare
    2015-01-16 12:32 - 2015-01-16 12:33 - 28656128 _____ (Wondershare Software Co.,Ltd. ) C:\Users\Trent\Downloads\ios-recovery.exe
    2015-01-16 12:02 - 2015-01-16 12:02 - 00000000 ____D () C:\Users\Trent\Documents\Backup
    2015-01-14 09:43 - 2014-12-18 22:06 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
    2015-01-14 09:42 - 2014-12-18 20:46 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
    2015-01-14 09:42 - 2014-12-11 12:47 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
    2015-01-14 09:42 - 2014-12-05 23:17 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
    2015-01-14 09:42 - 2014-12-05 22:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
    2015-01-14 09:42 - 2014-12-05 22:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
    2015-01-14 09:41 - 2014-12-12 00:35 - 05553592 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
    2015-01-14 09:41 - 2014-12-12 00:31 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
    2015-01-14 09:41 - 2014-12-12 00:31 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
    2015-01-14 09:41 - 2014-12-12 00:31 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
    2015-01-14 09:41 - 2014-12-12 00:11 - 03971512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
    2015-01-14 09:41 - 2014-12-12 00:11 - 03916728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
    2015-01-14 09:41 - 2014-12-12 00:07 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
    2015-01-10 13:50 - 2015-01-10 13:50 - 00000000 __SHD () C:\Users\Guest\AppData\Local\EmieBrowserModeList
    2015-01-03 16:33 - 2015-01-28 13:42 - 00003122 _____ () C:\Windows\System32\Tasks\PCDoctorBackgroundMonitorTask-Retry
     
    ==================== One Month Modified Files and Folders =======
     
    (If an entry is included in the fixlist, the file\folder will be moved.)
     
    2015-01-30 14:32 - 2012-04-09 10:30 - 00000000 ____D () C:\ProgramData\MFAData
    2015-01-30 14:21 - 2012-03-21 20:04 - 00000898 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
    2015-01-30 14:03 - 2012-04-11 18:33 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
    2015-01-30 13:45 - 2012-03-21 20:21 - 00000908 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4108897128-1100751025-739537080-1001UA.job
    2015-01-30 13:40 - 2012-03-21 20:21 - 00000856 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4108897128-1100751025-739537080-1001Core.job
    2015-01-30 13:40 - 2009-07-14 00:10 - 01579908 _____ () C:\Windows\WindowsUpdate.log
    2015-01-30 09:52 - 2009-07-13 23:45 - 00022464 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
    2015-01-30 09:52 - 2009-07-13 23:45 - 00022464 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
    2015-01-30 09:45 - 2013-07-02 13:27 - 00000000 ____D () C:\Users\Trent\AppData\Local\Deployment
    2015-01-30 09:43 - 2012-03-21 20:04 - 00000894 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
    2015-01-30 09:43 - 2009-07-14 00:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
    2015-01-30 09:11 - 2009-07-13 22:20 - 00000000 ____D () C:\Windows\system32\NDF
    2015-01-30 03:05 - 2013-07-02 13:39 - 00779276 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
    2015-01-30 03:05 - 2009-07-14 00:13 - 00779276 _____ () C:\Windows\system32\PerfStringBackup.INI
    2015-01-29 16:35 - 2013-11-15 16:16 - 00003440 _____ () C:\Windows\System32\Tasks\PCDEventLauncherTask
    2015-01-28 15:34 - 2012-12-12 11:26 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
    2015-01-28 13:42 - 2014-07-22 09:44 - 00003556 _____ () C:\Windows\System32\Tasks\GarminUpdaterTask
    2015-01-28 13:42 - 2013-11-15 16:16 - 00003986 _____ () C:\Windows\System32\Tasks\PCDoctorBackgroundMonitorTask
    2015-01-27 09:14 - 2012-04-11 18:33 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
    2015-01-27 09:14 - 2012-04-11 18:33 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
    2015-01-27 09:14 - 2012-03-21 20:19 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
    2015-01-26 20:12 - 2012-03-21 20:22 - 00002368 _____ () C:\Users\Trent\Desktop\Google Chrome.lnk
    2015-01-26 12:42 - 2012-09-27 09:03 - 00000336 _____ () C:\Windows\BRCALIB.INI
    2015-01-23 11:33 - 2012-03-24 18:28 - 00000000 ____D () C:\Users\Trent\AppData\Roaming\Skype
    2015-01-22 17:03 - 2012-07-07 17:21 - 00000000 ____D () C:\Windows\Minidump
    2015-01-22 17:03 - 2012-03-20 10:49 - 00000000 ____D () C:\Windows\Panther
    2015-01-22 12:55 - 2012-04-04 12:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
    2015-01-22 12:55 - 2012-04-04 12:29 - 00000000 ____D () C:\Program Files (x86)\HP
    2015-01-22 12:54 - 2012-04-04 12:29 - 00000000 ____D () C:\Users\Trent\AppData\Roaming\HpUpdate
    2015-01-21 13:11 - 2012-12-14 00:27 - 00000000 ____D () C:\ProgramData\AVG2013
    2015-01-21 13:09 - 2013-03-21 21:29 - 00000000 ____D () C:\Users\Trent\Desktop\TAXES
    2015-01-21 12:44 - 2012-04-09 10:38 - 00000000 ____D () C:\Program Files (x86)\AVG
    2015-01-21 12:41 - 2014-11-19 14:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
    2015-01-21 12:41 - 2012-04-09 10:39 - 00000000 ___HD () C:\$AVG
    2015-01-19 15:30 - 2012-03-26 19:37 - 00000000 ____D () C:\Program Files (x86)\Workspace
    2015-01-19 15:29 - 2012-03-26 18:46 - 00000000 ____D () C:\Users\Trent\AppData\Local\Workspace
    2015-01-16 17:30 - 2012-03-21 20:37 - 00000000 ____D () C:\ProgramData\McAfee
    2015-01-16 17:23 - 2013-12-10 20:15 - 00000000 ____D () C:\Program Files (x86)\Shutterfly
    2015-01-16 17:17 - 2012-03-21 20:22 - 00000000 ____D () C:\Program Files (x86)\Citrix
    2015-01-16 12:00 - 2012-03-21 19:46 - 00000000 ____D () C:\Users\Trent
    2015-01-15 15:53 - 2013-02-18 11:13 - 00000000 ____D () C:\Users\Trent\Downloads\doggy
    2015-01-15 03:10 - 2013-07-13 02:02 - 00000000 ____D () C:\Windows\system32\MRT
    2015-01-15 03:00 - 2012-03-22 00:34 - 113365784 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
    2015-01-14 20:49 - 2013-09-24 19:37 - 00000000 ____D () C:\Users\Trent\Desktop\Chapel Ridge
    2015-01-14 16:55 - 2013-10-25 12:39 - 00000000 ____D () C:\Users\Trent\Desktop\Brandon
    2015-01-08 09:55 - 2012-03-23 14:23 - 00298120 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
     
    ==================== Files in the root of some directories =======
     
    2013-07-02 13:36 - 2013-07-02 13:36 - 0889416 _____ (Microsoft Corporation) C:\Users\Trent\AppData\Roaming\dotNetFx40_Full_setup.exe
    2012-03-26 10:41 - 2012-05-08 13:36 - 0011399 _____ () C:\Users\Trent\AppData\Roaming\SmarThruOptions.xml
    2013-01-05 09:54 - 2013-02-04 18:16 - 0000106 _____ () C:\Users\Trent\AppData\Roaming\wklnhst.dat
    2012-03-24 23:54 - 2014-11-06 16:25 - 0012800 _____ () C:\Users\Trent\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    2012-11-28 17:21 - 2013-04-09 13:10 - 0001799 _____ () C:\ProgramData\hpzinstall.log
    2012-04-12 12:44 - 2012-04-12 12:44 - 7713860 _____ () C:\ProgramData\SamPCFax000019600000
    2014-03-05 12:48 - 2014-03-05 12:48 - 0001744 _____ () C:\ProgramData\__wdump.txt
     
    Some content of TEMP:
    ====================
    C:\Users\Trent\AppData\Local\Temp\Quarantine.exe
    C:\Users\Trent\AppData\Local\Temp\sqlite3.dll
     
     
    ==================== Bamital & volsnap Check =================
     
    (There is no automatic fix for files that do not pass verification.)
     
    C:\Windows\System32\winlogon.exe => File is digitally signed
    C:\Windows\System32\wininit.exe => File is digitally signed
    C:\Windows\SysWOW64\wininit.exe => File is digitally signed
    C:\Windows\explorer.exe => File is digitally signed
    C:\Windows\SysWOW64\explorer.exe => File is digitally signed
    C:\Windows\System32\svchost.exe => File is digitally signed
    C:\Windows\SysWOW64\svchost.exe => File is digitally signed
    C:\Windows\System32\services.exe => File is digitally signed
    C:\Windows\System32\User32.dll => File is digitally signed
    C:\Windows\SysWOW64\User32.dll => File is digitally signed
    C:\Windows\System32\userinit.exe => File is digitally signed
    C:\Windows\SysWOW64\userinit.exe => File is digitally signed
    C:\Windows\System32\rpcss.dll => File is digitally signed
    C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
     
     
    LastRegBack: 2014-10-22 02:31
     
    ==================== End Of Log ============================

    • 0

    #6
    traunt53

    traunt53

      Member

    • Topic Starter
    • Member
    • PipPip
    • 45 posts

    Addition:

     

    Additional scan result of Farbar Recovery Scan Tool (x64) Version: 28-01-2015
    Ran by Trent at 2015-01-30 14:33:09
    Running from C:\Users\Trent\Downloads
    Boot Mode: Normal
    ==========================================================
     
     
    ==================== Security Center ========================
     
    (If an entry is included in the fixlist, it will be removed.)
     
    AV: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
    AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    AS: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664}
     
    ==================== Installed Programs ======================
     
    (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
     
    64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden
    Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.9.0.1380 - Adobe Systems Incorporated)
    Adobe Flash Player 16 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 16.0.0.296 - Adobe Systems Incorporated)
    Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.296 - Adobe Systems Incorporated)
    Adobe Reader X (10.1.10) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AA1000000001}) (Version: 10.1.10 - Adobe Systems Incorporated)
    Advanced Audio FX Engine (HKLM-x32\...\Advanced Audio FX Engine) (Version: 1.12.05 - Creative Technology Ltd)
    ANT Drivers Installer x64 (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
    Apple Application Support (HKLM-x32\...\{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}) (Version: 3.1 - Apple Inc.)
    Apple Mobile Device Support (HKLM\...\{BDD99690-3541-4619-9D2A-3CDDB3E15F9E}) (Version: 8.0.5.6 - Apple Inc.)
    Apple Software Update (HKLM-x32\...\{C6579A65-9CAE-4B31-8B6B-3306E0630A66}) (Version: 2.1.3.127 - Apple Inc.)
    AVG 2015 (HKLM\...\AVG) (Version: 2015.0.5645 - AVG Technologies)
    AVG 2015 (Version: 15.0.4273 - AVG Technologies) Hidden
    AVG 2015 (Version: 15.0.5645 - AVG Technologies) Hidden
    Banctec Service Agreement (HKLM-x32\...\{42D68A86-DB1C-4256-B8C9-5D0D92919AF5}) (Version: 2.0.0 - Dell Inc.)
    Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
    Brother MFL-Pro Suite MFC-9460CDN (HKLM-x32\...\{979742CC-2CBB-49D8-9BEE-C2F7875F5393}) (Version: 1.0.30.0 - Brother Industries, Ltd.)
    BufferChm (x32 Version: 130.0.331.000 - Hewlett-Packard) Hidden
    CCleaner (HKLM\...\CCleaner) (Version: 5.01 - Piriform)
    Compatibility Pack for the 2007 Office system (HKLM-x32\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
    Copy (x32 Version: 130.0.428.000 - Hewlett-Packard) Hidden
    Dell Dock (HKLM-x32\...\Dell Dock) (Version: 2.0 - Stardock Corporation)
    Dell Dock (Version: 2.0 - Stardock Corporation) Hidden
    Dell Edoc Viewer (HKLM\...\{8EBA8727-ADC2-477B-9D9A-1A1836BE4E05}) (Version: 1.0.0 - Dell Inc)
    Dell Getting Started Guide (HKLM-x32\...\{7DB9F1E5-9ACB-410D-A7DC-7A3D023CE045}) (Version: 1.00.0000 - Dell Inc.)
    Dell System Detect (HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\9204f5692a8faf3b) (Version: 5.4.0.4 - Dell)
    Dell System Detect Bootstrapper (HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\8e3135b376bd523e) (Version: 1.1.0.15 - Dell)
    Dell Webcam Central (HKLM-x32\...\Dell Webcam Central) (Version: 1.40.05 - Creative Technology Ltd)
    Destinations (x32 Version: 130.0.0.0 - Hewlett-Packard) Hidden
    DeviceDiscovery (x32 Version: 130.0.465.000 - Hewlett-Packard) Hidden
    DJ_AIO_03_F4200_Software_Min (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden
    Elevated Installer (x32 Version: 3.2.17.0 - Garmin Ltd or its subsidiaries) Hidden
    F4200 (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden
    Freemake Video Converter version 3.0.2 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 3.0.2 - Ellora Assets Corporation)
    Garmin Express (HKLM-x32\...\{b43ffffb-1adc-4bcb-b277-7844ebff94da}) (Version: 3.2.17.0 - Garmin Ltd or its subsidiaries)
    Garmin Express (x32 Version: 3.2.17.0 - Garmin Ltd or its subsidiaries) Hidden
    Garmin Express Tray (x32 Version: 3.2.17.0 - Garmin Ltd or its subsidiaries) Hidden
    Google Chrome (HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Google Chrome) (Version: 40.0.2214.93 - Google Inc.)
    Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.5111.1712 - Google Inc.)
    Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
    Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
    GPBaseService2 (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden
    HP Customer Participation Program 13.0 (HKLM\...\HPExtendedCapabilities) (Version: 13.0 - HP)
    HP Deskjet 3050 J610 series Basic Device Software (HKLM\...\{7D220A57-969F-4D09-9297-D48195A8ABDD}) (Version: 22.50.231.0 - Hewlett-Packard Co.)
    HP Deskjet 3050 J610 series Help (HKLM-x32\...\{F7632A9B-661E-4FD9-B1A4-3B86BC99847F}) (Version: 140.0.63.63 - Hewlett Packard)
    HP Deskjet 3050 J610 series Product Improvement Study (HKLM\...\{860B418B-F90B-465A-BC1D-04B518045C72}) (Version: 22.50.231.0 - Hewlett-Packard Co.)
    HP Deskjet F4200 All-In-One Driver Software 13.0 Rel. 3 (HKLM\...\{A00C9114-40E6-4C70-A619-7DF264B23485}) (Version: 13.0 - HP)
    HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP)
    HP Photosmart Essential 3.5 (HKLM\...\HP Photosmart Essential) (Version: 3.5 - HP)
    HP Smart Web Printing 4.51 (HKLM\...\HP Smart Web Printing) (Version: 4.51 - HP)
    HP Solution Center 13.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 13.0 - HP)
    HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
    HPDiagnosticAlert (x32 Version: 1.00.0000 - Microsoft) Hidden
    HPPhotoGadget (x32 Version: 130.0.282.000 - Hewlett-Packard) Hidden
    HPPhotoSmartDiscLabelContent1 (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden
    HPPhotosmartEssential (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden
    HPProductAssistant (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden
    iCloud (HKLM\...\{6096C0CC-7E19-4355-87F0-627EC5AA146D}) (Version: 4.0.3.56 - Apple Inc.)
    Intel® Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version:  - Intel Corporation)
    Intel® Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.5.0.1029 - Intel Corporation)
    Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version:  - Intel Corporation)
    Intel® PROSet/Wireless Software (HKLM-x32\...\{e6d17d96-ddaa-476f-bb07-db601024ffb1}) (Version: 15.8.0 - Intel Corporation)
    iTunes (HKLM\...\{2ABBBD91-91E5-4AD7-929A-FE15D1DC0576}) (Version: 12.0.1.26 - Apple Inc.)
    Java 7 Update 71 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.710 - Oracle)
    Java™ 7 Update 1 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417001FF}) (Version: 7.0.10 - Oracle)
    JavaFX 2.1.0 (HKLM-x32\...\{1111706F-666A-4037-7777-210328764D10}) (Version: 2.1.0 - Oracle Corporation)
    Junk Mail filter update (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
    K-Lite Codec Pack 10.6.5 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.6.5 - )
    Live! Cam Avatar Creator (HKLM-x32\...\{65D0C510-D7B6-4438-9FC8-E6B91115AB0D}) (Version: 4.6.3009.1 - Creative Technology Ltd)
    Malwarebytes Anti-Malware version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
    MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden
    Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
    Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002E-0000-0000-0000000FF1CE}_ULTIMATER_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
    Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
    Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
    Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation)
    Microsoft Office PowerPoint Viewer 2007 (English) (HKLM-x32\...\{95120000-00AF-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
    Microsoft Office Suite Activation Assistant (HKLM-x32\...\{67635FB6-2F63-4FFB-830B-D4C01597EBA4}) (Version: 1.2.1 - DELL)
    Microsoft Office Ultimate 2007 (HKLM-x32\...\ULTIMATER) (Version: 12.0.6612.1000 - Microsoft Corporation)
    Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
    Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
    Microsoft Sync Framework Runtime Native v1.0 (x86) (HKLM-x32\...\{8A74E887-8F0F-4017-AF53-CBA42211AAA5}) (Version: 1.0.1215.0 - Microsoft Corporation)
    Microsoft Sync Framework Services Native v1.0 (x86) (HKLM-x32\...\{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}) (Version: 1.0.1215.0 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
    Microsoft Works (HKLM-x32\...\{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}) (Version: 9.7.0621 - Microsoft Corporation)
    MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
    MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
    MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
    My Dell (HKLM\...\PC-Doctor for Windows) (Version: 3.5.6426.22 - PC-Doctor, Inc.)
    OLYMPUS Digital Camera Updater (HKLM-x32\...\{2A9E8F56-C31B-4DBB-BFE2-0F4EC8192355}) (Version: 1.0.3 - OLYMPUS IMAGING CORP.)
    OLYMPUS Viewer 3 (HKLM-x32\...\{1B28182C-253F-4CFE-AF4A-87CB416D5F73}) (Version: 1.0.0 - OLYMPUS IMAGING CORP.)
    PDFill PDF Editor with FREE Writer and FREE Tools (HKLM\...\{D1399216-81B2-457C-A0F7-73B9A2EF6902}) (Version: 9.0 - PlotSoft LLC)
    Pinnacle Instant DVD Recorder (HKLM-x32\...\{C1212AE3-DBB9-4365-8473-F8ABC7B06BBB}) (Version: 2.6.0.118 - Pinnacle Systems)
    Pinnacle Studio 12 (HKLM-x32\...\{D041EB9E-890A-4098-8F94-51DA194AC72A}) (Version: 12.1.3.6605 - Pinnacle Systems)
    Pinnacle Video Driver (HKLM\...\{6DE721A5-5E89-4D74-994C-652BB3C0672E}) (Version: 12.1.0.029 - Pinnacle Systems)
    PowerDVD DX (HKLM-x32\...\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}) (Version: 8.3.6029 - CyberLink Corp.)
    Quickset64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 9.6.6 - Dell Inc.)
    QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.)
    Readiris Pro 10 (HKLM-x32\...\{14D08502-FEE4-40E5-90D3-8A967A1D8BA2}) (Version:  - )
    RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden
    RealPlayer (HKLM-x32\...\RealPlayer 15.0) (Version: 15.0.6 - RealNetworks)
    RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden
    Roxio Burn (HKLM-x32\...\{B2E47DE7-800B-40BB-BD1F-9F221C3AEE87}) (Version: 1.01 - Roxio)
    Samsung CLX-3170 Series (HKLM-x32\...\Samsung CLX-3170 Series) (Version:  - Samsung Electronics CO.,LTD)
    SAMSUNG Dr.Printer  (HKLM-x32\...\{0DB87EAC-F695-4D59-9609-C93119AE6B35}) (Version: 1.00.0000 - Samsung)
    Scan (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden
    Skype™ 6.16 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.)
    SmarThru 4 (HKLM-x32\...\{90F1943D-EA4A-4460-B59F-30023F3BA69A}) (Version:  - )
    SmartWebPrinting (x32 Version: 130.0.457.000 - Hewlett-Packard) Hidden
    SolutionCenter (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden
    Sound Blaster X-Fi MB (HKLM-x32\...\{75CE8AF5-0A5E-4A42-BC67-F83591DA9A7D}) (Version: 1.0 - Creative Technology Limited)
    Status (x32 Version: 130.0.469.000 - Hewlett-Packard) Hidden
    Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 14.0.13.0 - Synaptics Incorporated)
    System Requirements Lab for Intel (HKLM-x32\...\{C7CA731B-BF9A-46D9-92CF-8A8737AE9240}) (Version: 4.5.13.0 - Husdawg, LLC)
    Toolbox (x32 Version: 130.0.648.000 - Hewlett-Packard) Hidden
    TrayApp (x32 Version: 130.0.422.000 - Hewlett-Packard) Hidden
    UnloadSupport (x32 Version: 11.0.0 - Hewlett-Packard) Hidden
    Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002E-0000-0000-0000000FF1CE}_ULTIMATER_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
    Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
    Visual Studio 2008 x64 Redistributables (HKLM-x32\...\{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}) (Version: 10.0.0.2 - AVG Technologies)
    Visual Studio 2010 x64 Redistributables (HKLM\...\{21B133D6-5979-47F0-BE1C-F6A6B304693F}) (Version: 13.0.0.1 - AVG Technologies)
    Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
    Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
    VoiceOver Kit (HKLM-x32\...\{6B4AD1A9-E73A-4184-9D6B-072F8A3C5EBA}) (Version: 1.42.128.0 - Apple Inc.)
    WebReg (x32 Version: 130.0.132.017 - Hewlett-Packard) Hidden
    Windows Driver Package - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
    Windows Driver Package - OLYMPUS IMAGING CORP. Camera Communication Driver Package (09/09/2009 1.0.0.0) (HKLM\...\2C1C2F29FADF39F533CEEE67B90F07A5306A4BDB) (Version: 09/09/2009 1.0.0.0 - OLYMPUS IMAGING CORP.)
    Windows Driver Package - Silicon Labs Software (DSI_SiUSBXp_3_1) USB  (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
    Windows Live Essentials (HKLM-x32\...\WinLiveSuite_Wave3) (Version: 14.0.8089.0726 - Microsoft Corporation)
    Windows Live Sign-in Assistant (HKLM-x32\...\{45338B07-A236-4270-9A77-EBB4115517B5}) (Version: 5.000.818.5 - Microsoft Corporation)
    Windows Live Sync (HKLM-x32\...\{84EBDF39-4B33-49D7-A0BD-EB6E2C4E81C1}) (Version: 14.0.8089.726 - Microsoft Corporation)
    Windows Live Upload Tool (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
    Workspace Desktop (HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\workspacedesktop) (Version:  - Starfield Technologies)
     
    ==================== Custom CLSID (selected items): ==========================
     
    (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
     
    CustomCLSID: HKU\S-1-5-21-4108897128-1100751025-739537080-1001_Classes\CLSID\{1BFB1268-6353-495A-AB78-97BF7CAB4D59}\InprocServer32 -> C:\Users\Trent\AppData\Local\Workspace\gdeditwrapperax64.dll (Starfield Technologies)
    CustomCLSID: HKU\S-1-5-21-4108897128-1100751025-739537080-1001_Classes\CLSID\{B5B8593C-89BC-44a7-BCE3-32FE4FED7C5C}\InprocServer32 -> C:\Users\Trent\AppData\Local\Workspace\wbetoolsax64.dll (Starfield Technology, LLC)
    CustomCLSID: HKU\S-1-5-21-4108897128-1100751025-739537080-1001_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Trent\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll (Google Inc.)
    CustomCLSID: HKU\S-1-5-21-4108897128-1100751025-739537080-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Trent\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll (Google Inc.)
     
    ==================== Restore Points  =========================
     
    21-01-2015 12:35:55 Installed AVG 2015
    21-01-2015 12:37:18 Installed AVG 2015
    22-01-2015 12:53:08 Installed HP Update.
    30-01-2015 03:00:13 Windows Update
     
    ==================== Hosts content: ==========================
     
    (If needed Hosts: directive could be included in the fixlist to reset Hosts.)
     
    2009-07-13 21:34 - 2015-01-28 14:56 - 00000098 ____A C:\Windows\system32\Drivers\etc\hosts
    127.0.0.1       localhost
    ::1       localhost
     
    ==================== Scheduled Tasks (whitelisted) =============
     
    (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
     
    Task: {0A05C7AB-48EA-4FCC-A189-3F1658E56DBA} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-4108897128-1100751025-739537080-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2012-07-27] (RealNetworks, Inc.)
    Task: {1E3AFCA8-CF74-4B83-945A-DCD0B8C5C465} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\My Dell\uaclauncher.exe [2014-01-31] (PC-Doctor, Inc.)
    Task: {221AF5CF-A07A-42D6-9FAD-22AAFEAE7F25} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: {2E2904A0-428A-4E56-A07C-712FC8742371} - System32\Tasks\{23533304-0801-4B11-AAE5-6927CCE1DF49} => pcalua.exe -a C:\Users\Trent\Downloads\lgs510.exe -d C:\Users\Trent\Downloads
    Task: {3C103D41-E7D4-4538-935B-DC37B5906E9A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-01-27] (Adobe Systems Incorporated)
    Task: {3C842224-ABEE-4219-B394-1F5E208483AB} - System32\Tasks\PCDoctorBackgroundMonitorTask-Retry => C:\Program Files\My Dell\uaclauncher.exe [2014-01-31] (PC-Doctor, Inc.)
    Task: {445FFF10-1C66-401C-A869-2F02DCE66E75} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: {4D15C437-3DA4-40F9-AFF3-73E1E8B4F557} - System32\Tasks\HPCustParticipation HP Deskjet 3050 J610 series => C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\HPCustPartic.exe [2010-11-16] (Hewlett-Packard Co.)
    Task: {5A673285-99FD-40A3-8911-920D35E88520} - System32\Tasks\{265DECF1-1602-451F-988D-B1F65B87CC09} => pcalua.exe -a "C:\Program Files (x86)\McAfee\MSC\mcuninst.exe"
    Task: {5BE8C267-90C4-43E0-961C-C95FD96E29A6} - System32\Tasks\PCDEventLauncherTask => C:\Program Files\My Dell\sessionchecker.exe [2014-01-31] (PC-Doctor, Inc.)
    Task: {5E98F0CA-6934-4040-BF29-84F43F4DB6B0} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-4108897128-1100751025-739537080-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2012-07-27] (RealNetworks, Inc.)
    Task: {67BF9A55-EFC9-4F1B-85CB-8525B7213104} - System32\Tasks\{7F92AA7A-B302-42DB-AD31-87D05CE5EE6A} => pcalua.exe -a D:\Setup.exe -d D:\
    Task: {7F033174-A53F-4542-BCB3-AB5AF1657A28} - System32\Tasks\{B9A1E58D-F1E7-4FE2-B14D-FCF98DD91B68} => pcalua.exe -a "C:\Users\Trent\Desktop\Nintendo\Game\dxwebsetup (1).exe" -d C:\Users\Trent\Desktop\Nintendo\Game
    Task: {B1E745C7-0533-4776-9715-B01C13585085} - System32\Tasks\ROC_REG_JAN_DELETE => C:\ProgramData\AVG January 2013 Campaign\ROC.exe [2013-01-17] ()
    Task: {B59CB8F9-7169-4C6E-A3A7-D4C8557D893D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-12-12] (Piriform Ltd)
    Task: {BA9DA709-D3E7-49E0-9486-423EDC1EA870} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4108897128-1100751025-739537080-1001UA => C:\Users\Trent\AppData\Local\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
    Task: {C96B11BA-3BA5-4493-96B5-4C249CABB0E1} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4108897128-1100751025-739537080-1001Core => C:\Users\Trent\AppData\Local\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
    Task: {DD3039BE-D7EA-4560-880D-860B6E9CC047} - System32\Tasks\SystemToolsDailyTest => uaclauncher.exe
    Task: {E4B2AD59-D9BD-4E6E-93AC-5448133497BF} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
    Task: {FCDDF25D-F31E-41FE-91F4-7E5911BE3CC5} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express Self Updater\ExpressSelfUpdater.exe [2014-08-07] ()
    Task: {FDB12F5C-3E26-476B-96B5-4FE87F6175AD} - System32\Tasks\{EDBAD7C2-B05C-4E0F-8EC4-75930AFA00A8} => pcalua.exe -a "C:\Program Files (x86)\Stopzilla 2013\STOPzilla_Setup.exe" -d "C:\Program Files (x86)\Stopzilla 2013"
    Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4108897128-1100751025-739537080-1001Core.job => C:\Users\Trent\AppData\Local\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4108897128-1100751025-739537080-1001UA.job => C:\Users\Trent\AppData\Local\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\ROC_REG_JAN_DELETE.job => C:\ProgramData\AVG January 2013 Campaign\ROC.exe
     
    ==================== Loaded Modules (whitelisted) =============
     
    2011-04-10 20:26 - 2011-04-11 00:26 - 00034304 _____ () C:\Windows\System32\spe__l.dll
    2012-03-26 10:35 - 2007-08-13 20:03 - 00022016 _____ () C:\Windows\System32\sst1cl6.dll
    2014-02-06 00:52 - 2014-02-06 00:52 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
    2014-10-11 12:05 - 2014-10-11 12:05 - 01044776 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
    2013-11-01 15:11 - 2013-11-01 15:11 - 00090624 _____ () C:\Program Files (x86)\PasswordBox\libwebsocketswin32.dll
    2015-01-26 20:12 - 2015-01-25 01:08 - 01117512 _____ () C:\Users\Trent\AppData\Local\Google\Chrome\Application\40.0.2214.93\libglesv2.dll
    2015-01-26 20:12 - 2015-01-25 01:08 - 00211272 _____ () C:\Users\Trent\AppData\Local\Google\Chrome\Application\40.0.2214.93\libegl.dll
    2015-01-26 20:12 - 2015-01-25 01:08 - 09170760 _____ () C:\Users\Trent\AppData\Local\Google\Chrome\Application\40.0.2214.93\pdf.dll
     
    ==================== Alternate Data Streams (whitelisted) =========
     
    (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
     
     
    ==================== Safe Mode (whitelisted) ===================
     
    (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
     
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc => ""="Service"
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcmscsvc => ""="Service"
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MpfService => ""="Service"
     
    ==================== EXE Association (whitelisted) =============
     
    (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
     
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\Software\Classes\.exe: exefile =>  <===== ATTENTION!
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\Software\Classes\exefile:  <===== ATTENTION!
     
    ==================== MSCONFIG/TASK MANAGER disabled items =========
     
    (Currently there is no automatic fix for this section.)
     
    MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk => C:\Windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup
    MSCONFIG\startupreg: Dell Webcam Central => "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2
    MSCONFIG\startupreg: DellSupportCenter => "C:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
    MSCONFIG\startupreg: Desktop Disc Tool => "c:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe"
    MSCONFIG\startupreg: GarminExpressTrayApp => "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
    MSCONFIG\startupreg: HP Software Update => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
    MSCONFIG\startupreg: hpqSRMon => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe
    MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
    MSCONFIG\startupreg: OV3_Monitor => "C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OV3Monitor.exe"
    MSCONFIG\startupreg: PCShowServer => "C:\Users\Trent\AppData\Local\DIRECTV Player\PCShowServerPMWrapper.exe"
    MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
     
    ========================= Accounts: ==========================
     
    Administrator (S-1-5-21-4108897128-1100751025-739537080-500 - Administrator - Disabled)
    Guest (S-1-5-21-4108897128-1100751025-739537080-501 - Limited - Enabled) => C:\Users\Guest
    HomeGroupUser$ (S-1-5-21-4108897128-1100751025-739537080-1002 - Limited - Enabled)
    SACNETDRIVEUSER01 (S-1-5-21-4108897128-1100751025-739537080-1004 - Limited - Enabled)
    Trent (S-1-5-21-4108897128-1100751025-739537080-1001 - Administrator - Enabled) => C:\Users\Trent
     
    ==================== Faulty Device Manager Devices =============
     
     
    ==================== Event log errors: =========================
     
    Application errors:
    ==================
    Error: (01/30/2015 01:40:17 PM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledSPRetry 12570155
     
    Error: (01/30/2015 01:40:16 PM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledEvent 12570155
     
    Error: (01/30/2015 01:40:16 PM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: Continuously busy for more than a second
     
    Error: (01/30/2015 10:10:51 AM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledSPRetry 5320
     
    Error: (01/30/2015 10:10:51 AM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledEvent 5320
     
    Error: (01/30/2015 10:10:51 AM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: Continuously busy for more than a second
     
    Error: (01/30/2015 10:10:50 AM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledSPRetry 4321
     
    Error: (01/30/2015 10:10:50 AM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledEvent 4321
     
    Error: (01/30/2015 10:10:50 AM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: Continuously busy for more than a second
     
    Error: (01/30/2015 10:10:49 AM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledSPRetry 3229
     
     
    System errors:
    =============
    Error: (01/30/2015 09:59:26 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
    Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Garmin Core Update Service service.
     
    Error: (01/30/2015 09:47:16 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The Google Update Service (gupdate) service failed to start due to the following error: 
    %%2
     
    Error: (01/30/2015 09:45:05 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The Intel® PROSet/Wireless Zero Configuration Service service failed to start due to the following error: 
    %%1053
     
    Error: (01/30/2015 09:45:04 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
    Description: A timeout was reached (30000 milliseconds) while waiting for the Intel® PROSet/Wireless Zero Configuration Service service to connect.
     
    Error: (01/30/2015 09:43:10 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The DgiVecp service failed to start due to the following error: 
    %%20
     
    Error: (01/30/2015 09:43:06 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The sbapifs service failed to start due to the following error: 
    %%2
     
    Error: (01/30/2015 09:24:51 AM) (Source: Tcpip) (EventID: 4199) (User: )
    Description: The system detected an address conflict for IP address 0.0.0.0 with the system
    having network hardware address 00-00-00-00-00-00. Network operations on this system may
    be disrupted as a result.
     
    Error: (01/30/2015 09:21:52 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The Google Update Service (gupdate) service failed to start due to the following error: 
    %%2
     
    Error: (01/30/2015 09:19:28 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The Garmin Core Update Service service failed to start due to the following error: 
    %%1053
     
    Error: (01/30/2015 09:19:28 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
    Description: A timeout was reached (30000 milliseconds) while waiting for the Garmin Core Update Service service to connect.
     
     
    Microsoft Office Sessions:
    =========================
    Error: (04/15/2014 01:50:46 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
    Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6695.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 7335 seconds with 420 seconds of active time.  This session ended with a crash.
     
     
    ==================== Memory info =========================== 
     
    Processor: Intel® Core™2 Duo CPU T6600 @ 2.20GHz
    Percentage of memory in use: 60%
    Total physical RAM: 4056.96 MB
    Available physical RAM: 1600.73 MB
    Total Pagefile: 8112.11 MB
    Available Pagefile: 4915.26 MB
    Total Virtual: 8192 MB
    Available Virtual: 8191.86 MB
     
    ==================== Drives ================================
     
    Drive c: (OS) (Fixed) (Total:287.93 GB) (Free:79.53 GB) NTFS
     
    ==================== MBR & Partition Table ==================
     
    ========================================================
    Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 298.1 GB) (Disk ID: 55AE0899)
    Partition 1: (Not Active) - (Size=39 MB) - (Type=DE)
    Partition 2: (Active) - (Size=10.1 GB) - (Type=07 NTFS)
    Partition 3: (Not Active) - (Size=287.9 GB) - (Type=07 NTFS)
     
    ==================== End Of Log ============================

    • 0

    #7
    traunt53

    traunt53

      Member

    • Topic Starter
    • Member
    • PipPip
    • 45 posts

    So far the only thing Adwcleaner cleaner removed that I wanted still that I have noticed is the speed dial but It's not a big deal. For what it's worth, my PC seems worse sinse doing that.

     

    It's slow, always saying "Waiting for cache" always saying "Not responding" while it freezes. Videos pause and make a scratch or "remix" type sound. PC Restarts a lot without me wanting it to. I have about 80 gb of space remaining. I thought the space being used up was the issue at first but it's just dying altogether. I could be using Microsoft word and typing something and it will just stop. Sometimes the mouse still works/trackpad but then it will also freeze for 4-5 minutes. Also the fan is very noticeably going on and off. Not sure if that's always the way it was but I just notice it a lot now. 


    • 0

    #8
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 24,625 posts
    • MVP

    Copy the next two lines:

     

    reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager" > \junk
    notepad \junk
     
    Start, All Programs, Accessories, right click on Command Prompt and Run as Administrator, Continue.  Right click and Paste or Edit then Paste and the copied line should appear.
    Hit Enter if notepad does not open.  Copy and paste the text from notepad into a reply.  Close notepad.  Close the Command Window.
     
     
    Get Process Explorer
     
    Save it to your desktop then run it (Vista or Win7 - right click and Run As Administrator).  
     
    View, Select Column, check Verified Signer, OK
    Options, Verify Image Signatures
     
     
    Click twice on the CPU column header  to sort things by CPU usage with the big hitters at the top.  
     
    Wait a full minute then:
     
    File, Save As, Save.  Open the file Procexp.txt on your desktop and copy and paste the text to a reply.
     
     
     

    • 0

    #9
    traunt53

    traunt53

      Member

    • Topic Starter
    • Member
    • PipPip
    • 45 posts

    part one:

     

     
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager
        CriticalSectionTimeout    REG_DWORD    0x278d00
        GlobalFlag    REG_DWORD    0x0
        HeapDeCommitFreeBlockThreshold    REG_DWORD    0x0
        HeapDeCommitTotalFreeThreshold    REG_DWORD    0x0
        HeapSegmentCommit    REG_DWORD    0x0
        HeapSegmentReserve    REG_DWORD    0x0
        ProcessorControl    REG_DWORD    0x2
        ResourceTimeoutCount    REG_DWORD    0x9e340
        BootExecute    REG_MULTI_SZ    autocheck autochk *\0 /sync /restart\0 /sync /restart\0 /sync /restart\0 /sync /restart\0 /sync /restart\0 /sync /restart\0 /sync /restart\0 /sync /restart\0 /sync /restart\0 /sync /restart
        ExcludeFromKnownDlls    REG_MULTI_SZ    
        ObjectDirectories    REG_MULTI_SZ    \Windows\0\RPC Control
        ProtectionMode    REG_DWORD    0x1
        NumberOfInitialSessions    REG_DWORD    0x2
        SetupExecute    REG_MULTI_SZ    
     
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\AppCompatCache
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Configuration Manager
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\DOS Devices
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Environment
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Executive
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\FileRenameOperations
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\I/O System
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\kernel
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\KnownDLLs
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Memory Management
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Power
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Quota System
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\WPA

    • 0

    #10
    traunt53

    traunt53

      Member

    • Topic Starter
    • Member
    • PipPip
    • 45 posts
     
    Process CPU Private Bytes Working Set PID Description Company Name Verified Signer
    System Idle Process 65.52 0 K 24 K 0
    procexp64.exe 15.62 36,704 K 51,692 K 7808 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Sysinternals
    Interrupts 4.41 0 K 0 K n/a Hardware Interrupts and DPCs
    dwm.exe 3.80 73,800 K 47,484 K 1376 Desktop Window Manager Microsoft Corporation (Verified) Microsoft Windows
    SynTPEnh.exe 3.96 8,684 K 13,896 K 1044 Synaptics TouchPad Enhancements Synaptics Incorporated (Verified) Microsoft Windows Hardware Compatibility Publisher
    Garmin.Cartography.MapUpdate.CoreService.exe 1.02 28,952 K 42,308 K 2296 Garmin Core Update Service Garmin Ltd or its subsidiaries (Verified) Garmin International
    svchost.exe 0.69 132,108 K 140,848 K 1036 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
    csrss.exe 1.03 3,872 K 24,212 K 780 Client Server Runtime Process Microsoft Corporation (Verified) Microsoft Windows
    System 1.19 456 K 38,648 K 4
    chrome.exe 0.42 100,316 K 135,956 K 4028 Google Chrome Google Inc. (Verified) Google Inc
    avgui.exe < 0.01 7,640 K 8,552 K 2016 AVG User Interface AVG Technologies CZ, s.r.o. (Verified) AVG Technologies CZ
    avgidsagent.exe 0.13 16,416 K 30,740 K 1844 AVG Identity Protection Service AVG Technologies CZ, s.r.o. (Verified) AVG Technologies CZ
    AppleMobileDeviceService.exe 0.16 3,324 K 9,672 K 1816 MobileDeviceService Apple Inc. (Verified) Apple Inc.
    explorer.exe 0.65 50,804 K 75,012 K 2116 Windows Explorer Microsoft Corporation (Verified) Microsoft Windows
    lsm.exe 2,816 K 4,492 K 832 Local Session Manager Service Microsoft Corporation (Verified) Microsoft Windows
    offSyncService.exe 0.08 1,324 K 4,308 K 1476 Online Storage File Backup Starfield Technologies (Verified) Starfield Technologies
    svchost.exe 0.22 8,032 K 14,420 K 2032 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
    lsass.exe 0.02 5,532 K 13,420 K 824 Local Security Authority Process Microsoft Corporation (Verified) Microsoft Windows
    SacReminder.exe 8,108 K 17,052 K 3764 Clickfree Reminder Storage Appliance Corp. (Verified) Storage Appliance Corporation
    DellSystemDetect.exe 0.08 21,772 K 38,012 K 2616 Dell System Detect Dell (Certificate expired) Dell
    chrome.exe 0.08 57,456 K 59,536 K 4636 Google Chrome Google Inc. (Verified) Google Inc
    chrome.exe 0.06 96,860 K 99,512 K 5296 Google Chrome Google Inc. (Verified) Google Inc
    SacNetAgent.exe 0.02 3,040 K 6,636 K 3804 Clickfree Network Agent Storage Appliance Corporation (Verified) Storage Appliance Corporation
    avgwdsvc.exe 0.06 12,296 K 24,128 K 1872 AVG Watchdog Service AVG Technologies CZ, s.r.o. (Verified) AVG Technologies CZ
    CCleaner64.exe 0.05 12,444 K 4,856 K 3548 CCleaner Piriform Ltd (Verified) Piriform Ltd
    chrome.exe 0.04 167,972 K 162,584 K 6788 Google Chrome Google Inc. (Verified) Google Inc
    svchost.exe 0.11 11,208 K 14,652 K 5760 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
    svchost.exe 0.01 27,024 K 26,028 K 828 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
    taskhost.exe 0.08 12,560 K 12,960 K 2636 Host Process for Windows Tasks Microsoft Corporation (Verified) Microsoft Windows
    pbbtnService.exe 0.02 2,400 K 6,236 K 3272 PasswordBox Service PasswordBox, Inc. (No signature was present in the subject) PasswordBox, Inc.
    svchost.exe 0.01 13,504 K 20,488 K 1080 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
    svchost.exe 0.06 23,632 K 40,452 K 1148 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
    FreemakeUtilsService.exe 0.01 17,124 K 20,912 K 2084 FreemakeUtilsService Freemake (No signature was present in the subject) Freemake
    svchost.exe 0.01 14,456 K 16,372 K 1544 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
    wmpnetwk.exe 0.07 15,588 K 6,016 K 5636 Windows Media Player Network Sharing Service Microsoft Corporation (Verified) Microsoft Windows
    csrss.exe 0.03 2,108 K 4,476 K 704 Client Server Runtime Process Microsoft Corporation (Verified) Microsoft Windows
    stacsv64.exe < 0.01 13,784 K 9,512 K 1192 IDT PC Audio IDT, Inc. (Verified) Microsoft Windows Hardware Compatibility Publisher
    BTHSAmpPalService.exe < 0.01 1,864 K 4,436 K 3304 Intel® Centrino® Wireless Bluetooth® + High Speed Virtual Adapter Intel Corporation (Verified) Intel Corporation-Mobile Wireless Group
    spoolsv.exe < 0.01 9,664 K 17,356 K 1676 Spooler SubSystem App Microsoft Corporation (Verified) Microsoft Windows
    svchost.exe 15,996 K 16,620 K 1712 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
    workspaceupdate.exe 2,272 K 7,428 K 3780 Workspace Updater Starfield Technologies (Verified) Starfield Technologies
    WmiPrvSE.exe 4,932 K 11,180 K 5740 WMI Provider Host Microsoft Corporation (Verified) Microsoft Windows
    winlogon.exe 2,860 K 7,580 K 1016 Windows Logon Application Microsoft Corporation (Verified) Microsoft Windows
    wininit.exe 1,480 K 4,384 K 744 Windows Start-Up Application Microsoft Corporation (Verified) Microsoft Windows
    unsecapp.exe 0.08 1,812 K 5,276 K 5520 Sink to receive asynchronous callbacks for WMI client application Microsoft Corporation (Verified) Microsoft Windows
    UACProxy.exe 948 K 3,216 K 1932 Clickfree Backup Storage Appliance Corp. (Verified) Storage Appliance Corporation
    SynTPHelper.exe 1,492 K 3,780 K 5816 Synaptics Pointing Device Helper Synaptics Incorporated (Verified) Microsoft Windows Hardware Compatibility Publisher
    svchost.exe < 0.01 4,480 K 9,428 K 944 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
    svchost.exe 0.06 5,664 K 9,480 K 536 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
    svchost.exe 2,324 K 5,380 K 1428 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
    svchost.exe 4,616 K 9,364 K 3896 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
    svchost.exe 3,620 K 8,404 K 2780 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows
    sttray64.exe 7,496 K 16,688 K 3080 IDT PC Audio IDT, Inc. (Verified) Microsoft Windows Hardware Compatibility Publisher
    smss.exe 444 K 1,096 K 324 Windows Session Manager Microsoft Corporation (Verified) Microsoft Windows
    sidebar.exe 21,680 K 49,380 K 3504 Windows Desktop Gadgets Microsoft Corporation (Verified) Microsoft Windows
    services.exe 6,752 K 10,320 K 804 Services and Controller app Microsoft Corporation (Verified) Microsoft Windows
    SearchIndexer.exe 0.03 49,188 K 18,864 K 5024 Microsoft Windows Search Indexer Microsoft Corporation (Verified) Microsoft Windows
    rundll32.exe 6,400 K 5,956 K 3392 Windows host process (Rundll32) Microsoft Corporation (Verified) Microsoft Windows
    RegSrvc.exe 2,444 K 7,092 K 3756 Intel® PROSet/Wireless Registry Service Intel® Corporation (Verified) Intel Corporation-Mobile Wireless Group
    realsched.exe 2,504 K 364 K 3864 RealNetworks Scheduler RealNetworks, Inc. (Verified) RealNetworks
    quickset.exe 0.07 8,108 K 10,876 K 3324 QuickSet Dell Inc. (Certificate expired) Dell Inc.
    procexp.exe 3,036 K 7,200 K 2744 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
    PDVDDXSrv.exe 4,388 K 9,200 K 3220 CyberLink PowerDVD Resident Program CyberLink Corp. (Verified) CyberLink
    o2flash.exe 1,492 K 4,420 K 3240 O2 Flash Memory Service O2Micro International (Verified) Microsoft Windows Hardware Compatibility Publisher
    mscorsvw.exe 6,812 K 10,084 K 4676 .NET Runtime Optimization Service Microsoft Corporation (Verified) Microsoft Dynamic Code Publisher
    mDNSResponder.exe 2,420 K 5,808 K 1900 Bonjour Service Apple Inc. (Verified) Apple Inc.
    igfxtray.exe 2,672 K 6,900 K 3412 igfxTray Module Intel Corporation (Verified) Microsoft Windows Hardware Compatibility Publisher
    igfxpers.exe 2,544 K 7,216 K 3428 persistence Module Intel Corporation (Verified) Microsoft Windows Hardware Compatibility Publisher
    iCloudServices.exe 4,736 K 15,848 K 3536 iCloud Apple Inc. (Verified) Apple Inc.
    IAANTmon.exe 2,484 K 6,664 K 2900 RAID Monitor Intel Corporation (Verified) Intel Corporation
    IAAnotif.exe 2,416 K 7,408 K 3384 Event Monitor User Notification Tool Intel Corporation (Verified) Intel Corporation
    hkcmd.exe 3,336 K 10,392 K 3420 hkcmd Module Intel Corporation (Verified) Microsoft Windows Hardware Compatibility Publisher
    EvtEng.exe 4,888 K 11,504 K 1980 Intel® PROSet/Wireless Event Log Service Intel® Corporation (Verified) Intel Corporation-Mobile Wireless Group
    DockLogin.exe 1,128 K 3,960 K 1492 Dock Login Service Stardock Corporation (No signature was present in the subject) Stardock Corporation
    dllhost.exe 2,316 K 6,176 K 8976 COM Surrogate Microsoft Corporation (Verified) Microsoft Windows
    ctfmon.exe 2,228 K 4,604 K 1828 CTF Loader Microsoft Corporation (Verified) Microsoft Windows
    CTAudSvc.exe 1,332 K 4,288 K 1292 Creative Audio Service Creative Technology Ltd (No signature was present in the subject) Creative Technology Ltd
    chrome.exe 0.02 111,760 K 116,420 K 4484 Google Chrome Google Inc. (Verified) Google Inc
    chrome.exe 77,384 K 68,652 K 4612 Google Chrome Google Inc. (Verified) Google Inc
    chrome.exe 103,200 K 106,984 K 4292 Google Chrome Google Inc. (Verified) Google Inc
    chrome.exe 84,884 K 104,956 K 4236 Google Chrome Google Inc. (Verified) Google Inc
    BTHSSecurityMgr.exe 3,572 K 8,224 K 5232 Intel® BlueTooth® HS Security Manager Service Intel® Corporation (Verified) Intel Corporation-Mobile Wireless Group
    avgrsa.exe 20,808 K 35,168 K 428 AVG Resident Shield Service AVG Technologies CZ, s.r.o. (Verified) AVG Technologies CZ
    avgnsa.exe 9,460 K 16,644 K 2388 AVG Online Shield Service AVG Technologies CZ, s.r.o. (Verified) AVG Technologies CZ
    avgemca.exe 2,084 K 6,888 K 2396 AVG E-mail Scanner AVG Technologies CZ, s.r.o. (Verified) AVG Technologies CZ
    avgcsrva.exe 13,724 K 97,704 K 464 AVG Scanning Core Module - Server Part AVG Technologies CZ, s.r.o. (Verified) AVG Technologies CZ
    armsvc.exe 1,160 K 3,860 K 1784 Adobe Acrobat Update Service Adobe Systems Incorporated (Verified) Adobe Systems
     

    Edited by traunt53, 30 January 2015 - 03:04 PM.

    • 0

    Advertisements


    #11
    RKinner

    RKinner

      Malware Expert

    • Expert
    • 24,625 posts
    • MVP

    Download the attached bootex.zip file and save it.  Right click on the file and Extract All.  You should get a bootex.reg file.  Right click on it and Merge.

     

    Don't know if this will fix your problem but the entry is obviously wrong.  Some program (maybe AVG) added the sync restart stuff and it should only be there once.:

     

      BootExecute    REG_MULTI_SZ    autocheck autochk *\0 /sync /restart\0 /sync /restart\0 /sync /restart\0 /sync /restart\0 /sync /restart\0 /sync /restart\0 /sync /restart\0 /sync /restart\0 /sync /restart\0 /sync /restart

     

    Now Download the attached fixlist.txt to the same location as FRST

    Run FRST and press Fix
    A fix log will be generated please post that.  Run FRST again, check the Additions box and then Scan.  You will get two logs.  Post them both.
     
     
    Right click on (My) Computer and select Manage (Continue) Then click on the arrow in front of Event Viewer. Next Click on the arrow in front of Windows Logs Right click on System and Clear Log, Clear. Repeat for Application.
     
    Reboot. 
     
    Start, All Programs, Accessories then right click on Command Prompt and Run as Administrator.  Then type (with an Enter after each line).
    sfc  /scannow
     
    (This will check your critical system files. Does this finish without complaint?  IF it says it couldn't fix everything then:
     
    Copy the next two lines:
     
    findstr  /c:"[SR]"  \windows\logs\cbs\cbs.log  >  \windows\logs\cbs\junk.txt 
    notepad \windows\logs\cbs\junk.txt 
     
    Start, All Programs, Accessories, right click on Command Prompt and Run as Administrator, Continue.  Right click and Paste or Edit then Paste and the copied line should appear.
    Hit Enter. Copy and paste the text from notepad or if it is too big, just attach the file.)
     
     
    1. Please download the Event Viewer Tool by Vino Rosso
    and save it to your Desktop:
    2. Right-click VEW.exe and Run AS Administrator
    3. Under 'Select log to query', select:
     
    * System
    4. Under 'Select type to list', select:
    * Error
    * Warning
     
     
    Then use the 'Number of events' as follows:
     
     
    1. Click the radio button for 'Number of events'
    Type 20 in the 1 to 20 box
    Then click the Run button.
    Notepad will open with the output log.
     
     
    Please post the Output log in your next reply then repeat but select Application.
     
     
    Run another process explorer log as before and post it.

     

     

     

     

     

     


    • 0

    #12
    traunt53

    traunt53

      Member

    • Topic Starter
    • Member
    • PipPip
    • 45 posts

    fixlog:

     

    Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 28-01-2015
    Ran by Trent at 2015-01-30 23:14:27 Run:1
    Running from C:\Users\Trent\Downloads
    Loaded Profiles: Trent & Guest (Available profiles: Trent & Guest)
    Boot Mode: Normal
    ==============================================
     
    Content of fixlist:
    *****************
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\Software\Classes\.exe: exefile =>  <===== ATTENTION!
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\Software\Classes\exefile:  <===== ATTENTION!
    ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} =>  No File
    ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} =>  No File
    ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} =>  No File
    ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} =>  No File 
    HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    BHO: No Name -> {31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} ->  No File
    BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
    BHO-x32: No Name -> {5C255C8A-E604-49b4-9D64-90988571CECB} ->  No File
    Toolbar: HKU\S-1-5-21-4108897128-1100751025-739537080-1001 -> No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} -  No File
    Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} -  No File
    S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
    S2 sbapifs; system32\DRIVERS\sbapifs.sys [X]
     
    *****************
     
    "HKU\S-1-5-21-4108897128-1100751025-739537080-1001\Software\Classes\exefile" => Key deleted successfully.
    "HKU\S-1-5-21-4108897128-1100751025-739537080-1001\Software\Classes\.exe" => Key deleted successfully.
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\Software\Classes\exefile => Key not found. 
    "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt1" => Key deleted successfully.
    HKCR\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => Key not found. 
    "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt2" => Key deleted successfully.
    HKCR\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => Key not found. 
    "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt3" => Key deleted successfully.
    HKCR\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => Key not found. 
    "HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\DropboxExt4" => Key deleted successfully.
    HKCR\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => Key not found. 
    "HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
    "HKU\S-1-5-21-4108897128-1100751025-739537080-1001\SOFTWARE\Policies\Microsoft\Internet Explorer" => Key deleted successfully.
    HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
    HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
    HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
    "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31332EEF-CB9F-458F-AFEB-D30E9A66B6BA}" => Key deleted successfully.
    HKCR\CLSID\{31332EEF-CB9F-458F-AFEB-D30E9A66B6BA} => Key not found. 
    "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}" => Key deleted successfully.
    "HKCR\Wow6432Node\CLSID\{0E8A89AD-95D7-40EB-8D9D-083EF7066A01}" => Key deleted successfully.
    "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}" => Key deleted successfully.
    HKCR\Wow6432Node\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB} => Key not found. 
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{21FA44EF-376D-4D53-9B0F-8A89D3229068} => value deleted successfully.
    HKCR\CLSID\{21FA44EF-376D-4D53-9B0F-8A89D3229068} => Key not found. 
    "HKCR\PROTOCOLS\Handler\linkscanner" => Key deleted successfully.
    HKCR\CLSID\{F274614C-63F8-47D5-A4D1-FBDDE494F8D1} => Key not found. 
    McComponentHostService => Service deleted successfully.
    sbapifs => Service deleted successfully.
     
    ==== End of Fixlog 23:14:38 ====

    • 0

    #13
    traunt53

    traunt53

      Member

    • Topic Starter
    • Member
    • PipPip
    • 45 posts

    FRST:

     

    Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 28-01-2015
    Ran by Trent (administrator) on TRENT-PC on 30-01-2015 23:17:24
    Running from C:\Users\Trent\Downloads
    Loaded Profiles: Trent & Guest (Available profiles: Trent & Guest)
    Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
    Internet Explorer Version 11 (Default browser: Chrome)
    Boot Mode: Normal
    Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
     
    ==================== Processes (Whitelisted) =================
     
    (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
     
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgrsa.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe
    (IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\stacsv64.exe
    (Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
    (Stardock Corporation) C:\Program Files\Dell\DellDock\DockLogin.exe
    (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
    (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
    (Storage Appliance Corp.) C:\ProgramData\OfficeGuardianV2N\UACProxy.exe
    (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
    (Starfield Technologies) C:\Program Files (x86)\Workspace\offSyncService.exe
    (Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe
    (Garmin Ltd or its subsidiaries) C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
    (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
    (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
    (O2Micro International) C:\Windows\System32\drivers\o2flash.exe
    (PasswordBox, Inc.) C:\Program Files (x86)\PasswordBox\pbbtnService.exe
    (Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
    (Intel Corporation) C:\Windows\System32\igfxtray.exe
    (Intel Corporation) C:\Windows\System32\hkcmd.exe
    (Intel Corporation) C:\Windows\System32\igfxpers.exe
    (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
    (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
    (Intel® Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
    (Storage Appliance Corp.) C:\ProgramData\OfficeGuardianV2N\Reminder\SacReminder.exe
    (Starfield Technologies) C:\Users\Trent\AppData\Local\Workspace\workspaceupdate.exe
    (Storage Appliance Corporation) C:\ProgramData\OfficeGuardianV2N\Reminder\SacNetAgent.exe
    (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe
    (RealNetworks, Inc.) C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe
    (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2015\avgui.exe
    (Dell) C:\Users\Trent\AppData\Local\Apps\2.0\4NCMVPL1.RHM\Z7L5KTHY.536\dell..tion_0f612f649c4a10af_0005.0004_3ddfe37344028d2c\DellSystemDetect.exe
    (Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
    (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
    (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
    (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
    (Intel® Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
    (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE
    (Microsoft Corporation) C:\Windows\splwow64.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (Google Inc.) C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
    (Microsoft Corporation) C:\Windows\System32\dllhost.exe
     
     
    ==================== Registry (Whitelisted) ==================
     
    (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
     
    HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1882920 2009-10-29] (Synaptics Incorporated)
    HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [444416 2009-06-29] (IDT, Inc.)
    HKLM\...\Run: [QuickSet] => C:\Program Files\Dell\QuickSet\QuickSet.exe [3180624 2009-07-02] (Dell Inc.)
    HKLM\...\Run: [IAAnotif] => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-06-04] (Intel Corporation)
    HKLM\...\Run: [RunDLLEntry] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\AmbRunE.dll,RunDLLEntry
    HKLM-x32\...\Run: [PDVDDXSrv] => C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe [140520 2009-12-29] (CyberLink Corp.)
    HKLM-x32\...\Run: [VolPanel] => C:\Program Files (x86)\Creative\SB X-Fi MB\Volume Panel\VolPanlu.exe [241789 2009-05-04] (Creative Technology Ltd)
    HKLM-x32\...\Run: [UpdReg] => C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.)
    HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
    HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2014-10-11] (Apple Inc.)
    HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [TkBellExe] => C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe [296096 2012-10-09] (RealNetworks, Inc.)
    HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2015\avgui.exe [3667472 2014-12-18] (AVG Technologies CZ, s.r.o.)
    HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.)
    HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [271744 2014-09-26] (Oracle Corporation)
    HKLM-x32\...\Run: [] => [X]
    Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [Google Update] => C:\Users\Trent\AppData\Local\Google\Update\GoogleUpdate.exe [107912 2014-10-20] (Google Inc.)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [43816 2014-08-14] (Apple Inc.)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [DellSystemDetect] => C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dell\Dell System Detect.appref-ms
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [GoogleChromeAutoLaunch_D61670D39A2C7C5D474E64BB881C7D23] => C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe [843592 2015-01-25] (Google Inc.)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [swg] => "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2014-08-07] (Apple Inc.)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [SacReminderHDDV2N] => C:\ProgramData\OfficeGuardianV2N\reminder\SacReminder.exe [862032 2011-07-08] (Storage Appliance Corp.)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [Starfield Updater] => C:\Users\Trent\AppData\Local\Workspace\WorkspaceUpdate.exe [35008 2015-01-19] (Starfield Technologies)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\MountPoints2: {b461b893-73b9-11e1-88d9-0024e8ed7f98} - E:\StartClickFreeBackup.exe
    HKU\S-1-5-21-4108897128-1100751025-739537080-501\...\Run: [OV3_Monitor] => C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OV3Monitor.exe [420200 2014-01-28] (OLYMPUS IMAGING CORP.)
    HKU\S-1-5-21-4108897128-1100751025-739537080-501\...\RunOnce: [FlashPlayerUpdate] => C:\Windows\system32\Macromed\Flash\FlashUtil64_15_0_0_246_ActiveX.exe -update activex
    HKU\S-1-5-18\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [688984 2014-08-07] (Garmin Ltd or its subsidiaries)
    Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk
    ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)
    Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk
    ShortcutTarget: Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)
    Startup: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock.lnk
    ShortcutTarget: Dell Dock.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)
    ShellIconOverlayIdentifiers: [off0] -> {8E33AEC3-C5F2-43C4-B048-9E3EB19B1DD5} => C:\Program Files (x86)\Workspace\offsyncext64.dll (Starfield Technologies, LLC)
    ShellIconOverlayIdentifiers: [off1] -> {8E33AEC4-C5F2-43C4-B048-9E3EB19B1DD5} => C:\Program Files (x86)\Workspace\offsyncext64.dll (Starfield Technologies, LLC)
     
    ==================== Internet (Whitelisted) ====================
     
    (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
     
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/USCON/1
    HKU\S-1-5-21-4108897128-1100751025-739537080-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://tra.mlxtempo.com/
    HKU\S-1-5-21-4108897128-1100751025-739537080-501\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
    SearchScopes: HKLM -> {534213C9-51ED-47AA-BD1D-1A46D4164F97} URL = http://www.bing.com/...rc=IE-SearchBox
    SearchScopes: HKLM-x32 -> {534213C9-51ED-47AA-BD1D-1A46D4164F97} URL = http://www.bing.com/...rc=IE-SearchBox
    SearchScopes: HKU\S-1-5-21-4108897128-1100751025-739537080-1001 -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = https://www.google.c...q={searchTerms}
    SearchScopes: HKU\S-1-5-21-4108897128-1100751025-739537080-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = https://www.google.c...q={searchTerms}
    SearchScopes: HKU\S-1-5-21-4108897128-1100751025-739537080-501 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = 
    BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
    BHO-x32: HP Print Enhancer -> {0347C33E-8762-4905-BF09-768834316C61} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
    BHO-x32: RealPlayer Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
    BHO-x32: PasswordBox Helper -> {5DB69B97-934B-451D-94DB-32EF802A01CD} -> C:\Program Files (x86)\PasswordBox\Application\pbbtn.dll (PasswordBox, Inc.)
    BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
    BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
    BHO-x32: Windows Live Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
    BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll No File
    BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
    BHO-x32: HP Smart BHO Class -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
    Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll No File
    DPF: HKLM-x32 {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} https://secure.logme...rl.cab?lmi=1081
    Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
    Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
    Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
    Tcpip\Parameters: [DhcpNameServer] 209.18.47.61 209.18.47.62
     
    FireFox:
    ========
    FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_296.dll ()
    FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation)
    FF Plugin: @microsoft.com/GENUINE -> disabled No File
    FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
    FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_296.dll ()
    FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
    FF Plugin-x32: @java.com/DTPlugin,version=10.71.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
    FF Plugin-x32: @java.com/JavaPlugin,version=10.71.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
    FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
    FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
    FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
    FF Plugin-x32: @real.com/nppl3260;version=15.0.6.14 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
    FF Plugin-x32: @real.com/nprjplug;version=15.0.6.14 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
    FF Plugin-x32: @real.com/nprpchromebrowserrecordext;version=15.0.6.14 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll (RealNetworks, Inc.)
    FF Plugin-x32: @real.com/nprphtml5videoshim;version=15.0.6.14 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.)
    FF Plugin-x32: @real.com/nprpplugin;version=15.0.6.14 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll (RealPlayer)
    FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll No File
    FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll No File
    FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @nds.com/PCShowPlugin -> C:\Users\Trent\AppData\Local\DIRECTV Player\npPCShowPlugin.dll No File
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @nds.com/PlayerPlugin -> C:\Users\Trent\AppData\Local\DIRECTV Player\npPlayerPlugin.dll No File
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @starfield.com/off -> C:\Users\Trent\AppData\Roaming\Mozilla\Plugins\npoff.dll ( Starfield Technologies, LLC.)
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @starfield.com/off64 -> C:\Users\Trent\AppData\Roaming\Mozilla\Plugins\npoff64.dll ( Starfield Technologies, LLC.)
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @starfield.com/wbe -> C:\Users\Trent\AppData\Roaming\Mozilla\Plugins\npwbe.dll (Starfield Technology, LLC)
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @starfield.com/wbe64 -> C:\Users\Trent\AppData\Roaming\Mozilla\Plugins\npwbe64.dll (Starfield Technology, LLC)
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Trent\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
    FF Plugin HKU\S-1-5-21-4108897128-1100751025-739537080-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Trent\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
    FF Plugin ProgramFiles/Appdata: C:\Users\Trent\AppData\Roaming\mozilla\plugins\npoff.dll ( Starfield Technologies, LLC.)
    FF Plugin ProgramFiles/Appdata: C:\Users\Trent\AppData\Roaming\mozilla\plugins\npoff64.dll ( Starfield Technologies, LLC.)
    FF Plugin ProgramFiles/Appdata: C:\Users\Trent\AppData\Roaming\mozilla\plugins\npwbe.dll (Starfield Technology, LLC)
    FF Plugin ProgramFiles/Appdata: C:\Users\Trent\AppData\Roaming\mozilla\plugins\npwbe64.dll (Starfield Technology, LLC)
    FF Extension: WBE Paste - C:\Users\Trent\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\wbepaste@starfield [2015-01-19]
    FF HKLM-x32\...\Firefox\Extensions: [{0153E448-190B-4987-BDE1-F256CADA672F}] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
    FF Extension: RealPlayer Browser Record Plugin - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2012-10-09]
    FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
    FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2012-11-28]
    FF HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
     
    Chrome: 
    =======
    CHR HomePage: Default -> hxxp://www.google.com/
    CHR StartupUrls: Default -> "chrome://speeddial/", "hxxp://search.conduit.com/?ctid=CT3289847&SearchSource=48&CUI=UN20679539459122171&UM=2"
    CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
    CHR Profile: C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default
    CHR Extension: (Google Docs) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-04-16]
    CHR Extension: (Google Drive) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-04-16]
    CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-05-23]
    CHR Extension: (YouTube) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-04-16]
    CHR Extension: (Google Search) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-04-16]
    CHR Extension: (Speed Dial) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgpdioedihjhncjafcpgbbjdpbbkikmi [2015-01-28]
    CHR Extension: (Foxtab Speed Dial) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcoecifcadmambfikillppkoafmgachp [2015-01-28]
    CHR Extension: (Flixster) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgbpjlnkjhllfgfdmieompodgaefjcfh [2013-07-02]
    CHR Extension: (RealPlayer HTML5Video Downloader Extension) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk [2013-04-16]
    CHR Extension: (Speed Dial [FVD] - New Tab Page, 3D, Sync...) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\llaficoajjainaijghjlofdfmbjpebpa [2015-01-28]
    CHR Extension: (Google Mail Checker) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2013-07-02]
    CHR Extension: (Facebook Notifications) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmameahlembdcigphohgiodcgjomcgeo [2013-07-02]
    CHR Extension: (Google Wallet) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-27]
    CHR Extension: (Gmail) - C:\Users\Trent\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-04-16]
    CHR HKLM-x32\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Chrome\Ext\rphtml5video.crx [2012-10-09]
    StartMenuInternet: Google Chrome - C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe
     
    ==================== Services (Whitelisted) =================
     
    (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
     
    R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [3432976 2014-12-18] (AVG Technologies CZ, s.r.o.)
    R2 avgwd; C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [298080 2014-12-18] (AVG Technologies CZ, s.r.o.)
    R2 CFUACProxy_officeguardianv2n; C:\ProgramData\OfficeGuardianV2N\UACProxy.exe [83792 2011-07-08] (Storage Appliance Corp.)
    S3 Creative ALchemy AL6 Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [79360 2012-03-21] (Creative Labs) [File not signed]
    S3 Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [79360 2012-03-21] (Creative Labs) [File not signed]
    R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [307200 2009-02-23] (Creative Technology Ltd) [File not signed]
    R2 DockLoginService; C:\Program Files\Dell\DellDock\DockLogin.exe [155648 2009-06-09] (Stardock Corporation) [File not signed]
    R2 File Backup; C:\Program Files (x86)\Workspace\offSyncService.exe [697472 2014-10-20] (Starfield Technologies)
    R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [96768 2012-06-27] (Freemake) [File not signed]
    R2 Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [438616 2014-08-07] (Garmin Ltd or its subsidiaries)
    R3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-20] (Hewlett-Packard Co.) [File not signed]
    R2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-20] (Hewlett-Packard Co.) [File not signed]
    S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273136 2013-04-18] ()
    S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
    R2 PasswordBox; C:\Program Files (x86)\PasswordBox\pbbtnService.exe [67584 2013-11-01] (PasswordBox, Inc.) [File not signed]
    S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
    R2 SacNetAgentService_C57C4F854F53; C:\ProgramData\OfficeGuardianV2N\Reminder\SacNetAgent.exe [163664 2011-07-08] (Storage Appliance Corporation)
    S3 Sound Blaster X-Fi MB Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\XMBLicensing.exe [79360 2012-03-21] (Creative Labs) [File not signed]
    R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\STacSV64.exe [240128 2009-06-29] (IDT, Inc.)
    S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
    S2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3388144 2013-04-18] (Intel® Corporation)
    S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
    S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
    S3 gusvc; "C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe" [X]
     
    ==================== Drivers (Whitelisted) ====================
     
    (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
     
    R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [153368 2014-06-18] (AVG Technologies CZ, s.r.o.)
    R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [260888 2014-12-08] (AVG Technologies CZ, s.r.o.)
    R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [203544 2014-11-18] (AVG Technologies CZ, s.r.o.)
    R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [243480 2014-08-28] (AVG Technologies CZ, s.r.o.)
    R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [313624 2014-07-18] (AVG Technologies CZ, s.r.o.)
    R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [124184 2014-10-05] (AVG Technologies CZ, s.r.o.)
    R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31512 2014-06-18] (AVG Technologies CZ, s.r.o.)
    R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [274200 2014-10-10] (AVG Technologies CZ, s.r.o.)
    R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [50976 2014-08-15] (AVG Technologies)
    S2 DgiVecp; C:\Windows\system32\Drivers\DgiVecp.sys [53816 2009-03-25] (Samsung Electronics Co., Ltd.)
     
    ==================== NetSvcs (Whitelisted) ===================
     
    (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
     
     
    ==================== One Month Created Files and Folders ========
     
    (If an entry is included in the fixlist, the file\folder will be moved.)
     
    2015-01-30 23:10 - 2015-01-30 23:10 - 00000000 ____D () C:\Users\Trent\Downloads\bootex
    2015-01-30 23:06 - 2015-01-30 23:06 - 00000380 _____ () C:\Users\Trent\Downloads\bootex.zip
    2015-01-30 16:01 - 2015-01-30 16:01 - 00010354 _____ () C:\Users\Trent\Documents\System Idle Process.txt
    2015-01-30 15:52 - 2015-01-30 15:52 - 02480312 _____ (Sysinternals - www.sysinternals.com) C:\Users\Trent\Desktop\procexp.exe
    2015-01-30 15:51 - 2015-01-30 15:51 - 00002055 _____ () C:\junk
    2015-01-30 14:33 - 2015-01-30 14:34 - 00031663 _____ () C:\Users\Trent\Downloads\Addition.txt
    2015-01-30 14:31 - 2015-01-30 23:17 - 00027197 _____ () C:\Users\Trent\Downloads\FRST.txt
    2015-01-30 14:28 - 2015-01-30 23:17 - 00000000 ____D () C:\FRST
    2015-01-30 14:28 - 2015-01-30 14:28 - 02130432 _____ (Farbar) C:\Users\Trent\Downloads\FRST64.exe
    2015-01-29 11:33 - 2015-01-29 11:33 - 00000000 __SHD () C:\Users\Trent\AppData\Local\EmieBrowserModeList
    2015-01-28 16:29 - 2015-01-28 16:29 - 00602112 _____ (OldTimer Tools) C:\Users\Trent\Downloads\OTL (1).exe
    2015-01-28 15:50 - 2015-01-30 09:43 - 00003340 _____ () C:\Windows\System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-4108897128-1100751025-739537080-1001
    2015-01-28 15:50 - 2015-01-30 09:43 - 00003206 _____ () C:\Windows\System32\Tasks\RealUpgradeLogonTaskS-1-5-21-4108897128-1100751025-739537080-1001
    2015-01-28 15:36 - 2015-01-28 15:36 - 00000310 _____ () C:\Windows\PFRO.log
    2015-01-28 15:28 - 2015-01-28 15:34 - 00000000 ____D () C:\AdwCleaner
    2015-01-28 15:26 - 2015-01-28 15:26 - 00111990 _____ () C:\Users\Trent\Downloads\OTL scan quick.txt
    2015-01-28 15:26 - 2015-01-28 15:26 - 00090746 _____ () C:\Users\Trent\Downloads\Extras.Txt
    2015-01-28 15:19 - 2015-01-28 15:19 - 00111990 _____ () C:\Users\Trent\Downloads\OTL.Txt
    2015-01-28 15:04 - 2015-01-28 15:04 - 02194432 _____ () C:\Users\Trent\Downloads\AdwCleaner.exe
    2015-01-28 14:56 - 2015-01-28 14:56 - 00000000 ____D () C:\_OTL
    2015-01-28 14:55 - 2015-01-28 14:55 - 00602112 _____ (OldTimer Tools) C:\Users\Trent\Downloads\OTL.exe
    2015-01-28 14:54 - 2015-01-28 14:54 - 00775968 _____ (Reimage®) C:\Users\Trent\Downloads\ReimageRepair.exe
    2015-01-28 14:10 - 2015-01-30 09:43 - 00000504 _____ () C:\Windows\setupact.log
    2015-01-28 14:10 - 2015-01-28 14:10 - 00000000 _____ () C:\Windows\setuperr.log
    2015-01-28 14:03 - 2015-01-28 14:03 - 00314312 _____ () C:\Users\Trent\Documents\cc_20150128_140245.reg
    2015-01-28 14:01 - 2015-01-28 14:01 - 00104616 _____ () C:\Users\Trent\Documents\duplicate.txt
    2015-01-28 13:47 - 2015-01-28 13:47 - 00009022 _____ () C:\Users\Trent\Documents\startup.txt
    2015-01-28 13:45 - 2015-01-28 13:45 - 00000000 ____D () C:\Windows\pss
    2015-01-27 11:41 - 2015-01-27 11:41 - 00019129 _____ () C:\Users\Trent\Downloads\Itemized Features.ods
    2015-01-22 17:40 - 2015-01-28 14:22 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
    2015-01-22 17:39 - 2015-01-22 17:39 - 00001104 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
    2015-01-22 17:39 - 2015-01-22 17:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
    2015-01-22 17:39 - 2015-01-22 17:39 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
    2015-01-22 17:39 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
    2015-01-22 17:39 - 2014-11-21 06:14 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
    2015-01-22 17:39 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
    2015-01-22 17:38 - 2015-01-22 17:38 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Trent\Downloads\mbam-setup-2.0.4.1028.exe
    2015-01-22 16:53 - 2015-01-22 16:53 - 00002772 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
    2015-01-22 16:53 - 2015-01-22 16:53 - 00000824 _____ () C:\Users\Public\Desktop\CCleaner.lnk
    2015-01-22 16:53 - 2015-01-22 16:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
    2015-01-22 16:53 - 2015-01-22 16:53 - 00000000 ____D () C:\Program Files\CCleaner
    2015-01-22 16:52 - 2015-01-22 16:52 - 05317104 _____ (Piriform Ltd) C:\Users\Trent\Downloads\ccsetup501.exe
    2015-01-22 13:03 - 2015-01-22 13:03 - 03551568 _____ (K9 Tools ) C:\Users\Trent\Downloads\setup (1).exe
    2015-01-22 12:59 - 2015-01-22 13:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K9-PCFixer
    2015-01-22 12:59 - 2015-01-22 13:00 - 00000000 ____D () C:\Program Files (x86)\K9-PCFixer
    2015-01-22 12:59 - 2015-01-22 12:59 - 00000000 ____D () C:\Users\Trent\AppData\Roaming\K9-PCFixer
    2015-01-21 12:43 - 2015-01-21 12:43 - 00000000 ____D () C:\Users\Trent\AppData\Roaming\AVG2015
    2015-01-21 12:38 - 2015-01-21 12:38 - 00000967 _____ () C:\Users\Public\Desktop\AVG 2015.lnk
    2015-01-21 12:36 - 2015-01-22 13:00 - 00000000 ____D () C:\ProgramData\AVG2015
    2015-01-21 12:31 - 2015-01-22 12:51 - 00000000 ____D () C:\Users\Trent\AppData\Local\Avg2015
    2015-01-19 15:30 - 2015-01-19 15:30 - 00001105 _____ () C:\Users\Trent\Desktop\desktoptools.lnk
    2015-01-19 15:30 - 2015-01-19 15:30 - 00000000 ____D () C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Workspace
    2015-01-16 12:34 - 2015-01-16 17:15 - 00000000 ____D () C:\Program Files (x86)\Wondershare
    2015-01-16 12:34 - 2015-01-16 12:35 - 00000000 ____D () C:\ProgramData\Wondershare
    2015-01-16 12:34 - 2015-01-16 12:34 - 00000000 ___HD () C:\Program Files (x86)\Dr.Fone_Temp
    2015-01-16 12:34 - 2015-01-16 12:34 - 00000000 ____D () C:\Users\Trent\AppData\Local\Wondershare
    2015-01-16 12:32 - 2015-01-16 12:33 - 28656128 _____ (Wondershare Software Co.,Ltd. ) C:\Users\Trent\Downloads\ios-recovery.exe
    2015-01-16 12:02 - 2015-01-16 12:02 - 00000000 ____D () C:\Users\Trent\Documents\Backup
    2015-01-14 09:43 - 2014-12-18 22:06 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
    2015-01-14 09:42 - 2014-12-18 20:46 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
    2015-01-14 09:42 - 2014-12-11 12:47 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
    2015-01-14 09:42 - 2014-12-05 23:17 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
    2015-01-14 09:42 - 2014-12-05 22:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
    2015-01-14 09:42 - 2014-12-05 22:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
    2015-01-14 09:41 - 2014-12-12 00:35 - 05553592 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
    2015-01-14 09:41 - 2014-12-12 00:31 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
    2015-01-14 09:41 - 2014-12-12 00:31 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
    2015-01-14 09:41 - 2014-12-12 00:31 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
    2015-01-14 09:41 - 2014-12-12 00:11 - 03971512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
    2015-01-14 09:41 - 2014-12-12 00:11 - 03916728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
    2015-01-14 09:41 - 2014-12-12 00:07 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
    2015-01-10 13:50 - 2015-01-10 13:50 - 00000000 __SHD () C:\Users\Guest\AppData\Local\EmieBrowserModeList
    2015-01-03 16:33 - 2015-01-28 13:42 - 00003122 _____ () C:\Windows\System32\Tasks\PCDoctorBackgroundMonitorTask-Retry
     
    ==================== One Month Modified Files and Folders =======
     
    (If an entry is included in the fixlist, the file\folder will be moved.)
     
    2015-01-30 23:03 - 2012-04-11 18:33 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
    2015-01-30 22:58 - 2012-03-21 20:21 - 00000908 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4108897128-1100751025-739537080-1001UA.job
    2015-01-30 22:58 - 2009-07-14 00:10 - 01581093 _____ () C:\Windows\WindowsUpdate.log
    2015-01-30 22:57 - 2012-03-21 20:04 - 00000898 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
    2015-01-30 22:57 - 2012-03-21 20:04 - 00000894 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
    2015-01-30 15:05 - 2013-11-15 16:16 - 00003440 _____ () C:\Windows\System32\Tasks\PCDEventLauncherTask
    2015-01-30 14:32 - 2012-04-09 10:30 - 00000000 ____D () C:\ProgramData\MFAData
    2015-01-30 13:40 - 2012-03-21 20:21 - 00000856 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4108897128-1100751025-739537080-1001Core.job
    2015-01-30 09:52 - 2009-07-13 23:45 - 00022464 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
    2015-01-30 09:52 - 2009-07-13 23:45 - 00022464 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
    2015-01-30 09:45 - 2013-07-02 13:27 - 00000000 ____D () C:\Users\Trent\AppData\Local\Deployment
    2015-01-30 09:43 - 2009-07-14 00:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
    2015-01-30 09:11 - 2009-07-13 22:20 - 00000000 ____D () C:\Windows\system32\NDF
    2015-01-30 03:05 - 2013-07-02 13:39 - 00779276 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
    2015-01-30 03:05 - 2009-07-14 00:13 - 00779276 _____ () C:\Windows\system32\PerfStringBackup.INI
    2015-01-28 15:34 - 2012-12-12 11:26 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
    2015-01-28 13:42 - 2014-07-22 09:44 - 00003556 _____ () C:\Windows\System32\Tasks\GarminUpdaterTask
    2015-01-28 13:42 - 2013-11-15 16:16 - 00003986 _____ () C:\Windows\System32\Tasks\PCDoctorBackgroundMonitorTask
    2015-01-27 09:14 - 2012-04-11 18:33 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
    2015-01-27 09:14 - 2012-04-11 18:33 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
    2015-01-27 09:14 - 2012-03-21 20:19 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
    2015-01-26 20:12 - 2012-03-21 20:22 - 00002368 _____ () C:\Users\Trent\Desktop\Google Chrome.lnk
    2015-01-26 12:42 - 2012-09-27 09:03 - 00000336 _____ () C:\Windows\BRCALIB.INI
    2015-01-23 11:33 - 2012-03-24 18:28 - 00000000 ____D () C:\Users\Trent\AppData\Roaming\Skype
    2015-01-22 17:03 - 2012-07-07 17:21 - 00000000 ____D () C:\Windows\Minidump
    2015-01-22 17:03 - 2012-03-20 10:49 - 00000000 ____D () C:\Windows\Panther
    2015-01-22 12:55 - 2012-04-04 12:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
    2015-01-22 12:55 - 2012-04-04 12:29 - 00000000 ____D () C:\Program Files (x86)\HP
    2015-01-22 12:54 - 2012-04-04 12:29 - 00000000 ____D () C:\Users\Trent\AppData\Roaming\HpUpdate
    2015-01-21 13:11 - 2012-12-14 00:27 - 00000000 ____D () C:\ProgramData\AVG2013
    2015-01-21 13:09 - 2013-03-21 21:29 - 00000000 ____D () C:\Users\Trent\Desktop\TAXES
    2015-01-21 12:44 - 2012-04-09 10:38 - 00000000 ____D () C:\Program Files (x86)\AVG
    2015-01-21 12:41 - 2014-11-19 14:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
    2015-01-21 12:41 - 2012-04-09 10:39 - 00000000 ___HD () C:\$AVG
    2015-01-19 15:30 - 2012-03-26 19:37 - 00000000 ____D () C:\Program Files (x86)\Workspace
    2015-01-19 15:29 - 2012-03-26 18:46 - 00000000 ____D () C:\Users\Trent\AppData\Local\Workspace
    2015-01-16 17:30 - 2012-03-21 20:37 - 00000000 ____D () C:\ProgramData\McAfee
    2015-01-16 17:23 - 2013-12-10 20:15 - 00000000 ____D () C:\Program Files (x86)\Shutterfly
    2015-01-16 17:17 - 2012-03-21 20:22 - 00000000 ____D () C:\Program Files (x86)\Citrix
    2015-01-16 12:00 - 2012-03-21 19:46 - 00000000 ____D () C:\Users\Trent
    2015-01-15 15:53 - 2013-02-18 11:13 - 00000000 ____D () C:\Users\Trent\Downloads\doggy
    2015-01-15 03:10 - 2013-07-13 02:02 - 00000000 ____D () C:\Windows\system32\MRT
    2015-01-15 03:00 - 2012-03-22 00:34 - 113365784 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
    2015-01-14 20:49 - 2013-09-24 19:37 - 00000000 ____D () C:\Users\Trent\Desktop\Chapel Ridge
    2015-01-14 16:55 - 2013-10-25 12:39 - 00000000 ____D () C:\Users\Trent\Desktop\Brandon
    2015-01-08 09:55 - 2012-03-23 14:23 - 00298120 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
     
    ==================== Files in the root of some directories =======
     
    2013-07-02 13:36 - 2013-07-02 13:36 - 0889416 _____ (Microsoft Corporation) C:\Users\Trent\AppData\Roaming\dotNetFx40_Full_setup.exe
    2012-03-26 10:41 - 2012-05-08 13:36 - 0011399 _____ () C:\Users\Trent\AppData\Roaming\SmarThruOptions.xml
    2013-01-05 09:54 - 2013-02-04 18:16 - 0000106 _____ () C:\Users\Trent\AppData\Roaming\wklnhst.dat
    2012-03-24 23:54 - 2014-11-06 16:25 - 0012800 _____ () C:\Users\Trent\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    2012-11-28 17:21 - 2013-04-09 13:10 - 0001799 _____ () C:\ProgramData\hpzinstall.log
    2012-04-12 12:44 - 2012-04-12 12:44 - 7713860 _____ () C:\ProgramData\SamPCFax000019600000
    2014-03-05 12:48 - 2014-03-05 12:48 - 0001744 _____ () C:\ProgramData\__wdump.txt
     
    Some content of TEMP:
    ====================
    C:\Users\Trent\AppData\Local\Temp\Quarantine.exe
    C:\Users\Trent\AppData\Local\Temp\sqlite3.dll
     
     
    ==================== Bamital & volsnap Check =================
     
    (There is no automatic fix for files that do not pass verification.)
     
    C:\Windows\System32\winlogon.exe => File is digitally signed
    C:\Windows\System32\wininit.exe => File is digitally signed
    C:\Windows\SysWOW64\wininit.exe => File is digitally signed
    C:\Windows\explorer.exe => File is digitally signed
    C:\Windows\SysWOW64\explorer.exe => File is digitally signed
    C:\Windows\System32\svchost.exe => File is digitally signed
    C:\Windows\SysWOW64\svchost.exe => File is digitally signed
    C:\Windows\System32\services.exe => File is digitally signed
    C:\Windows\System32\User32.dll => File is digitally signed
    C:\Windows\SysWOW64\User32.dll => File is digitally signed
    C:\Windows\System32\userinit.exe => File is digitally signed
    C:\Windows\SysWOW64\userinit.exe => File is digitally signed
    C:\Windows\System32\rpcss.dll => File is digitally signed
    C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
     
     
    LastRegBack: 2014-10-22 02:31
     
    ==================== End Of Log ============================

    • 0

    #14
    traunt53

    traunt53

      Member

    • Topic Starter
    • Member
    • PipPip
    • 45 posts

    Addition:

     

    Additional scan result of Farbar Recovery Scan Tool (x64) Version: 28-01-2015
    Ran by Trent at 2015-01-30 23:18:53
    Running from C:\Users\Trent\Downloads
    Boot Mode: Normal
    ==========================================================
     
     
    ==================== Security Center ========================
     
    (If an entry is included in the fixlist, it will be removed.)
     
    AV: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
    AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    AS: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664}
     
    ==================== Installed Programs ======================
     
    (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
     
    64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden
    Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.9.0.1380 - Adobe Systems Incorporated)
    Adobe Flash Player 16 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 16.0.0.296 - Adobe Systems Incorporated)
    Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.296 - Adobe Systems Incorporated)
    Adobe Reader X (10.1.10) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AA1000000001}) (Version: 10.1.10 - Adobe Systems Incorporated)
    Advanced Audio FX Engine (HKLM-x32\...\Advanced Audio FX Engine) (Version: 1.12.05 - Creative Technology Ltd)
    ANT Drivers Installer x64 (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
    Apple Application Support (HKLM-x32\...\{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}) (Version: 3.1 - Apple Inc.)
    Apple Mobile Device Support (HKLM\...\{BDD99690-3541-4619-9D2A-3CDDB3E15F9E}) (Version: 8.0.5.6 - Apple Inc.)
    Apple Software Update (HKLM-x32\...\{C6579A65-9CAE-4B31-8B6B-3306E0630A66}) (Version: 2.1.3.127 - Apple Inc.)
    AVG 2015 (HKLM\...\AVG) (Version: 2015.0.5645 - AVG Technologies)
    AVG 2015 (Version: 15.0.4273 - AVG Technologies) Hidden
    AVG 2015 (Version: 15.0.5645 - AVG Technologies) Hidden
    Banctec Service Agreement (HKLM-x32\...\{42D68A86-DB1C-4256-B8C9-5D0D92919AF5}) (Version: 2.0.0 - Dell Inc.)
    Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
    Brother MFL-Pro Suite MFC-9460CDN (HKLM-x32\...\{979742CC-2CBB-49D8-9BEE-C2F7875F5393}) (Version: 1.0.30.0 - Brother Industries, Ltd.)
    BufferChm (x32 Version: 130.0.331.000 - Hewlett-Packard) Hidden
    CCleaner (HKLM\...\CCleaner) (Version: 5.01 - Piriform)
    Compatibility Pack for the 2007 Office system (HKLM-x32\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
    Copy (x32 Version: 130.0.428.000 - Hewlett-Packard) Hidden
    Dell Dock (HKLM-x32\...\Dell Dock) (Version: 2.0 - Stardock Corporation)
    Dell Dock (Version: 2.0 - Stardock Corporation) Hidden
    Dell Edoc Viewer (HKLM\...\{8EBA8727-ADC2-477B-9D9A-1A1836BE4E05}) (Version: 1.0.0 - Dell Inc)
    Dell Getting Started Guide (HKLM-x32\...\{7DB9F1E5-9ACB-410D-A7DC-7A3D023CE045}) (Version: 1.00.0000 - Dell Inc.)
    Dell System Detect (HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\9204f5692a8faf3b) (Version: 5.4.0.4 - Dell)
    Dell System Detect Bootstrapper (HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\8e3135b376bd523e) (Version: 1.1.0.15 - Dell)
    Dell Webcam Central (HKLM-x32\...\Dell Webcam Central) (Version: 1.40.05 - Creative Technology Ltd)
    Destinations (x32 Version: 130.0.0.0 - Hewlett-Packard) Hidden
    DeviceDiscovery (x32 Version: 130.0.465.000 - Hewlett-Packard) Hidden
    DJ_AIO_03_F4200_Software_Min (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden
    Elevated Installer (x32 Version: 3.2.17.0 - Garmin Ltd or its subsidiaries) Hidden
    F4200 (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden
    Freemake Video Converter version 3.0.2 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 3.0.2 - Ellora Assets Corporation)
    Garmin Express (HKLM-x32\...\{b43ffffb-1adc-4bcb-b277-7844ebff94da}) (Version: 3.2.17.0 - Garmin Ltd or its subsidiaries)
    Garmin Express (x32 Version: 3.2.17.0 - Garmin Ltd or its subsidiaries) Hidden
    Garmin Express Tray (x32 Version: 3.2.17.0 - Garmin Ltd or its subsidiaries) Hidden
    Google Chrome (HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\Google Chrome) (Version: 40.0.2214.93 - Google Inc.)
    Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.5111.1712 - Google Inc.)
    Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
    Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
    GPBaseService2 (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden
    HP Customer Participation Program 13.0 (HKLM\...\HPExtendedCapabilities) (Version: 13.0 - HP)
    HP Deskjet 3050 J610 series Basic Device Software (HKLM\...\{7D220A57-969F-4D09-9297-D48195A8ABDD}) (Version: 22.50.231.0 - Hewlett-Packard Co.)
    HP Deskjet 3050 J610 series Help (HKLM-x32\...\{F7632A9B-661E-4FD9-B1A4-3B86BC99847F}) (Version: 140.0.63.63 - Hewlett Packard)
    HP Deskjet 3050 J610 series Product Improvement Study (HKLM\...\{860B418B-F90B-465A-BC1D-04B518045C72}) (Version: 22.50.231.0 - Hewlett-Packard Co.)
    HP Deskjet F4200 All-In-One Driver Software 13.0 Rel. 3 (HKLM\...\{A00C9114-40E6-4C70-A619-7DF264B23485}) (Version: 13.0 - HP)
    HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP)
    HP Photosmart Essential 3.5 (HKLM\...\HP Photosmart Essential) (Version: 3.5 - HP)
    HP Smart Web Printing 4.51 (HKLM\...\HP Smart Web Printing) (Version: 4.51 - HP)
    HP Solution Center 13.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 13.0 - HP)
    HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
    HPDiagnosticAlert (x32 Version: 1.00.0000 - Microsoft) Hidden
    HPPhotoGadget (x32 Version: 130.0.282.000 - Hewlett-Packard) Hidden
    HPPhotoSmartDiscLabelContent1 (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden
    HPPhotosmartEssential (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden
    HPProductAssistant (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden
    iCloud (HKLM\...\{6096C0CC-7E19-4355-87F0-627EC5AA146D}) (Version: 4.0.3.56 - Apple Inc.)
    Intel® Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version:  - Intel Corporation)
    Intel® Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.5.0.1029 - Intel Corporation)
    Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version:  - Intel Corporation)
    Intel® PROSet/Wireless Software (HKLM-x32\...\{e6d17d96-ddaa-476f-bb07-db601024ffb1}) (Version: 15.8.0 - Intel Corporation)
    iTunes (HKLM\...\{2ABBBD91-91E5-4AD7-929A-FE15D1DC0576}) (Version: 12.0.1.26 - Apple Inc.)
    Java 7 Update 71 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.710 - Oracle)
    Java™ 7 Update 1 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417001FF}) (Version: 7.0.10 - Oracle)
    JavaFX 2.1.0 (HKLM-x32\...\{1111706F-666A-4037-7777-210328764D10}) (Version: 2.1.0 - Oracle Corporation)
    Junk Mail filter update (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
    K-Lite Codec Pack 10.6.5 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.6.5 - )
    Live! Cam Avatar Creator (HKLM-x32\...\{65D0C510-D7B6-4438-9FC8-E6B91115AB0D}) (Version: 4.6.3009.1 - Creative Technology Ltd)
    Malwarebytes Anti-Malware version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
    MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden
    Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
    Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002E-0000-0000-0000000FF1CE}_ULTIMATER_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
    Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
    Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
    Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation)
    Microsoft Office PowerPoint Viewer 2007 (English) (HKLM-x32\...\{95120000-00AF-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
    Microsoft Office Suite Activation Assistant (HKLM-x32\...\{67635FB6-2F63-4FFB-830B-D4C01597EBA4}) (Version: 1.2.1 - DELL)
    Microsoft Office Ultimate 2007 (HKLM-x32\...\ULTIMATER) (Version: 12.0.6612.1000 - Microsoft Corporation)
    Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
    Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
    Microsoft Sync Framework Runtime Native v1.0 (x86) (HKLM-x32\...\{8A74E887-8F0F-4017-AF53-CBA42211AAA5}) (Version: 1.0.1215.0 - Microsoft Corporation)
    Microsoft Sync Framework Services Native v1.0 (x86) (HKLM-x32\...\{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}) (Version: 1.0.1215.0 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
    Microsoft Works (HKLM-x32\...\{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}) (Version: 9.7.0621 - Microsoft Corporation)
    MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
    MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
    MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
    My Dell (HKLM\...\PC-Doctor for Windows) (Version: 3.5.6426.22 - PC-Doctor, Inc.)
    OLYMPUS Digital Camera Updater (HKLM-x32\...\{2A9E8F56-C31B-4DBB-BFE2-0F4EC8192355}) (Version: 1.0.3 - OLYMPUS IMAGING CORP.)
    OLYMPUS Viewer 3 (HKLM-x32\...\{1B28182C-253F-4CFE-AF4A-87CB416D5F73}) (Version: 1.0.0 - OLYMPUS IMAGING CORP.)
    PDFill PDF Editor with FREE Writer and FREE Tools (HKLM\...\{D1399216-81B2-457C-A0F7-73B9A2EF6902}) (Version: 9.0 - PlotSoft LLC)
    Pinnacle Instant DVD Recorder (HKLM-x32\...\{C1212AE3-DBB9-4365-8473-F8ABC7B06BBB}) (Version: 2.6.0.118 - Pinnacle Systems)
    Pinnacle Studio 12 (HKLM-x32\...\{D041EB9E-890A-4098-8F94-51DA194AC72A}) (Version: 12.1.3.6605 - Pinnacle Systems)
    Pinnacle Video Driver (HKLM\...\{6DE721A5-5E89-4D74-994C-652BB3C0672E}) (Version: 12.1.0.029 - Pinnacle Systems)
    PowerDVD DX (HKLM-x32\...\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}) (Version: 8.3.6029 - CyberLink Corp.)
    Quickset64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 9.6.6 - Dell Inc.)
    QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.)
    Readiris Pro 10 (HKLM-x32\...\{14D08502-FEE4-40E5-90D3-8A967A1D8BA2}) (Version:  - )
    RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden
    RealPlayer (HKLM-x32\...\RealPlayer 15.0) (Version: 15.0.6 - RealNetworks)
    RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden
    Roxio Burn (HKLM-x32\...\{B2E47DE7-800B-40BB-BD1F-9F221C3AEE87}) (Version: 1.01 - Roxio)
    Samsung CLX-3170 Series (HKLM-x32\...\Samsung CLX-3170 Series) (Version:  - Samsung Electronics CO.,LTD)
    SAMSUNG Dr.Printer  (HKLM-x32\...\{0DB87EAC-F695-4D59-9609-C93119AE6B35}) (Version: 1.00.0000 - Samsung)
    Scan (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden
    Skype™ 6.16 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.)
    SmarThru 4 (HKLM-x32\...\{90F1943D-EA4A-4460-B59F-30023F3BA69A}) (Version:  - )
    SmartWebPrinting (x32 Version: 130.0.457.000 - Hewlett-Packard) Hidden
    SolutionCenter (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden
    Sound Blaster X-Fi MB (HKLM-x32\...\{75CE8AF5-0A5E-4A42-BC67-F83591DA9A7D}) (Version: 1.0 - Creative Technology Limited)
    Status (x32 Version: 130.0.469.000 - Hewlett-Packard) Hidden
    Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 14.0.13.0 - Synaptics Incorporated)
    System Requirements Lab for Intel (HKLM-x32\...\{C7CA731B-BF9A-46D9-92CF-8A8737AE9240}) (Version: 4.5.13.0 - Husdawg, LLC)
    Toolbox (x32 Version: 130.0.648.000 - Hewlett-Packard) Hidden
    TrayApp (x32 Version: 130.0.422.000 - Hewlett-Packard) Hidden
    UnloadSupport (x32 Version: 11.0.0 - Hewlett-Packard) Hidden
    Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002E-0000-0000-0000000FF1CE}_ULTIMATER_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
    Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
    Visual Studio 2008 x64 Redistributables (HKLM-x32\...\{FCDBEA60-79F0-4FAE-BBA8-55A26C609A49}) (Version: 10.0.0.2 - AVG Technologies)
    Visual Studio 2010 x64 Redistributables (HKLM\...\{21B133D6-5979-47F0-BE1C-F6A6B304693F}) (Version: 13.0.0.1 - AVG Technologies)
    Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
    Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
    VoiceOver Kit (HKLM-x32\...\{6B4AD1A9-E73A-4184-9D6B-072F8A3C5EBA}) (Version: 1.42.128.0 - Apple Inc.)
    WebReg (x32 Version: 130.0.132.017 - Hewlett-Packard) Hidden
    Windows Driver Package - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
    Windows Driver Package - OLYMPUS IMAGING CORP. Camera Communication Driver Package (09/09/2009 1.0.0.0) (HKLM\...\2C1C2F29FADF39F533CEEE67B90F07A5306A4BDB) (Version: 09/09/2009 1.0.0.0 - OLYMPUS IMAGING CORP.)
    Windows Driver Package - Silicon Labs Software (DSI_SiUSBXp_3_1) USB  (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
    Windows Live Essentials (HKLM-x32\...\WinLiveSuite_Wave3) (Version: 14.0.8089.0726 - Microsoft Corporation)
    Windows Live Sign-in Assistant (HKLM-x32\...\{45338B07-A236-4270-9A77-EBB4115517B5}) (Version: 5.000.818.5 - Microsoft Corporation)
    Windows Live Sync (HKLM-x32\...\{84EBDF39-4B33-49D7-A0BD-EB6E2C4E81C1}) (Version: 14.0.8089.726 - Microsoft Corporation)
    Windows Live Upload Tool (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
    Workspace Desktop (HKU\S-1-5-21-4108897128-1100751025-739537080-1001\...\workspacedesktop) (Version:  - Starfield Technologies)
     
    ==================== Custom CLSID (selected items): ==========================
     
    (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
     
    CustomCLSID: HKU\S-1-5-21-4108897128-1100751025-739537080-1001_Classes\CLSID\{1BFB1268-6353-495A-AB78-97BF7CAB4D59}\InprocServer32 -> C:\Users\Trent\AppData\Local\Workspace\gdeditwrapperax64.dll (Starfield Technologies)
    CustomCLSID: HKU\S-1-5-21-4108897128-1100751025-739537080-1001_Classes\CLSID\{B5B8593C-89BC-44a7-BCE3-32FE4FED7C5C}\InprocServer32 -> C:\Users\Trent\AppData\Local\Workspace\wbetoolsax64.dll (Starfield Technology, LLC)
    CustomCLSID: HKU\S-1-5-21-4108897128-1100751025-739537080-1001_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Trent\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll (Google Inc.)
    CustomCLSID: HKU\S-1-5-21-4108897128-1100751025-739537080-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Trent\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll (Google Inc.)
     
    ==================== Restore Points  =========================
     
    21-01-2015 12:35:55 Installed AVG 2015
    21-01-2015 12:37:18 Installed AVG 2015
    22-01-2015 12:53:08 Installed HP Update.
    30-01-2015 03:00:13 Windows Update
     
    ==================== Hosts content: ==========================
     
    (If needed Hosts: directive could be included in the fixlist to reset Hosts.)
     
    2009-07-13 21:34 - 2015-01-28 14:56 - 00000098 ____A C:\Windows\system32\Drivers\etc\hosts
    127.0.0.1       localhost
    ::1       localhost
     
    ==================== Scheduled Tasks (whitelisted) =============
     
    (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
     
    Task: {0A05C7AB-48EA-4FCC-A189-3F1658E56DBA} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-4108897128-1100751025-739537080-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2012-07-27] (RealNetworks, Inc.)
    Task: {1E3AFCA8-CF74-4B83-945A-DCD0B8C5C465} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\My Dell\uaclauncher.exe [2014-01-31] (PC-Doctor, Inc.)
    Task: {221AF5CF-A07A-42D6-9FAD-22AAFEAE7F25} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: {2E2904A0-428A-4E56-A07C-712FC8742371} - System32\Tasks\{23533304-0801-4B11-AAE5-6927CCE1DF49} => pcalua.exe -a C:\Users\Trent\Downloads\lgs510.exe -d C:\Users\Trent\Downloads
    Task: {3C103D41-E7D4-4538-935B-DC37B5906E9A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-01-27] (Adobe Systems Incorporated)
    Task: {3C842224-ABEE-4219-B394-1F5E208483AB} - System32\Tasks\PCDoctorBackgroundMonitorTask-Retry => C:\Program Files\My Dell\uaclauncher.exe [2014-01-31] (PC-Doctor, Inc.)
    Task: {445FFF10-1C66-401C-A869-2F02DCE66E75} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: {4D15C437-3DA4-40F9-AFF3-73E1E8B4F557} - System32\Tasks\HPCustParticipation HP Deskjet 3050 J610 series => C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\HPCustPartic.exe [2010-11-16] (Hewlett-Packard Co.)
    Task: {5A673285-99FD-40A3-8911-920D35E88520} - System32\Tasks\{265DECF1-1602-451F-988D-B1F65B87CC09} => pcalua.exe -a "C:\Program Files (x86)\McAfee\MSC\mcuninst.exe"
    Task: {5BE8C267-90C4-43E0-961C-C95FD96E29A6} - System32\Tasks\PCDEventLauncherTask => C:\Program Files\My Dell\sessionchecker.exe [2014-01-31] (PC-Doctor, Inc.)
    Task: {5E98F0CA-6934-4040-BF29-84F43F4DB6B0} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-4108897128-1100751025-739537080-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2012-07-27] (RealNetworks, Inc.)
    Task: {67BF9A55-EFC9-4F1B-85CB-8525B7213104} - System32\Tasks\{7F92AA7A-B302-42DB-AD31-87D05CE5EE6A} => pcalua.exe -a D:\Setup.exe -d D:\
    Task: {7F033174-A53F-4542-BCB3-AB5AF1657A28} - System32\Tasks\{B9A1E58D-F1E7-4FE2-B14D-FCF98DD91B68} => pcalua.exe -a "C:\Users\Trent\Desktop\Nintendo\Game\dxwebsetup (1).exe" -d C:\Users\Trent\Desktop\Nintendo\Game
    Task: {B1E745C7-0533-4776-9715-B01C13585085} - System32\Tasks\ROC_REG_JAN_DELETE => C:\ProgramData\AVG January 2013 Campaign\ROC.exe [2013-01-17] ()
    Task: {B59CB8F9-7169-4C6E-A3A7-D4C8557D893D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-12-12] (Piriform Ltd)
    Task: {BA9DA709-D3E7-49E0-9486-423EDC1EA870} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4108897128-1100751025-739537080-1001UA => C:\Users\Trent\AppData\Local\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
    Task: {C96B11BA-3BA5-4493-96B5-4C249CABB0E1} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4108897128-1100751025-739537080-1001Core => C:\Users\Trent\AppData\Local\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
    Task: {DD3039BE-D7EA-4560-880D-860B6E9CC047} - System32\Tasks\SystemToolsDailyTest => uaclauncher.exe
    Task: {E4B2AD59-D9BD-4E6E-93AC-5448133497BF} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
    Task: {FCDDF25D-F31E-41FE-91F4-7E5911BE3CC5} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express Self Updater\ExpressSelfUpdater.exe [2014-08-07] ()
    Task: {FDB12F5C-3E26-476B-96B5-4FE87F6175AD} - System32\Tasks\{EDBAD7C2-B05C-4E0F-8EC4-75930AFA00A8} => pcalua.exe -a "C:\Program Files (x86)\Stopzilla 2013\STOPzilla_Setup.exe" -d "C:\Program Files (x86)\Stopzilla 2013"
    Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4108897128-1100751025-739537080-1001Core.job => C:\Users\Trent\AppData\Local\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4108897128-1100751025-739537080-1001UA.job => C:\Users\Trent\AppData\Local\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\ROC_REG_JAN_DELETE.job => C:\ProgramData\AVG January 2013 Campaign\ROC.exe
     
    ==================== Loaded Modules (whitelisted) =============
     
    2011-04-10 20:26 - 2011-04-11 00:26 - 00034304 _____ () C:\Windows\System32\spe__l.dll
    2012-03-26 10:35 - 2007-08-13 20:03 - 00022016 _____ () C:\Windows\System32\sst1cl6.dll
    2014-02-06 00:52 - 2014-02-06 00:52 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
    2014-10-11 12:05 - 2014-10-11 12:05 - 01044776 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
    2013-11-01 15:11 - 2013-11-01 15:11 - 00090624 _____ () C:\Program Files (x86)\PasswordBox\libwebsocketswin32.dll
    2013-07-10 17:07 - 2013-07-10 17:07 - 00756888 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\MSPTLS.DLL
    2015-01-26 20:12 - 2015-01-25 01:08 - 01117512 _____ () C:\Users\Trent\AppData\Local\Google\Chrome\Application\40.0.2214.93\libglesv2.dll
    2015-01-26 20:12 - 2015-01-25 01:08 - 00211272 _____ () C:\Users\Trent\AppData\Local\Google\Chrome\Application\40.0.2214.93\libegl.dll
    2015-01-26 20:12 - 2015-01-25 01:08 - 09170760 _____ () C:\Users\Trent\AppData\Local\Google\Chrome\Application\40.0.2214.93\pdf.dll
     
    ==================== Alternate Data Streams (whitelisted) =========
     
    (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
     
     
    ==================== Safe Mode (whitelisted) ===================
     
    (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
     
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc => ""="Service"
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcmscsvc => ""="Service"
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MpfService => ""="Service"
     
    ==================== EXE Association (whitelisted) =============
     
    (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
     
     
    ==================== MSCONFIG/TASK MANAGER disabled items =========
     
    (Currently there is no automatic fix for this section.)
     
    MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk => C:\Windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup
    MSCONFIG\startupreg: Dell Webcam Central => "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2
    MSCONFIG\startupreg: DellSupportCenter => "C:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
    MSCONFIG\startupreg: Desktop Disc Tool => "c:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe"
    MSCONFIG\startupreg: GarminExpressTrayApp => "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
    MSCONFIG\startupreg: HP Software Update => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
    MSCONFIG\startupreg: hpqSRMon => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe
    MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
    MSCONFIG\startupreg: OV3_Monitor => "C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OV3Monitor.exe"
    MSCONFIG\startupreg: PCShowServer => "C:\Users\Trent\AppData\Local\DIRECTV Player\PCShowServerPMWrapper.exe"
    MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
     
    ========================= Accounts: ==========================
     
    Administrator (S-1-5-21-4108897128-1100751025-739537080-500 - Administrator - Disabled)
    Guest (S-1-5-21-4108897128-1100751025-739537080-501 - Limited - Enabled) => C:\Users\Guest
    HomeGroupUser$ (S-1-5-21-4108897128-1100751025-739537080-1002 - Limited - Enabled)
    SACNETDRIVEUSER01 (S-1-5-21-4108897128-1100751025-739537080-1004 - Limited - Enabled)
    Trent (S-1-5-21-4108897128-1100751025-739537080-1001 - Administrator - Enabled) => C:\Users\Trent
     
    ==================== Faulty Device Manager Devices =============
     
     
    ==================== Event log errors: =========================
     
    Application errors:
    ==================
    Error: (01/30/2015 11:19:18 PM) (Source: SideBySide) (EventID: 80) (User: )
    Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
    A component version required by the application conflicts with another component version already active.
    Conflicting components are:.
    Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
    Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
     
    Error: (01/30/2015 11:19:18 PM) (Source: SideBySide) (EventID: 80) (User: )
    Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
    A component version required by the application conflicts with another component version already active.
    Conflicting components are:.
    Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
    Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
     
    Error: (01/30/2015 11:04:10 PM) (Source: SideBySide) (EventID: 80) (User: )
    Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
    A component version required by the application conflicts with another component version already active.
    Conflicting components are:.
    Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
    Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
     
    Error: (01/30/2015 11:04:10 PM) (Source: SideBySide) (EventID: 80) (User: )
    Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
    A component version required by the application conflicts with another component version already active.
    Conflicting components are:.
    Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
    Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
     
    Error: (01/30/2015 07:00:08 PM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledSPRetry 2090
     
    Error: (01/30/2015 07:00:08 PM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledEvent 2090
     
    Error: (01/30/2015 07:00:08 PM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: Continuously busy for more than a second
     
    Error: (01/30/2015 07:00:07 PM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledSPRetry 1092
     
    Error: (01/30/2015 07:00:07 PM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: m->NextScheduledEvent 1092
     
    Error: (01/30/2015 07:00:07 PM) (Source: Bonjour Service) (EventID: 100) (User: )
    Description: Task Scheduling Error: Continuously busy for more than a second
     
     
    System errors:
    =============
    Error: (01/30/2015 09:59:26 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
    Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Garmin Core Update Service service.
     
    Error: (01/30/2015 09:47:16 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The Google Update Service (gupdate) service failed to start due to the following error: 
    %%2
     
    Error: (01/30/2015 09:45:05 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The Intel® PROSet/Wireless Zero Configuration Service service failed to start due to the following error: 
    %%1053
     
    Error: (01/30/2015 09:45:04 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
    Description: A timeout was reached (30000 milliseconds) while waiting for the Intel® PROSet/Wireless Zero Configuration Service service to connect.
     
    Error: (01/30/2015 09:43:10 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The DgiVecp service failed to start due to the following error: 
    %%20
     
    Error: (01/30/2015 09:43:06 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The sbapifs service failed to start due to the following error: 
    %%2
     
    Error: (01/30/2015 09:24:51 AM) (Source: Tcpip) (EventID: 4199) (User: )
    Description: The system detected an address conflict for IP address 0.0.0.0 with the system
    having network hardware address 00-00-00-00-00-00. Network operations on this system may
    be disrupted as a result.
     
    Error: (01/30/2015 09:21:52 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The Google Update Service (gupdate) service failed to start due to the following error: 
    %%2
     
    Error: (01/30/2015 09:19:28 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
    Description: The Garmin Core Update Service service failed to start due to the following error: 
    %%1053
     
    Error: (01/30/2015 09:19:28 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
    Description: A timeout was reached (30000 milliseconds) while waiting for the Garmin Core Update Service service to connect.
     
     
    Microsoft Office Sessions:
    =========================
    Error: (04/15/2014 01:50:46 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
    Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6695.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 7335 seconds with 420 seconds of active time.  This session ended with a crash.
     
     
    ==================== Memory info =========================== 
     
    Processor: Intel® Core™2 Duo CPU T6600 @ 2.20GHz
    Percentage of memory in use: 57%
    Total physical RAM: 4056.96 MB
    Available physical RAM: 1713.93 MB
    Total Pagefile: 8112.11 MB
    Available Pagefile: 5145.57 MB
    Total Virtual: 8192 MB
    Available Virtual: 8191.84 MB
     
    ==================== Drives ================================
     
    Drive c: (OS) (Fixed) (Total:287.93 GB) (Free:79.57 GB) NTFS
     
    ==================== MBR & Partition Table ==================
     
    ========================================================
    Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 298.1 GB) (Disk ID: 55AE0899)
    Partition 1: (Not Active) - (Size=39 MB) - (Type=DE)
    Partition 2: (Active) - (Size=10.1 GB) - (Type=07 NTFS)
    Partition 3: (Not Active) - (Size=287.9 GB) - (Type=07 NTFS)
     
    ==================== End Of Log ============================

    • 0

    #15
    traunt53

    traunt53

      Member

    • Topic Starter
    • Member
    • PipPip
    • 45 posts

    Shortcut:

     

    Users shortcut scan result (x64) Version: 28-01-2015
    Ran by Trent at 2015-01-30 23:21:51
    Running from C:\Users\Trent\Downloads
    Boot Mode: Normal
    ==================== Shortcuts =============================
    (The entries could be listed to be restored or removed.)
     
     
     
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\HP Solution Center.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\Hpqdirec.exe (Hewlett-Packard Company)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\PDFill PDF Editor.lnk -> C:\Program Files (x86)\PlotSoft\PDFill\PDFill.exe (PlotSoft L.L.C.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk -> C:\Windows\Installer\{AC76BA86-7AD7-1033-7B44-AA1000000001}\SC_Reader.ico ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk -> C:\Windows\Installer\{C6579A65-9CAE-4B31-8B6B-3306E0630A66}\AppleSoftwareUpdateIco.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk -> C:\Windows\ehome\ehshell.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office PowerPoint Viewer 2007.lnk -> C:\Windows\Installer\{95120000-00AF-0409-0000-0000000FF1CE}\ppvwicon.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works Task Launcher.lnk -> C:\Program Files (x86)\Microsoft Works\MSWorks.exe (Microsoft® Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerDVD DX.lnk -> C:\Program Files (x86)\CyberLink\PowerDVD DX\PowerDVD.exe (CyberLink Corp.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Anytime Upgrade.lnk -> C:\Windows\System32\WindowsAnytimeUpgradeUI.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Call.lnk -> C:\Program Files (x86)\Windows Live\Messenger\wlcstart.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Mail.lnk -> C:\Program Files (x86)\Windows Live\Mail\wlmail.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Messenger .lnk -> C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Movie Maker.lnk -> C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.Exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Photo Gallery.lnk -> C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Writer.lnk -> C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriter.exe (Microsoft Corp.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SmarThru 4\SmarThru 4 Image Editor.lnk -> C:\Program Files (x86)\SmarThru 4\ImageEditor.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SmarThru 4\SmarThru 4.lnk -> C:\Program Files (x86)\SmarThru 4\ControlPanel.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype\Skype.lnk -> C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Technologies S.A.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Dr.Printer\Dr.Printer UnInstall.lnk -> C:\Program Files (x86)\InstallShield Installation Information\{0DB87EAC-F695-4D59-9609-C93119AE6B35}\setup.exe (Acresso Software Inc.                                        )
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Dr.Printer\Samsung Dr.Printer.lnk -> C:\Program Files (x86)\Samsung\DrPrinter\Printer119.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealPlayer Converter.lnk -> C:\Program Files (x86)\Real\RealPlayer\realconverter.exe (RealNetworks, Inc.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealPlayer Trimmer.lnk -> C:\Program Files (x86)\Real\RealPlayer\realtrimmer.exe (RealNetworks, Inc.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime\About QuickTime.lnk -> C:\Windows\Installer\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}\RichText.ico ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime\QuickTime Player.lnk -> C:\Windows\Installer\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}\QTPlayer.ico ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Studio 12\Guided Tour.lnk -> C:\Windows\Installer\{D041EB9E-890A-4098-8F94-51DA194AC72A}\SC_GuidedTour.exe (Macrovision Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Studio 12\Pinnacle Studio 12 Help.lnk -> C:\Windows\Installer\{D041EB9E-890A-4098-8F94-51DA194AC72A}\SC_Help_HH.exe (Macrovision Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Studio 12\Pinnacle Studio 12 Manual.lnk -> C:\Program Files (x86)\Pinnacle\Studio 12\Studio_us.pdf ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Studio 12\Pinnacle Studio 12.lnk -> C:\Windows\Installer\{D041EB9E-890A-4098-8F94-51DA194AC72A}\Studio.exe (Macrovision Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Studio 12\Readme.lnk -> C:\Windows\Installer\{D041EB9E-890A-4098-8F94-51DA194AC72A}\SC_ReadMe.exe (Macrovision Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Studio 12\Tools\AM Capture.lnk -> C:\Windows\Installer\{D041EB9E-890A-4098-8F94-51DA194AC72A}\SC_AMCap.exe (Macrovision Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Studio 12\Tools\Check 3D Server.lnk -> C:\Windows\Installer\{D041EB9E-890A-4098-8F94-51DA194AC72A}\SC_Check3D.exe (Macrovision Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Studio 12\Tools\Transfer Content.lnk -> C:\Windows\Installer\{D041EB9E-890A-4098-8F94-51DA194AC72A}\SC_ContentTransfer.exe (Macrovision Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Instant DVD Recorder\Instant DVD Recorder.lnk -> C:\Windows\Installer\{C1212AE3-DBB9-4365-8473-F8ABC7B06BBB}\NewShortcut1_C1212AE3DBB943658473F8ABC7B06BBB.exe (Macrovision Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Instant DVD Recorder\Help\Instant DVD Recorder.lnk -> C:\Windows\Installer\{C1212AE3-DBB9-4365-8473-F8ABC7B06BBB}\NewShortcut4_B7561A3F6DEC43D7B90D31B38ABBBDE7.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Instant DVD Recorder\Help\ReadMe.lnk -> C:\Windows\Installer\{C1212AE3-DBB9-4365-8473-F8ABC7B06BBB}\NewShortcut19_3B0048C02EB64AD9B84C30C20FAAB5E2.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFill\Help for PDFill PDF Tools.lnk -> C:\Program Files (x86)\PlotSoft\PDFill\PDFill_PDF_Tools.chm ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFill\Help for PDFill PDF&Image Writer.lnk -> C:\Program Files (x86)\PlotSoft\PDFill\WriterSave.chm ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFill\Help fro PDFill PDF Editor.lnk -> C:\Program Files (x86)\PlotSoft\PDFill\PDFill.chm ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFill\PDFill PDF Editor.lnk -> C:\Program Files (x86)\PlotSoft\PDFill\PDFill.exe (PlotSoft L.L.C.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFill\PDFill PDF Tools (FREE).lnk -> C:\Program Files (x86)\PlotSoft\PDFill\PDFill_PDF_Tools.exe (PlotSoft L.L.C.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFill\PDFill PDF&Image Writer (Free).lnk -> C:\Program Files (x86)\PlotSoft\PDFill\WriterSave.exe (PlotSoft LLC)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OLYMPUS Viewer 3\OLYMPUS Viewer 3 Help.lnk -> C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OLYMPUSViewer3.chm ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OLYMPUS Viewer 3\OLYMPUS Viewer 3 ReadMe.lnk -> C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\Readme.txt ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OLYMPUS Viewer 3\OLYMPUS Viewer 3.lnk -> C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OLYMPUS Viewer 3.exe (OLYMPUS IMAGING CORP.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OLYMPUS Digital Camera Updater\OLYMPUS Digital Camera Updater.lnk -> C:\Program Files (x86)\OLYMPUS\CameraUpdateTool\CameraUpdate.exe (OLYMPUS IMAGING CORP.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OLYMPUS Digital Camera Updater\ReadMe.lnk -> C:\Program Files (x86)\OLYMPUS\CameraUpdateTool\Readme.txt ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OLYMPUS Camera\TG-630 Instruction Manual.lnk -> C:\Users\Public\Documents\OLYMPUS\Camera Manual\TG-630\ENU.pdf ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works\Getting Started.lnk -> C:\Windows\Installer\{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}\gtngstrtd.ico ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works\Microsoft Works Calendar.lnk -> C:\Windows\Installer\{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}\WksCal.exe (Microsoft® Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works\Microsoft Works Database.lnk -> C:\Windows\Installer\{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}\wksdb.exe (Microsoft® Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works\Microsoft Works Portfolio.lnk -> C:\Windows\Installer\{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}\WksSb.exe (Microsoft® Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works\Microsoft Works Spreadsheet.lnk -> C:\Windows\Installer\{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}\wksss.exe (Microsoft® Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works\Microsoft Works Task Launcher.lnk -> C:\Program Files (x86)\Microsoft Works\MSWorks.exe (Microsoft® Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works\Microsoft Works Word Processor.lnk -> C:\Windows\Installer\{15BC8CD0-A65B-47D0-A2DD-90A824590FA8}\WksWP.exe (Microsoft® Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight\Microsoft Silverlight.lnk -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\Silverlight.Configuration.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Access 2007.lnk -> C:\Windows\Installer\{91120000-002E-0000-0000-0000000FF1CE}\accicons.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Excel 2007.lnk -> C:\Windows\Installer\{91120000-002E-0000-0000-0000000FF1CE}\xlicons.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Groove 2007.lnk -> C:\Windows\Installer\{91120000-002E-0000-0000-0000000FF1CE}\GrooveIcon.ico ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office InfoPath 2007.lnk -> C:\Windows\Installer\{91120000-002E-0000-0000-0000000FF1CE}\inficon.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office OneNote 2007.lnk -> C:\Windows\Installer\{91120000-002E-0000-0000-0000000FF1CE}\joticon.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Outlook 2007.lnk -> C:\Windows\Installer\{91120000-002E-0000-0000-0000000FF1CE}\outicon.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office PowerPoint 2007.lnk -> C:\Windows\Installer\{91120000-002E-0000-0000-0000000FF1CE}\pptico.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Publisher 2007.lnk -> C:\Windows\Installer\{91120000-002E-0000-0000-0000000FF1CE}\pubs.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Word 2007.lnk -> C:\Windows\Installer\{91120000-002E-0000-0000-0000000FF1CE}\wordicon.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Tools\Digital Certificate for VBA Projects.lnk -> C:\Windows\Installer\{91120000-002E-0000-0000-0000000FF1CE}\misc.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Tools\Microsoft Clip Organizer.lnk -> C:\Windows\Installer\{91120000-002E-0000-0000-0000000FF1CE}\cagicon.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Tools\Microsoft Office 2007 Language Settings.lnk -> C:\Windows\Installer\{91120000-002E-0000-0000-0000000FF1CE}\misc.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Tools\Microsoft Office Diagnostics.lnk -> C:\Windows\Installer\{91120000-002E-0000-0000-0000000FF1CE}\misc.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Tools\Microsoft Office Picture Manager.lnk -> C:\Windows\Installer\{91120000-002E-0000-0000-0000000FF1CE}\oisicon.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center\Media Center Programs\Sound Blaster.lnk -> C:\Program Files (x86)\Creative\SB X-Fi MB\Sound Blaster\Sound Blaster.mcl ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Uninstall Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\unins000.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Tools\Malwarebytes Anti-Malware Chameleon.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\Chameleon\Windows\chameleon.chm ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Create Recovery Disc.lnk -> C:\Windows\System32\recdisc.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Remote Assistance.lnk -> C:\Windows\System32\msra.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Codec Tweak Tool.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Media Player Classic (x64).lnk -> C:\Program Files (x86)\K-Lite Codec Pack\MPC-HC64\mpc-hc64.exe (MPC-HC Team)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Media Player Classic.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\MPC-HC\mpc-hc.exe (MPC-HC Team)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Uninstall\Uninstall K-Lite Codec Pack.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\unins000.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Tools\GraphStudioNext (x64).lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\GraphStudioNext64.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Tools\GraphStudioNext.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\GraphStudioNext.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Tools\MediaInfo.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\mediainfo.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Tools\Win7DSFilterTweaker.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Help\Frequently Asked Questions.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Info\faq.htm ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk -> C:\Program Files (x86)\Java\jre7\bin\javacpl.exe (Oracle Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\About iTunes.lnk -> C:\Program Files (x86)\iTunes\iTunes.Resources\en.lproj\About iTunes.rtf ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\iTunes.lnk -> C:\Program Files (x86)\iTunes\iTunes.exe (Apple Inc.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel® Matrix Storage Manager\Intel® Matrix Storage Console.lnk -> C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\Shell.exe (Intel Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\iCloud Photos.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\ShellStreamsShortcut.exe (Apple Inc.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\iCloud.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe (Apple Inc.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\I.R.I.S.  Applications\Readiris Pro 10\Registration Wizard.lnk -> C:\Program Files (x86)\Readiris10\regri50.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Solution Center.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\Hpqdirec.exe (Hewlett-Packard Company)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Update.lnk -> C:\Program Files (x86)\HP\HP Software Update\hpwucli.exe (Hewlett-Packard)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Smart Web Printing\HP Smart Web Printing Help.lnk -> C:\Program Files (x86)\HP\Digital Imaging\smart web printing\Help\hpsmartprint.chm ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Photosmart Essential 3.5\HP Photosmart Essential 3.5.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqpse.exe (Hewlett-Packard Development Co. L.P.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Deskjet 3050 J610 series\Help.lnk -> C:\Program Files (x86)\HP\HP Deskjet 3050 J610 series\bin\HelpViewer\hpqlpvwr.exe (Hewlett-Packard Co.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Deskjet 3050 J610 series\HP Deskjet 3050 J610 series.lnk -> C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\HP Deskjet 3050 J610 series.exe (Hewlett-Packard Co.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Deskjet 3050 J610 series\HP Scan.lnk -> C:\Program Files (x86)\HP\HP Deskjet 3050 J610 series\bin\HPScan.exe (Hewlett-Packard Co.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Deskjet 3050 J610 series\Printer Setup & Software.lnk -> C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\DeviceSetupLauncher.exe (Hewlett-Packard Co.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Deskjet 3050 J610 series\Product Support Website.lnk -> C:\Program Files\HP\HP Deskjet 3050 J610 series\ProductSupportShortcut.url ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Deskjet 3050 J610 series\Shop for Supplies.lnk -> C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\hpqDTSS.exe (Hewlett-Packard Co.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\Deskjet F4200 series\Help.lnk -> C:\Program Files (x86)\HP\Digital Imaging\help\aio45.chm ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\Deskjet F4200 series\Product Support Website.lnk -> C:\Program Files (x86)\HP\Digital Imaging\HP Deskjet F4200 series\help\HP Product Support Website.url ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\Deskjet F4200 series\Readme.lnk -> C:\Program Files (x86)\HP\Digital Imaging\help\DJ_AIO_03_F4200_readme\readme.html ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin\Garmin Express.lnk -> C:\Program Files (x86)\Garmin\Express\Express.exe (Garmin)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake\Freemake Video Converter.lnk -> C:\Program Files (x86)\Freemake\Freemake Video Converter\FreemakeVideoConverter.exe (Freemake)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell Webcam\Dell Webcam Central.lnk -> C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe (Creative Technology Ltd)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell Webcam\Live! Cam Avatar Creator\License Agreement.lnk -> C:\Program Files (x86)\Dell Webcam\Live! Cam Avatar Creator\license.txt ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell Webcam\Live! Cam Avatar Creator\Live! Cam Avatar Creator Help.lnk -> C:\Program Files (x86)\Dell Webcam\Live! Cam Avatar Creator\CT Program\crazytalk4.chm ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell Webcam\Live! Cam Avatar Creator\Live! Cam Avatar Creator.lnk -> C:\Program Files (x86)\Dell Webcam\Live! Cam Avatar Creator\CT Program\CTIEMain.exe (Reallusion Inc.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell Webcam\Live! Cam Avatar Creator\Read Me.lnk -> C:\Program Files (x86)\Dell Webcam\Live! Cam Avatar Creator\Readme.txt ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell\Service Agreements\Banctec.pdf.lnk -> C:\Windows\Installer\{42D68A86-DB1C-4256-B8C9-5D0D92919AF5}\Icon42D68A86.pdf ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell\Dell Software & Utilities\Dell Getting Started Guide.lnk -> C:\Program Files (x86)\DELL\Dell Welcome\welcome.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative\Creative Software AutoUpdate.lnk -> C:\Program Files (x86)\Creative\Shared Files\Software Update\AutoUpdate.exe (Creative Technology Ltd)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative\Get Bonus Software.lnk -> C:\Program Files (x86)\Creative\Shared Files\Software Update\AutoUpdate.exe (Creative Technology Ltd)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative\Readme.lnk -> C:\Program Files (x86)\Creative\SB X-Fi MB\ReadMe.txt ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative\Sound Blaster X-Fi MB\Creative Audio Control Panel.lnk -> C:\Program Files (x86)\Creative\SB X-Fi MB\AudioCS\CTAudCS.exe (Creative Technology Ltd)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative\Sound Blaster X-Fi MB\Creative Console Launcher.lnk -> C:\Program Files (x86)\Creative\SB X-Fi MB\Console Launcher\ConsoLCu.exe (Creative Technology Ltd)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative\Sound Blaster X-Fi MB\Volume Panel.lnk -> C:\Program Files (x86)\Creative\SB X-Fi MB\Volume Panel\VolPanlu.exe (Creative Technology Ltd)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative\ALchemy\Creative ALchemy.lnk -> C:\Program Files (x86)\Creative\ALchemy\ALchemy.exe (Creative Technology Ltd)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG\AVG 2015.lnk -> C:\Program Files (x86)\AVG\AVG2015\avgui.exe (AVG Technologies CZ, s.r.o.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Data Sources (ODBC).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Calculator.lnk -> C:\Windows\System32\calc.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\displayswitch.lnk -> C:\Windows\System32\displayswitch.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sound Recorder.lnk -> C:\Windows\System32\SoundRecorder.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sticky Notes.lnk -> C:\Windows\System32\StikyNot.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sync Center.lnk -> C:\Windows\System32\mobsync.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\Windowspowershell\v1.0\powershell.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Restore.lnk -> C:\Windows\System32\rstrui.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer Reports.lnk -> C:\Windows\System32\migwiz\PostMig.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer.lnk -> C:\Windows\System32\migwiz\migwiz.exe (Microsoft Corporation)
    Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
    Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
    Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
    Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
    Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
    Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
    Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
    Shortcut: C:\Users\Guest\Links\Desktop.lnk -> C:\Users\Trent\Desktop ()
    Shortcut: C:\Users\Guest\Links\Downloads.lnk -> C:\Users\Trent\Downloads ()
    Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
    Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation)
    Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
    Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
    Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
    Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
    Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
    Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
    Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
    Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
    Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
    Shortcut: C:\Users\Guest\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
    Shortcut: C:\Users\Public\Desktop\Adobe Reader X.lnk -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AcroRd32.exe (Adobe Systems Incorporated)
    Shortcut: C:\Users\Public\Desktop\AVG 2015.lnk -> C:\Program Files (x86)\AVG\AVG2015\avgui.exe (AVG Technologies CZ, s.r.o.)
    Shortcut: C:\Users\Public\Desktop\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
    Shortcut: C:\Users\Public\Desktop\Garmin Express.lnk -> C:\Program Files (x86)\Garmin\Express\Express.exe (Garmin)
    Shortcut: C:\Users\Public\Desktop\HP Deskjet 3050 J610 series Scan.lnk -> C:\Program Files (x86)\HP\HP Deskjet 3050 J610 series\bin\HPScan.exe (Hewlett-Packard Co.)
    Shortcut: C:\Users\Public\Desktop\HP Deskjet 3050 J610 series.lnk -> C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\HP Deskjet 3050 J610 series.exe (Hewlett-Packard Co.)
    Shortcut: C:\Users\Public\Desktop\iTunes.lnk -> C:\Program Files (x86)\iTunes\iTunes.exe (Apple Inc.)
    Shortcut: C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes Corporation)
    Shortcut: C:\Users\Public\Desktop\Pinnacle Instant DVD Recorder.lnk -> C:\Program Files (x86)\Pinnacle\Instant DVD Recorder\D2dWizard.exe (Pinnacle Systems)
    Shortcut: C:\Users\Public\Desktop\Pinnacle Studio 12.lnk -> C:\Program Files (x86)\Pinnacle\Studio 12\Programs\Studio.exe (Pinnacle Systems)
    Shortcut: C:\Users\Public\Desktop\QuickTime Player.lnk -> C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe (Apple Inc.)
    Shortcut: C:\Users\Public\Desktop\Skype.lnk -> C:\Windows\Installer\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}\SkypeIcon.exe ()
    Shortcut: C:\Users\Trent\Videos\Old [bleep] from Portable Hard Drive\Trents Videos\Shortcut to One Day Diet.lnk -> E:\Trents Videos\One Day Diet.xls (No File)
    Shortcut: C:\Users\Trent\Links\Desktop.lnk -> C:\Users\Trent\Desktop ()
    Shortcut: C:\Users\Trent\Links\Downloads.lnk -> C:\Users\Trent\Downloads ()
    Shortcut: C:\Users\Trent\Desktop\desktoptools.lnk -> C:\Users\Trent\AppData\Local\Workspace\desktoptools.exe (Starfield Technologies, LLC)
    Shortcut: C:\Users\Trent\Desktop\Downloads.lnk -> C:\Users\Trent\Downloads ()
    Shortcut: C:\Users\Trent\Desktop\Google Chrome.lnk -> C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.)
    Shortcut: C:\Users\Trent\Desktop\Internet Explorer.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation)
    Shortcut: C:\Users\Trent\Desktop\McAfee SecurityCenter.lnk -> C:\Program Files (x86)\McAfee\MSC\mcshell.exe (No File)
    Shortcut: C:\Users\Trent\Desktop\Microsoft Office Excel 2007.lnk -> C:\Windows\Installer\{91120000-002E-0000-0000-0000000FF1CE}\xlicons.exe ()
    Shortcut: C:\Users\Trent\Desktop\Microsoft Office Word 2007.lnk -> C:\Windows\Installer\{91120000-002E-0000-0000-0000000FF1CE}\wordicon.exe ()
    Shortcut: C:\Users\Trent\Desktop\OLYMPUS Digital Camera Updater.lnk -> C:\Program Files (x86)\OLYMPUS\CameraUpdateTool\CameraUpdate.exe (OLYMPUS IMAGING CORP.)
    Shortcut: C:\Users\Trent\Desktop\OLYMPUS Viewer 3.lnk -> C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OLYMPUS Viewer 3.exe (OLYMPUS IMAGING CORP.)
    Shortcut: C:\Users\Trent\Desktop\temple - Shortcut.lnk -> C:\Users\Trent\Desktop\downtown homes\temple ()
    Shortcut: C:\Users\Trent\Desktop\TG-630 Instruction Manual.lnk -> C:\Users\Public\Documents\OLYMPUS\Camera Manual\TG-630\ENU.pdf ()
    Shortcut: C:\Users\Trent\Desktop\Larboard Drive\Forms for Davis or Wells\Downloads.lnk -> C:\Users\Trent\Downloads ()
    Shortcut: C:\Users\Trent\Desktop\Chapel Ridge\Marketing\Share folders (MINI-SERVE) (S) - Shortcut.lnk -> S:\ (No File)
    Shortcut: C:\Users\Trent\Desktop\Chapel Ridge\Lot 3 CRE\Desktop.lnk -> C:\Users\Trent\Desktop ()
    Shortcut: C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
    Shortcut: C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Workspace\Desktop Tools.lnk -> C:\Users\Trent\AppData\Local\Workspace\desktoptools.exe (Starfield Technologies, LLC)
    Shortcut: C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk -> C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.)
    Shortcut: C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake\Uninstall\Uninstall Freemake Video Converter.lnk -> C:\Program Files (x86)\Freemake\Freemake Video Converter\Uninstall\unins000.exe ()
    Shortcut: C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
    Shortcut: C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
    Shortcut: C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
    Shortcut: C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation)
    Shortcut: C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
    Shortcut: C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
    Shortcut: C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
    Shortcut: C:\Users\Trent\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
    Shortcut: C:\Users\Trent\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Users\Trent\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.)
    Shortcut: C:\Users\Trent\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
    Shortcut: C:\Users\Trent\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Media Center.lnk -> C:\Windows\ehome\ehshell.exe (Microsoft Corporation)
    Shortcut: C:\Users\Trent\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
     
     
     
     
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DefaultPrograms
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk -> C:\Windows\System32\wuapp.exe (Microsoft Corporation) -> startmenu
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) -> /showgadgets
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SmarThru 4\Uninstall SmarThru 4.lnk -> C:\Program Files (x86)\InstallShield Installation Information\{90F1943D-EA4A-4460-B59F-30023F3BA69A}\Setup.exe (InstallShield Software Corporation) -> uninstall -l0009
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung CLX-3170 Series\Maintenance.lnk -> C:\Program Files (x86)\Samsung\Samsung CLX-3170 Series\Install\Setup.exe () -> /R
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung CLX-3170 Series\Smart Panel.lnk -> C:\Windows\Samsung\PanelMgr\SSMMgr.exe () -> /smartpanel %Samsung CLX-3170 Series%
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roxio\Roxio Burn.lnk -> C:\Program Files (x86)\Roxio\Roxio Burn\Roxio Burn.exe () -> /STARTMENU
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks\RealPlayer.lnk -> C:\Program Files (x86)\Real\RealPlayer\realplay.exe (RealNetworks, Inc.) -> /launch:start_menu
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime\Uninstall QuickTime.lnk -> C:\Windows\SysWOW64\msiexec.exe (Microsoft Corporation) -> /i {3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E} /qf
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFill\Uninstall PDFill PDF Editor and Tools.lnk -> C:\Windows\SysWOW64\msiexec.exe (Microsoft Corporation) -> /x {D1399216-81B2-457C-A0F7-73B9A2EF6902}
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Backup and Restore Center.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.BackupAndRestore
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\DirectVobSub (x64).lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\Filters\vsfilter64.dll",DirectVobSub
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\DirectVobSub.lnk -> C:\Windows\SysWOW64\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\Filters\vsfilter.dll",DirectVobSub
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\ffdshow audio decoder (x64).lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\Filters\ffdshow64\ffdshow.ax",configureAudio
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\ffdshow audio decoder.lnk -> C:\Windows\SysWOW64\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\Filters\ffdshow\ffdshow.ax",configureAudio
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\ffdshow video decoder (x64).lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\Filters\ffdshow64\ffdshow.ax",configure
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\ffdshow video decoder.lnk -> C:\Windows\SysWOW64\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\Filters\ffdshow\ffdshow.ax",configure
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\LAV Audio (x64).lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\lavaudio.ax",OpenConfiguration
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\LAV Audio.lnk -> C:\Windows\SysWOW64\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV\lavaudio.ax",OpenConfiguration
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\LAV Splitter (x64).lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\lavsplitter.ax",OpenConfiguration
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\LAV Splitter.lnk -> C:\Windows\SysWOW64\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV\lavsplitter.ax",OpenConfiguration
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\LAV Video (x64).lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\lavvideo.ax",OpenConfiguration
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\LAV Video.lnk -> C:\Windows\SysWOW64\rundll32.exe (Microsoft Corporation) -> "C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV\lavvideo.ax",OpenConfiguration
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\madVR.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Filters\madVR\madHcCtrl.exe (madshi.net) -> editLocalSettingsDontWait
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration\Reset to recommended settings.lnk -> C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe () -> /resetsettings
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk -> C:\Program Files (x86)\Java\jre7\bin\javacpl.exe (Oracle Corporation) -> -tab about
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk -> C:\Program Files (x86)\Java\jre7\bin\javacpl.exe (Oracle Corporation) -> -tab update
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless\WiFi Advanced Statistics.lnk -> C:\Program Files\Common Files\Intel\WirelessCommon\imFrmwrk.exe (Intel® Corporation) -> /sf Advanced Statistics
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless\WiFi Event Viewer.lnk -> C:\Program Files\Common Files\Intel\WirelessCommon\imFrmwrk.exe (Intel® Corporation) -> /sf Wireless Event Viewer
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless\WiFi Manual Diagnostics.lnk -> C:\Program Files\Common Files\Intel\WirelessCommon\imFrmwrk.exe (Intel® Corporation) -> /sf Wireless Diagnostics
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Calendar.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudWeb.exe (Apple Inc.) -> calendar
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Contacts.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudWeb.exe (Apple Inc.) -> contacts
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Find My iPhone.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudWeb.exe (Apple Inc.) -> find
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Mail.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudWeb.exe (Apple Inc.) -> mail
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Notes.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudWeb.exe (Apple Inc.) -> notes
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud\Reminders.lnk -> C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudWeb.exe (Apple Inc.) -> reminders
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Photosmart Essential 3.5\Uninstall HP Photosmart Essential 3.5.lnk -> C:\Program Files (x86)\HP\Digital Imaging\photosmartessential\hpzscr01.exe (Hewlett-Packard) -> -datfile hpqbud13.dat
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Deskjet 3050 J610 series\HP Product Improvement Study.lnk -> C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\HPCustPartic.exe (Hewlett-Packard Co.) -> /changesettings /UA 9.1 /DDV 0x0805
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Deskjet 3050 J610 series\Uninstall.lnk -> C:\Windows\SysWOW64\msiexec.exe (Microsoft Corporation) -> /qb /x {7D220A57-969F-4D09-9297-D48195A8ABDD}
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Deskjet 3050 J610 series\Update IP Address.lnk -> C:\Program Files\HP\HP Deskjet 3050 J610 series\Bin\DeviceSetup.exe (Hewlett-Packard Co.) -> /changeip ""
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\Deskjet F4200 series\Add A Device.lnk -> C:\Program Files (x86)\HP\Digital Imaging\{A00C9114-40E6-4C70-A619-7DF264B23485}\hpzstub.exe (Hewlett-Packard) -> -addadevice
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\Deskjet F4200 series\Product Registration.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqwrg.exe (Hewlett-Packard Company) -> "HP Deskjet F4200 series"
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\Deskjet F4200 series\Uninstall.lnk -> C:\Program Files (x86)\HP\Digital Imaging\{A00C9114-40E6-4C70-A619-7DF264B23485}\setup\hpzscr40.exe (Hewlett-Packard) -> -datfile hposcr28.dat -onestop
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell Webcam\Live! Cam Avatar Creator\Uninstall Live! Cam Avatar Creator.lnk -> C:\Program Files (x86)\InstallShield Installation Information\{65D0C510-D7B6-4438-9FC8-E6B91115AB0D}\setup.exe (Macrovision Corporation) -> -runfromtemp -l0x0009 /remove
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell\My Dell\My Dell.lnk -> C:\Program Files\My Dell\pcdlauncher.exe (PC-Doctor, Inc.) -> -lloc dsc
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell\My Dell\PC Checkup.lnk -> C:\Program Files\My Dell\pcdlauncher.exe (PC-Doctor, Inc.) -> -startingpage pccheckup -lloc pccheckup
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother\MFC-9460CDN LAN\UnInstall.lnk -> C:\Program Files (x86)\InstallShield Installation Information\{979742CC-2CBB-49D8-9BEE-C2F7875F5393}\setup.exe (Macrovision Corporation) -> -runfromtemp -l0x0009 UNINSTALL Reg=BC-FB,Brother MFC-9460CDN,LAN
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell Modules.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) -> -NoExit -ImportSystemModules
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation) -> /open
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Welcome Center.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX
    ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dell Dock First Run.lnk -> C:\Program Files\Dell\DellDock\DellDock.exe (Stardock Corporation) -> /firstrun
    ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
    ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
    ShortcutWithArgument: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) ->  -extoff
    ShortcutWithArgument: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
    ShortcutWithArgument: C:\Users\Guest\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
    ShortcutWithArgument: C:\Users\Guest\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
    ShortcutWithArgument: C:\Users\Public\Desktop\RealPlayer.lnk -> C:\Program Files (x86)\Real\RealPlayer\realplay.exe (RealNetworks, Inc.) -> /launch:desktop
    ShortcutWithArgument: C:\Users\Trent\Desktop\Clickfree BackupLink.lnk -> C:\ProgramData\OfficeGuardianV2N\Reminder\SacReminder.exe (Storage Appliance Corp.) -> -showoption
    ShortcutWithArgument: C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) ->  -extoff
    ShortcutWithArgument: C:\Users\Trent\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter
    ShortcutWithArgument: C:\Users\Trent\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
    ShortcutWithArgument: C:\Users\Trent\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk -> C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Technologies S.A.) -> /sendto:
    ShortcutWithArgument: C:\Users\Trent\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Office Outlook.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE (Microsoft Corporation) ->  /recycle
     
     
    InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFill\Visit PDFill Home Page.url -> hxxp://www.PDFill.com
    InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\I.R.I.S.  Applications\Readiris Pro 10\I.R.I.S. on the Internet.url -> hxxp://www.irislink.com/UK/index.html
    InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner Homepage.url -> hxxp://www.piriform.com/ccleaner
    InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother\MFC-9460CDN LAN\On-line help and FAQ's.url -> hxxp://solutions.brother.com/cgi-bin/solutions.cgi?MDL=mfc272&LNG=en&SRC=FAQ
    InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother\MFC-9460CDN LAN\User's Guides in PDF format.url -> hxxp://solutions.brother.com/cgi-bin/solutions.cgi?MDL=mfc272&LNG=en&SRC=DOC
    InternetURL: C:\Users\Guest\Favorites\Links for United States\GobiernoUSA.gov.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129792
    InternetURL: C:\Users\Guest\Favorites\Links for United States\USA.gov.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129791
    InternetURL: C:\Users\Guest\Favorites\Links\Suggested Sites.url -> https://ieonline.mic...ft.com/#ieslice
    InternetURL: C:\Users\Guest\Favorites\Links\Web Slice Gallery.url -> hxxp://go.microsoft.com/fwlink/?LinkId=121315
    InternetURL: C:\Users\Trent\Favorites\Links for United States\GobiernoUSA.gov.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129792
    InternetURL: C:\Users\Trent\Favorites\Links for United States\USA.gov.url -> hxxp://go.microsoft.com/fwlink/?LinkId=129791
    InternetURL: C:\Users\Trent\Favorites\Links\Suggested Sites.url -> https://ieonline.mic...ft.com/#ieslice
    InternetURL: C:\Users\Trent\Favorites\Links\Web Slice Gallery.url -> hxxp://go.microsoft.com/fwlink/?LinkId=121315
    InternetURL: C:\Users\Trent\Favorites\Dell\Dell Auction.url -> hxxp://www.dellauction.com/
    InternetURL: C:\Users\Trent\Favorites\Dell\Dell Internet Security.url -> hxxp://support.dell.com/support/topics/global.aspx/support/security/security?c=us&cs=19&l=en&s=dhs
    InternetURL: C:\Users\Trent\Favorites\Dell\Dell.url -> hxxp://www.dell.com/
    InternetURL: C:\Users\Trent\Favorites\Dell\Support.Dell.Com.url -> hxxp://support.dell.com/support/index.aspx?c=us&l=en&s=gen
     
    ==================== End of log =============================

    • 0






    Similar Topics


    Also tagged with one or more of these keywords: windows 7, cache, fan, malware, not responding, multiple chrome.exe 32, fan on and off

    0 user(s) are reading this topic

    0 members, 0 guests, 0 anonymous users

    As Featured On:

    Microsoft Yahoo BBC MSN PC Magazine Washington Post HP