DDS (Ver_2012-11-20.01) - NTFS_AMD64 Internet Explorer: 10.0.9200.17088 BrowserJavaVersion: 10.67.2 Run by Steinar at 0:12:47 on 2014-09-15 Microsoft Windows 7 Professional 6.1.7601.1.1252.47.1044.18.8054.3889 [GMT 2:00] . SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . ============== Running Processes =============== . C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k GPSvcGroup C:\Windows\system32\igfxCUIService.exe C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe C:\Windows\system32\taskhost.exe C:\Windows\system32\taskeng.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files (x86)\MSI\NetworkGenie\NetworkGenie.exe C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe C:\Program Files (x86)\Carrier\TRU-Tech\COMServer.exe C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\Foxit Cloud\FCUpdateService.exe C:\Windows\system32\hasplms.exe C:\Program Files\Intel\iCLS Client\HeciServer.exe C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe C:\Program Files\Macrium\Reflect\ReflectService.exe C:\Windows\system32\RAPID\SamsungRapidSvc.exe C:\Windows\system32\svchost.exe -k SDRSVC C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe C:\Windows\system32\svchost.exe -k imgsvc C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe C:\Windows\system32\igfxEM.exe C:\Windows\system32\igfxHK.exe C:\Windows\system32\igfxTray.exe C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe C:\Program Files (x86)\RAPID\CacheFilter\SamsungRapidApp.exe C:\Program Files (x86)\Google\Drive\googledrivesync.exe C:\Users\Steinar\AppData\Local\Akamai\netsession_win.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files (x86)\Xmarks\IE Extension\xmarkssync.exe C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe C:\Corel\Office7\Shared\PFit7\PFPPOP70.EXE C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin C:\Program Files (x86)\Samsung Magician\Samsung Magician.exe C:\Users\Steinar\AppData\Local\Akamai\netsession_win.exe C:\Program Files (x86)\Citrix\ICA Client\concentr.exe C:\Program Files (x86)\Citrix\ICA Client\redirector.exe C:\Program Files (x86)\Citrix\Receiver\Receiver.exe C:\Program Files (x86)\Google\Drive\googledrivesync.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files (x86)\MSI\Fast Boot\FastBoot.exe C:\Program Files (x86)\MSI\Live Update\Live Update.exe C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Program Files (x86)\Citrix\SelfServicePlugin\SelfServicePlugin.exe C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe C:\Windows\system32\SearchIndexer.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Windows\System32\svchost.exe -k LocalServicePeerNet C:\Windows\system32\sppsvc.exe C:\Program Files (x86)\Mozilla Firefox\firefox.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe C:\Windows\System32\svchost.exe -k secsvcs C:\Program Files (x86)\Skype\Phone\Skype.exe C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe C:\Windows\system32\AUDIODG.EXE C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe C:\Windows\system32\svchost.exe -k defragsvc C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\SearchFilterHost.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\System32\cscript.exe . ============== Pseudo HJT Report =============== . uStart Page = hxxp://www.startsiden.no/ uProxyOverride = mWinlogon: Userinit = userinit.exe, BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll BHO: LastPass Vault: {95D9ECF5-2A4D-4550-BE49-70D42F71296E} - C:\Program Files (x86)\LastPass\LPToolbar.dll BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll TB: LastPass Toolbar: {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - C:\Program Files (x86)\LastPass\LPToolbar.dll uRun: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart uRun: [Akamai NetSession Interface] "C:\Users\Steinar\AppData\Local\Akamai\netsession_win.exe" uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun uRun: [Xmarks] C:\Program Files (x86)\Xmarks\IE Extension\xmarkssync.exe -q mRun: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" mRun: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe" mRun: [QuickFinder Scheduler] c:\Corel\Office7\Shared\QFinder7\QFSCHED.EXE mRun: [ConnectionCenter] "C:\Program Files (x86)\Citrix\ICA Client\concentr.exe" /startup mRun: [Redirector] "C:\Program Files (x86)\Citrix\ICA Client\redirector.exe" /startup mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" mRun: [ADSKAppManager] "C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe" -showminimized -checkautorun mRun: [Fast Boot] C:\Program Files (x86)\MSI\Fast Boot\StartFastBoot.exe mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" mRun: [Live Update] C:\Program Files (x86)\MSI\Live Update\Live Update.exe /REMINDER dRun: [Autodesk Sync] C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe StartupFolder: C:\Users\Steinar\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\OPENOF~1.LNK - C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe StartupFolder: C:\Users\Steinar\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\PERFEC~1.LNK - C:\Corel\Office7\Shared\PFit7\PFPPOP70.EXE StartupFolder: C:\Users\Steinar\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\SAMSUN~1.LNK - C:\Program Files (x86)\Samsung Magician\Samsung Magician.exe StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\INSTAL~1.LNK - C:\Program Files (x86)\Common Files\lpuninstall.exe uPolicies-Explorer: NoDriveTypeAutoRun = dword:145 mPolicies-Explorer: NoActiveDesktop = dword:1 mPolicies-Explorer: NoActiveDesktopChanges = dword:1 mPolicies-System: ConsentPromptBehaviorAdmin = dword:0 mPolicies-System: ConsentPromptBehaviorUser = dword:3 mPolicies-System: EnableLUA = dword:0 mPolicies-System: EnableUIADesktopToggle = dword:0 mPolicies-System: PromptOnSecureDesktop = dword:0 IE: E&ksporter til Microsoft Excel - C:\PROGRA~2\MICROS~1\OFFICE11\EXCEL.EXE/3000 IE: LastPass - C:\Users\Steinar\AppData\LocalLow\LastPass\context.html?cmd=lastpass IE: LastPass Fyll felt - C:\Users\Steinar\AppData\LocalLow\LastPass\context.html?cmd=fillforms IE: {43699cd0-e34f-11de-8a39-0800200c9a66} - {95D9ECF5-2A4D-4550-BE49-70D42F71296E} - C:\Program Files (x86)\LastPass\LPToolbar.dll IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} TCP: NameServer = 195.18.176.32 195.18.176.33 TCP: Interfaces\{6489C025-8967-4767-8421-D9829B36CF5D} : DHCPNameServer = 195.18.176.32 195.18.176.33 Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll Filter: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll SSODL: WebCheck - x64-BHO: LastPass Vault: {95D9ECF5-2A4D-4550-BE49-70D42F71296E} - C:\Program Files (x86)\LastPass\LPToolbar_x64.dll x64-TB: LastPass Toolbar: {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - C:\Program Files (x86)\LastPass\LPToolbar_x64.dll x64-Run: [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s x64-Run: [SamsungRapidApp] C:\Program Files (x86)\RAPID\CacheFilter\SamsungRapidApp.exe x64-IE: {43699cd0-e34f-11de-8a39-0800200c9a66} - {95D9ECF5-2A4D-4550-BE49-70D42F71296E} - C:\Program Files (x86)\LastPass\LPToolbar_x64.dll x64-Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - x64-Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - x64-Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - x64-Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - x64-Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - x64-Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - x64-Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - x64-Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - x64-Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - x64-Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - x64-Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - x64-Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - x64-Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - x64-Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - x64-Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - x64-Filter: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - x64-Notify: igfxcui - igfxdev.dll x64-SSODL: WebCheck - . ================= FIREFOX =================== . FF - ProfilePath - C:\Users\Steinar\AppData\Roaming\Mozilla\Firefox\Profiles\g3o0jx93.default\ FF - prefs.js: browser.startup.homepage - hxxp://www.startsiden.no/nettguide/nyheter/ FF - plugin: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll FF - plugin: C:\Program Files (x86)\Citrix\ICA Client\npicaN.dll FF - plugin: C:\Program Files (x86)\Citrix\ICA Client\npURLInterceptorPlugin.dll FF - plugin: C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll FF - plugin: C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll FF - plugin: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npdeployJava1.dll FF - plugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll FF - plugin: C:\Program Files (x86)\LastPass\nplastpass.dll FF - plugin: C:\Program Files (x86)\LastPass\nplastpass64.dll FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrlui.dll FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_206.dll FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll . ============= SERVICES / DRIVERS =============== . R0 iusb3hcs;Driver for Intel(R) USB 3.0 vertskontrollerbryter;C:\Windows\System32\drivers\iusb3hcs.sys [2014-9-6 20464] R0 SamsungRapidDiskFltr;SAMSUNG RAPID Mode Disk Filter Driver;C:\Windows\System32\drivers\SamsungRapidDiskFltr.sys [2014-3-13 240864] R0 SamsungRapidFSFltr;SamsungRapidFSFltr;C:\Windows\System32\drivers\SamsungRapidFSFltr.sys [2013-7-29 111328] R1 ctxusbm;Citrix USB Monitor Driver;C:\Windows\System32\drivers\ctxusbm.sys [2013-9-24 97768] R1 ndisrd;WinpkFilter LightWeight Filter;C:\Windows\System32\drivers\ndisrd.sys [2014-5-19 32360] R2 AdAppMgrSvc;Autodesk Application Manager Service;C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [2014-4-30 581000] R2 aksdf;aksdf;C:\Windows\System32\drivers\aksdf.sys [2014-4-25 78208] R2 Autodesk Content Service;Autodesk Content Service;C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [2014-2-7 31192] R2 COMService;COMService;C:\Program Files (x86)\Carrier\TRU-Tech\COMServer.exe [2013-5-8 24576] R2 FoxitCloudUpdateService;Foxit Cloud Safe Update Service;C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [2014-8-18 242216] R2 hasplms;Sentinel Local License Manager;C:\Windows\System32\hasplms.exe -run --> C:\Windows\System32\hasplms.exe -run [?] R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service;C:\Windows\System32\igfxCUIService.exe [2014-5-21 314696] R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-8-27 747520] R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-2-11 169432] R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2014-9-14 1809720] R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2014-9-14 860472] R2 MSI_FastBoot;MSI_FastBoot;C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe [2014-5-19 103992] R2 MSI_LiveUpdate_Service;MSI_LiveUpdate_Service;C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [2014-9-5 1722320] R2 ReflectService.exe;Macrium Reflect Image Mounting Service;C:\Program Files\Macrium\Reflect\ReflectService.exe [2014-2-19 1142768] R2 SamsungRapidSvc;Samsung RAPID Mode Service;system32\RAPID\SamsungRapidSvc.exe --> system32\RAPID\SamsungRapidSvc.exe [?] R2 TeamViewer9;TeamViewer 9;C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2014-3-23 4915040] R3 IntcDAud;Intel(R) Skjermlyd;C:\Windows\System32\drivers\IntcDAud.sys [2014-4-23 450520] R3 iusb3hub;Driver for Intel(R) USB 3.0 hub;C:\Windows\System32\drivers\iusb3hub.sys [2014-9-6 383472] R3 iusb3xhc;Driver for Intel(R) USB 3.0 utvidbar vertskontroller;C:\Windows\System32\drivers\iusb3xhc.sys [2014-9-6 795120] R3 MBAMProtector;MBAMProtector;C:\Windows\System32\drivers\mbam.sys [2014-9-14 25816] R3 MBAMSwissArmy;MBAMSwissArmy;C:\Windows\System32\drivers\MBAMSwissArmy.sys [2014-9-14 122584] R3 MBAMWebAccessControl;MBAMWebAccessControl;C:\Windows\System32\drivers\mwac.sys [2014-9-14 63704] R3 MBfilt;MBfilt;C:\Windows\System32\drivers\MBfilt64.sys [2014-5-19 32344] R3 NTIOLib_1_0_4;NTIOLib_1_0_4;C:\Program Files (x86)\MSI\Live Update\NTIOLib_X64.sys [2014-9-5 14136] R3 NTIOLib_FastBoot;NTIOLib_FastBoot;C:\Program Files (x86)\MSI\Fast Boot\NTIOLib_X64.sys [2014-5-19 13368] R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2014-4-23 888536] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-9-11 105144] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-9-11 124088] S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192] S3 AcpiCtlDrv;AcpiCtlDrv;C:\Windows\System32\drivers\AcpiCtlDrv.sys [2012-7-17 25880] S3 AIDA64Driver;FinalWire AIDA64 Kernel Driver;C:\Program Files (x86)\FinalWire\AIDA64 Extreme\kerneld.x64 [2014-3-4 34136] S3 ampa;ampa;C:\Windows\System32\ampa.sys [2014-2-19 17008] S3 BthAvrcp;Bluetooth-AVRCP-profil;C:\Windows\System32\drivers\BthAvrcp.sys [2009-8-13 29184] S3 cpudrv64;cpudrv64;C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys [2011-6-2 17864] S3 ddmdrv;ddmdrv;C:\Windows\System32\ddmdrv.sys [2014-3-4 15288] S3 DIRECTIO;DIRECTIO;C:\Program Files\PerformanceTest\DirectIo64.sys [2014-2-28 31160] S3 dmvsc;dmvsc;C:\Windows\System32\drivers\dmvsc.sys [2010-11-21 71168] S3 FlexNet Licensing Service 64;FlexNet Licensing Service 64;C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe [2014-4-17 1357104] S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2014-4-23 171480] S3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT);C:\Windows\System32\drivers\ICCWDT.sys [2013-8-13 27608] S3 INETMON;INETMON;C:\Windows\System32\drivers\INETMON.sys [2014-2-11 25800] S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-8-27 828376] S3 ISCT;Intel(R) Smart Connect Technology Device Driver;C:\Windows\System32\drivers\ISCTD.sys [2014-2-3 44744] S3 NTIOLib_1_0_3;NTIOLib_1_0_3;C:\Program Files (x86)\MSI\Super Charger\NTIOLib_X64.sys [2014-4-23 13368] S3 NTIOLib_1_0_6;NTIOLib_1_0_6;C:\Program Files (x86)\Setup Files\Ms7823v380\NTIOLib_X64.sys [2014-4-16 11888] S3 NTIOLib_MSI_RAID;NTIOLib_MSI_RAID;C:\MSI\Smart Utilities\NTIOLib_X64.sys [2014-5-14 13808] S3 PSMounterEx;Macrium Reflect Image Explorer Driver;C:\Windows\System32\drivers\psmounterex.sys [2013-8-1 76408] S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2014-2-12 19456] S3 StorSvc;Oppbevaringstjeneste;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-14 27136] S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2014-2-12 56832] S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2014-2-12 30208] S4 MSI_SuperCharger;MSI_SuperCharger;C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe [2014-4-23 162800] S4 SuperRAIDSvc;SuperRAIDSvc;C:\MSI\Smart Utilities\SuperRAIDSvc.exe [2014-5-14 27632] . =============== File Associations =============== . FileExt: .scr: AutoCADScriptFile=C:\Windows\System32\notepad.exe "%1" . =============== Created Last 30 ================ . 2014-09-14 21:46:40 122584 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys 2014-09-14 21:46:22 91352 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys 2014-09-14 21:46:22 63704 ----a-w- C:\Windows\System32\drivers\mwac.sys 2014-09-14 21:46:22 25816 ----a-w- C:\Windows\System32\drivers\mbam.sys 2014-09-14 18:16:37 -------- d-----w- C:\ProgramData\Malwarebytes 2014-09-14 18:16:37 -------- d-----w- C:\Program Files (x86)\Malwarebytes Anti-Malware 2014-09-13 15:00:59 -------- d-----w- C:\Users\Steinar\ProcessMonitor 2014-09-13 10:36:00 -------- d-----w- C:\Users\Steinar\ProcessExplorer 2014-09-12 06:46:52 11319192 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{547A24E4-3905-48A1-A8AD-425A7C938A90}\mpengine.dll 2014-09-11 09:54:07 47216 ----a-w- C:\Program Files (x86)\Mozilla Firefox\browser\components\browsercomps.dll 2014-09-11 08:29:59 3959296 ----a-w- C:\Windows\System32\jscript9.dll 2014-09-11 08:25:37 2777088 ----a-w- C:\Windows\System32\msmpeg2vdec.dll 2014-09-11 08:25:37 2285056 ----a-w- C:\Windows\SysWow64\msmpeg2vdec.dll 2014-09-11 07:05:50 793600 ----a-w- C:\Windows\SysWow64\TSWorkspace.dll 2014-09-11 07:05:50 1031168 ----a-w- C:\Windows\System32\TSWorkspace.dll 2014-09-11 07:03:28 2565120 ----a-w- C:\Windows\System32\d3d10warp.dll 2014-09-11 07:03:28 1987584 ----a-w- C:\Windows\SysWow64\d3d10warp.dll 2014-09-11 07:02:32 728064 ----a-w- C:\Windows\System32\kerberos.dll 2014-09-11 07:02:32 550912 ----a-w- C:\Windows\SysWow64\kerberos.dll 2014-09-11 07:02:32 1460736 ----a-w- C:\Windows\System32\lsasrv.dll 2014-09-11 07:02:31 96768 ----a-w- C:\Windows\SysWow64\sspicli.dll 2014-09-11 07:02:31 22016 ----a-w- C:\Windows\SysWow64\secur32.dll 2014-09-11 07:02:02 578048 ----a-w- C:\Windows\System32\aepdu.dll 2014-09-11 07:02:02 424448 ----a-w- C:\Windows\System32\aeinv.dll 2014-09-08 12:35:09 -------- d-----w- C:\Program Files (x86)\SpeedFan 2014-09-05 22:03:32 795120 ----a-w- C:\Windows\System32\drivers\iusb3xhc.sys 2014-09-05 22:03:32 383472 ----a-w- C:\Windows\System32\drivers\iusb3hub.sys 2014-09-05 22:03:32 20464 ----a-w- C:\Windows\System32\drivers\iusb3hcs.sys 2014-09-05 21:45:05 -------- d-----w- C:\uninstall 2014-09-05 18:49:24 -------- d-----w- C:\MSILU 2014-09-04 11:23:35 99480 ----a-w- C:\Windows\SysWow64\infocardapi.dll 2014-09-04 11:23:35 8856 ----a-w- C:\Windows\SysWow64\icardres.dll 2014-09-04 11:23:35 8856 ----a-w- C:\Windows\System32\icardres.dll 2014-09-04 11:23:35 619672 ----a-w- C:\Windows\SysWow64\icardagt.exe 2014-09-04 11:23:35 171160 ----a-w- C:\Windows\System32\infocardapi.dll 2014-09-04 11:23:35 1389208 ----a-w- C:\Windows\System32\icardagt.exe 2014-09-04 11:23:33 35480 ----a-w- C:\Windows\SysWow64\TsWpfWrp.exe 2014-09-04 11:23:33 35480 ----a-w- C:\Windows\System32\TsWpfWrp.exe 2014-09-04 05:50:26 98216 ----a-w- C:\Windows\SysWow64\WindowsAccessBridge-32.dll 2014-09-04 00:06:43 2048 ----a-w- C:\Windows\SysWow64\tzres.dll 2014-09-04 00:06:43 2048 ----a-w- C:\Windows\System32\tzres.dll 2014-09-04 00:06:24 3241984 ----a-w- C:\Windows\System32\msi.dll 2014-09-04 00:06:23 504320 ----a-w- C:\Windows\System32\msihnd.dll 2014-09-04 00:06:23 337408 ----a-w- C:\Windows\SysWow64\msihnd.dll 2014-09-04 00:06:23 2363392 ----a-w- C:\Windows\SysWow64\msi.dll 2014-09-04 00:06:23 1941504 ----a-w- C:\Windows\System32\authui.dll 2014-09-04 00:06:23 1805824 ----a-w- C:\Windows\SysWow64\authui.dll 2014-09-04 00:06:23 112064 ----a-w- C:\Windows\System32\consent.exe 2014-09-04 00:03:56 985536 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys 2014-09-03 23:31:49 3163648 ----a-w- C:\Windows\System32\win32k.sys 2014-09-03 23:31:48 404480 ----a-w- C:\Windows\System32\gdi32.dll 2014-09-03 23:31:48 311808 ----a-w- C:\Windows\SysWow64\gdi32.dll 2014-09-03 23:31:21 664064 ----a-w- C:\Windows\SysWow64\rpcrt4.dll 2014-09-03 23:31:21 1216000 ----a-w- C:\Windows\System32\rpcrt4.dll 2014-09-03 22:52:15 -------- d-----w- C:\ProgramData\Intel Application Pairing 2014-09-03 18:17:53 -------- d-----w- C:\Users\Steinar\Fly-hobby 2014-09-03 18:17:29 -------- d-----w- C:\Users\Steinar\Carrier 2014-09-03 18:14:02 -------- d-----w- C:\Users\Steinar\Intel I3 2014-09-01 11:56:54 -------- d-----w- C:\Users\Steinar\Vector brent 2014-08-30 15:25:45 -------- d-----w- C:\Users\Steinar\Flash test 2014-08-29 00:51:54 -------- d-----w- C:\Program Files (x86)\flac-to-mp3-converter 2014-08-28 20:44:56 -------- d-----w- C:\Program Files\CCleaner 2014-08-28 12:47:48 -------- d-----w- C:\Users\Steinar\AppData\Local\OCCT_-_Ocbase_-_Adrien_Me 2014-08-26 22:54:56 -------- d-----w- C:\Program Files (x86)\NirSoft 2014-08-26 22:05:06 -------- d-----w- C:\Users\Steinar\Bjørg bilder 2014-08-24 16:05:00 -------- d-----w- C:\Users\Steinar\.frostwire5 2014-08-24 08:30:06 0 ---ha-w- C:\Users\Steinar\AppData\Local\BITB7B2.tmp 2014-08-23 20:30:28 -------- d-----w- C:\Users\Steinar\FrostWire 2014-08-23 20:30:09 -------- d-----w- C:\Program Files (x86)\FrostWire 5 . ==================== Find3M ==================== . 2014-09-10 10:07:57 71344 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl 2014-09-10 10:07:57 701104 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe 2014-08-25 04:53:42 270496 ------w- C:\Windows\System32\MpSigStub.exe 2014-08-17 04:00:04 2239488 ----a-w- C:\Windows\System32\wininet.dll 2014-08-17 03:58:48 67072 ----a-w- C:\Windows\System32\iesetup.dll 2014-08-17 03:58:48 136704 ----a-w- C:\Windows\System32\iesysprep.dll 2014-08-17 03:58:18 1508864 ----a-w- C:\Windows\System32\inetcpl.cpl 2014-08-17 03:57:51 1766400 ----a-w- C:\Windows\SysWow64\wininet.dll 2014-08-17 03:57:32 2861568 ----a-w- C:\Windows\SysWow64\jscript9.dll 2014-08-17 03:57:30 61440 ----a-w- C:\Windows\SysWow64\iesetup.dll 2014-08-17 03:57:30 109056 ----a-w- C:\Windows\SysWow64\iesysprep.dll 2014-08-17 03:57:18 1440768 ----a-w- C:\Windows\SysWow64\inetcpl.cpl 2014-08-16 07:25:09 2706432 ----a-w- C:\Windows\System32\mshtml.tlb 2014-08-16 06:43:24 2706432 ----a-w- C:\Windows\SysWow64\mshtml.tlb 2014-08-16 06:34:34 89600 ----a-w- C:\Windows\System32\RegisterIEPKEYs.exe 2014-08-16 05:53:37 71680 ----a-w- C:\Windows\SysWow64\RegisterIEPKEYs.exe 2014-07-25 00:35:46 875688 ----a-w- C:\Windows\SysWow64\msvcr120_clr0400.dll 2014-07-24 21:47:06 869544 ----a-w- C:\Windows\System32\msvcr120_clr0400.dll 2014-06-27 09:30:48 41984 ----a-w- C:\Windows\System32\drivers\USB3Ver.dll 2014-06-18 02:18:30 692736 ----a-w- C:\Windows\System32\osk.exe 2014-06-18 01:51:32 646144 ----a-w- C:\Windows\SysWow64\osk.exe 2014-02-12 19:39:43 13024768 ----a-w- C:\Program Files (x86)\Common Files\lpuninstall.exe . ============= FINISH: 0:13:10,07 ===============