Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Some programs doesnt want to start


  • This topic is locked This topic is locked
2 replies to this topic

#1 dezix

dezix

  • Members
  • 1 posts
  • OFFLINE
  •  
  • Local time:01:46 AM

Posted 14 April 2014 - 03:24 PM

For a while now my pc has been acting wierd. What I noticed first is that I cant restart it and sometimes it never shuts down.
 
I choose restart and when it says "Logging out (blue screen)" then it says "Shutting down" and nothing happens, once I let it "restart" for 10 hours and when I came back it was still trying to shut down. I have to shut it down manually and when I power it up it gives me the Start windows with last proper configuration screen.
 
Sometimes the same happens with shutting down.
 
It didnt bother me at first. But today something damn annoying happened. My firefox started freezing up, upon closing it from task manager, the task didnt close but the program did. When I started the program again, it added another firefox.exe into task manager but the program didnt start, I waited long time but nothing happened. After a half an hour or so firefox.exe is removed from the task manager.
 
I already removed firefox and reinstalled it, but the same thing happens, with or without any addons. I am writing from a portable chrome now which has been on my pc for years. IE works fine also (if you can call IE fine...)
 
The same thing happened today (later) to my uTorrent and Dota2. So I figured it must be malware or virus or spyware or whatever you call it.
 
Btw, I am using Win7 64bit.
 
First I updated and ran MBAM. Found 3 malware. Namely:
 

Files Detected: 3
C:\ProgramData\InstallMate\{7BC92DED-FF89-4744-A5AF-B7ABA02A0F1B}\Custom.dll (Adware.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\H@tKeysH@@k.DLL (HackTool.HotKeyHook) -> Quarantined and deleted successfully.
C:\Windows\SysWOW64\H@tKeysH@@k.DLL (Trojan.Agent) -> Quarantined and deleted successfully.

 
 
Then I updated and ran Superanti Spyware. It found 13 tracker cookie, dont know where to find log.
 
Then I ran Microsoft Essentials, it found nothing.
 
Here is a new Hijack This log:
 

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:21:27, on 2014.04.14.
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.17514)
Boot mode: Normal
 
Running processes:
E:\DAEMON Tools Lite\DTLite.exe
C:\Program Files (x86)\Thermaltake Ttesports Ultimate\Ttsystray3.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
E:\Winamp\winamp.exe
E:\GoogleChromePortable\GoogleChromePortable.exe
E:\GoogleChromePortable\App\Chrome-bin\chrome.exe
E:\GoogleChromePortable\App\Chrome-bin\chrome.exe
E:\GoogleChromePortable\App\Chrome-bin\chrome.exe
E:\GoogleChromePortable\App\Chrome-bin\chrome.exe
D:\Steam\Steam.exe
E:\GoogleChromePortable\App\Chrome-bin\chrome.exe
E:\GoogleChromePortable\App\Chrome-bin\chrome.exe
E:\GoogleChromePortable\App\Chrome-bin\chrome.exe
E:\Hijack This\Trend Micro\HiJackThis\HiJackThis.exe
 
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
O2 - BHO: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ChallengerUltimate] "C:\Program Files (x86)\Thermaltake Ttesports Ultimate\Ttsystray3.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "E:\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - Startup: Dropbox.lnk = Dezix\AppData\Roaming\Dropbox\bin\Dropbox.exe
O8 - Extra context menu item: E&xportálás a Microsoft Excel programba - res://C:\PROGRA~2\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~3\Office12\REFIEBAR.DLL
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\aelupsvc.dll,-1 (AeLookupSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: @%systemroot%\system32\appidsvc.dll,-100 (AppIDSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\appinfo.dll,-100 (Appinfo) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @appmgmts.dll,-3250 (AppMgmt) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-204 (AudioEndpointBuilder) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\audiosrv.dll,-200 (AudioSrv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\AxInstSV.dll,-103 (AxInstSV) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\bdesvc.dll,-100 (BDESVC) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\bfe.dll,-1001 (BFE) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\qmgr.dll,-1000 (BITS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\browser.dll,-100 (Browser) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\bthserv.dll,-101 (bthserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\certprop.dll,-11 (CertPropSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\cryptsvc.dll,-1001 (CryptSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\cscsvc.dll,-200 (CscService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @oleres.dll,-5012 (DcomLaunch) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\defragsvc.dll,-101 (defragsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\dhcpcore.dll,-100 (Dhcp) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\dnsapi.dll,-101 (Dnscache) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dot3svc.dll,-1102 (dot3svc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\dps.dll,-500 (DPS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\eapsvc.dll,-1 (EapHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\ehome\ehrecvr.exe,-101 (ehRecvr) - Unknown owner - C:\Windows\ehome\ehRecvr.exe
O23 - Service: @%SystemRoot%\ehome\ehsched.exe,-101 (ehSched) - Unknown owner - C:\Windows\ehome\ehsched.exe
O23 - Service: @%SystemRoot%\system32\wevtsvc.dll,-200 (eventlog) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @comres.dll,-2450 (EventSystem) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\fdPHost.dll,-100 (fdPHost) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\fdrespub.dll,-100 (FDResPub) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\FntCache.dll,-100 (FontCache) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Futuremark SystemInfo Service - Futuremark Corporation - C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe
O23 - Service: @gpapi.dll,-112 (gpsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\hidserv.dll,-101 (hidserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\kmsvc.dll,-6 (hkmsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\ListSvc.dll,-100 (HomeGroupListener) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\provsvc.dll,-100 (HomeGroupProvider) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\ikeext.dll,-501 (IKEEXT) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\IPBusEnum.dll,-102 (IPBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\iphlpsvc.dll,-500 (iphlpsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2946 (KtmRm) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\srvsvc.dll,-100 (LanmanServer) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wkssvc.dll,-100 (LanmanWorkstation) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\lltdres.dll,-1 (lltdsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\lmhsvc.dll,-101 (lmhosts) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\mmcss.dll,-100 (MMCSS) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Unknown owner - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (file missing)
O23 - Service: @%SystemRoot%\system32\FirewallAPI.dll,-23090 (MpsSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\iscsidsc.dll,-5000 (MSiSCSI) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\msimsg.dll,-27 (msiserver) - Unknown owner - C:\Windows\system32\msiexec.exe
O23 - Service: @%SystemRoot%\system32\qagentrt.dll,-6 (napagent) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\netman.dll,-109 (Netman) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\netprofm.dll,-202 (netprofm) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\nlasvc.dll,-1 (NlaSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\nsisvc.dll,-200 (nsi) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8004 (p2pimsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\p2psvc.dll,-8006 (p2psvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pcasvc.dll,-1 (PcaSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\peerdistsvc.dll,-9000 (PeerDistSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\sysWow64\perfhost.exe,-2 (PerfHost) - Unknown owner - C:\Windows\SysWow64\perfhost.exe
O23 - Service: @%systemroot%\system32\pla.dll,-500 (pla) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\umpnpmgr.dll,-100 (PlugPlay) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%SystemRoot%\system32\pnrpauto.dll,-8002 (PNRPAutoReg) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\pnrpsvc.dll,-8000 (PNRPsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\polstore.dll,-5010 (PolicyAgent) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\umpo.dll,-100 (Power) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\profsvc.dll,-300 (ProfSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasauto.dll,-200 (RasAuto) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%Systemroot%\system32\rasmans.dll,-200 (RasMan) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @regsvc.dll,-1 (RemoteRegistry) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%windir%\system32\RpcEpMap.dll,-1001 (RpcEptMapper) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @oleres.dll,-5010 (RpcSs) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SCardSvr.dll,-1 (SCardSvr) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\schedsvc.dll,-100 (Schedule) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\certprop.dll,-13 (SCPolicySvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: Windows biztonsági másolat (SDRSVC) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Sens.dll,-200 (SENS) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\sensrsvc.dll,-1000 (SensrSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\SessEnv.dll,-1026 (SessionEnv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\ipnathlp.dll,-106 (SharedAccess) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\shsvcs.dll,-12288 (ShellHWDetection) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppuinotify.dll,-103 (sppuinotify) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\ssdpsrv.dll,-100 (SSDPSRV) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sstpsvc.dll,-200 (SstpSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wiaservc.dll,-9 (stisvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\swprv.dll,-103 (swprv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\sysmain.dll,-1000 (SysMain) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\TabSvc.dll,-100 (TabletInputService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\tapisrv.dll,-10100 (TapiSrv) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\tbssvc.dll,-100 (TBS) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\termsrv.dll,-268 (TermService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\themeservice.dll,-8192 (Themes) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\mmcss.dll,-102 (THREADORDER) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\trkwks.dll,-1 (TrkWks) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\servicing\TrustedInstaller.exe,-100 (TrustedInstaller) - Unknown owner - C:\Windows\servicing\TrustedInstaller.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\umrdp.dll,-1000 (UmRdpService) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\upnphost.dll,-213 (upnphost) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\dwm.exe,-2000 (UxSms) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: Kötet árnyékmásolata (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\w32time.dll,-200 (W32Time) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%systemroot%\system32\wbiosrvc.dll,-100 (WbioSrvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wcncsvc.dll,-3 (wcncsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\WcsPlugInService.dll,-200 (WcsPlugInService) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-502 (WdiServiceHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\wdi.dll,-500 (WdiSystemHost) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\webclnt.dll,-100 (WebClient) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wecsvc.dll,-200 (Wecsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wercplsupport.dll,-101 (wercplsupport) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wersvc.dll,-100 (WerSvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 (WinDefend) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\system32\winhttp.dll,-100 (WinHttpAutoProxySvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmisvc.dll,-205 (Winmgmt) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wsmsvc.dll,-101 (WinRM) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wlansvc.dll,-257 (Wlansvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: @%SystemRoot%\system32\wpcsvc.dll,-100 (WPCSvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wpdbusenum.dll,-100 (WPDBusEnum) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wscsvc.dll,-200 (wscsvc) - Unknown owner - C:\Windows\System32\svchost.exe
O23 - Service: @%systemroot%\system32\SearchIndexer.exe,-103 (WSearch) - Unknown owner - C:\Windows\system32\SearchIndexer.exe
O23 - Service: @%systemroot%\system32\wuaueng.dll,-105 (wuauserv) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\system32\wudfsvc.dll,-1000 (wudfsvc) - Unknown owner - C:\Windows\system32\svchost.exe
O23 - Service: @%SystemRoot%\System32\wwansvc.dll,-257 (WwanSvc) - Unknown owner - C:\Windows\system32\svchost.exe
 
--
End of file - 20801 bytes

 
 
Also ran Farbar Recovery Scan Tool, here are the two logs it makes:
 
First:
 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-04-2014 01
Ran by Dezix (administrator) on DEZIX-PC on 14-04-2014 20:15:33
Running from C:\Users\Dezix\Downloads
Windows 7 Ultimate Service Pack 1 (X64) OS Language: 040E
Internet Explorer Version 8
Boot Mode: Normal
 
The only official download link for FRST:
Download link for 32-Bit version:
Download link for 64-Bit Version:
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(DT Soft Ltd) E:\DAEMON Tools Lite\DTLite.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Dropbox, Inc.) C:\Users\Dezix\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(VIA) C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
(Chicony) C:\Program Files (x86)\Thermaltake Ttesports Ultimate\Ttsystray3.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Sysinternals - www.sysinternals.com) C:\Users\Dezix\Desktop\procexp.exe
(Sysinternals - www.sysinternals.com) C:\Users\Dezix\Desktop\procexp64.exe
(Microsoft Corporation) C:\Windows\system32\AUDIODG.EXE
(PortableApps.com) E:\GoogleChromePortable\GoogleChromePortable.exe
(Google Inc.) E:\GoogleChromePortable\App\Chrome-bin\chrome.exe
(Google Inc.) E:\GoogleChromePortable\App\Chrome-bin\chrome.exe
(Google Inc.) E:\GoogleChromePortable\App\Chrome-bin\chrome.exe
(Google Inc.) E:\GoogleChromePortable\App\Chrome-bin\chrome.exe
(Google Inc.) E:\GoogleChromePortable\App\Chrome-bin\chrome.exe
 
 
==================== Registry (Whitelisted) ==================
 
HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [HDAudDeck] => C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2792448 2009-12-04] (VIA)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-12-06] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [ChallengerUltimate] => C:\Program Files (x86)\Thermaltake Ttesports Ultimate\Ttsystray3.exe [1254912 2010-08-05] (Chicony)
HKU\S-1-5-19\...\Run: [Sidebar] => C:\Program Files\Windows Sidebar\Sidebar.exe [1475584 2010-11-20] (Microsoft Corporation)
HKU\S-1-5-20\...\Run: [Sidebar] => C:\Program Files\Windows Sidebar\Sidebar.exe [1475584 2010-11-20] (Microsoft Corporation)
HKU\S-1-5-21-1979259699-2357558190-1884492264-1001\...\Run: [DAEMON Tools Lite] => E:\DAEMON Tools Lite\DTLite.exe [3673728 2012-11-06] (DT Soft Ltd)
HKU\S-1-5-21-1979259699-2357558190-1884492264-1001\...\Run: [Sidebar] => C:\Program Files\Windows Sidebar\sidebar.exe [1475584 2010-11-20] (Microsoft Corporation)
HKU\S-1-5-21-1979259699-2357558190-1884492264-1001\...\MountPoints2: {84ce6cde-ed82-11e2-9c74-002522250038} - H:\setup.exe
Startup: C:\Users\Dezix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Dezix\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
 
==================== Internet (Whitelisted) ====================
 
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft...=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
BHO-x32: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.m...ash/swflash.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 213.46.246.54 213.46.246.53
 
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_182.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_182.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @videolan.org/vlc,version=2.0.6 - E:\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Dezix\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
 
Chrome: 
=======
CHR Extension: (ssafe  saveu) - C:\Users\Dezix\AppData\Local\Google\Chrome\User Data\Default\Extensions\emciaobpedegkjjnelbidicakchphean [2013-07-18]
 
==================== Services (Whitelisted) =================
 
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2013-12-06] (Advanced Micro Devices, Inc.)
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation)
R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-04-13] ()
 
==================== Drivers (Whitelisted) ====================
 
R2 AODDriver4.2.0; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59648 2013-09-19] (Advanced Micro Devices)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-07-18] (DT Soft Ltd)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation)
S3 PROCMON20; C:\Windows\system32\Drivers\PROCMON20.SYS [58696 2014-04-14] (Sysinternals - www.sysinternals.com)
S3 s0017bus; C:\Windows\System32\DRIVERS\s0017bus.sys [113704 2008-10-21] (MCCI Corporation)
S3 s0017mdfl; C:\Windows\System32\DRIVERS\s0017mdfl.sys [19496 2008-10-21] (MCCI Corporation)
S3 s0017mdm; C:\Windows\System32\DRIVERS\s0017mdm.sys [152616 2008-10-21] (MCCI Corporation)
S3 s0017mgmt; C:\Windows\System32\DRIVERS\s0017mgmt.sys [133160 2008-10-21] (MCCI Corporation)
S3 s0017nd5; C:\Windows\System32\DRIVERS\s0017nd5.sys [34856 2008-10-21] (MCCI Corporation)
S3 s0017obex; C:\Windows\System32\DRIVERS\s0017obex.sys [128552 2008-10-21] (MCCI Corporation)
S3 s0017unic; C:\Windows\System32\DRIVERS\s0017unic.sys [145960 2008-10-21] (MCCI Corporation)
S3 s1039bus; C:\Windows\System32\DRIVERS\s1039bus.sys [127600 2010-03-15] (MCCI Corporation)
S3 s1039mdfl; C:\Windows\System32\DRIVERS\s1039mdfl.sys [19568 2010-03-15] (MCCI Corporation)
S3 s1039mdm; C:\Windows\System32\DRIVERS\s1039mdm.sys [161904 2010-03-15] (MCCI Corporation)
S3 s1039mgmt; C:\Windows\System32\DRIVERS\s1039mgmt.sys [141424 2010-03-15] (MCCI Corporation)
S3 s1039nd5; C:\Windows\System32\DRIVERS\s1039nd5.sys [34416 2010-03-15] (MCCI Corporation)
S3 s1039obex; C:\Windows\System32\DRIVERS\s1039obex.sys [137328 2010-03-15] (MCCI Corporation)
S3 s1039unic; C:\Windows\System32\DRIVERS\s1039unic.sys [158320 2010-03-15] (MCCI Corporation)
R1 SASDIFSV; E:\Super Anti Spyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; E:\Super Anti Spyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 cpuz135; \??\C:\Windows\TEMP\cpuz135\cpuz135_x64.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
 
==================== One Month Created Files and Folders ========
 
2014-04-14 20:15 - 2014-04-14 20:15 - 00009900 _____ () C:\Users\Dezix\Downloads\FRST.txt
2014-04-14 20:12 - 2014-04-14 20:13 - 00000000 ____D () C:\Users\Dezix\Desktop\kqerqj7l.default
2014-04-14 20:11 - 2014-04-14 20:11 - 06220854 _____ () C:\Users\Dezix\Desktop\Untitled 2.bmp
2014-04-14 20:10 - 2014-04-14 20:10 - 06220854 _____ () C:\Users\Dezix\Desktop\Untitled 1.bmp
2014-04-14 20:10 - 2014-04-14 20:10 - 00465447 _____ () C:\Users\Dezix\Desktop\bookmarks.html
2014-04-14 20:10 - 2014-04-14 20:10 - 00163671 _____ () C:\Users\Dezix\Desktop\bookmarks-2014-04-14.json
2014-04-14 20:08 - 2014-04-14 20:15 - 00000000 ____D () C:\FRST
2014-04-14 20:06 - 2014-04-14 20:07 - 02157568 _____ (Farbar) C:\Users\Dezix\Downloads\FRST64 (1).exe
2014-04-14 20:06 - 2014-04-14 20:06 - 02157568 _____ (Farbar) C:\Users\Dezix\Downloads\FRST64.exe
2014-04-14 19:49 - 2014-04-14 19:49 - 00972104 _____ (Sysinternals - www.sysinternals.com) C:\Users\Dezix\Desktop\procexp64.exe
2014-04-14 19:26 - 2014-04-14 19:27 - 00058696 ____N (Sysinternals - www.sysinternals.com) C:\Windows\system32\Drivers\PROCMON20.SYS
2014-04-14 12:30 - 2014-04-14 12:30 - 00000000 ____D () C:\Users\Dezix\AppData\Local\Adobe
2014-04-13 22:37 - 2014-04-13 22:37 - 00281872 _____ () C:\Windows\SysWOW64\PnkBstrB.exe
2014-04-13 22:37 - 2014-04-13 22:37 - 00281872 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0
2014-04-13 22:37 - 2014-04-13 22:37 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2014-04-13 18:30 - 2014-04-13 18:30 - 00003083 _____ () C:\Users\Dezix\Desktop\Stream.bat
2014-04-13 13:43 - 2014-04-13 13:44 - 00002701 _____ () C:\Users\Dezix\Desktop\Tt Challenger Ultimate.lnk
2014-04-13 13:34 - 2014-04-13 13:34 - 00000000 ____D () C:\Program Files (x86)\Thermaltake Ttesports Ultimate
2014-04-13 13:29 - 2014-04-13 13:29 - 00000372 _____ () C:\Windows\PFRO.log
2014-04-13 11:22 - 2014-04-14 20:01 - 00001434 _____ () C:\Windows\setupact.log
2014-04-13 11:22 - 2014-04-13 11:22 - 00000000 _____ () C:\Windows\setuperr.log
2014-04-12 22:46 - 2014-04-12 22:46 - 00007605 _____ () C:\Users\Dezix\AppData\Local\Resmon.ResmonCfg
2014-04-07 12:22 - 2014-04-07 12:22 - 00000000 ____D () C:\ProgramData\ATI
2014-04-07 12:19 - 2014-04-07 12:19 - 00071445 _____ () C:\Windows\SysWOW64\CCCInstall_201404071219359806.log
2014-04-07 12:19 - 2014-04-07 12:19 - 00000000 ____D () C:\Program Files (x86)\AMD AVT
2014-04-07 12:16 - 2014-04-07 12:16 - 00000000 ____D () C:\Program Files\AMD
2014-04-07 12:14 - 2014-04-07 12:14 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies
2014-04-07 12:07 - 2014-04-07 12:19 - 00000000 ____D () C:\Program Files\ATI Technologies
2014-04-07 11:54 - 2014-04-07 11:54 - 00070600 _____ () C:\Windows\SysWOW64\CCCInstall_201404071154351710.log
2014-04-04 16:20 - 2014-04-04 16:20 - 00000199 _____ () C:\Users\Dezix\Desktop\Alien Swarm.url
2014-04-03 20:27 - 2014-04-03 20:27 - 00000202 _____ () C:\Users\Dezix\Desktop\FTL Faster Than Light.url
2014-03-31 01:36 - 2014-03-31 01:38 - 00000000 ____D () C:\Users\Dezix\Zomboid
2014-03-30 21:06 - 2014-03-30 21:06 - 00000184 _____ () C:\Users\Dezix\.swfinfo
2014-03-30 02:17 - 2014-03-30 02:17 - 00000000 ____D () C:\Users\Dezix\AppData\Roaming\Sony
2014-03-30 02:17 - 2014-03-30 02:17 - 00000000 ____D () C:\Users\Dezix\AppData\Roaming\Publish Providers
2014-03-29 23:22 - 2014-03-29 23:22 - 00000501 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-03-29 03:41 - 2014-03-29 03:41 - 00000792 _____ () C:\Users\Public\Desktop\Pox Nora.lnk
2014-03-28 23:32 - 2014-03-28 23:32 - 00001206 _____ () C:\Users\Public\Desktop\HD VDeck.lnk
2014-03-28 23:21 - 2014-04-13 10:59 - 00000000 ____D () C:\Windows\Minidump
2014-03-28 23:17 - 2009-11-25 22:06 - 01276928 _____ (VIA Technologies, Inc.) C:\Windows\system32\Drivers\viahduaa.sys
2014-03-28 23:17 - 2009-11-12 12:09 - 01011712 _____ (VIA Technologies, Inc.) C:\Windows\system32\VIAPropPageExt.dll
2014-03-28 23:17 - 2009-11-11 12:33 - 00532480 _____ (VIA Technologies, Inc.) C:\Windows\system32\VIASysFx.dll
2014-03-25 16:52 - 2014-03-25 16:52 - 00000579 _____ () C:\Users\Dezix\Desktop\FTL.lnk
2014-03-19 18:58 - 2014-03-19 18:58 - 00000000 ____D () C:\Users\Dezix\AppData\Roaming\com.valve.FTP
2014-03-16 02:47 - 2014-03-16 02:47 - 00000000 ____D () C:\Users\Dezix\AppData\Local\Skype
2014-03-16 02:46 - 2014-03-16 02:46 - 00002697 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-03-16 00:46 - 2014-03-16 00:46 - 00003088 _____ () C:\Windows\System32\Tasks\{103BB3D5-141D-4A65-930C-C1B1E903462F}
2014-03-15 22:56 - 2014-03-29 23:09 - 00000000 ____D () C:\Users\Dezix\AppData\Roaming\livestreamer
 
==================== One Month Modified Files and Folders =======
 
2014-04-14 20:15 - 2014-04-14 20:15 - 00009900 _____ () C:\Users\Dezix\Downloads\FRST.txt
2014-04-14 20:15 - 2014-04-14 20:08 - 00000000 ____D () C:\FRST
2014-04-14 20:14 - 2013-07-11 17:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-04-14 20:13 - 2014-04-14 20:12 - 00000000 ____D () C:\Users\Dezix\Desktop\kqerqj7l.default
2014-04-14 20:13 - 2014-01-25 16:20 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-04-14 20:13 - 2013-07-11 17:36 - 00000000 ____D () C:\Users\Dezix\AppData\Roaming\Mozilla
2014-04-14 20:11 - 2014-04-14 20:11 - 06220854 _____ () C:\Users\Dezix\Desktop\Untitled 2.bmp
2014-04-14 20:11 - 2011-06-14 15:44 - 00001238 _____ () C:\Users\Dezix\Desktop\Etc.txt
2014-04-14 20:10 - 2014-04-14 20:10 - 06220854 _____ () C:\Users\Dezix\Desktop\Untitled 1.bmp
2014-04-14 20:10 - 2014-04-14 20:10 - 00465447 _____ () C:\Users\Dezix\Desktop\bookmarks.html
2014-04-14 20:10 - 2014-04-14 20:10 - 00163671 _____ () C:\Users\Dezix\Desktop\bookmarks-2014-04-14.json
2014-04-14 20:07 - 2014-04-14 20:06 - 02157568 _____ (Farbar) C:\Users\Dezix\Downloads\FRST64 (1).exe
2014-04-14 20:06 - 2014-04-14 20:06 - 02157568 _____ (Farbar) C:\Users\Dezix\Downloads\FRST64.exe
2014-04-14 20:01 - 2014-04-13 11:22 - 00001434 _____ () C:\Windows\setupact.log
2014-04-14 19:53 - 2013-07-11 17:27 - 01977713 _____ () C:\Windows\WindowsUpdate.log
2014-04-14 19:53 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-04-14 19:49 - 2014-04-14 19:49 - 00972104 _____ (Sysinternals - www.sysinternals.com) C:\Users\Dezix\Desktop\procexp64.exe
2014-04-14 19:41 - 2009-07-14 06:45 - 00017168 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-04-14 19:41 - 2009-07-14 06:45 - 00017168 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-04-14 19:35 - 2013-07-31 17:16 - 00000000 ____D () C:\Users\Dezix\AppData\Roaming\Dropbox
2014-04-14 19:34 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-04-14 19:29 - 2013-07-12 03:20 - 00000000 ____D () C:\Users\Dezix\AppData\Roaming\Skype
2014-04-14 19:27 - 2014-04-14 19:26 - 00058696 ____N (Sysinternals - www.sysinternals.com) C:\Windows\system32\Drivers\PROCMON20.SYS
2014-04-14 19:17 - 2013-07-11 19:09 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-04-14 18:04 - 2013-07-13 02:06 - 00000000 ____D () C:\Users\Dezix\AppData\Roaming\vlc
2014-04-14 18:03 - 2013-07-14 07:28 - 00003944 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{DF4CEB41-A0DF-44AE-AFB9-9D234C6B3153}
2014-04-14 16:47 - 2013-07-13 03:09 - 00000000 ____D () C:\Users\Dezix\AppData\Roaming\uTorrent
2014-04-14 12:30 - 2014-04-14 12:30 - 00000000 ____D () C:\Users\Dezix\AppData\Local\Adobe
2014-04-13 22:37 - 2014-04-13 22:37 - 00281872 _____ () C:\Windows\SysWOW64\PnkBstrB.exe
2014-04-13 22:37 - 2014-04-13 22:37 - 00281872 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0
2014-04-13 22:37 - 2014-04-13 22:37 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2014-04-13 22:37 - 2013-10-15 19:57 - 00000000 ____D () C:\Users\Dezix\AppData\Local\Ubisoft
2014-04-13 18:30 - 2014-04-13 18:30 - 00003083 _____ () C:\Users\Dezix\Desktop\Stream.bat
2014-04-13 13:44 - 2014-04-13 13:43 - 00002701 _____ () C:\Users\Dezix\Desktop\Tt Challenger Ultimate.lnk
2014-04-13 13:42 - 2013-07-12 01:14 - 00408696 _____ () C:\Windows\system32\perfh011.dat
2014-04-13 13:42 - 2013-07-12 01:14 - 00122082 _____ () C:\Windows\system32\perfc011.dat
2014-04-13 13:42 - 2009-07-14 14:46 - 00683848 _____ () C:\Windows\system32\perfh00E.dat
2014-04-13 13:42 - 2009-07-14 14:46 - 00171406 _____ () C:\Windows\system32\perfc00E.dat
2014-04-13 13:42 - 2009-07-14 07:13 - 02160012 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-04-13 13:34 - 2014-04-13 13:34 - 00000000 ____D () C:\Program Files (x86)\Thermaltake Ttesports Ultimate
2014-04-13 13:34 - 2013-07-11 18:36 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-04-13 13:29 - 2014-04-13 13:29 - 00000372 _____ () C:\Windows\PFRO.log
2014-04-13 11:22 - 2014-04-13 11:22 - 00000000 _____ () C:\Windows\setuperr.log
2014-04-13 10:59 - 2014-03-28 23:21 - 00000000 ____D () C:\Windows\Minidump
2014-04-12 22:46 - 2014-04-12 22:46 - 00007605 _____ () C:\Users\Dezix\AppData\Local\Resmon.ResmonCfg
2014-04-12 21:32 - 2013-08-18 02:28 - 00016687 _____ () C:\Users\Dezix\Desktop\Etc.xlsx
2014-04-10 12:40 - 2013-07-11 19:09 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-04-10 12:40 - 2013-07-11 19:09 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-04-10 12:40 - 2013-07-11 19:09 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-04-07 19:48 - 2013-07-28 12:28 - 00000132 _____ () C:\Users\Dezix\AppData\Roaming\Adobe PNG Format CS5 Prefs
2014-04-07 12:22 - 2014-04-07 12:22 - 00000000 ____D () C:\ProgramData\ATI
2014-04-07 12:19 - 2014-04-07 12:19 - 00071445 _____ () C:\Windows\SysWOW64\CCCInstall_201404071219359806.log
2014-04-07 12:19 - 2014-04-07 12:19 - 00000000 ____D () C:\Program Files (x86)\AMD AVT
2014-04-07 12:19 - 2014-04-07 12:07 - 00000000 ____D () C:\Program Files\ATI Technologies
2014-04-07 12:19 - 2013-07-11 17:50 - 00000000 ____D () C:\ProgramData\AMD
2014-04-07 12:16 - 2014-04-07 12:16 - 00000000 ____D () C:\Program Files\AMD
2014-04-07 12:14 - 2014-04-07 12:14 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies
2014-04-07 12:14 - 2013-10-26 21:30 - 00000000 ____D () C:\ProgramData\Package Cache
2014-04-07 12:12 - 2013-07-12 02:03 - 02123016 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-04-07 12:07 - 2013-10-26 21:29 - 00000000 ____D () C:\Program Files\ATI
2014-04-07 11:54 - 2014-04-07 11:54 - 00070600 _____ () C:\Windows\SysWOW64\CCCInstall_201404071154351710.log
2014-04-04 16:20 - 2014-04-04 16:20 - 00000199 _____ () C:\Users\Dezix\Desktop\Alien Swarm.url
2014-04-04 12:31 - 2013-07-11 19:02 - 00000000 ____D () C:\Users\Dezix\AppData\Roaming\Adobe
2014-04-03 20:27 - 2014-04-03 20:27 - 00000202 _____ () C:\Users\Dezix\Desktop\FTL Faster Than Light.url
2014-04-03 11:45 - 2013-07-11 23:20 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-04-03 11:45 - 2013-07-11 23:19 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-03-31 01:38 - 2014-03-31 01:36 - 00000000 ____D () C:\Users\Dezix\Zomboid
2014-03-31 01:36 - 2013-07-11 17:26 - 00000000 ____D () C:\Users\Dezix
2014-03-30 21:06 - 2014-03-30 21:06 - 00000184 _____ () C:\Users\Dezix\.swfinfo
2014-03-30 02:17 - 2014-03-30 02:17 - 00000000 ____D () C:\Users\Dezix\AppData\Roaming\Sony
2014-03-30 02:17 - 2014-03-30 02:17 - 00000000 ____D () C:\Users\Dezix\AppData\Roaming\Publish Providers
2014-03-30 02:17 - 2013-08-24 02:02 - 00000000 ____D () C:\Users\Dezix\AppData\Local\Sony
2014-03-30 02:17 - 2013-08-24 01:53 - 00000000 ____D () C:\ProgramData\Sony
2014-03-29 23:22 - 2014-03-29 23:22 - 00000501 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-03-29 23:09 - 2014-03-15 22:56 - 00000000 ____D () C:\Users\Dezix\AppData\Roaming\livestreamer
2014-03-29 03:41 - 2014-03-29 03:41 - 00000792 _____ () C:\Users\Public\Desktop\Pox Nora.lnk
2014-03-28 23:32 - 2014-03-28 23:32 - 00001206 _____ () C:\Users\Public\Desktop\HD VDeck.lnk
2014-03-28 23:32 - 2013-08-02 18:58 - 00000000 ____D () C:\Program Files (x86)\VIA
2014-03-25 16:52 - 2014-03-25 16:52 - 00000579 _____ () C:\Users\Dezix\Desktop\FTL.lnk
2014-03-19 18:58 - 2014-03-19 18:58 - 00000000 ____D () C:\Users\Dezix\AppData\Roaming\com.valve.FTP
2014-03-16 02:47 - 2014-03-16 02:47 - 00000000 ____D () C:\Users\Dezix\AppData\Local\Skype
2014-03-16 02:46 - 2014-03-16 02:46 - 00002697 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-03-16 02:46 - 2013-07-12 03:19 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-03-16 02:46 - 2013-07-12 03:19 - 00000000 ____D () C:\ProgramData\Skype
2014-03-16 00:46 - 2014-03-16 00:46 - 00003088 _____ () C:\Windows\System32\Tasks\{103BB3D5-141D-4A65-930C-C1B1E903462F}
 
==================== Bamital & volsnap Check =================
 
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
 
 
LastRegBack: 2014-04-09 14:30
 
==================== End Of Log ============================

 
 
Second log:
 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-04-2014 01
Ran by Dezix at 2014-04-14 20:16:04
Running from C:\Users\Dezix\Downloads
Boot Mode: Normal
==========================================================
 
 
==================== Security Center ========================
 
AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
 
==================== Installed Programs ======================
 
µTorrent (HKLM-x32\...\uTorrent) (Version: 3.3.0.29625 - BitTorrent Inc.)
3DMark 11 (HKLM-x32\...\{46EDCFA5-7EDB-46A9-B093-1C6237470CEC}) (Version: 1.0.2 - Futuremark Corporation)
A kiterjesztett Microsoft .NET-keretrendszer 4 HUN nyelvi csomagja (HKLM\...\Microsoft .NET Framework 4 Extended HUN Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
A Microsoft .NET-keretrendszer 4-es verziójához tartozó ügyfélprofil HUN nyelvi csomagja (HKLM\...\Microsoft .NET Framework 4 Client Profile HUN Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.7.0.2090 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 3.7.0.2090 - Adobe Systems Incorporated) Hidden
Adobe Flash Player 12 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 12.0.0.77 - Adobe Systems Incorporated)
Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.182 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.06) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated)
Alien Swarm (HKLM-x32\...\Steam App 630) (Version:  - Valve)
AMD Accelerated Video Transcoding (Version: 13.20.100.31206 - Advanced Micro Devices, Inc.) Hidden
AMD Catalyst Control Center (x32 Version: 2013.1206.1603.28764 - Cégnév) Hidden
AMD Catalyst Install Manager (HKLM\...\{308051DA-0048-7A07-FE8B-9B6EC119A9E8}) (Version: 8.0.915.0 - Advanced Micro Devices, Inc.)
AMD Drag and Drop Transcoding (Version: 2.00.0000 - Advanced Micro Devices, Inc.) Hidden
AMD Fuel (Version: 2013.1206.1603.28764 - Cégnév) Hidden
AMD Media Foundation Decoders (Version: 1.0.81206.1620 - Advanced Micro Devices, Inc.) Hidden
AMD Wireless Display v3.0 (Version: 1.0.0.14 - Advanced Micro Devices, Inc.) Hidden
Aslain's XVM Mod version 3.3.6 (HKLM-x32\...\ZRwTINhSZfduKONYrSCTiCiGPggQZdcLRvoAVxyCOXXpkHeC~1DC3968F_is1) (Version: 3.3.6 - Aslain)
Baldur's Gate II: Enhanced Edition (HKLM-x32\...\QmFsZHVyc0dhdGVJSUVuaGFuY2VkRWRpdGlvbg==_is1) (Version: 1 - )
Broken Age (HKLM-x32\...\QnJva2VuQWdl_is1) (Version: 1 - )
Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Graphics Previews Common (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Localization All (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Standard (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Traditional (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Czech (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Danish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Dutch (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help English (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Finnish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help French (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help German (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Greek (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Hungarian (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Italian (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Japanese (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Korean (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Norwegian (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Polish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Portuguese (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Russian (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Spanish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Swedish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Thai (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
CCC Help Turkish (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden
ccc-utility64 (Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 4.09 - Piriform)
Civ3 Conquests v1.22 Full (HKLM-x32\...\{4C2BF3B9-7E8A-49DE-B662-3656FE60BB01}) (Version:  - )
Civilization III - Play the World v1.27F (HKLM-x32\...\{B5E66589-11D4-4DE5-90F3-1AD5E98ABD3E}) (Version:  - )
Civilization III (HKLM-x32\...\{0AD84416-63A4-4CF3-BDDF-8FA866711FB0}) (Version:  - )
Civilization III v1.29f (HKLM-x32\...\{31E2413D-8AA1-43EC-8B8D-77B65ADA4611}) (Version:  - )
Civilization III: Conquests (HKLM-x32\...\{F31BC49F-AB7B-4A53-A399-EB7331B585BC}) (Version:  - )
Data Lifeguard Diagnostic for Windows 1.24 (HKLM-x32\...\{519C4DB6-B53B-4F5C-8297-89B2BE949FA5}_is1) (Version:  - Western Digital Corporation)
Deus Ex (HKLM-x32\...\Deus Ex) (Version:  - )
Dropbox (HKCU\...\Dropbox) (Version: 2.4.11 - Dropbox, Inc.)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version:  - )
FTL: Faster Than Light (HKLM-x32\...\Steam App 212680) (Version:  - Subset Games)
Futuremark SystemInfo (HKLM-x32\...\{BEE64C14-BEF1-4610-8A68-A16EAA47B882}) (Version: 4.0.0.0 - Futuremark Corporation)
Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.510 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
K-Lite Codec Pack 10.0.0 Basic (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.0.0 - )
Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version:  - Valve)
Livestreamer 1.7.5 (HKLM-x32\...\Livestreamer) (Version:  - )
Malwarebytes Anti-Malware version 1.75.0.1300 (HKLM-x32\...\Malwarebytes' Anti-Malware_is1) (Version: 1.75.0.1300 - Malwarebytes Corporation)
Microsoft .NET Framework 4 Client Profile HUN Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Extended HUN Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation)
Microsoft .NET Framework 4.5 (Version: 4.5.50709 - Microsoft Corporation) Hidden
Microsoft AppLocale (HKLM-x32\...\{394BE3D9-7F57-4638-A8D1-1D88671913B7}) (Version: 1.0.0 - MS)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{929CE49F-1CA7-4CF3-A9A1-6D757443C63F}) (Version: 1.2.0241 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version:  - Microsoft) Hidden
Microsoft Office Access MUI (Hungarian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (Hungarian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Groove MUI (Hungarian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (Hungarian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (Hungarian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (Hungarian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (Hungarian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Hungarian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (Hungarian) 2007 (x32 Version: 12.0.4518.1029 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32 Version:  - Microsoft) Hidden
Microsoft Office Publisher MUI (Hungarian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (Hungarian) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Hungarian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (Hungarian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Save as PDF or XPS Add-in for 2007 Microsoft Office programs (HKLM-x32\...\{90120000-00B2-0409-0000-0000000FF1CE}) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Security Client (Version: 4.4.0304.0 - Microsoft Corporation) Hidden
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.4.304.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation)
Microsoft SQL Server Native Client (HKLM\...\{79BF7CB8-1E09-489F-9547-DB3EE8EA3F16}) (Version: 9.00.4035.00 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Windows Application Compatibility Database (HKLM\...\{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb) (Version:  - )
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.7 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.7 - Pando Networks Inc.)
Platform (x32 Version: 1.34 - VIA Technologies, Inc.) Hidden
Pox Nora 1.8 (HKLM-x32\...\3055-2232-0137-3195) (Version: 1.8 - Desert Owl Games)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.)
Samsung Universal Print Driver 2 (HKLM-x32\...\Samsung Universal Print Driver 2) (Version: 2.50.02.00 - Samsung Electronics Co., Ltd.)
Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.)
Sony Ericsson Update Engine (HKLM-x32\...\Update Engine) (Version: 2.13.9.201308081522 - Sony Ericsson Communications AB)
Sony PC Companion 2.10.165 (HKLM-x32\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.165 - Sony)
Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version:  - Valve)
Tt eSPORTS Challenger Ultimate (HKLM-x32\...\{D65D9706-6D6D-42E8-A11A-63E3AFECBBC1}) (Version: 2.0.2.0 - Tt eSPORTS)
Unity Web Player (HKCU\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update for Microsoft .NET Framework 4.5 (KB2750147) (HKLM-x32\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2750147) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4.5 (KB2805221) (HKLM-x32\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2805221) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4.5 (KB2805226) (HKLM-x32\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB2805226) (Version: 1 - Microsoft Corporation)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version:  - Microsoft)
Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{620E77C0-CDFE-4C14-AAEB-830ABB65864C}) (Version:  - Microsoft)
Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{8153EC80-C988-4336-8DAF-6D99C0D26E0C}) (Version:  - Microsoft)
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version:  - Microsoft)
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version:  - Microsoft)
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version:  - Microsoft)
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM-x32\...\{90120000-001A-040E-0000-0000000FF1CE}_ENTERPRISE_{8367442C-1D3B-4C59-825D-B0FAEB1BC38B}) (Version:  - Microsoft)
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2825641) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{1C49E606-8C21-4250-96DC-481117D893D9}) (Version:  - Microsoft)
Uplay (HKLM-x32\...\Uplay) (Version: 4.0 - Ubisoft)
VIA Platform eszközkezelő (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.34 - VIA Technologies, Inc.)
VLC media player 2.0.6 (HKLM-x32\...\VLC media player) (Version: 2.0.6 - VideoLAN)
 
==================== Restore Points  =========================
 
13-04-2014 10:51:04 Windows Update
13-04-2014 11:28:25 Removed Tt eSPORTS Challenger Ultimate
13-04-2014 11:34:18 Installed Tt eSPORTS Challenger Ultimate
 
==================== Hosts content: ==========================
 
2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
 
==================== Scheduled Tasks (whitelisted) =============
 
Task: {28142C61-A414-43CC-A95E-35BBEE4540CB} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-04-10] (Adobe Systems Incorporated)
Task: {7D71D28B-FF07-430D-9FB2-3F658B558D1F} - System32\Tasks\{103BB3D5-141D-4A65-930C-C1B1E903462F} => Firefox.exe http://ui.skype.com/...e=tsProgressBar
Task: {9AC35447-3744-46A1-9CE5-DDFE383E8C18} - System32\Tasks\CCleanerSkipUAC => E:\CCCleaner\CCleaner.exe [2013-12-17] (Piriform Ltd)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
 
==================== Loaded Modules (whitelisted) =============
 
2014-01-27 20:03 - 2011-04-11 07:26 - 00034304 _____ () C:\Windows\System32\spe__l.dll
2014-04-13 22:37 - 2014-04-13 22:37 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2014-03-28 23:32 - 2009-05-07 17:51 - 00071680 _____ () C:\Program Files (x86)\VIA\VIAudioi\VDeck\QsApoApi64.dll
2014-03-28 23:32 - 2009-05-07 17:53 - 00379392 _____ () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Dts2ApoApi64.dll
2014-03-28 23:32 - 2008-01-18 15:50 - 00098816 _____ () C:\Program Files (x86)\VIA\VIAudioi\VDeck\VMicApi.dll
2014-03-28 23:32 - 2009-11-03 12:12 - 47601664 _____ () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Skin.dll
2013-12-06 16:06 - 2013-12-06 16:06 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
2013-10-19 01:55 - 2013-10-19 01:55 - 25100288 _____ () C:\Users\Dezix\AppData\Roaming\Dropbox\bin\libcef.dll
2014-04-13 13:34 - 2010-08-05 14:39 - 00045056 _____ () C:\Program Files (x86)\Thermaltake Ttesports Ultimate\WMINPUT.DLL
2014-04-14 20:06 - 2014-04-14 20:06 - 00016384 _____ () C:\Users\Dezix\AppData\Local\Temp\nsb6153.tmp\registry.dll
2013-07-25 03:04 - 2013-07-12 20:48 - 00601552 _____ () E:\GoogleChromePortable\App\Chrome-bin\28.0.1500.72\libglesv2.dll
2013-07-25 03:04 - 2013-07-12 20:48 - 00123344 _____ () E:\GoogleChromePortable\App\Chrome-bin\28.0.1500.72\libegl.dll
2013-07-25 03:04 - 2013-07-12 20:49 - 04052944 _____ () E:\GoogleChromePortable\App\Chrome-bin\28.0.1500.72\pdf.dll
2013-07-25 03:04 - 2013-07-12 20:49 - 00396240 _____ () E:\GoogleChromePortable\App\Chrome-bin\28.0.1500.72\ppGoogleNaClPluginChrome.dll
2013-07-25 03:03 - 2013-07-12 20:48 - 01597392 _____ () E:\GoogleChromePortable\App\Chrome-bin\28.0.1500.72\ffmpegsumo.dll
2014-01-03 08:59 - 2014-02-10 19:04 - 00430080 _____ () C:\Windows\mod_frst.exe
 
==================== Alternate Data Streams (whitelisted) =========
 
 
==================== Safe Mode (whitelisted) ===================
 
 
==================== Disabled items from MSCONFIG ==============
 
MSCONFIG\Services: Sony PC Companion => 3
MSCONFIG\startupreg: ChallengerUltimateOSD => "C:\Program Files (x86)\Thermaltake Ttesports Ultimate\tTOSD2k1001.exe"
 
==================== Faulty Device Manager Devices =============
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (04/14/2014 08:07:29 PM) (Source: Application Hang) (User: )
Description: A(z) firefox.exe program (verzió: 26.0.0.5087) kommunikációja a Windows rendszerrel megszakadt, ezért a program leállt. A hibával kapcsolatos további információkért ellenőrizze a probléma előzményeit a Műveletközpont vezérlőpulton.
 
Folyamatazonosító: 928
 
Kezdés: 01cf580960034a20
 
Befejezés: 64
 
Alkalmazás elérési útja: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
 
Jelentés azonosítója: a2ab8f61-c3ff-11e3-9b6b-002522250038
 
Error: (04/14/2014 07:30:14 PM) (Source: Application Hang) (User: )
Description: A(z) Procmon64.exe program (verzió: 2.8.0.0) kommunikációja a Windows rendszerrel megszakadt, ezért a program leállt. A hibával kapcsolatos további információkért ellenőrizze a probléma előzményeit a Műveletközpont vezérlőpulton.
 
Folyamatazonosító: 12a8
 
Kezdés: 01cf5806d5e47910
 
Befejezés: 60000
 
Alkalmazás elérési útja: D:\Dokumentumok\Telepitők\PC Cleaner\Procmon64.exe
 
Jelentés azonosítója: 43afcd51-c3fa-11e3-a654-002522250038
 
Error: (04/14/2014 07:30:11 PM) (Source: Application Hang) (User: )
Description: A(z) Procmon64.exe program (verzió: 2.8.0.0) kommunikációja a Windows rendszerrel megszakadt, ezért a program leállt. A hibával kapcsolatos további információkért ellenőrizze a probléma előzményeit a Műveletközpont vezérlőpulton.
 
Folyamatazonosító: 12ac
 
Kezdés: 01cf5806d7de9b60
 
Befejezés: 60000
 
Alkalmazás elérési útja: D:\Dokumentumok\Telepitők\PC Cleaner\Procmon64.exe
 
Jelentés azonosítója: 41c9f651-c3fa-11e3-a654-002522250038
 
Error: (04/14/2014 07:28:16 PM) (Source: Application Hang) (User: )
Description: A(z) Procmon64.exe program (verzió: 2.8.0.0) kommunikációja a Windows rendszerrel megszakadt, ezért a program leállt. A hibával kapcsolatos további információkért ellenőrizze a probléma előzményeit a Műveletközpont vezérlőpulton.
 
Folyamatazonosító: 107c
 
Kezdés: 01cf5806abd5df10
 
Befejezés: 60000
 
Alkalmazás elérési útja: D:\Dokumentumok\Telepitők\PC Cleaner\Procmon64.exe
 
Jelentés azonosítója: fe2670e1-c3f9-11e3-a654-002522250038
 
Error: (04/14/2014 07:23:02 PM) (Source: Application Hang) (User: )
Description: A(z) dota.exe program (verzió: 0.0.0.0) kommunikációja a Windows rendszerrel megszakadt, ezért a program leállt. A hibával kapcsolatos további információkért ellenőrizze a probléma előzményeit a Műveletközpont vezérlőpulton.
 
Folyamatazonosító: 106c
 
Kezdés: 01cf57faec0f7c00
 
Befejezés: 320
 
Alkalmazás elérési útja: D:\Steam\steamapps\common\dota 2 beta\dota.exe
 
Jelentés azonosítója: 48b77331-c3f9-11e3-a654-002522250038
 
Error: (04/14/2014 05:50:21 PM) (Source: Application Hang) (User: )
Description: A(z) firefox.exe program (verzió: 26.0.0.5087) kommunikációja a Windows rendszerrel megszakadt, ezért a program leállt. A hibával kapcsolatos további információkért ellenőrizze a probléma előzményeit a Műveletközpont vezérlőpulton.
 
Folyamatazonosító: d14
 
Kezdés: 01cf57cdaecaa4f0
 
Befejezés: 80
 
Alkalmazás elérési útja: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
 
Jelentés azonosítója: 79821041-c3ec-11e3-a654-002522250038
 
Error: (04/14/2014 05:49:31 PM) (Source: Application Hang) (User: )
Description: A(z) FTLGame.exe program (verzió: 0.0.0.0) kommunikációja a Windows rendszerrel megszakadt, ezért a program leállt. A hibával kapcsolatos további információkért ellenőrizze a probléma előzményeit a Műveletközpont vezérlőpulton.
 
Folyamatazonosító: 1350
 
Kezdés: 01cf57f9050ca630
 
Befejezés: 180
 
Alkalmazás elérési útja: D:\Steam\steamapps\common\FTL Faster Than Light\FTLGame.exe
 
Jelentés azonosítója: 5cff0591-c3ec-11e3-a654-002522250038
 
Error: (04/14/2014 05:48:38 PM) (Source: Application Hang) (User: )
Description: A(z) dota.exe program (verzió: 0.0.0.0) kommunikációja a Windows rendszerrel megszakadt, ezért a program leállt. A hibával kapcsolatos további információkért ellenőrizze a probléma előzményeit a Műveletközpont vezérlőpulton.
 
Folyamatazonosító: 11d4
 
Kezdés: 01cf57efb7bdc7f0
 
Befejezés: 345
 
Alkalmazás elérési útja: D:\Steam\steamapps\common\dota 2 beta\dota.exe
 
Jelentés azonosítója: 3c294291-c3ec-11e3-a654-002522250038
 
Error: (04/14/2014 04:48:45 PM) (Source: Application Hang) (User: )
Description: A(z) uTorrent.exe program (verzió: 3.3.0.29625) kommunikációja a Windows rendszerrel megszakadt, ezért a program leállt. A hibával kapcsolatos további információkért ellenőrizze a probléma előzményeit a Műveletközpont vezérlőpulton.
 
Folyamatazonosító: 9dc
 
Kezdés: 01cf57f02fd9c450
 
Befejezés: 60000
 
Alkalmazás elérési útja: E:\u Torrent\uTorrent.exe
 
Jelentés azonosítója: b48bfb01-c3e3-11e3-a654-002522250038
 
Error: (04/14/2014 00:35:38 PM) (Source: Application Hang) (User: )
Description: A(z) firefox.exe program (verzió: 26.0.0.5087) kommunikációja a Windows rendszerrel megszakadt, ezért a program leállt. A hibával kapcsolatos további információkért ellenőrizze a probléma előzményeit a Műveletközpont vezérlőpulton.
 
Folyamatazonosító: 1244
 
Kezdés: 01cf57cabae3b040
 
Befejezés: 70
 
Alkalmazás elérési útja: C:\Program Files (x86)\Mozilla Firefox\firefox.exe
 
Jelentés azonosítója: 83146581-c3c0-11e3-a654-002522250038
 
 
System errors:
=============
Error: (04/14/2014 11:12:42 AM) (Source: EventLog) (User: )
Description: Az előző rendszerleállítás (‎2014.‎04.‎14. - 11:09:14) váratlan volt.
 
Error: (04/13/2014 01:14:28 PM) (Source: cdrom) (User: )
Description: Az illesztőprogram vezérlési hibát talált a következőn: \Device\CdRom0.
 
Error: (04/13/2014 01:14:28 PM) (Source: cdrom) (User: )
Description: Az illesztőprogram vezérlési hibát talált a következőn: \Device\CdRom0.
 
Error: (04/13/2014 01:14:28 PM) (Source: cdrom) (User: )
Description: Az illesztőprogram vezérlési hibát talált a következőn: \Device\CdRom0.
 
Error: (04/13/2014 01:14:28 PM) (Source: cdrom) (User: )
Description: Az illesztőprogram vezérlési hibát talált a következőn: \Device\CdRom0.
 
Error: (04/13/2014 01:14:28 PM) (Source: cdrom) (User: )
Description: Az illesztőprogram vezérlési hibát talált a következőn: \Device\CdRom0.
 
Error: (04/13/2014 01:14:28 PM) (Source: cdrom) (User: )
Description: Az illesztőprogram vezérlési hibát talált a következőn: \Device\CdRom0.
 
Error: (04/13/2014 01:14:28 PM) (Source: cdrom) (User: )
Description: Az illesztőprogram vezérlési hibát talált a következőn: \Device\CdRom0.
 
Error: (04/13/2014 01:14:28 PM) (Source: cdrom) (User: )
Description: Az illesztőprogram vezérlési hibát talált a következőn: \Device\CdRom0.
 
Error: (04/13/2014 01:14:28 PM) (Source: cdrom) (User: )
Description: Az illesztőprogram vezérlési hibát talált a következőn: \Device\CdRom0.
 
 
Microsoft Office Sessions:
=========================
 
==================== Memory info =========================== 
 
Percentage of memory in use: 42%
Total physical RAM: 4095.18 MB
Available physical RAM: 2357.73 MB
Total Pagefile: 8188.54 MB
Available Pagefile: 5908.35 MB
Total Virtual: 8192 MB
Available Virtual: 8191.81 MB
 
==================== Drives ================================
 
Drive c: () (Fixed) (Total:48.73 GB) (Free:9.45 GB) NTFS
Drive d: (Egyé B) (Fixed) (Total:833.85 GB) (Free:146.4 GB) NTFS
Drive e: (Programok) (Fixed) (Total:48.83 GB) (Free:17.19 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: B5AB7003)
 
Partition: GPT Partition Type.
 
==================== End Of Log ============================

 
 
Then I ran Combofix. Heres the log:
 

ComboFix 14-04-12.01 - Dezix 014.04.14.  21:30:22.1.2 - x64
Microsoft Windows 7 Ultimate   6.1.7601.1.1250.36.1038.18.4095.2668 [GMT 2:00]
Running from: c:\users\Dezix\Downloads\ComboFix.exe
AV: Microsoft Security Essentials *Disabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F}
SP: Microsoft Security Essentials *Disabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Dezix\AppData\Local\Google\Chrome\User Data\Default\Extensions\emciaobpedegkjjnelbidicakchphean
c:\users\Dezix\AppData\Local\Google\Chrome\User Data\Default\Extensions\emciaobpedegkjjnelbidicakchphean\1\51e7704aaeb3a9.24811812.js
c:\users\Dezix\AppData\Local\Google\Chrome\User Data\Default\Extensions\emciaobpedegkjjnelbidicakchphean\1\background.html
c:\users\Dezix\AppData\Local\Google\Chrome\User Data\Default\Extensions\emciaobpedegkjjnelbidicakchphean\1\content.js
c:\users\Dezix\AppData\Local\Google\Chrome\User Data\Default\Extensions\emciaobpedegkjjnelbidicakchphean\1\lsdb.js
c:\users\Dezix\AppData\Local\Google\Chrome\User Data\Default\Extensions\emciaobpedegkjjnelbidicakchphean\1\manifest.json
c:\users\Dezix\AppData\Local\Google\Chrome\User Data\Default\Extensions\emciaobpedegkjjnelbidicakchphean\1\sqlite.js
c:\users\Dezix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_emciaobpedegkjjnelbidicakchphean_0.localstorage
c:\users\Dezix\AppData\Local\Google\Chrome\User Data\Default\Preferences
c:\windows\apppatch\AppLoc.exe
c:\windows\AppPatch\Custom\{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb
c:\windows\iun6002.exe
.
.
(((((((((((((((((((((((((   Files Created from 2014-03-14 to 2014-04-14  )))))))))))))))))))))))))))))))
.
.
2014-04-14 19:36 . 2014-04-14 19:36 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-04-14 19:06 . 2014-04-14 19:24 -------- d-----w- c:\program files (x86)\Mozilla Maintenance Service
2014-04-14 18:32 . 2014-04-14 18:32 388096 ----a-r- c:\users\Dezix\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2014-04-14 18:28 . 2014-04-14 18:28 -------- d-----w- c:\program files (x86)\Common Files\Java
2014-04-14 18:27 . 2014-04-14 18:27 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2014-04-14 18:27 . 2014-04-14 18:27 -------- d-----w- c:\program files (x86)\Java
2014-04-14 18:26 . 2014-04-14 18:26 312744 ----a-w- c:\windows\system32\javaws.exe
2014-04-14 18:26 . 2014-04-14 18:26 108968 ----a-w- c:\windows\system32\WindowsAccessBridge-64.dll
2014-04-14 18:26 . 2014-04-14 18:26 189352 ----a-w- c:\windows\system32\javaw.exe
2014-04-14 18:26 . 2014-04-14 18:26 189352 ----a-w- c:\windows\system32\java.exe
2014-04-14 18:26 . 2014-04-14 18:26 -------- d-----w- c:\program files\Java
2014-04-14 18:08 . 2014-04-14 18:16 -------- d-----w- C:\FRST
2014-04-14 17:46 . 2014-03-07 04:43 10521840 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{82D17D21-A275-4DF7-BA87-D15F8A0EE674}\mpengine.dll
2014-04-14 17:26 . 2014-04-14 17:27 58696 ------w- c:\windows\system32\drivers\PROCMON20.SYS
2014-04-14 10:30 . 2014-04-14 10:30 -------- d-----w- c:\users\Dezix\AppData\Local\Adobe
2014-04-13 20:37 . 2014-04-13 20:37 281872 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2014-04-13 20:37 . 2014-04-13 20:37 281872 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2014-04-13 20:37 . 2014-04-13 20:37 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2014-04-13 11:34 . 2014-04-13 11:34 -------- d-----w- c:\program files (x86)\Thermaltake Ttesports Ultimate
2014-04-13 10:52 . 2014-03-07 04:43 10521840 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2014-04-07 10:22 . 2014-04-07 10:22 -------- d-----w- c:\programdata\ATI
2014-04-07 10:19 . 2014-04-07 10:19 -------- d-----w- c:\program files (x86)\AMD AVT
2014-04-07 10:19 . 2014-04-07 10:19 -------- d-----w- c:\program files (x86)\Common Files\ATI Technologies
2014-04-07 10:16 . 2014-04-07 10:16 -------- d-----w- c:\program files\AMD
2014-04-07 10:14 . 2014-04-07 10:14 -------- d-----w- c:\program files (x86)\ATI Technologies
2014-04-07 10:07 . 2014-04-07 10:19 -------- d-----w- c:\program files\ATI Technologies
2014-04-04 09:46 . 2014-02-21 09:37 1031560 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{1A7C0DD0-A3F2-4B2F-8A14-E2337BD4DA71}\gapaengine.dll
2014-03-30 23:36 . 2014-03-30 23:38 -------- d-----w- c:\users\Dezix\Zomboid
2014-03-30 00:17 . 2014-03-30 00:17 -------- d-----w- c:\users\Dezix\AppData\Roaming\Publish Providers
2014-03-30 00:17 . 2014-03-30 00:17 -------- d-----w- c:\users\Dezix\AppData\Roaming\Sony
2014-03-28 21:17 . 2009-11-25 20:06 1276928 ----a-w- c:\windows\system32\drivers\viahduaa.sys
2014-03-28 21:17 . 2009-11-12 10:09 1011712 ----a-w- c:\windows\system32\VIAPropPageExt.dll
2014-03-28 21:17 . 2009-11-11 10:33 532480 ----a-w- c:\windows\system32\VIASysFx.dll
2014-03-19 16:58 . 2014-03-19 16:58 -------- d-----w- c:\users\Dezix\AppData\Roaming\com.valve.FTP
2014-03-16 00:47 . 2014-03-16 00:47 -------- d-----w- c:\users\Dezix\AppData\Local\Skype
2014-03-16 00:46 . 2014-03-16 00:46 -------- d-----w- c:\program files (x86)\Common Files\Skype
2014-03-15 20:56 . 2014-03-29 21:09 -------- d-----w- c:\users\Dezix\AppData\Roaming\livestreamer
.
.
.
((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-04-10 10:40 . 2013-07-11 17:09 70832 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-04-10 10:40 . 2013-07-11 17:09 692400 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-02-21 09:37 . 2013-07-17 01:12 1031560 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\NISBackup\gapaengine.dll
2014-01-19 07:33 . 2013-07-11 15:48 270496 ------w- c:\windows\system32\MpSigStub.exe
.
.
(((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown 
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 131248 ----a-w- c:\users\Dezix\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 131248 ----a-w- c:\users\Dezix\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 131248 ----a-w- c:\users\Dezix\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 131248 ----a-w- c:\users\Dezix\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"="e:\daemon tools lite\DTLite.exe" [2012-11-06 3673728]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1475584]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904]
"HDAudDeck"="c:\program files (x86)\VIA\VIAudioi\VDeck\VDeck.exe" [2009-12-04 2792448]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" [2013-12-06 766208]
"ChallengerUltimate"="c:\program files (x86)\Thermaltake Ttesports Ultimate\Ttsystray3.exe" [2010-08-05 1254912]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-07-02 254336]
.
c:\users\Dezix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Dezix\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2014-1-3 30714328]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"EnableLUA"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R3 cpuz135;cpuz135;c:\windows\TEMP\cpuz135\cpuz135_x64.sys;c:\windows\TEMP\cpuz135\cpuz135_x64.sys [x]
R3 Futuremark SystemInfo Service;Futuremark SystemInfo Service;c:\program files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe;c:\program files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe [x]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys;c:\windows\SYSNATIVE\DRIVERS\NisDrvWFP.sys [x]
R3 NisSrv;Microsoft Hálózatfelügyelet;c:\program files\Microsoft Security Client\NisSrv.exe;c:\program files\Microsoft Security Client\NisSrv.exe [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 AMD FUEL Service;AMD FUEL Service;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe;c:\program files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [x]
S2 AODDriver4.2.0;AODDriver4.2.0;c:\program files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys;c:\program files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
.
.
Contents of the 'Scheduled Tasks' folder
.
2014-04-14 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-11 10:40]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 164016 ----a-w- c:\users\Dezix\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 164016 ----a-w- c:\users\Dezix\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 164016 ----a-w- c:\users\Dezix\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-10 23:54 164016 ----a-w- c:\users\Dezix\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2013-10-23 1266912]
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = about:blank
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xportálás a Microsoft Excel programba - c:\progra~2\MICROS~3\Office12\EXCEL.EXE/3000
Trusted Zone: clonewarsadventures.com
Trusted Zone: freerealms.com
Trusted Zone: soe.com
Trusted Zone: sony.com
TCP: DhcpNameServer = 213.46.246.54 213.46.246.53
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_12_0_0_77_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_12_0_0_77_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_12_0_0_77_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_12_0_0_77_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_77.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.12"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_77.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_77.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_77.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Completion time: 2014-04-14  21:39:16
ComboFix-quarantined-files.txt  2014-04-14 19:39
ComboFix2.txt  2013-02-06 01:26
.
Pre-Run: 9 322 369 024 bájt szabad
Post-Run: 9 113 473 024 bájt szabad
.
- - End Of File - - 7646243508C3571B1002F413D770EEFF
A36C5E4F47E84449FF07ED3517B43A31

 
And now I am going to run ESET online scanner. Will attach log in a new comment

Edit: Moved topic from Am I infected? What do I do? to the more appropriate forum.~ Animal

BC AdBot (Login to Remove)

 


#2 HelpBot

HelpBot

    Bleepin' Binary Bot


  • Bots
  • 12,740 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:46 PM

Posted 19 April 2014 - 03:25 PM

Hello and welcome to Bleeping Computer!

I am HelpBot: an automated program designed to help the Bleeping Computer Staff better assist you! This message contains very important information, so please read through all of it before doing anything.

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

To help Bleeping Computer better assist you please perform the following steps:

***************************************************

step1.gif In order to continue receiving help at BleepingComputer.com, YOU MUST tell me if you still need help or if your issue has already been resolved on your own or through another resource! To tell me this, please click on the following link and follow the instructions there.

CLICK THIS LINK >>> http://www.bleepingcomputer.com/logreply/531060 <<< CLICK THIS LINK



If you no longer need help, then all you needed to do was the previous instructions of telling me so. You can skip the rest of this post. If you do need help please continue with Step 2 below.

***************************************************

step2.gifIf you still need help, I would like you to post a Reply to this topic (click the "Add Reply" button in the lower right hand of this page). In that reply, please include the following information:

  • If you have not done so already, include a clear description of the problems you're having, along with any steps you may have performed so far.
  • A new DDS log. For your convenience, you will find the instructions for generating these logs repeated at the bottom of this post.
    • Please do this even if you have previously posted logs for us.
    • If you were unable to produce the logs originally please try once more.
    • If you are unable to create a log please provide detailed information about your installed Windows Operating System including the Version, Edition and if it is a 32bit or a 64bit system.
    • If you are unsure about any of these characteristics just post what you can and we will guide you.
  • Please tell us if you have your original Windows CD/DVD available.
  • Upon completing the above steps and posting a reply, another staff member will review your topic and do their best to resolve your issues.

Thank you for your patience, and again sorry for the delay.

***************************************************

We need to see some information about what is happening in your machine. Please perform the following scan again:

  • Download DDS by sUBs from the following link if you no longer have it available and save it to your destop.

    DDS.com Download Link
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explanation about the tool. No input is needed, the scan is running.
  • Notepad will open with the results.
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet.

Information on A/V control can be found HERE.

As I am just a silly little program running on the BleepingComputer.com servers, please do not send me private messages as I do not know how to read and reply to them! Thanks!

#3 HelpBot

HelpBot

    Bleepin' Binary Bot


  • Bots
  • 12,740 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:07:46 PM

Posted 24 April 2014 - 03:30 PM

Hello again!

I haven't heard from you in 5 days. Therefore, I am going to assume that you no longer need our help, and close this topic.

If you do still need help, please send a Private Message to any Moderator within the next five days. Be sure to include a link to your topic in your Private Message.

Thank you for using Bleeping Computer, and have a great day!




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users