FRST
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 29-12-2013
Ran by Jesper (administrator) on NINJA on 29-12-2013 12:32:02
Running from C:\Users\Jesper\Downloads
Windows 8.1 Pro (X64) OS Language: Danish
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20315_x64__8wekyb3d8bbwe\livecomm.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\javaw.exe
(Oracle Corporation) C:\Program Files\Java\jre7\bin\javaw.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Logitech Download Assistant] - C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-11-14] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] - C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-10] (NVIDIA Corporation)
HKLM\...\Run: [HotKeysCmds] - C:\WINDOWS\system32\hkcmd.exe [ ] ()
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [vmware-tray.exe] - C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe [104528 2013-02-26] (VMware, Inc.)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKCU\...\Run: [Spotify Web Helper] - C:\Users\Jesper\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1168896 2013-11-23] (Spotify Ltd)
HKCU\...\Run: [SUPERAntiSpyware] - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6563096 2013-12-20] (SUPERAntiSpyware)
AppInit_DLLs: C:\Windows\System32\nvinitx.dll [168616 2013-11-14] (NVIDIA Corporation)
AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll [141336 2013-11-14] (NVIDIA Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://google.dk/HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
DPF: HKLM-x32 {233C1507-6A77-46A4-9443-F871F945D258}
http://download.macromedia.com/pub/shockwave/cabs/director/sw.cabTcpip\Parameters: [DhcpNameServer] 77.68.254.42 77.68.254.170 192.168.1.1
Chrome:
=======
CHR HomePage:
hxxp://www.google.dk/CHR RestoreOnStartup: "
hxxp://www.google.dk/"CHR Extension: (Floorplanner) - C:\Users\Jesper\AppData\Local\Google\Chrome\User Data\Default\Extensions\abopacaefhbognnmeigicfpgnmpideag\13_0
CHR Extension: (Angry Birds) - C:\Users\Jesper\AppData\Local\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj\1.5.0.7_0
CHR Extension: (Google Docs) - C:\Users\Jesper\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0
CHR Extension: (Google Drive) - C:\Users\Jesper\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (YouTube) - C:\Users\Jesper\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\Jesper\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Hola Better Internet) - C:\Users\Jesper\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio\1.2.258_0
CHR Extension: (Google Wallet) - C:\Users\Jesper\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0
CHR Extension: (Gmail) - C:\Users\Jesper\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR Extension: (RSS Feed Reader) - C:\Users\Jesper\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnjaodmkngahhkoihejjehlcdlnohgmp\5.2.2_0
==================== Services (Whitelisted) =================
S2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [144152 2013-10-10] (SUPERAntiSpyware.com)
S2 AtherosSvc; C:\Windows\system32\AdminService.exe [208384 2013-06-25] (Atheros Commnucations)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-10] (NVIDIA Corporation)
S2 VMwareHostd; C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [13242960 2013-02-26] ()
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)
S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider)
S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation)
S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation)
S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation)
R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation)
S3 kbldfltr; C:\Windows\System32\drivers\kbldfltr.sys [22272 2013-09-30] (Microsoft Corporation)
S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)
R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)
S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation)
S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation)
S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-10-05] (Microsoft Corporation)
S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)
R0 vsock; C:\Windows\System32\drivers\vsock.sys [70296 2012-10-24] (VMware, Inc.)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation)
S3 WUDFWpdComp; C:\Windows\system32\DRIVERS\WUDFRd.sys [230912 2013-08-22] (Microsoft Corporation)
S3 VMSMP; \SystemRoot\system32\DRIVERS\vmswitch.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-12-29 12:32 - 2013-12-29 12:33 - 00010908 _____ C:\Users\Jesper\Downloads\FRST.txt
2013-12-29 12:31 - 2013-12-29 12:31 - 00000000 ____D C:\FRST
2013-12-29 12:30 - 2013-12-29 12:30 - 01931262 _____ (Farbar) C:\Users\Jesper\Downloads\FRST64.exe
2013-12-29 10:27 - 2013-12-29 10:27 - 00819176 _____ (Google Inc.) C:\Users\Jesper\Downloads\ChromeSetup.exe
2013-12-28 20:34 - 2013-12-28 20:34 - 00000000 ____D C:\WINDOWS\LastGood
2013-12-28 20:30 - 2013-12-28 20:30 - 00000000 ____D C:\WINDOWS\LastGood.Tmp
2013-12-28 10:07 - 2013-12-29 10:13 - 00002215 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-12-27 20:18 - 2013-12-27 20:18 - 00000000 ____D C:\WINDOWS\ERUNT
2013-12-27 20:17 - 2013-12-27 20:17 - 01034531 _____ (Thisisu) C:\Users\Jesper\Desktop\JRT.exe
2013-12-27 20:16 - 2013-12-27 20:19 - 00000000 ____D C:\AdwCleaner
2013-12-27 20:16 - 2013-12-27 20:15 - 01233962 _____ C:\Users\Jesper\Desktop\adwcleaner (1).exe
2013-12-27 12:51 - 2013-12-27 12:51 - 00000000 ____D C:\WINDOWS\SysWOW64\Adobe
2013-12-26 20:01 - 2013-12-26 20:01 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll
2013-12-26 20:01 - 2013-12-26 20:01 - 00377856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll
2013-12-26 20:01 - 2013-12-26 20:01 - 00214016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll
2013-12-26 20:01 - 2013-12-26 20:01 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll
2013-12-26 20:01 - 2013-12-26 20:01 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll
2013-12-26 20:01 - 2013-12-26 20:01 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll
2013-12-26 20:01 - 2013-12-26 20:01 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe
2013-12-26 20:01 - 2013-12-26 20:01 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe
2013-12-26 20:01 - 2013-12-26 20:01 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe
2013-12-26 20:01 - 2013-12-26 20:01 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll
2013-12-26 20:01 - 2013-12-26 20:01 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll
2013-12-26 20:01 - 2013-12-26 20:01 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll
2013-12-26 20:01 - 2013-12-26 20:01 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll
2013-12-26 20:01 - 2013-12-26 20:01 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll
2013-12-26 20:00 - 2013-12-26 20:11 - 00000000 ____D C:\Users\Jesper\Documents\GTA San Andreas User Files
2013-12-23 21:56 - 2013-12-23 21:56 - 00003112 _____ C:\WINDOWS\System32\Tasks\ASUS Live Update
2013-12-23 21:53 - 2013-12-23 21:56 - 00000000 ____D C:\Program Files (x86)\ASUS
2013-12-23 21:15 - 2013-12-23 21:15 - 00000000 ____D C:\ProgramData\Intel
2013-12-23 21:15 - 2013-12-23 21:15 - 00000000 ____D C:\Program Files\Intel
2013-12-23 21:15 - 2012-07-02 15:16 - 00062784 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\HECIx64.sys
2013-12-23 21:14 - 2013-12-23 21:14 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-12-23 21:14 - 2013-12-23 21:14 - 00000000 ____D C:\Users\Jesper\AppData\Roaming\InstallShield
2013-12-23 21:00 - 2013-12-23 21:00 - 00000885 _____ C:\Users\Public\Desktop\CPUID CPU-Z.lnk
2013-12-23 21:00 - 2013-12-23 21:00 - 00000000 ____D C:\Program Files\CPUID
2013-12-22 22:08 - 2013-12-22 22:18 - 49542265 _____ C:\Users\Jesper\Downloads\Beach Town Project 2.0.zip
2013-12-22 14:35 - 2013-12-22 14:40 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2013-12-22 14:35 - 2013-12-22 14:35 - 00089304 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2013-12-22 13:23 - 2013-12-22 13:23 - 00001820 _____ C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
2013-12-22 13:23 - 2013-12-22 13:23 - 00000000 ____D C:\Users\Jesper\AppData\Roaming\SUPERAntiSpyware.com
2013-12-22 13:23 - 2013-12-22 13:23 - 00000000 ____D C:\ProgramData\SUPERAntiSpyware.com
2013-12-22 13:23 - 2013-12-22 13:23 - 00000000 ____D C:\Program Files\SUPERAntiSpyware
2013-12-22 13:22 - 2013-12-22 13:22 - 00001125 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-12-22 13:22 - 2013-12-22 13:22 - 00000000 ____D C:\Users\Jesper\AppData\Roaming\Malwarebytes
2013-12-22 13:22 - 2013-12-22 13:22 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-12-22 13:22 - 2013-12-22 13:22 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-12-22 13:22 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2013-12-22 13:16 - 2013-12-22 13:16 - 00388608 _____ (Trend Micro Inc.) C:\Users\Jesper\Desktop\HijackThis.exe
2013-12-22 09:55 - 2013-12-22 09:55 - 00000000 ____D C:\Users\Jesper\AppData\Local\NBTExplorer
2013-12-22 09:54 - 2013-12-22 09:54 - 00000000 ____D C:\Program Files (x86)\NBTExplorer
2013-12-18 22:35 - 2013-12-27 14:16 - 00000000 ____D C:\Users\Jesper\Downloads\Hair (1979) BDRip 1080p DTS multisub HUN HighCode-PHD
2013-12-17 21:30 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll
2013-12-17 21:30 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll
2013-12-17 21:30 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll
2013-12-17 21:30 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll
2013-12-17 21:29 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll
2013-12-17 21:29 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll
2013-12-17 21:28 - 2013-12-05 09:42 - 00039200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys
2013-12-17 21:28 - 2013-12-05 09:42 - 00032544 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll
2013-12-17 20:11 - 2013-12-17 20:11 - 00000501 _____ C:\Users\Jesper\Desktop\Software (Nas).lnk
2013-12-17 20:11 - 2013-12-17 20:11 - 00000489 _____ C:\Users\Jesper\Desktop\Spil (Nas).lnk
2013-12-17 20:11 - 2013-12-17 20:11 - 00000489 _____ C:\Users\Jesper\Desktop\Film (Nas).lnk
2013-12-17 19:29 - 2013-12-17 19:37 - 27590656 _____ C:\WINDOWS\system32\vmguest.iso
2013-12-15 08:48 - 2013-11-12 00:27 - 00701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2013-12-15 08:48 - 2013-11-12 00:24 - 00840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2013-12-15 08:48 - 2013-11-09 07:37 - 01756160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2013-12-15 08:48 - 2013-11-08 11:26 - 00358896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2013-12-15 08:48 - 2013-11-08 05:43 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2013-12-15 08:48 - 2013-11-08 05:28 - 13177344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2013-12-15 08:48 - 2013-11-08 05:26 - 11674624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2013-12-15 08:48 - 2013-11-08 05:15 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2013-12-15 08:48 - 2013-11-08 04:14 - 00922624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2013-12-15 08:48 - 2013-11-05 15:03 - 00637952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2013-12-15 08:48 - 2013-11-05 14:57 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2013-12-15 08:48 - 2013-11-05 14:32 - 00744448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2013-12-15 08:48 - 2013-11-04 18:13 - 01530200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2013-12-15 08:48 - 2013-11-04 11:32 - 02570240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2013-12-15 08:48 - 2013-11-01 07:08 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2013-12-15 08:48 - 2013-10-31 01:58 - 00372568 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2013-12-15 08:48 - 2013-10-31 01:42 - 07399256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2013-12-15 08:48 - 2013-10-17 12:21 - 02896896 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2013-12-15 08:47 - 2013-11-12 00:41 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2013-12-15 08:47 - 2013-11-12 00:40 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2013-12-15 08:47 - 2013-11-11 03:48 - 00039768 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2013-12-15 08:47 - 2013-11-09 12:55 - 00325464 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2013-12-15 08:47 - 2013-11-09 06:56 - 01391104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2013-12-15 08:47 - 2013-11-08 06:23 - 00449024 _____ (Microsoft Corporation) C:\WINDOWS\system32\appmgr.dll
2013-12-15 08:47 - 2013-11-08 05:42 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appmgr.dll
2013-12-15 08:47 - 2013-11-08 05:16 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2013-12-15 08:47 - 2013-11-08 05:07 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2013-12-15 08:47 - 2013-11-08 04:41 - 01302528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2013-12-15 08:47 - 2013-11-05 15:19 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2013-12-15 08:47 - 2013-11-05 14:33 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2013-12-15 08:47 - 2013-11-04 18:13 - 00382808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2013-12-15 08:47 - 2013-11-04 14:07 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2013-12-15 08:47 - 2013-11-04 12:50 - 02143744 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2013-12-15 08:47 - 2013-11-04 03:28 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll
2013-12-15 08:47 - 2013-11-04 02:30 - 01765376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2013-12-15 08:47 - 2013-11-01 12:39 - 00086872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2013-12-15 08:47 - 2013-11-01 06:57 - 00544768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2013-12-15 08:47 - 2013-10-31 01:33 - 01642016 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2013-12-15 08:47 - 2013-10-31 01:33 - 01506680 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2013-12-15 08:47 - 2013-10-31 01:33 - 01476184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2013-12-15 08:47 - 2013-10-31 01:33 - 01345536 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2013-12-15 08:47 - 2013-10-26 02:54 - 00146776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\SerCx2.sys
2013-12-15 08:47 - 2013-10-24 10:31 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll
2013-12-15 08:47 - 2013-10-24 10:12 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll
2013-12-15 08:47 - 2013-10-17 11:36 - 02266624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2013-12-15 08:47 - 2013-10-05 15:21 - 02140888 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2013-12-15 08:47 - 2013-10-05 15:21 - 00516496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2013-12-15 08:47 - 2013-10-05 13:05 - 01765384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2013-12-15 08:47 - 2013-10-05 13:05 - 00406400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2013-12-13 20:39 - 2013-11-23 05:34 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2013-12-13 20:39 - 2013-11-23 05:13 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2013-12-13 20:38 - 2013-11-23 04:32 - 04105728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2013-12-13 20:38 - 2013-11-23 04:10 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2013-12-13 20:38 - 2013-11-09 07:34 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2013-12-13 20:38 - 2013-11-09 07:34 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2013-12-13 20:38 - 2013-11-09 06:52 - 00240128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2013-12-12 21:41 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2013-12-12 21:41 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2013-12-12 21:41 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2013-12-12 21:41 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2013-12-12 21:41 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2013-12-12 21:41 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2013-12-12 21:41 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2013-12-12 21:41 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2013-12-12 21:41 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2013-12-12 21:41 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2013-12-12 21:41 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2013-12-12 21:41 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2013-12-12 21:41 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2013-12-12 21:41 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2013-12-12 21:41 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2013-12-12 21:41 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2013-12-12 21:41 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2013-12-12 21:41 - 2013-11-08 08:21 - 04191744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2013-12-12 21:41 - 2013-10-19 09:53 - 00075360 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll
2013-12-12 21:41 - 2013-10-19 08:14 - 00070680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll
2013-12-12 21:41 - 2013-10-15 09:54 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
2013-12-12 21:41 - 2013-10-15 09:03 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll
2013-12-09 10:12 - 2013-12-15 10:22 - 00000000 ____D C:\Users\Jesper\AppData\Roaming\FileZilla
2013-12-09 10:11 - 2013-12-09 10:11 - 00002016 _____ C:\Users\Public\Desktop\FileZilla Client.lnk
2013-12-09 10:11 - 2013-12-09 10:11 - 00000000 ____D C:\Program Files (x86)\FileZilla FTP Client
2013-12-08 14:52 - 2013-12-10 20:32 - 00000000 ____D C:\Users\Jesper\Downloads\MAME
2013-12-02 21:11 - 2013-12-02 21:12 - 00000000 ____D C:\Users\Jesper\AppData\Local\NVIDIA Corporation
2013-11-29 20:53 - 2013-11-29 20:57 - 00000000 ____D C:\Users\Jesper\Documents\RCT3
2013-11-29 20:53 - 2013-11-29 20:53 - 00000000 ____D C:\Users\Jesper\AppData\Roaming\Atari
2013-11-29 16:40 - 2013-11-29 16:40 - 00000000 ____D C:\Users\Jesper\AppData\Local\Unity
==================== One Month Modified Files and Folders =======
2013-12-29 12:33 - 2013-12-29 12:32 - 00010908 _____ C:\Users\Jesper\Downloads\FRST.txt
2013-12-29 12:31 - 2013-12-29 12:31 - 00000000 ____D C:\FRST
2013-12-29 12:30 - 2013-12-29 12:30 - 01931262 _____ (Farbar) C:\Users\Jesper\Downloads\FRST64.exe
2013-12-29 12:22 - 2013-11-10 16:35 - 00003916 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{F8C3545C-6CF6-4727-B91E-76AEE3ECD9CE}
2013-12-29 12:01 - 2013-11-10 16:21 - 01914107 _____ C:\WINDOWS\WindowsUpdate.log
2013-12-29 12:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\sru
2013-12-29 11:50 - 2013-11-10 16:39 - 00000944 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2013-12-29 11:46 - 2013-11-11 19:44 - 00000000 ____D C:\Users\Jesper\AppData\Roaming\.minecraft
2013-12-29 11:43 - 2013-11-20 19:26 - 00000000 ____D C:\Program Files (x86)\Steam
2013-12-29 11:20 - 2013-11-10 11:18 - 00003600 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2185787897-1016093282-3948508204-1001
2013-12-29 11:06 - 2013-11-10 16:23 - 01314860 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2013-12-29 11:06 - 2013-09-30 04:56 - 00432072 _____ C:\WINDOWS\system32\perfh006.dat
2013-12-29 11:06 - 2013-09-30 04:56 - 00072990 _____ C:\WINDOWS\system32\perfc006.dat
2013-12-29 10:27 - 2013-12-29 10:27 - 00819176 _____ (Google Inc.) C:\Users\Jesper\Downloads\ChromeSetup.exe
2013-12-29 10:13 - 2013-12-28 10:07 - 00002215 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-12-29 10:13 - 2013-11-10 16:39 - 00000940 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2013-12-28 20:34 - 2013-12-28 20:34 - 00000000 ____D C:\WINDOWS\LastGood
2013-12-28 20:31 - 2013-11-14 21:01 - 00000000 ____D C:\ProgramData\VMware
2013-12-28 20:31 - 2013-11-10 11:38 - 00000000 ____D C:\Program Files (x86)\Intel
2013-12-28 20:31 - 2013-09-29 20:02 - 00009140 _____ C:\WINDOWS\PFRO.log
2013-12-28 20:31 - 2013-08-22 15:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2013-12-28 20:31 - 2013-08-22 14:25 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2013-12-28 20:30 - 2013-12-28 20:30 - 00000000 ____D C:\WINDOWS\LastGood.Tmp
2013-12-28 19:27 - 2013-11-10 16:31 - 00000000 __RDO C:\Users\Jesper\SkyDrive
2013-12-28 18:53 - 2013-11-10 16:11 - 00000000 ____D C:\Users\Jesper
2013-12-28 10:07 - 2013-11-10 16:39 - 00000000 ____D C:\Users\Jesper\AppData\Local\Google
2013-12-28 09:54 - 2013-11-14 22:40 - 00208896 ___SH C:\Users\Jesper\Downloads\Thumbs.db
2013-12-28 09:42 - 2012-07-26 09:12 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2013-12-27 20:19 - 2013-12-27 20:16 - 00000000 ____D C:\AdwCleaner
2013-12-27 20:18 - 2013-12-27 20:18 - 00000000 ____D C:\WINDOWS\ERUNT
2013-12-27 20:17 - 2013-12-27 20:17 - 01034531 _____ (Thisisu) C:\Users\Jesper\Desktop\JRT.exe
2013-12-27 20:17 - 2013-11-13 21:55 - 00000000 ____D C:\Users\Jesper\AppData\Roaming\uTorrent
2013-12-27 20:15 - 2013-12-27 20:16 - 01233962 _____ C:\Users\Jesper\Desktop\adwcleaner (1).exe
2013-12-27 17:58 - 2013-11-26 19:48 - 393150464 ____R C:\Users\Jesper\Downloads\Il.Sole.Dentro.2012.DVD5.TRL.iso
2013-12-27 15:55 - 2013-11-22 18:44 - 00000000 ____D C:\Users\Jesper\AppData\Roaming\vlc
2013-12-27 14:16 - 2013-12-18 22:35 - 00000000 ____D C:\Users\Jesper\Downloads\Hair (1979) BDRip 1080p DTS multisub HUN HighCode-PHD
2013-12-27 12:51 - 2013-12-27 12:51 - 00000000 ____D C:\WINDOWS\SysWOW64\Adobe
2013-12-27 12:46 - 2012-07-26 06:37 - 00000000 ____D C:\Users\Default.migrated
2013-12-27 11:31 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\rescache
2013-12-27 11:04 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2013-12-27 10:59 - 2013-11-10 11:10 - 00000000 ____D C:\Users\Jesper\AppData\Local\Packages
2013-12-26 20:11 - 2013-12-26 20:00 - 00000000 ____D C:\Users\Jesper\Documents\GTA San Andreas User Files
2013-12-26 20:01 - 2013-12-26 20:01 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll
2013-12-26 20:01 - 2013-12-26 20:01 - 00377856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll
2013-12-26 20:01 - 2013-12-26 20:01 - 00214016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll
2013-12-26 20:01 - 2013-12-26 20:01 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll
2013-12-26 20:01 - 2013-12-26 20:01 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll
2013-12-26 20:01 - 2013-12-26 20:01 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll
2013-12-26 20:01 - 2013-12-26 20:01 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe
2013-12-26 20:01 - 2013-12-26 20:01 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe
2013-12-26 20:01 - 2013-12-26 20:01 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe
2013-12-26 20:01 - 2013-12-26 20:01 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll
2013-12-26 20:01 - 2013-12-26 20:01 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll
2013-12-26 20:01 - 2013-12-26 20:01 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll
2013-12-26 20:01 - 2013-12-26 20:01 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll
2013-12-26 20:01 - 2013-12-26 20:01 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll
2013-12-23 21:56 - 2013-12-23 21:56 - 00003112 _____ C:\WINDOWS\System32\Tasks\ASUS Live Update
2013-12-23 21:56 - 2013-12-23 21:53 - 00000000 ____D C:\Program Files (x86)\ASUS
2013-12-23 21:15 - 2013-12-23 21:15 - 00000000 ____D C:\ProgramData\Intel
2013-12-23 21:15 - 2013-12-23 21:15 - 00000000 ____D C:\Program Files\Intel
2013-12-23 21:15 - 2012-07-24 11:16 - 00645952 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\iaStorA.sys
2013-12-23 21:14 - 2013-12-23 21:14 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-12-23 21:14 - 2013-12-23 21:14 - 00000000 ____D C:\Users\Jesper\AppData\Roaming\InstallShield
2013-12-23 21:00 - 2013-12-23 21:00 - 00000885 _____ C:\Users\Public\Desktop\CPUID CPU-Z.lnk
2013-12-23 21:00 - 2013-12-23 21:00 - 00000000 ____D C:\Program Files\CPUID
2013-12-22 22:18 - 2013-12-22 22:08 - 49542265 _____ C:\Users\Jesper\Downloads\Beach Town Project 2.0.zip
2013-12-22 14:40 - 2013-12-22 14:35 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2013-12-22 14:35 - 2013-12-22 14:35 - 00089304 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2013-12-22 13:23 - 2013-12-22 13:23 - 00001820 _____ C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
2013-12-22 13:23 - 2013-12-22 13:23 - 00000000 ____D C:\Users\Jesper\AppData\Roaming\SUPERAntiSpyware.com
2013-12-22 13:23 - 2013-12-22 13:23 - 00000000 ____D C:\ProgramData\SUPERAntiSpyware.com
2013-12-22 13:23 - 2013-12-22 13:23 - 00000000 ____D C:\Program Files\SUPERAntiSpyware
2013-12-22 13:22 - 2013-12-22 13:22 - 00001125 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-12-22 13:22 - 2013-12-22 13:22 - 00000000 ____D C:\Users\Jesper\AppData\Roaming\Malwarebytes
2013-12-22 13:22 - 2013-12-22 13:22 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-12-22 13:22 - 2013-12-22 13:22 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-12-22 13:16 - 2013-12-22 13:16 - 00388608 _____ (Trend Micro Inc.) C:\Users\Jesper\Desktop\HijackThis.exe
2013-12-22 09:55 - 2013-12-22 09:55 - 00000000 ____D C:\Users\Jesper\AppData\Local\NBTExplorer
2013-12-22 09:54 - 2013-12-22 09:54 - 00000000 ____D C:\Program Files (x86)\NBTExplorer
2013-12-18 22:09 - 2013-11-14 21:05 - 00000000 ____D C:\Users\Jesper\AppData\Roaming\VMware
2013-12-18 22:09 - 2013-11-14 21:05 - 00000000 ____D C:\Users\Jesper\AppData\Local\VMware
2013-12-18 20:18 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2013-12-17 21:29 - 2013-08-22 15:46 - 00337728 _____ C:\WINDOWS\setupact.log
2013-12-17 20:37 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\schemas
2013-12-17 20:34 - 2013-11-14 21:08 - 00000000 ____D C:\Users\Jesper\Documents\Virtual Machines
2013-12-17 20:11 - 2013-12-17 20:11 - 00000501 _____ C:\Users\Jesper\Desktop\Software (Nas).lnk
2013-12-17 20:11 - 2013-12-17 20:11 - 00000489 _____ C:\Users\Jesper\Desktop\Spil (Nas).lnk
2013-12-17 20:11 - 2013-12-17 20:11 - 00000489 _____ C:\Users\Jesper\Desktop\Film (Nas).lnk
2013-12-17 19:57 - 2013-11-14 20:50 - 00000000 ____D C:\Users\Jesper\MEDION NAS TOOL
2013-12-17 19:37 - 2013-12-17 19:29 - 27590656 _____ C:\WINDOWS\system32\vmguest.iso
2013-12-16 20:02 - 2013-08-22 16:36 - 00000000 ___RD C:\WINDOWS\ToastData
2013-12-16 20:02 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\WinStore
2013-12-16 20:02 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\MediaViewer
2013-12-16 20:02 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\FileManager
2013-12-16 20:02 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\Camera
2013-12-16 20:01 - 2013-11-10 13:16 - 00000000 ____D C:\WINDOWS\system32\MRT
2013-12-16 20:00 - 2013-11-10 13:16 - 90708896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2013-12-15 10:22 - 2013-12-09 10:12 - 00000000 ____D C:\Users\Jesper\AppData\Roaming\FileZilla
2013-12-13 20:05 - 2013-08-22 15:44 - 00473920 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2013-12-12 22:21 - 2013-11-19 18:37 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-12-10 20:32 - 2013-12-08 14:52 - 00000000 ____D C:\Users\Jesper\Downloads\MAME
2013-12-10 03:13 - 2013-11-21 20:57 - 01100248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2013-12-10 03:13 - 2013-11-21 20:57 - 00982232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2013-12-09 10:11 - 2013-12-09 10:11 - 00002016 _____ C:\Users\Public\Desktop\FileZilla Client.lnk
2013-12-09 10:11 - 2013-12-09 10:11 - 00000000 ____D C:\Program Files (x86)\FileZilla FTP Client
2013-12-08 14:41 - 2013-11-10 16:29 - 00001450 _____ C:\Users\Jesper\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-12-07 14:23 - 2013-11-10 18:47 - 00000000 ____D C:\Users\Jesper\AppData\Local\Adobe
2013-12-05 19:45 - 2013-11-10 11:11 - 00000000 ____D C:\Users\Jesper\AppData\Local\VirtualStore
2013-12-05 16:16 - 2013-11-19 18:21 - 00000000 ____D C:\Users\Jesper\Citrix
2013-12-05 09:42 - 2013-12-17 21:28 - 00039200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys
2013-12-05 09:42 - 2013-12-17 21:28 - 00032544 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll
2013-12-05 09:42 - 2013-11-21 20:54 - 00035104 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll
2013-12-04 01:05 - 2013-08-22 16:38 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2013-12-04 01:05 - 2013-08-22 16:38 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2013-12-03 16:45 - 2013-11-10 16:39 - 00003916 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2013-12-03 16:45 - 2013-11-10 16:39 - 00003680 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2013-12-02 21:13 - 2013-11-21 21:03 - 00000000 ____D C:\Users\Jesper\AppData\Local\NVIDIA
2013-12-02 21:12 - 2013-12-02 21:11 - 00000000 ____D C:\Users\Jesper\AppData\Local\NVIDIA Corporation
2013-12-02 21:11 - 2013-11-10 11:31 - 00000000 ____D C:\ProgramData\NVIDIA
2013-12-02 21:11 - 2013-11-10 11:30 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2013-12-02 21:11 - 2013-11-10 11:29 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2013-12-02 21:11 - 2013-11-10 11:29 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2013-12-01 13:33 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\NDF
2013-11-29 20:57 - 2013-11-29 20:53 - 00000000 ____D C:\Users\Jesper\Documents\RCT3
2013-11-29 20:53 - 2013-11-29 20:53 - 00000000 ____D C:\Users\Jesper\AppData\Roaming\Atari
2013-11-29 16:40 - 2013-11-29 16:40 - 00000000 ____D C:\Users\Jesper\AppData\Local\Unity
Files to move or delete:
====================
C:\Users\Jesper\CTX.DAT
Some content of TEMP:
====================
C:\Users\Jesper\AppData\Local\Temp\805F030E.dll
C:\Users\Jesper\AppData\Local\Temp\815CEC50.dll
C:\Users\Jesper\AppData\Local\Temp\8A7F614F.dll
C:\Users\Jesper\AppData\Local\Temp\8A8D0EA2.dll
C:\Users\Jesper\AppData\Local\Temp\ose00000.exe
C:\Users\Jesper\AppData\Local\Temp\Quarantine.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-12-28 19:27
==================== End Of Log ============================