Nepoznata stranica

2

Nepoznata stranica

online
  • Miroslav Tanaskovic
  • Gradjevinski tehnicar
  • Pridružio: 02 Jan 2009
  • Poruke: 804
  • Gde živiš: Cacak

Napisano: 18 Jan 2026 23:59

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 18-01-2026 01
Ran by mtana (administrator) on DESKTOP-AFDFS7Q (LENOVO 10NLS03B00) (18-01-2026 23:55:04)
Running from C:\Users\mtana\Desktop\FRST64.exe
Loaded Profiles: mtana
Platform: Microsoft Windows 10 Pro Version 22H2 19045.5247 (X64) Language: English (United Kingdom)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe ->) (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe
(C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe ->) (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.) C:\Program Files (x86)\360\Total Security\safemon\QHWatchdog.exe
(C:\Program Files (x86)\Bright VPN\net_updater32.exe ->) (Bright Data Ltd -> BrightData Ltd.) C:\ProgramData\BrightData\6cca5f7f15056f66a3211bbbd92076486a2361bb\brightdata.exe
(C:\Program Files (x86)\iTop VPN\iTopVPN.exe ->) (Chengdu ShanHe Technology Co., Ltd. -> iTop Inc.) C:\Program Files (x86)\iTop VPN\iTopVPNMini.exe
(C:\Program Files (x86)\UnHackMe\hackmon.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe ->) (EnigmaSoft Limited -> EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\SpyHunter5.exe
(C:\Users\mtana\AppData\Roaming\utorrent\updates\3.6.0_47224\utorrentie.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\143.0.3650.139\msedgewebview2.exe <19>
(C:\Users\mtana\AppData\Roaming\utorrent\uTorrent.exe ->) (BitTorrent Inc -> BitTorrent Inc.) C:\Users\mtana\AppData\Roaming\utorrent\helper\helper.exe
(C:\Users\mtana\AppData\Roaming\utorrent\uTorrent.exe ->) (BitTorrent Inc -> BitTorrent Inc.) C:\Users\mtana\AppData\Roaming\utorrent\updates\3.6.0_47224\utorrentie.exe <2>
(cmd.exe ->) (Lenovo (Beijing) Limited -> Lenovo Group Limited) C:\Users\mtana\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe
(DriverStore\FileRepository\igdlh64.inf_amd64_07c8a2a678d97633\igfxCUIService.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_07c8a2a678d97633\igfxEM.exe
(explorer.exe ->) () [File not signed] C:\Program Files (x86)\RocketDock\RocketDock.exe
(explorer.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
(explorer.exe ->) (BitTorrent Inc -> BitTorrent Limited) C:\Users\mtana\AppData\Roaming\utorrent\uTorrent.exe
(explorer.exe ->) (Borislav Surbat -> MyCity) C:\Program Files (x86)\MCShield\MCShieldRTM.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <24>
(explorer.exe ->) (IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE
(explorer.exe ->) (NetSeT Global Solutions d.o.o.) [File not signed] C:\Program Files\TrustEdgeID\TokenUtil.exe
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\Pub\imsctadn.exe
(Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\System Update\UNCServer.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2601.43101.0_x64__8wekyb3d8bbwe\M365Copilot.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Reason Cybersecurity Inc. -> Reason Cybersecurity Ltd.) C:\Program Files\ReasonLabs\Common\Client\v1.6.0\rsAppUI.exe <5>
(services.exe ->) () [File not signed] C:\Program Files\MariaDB\MariaDB 10.0\bin\mysqld.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (AnyDesk Software GmbH -> AnyDesk Software GmbH) C:\Program Files (x86)\AnyDesk\AnyDesk.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(services.exe ->) (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.) C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe
(services.exe ->) (Bright Data Ltd -> BrightData Ltd.) C:\Program Files (x86)\Bright VPN\net_updater32.exe
(services.exe ->) (EnigmaSoft Limited -> EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe
(services.exe ->) (EnigmaSoft Limited -> EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_07c8a2a678d97633\igfxCUIService.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_07c8a2a678d97633\IntelCpHDCPSvc.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_07c8a2a678d97633\IntelCpHeciSvc.exe
(services.exe ->) (IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe
(services.exe ->) (Malwarebytes Corporation -> Malwarebytes Corporation) E:\D\Portabl programi\Malwarebytes_Anti-Malware_v_2.0.3.1025_Portable\App\Malwarebytes\mbamservice.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\NisSrv.exe
(services.exe ->) (ORANGE VIEW LIMITED -> iTop Inc.) C:\Program Files (x86)\iTop Data Recovery\IDRService.exe
(services.exe ->) (Reason Cybersecurity Inc. -> Reason Software Company Inc.) C:\Program Files\ReasonLabs\VPN\rsVPNClientSvc.exe
(services.exe ->) (Reason Cybersecurity Inc. -> Reason Software Company Inc.) C:\Program Files\ReasonLabs\VPN\rsVPNSvc.exe
(svchost.exe ->) (Chengdu ShanHe Technology Co., Ltd. -> iTop Inc.) C:\Program Files (x86)\iTop VPN\iTopVPN.exe
(svchost.exe ->) (Greatis Software LLC -> Greatis Software) C:\Program Files (x86)\UnHackMe\hackmon.exe
(svchost.exe ->) (IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_11.2511.5.0_x64__8wekyb3d8bbwe\Microsoft.Media.Player.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(svchost.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe <3>

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [19677472 2020-03-30] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [QHSafeTray] => C:\Program Files (x86)\360\Total Security\safemon\360Tray.exe [413000 2023-03-15] (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
HKLM-x32\...\Run: [LWS] => C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [204136 2012-09-13] (Logitech, Inc. -> Logitech Inc.)
HKLM-x32\...\Run: [Samsung PanelMgr] => C:\Windows\Samsung\PanelMgr\ssmmgr.exe [618496 2010-06-04] () [File not signed]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [752264 2025-09-26] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\MRT: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender Security Center: Restriction <==== ATTENTION
HKU\S-1-5-21-1825045012-3464344044-1076668188-1002\...\Run: [RocketDock] => C:\Program Files (x86)\RocketDock\RocketDock.exe [495616 2007-09-02] () [File not signed]
HKU\S-1-5-21-1825045012-3464344044-1076668188-1002\...\Run: [Bright VPN] => C:\Program Files (x86)\Bright VPN\Bright VPN.exe [136519696 2024-12-14] (Bright Data Ltd -> Bright Data Ltd.)
HKU\S-1-5-21-1825045012-3464344044-1076668188-1002\...\Run: [MCShield Monitor] => C:\Program Files (x86)\MCShield\MCShieldRTM.exe [650816 2014-04-11] (Borislav Surbat -> MyCity)
HKU\S-1-5-21-1825045012-3464344044-1076668188-1002\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [41655256 2025-12-06] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-1825045012-3464344044-1076668188-1002\...\Run: [MicrosoftEdgeAutoLaunch_F381B72FEA0805685FFC74BA4E458692] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --win-session-start [4314192 2026-01-16] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1825045012-3464344044-1076668188-1002\...\Run: [GoogleChromeAutoLaunch_C456B15C28E07C148858C522E66DECF1] => "C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5 [3308696 2026-01-06] (Google LLC -> Google LLC)
HKU\S-1-5-21-1825045012-3464344044-1076668188-1002\...\Run: [Advanced SystemCare] => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe [6001368 2025-09-28] (IObit CO., LTD -> IObit)
HKU\S-1-5-21-1825045012-3464344044-1076668188-1002\...\Run: [ut] => C:\Users\mtana\AppData\Roaming\utorrent\uTorrent.exe [3680688 2025-10-09] (BitTorrent Inc -> BitTorrent Limited)
HKU\S-1-5-21-1825045012-3464344044-1076668188-1002\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKLM\...\Windows x64\Print Processors\ssb3mPC: C:\Windows\System32\spool\prtprocs\x64\ssb3mpc.dll [33792 2009-11-19] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Server 2003 DDK provider)
HKLM\...\Print\Monitors\ssb3m Langmon: C:\Windows\system32\ssb3ml6.dll [27648 2009-11-19] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [2025-11-06] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\143.0.7499.194\Installer\chrmstp.exe [2026-01-16] (Google LLC -> Google LLC)
Startup: C:\Users\mtana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Logitech . Product Registration.lnk [2024-12-15]
ShortcutTarget: Logitech . Product Registration.lnk -> C:\Program Files (x86)\Logitech\Ereg\eReg.exe (Logitech -> Leader Technologies/Logitech)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Menadžer tokena.lnk [2025-03-24]
ShortcutTarget: Menadžer tokena.lnk -> C:\Program Files\TrustEdgeID\TokenUtil.exe (NetSeT Global Solutions d.o.o.) [File not signed]
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0D322BDF-4DAE-4D33-9BBF-3AFA7587E67B} - System32\Tasks\02ELTGCXFUYDP1HUQ981{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {762E6E80-EF18-4709-8CD7-54BB6EB5820D} - System32\Tasks\0FL7EXUHXI1SID2IKJPP{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {2C0005DB-7B83-4EEE-9031-0643015A5FC2} - System32\Tasks\0PR25F3DH7LAPJTZ0R9C{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {066E2B1C-6F8B-408B-A7B7-1221A754744B} - System32\Tasks\1HY39B8K2Y0JU6UBU3YN{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {712C51B5-32E6-4CA9-81ED-FA2BC7D7B78D} - System32\Tasks\2AELUPUBGMHSHOM6QLPZ{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {812AC58C-2B97-4F48-9663-2308CC76DC07} - System32\Tasks\2U8PRWI0CFD23431077V{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {61D617AE-3A74-4C0D-9B07-4C7A76D2FDA1} - System32\Tasks\311ZCKIFQCBQZUJE4L5B{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {AC30806B-E14B-4CA1-B175-5638974EC420} - System32\Tasks\360ZipUpdater => C:\Program Files (x86)\360\360zip\360zipUpdate.exe [359488 2021-01-05] (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
Task: {446EBD82-D91D-4589-AA2C-01F53E2AA9A0} - System32\Tasks\38L9J9KO12NJ3GO164OI{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {0EA07052-6ED4-4CC8-A1DE-68E2EC85AD04} - System32\Tasks\3SILMYIK9IDEZPJ5X6XR{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {31BD8815-05DC-407C-8B9F-F799C3171ACE} - System32\Tasks\42F1TSUTZ41G84Z7XWB6{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {690ADCDE-3334-4F82-A01D-D56D0DF7375B} - System32\Tasks\5HR7K2GGHBS10E1VIL8V{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {6CA485E3-9FCA-4D9C-AAC1-03AEDCDD2936} - System32\Tasks\6005EZGDL79T7JIIKDIT{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {70CE2DDA-ACCE-4500-84EC-70BA4A9FC3DC} - System32\Tasks\60QHJL84KPDF01Q6XTOC{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {497635EA-1BD4-4B2C-AB87-A50FDAEA7211} - System32\Tasks\612YZ2ZL9LVX6S3TX1K8{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {485E741F-A44A-4C96-AB5A-E6D9976E599D} - System32\Tasks\6RGO3BO9QHCVJS7ONDIT{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {00C6D518-AC56-4349-A425-6D1EE541BAC0} - System32\Tasks\71RN4X26JU6TUHQXZZD4{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {3B1175BA-6C99-4AD3-A05B-33269B5E6B41} - System32\Tasks\77DMLASU6WB458CS6HWL{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {5AAC1DD0-8054-472B-A33A-D55554F33321} - System32\Tasks\7XV9LWM9STASSAHE8YKN{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {88933270-C39A-48F9-AEE2-DC40B45EC7B6} - System32\Tasks\7YT4YZA5BAO310GXDUZ1{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {DC98CFEB-2C1E-4E34-AE8C-021C53C35DE1} - System32\Tasks\84HTW5040IBJHIRCWM4W{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {C96F4C6E-B275-44B3-A179-A8D572B4258E} - System32\Tasks\892OME1PF846NNDDKONN{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {E4253E01-559C-4EC7-B5FC-E8AEC7746417} - System32\Tasks\9TOMO6POFYIROORYT5B5{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {3C7CB105-57D2-4585-8AFA-52920DB9E621} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (No File)
Task: {12B78584-5572-4728-9244-84EA70865A1A} - System32\Tasks\AJ3SXMCFAKOEIVW9H0M2{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {9652FA46-ACA3-49E7-8BA9-0C24E67883C3} - System32\Tasks\ASC_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe [5573848 2025-10-27] (IObit CO., LTD -> IObit) -> C:\Program Files (x86)\IObit\Advanced SystemCare\\/Task
Task: {AA8E123C-06B7-49AC-80D6-30DB26D057AE} - System32\Tasks\ASC_SkipUac_mtana => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe [11471064 2025-12-04] (IObit CO., LTD -> IObit) -> C:\Program Files (x86)\IObit\Advanced SystemCare\\/SkipUac
Task: {4E2B2B69-958C-451D-B3B2-8964DDE26AD3} - System32\Tasks\B24YM4OQPF68VGODZS09{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {31BE12C9-557E-4846-BD93-48FE58B3C338} - System32\Tasks\BZ0KZHFQKHYXGV24RH04{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {6ACBF12F-6328-4F0D-9428-0A586AACE348} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe [5974480 2024-12-14] (Microsoft Windows -> Microsoft Corporation)
Task: {C40DF556-B82C-4CBC-BDC8-D261D0C5B9BF} - System32\Tasks\CRTK4RVGYFY30PG3S99O{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {41FCF690-AEAB-434C-8A42-E7E097C0105D} - System32\Tasks\D0OSP2E6BE2QDLSHUBXR{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {2357CEE1-008D-4FD6-A5EF-34253A3F4D64} - System32\Tasks\D1ORNL39ZGN1VX8CTIZY{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {E3F63515-1384-4FC6-AA91-3FFE83E4491F} - System32\Tasks\ECR25YVUIZNKH4UFKSNL{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {FF11989D-6835-4C37-B78E-141EF6D20463} - System32\Tasks\EGNYUIPEP51ON7EPWXAR{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {81763152-98EF-4824-8DE6-A6179B9BECD1} - System32\Tasks\F32Q764RRLC6XCL2IBZJ{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {73F5B8E4-4C5D-43AF-AC34-1FA83B170D2C} - System32\Tasks\FJ046JH03RB571Q2BFHM{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {58E57EF0-B4AB-46E9-99C8-2A0745F96A28} - System32\Tasks\GH2GUXR0DKLSE6LP1N3S{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {B36B1688-1FD7-479F-8D8C-8683B2369060} - System32\Tasks\GK9MD6NHZ0M4JWPD89AC{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {3DBE0F28-9285-4123-9FEE-6B3BB07B2830} - System32\Tasks\I3WLUFB9U6H7FWK5H0US{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {39131351-BB15-4B5F-BE4F-30AE9871481A} - System32\Tasks\ILGFGEAGJAW4635UNKKR{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {986D74BF-63F2-4AF7-BED8-948300B25E0A} - System32\Tasks\iTop Data Recovery SkipUAC (mtana) => C:\Program Files (x86)\iTop Data Recovery\iTopDataRecovery.exe [5272632 2025-11-17] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files (x86)\iTop Data Recovery\\/skipUAC
Task: {4D76660F-4D89-4961-A22C-D27DC883EBF6} - System32\Tasks\iTop Data Recovery Update => C:\Program Files (x86)\iTop Data Recovery\AutoUpdate.exe [3121352 2024-12-05] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files (x86)\iTop Data Recovery\\/auto
Task: {29494316-687B-43F0-977B-37C8A03B15D8} - System32\Tasks\iTop Screen Recorder SkipUAC (mtana) => C:\Program Files\iTop Screen Recorder\iScrRec.exe [15859256 2025-12-16] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files\iTop Screen Recorder\\/skipuac
Task: {7B95D794-65FF-4919-9AC1-D84211F23D53} - System32\Tasks\iTop Screen Recorder Update => C:\Program Files\iTop Screen Recorder\AutoUpdate.exe [3571256 2025-12-05] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files\iTop Screen Recorder\\/auto
Task: {A4CACE7E-D3D5-462A-AE24-B5FC0F315D3C} - System32\Tasks\iTopEN NY2026 Task (One-Time) => C:\Program Files (x86)\iTop VPN\Pub\itopenny26.exe [2939688 2026-01-15] (Chengdu ShanHe Technology Co., Ltd. -> iTop Inc.) -> C:\Program Files (x86)\iTop VPN\Pub\\/rpop
Task: {C2BC3E16-DF90-4BD1-B2B1-1A1AFEA049A2} - System32\Tasks\iTopVPN_Scheduler_mtana => C:\Program Files (x86)\iTop VPN\iTopVPN.exe [8664360 2025-11-13] (Chengdu ShanHe Technology Co., Ltd. -> iTop Inc.) -> C:\Program Files (x86)\iTop VPN\\/autostart
Task: {88F7A115-7969-42C8-B97C-211B6BA47D03} - System32\Tasks\iTopVPN_SkipUAC_mtana => C:\Program Files (x86)\iTop VPN\iTopVPN.exe [8664360 2025-11-13] (Chengdu ShanHe Technology Co., Ltd. -> iTop Inc.) -> C:\Program Files (x86)\iTop VPN\\/SkipUac
Task: {846A4CA1-83E7-4DB0-B2A5-2F0401698318} - System32\Tasks\iTopVPN_Update_mtana => C:\Program Files (x86)\iTop VPN\atud.exe [3420464 2025-11-12] (Chengdu ShanHe Technology Co., Ltd. -> iTop Inc.) -> C:\Program Files (x86)\iTop VPN\\/auto
Task: {3BFCACC8-0F05-421E-9A40-A65E7BCB4DE3} - System32\Tasks\IVH0MNYJAFBTK0CZNYPS{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {3021BC82-2FE1-4A49-80A4-982F1B04BDC3} - System32\Tasks\K4BKIC9UWZDZTOWVF18W{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {354655F5-E129-4588-A5CC-DF601FEE670A} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2401792 2025-12-04] () [File not signed]
Task: {13AE9D5A-448D-4B10-941C-2279AC62DF5C} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-1825045012-3464344044-1076668188-1002 => C:\Users\mtana\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe [91416 2025-04-29] (Lenovo (Beijing) Limited -> Lenovo Group Limited)
Task: {AE5B9998-AE5E-49E1-ACD4-9CA1223A3643} - System32\Tasks\LSZTZXT282HT9460CNF3{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {15C4E03A-B383-47A3-B6C0-47B74B50C7D0} - System32\Tasks\M3MGRS3HI1BWLLRX763C{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {CBC5EBF6-8D76-4B49-8CD7-8F73BB30DBD6} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26043888 2019-03-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {73382BBA-07A8-4803-8237-A3A23CE9DAEF} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26043888 2019-03-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {54A1EA50-71D4-4148-8D74-FC7750AE8148} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\sdxhelper.exe [136128 2024-12-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {6C039850-3CE1-4C8F-BB18-4FBD7E1CA528} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\sdxhelper.exe [136128 2024-12-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {C4BA9DA0-9021-47F0-A0D2-00BF2A56682F} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2152056 2024-12-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {134B592D-5319-45E4-839E-A8D5610E08EE} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2152056 2024-12-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {DAAF95EB-B172-4CE1-9DB6-7E015F7FC676} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6058632 2024-12-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {4FD6D5D9-0EAD-477A-86B9-7E5AA78BCF14} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6058632 2024-12-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {34C661E3-53B1-4056-95BB-2DF074548D78} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\AppInstallerUpdater => C:\Windows\system32\rundll32.exe [89600 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> %windir%\system32\AppxDeploymentClient.dll,AppInstallerUpdateAllTask
Task: {6D3FB8C3-DA19-4B7B-85AA-B833D9CD99E1} - System32\Tasks\Microsoft\Windows\Autochk\Nsivfxpzm => C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe [65440 2019-12-07] (Microsoft Corporation -> Microsoft Corporation) -> C:\Program Files (x86)\ItemDesktop\FramePron\/unregister "C:\Program Files (x86)\ItemDesktop\FramePron\mmdsDwtafPjxo20.dll" <==== ATTENTION
Task: {99FB2708-F09B-45EF-9B02-BCEFD84F5F13} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2026-01-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C5E90844-81EB-4421-AE03-A0664C964A57} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2026-01-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E30485D4-B6ED-4D6D-BE7B-92225C5D23C8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2026-01-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E314119A-5053-4E67-876D-0A457C413BFB} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2026-01-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {262912C9-998C-4A50-AF87-5B8F26273235} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-1825045012-3464344044-1076668188-1002 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [680064 2026-01-14] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {247EFB37-1441-44A8-90F5-C6010F6F0A29} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34944 2026-01-14] (Mozilla Corporation -> Mozilla Foundation)
Task: {11DEF1EC-CA52-48CE-9996-82F5CCA3A7D2} - System32\Tasks\N95AP6BQ0G9BC1SKBLGU{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {ECCA5488-649F-40CF-A456-3E90E1CE7083} - System32\Tasks\NCH Software\VideoPadCacheDeleteAll => E:\D\Portabl programi\Obrada videa NCH VideoPad Pro 17.51\App\NCH Software\VideoPad\VideoPad.exe [14953968 2025-10-27] (NCH Software, Inc. -> NCH Software)
Task: {8F3987C4-E6E0-4BE3-A8D9-A2B1DBCD2678} - System32\Tasks\NCH Software\VideoPadNotifyTutorial => C:\Program Files (x86)\NCH Software\VideoPad\VideoPad.exe -notifytutorial (No File)
Task: {E41AD301-3AFE-4D31-9B3B-3B22C8F28400} - System32\Tasks\NFD2PWFCIBTXB063RPTE{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {B6B40DE8-B8CB-4223-AF5F-4F4784FBE4AE} - System32\Tasks\NK1IMAB06QR6U7ZQGF5W{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {B4D69A01-900A-47CF-8FA0-4D85D88DE1E8} - System32\Tasks\NO1IB9Q2HTW8ZU9H5CE3{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {1EFF65F0-4B7C-4C59-BADD-406FD923F9C1} - System32\Tasks\NWAYTYT6HRCYZP5EM2L6{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {F4D2964A-9B56-4019-806E-5590921F4C2E} - System32\Tasks\OQWN86G1WKNFL2DMV4SG{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {C2A8F2B7-FF28-420F-92DC-259F62E011BE} - System32\Tasks\PMDWDMC3DF46NE61PKX4{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {CC995FE5-79EA-4D12-B7BF-5A5447C3D013} - System32\Tasks\QG31ONHQDT4QXYIPYX73{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {353C5692-0045-4EE6-94A4-538E6C1961E0} - System32\Tasks\QSYCM2NHSMV34XP5AFM9{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {8C01CF52-6DEA-4588-8D7F-0EE70AF5E94D} - System32\Tasks\QWJM0AYIJG45ZDT7M6UW{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {54AF8AC4-B98A-42D3-A35A-74B935A48C6F} - System32\Tasks\RYOCTRI4KVR63XRWTN79{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {DFE7E760-CF31-4045-98EA-19E4B8CE7908} - System32\Tasks\SVQ74C8OH03YN8PJC1JT{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {B23BC0B1-EFE6-406F-8C8E-DF3B1FD53345} - System32\Tasks\TDAFLMDR4DJC2DX9LDB4{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {E6899D8A-5CAB-4332-9CAA-5BB5DDC77230} - System32\Tasks\TK82R4T0Y7NLMPTO0M2O{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {EBDA42B7-C9B1-43F4-95E3-1E8D97B27E10} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1904536 2024-07-15] (Lenovo -> )
Task: {8D2DE044-66D1-4C99-9E00-FC9A06A24746} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1904536 2024-07-15] (Lenovo -> )
Task: {8D17CF45-4EAF-4CC2-9166-14C6298133F7} - System32\Tasks\TYSLYTM1MKHZ7DKFNCTM{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {1A8F8338-BF1C-446F-BE62-B542DBDDB666} - System32\Tasks\UL3CKO217NNM719545OG{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {7B59FEC0-A074-4952-86B7-2CFFD301B5BC} - System32\Tasks\UnHackMe Task Scheduler => C:\Program Files (x86)\UnHackMe\hackmon.exe [5435680 2025-12-23] (Greatis Software LLC -> Greatis Software)
Task: {B209F39C-521D-488C-A900-DCE686F07B58} - System32\Tasks\VCX2VQRZK5PBY8G4MNI2{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {9FD191C3-F954-4EF6-BFD7-AAB2961C6A91} - System32\Tasks\WVR1W2S7Y2EZXC1OMRXN{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {4590CA66-6E5E-45C2-B236-7948FC9D6A07} - System32\Tasks\XHKZJ7UQLHVRGMI9086H{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {025222D7-441D-4C92-B2D2-FAD99D1E39DD} - System32\Tasks\XJA1P5GUHXDLPMRDEXBX{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {E44ACE70-7555-463A-A03A-AAF2F860F1EE} - System32\Tasks\XQY55T4TLD38NHMWAHL1{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {7833FA18-2682-47C3-B25E-8E2FF8CFE1B1} - System32\Tasks\YVV9AEFI50HRUCC49RLE{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION
Task: {C912A5FA-5884-45FE-A134-302A14FCADF5} - System32\Tasks\ZBFHUNYE8U92MAKIUTJP{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> [Link mogu videti samo ulogovani korisnici] <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: Hosts file not detected in the default directory
Tcpip\Parameters: [DhcpNameServer] 89.216.1.30 89.216.1.40 89.216.1.50
Tcpip\..\Interfaces\{9fe7be02-fecc-427b-9946-0b4e046c0fb1}: [DhcpNameServer] 89.216.1.30 89.216.1.40 89.216.1.50
Tcpip\..\Interfaces\{d0627f37-a119-46c4-9a92-80c42a75a05a}: [DhcpNameServer] 192.168.42.129

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default [2026-01-18]
Edge DownloadDir: Default -> C:\Users\mtana\Desktop
Edge Session Restore: Default -> is enabled.
Edge Extension: (X-notifier (for Gmail™,Hotmail,Yahoo,AOL...)) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cdfjbkbddpfnoplfhceolpopfoepleco [2024-12-16]
Edge Extension: (Sexy Tab) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dafaeffkjlknkjdcdalddcjggdngomih [2024-12-16]
Edge Extension: (Enable Right Click) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dcjhdaiolbgldmmfggnlbmjcifkmhohi [2024-12-16]
Edge Extension: (Windscribe VPN - Privacy & Ad Block Suite) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dkkdbpgldnmkhcliffjpajcfdjkcaddf [2026-01-16]
Edge Extension: (Capios - OCR, Screenshot & Video Capture Tool) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dmfjonjeonmaoehpjaonkjgfdjanapbe [2025-03-23]
Edge Extension: (Sumopaint - Online Image Editor) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dpgjihldbpodlmnjolekemlfbcajnmod [2024-12-16]
Edge Extension: (Always active Window - Always Visible) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ehllkhjndgnlokhomdlhgbineffifcbj [2025-11-30]
Edge Extension: (Tab Suspender) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fiabciakcmgepblmdkmemdbbkilneeeh [2025-12-12]
Edge Extension: (Google Docs Offline) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-01-16]
Edge Extension: (APK Downloader) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\glngapejbnmnicniccdcemghaoaopdji [2024-12-16]
Edge Extension: (Adblock Plus - free ad blocker) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2026-01-16]
Edge Extension: (OneTab) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hoimpamkkoehapgenciaoajfkfkpgfop [2024-12-16]
Edge Extension: (X-notifier Neo) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\igobadfmckkpaoodncckppmkanbdnpbc [2024-12-16]
Edge Extension: (Malwarebytes Browser Guard) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2025-12-08]
Edge Extension: (WOT: Website Security & Safety Checker) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\iiclaphjclecagpkkaacljnpcppnoibi [2025-03-04]
Edge Extension: (Tampermonkey) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\iikmkjmpaadaobahmlepeloendndfphd [2025-10-11]
Edge Extension: (Edge relevant text changes) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2026-01-16]
Edge Extension: (Video DownloadHelper) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmkaglaafmhbcpleggkmaliipiilhldn [2026-01-16]
Edge Extension: (Sexy New Tab) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kmnjpgchjnhlenhhcemajkihfeoampom [2024-12-16]
Edge Extension: (ScamAdviser) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lcmofkcgjjagmhodenahpocfkpopjdci [2025-05-02]
Edge Extension: (CJDropshipping) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mbndljkgaoailfnpeodnlejigmkdpokb [2024-12-16]
Edge Extension: (Shazam: Find song names from your browser) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mmioliijnhnoblpgimnlajmefafdfilb [2025-02-12]
Edge Extension: (Online Alarm Clock) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\moddbcckaikhdnigidfcmaeelcobchpm [2025-08-01]
Edge Extension: (Guardio Protection for Edge) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nbnhplicmjembdbegdmlhnpddambfodp [2026-01-09]
Edge Extension: (AdBlock — block ads across the web) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2026-01-16]
Edge Extension: (uBlock Origin) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\odfafepnkmbhccpbejgmiehpchacaeak [2025-11-27]
Edge Extension: (ImageAssistant Batch Image Downloader) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\odphnbhiddhdpoccbialllejaajemdio [2024-12-16]
Edge Extension: (Free VPN for Edge - VPN Proxy VeePN) - C:\Users\mtana\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\panammoooggmlehahpcjckcncfeffcoi [2025-12-17]
Edge Extension: (Adblock) - C:\ProgramData\Direct\swapper [2024-12-15] [UpdateUrl:0] <==== ATTENTION
Edge HKU\S-1-5-21-1825045012-3464344044-1076668188-1002\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [jcpgbnbdnakoblgfkbgggankeidkfcdl]
Edge HKLM-x32\...\Edge\Extension: [jcpgbnbdnakoblgfkbgggankeidkfcdl]

FireFox:
========
FF DefaultProfile: 9sxjx61q.default
FF ProfilePath: C:\Users\mtana\AppData\Roaming\Mozilla\Firefox\Profiles\9sxjx61q.default [2026-01-04]
FF Extension: (IObit Surfing Protection & Ads Removal) - C:\Users\mtana\AppData\Roaming\Mozilla\Firefox\Profiles\9sxjx61q.default\Extensions\ascsurfingprotectionnew@iobit.com.xpi [2025-07-23]
FF ProfilePath: C:\Users\mtana\AppData\Roaming\Mozilla\Firefox\Profiles\jgul3xfg.default-release [2026-01-18]
FF Extension: (IObit Surfing Protection & Ads Removal) - C:\Users\mtana\AppData\Roaming\Mozilla\Firefox\Profiles\jgul3xfg.default-release\Extensions\ascsurfingprotectionnew@iobit.com.xpi [2025-07-23]
FF Extension: (OneTab) - C:\Users\mtana\AppData\Roaming\Mozilla\Firefox\Profiles\jgul3xfg.default-release\Extensions\extension@one-tab.com.xpi [2024-12-15]
FF Extension: (Tampermonkey) - C:\Users\mtana\AppData\Roaming\Mozilla\Firefox\Profiles\jgul3xfg.default-release\Extensions\firefox@tampermonkey.net.xpi [2025-12-13]
FF Extension: (AdBlock — block ads across the web) - C:\Users\mtana\AppData\Roaming\Mozilla\Firefox\Profiles\jgul3xfg.default-release\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2026-01-08]
FF Extension: (uBlock Origin) - C:\Users\mtana\AppData\Roaming\Mozilla\Firefox\Profiles\jgul3xfg.default-release\Extensions\uBlock0@raymondhill.net.xpi [2025-12-13]
FF Extension: (Malwarebytes Browser Guard) - C:\Users\mtana\AppData\Roaming\Mozilla\Firefox\Profiles\jgul3xfg.default-release\Extensions\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi [2024-12-15]
FF Extension: (ImageAssistant Batch Image Downloader) - C:\Users\mtana\AppData\Roaming\Mozilla\Firefox\Profiles\jgul3xfg.default-release\Extensions\{57e5e66f-a92e-4f72-ae46-68e88d0a0f5c}.xpi [2024-12-15]
FF Extension: (WOT Website Security & Privacy Protection) - C:\Users\mtana\AppData\Roaming\Mozilla\Firefox\Profiles\jgul3xfg.default-release\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}.xpi [2024-12-15]
FF Extension: (Video DownloadHelper) - C:\Users\mtana\AppData\Roaming\Mozilla\Firefox\Profiles\jgul3xfg.default-release\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2025-07-18]
FF Extension: (Adblock Plus - free ad blocker) - C:\Users\mtana\AppData\Roaming\Mozilla\Firefox\Profiles\jgul3xfg.default-release\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2026-01-08]
FF Plugin: @java.com/DTPlugin,version=11.471.0 -> C:\Program Files\Java\jre1.8.0_471\bin\dtplugin\npDeployJava1.dll [2025-09-26] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.471.0 -> C:\Program Files\Java\jre1.8.0_471\bin\plugin2\npjp2.dll [2025-09-26] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-12-16] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.23 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2025-12-31] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2025-12-06] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2024-12-16] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-12-16] (Microsoft Corporation -> Microsoft Corporation)

Chrome:
=======
CHR Profile: C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default [2026-01-18]
CHR DownloadDir: C:\Users\mtana\Desktop
CHR HomePage: Default -> [Link mogu videti samo ulogovani korisnici]
CHR StartupUrls: Default -> "hxxps://www.google.com/","hxxps://www.google.com/","hxxps://www.google.com/","hxxps://www.google.com/","hxxps://mail.ru/cnt/10445?gp=811570"
CHR Session Restore: Default -> is enabled.
CHR Extension: (WOT: Website Security & Safety Checker) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp [2025-11-13]
CHR Extension: (X-notifier (for Gmail™,Hotmail,Yahoo,AOL...)) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdfjbkbddpfnoplfhceolpopfoepleco [2025-04-25]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2026-01-09]
CHR Extension: (OneTab) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall [2025-04-25]
CHR Extension: (uBlock Origin) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2025-07-12]
CHR Extension: (ImageAssistant Batch Image Downloader) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbjbempljhcmhlfpfacalomonjpalpko [2025-04-25]
CHR Extension: (Enable Right Click) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcjhdaiolbgldmmfggnlbmjcifkmhohi [2025-04-25]
CHR Extension: (Tampermonkey) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2025-11-26]
CHR Extension: (Capios - OCR, Screenshot & Video Capture Tool) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\dmfjonjeonmaoehpjaonkjgfdjanapbe [2025-04-25]
CHR Extension: (Sumopaint - Online Image Editor) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpgjihldbpodlmnjolekemlfbcajnmod [2025-04-25]
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2026-01-14]
CHR Extension: (Always active Window - Always Visible) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehllkhjndgnlokhomdlhgbineffifcbj [2025-12-09]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2025-12-13]
CHR Extension: (Tab Suspender) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\fiabciakcmgepblmdkmemdbbkilneeeh [2025-12-12]
CHR Extension: (Google Docs Offline) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-01-18]
CHR Extension: (AdBlock — block ads across the web) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2026-01-08]
CHR Extension: (Guardio Protection for Chrome) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjfpmkejnolcfklaaddjnckanhhgegla [2026-01-01]
CHR Extension: (360 Internet Protection) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\glcimepnljoholdmjchkloafkggfoijh [2025-12-13]
CHR Extension: (APK Downloader) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\glngapejbnmnicniccdcemghaoaopdji [2025-04-25]
CHR Extension: (Windscribe - Free Proxy and Ad Blocker) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnmpcagpplmpfojmgmnngilcnanddlhb [2026-01-15]
CHR Extension: (Malwarebytes Browser Guard) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2025-12-09]
CHR Extension: (SpyHunter® Web Security) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\kheeipganhdcpkecibbpgggianpodhkc [2026-01-18]
CHR Extension: (Sexy New Tab) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmnjpgchjnhlenhhcemajkihfeoampom [2025-04-25]
CHR Extension: (ScamAdviser) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\lcmofkcgjjagmhodenahpocfkpopjdci [2025-05-03]
CHR Extension: (Video DownloadHelper) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2025-12-25]
CHR Extension: (Free VPN for Chrome - VPN Proxy VeePN) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\majdfhpaihoncoakbjgbdhglocklcgno [2025-12-19]
CHR Extension: (Video Downloader - MPMux) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbflpfaamifmmmkdjkcmpofpccfmlmap [2026-01-14]
CHR Extension: (CJDropshipping) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbndljkgaoailfnpeodnlejigmkdpokb [2025-04-25]
CHR Extension: (Shazam: Find song names from your browser) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmioliijnhnoblpgimnlajmefafdfilb [2025-04-25]
CHR Extension: (Online Alarm Clock) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\moddbcckaikhdnigidfcmaeelcobchpm [2025-08-01]
CHR Extension: (Chrome Web Store Payments) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2025-10-08]
CHR Extension: (X-notifier Neo) - C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Extensions\pheccebhjjlenlidbnddkjgpgfhokmio [2025-04-10]
CHR Extension: (Adblock) - C:\ProgramData\Direct\swapper [2024-12-15] [UpdateUrl:0] <==== ATTENTION
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKU\S-1-5-21-1825045012-3464344044-1076668188-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM-x32\...\Chrome\Extension: [glcimepnljoholdmjchkloafkggfoijh]

Opera:
=======
OPR Profile: C:\Users\mtana\AppData\Roaming\Opera Software\Opera Stable [2026-01-16]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174584 2025-08-24] (Adobe Inc. -> Adobe Inc.)
R2 AdvancedSystemCareService19; C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe [1858264 2025-11-28] (IObit CO., LTD -> IObit)
R2 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [7972792 2026-01-04] (AnyDesk Software GmbH -> AnyDesk Software GmbH)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [103888 2025-10-07] (Apple Inc. -> Apple Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11129928 2019-03-06] (Microsoft Corporation -> Microsoft Corporation)
R2 EsgShKernel; C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe [18318312 2026-01-18] (EnigmaSoft Limited -> EnigmaSoft Limited)
R2 iTopDataRecoveryService5; C:\Program Files (x86)\iTop Data Recovery\IDRService.exe [1872584 2024-11-21] (ORANGE VIEW LIMITED -> iTop Inc.)
R2 luminati_net_updater_win_brightvpn_com; C:\Program Files (x86)\Bright VPN\net_updater32.exe [9492584 2026-01-18] (Bright Data Ltd -> BrightData Ltd.)
R2 MariaDB; C:\Program Files\MariaDB\MariaDB 10.0\bin\mysqld.exe [28672 2024-05-10] () [File not signed]
R2 MBAMService; E:\D\Portabl programi\Malwarebytes_Anti-Malware_v_2.0.3.1025_Portable\App\Malwarebytes\mbamservice.exe [968504 2014-10-13] (Malwarebytes Corporation -> Malwarebytes Corporation)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.25110.6-0\MpDefenderCoreService.exe [2063376 2026-01-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 QHActiveDefense; C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe [1099744 2024-10-21] (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
S3 QHProtected; C:\Program Files (x86)\360\Total Security\safemon\WscReg.exe [3082096 2023-03-15] (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
R2 rsVPNClientSvc; C:\Program Files\ReasonLabs\VPN\rsVPNClientSvc.exe [660112 2024-12-15] (Reason Cybersecurity Inc. -> Reason Software Company Inc.)
R2 rsVPNSvc; C:\Program Files\ReasonLabs\VPN\rsVPNSvc.exe [239248 2024-12-15] (Reason Cybersecurity Inc. -> Reason Software Company Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559368 2024-12-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 ShMonitor; C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe [2542752 2026-01-18] (EnigmaSoft Limited -> EnigmaSoft Limited)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.25110.6-0\NisSrv.exe [4426832 2026-01-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.25110.6-0\MsMpEng.exe [290704 2026-01-18] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 ElevationService; [X]
S2 MBAMScheduler; "\mbamscheduler.exe" [X]

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S1 360AntiHacker; C:\Windows\System32\Drivers\360AntiHacker64.sys [199896 2023-03-15] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
R3 360AvFlt; C:\Windows\System32\DRIVERS\360AvFlt.sys [100592 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> 360.cn)
R3 360AvFlt; C:\Windows\SysWOW64\DRIVERS\360AvFlt.sys [100592 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> 360.cn)
R1 360Box64; C:\Windows\System32\DRIVERS\360Box64.sys [351296 2024-11-06] (Microsoft Windows Hardware Compatibility Publisher -> 360.cn)
S3 360Camera; C:\Windows\System32\Drivers\360Camera64.sys [58200 2021-11-19] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
S0 360elam64; C:\Windows\System32\DRIVERS\360elam64.sys [17000 2023-03-15] (Microsoft Windows Early Launch Anti-malware Publisher -> 360.cn)
R1 360FsFlt; C:\Windows\System32\DRIVERS\360FsFlt.sys [577264 2025-07-21] (Microsoft Windows Hardware Compatibility Publisher -> 360.cn)
S4 360Hvm; C:\Windows\System32\Drivers\360Hvm64.sys [442056 2025-06-13] (Microsoft Windows Hardware Compatibility Publisher -> 360安全中心)
R1 360netmon; C:\Windows\System32\DRIVERS\360netmon.sys [96424 2021-11-19] (Qihoo 360 Software (Beijing) Company Limited -> 360.cn)
R3 AscFileFilter; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscFileFilter.sys [47904 2025-07-23] (IObit CO., LTD -> IObit)
R3 AscRegistryFilter; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscRegistryFilter.sys [31944 2025-08-08] (Microsoft Windows Hardware Compatibility Publisher -> IObit)
R1 BAPIDRV; C:\Windows\System32\DRIVERS\BAPIDRV64.sys [228976 2025-02-26] (Microsoft Windows Hardware Compatibility Publisher -> 360.cn)
R3 cpuz154; C:\Windows\temp\cpuz154\cpuz154_x64.sys [40976 2026-01-18] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R1 dokan1; C:\Windows\System32\DRIVERS\dokan1.sys [102376 2017-09-19] (ISLOG -> Dokan Project)
R3 EnigmaFileMonDriver; C:\Windows\system32\Drivers\EnigmaFileMonDriver.sys [84152 2026-01-18] (Microsoft Windows Hardware Compatibility Publisher -> EnigmaSoft Limited)
R3 iobit_monitor_server2021; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\Monitor_win10_x64.sys [33256 2025-07-23] (IObit CO., LTD -> IObit)
R3 KslD; C:\Windows\System32\drivers\wd\KslD.sys [333192 2026-01-18] (Microsoft Windows -> Microsoft Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-10-13] (Malwarebytes Corporation -> Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2014-10-13] (Malwarebytes Corporation -> Malwarebytes Corporation)
S0 SHELAMDriver; C:\Windows\System32\Drivers\SHELAMDriver.sys [29640 2026-01-18] (Microsoft Windows Early Launch Anti-malware Publisher -> EnigmaSoft Limited)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [21928 2026-01-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [635272 2026-01-18] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [102792 2026-01-18] (Microsoft Windows -> Microsoft Corporation)
S3 敌牃摵㐶; C:\SWTOOLS\FLASH\M16JY71USA\LeCrud64.sys [18664 2022-06-02] (LENOVO -> ) [File not signed]
S2 DgiVecp; \??\C:\Windows\system32\Drivers\DgiVecp.sys [X]
U0 Partizan; system32\drivers\Partizan.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-01-18 23:55 - 2026-01-18 23:55 - 000062335 _____ C:\Users\mtana\Desktop\FRST.txt
2026-01-18 21:02 - 2026-01-18 21:02 - 000003804 _____ C:\Windows\system32\Tasks\D0OSP2E6BE2QDLSHUBXR{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 20:32 - 2026-01-18 20:32 - 000003804 _____ C:\Windows\system32\Tasks\02ELTGCXFUYDP1HUQ981{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 20:28 - 2026-01-18 20:28 - 000003804 _____ C:\Windows\system32\Tasks\EGNYUIPEP51ON7EPWXAR{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 19:30 - 2026-01-18 19:30 - 000003804 _____ C:\Windows\system32\Tasks\42F1TSUTZ41G84Z7XWB6{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 18:58 - 2026-01-18 18:58 - 000003804 _____ C:\Windows\system32\Tasks\B24YM4OQPF68VGODZS09{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 18:28 - 2026-01-18 18:28 - 000003804 _____ C:\Windows\system32\Tasks\6RGO3BO9QHCVJS7ONDIT{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 18:20 - 2026-01-18 18:20 - 000000000 ____D C:\Users\mtana\Desktop\FRST-OlderVersion
2026-01-18 18:12 - 2026-01-18 18:12 - 000003804 _____ C:\Windows\system32\Tasks\VCX2VQRZK5PBY8G4MNI2{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 18:01 - 2026-01-18 18:01 - 000003804 _____ C:\Windows\system32\Tasks\IVH0MNYJAFBTK0CZNYPS{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 13:48 - 2026-01-18 13:48 - 000003804 _____ C:\Windows\system32\Tasks\K4BKIC9UWZDZTOWVF18W{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 13:22 - 2026-01-18 13:22 - 000003804 _____ C:\Windows\system32\Tasks\M3MGRS3HI1BWLLRX763C{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 12:52 - 2026-01-18 12:52 - 000003804 _____ C:\Windows\system32\Tasks\BZ0KZHFQKHYXGV24RH04{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 12:28 - 2026-01-18 12:28 - 000003804 _____ C:\Windows\system32\Tasks\NK1IMAB06QR6U7ZQGF5W{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 12:22 - 2026-01-18 12:22 - 000003804 _____ C:\Windows\system32\Tasks\TDAFLMDR4DJC2DX9LDB4{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 12:22 - 2026-01-18 12:22 - 000003804 _____ C:\Windows\system32\Tasks\OQWN86G1WKNFL2DMV4SG{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 12:22 - 2026-01-18 12:22 - 000003804 _____ C:\Windows\system32\Tasks\NO1IB9Q2HTW8ZU9H5CE3{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 12:22 - 2026-01-18 12:22 - 000003804 _____ C:\Windows\system32\Tasks\ECR25YVUIZNKH4UFKSNL{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 12:22 - 2026-01-18 12:22 - 000003804 _____ C:\Windows\system32\Tasks\D1ORNL39ZGN1VX8CTIZY{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 12:22 - 2026-01-18 12:22 - 000003804 _____ C:\Windows\system32\Tasks\3SILMYIK9IDEZPJ5X6XR{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 12:22 - 2026-01-18 12:22 - 000003804 _____ C:\Windows\system32\Tasks\38L9J9KO12NJ3GO164OI{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 11:58 - 2026-01-18 11:58 - 000003804 _____ C:\Windows\system32\Tasks\SVQ74C8OH03YN8PJC1JT{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 11:24 - 2026-01-18 11:24 - 000003804 _____ C:\Windows\system32\Tasks\2AELUPUBGMHSHOM6QLPZ{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 10:58 - 2026-01-18 10:58 - 000003804 _____ C:\Windows\system32\Tasks\QG31ONHQDT4QXYIPYX73{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 10:28 - 2026-01-18 10:28 - 000003804 _____ C:\Windows\system32\Tasks\NFD2PWFCIBTXB063RPTE{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 10:26 - 2026-01-18 10:26 - 000184668 _____ C:\Users\mtana\Desktop\Detalji dinarskog transfera.pdf
2026-01-18 09:58 - 2026-01-18 09:58 - 000003804 _____ C:\Windows\system32\Tasks\RYOCTRI4KVR63XRWTN79{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 09:28 - 2026-01-18 09:28 - 000003804 _____ C:\Windows\system32\Tasks\892OME1PF846NNDDKONN{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 09:19 - 2026-01-18 09:19 - 000001079 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpyHunter5.lnk
2026-01-18 09:19 - 2026-01-18 09:19 - 000000000 ____D C:\sh5ldr
2026-01-18 09:19 - 2026-01-18 09:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EnigmaSoft
2026-01-18 09:19 - 2026-01-18 09:19 - 000000000 ____D C:\ProgramData\EnigmaSoft Limited
2026-01-18 09:19 - 2026-01-18 09:19 - 000000000 ____D C:\Program Files\EnigmaSoft
2026-01-18 09:00 - 2026-01-18 09:00 - 000003804 _____ C:\Windows\system32\Tasks\QSYCM2NHSMV34XP5AFM9{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 08:40 - 2026-01-18 08:40 - 000003804 _____ C:\Windows\system32\Tasks\1HY39B8K2Y0JU6UBU3YN{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 01:18 - 2026-01-18 01:18 - 000003804 _____ C:\Windows\system32\Tasks\FJ046JH03RB571Q2BFHM{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 01:07 - 2026-01-18 01:07 - 000290304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\subinacl.exe
2026-01-18 01:07 - 2026-01-18 01:07 - 000000000 ____D C:\Program Files\Adware-Removal-Tool
2026-01-18 01:03 - 2026-01-18 01:05 - 000000000 ____D C:\AdwCleaner
2026-01-18 00:48 - 2026-01-18 00:48 - 000003804 _____ C:\Windows\system32\Tasks\AJ3SXMCFAKOEIVW9H0M2{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-18 00:47 - 2026-01-18 22:30 - 000000000 ____D C:\Users\mtana\AppData\Local\UnHackMe
2026-01-18 00:47 - 2026-01-18 18:28 - 000000000 ____D C:\Program Files (x86)\UnHackMe
2026-01-18 00:47 - 2026-01-18 00:47 - 000003420 _____ C:\Windows\system32\Tasks\UnHackMe Task Scheduler
2026-01-18 00:47 - 2026-01-18 00:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UnHackMe
2026-01-18 00:47 - 2022-12-27 12:20 - 000017936 _____ (Greatis Software, LLC.) C:\Windows\SysWOW64\Drivers\UnHackMeDrv.sys
2026-01-18 00:47 - 2015-12-28 11:32 - 000049968 _____ (Greatis Software) C:\Windows\system32\partizan.exe
2026-01-18 00:20 - 2026-01-18 00:20 - 000003804 _____ C:\Windows\system32\Tasks\0PR25F3DH7LAPJTZ0R9C{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 23:48 - 2026-01-17 23:48 - 000003804 _____ C:\Windows\system32\Tasks\CRTK4RVGYFY30PG3S99O{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 23:18 - 2026-01-17 23:18 - 000003804 _____ C:\Windows\system32\Tasks\WVR1W2S7Y2EZXC1OMRXN{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 23:17 - 2026-01-17 23:18 - 000000000 ____D C:\Users\mtana\Desktop\Programi za preuzimanje
2026-01-17 22:50 - 2026-01-17 22:50 - 000003804 _____ C:\Windows\system32\Tasks\TYSLYTM1MKHZ7DKFNCTM{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 22:20 - 2026-01-17 22:20 - 000003804 _____ C:\Windows\system32\Tasks\YVV9AEFI50HRUCC49RLE{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 21:52 - 2026-01-17 21:52 - 000003804 _____ C:\Windows\system32\Tasks\77DMLASU6WB458CS6HWL{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 21:22 - 2026-01-17 21:22 - 000003804 _____ C:\Windows\system32\Tasks\ZBFHUNYE8U92MAKIUTJP{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 20:52 - 2026-01-17 20:52 - 000003804 _____ C:\Windows\system32\Tasks\XHKZJ7UQLHVRGMI9086H{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 20:32 - 2026-01-17 20:32 - 000003804 _____ C:\Windows\system32\Tasks\0FL7EXUHXI1SID2IKJPP{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 19:56 - 2026-01-17 19:56 - 000003804 _____ C:\Windows\system32\Tasks\UL3CKO217NNM719545OG{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 19:32 - 2026-01-17 19:32 - 000003804 _____ C:\Windows\system32\Tasks\7YT4YZA5BAO310GXDUZ1{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 19:00 - 2026-01-17 19:00 - 000003804 _____ C:\Windows\system32\Tasks\71RN4X26JU6TUHQXZZD4{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 18:32 - 2026-01-17 18:32 - 000003804 _____ C:\Windows\system32\Tasks\N95AP6BQ0G9BC1SKBLGU{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 18:00 - 2026-01-17 18:00 - 000003804 _____ C:\Windows\system32\Tasks\6005EZGDL79T7JIIKDIT{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 17:55 - 2026-01-17 17:55 - 000001506 _____ C:\Users\Public\Desktop\Vidmore Video Converter.lnk
2026-01-17 17:55 - 2026-01-17 17:55 - 000000000 ____D C:\Users\mtana\OneDrive\Documents\Vidmore
2026-01-17 17:55 - 2026-01-17 17:55 - 000000000 ____D C:\ProgramData\Vidmore
2026-01-17 17:40 - 2026-01-17 17:40 - 000003804 _____ C:\Windows\system32\Tasks\60QHJL84KPDF01Q6XTOC{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 17:00 - 2026-01-17 17:00 - 000003804 _____ C:\Windows\system32\Tasks\9TOMO6POFYIROORYT5B5{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 16:32 - 2026-01-17 16:32 - 000003804 _____ C:\Windows\system32\Tasks\311ZCKIFQCBQZUJE4L5B{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 16:00 - 2026-01-17 16:00 - 000003804 _____ C:\Windows\system32\Tasks\5HR7K2GGHBS10E1VIL8V{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 15:32 - 2026-01-17 15:32 - 000003804 _____ C:\Windows\system32\Tasks\QWJM0AYIJG45ZDT7M6UW{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 15:01 - 2026-01-17 15:01 - 014211798 _____ C:\Users\mtana\Desktop\FDownloader.Net_AQNaxrhk9oHKFUk1dbvU9ptvHcZ53bArGKJWY6zaIjuvIYYWXh7sEhxkVnOczEmvDU1QMHFiMXsrNOFUQDBflikscudBLdyF-Tz7QvPGfis0Eg_720p_(HD).mp4
2026-01-17 15:00 - 2026-01-17 15:00 - 000003804 _____ C:\Windows\system32\Tasks\TK82R4T0Y7NLMPTO0M2O{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 14:32 - 2026-01-17 14:32 - 000003804 _____ C:\Windows\system32\Tasks\XJA1P5GUHXDLPMRDEXBX{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 14:22 - 2026-01-17 14:22 - 000003804 _____ C:\Windows\system32\Tasks\NWAYTYT6HRCYZP5EM2L6{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 14:00 - 2026-01-17 14:00 - 000003804 _____ C:\Windows\system32\Tasks\XQY55T4TLD38NHMWAHL1{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 13:32 - 2026-01-17 13:32 - 000003804 _____ C:\Windows\system32\Tasks\GK9MD6NHZ0M4JWPD89AC{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 13:00 - 2026-01-17 13:00 - 000003804 _____ C:\Windows\system32\Tasks\PMDWDMC3DF46NE61PKX4{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 12:32 - 2026-01-17 12:32 - 000003804 _____ C:\Windows\system32\Tasks\ILGFGEAGJAW4635UNKKR{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 12:00 - 2026-01-17 12:00 - 000003804 _____ C:\Windows\system32\Tasks\612YZ2ZL9LVX6S3TX1K8{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 11:32 - 2026-01-17 11:32 - 000003804 _____ C:\Windows\system32\Tasks\GH2GUXR0DKLSE6LP1N3S{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 11:12 - 2026-01-17 11:12 - 000003804 _____ C:\Windows\system32\Tasks\2U8PRWI0CFD23431077V{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 10:42 - 2026-01-17 10:42 - 000003804 _____ C:\Windows\system32\Tasks\84HTW5040IBJHIRCWM4W{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 10:20 - 2026-01-17 10:20 - 000003804 _____ C:\Windows\system32\Tasks\LSZTZXT282HT9460CNF3{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 10:10 - 2026-01-17 10:10 - 000003804 _____ C:\Windows\system32\Tasks\I3WLUFB9U6H7FWK5H0US{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 00:47 - 2026-01-16 18:29 - 027655363 _____ C:\Users\mtana\Desktop\0-02-05-d51c11cf56007254ca840e71025f64e946a094b8db7fa7ac84e431f6f4fe24b8_5c4c27c175ce3882.mp4
2026-01-17 00:42 - 2026-01-17 00:42 - 000003804 _____ C:\Windows\system32\Tasks\F32Q764RRLC6XCL2IBZJ{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-17 00:34 - 2026-01-17 00:34 - 011031311 _____ C:\Users\mtana\Desktop\FDownloader.Net_AQNyBdZAwTs8Ww7tVA7P3t7LbIjEgzn5kLz-dLBI4MzUE63VCntSbtOwrdiI5Mcp8mWDbzxawK8FwFaqxo_sMOiKhr9hhsFqq3k9DQHNRwKe_g_720p_(HD).mp4
2026-01-17 00:33 - 2026-01-17 00:33 - 011500878 _____ C:\Users\mtana\Desktop\FDownloader.Net_AQPAVpNNS1tUl9qVvhYK2rXZCZkzH-QVHJz-dqZ2_--3xZ4z6_fpLju3HoDXOp16XaMAgP-UBJtynWPjEJoaXNJINyMzMki2OxGgkd5M6gCHFg_720p_(HD).mp4
2026-01-17 00:12 - 2026-01-17 00:12 - 000003804 _____ C:\Windows\system32\Tasks\7XV9LWM9STASSAHE8YKN{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB}
2026-01-16 23:57 - 2026-01-18 23:55 - 000000000 ____D C:\FRST
2026-01-16 23:57 - 2026-01-18 18:20 - 002443776 _____ (Farbar) C:\Users\mtana\Desktop\FRST64.exe
2026-01-16 23:38 - 2026-01-16 23:38 - 000000000 ____D C:\Windows\system32\Tasks\Vidmore
2026-01-16 23:33 - 2026-01-17 17:55 - 000000000 ____D C:\Users\mtana\AppData\Local\Vidmore
2026-01-16 23:33 - 2026-01-17 17:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vidmore
2026-01-16 23:29 - 2026-01-17 17:55 - 000000000 ____D C:\Program Files (x86)\Vidmore
2026-01-16 17:55 - 2026-01-16 18:07 - 000000000 ____D C:\Program Files\Vidmore
2026-01-16 15:47 - 2026-01-16 15:47 - 000129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2026-01-16 15:47 - 2026-01-16 15:47 - 000000000 ____D C:\ProgramData\Malwarebytes
2026-01-16 15:47 - 2014-10-13 23:12 - 000064216 ____R (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2026-01-16 15:47 - 2014-10-13 23:12 - 000025816 ____R (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2026-01-16 15:47 - 2014-10-13 23:11 - 000093400 ____R (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2026-01-16 11:52 - 2026-01-16 11:52 - 000000400 __RSH C:\ProgramData\ntuser.pol
2026-01-15 23:31 - 2026-01-15 23:31 - 135547376 _____ (Vidmore ) C:\Users\mtana\Downloads\Vidmore Video Converter_1.3.56.exe
2026-01-15 18:59 - 2026-01-15 18:59 - 000001358 _____ C:\Users\mtana\Desktop\ClamWinPortable - Shortcut.lnk
2026-01-15 17:35 - 2026-01-15 17:35 - 000000000 ____D C:\Users\mtana\Downloads\MediaGet Downloads
2026-01-15 10:59 - 2026-01-15 10:59 - 000000000 ____D C:\Users\Public\Foxit Software
2026-01-15 10:59 - 2026-01-15 10:59 - 000000000 ____D C:\ProgramData\Foxit Software
2026-01-15 10:58 - 2026-01-15 10:58 - 000000000 ____D C:\Users\mtana\AppData\Roaming\Foxit Software
2026-01-15 10:58 - 2026-01-15 10:58 - 000000000 ____D C:\Users\mtana\AppData\Roaming\Foxit AgentInformation
2026-01-15 10:58 - 2026-01-15 10:58 - 000000000 ____D C:\ProgramData\Foxit ContentPlatform
2026-01-15 10:57 - 2026-01-15 10:57 - 100832472 _____ (Foxit Software Inc. ) C:\Users\mtana\Downloads\foxit-reader-portable-2024.4.0.27683-installer.exe
2026-01-15 08:21 - 2026-01-15 08:21 - 000003330 _____ C:\Windows\system32\Tasks\iTopEN NY2026 Task (One-Time)
2026-01-14 22:48 - 2026-01-14 22:57 - 1708595456 _____ C:\Users\mtana\Desktop\Varljivo leto 68 (1984).mkv
2026-01-14 20:26 - 2026-01-14 20:26 - 000000000 ____D C:\Users\mtana\AppData\Roaming\Sun
2026-01-14 20:26 - 2026-01-14 20:26 - 000000000 ____D C:\Users\mtana\AppData\LocalLow\Sun
2026-01-14 20:26 - 2026-01-14 20:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2026-01-14 20:26 - 2026-01-14 20:26 - 000000000 ____D C:\Program Files\Java
2026-01-14 20:26 - 2025-09-26 05:30 - 000213176 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2026-01-14 16:21 - 2026-01-14 16:25 - 066895476 _____ C:\Users\mtana\Downloads\jdownloader-portable-2-installer.exe
2026-01-14 08:35 - 2026-01-15 08:15 - 000000000 ____D C:\Program Files\Mozilla Firefox
2026-01-10 10:10 - 2026-01-10 10:10 - 019783336 _____ C:\Users\mtana\Desktop\FDownloader.Net_AQNdz1rgPsv1Zb6rbRTEGlrQaPnEjKyPfCeMFBiwNaqHRvos9NR0ny-mM_J0LCuowDwliv1G_c6FlO8CZ541KdYGPHnLXQgHEuNf3ipEr6uCWQ_720p_(HD).mp4
2026-01-04 17:10 - 2026-01-04 17:10 - 000000000 ____D C:\Users\mtana\AppData\Roaming\stremio
2026-01-04 17:10 - 2026-01-04 17:10 - 000000000 ____D C:\Users\mtana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Stremio
2026-01-04 16:56 - 2026-01-18 18:37 - 000000000 ____D C:\Users\mtana\AppData\Roaming\vlc
2026-01-04 16:46 - 2026-01-04 16:46 - 000000000 ____D C:\Program Files\VideoLAN
2026-01-04 16:46 - 2026-01-04 16:46 - 000000000 ____D C:\Program Files\MKVToolNix
2026-01-04 16:46 - 2019-12-28 11:00 - 000784384 _____ C:\Windows\system32\xvidcore.dll
2026-01-04 16:46 - 2019-12-28 11:00 - 000310784 _____ C:\Windows\system32\xvidvfw.dll
2026-01-04 16:45 - 2026-01-04 16:45 - 000003302 _____ C:\Windows\system32\Tasks\ASC_PerformanceMonitor
2026-01-04 16:45 - 2026-01-04 16:45 - 000003092 _____ C:\Windows\system32\Tasks\ASC_SkipUac_mtana
2026-01-04 16:45 - 2026-01-04 16:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnyDesk
2026-01-04 16:45 - 2026-01-04 16:45 - 000000000 ____D C:\Program Files (x86)\AnyDesk
2026-01-04 16:45 - 2026-01-04 16:45 - 000000000 _____ C:\Windows\SysWOW64\system.conf.lock
2026-01-04 16:45 - 2026-01-04 16:45 - 000000000 _____ C:\Windows\SysWOW64\service.conf.lock
2026-01-04 16:44 - 2026-01-04 16:44 - 000000000 ____D C:\Windows\Tasks\ImCleanDisabled
2026-01-04 16:43 - 2026-01-04 16:43 - 000000000 ____D C:\Users\mtana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ
2026-01-04 16:43 - 2026-01-04 16:43 - 000000000 ____D C:\Program Files\VirtualDJ
2026-01-04 09:50 - 2026-01-16 23:50 - 000000000 ____D C:\Users\mtana\AppData\Local\CrashDumps
2026-01-04 09:28 - 2026-01-04 09:28 - 000001207 _____ C:\Users\mtana\Desktop\winamp - Shortcut.lnk
2026-01-04 09:09 - 2026-01-04 23:42 - 000000000 ____D C:\ProgramData\Avast Software
2026-01-04 09:09 - 2026-01-04 09:17 - 018845963 _____ C:\Users\mtana\Downloads\portable-winamp-5.572-installer.exe
2025-12-30 17:54 - 2025-12-30 17:54 - 000000000 ____D C:\Users\mtana\AppData\Roaming\Microsoft\Document Building Blocks
2025-12-29 17:21 - 2026-01-04 16:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MKVtoolnix
2025-12-29 17:21 - 2025-12-29 17:25 - 000000000 ____D C:\Program Files (x86)\MKVtoolnix
2025-12-29 11:07 - 2025-12-29 11:07 - 000000000 ____D C:\Users\mtana\AppData\Roaming\Gpower2
2025-12-29 00:03 - 2025-12-29 00:03 - 000000000 ____D C:\portapps
2025-12-28 00:27 - 2025-12-28 00:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Universal Extractor
2025-12-28 00:27 - 2025-12-28 00:29 - 000000000 ____D C:\Program Files (x86)\Universal Extractor
2025-12-26 08:22 - 2025-12-26 08:22 - 000000000 ____D C:\Users\mtana\AppData\Local\Viber
2025-12-25 14:51 - 2025-12-25 14:51 - 000001712 _____ C:\Users\mtana\Desktop\Photoshop - Shortcut.lnk
2025-12-25 14:44 - 2025-12-25 14:44 - 000001064 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop 2025.lnk
2025-12-25 13:59 - 2025-12-27 11:12 - 000000000 ____D C:\Users\mtana\AppData\Roaming\Adobe
2025-12-24 14:06 - 2025-12-24 14:06 - 000000000 ____D C:\Users\Public\NGL
2025-12-24 14:06 - 2025-12-24 14:06 - 000000000 ____D C:\Users\Public\Adobe
2025-12-24 14:04 - 2025-12-24 14:04 - 000002381 _____ C:\Users\mtana\Desktop\Adobe Illustrator 2025.lnk
2025-12-24 14:02 - 2025-12-24 14:02 - 000002493 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Illustrator 2025.lnk
2025-12-22 19:37 - 2025-12-22 19:37 - 000000000 ____D C:\ProgramData\FLEXnet
2025-12-22 18:58 - 2008-02-06 03:00 - 000054480 ____N (Sonic Solutions) C:\Windows\system32\Drivers\PxHlpa64.sys
2025-12-22 18:52 - 2025-12-24 14:01 - 000000000 ____D C:\Program Files (x86)\Adobe
2025-12-22 18:52 - 2025-12-22 18:52 - 000000000 ____D C:\Windows\SysWOW64\spool
2025-12-20 10:32 - 2025-12-20 10:32 - 000000055 _____ C:\Users\mtana\Desktop\c-recepti.txt

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-01-18 23:55 - 2024-12-15 08:25 - 000000000 ____D C:\Users\mtana\AppData\Roaming\utorrent
2026-01-18 23:47 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-01-18 23:44 - 2024-12-14 13:01 - 000000000 ____D C:\Users\mtana\AppData\Roaming\Microsoft\Word
2026-01-18 21:56 - 2021-12-21 17:03 - 000000000 ____D C:\Windows\system32\SleepStudy
2026-01-18 20:15 - 2024-12-16 07:33 - 000000000 ____D C:\ProgramData\iTop VPN
2026-01-18 19:09 - 2025-04-05 08:14 - 000001916 _____ C:\Windows\SysWOW64\pubfreeware.ini
2026-01-18 18:36 - 2024-12-14 13:22 - 000000000 ____D C:\Users\mtana\AppData\LocalLow\360WD
2026-01-18 18:33 - 2024-12-21 22:49 - 000000000 ____D C:\Users\mtana\AppData\Roaming\MPC-HC
2026-01-18 18:31 - 2021-12-21 16:13 - 000840602 _____ C:\Windows\system32\PerfStringBackup.INI
2026-01-18 18:31 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2026-01-18 18:27 - 2024-12-15 08:25 - 000000000 ____D C:\Users\mtana\AppData\Local\BitTorrentHelper
2026-01-18 18:25 - 2025-04-21 18:33 - 000000000 ____D C:\ProgramData\AnyDesk
2026-01-18 18:25 - 2025-03-19 10:41 - 000001752 _____ C:\ProgramData\pdinst.ini
2026-01-18 18:24 - 2024-12-14 22:43 - 000000000 __SHD C:\Users\mtana\IntelGraphicsProfiles
2026-01-18 18:24 - 2024-12-14 16:34 - 000000000 ____D C:\Intel
2026-01-18 18:24 - 2021-12-21 17:04 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2026-01-18 18:24 - 2021-12-21 17:03 - 000008192 ___SH C:\DumpStack.log.tmp
2026-01-18 18:24 - 2019-12-07 10:03 - 000786432 _____ C:\Windows\system32\config\BBI
2026-01-18 18:17 - 2024-12-14 21:15 - 000000000 ____D C:\Users\mtana\Desktop\precice
2026-01-18 18:13 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2026-01-18 18:12 - 2021-12-21 17:04 - 000000000 ____D C:\Windows\system32\Drivers\wd
2026-01-18 18:11 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender
2026-01-18 18:02 - 2019-12-07 10:03 - 000032768 _____ C:\Windows\system32\config\ELAM
2026-01-18 17:59 - 2024-12-14 23:50 - 000000000 ____D C:\Program Files (x86)\Bright VPN
2026-01-18 11:20 - 2024-12-15 08:00 - 000000000 __SHD C:\$360Section
2026-01-18 11:20 - 2024-12-14 13:24 - 000000000 ____D C:\ProgramData\360Quarant
2026-01-18 09:19 - 2019-12-07 10:14 - 000000000 ___HD C:\Windows\ELAMBKUP
2026-01-18 08:39 - 2024-12-16 07:33 - 000000000 ____D C:\Program Files (x86)\iTop VPN
2026-01-18 08:39 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2026-01-17 00:22 - 2025-11-11 18:10 - 000003665 _____ C:\Users\mtana\Desktop\ali.txt
2026-01-16 23:50 - 2024-12-15 21:43 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2026-01-16 23:50 - 2021-12-21 17:03 - 000000000 ____D C:\Windows\Panther
2026-01-16 23:25 - 2025-10-20 10:53 - 000000000 ____D C:\ProgramData\360zip
2026-01-16 18:29 - 2024-12-25 00:11 - 000000000 ____D C:\Users\mtana\OneDrive\Documents\ViberDownloads
2026-01-16 17:43 - 2025-04-08 21:42 - 000000000 ____D C:\Users\mtana\AppData\Roaming\Solveig Multimedia
2026-01-16 17:40 - 2021-12-21 16:18 - 000000000 ____D C:\Windows\SystemTemp
2026-01-16 17:35 - 2025-01-10 18:15 - 000000000 ____D C:\Users\mtana\AppData\Roaming\AVI ReComp
2026-01-16 17:25 - 2024-12-14 23:00 - 000000000 ____D C:\Users\mtana\AppData\Roaming\ViberPC
2026-01-16 08:49 - 2025-11-15 02:35 - 000000000 ____D C:\Windows\system32\Tasks\NCH Software
2026-01-16 08:00 - 2024-12-14 12:59 - 000000000 ____D C:\Users\mtana\AppData\Local\Packages
2026-01-15 18:29 - 2024-12-14 12:54 - 000000000 ____D C:\Users\mtana
2026-01-15 13:21 - 2025-10-21 19:00 - 000000000 ____D C:\Users\mtana\AppData\LocalLow\360MenuMgr
2026-01-15 13:19 - 2024-12-14 13:21 - 000000000 ____D C:\ProgramData\360safe
2026-01-15 08:15 - 2024-12-15 23:21 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2026-01-14 14:22 - 2024-12-15 23:21 - 000001065 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2026-01-12 08:33 - 2025-03-19 10:41 - 000000000 ____D C:\ProgramData\ProductData3
2026-01-11 17:08 - 2024-12-14 12:59 - 000000000 ____D C:\Users\mtana\AppData\Local\D3DSCache
2026-01-07 08:45 - 2024-12-16 07:35 - 000000000 ____D C:\Program Files\iTop Screen Recorder
2026-01-05 11:43 - 2024-12-14 17:24 - 000000000 ____D C:\Users\mtana\AppData\Local\VirtualDJ
2026-01-04 23:42 - 2024-12-14 13:17 - 000000000 ____D C:\Program Files\WinRAR
2026-01-04 16:54 - 2024-12-20 18:14 - 000000000 ____D C:\Program Files (x86)\VideoLAN
2026-01-04 16:51 - 2024-12-14 22:40 - 000000000 ____D C:\ProgramData\Package Cache
2026-01-04 16:50 - 2025-09-22 18:50 - 000000000 ____D C:\Program Files\dotnet
2026-01-04 16:48 - 2024-12-16 07:35 - 000000000 ____D C:\Users\mtana\AppData\Roaming\iTop Screen Recorder
2026-01-04 16:48 - 2024-12-16 07:33 - 000003426 _____ C:\Windows\system32\Tasks\iTopVPN_Scheduler_mtana
2026-01-04 16:48 - 2024-12-16 07:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTop VPN
2026-01-04 16:48 - 2024-12-16 07:33 - 000000000 ____D C:\ProgramData\{150F4013-6884-4350-8DDC-6BFCB4C5DC15}
2026-01-04 16:47 - 2025-03-19 10:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTop Data Recovery
2026-01-04 16:47 - 2025-03-19 10:42 - 000000000 ____D C:\Program Files (x86)\iTop Data Recovery
2026-01-04 16:47 - 2024-12-16 07:42 - 000003872 _____ C:\Windows\system32\Tasks\iTop Screen Recorder Update
2026-01-04 16:47 - 2024-12-16 07:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTop Screen Recorder
2026-01-04 16:46 - 2024-12-20 18:25 - 000003300 _____ C:\Windows\system32\Tasks\klcp_update
2026-01-04 16:46 - 2024-12-20 18:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2026-01-04 16:46 - 2024-12-20 18:24 - 000000000 ____D C:\Program Files (x86)\K-Lite Codec Pack
2026-01-04 16:45 - 2025-04-21 18:29 - 000000000 ____D C:\Users\mtana\AppData\Roaming\AnyDesk
2026-01-04 16:45 - 2025-03-19 10:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare
2026-01-04 16:45 - 2025-03-19 10:41 - 000000000 ____D C:\Users\mtana\AppData\LocalLow\IObit
2026-01-04 16:43 - 2024-12-20 17:12 - 000001052 _____ C:\Users\mtana\Desktop\VirtualDJ.lnk
2026-01-04 16:43 - 2024-12-14 13:17 - 000000000 ____D C:\Users\mtana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2026-01-04 16:43 - 2024-12-14 13:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2026-01-04 13:03 - 2024-12-14 13:01 - 000000000 ____D C:\Users\mtana\AppData\Local\PlaceholderTileLogoFolder
2026-01-04 13:03 - 2021-12-21 16:06 - 000000000 ____D C:\ProgramData\Packages
2026-01-03 12:42 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\NDF
2026-01-01 10:21 - 2021-12-21 17:03 - 003098504 _____ C:\Windows\system32\FNTCACHE.DAT
2025-12-29 11:53 - 2024-12-14 13:09 - 000000000 ____D C:\Users\mtana\AppData\Roaming\Microsoft\Spelling
2025-12-25 15:59 - 2024-12-14 14:09 - 000000000 ____D C:\Users\mtana\AppData\Local\Adobe
2025-12-25 14:50 - 2024-12-18 08:34 - 000000000 ____D C:\Users\mtana\AppData\Roaming\com.adobe.dunamis
2025-12-25 14:50 - 2024-12-14 13:23 - 000000000 ____D C:\ProgramData\Adobe
2025-12-25 14:44 - 2025-01-03 14:05 - 000000000 ____D C:\Program Files\Common Files\Adobe
2025-12-25 14:41 - 2025-01-03 14:06 - 000000000 ____D C:\Program Files\Adobe
2025-12-23 15:32 - 2025-10-06 12:50 - 000000000 ____D C:\Users\mtana\AppData\Roaming\Microsoft\PowerPoint
2025-12-22 20:25 - 2025-02-07 17:07 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2025-12-22 17:33 - 2025-03-23 21:38 - 000000000 ____D C:\Users\mtana\AppData\Roaming\360zip
2025-12-22 09:47 - 2021-12-21 17:04 - 000003534 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-12-22 09:47 - 2021-12-21 17:04 - 000003408 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-12-21 20:24 - 2024-12-14 13:01 - 000000000 ____D C:\Users\mtana\AppData\Roaming\Microsoft\Office

==================== Files in the root of some directories ========

2024-12-15 08:16 - 2025-11-14 14:46 - 000000612 _____ () C:\Users\mtana\AppData\Roaming\AppState.json
2025-11-22 16:28 - 2025-11-22 16:28 - 000002203 ___SH () C:\Users\mtana\AppData\Roaming\bd.info
2025-11-22 16:28 - 2025-11-22 16:28 - 000000025 ___SH () C:\Users\mtana\AppData\Roaming\flipfs.bin
2024-12-15 08:16 - 2025-10-29 11:07 - 000000066 _____ () C:\Users\mtana\AppData\Roaming\SIDF.json
2025-10-18 21:03 - 2025-10-28 10:07 - 000000416 _____ () C:\Users\mtana\AppData\Local\config

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Dopuna: 18 Jan 2026 23:59

[Link mogu videti samo ulogovani korisnici]



offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8640
  • Gde živiš: Novi Beograd

Hajde mi kopiraj i sadrzaj tog Addition loga u poruku, jer nece da otvori te linkove.



online
  • Miroslav Tanaskovic
  • Gradjevinski tehnicar
  • Pridružio: 02 Jan 2009
  • Poruke: 804
  • Gde živiš: Cacak

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 18-01-2026 01
Ran by mtana (18-01-2026 23:56:31)
Running from C:\Users\mtana\Desktop
Microsoft Windows 10 Pro Version 22H2 19045.5247 (X64) (2024-12-14 11:39:13)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-1825045012-3464344044-1076668188-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1825045012-3464344044-1076668188-503 - Limited - Disabled)
Guest (S-1-5-21-1825045012-3464344044-1076668188-501 - Limited - Disabled)
mtana (S-1-5-21-1825045012-3464344044-1076668188-1002 - Administrator - Enabled) => C:\Users\mtana
WDAGUtilityAccount (S-1-5-21-1825045012-3464344044-1076668188-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: SpyHunter 5 (Disabled - Up to date) {9D70BFF7-0148-8153-46AD-82643F61CF4D}
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: 360 Total Security (Enabled - Up to date) {FFDC234A-CE9B-08F9-406B-F876951CE066}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-1825045012-3464344044-1076668188-1002\...\uTorrent) (Version: 3.6.0.47224 - BitTorrent Limited)
360 Total Security (HKLM-x32\...\360TotalSecurity) (Version: 11.0.0.1220 - 360 Security Center)
360 Zip (HKLM-x32\...\360zip) (Version: 1.0.0.1041 - 360 Security Center)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1033-1033-7760-BC15014EA700}) (Version: 25.001.20997 - Adobe)
Adobe Illustrator 2025 (HKLM-x32\...\ILST_29_8_3) (Version: 29.8.3 - Adobe Inc.)
Adobe Photoshop 2025 (HKLM-x32\...\PHSP_26_11_2) (Version: 26.11.2.31 - Adobe Inc.)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601120}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Advanced SystemCare (HKLM-x32\...\Advanced SystemCare_is1) (Version: 19.1.0 - IObit)
AI Karaoke Video Creator 3.0.4.0 (HKLM-x32\...\{5A7E82AB-52F2-4AAA-B281-F2BFF13F1153}_is1) (Version: - Doblon)
AnyDesk (HKLM-x32\...\AnyDesk) (Version: ad 9.6.7 - AnyDesk Software GmbH)
Apple Application Support (32-bit) (HKLM-x32\...\{CCA8C50D-785B-4896-8675-FFE0C4ECCBC3}) (Version: 8.7 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{B9292776-A87E-404C-8569-72CEC689F6C6}) (Version: 19.0.1.27 - Apple Inc.)
AVI ReComp 1.5.6 (HKLM-x32\...\AVI ReComp) (Version: 1.5.6 - Mateusz Gola (aka Prozac))
AviSynth 2.5 (HKLM-x32\...\Avisynth) (Version: - )
Bright VPN 1.482.985 (HKLM-x32\...\54cf4d4c-268a-577e-8fe3-97e36e306708) (Version: 1.482.985 - Bright Data Ltd.)
Bulk Rename Utility 4.1.0.0 (64-bit) (HKLM\...\Bulk Rename Utility Installation_is1) (Version: 4.1.0.0 - TGRMN Software)
CameraHelperMsi (HKLM-x32\...\{15634701-BACE-4449-8B25-1567DA8C9FD3}) (Version: 13.51.815.0 - Logitech) Hidden
Čitač elektronske lične karte 1.4.2 (64-bitni) (HKLM\...\{6B91E922-A981-4A27-90D5-5E55E5E30CB0}) (Version: 1.4.200 - MUP RS)
DIR2HTML (remove only) (HKLM-x32\...\DIR2HTML) (Version: - )
Dokan Library 1.0.5.1000 (x64) (HKLM\...\{65A3A964-3DC3-0100-0005-170919164736}) (Version: 1.0.5.1000 - Dokany Project) Hidden
Dokan Library 1.0.5.1000 Bundle (HKLM-x32\...\{2ace4403-b87f-4bee-b308-9a1137821458}) (Version: 1.0.5.1000 - Dokany Project)
DownloadHelper CoApp (HKLM-x32\...\DownloadHelper CoApp) (Version: 2.0.19.0 - ACLAP)
erLT (HKLM-x32\...\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}) (Version: 1.20.138.34 - Logitech, Inc.) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 143.0.7499.194 - Google LLC)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1067 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{6AC527AD-E5C0-446D-A143-3221F1CE8849}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{EBF7AF9D-4FAB-434A-A7EC-6D7A00D593B5}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Driver (HKLM\...\{710A449E-F455-4E45-9436-296FF62DB76E}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) ME UninstallLegacy (HKLM\...\{E9B9A1A5-6398-4C99-8FDE-10794F6505C5}) (Version: 1.0.1.0 - Intel Corporation) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 26.20.100.7925 - Intel Corporation)
Intel(R) Trusted Connect Service Client x64 (HKLM\...\{C9552825-7BF2-4344-BA91-D3CD46F4C442}) (Version: 1.48.197.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.48.197.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{66129f84-d3f0-4884-ac54-369ae6fc2cf6}) (Version: 1.48.197.0 - Intel Corporation) Hidden
iTop Data Recovery (HKLM-x32\...\iTop Data Recovery_is1) (Version: 5.5.0.844 - iTop Inc.)
iTop Screen Recorder (HKLM-x32\...\iTop Screen Recorder_is1) (Version: 6.3.0.3577 - iTop Inc.)
iTop VPN (HKLM-x32\...\iTop VPN_is1) (Version: 7.1.0.6723 - iTop Inc.)
Java 8 Update 471 (64-bit) (HKLM\...\{77924AE4-039E-4CA4-87B4-2F64180471F0}) (Version: 8.0.4710.9 - Oracle Corporation)
Kanto Player version 12.4.0.0 (HKLM-x32\...\{B3749D9E-AFD6-49D6-8F40-4722B45859FF}_is1) (Version: 12.4.0.0 - Globosoft S.R.L.)
K-Lite Mega Codec Pack 19.3.5 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 19.3.5 - KLCP)
Korektor (HKLM-x32\...\{49eace2f-cd3b-48f2-991d-1d3c954aaf79}) (Version: 1.0.3.0 - Misoft)
Korektor (HKLM-x32\...\{828DF2EA-7976-4771-8F6B-E3A9E772DB75}) (Version: 1.0.3.0 - Misoft) Hidden
Lenovo Service Bridge (HKU\S-1-5-21-1825045012-3464344044-1076668188-1002\...\{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1) (Version: 5.0.2.18 - Lenovo)
Lenovo System Update (HKLM-x32\...\TVSU_is1) (Version: 5.08.03.59 - Lenovo)
Logitech Webcam Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.80 - Logitech Inc.)
LWS Facebook (HKLM-x32\...\{FF167195-9EE4-46C0-8CD7-FBA3457E88AB}) (Version: 13.50.854.0 - Logitech) Hidden
LWS Gallery (HKLM-x32\...\{6F76EC3C-34B1-436E-97FB-48C58D7BEDCD}) (Version: 13.51.827.0 - Logitech) Hidden
LWS Help_main (HKLM-x32\...\{1651216E-E7AD-4250-92A1-FB8ED61391C9}) (Version: 13.51.828.0 - Logitech) Hidden
LWS Launcher (HKLM-x32\...\{83C8FA3C-F4EA-46C4-8392-D3CE353738D6}) (Version: 13.51.828.0 - Logitech) Hidden
LWS Motion Detection (HKLM-x32\...\{71E66D3F-A009-44AB-8784-75E2819BA4BA}) (Version: 13.51.815.0 - Logitech) Hidden
LWS Pictures And Video (HKLM-x32\...\{08610298-29AE-445B-B37D-EFBE05802967}) (Version: 13.51.815.0 - Logitech) Hidden
LWS Twitter (HKLM-x32\...\{174A3B31-4C43-43DD-866F-73C9DB887B48}) (Version: 13.30.1346.0 - Logitech) Hidden
LWS Webcam Software (HKLM-x32\...\{8937D274-C281-42E4-8CDB-A0B2DF979189}) (Version: 13.51.815.0 - Logitech) Hidden
LWS WLM Plugin (HKLM-x32\...\{9DAEA76B-E50F-4272-A595-0124E826553D}) (Version: 1.30.1201.0 - Logitech) Hidden
LWS YouTube Plugin (HKLM-x32\...\{21DF0294-6B9D-4741-AB6F-B2ABFBD2387E}) (Version: 13.31.1038.0 - Logitech) Hidden
Lyric Video Creator 6.2.1 (HKLM-x32\...\{B84FC32D-F1D7-4AEC-B46C-62D0BAAD5107}}_is1) (Version: 6.2.1 - LyricVideoCreator)
MariaDB 10.11 (x64) (HKLM\...\{99CEB721-045C-48EB-A1EB-12B721C7F8B9}) (Version: 10.11.8.0 - MariaDB Corporation Ab) Hidden
MariaDB 10.11 (x64) (HKLM\...\MariaDB 10.11 (x64)) (Version: 10.11.8.0 - MariaDB Corporation Ab)
MCShield ::Anti-Malware Tool:: (HKLM-x32\...\MCShield) (Version: 3.0.5.28 - MyCity)
Microsoft .NET Host - 6.0.36 (x64) (HKLM\...\{D6932D97-36F1-40B8-9CDC-CA8365B21000}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.22 (x64) (HKLM\...\{872CDB4B-5DDE-4297-BD19-C93B6C93E386}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.36 (x64) (HKLM\...\{A9E32B25-994B-4856-A12B-0EBED3050410}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.22 (x64) (HKLM\...\{7A046DD7-9D61-4C5D-8F5E-24EE192B1B6A}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.36 (x64) (HKLM\...\{C912E33F-956A-4921-9F55-CC11AE8F09AF}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.22 (x64) (HKLM\...\{C43A1A89-0CA5-43FD-BDC4-3B85DAD06A41}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 144.0.3719.82 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 143.0.3650.139 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2019 - sr-latn-rs (HKLM\...\ProPlus2019Retail - sr-latn-rs) (Version: 16.0.11328.20158 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft VC++ redistributables repacked. (HKLM\...\{5E8F186D-4353-47D6-972F-174230D269D6}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft VC++ redistributables repacked. (HKLM-x32\...\{1FB35CD6-3F90-447E-9DF9-89C7028C185D}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.50.35719 (HKLM\...\{AECD4ED0-8A3B-41E9-92D1-6BEE0374CCAF}) (Version: 14.50.35719 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.50.35719 (HKLM\...\{61B44572-8722-4DAF-8ACF-8E742D30BCC5}) (Version: 14.50.35719 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.50.35719 (HKLM-x32\...\{773AD50D-AAE6-4BA1-AD01-B5A38874C840}) (Version: 14.50.35719 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.50.35719 (HKLM-x32\...\{5A0DFA55-3851-45BC-8B20-95EA4BF5812D}) (Version: 14.50.35719 - Microsoft Corporation) Hidden
Microsoft Visual C++ v14 Redistributable (x64) - 14.50.35719 (HKLM-x32\...\{91ee571b-0e8a-4c65-9eaf-2e2f5fc60c00}) (Version: 14.50.35719.0 - Microsoft Corporation)
Microsoft Visual C++ v14 Redistributable (x86) - 14.50.35719 (HKLM-x32\...\{0e4ccf1b-d073-4cfe-8a24-e86185719b56}) (Version: 14.50.35719.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{610487D9-3460-328A-9333-219D43A75CC5}) (Version: 10.0.60922 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.60917 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM\...\{61D4736B-3325-4D4A-BD41-8BD206C6A86E}) (Version: 48.144.23186 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM-x32\...\{0532b8f2-12d7-43de-95fc-7b87006758a8}) (Version: 6.0.36.34217 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.22 (x64) (HKLM\...\{4CCC1CCD-6FA3-4DD5-A06B-E94EA90094CF}) (Version: 64.88.42561 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.22 (x64) (HKLM-x32\...\{a3899eef-6164-4d42-b8c3-95ae6a844821}) (Version: 8.0.22.35428 - Microsoft Corporation)
MKVtoolnix 3.1.0 (HKLM-x32\...\MKVtoolnix) (Version: 3.1.0 - Moritz Bunkus)
MKVToolNix 97.0.0 (64-bit) (HKLM\...\MKVToolNix) (Version: 97.0.0 - Moritz Bunkus)
Mozilla Firefox (x64 sr) (HKLM\...\Mozilla Firefox) (Version: 147.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 133.0.3 - Mozilla)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.11328.20158 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.11328.20158 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-241A-1000-0000000FF1CE}) (Version: 16.0.11328.20158 - Microsoft Corporation) Hidden
Power_Karaoke Toolbar (HKLM-x32\...\Power_Karaoke Toolbar) (Version: - )
Rainbow Folders (HKLM-x32\...\{2AEA17BA-FAB3-49D2-BB85-0669D14DC9BC}_is1) (Version: 2.05 - Piotr Chodzinski)
Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8924.1 - Realtek Semiconductor Corp.)
RocketDock 1.3.5 (HKLM-x32\...\RocketDock_is1) (Version: - Punk Software)
Samsung SCX-3200 Series (HKLM-x32\...\Samsung SCX-3200 Series) (Version: - Samsung Electronics Co., Ltd.)
Scan Assistant (HKLM-x32\...\{BF6CF460-40C3-49BA-800A-4B934B6498B1}) (Version: 1.01.014 - Samsung Electronics Co., Ltd.)
Siglos Karaoke Professional (HKLM-x32\...\{DFC23DA9-8C69-4CD0-BDD5-814AF1CA85EE}_is1) (Version: - Doblon)
SpyHunter 5 (HKLM-x32\...\SpyHunter5) (Version: 5.21.13.385 - EnigmaSoft Limited)
Stremio (HKU\S-1-5-21-1825045012-3464344044-1076668188-1002\...\Stremio) (Version: 4.4.168 - Smart Code Ltd)
TrustEdgeID 2.2.9.4 (64-bitni) (HKLM\...\{4CBA1A33-0241-4101-A3A1-093840CCC47D}) (Version: 2.2.904 - NetSeT Global Solutions d.o.o.)
UnHackMe 17.90 (HKLM-x32\...\UnHackMe_is1) (Version: - Greatis Software)
Universal Extractor 1.6.1 (HKLM-x32\...\Universal Extractor_is1) (Version: 1.6.1 - Jared Breland)
UXP WebView Support (HKLM-x32\...\UXPW_1_3_0) (Version: 1.3.0 - Adobe Inc.)
Viber (HKLM-x32\...\{75F04318-FFD1-4566-9C46-5F9E8915B49E}) (Version: 22.5.0.1 - 2010-2024 Viber Media S.a.r.l) Hidden
Viber (HKU\S-1-5-21-1825045012-3464344044-1076668188-1002\...\{15e4f195-72bc-4339-8271-104be2f3816f}) (Version: 26.8.4.0 - 2010-2024 Viber Media S.a.r.l)
Vidmore Screen Recorder 2.0.18 (HKLM-x32\...\{FA34A417-7F0A-441F-A81E-F98E212F968F}_is1) (Version: 2.0.18 - Vidmore)
Vidmore Video Converter 1.3.12 (HKLM-x32\...\{88AA44F4-419C-4027-81D8-45DE96AF0E3B}_is1) (Version: 1.3.12 - Vidmore)
VirtualDJ 2026 (HKLM\...\{5033C3E5-19C8-471C-8D43-B822BDF0EBA9}) (Version: 8.5.8978.0 - Atomix Productions)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.23 - VideoLAN)
VobSub 2.23 (HKLM-x32\...\VobSub) (Version: 2.23 - Gabest)
VPN by RAV (HKLM\...\ReasonLabs-VPN) (Version: 2.20.0 - Reason Cybersecurity Inc.)
WebM Media Foundation Components (HKLM-x32\...\webmmf) (Version: 1.0.1.2 - WebM Project)
WinRAR 7.13 (64-bit) (HKLM\...\WinRAR archiver) (Version: 7.13.0 - win.rar GmbH)
Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org)
Xvid Video Codec (HKLM-x32\...\Xvid Video Codec 1.3.2) (Version: 1.3.2 - Xvid Team)

Chrome apps:
============
Google Photos (HKU\S-1-5-21-1825045012-3464344044-1076668188-1002\...\b3b3e4343a326294e66add37bdec1682) (Version: 1.0 - Google\Chrome)

Packages:
=========
EON TV -> C:\Program Files\WindowsApps\98A26B0E.EONTV_2.0.0.0_x64__zyn80ak6n67z0 [2024-12-14] (United Group B.V.)
Paket za lokalni interfejs za srpski -> C:\Program Files\WindowsApps\Microsoft.LanguageExperiencePacksr-Latn-RS_19041.62.226.0_neutral__8wekyb3d8bbwe [2024-12-15] (Microsoft Corporation)
PhotoScape X -> C:\Program Files\WindowsApps\MooiiTech.PhotoScapeX_4.2.1.0_x64__f5eddttrpssna [2025-03-12] (Mooii Tech)
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2587.9.0_x64__cv1g1gvanyjgm [2025-12-20] (WhatsApp Inc.) [Startup Task]
WinAppRuntime.Main.1.5 -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.5_5001.373.1736.0_x64__8wekyb3d8bbwe [2025-04-04] (Microsoft Corp.)
WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_8000.731.1532.0_x64__8wekyb3d8bbwe [2026-01-14] (Microsoft Corp.)
WinDbg -> C:\Program Files\WindowsApps\Microsoft.WinDbg_1.2511.21001.0_x64__8wekyb3d8bbwe [2025-12-04] (Microsoft Corporation)
Windows App Runtime DDLM 5001.373.1736.0-x6 -> C:\Program Files\WindowsApps\Microsoft.WinAppRuntime.DDLM.5001.373.1736.0-x6_5001.373.1736.0_x64__8wekyb3d8bbwe [2025-04-04] (Microsoft Corporation)
Windows App Runtime DDLM 5001.373.1736.0-x8 -> C:\Program Files\WindowsApps\Microsoft.WinAppRuntime.DDLM.5001.373.1736.0-x8_5001.373.1736.0_x86__8wekyb3d8bbwe [2025-04-04] (Microsoft Corporation)
Пакет за локални интерфејс за српски (Србија) -> C:\Program Files\WindowsApps\Microsoft.LanguageExperiencePacksr-Cyrl-RS_19041.52.178.0_neutral__8wekyb3d8bbwe [2024-12-15] (Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1825045012-3464344044-1076668188-1002_Classes\CLSID\{12a59fce-3578-d733-6683-5a79fb0e92ce}\localserver32 -> F:\handbrake-portable\app\HandBrake.exe (HandBrake Team) [File not signed]
CustomCLSID: HKU\S-1-5-21-1825045012-3464344044-1076668188-1002_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-1825045012-3464344044-1076668188-1002_Classes\CLSID\{14100442-9664-1407-2647-000000000000}\localserver32 -> "C:\Users\mtana\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-1825045012-3464344044-1076668188-1002_Classes\CLSID\{1a46400f-4c81-802a-c2c1-1e9a687a9340}\localserver32 -> "C:\Program Files\HandBrake\HandBrake.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-1825045012-3464344044-1076668188-1002_Classes\CLSID\{28A80003-18FD-411D-B0A3-3C81F618E22B}\InprocServer32 -> C:\Users\mtana\AppData\Local\Kingsoft\WPS Office\12.2.0.23155\office6\kwpsmenushellext64.dll => No File
CustomCLSID: HKU\S-1-5-21-1825045012-3464344044-1076668188-1002_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-1825045012-3464344044-1076668188-1002_Classes\CLSID\{7C360CF9-D475-44FC-8163-AD6C95CF5F5D}\InprocServer32 -> C:\Users\mtana\AppData\Roaming\Kingsoft\office6\msoaddins\x64\kmso2pdfplugins64_1.dll (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-1825045012-3464344044-1076668188-1002_Classes\CLSID\{89795E3E-F6B0-4D88-B1A0-BCC3DF1A682E}\InprocServer32 -> C:\Users\mtana\AppData\Roaming\Kingsoft\wps\addons\pool\win-i386\kmsosidebar_1.0.1.4\kmsosidebar64.dll => No File
CustomCLSID: HKU\S-1-5-21-1825045012-3464344044-1076668188-1002_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-1825045012-3464344044-1076668188-1002_Classes\CLSID\{F8686D90-7CB9-4D81-B596-69C3C408BA88}\InprocServer32 -> C:\Users\mtana\AppData\Roaming\Kingsoft\wps\addons\pool\win-i386\kmsosidebar_1.0.1.4\kmsosidebar64.dll => No File
ShellIconOverlayIdentifiers: [ tdpico] -> {c88d4dbb-d890-40b6-bcc7-bca43c1eb5ee} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCSafeFolderShlExt.dll [2025-09-05] (IObit CO., LTD -> IObit)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2025-12-24] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2025-12-24] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2025-12-24] (Adobe Inc. -> )
ContextMenuHandlers1: [360Zip] -> {9179176E-B763-3200-8500-BB1B90B3D5DE} => C:\Program Files (x86)\360\360zip\360ZipExt64.dll [2021-01-05] (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2025-12-24] (Adobe Inc. -> )
ContextMenuHandlers1: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2025-07-23] (IObit CO., LTD -> IObit)
ContextMenuHandlers1: [BRUMenuHandler] -> {5D924130-4CB1-11DB-B0DE-0800200C9A66} => C:\Program Files\Bulk Rename Utility\BRUhere64.dll [2025-01-07] (TGRMN Software (ACEBROOK PTY LTD) -> Bulk Rename Utility)
ContextMenuHandlers1: [iTop Desktop Manager] -> {609ED1DF-1540-4F2E-BAAC-C2C9CDB64C00} => C:\PROGRA~1\ITOPEA~1\IEDMenu.dll -> No File
ContextMenuHandlers1: [SD360] -> {086F171D-5ED1-4ED2-B736-CFF3AD6A128E} => C:\Program Files (x86)\360\Total Security\MenuEx64.dll [2023-03-15] (Beijing Qihu Technology Co., Ltd. -> )
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2025-07-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2025-07-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2025-07-23] (IObit CO., LTD -> IObit)
ContextMenuHandlers2: [BRUMenuHandler] -> {5D924130-4CB1-11DB-B0DE-0800200C9A66} => C:\Program Files\Bulk Rename Utility\BRUhere64.dll [2025-01-07] (TGRMN Software (ACEBROOK PTY LTD) -> Bulk Rename Utility)
ContextMenuHandlers2: [iTop Desktop Manager] -> {609ED1DF-1540-4F2E-BAAC-C2C9CDB64C00} => C:\PROGRA~1\ITOPEA~1\IEDMenu.dll -> No File
ContextMenuHandlers3: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2025-07-23] (IObit CO., LTD -> IObit)
ContextMenuHandlers4: [360Zip] -> {9179176E-B763-3200-8500-BB1B90B3D5DE} => C:\Program Files (x86)\360\360zip\360ZipExt64.dll [2021-01-05] (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
ContextMenuHandlers4: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2025-07-23] (IObit CO., LTD -> IObit)
ContextMenuHandlers4: [BRUMenuHandler] -> {5D924130-4CB1-11DB-B0DE-0800200C9A66} => C:\Program Files\Bulk Rename Utility\BRUhere64.dll [2025-01-07] (TGRMN Software (ACEBROOK PTY LTD) -> Bulk Rename Utility)
ContextMenuHandlers4: [iTop Desktop Manager] -> {609ED1DF-1540-4F2E-BAAC-C2C9CDB64C00} => C:\PROGRA~1\ITOPEA~1\IEDMenu.dll -> No File
ContextMenuHandlers4: [SD360] -> {086F171D-5ED1-4ED2-B736-CFF3AD6A128E} => C:\Program Files (x86)\360\Total Security\MenuEx64.dll [2023-03-15] (Beijing Qihu Technology Co., Ltd. -> )
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_07c8a2a678d97633\igfxDTCM.dll [2020-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [iTop Desktop Manager] -> {609ED1DF-1540-4F2E-BAAC-C2C9CDB64C00} => C:\PROGRA~1\ITOPEA~1\IEDMenu.dll -> No File
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2025-12-24] (Adobe Inc. -> )
ContextMenuHandlers6: [iTop Desktop Manager] -> {609ED1DF-1540-4F2E-BAAC-C2C9CDB64C00} => C:\PROGRA~1\ITOPEA~1\IEDMenu.dll -> No File
ContextMenuHandlers6: [SD360] -> {086F171D-5ED1-4ED2-B736-CFF3AD6A128E} => C:\Program Files (x86)\360\Total Security\MenuEx64.dll [2023-03-15] (Beijing Qihu Technology Co., Ltd. -> )
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2025-07-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2025-07-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1_S-1-5-21-1825045012-3464344044-1076668188-1002: [ kwpsshellext] -> {28A80003-18FD-411D-B0A3-3C81F618E22B} => C:\Users\mtana\AppData\Local\Kingsoft\WPS Office\12.2.0.23155\office6\kwpsmenushellext64.dll -> No File
ContextMenuHandlers4_S-1-5-21-1825045012-3464344044-1076668188-1002: [ kwpsshellext] -> {28A80003-18FD-411D-B0A3-3C81F618E22B} => C:\Users\mtana\AppData\Local\Kingsoft\WPS Office\12.2.0.23155\office6\kwpsmenushellext64.dll -> No File

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [VIDC.X264] => C:\Windows\system32\x264vfw64.dll [3799552 2017-07-30] (x264vfw project) [File not signed]
HKLM\...\Drivers32: [VIDC.LAGS] => C:\Windows\system32\lagarith.dll [148992 2011-12-07] () [File not signed]
HKLM\...\Drivers32: [vidc.XVID] => C:\Windows\system32\xvidvfw.dll [310784 2019-12-28] () [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\system32\ac3acm.acm [180736 2012-07-21] (fccHandler) [File not signed]
HKLM\...\Drivers32: [msacm.l3acm] => C:\Windows\SysWOW64\l3codecp.acm [189440 2019-12-07] (Microsoft Windows -> Fraunhofer Institut Integrierte Schaltungen IIS)
HKLM\...\Drivers32: [VIDC.X264] => C:\Windows\SysWOW64\x264vfw.dll [3850240 2017-07-30] (x264vfw project) [File not signed]
HKLM\...\Drivers32: [VIDC.LAGS] => C:\Windows\SysWOW64\lagarith.dll [216064 2011-12-07] () [File not signed]
HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [284160 2019-12-28] () [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\SysWOW64\ac3acm.acm [122880 2012-07-21] (fccHandler) [File not signed]

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox приватно прегледање.lnk -> C:\Program Files\Mozilla Firefox\private_browsing.exe (Mozilla Corporation) <==== Cyrillic
ShortcutWithArgument: C:\Users\mtana\OneDrive\Desktop\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --load-extension=C:\ProgramData\Direct\swapper --disable-extensions-except=C:\ProgramData\Direct\swapper
ShortcutWithArgument: C:\Users\mtana\OneDrive\Desktop\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) -> --load-extension=C:\ProgramData\Direct\swapper --disable-extensions-except=C:\ProgramData\Direct\swapper
ShortcutWithArgument: C:\Users\mtana\Desktop\precice\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --load-extension=C:\ProgramData\Direct\swapper --disable-extensions-except=C:\ProgramData\Direct\swapper
ShortcutWithArgument: C:\Users\mtana\Desktop\precice\Google Photos.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=ncmjhecbjeaamljdfahankockkkdmedg
ShortcutWithArgument: C:\Users\mtana\Desktop\precice\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) -> --load-extension=C:\ProgramData\Direct\swapper --disable-extensions-except=C:\ProgramData\Direct\swapper
ShortcutWithArgument: C:\Users\mtana\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_ncmjhecbjeaamljdfahankockkkdmedg\Google Photos.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=ncmjhecbjeaamljdfahankockkkdmedg
ShortcutWithArgument: C:\Users\mtana\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Photos.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=ncmjhecbjeaamljdfahankockkkdmedg
ShortcutWithArgument: C:\Users\mtana\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --load-extension=C:\ProgramData\Direct\swapper --disable-extensions-except=C:\ProgramData\Direct\swapper
ShortcutWithArgument: C:\Users\mtana\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) -> --load-extension=C:\ProgramData\Direct\swapper --disable-extensions-except=C:\ProgramData\Direct\swapper
ShortcutWithArgument: C:\Users\mtana\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --load-extension=C:\ProgramData\Direct\swapper --disable-extensions-except=C:\ProgramData\Direct\swapper
ShortcutWithArgument: C:\Users\mtana\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Edge (2).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) -> --load-extension=C:\ProgramData\Direct\swapper --disable-extensions-except=C:\ProgramData\Direct\swapper
ShortcutWithArgument: C:\Users\mtana\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) -> --load-extension=C:\ProgramData\Direct\swapper --disable-extensions-except=C:\ProgramData\Direct\swapper

==================== Loaded Modules (Whitelisted) =============

2024-12-14 13:38 - 2007-09-02 14:57 - 000069632 _____ () [File not signed] C:\Program Files (x86)\RocketDock\RocketDock.dll
2024-05-11 00:15 - 2024-05-11 00:15 - 020192256 _____ () [File not signed] C:\Program Files\MariaDB\MariaDB 10.0\bin\server.dll
2024-12-16 21:09 - 2024-12-16 21:09 - 000000000 ___JL (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\Root\Office16\AppVIsvSubsystems64.dll
2024-12-16 21:09 - 2024-12-16 21:09 - 000000000 ___JL (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\Root\Office16\c2r64.dll
2024-12-20 18:24 - 2025-03-02 12:04 - 000893952 _____ (Tabibito Technology) [File not signed] C:\Program Files (x86)\K-Lite Codec Pack\Icaros\64-bit\IcarosPropertyHandler.dll
2019-05-06 01:12 - 2019-05-06 01:12 - 000524288 _____ (Thomas Maierhofer) [File not signed] C:\Program Files (x86)\Korektor\Hunspellx64.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = [Link mogu videti samo ulogovani korisnici]
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = [Link mogu videti samo ulogovani korisnici]
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2024-12-16] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_471\bin\ssv.dll [2025-09-26] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_471\bin\jp2ssv.dll [2025-09-26] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2024-12-16] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: IObit Surfing Protection -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll [2025-07-23] (IObit CO., LTD -> IObit)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-12-16] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-12-16] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-12-16] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-12-16] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-12-16] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-12-16] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-12-16] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-12-16] (Microsoft Corporation -> Microsoft Corporation)

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 89.216.1.30 - 89.216.1.40
Windows Firewall is enabled.

Network Binding:
=============
Ethernet: Realtek PCIe GbE Family Controller -> rt640x64.sys

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\java8path;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\iCLS\;C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;c:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;c:\Program Files\Intel\Intel(R) Management Engine Components\DAL;c:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;c:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\dotnet\;C:\Program Files (x86)\Universal Extractor;C:\Program Files (x86)\Universal Extractor\bin;C:\Program Files (x86)\MKVtoolnix
HKU\S-1-5-21-1825045012-3464344044-1076668188-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\mtana\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\System32\svhost.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\System32\logui.exe


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "SecurityHealth"
HKLM\...\StartupApproved\Run32: => "LWS"
HKLM\...\StartupApproved\Run32: => "Samsung PanelMgr"
HKLM\...\StartupApproved\Run32: => "Adobe Acrobat Speed Launcher"
HKU\S-1-5-21-1825045012-3464344044-1076668188-1002\...\StartupApproved\StartupFolder: => "Logitech . Product Registration.lnk"
HKU\S-1-5-21-1825045012-3464344044-1076668188-1002\...\StartupApproved\Run: => "Bright VPN"
HKU\S-1-5-21-1825045012-3464344044-1076668188-1002\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_F381B72FEA0805685FFC74BA4E458692"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{3050997A-6115-4801-A7AF-C534E4109943}] => (Allow) C:\Program Files (x86)\360\Total Security\softmgr\360InstantSetup.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{558159BE-C2E0-4766-A9F8-2C6E31294E64}] => (Allow) C:\Program Files (x86)\360\Total Security\softmgr\360InstantSetup.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{B4A1B188-3A92-456B-A6FE-536BDB94D14C}] => (Allow) C:\Program Files (x86)\360\Total Security\LiveUpdate360.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{2D5B8D08-895C-43B6-9512-5DCB86B9AAA8}] => (Allow) C:\Program Files (x86)\360\Total Security\LiveUpdate360.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{065E35F7-69A7-4D97-941C-28535A4BEBE7}] => (Allow) C:\Program Files (x86)\360\Total Security\360TsLiveUpd.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{D9315DC5-2245-4210-B1EB-6757CEED0E57}] => (Allow) C:\Program Files (x86)\360\Total Security\360TsLiveUpd.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{5E9898A4-0018-4E10-9B11-59776D9554A9}] => (Allow) C:\Users\mtana\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Limited)
FirewallRules: [{6D5C87C5-9C41-4CEB-B17B-B5B65D5EE9B9}] => (Allow) C:\Users\mtana\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Limited)
FirewallRules: [{F08B50FC-A8A1-48BE-9B66-103FE2FF48F4}] => (Allow) C:\Program Files\ReasonLabs\Common\Client\v1.6.0\rsAppUI.exe (Reason Cybersecurity Inc. -> Reason Cybersecurity Ltd.)
FirewallRules: [TCP Query User{FCD72E5C-F76A-438E-A1AD-73AFDECDC258}C:\users\mtana\appdata\local\viber\viber.exe] => (Allow) C:\users\mtana\appdata\local\viber\viber.exe (Viber Media S.a r.l. -> Viber Media S.à r.l.)
FirewallRules: [UDP Query User{AF69E4DE-8FFF-4556-9698-245F5C22882D}C:\users\mtana\appdata\local\viber\viber.exe] => (Allow) C:\users\mtana\appdata\local\viber\viber.exe (Viber Media S.a r.l. -> Viber Media S.à r.l.)
FirewallRules: [{DC784F5B-D4D8-4B3E-BC00-C7771F5222F3}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{729ED0A1-DDC5-42DC-81B1-1C84452B5615}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{F564B10A-2BAF-4EB5-A208-1E829DFDB2DB}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{597E3608-E03E-4728-82C5-7FBC2AB5A6FB}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{03003AF5-4C60-4307-AD53-8FDA9CBC575B}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C848ED10-AF07-4E35-9EF7-B84373AD0126}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{75E5A61E-72A6-4472-9DFE-8BB0FA18F4C1}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{B727C9D5-96DE-4653-B5E0-D56E0BE92C36}] => (Allow) C:\Users\mtana\AppData\Local\360extremebrowser\Chrome\Application\22.3.5068.64\installer\ceup.exe => No File
FirewallRules: [{07096B0C-89F3-4385-ABA1-EB23EDFE7C1E}] => (Allow) C:\Users\mtana\AppData\Local\360extremebrowser\Chrome\Application\22.3.5068.64\installer\ceup.exe => No File
FirewallRules: [{800B8B3E-C101-4800-A4A4-8F749E9D27CF}] => (Allow) C:\Users\mtana\AppData\Local\360extremebrowser\Chrome\Application\22.3.5068.64\installer\360mlupdate.exe => No File
FirewallRules: [{34BFE1CA-3379-495F-AC0B-AADC787C8BC9}] => (Allow) C:\Users\mtana\AppData\Local\360extremebrowser\Chrome\Application\22.3.5068.64\installer\360mlupdate.exe => No File
FirewallRules: [{959F9FFD-DF68-450C-B4B0-3EFCBFA2D04F}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> Lenovo)
FirewallRules: [{EA73D497-E6E7-430B-BBEC-32A0C318AA1F}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> Lenovo)
FirewallRules: [{F29DED16-EA84-459F-9506-95E2AA840A23}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.134.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{9607121F-A037-4F08-AB32-34D089C9573D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.134.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{E309500A-A9A5-4ADF-BD5D-24125B2D0151}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.134.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{DFD4A655-3F54-47E3-8C87-BE4F8FAA7854}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.134.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{517CDEF3-B1EB-434B-8C37-B6A0DAF4168F}] => (Allow) C:\Program Files (x86)\360\Total Security\360TsLiveUpd.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{C3E7E910-6629-48A5-92B3-02A7BE5FCF38}] => (Allow) C:\Program Files (x86)\360\Total Security\360TsLiveUpd.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [TCP Query User{70EF919E-11C0-4ABB-8F21-5657F9E26DCA}C:\users\mtana\appdata\local\360extremebrowser\chrome\application\360extremebrowser.exe] => (Block) C:\users\mtana\appdata\local\360extremebrowser\chrome\application\360extremebrowser.exe => No File
FirewallRules: [UDP Query User{649D5AAF-D39D-4FF2-B579-1F81B3FFA5E5}C:\users\mtana\appdata\local\360extremebrowser\chrome\application\360extremebrowser.exe] => (Block) C:\users\mtana\appdata\local\360extremebrowser\chrome\application\360extremebrowser.exe => No File
FirewallRules: [TCP Query User{E9FCA8D2-660F-4862-8105-05CEAD7C6D0F}C:\users\mtana\appdata\local\360extremebrowser\chrome\application\22.3.5068.64\installer\360mlupdate.exe] => (Block) C:\users\mtana\appdata\local\360extremebrowser\chrome\application\22.3.5068.64\installer\360mlupdate.exe => No File
FirewallRules: [UDP Query User{52BE76B2-C6A8-4E3D-8351-09774B46A9B1}C:\users\mtana\appdata\local\360extremebrowser\chrome\application\22.3.5068.64\installer\360mlupdate.exe] => (Block) C:\users\mtana\appdata\local\360extremebrowser\chrome\application\22.3.5068.64\installer\360mlupdate.exe => No File
FirewallRules: [{056DB7B2-6558-4D7A-80E6-25C4DCED0431}] => (Allow) C:\Program Files (x86)\360\Total Security\LiveUpdate360.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{7E12FE1C-039E-4272-8E67-7103E8726859}] => (Allow) C:\Program Files (x86)\360\Total Security\LiveUpdate360.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [TCP Query User{1A23CEE8-EE9E-428E-8B9C-4689AB8BE74F}C:\users\mtana\appdata\local\360extremebrowser\chrome\application\22.3.5076.64\installer\360mlupdate.exe] => (Allow) C:\users\mtana\appdata\local\360extremebrowser\chrome\application\22.3.5076.64\installer\360mlupdate.exe => No File
FirewallRules: [UDP Query User{81157809-5521-420C-B7B0-E1FFD0432792}C:\users\mtana\appdata\local\360extremebrowser\chrome\application\22.3.5076.64\installer\360mlupdate.exe] => (Allow) C:\users\mtana\appdata\local\360extremebrowser\chrome\application\22.3.5076.64\installer\360mlupdate.exe => No File
FirewallRules: [TCP Query User{464D2C54-E0AB-461B-B605-6096A5F68B97}C:\users\mtana\appdata\local\programs\lnv\stremio-4\stremio-runtime.exe] => (Allow) C:\users\mtana\appdata\local\programs\lnv\stremio-4\stremio-runtime.exe (Smart Code OOD -> Node.js) [File not signed]
FirewallRules: [UDP Query User{A7CCAF4B-2D72-4006-985A-42D7EC947425}C:\users\mtana\appdata\local\programs\lnv\stremio-4\stremio-runtime.exe] => (Allow) C:\users\mtana\appdata\local\programs\lnv\stremio-4\stremio-runtime.exe (Smart Code OOD -> Node.js) [File not signed]
FirewallRules: [TCP Query User{2D766A38-AC90-41E9-BAF7-063F2E5F8B3D}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe => No File
FirewallRules: [UDP Query User{DD1B4811-5F19-4ACB-A527-30E69EFD9BC2}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe => No File
FirewallRules: [{ACDCADE2-3BCF-411E-8A1D-31D01A738F67}] => (Allow) C:\Windows\twain_32\Samsung\ScanMgr.exe (Samsung Electronics CO., LTD. -> Samsung Electronics) [File not signed]
FirewallRules: [{C281F490-D221-472F-BE6A-34BB9E97792C}] => (Allow) C:\Windows\twain_32\Samsung\ScanMgr.exe (Samsung Electronics CO., LTD. -> Samsung Electronics) [File not signed]
FirewallRules: [{2D5CAE04-9362-42FF-AB61-F729C9504660}] => (Allow) C:\Windows\twain_32\Samsung\SCX3200\Scan2Pc.exe () [File not signed]
FirewallRules: [{F050643D-397A-4D82-8AA8-161A8BFD68DC}] => (Allow) C:\Windows\twain_32\Samsung\SCX3200\Scan2Pc.exe () [File not signed]
FirewallRules: [{EE7412DC-5F03-423D-A316-B022AB224965}] => (Allow) C:\Windows\twain_32\Samsung\SCX3200\Sscan2io.exe () [File not signed]
FirewallRules: [{4442C02E-EE97-494E-B1F9-DB727F67089B}] => (Allow) C:\Windows\twain_32\Samsung\SCX3200\Sscan2io.exe () [File not signed]
FirewallRules: [TCP Query User{0E0FAAEC-13F2-4B9C-8024-A8ECF67917B6}C:\users\mtana\appdata\local\programs\lnv\stremio-4\stremio-runtime.exe] => (Allow) C:\users\mtana\appdata\local\programs\lnv\stremio-4\stremio-runtime.exe (Smart Code OOD -> Node.js) [File not signed]
FirewallRules: [UDP Query User{107BBCD0-9EC1-426E-A13E-13357440C597}C:\users\mtana\appdata\local\programs\lnv\stremio-4\stremio-runtime.exe] => (Allow) C:\users\mtana\appdata\local\programs\lnv\stremio-4\stremio-runtime.exe (Smart Code OOD -> Node.js) [File not signed]
FirewallRules: [{1452A1C1-0B30-4A32-BD66-207392AA450B}] => (Allow) C:\Program Files\MariaDB\MariaDB 10.0\bin\mysqld.exe () [File not signed]
FirewallRules: [{D8CA7B11-68EE-4695-ABE6-6DB695D078DB}] => (Allow) C:\Program Files (x86)\Team MediaPortal\MediaPortal TV Server\TvService.exe => No File
FirewallRules: [{9A99F9C4-3DC2-44BD-A6ED-85182584F06B}] => (Allow) C:\Program Files (x86)\Team MediaPortal\MediaPortal TV Server\TvService.exe => No File
FirewallRules: [{17EEB5CC-C11B-4D9A-B3C6-8236036D5F78}] => (Allow) C:\Program Files (x86)\Team MediaPortal\MediaPortal TV Server\SetupTv.exe => No File
FirewallRules: [{4A8B155A-CDE4-4E51-BE9D-E7C4DFCF8227}] => (Allow) C:\Program Files (x86)\Team MediaPortal\MediaPortal TV Server\SetupTv.exe => No File
FirewallRules: [{EAB96503-E572-4F9A-A5AB-13EE1DA504B1}] => (Allow) C:\Program Files (x86)\Team MediaPortal\MediaPortal TV Server\WatchDogService.exe => No File
FirewallRules: [{D4EAB5DA-03EF-4359-AB4A-7A3F2C6C83C4}] => (Allow) C:\Program Files (x86)\Team MediaPortal\MediaPortal TV Server\WatchDogService.exe => No File
FirewallRules: [{22996E74-6093-40BC-A364-32D89B08AF12}] => (Allow) C:\Program Files (x86)\Team MediaPortal\MediaPortal\MediaPortal.exe => No File
FirewallRules: [{C7954F7B-DE21-4C0F-8BA0-FEF14FE97134}] => (Allow) C:\Program Files (x86)\Team MediaPortal\MediaPortal\MediaPortal.exe => No File
FirewallRules: [{4F699C6B-C12E-45A0-B3DB-34B6DE0ED2AC}] => (Allow) C:\Program Files (x86)\Team MediaPortal\MediaPortal\WatchDog.exe => No File
FirewallRules: [{3D16966D-6967-4282-B795-2AF86E27DBE9}] => (Allow) C:\Program Files (x86)\Team MediaPortal\MediaPortal\WatchDog.exe => No File
FirewallRules: [{068BF5D4-A262-473F-919F-4894C3B76492}] => (Allow) LPort=3306
FirewallRules: [TCP Query User{0D188B5A-63D4-45AB-9331-78410DF35CAA}C:\program files (x86)\team mediaportal\mp2-servicemonitor\mp2-servicemonitor.exe] => (Allow) C:\program files (x86)\team mediaportal\mp2-servicemonitor\mp2-servicemonitor.exe => No File
FirewallRules: [UDP Query User{E432A54E-79D5-446A-8156-3D2403DDA2A7}C:\program files (x86)\team mediaportal\mp2-servicemonitor\mp2-servicemonitor.exe] => (Allow) C:\program files (x86)\team mediaportal\mp2-servicemonitor\mp2-servicemonitor.exe => No File
FirewallRules: [TCP Query User{887CA174-B4FF-4E7E-A413-CA691EF24502}C:\program files (x86)\team mediaportal\mp2-server\plugins\slimtv.service3\setuptv.exe] => (Allow) C:\program files (x86)\team mediaportal\mp2-server\plugins\slimtv.service3\setuptv.exe => No File
FirewallRules: [UDP Query User{A595E1ED-5F82-4B01-9839-23BD478F531E}C:\program files (x86)\team mediaportal\mp2-server\plugins\slimtv.service3\setuptv.exe] => (Allow) C:\program files (x86)\team mediaportal\mp2-server\plugins\slimtv.service3\setuptv.exe => No File
FirewallRules: [TCP Query User{AB3B801B-709F-48CD-9CF4-14CB5FF7034D}C:\program files (x86)\team mediaportal\mp2-client\mp2-client.exe] => (Allow) C:\program files (x86)\team mediaportal\mp2-client\mp2-client.exe => No File
FirewallRules: [UDP Query User{DC2E2F70-9D75-41DB-9796-FF9A95F23B32}C:\program files (x86)\team mediaportal\mp2-client\mp2-client.exe] => (Allow) C:\program files (x86)\team mediaportal\mp2-client\mp2-client.exe => No File
FirewallRules: [TCP Query User{86ED9139-0B4A-49D3-86FB-73C93B481F61}C:\users\mtana\appdata\local\360extremebrowser\chrome\application\22.3.5076.64\installer\360mlupdate.exe] => (Allow) C:\users\mtana\appdata\local\360extremebrowser\chrome\application\22.3.5076.64\installer\360mlupdate.exe => No File
FirewallRules: [UDP Query User{FB903C0C-1A4C-41E8-B9FC-3F87BCACB692}C:\users\mtana\appdata\local\360extremebrowser\chrome\application\22.3.5076.64\installer\360mlupdate.exe] => (Allow) C:\users\mtana\appdata\local\360extremebrowser\chrome\application\22.3.5076.64\installer\360mlupdate.exe => No File
FirewallRules: [{D603FAB5-6124-482F-BA71-4C75D9EA4028}] => (Allow) C:\Program Files (x86)\360\Total Security\Utils\360AdvToolExecutor.exe (QIHU 360 SOFTWARE CO. LIMITED -> )
FirewallRules: [{83913B78-6670-4875-9F93-001E9847FD15}] => (Allow) C:\Program Files (x86)\360\Total Security\Utils\360AdvToolExecutor.exe (QIHU 360 SOFTWARE CO. LIMITED -> )
FirewallRules: [{FFF98A7F-0E86-47D5-8C61-C2F6079EC110}] => (Allow) C:\Program Files (x86)\360\Total Security\softmgr\360InstantSetup.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{604EE3C8-565B-4864-B28F-02550D3B276B}] => (Allow) C:\Program Files (x86)\360\Total Security\softmgr\360InstantSetup.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [TCP Query User{A1516D39-39E2-4E61-94FF-6E6B91120B2A}E:\d\portabl programi\brave-portable\app\brave.exe] => (Block) E:\d\portabl programi\brave-portable\app\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [UDP Query User{E4F45BF3-BDC7-4B50-9962-B0CFEDD4F87E}E:\d\portabl programi\brave-portable\app\brave.exe] => (Block) E:\d\portabl programi\brave-portable\app\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [{219652BC-2293-4AF5-94B4-5E3CEA1B1C56}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{5C6368F8-7F65-4565-A16C-824B2C2B2F7E}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [TCP Query User{7BBE76A1-EBA0-47D3-AE2D-03A5CC4F8D1A}E:\d\portabl programi\brave-portable\app\brave.exe] => (Block) E:\d\portabl programi\brave-portable\app\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [UDP Query User{F8EBFA1C-2282-4F76-80DB-BA2F238AFC68}E:\d\portabl programi\brave-portable\app\brave.exe] => (Block) E:\d\portabl programi\brave-portable\app\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [TCP Query User{628B0A34-E484-455A-9E99-410E6BC183B7}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe => No File
FirewallRules: [UDP Query User{3DC7C4AF-60DF-4AA4-9C0B-750FDF80F36E}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe => No File
FirewallRules: [{C8E151F7-1970-4BFD-88E0-9B1F38EACBF5}] => (Allow) C:\Users\mtana\AppData\Local\360extremebrowser\Chrome\Application\22.3.5116.64\installer\ceup.exe => No File
FirewallRules: [{6E689BB3-C4E2-4656-A7A6-F0DCC4AE2FB4}] => (Allow) C:\Users\mtana\AppData\Local\360extremebrowser\Chrome\Application\22.3.5116.64\installer\ceup.exe => No File
FirewallRules: [TCP Query User{3A30CB0C-4F94-45C7-841C-9589DCB41222}C:\program files\flip pdf plus pro\flip pdf plus pro.exe] => (Allow) C:\program files\flip pdf plus pro\flip pdf plus pro.exe => No File
FirewallRules: [UDP Query User{165D9E26-8D49-4015-AF43-169B1CB75CC1}C:\program files\flip pdf plus pro\flip pdf plus pro.exe] => (Allow) C:\program files\flip pdf plus pro\flip pdf plus pro.exe => No File
FirewallRules: [{D5BAFB25-1A44-4811-9490-164D8FCF2422}] => (Allow) C:\Users\mtana\AppData\Local\360extremebrowser\Chrome\Application\22.3.5122.64\installer\ceup.exe => No File
FirewallRules: [{A126E416-41C9-4C4B-A57D-AE92A5E61BE7}] => (Allow) C:\Users\mtana\AppData\Local\360extremebrowser\Chrome\Application\22.3.5122.64\installer\ceup.exe => No File
FirewallRules: [{DBF68B6B-A541-4C4D-846F-BB02078359D1}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{495F9F6C-D9E8-4316-B06D-F9FFEFCE7C23}C:\users\mtana\desktop\myphoneexplorer portable\myphoneexplorer portable.exe] => (Allow) C:\users\mtana\desktop\myphoneexplorer portable\myphoneexplorer portable.exe => No File
FirewallRules: [UDP Query User{F36C0305-B661-4217-A668-E7262466AED7}C:\users\mtana\desktop\myphoneexplorer portable\myphoneexplorer portable.exe] => (Allow) C:\users\mtana\desktop\myphoneexplorer portable\myphoneexplorer portable.exe => No File
FirewallRules: [{92B63568-E763-4653-92EE-7BB5922394E9}] => (Allow) C:\Users\mtana\AppData\Local\360extremebrowser\Chrome\Application\360extremebrowser.exe => No File
FirewallRules: [{6AEB15A5-C6B8-4D1F-8DD2-0718C43EAAD4}] => (Allow) C:\Users\mtana\AppData\Local\360extremebrowser\Chrome\Application\360extremebrowser.exe => No File
FirewallRules: [{EE3CD901-023F-4FE8-B678-85825CD069E6}] => (Allow) C:\Users\mtana\AppData\Local\360extremebrowser\Chrome\Application\22.3.5122.64\installer\360mlupdate.exe => No File
FirewallRules: [{67AC08AF-DCF6-4DC1-A5A1-A7A797831922}] => (Allow) C:\Users\mtana\AppData\Local\360extremebrowser\Chrome\Application\22.3.5122.64\installer\360mlupdate.exe => No File
FirewallRules: [TCP Query User{4788C3FA-456D-4DFC-8FE3-79FB418B1970}C:\users\mtana\appdata\local\programs\lnv\stremio-5\stremio-runtime.exe] => (Allow) C:\users\mtana\appdata\local\programs\lnv\stremio-5\stremio-runtime.exe => No File
FirewallRules: [UDP Query User{4F06CF45-74BE-4602-A066-CB29131FDCC6}C:\users\mtana\appdata\local\programs\lnv\stremio-5\stremio-runtime.exe] => (Allow) C:\users\mtana\appdata\local\programs\lnv\stremio-5\stremio-runtime.exe => No File
FirewallRules: [TCP Query User{6A937722-DF88-4B18-B420-529B9947EF0F}C:\users\mtana\desktop\commonfiles\java\bin\javaw.exe] => (Allow) C:\users\mtana\desktop\commonfiles\java\bin\javaw.exe => No File
FirewallRules: [UDP Query User{A4242CDC-9DFB-4AA9-8126-BC2AD4A3FF3B}C:\users\mtana\desktop\commonfiles\java\bin\javaw.exe] => (Allow) C:\users\mtana\desktop\commonfiles\java\bin\javaw.exe => No File
FirewallRules: [{3FEAA24C-3640-4F6E-82F3-F5E7961AE9F1}] => (Allow) C:\Users\mtana\MediaGet2\mediaget.exe => No File
FirewallRules: [{4EF86AF9-26AB-4123-8C24-CF07FB188D1D}] => (Allow) C:\Users\mtana\MediaGet2\mediaget.exe => No File
FirewallRules: [{D97B1289-0421-41BE-86F2-01F326B8670F}] => (Allow) C:\Users\mtana\MediaGet2\QtWebEngineProcess.exe => No File
FirewallRules: [{1D281684-3AC3-433C-9B58-12B8E19C9320}] => (Allow) C:\Users\mtana\MediaGet2\QtWebEngineProcess.exe => No File
FirewallRules: [{7A5F5E3B-855F-44F2-B024-2B9F03954564}] => (Allow) E:\D\Portabl programi\Malwarebytes_Anti-Malware_v_2.0.3.1025_Portable\App\Malwarebytes\mbam.exe (Malwarebytes Corporation -> Malwarebytes Corporation)
FirewallRules: [{91D7470F-CC24-43E9-ADFD-9E92F5C292E7}] => (Allow) E:\D\Portabl programi\Malwarebytes_Anti-Malware_v_2.0.3.1025_Portable\App\Malwarebytes\mbam.exe (Malwarebytes Corporation -> Malwarebytes Corporation)
FirewallRules: [{36EF1E11-CBA9-4A00-BB3E-CADBBB866C30}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{C75548D9-0D23-4BA9-8C98-8EE7E4FE85B6}] => (Allow) C:\Program Files (x86)\Vidmore\Vidmore Screen Recorder\ScreencastV6.exe (RayShare Co., Ltd -> )
FirewallRules: [{8DAC7B45-2F5B-448C-90F0-F7792E8EEF20}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH)
FirewallRules: [{69E3E59A-9AA7-45BE-9A7C-B5A8EE514197}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH)
FirewallRules: [{F681FD99-9292-48C0-8291-AA6A60DAB51F}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH)
FirewallRules: [{2A62E0C0-6CEB-4995-AC73-FE561878E430}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH)
FirewallRules: [{3B237DB4-0031-4D2F-9A20-88AC5CA5B294}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH)
FirewallRules: [{6374681B-0305-4876-B481-5462F1E55CDD}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH)
FirewallRules: [{5A26E612-C8FF-492D-A29B-F368A60BAD53}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{637A9952-4779-4757-9F89-3234E55FFF59}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)

==================== Restore Points =========================

08-01-2026 12:10:27 Scheduled Checkpoint
16-01-2026 20:40:40 Scheduled Checkpoint
17-01-2026 17:45:11 Removed Bonjour
17-01-2026 17:46:02 Removed Bonjour
18-01-2026 18:20:41 Restore Point Created by FRST
18-01-2026 22:46:50 Restore Point Created by FRST

==================== Faulty Device Manager Devices ============
Name: PCI Memory Controller
Description: PCI Memory Controller
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: ========================

Application errors:
==================
Error: (01/18/2026 10:46:49 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied..This is often caused by incorrect security settings in either the writer or requestor process.


Operation:
Gathering Writer Data

Context:
Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
Writer Name: System Writer
Writer Instance ID: {b2f1d885-7509-4153-b59d-48a09425c252}

Error: (01/18/2026 06:28:58 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program SystemSettings.exe version 10.0.19041.5247 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 25fc

Start Time: 01dc889fa54923e5

Termination Time: 4294967295

Application Path: C:\Windows\ImmersiveControlPanel\SystemSettings.exe

Report Id: 702ec532-3bdf-485b-8443-d16cda0a7dbb

Faulting package full name: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy

Faulting package-relative application ID: microsoft.windows.immersivecontrolpanel

Hang type: Cross-thread

Error: (01/18/2026 06:27:02 PM) (Source: SecurityCenter) (EventID: 17) (User: )
Description: Security Center failed to validate caller with error %1.

Error: (01/18/2026 06:20:41 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface. hr = 0x80070005, Access is denied..This is often caused by incorrect security settings in either the writer or requestor process.


Operation:
Gathering Writer Data

Context:
Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
Writer Name: System Writer
Writer Instance ID: {d7cf6e06-12cc-4b76-a5ef-6ea746ae55b4}

Error: (01/18/2026 06:01:23 PM) (Source: SecurityCenter) (EventID: 17) (User: )
Description: Security Center failed to validate caller with error %1.

Error: (01/18/2026 11:30:35 AM) (Source: SecurityCenter) (EventID: 17) (User: )
Description: Security Center failed to validate caller with error %1.

Error: (01/18/2026 11:22:18 AM) (Source: SecurityCenter) (EventID: 17) (User: )
Description: Security Center failed to validate caller with error %1.

Error: (01/18/2026 08:41:06 AM) (Source: SecurityCenter) (EventID: 17) (User: )
Description: Security Center failed to validate caller with error %1.


System errors:
=============
Error: (01/18/2026 06:27:00 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update a Secure Boot variable with error (-2147020471 = Secure Boot is not enabled on this machine.). For more information, please see [Link mogu videti samo ulogovani korisnici]

Error: (01/18/2026 06:26:26 PM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-AFDFS7Q)
Description: DCOM got error "1053" attempting to start the service GoogleUpdaterService144.0.7547.4 with arguments "--com-service" in order to run the server:
{8018F647-BF07-55BB-82BE-A2D7049F7CE4}

Error: (01/18/2026 06:26:26 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Google updater service (GoogleUpdaterService144.0.7547.4) service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion.

Error: (01/18/2026 06:26:26 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Google updater service (GoogleUpdaterService144.0.7547.4) service to connect.

Error: (01/18/2026 06:26:26 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The System Update service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion.

Error: (01/18/2026 06:26:26 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the System Update service to connect.

Error: (01/18/2026 06:25:03 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.

Error: (01/18/2026 06:24:55 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.


CodeIntegrity:
===============
Date: 2026-01-18 18:27:02
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\360\Total Security\safemon\WscReg.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\360\Total Security\360Base.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2026-01-17 17:42:53
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Windows signing level requirements.


==================== Memory info ===========================

BIOS: LENOVO M16KT71A 09/14/2023
Motherboard: LENOVO 3102
Processor: Intel(R) Core(TM) i5-7400 CPU @ 3.00GHz
Percentage of memory in use: 80%
Total physical RAM: 8098.81 MB
Available physical RAM: 1593.48 MB
Total Virtual: 16802.81 MB
Available Virtual: 5414.96 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:237.84 GB) (Free:101.01 GB) (Model: SAMSUNG MZVLW256HEHP-000L7) NTFS
Drive e: (Lokal Disk (ESmile) (Fixed) (Total:931.51 GB) (Free:229.22 GB) (Model: WD Elements 1042 USB Device) NTFS
Drive f: (Filmovi) (Fixed) (Total:232.88 GB) (Free:198.42 GB) (Model: Hitachi HDT725025VLA380) NTFS

\\?\Volume{9cbe43d5-003c-42d5-920b-51f6ec2784bc}\ () (Fixed) (Total:0.52 GB) (Free:0.08 GB) NTFS
\\?\Volume{e4a1463c-c319-4349-8d9d-eb6c350a403e}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 232.9 GB) (Disk ID: D1D9D1D9)
Partition 1: (Active) - (Size=232.9 GB) - (Type=07 NTFS)

==========================================================
Disk: 1 (Size: 238.5 GB) (Disk ID: FD9E5914)

Partition: GPT.

==========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 931.5 GB) (Disk ID: 0002846E)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8640
  • Gde živiš: Novi Beograd

Izvini sto se nisam javio ranije. Da li i dalje imas problem?

online
  • Miroslav Tanaskovic
  • Gradjevinski tehnicar
  • Pridružio: 02 Jan 2009
  • Poruke: 804
  • Gde živiš: Cacak

Nije problem normalno je da imas svojih obaveza evo pogledaj kako mi izlaze ove stranice

Nekad izadje jedna a nekada ovakopo deset odjednom

offline
  • helen1  Male
  • Anti Malware Fighter
    Rank 2
  • Master učitelj
  • Pridružio: 27 Avg 2005
  • Poruke: 8640
  • Gde živiš: Novi Beograd

Iskreno, malo sam ispao i iz materije. Retko ko se javlja, slabo ima slucajeva, pa ne pratim malware trendove.

Da li ti je poznato sta je ovo: C:\Program Files (x86)\ItemDesktop\FramePron
i ovo C:\ProgramData\Direct\swapper

1. Otvori Notepad (Text Document) i iskopiraj sledeći tekst unutar kod polja ispod:

CreateRestorePoint:
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\MRT: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender Security Center: Restriction <==== ATTENTION
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
Task: {0D322BDF-4DAE-4D33-9BBF-3AFA7587E67B} - System32\Tasks\02ELTGCXFUYDP1HUQ981{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {762E6E80-EF18-4709-8CD7-54BB6EB5820D} - System32\Tasks\0FL7EXUHXI1SID2IKJPP{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {2C0005DB-7B83-4EEE-9031-0643015A5FC2} - System32\Tasks\0PR25F3DH7LAPJTZ0R9C{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {066E2B1C-6F8B-408B-A7B7-1221A754744B} - System32\Tasks\1HY39B8K2Y0JU6UBU3YN{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {712C51B5-32E6-4CA9-81ED-FA2BC7D7B78D} - System32\Tasks\2AELUPUBGMHSHOM6QLPZ{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {812AC58C-2B97-4F48-9663-2308CC76DC07} - System32\Tasks\2U8PRWI0CFD23431077V{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {61D617AE-3A74-4C0D-9B07-4C7A76D2FDA1} - System32\Tasks\311ZCKIFQCBQZUJE4L5B{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {446EBD82-D91D-4589-AA2C-01F53E2AA9A0} - System32\Tasks\38L9J9KO12NJ3GO164OI{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {0EA07052-6ED4-4CC8-A1DE-68E2EC85AD04} - System32\Tasks\3SILMYIK9IDEZPJ5X6XR{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {31BD8815-05DC-407C-8B9F-F799C3171ACE} - System32\Tasks\42F1TSUTZ41G84Z7XWB6{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {690ADCDE-3334-4F82-A01D-D56D0DF7375B} - System32\Tasks\5HR7K2GGHBS10E1VIL8V{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {6CA485E3-9FCA-4D9C-AAC1-03AEDCDD2936} - System32\Tasks\6005EZGDL79T7JIIKDIT{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {70CE2DDA-ACCE-4500-84EC-70BA4A9FC3DC} - System32\Tasks\60QHJL84KPDF01Q6XTOC{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {497635EA-1BD4-4B2C-AB87-A50FDAEA7211} - System32\Tasks\612YZ2ZL9LVX6S3TX1K8{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {485E741F-A44A-4C96-AB5A-E6D9976E599D} - System32\Tasks\6RGO3BO9QHCVJS7ONDIT{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {00C6D518-AC56-4349-A425-6D1EE541BAC0} - System32\Tasks\71RN4X26JU6TUHQXZZD4{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {3B1175BA-6C99-4AD3-A05B-33269B5E6B41} - System32\Tasks\77DMLASU6WB458CS6HWL{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {5AAC1DD0-8054-472B-A33A-D55554F33321} - System32\Tasks\7XV9LWM9STASSAHE8YKN{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {88933270-C39A-48F9-AEE2-DC40B45EC7B6} - System32\Tasks\7YT4YZA5BAO310GXDUZ1{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {DC98CFEB-2C1E-4E34-AE8C-021C53C35DE1} - System32\Tasks\84HTW5040IBJHIRCWM4W{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {C96F4C6E-B275-44B3-A179-A8D572B4258E} - System32\Tasks\892OME1PF846NNDDKONN{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {E4253E01-559C-4EC7-B5FC-E8AEC7746417} - System32\Tasks\9TOMO6POFYIROORYT5B5{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {3C7CB105-57D2-4585-8AFA-52920DB9E621} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (No File)
Task: {12B78584-5572-4728-9244-84EA70865A1A} - System32\Tasks\AJ3SXMCFAKOEIVW9H0M2{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {4E2B2B69-958C-451D-B3B2-8964DDE26AD3} - System32\Tasks\B24YM4OQPF68VGODZS09{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {31BE12C9-557E-4846-BD93-48FE58B3C338} - System32\Tasks\BZ0KZHFQKHYXGV24RH04{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {C40DF556-B82C-4CBC-BDC8-D261D0C5B9BF} - System32\Tasks\CRTK4RVGYFY30PG3S99O{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {41FCF690-AEAB-434C-8A42-E7E097C0105D} - System32\Tasks\D0OSP2E6BE2QDLSHUBXR{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {2357CEE1-008D-4FD6-A5EF-34253A3F4D64} - System32\Tasks\D1ORNL39ZGN1VX8CTIZY{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {E3F63515-1384-4FC6-AA91-3FFE83E4491F} - System32\Tasks\ECR25YVUIZNKH4UFKSNL{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {FF11989D-6835-4C37-B78E-141EF6D20463} - System32\Tasks\EGNYUIPEP51ON7EPWXAR{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {81763152-98EF-4824-8DE6-A6179B9BECD1} - System32\Tasks\F32Q764RRLC6XCL2IBZJ{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {73F5B8E4-4C5D-43AF-AC34-1FA83B170D2C} - System32\Tasks\FJ046JH03RB571Q2BFHM{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {58E57EF0-B4AB-46E9-99C8-2A0745F96A28} - System32\Tasks\GH2GUXR0DKLSE6LP1N3S{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {B36B1688-1FD7-479F-8D8C-8683B2369060} - System32\Tasks\GK9MD6NHZ0M4JWPD89AC{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {3DBE0F28-9285-4123-9FEE-6B3BB07B2830} - System32\Tasks\I3WLUFB9U6H7FWK5H0US{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {39131351-BB15-4B5F-BE4F-30AE9871481A} - System32\Tasks\ILGFGEAGJAW4635UNKKR{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {3BFCACC8-0F05-421E-9A40-A65E7BCB4DE3} - System32\Tasks\IVH0MNYJAFBTK0CZNYPS{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {3021BC82-2FE1-4A49-80A4-982F1B04BDC3} - System32\Tasks\K4BKIC9UWZDZTOWVF18W{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {AE5B9998-AE5E-49E1-ACD4-9CA1223A3643} - System32\Tasks\LSZTZXT282HT9460CNF3{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {15C4E03A-B383-47A3-B6C0-47B74B50C7D0} - System32\Tasks\M3MGRS3HI1BWLLRX763C{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {6D3FB8C3-DA19-4B7B-85AA-B833D9CD99E1} - System32\Tasks\Microsoft\Windows\Autochk\Nsivfxpzm => C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe [65440 2019-12-07] (Microsoft Corporation -> Microsoft Corporation) -> C:\Program Files (x86)\ItemDesktop\FramePron\/unregister "C:\Program Files (x86)\ItemDesktop\FramePron\mmdsDwtafPjxo20.dll" <==== ATTENTION
Task: {11DEF1EC-CA52-48CE-9996-82F5CCA3A7D2} - System32\Tasks\N95AP6BQ0G9BC1SKBLGU{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {E41AD301-3AFE-4D31-9B3B-3B22C8F28400} - System32\Tasks\NFD2PWFCIBTXB063RPTE{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {B6B40DE8-B8CB-4223-AF5F-4F4784FBE4AE} - System32\Tasks\NK1IMAB06QR6U7ZQGF5W{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {B4D69A01-900A-47CF-8FA0-4D85D88DE1E8} - System32\Tasks\NO1IB9Q2HTW8ZU9H5CE3{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {1EFF65F0-4B7C-4C59-BADD-406FD923F9C1} - System32\Tasks\NWAYTYT6HRCYZP5EM2L6{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {F4D2964A-9B56-4019-806E-5590921F4C2E} - System32\Tasks\OQWN86G1WKNFL2DMV4SG{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {C2A8F2B7-FF28-420F-92DC-259F62E011BE} - System32\Tasks\PMDWDMC3DF46NE61PKX4{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {CC995FE5-79EA-4D12-B7BF-5A5447C3D013} - System32\Tasks\QG31ONHQDT4QXYIPYX73{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {353C5692-0045-4EE6-94A4-538E6C1961E0} - System32\Tasks\QSYCM2NHSMV34XP5AFM9{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {8C01CF52-6DEA-4588-8D7F-0EE70AF5E94D} - System32\Tasks\QWJM0AYIJG45ZDT7M6UW{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {54AF8AC4-B98A-42D3-A35A-74B935A48C6F} - System32\Tasks\RYOCTRI4KVR63XRWTN79{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {DFE7E760-CF31-4045-98EA-19E4B8CE7908} - System32\Tasks\SVQ74C8OH03YN8PJC1JT{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {B23BC0B1-EFE6-406F-8C8E-DF3B1FD53345} - System32\Tasks\TDAFLMDR4DJC2DX9LDB4{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {E6899D8A-5CAB-4332-9CAA-5BB5DDC77230} - System32\Tasks\TK82R4T0Y7NLMPTO0M2O{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {8D17CF45-4EAF-4CC2-9166-14C6298133F7} - System32\Tasks\TYSLYTM1MKHZ7DKFNCTM{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {1A8F8338-BF1C-446F-BE62-B542DBDDB666} - System32\Tasks\UL3CKO217NNM719545OG{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {B209F39C-521D-488C-A900-DCE686F07B58} - System32\Tasks\VCX2VQRZK5PBY8G4MNI2{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {9FD191C3-F954-4EF6-BFD7-AAB2961C6A91} - System32\Tasks\WVR1W2S7Y2EZXC1OMRXN{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {4590CA66-6E5E-45C2-B236-7948FC9D6A07} - System32\Tasks\XHKZJ7UQLHVRGMI9086H{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {025222D7-441D-4C92-B2D2-FAD99D1E39DD} - System32\Tasks\XJA1P5GUHXDLPMRDEXBX{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {E44ACE70-7555-463A-A03A-AAF2F860F1EE} - System32\Tasks\XQY55T4TLD38NHMWAHL1{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {7833FA18-2682-47C3-B25E-8E2FF8CFE1B1} - System32\Tasks\YVV9AEFI50HRUCC49RLE{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
Task: {C912A5FA-5884-45FE-A134-302A14FCADF5} - System32\Tasks\ZBFHUNYE8U92MAKIUTJP{5C7F-B946-EC89-7DAC-5BDE8AEB25E8DDB} => C:\Windows\system32\mshta.exe [43520 2024-12-14] (Microsoft Windows -> Microsoft Corporation) -> hxxps://fileless-market.cc <==== ATTENTION
EmptyTemp:


2. Sačuvaj notepad na Desktop pod nazivom fixlist.txt
To možes uraditi i iz notepad-a => klik na File potom na Save As i u novom prozoru, dole pod File Name: staviš za naziv fixlist.txt
Napomena: Važno je da se oba fajla, FRST i fixlist nalaze na istoj lokaciji jer u suprotnom fix nece raditi.

3. Ponovo pokreni FRST/FRST64, klikni jednom na dugme Fix i sačekaj.
Ukoliko alat zatraži restart sistema, dozvoli mu i postaraj se da alat kompletira fix nakon restarta sistema.



Alat će formirati log (Fixlog.txt) na Desktop-u. Potrebno je sadržaj tog loga iskopirati u poruku.
Napomena: Ukoliko te alat upozori da postoji novija verzija, postaraj se da preuzmes i koristiš ažuriranu kopiju FRST-a.

Ko je trenutno na forumu
 

Ukupno su 1423 korisnika na forumu :: 114 registrovanih, 6 sakrivenih i 1303 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 13297 - dana 20 Jan 2026 17:42

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: 357magnum, Adaminho1985, ajo baba, Aleksej, AleksSE, AndrejPetar, ast13, Automaticar, awathorn, babaroga, Badja, bobor, Bobrock1, bojank, Bojke549, Boris BM, Boroš, Botovac, brandža84, BZ, C-Gun, cikadeda, Comyymoc, cvrle312, DavidA, Daxi184, DeerHunter, Deki Duga Devetka, Desmond, doom83, Dorcolac, dunavzed, dushan, Gall, gasazem, gost321, grunff2, halkin gol, istina, Jakonjveliki, jalos, Jeremiah, Jester, JK, Jomini, Kajzer Soze, kaput21, Karla, keyz, Klass, Kubovac, kybonacci, lacko, luka35, lukac, mane123, max power, mercedesamg, miki kv, Miki01, Miki281, mikrimaus, miso2709, MK10, moldway, nebidrag, Nemanja.M, novator, obsc, pein, peradetlić, Petarvu, Pilence, Povratak1912, probisic, raster12, Redred, repac, Robin, rovac, royst33, ruma, S.Palestinac, samp1389, sasics, Sharpshooter, Sir Budimir, SOVO515, spalev, Speer, Srki98, starlights, strelac07, synergia, T55, tacija, Tafocus, TheBeastOfMG, theNedjeljko, TRZH92, Tumansky, vidra1, VJ, Vladoj, Vrač, Zastava, zgoljo, Zimbabwe, ZlatniRez, zombicar153, zrno, zzapNDjuric99, ZZZ, Žrnov