DDS (Ver_2012-11-20.01) - NTFS_x86 Internet Explorer: 10.0.9200.16611 BrowserJavaVersion: 10.25.2 Run by Jens Chr. T. Olesen at 19:58:12 on 2013-07-06 Microsoft Windows 7 Professional 6.1.7601.1.1252.45.1030.18.2937.921 [GMT 2:00] . AV: AVG AntiVirus Free Edition 2013 *Disabled/Outdated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9} SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} SP: AVG AntiVirus Free Edition 2013 *Enabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664} . ============== Running Processes ================ . C:\PROGRA~1\AVG\AVG2013\avgrsx.exe C:\Program Files\AVG\AVG2013\avgcsrvx.exe C:\Windows\system32\wininit.exe C:\Windows\system32\lsm.exe C:\Windows\system32\ibmpmsvc.exe C:\Windows\System32\WUDFHost.exe C:\Windows\system32\WLANExt.exe C:\Windows\system32\conhost.exe C:\Program Files\ThinkVantage Fingerprint Software\upeksvr.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\System32\spoolsv.exe C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe C:\Program Files\LENOVO\HOTKEY\tposdsvc.exe C:\Program Files\Lenovo\Access Connections\AcPrfMgrSvc.exe C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe C:\PROGRA~1\Lenovo\HOTKEY\tpnumlkd.exe C:\PROGRA~1\Lenovo\HOTKEY\tpnumlk.exe C:\Program Files\AVG\AVG2013\avgidsagent.exe C:\Windows\system32\taskhost.exe C:\Program Files\AVG\AVG2013\avgwdsvc.exe C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe C:\Program Files\Intel\WiFi\bin\EvtEng.exe C:\Program Files\Lenovo\Zoom\TpScrex.exe C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe C:\Windows\system32\FsUsbExService.Exe C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe C:\PROGRA~1\LENOVO\VIRTSCRL\virtscrl.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE C:\Program Files\Mobile Broadband Drivers\WMCore\mini_WMCore.exe C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe C:\Program Files\Lenovo\Access Connections\AcSvc.exe C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe C:\Program Files\Lenovo\HOTKEY\tpfnf6r.exe C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe C:\Windows\System32\TpShocks.exe C:\Windows\System32\hkcmd.exe C:\Windows\system32\igfxsrvc.exe C:\Windows\System32\igfxpers.exe C:\Windows\System32\rundll32.exe C:\Program Files\Lenovo\Message Center Plus\MCPLaunch.exe C:\Program Files\Lenovo\Client Security Solution\cssauth.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files\Adobe\Acrobat 7.0\Distillr\acrotray.exe C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe C:\Program Files\Synaptics\SynTP\SynTPLpr.exe C:\Program Files\AVG\AVG2013\avgui.exe C:\Program Files\Windows Live\Messenger\msnmsgr.exe C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe C:\Program Files\Synaptics\SynTP\SynTPHelper.exe C:\Users\Jens Chr. T. Olesen\AppData\Local\Akamai\netsession_win.exe C:\Program Files\AVG\AVG2013\avgnsx.exe C:\Program Files\AVG\AVG2013\avgemcx.exe C:\Windows\system32\wbem\unsecapp.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Users\Jens Chr. T. Olesen\AppData\Local\Akamai\netsession_win.exe C:\Windows\system32\SearchIndexer.exe C:\Windows\system32\igfxext.exe C:\Windows\servicing\TrustedInstaller.exe C:\Program Files\Olympus\DeviceDetector\DevDtct2.exe C:\Program Files\SanDisk\SanDisk Media Manager\SanDiskMediaManager-Launcher.EXE C:\Users\Jens Chr. T. Olesen\AppData\Roaming\Dropbox\bin\Dropbox.exe C:\Program Files\OpenOffice.org 3\program\soffice.exe C:\Program Files\OpenOffice.org 3\program\soffice.bin C:\Program Files\Lenovo\Access Connections\SvcGuiHlpr.exe C:\Users\Jens Chr. T. Olesen\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Jens Chr. T. Olesen\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Jens Chr. T. Olesen\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Jens Chr. T. Olesen\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Jens Chr. T. Olesen\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Jens Chr. T. Olesen\AppData\Local\Google\Chrome\Application\chrome.exe C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Windows\system32\taskeng.exe C:\Program Files\Common Files\Lenovo\Scheduler\tvtsetsched.exe C:\Windows\system32\conhost.exe C:\Windows\system32\taskhost.exe C:\Windows\System32\WUDFHost.exe C:\Users\Jens Chr. T. Olesen\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Jens Chr. T. Olesen\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Jens Chr. T. Olesen\AppData\Local\Google\Chrome\Application\chrome.exe C:\Windows\system32\conhost.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Windows\System32\svchost.exe -k Akamai C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Windows\system32\svchost.exe -k imgsvc C:\Windows\system32\svchost.exe -k bthsvcs C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted . ============== Pseudo HJT Report =============== . uStart Page = hxxp://www.google.dk/ uDefault_Page_URL = hxxp://lenovo.msn.com uProxyOverride = 127.0.0.1:9421; BHO: Adobe PDF Reader Link Helper: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll BHO: {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - BHO: Spybot-S&D IE Protection: {53707962-6F74-2D53-2644-206D7942484F} - c:\program files\spybot - search & destroy\SDHelper.dll BHO: Search Helper: {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - c:\program files\microsoft\search enhancement pack\search helper\SearchHelper.dll BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll BHO: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - c:\program files\windows live\companion\companioncore.dll BHO: Adobe PDF Conversion Toolbar Helper: {AE7CD045-E861-484f-8273-0445EE161910} - c:\program files\adobe\acrobat 7.0\acrobat\AcroIEFavClient.dll BHO: IePasswordManagerHelper Class: {BF468356-BB7E-42D7-9F15-4F3B9BCFCED2} - c:\program files\lenovo\client security solution\tvtpwm_ie_com.dll BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll TB: Adobe PDF: {47833539-D0C5-4125-9FA8-0819E2EAAC93} - c:\program files\adobe\acrobat 7.0\acrobat\AcroIEFavClient.dll TB: Adobe PDF: {47833539-D0C5-4125-9FA8-0819E2EAAC93} - c:\program files\adobe\acrobat 7.0\acrobat\AcroIEFavClient.dll EB: Adobe PDF: {182EC0BE-5110-49C8-A062-BEB1D02A220B} - c:\program files\adobe\acrobat 7.0\acrobat\AcroIEFavClient.dll uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background uRun: [SpybotSD TeaTimer] c:\program files\spybot - search & destroy\TeaTimer.exe uRun: [Akamai NetSession Interface] "c:\users\jens chr. t. olesen\appdata\local\akamai\netsession_win.exe" uRun: [KiesPreload] c:\program files\samsung\kies\Kies.exe /preload uRun: [Google Update] "c:\users\jens chr. t. olesen\appdata\local\google\update\GoogleUpdate.exe" /c uRun: [] c:\program files\samsung\kies\external\firmwareupdate\KiesPDLR.exe mRun: [RtHDVCpl] c:\program files\realtek\audio\hda\RtHDVCpl.exe mRun: [LENOVO.TPFNF6R] c:\program files\lenovo\hotkey\TPFNF6R.exe mRun: [IAAnotif] c:\program files\intel\intel matrix storage manager\iaanotif.exe mRun: [TpShocks] TpShocks.exe mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe mRun: [Persistence] c:\windows\system32\igfxpers.exe mRun: [PWMTRV] rundll32 c:\progra~1\thinkpad\utilit~1\PWMTR32V.DLL,PwrMgrBkGndMonitor mRun: [Message Center Plus] c:\program files\lenovo\message center plus\MCPLaunch.exe /start mRun: [AcWin7Hlpr] c:\program files\lenovo\access connections\AcTBenabler.exe mRun: [cssauth] "c:\program files\lenovo\client security solution\cssauth.exe" silent mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe mRun: [Daemon for Mouse Suite] c:\program files\lenovo\lenovo mouse suite\ICO.EXE 60 mRun: [Acrobat Assistant 7.0] "c:\program files\adobe\acrobat 7.0\distillr\Acrotray.exe" mRun: [avast5] "c:\program files\alwil software\avast5\avastUI.exe" /nogui mRun: [GrooveMonitor] "c:\program files\microsoft office\office12\GrooveMonitor.exe" mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe" mRun: [AVG_UI] "c:\program files\avg\avg2013\avgui.exe" /TRAYONLY StartupFolder: c:\users\jensch~1.ole\appdata\roaming\micros~1\windows\startm~1\programs\startup\adobeg~1.lnk - c:\program files\common files\adobe\calibration\Adobe Gamma Loader.exe StartupFolder: c:\users\jensch~1.ole\appdata\roaming\micros~1\windows\startm~1\programs\startup\dropbox.lnk - c:\users\jens chr. t. olesen\appdata\roaming\dropbox\bin\Dropbox.exe StartupFolder: c:\users\jensch~1.ole\appdata\roaming\micros~1\windows\startm~1\programs\startup\openof~1.lnk - c:\program files\openoffice.org 3\program\quickstart.exe StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\adobea~1.lnk - c:\windows\installer\{ac76ba86-1033-0000-7760-000000000002}\SC_Acrobat.exe StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\blueto~1.lnk - c:\program files\thinkpad\bluetooth software\BTTray.exe StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\device~1.lnk - c:\program files\olympus\devicedetector\DevDtct2.exe StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\SANDIS~1.LNK - uPolicies-Explorer: NoDriveTypeAutoRun = dword:145 mPolicies-System: ConsentPromptBehaviorAdmin = dword:0 mPolicies-System: ConsentPromptBehaviorUser = dword:3 mPolicies-System: EnableLUA = dword:0 mPolicies-System: EnableUIADesktopToggle = dword:0 mPolicies-System: PromptOnSecureDesktop = dword:0 IE: Convert link target to Adobe PDF - c:\program files\adobe\acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html IE: Convert link target to existing PDF - c:\program files\adobe\acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html IE: Convert selected links to Adobe PDF - c:\program files\adobe\acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html IE: Convert selected links to existing PDF - c:\program files\adobe\acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html IE: Convert selection to Adobe PDF - c:\program files\adobe\acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html IE: Convert selection to existing PDF - c:\program files\adobe\acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html IE: Convert to Adobe PDF - c:\program files\adobe\acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html IE: Convert to existing PDF - c:\program files\adobe\acrobat 7.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000 IE: Send billede til &Bluetooth-enhed... - c:\program files\thinkpad\bluetooth software\btsendto_ie_ctx.htm IE: Send siden til &Bluetooth-enhed... - c:\program files\thinkpad\bluetooth software\btsendto_ie.htm IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - c:\program files\windows live\companion\companioncore.dll IE: {15105F6B-80FF-40d3-B239-AEC9E0E93ACD} - c:\program files\pokerstars.dk\PokerStarsUpdate.exe IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office12\ONBttnIE.dll IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\program files\thinkpad\bluetooth software\btsendto_ie.htm IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\program files\spybot - search & destroy\SDHelper.dll IE: {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - {F4F55DC8-0B69-4DFE-BA94-CB677B88B2A3} - c:\program files\lenovo\client security solution\tvtpwm_ie_com.dll . INFO: HKCU has more than 50 listed domains. If you wish to scan all of them, select the 'Force scan all domains' option. . . INFO: HKLM has more than 50 listed domains. If you wish to scan all of them, select the 'Force scan all domains' option. . DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab DPF: {816BE035-1450-40D0-8A3B-BA7825A83A77} - hxxp://support.lenovo.com/Resources/Lenovo/AutoDetect/Lenovo_AutoDetect2.cab TCP: NameServer = 212.10.10.4 212.10.10.5 TCP: Interfaces\{78AECDF8-BEFC-43A6-B464-E4BD9659D3C3} : DHCPNameServer = 212.10.10.4 212.10.10.5 TCP: Interfaces\{78AECDF8-BEFC-43A6-B464-E4BD9659D3C3}\2656C6B696E6534376 : DHCPNameServer = 192.168.2.1 62.61.130.1 62.61.131.1 TCP: Interfaces\{78AECDF8-BEFC-43A6-B464-E4BD9659D3C3}\35D434 : DHCPNameServer = 192.168.1.1 TCP: Interfaces\{78AECDF8-BEFC-43A6-B464-E4BD9659D3C3}\A5978554C4 : DHCPNameServer = 212.242.40.3 212.242.40.51 Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - c:\program files\windows live\photo gallery\AlbumDownloadProtocolHandler.dll Notify: igfxcui - igfxdev.dll Notify: psfus - c:\program files\thinkvantage fingerprint software\psqlpwd.dll SSODL: WebCheck - SEH: Eudora's Shell Extension - {EDB0E980-90BD-11D4-8599-0008C7D3B6F8} - SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll LSA: Notification Packages = scecli ACGina c:\program files\thinkvantage fingerprint software\psqlpwd.dll Hosts: 127.0.0.1 www.spywareinfo.com . ================= FIREFOX =================== . FF - ProfilePath - c:\users\jens chr. t. olesen\appdata\roaming\mozilla\firefox\profiles\6f030jpc.default\ FF - plugin: c:\program files\adobe\reader 11.0\reader\air\nppdf32.dll FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll FF - plugin: c:\program files\microsoft silverlight\5.1.20125.0\npctrlui.dll FF - plugin: c:\program files\tvuplayer\npTVUAx.dll FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll FF - plugin: c:\users\jens chr. t. olesen\appdata\local\google\update\1.3.21.145\npGoogleUpdate3.dll FF - plugin: c:\users\jens chr. t. olesen\appdata\roaming\facebook\npfbplugin_1_0_3.dll FF - plugin: c:\users\jens chr. t. olesen\appdata\roaming\mozilla\firefox\profiles\6f030jpc.default\extensions\{1bc9ba34-1eed-42ca-a505-6d2f1a935bbb}\plugins\npietab2.dll FF - plugin: c:\users\jens chr. t. olesen\appdata\roaming\mozilla\firefox\profiles\6f030jpc.default\extensions\{1bc9ba34-1eed-42ca-a505-6d2f1a935bbb}\plugins\npietab2_x64.dll FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_7_700_224.dll FF - plugin: c:\windows\system32\npDeployJava1.dll FF - plugin: c:\windows\system32\npmproxy.dll . ============= SERVICES / DRIVERS =============== . R0 AVGIDSHX;AVGIDSHX;c:\windows\system32\drivers\avgidshx.sys [2013-2-8 60216] R0 Avglogx;AVG Logging Driver;c:\windows\system32\drivers\avglogx.sys [2013-2-8 245048] R0 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\drivers\avgmfx86.sys [2013-2-8 96568] R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [2013-2-8 39224] R0 TPDIGIMN;TPDIGIMN;c:\windows\system32\drivers\ApsHM86.sys [2009-6-29 20520] R1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\avgidsdriverx.sys [2013-3-29 208184] R1 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\avgidsshimx.sys [2013-3-1 22328] R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [2013-2-8 170808] R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [2013-3-21 182072] R1 lenovo.smi;Lenovo System Interface Driver;c:\windows\system32\drivers\smiif32.sys [2012-8-9 13680] R2 Akamai;Akamai NetSession Interface;c:\windows\system32\svchost.exe -k Akamai [2009-7-14 20992] R2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® + High Speed Service;c:\program files\intel\bluetoothhs\BTHSAmpPalService.exe [2012-7-18 509456] R2 AVGIDSAgent;AVGIDSAgent;c:\program files\avg\avg2013\avgidsagent.exe [2013-5-14 4937264] R2 avgwd;AVG WatchDog;c:\program files\avg\avg2013\avgwdsvc.exe [2013-4-18 283136] R2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service;c:\program files\intel\bluetoothhs\BTHSSecurityMgr.exe [2012-8-23 104240] R2 FsUsbExService;FsUsbExService;c:\windows\system32\FsUsbExService.Exe [2013-5-11 233472] R2 IAANTMON;Intel(R) Matrix Storage Event Monitor;c:\program files\intel\intel matrix storage manager\IAANTmon.exe [2010-2-26 354840] R2 LENOVO.MICMUTE;Lenovo Microphone Mute;c:\program files\lenovo\hotkey\micmute.exe [2012-8-9 101736] R2 Lenovo.VIRTSCRLSVC;Lenovo Auto Scroll;c:\program files\lenovo\virtscrl\lvvsst.exe [2012-8-9 127336] R2 regi;regi;c:\windows\system32\drivers\regi.sys [2007-4-18 11032] R2 SBSDWSCService;SBSD Security Center Service;c:\program files\spybot - search & destroy\SDWinSec.exe [2010-6-17 1153368] R2 smihlp;SMI Helper Driver (smihlp);c:\program files\thinkvantage fingerprint software\smihlp.sys [2011-5-30 11976] R2 TPHKLOAD;Lenovo Hotkey Client Loader;c:\program files\lenovo\hotkey\tphkload.exe [2012-8-9 131432] R2 TPHKSVC;Vis på skærm;c:\program files\lenovo\hotkey\TPHKSVC.exe [2012-8-9 142696] R3 5U877;USB Video Device;c:\windows\system32\drivers\5U877.sys [2010-2-26 125568] R3 AMPPAL;Intel® Centrino® Wireless Bluetooth® + virtuel højhastighedsadapter;c:\windows\system32\drivers\AmpPal.sys [2012-7-18 143360] R3 btusbflt;Bluetooth USB Filter;c:\windows\system32\drivers\btusbflt.sys [2013-6-20 45736] R3 e36gbus;F3607gw Mobile Broadband Device driver (Win7);c:\windows\system32\drivers\e36gbus.sys [2010-2-26 285056] R3 e36gmdfl;F3607gw Mobile Broadband Data Modem Filter (Win7);c:\windows\system32\drivers\e36gmdfl.sys [2010-2-26 14848] R3 e36gmdm;F3607gw Mobile Broadband Data Modem Driver (Win7);c:\windows\system32\drivers\e36gmdm.sys [2010-2-26 374272] R3 e36gmgmt;F3607gw Mobile Broadband Device Management Drivers (Win7);c:\windows\system32\drivers\e36gmgmt.sys [2010-2-26 357376] R3 e36wgps;Mobile Broadband GPS Port;c:\windows\system32\drivers\e36wgps.sys [2010-2-26 82984] R3 ecnssndis;Service for enabling selective suspend to NDIS device;c:\windows\system32\drivers\wwanuss.sys [2010-2-26 10240] R3 ecnssndisfltr;SSNDIS filter service;c:\windows\system32\drivers\wwanussf.sys [2010-2-26 14848] R3 FsUsbExDisk;FsUsbExDisk;c:\windows\system32\FsUsbExDisk.Sys [2013-5-11 37344] R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI;c:\windows\system32\drivers\IntcHdmi.sys [2009-9-10 122880] R3 JMCR;JMCR;c:\windows\system32\drivers\jmcr.sys [2011-9-23 140376] R3 NETwNs32;___ Intel(R) Wireless WiFi Link 5000-serien adapter driver til Windows 7 32 Bit ;c:\windows\system32\drivers\Netwsn00.sys [2012-9-30 10383360] R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2010-6-23 275048] R3 WwanUsbServ;Ericsson WWAN Wireless Module Device Driver;c:\windows\system32\drivers\WwanUsbMp.sys [2010-2-26 216616] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384] S3 AMPPALP;Intel® Centrino® Wireless Bluetooth® + højhastighedsprotokol;c:\windows\system32\drivers\AmpPal.sys [2012-7-18 143360] S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888] S3 cpudrv;cpudrv;c:\program files\systemrequirementslab\cpudrv.sys [2011-6-2 11336] S3 fssfltr;fssfltr;c:\windows\system32\drivers\fssfltr.sys [2012-6-5 39272] S3 fsssvc;Windows Live Family Safety Service;c:\program files\windows live\family safety\fsssvc.exe [2012-3-8 1492840] S3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\drivers\ggflt.sys [2010-11-29 13224] S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;c:\program files\intel\wifi\bin\PanDhcpDns.exe [2012-8-23 242480] S3 NETw5s32;Intel(R) Wireless WiFi Link 5000-serien adapter driver til Windows 7 32 Bit ;c:\windows\system32\drivers\NETw5s32.sys [2010-5-31 6766080] S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit;c:\windows\system32\drivers\netw5v32.sys [2009-6-10 4231168] S3 PCDSRVC{3037D694-FD904ACA-06000000}_0;PCDSRVC{3037D694-FD904ACA-06000000}_0 - PCDR Kernel Mode Service Helper Driver;c:\program files\pc-doctor\pcdsrvc.pkms [2009-8-18 20848] S3 PCDSRVC{C4B36920-79E24793-06000000}_0;PCDSRVC{C4B36920-79E24793-06000000}_0 - PCDR Kernel Mode Service Helper Driver;c:\progra~1\pc-doc~1\pcdsrvc.pkms [2009-8-18 20848] S3 Power Manager DBC Service;Power Manager DBC Service;c:\program files\thinkpad\utilities\PWMDBSVC.exe [2010-2-26 75112] S3 s0016bus;Sony Ericsson Device 0016 driver (WDM);c:\windows\system32\drivers\s0016bus.sys [2008-5-16 89256] S3 s0016mdfl;Sony Ericsson Device 0016 USB WMC Modem Filter;c:\windows\system32\drivers\s0016mdfl.sys [2008-5-16 15016] S3 s0016mdm;Sony Ericsson Device 0016 USB WMC Modem Driver;c:\windows\system32\drivers\s0016mdm.sys [2008-5-16 120744] S3 s0016mgmt;Sony Ericsson Device 0016 USB WMC Device Management Drivers (WDM);c:\windows\system32\drivers\s0016mgmt.sys [2008-5-16 114216] S3 s0016nd5;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (NDIS);c:\windows\system32\drivers\s0016nd5.sys [2008-5-16 25512] S3 s0016obex;Sony Ericsson Device 0016 USB WMC OBEX Interface;c:\windows\system32\drivers\s0016obex.sys [2008-5-16 110632] S3 s0016unic;Sony Ericsson Device 0016 USB Ethernet Emulation SEMC0016 (WDM);c:\windows\system32\drivers\s0016unic.sys [2008-5-16 115752] S3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\drivers\VSTAZL3.SYS [2009-7-14 207360] S3 SrvHsfV92;SrvHsfV92;c:\windows\system32\drivers\VSTDPV3.SYS [2009-7-14 980992] S3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\drivers\VSTCNXT3.SYS [2009-7-14 661504] S3 StorSvc;Lagertjeneste;c:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-14 20992] S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2011-7-2 52224] S3 WatAdminSvc;Tjenesten Windows Aktivering;c:\windows\system32\wat\WatAdminSvc.exe [2010-5-30 1343400] . =============== Created Last 30 ================ . 2013-07-06 10:05:25 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{CF7DEC3D-C695-4A56-9A2B-071472C39512} 2013-07-06 00:11:52 -------- d-sh--w- C:\found.000 2013-07-05 11:02:23 -------- d-----w- c:\program files\ESET 2013-07-05 10:22:30 4249600 ----a-w- c:\program files\GUT5B79.tmp 2013-07-05 10:22:30 -------- d-----w- c:\program files\GUM5B78.tmp 2013-07-05 10:04:34 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{B7004FB5-67E6-4A30-9457-902F8FEDC5D1} 2013-07-04 11:53:53 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{CD0E0016-F0F0-4A52-B55A-44D6ED52A9E1} 2013-07-03 23:53:24 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{C8B3E881-12E0-4256-AC35-20B6FF301AD6} 2013-07-03 23:28:42 -------- d-----w- c:\users\jens chr. t. olesen\appdata\roaming\QuickScan 2013-07-03 11:52:55 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{9B6C7FE3-3806-4682-B92F-CE78A5E7E593} 2013-07-02 23:00:20 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{3EB57FDC-7EFE-4ADC-B512-F60CC5F89030} 2013-07-02 10:59:50 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{D00835FD-086B-4F53-8CC9-E35C34829E4F} 2013-07-01 22:59:23 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{362BA82E-54C5-431D-92F7-71803669E2AD} 2013-07-01 10:58:46 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{A4D99DB9-EB78-42B1-979E-339F4DBE23A5} 2013-07-01 10:29:05 -------- d-----w- c:\users\jens chr. t. olesen\appdata\roaming\AVG2013 2013-07-01 10:25:37 -------- d--h--w- C:\$AVG 2013-07-01 10:25:37 -------- d-----w- c:\programdata\AVG2013 2013-07-01 10:05:05 -------- d-----w- c:\program files\AVG 2013-07-01 08:19:04 56200 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{86b64259-d6df-4016-bcf5-6f631a33aeab}\offreg.dll 2013-07-01 00:20:31 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\MFAData 2013-07-01 00:20:31 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\Avg2013 2013-07-01 00:20:31 -------- d-----w- c:\programdata\MFAData 2013-06-30 22:58:04 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{07509151-A339-4A17-BB1F-C744173509F1} 2013-06-30 10:57:37 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{08EFD746-5264-4712-9C27-6DAC66B117E0} 2013-06-29 22:43:27 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{43E67CFC-CCE1-42D2-A67E-BD91D7C7AB40} 2013-06-29 10:42:58 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{C971458C-5090-472F-AF37-DC06661943B5} 2013-06-28 22:42:30 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{4B659617-B632-418B-9C84-2C9DBCEA0449} 2013-06-28 10:42:01 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{D2521814-367A-4215-9138-382B04EB6ECB} 2013-06-27 22:41:34 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{674BE6C4-D826-4D00-86A7-770466CD1463} 2013-06-27 10:41:07 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{FB1935B0-0471-4124-AB38-167652A9042E} 2013-06-26 20:55:03 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{206AD7B6-3DDE-44E8-8440-09A25767B006} 2013-06-26 08:54:35 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{E7572CFA-2663-4B8E-9C25-61EC6BF6F84C} 2013-06-25 20:34:57 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{5A7710CA-7736-4D12-9A46-93BF4811CDC7} 2013-06-25 08:34:28 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{7B2B72D6-4B04-484B-80BE-17B6EE0D8537} 2013-06-24 20:24:30 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{54719F60-9AB3-416F-A190-1BEEE273BA0C} 2013-06-24 08:24:03 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{EFF1596E-2172-4C9E-9D2C-123F1D6C882C} 2013-06-23 08:23:24 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{7203EC98-7D04-4F4C-8AFE-409B72C1788A} 2013-06-22 13:43:46 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{F01BBA51-346A-445E-8D2E-28232E89F16C} 2013-06-22 13:10:59 94632 ----a-w- c:\windows\system32\WindowsAccessBridge.dll 2013-06-22 12:22:18 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{656B808F-DC25-4F04-8275-D32CA68FFB02} 2013-06-21 21:48:04 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{B6079374-FE4C-42CB-A71F-40AA9624EA10} 2013-06-21 09:47:36 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{08D0520A-D71B-4B4C-B303-BCAADBBDB612} 2013-06-20 21:40:57 45736 ----a-w- c:\windows\system32\drivers\btusbflt.sys 2013-06-20 21:19:50 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{E0329EC7-B90F-44A5-87C2-C5FE1B67BF9F} 2013-06-20 15:08:44 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{1806BC33-7EE4-4C4B-AF88-061C00CEE7C4} 2013-06-20 10:19:58 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{90906F01-D83B-42FA-8A20-7881DAA4BD89} 2013-06-19 21:36:05 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{E1AAAA05-8342-475F-AC5A-221388CB58FF} 2013-06-19 09:35:37 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{6645ABFA-B99A-4290-AD76-D9B49EF18D3A} 2013-06-18 19:11:32 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{45864A09-44A5-4239-A1FC-E2850F71B145} 2013-06-18 07:10:54 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{53D04BDC-6924-4F97-B641-5AA0F40CE254} 2013-06-17 17:51:41 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{9328D1CC-45E5-4C0E-82EF-705D16DC0AC0} 2013-06-17 05:51:13 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{9C86A8ED-C4FB-490E-9FA8-B815795CB75A} 2013-06-16 08:28:48 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{2E73DCD1-7C8C-4C0F-8A78-E3DDD19CA92A} 2013-06-15 09:27:10 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{B3D9E102-CEA2-490B-A110-8277EAA86947} 2013-06-14 12:09:48 -------- d-----w- c:\program files\common files\SPBA 2013-06-14 11:53:07 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{06D09C5A-417B-49E0-8CD5-E9093AA696F8} 2013-06-13 11:30:29 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{2BC73E6F-EE78-42E3-9FDC-991533E02CEF} 2013-06-12 22:26:27 2706432 ----a-w- c:\windows\system32\mshtml.tlb 2013-06-12 22:26:27 218112 ----a-w- c:\program files\internet explorer\sqmapi.dll 2013-06-12 09:32:45 492544 ----a-w- c:\windows\system32\win32spl.dll 2013-06-12 09:32:36 24576 ----a-w- c:\windows\system32\cryptdlg.dll 2013-06-12 09:32:34 1505280 ----a-w- c:\windows\system32\d3d11.dll 2013-06-12 09:32:29 903168 ----a-w- c:\windows\system32\certutil.exe 2013-06-12 09:32:28 43008 ----a-w- c:\windows\system32\certenc.dll 2013-06-12 09:32:28 140288 ----a-w- c:\windows\system32\cryptsvc.dll 2013-06-12 09:32:28 1160192 ----a-w- c:\windows\system32\crypt32.dll 2013-06-12 09:32:28 103936 ----a-w- c:\windows\system32\cryptnet.dll 2013-06-12 09:32:25 1230336 ----a-w- c:\windows\system32\WindowsCodecs.dll 2013-06-12 09:32:24 3968872 ----a-w- c:\windows\system32\ntkrnlpa.exe 2013-06-12 09:32:24 3913576 ----a-w- c:\windows\system32\ntoskrnl.exe 2013-06-12 09:32:22 1293672 ----a-w- c:\windows\system32\drivers\tcpip.sys 2013-06-11 11:04:23 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{90A0CF87-B7A7-45C1-95CC-B14577835C98} 2013-06-10 21:01:52 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{4B2366A6-BE2F-4545-AB2C-D1343EAAC286} 2013-06-10 08:52:00 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{0F85EE0E-73CB-4063-AFD7-26CE72DFCADF} 2013-06-09 18:37:53 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{E06B01D0-2F85-4434-91EB-E6B707006828} 2013-06-09 06:37:25 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{911530DF-AF16-4044-8C2C-E160F1754176} 2013-06-08 08:27:46 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{1595ECD2-3F99-48A8-AF47-E4628067CF5F} 2013-06-07 10:50:11 -------- d-----w- c:\users\jens chr. t. olesen\appdata\local\{DC7CE709-1865-459D-97B3-3D89A7F44755} . ==================== Find3M ==================== . 2013-06-22 13:10:54 867240 ----a-w- c:\windows\system32\npDeployJava1.dll 2013-06-22 13:10:54 789416 ----a-w- c:\windows\system32\deployJava1.dll 2013-06-11 23:17:20 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2013-06-11 23:17:20 692104 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2013-05-17 01:25:57 1767936 ----a-w- c:\windows\system32\wininet.dll 2013-05-17 01:25:27 2877440 ----a-w- c:\windows\system32\jscript9.dll 2013-05-17 01:25:26 61440 ----a-w- c:\windows\system32\iesetup.dll 2013-05-17 01:25:26 109056 ----a-w- c:\windows\system32\iesysprep.dll 2013-05-14 08:40:13 71680 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe 2013-04-18 10:09:20 37344 ----a-w- c:\windows\system32\FsUsbExDisk.Sys 2013-04-18 10:09:20 233472 ----a-w- c:\windows\system32\FsUsbExService.Exe 2013-04-13 04:45:16 474624 ----a-w- c:\windows\apppatch\AcSpecfc.dll 2013-04-13 04:45:15 2176512 ----a-w- c:\windows\apppatch\AcGenral.dll 2013-04-12 13:45:29 1211752 ----a-w- c:\windows\system32\drivers\ntfs.sys 2013-04-10 05:18:40 728424 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys 2013-04-10 05:18:40 218984 ----a-w- c:\windows\system32\drivers\dxgmms1.sys 2013-04-10 03:14:06 2347520 ----a-w- c:\windows\system32\win32k.sys . ============= FINISH: 20:00:51,17 ===============