Addition:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 25-05-2015
Ran by Igor at 2015-05-26 08:12:31
Running from C:\Users\Igor\Desktop
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-3657793213-1374639332-2279747208-500 - Administrator - Disabled)
Guest (S-1-5-21-3657793213-1374639332-2279747208-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3657793213-1374639332-2279747208-1003 - Limited - Enabled)
Igor (S-1-5-21-3657793213-1374639332-2279747208-1001 - Administrator - Enabled) => C:\Users\Igor
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-3657793213-1374639332-2279747208-1001\...\uTorrent) (Version: 3.4.2.38758 - BitTorrent Inc.)
7-Zip 9.38 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0938-000001000000}) (Version: 9.38.00.0 - Igor Pavlov)
Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated)
Assassin's Creed IV Black Flag (HKLM-x32\...\Steam App 242050) (Version: - Ubisoft Montreal)
Batman: Arkham City GOTY (HKLM-x32\...\Steam App 200260) (Version: - Rocksteady Studios)
Battlestations: Midway (HKLM-x32\...\Steam App 6870) (Version: - Eidos Interactive)
Broken Sword 2 - the Smoking Mirror: Remastered (HKLM-x32\...\Steam App 33600) (Version: - Revolution Software Ltd)
Clicker Heroes (HKLM-x32\...\Steam App 363970) (Version: - )
CPUID CPU-Z 1.72 (HKLM\...\CPUID CPU-Z_is1) (Version: - )
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd)
Dark Souls: Prepare to Die Edition (HKLM-x32\...\Steam App 211420) (Version: - FromSoftware)
Desktop Dungeons (HKLM-x32\...\GOGPACKDESKTOPDUNGEONS_is1) (Version: 2.0.0.1 - GOG.com)
Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment)
DiRT 3 Complete Edition (HKLM-x32\...\Steam App 321040) (Version: - Codemasters Racing Studio)
Dragon Age Inquisition (HKLM-x32\...\Dragon Age Inquisition_R.G. Gamblers_is1) (Version: - R.G. Gamblers, Fanfar)
Dual-Core Optimizer (HKLM-x32\...\{9FD6F1A8-5550-46AF-8509-271DF0E768B5}) (Version: 1.1.4.0169 - AMD)
Firefly Online Cortex (HKLM-x32\...\Steam App 343750) (Version: - Spark Plug Games)
GOM Player (HKLM-x32\...\GOM Player) (Version: 2.2.69.5227 - Gretech Corporation)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.65 - Google Inc.)
Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden
Heroes of Might and Magic IV: Winds of War (HKLM-x32\...\Heroes of Might and Magic IV) (Version: - )
HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.9.241 - SurfRight B.V.)
Infinity Wars - Animated Trading Card Game (HKLM-x32\...\Steam App 257730) (Version: - Lightmare Studios)
Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation)
Jigoku Kisetsukan: Sense of the Seasons (HKLM-x32\...\Steam App 368950) (Version: - )
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games)
League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden
Malwarebytes Anti-Malware version 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Mozilla Firefox 38.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 38.0.1 (x86 en-US)) (Version: 38.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 35.0.1 - Mozilla)
Nosgoth (HKLM-x32\...\Steam App 200110) (Version: 150429.107810 - Square Enix Ltd)
NVIDIA 3D Vision Driver 347.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 347.52 - NVIDIA Corporation)
NVIDIA Graphics Driver 347.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 347.52 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.33.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.33.0 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation)
NVIDIA Update 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Origin (HKLM-x32\...\Origin) (Version: 9.5.5.2850 - Electronic Arts, Inc.)
Prototype (HKLM-x32\...\Steam App 10150) (Version: - Radical Entertainment)
qBittorrent 3.2.0 (HKLM-x32\...\qBittorrent) (Version: 3.2.0 - The qBittorrent project)
Rapture3D 2.4.8 Game (HKLM-x32\...\{D2FCA41E-AC01-4DCD-B3A7-DC9E32363065}}_is1) (Version: - Blue Ripple Sound)
Ravensword: Shadowlands (HKLM-x32\...\Steam App 253410) (Version: - Crescent Moon Games)
Serious Sam 3 Bonus Content (HKLM-x32\...\Steam App 200330) (Version: - Croteam)
Serious Sam 3: BFE (HKLM-x32\...\Steam App 41070) (Version: - Croteam)
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation)
Skype™ 7.2 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.2.103 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1194 - SUPERAntiSpyware.com)
The Binding of Isaac (HKLM-x32\...\Steam App 113200) (Version: - Edmund McMillen and Florian Himsl)
Ultima 8 (HKLM-x32\...\{428C6B01-D292-46F9-9321-75668ED17DA2}) (Version: 1.0.0.1 - Electronic Arts)
Uplay (HKLM-x32\...\Uplay) (Version: 4.0 - Ubisoft)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
Winamp (HKLM-x32\...\Winamp) (Version: 5.623 - Nullsoft, Inc)
Winamp Detector Plug-in (HKU\S-1-5-21-3657793213-1374639332-2279747208-1001\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc)
WinRAR archiver (HKLM-x32\...\WinRAR archiver) (Version: - )
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== Restore Points =========================
25-05-2015 08:00:00 kurcina
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0431A7C5-2C85-41DB-B22B-E0AA050CE625} - System32\Tasks\SUPERAntiSpyware Scheduled Task 51e9c3af-9ec5-4b24-91ab-38f78bc46a40 => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com)
Task: {123C7C14-8C82-4D1E-B92A-48B8F7BABAAC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-22] (Google Inc.)
Task: {1370C218-1E10-4507-BD09-E2803AFEC1F0} - System32\Tasks\SUPERAntiSpyware Scheduled Task b8558529-869c-45d7-b5ae-fa68f2cabf3e => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com)
Task: {1E55CFC5-3CF0-44FF-AF21-793E823CC24F} - System32\Tasks\Origin => C:\ProgramData\Origin\update.vbe [2015-05-04] () <==== ATTENTION
Task: {621938F4-9C25-4361-B108-C1E3879D94E5} - System32\Tasks\Microsoft\Windows\Windows Defender\Kurcina2 => C:\Program Files\Windows Defender\MpCmdRun.exe [2015-02-04] (Microsoft Corporation)
Task: {67115AA9-E3A3-4159-8FFE-472E9E33ADD2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-22] (Google Inc.)
Task: {73F11FB7-C81D-4718-86D8-AEC5FF93438E} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-15] (Adobe Systems Incorporated)
Task: {92BE1DBD-6BBF-4ACB-9A02-2E753FD3F963} - System32\Tasks\{63F31E98-8A5C-48F8-89A2-78CDCD869550} => pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{CA31F991-DBD2-4DE1-B6D2-30105F23CBBC}\setup.exe" -c -runfromtemp -l0x0009 -removeonly
Task: {BA2210A2-B4BC-4374-A0CA-EE147C746D20} - System32\Tasks\Microsoft\Windows\Windows Defender\kurcina => C:\Program Files\Windows Defender\MpCmdRun.exe [2015-02-04] (Microsoft Corporation)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 51e9c3af-9ec5-4b24-91ab-38f78bc46a40.job => C:\Program Files\SUPERAntiSpyware\SASTask.exedC:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task b8558529-869c-45d7-b5ae-fa68f2cabf3e.job => C:\Program Files\SUPERAntiSpyware\SASTask.exedC:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
==================== Loaded Modules (Whitelisted) ==============
2015-02-22 20:12 - 2015-02-05 21:07 - 00117576 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-02-22 19:58 - 2014-01-04 13:52 - 00032256 _____ () C:\Windows\KMS\KMS.exe
2015-02-22 19:58 - 2013-12-03 22:01 - 00016896 _____ () C:\Windows\KMS\WinDivert.dll
2015-02-25 04:15 - 2009-06-02 11:15 - 00051200 _____ () C:\Program Files (x86)\WinRAR\rarext64.dll
2015-05-26 08:07 - 2015-05-26 08:07 - 01563136 _____ () C:\Windows\Temp\svchost.exe
2015-02-25 04:58 - 2015-04-16 19:40 - 00776192 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2015-02-25 04:57 - 2015-04-23 04:16 - 04962816 _____ () C:\Program Files (x86)\Steam\v8.dll
2015-02-25 04:58 - 2015-05-15 03:58 - 02396352 _____ () C:\Program Files (x86)\Steam\video.dll
2015-02-25 04:57 - 2015-04-23 04:16 - 01556992 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2015-02-25 04:57 - 2015-04-23 04:16 - 01187840 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2015-02-25 04:57 - 2014-12-01 23:31 - 02396672 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2015-02-25 04:57 - 2014-12-01 23:31 - 00479744 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2015-02-25 04:57 - 2014-12-01 23:31 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2015-02-25 04:57 - 2014-12-01 23:31 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2015-02-25 04:57 - 2014-12-01 23:31 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2015-02-25 04:57 - 2015-05-15 03:57 - 00703168 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2015-02-25 04:57 - 2015-05-11 21:01 - 36302728 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Users\Igor\SkyDrive:ms-properties
==================== Safe Mode (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3657793213-1374639332-2279747208-1001\Control Panel\Desktop\\Wallpaper -> D:\00 IGOR razno\ford-mustang.gif
DNS Servers: 212.200.191.166 - 212.200.190.166
==================== MSCONFIG/TASK MANAGER Error getting ==
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3657793213-1374639332-2279747208-1001\...\StartupApproved\Run: => "Skype"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [{691D5B91-D08E-4BA4-A46F-DE7536F1889A}] => (Allow) C:\Windows\KMS\KMS.exe
FirewallRules: [{0EE0B350-D386-472D-B4DA-10AE762EA119}] => (Allow) C:\Windows\KMS\KMS.exe
FirewallRules: [{FD103DE3-F79C-4BC4-BE9C-4C80799A40FB}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{6622D01F-A36A-4F23-A01A-DE8D07F9A326}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{137430AF-2A4C-4C7F-9E5E-1B4751C8AA61}C:\users\igor\downloads\utorrent.exe] => (Allow) C:\users\igor\downloads\utorrent.exe
FirewallRules: [UDP Query User{B2D3B794-B6C5-4FCF-8EE2-9DB2C933D75F}C:\users\igor\downloads\utorrent.exe] => (Allow) C:\users\igor\downloads\utorrent.exe
FirewallRules: [{9AE8361C-339C-45D8-9576-1140C2656986}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{A7938E38-5948-4AAB-84F7-4A8B08E3178E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{88597637-C5B5-4872-BC19-5A03AA1CC73C}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{4303115A-986C-4C73-A38E-9E416595BB36}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{1F4645C6-0DC7-42EF-B29B-CCF6C15BCA27}] => (Allow) E:\SteamLibrary\steamapps\common\Prototype\prototypef.exe
FirewallRules: [{2D2BAAF1-E8F3-47D1-A2EA-4C0FF4C3A1C6}] => (Allow) E:\SteamLibrary\steamapps\common\Prototype\prototypef.exe
FirewallRules: [{0827DB74-801A-4A62-A9F8-C57F8341CDAB}] => (Allow) E:\SteamLibrary\steamapps\common\nosgoth\Binaries\Win32\Nosgoth.exe
FirewallRules: [{59B5DE35-4908-47DC-B80D-8BDFE4B37FFB}] => (Allow) E:\SteamLibrary\steamapps\common\nosgoth\Binaries\Win32\Nosgoth.exe
FirewallRules: [{BBDAF5D9-A402-4CA9-8840-A37DFE682087}] => (Allow) E:\SteamLibrary\steamapps\common\Ravensword2\Ravensword2.exe
FirewallRules: [{5D08574E-8B8C-4172-A1A5-2D7F94F64128}] => (Allow) E:\SteamLibrary\steamapps\common\Ravensword2\Ravensword2.exe
FirewallRules: [{BA2DDFEA-5864-41A8-A007-62EAC34A47A7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Batman Arkham City GOTY\Binaries\Win32\BatmanAC.exe
FirewallRules: [{1374E15B-30B1-47EC-8BAE-AB4D6027CE26}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Batman Arkham City GOTY\Binaries\Win32\BatmanAC.exe
FirewallRules: [{B38F61A4-A3A9-4F29-B24B-80B9F0403525}] => (Allow) E:\SteamLibrary\steamapps\common\Broken Sword 2\BrokenSword2.exe
FirewallRules: [{1F7417E4-2202-4BA3-8D0A-AD3C906BB4DC}] => (Allow) E:\SteamLibrary\steamapps\common\Broken Sword 2\BrokenSword2.exe
FirewallRules: [TCP Query User{675F552A-D06E-412B-A9AC-67233AD4FF32}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{E9CE083F-5B62-40D7-A227-BED0FBC76B88}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe
FirewallRules: [{FF75C167-C4CF-40A3-B9F7-635D59F83272}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe
FirewallRules: [{804D885E-3500-49BA-BC47-3E63EB204B87}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Battlestations Midway\Battlestationsmidway.exe
FirewallRules: [{5EBB3732-A4AC-4D73-8378-87D0F1B8D225}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Battlestations Midway\Battlestationsmidway.exe
FirewallRules: [{EAE8882D-9826-44CB-9B81-0A667B4939BD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Battlestations Midway\Options.exe
FirewallRules: [{DEC03595-B542-44C3-A801-1AC91F002BB6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Battlestations Midway\Options.exe
FirewallRules: [TCP Query User{FB6B808D-B122-4A3E-9008-FEC9521A676C}C:\users\igor\appdata\roaming\utorrent\updates\3.4.2_38913.exe] => (Allow) C:\users\igor\appdata\roaming\utorrent\updates\3.4.2_38913.exe
FirewallRules: [UDP Query User{B676DE0B-F7F3-43D4-9A6A-00E2BF72D05F}C:\users\igor\appdata\roaming\utorrent\updates\3.4.2_38913.exe] => (Allow) C:\users\igor\appdata\roaming\utorrent\updates\3.4.2_38913.exe
FirewallRules: [TCP Query User{E0284989-CA08-4B76-9752-AB23DBEF9808}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{40741ECC-BF8A-40EA-89B3-0700AEB64B4E}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [{89FF39CC-802E-4F45-9C28-C1A77843ED20}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Assassin's Creed IV Black Flag\AC4BFSP.exe
FirewallRules: [{531FF033-0CBB-4E65-A50F-B25828F561B0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Assassin's Creed IV Black Flag\AC4BFSP.exe
FirewallRules: [{BCC52A3D-D58D-4E91-98F9-4DE04BDF1E4D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Assassin's Creed IV Black Flag\AC4BFMP.exe
FirewallRules: [{424B1E2D-B1A6-4A9F-AA80-670C5614C026}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Assassin's Creed IV Black Flag\AC4BFMP.exe
FirewallRules: [TCP Query User{F78F550A-9A8F-4573-B7E9-6A34AB5BEAA6}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{6A094953-DE6F-48A1-A0DE-7ED37996086B}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{85586E13-429B-48DE-AF6A-C89D935300D5}] => (Allow) E:\SteamLibrary\steamapps\common\Dark Souls Prepare to Die Edition\DATA\DARKSOULS.exe
FirewallRules: [{D7C474EE-398B-44BC-95A9-0FCF42289173}] => (Allow) E:\SteamLibrary\steamapps\common\Dark Souls Prepare to Die Edition\DATA\DARKSOULS.exe
FirewallRules: [TCP Query User{7257DA57-D41E-4755-9B7D-5042FC3DFE2A}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe
FirewallRules: [UDP Query User{E71FC850-597D-47DD-9704-1C0B1C852849}C:\program files (x86)\winamp\winamp.exe] => (Allow) C:\program files (x86)\winamp\winamp.exe
FirewallRules: [{0E5F00E1-CECA-4925-BAD5-7510F80FED62}] => (Allow) E:\SteamLibrary\steamapps\common\FireflyOnlineCortex\FireflyCortex.exe
FirewallRules: [{A390C65F-3606-416F-8DC5-7B8043FEECEC}] => (Allow) E:\SteamLibrary\steamapps\common\FireflyOnlineCortex\FireflyCortex.exe
FirewallRules: [{3AA1880A-CF73-4485-80F7-EC312EF598F7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DiRT 3 Complete Edition\dirt3_game.exe
FirewallRules: [{4EEBB23E-1354-43C5-A637-89503B4BD016}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DiRT 3 Complete Edition\dirt3_game.exe
FirewallRules: [{EEDDA7E3-29E1-46FF-B525-7D5DFC052B86}] => (Allow) E:\SteamLibrary\steamapps\common\InfinityWars\Infinity Wars TCG.exe
FirewallRules: [{3C85E624-F89C-48B1-9DE6-2F98210C91B6}] => (Allow) E:\SteamLibrary\steamapps\common\InfinityWars\Infinity Wars TCG.exe
FirewallRules: [{4DC3B50C-5F74-46FE-8B2D-B4B48AD29AB1}] => (Allow) C:\Program Files (x86)\Origin Games\Ultima 8\Game\Game\DOSBox\DOSBox.exe
FirewallRules: [{49E9AB63-F985-4456-9FC5-61EF4E299315}] => (Allow) C:\Program Files (x86)\Origin Games\Ultima 8\Game\Game\DOSBox\DOSBox.exe
FirewallRules: [TCP Query User{019540FC-1D6B-446A-862E-D65E618A2D4B}C:\program files (x86)\java\jre1.8.0_45\bin\jp2launcher.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_45\bin\jp2launcher.exe
FirewallRules: [UDP Query User{26BDE84F-CD12-4EDE-8441-906DDBE3E22A}C:\program files (x86)\java\jre1.8.0_45\bin\jp2launcher.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_45\bin\jp2launcher.exe
FirewallRules: [{7C03A64A-8CD5-4461-875B-40CAC066EC89}] => (Allow) E:\SteamLibrary\steamapps\common\Clicker Heroes\Clicker Heroes.exe
FirewallRules: [{E973BC5D-DB52-418F-9246-D30DA51FD4D6}] => (Allow) E:\SteamLibrary\steamapps\common\Clicker Heroes\Clicker Heroes.exe
FirewallRules: [{69417DA9-0CDB-469B-8B09-20B2D63E75C1}] => (Allow) E:\SteamLibrary\steamapps\common\Jigoku Kisetsukan\Jigoku_Kisetsukan.exe
FirewallRules: [{ECF55C46-18A2-49E1-9A00-3172A72A2F0C}] => (Allow) E:\SteamLibrary\steamapps\common\Jigoku Kisetsukan\Jigoku_Kisetsukan.exe
FirewallRules: [{40E14032-44AD-4815-A1F0-63F85F658C46}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Binding Of Isaac\Isaac.exe
FirewallRules: [{4D35265E-53F0-4698-9772-453CFE505255}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Binding Of Isaac\Isaac.exe
FirewallRules: [{4D0FEE64-A786-4584-8D84-CC6A7EBC1AB8}] => (Allow) E:\SteamLibrary\steamapps\common\nosgoth\Binaries\Win32\Nosgoth.exe
FirewallRules: [{2CB8F7BA-E477-4E9D-9CD2-B70CC10320CC}] => (Allow) E:\SteamLibrary\steamapps\common\nosgoth\Binaries\Win32\Nosgoth.exe
FirewallRules: [{6A70E4FF-6D15-4383-8589-B793E8992908}] => (Allow) E:\SteamLibrary\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{75980502-B5BF-422D-A7DA-61E220C778E8}] => (Allow) E:\SteamLibrary\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{567CBE46-2C60-4AA1-A05B-8C51129BACEB}] => (Allow) E:\SteamLibrary\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{FDCFFB85-BAE6-4CE0-B98D-CA4DF221E411}] => (Allow) E:\SteamLibrary\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{4A92023E-DA8B-40DD-82E3-9EB2F6B73951}] => (Allow) C:\Program Files (x86)\qBittorrent\qbittorrent.exe
FirewallRules: [{9E356E75-9815-4FA2-A2D0-E01D13B43C65}] => (Allow) C:\Program Files (x86)\qBittorrent\qbittorrent.exe
FirewallRules: [{5ED93228-963B-498E-99B7-AA6B2B77AC37}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (05/26/2015 08:04:15 AM) (Source: Software Protection Platform Service) (EventID: 8208) (User: )
Description: Acquisition of genuine ticket failed (hr=0x80072EFD) for template Id {99d92734-d682-4d71-983e-d6ec3f16059f}
Error: (05/26/2015 08:04:15 AM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: License acquisition failure details.
hr=0x80072EFD
Error: (05/25/2015 03:56:50 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ANANTABOGA)
Description: Activation of app Microsoft.BingNews_8wekyb3d8bbwe!AppexNews failed with error: -2144927148 See the Microsoft-Windows-TWinUI/Operational log for additional information.
Error: (05/25/2015 01:56:52 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ANANTABOGA)
Description: Activation of app Microsoft.BingNews_8wekyb3d8bbwe!AppexNews failed with error: -2144927148 See the Microsoft-Windows-TWinUI/Operational log for additional information.
Error: (05/25/2015 11:56:50 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ANANTABOGA)
Description: Activation of app Microsoft.BingNews_8wekyb3d8bbwe!AppexNews failed with error: -2144927148 See the Microsoft-Windows-TWinUI/Operational log for additional information.
Error: (05/25/2015 09:56:54 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ANANTABOGA)
Description: Activation of app Microsoft.BingNews_8wekyb3d8bbwe!AppexNews failed with error: -2144927148 See the Microsoft-Windows-TWinUI/Operational log for additional information.
Error: (05/25/2015 08:11:50 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ANANTABOGA)
Description: Activation of app Microsoft.BingNews_8wekyb3d8bbwe!AppexNews failed with error: -2144927148 See the Microsoft-Windows-TWinUI/Operational log for additional information.
Error: (05/25/2015 08:04:58 AM) (Source: Software Protection Platform Service) (EventID: 8208) (User: )
Description: Acquisition of genuine ticket failed (hr=0x80072EFD) for template Id {99d92734-d682-4d71-983e-d6ec3f16059f}
Error: (05/25/2015 08:04:58 AM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: License acquisition failure details.
hr=0x80072EFD
Error: (05/25/2015 08:04:43 AM) (Source: Software Protection Platform Service) (EventID: 8208) (User: )
Description: Acquisition of genuine ticket failed (hr=0x80072EFD) for template Id {99d92734-d682-4d71-983e-d6ec3f16059f}
System errors:
=============
Error: (05/24/2015 05:28:33 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The NVIDIA Stereoscopic 3D Driver Service service terminated unexpectedly. It has done this 1 time(s).
Error: (05/24/2015 04:55:47 PM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: The HitmanPro 3.7 Crusader (Boot) service terminated with the following service-specific error:
%%0
Error: (05/24/2015 03:31:30 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: The Software Protection service hung on starting.
Error: (05/24/2015 03:25:34 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 2:08:15 PM on 5/24/2015 was unexpected.
Error: (05/24/2015 01:39:12 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Windows\System32\drivers\TrueSight.sys
Error: (05/24/2015 01:06:13 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the Windows Search service, but this action failed with the following error:
%%1056
Error: (05/24/2015 01:05:43 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Windows Search service terminated unexpectedly. It has done this 2 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service.
Error: (05/24/2015 01:05:42 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Windows Media Player Network Sharing Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service.
Error: (05/24/2015 01:05:42 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Steam Client Service service terminated unexpectedly. It has done this 1 time(s).
Error: (05/24/2015 01:05:41 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: The Windows Search service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service.
Microsoft Office:
=========================
Error: (05/26/2015 08:04:15 AM) (Source: Software Protection Platform Service) (EventID: 8208) (User: )
Description: hr=0x80072EFD{99d92734-d682-4d71-983e-d6ec3f16059f}
Error: (05/26/2015 08:04:15 AM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: hr=0x80072EFD00010001(0x00000000, 08:04:15:205 -
https://validation-v2.sls.microsoft.com/SLWGA/slwga.asmx)
00020001(0x00000000, 08:04:15:220)
00030001(0x00000000, 08:04:15:220 -
https://validation-v2.sls.microsoft.com)
00030002(0x00000000, 08:04:15:220 - 0)
00040001(0x00000000, 08:04:15:220 -
https://validation-v2.sls.microsoft.com)
00040002(0x00000000, 08:04:15:220 - 1, <NULL>, <NULL>, <NULL>)
00050002(0x80072F94, 08:04:15:220 - 0, 1)
00040006(0x00000001, 08:04:15:220 - 0,
https://validation-v2.sls.microsoft.com, <N/A>, <N/A>)
00020005(0x00000000, 08:04:15:220 - 0)
00020008(0x80072EFD, 08:04:15:252 - SOAPAction: "
http://microsoft.com/SL/GenuineAdvantageService/IssueToken"
Content-Type: text/xml; charset=utf-8
, <soap:Envelope xmlns:soap="
http://schemas.xmlsoap.org/soap/envelope/" xmlns:xsi="
http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="
http://www.w3.org/2001/XMLSchema" xmlns:soapenc="
http://schemas.xmlsoap.org/soap/encoding/"><soap:Body><RequestSecurityToken xmlns="
http://schemas.xmlsoap.org/ws/2004/04/security/trust"><TokenType>SLWGA</TokenType><RequestType>
http://schemas.xmlsoap.org/ws/2004/04/security/trust/Issue</RequestType><UseKey><Values xsi:nil="1"/></UseKey><Claims><Values xmlns:q1="
http://schemas.xmlsoap.org/ws/2004/04/security/trust" soapenc:arrayType="q1:TokenEntry[6]"><TokenEntry><Name>GenuineAdvantagePhase</Name><Value>GenuineAdvantagePhase1</Value></TokenEntry><TokenEntry><Name>GenuineAdvantageVersion</Name><Value>1.0</Value></TokenEntry><TokenEntry><Name>GenuineAdvantageTemplateId</Name><Value>{99d92734-d682-4d71-983e-d6ec3f16059f}</Value></TokenEntry><TokenEntry><Name>GenuineAdvantageClientTransactionId</Name><Value>dd10ea17-4686-47b8-a4c9-be4e5047a460</Value></TokenEntry><TokenEntry><Name>GenuineAdvantageClientToken</Name><Value></Value></TokenEntry><TokenEntry><Name>GenuineAdvantageParameters</Name><Value>OSArch=9;OSVersion=6.3.9600.16497;ServiceVersion=6.3.9600.16497;AvailablePID2s=10005-40010-00024-AA527\2,00261-50000-00000-AA613\3;TemplateId={99d92734-d682-4d71-983e-d6ec3f16059f};</Value></TokenEntry></Values></Claims></RequestSecurityToken></soap:Body></soap:Envelope>)
00010002(0x80072EFD, 08:04:15:252 - <NULL>)
00010003(0x80072EFD, 08:04:15:252)
Error: (05/25/2015 03:56:50 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ANANTABOGA)
Description: Microsoft.BingNews_8wekyb3d8bbwe!AppexNews-2144927148
Error: (05/25/2015 01:56:52 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ANANTABOGA)
Description: Microsoft.BingNews_8wekyb3d8bbwe!AppexNews-2144927148
Error: (05/25/2015 11:56:50 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ANANTABOGA)
Description: Microsoft.BingNews_8wekyb3d8bbwe!AppexNews-2144927148
Error: (05/25/2015 09:56:54 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ANANTABOGA)
Description: Microsoft.BingNews_8wekyb3d8bbwe!AppexNews-2144927148
Error: (05/25/2015 08:11:50 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ANANTABOGA)
Description: Microsoft.BingNews_8wekyb3d8bbwe!AppexNews-2144927148
Error: (05/25/2015 08:04:58 AM) (Source: Software Protection Platform Service) (EventID: 8208) (User: )
Description: hr=0x80072EFD{99d92734-d682-4d71-983e-d6ec3f16059f}
Error: (05/25/2015 08:04:58 AM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: hr=0x80072EFD00010001(0x00000000, 08:04:58:565 -
https://validation-v2.sls.microsoft.com/SLWGA/slwga.asmx)
00020001(0x00000000, 08:04:58:565)
00030001(0x00000000, 08:04:58:565 -
https://validation-v2.sls.microsoft.com)
00030002(0x00000000, 08:04:58:565 - 1)
00020005(0x00000000, 08:04:58:565 - 0)
00020008(0x80072EFD, 08:04:58:566 - SOAPAction: "
http://microsoft.com/SL/GenuineAdvantageService/IssueToken"
Content-Type: text/xml; charset=utf-8
, <soap:Envelope xmlns:soap="
http://schemas.xmlsoap.org/soap/envelope/" xmlns:xsi="
http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="
http://www.w3.org/2001/XMLSchema" xmlns:soapenc="
http://schemas.xmlsoap.org/soap/encoding/"><soap:Body><RequestSecurityToken xmlns="
http://schemas.xmlsoap.org/ws/2004/04/security/trust"><TokenType>SLWGA</TokenType><RequestType>
http://schemas.xmlsoap.org/ws/2004/04/security/trust/Issue</RequestType><UseKey><Values xsi:nil="1"/></UseKey><Claims><Values xmlns:q1="
http://schemas.xmlsoap.org/ws/2004/04/security/trust" soapenc:arrayType="q1:TokenEntry[6]"><TokenEntry><Name>GenuineAdvantagePhase</Name><Value>GenuineAdvantagePhase1</Value></TokenEntry><TokenEntry><Name>GenuineAdvantageVersion</Name><Value>1.0</Value></TokenEntry><TokenEntry><Name>GenuineAdvantageTemplateId</Name><Value>{99d92734-d682-4d71-983e-d6ec3f16059f}</Value></TokenEntry><TokenEntry><Name>GenuineAdvantageClientTransactionId</Name><Value>d8e4c3cc-0104-428b-9485-29f282803bef</Value></TokenEntry><TokenEntry><Name>GenuineAdvantageClientToken</Name><Value></Value></TokenEntry><TokenEntry><Name>GenuineAdvantageParameters</Name><Value>OSArch=9;OSVersion=6.3.9600.16497;ServiceVersion=6.3.9600.16497;AvailablePID2s=10005-40010-00024-AA527\2,00261-50000-00000-AA613\3;TemplateId={99d92734-d682-4d71-983e-d6ec3f16059f};</Value></TokenEntry></Values></Claims></RequestSecurityToken></soap:Body></soap:Envelope>)
00010002(0x80072EFD, 08:04:58:566 - <NULL>)
00010003(0x80072EFD, 08:04:58:566)
Error: (05/25/2015 08:04:43 AM) (Source: Software Protection Platform Service) (EventID: 8208) (User: )
Description: hr=0x80072EFD{99d92734-d682-4d71-983e-d6ec3f16059f}
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i3 CPU 550 @ 3.20GHz
Percentage of memory in use: 41%
Total physical RAM: 3959.11 MB
Available physical RAM: 2304.97 MB
Total Pagefile: 4727.11 MB
Available Pagefile: 2648.44 MB
Total Virtual: 131072 MB
Available Virtual: 131071.79 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:232.88 GB) (Free:84.98 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (USS Excalibur) (Fixed) (Total:300 GB) (Free:8.38 GB) NTFS
Drive e: (USS Enterprise) (Fixed) (Total:296.07 GB) (Free:74.35 GB) NTFS
Drive f: (New) (CDROM) (Total:4.37 GB) (Free:0 GB) CDFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 7DDB7DDB)
Partition 1: (Active) - (Size=232.9 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 596.2 GB) (Disk ID: 65A115AF)
Partition 1: (Not Active) - (Size=300 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=296.1 GB) - (Type=07 NTFS)
==================== End of log ============================