I've tried everything I know on this virus and it keeps reinstalling itself onto my computer. It hides under the name 'Privoxy'. Privoxy is a proxy program but I don't believe it is supposed to come with viruses. The symptoms are ads being displayed on Chrome, when with adblock installed, and all my browsers using a proxy. If tried running Malwarebytes, adwcleaner, Hitman Pro and Avast. I remove the program about once a week, every time it appears. If you could help I would be very thankful.
Spoiler
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:29-11-2015
Ran by Svend (administrator) on SVENDPC (30-11-2015 14:36:22)
Running from C:\Users\Svend\Desktop
Loaded Profiles: Svend & (Available Profiles: Svend)
Platform: Windows 10 Home (X64) Language: Dansk (Danmark)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe
(Lenovo) C:\Program Files (x86)\Lenovo\Lenovo Smart Voice\LsvUIService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
() C:\Program Files\Prio\prio_svc.exe
() C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
(Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
() C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Realtek semiconductor) C:\Windows\RTFTrack.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
() C:\Program Files\CONEXANT\ForteConfig\fmapp.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\utility.exe
(Spotify Ltd) C:\Users\Svend\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Flux Software LLC) C:\Users\Svend\AppData\Local\FluxSoftware\Flux\flux.exe
() C:\Program Files\Rainmeter\Rainmeter.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\csisyncclient.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(Microsoft Corporation) C:\Windows\System32\wimserv.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(DT Soft Ltd) C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6416.42001.0_x64__8wekyb3d8bbwe\HxMail.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6416.42001.0_x64__8wekyb3d8bbwe\HxTsr.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1120.13270.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Bethesda Softworks) C:\Games\Fallout 4\Fallout4.exe
() C:\Users\Svend\AppData\Local\Temp\hp_upd2_1270.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtsFT] => C:\windows\RTFTrack.exe [5060864 2015-06-16] (Realtek semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation)
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [919768 2014-11-20] (Conexant Systems, Inc.)
HKLM\...\Run: [ForteConfig] => C:\Program Files\Conexant\ForteConfig\fmapp.exe [49056 2010-10-26] ()
HKLM\...\Run: [OnekeyStudio] => C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe [4196432 2012-09-14] (Lenovo)
HKLM\...\Run: [Energy Manager] => C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [15813616 2014-06-13] (Lenovo(beijing) Limited)
HKLM\...\Run: [Lenovo Utility] => C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [80880 2014-06-13] (Lenovo(beijing) Limited)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2655520 2015-10-12] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 2014-04-10] (Conexant Systems, Inc.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3945672 2015-09-08] (Synaptics Incorporated)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-09-23] (Apple Inc.)
HKLM-x32\...\Run: [UpdateP2GShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [214312 2011-12-07] (CyberLink Corp.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [7004376 2015-11-25] (AVAST Software)
HKLM-x32\...\Run: [MX1200Mouse] => C:\Program Files (x86)\MX-1200 Driver\MX1200DriverST.exe [395264 2014-03-11] ()
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [593216 2015-08-11] (Razer Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation)
Winlogon\Notify\igfxcui: igfxdev.dll [X]
HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\Run: [Spotify Web Helper] => C:\Users\Svend\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2344768 2015-11-19] (Spotify Ltd)
HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\Run: [f.lux] => C:\Users\Svend\AppData\Local\FluxSoftware\Flux\flux.exe [1017224 2013-10-23] (Flux Software LLC)
HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7451928 2015-03-13] (Piriform Ltd)
HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\Run: [Lync] => C:\Program Files\Microsoft Office 15\root\office15\lync.exe [24055464 2015-10-20] (Microsoft Corporation)
HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\RunOnce: [Uninstall C:\Users\Svend\AppData\Local\Microsoft\OneDrive\17.3.5951.0827_2\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Svend\AppData\Local\Microsoft\OneDrive\17.3.5951.0827_2\amd64"
HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\MountPoints2: {ed31b1cf-64f5-11e4-8263-90489aad64a0} - "F:\CD_Start.exe"
HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\MountPoints2: {ed31b209-64f5-11e4-8263-90489aad64a0} - "G:\setup.exe"
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Spotify Web Helper] => C:\Users\Svend\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2344768 2015-11-19] (Spotify Ltd)
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [f.lux] => C:\Users\Svend\AppData\Local\FluxSoftware\Flux\flux.exe [1017224 2013-10-23] (Flux Software LLC)
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7451928 2015-03-13] (Piriform Ltd)
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Lync] => C:\Program Files\Microsoft Office 15\root\office15\lync.exe [24055464 2015-10-20] (Microsoft Corporation)
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\RunOnce: [Uninstall C:\Users\Svend\AppData\Local\Microsoft\OneDrive\17.3.5951.0827_2\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Svend\AppData\Local\Microsoft\OneDrive\17.3.5951.0827_2\amd64"
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {ed31b1cf-64f5-11e4-8263-90489aad64a0} - "F:\CD_Start.exe"
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {ed31b209-64f5-11e4-8263-90489aad64a0} - "G:\setup.exe"
AppInit_DLLs: prio.dll => C:\Program Files\Prio\prio.dll [17264 2012-11-08] (O&K Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-11-25] (AVAST Software)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-10-13] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-10-13] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-10-13] (Microsoft Corporation)
Startup: C:\Users\Svend\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk [2014-11-06]
ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe ()
Startup: C:\Users\Svend\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send til OneNote.lnk [2015-06-01]
ShortcutTarget: Send til OneNote.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
ProxyServer: [S-1-5-21-3882994020-747025732-738583552-1002] => 127.0.0.1:8118
ProxyServer: [S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0] => 127.0.0.1:8118
Tcpip\Parameters: [DhcpNameServer] 194.150.115.120 91.144.255.19
Tcpip\..\Interfaces\{4f5d0706-2260-42f1-9e1a-77f48908b76c}: [DhcpNameServer] 194.150.115.120 91.144.255.19
Tcpip\..\Interfaces\{502a1616-3b35-479f-8c55-68290bb34afa}: [DhcpNameServer] 150.206.1.3
Internet Explorer:
==================
HKU\S-1-5-21-3882994020-747025732-738583552-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13.msn.com/?pc=LCJB
HKU\S-1-5-21-3882994020-747025732-738583552-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13.msn.com/?pc=LCJB
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com
SearchScopes: HKLM-x32 -> DefaultScope {20B9D1AE-AD1A-38B4-87FE-AF278DA9861D} URL =
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3882994020-747025732-738583552-1002 -> {73B9789D-D75F-4068-9392-D9DD0B4AB279} URL =
SearchScopes: HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {73B9789D-D75F-4068-9392-D9DD0B4AB279} URL =
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-10-13] (Microsoft Corporation)
BHO: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2015-07-16] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-11-25] (AVAST Software)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-10-13] (Microsoft Corporation)
BHO: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-16] (Oracle Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2015-10-13] (Microsoft Corporation)
BHO-x32: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-07-16] (Oracle Corporation)
BHO-x32: ArcPluginIEBHO Class -> {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} -> C:\Program Files (x86)\Perfect World Entertainment\Arc\Plugins\ArcPluginIE.dll [2014-12-18] (Perfect World Entertainment Inc)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-11-25] (AVAST Software)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-10-13] (Microsoft Corporation)
BHO-x32: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-16] (Oracle Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - No File
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - No File
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-09-16] (Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - No File
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - No File
FireFox:
========
FF ProfilePath: C:\Users\Svend\AppData\Roaming\Mozilla\Firefox\Profiles\1thkg9a3.default
FF DefaultSearchEngine: Google (avast)
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_19_0_0_245.dll [2015-11-10] ()
FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-07-16] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-07-16] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-10] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1220162.dll [2015-08-31] (Adobe Systems, Inc.)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-16] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-16] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-07-16] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-07-16] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-09-16] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-09-16] (Microsoft Corporation)
FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin -> C:\Program Files (x86)\Perfect World Entertainment\Arc\Plugins\npArcPluginFF.dll [2014-12-18] (Perfect World Entertainment Inc)
FF Plugin-x32: @raidcall.en/RCplugin -> C:\Users\Svend\AppData\Roaming\raidcall\plugins\nprcplugin.dll [2014-05-27] (Raidcall)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-09-30] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems)
FF SearchPlugin: C:\Users\Svend\AppData\Roaming\Mozilla\Firefox\Profiles\1thkg9a3.default\searchplugins\google-avast.xml [2015-07-16]
FF Extension: Video Blocker - C:\Users\Svend\AppData\Roaming\Mozilla\Firefox\Profiles\1thkg9a3.default\Extensions\[email protected] [2015-08-28]
FF Extension: Dark YouTube Theme - C:\Users\Svend\AppData\Roaming\Mozilla\Firefox\Profiles\1thkg9a3.default\Extensions\[email protected] [2015-10-04]
FF Extension: AdBlock for Firefox - C:\Users\Svend\AppData\Roaming\Mozilla\Firefox\Profiles\1thkg9a3.default\Extensions\[email protected] [2015-02-11] [not signed]
FF Extension: Reddit Enhancement Suite - C:\Users\Svend\AppData\Roaming\Mozilla\Firefox\Profiles\1thkg9a3.default\Extensions\[email protected] [2015-06-08]
FF Extension: NASA Night Launch - C:\Users\Svend\AppData\Roaming\Mozilla\Firefox\Profiles\1thkg9a3.default\Extensions\[email protected] [2015-10-19]
FF Extension: FT DeepDark - C:\Users\Svend\AppData\Roaming\Mozilla\Firefox\Profiles\1thkg9a3.default\Extensions\{77d2ed30-4cd2-11e0-b8af-0800200c9a66} [2015-11-15]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-11-26]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2015-11-25]
Chrome:
=======
CHR DefaultSearchURL: Default -> hxxp://www.smarter.yt
CHR Profile: C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Dictionary of Numbers) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahhgdmkmcgahbkcbmlkpmmamemlkajaf [2014-11-14]
CHR Extension: (Google Dokumenter) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-04]
CHR Extension: (Google Drev) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (Dark Skin for Youtube™) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfeknfgchonpnofdjokchhdhdnddhglm [2015-10-04]
CHR Extension: (YouTube) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
CHR Extension: (ImprovedTube - YouTube Extension) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnomihfieiccainjcjblhegjgglakjdd [2015-11-24]
CHR Extension: (Google Cast) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\boadgeojelhgndaghljhdicfkmllpafd [2015-11-20]
CHR Extension: (Ratings Preview for YouTube™) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgbhdenfmgbagncdmgbholejjpmmiank [2015-09-13]
CHR Extension: (ThemeBeta.com) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\chmlcmegjghhkjpfeboboocpabekodfp [2015-03-13]
CHR Extension: (uBlock Origin) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2015-11-03]
CHR Extension: (Google-søgning) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-26]
CHR Extension: (Floating YouTube Extension) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\egncdnniomonjgpjbapalkckojhkfddk [2015-03-13]
CHR Extension: (Media Hint) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejdagjpilmpmajpmgcojcppnhjjogfcn [2015-05-24] [UpdateUrl: hxxps://127.0.0.1] <==== ATTENTION
CHR Extension: (Avast SafePrice) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2015-10-31]
CHR Extension: (Simple and Easy Auto Refresh) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkdhlohhccngecakgpbchhajgooobiih [2015-11-14]
CHR Extension: (Google Docs Offline) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-17]
CHR Extension: (AdBlock) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-11-24]
CHR Extension: (Avast Online Security) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-11-02]
CHR Extension: (Wolfram
Alpha (Official)) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\icncamkooinmbehmkeilcccmoljfkdhp [2014-12-17]
CHR Extension: (Disconnect) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeoacafpbcihiomhlakheieifhpjdfeo [2015-07-28]
CHR Extension: (Floating YouTube™) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\jjphmlaoffndcnecccgemfdaaoighkel [2014-11-14]
CHR Extension: (Reddit Enhancement Suite) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbmfpngjjgdllneeigpgjifpgocmfgmb [2014-12-31]
CHR Extension: (Lectio Enhancer) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\liajalnjelpdmdbfbmpiconpenfbpgln [2015-11-12]
CHR Extension: (Ashish Mishra) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\lnkdbjbjpnpjeciipoaflmpcddinpjjp [2015-01-09]
CHR Extension: (YouTube - whitelist channels in uBlock Origin) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfbgjibknoebccagjnepkkjjcebpiooc [2015-11-11]
CHR Extension: (Google Dictionary (by Google)) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgijmajocgfcbeboacabfgobmjgjcoja [2014-11-14]
CHR Extension: (Night Reading Mode) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhbfhbljmehldmmoeoeelnlafloiifmf [2015-01-22]
CHR Extension: (Betalinger i Chrome Webshop) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-25]
CHR Extension: (AlienTube for YouTube™) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\opgodjgjgojjkhlmmhdlojfehcemknnp [2015-10-14]
CHR Extension: (Gmail) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-29]
CHR Extension: (Media Hint) - C:\Users\Svend\Desktop\Mediaskip [2015-06-10] [UpdateUrl: hxxps://127.0.0.1] <==== ATTENTION
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-11-25]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-11-25]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-09-02] (Apple Inc.)
S3 ArcService; C:\Program Files (x86)\Perfect World Entertainment\Arc\ArcService.exe [88400 2014-12-18] (Perfect World Entertainment Inc)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [174416 2015-11-25] (AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [967040 2015-03-30] ()
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2797752 2015-10-13] (Microsoft Corporation)
S3 GalaxyClientService; C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe [1720888 2015-08-15] (GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6874680 2015-08-15] (GOG.com)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1156384 2015-10-12] (NVIDIA Corporation)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [351120 2015-07-17] (Intel Corporation)
R2 Intel® Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel® Corporation) [File not signed]
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel® Corporation)
R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21744 2015-07-09] (Microsoft Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation)
R2 LsvUIService; C:\Program Files (x86)\Lenovo\Lenovo Smart Voice\LsvUIService.exe [70416 2014-06-13] (Lenovo)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1873696 2015-10-12] (NVIDIA Corporation)
S4 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5568288 2015-10-12] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2078216 2015-10-10] (Electronic Arts)
R2 prio_svc; C:\Program Files\Prio\prio_svc.exe [12656 2012-11-08] ()
S2 PrivoxyService; C:\Program Files (x86)\IT Viewer\privoxy.exe [371200 2015-11-30] (The Privoxy team - www.privoxy.org) [File not signed] <==== ATTENTION
R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [187048 2015-06-23] ()
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390632 2012-04-25] ()
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246472 2015-09-08] (Synaptics Incorporated)
S3 Te.Service; C:\Program Files (x86)\Windows Kits\10\Testing\Runtimes\TAEF\Wex.Services.exe [134656 2015-07-09] (Microsoft Corporation) [File not signed]
S2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5702416 2015-09-11] (TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-11-25] (AVAST Software)
S3 aswMBR; C:\Users\Svend\AppData\Local\Temp\aswMBR.sys [62728 2015-11-26] () [File not signed]
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [97648 2015-11-25] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-11-25] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-11-25] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1059656 2015-11-25] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [449992 2015-11-25] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [154256 2015-11-25] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [273784 2015-11-25] (AVAST Software)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [237568 2015-07-10] (Microsoft Corporation)
S3 CH341SER_A64; C:\Windows\System32\Drivers\CH341S64.SYS [58368 2015-11-02] (www.winchiphead.com)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283200 2014-11-05] (DT Soft Ltd)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2015-11-30] (Malwarebytes)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation)
S3 Netaapl; C:\Windows\system32\DRIVERS\netaapl64.sys [23040 2014-08-15] (Apple Inc.) [File not signed]
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [895256 2015-06-18] (Realtek )
R3 RtkBtFilter; C:\Windows\system32\DRIVERS\RtkBtfilter.sys [593624 2015-03-11] (Realtek Semiconductor Corporation)
R3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [410880 2015-07-03] (Realsil Semiconductor Corporation)
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [3068160 2015-06-16] (Realtek Semiconductor Corp.)
R3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [4619520 2015-11-10] (Realtek Semiconductor Corporation )
R3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [50392 2015-08-13] (Razer Inc)
R2 rzpmgrk; C:\WINDOWS\system32\drivers\rzpmgrk.sys [37184 2015-06-12] (Razer, Inc.)
R2 rzpnk; C:\WINDOWS\system32\drivers\rzpnk.sys [129472 2015-06-27] (Razer, Inc.)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [42696 2015-09-08] (Synaptics Incorporated)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-14] ("CyberLink)
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-11-30 14:36 - 2015-11-30 14:36 - 00035744 _____ C:\Users\Svend\Desktop\FRST.txt
2015-11-30 14:36 - 2015-11-30 14:36 - 00000000 ____D C:\FRST
2015-11-30 14:35 - 2015-11-30 14:35 - 02350080 _____ (Farbar) C:\Users\Svend\Desktop\FRST64.exe
2015-11-30 14:10 - 2015-11-30 14:10 - 00016148 _____ C:\WINDOWS\system32\SVENDPC_Svend_HistoryPrediction.bin
2015-11-30 14:03 - 2015-11-30 14:03 - 00000000 ____D C:\Program Files (x86)\IT Viewer
2015-11-27 23:29 - 2015-11-27 23:29 - 00000000 ___HD C:\OneDriveTemp
2015-11-27 11:13 - 2015-11-27 11:13 - 00000000 ____D C:\Users\Svend\Downloads\Lydens hastighed i luft_data
2015-11-27 11:12 - 2015-11-27 11:13 - 06128684 _____ C:\Users\Svend\Downloads\Lydens hastighed i metal.wav
2015-11-27 11:12 - 2015-11-27 11:13 - 03571244 _____ C:\Users\Svend\Downloads\Lydens hastighed i luft.wav
2015-11-27 11:12 - 2015-11-27 11:12 - 00002914 _____ C:\Users\Svend\Downloads\Lydens hastighed i metal.aup
2015-11-27 11:12 - 2015-11-27 11:12 - 00002322 _____ C:\Users\Svend\Downloads\Lydens hastighed i luft.aup
2015-11-27 09:21 - 2015-11-27 09:21 - 00095912 _____ C:\Users\Svend\Downloads\Brugeranvisning til spillemaskine (2).pdf
2015-11-26 18:32 - 2015-11-26 18:32 - 05200384 _____ (AVAST Software) C:\Users\Svend\Downloads\aswmbr.exe
2015-11-26 14:44 - 2015-11-26 14:44 - 29377918 _____ C:\Users\Svend\Downloads\Vivid Fallout - Landscapes - 1k-1769-1-1.7z
2015-11-25 17:20 - 2015-11-25 17:20 - 00001990 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2015-11-25 17:19 - 2015-11-25 17:19 - 00386096 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2015-11-25 17:19 - 2015-11-25 17:19 - 00043112 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2015-11-24 10:37 - 2015-11-24 10:37 - 22759472 _____ C:\Users\Svend\Downloads\Fantasy kompendium.pdf
2015-11-23 18:26 - 2015-11-23 18:26 - 06367376 _____ (Black Tree Gaming ) C:\Users\Svend\Downloads\Nexus Mod Manager-0.61.1.exe
2015-11-23 18:25 - 2015-11-23 18:25 - 00113913 _____ C:\Users\Svend\Downloads\ShadowBoost_1.1.30.0.zip
2015-11-23 18:10 - 2015-11-23 18:16 - 335024608 _____ C:\Users\Svend\Downloads\FAR - Faraway Area Reform 1_1-1355-1-1.7z
2015-11-23 18:10 - 2015-11-23 18:10 - 00003864 _____ C:\Users\Svend\Downloads\ENBoost 0.281-332-281.zip
2015-11-23 18:10 - 2015-11-23 18:10 - 00002094 _____ C:\Users\Svend\Downloads\ShadowBoost.zip-1822-1-1-30-0.zip
2015-11-23 18:08 - 2015-11-23 18:22 - 864757493 _____ C:\Users\Svend\Downloads\FALLOUT 4 - TEXTURE OPTIMIZATION PROJECT v0.11-978-0-11.rar
2015-11-23 13:02 - 2015-11-23 13:02 - 00001650 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Soundcard Scope.lnk
2015-11-23 13:02 - 2015-11-23 13:02 - 00001638 _____ C:\Users\Svend\Desktop\Soundcard Scope.lnk
2015-11-23 12:24 - 2015-11-23 12:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Scope
2015-11-23 12:24 - 2015-11-23 12:24 - 00000000 ____D C:\Program Files (x86)\Scope
2015-11-23 12:24 - 2015-11-23 12:24 - 00000000 ____D C:\Program Files (x86)\National Instruments
2015-11-23 12:13 - 2015-11-23 12:19 - 29993346 _____ (Igor Pavlov) C:\Users\Svend\Downloads\scope_146.exe
2015-11-21 14:14 - 2015-11-05 06:15 - 08020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-11-21 14:14 - 2015-11-05 06:15 - 00541024 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2015-11-21 14:14 - 2015-11-05 06:14 - 00459104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2015-11-21 14:14 - 2015-11-05 06:13 - 00577888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2015-11-21 14:14 - 2015-11-05 06:11 - 01392480 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-11-21 14:14 - 2015-11-05 06:06 - 03621248 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-11-21 14:14 - 2015-11-05 06:06 - 00966416 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2015-11-21 14:14 - 2015-11-05 06:01 - 00607408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2015-11-21 14:14 - 2015-11-05 05:56 - 01083072 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2015-11-21 14:14 - 2015-11-05 05:56 - 00116064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
2015-11-21 14:14 - 2015-11-05 05:56 - 00025280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2015-11-21 14:14 - 2015-11-05 05:30 - 00961376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2015-11-21 14:14 - 2015-11-05 05:24 - 02878512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-11-21 14:14 - 2015-11-05 05:23 - 00762888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2015-11-21 14:14 - 2015-11-05 05:23 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2015-11-21 14:14 - 2015-11-05 05:20 - 21873664 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-11-21 14:14 - 2015-11-05 05:18 - 24597504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-11-21 14:14 - 2015-11-05 05:18 - 03248128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-11-21 14:14 - 2015-11-05 05:18 - 00539728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2015-11-21 14:14 - 2015-11-05 05:17 - 02418688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-11-21 14:14 - 2015-11-05 05:12 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\internetmail.dll
2015-11-21 14:14 - 2015-11-05 05:11 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-11-21 14:14 - 2015-11-05 05:10 - 12504064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-11-21 14:14 - 2015-11-05 05:10 - 02987520 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2015-11-21 14:14 - 2015-11-05 05:07 - 01068032 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-11-21 14:14 - 2015-11-05 05:06 - 00453120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2015-11-21 14:14 - 2015-11-05 05:05 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-11-21 14:14 - 2015-11-05 05:05 - 00826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-11-21 14:14 - 2015-11-05 05:03 - 02180608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-11-21 14:14 - 2015-11-05 05:03 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2015-11-21 14:14 - 2015-11-05 05:01 - 00949760 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2015-11-21 14:14 - 2015-11-05 05:01 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2015-11-21 14:14 - 2015-11-05 05:01 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-11-21 14:14 - 2015-11-05 04:59 - 03587072 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-11-21 14:14 - 2015-11-05 04:59 - 02675200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2015-11-21 14:14 - 2015-11-05 04:58 - 01383936 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-11-21 14:14 - 2015-11-05 04:58 - 00627712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2015-11-21 14:14 - 2015-11-05 04:56 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-11-21 14:14 - 2015-11-05 04:55 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2015-11-21 14:14 - 2015-11-05 04:54 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2015-11-21 14:14 - 2015-11-05 04:47 - 19326464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-11-21 14:14 - 2015-11-05 04:42 - 02647040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2015-11-21 14:14 - 2015-11-05 04:40 - 01918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-11-21 14:14 - 2015-11-05 04:35 - 18803712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2015-11-21 14:14 - 2015-11-05 04:35 - 02639872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2015-11-21 14:14 - 2015-11-05 04:34 - 00311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2015-11-21 14:14 - 2015-11-05 04:33 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-11-21 14:14 - 2015-11-05 04:33 - 00650240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-11-21 14:14 - 2015-11-05 04:30 - 00767488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2015-11-21 14:14 - 2015-11-05 04:28 - 11262976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-11-21 14:14 - 2015-11-05 04:27 - 02049536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2015-11-21 14:14 - 2015-11-05 04:27 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2015-11-21 14:14 - 2015-11-05 04:23 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll
2015-11-17 18:24 - 2015-11-27 21:01 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2015-11-17 18:24 - 2015-11-17 18:24 - 00002135 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
2015-11-17 13:52 - 2015-11-17 13:52 - 00039348 _____ C:\Users\Svend\Downloads\Slot machine billeder og gevinster (1).zip
2015-11-13 09:30 - 2015-11-13 09:30 - 00109927 _____ C:\Users\Svend\Downloads\Brugeranvisning til spillemaskine (1).pdf
2015-11-13 09:30 - 2015-11-13 09:30 - 00002351 _____ C:\Users\Svend\Downloads\Brugeranvisning til spillemaskine.xml
2015-11-13 09:00 - 2015-11-13 09:00 - 00079325 _____ C:\Users\Svend\Downloads\Brugeranvisning til spillemaskine.pdf
2015-11-13 08:34 - 2015-11-13 08:34 - 00065549 _____ C:\Users\Svend\Downloads\Fully_Anim396731252001.zip
2015-11-13 08:08 - 2015-11-13 08:08 - 00106131 _____ C:\Users\Svend\Downloads\Kaffe.pdf
2015-11-13 08:04 - 2015-11-13 08:04 - 00342955 _____ C:\Users\Svend\Downloads\Slot machine 201516.pdf
2015-11-12 17:48 - 2015-11-05 18:00 - 42914096 _____ C:\WINDOWS\system32\nvcompiler.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 37882160 _____ C:\WINDOWS\SysWOW64\nvcompiler.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 22343800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 18487552 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 18389112 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 16561320 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 15933912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 15839200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 14844304 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 13533608 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 12870192 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 12040952 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 02876720 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 02496632 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 01905456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6435891.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 01564792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6435891.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 01016360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00877688 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00861816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00823232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00689784 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00674096 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00500872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00422568 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00414000 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00369456 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00177416 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00155792 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll
2015-11-11 23:42 - 2015-11-11 23:42 - 00001680 _____ C:\Users\Svend\Downloads\YouTube - whitelist channels in uBlock Origin.user.js
2015-11-11 23:42 - 2015-11-11 23:42 - 00001680 _____ C:\Users\Svend\Downloads\YouTube - whitelist channels in uBlock Origin (2).user.js
2015-11-11 23:42 - 2015-11-11 23:42 - 00001680 _____ C:\Users\Svend\Downloads\YouTube - whitelist channels in uBlock Origin (1).user.js
2015-11-11 22:58 - 2015-11-23 18:36 - 00000000 ____D C:\Users\Svend\AppData\Local\Fallout4
2015-11-11 21:45 - 2015-11-11 21:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fallout 4
2015-11-11 17:35 - 2015-11-11 21:09 - 00000000 ____D C:\Users\Svend\Downloads\Fallout.4-CODEX
2015-11-11 14:49 - 2015-11-11 14:49 - 00001927 _____ C:\Users\Svend\Downloads\Kaffe.xml
2015-11-11 08:06 - 2015-11-11 08:06 - 00368409 _____ C:\Users\Svend\Downloads\Journalen i faget programmering C eksempel.pdf
2015-11-11 08:06 - 2015-11-11 08:06 - 00147658 _____ C:\Users\Svend\Downloads\Flowdiagrammer.pdf
2015-11-11 08:06 - 2015-11-11 08:06 - 00039348 _____ C:\Users\Svend\Downloads\Slot machine billeder og gevinster.zip
2015-11-10 09:07 - 2015-11-10 09:07 - 00354643 _____ C:\Users\Svend\Downloads\01401_Fortræk 5 GHz WiFi..PDF
2015-11-10 09:06 - 2015-11-10 09:06 - 00191329 _____ C:\Users\Svend\Downloads\Windows 10 Wireless..PDF
2015-11-10 09:04 - 2015-11-10 09:04 - 04619520 _____ (Realtek Semiconductor Corporation ) C:\WINDOWS\system32\Drivers\rtwlane.sys
2015-11-09 08:02 - 2015-11-09 08:03 - 02466633 _____ C:\Users\Svend\Downloads\The Last Circus.pdf
2015-11-08 14:21 - 2015-11-10 08:54 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-11-06 12:42 - 2015-11-06 12:42 - 03893317 _____ C:\Users\Svend\Downloads\k8055n_vm110n_rev1206.zip
2015-11-03 13:12 - 2015-11-03 13:12 - 01188272 _____ C:\Users\Svend\Downloads\Taylorpolynomiet - forberedelse.pdf
2015-11-03 13:12 - 2015-11-03 13:12 - 01188272 _____ C:\Users\Svend\Downloads\Taylorpolynomiet - forberedelse (1).pdf
2015-11-02 12:23 - 2015-11-02 12:23 - 00058368 _____ (www.winchiphead.com) C:\WINDOWS\system32\Drivers\CH341S64.SYS
2015-11-02 12:23 - 2015-11-02 12:23 - 00006712 _____ (www.winchiphead.com) C:\WINDOWS\SysWOW64\CH341PT.DLL
2015-11-02 08:46 - 2015-11-04 22:40 - 00025392 _____ C:\Users\Svend\Downloads\Newtons-love.xlsx
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-11-30 14:36 - 2015-07-10 10:05 - 00000000 ____D C:\Windows
2015-11-30 14:27 - 2015-09-17 15:21 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-11-30 14:26 - 2014-11-04 22:44 - 00000922 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-11-30 14:07 - 2014-11-05 09:09 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-11-30 13:46 - 2014-11-05 18:13 - 00000000 ____D C:\Users\Svend\AppData\Local\Spotify
2015-11-30 12:26 - 2014-11-04 22:44 - 00000918 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-11-30 11:58 - 2014-11-04 22:48 - 00000000 ____D C:\Users\Svend\AppData\Roaming\Spotify
2015-11-30 09:57 - 2014-11-04 22:47 - 00000000 ____D C:\Program Files (x86)\Steam
2015-11-30 08:10 - 2015-07-10 12:04 - 00000000 ___HD C:\Program Files\WindowsApps
2015-11-30 08:10 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-11-29 18:06 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\rescache
2015-11-28 18:26 - 2015-10-12 13:41 - 00000000 ____D C:\WINDOWS\Panther
2015-11-28 18:21 - 2015-10-30 20:09 - 00000000 ___HD C:\$WINDOWS.~BT
2015-11-27 23:32 - 2015-09-08 22:23 - 01410196 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-11-27 23:32 - 2015-07-10 17:56 - 00465880 _____ C:\WINDOWS\system32\perfh006.dat
2015-11-27 23:32 - 2015-07-10 17:56 - 00080092 _____ C:\WINDOWS\system32\perfc006.dat
2015-11-27 23:32 - 2015-07-10 12:02 - 00000000 ____D C:\WINDOWS\INF
2015-11-27 23:29 - 2014-11-04 22:40 - 00000000 __RDO C:\Users\Svend\OneDrive
2015-11-27 23:28 - 2015-09-22 09:08 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-11-27 23:28 - 2014-12-13 17:55 - 00000000 __SHD C:\Users\Svend\IntelGraphicsProfiles
2015-11-27 23:25 - 2015-07-10 13:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-11-27 23:23 - 2015-07-10 12:04 - 00000000 __RSD C:\WINDOWS\Media
2015-11-27 23:22 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-11-27 23:22 - 2015-07-10 10:05 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-11-27 20:51 - 2015-02-17 23:36 - 00000000 ____D C:\Users\Svend\AppData\Roaming\Audacity
2015-11-27 16:42 - 2015-07-10 11:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-11-26 23:18 - 2015-10-27 20:00 - 00000000 ____D C:\Users\Svend\AppData\Roaming\TS3Client
2015-11-26 20:03 - 2014-11-05 00:15 - 00000000 ____D C:\Users\Svend\AppData\Roaming\Skype
2015-11-26 14:42 - 2015-06-08 19:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexus Mod Manager
2015-11-26 14:42 - 2015-06-08 19:20 - 00000000 ____D C:\Program Files\Nexus Mod Manager
2015-11-26 13:51 - 2014-11-06 13:22 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-11-26 13:39 - 2014-11-06 13:22 - 145617392 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-11-26 12:58 - 2015-09-04 08:13 - 00000000 ____D C:\Users\Svend\Documents\Visual Studio 2015
2015-11-26 12:57 - 2015-09-08 12:34 - 00005865 _____ C:\Users\Svend\Desktop\WDExpress.exe - Genvej.lnk
2015-11-26 11:59 - 2015-09-08 21:58 - 00000000 ____D C:\Users\Svend
2015-11-26 11:33 - 2015-07-10 12:04 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2015-11-26 11:28 - 2014-11-22 21:39 - 00004280 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update
2015-11-26 11:25 - 2015-09-16 09:48 - 00000000 ____D C:\Program Files\Microsoft Office 15
2015-11-26 11:21 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2015-11-25 17:19 - 2014-11-22 21:38 - 01059656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2015-11-25 17:19 - 2014-11-22 21:38 - 00449992 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2015-11-25 17:19 - 2014-11-22 21:38 - 00273784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2015-11-25 17:19 - 2014-11-22 21:38 - 00154256 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2015-11-25 17:19 - 2014-11-22 21:38 - 00097648 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2015-11-25 17:19 - 2014-11-22 21:38 - 00093528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2015-11-25 17:19 - 2014-11-22 21:38 - 00065224 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2015-11-25 17:19 - 2014-11-22 21:38 - 00028656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2015-11-25 11:52 - 2015-02-19 21:59 - 00000000 ____D C:\Users\Svend\AppData\Local\Steam
2015-11-25 10:31 - 2014-11-04 22:34 - 00000000 ____D C:\Users\Svend\AppData\Local\Packages
2015-11-23 18:50 - 2015-06-10 14:58 - 00000000 ____D C:\Fraps
2015-11-23 18:35 - 2014-11-04 22:47 - 00000000 ____D C:\Users\Svend\AppData\Roaming\Notepad++
2015-11-23 09:10 - 2014-11-05 19:58 - 00000000 ____D C:\Users\Svend\AppData\Roaming\DAEMON Tools Pro
2015-11-20 16:26 - 2015-07-26 12:53 - 00007598 _____ C:\Users\Svend\AppData\Local\Resmon.ResmonCfg
2015-11-20 16:02 - 2015-07-10 12:04 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2015-11-17 22:45 - 2014-11-04 22:45 - 00000000 ____D C:\Users\Svend\AppData\Local\Adobe
2015-11-17 18:25 - 2014-12-24 16:08 - 00003972 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2015-11-17 18:24 - 2014-11-04 22:45 - 00000000 ____D C:\Program Files (x86)\Adobe
2015-11-17 18:23 - 2014-11-04 22:45 - 00000000 ____D C:\ProgramData\Adobe
2015-11-16 14:52 - 2015-09-17 15:23 - 11337112 _____ (SurfRight B.V.) C:\Users\Svend\Downloads\HitmanPro_x64.exe
2015-11-13 08:35 - 2015-09-18 07:01 - 00005922 _____ C:\Users\Svend\Desktop\WDExpress.exe – genvej.lnk
2015-11-12 17:50 - 2015-09-08 21:52 - 00000000 ____D C:\ProgramData\NVIDIA
2015-11-11 22:58 - 2014-11-05 20:19 - 00000000 ____D C:\Users\Svend\Documents\My Games
2015-11-11 21:47 - 2014-11-06 14:05 - 00018450 _____ C:\Users\Svend\data.gnuplot
2015-11-11 21:47 - 2014-11-06 14:05 - 00000957 _____ C:\Users\Svend\maxout.gnuplot
2015-11-11 21:25 - 2014-12-29 00:52 - 00000000 ____D C:\Games
2015-11-11 21:21 - 2014-11-04 23:25 - 00000000 ____D C:\Users\Svend\AppData\Roaming\uTorrent
2015-11-10 19:07 - 2014-11-05 09:09 - 00003816 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-11-10 09:13 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-11-10 08:54 - 2015-07-10 13:20 - 00399664 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-11-10 08:54 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\TAPI
2015-11-10 08:54 - 2014-11-04 22:44 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-11-07 04:19 - 2015-07-23 03:02 - 11227280 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2015-11-05 18:00 - 2015-07-23 03:02 - 03540360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2015-11-05 18:00 - 2015-07-23 03:02 - 03126800 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2015-11-05 18:00 - 2015-07-23 03:02 - 00034493 _____ C:\WINDOWS\system32\nvinfo.pb
2015-11-05 16:08 - 2015-09-08 21:52 - 06358648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2015-11-05 16:08 - 2015-09-08 21:52 - 02983216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2015-11-05 16:08 - 2015-09-08 21:52 - 02554672 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2015-11-05 16:08 - 2015-09-08 21:52 - 00938616 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
2015-11-05 16:08 - 2015-09-08 21:52 - 00523384 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2015-11-05 16:08 - 2015-09-08 21:52 - 00385328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2015-11-05 16:08 - 2015-09-08 21:52 - 00114480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\oemdspif.dll
2015-11-05 16:08 - 2015-09-08 21:52 - 00074872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2015-11-05 16:08 - 2015-09-08 21:52 - 00062584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2015-11-03 13:12 - 2015-09-08 22:55 - 00002357 _____ C:\Users\Svend\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
==================== Files in the root of some directories =======
2015-03-13 17:44 - 2015-04-29 08:28 - 0000112 _____ () C:\Users\Svend\AppData\Roaming\Indstillinger for JP2K CS6
2014-11-04 22:34 - 2015-09-08 21:00 - 0688352 _____ () C:\Users\Svend\AppData\Local\BTServer.log
2015-07-26 12:53 - 2015-11-20 16:26 - 0007598 _____ () C:\Users\Svend\AppData\Local\Resmon.ResmonCfg
2015-09-08 21:52 - 2015-09-08 21:52 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
Files to move or delete:
====================
C:\Users\Svend\reset.cmd
Some files in TEMP:
====================
C:\Users\Svend\AppData\Local\Temp\hp_upd2_1270.exe
C:\Users\Svend\AppData\Local\Temp\Nexus Mod Manager-0.61.2.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-11-27 16:35
==================== End of FRST.txt ============================Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:29-11-2015
Ran by Svend (administrator) on SVENDPC (30-11-2015 14:36:22)
Running from C:\Users\Svend\Desktop
Loaded Profiles: Svend & (Available Profiles: Svend)
Platform: Windows 10 Home (X64) Language: Dansk (Danmark)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe
(Lenovo) C:\Program Files (x86)\Lenovo\Lenovo Smart Voice\LsvUIService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
() C:\Program Files\Prio\prio_svc.exe
() C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
(Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
() C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Realtek semiconductor) C:\Windows\RTFTrack.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
() C:\Program Files\CONEXANT\ForteConfig\fmapp.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\utility.exe
(Spotify Ltd) C:\Users\Svend\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Flux Software LLC) C:\Users\Svend\AppData\Local\FluxSoftware\Flux\flux.exe
() C:\Program Files\Rainmeter\Rainmeter.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\csisyncclient.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(Microsoft Corporation) C:\Windows\System32\wimserv.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(DT Soft Ltd) C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6416.42001.0_x64__8wekyb3d8bbwe\HxMail.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6416.42001.0_x64__8wekyb3d8bbwe\HxTsr.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1120.13270.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Bethesda Softworks) C:\Games\Fallout 4\Fallout4.exe
() C:\Users\Svend\AppData\Local\Temp\hp_upd2_1270.exe
(Malwarebytes) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtsFT] => C:\windows\RTFTrack.exe [5060864 2015-06-16] (Realtek semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation)
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [919768 2014-11-20] (Conexant Systems, Inc.)
HKLM\...\Run: [ForteConfig] => C:\Program Files\Conexant\ForteConfig\fmapp.exe [49056 2010-10-26] ()
HKLM\...\Run: [OnekeyStudio] => C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe [4196432 2012-09-14] (Lenovo)
HKLM\...\Run: [Energy Manager] => C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [15813616 2014-06-13] (Lenovo(beijing) Limited)
HKLM\...\Run: [Lenovo Utility] => C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [80880 2014-06-13] (Lenovo(beijing) Limited)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2655520 2015-10-12] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 2014-04-10] (Conexant Systems, Inc.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3945672 2015-09-08] (Synaptics Incorporated)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-09-23] (Apple Inc.)
HKLM-x32\...\Run: [UpdateP2GShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [214312 2011-12-07] (CyberLink Corp.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [7004376 2015-11-25] (AVAST Software)
HKLM-x32\...\Run: [MX1200Mouse] => C:\Program Files (x86)\MX-1200 Driver\MX1200DriverST.exe [395264 2014-03-11] ()
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [593216 2015-08-11] (Razer Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation)
Winlogon\Notify\igfxcui: igfxdev.dll [X]
HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\Run: [Spotify Web Helper] => C:\Users\Svend\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2344768 2015-11-19] (Spotify Ltd)
HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\Run: [f.lux] => C:\Users\Svend\AppData\Local\FluxSoftware\Flux\flux.exe [1017224 2013-10-23] (Flux Software LLC)
HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7451928 2015-03-13] (Piriform Ltd)
HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\Run: [Lync] => C:\Program Files\Microsoft Office 15\root\office15\lync.exe [24055464 2015-10-20] (Microsoft Corporation)
HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\RunOnce: [Uninstall C:\Users\Svend\AppData\Local\Microsoft\OneDrive\17.3.5951.0827_2\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Svend\AppData\Local\Microsoft\OneDrive\17.3.5951.0827_2\amd64"
HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\MountPoints2: {ed31b1cf-64f5-11e4-8263-90489aad64a0} - "F:\CD_Start.exe"
HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\MountPoints2: {ed31b209-64f5-11e4-8263-90489aad64a0} - "G:\setup.exe"
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Spotify Web Helper] => C:\Users\Svend\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2344768 2015-11-19] (Spotify Ltd)
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [f.lux] => C:\Users\Svend\AppData\Local\FluxSoftware\Flux\flux.exe [1017224 2013-10-23] (Flux Software LLC)
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7451928 2015-03-13] (Piriform Ltd)
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Lync] => C:\Program Files\Microsoft Office 15\root\office15\lync.exe [24055464 2015-10-20] (Microsoft Corporation)
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\RunOnce: [Uninstall C:\Users\Svend\AppData\Local\Microsoft\OneDrive\17.3.5951.0827_2\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Svend\AppData\Local\Microsoft\OneDrive\17.3.5951.0827_2\amd64"
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {ed31b1cf-64f5-11e4-8263-90489aad64a0} - "F:\CD_Start.exe"
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {ed31b209-64f5-11e4-8263-90489aad64a0} - "G:\setup.exe"
AppInit_DLLs: prio.dll => C:\Program Files\Prio\prio.dll [17264 2012-11-08] (O&K Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-11-25] (AVAST Software)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-10-13] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-10-13] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-10-13] (Microsoft Corporation)
Startup: C:\Users\Svend\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk [2014-11-06]
ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe ()
Startup: C:\Users\Svend\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send til OneNote.lnk [2015-06-01]
ShortcutTarget: Send til OneNote.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
ProxyServer: [S-1-5-21-3882994020-747025732-738583552-1002] => 127.0.0.1:8118
ProxyServer: [S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0] => 127.0.0.1:8118
Tcpip\Parameters: [DhcpNameServer] 194.150.115.120 91.144.255.19
Tcpip\..\Interfaces\{4f5d0706-2260-42f1-9e1a-77f48908b76c}: [DhcpNameServer] 194.150.115.120 91.144.255.19
Tcpip\..\Interfaces\{502a1616-3b35-479f-8c55-68290bb34afa}: [DhcpNameServer] 150.206.1.3
Internet Explorer:
==================
HKU\S-1-5-21-3882994020-747025732-738583552-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13.msn.com/?pc=LCJB
HKU\S-1-5-21-3882994020-747025732-738583552-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13.msn.com/?pc=LCJB
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com
SearchScopes: HKLM-x32 -> DefaultScope {20B9D1AE-AD1A-38B4-87FE-AF278DA9861D} URL =
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3882994020-747025732-738583552-1002 -> {73B9789D-D75F-4068-9392-D9DD0B4AB279} URL =
SearchScopes: HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {73B9789D-D75F-4068-9392-D9DD0B4AB279} URL =
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-10-13] (Microsoft Corporation)
BHO: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2015-07-16] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-11-25] (AVAST Software)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-10-13] (Microsoft Corporation)
BHO: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-16] (Oracle Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2015-10-13] (Microsoft Corporation)
BHO-x32: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-07-16] (Oracle Corporation)
BHO-x32: ArcPluginIEBHO Class -> {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} -> C:\Program Files (x86)\Perfect World Entertainment\Arc\Plugins\ArcPluginIE.dll [2014-12-18] (Perfect World Entertainment Inc)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-11-25] (AVAST Software)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2015-10-13] (Microsoft Corporation)
BHO-x32: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-16] (Oracle Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - No File
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - No File
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-09-16] (Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - No File
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - No File
FireFox:
========
FF ProfilePath: C:\Users\Svend\AppData\Roaming\Mozilla\Firefox\Profiles\1thkg9a3.default
FF DefaultSearchEngine: Google (avast)
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_19_0_0_245.dll [2015-11-10] ()
FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-07-16] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-07-16] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_245.dll [2015-11-10] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1220162.dll [2015-08-31] (Adobe Systems, Inc.)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-16] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-16] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-07-16] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-07-16] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-09-16] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-09-16] (Microsoft Corporation)
FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin -> C:\Program Files (x86)\Perfect World Entertainment\Arc\Plugins\npArcPluginFF.dll [2014-12-18] (Perfect World Entertainment Inc)
FF Plugin-x32: @raidcall.en/RCplugin -> C:\Users\Svend\AppData\Roaming\raidcall\plugins\nprcplugin.dll [2014-05-27] (Raidcall)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-09-30] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems)
FF SearchPlugin: C:\Users\Svend\AppData\Roaming\Mozilla\Firefox\Profiles\1thkg9a3.default\searchplugins\google-avast.xml [2015-07-16]
FF Extension: Video Blocker - C:\Users\Svend\AppData\Roaming\Mozilla\Firefox\Profiles\1thkg9a3.default\Extensions\[email protected] [2015-08-28]
FF Extension: Dark YouTube Theme - C:\Users\Svend\AppData\Roaming\Mozilla\Firefox\Profiles\1thkg9a3.default\Extensions\[email protected] [2015-10-04]
FF Extension: AdBlock for Firefox - C:\Users\Svend\AppData\Roaming\Mozilla\Firefox\Profiles\1thkg9a3.default\Extensions\[email protected] [2015-02-11] [not signed]
FF Extension: Reddit Enhancement Suite - C:\Users\Svend\AppData\Roaming\Mozilla\Firefox\Profiles\1thkg9a3.default\Extensions\[email protected] [2015-06-08]
FF Extension: NASA Night Launch - C:\Users\Svend\AppData\Roaming\Mozilla\Firefox\Profiles\1thkg9a3.default\Extensions\[email protected] [2015-10-19]
FF Extension: FT DeepDark - C:\Users\Svend\AppData\Roaming\Mozilla\Firefox\Profiles\1thkg9a3.default\Extensions\{77d2ed30-4cd2-11e0-b8af-0800200c9a66} [2015-11-15]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-11-26]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2015-11-25]
Chrome:
=======
CHR DefaultSearchURL: Default -> hxxp://www.smarter.yt
CHR Profile: C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Dictionary of Numbers) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahhgdmkmcgahbkcbmlkpmmamemlkajaf [2014-11-14]
CHR Extension: (Google Dokumenter) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-04]
CHR Extension: (Google Drev) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (Dark Skin for Youtube™) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfeknfgchonpnofdjokchhdhdnddhglm [2015-10-04]
CHR Extension: (YouTube) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
CHR Extension: (ImprovedTube - YouTube Extension) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnomihfieiccainjcjblhegjgglakjdd [2015-11-24]
CHR Extension: (Google Cast) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\boadgeojelhgndaghljhdicfkmllpafd [2015-11-20]
CHR Extension: (Ratings Preview for YouTube™) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgbhdenfmgbagncdmgbholejjpmmiank [2015-09-13]
CHR Extension: (ThemeBeta.com) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\chmlcmegjghhkjpfeboboocpabekodfp [2015-03-13]
CHR Extension: (uBlock Origin) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2015-11-03]
CHR Extension: (Google-søgning) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-26]
CHR Extension: (Floating YouTube Extension) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\egncdnniomonjgpjbapalkckojhkfddk [2015-03-13]
CHR Extension: (Media Hint) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejdagjpilmpmajpmgcojcppnhjjogfcn [2015-05-24] [UpdateUrl: hxxps://127.0.0.1] <==== ATTENTION
CHR Extension: (Avast SafePrice) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2015-10-31]
CHR Extension: (Simple and Easy Auto Refresh) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkdhlohhccngecakgpbchhajgooobiih [2015-11-14]
CHR Extension: (Google Docs Offline) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-17]
CHR Extension: (AdBlock) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-11-24]
CHR Extension: (Avast Online Security) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-11-02]
CHR Extension: (Wolfram
Alpha (Official)) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\icncamkooinmbehmkeilcccmoljfkdhp [2014-12-17]
CHR Extension: (Disconnect) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeoacafpbcihiomhlakheieifhpjdfeo [2015-07-28]
CHR Extension: (Floating YouTube™) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\jjphmlaoffndcnecccgemfdaaoighkel [2014-11-14]
CHR Extension: (Reddit Enhancement Suite) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbmfpngjjgdllneeigpgjifpgocmfgmb [2014-12-31]
CHR Extension: (Lectio Enhancer) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\liajalnjelpdmdbfbmpiconpenfbpgln [2015-11-12]
CHR Extension: (Ashish Mishra) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\lnkdbjbjpnpjeciipoaflmpcddinpjjp [2015-01-09]
CHR Extension: (YouTube - whitelist channels in uBlock Origin) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfbgjibknoebccagjnepkkjjcebpiooc [2015-11-11]
CHR Extension: (Google Dictionary (by Google)) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgijmajocgfcbeboacabfgobmjgjcoja [2014-11-14]
CHR Extension: (Night Reading Mode) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhbfhbljmehldmmoeoeelnlafloiifmf [2015-01-22]
CHR Extension: (Betalinger i Chrome Webshop) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-25]
CHR Extension: (AlienTube for YouTube™) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\opgodjgjgojjkhlmmhdlojfehcemknnp [2015-10-14]
CHR Extension: (Gmail) - C:\Users\Svend\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-29]
CHR Extension: (Media Hint) - C:\Users\Svend\Desktop\Mediaskip [2015-06-10] [UpdateUrl: hxxps://127.0.0.1] <==== ATTENTION
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-11-25]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-11-25]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-09-02] (Apple Inc.)
S3 ArcService; C:\Program Files (x86)\Perfect World Entertainment\Arc\ArcService.exe [88400 2014-12-18] (Perfect World Entertainment Inc)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [174416 2015-11-25] (AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [967040 2015-03-30] ()
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2797752 2015-10-13] (Microsoft Corporation)
S3 GalaxyClientService; C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe [1720888 2015-08-15] (GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6874680 2015-08-15] (GOG.com)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1156384 2015-10-12] (NVIDIA Corporation)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [351120 2015-07-17] (Intel Corporation)
R2 Intel® Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel® Corporation) [File not signed]
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel® Corporation)
R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21744 2015-07-09] (Microsoft Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation)
R2 LsvUIService; C:\Program Files (x86)\Lenovo\Lenovo Smart Voice\LsvUIService.exe [70416 2014-06-13] (Lenovo)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1873696 2015-10-12] (NVIDIA Corporation)
S4 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5568288 2015-10-12] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2078216 2015-10-10] (Electronic Arts)
R2 prio_svc; C:\Program Files\Prio\prio_svc.exe [12656 2012-11-08] ()
S2 PrivoxyService; C:\Program Files (x86)\IT Viewer\privoxy.exe [371200 2015-11-30] (The Privoxy team - www.privoxy.org) [File not signed] <==== ATTENTION
R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [187048 2015-06-23] ()
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390632 2012-04-25] ()
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246472 2015-09-08] (Synaptics Incorporated)
S3 Te.Service; C:\Program Files (x86)\Windows Kits\10\Testing\Runtimes\TAEF\Wex.Services.exe [134656 2015-07-09] (Microsoft Corporation) [File not signed]
S2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5702416 2015-09-11] (TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-11-25] (AVAST Software)
S3 aswMBR; C:\Users\Svend\AppData\Local\Temp\aswMBR.sys [62728 2015-11-26] () [File not signed]
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [97648 2015-11-25] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-11-25] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-11-25] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1059656 2015-11-25] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [449992 2015-11-25] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [154256 2015-11-25] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [273784 2015-11-25] (AVAST Software)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [237568 2015-07-10] (Microsoft Corporation)
S3 CH341SER_A64; C:\Windows\System32\Drivers\CH341S64.SYS [58368 2015-11-02] (www.winchiphead.com)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283200 2014-11-05] (DT Soft Ltd)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2015-11-30] (Malwarebytes)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation)
S3 Netaapl; C:\Windows\system32\DRIVERS\netaapl64.sys [23040 2014-08-15] (Apple Inc.) [File not signed]
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [895256 2015-06-18] (Realtek )
R3 RtkBtFilter; C:\Windows\system32\DRIVERS\RtkBtfilter.sys [593624 2015-03-11] (Realtek Semiconductor Corporation)
R3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [410880 2015-07-03] (Realsil Semiconductor Corporation)
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [3068160 2015-06-16] (Realtek Semiconductor Corp.)
R3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [4619520 2015-11-10] (Realtek Semiconductor Corporation )
R3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [50392 2015-08-13] (Razer Inc)
R2 rzpmgrk; C:\WINDOWS\system32\drivers\rzpmgrk.sys [37184 2015-06-12] (Razer, Inc.)
R2 rzpnk; C:\WINDOWS\system32\drivers\rzpnk.sys [129472 2015-06-27] (Razer, Inc.)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [42696 2015-09-08] (Synaptics Incorporated)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-14] ("CyberLink)
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-11-30 14:36 - 2015-11-30 14:36 - 00035744 _____ C:\Users\Svend\Desktop\FRST.txt
2015-11-30 14:36 - 2015-11-30 14:36 - 00000000 ____D C:\FRST
2015-11-30 14:35 - 2015-11-30 14:35 - 02350080 _____ (Farbar) C:\Users\Svend\Desktop\FRST64.exe
2015-11-30 14:10 - 2015-11-30 14:10 - 00016148 _____ C:\WINDOWS\system32\SVENDPC_Svend_HistoryPrediction.bin
2015-11-30 14:03 - 2015-11-30 14:03 - 00000000 ____D C:\Program Files (x86)\IT Viewer
2015-11-27 23:29 - 2015-11-27 23:29 - 00000000 ___HD C:\OneDriveTemp
2015-11-27 11:13 - 2015-11-27 11:13 - 00000000 ____D C:\Users\Svend\Downloads\Lydens hastighed i luft_data
2015-11-27 11:12 - 2015-11-27 11:13 - 06128684 _____ C:\Users\Svend\Downloads\Lydens hastighed i metal.wav
2015-11-27 11:12 - 2015-11-27 11:13 - 03571244 _____ C:\Users\Svend\Downloads\Lydens hastighed i luft.wav
2015-11-27 11:12 - 2015-11-27 11:12 - 00002914 _____ C:\Users\Svend\Downloads\Lydens hastighed i metal.aup
2015-11-27 11:12 - 2015-11-27 11:12 - 00002322 _____ C:\Users\Svend\Downloads\Lydens hastighed i luft.aup
2015-11-27 09:21 - 2015-11-27 09:21 - 00095912 _____ C:\Users\Svend\Downloads\Brugeranvisning til spillemaskine (2).pdf
2015-11-26 18:32 - 2015-11-26 18:32 - 05200384 _____ (AVAST Software) C:\Users\Svend\Downloads\aswmbr.exe
2015-11-26 14:44 - 2015-11-26 14:44 - 29377918 _____ C:\Users\Svend\Downloads\Vivid Fallout - Landscapes - 1k-1769-1-1.7z
2015-11-25 17:20 - 2015-11-25 17:20 - 00001990 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2015-11-25 17:19 - 2015-11-25 17:19 - 00386096 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2015-11-25 17:19 - 2015-11-25 17:19 - 00043112 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2015-11-24 10:37 - 2015-11-24 10:37 - 22759472 _____ C:\Users\Svend\Downloads\Fantasy kompendium.pdf
2015-11-23 18:26 - 2015-11-23 18:26 - 06367376 _____ (Black Tree Gaming ) C:\Users\Svend\Downloads\Nexus Mod Manager-0.61.1.exe
2015-11-23 18:25 - 2015-11-23 18:25 - 00113913 _____ C:\Users\Svend\Downloads\ShadowBoost_1.1.30.0.zip
2015-11-23 18:10 - 2015-11-23 18:16 - 335024608 _____ C:\Users\Svend\Downloads\FAR - Faraway Area Reform 1_1-1355-1-1.7z
2015-11-23 18:10 - 2015-11-23 18:10 - 00003864 _____ C:\Users\Svend\Downloads\ENBoost 0.281-332-281.zip
2015-11-23 18:10 - 2015-11-23 18:10 - 00002094 _____ C:\Users\Svend\Downloads\ShadowBoost.zip-1822-1-1-30-0.zip
2015-11-23 18:08 - 2015-11-23 18:22 - 864757493 _____ C:\Users\Svend\Downloads\FALLOUT 4 - TEXTURE OPTIMIZATION PROJECT v0.11-978-0-11.rar
2015-11-23 13:02 - 2015-11-23 13:02 - 00001650 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Soundcard Scope.lnk
2015-11-23 13:02 - 2015-11-23 13:02 - 00001638 _____ C:\Users\Svend\Desktop\Soundcard Scope.lnk
2015-11-23 12:24 - 2015-11-23 12:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Scope
2015-11-23 12:24 - 2015-11-23 12:24 - 00000000 ____D C:\Program Files (x86)\Scope
2015-11-23 12:24 - 2015-11-23 12:24 - 00000000 ____D C:\Program Files (x86)\National Instruments
2015-11-23 12:13 - 2015-11-23 12:19 - 29993346 _____ (Igor Pavlov) C:\Users\Svend\Downloads\scope_146.exe
2015-11-21 14:14 - 2015-11-05 06:15 - 08020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-11-21 14:14 - 2015-11-05 06:15 - 00541024 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2015-11-21 14:14 - 2015-11-05 06:14 - 00459104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2015-11-21 14:14 - 2015-11-05 06:13 - 00577888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2015-11-21 14:14 - 2015-11-05 06:11 - 01392480 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-11-21 14:14 - 2015-11-05 06:06 - 03621248 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-11-21 14:14 - 2015-11-05 06:06 - 00966416 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2015-11-21 14:14 - 2015-11-05 06:01 - 00607408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2015-11-21 14:14 - 2015-11-05 05:56 - 01083072 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2015-11-21 14:14 - 2015-11-05 05:56 - 00116064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
2015-11-21 14:14 - 2015-11-05 05:56 - 00025280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2015-11-21 14:14 - 2015-11-05 05:30 - 00961376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2015-11-21 14:14 - 2015-11-05 05:24 - 02878512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-11-21 14:14 - 2015-11-05 05:23 - 00762888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2015-11-21 14:14 - 2015-11-05 05:23 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2015-11-21 14:14 - 2015-11-05 05:20 - 21873664 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-11-21 14:14 - 2015-11-05 05:18 - 24597504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-11-21 14:14 - 2015-11-05 05:18 - 03248128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-11-21 14:14 - 2015-11-05 05:18 - 00539728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2015-11-21 14:14 - 2015-11-05 05:17 - 02418688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-11-21 14:14 - 2015-11-05 05:12 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\internetmail.dll
2015-11-21 14:14 - 2015-11-05 05:11 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-11-21 14:14 - 2015-11-05 05:10 - 12504064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-11-21 14:14 - 2015-11-05 05:10 - 02987520 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2015-11-21 14:14 - 2015-11-05 05:07 - 01068032 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-11-21 14:14 - 2015-11-05 05:06 - 00453120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2015-11-21 14:14 - 2015-11-05 05:05 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-11-21 14:14 - 2015-11-05 05:05 - 00826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-11-21 14:14 - 2015-11-05 05:03 - 02180608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-11-21 14:14 - 2015-11-05 05:03 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2015-11-21 14:14 - 2015-11-05 05:01 - 00949760 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2015-11-21 14:14 - 2015-11-05 05:01 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2015-11-21 14:14 - 2015-11-05 05:01 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-11-21 14:14 - 2015-11-05 04:59 - 03587072 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-11-21 14:14 - 2015-11-05 04:59 - 02675200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2015-11-21 14:14 - 2015-11-05 04:58 - 01383936 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-11-21 14:14 - 2015-11-05 04:58 - 00627712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2015-11-21 14:14 - 2015-11-05 04:56 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-11-21 14:14 - 2015-11-05 04:55 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2015-11-21 14:14 - 2015-11-05 04:54 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2015-11-21 14:14 - 2015-11-05 04:47 - 19326464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-11-21 14:14 - 2015-11-05 04:42 - 02647040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2015-11-21 14:14 - 2015-11-05 04:40 - 01918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-11-21 14:14 - 2015-11-05 04:35 - 18803712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2015-11-21 14:14 - 2015-11-05 04:35 - 02639872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2015-11-21 14:14 - 2015-11-05 04:34 - 00311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2015-11-21 14:14 - 2015-11-05 04:33 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-11-21 14:14 - 2015-11-05 04:33 - 00650240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-11-21 14:14 - 2015-11-05 04:30 - 00767488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2015-11-21 14:14 - 2015-11-05 04:28 - 11262976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-11-21 14:14 - 2015-11-05 04:27 - 02049536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2015-11-21 14:14 - 2015-11-05 04:27 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2015-11-21 14:14 - 2015-11-05 04:23 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll
2015-11-17 18:24 - 2015-11-27 21:01 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2015-11-17 18:24 - 2015-11-17 18:24 - 00002135 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
2015-11-17 13:52 - 2015-11-17 13:52 - 00039348 _____ C:\Users\Svend\Downloads\Slot machine billeder og gevinster (1).zip
2015-11-13 09:30 - 2015-11-13 09:30 - 00109927 _____ C:\Users\Svend\Downloads\Brugeranvisning til spillemaskine (1).pdf
2015-11-13 09:30 - 2015-11-13 09:30 - 00002351 _____ C:\Users\Svend\Downloads\Brugeranvisning til spillemaskine.xml
2015-11-13 09:00 - 2015-11-13 09:00 - 00079325 _____ C:\Users\Svend\Downloads\Brugeranvisning til spillemaskine.pdf
2015-11-13 08:34 - 2015-11-13 08:34 - 00065549 _____ C:\Users\Svend\Downloads\Fully_Anim396731252001.zip
2015-11-13 08:08 - 2015-11-13 08:08 - 00106131 _____ C:\Users\Svend\Downloads\Kaffe.pdf
2015-11-13 08:04 - 2015-11-13 08:04 - 00342955 _____ C:\Users\Svend\Downloads\Slot machine 201516.pdf
2015-11-12 17:48 - 2015-11-05 18:00 - 42914096 _____ C:\WINDOWS\system32\nvcompiler.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 37882160 _____ C:\WINDOWS\SysWOW64\nvcompiler.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 22343800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 18487552 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 18389112 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 16561320 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 15933912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 15839200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 14844304 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 13533608 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 12870192 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 12040952 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 02876720 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 02496632 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 01905456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6435891.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 01564792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6435891.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 01016360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00877688 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00861816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00823232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00689784 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00674096 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00500872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00422568 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00414000 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00369456 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00177416 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll
2015-11-12 17:48 - 2015-11-05 18:00 - 00155792 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll
2015-11-11 23:42 - 2015-11-11 23:42 - 00001680 _____ C:\Users\Svend\Downloads\YouTube - whitelist channels in uBlock Origin.user.js
2015-11-11 23:42 - 2015-11-11 23:42 - 00001680 _____ C:\Users\Svend\Downloads\YouTube - whitelist channels in uBlock Origin (2).user.js
2015-11-11 23:42 - 2015-11-11 23:42 - 00001680 _____ C:\Users\Svend\Downloads\YouTube - whitelist channels in uBlock Origin (1).user.js
2015-11-11 22:58 - 2015-11-23 18:36 - 00000000 ____D C:\Users\Svend\AppData\Local\Fallout4
2015-11-11 21:45 - 2015-11-11 21:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fallout 4
2015-11-11 17:35 - 2015-11-11 21:09 - 00000000 ____D C:\Users\Svend\Downloads\Fallout.4-CODEX
2015-11-11 14:49 - 2015-11-11 14:49 - 00001927 _____ C:\Users\Svend\Downloads\Kaffe.xml
2015-11-11 08:06 - 2015-11-11 08:06 - 00368409 _____ C:\Users\Svend\Downloads\Journalen i faget programmering C eksempel.pdf
2015-11-11 08:06 - 2015-11-11 08:06 - 00147658 _____ C:\Users\Svend\Downloads\Flowdiagrammer.pdf
2015-11-11 08:06 - 2015-11-11 08:06 - 00039348 _____ C:\Users\Svend\Downloads\Slot machine billeder og gevinster.zip
2015-11-10 09:07 - 2015-11-10 09:07 - 00354643 _____ C:\Users\Svend\Downloads\01401_Fortræk 5 GHz WiFi..PDF
2015-11-10 09:06 - 2015-11-10 09:06 - 00191329 _____ C:\Users\Svend\Downloads\Windows 10 Wireless..PDF
2015-11-10 09:04 - 2015-11-10 09:04 - 04619520 _____ (Realtek Semiconductor Corporation ) C:\WINDOWS\system32\Drivers\rtwlane.sys
2015-11-09 08:02 - 2015-11-09 08:03 - 02466633 _____ C:\Users\Svend\Downloads\The Last Circus.pdf
2015-11-08 14:21 - 2015-11-10 08:54 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-11-06 12:42 - 2015-11-06 12:42 - 03893317 _____ C:\Users\Svend\Downloads\k8055n_vm110n_rev1206.zip
2015-11-03 13:12 - 2015-11-03 13:12 - 01188272 _____ C:\Users\Svend\Downloads\Taylorpolynomiet - forberedelse.pdf
2015-11-03 13:12 - 2015-11-03 13:12 - 01188272 _____ C:\Users\Svend\Downloads\Taylorpolynomiet - forberedelse (1).pdf
2015-11-02 12:23 - 2015-11-02 12:23 - 00058368 _____ (www.winchiphead.com) C:\WINDOWS\system32\Drivers\CH341S64.SYS
2015-11-02 12:23 - 2015-11-02 12:23 - 00006712 _____ (www.winchiphead.com) C:\WINDOWS\SysWOW64\CH341PT.DLL
2015-11-02 08:46 - 2015-11-04 22:40 - 00025392 _____ C:\Users\Svend\Downloads\Newtons-love.xlsx
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-11-30 14:36 - 2015-07-10 10:05 - 00000000 ____D C:\Windows
2015-11-30 14:27 - 2015-09-17 15:21 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-11-30 14:26 - 2014-11-04 22:44 - 00000922 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-11-30 14:07 - 2014-11-05 09:09 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-11-30 13:46 - 2014-11-05 18:13 - 00000000 ____D C:\Users\Svend\AppData\Local\Spotify
2015-11-30 12:26 - 2014-11-04 22:44 - 00000918 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-11-30 11:58 - 2014-11-04 22:48 - 00000000 ____D C:\Users\Svend\AppData\Roaming\Spotify
2015-11-30 09:57 - 2014-11-04 22:47 - 00000000 ____D C:\Program Files (x86)\Steam
2015-11-30 08:10 - 2015-07-10 12:04 - 00000000 ___HD C:\Program Files\WindowsApps
2015-11-30 08:10 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-11-29 18:06 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\rescache
2015-11-28 18:26 - 2015-10-12 13:41 - 00000000 ____D C:\WINDOWS\Panther
2015-11-28 18:21 - 2015-10-30 20:09 - 00000000 ___HD C:\$WINDOWS.~BT
2015-11-27 23:32 - 2015-09-08 22:23 - 01410196 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-11-27 23:32 - 2015-07-10 17:56 - 00465880 _____ C:\WINDOWS\system32\perfh006.dat
2015-11-27 23:32 - 2015-07-10 17:56 - 00080092 _____ C:\WINDOWS\system32\perfc006.dat
2015-11-27 23:32 - 2015-07-10 12:02 - 00000000 ____D C:\WINDOWS\INF
2015-11-27 23:29 - 2014-11-04 22:40 - 00000000 __RDO C:\Users\Svend\OneDrive
2015-11-27 23:28 - 2015-09-22 09:08 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-11-27 23:28 - 2014-12-13 17:55 - 00000000 __SHD C:\Users\Svend\IntelGraphicsProfiles
2015-11-27 23:25 - 2015-07-10 13:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-11-27 23:23 - 2015-07-10 12:04 - 00000000 __RSD C:\WINDOWS\Media
2015-11-27 23:22 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-11-27 23:22 - 2015-07-10 10:05 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-11-27 20:51 - 2015-02-17 23:36 - 00000000 ____D C:\Users\Svend\AppData\Roaming\Audacity
2015-11-27 16:42 - 2015-07-10 11:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-11-26 23:18 - 2015-10-27 20:00 - 00000000 ____D C:\Users\Svend\AppData\Roaming\TS3Client
2015-11-26 20:03 - 2014-11-05 00:15 - 00000000 ____D C:\Users\Svend\AppData\Roaming\Skype
2015-11-26 14:42 - 2015-06-08 19:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexus Mod Manager
2015-11-26 14:42 - 2015-06-08 19:20 - 00000000 ____D C:\Program Files\Nexus Mod Manager
2015-11-26 13:51 - 2014-11-06 13:22 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-11-26 13:39 - 2014-11-06 13:22 - 145617392 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-11-26 12:58 - 2015-09-04 08:13 - 00000000 ____D C:\Users\Svend\Documents\Visual Studio 2015
2015-11-26 12:57 - 2015-09-08 12:34 - 00005865 _____ C:\Users\Svend\Desktop\WDExpress.exe - Genvej.lnk
2015-11-26 11:59 - 2015-09-08 21:58 - 00000000 ____D C:\Users\Svend
2015-11-26 11:33 - 2015-07-10 12:04 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2015-11-26 11:28 - 2014-11-22 21:39 - 00004280 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update
2015-11-26 11:25 - 2015-09-16 09:48 - 00000000 ____D C:\Program Files\Microsoft Office 15
2015-11-26 11:21 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2015-11-25 17:19 - 2014-11-22 21:38 - 01059656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2015-11-25 17:19 - 2014-11-22 21:38 - 00449992 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2015-11-25 17:19 - 2014-11-22 21:38 - 00273784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2015-11-25 17:19 - 2014-11-22 21:38 - 00154256 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2015-11-25 17:19 - 2014-11-22 21:38 - 00097648 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2015-11-25 17:19 - 2014-11-22 21:38 - 00093528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2015-11-25 17:19 - 2014-11-22 21:38 - 00065224 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2015-11-25 17:19 - 2014-11-22 21:38 - 00028656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2015-11-25 11:52 - 2015-02-19 21:59 - 00000000 ____D C:\Users\Svend\AppData\Local\Steam
2015-11-25 10:31 - 2014-11-04 22:34 - 00000000 ____D C:\Users\Svend\AppData\Local\Packages
2015-11-23 18:50 - 2015-06-10 14:58 - 00000000 ____D C:\Fraps
2015-11-23 18:35 - 2014-11-04 22:47 - 00000000 ____D C:\Users\Svend\AppData\Roaming\Notepad++
2015-11-23 09:10 - 2014-11-05 19:58 - 00000000 ____D C:\Users\Svend\AppData\Roaming\DAEMON Tools Pro
2015-11-20 16:26 - 2015-07-26 12:53 - 00007598 _____ C:\Users\Svend\AppData\Local\Resmon.ResmonCfg
2015-11-20 16:02 - 2015-07-10 12:04 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2015-11-17 22:45 - 2014-11-04 22:45 - 00000000 ____D C:\Users\Svend\AppData\Local\Adobe
2015-11-17 18:25 - 2014-12-24 16:08 - 00003972 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2015-11-17 18:24 - 2014-11-04 22:45 - 00000000 ____D C:\Program Files (x86)\Adobe
2015-11-17 18:23 - 2014-11-04 22:45 - 00000000 ____D C:\ProgramData\Adobe
2015-11-16 14:52 - 2015-09-17 15:23 - 11337112 _____ (SurfRight B.V.) C:\Users\Svend\Downloads\HitmanPro_x64.exe
2015-11-13 08:35 - 2015-09-18 07:01 - 00005922 _____ C:\Users\Svend\Desktop\WDExpress.exe – genvej.lnk
2015-11-12 17:50 - 2015-09-08 21:52 - 00000000 ____D C:\ProgramData\NVIDIA
2015-11-11 22:58 - 2014-11-05 20:19 - 00000000 ____D C:\Users\Svend\Documents\My Games
2015-11-11 21:47 - 2014-11-06 14:05 - 00018450 _____ C:\Users\Svend\data.gnuplot
2015-11-11 21:47 - 2014-11-06 14:05 - 00000957 _____ C:\Users\Svend\maxout.gnuplot
2015-11-11 21:25 - 2014-12-29 00:52 - 00000000 ____D C:\Games
2015-11-11 21:21 - 2014-11-04 23:25 - 00000000 ____D C:\Users\Svend\AppData\Roaming\uTorrent
2015-11-10 19:07 - 2014-11-05 09:09 - 00003816 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-11-10 09:13 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-11-10 08:54 - 2015-07-10 13:20 - 00399664 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-11-10 08:54 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\TAPI
2015-11-10 08:54 - 2014-11-04 22:44 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-11-07 04:19 - 2015-07-23 03:02 - 11227280 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2015-11-05 18:00 - 2015-07-23 03:02 - 03540360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2015-11-05 18:00 - 2015-07-23 03:02 - 03126800 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2015-11-05 18:00 - 2015-07-23 03:02 - 00034493 _____ C:\WINDOWS\system32\nvinfo.pb
2015-11-05 16:08 - 2015-09-08 21:52 - 06358648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2015-11-05 16:08 - 2015-09-08 21:52 - 02983216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2015-11-05 16:08 - 2015-09-08 21:52 - 02554672 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2015-11-05 16:08 - 2015-09-08 21:52 - 00938616 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
2015-11-05 16:08 - 2015-09-08 21:52 - 00523384 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2015-11-05 16:08 - 2015-09-08 21:52 - 00385328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2015-11-05 16:08 - 2015-09-08 21:52 - 00114480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\oemdspif.dll
2015-11-05 16:08 - 2015-09-08 21:52 - 00074872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2015-11-05 16:08 - 2015-09-08 21:52 - 00062584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2015-11-03 13:12 - 2015-09-08 22:55 - 00002357 _____ C:\Users\Svend\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
==================== Files in the root of some directories =======
2015-03-13 17:44 - 2015-04-29 08:28 - 0000112 _____ () C:\Users\Svend\AppData\Roaming\Indstillinger for JP2K CS6
2014-11-04 22:34 - 2015-09-08 21:00 - 0688352 _____ () C:\Users\Svend\AppData\Local\BTServer.log
2015-07-26 12:53 - 2015-11-20 16:26 - 0007598 _____ () C:\Users\Svend\AppData\Local\Resmon.ResmonCfg
2015-09-08 21:52 - 2015-09-08 21:52 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
Files to move or delete:
====================
C:\Users\Svend\reset.cmd
Some files in TEMP:
====================
C:\Users\Svend\AppData\Local\Temp\hp_upd2_1270.exe
C:\Users\Svend\AppData\Local\Temp\Nexus Mod Manager-0.61.2.exe
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-11-27 16:35
==================== End of FRST.txt ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version:29-11-2015
Ran by Svend (2015-11-30 14:37:32)
Running from C:\Users\Svend\Desktop
Windows 10 Home (X64) (2015-09-08 21:47:23)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-3882994020-747025732-738583552-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3882994020-747025732-738583552-503 - Limited - Disabled)
Gæst (S-1-5-21-3882994020-747025732-738583552-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3882994020-747025732-738583552-1004 - Limited - Enabled)
Svend (S-1-5-21-3882994020-747025732-738583552-1002 - Administrator - Enabled) => C:\Users\Svend
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
«Darksiders II» 1.5.up6 (HKLM-x32\...\Darksiders II_is1) (Version: 1.5.up6 - THQ)
µTorrent (HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\uTorrent) (Version: 3.4.5.41162 - BitTorrent Inc.)
µTorrent (HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\uTorrent) (Version: 3.4.5.41162 - BitTorrent Inc.)
Adobe Acrobat Reader DC - Dansk (HKLM-x32\...\{AC76BA86-7AD7-1030-7B44-AC0F074E4100}) (Version: 15.009.20079 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 19.0.0.190 - Adobe Systems Incorporated)
Adobe Flash Player 19 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 19.0.0.245 - Adobe Systems Incorporated)
Adobe Photoshop CC 2014 (HKLM-x32\...\{D7A4F897-B20A-42D0-862D-CB5F6DB7391D}) (Version: 15.0 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.2 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.2.0.162 - Adobe Systems, Inc.)
Alternative Look for Yennefer (HKLM-x32\...\Alternative Look for Yennefer_is1) (Version: 1.0.0.0 - GOG.com)
Apple Application Support (32-bit) (HKLM-x32\...\{A50679D9-6CBD-4FCD-BACB-62EF3894F6F3}) (Version: 4.0.3 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{1F72FDD5-A069-45B4-928F-D0F16492DC69}) (Version: 4.0.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{FD244E19-6EFE-4A2D-948A-0D45D4C168BE}) (Version: 9.0.0.26 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}) (Version: 2.1.4.131 - Apple Inc.)
Arc (HKLM-x32\...\{CED8E25B-122A-4E80-B612-7F99B93284B3}) (Version: 1.0.0.9668 - Perfect World Entertainment)
Arma 2 (HKLM-x32\...\Steam App 33910) (Version: - Bohemia Interactive)
Arma 2: DayZ Mod (HKLM-x32\...\Steam App 224580) (Version: - Bohemia Interactive)
Arma 2: Operation Arrowhead (HKLM-x32\...\Steam App 33930) (Version: - Bohemia Interactive)
Audacity 2.0.6 (HKLM-x32\...\Audacity_is1) (Version: 2.0.6 - Audacity Team)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 11.1.2241 - AVAST Software)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts)
Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.6.2 - EA Digital Illusions CE AB)
BattlEye Uninstall (HKLM-x32\...\BattlEye for A2) (Version: - )
Beard and Hairstyle Set (HKLM-x32\...\Beard and Hairstyle Set_is1) (Version: 1.0.0.0 - GOG.com)
BioShock Infinite (HKLM-x32\...\Steam App 8870) (Version: - Irrational Games)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Borderlands - The Pre-Sequel (HKLM-x32\...\Borderlands - The Pre-Sequel_R.G. Mechanics_is1) (Version: - R.G. Mechanics, markfiter)
Burnout Paradise: The Ultimate Box (HKLM-x32\...\Steam App 24740) (Version: - Criterion Games)
CCleaner (HKLM\...\CCleaner) (Version: 5.04 - Piriform)
Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)
Cisco LEAP Module (HKLM-x32\...\{AF312B06-5C5C-468E-89B3-BE6DE2645722}) (Version: 1.0.19 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM-x32\...\{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}) (Version: 1.1.6 - Cisco Systems, Inc.)
Command & Conquer™ Red Alert 2 and Yuri’s Revenge (HKLM-x32\...\{F5275D1C-D133-486D-8F07-D6C571F0A8EC}) (Version: 1.0.0.0 - Electronic Arts, Inc.)
Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.66.4.0 - Conexant)
CosSinCalc (HKLM-x32\...\CosSinCalc) (Version: 1.0.10 - Molte Emil Strange Andersen)
Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve)
Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve)
Crysis 2 Maximum Edition (HKLM-x32\...\Steam App 108800) (Version: - Crytek Studios)
Curse Client (HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\101a9f93b8f0bb6f) (Version: 5.1.1.844 - Curse)
Curse Client (HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\101a9f93b8f0bb6f) (Version: 5.1.1.844 - Curse)
CyberLink MediaStory (HKLM-x32\...\InstallShield_{55762F9A-FCE3-45d5-817B-051218658423}) (Version: 1.0.1314 - CyberLink Corp.)
CyberLink PhotoDirector 3 (HKLM-x32\...\InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10}) (Version: 3.0.1.4107 - CyberLink Corp.)
CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.0.2810 - CyberLink Corp.)
CyberLink PowerDirector 10 (Version: 10.0.0.2810 - CyberLink Corp.) Hidden
DAEMON Tools Pro (HKLM-x32\...\DAEMON Tools Pro) (Version: 5.2.0.0348 - DT Soft Ltd)
DayZ Commander (HKLM-x32\...\{668B7711-6DAF-465F-9BE2-F3C07C962131}) (Version: 0.92.117 - Dotjosh Studios)
Dead Island (HKLM-x32\...\Steam App 91310) (Version: - Techland)
Dead Space (HKLM-x32\...\Steam App 17470) (Version: - EA Redwood Shores)
Desktop Dungeons (HKLM-x32\...\GOGPACKDESKTOPDUNGEONS_is1) (Version: 2.0.0.1 - GOG.com)
Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment)
Dolby Digital Plus Home Theater (HKLM\...\{7E3D8FA1-6092-469A-955B-68FC4A2C67CA}) (Version: 7.6.5.1 - Dolby Laboratories Inc)
Elite Crossbow Set (HKLM-x32\...\Elite Crossbow Set_is1) (Version: 1.0.0.0 - GOG.com)
Energy Manager (HKLM-x32\...\InstallShield_{AC768037-7079-4658-AC24-2897650E0ABE}) (Version: 1.0.0.35 - Lenovo)
Energy Manager (x32 Version: 1.0.0.35 - Lenovo) Hidden
Entity Framework 6.1.3 Tools for Visual Studio 2015 (HKLM-x32\...\{1A8A9739-BAD7-491F-B5B9-A79A2B965422}) (Version: 14.0.40302.0 - Microsoft Corporation)
Equalify v2.5.3 (Stable) (HKLM-x32\...\{33EC4F70-9F4B-406F-BB2A-F75A285E927D}) (Version: 2.5.3.0 - Equalify)
Equalizer APO (HKLM\...\EqualizerAPO) (Version: 0.9.2 - )
f.lux (HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\Flux) (Version: - )
f.lux (HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Flux) (Version: - )
Fallout 3 (HKLM-x32\...\{974C4B12-4D02-4879-85E0-61C95CC63E9E}) (Version: 1.00.0000 - Bethesda Softworks)
Fallout 4 (HKLM-x32\...\Fallout 4_is1) (Version: - )
Fallout New Vegas - Ultimate Edition (HKLM-x32\...\Fallout New Vegas - Ultimate Edition_R.G. Mechanics_is1) (Version: - R.G. Mechanics, Panky)
FINAL FANTASY XIV - A Realm Reborn (HKLM-x32\...\{2B41E132-07DF-4925-A3D3-F2D1765CCDFE}) (Version: 1.0.0000 - SQUARE ENIX CO., LTD.)
foobar2000 v1.3.8 (HKLM-x32\...\foobar2000) (Version: 1.3.8 - Peter Pawlowski)
Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - )
GeoGebra 5 (HKLM-x32\...\GeoGebra 5) (Version: 5.0.156.0 - International GeoGebra Institute)
Glyph (HKLM-x32\...\Glyph) (Version: - Trion Worlds, Inc.)
GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com)
Google Chrome (HKLM-x32\...\{22ACCF34-7FF3-3990-B0DA-697C8A16F121}) (Version: 66.19.16495 - Google, Inc.)
Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden
Grand Theft Auto IV (HKLM-x32\...\Steam App 12210) (Version: - Rockstar North)
Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games)
Grand Theft Auto: Episodes from Liberty City (HKLM-x32\...\Steam App 12220) (Version: - Rockstar North / Toronto)
Graph 4.4.2 (HKLM-x32\...\Graph_is1) (Version: - Ivan Johansen)
Graphmatica (HKLM-x32\...\{25AAC2ED-133D-4EA5-AA21-206560D46A5D}) (Version: 2.4.0.0 - kSoft)
Graphmatica (HKLM-x32\...\{EB2AE318-0A58-4E3E-A463-3DE071CD9E01}) (Version: 2.4.0.0 - kSoft)
Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment)
Intel® Driver Update Utility 2.0 (x32 Version: 2.0.0.29 - Intel) Hidden
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3960 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.0.1016 - Intel Corporation)
Intel® Driver Update Utility (HKLM-x32\...\{8409c4f7-2340-4933-a304-5d37db4fb48b}) (Version: 2.0.0.29 - Intel)
Intellisense Lang Pack Mobile Extension SDK 10.0.10240.0 (x32 Version: 10.0.10240.0 - Microsoft Corporation) Hidden
iTunes (HKLM\...\{96984DE8-1DB8-425C-AC8C-3098BC696F04}) (Version: 12.3.0.44 - Apple Inc.)
Java 8 Update 51 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418051F0}) (Version: 8.0.510 - Oracle Corporation)
Java 8 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation)
Kits Configuration Installer (x32 Version: 10.0.26624 - Microsoft) Hidden
LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - )
Launchy 2.5 (HKLM-x32\...\Launchy_21344213_is1) (Version: - Code Jelly)
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games)
League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden
Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve)
Lenovo EasyCamera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.2.9200.10249 - Realtek Semiconductor Corp.)
Lenovo EasyCamera (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 6.3.9600.11105 - Realtek Semiconductor Corp.)
Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.0.0.2105 - CyberLink Corp.)
Lenovo OneKey Recovery (Version: 8.0.0.2105 - CyberLink Corp.) Hidden
Lenovo Smart Voice (HKLM\...\Lenovo SmartVoice) (Version: 1.0.2.2 - Lenovo)
Mad Max v.1.0.1.1 (HKLM-x32\...\Mad Max_is1) (Version: - )
Malwarebytes Anti-Malware version 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
Metro 2033 (HKLM-x32\...\Steam App 43110) (Version: - 4A Games)
Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (ENU) (HKLM-x32\...\{290FC320-2F5A-329E-8840-C4193BD7A9EE}) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (HKLM-x32\...\{B941AFB4-8851-33A1-9E72-0C33D463C41C}) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.6 SDK (HKLM-x32\...\{B5915D37-0637-4A26-A3AA-C5DC9F856370}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Framework 4.6 Targeting Pack (ENU) (HKLM-x32\...\{3D3CEBE6-40EA-4C48-97FD-73828281AB4A}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft .NET Framework 4.6 Targeting Pack (HKLM-x32\...\{2CC6A4A7-AAC2-46C9-9DBB-3727B5954F65}) (Version: 4.6.00081 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation)
Microsoft Help Viewer 2.2 (HKLM-x32\...\Microsoft Help Viewer 2.2) (Version: 2.2.23107 - Microsoft Corporation)
Microsoft Office 365 ProPlus - da-dk (HKLM\...\O365ProPlusRetail - da-dk) (Version: 15.0.4771.1004 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Command Line Utilities (HKLM\...\{9D573E71-1077-4C7E-B4DB-4E22A5D2B48B}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2012 Native Client (HKLM\...\{49D665A2-4C2A-476E-9AB8-FCC425F526FC}) (Version: 11.0.2100.60 - Microsoft Corporation)
Microsoft SQL Server 2014 Express LocalDB (HKLM\...\{AB8DE9BA-19E1-446A-BCFA-6B3DA9751E21}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 Management Objects (HKLM-x32\...\{2774595F-BC2A-4B12-A25B-0C37A37049B0}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 Management Objects (x64) (HKLM\...\{1F9EB3B6-AED7-4AA7-B8F1-8E314B74B2A5}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 Transact-SQL ScriptDom (HKLM\...\{020CDFE0-C127-4047-B571-37C82396B662}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server 2014 T-SQL Language Service (HKLM-x32\...\{47D08E7A-92A1-489B-B0BF-415516497BCE}) (Version: 12.0.2000.8 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft SQL Server Data Tools - enu (14.0.50616.0) (HKLM-x32\...\{58246C80-3941-4B69-AE31-264644E2ADB8}) (Version: 14.0.50616.0 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2014 (HKLM\...\{68BA34E8-9B9D-4A74-83F0-7D366B532D75}) (Version: 12.0.2402.11 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2014 (HKLM-x32\...\{718FFB65-F6E4-4D62-861F-ED10ED32C936}) (Version: 12.0.2402.11 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual Studio Express 2015 for Windows Desktop - ENU (HKLM-x32\...\{cf9e81f7-4c03-403e-92b1-93d18aa8c3a4}) (Version: 14.0.23107.10 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
MIT App Inventor Tools 2.3.0 (HKLM-x32\...\MIT App Inventor Tools) (Version: 2.3.0 - Massachusetts Institute of Technology)
Mozilla Firefox 42.0 (x86 da) (HKLM-x32\...\Mozilla Firefox 42.0 (x86 da)) (Version: 42.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 42.0.0.5780 - Mozilla)
MX-1200 Driver (HKLM-x32\...\{71A4B2E3-389B-4CFA-9D8B-F3E75DE63D2D}_is1) (Version: - MX-1200 Driver)
New Quest - Contract Missing Miners (HKLM-x32\...\New Quest - Contract Missing Miners_is1) (Version: 1.0.0.0 - GOG.com)
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.61.2 - Black Tree Gaming)
Nilfgaardian Armor Set (HKLM-x32\...\Nilfgaardian Armor Set_is1) (Version: 1.0.0.0 - GOG.com)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.6.9 - Notepad++ Team)
NVIDIA GeForce Experience 2.5.15.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.15.54 - NVIDIA Corporation)
NVIDIA Grafikdriver 358.91 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 358.91 - NVIDIA Corporation)
NVIDIA PhysX-systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Oblivion - Horse Armor Pack (HKLM-x32\...\{3ABEBD00-299D-4DCA-967F-B912163AB5EA}) (Version: 1.00.0000 - Bethesda Softworks)
Oblivion - Knights of the Nine (HKLM-x32\...\{14C87AA7-08E6-419F-A165-998EBE5023D7}) (Version: 1.00.0000 - Bethesda Softworks)
Oblivion - Mehrunes Razor (HKLM-x32\...\{EF295F5C-7B57-47AA-8889-6B3E8E214E89}) (Version: 1.00.0000 - Bethesda Softworks)
Oblivion - Orrery (HKLM-x32\...\{EC425CFC-EE78-4A91-AA25-3BFA65B75364}) (Version: 1.00.0000 - Bethesda Softworks)
Oblivion - Spell Tomes (HKLM-x32\...\{16D919E6-F019-4E15-BFBE-4A85EF19DA57}) (Version: 1.00.0000 - Bethesda Softworks)
Oblivion - Thieves Den (HKLM-x32\...\{FFFFFD17-B460-41EB-93F1-C48ABAD63828}) (Version: 1.00.0000 - Bethesda Softworks)
Oblivion - Vile Lair (HKLM-x32\...\{520F4B09-3A51-47A2-82B0-9FF1DC2D20FA}) (Version: 1.00.0000 - Bethesda Softworks)
Oblivion - Wizard's Tower (HKLM-x32\...\{2F2E3D62-8B8C-448F-8900-451325E50948}) (Version: 1.00.0000 - Bethesda Softworks)
Oblivion (HKLM-x32\...\{35CB6715-41F8-4F99-8881-6FC75BF054B0}) (Version: 1.00.0000 - Bethesda Softworks)
Ocean Optics USB Drivers (HKLM-x32\...\OOUsbDrivers) (Version: 1.1.0.0 - PASCO scientific)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4771.1004 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4771.1004 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4771.1004 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component (Version: 16.0.4229.1024 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (Version: 16.0.4229.1024 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (Version: 16.0.4229.1024 - Microsoft Corporation) Hidden
Onekey Theater (HKLM-x32\...\{91CC5BAE-A098-40D3-A43B-C0DC7CE263FE}) (Version: 3.0.1.2 - Lenovo)
Origin (HKLM-x32\...\Origin) (Version: 9.5.1.571 - Electronic Arts, Inc.)
PASCO Capstone (HKLM-x32\...\{7C09D720-8E29-4480-AE50-331E5237E6FF}) (Version: 1.2.1.1 - PASCO scientific)
Pasco USB Driver (HKLM-x32\...\PascoUSBDriver) (Version: 1.2.0.0 - PASCO scientific)
PascoCommonFiles (HKLM-x32\...\PascoCommonFiles) (Version: 2.10.3 - )
Path of Exile (HKLM-x32\...\Steam App 238960) (Version: - Grinding Gear Games)
Peggle (HKLM-x32\...\{715AD72D-887A-459E-988B-D4F3E87FA24B}) (Version: 1.04.0.0 - PopCap Games)
Play withSIX Windows client (HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\PlaywithSIX) (Version: 1.66.1184.1 - SIX Networks GmbH)
Play withSIX Windows client (HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\PlaywithSIX) (Version: 1.66.1184.1 - SIX Networks GmbH)
Popcorn Time (HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\Popcorn Time) (Version: - Popcorn Official)
Popcorn Time (HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Popcorn Time) (Version: - Popcorn Official)
Power2Go (HKLM-x32\...\{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 5.6.0.10525 - CyberLink Corp.)
Prerequisites for SSDT (HKLM-x32\...\{21373064-AD95-48DB-A32E-0D9E08EF7355}) (Version: 12.0.2000.8 - Microsoft Corporation)
Prio (HKLM\...\Prio) (Version: 2.0.0.2960 - )
RaidCall (HKLM-x32\...\RaidCall) (Version: 7.3.6-1.2.13009.198 - raidcall.com.ru)
Rainmeter (HKLM-x32\...\Rainmeter) (Version: 3.1 r2290 - )
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.21.27405 - Razer Inc.)
REALTEK Bluetooth Driver (HKLM-x32\...\{9D3D8C60-A5EF-4123-B2B9-172095903AB}) (Version: 3.805.802.010814 - REALTEK Semiconductor Corp.)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.39052 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.20.815.2013 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7541 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Driver (HKLM-x32\...\{9DAABC60-A5EF-41FF-B2B9-17329590CD5}) (Version: 1.00.0238 - REALTEK Semiconductor Corp.)
Risen (HKLM-x32\...\Steam App 40300) (Version: - Piranha – Bytes)
Rising Storm/Red Orchestra 2 Multiplayer (HKLM-x32\...\Steam App 35450) (Version: - Tripwire Interactive)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.6.8 - Rockstar Games)
Roslyn Language Services - x86 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
Saints Row: The Third (HKLM-x32\...\Steam App 55230) (Version: - Volition)
Scope (HKLM-x32\...\{2D8691FD-1FC9-4393-860D-02D91D43EF54}) (Version: 1.46.0 - Zeitnitz)
SHIELD Streaming (Version: 4.1.500 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.5.15.54 - NVIDIA Corporation) Hidden
SketchUp 2015 (HKLM\...\{319CD380-1AAB-4CAD-BE1D-59189A780FA6}) (Version: 15.2.685 - Trimble Navigation Limited)
Skype™ 7.12 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.12.101 - Skype Technologies S.A.)
Snippage (HKLM-x32\...\Snippage.B28FB424FD6880E47B18D7D649F6CC93BDE9B29B.1) (Version: 1.0 r12 - UNKNOWN)
Snippage (x32 Version: 1.0.12 - UNKNOWN) Hidden
SoundSwitch 3.5.1.26132 (HKLM\...\SoundSwitch_is1) (Version: 3.5.1.26132 - Antoine Aflalo)
SpaceEngine version 0.9.7.2 (HKLM-x32\...\{E65FD500-9218-44EC-9586-D39FAB4DFDAF}_is1) (Version: 0.9.7.2 - SpaceEngine)
Speccy (HKLM\...\Speccy) (Version: 1.28 - Piriform)
Spotify (HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\Spotify) (Version: 1.0.18.60.g5fe0413d - Spotify AB)
Spotify (HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Spotify) (Version: 1.0.18.60.g5fe0413d - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Stronghold Crusader Extreme HD (HKLM-x32\...\{8C3727F2-8E37-49E4-820C-03B1677F53B6}) (Version: 1.30.1003 - Firefly Studios)
Stronghold Crusader Extreme HD (HKLM-x32\...\Steam App 16700) (Version: - Firefly Studios)
Stronghold Crusader HD (HKLM-x32\...\Steam App 40970) (Version: - FireFly Studios)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.16.0 - Synaptics Incorporated)
System Requirements Lab Detection (HKLM-x32\...\{6807F70A-9594-4828-B1CD-7C1785E9C62A}) (Version: 2.2.4.0 - Husdawg, LLC)
Team Explorer for Microsoft Visual Studio 2015 (x32 Version: 14.0.23102 - Microsoft Corporation) Hidden
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH)
TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.47484 - TeamViewer)
Temerian Armor Set (HKLM-x32\...\Temerian Armor Set_is1) (Version: 1.0.0.0 - GOG.com)
TerraMap (HKLM-x32\...\{489EF7F9-39DA-4B78-AB13-ECBBA3898B2E}) (Version: 1.0.8 - Jason Coon)
Terraria (HKLM-x32\...\1207665503_is1) (Version: 2.7.0.9 - GOG.com)
Terraria (HKLM-x32\...\Steam App 105600) (Version: - Re-Logic)
Test Tools for Microsoft Visual Studio 2015 (x32 Version: 14.0.23107 - Microsoft Corporation) Hidden
The Elder Scrolls III Morrowind GOTY version 0.0.0.9 (HKLM-x32\...\The Elder Scrolls III Morrowind GOTY_is1) (Version: 0.0.0.9 - WaLMaRT)
The Elder Scrolls V Skyrim (HKLM-x32\...\{4FEF52F2-3C2C-4B80-9443-3D6A654328D0}_is1) (Version: - Bethesda Softworks)
The Witcher 3 - Wild Hunt (HKLM-x32\...\1207664643_is1) (Version: 1.0.0.0 - GOG.com)
Universal CRT Extension SDK (x32 Version: 10.0.10150 - Microsoft Corporation) Hidden
Universal CRT Extension SDK (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (x32 Version: 10.0.10150 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Redistributable (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Tools x64 (Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Tools x86 (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal General MIDI DLS Extension SDK (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)
User Manuals (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 3.0.0.3 - Lenovo)
User Manuals (x32 Version: 3.0.0.3 - Lenovo) Hidden
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
Watch Dogs (HKLM-x32\...\Watch Dogs_R.G. Mechanics_is1) (Version: - R.G. Mechanics, spider91)
WestwoodOnline (HKLM-x32\...\{BBCD6D56-8A26-4DDE-9482-DBC9C7B7341D}) (Version: 1.0.0.0 - WestwoodOnline)
WildStar (HKLM-x32\...\WildStar) (Version: - NCSOFT)
WinAppDeploy (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinDirStat 1.1.2 (HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\WinDirStat) (Version: - )
WinDirStat 1.1.2 (HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\WinDirStat) (Version: - )
Windows Driver Package - Lenovo (ACPIVPC) System (02/17/2013 9.52.0.776) (HKLM\...\35DD26BE48DAF4A9F35F969F3CB1E3E1435E661E) (Version: 02/17/2013 9.52.0.776 - Lenovo)
Windows Driver Package - Lenovo (WUDFRd) LenovoVhid (07/25/2013 10.30.0.288) (HKLM\...\6BCA401E9CBEED970D75F55FA5320F60D11984E9) (Version: 07/25/2013 10.30.0.288 - Lenovo)
Windows Resource Kit Tools - SubInAcl.exe (HKLM-x32\...\{D3EE034D-5B92-4A55-AA02-2E6D0A6A96EE}) (Version: 5.2.3790.1164 - Microsoft Corporation)
Windows Software Development Kit - Windows 10.0.26624 (HKLM-x32\...\{e7a0c8b6-b0e9-41e2-8a0a-a6784f88d1d4}) (Version: 10.0.26624 - Microsoft Corporation)
Windows-driverpakke - Ocean Optics, Inc. (WinUSB) OceanOpticsUSBDevice (07/15/2010 1.2.0) (HKLM\...\29DE0EDA6D3934C320738A786038F6A659246EE2) (Version: 07/15/2010 1.2.0 - Ocean Optics, Inc.)
Windows-driverpakke - Ocean Optics, Inc. (WinUSB) OceanOpticsUSBDevice (07/15/2010 1.2.0) (HKLM\...\5C2CA2E78E0549DAD5A8D092CC9B1280E6918AF0) (Version: 07/15/2010 1.2.0 - Ocean Optics, Inc.)
Windows-driverpakke - Ocean Optics, Inc. (WinUSB) OceanOpticsUSBDevice (07/15/2010 1.2.0) (HKLM\...\87289D5FED0A52C9CF1632E5C312356FF0CE502B) (Version: 07/15/2010 1.2.0 - Ocean Optics, Inc.)
Windows-driverpakke - Ocean Optics, Inc. (WinUSB) OceanOpticsUSBDevice (07/15/2010 1.2.0) (HKLM\...\9EB1D222C06E311A5B97457292EC1BACC8BD3E1C) (Version: 07/15/2010 1.2.0 - Ocean Optics, Inc.)
Windows-driverpakke - Ocean Optics, Inc. (WinUSB) OceanOpticsUSBDevice (07/15/2010 1.2.0) (HKLM\...\A5E55D4D1E9B0296BDF8BE93E5FA539478E93E3A) (Version: 07/15/2010 1.2.0 - Ocean Optics, Inc.)
Windows-driverpakke - Ocean Optics, Inc. (WinUSB) OceanOpticsUSBDevice (07/15/2010 1.2.0) (HKLM\...\E99E4F0F1A2992FB6BA9E272A967C402C47329C9) (Version: 07/15/2010 1.2.0 - Ocean Optics, Inc.)
Windows-driverpakke - PASCO Scientific (WinUSB) Pasco Interface (08/14/2008 1.0.0.0) (HKLM\...\AD4AD0F184940E4712E96652A58ADDC47894E622) (Version: 08/14/2008 1.0.0.0 - PASCO Scientific)
WinRAR 5.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH)
WinRT Intellisense Desktop - en-us (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense Desktop - Other Languages (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - en-us (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - Other Languages (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - en-us (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - Other Languages (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - en-us (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - Other Languages (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense Xbox Live Extension SDK - en-us (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WinRT Intellisense Xbox Live Extension SDK - Other Languages (x32 Version: 10.0.26624 - Microsoft Corporation) Hidden
WordMat v. 1.10 (HKLM-x32\...\{301A8257-D5EF-48B4-AAC2-E86700DDA6FE}_is1) (Version: - Eduap)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Svend\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3882994020-747025732-738583552-1002_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Svend\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileCoAuth.exe (Microsoft Corporation)
==================== Restore Points =========================
29-11-2015 18:01:58 Planlagt kontrolpunkt
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {03F44A20-6C56-4919-B1C4-D75CF4E6EA3B} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {0CB38E11-5428-4BD8-94E3-EE3CAF732958} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-10-30] (Microsoft Corporation)
Task: {0FEA1476-5171-4E18-B604-1D98C5E00D8F} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-11-25] (AVAST Software)
Task: {15DB5AD6-6CF6-4005-B03D-93D281D7E4BB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {20686DCD-5A62-4BCA-BB6F-9016375B7A9F} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {4A1CC51D-9114-4078-9EC3-2C1001A7C313} - System32\Tasks\Audio Updater Uninstaller => C:\Program Files (x86)\Audio Updater\AudioUpdater.exe [2015-10-09] (Backup Updater) <==== ATTENTION
Task: {551FB7E9-280C-4941-B5B5-FC648670A1AE} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {5521F811-4110-42C5-A1C5-53E902C41C98} - System32\Tasks\{6F2E5455-5926-4C49-A4A4-ED73C5A6035B} => pcalua.exe -a "C:\Spil\Fallout New Vegas - Ultimate Edition\FalloutNVLauncher.exe" -d "C:\Spil\Fallout New Vegas - Ultimate Edition"
Task: {591D3C47-3DAB-4E99-8B9A-EB93E2FEC84D} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-11-10] (Adobe Systems Incorporated)
Task: {592B90D8-6E3D-4C8E-B3A8-54E404EF452D} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-10-13] (Microsoft Corporation)
Task: {5F01E1F0-8F92-4669-81D2-911E59DF6B31} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {5F5C0A34-3012-45B4-90AA-36AB4CF3318D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-03-13] (Piriform Ltd)
Task: {630D7EE9-784A-4FFF-BC9B-F21A1DD26443} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe
Task: {6705C4AD-3619-4392-8E86-CEA9207AC07B} - System32\Tasks\{C0D794E4-EC14-4859-B4C2-2ACF4F25D066} => pcalua.exe -a "C:\Riot Games\League of Legends\lol.launcher.exe" -d "C:\Riot Games\League of Legends\"
Task: {69C370E5-98C0-4C95-BD01-99FE40796F62} - \IT Viewer Uninstaller -> No File <==== ATTENTION
Task: {75967FC6-C4A5-4758-812D-FD37B70C5E11} - System32\Tasks\PDVDServ Task => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.EXE
Task: {7E8761E7-2649-4D68-992A-7D5825008CDB} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-10-28] (Adobe Systems Incorporated)
Task: {87C868C2-C7E2-4DA0-820C-457F30C89E50} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-10-13] (Microsoft Corporation)
Task: {965E8091-FB9C-436D-8D53-F0B751F6E0EB} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {9FFD2E94-1CF7-4591-9B4B-A162E27F4713} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {A59C94AC-4BE2-48A6-BBF2-39A6E6FFCC36} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {BA405675-8710-4631-981E-6D2C05961D4A} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2015-10-13] (Microsoft Corporation)
Task: {BFA5B6BC-EBD2-48B6-9EEA-E9CA07F67CD0} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {C5D2D64F-67E7-4069-A795-8945F486D233} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe
Task: {C5FC4700-BED2-44ED-AE5E-46EC256E57EB} - System32\Tasks\{CEEE956A-1EB5-47EF-978C-9AAB20D120EB} => pcalua.exe -a "C:\Riot Games\League of Legends\lol.launcher.exe" -d "C:\Riot Games\League of Legends"
Task: {C672D2C2-FA2C-4C15-8298-9EB7254A55CA} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-11-26] (Microsoft Corporation)
Task: {D80B0001-2978-4517-878A-99F1941933D5} - System32\Tasks\{6FCCC2F9-4DE8-41AB-92EA-DE043B046569} => pcalua.exe -a "C:\Riot Games\League of Legends\lol.launcher.exe" -d "C:\Riot Games\League of Legends\"
Task: {DD6E8A77-A4A3-482F-A694-849E99DDD3BC} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {DF971E8C-8BF5-47A8-A067-6F8D666ECDDF} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {EA888A8D-BBBA-4A61-816D-1FF250FF8BFD} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-10-30] (Microsoft Corporation)
Task: {F174EB7C-83DB-4798-8836-0DD8AD503CCB} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {F2C062DE-FDD9-45E4-9D11-44EE106EB155} - System32\Tasks\avastBCLRestartS-1-5-21-3882994020-747025732-738583552-1002 => Chrome.exe
Task: {FC92ED3F-1084-4780-BB11-3062D03A99D5} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe [2015-08-11] (Microsoft Corporation)
Task: {FD2F02C3-8E2D-47C4-B967-A4BF1454FD75} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Shortcuts =============================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2015-09-08 22:39 - 2015-09-08 22:39 - 00032768 _____ () C:\WINDOWS\SYSTEM32\licensemanagerapi.dll
2015-09-08 21:52 - 2015-11-05 16:08 - 00116344 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-09-23 15:47 - 2015-09-23 15:47 - 00085800 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-09-23 15:47 - 2015-09-23 15:47 - 01328912 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2012-11-08 20:30 - 2012-11-08 20:30 - 00012656 _____ () C:\Program Files\Prio\prio_svc.exe
2015-06-23 20:11 - 2015-06-23 20:11 - 00187048 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
2014-06-13 19:16 - 2012-04-25 03:43 - 00390632 ____N () C:\Program Files\CyberLink\Shared files\RichVideo64.exe
2015-09-16 09:48 - 2015-10-13 04:34 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2015-10-01 17:44 - 2015-09-17 07:48 - 02494712 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2014-06-13 18:39 - 2010-10-26 11:40 - 00049056 _____ () C:\Program Files\CONEXANT\ForteConfig\fmapp.exe
2014-05-25 15:18 - 2014-05-25 15:18 - 00036536 _____ () C:\Program Files\Rainmeter\Rainmeter.exe
2014-05-25 15:18 - 2014-05-25 15:18 - 00747192 _____ () C:\Program Files\Rainmeter\Rainmeter.dll
2014-05-25 15:17 - 2014-05-25 15:17 - 00056832 _____ () C:\Program Files\Rainmeter\Plugins\WebParser.dll
2014-05-25 15:17 - 2014-05-25 15:17 - 00012800 _____ () C:\Program Files\Rainmeter\Plugins\Perfmon.dll
2014-05-25 15:17 - 2014-05-25 15:17 - 00010240 _____ () C:\Program Files\Rainmeter\Plugins\WindowMessagePlugin.dll
2015-10-01 17:44 - 2015-09-17 07:48 - 02494712 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2014-05-12 10:49 - 2014-05-12 10:49 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll
2015-10-01 17:44 - 2015-09-17 06:48 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-07-10 11:59 - 2015-07-10 11:59 - 00143360 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\XamlTileRendering.dll
2015-09-09 07:44 - 2015-08-11 10:14 - 00404480 _____ () C:\WINDOWS\System32\diagtrack_wininternal.dll
2015-10-01 17:44 - 2015-09-17 06:44 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-10-01 17:43 - 2015-09-17 06:42 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-10-01 17:43 - 2015-09-17 06:42 - 01808384 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-10-01 17:44 - 2015-09-17 06:43 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-07-10 12:00 - 2015-07-10 17:58 - 00210432 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.ProxyStub.dll
2015-09-09 07:44 - 2015-08-11 10:10 - 00293376 _____ () C:\WINDOWS\SYSTEM32\textinputframework.dll
2015-11-30 08:09 - 2015-11-30 08:09 - 00012800 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1120.13270.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
2015-11-30 08:09 - 2015-11-30 08:09 - 11526656 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1120.13270.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll
2015-11-30 08:08 - 2015-11-30 08:09 - 00258560 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1120.13270.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll
2015-11-11 21:45 - 2015-11-09 14:22 - 00348160 _____ () C:\Games\Fallout 4\GFSDK_GodraysLib.x64.dll
2015-11-23 18:25 - 2015-11-21 08:04 - 00112640 _____ () C:\Games\Fallout 4\ShadowBoost.asi
2015-11-30 14:03 - 2015-11-30 14:03 - 02032640 _____ () C:\Users\Svend\AppData\Local\Temp\hp_upd2_1270.exe
2015-11-25 17:19 - 2015-11-25 17:19 - 00103888 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-11-25 17:19 - 2015-11-25 17:19 - 00125512 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-11-27 16:15 - 2015-11-27 16:15 - 02812416 _____ () C:\Program Files\AVAST Software\Avast\defs\15112700\algo.dll
2015-11-25 17:19 - 2015-11-25 17:19 - 00466448 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2015-11-27 23:26 - 2015-11-27 23:26 - 02995712 _____ () C:\Program Files\AVAST Software\Avast\defs\15112701\algo.dll
2015-11-30 14:06 - 2015-11-30 14:06 - 02996736 _____ () C:\Program Files\AVAST Software\Avast\defs\15113000\algo.dll
2014-06-13 18:31 - 2013-09-16 20:20 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\ACE.dll
2015-04-13 20:40 - 2015-04-13 20:40 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2015-09-16 09:49 - 2015-09-16 09:55 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\AppVIsvStream32.dll
2014-11-04 23:35 - 2014-11-04 23:36 - 00107520 ____R () C:\Program Files (x86)\DAEMON Tools Pro\BRD.dll
2014-11-04 23:05 - 2015-10-05 17:18 - 00778752 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2014-11-04 23:05 - 2015-11-10 03:44 - 02541648 _____ () C:\Program Files (x86)\Steam\video.dll
2015-01-22 21:10 - 2015-07-03 17:12 - 04962816 _____ () C:\Program Files (x86)\Steam\v8.dll
2014-11-04 23:05 - 2015-09-24 01:33 - 02549248 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2014-11-04 23:05 - 2015-09-24 01:33 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2014-11-04 23:05 - 2015-09-24 01:33 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2014-11-04 23:05 - 2015-09-24 01:33 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2014-11-04 23:05 - 2015-09-24 01:33 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2015-01-22 21:10 - 2015-07-03 17:12 - 01556992 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2015-01-22 21:10 - 2015-07-03 17:12 - 01187840 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2014-11-04 23:05 - 2015-11-10 03:44 - 00806992 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2015-07-22 14:29 - 2015-11-03 23:00 - 00201728 _____ () C:\Program Files (x86)\Steam\bin\openvr_api.dll
2014-11-04 23:05 - 2015-10-08 23:20 - 45010208 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll
2015-01-22 21:10 - 2015-09-25 00:56 - 00119208 _____ () C:\Program Files (x86)\Steam\winh264.dll
2015-11-12 10:26 - 2015-11-07 05:36 - 01532744 _____ () C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.86\libglesv2.dll
2015-11-12 10:26 - 2015-11-07 05:36 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.86\libegl.dll
2015-11-12 10:26 - 2015-11-07 05:36 - 16496456 _____ () C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.86\PepperFlash\pepflashplayer.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`26hfm
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3882994020-747025732-738583552-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Svend\OneDrive\IFTTT\reddit\EarthPorn\q1SVsXp.jpg
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Users\Svend\OneDrive\IFTTT\reddit\EarthPorn\q1SVsXp.jpg
DNS Servers: 194.150.115.120 - 91.144.255.19
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
HKLM\...\StartupApproved\StartupFolder: => "Launchy.lnk"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "OnekeyStudio"
HKLM\...\StartupApproved\Run: => "ShadowPlay"
HKLM\...\StartupApproved\Run: => "NvBackend"
HKLM\...\StartupApproved\Run: => "SmartAudio"
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "RazerCortex"
HKLM\...\StartupApproved\Run32: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "MX1200Mouse"
HKLM\...\StartupApproved\Run32: => "Razer Synapse"
HKLM\...\StartupApproved\Run32: => "BlueStacks Agent"
HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\StartupApproved\StartupFolder: => "Send til OneNote.lnk"
HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\StartupApproved\Run: => "DAEMON Tools Pro Agent"
HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\StartupApproved\Run: => "Lync"
HKU\S-1-5-21-3882994020-747025732-738583552-1002\...\StartupApproved\Run: => "GalaxyClient"
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\StartupFolder: => "Send til OneNote.lnk"
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "DAEMON Tools Pro Agent"
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "Lync"
HKU\S-1-5-21-3882994020-747025732-738583552-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "GalaxyClient"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{A352E792-C30E-4D4B-952D-25C5B2BAA4F3}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\WDExpress.exe
FirewallRules: [UDP Query User{61F8A334-CACF-450E-9EE4-B6CE064E3D48}C:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe
FirewallRules: [TCP Query User{EE99DBE5-95C8-4F70-8E87-04C924AA4745}C:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\terraria\terrariaserver.exe
FirewallRules: [UDP Query User{242130A4-09F5-4644-B6C2-2E3F93C7BE22}C:\program files (x86)\heroes of the storm\versions\base37351\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base37351\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{0F47CD7C-10B1-4B36-926C-2DF5A25A5496}C:\program files (x86)\heroes of the storm\versions\base37351\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base37351\heroesofthestorm_x64.exe
FirewallRules: [{A904936F-644D-4EF0-ABFF-13C2349AA0BB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Terraria\Terraria.exe
FirewallRules: [{C523781D-BE4F-4348-90A7-451A433C162B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Terraria\Terraria.exe
FirewallRules: [{68976ECB-6E28-46FE-82E2-12BC71CC8A6C}] => (Allow) C:\Users\Svend\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{5854C55A-233C-475B-BEEF-C0C3C869F416}] => (Allow) C:\Users\Svend\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{90B1FEA8-3735-4BA9-A6B6-3703A2BA7323}] => (Allow) C:\Users\Svend\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{D14892CF-A771-4C11-B063-92599564A582}] => (Allow) C:\Users\Svend\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{BF4B6349-EC5F-47B2-8EE5-B19969DD5941}] => (Allow) C:\Users\Svend\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{4158F7B2-32BE-4218-A623-AFEDAD6C4242}] => (Allow) C:\Users\Svend\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [UDP Query User{486C9D9D-6456-4976-8D3E-E7BA7AC6BDD4}C:\users\svend\appdata\local\popcorn time\nw.exe] => (Allow) C:\users\svend\appdata\local\popcorn time\nw.exe
FirewallRules: [TCP Query User{ACCD69E3-477D-40A3-BEE4-9528D55AF245}C:\users\svend\appdata\local\popcorn time\nw.exe] => (Allow) C:\users\svend\appdata\local\popcorn time\nw.exe
FirewallRules: [{46A6B88E-6889-4B52-80C1-6040C401AB14}] => (Allow) C:\Program Files (x86)\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivlauncher.exe
FirewallRules: [{70EAEC11-1BE9-4408-9E7B-5CAC70B94EFC}] => (Allow) C:\Program Files (x86)\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivlauncher.exe
FirewallRules: [{CD564010-7F22-46B4-8318-5894B6C8C1D6}] => (Allow) C:\Program Files (x86)\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivboot.exe
FirewallRules: [{59DACA88-7A48-4BE8-AAD7-299CFD8670D1}] => (Allow) C:\Program Files (x86)\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivboot.exe
FirewallRules: [UDP Query User{3209E752-2047-4A11-B0D5-7742CB47E346}C:\program files\rockstar games\grand theft auto v\gta5.exe] => (Allow) C:\program files\rockstar games\grand theft auto v\gta5.exe
FirewallRules: [TCP Query User{ED583748-C8B0-4FFA-958D-BA1FE59C2C95}C:\program files\rockstar games\grand theft auto v\gta5.exe] => (Allow) C:\program files\rockstar games\grand theft auto v\gta5.exe
FirewallRules: [UDP Query User{C81237AB-101E-4D08-A54D-5ABB31128AA5}C:\program files\rockstar games\grand theft auto v\gta5.exe] => (Allow) C:\program files\rockstar games\grand theft auto v\gta5.exe
FirewallRules: [TCP Query User{CFFDAF51-B048-4CCB-9308-EEF725DFFEC0}C:\program files\rockstar games\grand theft auto v\gta5.exe] => (Allow) C:\program files\rockstar games\grand theft auto v\gta5.exe
FirewallRules: [{246A13E3-A77B-4215-9452-2420ABD0DDBE}] => (Block) C:\Users\Svend\AppData\Local\FluxSoftware\Flux
FirewallRules: [{C10BFCA5-6ECE-4140-A7C0-40E69E963D86}] => (Block) %ProgramFiles%\Rainmeter\Rainmeter.exe
FirewallRules: [{C81BEFAC-99E3-4687-8855-EFDBAD7F06AA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Risen\bin\Risen.exe
FirewallRules: [{46501BFB-7143-45CD-8072-3B44F9D0D4FA}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Risen\bin\Risen.exe
FirewallRules: [{61009112-94F6-4D07-AE77-A69100E0C08B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV Episodes from Liberty City\EFLC\LaunchEFLC.exe
FirewallRules: [{EE5266BE-91DD-43BB-8FDF-6BBCDEE10C9E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV Episodes from Liberty City\EFLC\LaunchEFLC.exe
FirewallRules: [{2BB510FC-7788-4011-9345-356AB9B9667A}] => (Allow) C:\Program Files (x86)\Origin Games\Peggle Deluxe\Peggle.exe
FirewallRules: [{7065DB55-6259-4933-BFB7-70357C52F07D}] => (Allow) C:\Program Files (x86)\Origin Games\Peggle Deluxe\Peggle.exe
FirewallRules: [{032A2F3A-A47E-498A-89CC-CDB897319861}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{58AA0A18-4D67-4424-AB08-2A56A756132E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{7C669C32-AB5A-409A-81F4-AA28D8376F16}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Stronghold Crusader Extreme\stronghold crusader.exe
FirewallRules: [{945CA85E-01DF-451C-8A7D-BFFD505533E7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dead Space\Dead Space.exe
FirewallRules: [{B12051F4-F771-4BC8-8C04-E5053BC42057}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dead Space\Dead Space.exe
FirewallRules: [{0A43DD5A-1EFB-4BC4-9317-1012D78E3C8B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Stronghold Crusader Extreme\Stronghold_Crusader_Extreme.exe
FirewallRules: [{AE5C7769-CBA6-4CB3-8B0F-28B3D95974FD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Stronghold Crusader Extreme\Stronghold_Crusader_Extreme.exe
FirewallRules: [{9DBD0371-A219-4D30-A093-18D58E9DF7D3}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{A08190F5-AA9C-4A0E-AC30-8DE18DBF7A2E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{0EC11AD3-F915-4407-8A63-4FB3B6AD8A14}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{1EF615C8-FC89-4660-939F-6071833DC709}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{E6D934EF-0C6C-4AC8-80C0-912755097997}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Source\hl2.exe
FirewallRules: [{F1941A43-9DF3-4B1D-BC81-0A7606673158}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Source\hl2.exe
FirewallRules: [{3E01CEF6-9D35-416B-B6DF-B213B72D37AF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{B5F4F5B3-BD20-4F10-AC60-7C19D20AB45F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{3F30B0CC-A6E3-47AF-B36B-40203F789B53}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Stronghold Crusader Extreme\Stronghold Crusader.exe
FirewallRules: [{D9B4BC94-E573-413C-B799-9BF78FCF99A9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Stronghold Crusader Extreme\Stronghold Crusader.exe
FirewallRules: [{A5CEA44E-F90C-48E9-8401-E966CCA88AED}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Saints Row the Third\game_launcher.exe
FirewallRules: [{D2B446F2-DBA4-483D-B8FC-18678D3151E9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Saints Row the Third\game_launcher.exe
FirewallRules: [{4896FA86-7B39-4C0E-A8A2-FB5E36832994}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{4913751E-FCCF-4A7B-8082-5857A273503B}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{71F52AE9-102D-4C70-BF46-DD30763A04E4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Burnout Paradise The Ultimate Box\BurnoutConfigTool.exe
FirewallRules: [{F88C4EA5-E422-4870-92D6-D55835D08A1E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Burnout Paradise The Ultimate Box\BurnoutConfigTool.exe
FirewallRules: [{2413AD78-40B2-471D-B7A9-82B4CE5338D8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Burnout Paradise The Ultimate Box\BurnoutParadise.exe
FirewallRules: [{8ABEDA91-C982-4512-9F06-A075673F4FD9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Burnout Paradise The Ultimate Box\BurnoutParadise.exe
FirewallRules: [{E066DCC8-1599-4433-8AEA-EF869973C396}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dead Island\DeadIslandGame.exe
FirewallRules: [{8AF63557-79A6-4597-A790-42A91D569757}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dead Island\DeadIslandGame.exe
FirewallRules: [{82468A87-B291-4B57-8BB5-31626959A3FB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Metro 2033\metro2033.exe
FirewallRules: [{831D5F9F-DC09-4DC6-8C86-8FB96F05FCCD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Metro 2033\metro2033.exe
FirewallRules: [UDP Query User{0F9925FB-E663-4546-8108-2F3C25726B1D}C:\spil\borderlands - the pre-sequel\binaries\win32\borderlandspresequel.exe] => (Allow) C:\spil\borderlands - the pre-sequel\binaries\win32\borderlandspresequel.exe
FirewallRules: [TCP Query User{72D26271-1128-4B88-9CB3-B51DE7F990D1}C:\spil\borderlands - the pre-sequel\binaries\win32\borderlandspresequel.exe] => (Allow) C:\spil\borderlands - the pre-sequel\binaries\win32\borderlandspresequel.exe
FirewallRules: [UDP Query User{DDF2CBB4-9A81-4EB3-ABD9-ADB20B14752E}C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe
FirewallRules: [TCP Query User{051DD464-6BCF-4DF7-B3FD-FB69011C8A49}C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe
FirewallRules: [UDP Query User{6380526F-8231-46F6-8CFB-30B56169419B}C:\program files (x86)\diablo iii\diablo iii.exe] => (Allow) C:\program files (x86)\diablo iii\diablo iii.exe
FirewallRules: [TCP Query User{0E821B9D-D076-405F-B5FF-8908BA055E50}C:\program files (x86)\diablo iii\diablo iii.exe] => (Allow) C:\program files (x86)\diablo iii\diablo iii.exe
FirewallRules: [UDP Query User{2C22AB4C-7DA7-4295-B029-C49F28610F64}C:\users\svend\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\svend\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{56FCC700-6ADC-4E23-A65C-5AC2FC084BE9}C:\users\svend\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\svend\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{1F95BC2A-BA86-4212-B31A-B4556912C491}C:\users\svend\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\svend\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{4C6AE76C-0A59-4918-B6B6-0DF4A6F69FF7}C:\users\svend\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\svend\appdata\roaming\spotify\spotify.exe
FirewallRules: [{36AC4B32-1913-4D91-B798-DC1A6C9B5908}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe
FirewallRules: [{2F1A226E-235D-4D2A-8920-EAE2B754E565}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe
FirewallRules: [{161ADC6E-C4DF-48F7-B3A4-BC17832E8E65}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{A95E993A-C755-4B23-A834-856E312E5BEA}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [UDP Query User{3FFE1D6B-FBA9-4CAF-83E7-3F66D7504069}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{17D9089F-E348-4608-8AF8-A740388509ED}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{AC0AA5A8-FEA5-485A-8A19-64BB6505ED6B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\GTAIV\LaunchGTAIV.exe
FirewallRules: [{213538D1-CD1A-4E5B-860D-5FEA3E3A31B9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\GTAIV\LaunchGTAIV.exe
FirewallRules: [{A21E1C12-05BA-428B-AC53-B8461792EBF2}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{515E52C9-096F-4381-ADF7-4535AF3B591C}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{6A34FE2A-49FF-4F8E-A3F9-18A77D0C2DAB}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{80133906-1D18-402F-AD7E-18475CC60F3D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{71A7AD66-1B26-4A14-9A73-743770558894}] => (Allow) C:\Program Files\CyberLink\PowerDirector10\PDR10.EXE
FirewallRules: [{A1C5C27E-8F68-4708-AC31-78C2512BC1A4}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{9CD534B6-D082-48DE-9C54-FB85ED585C7C}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{8411BE62-83BE-4FFE-85DF-6548CD6A7868}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{7542B147-8663-41C7-B194-8A1132CCF8B7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{24DA4B31-4E7D-4803-8E6A-37BA3CFB13CE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{6C747B6F-A20E-439C-A126-8D1E979489FE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{075D707F-6E4F-45AF-9AF8-CAF3CABEE5D7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{A52C04E3-5045-4B19-959E-A77A1BDCB20E}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe
FirewallRules: [{EF09266D-F1F0-4B84-957A-84298DE19C58}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Arma 2 Operation Arrowhead\ArmA2OA_BE.exe
FirewallRules: [{2E24AC61-7C36-4641-975D-62B3D515BBA6}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Arma 2 Operation Arrowhead\ArmA2OA_BE.exe
FirewallRules: [{E447DBFD-1045-40B9-9E14-70A413CF1F88}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe
FirewallRules: [{ACBEBCB6-0C6F-43EB-B666-D94E910DB713}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe
FirewallRules: [{AE4496B6-40B8-4141-ACA3-66C6578FCB99}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Saints Row the Third\SaintsRowTheThird.exe
FirewallRules: [{287BE17C-F333-4480-8DF0-2AA3B0A6E00E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Saints Row the Third\SaintsRowTheThird.exe
FirewallRules: [{BD0F7AD8-532B-4AD7-BA93-EC6E447D288C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Saints Row the Third\SaintsRowTheThird_DX11.exe
FirewallRules: [{168D523C-1FEA-419B-9690-867F683CDEAB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Saints Row the Third\SaintsRowTheThird_DX11.exe
FirewallRules: [TCP Query User{29A8DD21-6AC0-4699-974D-F94BBF487FCB}C:\users\svend\appdata\local\popcorn time\nw.exe] => (Allow) C:\users\svend\appdata\local\popcorn time\nw.exe
FirewallRules: [UDP Query User{028A4386-EBAD-45E6-8501-015DD3945ABB}C:\users\svend\appdata\local\popcorn time\nw.exe] => (Allow) C:\users\svend\appdata\local\popcorn time\nw.exe
FirewallRules: [{E65788C8-96C4-4CA0-BBE3-20DCB4F11223}] => (Allow) C:\Program Files (x86)\Origin Games\Command and Conquer Red Alert II\RA2Launcher.exe
FirewallRules: [{C6ACDBAE-74BC-4F4C-B0C4-100ABD63E197}] => (Allow) C:\Program Files (x86)\Origin Games\Command and Conquer Red Alert II\RA2Launcher.exe
FirewallRules: [{DB8A4F97-3A5C-4036-9F93-679F5FF1958B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{6D27C2E7-5E42-46C1-BC37-BE0B506AD11B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{291F6077-F439-4FDD-8022-27F389051005}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{C538BCDE-0FB5-43BD-8117-CE2D66CA13ED}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{1A753299-5020-45CF-AE76-82477D569CA1}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{E53BBD34-B7EA-416D-BEFE-778CD1C1FFA3}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{67441671-300A-4002-B50E-EA47E5FEF559}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{CAD8BFF4-F2E6-4D4F-9DDF-776E069010F8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Arma 2\arma2.exe
FirewallRules: [{0C6C676A-A104-401B-AD04-C8A28CE23BAC}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Arma 2\arma2.exe
FirewallRules: [{291F8D2B-AEEA-45AF-B524-CD8906473843}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Red Orchestra 2\Binaries\Win32\ROGame.exe
FirewallRules: [{27A98793-C128-43C2-AA81-4E70CD9F53F1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Red Orchestra 2\Binaries\Win32\ROGame.exe
FirewallRules: [{4466D4C7-CA8F-4523-8803-3A97F6F8A869}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
FirewallRules: [{4BEF939C-F5B5-4C65-B783-F1535BFBC051}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{D856C5A1-7E40-429D-A714-FF7C3F3DEAB6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{E2BF7C2A-08A1-49DE-836E-5A66474C5E20}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{552DD81B-B210-4293-BB7E-E183053F985F}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{959933E9-F292-482E-BCC9-AA8EB60C2F2E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{C78BA169-5102-430F-9960-34FAA14E1BF0}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{973FA98F-02AF-432F-8E00-0AACB4006C26}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{0321BA31-9DD5-430A-9214-5807252CC440}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{8FC547E5-1C2B-456D-B6E4-C31E4028C7CE}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{C77BA6A1-E6E0-47F0-891C-F9A8B01A4DBB}C:\games\fallout 4\fallout4.exe] => (Allow) C:\games\fallout 4\fallout4.exe
FirewallRules: [UDP Query User{A8033A24-359A-405D-8B8D-3E897F11DD87}C:\games\fallout 4\fallout4.exe] => (Allow) C:\games\fallout 4\fallout4.exe
FirewallRules: [{3ED4ECF2-E989-4B6C-AE23-8E8FC1DDEE6D}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe
FirewallRules: [{CC10EE90-E2F6-4344-BFF2-764C616DFB21}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe
FirewallRules: [{A4B7B2B6-A91B-463E-BE50-AD31A25F5211}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe
==================== Faulty Device Manager Devices =============
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (11/30/2015 02:13:15 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: SVENDPC)
Description: Aktivering af app‘en Microsoft.WindowsStore_8wekyb3d8bbwe!App mislykkedes med fejlen: -2147023728 Du kan finde flere oplysninger i loggen Microsoft-Windows-TWinUI/Operational.
Error: (11/30/2015 01:07:23 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: SVENDPC)
Description: Aktivering af app‘en Microsoft.WindowsStore_8wekyb3d8bbwe!App mislykkedes med fejlen: -2147023728 Du kan finde flere oplysninger i loggen Microsoft-Windows-TWinUI/Operational.
Error: (11/30/2015 00:16:36 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: SVENDPC)
Description: Aktivering af app‘en Microsoft.WindowsStore_8wekyb3d8bbwe!App mislykkedes med fejlen: -2147023728 Du kan finde flere oplysninger i loggen Microsoft-Windows-TWinUI/Operational.
Error: (11/30/2015 11:07:00 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: SVENDPC)
Description: Aktivering af app‘en Microsoft.WindowsStore_8wekyb3d8bbwe!App mislykkedes med fejlen: -2147023728 Du kan finde flere oplysninger i loggen Microsoft-Windows-TWinUI/Operational.
Error: (11/30/2015 10:13:07 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: SVENDPC)
Description: Aktivering af app‘en Microsoft.WindowsStore_8wekyb3d8bbwe!App mislykkedes med fejlen: -2147023728 Du kan finde flere oplysninger i loggen Microsoft-Windows-TWinUI/Operational.
Error: (11/30/2015 09:06:37 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: SVENDPC)
Description: Aktivering af app‘en Microsoft.WindowsStore_8wekyb3d8bbwe!App mislykkedes med fejlen: -2147023728 Du kan finde flere oplysninger i loggen Microsoft-Windows-TWinUI/Operational.
Error: (11/30/2015 08:06:00 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: SVENDPC)
Description: Aktivering af app‘en Microsoft.WindowsStore_8wekyb3d8bbwe!App mislykkedes med fejlen: -2147023728 Du kan finde flere oplysninger i loggen Microsoft-Windows-TWinUI/Operational.
Error: (11/30/2015 07:16:15 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: SVENDPC)
Description: Aktivering af app‘en Microsoft.WindowsStore_8wekyb3d8bbwe!App mislykkedes med fejlen: -2147023728 Du kan finde flere oplysninger i loggen Microsoft-Windows-TWinUI/Operational.
Error: (11/30/2015 07:16:09 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: SVENDPC)
Description: Aktivering af app‘en Microsoft.WindowsStore_8wekyb3d8bbwe!App mislykkedes med fejlen: -2147023728 Du kan finde flere oplysninger i loggen Microsoft-Windows-TWinUI/Operational.
Error: (11/29/2015 11:14:47 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: SVENDPC)
Description: Aktivering af app‘en Microsoft.WindowsStore_8wekyb3d8bbwe!App mislykkedes med fejlen: -2147023728 Du kan finde flere oplysninger i loggen Microsoft-Windows-TWinUI/Operational.
System errors:
=============
Error: (11/30/2015 02:26:24 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Tjenesten Privoxy (PrivoxyService) afsluttede uventet. Dette er sket 1 gang(e).
Error: (11/30/2015 02:13:15 PM) (Source: DCOM) (EventID: 10001) (User: SVENDPC)
Description: "C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXe9cvj1thv1hmcw0cs98xm3r97tyzy2xs.mca1168App.AppX8h0bdkbb5frkt9s09fvshhbvqnntmvm1.mcaIkke tilgængeligIkke tilgængelig
Error: (11/30/2015 02:03:23 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Tjenesten Privoxy (PrivoxyService) er markeret som en interaktiv tjeneste. Systemet er dog konfigureret til ikke at tillade interaktive tjenester. Denne tjeneste fungerer muligvis ikke korrekt.
Error: (11/30/2015 01:07:23 PM) (Source: DCOM) (EventID: 10001) (User: SVENDPC)
Description: "C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXe9cvj1thv1hmcw0cs98xm3r97tyzy2xs.mca1168App.AppX8h0bdkbb5frkt9s09fvshhbvqnntmvm1.mcaIkke tilgængeligIkke tilgængelig
Error: (11/30/2015 00:16:36 PM) (Source: DCOM) (EventID: 10001) (User: SVENDPC)
Description: "C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXe9cvj1thv1hmcw0cs98xm3r97tyzy2xs.mca1168App.AppX8h0bdkbb5frkt9s09fvshhbvqnntmvm1.mcaIkke tilgængeligIkke tilgængelig
Error: (11/30/2015 11:07:00 AM) (Source: DCOM) (EventID: 10001) (User: SVENDPC)
Description: "C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXe9cvj1thv1hmcw0cs98xm3r97tyzy2xs.mca1168App.AppX8h0bdkbb5frkt9s09fvshhbvqnntmvm1.mcaIkke tilgængeligIkke tilgængelig
Error: (11/30/2015 10:13:07 AM) (Source: DCOM) (EventID: 10001) (User: SVENDPC)
Description: "C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXe9cvj1thv1hmcw0cs98xm3r97tyzy2xs.mca1168App.AppX8h0bdkbb5frkt9s09fvshhbvqnntmvm1.mcaIkke tilgængeligIkke tilgængelig
Error: (11/30/2015 09:06:37 AM) (Source: DCOM) (EventID: 10001) (User: SVENDPC)
Description: "C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXe9cvj1thv1hmcw0cs98xm3r97tyzy2xs.mca1168App.AppX8h0bdkbb5frkt9s09fvshhbvqnntmvm1.mcaIkke tilgængeligIkke tilgængelig
Error: (11/30/2015 08:27:27 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {F3B4E234-7A68-4E43-B813-E4BA55A065F6}
Error: (11/30/2015 08:10:35 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installationsfejl: Der opstod en fejl, da Windows skulle installere følgende opdatering 0x80070003: Store.
CodeIntegrity:
===================================
Date: 2015-09-15 10:16:21.028
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-09-15 10:16:21.003
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-09-15 10:16:20.977
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-09-15 10:16:00.225
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-09-15 10:16:00.152
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-09-15 09:48:05.369
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-09-15 09:48:04.669
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-09-15 09:48:04.370
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-09-15 09:48:03.935
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-09-15 09:48:03.669
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
Processor: Intel® Core i5-4210U CPU @ 1.70GHz
Percentage of memory in use: 53%
Total physical RAM: 16276.27 MB
Available physical RAM: 7645.94 MB
Total Virtual: 24980.27 MB
Available Virtual: 12208.24 MB
==================== Drives ================================
Drive c: (Windows8_OS) (Fixed) (Total:888.9 GB) (Free:213.23 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:22.2 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 68D9AB3A)
Partition: GPT.
==================== End of Addition.txt ============================
Edited by Helleshoj, 30 November 2015 - 03:05 PM.