Additional scan result of Farbar Recovery Scan Tool (x64) Version: 31-05-2017 Ran by Korisnik (01-06-2017 21:12:03) Running from C:\Users\Korisnik\Desktop Windows 7 Professional Service Pack 1 (X64) (2014-08-20 09:36:44) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3772636690-2816259228-2777279056-500 - Administrator - Disabled) Guest (S-1-5-21-3772636690-2816259228-2777279056-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3772636690-2816259228-2777279056-1003 - Limited - Enabled) Korisnik (S-1-5-21-3772636690-2816259228-2777279056-1000 - Administrator - Enabled) => C:\Users\Korisnik ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-3772636690-2816259228-2777279056-1000\...\uTorrent) (Version: 3.5.0.43804 - BitTorrent Inc.) Acer Bio Protection (HKLM-x32\...\InstallShield_{E09664BB-BB08-45FA-87D1-33EAB0E017F5}) (Version: 6.2.60 - Egis Technology Inc.) Acer Crystal Eye Webcam (HKLM-x32\...\{7760D94E-B1B5-40A0-9AA0-ABF942108755}) (Version: 5.2.7.1 - Suyin Optronics Corp) Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.223 - Adobe Systems Incorporated) Adobe Flash Player Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 9.0.124.0 - Adobe Systems Incorporated) Adobe Reader XI (11.0.12) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated) Apple Mobile Device Support (HKLM\...\{D4D86CB2-2370-4691-8272-3869EDED6C64}) (Version: 10.0.0.18 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) AuthenTec Fingerprint Software (HKLM-x32\...\{83F136F0-2AE5-420C-A0B6-A440AD42591C}) (Version: 8.5.4.28 - AuthenTec, Inc.) AVerMedia A310 (MiniCard, DVB-T) 1.1.64.30 (HKLM-x32\...\AVerMedia A310 (MiniCard, DVB-T)) (Version: 1.1.64.30 - AVerMedia TECHNOLOGIES, Inc.) AVG Security Toolbar (HKLM-x32\...\AVG Secure Search) (Version: 19.6.0.592 - AVG Technologies) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Browser Extensions (HKU\S-1-5-21-3772636690-2816259228-2777279056-1000\...\{3A787631-66A2-4634-B928-A37E73B58FB6}) (Version: 2.9.9.5 - Spigot, Inc.) <==== ATTENTION Canon MG2500 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG2500_series) (Version: 1.00 - Canon Inc.) Canon MG2500 series On-screen Manual (HKLM-x32\...\Canon MG2500 series On-screen Manual) (Version: 7.8.0 - Canon Inc.) Canon MG2500 series User Registration (HKLM-x32\...\Canon MG2500 series User Registration) (Version: - ‭Canon Inc.) Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 2.0.1 - Canon Inc.) Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 2.0.0 - Canon Inc.) Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.1.0 - Canon Inc.) Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.2.1 - Canon Inc.) CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.7.6321 - CDBurnerXP) Cinema Plus v6V22.07 (HKLM-x32\...\Cinema Plus v6V22.07) (Version: 1.36.01.22 - Cinema Plus v6V22.07) <==== ATTENTION Cinema Plus v6V25.07 (HKLM-x32\...\Cinema Plus v6V25.07) (Version: 1.36.01.22 - Cinema Plus v6V25.07) <==== ATTENTION Fingerprint Solution (x32 Version: 6.1.60.0 - Egis Technology Inc.) Hidden Firefox Packages (HKU\S-1-5-21-3772636690-2816259228-2777279056-1000\...\Firefox Packages) (Version: - ) <==== ATTENTION FIXIO Driver Finder (HKLM-x32\...\{06887738-3E2F-448F-9F56-33AE27C2FA66}) (Version: 1.0.23.1854 - LULU Software Limited) FIXIO PC Cleaner (HKLM\...\{C7AFABF0-7F89-40B9-B4B6-61A5EE248720}) (Version: 1.3.1 - LULU Software Limited) FIXIO PC Optimizer (HKLM-x32\...\{FBF793DF-82A4-4088-BB38-7DCB207B7525}) (Version: 1.1.17 - LULU Software) Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 6.2.2.802 - Foxit Corporation) globalupdate Helper (x32 Version: 1.3.25.0 - globalupdate Inc.) Hidden <==== ATTENTION HWiNFO64 Version 4.42 (HKLM\...\HWiNFO64_is1) (Version: 4.42 - Martin Malík - REALiX) Java 7 Update 71 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217071FF}) (Version: 7.0.710 - Oracle) Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation) JMicron Flash Media Controller Driver (HKLM-x32\...\{26604C7E-A313-4D12-867F-7C6E7820BE4C}) (Version: 1.00.29.02 - JMicron Technology Corp.) K-Lite Codec Pack 4.1.7 (Full) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 4.1.7 - ) Logo Browser (HKU\S-1-5-21-3772636690-2816259228-2777279056-1000\...\{6BC6C346-E5ED-7367-71B5-9730CCA74351}) (Version: 1.9.6 - Bus Video corp) <==== ATTENTION LSI HDA Modem (HKLM\...\LSI Soft Modem) (Version: 2.2.97 - LSI Corporation) Malware Protection Live (HKLM-x32\...\MalwareProtectionLive) (Version: - ) <==== ATTENTION Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.10411.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Nero 8 Micro v8.1.1.0 (HKLM-x32\...\Nero8110_Micro_is1) (Version: - www.nero.com) Nuvoton CIR Device Driver (HKLM-x32\...\{2D3858B1-226A-420D-9C9D-B51864E85429}) (Version: 8.60.1000 - Nuvoton Technology Corporation) NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.5 - NVIDIA Corporation) NVIDIA PhysX (HKLM-x32\...\{DEA314C4-0929-4250-BC92-98E4C105F28D}) (Version: 9.10.0129 - NVIDIA Corporation) Outrageous Deal (HKLM-x32\...\Outrageous Deal) (Version: 2.0.5875.10184 - Outrageous Deal) <==== ATTENTION Podrška za Apple aplikacije (32 bita) (HKLM-x32\...\{29DB9165-5FC1-48F0-9188-26123F526848}) (Version: 5.0.1 - Apple Inc.) Podrška za Apple aplikacije (64 bita) (HKLM\...\{5905C8CF-1C88-4478-A48E-4E458AD1BC7E}) (Version: 5.0.1 - Apple Inc.) Popcorn Time Offical version 0.8.0.2 (HKLM-x32\...\{8F38178C-CFE2-476C-9DC8-F4203C2395FF}_is1) (Version: 0.8.0.2 - Popcorn Time Offical) <==== ATTENTION PowerISO (HKLM-x32\...\PowerISO) (Version: - ) PragmaModule (HKLM-x32\...\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{7fe2e872}) (Version: - Software Publisher) <==== ATTENTION SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.49.0 - SAMSUNG Electronics Co., Ltd.) Skype™ 7.32 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.32.104 - Skype Technologies S.A.) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) SW-Sustainer 1.80 (HKLM-x32\...\{5F189DF5-2D05-472B-9091-84D9848AE48B}{d0e87c27}) (Version: - Certified Publisher) <==== ATTENTION Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 13.2.4.12 - Synaptics Incorporated) TomTom MyDrive Connect 4.1.3.2964 (HKLM-x32\...\MyDriveConnect) (Version: 4.1.3.2964 - TomTom) VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) VNC Server 5.2.0 (HKLM\...\{4AAE0833-3348-469C-AB09-95B421356900}) (Version: 5.2.0 - RealVNC Ltd) VNC Viewer 5.2.0 (HKLM\...\{6441D26A-E24D-4711-BFE8-4C2E954D6DCE}) (Version: 5.2.0 - RealVNC Ltd) Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc) WinRAR archiver (HKLM-x32\...\WinRAR archiver) (Version: - ) YoutuubeAdBlocKe (HKLM-x32\...\{4820778D-AB0D-6D18-C316-52A6A0E1D507}) (Version: 3.1.0.1101 - ) <==== ATTENTION YTD Video Downloader 5.8.2 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 5.8.2 - GreenTree Applications SRL) <==== ATTENTION ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {08A353ED-5546-45A6-B647-5FFFE9DDD70B} - System32\Tasks\{4A1397F0-FBFB-4116-BE8D-53D5DD54C0B9} => Chrome.exe Task: {0FB14361-47C2-4F1A-ABF7-89DDAC9E6A45} - System32\Tasks\fb7e468f-f8c4-444e-aeb0-e7e766ef57d2-4 => C:\Program Files (x86)\TotalPlus01-3.1V22.09\fb7e468f-f8c4-444e-aeb0-e7e766ef57d2-4.exe <==== ATTENTION Task: {1BD4D251-1B99-488A-9E76-FFBE03B7809C} - System32\Tasks\{7B87B8D7-BE0B-490C-880B-55F803037F4E} => pcalua.exe -a "C:\Program Files (x86)\EA Games\Need for Speed Undercover\setup.exe" -d "C:\Program Files (x86)\EA Games\Need for Speed Undercover" Task: {1DA26878-77FF-4FB6-8F08-162EA85EF332} - \Logo Browser2 -> No File <==== ATTENTION Task: {2D2EA29D-EBE2-42AA-AF07-213CADA69E52} - System32\Tasks\53ff5de2-a715-4e4c-9eba-f405027ddf3d => C:\Program Files (x86)\TheTorntv V10\53ff5de2-a715-4e4c-9eba-f405027ddf3d.exe <==== ATTENTION Task: {2E05ED40-C57A-4D29-AD3F-A9C6F4C775D9} - System32\Tasks\6d63f4df-3cff-40c7-9307-58e556d789d4-11 => C:\Program Files (x86)\TheTorntv V10\6d63f4df-3cff-40c7-9307-58e556d789d4-11.exe <==== ATTENTION Task: {347395EC-43F6-4CE6-9064-A8451822531B} - System32\Tasks\{81ACA91C-E95F-4147-A275-FD1377A71F1D} => pcalua.exe -a "C:\Users\Korisnik\AppData\Roaming\Curse Client\Bin\CurseSetupHelper.exe" -d "C:\Users\Korisnik\AppData\Roaming\Curse Client\Bin" Task: {377F143F-0356-4DB9-A4AC-137D63251D45} - System32\Tasks\04c29a82-4eb6-4608-b31a-b44c00987862-1-6 => C:\Program Files (x86)\Cinema Plus v6V22.07\04c29a82-4eb6-4608-b31a-b44c00987862-1-6.exe <==== ATTENTION Task: {39F5DDCC-8C97-4D31-9E42-68B7B560380A} - System32\Tasks\48_dresses_notification_service => C:\Program Files (x86)\48 dresses\48_dresses_notification_service.exe <==== ATTENTION Task: {3B9F2182-36A1-45A4-ABB7-CB33AF34D14C} - System32\Tasks\{B1DF7BC2-BEE9-4310-BC0B-27AFA9C4DCA3} => Chrome.exe Task: {3C003E8B-FB35-428C-A918-FCDCFCEE7EDB} - System32\Tasks\LaunchSignup => C:\Program Files (x86)\MyPC Backup\Signup Wizard.exe <==== ATTENTION Task: {3F64FFE5-5B12-48E2-B72C-2661AE812B0A} - System32\Tasks\fb7e468f-f8c4-444e-aeb0-e7e766ef57d2-3 => C:\Program Files (x86)\TotalPlus01-3.1V22.09\fb7e468f-f8c4-444e-aeb0-e7e766ef57d2-3.exe <==== ATTENTION Task: {4148A62D-F988-4FC9-A314-45F2CEB2C673} - System32\Tasks\fb7e468f-f8c4-444e-aeb0-e7e766ef57d2-11 => C:\Program Files (x86)\TotalPlus01-3.1V22.09\fb7e468f-f8c4-444e-aeb0-e7e766ef57d2-11.exe <==== ATTENTION Task: {441D1FD4-E31F-426C-8D54-F3943E1D1A5C} - System32\Tasks\48_dresses_updating_service => C:\Program Files (x86)\48 dresses\48_dresses_updating_service.exe <==== ATTENTION Task: {44E99FD5-6FFF-4CB4-9CF8-D1D2C8BEE183} - System32\Tasks\{E58974AE-3A42-4469-BB4E-D22B377C7AB8} => Chrome.exe Task: {454EFC62-B3E5-4408-A8C1-B752CBAC6938} - System32\Tasks\fb7e468f-f8c4-444e-aeb0-e7e766ef57d2-1 => C:\Program Files (x86)\TotalPlus01-3.1V22.09\TotalPlus01-3.1V22.09-codedownloader.exe <==== ATTENTION Task: {532DB2D6-FBCC-43A8-9E10-86856C369B28} - System32\Tasks\96376a83-fe11-4e62-9804-cf54613bbc9f-6 => C:\Program Files (x86)\Cinema Plus v6V25.07\96376a83-fe11-4e62-9804-cf54613bbc9f-6.exe <==== ATTENTION Task: {5434ED83-44BB-4569-9555-EB40CB525551} - System32\Tasks\{36CD3F27-3765-4F80-BEDF-81921B54DB83} => C:\Program Files (x86)\Electronic Arts\Need for Speed ProStreet\nfs.exe Task: {546F5CE6-344F-4DF3-9B4E-2DA4841648AF} - System32\Tasks\04c29a82-4eb6-4608-b31a-b44c00987862-5 => C:\Program Files (x86)\Cinema Plus v6V22.07\04c29a82-4eb6-4608-b31a-b44c00987862-5.exe <==== ATTENTION Task: {595B237A-4877-4C1D-922D-6CD4B2BE2E8A} - System32\Tasks\Microsoft\Windows\RAI\RaiTask => C:\windows\system32\net.exe [2009-07-14] (Microsoft Corporation) Task: {59D27EFB-DC31-406A-8D9A-060394BF31D2} - System32\Tasks\6d63f4df-3cff-40c7-9307-58e556d789d4-7 => C:\Program Files (x86)\TheTorntv V10\6d63f4df-3cff-40c7-9307-58e556d789d4-7.exe <==== ATTENTION Task: {634C2ACF-00AD-46A3-BA4E-766CCD2F9C71} - System32\Tasks\69c8f58c-fdaf-4e2a-9a59-289d13fa556e => C:\Program Files (x86)\TotalPlus01-3.1V22.09\69c8f58c-fdaf-4e2a-9a59-289d13fa556e.exe <==== ATTENTION Task: {65435552-4DDC-42E6-B35F-CB3CEC400EF3} - System32\Tasks\96376a83-fe11-4e62-9804-cf54613bbc9f-1-7 => C:\Program Files (x86)\Cinema Plus v6V25.07\96376a83-fe11-4e62-9804-cf54613bbc9f-1-7.exe <==== ATTENTION Task: {68717752-DBA5-4A29-8611-2EB80477A8C6} - System32\Tasks\6d63f4df-3cff-40c7-9307-58e556d789d4-5 => C:\Program Files (x86)\TheTorntv V10\6d63f4df-3cff-40c7-9307-58e556d789d4-5.exe <==== ATTENTION Task: {6C847BB7-9221-432C-A289-F7163A89920F} - System32\Tasks\{1A937BA7-6007-49AE-8A30-7E437C09A7D1} => Chrome.exe Task: {7598C4BF-E294-466B-B78E-0CE3D1D44FEF} - System32\Tasks\6d63f4df-3cff-40c7-9307-58e556d789d4-3 => C:\Program Files (x86)\TheTorntv V10\6d63f4df-3cff-40c7-9307-58e556d789d4-3.exe <==== ATTENTION Task: {7AFB74C7-AE48-4841-AD64-903A955D0835} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION Task: {7B9F250D-1E08-4B47-A134-305F91D5B7B7} - System32\Tasks\6c0922d2-652c-437a-9c8c-a087c3f466e9 => C:\Program Files (x86)\TheTorntv V10\6c0922d2-652c-437a-9c8c-a087c3f466e9.exe <==== ATTENTION Task: {7D983DDF-A84F-446F-BEA3-097F2C0918A6} - System32\Tasks\04c29a82-4eb6-4608-b31a-b44c00987862-6 => C:\Program Files (x86)\Cinema Plus v6V22.07\04c29a82-4eb6-4608-b31a-b44c00987862-6.exe <==== ATTENTION Task: {7E9FA232-429A-4E71-9ABA-7D4B44A07A65} - System32\Tasks\fb7e468f-f8c4-444e-aeb0-e7e766ef57d2-6 => C:\Program Files (x86)\TotalPlus01-3.1V22.09\fb7e468f-f8c4-444e-aeb0-e7e766ef57d2-6.exe <==== ATTENTION Task: {7F654810-2E45-46E8-B17E-35D2D3529C29} - System32\Tasks\WSE_Astromenda => C:\Users\Korisnik\AppData\Roaming\WSE_AS~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: {7FBC7137-593A-423C-AEF2-9B41611546CD} - System32\Tasks\dress4u_notification_service => C:\Program Files (x86)\dress4u\dress4u_notification_service.exe <==== ATTENTION Task: {81394936-E09B-4444-BEBB-9F0ADBFAFC89} - System32\Tasks\{A41D9527-42A7-4F8B-86A0-7547ABEEFF87} => Chrome.exe Task: {8544B0AA-3C48-4E7F-A91C-B82F7B30ADE2} - System32\Tasks\96376a83-fe11-4e62-9804-cf54613bbc9f-3 => C:\Program Files (x86)\Cinema Plus v6V25.07\96376a83-fe11-4e62-9804-cf54613bbc9f-3.exe <==== ATTENTION Task: {87D84F72-B159-4DCB-B22D-C5725A911847} - System32\Tasks\{F332978C-1D3A-4EE8-A095-260677EE840B} => Chrome.exe Task: {88966343-6415-4290-AEE5-A07951B629C0} - System32\Tasks\{CB3BA4C2-2193-470A-A3D7-301C59582165} => Chrome.exe Task: {8D9CCBF4-DDE0-4E12-8AAE-0E430B2F0FF3} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION Task: {96F5DE5C-2C19-4AF2-A701-6CD81CA47690} - System32\Tasks\{7533A4EC-AD8B-4E1D-9EA7-C087CE582834} => Chrome.exe Task: {A1431B3C-AB8D-48E9-B68B-1C5E579CBFB9} - System32\Tasks\6d63f4df-3cff-40c7-9307-58e556d789d4-6 => C:\Program Files (x86)\TheTorntv V10\6d63f4df-3cff-40c7-9307-58e556d789d4-6.exe <==== ATTENTION Task: {A4AD1225-C976-41F6-968C-EFB1CE9B8AD1} - System32\Tasks\6d63f4df-3cff-40c7-9307-58e556d789d4-1 => C:\Program Files (x86)\TheTorntv V10\TheTorntv V10-codedownloader.exe <==== ATTENTION Task: {A6C235CA-5BAB-4E65-BAB2-E9C0C6C85FFE} - System32\Tasks\96376a83-fe11-4e62-9804-cf54613bbc9f-7 => C:\Program Files (x86)\Cinema Plus v6V25.07\96376a83-fe11-4e62-9804-cf54613bbc9f-7.exe <==== ATTENTION Task: {AB571231-93A3-4A59-BE91-B4BA4337359E} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.) Task: {B255C9E0-23D6-4021-B738-DFB7ABC74949} - System32\Tasks\fb7e468f-f8c4-444e-aeb0-e7e766ef57d2-7 => C:\Program Files (x86)\TotalPlus01-3.1V22.09\fb7e468f-f8c4-444e-aeb0-e7e766ef57d2-7.exe <==== ATTENTION Task: {B4162B2E-4D2C-40DF-9830-18115E36C844} - System32\Tasks\6d63f4df-3cff-40c7-9307-58e556d789d4-2 => C:\Program Files (x86)\TheTorntv V10\6d63f4df-3cff-40c7-9307-58e556d789d4-2.exe <==== ATTENTION Task: {B5E02B69-624E-45DD-B121-00A245D76774} - System32\Tasks\299fd0a6-0813-47b4-b994-d0d3d24cb9eb => C:\Program Files (x86)\TotalPlus01-3.1V22.09\299fd0a6-0813-47b4-b994-d0d3d24cb9eb.exe <==== ATTENTION Task: {B77FE80B-E871-4BF7-AA9C-1C62EA3729D4} - System32\Tasks\fb7e468f-f8c4-444e-aeb0-e7e766ef57d2-5_user => C:\Program Files (x86)\TotalPlus01-3.1V22.09\fb7e468f-f8c4-444e-aeb0-e7e766ef57d2-5.exe <==== ATTENTION Task: {BC1FF3F4-7AD3-46B9-9969-081FB60203EF} - System32\Tasks\04c29a82-4eb6-4608-b31a-b44c00987862-7 => C:\Program Files (x86)\Cinema Plus v6V22.07\04c29a82-4eb6-4608-b31a-b44c00987862-7.exe <==== ATTENTION Task: {C14E7F82-8B01-400A-B516-248214225770} - System32\Tasks\96376a83-fe11-4e62-9804-cf54613bbc9f-5 => C:\Program Files (x86)\Cinema Plus v6V25.07\96376a83-fe11-4e62-9804-cf54613bbc9f-5.exe <==== ATTENTION Task: {C2A67D3E-3AFC-4349-9D0B-28DA1ED4773E} - System32\Tasks\dress4u_updating_service => C:\Program Files (x86)\dress4u\dress4u_updating_service.exe <==== ATTENTION Task: {C35A6A7A-6464-4464-9A10-F7E858BA99F7} - System32\Tasks\6d63f4df-3cff-40c7-9307-58e556d789d4-4 => C:\Program Files (x86)\TheTorntv V10\6d63f4df-3cff-40c7-9307-58e556d789d4-4.exe <==== ATTENTION Task: {C6354EBE-2B6D-4F70-A318-8A6E37AE8D55} - System32\Tasks\04c29a82-4eb6-4608-b31a-b44c00987862-3 => C:\Program Files (x86)\Cinema Plus v6V22.07\04c29a82-4eb6-4608-b31a-b44c00987862-3.exe <==== ATTENTION Task: {C67BCBF9-0840-43E4-A451-CCF83B8F843A} - System32\Tasks\96376a83-fe11-4e62-9804-cf54613bbc9f-1-6 => C:\Program Files (x86)\Cinema Plus v6V25.07\96376a83-fe11-4e62-9804-cf54613bbc9f-1-6.exe <==== ATTENTION Task: {CE07C56E-F629-4133-8FDC-E12CDB43AC0D} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated) Task: {D5D3AA98-72E6-4442-A820-B7AA9842373F} - System32\Tasks\{3A73AC99-14E4-4B10-A681-039372679E54} => Chrome.exe Task: {DA48AAA9-7C87-4CF8-9782-10AC0C93FB55} - System32\Tasks\fb7e468f-f8c4-444e-aeb0-e7e766ef57d2-5 => C:\Program Files (x86)\TotalPlus01-3.1V22.09\fb7e468f-f8c4-444e-aeb0-e7e766ef57d2-5.exe <==== ATTENTION Task: {EEA2DA05-239D-4FF5-942E-ADA8ECFC08EC} - System32\Tasks\6d63f4df-3cff-40c7-9307-58e556d789d4-5_user => C:\Program Files (x86)\TheTorntv V10\6d63f4df-3cff-40c7-9307-58e556d789d4-5.exe <==== ATTENTION Task: {EF5B8894-4D23-44EF-9B80-515AC00F3BFD} - System32\Tasks\{576D74C3-277B-46E8-BB7C-4FB8AC977325} => pcalua.exe -a "C:\Program Files (x86)\Electronic Arts\Need for Speed ProStreet\Support\Need for Speed ProStreet_code.exe" -d "C:\Program Files (x86)\Electronic Arts\Need for Speed ProStreet\Support" Task: {F28CEB2D-2567-4E11-9ED3-4F5996E29974} - System32\Tasks\04c29a82-4eb6-4608-b31a-b44c00987862-1-7 => C:\Program Files (x86)\Cinema Plus v6V22.07\04c29a82-4eb6-4608-b31a-b44c00987862-1-7.exe <==== ATTENTION Task: {F81D934B-04B8-4613-92A0-A31232D16CE8} - System32\Tasks\{40CB2148-5374-4B60-836F-5A8D4315A55E} => Chrome.exe Task: {F88F0B31-F440-401E-821B-32D34EAB737B} - System32\Tasks\{54C8DEBC-5F6C-4594-87CB-6AD345B6E5BB} => Chrome.exe Task: {FEB8CDB0-B3A5-491E-BFEB-D60170B552F6} - System32\Tasks\fb7e468f-f8c4-444e-aeb0-e7e766ef57d2-2 => C:\Program Files (x86)\TotalPlus01-3.1V22.09\fb7e468f-f8c4-444e-aeb0-e7e766ef57d2-2.exe <==== ATTENTION (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\windows\Tasks\04c29a82-4eb6-4608-b31a-b44c00987862-10_user.job => C:\Program Files (x86)\Cinema Plus v6V22.07\04c29a82-4eb6-4608-b31a-b44c00987862-10.exe <==== ATTENTION Task: C:\windows\Tasks\04c29a82-4eb6-4608-b31a-b44c00987862-5_user.job => C:\Program Files (x86)\Cinema Plus v6V22.07\04c29a82-4eb6-4608-b31a-b44c00987862-5.exe <==== ATTENTION Task: C:\windows\Tasks\96376a83-fe11-4e62-9804-cf54613bbc9f-10_user.job => C:\Program Files (x86)\Cinema Plus v6V25.07\96376a83-fe11-4e62-9804-cf54613bbc9f-10.exe <==== ATTENTION Task: C:\windows\Tasks\96376a83-fe11-4e62-9804-cf54613bbc9f-5_user.job => C:\Program Files (x86)\Cinema Plus v6V25.07\96376a83-fe11-4e62-9804-cf54613bbc9f-5.exe <==== ATTENTION ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2008-05-27 03:24 - 2008-05-27 03:24 - 00103424 _____ () C:\Program Files (x86)\Acer Bio Protection\PwdFilterV64.DLL 2016-09-01 18:12 - 2016-09-01 18:12 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2016-09-01 18:12 - 2016-09-01 18:12 - 01353528 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2014-08-20 11:57 - 2008-06-20 09:41 - 00062464 _____ () C:\Program Files (x86)\WinRAR\rarext64.dll 2009-07-14 01:57 - 2009-07-14 03:40 - 00069120 _____ () C:\windows\system32\BWContextHandler.dll 2014-08-20 13:42 - 2008-07-30 04:29 - 00200704 _____ () C:\Windows\PLFSetI.exe 2017-06-01 14:34 - 2017-06-01 14:31 - 01707080 _____ () C:\Program Files (x86)\AVG Secure Search\vprot.exe 2014-09-11 17:06 - 2014-09-11 17:06 - 00878592 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\platforms\qwindows.dll 2014-09-11 17:05 - 2014-09-11 17:05 - 00036352 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\bearer\qgenericbearer.dll 2014-09-11 17:06 - 2014-09-11 17:06 - 00038912 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\bearer\qnativerwifibearer.dll 2014-09-11 17:14 - 2014-09-11 17:14 - 00032256 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qdds.dll 2014-09-11 17:05 - 2014-09-11 17:05 - 00021504 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qgif.dll 2014-09-11 17:14 - 2014-09-11 17:14 - 00027648 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qicns.dll 2014-09-11 17:05 - 2014-09-11 17:05 - 00021504 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qico.dll 2014-09-11 17:14 - 2014-09-11 17:14 - 00381952 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qjp2.dll 2014-09-11 17:05 - 2014-09-11 17:05 - 00204800 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qjpeg.dll 2014-09-11 17:14 - 2014-09-11 17:14 - 00218112 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qmng.dll 2014-09-11 17:08 - 2014-09-11 17:08 - 00015872 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qsvg.dll 2014-09-11 17:14 - 2014-09-11 17:14 - 00015360 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qtga.dll 2014-09-11 17:15 - 2014-09-11 17:15 - 00307712 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qtiff.dll 2014-09-11 17:15 - 2014-09-11 17:15 - 00014848 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qwbmp.dll 2014-09-11 17:15 - 2014-09-11 17:15 - 00252928 _____ () C:\Program Files (x86)\MyDrive Connect\Plugins\imageformats\qwebp.dll 2017-02-28 21:46 - 2017-02-28 21:46 - 00621352 _____ () C:\Users\Korisnik\AppData\Roaming\BrowserExtensions\Coupons.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\TEMP:2CB9631F [134] AlternateDataStreams: C:\ProgramData\TEMP:6764D965 [129] ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2017-05-20 22:28 - 00000035 _____ C:\windows\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-3772636690-2816259228-2777279056-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Korisnik\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 88.84.0.30 - 88.84.0.60 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [{85B1E625-CCD4-4570-8629-5B441CB336E3}] => (Allow) C:\Program Files\RealVNC\VNC Server\vncserver.exe FirewallRules: [{D58A0C42-316D-425C-B068-9D336C5B9FC8}] => (Allow) C:\Program Files\RealVNC\VNC Server\vncserver.exe FirewallRules: [{E689EF11-B8A3-4AFD-980C-59BBEB8ED6A6}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [{B6D1CEDD-BFB4-445C-9323-C133569C0DA3}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [{7E2028C5-BEDE-44C6-ADE1-D95E76C8C665}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{42BAB446-FD77-40B1-8F73-29E19718153C}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe FirewallRules: [{5C19921A-C686-4518-950B-92619770F35F}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe FirewallRules: [{140A79DE-404F-434B-BCD9-76EC6F455F7D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{A4578888-E7F2-4756-9C15-7F59151D4DF9}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{65DDE936-9040-4629-840C-3DC9E5C14154}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{46C1B45A-6A32-46C4-B84F-E9C3365BB211}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{09D0018F-C977-4DB3-8C3D-5BC56E343CA2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life\hl.exe FirewallRules: [{0733BDB3-D6B0-4441-83CE-3E2BE8536FB8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Half-Life\hl.exe FirewallRules: [TCP Query User{61E81873-2DF7-4C99-9B69-A0D753E600E5}C:\programdata\electronic arts\need for speed world\data\nfsw.exe] => (Allow) C:\programdata\electronic arts\need for speed world\data\nfsw.exe FirewallRules: [UDP Query User{C25219EE-6E0A-4685-8AE3-BAEDCAE0C4ED}C:\programdata\electronic arts\need for speed world\data\nfsw.exe] => (Allow) C:\programdata\electronic arts\need for speed world\data\nfsw.exe FirewallRules: [TCP Query User{B8011205-3609-4B5E-AEE7-B2FA12BB0C6A}D:\activision\modern warfare 2\iw4mp.exe] => (Allow) D:\activision\modern warfare 2\iw4mp.exe FirewallRules: [UDP Query User{EBA9E754-41D6-42FD-99F1-366D598803AB}D:\activision\modern warfare 2\iw4mp.exe] => (Allow) D:\activision\modern warfare 2\iw4mp.exe FirewallRules: [{40BC44C7-2257-442F-95C3-DF0CB43B2A39}] => (Allow) D:\Steam\Steam.exe FirewallRules: [{BD5EE50B-A56B-4335-BAED-C26DEA823891}] => (Allow) D:\Steam\Steam.exe FirewallRules: [TCP Query User{D2E8AF63-C829-45F8-B124-EDF657457B6E}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe FirewallRules: [UDP Query User{7D888B3B-452C-49F7-8C52-E620A34AD65D}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe FirewallRules: [{1270F1DB-6EE5-4A77-8F78-F059B15CB5C4}] => (Allow) C:\Users\Korisnik\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{BFEFFFFA-57D3-41AD-B83A-20D6D3FB0308}] => (Allow) C:\Users\Korisnik\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{C2CD9DBF-7CF1-45D7-8992-690D230D56F2}D:\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe] => (Allow) D:\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe FirewallRules: [UDP Query User{46ADADD2-DF2D-4399-BE5C-EAA26D5F575C}D:\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe] => (Allow) D:\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe FirewallRules: [{CD9EE983-8F6F-495E-9C5C-74C01D29D093}] => (Allow) C:\Program Files (x86)\Microsoft Silverlight\sllauncher.exe FirewallRules: [{D081AABC-322A-4BC6-908F-EAE035F7DB73}] => (Allow) C:\Program Files (x86)\Microsoft Silverlight\sllauncher.exe FirewallRules: [{3F2974B2-B90F-48C2-AE66-A4EFFA38D4E3}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{4FD85E2B-98AB-4832-8E09-A94070441893}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{4BE5936F-C8E2-45DC-9683-8F4AE466F03D}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{226DF34A-5C35-434C-9A24-18C91A8168D7}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{83073FA1-E406-493F-A4A8-5FFD8614CB49}] => (Allow) D:\Steam\SteamApps\common\APB Reloaded\Binaries\APB.exe FirewallRules: [{855FA369-927D-40A4-BFB3-04433FE9F777}] => (Allow) D:\Steam\SteamApps\common\APB Reloaded\Binaries\APB.exe FirewallRules: [{B9F3C7B2-CB58-4170-BFAF-40E6DA3B91D5}] => (Allow) D:\Steam\SteamApps\common\APB Reloaded\Binaries\VivoxVoiceService.exe FirewallRules: [{9753BCF8-AC21-4D50-B0D0-BA1BB9E96D87}] => (Allow) D:\Steam\SteamApps\common\APB Reloaded\Binaries\VivoxVoiceService.exe FirewallRules: [TCP Query User{D3076A09-46A9-45C5-8498-64939F2085DD}C:\program files (x86)\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe] => (Allow) C:\program files (x86)\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe FirewallRules: [UDP Query User{5AEC3AE5-DA02-423A-A664-B4B84AD37B65}C:\program files (x86)\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe] => (Allow) C:\program files (x86)\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe FirewallRules: [TCP Query User{B95E715B-815B-49A7-BABA-63DE71F6F093}C:\program files (x86)\Java\jre1.8.0_25\bin\jp2launcher.exe] => (Allow) C:\program files (x86)\Java\jre1.8.0_25\bin\jp2launcher.exe FirewallRules: [UDP Query User{A1E1D769-C5C3-41D9-8A35-8524B529799A}C:\program files (x86)\Java\jre1.8.0_25\bin\jp2launcher.exe] => (Allow) C:\program files (x86)\Java\jre1.8.0_25\bin\jp2launcher.exe FirewallRules: [{DA3498C4-D37D-43A5-8F5D-CAC8326E61C1}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{5BC5511D-637B-4E0F-9D40-033F0F9809AE}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [TCP Query User{A2CF4492-4175-4B1C-A77F-817B44E0FD83}C:\program files (x86)\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe] => (Block) C:\program files (x86)\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe FirewallRules: [UDP Query User{127C5C95-33C2-40FC-9FDA-C4DD1B2AA949}C:\program files (x86)\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe] => (Block) C:\program files (x86)\sniper ghost warrior 2\bin32\sniperghostwarrior2.exe FirewallRules: [TCP Query User{C1F3290C-1000-481F-AF60-5157C10BA8F5}C:\users\korisnik\appdata\local\popcorn time offical\node-webkit\popcorn time.exe] => (Allow) C:\users\korisnik\appdata\local\popcorn time offical\node-webkit\popcorn time.exe FirewallRules: [UDP Query User{765CE024-3D7F-44A7-B526-5DCA8B41E50A}C:\users\korisnik\appdata\local\popcorn time offical\node-webkit\popcorn time.exe] => (Allow) C:\users\korisnik\appdata\local\popcorn time offical\node-webkit\popcorn time.exe FirewallRules: [{72CE614B-AF83-42F9-881B-C9A18D164F77}] => (Block) C:\users\korisnik\appdata\local\popcorn time offical\node-webkit\popcorn time.exe FirewallRules: [{80984AE1-A96B-44C8-AFFB-8F57C5B3389E}] => (Block) C:\users\korisnik\appdata\local\popcorn time offical\node-webkit\popcorn time.exe FirewallRules: [{E666BFC2-02F9-4868-A0EE-367468A319C0}] => (Allow) D:\Steam\SteamApps\common\dota 2 beta\dota.exe FirewallRules: [{A3408D18-8CC2-4AB8-9B91-B1E6C26BA262}] => (Allow) D:\Steam\SteamApps\common\dota 2 beta\dota.exe FirewallRules: [{77E36A0C-EA33-4FDC-BEA5-AD282D743409}] => (Allow) D:\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{7E015AF1-0F05-431C-9D6D-75654D5149AB}] => (Allow) D:\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{D55295E9-4934-4457-ACB6-A5D578196815}] => (Allow) D:\Steam\SteamApps\common\Half-Life\hl.exe FirewallRules: [{198955E7-9E5A-4057-9BFA-1D71CB1C2443}] => (Allow) D:\Steam\SteamApps\common\Half-Life\hl.exe FirewallRules: [TCP Query User{C6FA48E4-76D2-4418-AB44-6A4E08E25B91}C:\users\korisnik\appdata\local\popcorn time\nw.exe] => (Allow) C:\users\korisnik\appdata\local\popcorn time\nw.exe FirewallRules: [UDP Query User{3D8C20C6-395A-4D9D-A9D7-B30622BF2D66}C:\users\korisnik\appdata\local\popcorn time\nw.exe] => (Allow) C:\users\korisnik\appdata\local\popcorn time\nw.exe FirewallRules: [{8ADF13FC-C259-4159-A51E-2C1CBF7F0B59}] => (Allow) C:\Users\Korisnik\AppData\Local\Temp\nslA6BD.tmpMoboInstall\mobogenieP2sp.exe FirewallRules: [{56FBC8D0-7807-4445-8DF6-F046502D4021}] => (Allow) C:\Users\Korisnik\AppData\Local\Temp\nslA6BD.tmpMoboInstall\mobogenieP2sp.exe FirewallRules: [{3953475C-E2CC-422C-9846-F226AE6F9876}] => (Allow) C:\Program Files\Trust.Zone VPN Client\trustzone.exe FirewallRules: [{7F288CCE-93F8-47AF-A783-2705D978BF3B}] => (Allow) C:\Program Files\Trust.Zone VPN Client\trustzone_x64.exe FirewallRules: [{A81E1579-2738-4376-AE9B-DDC40D0E24EC}] => (Allow) C:\Program Files\Trust.Zone VPN Client\tzclient.exe FirewallRules: [{7862DB01-B1B1-43E6-A431-9A1F54A9E07C}] => (Allow) C:\Program Files\Trust.Zone VPN Client\tzclient_x64.exe FirewallRules: [{D1B7E190-44BD-4FB4-8042-E0BE32094CBE}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{D0D703F9-7F9D-4091-913B-60478CB43FD3}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{C3762C00-1E7A-49B5-A8C1-EFC73BBB144F}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{F46871B6-45F2-4A99-AF0D-C467F703BB85}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{100EC0DF-3AE0-4587-B171-C15BDFA3987C}] => (Allow) C:\Program Files (x86)\Popcorn Time\Updater.exe FirewallRules: [{01FB4437-526D-4CD2-ADC5-DE07BBAF63FA}] => (Allow) C:\Program Files (x86)\Popcorn Time\Updater.exe FirewallRules: [{841789CA-256A-4930-9924-D0D0DBD8D31C}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Restore Points ========================= ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (06/01/2017 08:58:34 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: iexplore.exe, version: 8.0.7601.17514, time stamp: 0x4ce79912 Faulting module name: ButtonWrap.dll, version: 1.9.0.1, time stamp: 0x58b5d38c Exception code: 0xc0000005 Fault offset: 0x00006482 Faulting process id: 0x184 Faulting application start time: 0x01d2db08d84e4546 Faulting application path: C:\Program Files (x86)\Internet Explorer\iexplore.exe Faulting module path: C:\Users\Korisnik\AppData\Roaming\BrowserExtensions\ButtonWrap.dll Report Id: 4f38673d-46fc-11e7-8e3f-00238b486494 Error: (06/01/2017 08:58:05 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program iexplore.exe version 8.0.7601.17514 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: ee8 Start Time: 01d2db08ccb38ff0 Termination Time: 16 Application Path: C:\Program Files (x86)\Internet Explorer\iexplore.exe Report Id: 36698fe3-46fc-11e7-8e3f-00238b486494 Error: (06/01/2017 08:07:49 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program iexplore.exe version 8.0.7601.17514 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: a8c Start Time: 01d2db01b015d614 Termination Time: 16 Application Path: C:\Program Files (x86)\Internet Explorer\iexplore.exe Report Id: 2e890cb9-46f5-11e7-8e3f-00238b486494 Error: (06/01/2017 07:56:55 PM) (Source: MsiInstaller) (EventID: 11711) (User: Korisnik-PC) Description: Product: Skype™ 7.32 -- Error 1711. An error occurred while writing installation information to disk. Check to make sure enough disk space is available, and click Retry, or Cancel to end the install. Error: (06/01/2017 07:56:55 PM) (Source: MsiInstaller) (EventID: 11711) (User: Korisnik-PC) Description: Product: Skype™ 7.32 -- Error 1711. An error occurred while writing installation information to disk. Check to make sure enough disk space is available, and click Retry, or Cancel to end the install. Error: (06/01/2017 07:56:55 PM) (Source: MsiInstaller) (EventID: 11711) (User: Korisnik-PC) Description: Product: Skype™ 7.32 -- Error 1711. An error occurred while writing installation information to disk. Check to make sure enough disk space is available, and click Retry, or Cancel to end the install. Error: (06/01/2017 07:56:54 PM) (Source: MsiInstaller) (EventID: 11711) (User: Korisnik-PC) Description: Product: Skype™ 7.32 -- Error 1711. An error occurred while writing installation information to disk. Check to make sure enough disk space is available, and click Retry, or Cancel to end the install. Error: (06/01/2017 07:56:54 PM) (Source: MsiInstaller) (EventID: 11711) (User: Korisnik-PC) Description: Product: Skype™ 7.32 -- Error 1711. An error occurred while writing installation information to disk. Check to make sure enough disk space is available, and click Retry, or Cancel to end the install. Error: (06/01/2017 07:56:53 PM) (Source: MsiInstaller) (EventID: 11711) (User: Korisnik-PC) Description: Product: Skype™ 7.32 -- Error 1711. An error occurred while writing installation information to disk. Check to make sure enough disk space is available, and click Retry, or Cancel to end the install. Error: (06/01/2017 07:48:17 PM) (Source: MsiInstaller) (EventID: 11711) (User: Korisnik-PC) Description: Product: FIXIO Driver Finder -- Error 1711. An error occurred while writing installation information to disk. Check to make sure enough disk space is available, and click Retry, or Cancel to end the install. System errors: ============= Error: (06/01/2017 08:59:44 PM) (Source: Disk) (EventID: 11) (User: ) Description: The driver detected a controller error on \Device\Harddisk1\DR2. Error: (06/01/2017 08:59:44 PM) (Source: Disk) (EventID: 11) (User: ) Description: The driver detected a controller error on \Device\Harddisk1\DR2. Error: (06/01/2017 08:59:43 PM) (Source: Disk) (EventID: 11) (User: ) Description: The driver detected a controller error on \Device\Harddisk1\DR2. Error: (06/01/2017 08:59:43 PM) (Source: Disk) (EventID: 11) (User: ) Description: The driver detected a controller error on \Device\Harddisk1\DR2. Error: (06/01/2017 08:59:42 PM) (Source: Disk) (EventID: 11) (User: ) Description: The driver detected a controller error on \Device\Harddisk1\DR2. Error: (06/01/2017 08:02:07 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY) Description: The following fatal alert was received: 70. Error: (06/01/2017 08:02:04 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY) Description: The following fatal alert was received: 70. Error: (06/01/2017 07:38:01 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Installation Failure: Windows failed to install the following update with error 0x80070070: Update for Windows 7 for x64-based Systems (KB2563227). Error: (06/01/2017 07:37:51 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Installation Failure: Windows failed to install the following update with error 0x80070070: Update for Windows 7 for x64-based Systems (KB2563227). Error: (06/01/2017 07:37:41 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY) Description: Installation Failure: Windows failed to install the following update with error 0x80070070: Update for Windows 7 for x64-based Systems (KB2563227). ==================== Memory info =========================== Processor: Intel(R) Core(TM)2 Duo CPU T6400 @ 2.00GHz Percentage of memory in use: 79% Total physical RAM: 4060.87 MB Available physical RAM: 814.3 MB Total Virtual: 12440.17 MB Available Virtual: 2468.52 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:45.13 GB) (Free:3.72 GB) NTFS Drive d: () (Fixed) (Total:29.3 GB) (Free:29.14 GB) NTFS Drive h: (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[system with boot components (obtained from drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 74.5 GB) (Disk ID: D97CD97C) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=45.1 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=29.3 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================