Here is FRST.txt:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02-07-2016
Ran by Bumbleberry (administrator) on BUMBLEBERRY-PC (08-07-2016 19:20:15)
Running from C:\Users\Bumbleberry\Desktop
Loaded Profiles: Bumbleberry (Available Profiles: Bumbleberry)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcsrva.exe
() C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgidsagenta.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvca.exe
() C:\Program Files\Everything\Everything.exe
(AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.3.1\ToolbarUpdater.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgemca.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
() C:\Program Files\Everything\Everything.exe
() C:\Program Files (x86)\VPNTunnel\vpn.client.exe
() C:\Windows\SysWOW64\DeltaIITray.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
() C:\Program Files (x86)\AVG Web TuneUp\vprot.exe
() C:\Program Files (x86)\VPNTunnel\vpn.service.exe
(The OpenVPN Project) C:\Program Files (x86)\VPNTunnel\openvpn\openvpn.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_22_0_0_192.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_22_0_0_192.exe
(Microsoft Corporation) C:\Windows\System32\calc.exe
(VideoLAN) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
() C:\Program Files (x86)\SoulseekQt\SoulseekQt.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [5006536 2016-03-21] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [Everything] => C:\Program Files\Everything\Everything.exe [1441792 2014-08-06] ()
HKLM-x32\...\Run: [M-Audio Taskbar Icon] => C:\Windows\SysWOW64\DeltaIITray.exe [237872 2012-01-25] ()
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirnx.exe [186640 2016-06-21] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Av\avgui.exe [6570256 2016-06-09] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Web TuneUp\vprot.exe [1941064 2016-06-21] ()
HKU\S-1-5-21-3016645819-3962554195-2005678081-1000\...\Run: [VPNTunnel] => C:\Program Files (x86)\VPNTunnel\vpn.client.exe [1068248 2016-06-01] ()
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2016-05-16] (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.10.40.1 67.215.230.82
Tcpip\..\Interfaces\{39087F38-EF7C-41FA-BDF2-D11DFAEDB429}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{BB798946-7873-4D1A-B29E-6440B4C328C9}: [DhcpNameServer] 10.10.40.1 67.215.230.82
Internet Explorer:
==================
HKU\S-1-5-21-3016645819-3962554195-2005678081-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://mysearch.avg.com/?cid={1A679BCA-7381-4274-8DD3-EF26B3ED2455}&mid=bea85e570d9547cca9c3d151cde2f818-d500d1f64bd1e5a7b03876619d355fcbcdb59959&lang=en&ds=AVG&coid=avgtbavg&cmpid=0716tb&pr=fr&d=2016-05-16 21:36:47&v=4.3.1.831&pid=wtu&sg=&sap=hp
SearchScopes: HKU\S-1-5-21-3016645819-3962554195-2005678081-1000 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={1A679BCA-7381-4274-8DD3-EF26B3ED2455}&mid=bea85e570d9547cca9c3d151cde2f818-d500d1f64bd1e5a7b03876619d355fcbcdb59959&lang=en&ds=AVG&coid=avgtbavg&cmpid=0716tb&pr=fr&d=2016-05-16 21:36:47&v=4.3.1.831&pid=wtu&sg=&sap=dsp&q={searchTerms}
BHO-x32: AVG Web TuneUp -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files (x86)\AVG Web TuneUp\4.3.1.831\AVG Web TuneUp.dll [2016-06-21] (AVG)
FireFox:
========
FF ProfilePath: C:\Users\Bumbleberry\AppData\Roaming\Mozilla\Firefox\Profiles\rtlih46g.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_192.dll [2016-06-25] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_192.dll [2016-06-25] ()
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\40.3.1\\npsitesafety.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.2.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF SearchPlugin: C:\Users\Bumbleberry\AppData\Roaming\Mozilla\Firefox\Profiles\rtlih46g.default\searchplugins\avg-secure-search.xml [2016-06-09]
FF Extension: LeechBlock - C:\Users\Bumbleberry\AppData\Roaming\Mozilla\Firefox\Profiles\rtlih46g.default\extensions\{a95d8332-e4b4-6e7f-98ac-20b733364387} [2016-06-19]
FF Extension: Zoom Page - C:\Users\Bumbleberry\AppData\Roaming\Mozilla\Firefox\Profiles\rtlih46g.default\extensions\zoompage@DW-dev.xpi [2016-06-29]
FF Extension: Disable Anti-Adblock - C:\Users\Bumbleberry\AppData\Roaming\Mozilla\Firefox\Profiles\rtlih46g.default\extensions\{d49a148e-817e-4025-bee3-5d541376de3b}.xpi [2016-07-07]
FF Extension: Ageless - C:\Users\Bumbleberry\AppData\Roaming\Mozilla\Firefox\Profiles\rtlih46g.default\Extensions\2341n4m3@gmail.com.xpi [2016-05-18]
FF Extension: AVG Web TuneUp - C:\Users\Bumbleberry\AppData\Roaming\Mozilla\Firefox\Profiles\rtlih46g.default\Extensions\avg@toolbar.xpi [2016-06-09]
FF Extension: iMEGA - C:\Users\Bumbleberry\AppData\Roaming\Mozilla\Firefox\Profiles\rtlih46g.default\Extensions\{065ee92a-ad57-42a2-b6d5-466b6fd8e24d}.xpi [2016-06-08]
FF Extension: Adblock Plus - C:\Users\Bumbleberry\AppData\Roaming\Mozilla\Firefox\Profiles\rtlih46g.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-05-16]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [636312 2016-06-09] (AVG Technologies CZ, s.r.o.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagenta.exe [5165824 2016-06-09] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1080080 2016-06-21] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [705528 2016-06-09] (AVG Technologies CZ, s.r.o.)
R2 Everything; C:\Program Files\Everything\Everything.exe [1441792 2014-08-06] () [File not signed]
S3 OpenVPNService; C:\Program Files\OpenVPN\bin\openvpnserv.exe [37504 2016-05-10] (The OpenVPN Project)
R3 VPNTunnel; C:\Program Files (x86)\VPNTunnel\vpn.service.exe [12504 2016-06-01] ()
R2 vToolbarUpdater40.3.1; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.3.1\ToolbarUpdater.exe [1323080 2016-05-16] (AVG Secure Search)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WtuSystemSupport; C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe [972872 2016-06-21] ()
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [162592 2016-02-16] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [307456 2016-05-18] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [272304 2016-01-26] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [260352 2016-05-02] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [360736 2016-02-16] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [247040 2016-05-05] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [51968 2016-05-02] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [279296 2016-05-17] (AVG Technologies CZ, s.r.o.)
R0 avguniva; C:\Windows\System32\DRIVERS\avguniva.sys [71936 2016-05-05] (AVG Technologies CZ, s.r.o.)
S3 cpuz138; C:\Users\Bumbleberry\AppData\Local\Temp\cpuz138\cpuz138_x64.sys [27320 2016-06-12] (CPUID)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-07-08 19:07 - 2016-07-08 19:20 - 00010272 _____ C:\Users\Bumbleberry\Desktop\FRST.txt
2016-07-08 19:07 - 2016-07-08 19:20 - 00000000 ____D C:\FRST
2016-07-08 19:05 - 2016-07-08 19:05 - 02390016 _____ (Farbar) C:\Users\Bumbleberry\Desktop\FRST64.exe
2016-07-08 12:39 - 2016-07-08 12:39 - 00239556 _____ C:\Windows\ntbtlog.txt
2016-07-08 11:34 - 2016-07-08 12:41 - 00000002 _____ C:\Users\Bumbleberry\Desktop\ListChkdskResult.txt
2016-07-08 11:34 - 2016-07-08 11:34 - 00197679 _____ C:\Users\Bumbleberry\Desktop\ListChkdskResult.exe
2016-07-06 14:42 - 2016-07-06 14:42 - 00001086 _____ C:\Users\Bumbleberry\Downloads\sysnative post.txt
2016-07-06 13:59 - 2016-07-06 14:00 - 191300503 _____ C:\Users\Bumbleberry\Desktop\CBS.zip
2016-07-06 13:59 - 2016-07-06 13:59 - 00000000 ____D C:\Users\Bumbleberry\Desktop\CBS
2016-07-06 13:09 - 2016-07-06 13:15 - 564744309 _____ C:\Users\Bumbleberry\Downloads\Windows6.1-KB947821-v34-x64.msu
2016-07-06 12:16 - 2016-07-06 12:16 - 00000000 ____D C:\Users\Bumbleberry\Desktop\Folder_New_Context_Ment_Item
2016-07-06 12:15 - 2016-07-06 12:15 - 00012638 _____ C:\Users\Bumbleberry\Desktop\Folder_New_Context_Ment_Item.zip
2016-07-06 05:51 - 2010-11-20 13:40 - 00383786 __RSH C:\bootmgr
2016-07-06 03:45 - 2016-07-06 03:45 - 00000000 ____D C:\99487cb96cdee216f4dc
2016-07-06 03:38 - 2016-07-06 14:48 - 00003830 _____ C:\Users\Bumbleberry\Desktop\SFCFix.txt
2016-07-06 03:38 - 2016-07-06 14:48 - 00000000 ____D C:\SFCFix
2016-07-06 03:25 - 2016-07-06 14:48 - 00000000 ____D C:\Users\Bumbleberry\AppData\Local\niemiro
2016-07-06 03:19 - 2016-07-06 03:19 - 00000000 ____D C:\Users\Bumbleberry\Desktop\SFCFix
2016-07-06 03:18 - 2016-07-06 03:18 - 00480763 _____ C:\Users\Bumbleberry\Desktop\SFCFix.zip
2016-07-06 02:18 - 2016-07-06 02:21 - 00000000 ____D C:\ScratchTmp
2016-07-05 23:25 - 2016-07-06 01:16 - 00001011 _____ C:\Users\Bumbleberry\Desktop\Electrum.lnk
2016-07-05 23:25 - 2016-07-05 23:25 - 00000000 ____D C:\Users\Bumbleberry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Electrum
2016-07-05 23:25 - 2016-07-05 23:25 - 00000000 ____D C:\Program Files (x86)\Electrum
2016-07-05 16:26 - 2016-07-05 16:26 - 00002728 _____ C:\Users\Bumbleberry\Desktop\Windows Compatibility Report.htm
2016-07-05 16:23 - 2016-07-05 16:26 - 00001908 _____ C:\Windows\diagwrn.xml
2016-07-05 16:23 - 2016-07-05 16:26 - 00001908 _____ C:\Windows\diagerr.xml
2016-07-04 23:26 - 2016-07-04 23:29 - 05255212 _____ C:\Users\Bumbleberry\Documents\testmong.wav
2016-07-04 23:03 - 2016-07-04 23:23 - 00000000 ____D C:\Users\Bumbleberry\Desktop\modules.2016.6.5.0
2016-07-04 23:03 - 2016-07-04 22:59 - 05600724 _____ C:\Users\Bumbleberry\Desktop\modules.2016.6.5.0.zip
2016-07-04 22:57 - 2016-07-04 22:59 - 05600724 _____ C:\Users\Bumbleberry\Downloads\modules.2016.6.5.0.zip
2016-07-03 16:51 - 2016-07-03 16:51 - 26408883 _____ C:\Users\Bumbleberry\Downloads\Diva13Win.zip
2016-07-01 22:24 - 2016-07-01 22:24 - 00000000 ____D C:\Users\Bumbleberry\Desktop\Soundmagus.Subtractive.Synthesis.Course.With.U-He.Zebra.v2.5.TUTORiAL-SYNTHiC4TE
2016-07-01 22:12 - 2016-07-01 22:19 - 00000000 ____D C:\Users\Bumbleberry\Desktop\Diva Zebra
2016-06-27 00:49 - 2016-06-27 00:50 - 00000000 ____D C:\Users\Bumbleberry\Desktop\TXT - Copy
2016-06-27 00:20 - 2016-06-27 00:20 - 00000000 ____D C:\Users\Bumbleberry\Desktop\folderfix
2016-06-27 00:18 - 2016-06-27 00:18 - 00007830 _____ C:\Users\Bumbleberry\Documents\hkey classes root, folder backup.reg
2016-06-27 00:18 - 2016-06-27 00:18 - 00001170 _____ C:\Users\Bumbleberry\Desktop\folderfix.zip
2016-06-25 00:54 - 2016-07-08 18:34 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-06-25 00:54 - 2016-06-25 01:34 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-06-20 15:54 - 2016-06-20 15:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent
2016-06-20 15:50 - 2016-06-20 15:51 - 16471946 _____ (The qBittorrent project) C:\Users\Bumbleberry\Downloads\qbittorrent_3.3.5_setup.exe
2016-06-18 17:12 - 2016-06-18 17:12 - 00003416 ____N C:\bootsqm.dat
2016-06-18 17:11 - 2016-06-18 17:11 - 00000000 __SHD C:\found.001
2016-06-16 19:57 - 2016-06-16 19:57 - 00000000 ____D C:\Users\Bumbleberry\Downloads\Robert Rich - what we left behind flac
2016-06-16 13:19 - 2016-06-16 13:42 - 322773839 _____ C:\Users\Bumbleberry\Downloads\SO04400548-robertrich35-flac.zip
2016-06-15 00:47 - 2016-06-15 00:50 - 00000000 ____D C:\Users\Bumbleberry\Downloads\Wilson
2016-06-15 00:47 - 2016-06-15 00:47 - 00000000 ____D C:\Users\Bumbleberry\Downloads\Robert Anton Wilson Explains Everything
2016-06-13 14:35 - 2016-07-06 14:55 - 00000000 ____D C:\Users\Bumbleberry\Desktop\New folder
2016-06-13 13:08 - 2016-06-13 13:08 - 00133191 _____ C:\Users\Bumbleberry\Downloads\midigater-win.zip
2016-06-13 03:23 - 2016-06-13 03:23 - 00000218 _____ C:\Users\Bumbleberry\AppData\Local\recently-used.xbel
2016-06-12 16:32 - 2016-06-12 16:32 - 00000210 _____ C:\Users\Bumbleberry\Desktop\httpsrutracker.org.URL
2016-06-12 12:58 - 2016-06-12 12:58 - 00000930 _____ C:\Users\Public\Desktop\CPUID HWMonitor.lnk
2016-06-12 12:58 - 2016-06-12 12:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2016-06-12 12:58 - 2016-06-12 12:58 - 00000000 ____D C:\Program Files\CPUID
2016-06-12 12:57 - 2016-06-12 12:57 - 01199856 _____ ( ) C:\Users\Bumbleberry\Downloads\hwmonitor_1.28.exe
2016-06-10 16:12 - 2016-06-10 16:15 - 00000000 ____D C:\ProgramData\VPNTunnel
2016-06-10 16:12 - 2016-06-10 16:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VPNTunnel
2016-06-10 16:12 - 2016-06-10 16:12 - 00000000 ____D C:\Program Files (x86)\VPNTunnel
2016-06-10 16:11 - 2016-06-10 16:11 - 04810456 _____ (VPNTunnel ) C:\Users\Bumbleberry\Downloads\vpntunnel-4.3.exe
2016-06-09 13:58 - 2016-06-10 13:43 - 00000000 ____D C:\Users\Bumbleberry\Desktop\Audiochecker_beta_2.0.0.457
2016-06-09 13:58 - 2016-06-09 13:58 - 01004184 _____ C:\Users\Bumbleberry\Desktop\Audiochecker_beta_2.0.0.457.zip
2016-06-09 13:57 - 2016-06-09 13:58 - 00412403 _____ C:\Users\Bumbleberry\Downloads\LosslessAudioChecker(1).zip
2016-06-09 13:53 - 2016-06-09 13:53 - 02125249 _____ C:\Users\Bumbleberry\Downloads\burrrn_package.exe
2016-06-09 13:53 - 2016-06-09 13:53 - 00003184 _____ C:\Windows\System32\Tasks\{ED42E374-8828-4469-9436-444168A61C8C}
2016-06-09 13:53 - 2016-06-09 13:53 - 00000000 ____D C:\Users\Bumbleberry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Burrrn
2016-06-09 13:53 - 2016-06-09 13:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Burrrn
2016-06-09 13:53 - 2016-06-09 13:53 - 00000000 ____D C:\Program Files (x86)\Burrrn
2016-06-09 13:12 - 2016-06-09 13:12 - 00344704 _____ C:\Users\Bumbleberry\Downloads\tau-analyzer-setup.exe
2016-06-09 13:12 - 2016-06-09 13:12 - 00000000 ____D C:\Users\Bumbleberry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\True Audio
2016-06-09 13:12 - 2016-06-09 13:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\True Audio
2016-06-09 13:12 - 2016-06-09 13:12 - 00000000 ____D C:\Program Files (x86)\True Audio
2016-06-09 13:11 - 2016-06-09 13:11 - 00073290 _____ C:\Users\Bumbleberry\Downloads\aucdtect-lastest.zip
2016-06-09 13:06 - 2016-06-09 13:06 - 00412403 _____ C:\Users\Bumbleberry\Downloads\LosslessAudioChecker.zip
2016-06-09 02:25 - 2016-06-09 02:31 - 834351853 _____ C:\Users\Bumbleberry\Downloads\Search... (2016) WAV.zip
2016-06-09 00:57 - 2016-06-09 00:57 - 00000000 ____D C:\Users\Bumbleberry\Downloads\Antonymous - The Ascending Path EP Sonic Loom
2016-06-08 19:45 - 2016-06-08 19:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2016-06-08 19:45 - 2016-06-08 19:45 - 00000000 ____D C:\Program Files\7-Zip
2016-06-08 19:44 - 2016-06-08 19:44 - 01376768 _____ C:\Users\Bumbleberry\Downloads\7z920-x64.msi
2016-06-08 16:40 - 2016-06-08 17:27 - 178818351 _____ C:\Users\Bumbleberry\Downloads\Antonymous - The Ascending Path EP Sonic Loom.rar
2016-06-08 15:51 - 2016-06-09 12:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-07-08 19:19 - 2016-05-16 21:45 - 00000000 ____D C:\Users\Bumbleberry\AppData\Roaming\Everything
2016-07-08 18:44 - 2009-07-14 05:45 - 00017456 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-07-08 18:44 - 2009-07-14 05:45 - 00017456 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-07-08 12:46 - 2009-07-14 06:13 - 00781298 _____ C:\Windows\system32\PerfStringBackup.INI
2016-07-08 12:46 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf
2016-07-08 12:43 - 2016-05-16 18:50 - 00000000 ____D C:\ProgramData\MFAData
2016-07-08 12:42 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-07-08 02:22 - 2016-05-16 21:59 - 00000000 ____D C:\Users\Bumbleberry\AppData\Roaming\vlc
2016-07-07 21:46 - 2016-06-05 20:28 - 00000000 ____D C:\Program Files (x86)\Steam
2016-07-07 16:10 - 2016-05-16 19:00 - 00000000 ____D C:\Users\Bumbleberry\AppData\Roaming\qBittorrent
2016-07-06 14:49 - 2016-06-01 19:49 - 00003722 _____ C:\Users\Bumbleberry\Desktop\New Text Document.txt
2016-07-06 05:51 - 2009-07-14 06:32 - 00028672 _____ C:\Windows\system32\config\BCD-Template
2016-07-04 02:41 - 2016-05-16 22:34 - 00000000 ____D C:\Users\Bumbleberry\AppData\Roaming\Skype
2016-06-30 01:43 - 2016-05-16 18:49 - 00000862 _____ C:\Users\Public\Desktop\AVG.lnk
2016-06-30 01:43 - 2016-05-16 18:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Zen
2016-06-27 00:49 - 2016-05-16 22:11 - 00000000 ____D C:\Users\Bumbleberry\Desktop\INFO
2016-06-25 01:34 - 2016-05-16 15:00 - 00796352 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-06-25 01:34 - 2016-05-16 15:00 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-06-25 00:53 - 2016-05-28 01:14 - 00000000 ____D C:\Users\Bumbleberry\AppData\Local\Adobe
2016-06-21 01:16 - 2016-05-16 21:36 - 00000000 ____D C:\ProgramData\AVG Web TuneUp
2016-06-21 01:16 - 2016-05-16 21:36 - 00000000 ____D C:\Program Files (x86)\AVG Web TuneUp
2016-06-20 15:54 - 2016-05-16 18:59 - 00000000 ____D C:\Program Files (x86)\qBittorrent
2016-06-19 17:57 - 2016-05-16 22:34 - 00002697 _____ C:\Users\Public\Desktop\Skype.lnk
2016-06-19 17:57 - 2016-05-16 22:34 - 00000000 ____D C:\ProgramData\Skype
2016-06-19 17:57 - 2016-05-16 22:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2016-06-18 17:25 - 2016-05-30 21:05 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-06-18 17:15 - 2016-05-16 14:03 - 00001417 _____ C:\Users\Bumbleberry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-06-18 16:52 - 2016-05-16 18:48 - 00000000 ____D C:\Users\Bumbleberry\AppData\Local\Avg
2016-06-17 19:08 - 2016-05-18 15:27 - 00000000 ____D C:\ProgramData\Ableton
2016-06-17 17:57 - 2016-05-18 15:28 - 00000000 ____D C:\Users\Bumbleberry\AppData\Roaming\Ableton
2016-06-14 15:33 - 2016-05-16 18:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2016-06-14 02:13 - 2016-05-18 17:39 - 00000000 ____D C:\Users\Bumbleberry\Desktop\Soundware Copy
2016-06-14 01:31 - 2016-05-16 22:11 - 00000000 ____D C:\Users\Bumbleberry\Desktop\mAX tEGMARK
2016-06-12 00:30 - 2016-05-16 22:02 - 00000000 ____D C:\Users\Bumbleberry\AppData\Roaming\Electrum
2016-06-10 13:43 - 2016-05-16 14:02 - 00000000 ____D C:\Users\Bumbleberry\AppData\Local\VirtualStore
2016-06-09 12:48 - 2016-05-16 21:59 - 00001070 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-06-09 12:41 - 2016-05-16 15:02 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
==================== Files in the root of some directories =======
2016-06-13 03:23 - 2016-06-13 03:23 - 0000218 _____ () C:\Users\Bumbleberry\AppData\Local\recently-used.xbel
2016-05-24 15:07 - 2016-05-24 15:07 - 0007602 _____ () C:\Users\Bumbleberry\AppData\Local\Resmon.ResmonCfg
Some files in TEMP:
====================
C:\Users\Bumbleberry\AppData\Local\Temp\Ableton Swapper.exe
C:\Users\Bumbleberry\AppData\Local\Temp\avguirn_08180539938.exe
C:\Users\Bumbleberry\AppData\Local\Temp\avguirn_08656343788.exe
C:\Users\Bumbleberry\AppData\Local\Temp\playstv_patch.exe
C:\Users\Bumbleberry\AppData\Local\Temp\radeon-crimson-16.3.2-minimalsetup.exe
C:\Users\Bumbleberry\AppData\Local\Temp\raptrpatch.exe
C:\Users\Bumbleberry\AppData\Local\Temp\raptr_stub.exe
C:\Users\Bumbleberry\AppData\Local\Temp\vlc-2.2.4-win32.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-06-17 14:52
==================== End of FRST.txt ============================