Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Rootkit/SmartService with no access to AppData culprit folder


  • This topic is locked This topic is locked
40 replies to this topic

#1 WolfRevenant

WolfRevenant

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Local time:04:08 AM

Posted 18 December 2017 - 04:08 AM

Hi BleepingComputer team. I saw a post with almost identical symptoms to what I am experiencing posted last week. There are several processes that run my CPU into the ground, there was more adware that I was able to remove but this last bit is protected somehow. The processes named themselves igfxmtc.exe, sbcgkod.exe, and about 10 instances of snncdgo.exe disguised as windows process manager.

 

I've gone ahead and followed some of the steps in the previous walkthrough and ran MBAR, MBAM, and FRST in that order. I recorded the logs and I will reply to my own thread with them.


MBAR
 
Malwarebytes Anti-Rootkit BETA 1.10.3.1001
www.malwarebytes.org
 
Database version:
  main:    v2017.12.18.02
  rootkit: v2017.10.14.01
 
Windows 10 x64 NTFS
Internet Explorer 11.125.16299.0
Nicholas :: NOTAMAC [administrator]
 
12/18/2017 2:45:27 AM
mbar-log-2017-12-18 (02-45-27).txt
 
Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled: 
Objects scanned: 330266
Time elapsed: 12 minute(s), 1 second(s)
 
Memory Processes Detected: 1
c:\users\nicholas\appdata\local\igfxmtc\igfxmtc.exe (Trojan.SmartService) -> 1428 -> Delete on reboot. [44c622093674f3434c6b78872bd7cd33]
 
Memory Modules Detected: 0
(No malicious items detected)
 
Registry Keys Detected: 0
(No malicious items detected)
 
Registry Values Detected: 0
(No malicious items detected)
 
Registry Data Items Detected: 0
(No malicious items detected)
 
Folders Detected: 1
c:\users\nicholas\appdata\local\igfxmtc (Trojan.SmartService) -> Delete on reboot. [44c622093674f3434c6b78872bd7cd33]
 
Files Detected: 1
c:\users\nicholas\appdata\local\igfxmtc\igfxmtc.exe (Trojan.SmartService) -> Delete on reboot. [44c622093674f3434c6b78872bd7cd33]
 
Physical Sectors Detected: 0
(No malicious items detected)
 
(end)


BC AdBot (Login to Remove)

 


#2 WolfRevenant

WolfRevenant
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Local time:04:08 AM

Posted 18 December 2017 - 04:44 AM

MBAM
 
Malwarebytes
www.malwarebytes.com
 
-Log Details-
Scan Date: 12/18/17
Scan Time: 3:40 AM
Log File: 826f61ee-e3d7-11e7-8caf-1c1b0d0b338d.json
Administrator: Yes
 
-Software Information-
Version: 3.3.1.2183
Components Version: 1.0.262
Update Package Version: 1.0.3511
License: Trial
 
-System Information-
OS: Windows 10 (Build 16299.125)
CPU: x64
File System: NTFS
User: NOTAMAC\Nicholas
 
-Scan Summary-
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 373044
Threats Detected: 0
(No malicious items detected)
Threats Quarantined: 0
(No malicious items detected)
Time Elapsed: 3 min, 28 sec
 
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
 
-Scan Details-
Process: 0
(No malicious items detected)
 
Module: 0
(No malicious items detected)
 
Registry Key: 0
(No malicious items detected)
 
Registry Value: 0
(No malicious items detected)
 
Registry Data: 0
(No malicious items detected)
 
Data Stream: 0
(No malicious items detected)
 
Folder: 0
(No malicious items detected)
 
File: 0
(No malicious items detected)
 
Physical Sector: 0
(No malicious items detected)
 
 
(end)


#3 WolfRevenant

WolfRevenant
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Local time:04:08 AM

Posted 18 December 2017 - 04:55 AM

FRST

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17-12-2017
Ran by Nicholas (administrator) on NOTAMAC (18-12-2017 03:48:32)
Running from C:\Users\Nicholas\Desktop
Loaded Profiles: Nicholas (Available Profiles: Nicholas)
Platform: Windows 10 Pro Version 1709 16299.125 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(TOSHIBA CORPORATION) C:\Windows\System32\sbohdwcsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
(Creative Technology Ltd) C:\Windows\SysWOW64\CtHdaSvc.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
() C:\Program Files (x86)\GIGABYTE\AppCenter\AdjustService.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Common Files\Nuance\dgnsvc.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Alcohol Soft Development Team) D:\Programs\Alcohol 120\AxAHCIServiceEx.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe
(Rivet Networks) C:\Program Files\Killer Networking\Network Manager\KillerService.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(GIGA-BYTE TECHNOLOGY CO., LTD.) C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\OcButtonService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Seagate) C:\Program Files (x86)\Common Files\Seagate\Schedule2\schedul2.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Guillemot Corporation) C:\Program Files (x86)\Thrustmaster\TARGET\TmService.exe
(Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
() C:\Windows\System32\PnkBstrA.exe
(Microsoft Corporation) C:\Windows\System32\Locator.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10_50.CSSQL08\MSSQL\Binn\sqlservr.exe
(Intel® Corporation) C:\Program Files\Intel\NCS2\WMIProv\ncs2prov.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Common Files\Nuance\loggerservice.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Seagate) C:\Program Files (x86)\Common Files\Seagate\Schedule2\schedhlp.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(GIGA-BYTE TECHNOLOGY CO., LTD.) C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\EasyTuneEngineService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Integrated Clock Controller Service\ICCProxy.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AdobeGCClient.exe
(Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(www.ejie.me) C:\Program Files (x86)\Clover\Clover.exe
(Corsair Components, Inc.) C:\Program Files (x86)\CorsairLink4\CorsairLink4.exe
(Corsair Components, Inc.) C:\Program Files (x86)\CorsairLink4\CorsairLink4.Service.exe
(Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusionHookApp32.exe
(Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusionHookApp64.exe
(Rainmeter) F:\Programs\Rainmeter\Rainmeter.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Users\Nicholas\AppData\Local\sbcgkod\sbcgkod.exe
() C:\Users\Nicholas\AppData\Local\sbcgkod\snncdgo.exe
() C:\Users\Nicholas\AppData\Local\sbcgkod\snncdgo.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMWsc.exe
() C:\Users\Nicholas\AppData\Local\sbcgkod\snncdgo.exe
() C:\Users\Nicholas\AppData\Local\igfxmtc\igfxmtc.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
() C:\Users\Nicholas\AppData\Local\sbcgkod\snncdgo.exe
() C:\Users\Nicholas\AppData\Local\sbcgkod\snncdgo.exe
() C:\Users\Nicholas\AppData\Local\sbcgkod\snncdgo.exe
(Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe
(Intel Corporation) F:\Programs\Intel\DAL\jhi_service.exe
(Intel Corporation) F:\Programs\Intel\LMS\LMS.exe
() C:\Users\Nicholas\AppData\Local\sbcgkod\snncdgo.exe
(Intel® Corporation) C:\Program Files (x86)\Intel\Intel® Extreme Tuning Utility\XtuService.exe
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation)
HKLM\...\Run: [MBCfg64] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\MBCfg64.dll,RunDLLEntry MBCfg64
HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated)
HKLM\...\Run: [Seagate Scheduler2 Service] => C:\Program Files (x86)\Common Files\Seagate\Schedule2\schedhlp.exe [400384 2015-03-12] (Seagate)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [323056 2015-11-04] (Intel Corporation)
HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [17406072 2017-01-23] (Logitech Inc.)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [297784 2017-09-11] (Apple Inc.)
HKLM-x32\...\Run: [Sound Blaster Cinema] => F:\Programs\Sound Blaster Cinema\SBCinema.exe [711680 2012-11-29] (Creative Technology Ltd)
HKLM-x32\...\Run: [UpdReg] => C:\WINDOWS\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [67896 2017-09-01] (Apple Inc.)
HKLM-x32\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\\isuspm.exe [2075480 2013-06-24] (Flexera Software LLC.)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [1103424 2013-01-10] (Acronis)
HKLM-x32\...\Run: [FireStormStartUpAutoRun] => F:\Programs\Firestorm\FireStorm.exe
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [1871344 2017-11-04] (Adobe Systems Inc.)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2383040 2016-10-12] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [EaseUS Cleanup] => D:\Programs\EaseUS Partition Master 11.0\bin\CleanUpUI.exe [1227456 2016-04-26] (CHENGDU Yiwo Tech Development Co., Ltd.)
HKLM-x32\...\Run: [EaseUS EPM Tray Agent] => D:\Programs\EaseUS Partition Master 11.0\bin\TrayPopupE\TrayTipAgentE.exe [255072 2014-11-18] ()
HKLM-x32\...\Run: [Discord] => C:\ProgramData\SquirrelMachineInstalls\Discord.exe [54332920 2017-08-25] (Discord Inc.)
HKLM-x32\...\Run: [] => [X]
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Run: [DisplayFusion] => C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [8626064 2017-11-14] (Binary Fortress Software)
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [10249048 2017-12-13] (Piriform Ltd)
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [2075480 2013-06-24] (Flexera Software LLC.)
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Run: [CorsairLink4] => C:\Program Files (x86)\CorsairLink4\CorsairLink4.exe [17064656 2016-08-31] (Corsair Components, Inc.)
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Run: [AlcoholAutomount] => D:\Programs\Alcohol 120\AxAutoMntSrv.exe [39376 2015-03-12] (Alcohol Soft Development Team)
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Run: [Discord] => C:\Users\Nicholas\AppData\Local\Discord\app-0.0.299\Discord.exe [57954808 2017-12-11] (Discord Inc.)
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Run: [Spotify Web Helper] => C:\Users\Nicholas\AppData\Roaming\Spotify\SpotifyWebHelper.exe [777840 2017-11-30] (Spotify Ltd)
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Run: [Gaijin.Net Agent] => C:\Users\Nicholas\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe [2268232 2017-10-15] (Gaijin Entertainment)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Shanling Audio Control Panel Autostart.lnk [2017-02-28]
ShortcutTarget: Shanling Audio Control Panel Autostart.lnk -> C:\Program Files\Shanling\Audio_Driver\ShanlingAudioCplApp.exe ()
Startup: C:\Users\Nicholas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk [2017-01-02]
ShortcutTarget: Rainmeter.lnk -> F:\Programs\Rainmeter\Rainmeter.exe (Rainmeter)
Startup: C:\Users\Nicholas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk [2017-12-16]
ShortcutTarget: Send to OneNote.lnk -> C:\Program Files\Microsoft Office\Office16\ONENOTEM.EXE (Microsoft Corporation)
BootExecute: autocheck autochk * bootdelete
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\Parameters: [DhcpNameServer] 66.253.214.16 50.30.184.16
Tcpip\..\Interfaces\{24d58056-abd9-41ca-a56d-f90a362cf8be}: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{4be16519-1ca6-41d9-b4d0-febbd39d241d}: [DhcpNameServer] 66.253.214.16 50.30.184.16
Tcpip\..\Interfaces\{9ca0a125-b82e-4823-81a2-02e80ca6f5c5}: [DhcpNameServer] 10.253.3.8 10.253.3.11
Tcpip\..\Interfaces\{a1548fa9-16f5-454c-a1f5-2066d5fb9d1e}: [DhcpNameServer] 75.75.75.75 75.75.76.76
Tcpip\..\Interfaces\{be3376fd-ddfd-487b-b28e-b716c4306034}: [DhcpNameServer] 192.168.1.1
 
Internet Explorer:
==================
BHO: GBHO.BHO -> {45d30484-7ded-43d9-957a-d2fd1f046511} -> c:\windows\system32\mscoree.dll [2017-09-29] (Microsoft Corporation)
BHO: Dragon Web Extension For Internet Explorer -> {609C0837-8DD3-4F9B-AAC5-446F36BC0353} -> D:\Programs\Nuance\Program\x64\dgnriaie_x64.dll [2014-07-12] (Nuance Communications, Inc.)
BHO: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_152\bin\ssv.dll [2017-12-18] (Oracle Corporation)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2016-02-26] (Adobe Systems Incorporated)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2017-07-11] (Microsoft Corporation)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_152\bin\jp2ssv.dll [2017-12-18] (Oracle Corporation)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2016-02-26] (Adobe Systems Incorporated)
BHO: ExplorerWatcher Class -> {F8A6CAA2-533D-4AED-9E05-8EB19A4021AB} -> C:\Program Files (x86)\Clover\TabHelper64.dll [2016-12-05] (EJIE Technology)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23] (Adobe Systems Incorporated)
BHO-x32: Dragon Web Extension For Internet Explorer -> {609C0837-8DD3-4F9B-AAC5-446F36BC0353} -> D:\Programs\Nuance\Program\dgnriaie.dll [2014-07-12] (Nuance Communications, Inc.)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2016-02-26] (Adobe Systems Incorporated)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2017-07-11] (Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2016-02-26] (Adobe Systems Incorporated)
BHO-x32: ExplorerWatcher Class -> {F8A6CAA2-533D-4AED-9E05-8EB19A4021AB} -> C:\Program Files (x86)\Clover\TabHelper32.dll [2016-12-05] (EJIE Technology)
Toolbar: HKLM - Smart Backup - {1d09c093-f71e-43c3-b948-19316cbd695e} - c:\windows\system32\mscoree.dll [2017-09-29] (Microsoft Corporation)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2016-02-26] (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2016-02-26] (Adobe Systems Incorporated)
DPF: HKLM-x32 {6C269571-C6D7-4818-BCA4-32A035E8C884} hxxp://ccfiles.creative.com/Web/softwareupdate/su/ocx/15102/CTSUEng.cab
DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab
DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://files.creative.com/Web/softwareupdate/ocx/150323/CTPID.cab
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} -  No File
Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2017-08-15] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2017-08-15] (Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} -  No File
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2017-08-15] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2017-08-15] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} -  No File
 
FireFox:
========
FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2017-11-27]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_27_0_0_187.dll [2017-12-18] ()
FF Plugin: @java.com/DTPlugin,version=11.152.2 -> C:\Program Files\Java\jre1.8.0_152\bin\dtplugin\npDeployJava1.dll [2017-12-18] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.152.2 -> C:\Program Files\Java\jre1.8.0_152\bin\plugin2\npjp2.dll [2017-12-18] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2016-10-12] (Adobe Systems)
FF Plugin: nuance.com/DgnRia2_x86_64 -> D:\Programs\Nuance\Program\x64\npDgnRia2_x64.dll [2014-07-12] (Nuance Communications, Inc.)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_187.dll [2017-12-18] ()
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation)
FF Plugin-x32: @nexon.net/NxGame -> C:\ProgramData\NexonUS\NGM\npNxGameUS.dll [No File]
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-12-05] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-12-05] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-12-14] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-12-14] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> F:\Programs\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> F:\Programs\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> F:\Programs\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> F:\Programs\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> F:\Programs\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: @wolfram.com/Mathematica -> C:\Program Files (x86)\Common Files\Wolfram Research\Browser\10.0.2.5203600\npmathplugin.dll [2014-12-02] (Wolfram Research, Inc.)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2017-11-04] (Adobe Systems Inc.)
FF Plugin-x32: Adobe Reader -> F:\Programs\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2012-12-18] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2016-10-12] (Adobe Systems)
FF Plugin-x32: adobe.com/AdobeExManDetect -> F:\Programs\Adobe\CC+CS6\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll [No File]
FF Plugin-x32: nuance.com/DgnRia2 -> D:\Programs\Nuance\Program\npDgnRia2.dll [2014-07-12] (Nuance Communications, Inc.)
 
Chrome: 
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> hxxp://www.google.com
CHR StartupUrls: Default -> "hxxp://www.google.com"
CHR Profile: C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default [2017-12-18]
CHR Extension: (Magic Actions for YouTube™) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\abjcfabbhafbcdfjoecdgepllmpfceif [2017-12-16]
CHR Extension: (Docs) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-12]
CHR Extension: (Google Drive) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (YouTube) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
CHR Extension: (Honey) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmnlcjabgnpnenekpadlanbbkooimhnj [2017-12-08]
CHR Extension: (Dark Souls II - Theme) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgbmbnobncmonepjocdiaknioijhejmc [2017-12-15]
CHR Extension: (uBlock Origin) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2017-12-15]
CHR Extension: (Google Search) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-29]
CHR Extension: (Adobe Acrobat) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-03-04]
CHR Extension: (Join) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\flejfacjooompmliegamfbpjjdlhokhj [2017-09-11]
CHR Extension: (HTTPS Everywhere) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcbommkclmclpchllfjekcdonpmejbdp [2017-12-06]
CHR Extension: (Google Docs Offline) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-14]
CHR Extension: (Imagus) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\immpkjjlgappgfkkfieppnmlhakdmaab [2017-11-29]
CHR Extension: (Grammarly for Chrome) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2017-12-01]
CHR Extension: (Reddit Enhancement Suite) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbmfpngjjgdllneeigpgjifpgocmfgmb [2017-09-21]
CHR Extension: (Gmail) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-29]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
 
==================== Services (Whitelisted) ====================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [744640 2016-10-12] (Adobe Systems Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2257016 2017-08-23] (Adobe Systems, Incorporated)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2017-09-07] (Apple Inc.)
S3 AppleChargerSrv; C:\WINDOWS\System32\AppleChargerSrv.exe [31272 2010-04-06] ()
R2 AxVirtualAHCISrv; D:\Programs\Alcohol 120\AxAHCIServiceEx.exe [99712 2015-12-04] (Alcohol Soft Development Team)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6998536 2017-12-09] ()
R3 CLink4Service; C:\Program Files (x86)\CorsairLink4\CorsairLink4.Service.exe [83152 2016-08-31] (Corsair Components, Inc.)
R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [429056 2013-10-27] (Creative Technology Ltd) [File not signed]
R2 CtHdaSvc; C:\WINDOWS\sysWow64\CtHdaSvc.exe [113152 2017-01-09] (Creative Technology Ltd)
R2 DisplayFusionService; C:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe [5291424 2017-11-14] (Binary Fortress Software)
R2 DragonLoggerService; C:\Program Files (x86)\Common Files\Nuance\loggerservice.exe [151616 2014-11-04] (Nuance Communications, Inc.)
S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [382504 2017-10-17] (EasyAntiCheat Ltd)
R2 EasyTuneEngineService; C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\EasyTuneEngineService.exe [142656 2016-06-01] (GIGA-BYTE TECHNOLOGY CO., LTD.)
R2 gadjservice; C:\Program Files (x86)\GIGABYTE\AppCenter\AdjustService.exe [17920 2015-06-25] () [File not signed]
S3 HwmRecordService; C:\Program Files (x86)\GIGABYTE\SIV\HwmRecordService.exe [118568 2016-05-24] (GIGA-BYTE TECHNOLOGY CO., LTD.)
S2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [19440 2015-11-04] (Intel Corporation)
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\Intel® Management Engine Components\iCLS\SocketHeciServer.exe [742704 2017-10-11] (Intel® Corporation)
S2 Intel® TPM Provisioning Service; C:\Program Files\Intel\Intel® Management Engine Components\iCLS\TPMProvisioningService.exe [668472 2017-10-11] (Intel® Corporation)
R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21184 2016-07-28] (Microsoft Corporation)
R2 jhi_service; F:\Programs\Intel\DAL\jhi_service.exe [213648 2017-11-09] (Intel Corporation)
R2 Killer Service V2; C:\Program Files\Killer Networking\Network Manager\KillerService.exe [454872 2016-02-12] (Rivet Networks)
R2 LMS; F:\Programs\Intel\LMS\LMS.exe [419984 2017-11-09] (Intel Corporation)
R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [225400 2017-01-23] (Logitech Inc.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6234056 2017-11-01] (Malwarebytes)
R2 MSSQL$CSSQL08; C:\Program Files\Microsoft SQL Server\MSSQL10_50.CSSQL08\MSSQL\Binn\sqlservr.exe [62111072 2011-06-17] (Microsoft Corporation)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-15] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-15] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [463664 2017-12-05] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [460736 2017-11-15] (NVIDIA Corporation)
R2 OcButtonService; C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\OcButtonService.exe [127272 2016-05-20] (GIGA-BYTE TECHNOLOGY CO., LTD.)
S3 Origin Client Service; F:\Programs\Origin\OriginClientService.exe [2169696 2017-07-26] (Electronic Arts)
S3 Origin Web Helper Service; F:\Programs\Origin\OriginWebHelperService.exe [3149672 2017-07-26] (Electronic Arts)
S3 PAExec; C:\WINDOWS\PAExec.exe [189112 2016-08-27] (Power Admin LLC)
R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [76152 2015-10-04] ()
R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76888 2015-10-04] ()
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4329952 2017-11-26] (Microsoft Corporation)
S4 SQLAgent$CSSQL08; C:\Program Files\Microsoft SQL Server\MSSQL10_50.CSSQL08\MSSQL\Binn\SQLAGENT.EXE [431456 2011-06-17] (Microsoft Corporation)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
S3 Te.Service; F:\Programs\WinDBG\Testing\Runtimes\TAEF\Wex.Services.exe [139264 2016-07-27] (Microsoft Corporation) [File not signed]
S3 ThunderboltService; C:\Program Files (x86)\Intel\Thunderbolt Software\tbtsvc.exe [1830088 2016-01-18] (Intel Corporation)
R2 TmWinService; C:\Program Files (x86)\Thrustmaster\TARGET\TmService.exe [304640 2011-03-04] (Guillemot Corporation) [File not signed]
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\NisSrv.exe [356176 2017-12-07] (Microsoft Corporation)
S2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\MsMpEng.exe [105792 2017-12-07] (Microsoft Corporation)
R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Intel® Extreme Tuning Utility\XtuService.exe [19192 2015-06-30] (Intel® Corporation)
 
===================== Drivers (Whitelisted) ======================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R1 AppleCharger; C:\WINDOWS\System32\DRIVERS\AppleCharger.sys [22240 2013-10-28] ()
R0 asstahci64; C:\WINDOWS\System32\drivers\asstahci64.sys [98312 2017-09-14] (Asmedia Technology)
S3 BEDaisy; C:\Program Files (x86)\Common Files\BattlEye\BEDaisy.sys [3097560 2017-12-17] ()
R1 BfLwf; C:\WINDOWS\system32\DRIVERS\bwcW10x64.sys [144456 2016-02-12] (Rivet Networks, LLC.)
R3 cpuz139; C:\WINDOWS\TEMP\cpuz139\cpuz139_x64.sys [43328 2017-12-18] (CPUID)
R3 cthda; C:\WINDOWS\system32\drivers\cthda.sys [1064968 2017-01-09] (Creative Technology Ltd)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [129152 2016-04-24] (Samsung Electronics Co., Ltd.)
R3 e1dexpress; C:\WINDOWS\system32\DRIVERS\e1d65x64.sys [555592 2017-10-31] (Intel Corporation)
R3 e2xw10x64; C:\WINDOWS\System32\drivers\e2xw10x64.sys [165608 2017-10-29] (Qualcomm Atheros, Inc.)
S3 epmntdrv; C:\WINDOWS\system32\epmntdrv.sys [18016 2016-01-20] () [File not signed]
S3 epmntdrv; C:\WINDOWS\SysWOW64\epmntdrv.sys [15968 2016-01-20] () [File not signed]
S3 EuGdiDrv; C:\WINDOWS\system32\EuGdiDrv.sys [10848 2016-01-20] () [File not signed]
S3 EuGdiDrv; C:\WINDOWS\SysWOW64\EuGdiDrv.sys [10208 2016-01-20] () [File not signed]
R3 ffusb2audio; C:\WINDOWS\system32\DRIVERS\ffusb2audio.sys [127280 2013-09-25] (Focusrite Audio Engineering Limited.)
R3 FocusriteUSBSwRoot; C:\WINDOWS\System32\drivers\FocusriteUSBSwRoot.sys [97984 2017-11-08] (Focusrite Audio Engineering Ltd.)
R0 iaStorE; C:\WINDOWS\System32\drivers\iaStorE.sys [1007712 2017-10-09] (Intel Corporation)
R3 int0800; C:\WINDOWS\System32\drivers\flashud.sys [51712 2015-05-07] (Intel Corporation)
R2 iocbios2; C:\Program Files (x86)\Intel\Intel® Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [30224 2015-05-28] (Intel Corporation)
S3 KillerEth; C:\WINDOWS\System32\drivers\e2xw10x64.sys [165608 2017-10-29] (Qualcomm Atheros, Inc.)
R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech)
R3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [67736 2017-01-23] (Logitech Inc.)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [193968 2017-12-18] (Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\system32\DRIVERS\farflt.sys [110016 2017-12-18] (Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [46008 2017-12-18] (Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [253880 2017-12-18] (Malwarebytes)
S3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [94144 2017-12-17] (Malwarebytes)
S3 nhi; C:\WINDOWS\system32\DRIVERS\tbt81x.sys [125488 2016-01-21] (Intel Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_c68c1eb90f6d242e\nvlddmkm.sys [17025992 2017-12-06] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-11-15] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [50624 2017-10-10] (NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-11-27] (NVIDIA Corporation)
R0 PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [56336 2012-06-22] (Corel Corporation)
S3 RZMAELSTROMVADService; C:\WINDOWS\System32\drivers\RzMaelstromVAD.sys [32768 2014-06-09] (Windows ® Win 7 DDK provider)
S3 RZSURROUNDVADService; C:\WINDOWS\System32\drivers\RzSurroundVAD.sys [40640 2015-02-09] (Windows ® Win 7 DDK provider)
S3 Scarlett_UAC2Audio; C:\WINDOWS\system32\DRIVERS\Scarlett_UAC2Audio.sys [138888 2015-08-07] (Focusrite Audio Engineering Limited.)
S2 Sentinel64; C:\WINDOWS\System32\Drivers\Sentinel64.sys [145448 2009-09-17] (SafeNet, Inc.)
S3 SIVDriver; C:\WINDOWS\system32\Drivers\SIVX64.sys [171664 2016-07-14] (Ray Hinchliffe)
R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [33960 2015-09-08] (Synaptics Incorporated)
R0 sptd2; C:\WINDOWS\System32\Drivers\sptd2.sys [181816 2016-09-13] (Duplex Secure Ltd)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [221824 2016-04-24] (Samsung Electronics Co., Ltd.)
R0 tib; C:\WINDOWS\System32\DRIVERS\tib.sys [1120032 2016-02-05] (Acronis International GmbH)
S3 tib_mounter; C:\WINDOWS\system32\DRIVERS\tib_mounter.sys [183224 2016-02-05] (Acronis)
R3 TmBusEn; C:\WINDOWS\System32\drivers\TmBusEn.sys [30208 2011-01-26] (Guillemot Corporation)
R3 TmBusEn; C:\Windows\SysWOW64\drivers\TmBusEn.sys [30208 2011-01-26] (Guillemot Corporation)
S3 TmFilter; C:\WINDOWS\System32\drivers\TmFilter.sys [24576 2011-01-26] (Guillemot Corporation)
S3 TmFilter; C:\Windows\SysWOW64\drivers\TmFilter.sys [24576 2011-01-26] (Guillemot Corporation)
S3 TmHid; C:\WINDOWS\system32\DRIVERS\TmHid.sys [24704 2011-01-26] (Guillemot Corporation)
S3 TmHid; C:\Windows\SysWOW64\DRIVERS\TmHid.sys [24704 2011-01-26] (Guillemot Corporation)
S1 UsbCharger; C:\WINDOWS\System32\DRIVERS\UsbCharger.sys [22240 2013-10-24] ()
S3 vjoy; C:\WINDOWS\System32\drivers\vjoy.sys [44784 2015-05-05] (Shaul Eizikovich)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46072 2017-12-07] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [288848 2017-12-07] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [129616 2017-12-07] (Microsoft Corporation)
S3 xb1usb; C:\WINDOWS\System32\drivers\xb1usb.sys [29408 2014-05-28] (Microsoft Corporation)
R3 XSplit_Dummy; C:\WINDOWS\system32\drivers\xspltspk.sys [26200 2014-07-02] (SplitmediaLabs Limited)
R1 ZAM; C:\WINDOWS\System32\drivers\zam64.sys [203680 2017-12-18] (Zemana Ltd.)
R1 ZAM_Guard; C:\WINDOWS\System32\drivers\zamguard64.sys [203680 2017-12-16] (Zemana Ltd.)
U3 idsvc; no ImagePath
U0 Partizan; system32\drivers\Partizan.sys [X]
S3 taphss6; \SystemRoot\System32\drivers\taphss6.sys [X]
R3 udiskMgr; system32\drivers\ilosvy.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2017-12-18 03:48 - 2017-12-18 03:48 - 000037599 _____ C:\Users\Nicholas\Desktop\FRST.txt
2017-12-18 03:48 - 2017-12-18 02:46 - 002392064 _____ (Farbar) C:\Users\Nicholas\Desktop\FRST64.exe
2017-12-18 03:45 - 2017-12-18 03:45 - 000142136 ____N C:\WINDOWS\system32\Drivers\psehlorv.sys
2017-12-18 03:34 - 2017-12-18 03:44 - 000000000 ____D C:\Users\Nicholas\AppData\Roaming\foobar2000
2017-12-18 03:34 - 2017-12-18 03:34 - 000001189 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\foobar2000.lnk
2017-12-18 03:34 - 2017-12-18 03:34 - 000000000 ____D C:\Program Files (x86)\foobar2000
2017-12-18 03:04 - 2017-12-18 03:46 - 000110016 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2017-12-18 03:04 - 2017-12-18 03:46 - 000046008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2017-12-18 03:04 - 2017-12-18 03:04 - 000193968 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2017-12-18 02:48 - 2017-12-18 03:48 - 000000000 ____D C:\FRST
2017-12-18 02:45 - 2017-12-18 02:45 - 000255928 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\5662BC94.sys
2017-12-18 02:44 - 2017-12-18 02:58 - 000000000 ____D C:\Users\Nicholas\Desktop\mbar
2017-12-18 02:34 - 2017-12-18 03:46 - 000041800 _____ (Sysinternals - www.sysinternals.com) C:\WINDOWS\system32\Drivers\PROCEXP152.SYS
2017-12-18 02:17 - 2017-12-18 02:27 - 000361398 _____ C:\WINDOWS\ntbtlog.txt
2017-12-18 02:00 - 2017-12-18 03:46 - 000000000 ___HD C:\Users\Public\Documents\AdobeGC
2017-12-18 01:51 - 2017-12-18 01:51 - 000203680 _____ (Zemana Ltd.) C:\WINDOWS\system32\Drivers\zam64.sys
2017-12-18 01:42 - 2017-12-18 01:42 - 000110144 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll
2017-12-17 22:41 - 2017-12-17 22:41 - 000000000 ____D C:\ProgramData\Sophos
2017-12-17 20:01 - 2017-12-17 20:01 - 000000278 ____H C:\WINDOWS\Tasks\User_Feed_Synchronization-{9DC10795-420A-4033-8E63-D1F230E8C7B1}.job
2017-12-17 19:57 - 2016-07-14 01:14 - 000171664 _____ (Ray Hinchliffe) C:\WINDOWS\system32\Drivers\SIVX64.sys
2017-12-17 19:36 - 2017-12-17 19:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-12-17 19:36 - 2017-11-29 09:11 - 000077432 _____ C:\WINDOWS\system32\Drivers\mbae64.sys
2017-12-17 10:37 - 2017-12-17 10:37 - 000000000 ____D C:\WINDOWS\Panther
2017-12-16 16:26 - 2017-12-16 16:26 - 000000000 ____D C:\Users\Nicholas\AppData\Roaming\Cuphead
2017-12-16 16:22 - 2017-12-16 16:22 - 000006630 _____ C:\WINDOWS\SysWOW64\PARTIZAN.TXT
2017-12-16 15:53 - 2017-12-16 16:05 - 000000000 ____D C:\ProgramData\RegRun
2017-12-16 15:48 - 2017-12-16 16:08 - 000000000 ____D C:\Users\Nicholas\Documents\RegRun2
2017-12-16 15:48 - 2017-12-16 15:48 - 000000002 RSHOT C:\WINDOWS\winstart.bat
2017-12-16 15:48 - 2017-12-16 15:48 - 000000002 RSHOT C:\WINDOWS\SysWOW64\CONFIG.NT
2017-12-16 15:48 - 2017-12-16 15:48 - 000000002 RSHOT C:\WINDOWS\SysWOW64\AUTOEXEC.NT
2017-12-16 15:48 - 2015-12-22 12:43 - 000001052 _____ C:\WINDOWS\system32\Drivers\etc\hosts.old
2017-12-16 15:46 - 2017-12-16 15:46 - 000255928 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\7552FD8C.sys
2017-12-16 15:43 - 2017-12-18 03:48 - 000126644 _____ C:\WINDOWS\ZAM.krnl.trace
2017-12-16 15:43 - 2017-12-18 03:48 - 000092247 _____ C:\WINDOWS\ZAM_Guard.krnl.trace
2017-12-16 15:43 - 2017-12-16 15:43 - 000203680 _____ (Zemana Ltd.) C:\WINDOWS\system32\Drivers\zamguard64.sys
2017-12-16 15:07 - 2017-12-16 15:07 - 000000000 ____D C:\Users\Nicholas\Documents\OneNote Notebooks
2017-12-16 14:51 - 2017-12-16 14:51 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2017-12-16 14:51 - 2017-12-05 13:36 - 000137200 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
2017-12-16 14:51 - 2017-09-13 17:20 - 000798008 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2017-12-16 14:51 - 2017-09-13 17:20 - 000490296 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2017-12-16 14:51 - 2017-09-13 17:19 - 000927544 _____ C:\WINDOWS\system32\vulkan-1.dll
2017-12-16 14:51 - 2017-09-13 17:19 - 000591160 _____ C:\WINDOWS\system32\vulkaninfo.exe
2017-12-16 14:50 - 2017-12-16 14:50 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2017-12-16 12:01 - 2017-12-16 12:01 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2017-12-15 21:18 - 2017-12-15 21:19 - 000000000 ____D C:\ProgramData\AVAST Software
2017-12-15 21:18 - 2017-12-15 21:18 - 000003938 _____ C:\WINDOWS\System32\Tasks\CCleaner Update
2017-12-15 17:03 - 2017-12-18 03:46 - 002884096 _____ (TOSHIBA CORPORATION) C:\WINDOWS\system32\sbohdwcsvc.exe
2017-12-15 10:04 - 2017-12-15 10:04 - 000002403 _____ C:\Users\Nicholas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Etcher.lnk
2017-12-15 10:04 - 2017-12-15 10:04 - 000000000 ____D C:\Users\Nicholas\AppData\Roaming\etcher
2017-12-15 09:22 - 2017-12-18 03:46 - 000253880 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2017-12-15 03:22 - 2017-12-15 03:22 - 000003376 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2400751361-3771152734-1433153139-500
2017-12-15 03:00 - 2017-12-15 03:00 - 000255928 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\533114CB.sys
2017-12-15 02:59 - 2017-12-15 03:07 - 000000000 ____D C:\ProgramData\HitmanPro
2017-12-15 02:56 - 2017-12-18 03:46 - 000000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2017-12-15 02:17 - 2017-12-18 02:21 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2017-12-15 01:32 - 2017-12-17 19:35 - 000000000 ____D C:\ProgramData\Malwarebytes
2017-12-15 01:18 - 2017-12-15 01:50 - 000000000 ____D C:\ProgramData\Alcohol Soft
2017-12-15 01:10 - 2017-12-17 19:36 - 000094144 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2017-12-15 01:09 - 2017-12-15 01:09 - 000000000 ____D C:\Program Files\Malwarebytes
2017-12-14 23:39 - 2017-12-14 23:39 - 000003646 _____ C:\WINDOWS\System32\Tasks\CreateExplorerShellUnelevatedTask
2017-12-14 22:52 - 2017-12-14 22:52 - 000031796 _____ C:\WINDOWS\system32\.crusader
2017-12-14 22:47 - 2017-12-15 02:59 - 000055232 _____ C:\WINDOWS\system32\Drivers\hitmanpro37.sys
2017-12-14 19:06 - 2017-12-14 19:07 - 000002351 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-12-14 19:06 - 2017-12-14 19:06 - 000003416 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2017-12-14 19:06 - 2017-12-14 19:06 - 000003292 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2017-12-14 18:54 - 2017-12-14 18:54 - 000000000 ___HD C:\$AV_ASW
2017-12-14 17:57 - 2017-12-14 17:57 - 000000000 ____D C:\Users\Nicholas\Documents\WPA Files
2017-12-14 16:55 - 2017-12-15 21:20 - 000061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys
2017-12-14 16:55 - 2017-12-14 16:55 - 000000000 ____D C:\Program Files\Common Files\Avast Software
2017-12-14 16:49 - 2017-12-14 17:30 - 000000000 ____D C:\WINDOWS\Minidump
2017-12-14 16:47 - 2017-12-14 16:47 - 000072816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\etssyxaf.sys
2017-12-14 16:45 - 2017-12-14 16:45 - 000000000 ____D C:\WINDOWS\SysWOW64\scbizko
2017-12-14 16:45 - 2017-12-14 16:45 - 000000000 ____D C:\WINDOWS\system32\scbizko
2017-12-14 16:45 - 2017-12-14 16:45 - 000000000 ____D C:\Users\Nicholas\AppData\Roaming\et
2017-12-13 18:44 - 2017-12-13 18:44 - 000000000 ____D C:\Users\Nicholas\AppData\LocalLow\WeirdBeard
2017-12-13 16:01 - 2017-12-13 16:01 - 000000000 ____D C:\Users\Nicholas\AppData\Roaming\com.sarahnorthway.rebuild3
2017-12-12 17:45 - 2017-12-15 03:20 - 000000000 __RHD C:\Users\Public\AccountPictures
2017-12-12 13:41 - 2017-12-08 00:52 - 000666112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2017-12-12 13:41 - 2017-12-07 17:34 - 001925296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2017-12-12 13:41 - 2017-12-07 17:34 - 001634288 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2017-12-12 13:41 - 2017-12-07 17:34 - 000059800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bam.sys
2017-12-12 13:41 - 2017-12-07 17:31 - 008590744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2017-12-12 13:41 - 2017-12-07 17:31 - 000779440 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2017-12-12 13:41 - 2017-12-07 17:30 - 000166296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2017-12-12 13:41 - 2017-12-07 17:28 - 000710912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2017-12-12 13:41 - 2017-12-07 17:28 - 000630752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcrt.dll
2017-12-12 13:41 - 2017-12-07 17:27 - 004504456 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2017-12-12 13:41 - 2017-12-07 17:27 - 003903784 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2017-12-12 13:41 - 2017-12-07 17:27 - 000184984 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2017-12-12 13:41 - 2017-12-07 17:26 - 007385088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2017-12-12 13:41 - 2017-12-07 17:26 - 002709200 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2017-12-12 13:41 - 2017-12-07 17:26 - 000525208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2017-12-12 13:41 - 2017-12-07 17:25 - 000374032 _____ (Microsoft Corporation) C:\WINDOWS\system32\vac.exe
2017-12-12 13:41 - 2017-12-07 17:24 - 000705944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2017-12-12 13:41 - 2017-12-07 17:24 - 000437144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2017-12-12 13:41 - 2017-12-07 17:24 - 000246168 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2017-12-12 13:41 - 2017-12-07 17:23 - 005905752 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2017-12-12 13:41 - 2017-12-07 17:23 - 000677272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2017-12-12 13:41 - 2017-12-07 17:22 - 001003104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2017-12-12 13:41 - 2017-12-07 17:22 - 000979352 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2017-12-12 13:41 - 2017-12-07 17:22 - 000137544 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2017-12-12 13:41 - 2017-12-07 17:22 - 000129432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvsocket.sys
2017-12-12 13:41 - 2017-12-07 17:21 - 007676296 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2017-12-12 13:41 - 2017-12-07 17:20 - 001170000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2017-12-12 13:41 - 2017-12-07 17:19 - 021352136 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2017-12-12 13:41 - 2017-12-07 17:16 - 001776272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2017-12-12 13:41 - 2017-12-07 17:16 - 000603920 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2017-12-12 13:41 - 2017-12-07 17:15 - 001426152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2017-12-12 13:41 - 2017-12-07 17:15 - 000721592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2017-12-12 13:41 - 2017-12-07 17:14 - 000571288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2017-12-12 13:41 - 2017-12-07 17:12 - 000401304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2017-12-12 13:41 - 2017-12-07 17:10 - 000362904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2017-12-12 13:41 - 2017-12-07 16:58 - 000123512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2017-12-12 13:41 - 2017-12-07 16:57 - 000649304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2017-12-12 13:41 - 2017-12-07 16:56 - 001528904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2017-12-12 13:41 - 2017-12-07 16:55 - 001490328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2017-12-12 13:41 - 2017-12-07 16:55 - 000097144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
2017-12-12 13:41 - 2017-12-07 16:39 - 006092664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2017-12-12 13:41 - 2017-12-07 16:37 - 001145104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2017-12-12 13:41 - 2017-12-07 16:36 - 000769096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcrt.dll
2017-12-12 13:41 - 2017-12-07 16:34 - 003484840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2017-12-12 13:41 - 2017-12-07 16:34 - 002192112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2017-12-12 13:41 - 2017-12-07 16:33 - 000747416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2017-12-12 13:41 - 2017-12-07 16:33 - 000592280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2017-12-12 13:41 - 2017-12-07 16:32 - 020286120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2017-12-12 13:41 - 2017-12-07 16:31 - 001522176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2017-12-12 13:41 - 2017-12-07 16:31 - 001246432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2017-12-12 13:41 - 2017-12-07 16:31 - 000982016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2017-12-12 13:41 - 2017-12-07 16:29 - 000047000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KeyboardFilterShim.dll
2017-12-12 13:41 - 2017-12-07 16:23 - 006478528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2017-12-12 13:41 - 2017-12-07 16:22 - 025245696 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2017-12-12 13:41 - 2017-12-07 16:13 - 002905600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2017-12-12 13:41 - 2017-12-07 16:13 - 001008640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2017-12-12 13:41 - 2017-12-07 16:12 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2017-12-12 13:41 - 2017-12-07 16:12 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2017-12-12 13:41 - 2017-12-07 16:12 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscript.ocx
2017-12-12 13:41 - 2017-12-07 16:11 - 003669504 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2017-12-12 13:41 - 2017-12-07 16:10 - 018916352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2017-12-12 13:41 - 2017-12-07 16:10 - 006466048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2017-12-12 13:41 - 2017-12-07 16:10 - 001313792 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2017-12-12 13:41 - 2017-12-07 16:10 - 000536064 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2017-12-12 13:41 - 2017-12-07 16:10 - 000250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2017-12-12 13:41 - 2017-12-07 16:10 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\itss.dll
2017-12-12 13:41 - 2017-12-07 16:10 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2017-12-12 13:41 - 2017-12-07 16:10 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2017-12-12 13:41 - 2017-12-07 16:09 - 001663488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\batmeter.dll
2017-12-12 13:41 - 2017-12-07 16:09 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FSClient.dll
2017-12-12 13:41 - 2017-12-07 16:09 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscript.exe
2017-12-12 13:41 - 2017-12-07 16:09 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscript.exe
2017-12-12 13:41 - 2017-12-07 16:09 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gamingtcui.dll
2017-12-12 13:41 - 2017-12-07 16:08 - 019336192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2017-12-12 13:41 - 2017-12-07 16:08 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll
2017-12-12 13:41 - 2017-12-07 16:08 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2017-12-12 13:41 - 2017-12-07 16:08 - 000369152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2017-12-12 13:41 - 2017-12-07 16:08 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrobj.dll
2017-12-12 13:41 - 2017-12-07 16:08 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2017-12-12 13:41 - 2017-12-07 16:07 - 000365568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2017-12-12 13:41 - 2017-12-07 16:07 - 000254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\PushToInstall.dll
2017-12-12 13:41 - 2017-12-07 16:07 - 000246272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2017-12-12 13:41 - 2017-12-07 16:07 - 000192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys
2017-12-12 13:41 - 2017-12-07 16:07 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\itss.dll
2017-12-12 13:41 - 2017-12-07 16:07 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2017-12-12 13:41 - 2017-12-07 16:07 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2017-12-12 13:41 - 2017-12-07 16:06 - 023652864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2017-12-12 13:41 - 2017-12-07 16:06 - 000676352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll
2017-12-12 13:41 - 2017-12-07 16:06 - 000559104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2017-12-12 13:41 - 2017-12-07 16:06 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcui.dll
2017-12-12 13:41 - 2017-12-07 16:06 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscript.exe
2017-12-12 13:41 - 2017-12-07 16:05 - 006037504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 001670656 _____ (Microsoft Corporation) C:\WINDOWS\system32\batmeter.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000559616 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000481792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000463360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000363008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrobj.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscript.exe
2017-12-12 13:41 - 2017-12-07 16:05 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2017-12-12 13:41 - 2017-12-07 16:04 - 003678208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2017-12-12 13:41 - 2017-12-07 16:04 - 001498112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2017-12-12 13:41 - 2017-12-07 16:04 - 001321472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2017-12-12 13:41 - 2017-12-07 16:04 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2017-12-12 13:41 - 2017-12-07 16:03 - 002467840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2017-12-12 13:41 - 2017-12-07 16:03 - 001559552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2017-12-12 13:41 - 2017-12-07 16:03 - 001230848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2017-12-12 13:41 - 2017-12-07 16:03 - 000841728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2017-12-12 13:41 - 2017-12-07 16:03 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2017-12-12 13:41 - 2017-12-07 16:03 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2017-12-12 13:41 - 2017-12-07 16:03 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2017-12-12 13:41 - 2017-12-07 16:03 - 000403968 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2017-12-12 13:41 - 2017-12-07 16:03 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2017-12-12 13:41 - 2017-12-07 16:03 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\hascsp.dll
2017-12-12 13:41 - 2017-12-07 16:02 - 007545344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2017-12-12 13:41 - 2017-12-07 16:02 - 002864640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2017-12-12 13:41 - 2017-12-07 16:02 - 002117632 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2017-12-12 13:41 - 2017-12-07 16:02 - 000815616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2017-12-12 13:41 - 2017-12-07 16:02 - 000813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2017-12-12 13:41 - 2017-12-07 16:02 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2017-12-12 13:41 - 2017-12-07 16:01 - 008097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2017-12-12 13:41 - 2017-12-07 16:01 - 004592640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-12-12 13:41 - 2017-12-07 16:01 - 001980928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2017-12-12 13:41 - 2017-12-07 16:01 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2017-12-12 13:41 - 2017-12-07 16:01 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2017-12-12 13:41 - 2017-12-07 16:00 - 004740608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2017-12-12 13:41 - 2017-12-07 16:00 - 002862080 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2017-12-12 13:41 - 2017-12-07 16:00 - 001509888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2017-12-12 13:41 - 2017-12-07 15:59 - 003121664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.dll
2017-12-12 13:41 - 2017-12-07 15:59 - 002105856 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2017-12-12 13:41 - 2017-12-07 15:59 - 001666048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2017-12-12 13:41 - 2017-12-07 15:59 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2017-12-12 13:41 - 2017-12-07 15:59 - 000880640 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2017-12-12 13:41 - 2017-12-07 15:58 - 003478016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2017-12-12 13:41 - 2017-12-07 15:58 - 003211776 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2017-12-12 13:41 - 2017-12-07 15:58 - 001547264 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2017-12-12 13:41 - 2017-12-07 15:58 - 001353728 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2017-12-12 13:41 - 2017-12-07 15:58 - 000812032 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2017-12-12 13:41 - 2017-12-07 15:57 - 001822208 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2017-12-12 13:41 - 2017-12-07 15:57 - 001487872 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2017-12-12 13:41 - 2017-12-07 15:56 - 002666496 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2017-12-12 13:41 - 2017-12-07 15:56 - 001739264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2017-12-12 13:41 - 2017-12-07 15:56 - 000685056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2017-12-12 13:41 - 2017-12-07 15:54 - 002510336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2017-12-12 13:41 - 2017-12-07 15:54 - 001570816 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2017-12-12 13:41 - 2017-12-07 15:54 - 001160704 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2017-12-12 13:41 - 2017-11-26 14:35 - 017084416 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2017-12-12 13:41 - 2017-11-26 14:32 - 021754368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2017-12-12 13:41 - 2017-11-26 14:15 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2017-12-12 13:41 - 2017-11-26 10:43 - 000618496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2017-12-12 13:41 - 2017-11-26 07:48 - 001200536 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2017-12-12 13:41 - 2017-11-26 07:47 - 001053592 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2017-12-12 13:41 - 2017-11-26 07:45 - 001642520 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2017-12-12 13:41 - 2017-11-26 07:45 - 000319352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2017-12-12 13:41 - 2017-11-26 07:45 - 000264040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2017-12-12 13:41 - 2017-11-26 07:45 - 000198888 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2017-12-12 13:41 - 2017-11-26 07:41 - 000285080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2017-12-12 13:41 - 2017-11-26 07:38 - 001636376 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2017-12-12 13:41 - 2017-11-26 07:37 - 001277848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2017-12-12 13:41 - 2017-11-26 07:35 - 001090440 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2017-12-12 13:41 - 2017-11-26 07:35 - 000924136 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2017-12-12 13:41 - 2017-11-26 07:33 - 002395032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2017-12-12 13:41 - 2017-11-26 07:33 - 001208184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2017-12-12 13:41 - 2017-11-26 07:33 - 000471960 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2017-12-12 13:41 - 2017-11-26 07:33 - 000398744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2017-12-12 13:41 - 2017-11-26 07:32 - 000373656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2017-12-12 13:41 - 2017-11-26 07:32 - 000082840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2017-12-12 13:41 - 2017-11-26 07:31 - 000187288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2017-12-12 13:41 - 2017-11-26 07:30 - 001488792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2017-12-12 13:41 - 2017-11-26 07:29 - 003010720 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2017-12-12 13:41 - 2017-11-26 07:29 - 002573208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2017-12-12 13:41 - 2017-11-26 07:29 - 000891800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2017-12-12 13:41 - 2017-11-26 07:29 - 000840440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Perception.Stub.dll
2017-12-12 13:41 - 2017-11-26 07:29 - 000749976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2017-12-12 13:41 - 2017-11-26 07:29 - 000703536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2017-12-12 13:41 - 2017-11-26 07:29 - 000436120 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2017-12-12 13:41 - 2017-11-26 07:28 - 001259344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2017-12-12 13:41 - 2017-11-26 07:28 - 001012120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2017-12-12 13:41 - 2017-11-26 07:28 - 000713624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2017-12-12 13:41 - 2017-11-26 07:28 - 000495000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2017-12-12 13:41 - 2017-11-26 07:28 - 000149400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2017-12-12 13:41 - 2017-11-26 07:27 - 002446744 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2017-12-12 13:41 - 2017-11-26 07:27 - 002412168 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2017-12-12 13:41 - 2017-11-26 07:27 - 001413760 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2017-12-12 13:41 - 2017-11-26 07:27 - 000464408 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2017-12-12 13:41 - 2017-11-26 07:27 - 000230296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2017-12-12 13:41 - 2017-11-26 07:26 - 000428952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2017-12-12 13:41 - 2017-11-26 07:26 - 000048112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2017-12-12 13:41 - 2017-11-26 07:25 - 000902416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2017-12-12 13:41 - 2017-11-26 07:23 - 001694224 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2017-12-12 13:41 - 2017-11-26 07:23 - 001054280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2017-12-12 13:41 - 2017-11-26 07:23 - 000754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2017-12-12 13:41 - 2017-11-26 07:22 - 000404888 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 002220952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 001778584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 001628056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 001585376 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 001420696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 000831384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 000819096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVClient.exe
2017-12-12 13:41 - 2017-11-26 07:21 - 000813976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 000744856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 000669592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 000654048 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 000645528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll
2017-12-12 13:41 - 2017-11-26 07:20 - 000615768 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2017-12-12 13:41 - 2017-11-26 07:20 - 000519152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2017-12-12 13:41 - 2017-11-26 06:57 - 001664000 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2017-12-12 13:41 - 2017-11-26 06:55 - 001289216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2017-12-12 13:41 - 2017-11-26 06:55 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2017-12-12 13:41 - 2017-11-26 06:55 - 000301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll
2017-12-12 13:41 - 2017-11-26 06:55 - 000211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2017-12-12 13:41 - 2017-11-26 06:55 - 000175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2017-12-12 13:41 - 2017-11-26 06:55 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceUpdateAgent.dll
2017-12-12 13:41 - 2017-11-26 06:54 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2017-12-12 13:41 - 2017-11-26 06:54 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2017-12-12 13:41 - 2017-11-26 06:48 - 012829696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2017-12-12 13:41 - 2017-11-26 06:47 - 002890240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2017-12-12 13:41 - 2017-11-26 06:43 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll
2017-12-12 13:41 - 2017-11-26 06:36 - 000204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2017-12-12 13:41 - 2017-11-26 06:36 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2017-12-12 13:41 - 2017-11-26 06:36 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SIUF.dll
2017-12-12 13:41 - 2017-11-26 06:36 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwifimp.sys
2017-12-12 13:41 - 2017-11-26 06:35 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ContentDeliveryManager.dll
2017-12-12 13:41 - 2017-11-26 06:35 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2017-12-12 13:41 - 2017-11-26 06:34 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll
2017-12-12 13:41 - 2017-11-26 06:33 - 000361984 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatializerApo.dll
2017-12-12 13:41 - 2017-11-26 06:31 - 001495040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2017-12-12 13:41 - 2017-11-26 06:31 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2017-12-12 13:41 - 2017-11-26 06:31 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2017-12-12 13:41 - 2017-11-26 06:31 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2017-12-12 13:41 - 2017-11-26 06:29 - 000474112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DictationManager.dll
2017-12-12 13:41 - 2017-11-26 06:29 - 000432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2017-12-12 13:41 - 2017-11-26 06:29 - 000424960 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2017-12-12 13:41 - 2017-11-26 06:29 - 000238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManager.dll
2017-12-12 13:41 - 2017-11-26 06:28 - 000394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2017-12-12 13:41 - 2017-11-26 06:26 - 000830464 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9on12.dll
2017-12-12 13:41 - 2017-11-26 06:26 - 000770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2017-12-12 13:41 - 2017-11-26 06:26 - 000432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2017-12-12 13:41 - 2017-11-26 06:25 - 001425408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2017-12-12 13:41 - 2017-11-26 06:25 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2017-12-12 13:41 - 2017-11-26 06:25 - 000354304 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwaApi.dll
2017-12-12 13:41 - 2017-11-26 06:25 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2017-12-12 13:41 - 2017-11-26 06:25 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe
2017-12-12 13:41 - 2017-11-26 06:23 - 000588288 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2017-12-12 13:41 - 2017-11-26 06:22 - 000720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2017-12-12 13:41 - 2017-11-26 06:19 - 001167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2017-12-12 13:41 - 2017-11-26 06:19 - 000887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2017-12-12 13:41 - 2017-11-26 06:19 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadjcsp.dll
2017-12-12 13:41 - 2017-11-26 06:18 - 003186688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2017-12-12 13:41 - 2017-11-26 06:18 - 001424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2017-12-12 13:41 - 2017-11-26 06:18 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2017-12-12 13:41 - 2017-11-26 06:17 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2017-12-12 13:41 - 2017-11-26 06:17 - 002208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2017-12-12 13:41 - 2017-11-26 06:17 - 001054720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2017-12-12 13:41 - 2017-11-26 06:08 - 017159680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-12-12 13:41 - 2017-11-26 06:05 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2017-12-12 13:41 - 2017-11-26 06:04 - 003578368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2017-12-12 13:41 - 2017-11-26 06:04 - 002596352 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2017-12-12 13:41 - 2017-11-26 06:03 - 004772352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2017-12-12 13:41 - 2017-11-26 06:03 - 002783744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2017-12-12 13:41 - 2017-11-26 06:01 - 003163648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2017-12-12 13:41 - 2017-11-26 06:00 - 000899584 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2017-12-12 13:41 - 2017-11-26 05:59 - 004814848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2017-12-12 13:41 - 2017-11-26 05:59 - 000726016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2017-12-12 13:41 - 2017-11-26 05:59 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2017-12-12 13:41 - 2017-11-26 05:59 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2017-12-12 13:41 - 2017-11-26 05:58 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2017-12-12 13:41 - 2017-11-26 05:48 - 000534528 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2017-12-12 13:41 - 2017-11-26 05:48 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\acppage.dll
2017-12-12 13:41 - 2017-11-26 05:21 - 001474680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2017-12-12 13:41 - 2017-11-26 05:21 - 001432816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2017-12-12 13:41 - 2017-11-26 05:02 - 001124760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2017-12-12 13:41 - 2017-11-26 05:01 - 002339296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2017-12-12 13:41 - 2017-11-26 05:01 - 000791960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2017-12-12 13:41 - 2017-11-26 05:01 - 000746904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2017-12-12 13:41 - 2017-11-26 05:01 - 000590944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2017-12-12 13:41 - 2017-11-26 05:01 - 000506256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2017-12-12 13:41 - 2017-11-26 05:01 - 000354200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2017-12-12 13:41 - 2017-11-26 05:00 - 001990160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2017-12-12 13:41 - 2017-11-26 05:00 - 000353848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2017-12-12 13:41 - 2017-11-26 04:59 - 000703568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2017-12-12 13:41 - 2017-11-26 04:58 - 001148216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2017-12-12 13:41 - 2017-11-26 04:58 - 001057824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2017-12-12 13:41 - 2017-11-26 04:57 - 001490840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2017-12-12 13:41 - 2017-11-26 04:51 - 001558856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2017-12-12 13:41 - 2017-11-26 04:51 - 000661664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2017-12-12 13:41 - 2017-11-26 04:41 - 002393600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2017-12-12 13:41 - 2017-11-26 04:41 - 001470976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2017-12-12 13:41 - 2017-11-26 04:41 - 000372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll
2017-12-12 13:41 - 2017-11-26 04:41 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2017-12-12 13:41 - 2017-11-26 04:41 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2017-12-12 13:41 - 2017-11-26 04:40 - 000160256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smartscreenps.dll
2017-12-12 13:41 - 2017-11-26 04:38 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatializerApo.dll
2017-12-12 13:41 - 2017-11-26 04:37 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2017-12-12 13:41 - 2017-11-26 04:36 - 013703168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2017-12-12 13:41 - 2017-11-26 04:36 - 000444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2017-12-12 13:41 - 2017-11-26 04:36 - 000351232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DictationManager.dll
2017-12-12 13:41 - 2017-11-26 04:36 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2017-12-12 13:41 - 2017-11-26 04:35 - 000557056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9on12.dll
2017-12-12 13:41 - 2017-11-26 04:35 - 000293888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll
2017-12-12 13:41 - 2017-11-26 04:35 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2017-12-12 13:41 - 2017-11-26 04:35 - 000242176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll
2017-12-12 13:41 - 2017-11-26 04:32 - 011923456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2017-12-12 13:41 - 2017-11-26 04:31 - 000660480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2017-12-12 13:41 - 2017-11-26 04:31 - 000456704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2017-12-12 13:41 - 2017-11-26 04:30 - 004385280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2017-12-12 13:41 - 2017-11-26 04:30 - 002859520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2017-12-12 13:41 - 2017-11-26 04:29 - 002869760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2017-12-12 13:41 - 2017-11-26 04:29 - 000823808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2017-12-12 13:41 - 2017-11-26 04:28 - 004249600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2017-12-12 13:41 - 2017-11-26 04:24 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2017-12-12 13:41 - 2017-11-26 04:24 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\acppage.dll
2017-12-12 13:41 - 2017-11-19 01:35 - 003331520 _____ C:\WINDOWS\system32\Windows.Mirage.dll
2017-12-12 13:41 - 2017-11-18 20:20 - 002491112 _____ C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2017-12-11 05:39 - 2017-12-05 15:17 - 036348400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2017-12-11 05:39 - 2017-12-05 15:17 - 029379568 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2017-12-11 05:39 - 2017-12-05 15:17 - 023267096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2017-12-11 05:39 - 2017-12-05 15:17 - 019040512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2017-12-11 05:39 - 2017-12-05 15:17 - 013255032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2017-12-11 05:39 - 2017-12-05 15:17 - 010883744 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 040238576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 013867840 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 011782096 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 004202808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 003615032 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 001331200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 001321264 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 001135464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 001102368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 001044664 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 001038496 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 000982888 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 000932424 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 000885496 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 000794576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 000741224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 000618928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 000616240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 000599536 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 000506680 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2017-12-11 05:37 - 2017-12-05 15:17 - 035156368 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2017-12-11 05:36 - 2017-12-05 15:17 - 001989944 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438859.dll
2017-12-11 05:36 - 2017-12-05 15:17 - 001674736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438859.dll
2017-12-09 20:34 - 2017-12-09 20:34 - 000000000 ____D C:\ProgramData\Gaijin
2017-12-07 23:47 - 2017-12-07 23:47 - 000000000 ____D C:\Users\Nicholas\AppData\LocalLow\Imperium42 Game Studio
2017-12-07 23:16 - 2017-12-16 16:00 - 000000000 ____D C:\Program Files\FocusriteUSB
2017-12-07 23:16 - 2017-12-07 23:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Focusrite Audio Engineering Ltd
2017-12-07 23:16 - 2017-11-08 16:52 - 001805344 _____ (Microsoft Corporation) C:\WINDOWS\system32\WdfCoInstaller01011.dll
2017-12-07 23:16 - 2017-11-08 16:52 - 000097984 _____ (Focusrite Audio Engineering Ltd.) C:\WINDOWS\system32\Drivers\FocusriteUSBSwRoot.sys
2017-12-07 23:02 - 2017-12-07 23:02 - 000003800 _____ C:\WINDOWS\System32\Tasks\Intel PTT EK Recertification
2017-12-07 22:10 - 2017-12-11 11:47 - 000000000 ____D C:\Users\Public\Creative
2017-12-06 01:37 - 2017-12-06 01:37 - 000000000 ____D C:\WINDOWS\PCHEALTH
2017-11-30 16:03 - 2017-12-05 15:17 - 000634224 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2017-11-30 16:03 - 2017-11-27 19:56 - 001991016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438843.dll
2017-11-30 16:03 - 2017-11-27 19:56 - 001674552 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438843.dll
2017-11-30 16:03 - 2017-11-27 19:56 - 000045496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2017-12-18 03:47 - 2015-06-01 13:38 - 000000000 ____D C:\ProgramData\boost_interprocess
2017-12-18 03:46 - 2017-11-15 19:02 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-12-18 03:46 - 2017-04-13 13:58 - 000000000 ____D C:\ProgramData\NVIDIA
2017-12-18 03:46 - 2016-08-08 11:18 - 000000000 ____D C:\ProgramData\CLink4
2017-12-18 03:46 - 2016-08-02 17:40 - 000026192 _____ (Windows ® Server 2003 DDK provider) C:\WINDOWS\gdrv.sys
2017-12-18 03:45 - 2017-09-29 02:45 - 034340864 _____ C:\WINDOWS\system32\config\HARDWARE
2017-12-18 03:45 - 2017-09-29 02:45 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2017-12-18 02:37 - 2017-11-15 18:54 - 001030358 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-12-18 02:22 - 2016-08-29 16:19 - 000000000 ____D C:\Users\Nicholas\AppData\LocalLow\Clover
2017-12-18 02:13 - 2017-09-29 07:44 - 000000000 ____D C:\WINDOWS\INF
2017-12-18 01:54 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\DeliveryOptimization
2017-12-18 01:42 - 2015-06-10 01:14 - 000000000 ____D C:\Program Files\Java
2017-12-18 01:36 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2017-12-18 01:36 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\system32\Macromed
2017-12-18 01:19 - 2017-09-29 07:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2017-12-17 22:37 - 2017-09-29 07:46 - 000000000 ___HD C:\Program Files\WindowsApps
2017-12-17 22:37 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\AppReadiness
2017-12-17 20:01 - 2017-05-10 01:37 - 000000000 ____D C:\Users\Nicholas\Documents\TheCuriousExpedition
2017-12-17 20:01 - 2017-04-13 13:58 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2017-12-17 20:01 - 2016-01-26 16:04 - 000000000 ____D C:\Users\Nicholas\AppData\Roaming\deluge
2017-12-17 20:01 - 2015-09-13 23:33 - 000000000 ____D C:\Users\Nicholas\Documents\The Witcher 3
2017-12-17 20:01 - 2013-12-23 15:08 - 000000000 ____D C:\Program Files (x86)\Adobe
2017-12-17 19:27 - 2017-11-15 18:52 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2017-12-17 18:16 - 2017-11-15 19:02 - 000004158 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{9DC10795-420A-4033-8E63-D1F230E8C7B1}
2017-12-17 10:38 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2017-12-16 14:55 - 2015-03-20 12:35 - 000000572 __RSH C:\ProgramData\ntuser.pol
2017-12-16 14:53 - 2009-07-13 21:20 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2017-12-16 14:51 - 2017-04-13 13:58 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2017-12-15 21:26 - 2017-11-15 18:58 - 000000000 ____D C:\Users\Nicholas
2017-12-15 21:18 - 2016-08-09 20:29 - 000000000 ____D C:\Program Files\CCleaner
2017-12-15 17:45 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\rescache
2017-12-15 09:58 - 2016-02-05 15:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Seagate
2017-12-15 09:56 - 2013-12-21 16:50 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-12-15 09:39 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\system32\NDF
2017-12-15 03:46 - 2017-11-15 18:52 - 005137592 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-12-15 03:45 - 2011-04-12 02:28 - 000000000 ____D C:\WINDOWS\CSC
2017-12-15 02:36 - 2013-12-26 10:27 - 000000000 ____D C:\WINDOWS\pss
2017-12-14 23:43 - 2017-09-29 07:46 - 000000000 ___RD C:\WINDOWS\PrintDialog
2017-12-14 23:30 - 2017-04-13 13:58 - 001671164 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2017-12-14 22:58 - 2016-07-21 20:00 - 000000000 ____D C:\Users\Nicholas\AppData\Roaming\discord
2017-12-14 22:33 - 2017-03-18 15:03 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2017-12-14 16:41 - 2013-12-21 17:45 - 000000000 ____D C:\Users\Nicholas\AppData\Roaming\vlc
2017-12-13 13:51 - 2017-08-08 18:35 - 000000000 ____D C:\Users\Nicholas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2017-12-12 17:45 - 2017-11-11 17:07 - 000000000 ___RD C:\Users\Nicholas\3D Objects
2017-12-12 17:43 - 2017-09-29 08:42 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2017-12-12 17:43 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\TextInput
2017-12-12 17:43 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2017-12-12 17:43 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2017-12-12 17:43 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2017-12-12 17:43 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\system32\oobe
2017-12-12 17:43 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\system32\appraiser
2017-12-12 17:43 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\ShellExperiences
2017-12-12 17:43 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\Provisioning
2017-12-12 17:43 - 2017-09-29 07:46 - 000000000 ____D C:\Program Files\Windows Defender
2017-12-12 17:43 - 2017-09-29 07:46 - 000000000 ____D C:\PerfLogs
2017-12-12 17:43 - 2017-09-29 02:45 - 000000000 ____D C:\WINDOWS\system32\Dism
2017-12-12 13:46 - 2013-12-21 16:38 - 000000000 ____D C:\WINDOWS\system32\MRT
2017-12-12 13:43 - 2017-10-11 12:00 - 133326408 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe
2017-12-12 13:43 - 2013-12-21 16:38 - 133326408 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-12-12 13:42 - 2017-09-29 07:42 - 001587200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2017-12-12 13:42 - 2017-09-29 07:41 - 001856000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2017-12-12 13:42 - 2017-09-29 07:41 - 000139672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2017-12-12 13:42 - 2017-09-29 07:41 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2017-12-11 13:27 - 2013-12-21 17:49 - 000000000 ____D C:\Program Files (x86)\League Of Legends
2017-12-11 09:42 - 2015-12-12 22:06 - 000000000 ____D C:\ProgramData\TEMP
2017-12-09 20:38 - 2013-12-23 15:38 - 000000000 ____D C:\Users\Nicholas\Documents\My Games
2017-12-08 09:41 - 2014-02-08 17:21 - 000000000 ____D C:\ProgramData\Package Cache
2017-12-07 23:02 - 2016-08-02 17:41 - 000000000 ____D C:\ProgramData\Intel
2017-12-07 23:02 - 2013-12-21 17:06 - 000000000 ____D C:\Program Files\Intel
2017-12-07 22:58 - 2017-02-27 15:39 - 000146054 _____ C:\WINDOWS\system32\tbt_log.txt
2017-12-06 01:37 - 2009-07-13 20:34 - 000000478 _____ C:\WINDOWS\win.ini
2017-12-05 15:17 - 2017-10-20 00:38 - 004485560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2017-12-05 15:17 - 2017-10-20 00:38 - 003817400 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2017-12-05 15:17 - 2017-10-20 00:38 - 001032688 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2017-12-05 15:17 - 2017-10-20 00:38 - 000048442 _____ C:\WINDOWS\system32\nvinfo.pb
2017-12-05 13:56 - 2017-04-13 13:58 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2017-12-05 13:32 - 2017-04-13 13:58 - 005966696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2017-12-05 13:32 - 2017-04-13 13:58 - 002589168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2017-12-05 13:32 - 2017-04-13 13:58 - 001766288 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2017-12-05 13:32 - 2017-04-13 13:58 - 000607304 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2017-12-05 13:32 - 2017-04-13 13:58 - 000450352 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2017-12-05 13:32 - 2017-04-13 13:58 - 000122768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2017-12-05 13:32 - 2017-04-13 13:58 - 000082744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2017-12-03 16:38 - 2017-09-29 07:49 - 000835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2017-12-03 16:38 - 2017-09-29 07:49 - 000177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2017-11-30 16:07 - 2017-04-13 13:58 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2017-11-30 15:59 - 2017-11-15 19:02 - 000004308 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-30 15:59 - 2017-11-15 19:02 - 000004000 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-30 15:59 - 2017-11-15 19:02 - 000003940 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-30 15:59 - 2017-11-15 19:02 - 000003894 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-30 15:59 - 2017-11-15 19:02 - 000003866 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-30 15:59 - 2017-11-15 19:02 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-30 15:59 - 2017-11-15 19:02 - 000003696 _____ C:\WINDOWS\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-30 15:59 - 2017-11-15 19:02 - 000003654 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-30 11:38 - 2017-01-15 19:21 - 000000000 ____D C:\Users\Nicholas\AppData\Roaming\Spotify
2017-11-29 16:30 - 2016-12-05 21:28 - 000002469 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk
2017-11-27 19:56 - 2017-10-20 00:38 - 001615472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll
2017-11-27 19:56 - 2017-10-20 00:38 - 000225208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2017-11-27 19:56 - 2017-10-20 00:38 - 000057792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys
2017-11-26 16:54 - 2017-01-11 21:48 - 000000000 ____D C:\Users\Nicholas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dustin Blackman
2017-11-26 16:02 - 2010-11-20 21:27 - 000545440 _____ (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2017-11-25 06:40 - 2017-04-13 13:58 - 007874971 _____ C:\WINDOWS\system32\nvcoproc.bin
2017-11-18 08:29 - 2016-08-27 20:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2017-11-18 01:18 - 2017-02-20 04:08 - 000000000 ____D C:\ProgramData\Chemstations
2017-11-18 01:18 - 2014-10-06 11:58 - 000000000 ____D C:\ProgramData\CambridgeSoft
 
==================== Files in the root of some directories =======
 
2015-03-10 10:30 - 2015-03-10 10:30 - 000000132 _____ () C:\Users\Nicholas\AppData\Roaming\Adobe BMP Format CS6 Prefs
2015-12-22 03:34 - 2016-12-05 19:07 - 000000033 _____ () C:\Users\Nicholas\AppData\Roaming\AdobeWLCMCache.dat
2015-07-26 11:31 - 2016-07-17 19:50 - 000000300 _____ () C:\Users\Nicholas\AppData\Roaming\BreakingPoint_Login.ini
2015-07-26 11:32 - 2016-05-09 10:16 - 000001428 _____ () C:\Users\Nicholas\AppData\Roaming\BreakingPoint_Options.ini
2015-06-10 13:32 - 2015-06-11 01:30 - 000114431 _____ () C:\Users\Nicholas\AppData\Roaming\net.telestream.wirecast.xml
2015-06-10 13:32 - 2015-06-10 13:32 - 000014543 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_AFL9067099885_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000014186 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_AFL9067099885_brandingimage_main.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000067454 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_AKAMAI_AFFILIATE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000004755 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_BAMBUSER_AFFILIATE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000004935 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_CHURCHSTREAMING_AFFILIATE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000003123 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_DACAST_AFFILIATE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000003931 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_DAILYMOTION_AFFILIATE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000003213 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_HIGH_SCHOOL_CUBE_AFFIALITE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000004356 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_MAKETV_AFFIALITE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000003439 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_MERIDIX_AFFIALITE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000003825 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_MERIDIX_AFFIALITE_ID_brandingimage_main.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000005621 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_NETBRIEFINGS_AFFIALITE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000010088 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_STREAMINGCHURCH_AFFIALITE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000004482 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_STREAMINGCHURCH_AFFIALITE_ID_brandingimage_main.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000007122 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_STREAMING_MEDIA_HOSTING_AFFILIATE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000010619 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_STREAMVU_AFFIALITE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000005241 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_STREAM_SPOT_AFFILIATE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000016966 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_STRETCH_INTERNET_AFFIALITE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000008986 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_SUNDAY_STREAMS_AFFIALITE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000003302 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_TULIX_AFFIALITE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000008683 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_ZIXI_AFFILIATE_ID_brandingimage_destination.png
2015-06-11 01:04 - 2015-06-11 01:04 - 000000116 _____ () C:\Users\Nicholas\AppData\Roaming\pc-capture-log.txt
2015-12-12 22:09 - 2016-10-12 23:48 - 000001834 _____ () C:\Users\Nicholas\AppData\Roaming\SAS7_000.DAT
2015-05-07 22:05 - 2017-08-17 17:19 - 000005318 _____ () C:\Users\Nicholas\AppData\Roaming\SpeedRunnersLog.txt
2015-05-08 00:12 - 2015-07-21 00:36 - 000002564 _____ () C:\Users\Nicholas\AppData\Roaming\TargetInvocationLog.txt
2016-09-12 20:44 - 2016-11-17 00:29 - 000048045 _____ () C:\Users\Nicholas\AppData\Local\CDXLExtendedShim.log
2016-08-08 10:50 - 2016-08-09 20:34 - 000000000 _____ () C:\Users\Nicholas\AppData\Local\Driver_LOM_8171Present.flag
2017-12-14 18:08 - 2017-12-14 18:08 - 000000218 _____ () C:\Users\Nicholas\AppData\Local\recently-used.xbel
2017-12-15 01:44 - 2017-12-15 01:44 - 000000017 _____ () C:\Users\Nicholas\AppData\Local\resmon.resmoncfg
 
==================== Bamital & volsnap ======================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
C:\WINDOWS\system32\drivers\psehlorv.sys -> MD5 = D41D8CD98F00B204E9800998ECF8427E (0-byte MD5) <======= ATTENTION
 
LastRegBack: 2017-12-16 18:22
 
==================== End of FRST.txt ============================

Addition
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-12-2017
Ran by Nicholas (18-12-2017 03:50:47)
Running from C:\Users\Nicholas\Desktop
Windows 10 Pro Version 1709 16299.125 (X64) (2017-11-16 01:04:07)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-2400751361-3771152734-1433153139-500 - Administrator - Enabled)
DefaultAccount (S-1-5-21-2400751361-3771152734-1433153139-503 - Limited - Disabled)
Guest (S-1-5-21-2400751361-3771152734-1433153139-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2400751361-3771152734-1433153139-1009 - Limited - Enabled)
Nicholas (S-1-5-21-2400751361-3771152734-1433153139-1001 - Administrator - Enabled) => C:\Users\Nicholas
WDAGUtilityAccount (S-1-5-21-2400751361-3771152734-1433153139-504 - Limited - Disabled)
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
@BIOS B16.0608.1 (HKLM-x32\...\{C9D46F25-5F9D-4E25-B24F-BC00E9EDF529}) (Version: 3.00.0000 - GIGABYTE) Hidden
@BIOS B16.0608.1 (HKLM-x32\...\InstallShield_{C9D46F25-5F9D-4E25-B24F-BC00E9EDF529}) (Version: 3.00.0000 - GIGABYTE)
3DOSD (HKLM-x32\...\{F0D1FAA5-F9F8-4524-9B65-A5BFDDD5A29B}) (Version: 1.00.0025 - GIGABYTE) Hidden
3DOSD (HKLM-x32\...\InstallShield_{F0D1FAA5-F9F8-4524-9B65-A5BFDDD5A29B}) (Version: 1.00.0025 - GIGABYTE)
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Adobe Acrobat DC (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0C0F074E4100}) (Version: 18.009.20050 - Adobe Systems Incorporated)
Adobe After Effects CC 2015 (HKLM-x32\...\{147EC100-14BE-45EF-AB42-35BAEE7D02F0}) (Version: 13.7.0 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated)
Adobe Animate CC 2015 (HKLM-x32\...\{8CEBC11D-C52F-11E5-A0D6-D44AB5E81A82}) (Version: 15.1 - Adobe Systems Incorporated)
Adobe Audition CC 2015 (HKLM-x32\...\{839A3566-AED6-4787-A849-5CBE2B1DC6AE}) (Version: 8.1.0 - Adobe Systems Incorporated)
Adobe Bridge CC (64 Bit) (HKLM-x32\...\{359F8007-6486-429C-A8C5-D67F6897C88C}) (Version: 6.2 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.9.0.327 - Adobe Systems Incorporated)
Adobe Dreamweaver CC 2015 (HKLM-x32\...\{EE2A0AA8-0386-11E5-8603-BC82F5DB1A71}) (Version: 16.1.0 - Adobe Systems Incorporated)
Adobe Edge Animate CC 2015 (HKLM-x32\...\{92AC6B8F-F962-11E4-867D-81149C0292DF}) (Version: 6.0 - Adobe Systems Incorporated)
Adobe ExtendScript Toolkit CC (HKLM-x32\...\{6297487E-3778-4F72-B458-55690418DB98}) (Version: 4.0.0.0 - Adobe Systems Incorporated)
Adobe Extension Manager CC (HKLM-x32\...\{244FD30F-63F1-49B9-9D98-1150FF4FFCB1}) (Version: 7.3.2 - Adobe Systems Incorporated)
Adobe Flash Player 27 NPAPI (HKLM-x32\...\{34D4D627-00A1-4C0D-BF68-576C146B9ED6}) (Version: 27.0.0.187 - Adobe Systems Incorporated)
Adobe Illustrator CC 2015 (HKLM-x32\...\{5680D629-B263-49CC-821E-3CEBD4507B51}) (Version: 19.2.1 - Adobe Systems Incorporated)
Adobe InCopy CC 2015 (HKLM-x32\...\{9EF1DB49-6D32-1014-93B7-EB62FA572532}) (Version: 11.0.1.105 - Adobe Systems Incorporated)
Adobe InDesign CC 2015 (HKLM-x32\...\{DBFD0312-6E55-1014-8952-E78D43BC0147}) (Version: 11.3.0.034 - Adobe Systems Incorporated)
Adobe Lightroom (HKLM-x32\...\{8048A5DF-8A70-5BE1-954B-E0FDE1BD0D0D}) (Version: 6.7 - Adobe Systems Incorporated)
Adobe Media Encoder CC 2015 (HKLM-x32\...\{0FAC7130-BEC5-47A5-8813-1D339B8326ED}) (Version: 9.0.0 - Adobe Systems Incorporated)
Adobe Muse CC 2015 (HKLM-x32\...\{84ED2B90-CBAB-11E5-B342-F3EAF3E5295A}) (Version: 2015.1.1.21 - Adobe Systems Incorporated)
Adobe Photoshop CC 2015 (HKLM-x32\...\{793C2BF7-A4FE-4608-91C9-9282C5801C21}) (Version: 16.1.2 - Adobe Systems Incorporated)
Adobe Prelude CC 2015 (HKLM-x32\...\{4D911A81-7146-470C-A48F-98479255251C}) (Version: 4.0.0 - Adobe Systems Incorporated)
Adobe Premiere Pro CC 2015 (HKLM-x32\...\{38C72D42-0672-43B1-9E05-E7631684F9A1}) (Version: 9.0.0 - Adobe Systems Incorporated)
Adobe Premiere Pro CC 2017 (HKLM-x32\...\PPRO_11_0_0) (Version: 11.0.0 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.01) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.01 - Adobe Systems Incorporated)
Adobe Scout CC (HKLM\...\{BA573BFE-83B4-11E3-93D2-D231FEB1DC81}) (Version: 1.1.3.354121 - Adobe Systems Incorporated) Hidden
Adobe SpeedGrade CC 2015 (HKLM-x32\...\{8FD7F1DB-7355-469E-A3F2-2118148D8477}) (Version: 9.1.0 - Adobe Systems Incorporated)
Adobe Update Management Tool (HKLM-x32\...\{534A7A1A-7102-4AF6-23EA-7CD279C7B625}_is1) (Version: 8.0 - PainteR)
Ambient LED (HKLM-x32\...\{BEF97B38-D1B8-45B4-A60A-AF5C1556CC72}) (Version: 1.00.1605.2501 - GIGABYTE) Hidden
Ambient LED (HKLM-x32\...\InstallShield_{BEF97B38-D1B8-45B4-A60A-AF5C1556CC72}) (Version: 1.00.1605.2501 - GIGABYTE)
APP Center (HKLM-x32\...\{D50BEE9A-0EC6-4A58-BF90-35BDC6D6495D}) (Version: 1.00.1703.2301 - GIGABYTE) Hidden
APP Center (HKLM-x32\...\InstallShield_{D50BEE9A-0EC6-4A58-BF90-35BDC6D6495D}) (Version: 1.00.1703.2301 - GIGABYTE)
Apple Application Support (32-bit) (HKLM-x32\...\{3D1290E6-1F77-46D5-A715-A56679C8D4E3}) (Version: 6.0.2 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{D0E45DEC-F4B9-4370-A9DF-66837789C2EF}) (Version: 6.0.2 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{E3C4B99B-BE71-4C27-8E3C-4FAE3C46E1D5}) (Version: 11.0.0.30 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{C1BBFD2A-BCDD-45B3-8C0B-66BD434970A8}) (Version: 2.4.8.1 - Apple Inc.)
Application Verifier x64 External Package (HKLM\...\{0115F5D3-35C7-5EF3-0C93-87C92E678D76}) (Version: 10.1.14393.33 - Microsoft) Hidden
Asmedia ASM106x SATA Host Controller Driver (HKLM-x32\...\{DF6C3726-7E53-4772-9763-E9F147769F51}) (Version: 3.1.8.0000 - Asmedia Technology)
AutoGreen (HKLM-x32\...\{CFB76B97-0C1C-4E1A-999A-DE62FA5FEB9A}) (Version: 1.0 - GIGABYTE) Hidden
AutoGreen (HKLM-x32\...\InstallShield_{CFB76B97-0C1C-4E1A-999A-DE62FA5FEB9A}) (Version: 1.0 - GIGABYTE)
Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.8.2.48475 - Electronic Arts)
Battlefield™ 1 (HKLM-x32\...\{335B50BC-6130-4BAF-9A6A-F1561270587B}) (Version: 1.0.50.33312 - Electronic Arts)
Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB)
BIOS Setup (HKLM-x32\...\{9D48202D-C767-40E7-8A4E-C14BD7328168}) (Version: 1.00.0000 - GIGABYTE) Hidden
BIOS Setup (HKLM-x32\...\InstallShield_{9D48202D-C767-40E7-8A4E-C14BD7328168}) (Version: 1.00.0000 - GIGABYTE)
bl (HKLM-x32\...\{2A075BB4-E976-4278-BF3F-E5C6945D84C0}) (Version: 1.0.0 - Your Company Name) Hidden
Blizzard App (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
BOSS Userlist Manager (HKLM-x32\...\{F0AB569C-99EF-4F4D-992D-2206E354C903}) (Version: 6.7.2 - Surazal)
Breaking Point (HKLM-x32\...\{D94AC775-62AF-4630-8292-7EB26691AAAE}) (Version: 5.0.2.9 - The Zombie Infection) Hidden
Breaking Point (HKLM-x32\...\Breaking Point 5.0.2.9) (Version: 5.0.2.9 - The Zombie Infection)
BUSB (HKLM-x32\...\{0AADC50C-C4F8-49A7-8699-AFE46875CA67}) (Version: 1.16.0304.1 - GIGABYTE)
CCleaner (HKLM\...\CCleaner) (Version: 5.38 - Piriform)
CH Control Manager Software (HKLM-x32\...\CHControlManager_is1) (Version:  - )
Championify (HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Championify) (Version: 2.1.3 - Dustin Blackman)
Clover V3.2 (HKLM-x32\...\Clover) (Version: 3.2.3.12011 - 易捷科技)
Corsair Link 4 (HKLM-x32\...\{33593361-5FB1-4D73-BA5A-9F30392BFEE8}) (Version: 4.3.0.154 - Corsair Components, Inc.) Hidden
Corsair Link 4 (HKLM-x32\...\{43242464-db63-47fb-b75c-706bc0dcd863}) (Version: 4.3.0.154 - Corsair Components, Inc.)
Corsair Link™ USB Dongle (Driver Removal) (HKLM-x32\...\SIUSBXP&1B1C&1C00) (Version:  - Corsair Memory, Inc.)
Curse (HKLM-x32\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 6.0.0.0 - Curse)
DayZ Commander (HKLM-x32\...\{B3653588-3AC0-4A1D-950F-D96531E84374}) (Version: 0.92.91 - Dotjosh Studios)
Deluge 1.3.14 (HKLM-x32\...\Deluge) (Version:  - )
Destiny 2 (HKLM-x32\...\Destiny 2) (Version:  - Blizzard Entertainment)
Discord (HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Discord) (Version: 0.0.299 - Discord Inc.)
DisplayFusion 9.1 (HKLM-x32\...\B076073A-5527-4f4f-B46B-B10692277DA2_is1) (Version: 9.1.0.0 - Binary Fortress Software)
Dragon NaturallySpeaking 13 (HKLM-x32\...\{33EA20FB-5389-4938-BA59-2BCD9BB68F41}) (Version: 13.00.000 - Nuance Communications Inc.)
EaseUS Partition Master 11.0 Trial Edition (HKLM-x32\...\EaseUS Partition Master Trial Edition_is1) (Version:  - EaseUS)
EasyTune (HKLM-x32\...\{7F635314-EE21-4E4B-A68D-69AE70BA0E9B}) (Version: 1.16.0506 - GIGABYTE) Hidden
EasyTune (HKLM-x32\...\InstallShield_{7F635314-EE21-4E4B-A68D-69AE70BA0E9B}) (Version: 1.16.0506 - GIGABYTE)
EasyTuneEngineService (HKLM-x32\...\{964575C3-5820-4642-A89A-754255B5EFE1}) (Version: 2.16.0603 - GIGABYTE) Hidden
EasyTuneEngineService (HKLM-x32\...\InstallShield_{964575C3-5820-4642-A89A-754255B5EFE1}) (Version: 2.16.0603 - GIGABYTE)
ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB)
Etcher 1.2.1 (only current user) (HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\573339af-d9e1-5dd3-804c-e0162fac1f41) (Version: 1.2.1 - Resin Inc.)
EVGA PrecisionX OC (HKLM-x32\...\{E1879431-8D6F-422D-A3CD-19773C5E8D37}) (Version: 6.0.4 - EVGA Corporation)
EZRAID  (HKLM-x32\...\{8F307CB5-FE1C-4BF3-8747-305D14161916}) (Version: 1.00.0000 - GIGABYTE) Hidden
EZRAID  (HKLM-x32\...\InstallShield_{8F307CB5-FE1C-4BF3-8747-305D14161916}) (Version: 1.00.0000 - GIGABYTE)
Fast Boot (HKLM-x32\...\{FA8FB4F2-F524-48E1-A06C-45602FBF26CD}) (Version: 1.16.0406 - GIGABYTE) Hidden
Fast Boot (HKLM-x32\...\InstallShield_{FA8FB4F2-F524-48E1-A06C-45602FBF26CD}) (Version: 1.16.0406 - GIGABYTE)
FileBot (HKLM\...\{3C2F8747-8A77-4CF9-8751-83BEA632F148}) (Version: 4.7 - Reinhard Pointner)
Focusrite USB 4.36.6.0 (HKLM\...\Focusrite USB_is1) (Version: 4.36.6.0 - Focusrite Audio Engineering Ltd.)
foobar2000 v1.3.17 (HKLM-x32\...\foobar2000) (Version: 1.3.17 - Peter Pawlowski)
GigabyteFirmwareUpdateUtility (HKLM-x32\...\{1CBA99CE-1AB3-4366-AFB4-7F7B75EBBE35}) (Version: 1.00.0000 - GIGABYTE) Hidden
GigabyteFirmwareUpdateUtility (HKLM-x32\...\InstallShield_{1CBA99CE-1AB3-4366-AFB4-7F7B75EBBE35}) (Version: 1.00.0000 - GIGABYTE)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 63.0.3239.108 - Google Inc.)
HCS Plugins version 2.2 (HKLM-x32\...\{616AF147-5061-4380-85FB-BB564D2CA8A9}_is1) (Version: 2.2 - HCS VoicePacks Ltd)
HCS VoicePacks A.S.T.R.A version 2.2 (HKLM-x32\...\{B17F2FD1-FE8F-4F03-A0E9-084A4E7FBC47}_is1) (Version: 2.2 - HCS VoicePacks Ltd)
Hearthstone (HKLM-x32\...\Hearthstone) (Version:  - Blizzard Entertainment)
Herramientas de corrección de Microsoft Office 2016: español (HKLM\...\{90160000-001F-0C0A-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Intel Extreme Tuning Utility (HKLM-x32\...\{3e93c46f-8b15-4bb9-939f-646ab7287be9}) (Version: 6.0.2.1 - Intel Corporation)
Intel Extreme Tuning Utility (HKLM-x32\...\{51B6F1D8-D460-4883-BB85-66C3BD88771B}) (Version: 6.0.2.1 - Intel Corporation) Hidden
Intel® Chipset Device Software (HKLM-x32\...\{c7f54569-0018-439c-809a-48046a4d4ebc}) (Version: 10.1.1.9 - Intel® Corporation) Hidden
Intel® Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1054 - Intel Corporation)
Intel® Network Connections 20.7.67.0 (HKLM\...\PROSetDX) (Version: 20.7.67.0 - Intel)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4364 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.8.0.1042 - Intel Corporation)
Intel® Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.47.866.0 - Intel Corporation) Hidden
Intel® Trusted Connect Services Client (HKLM-x32\...\{246c6cc0-9810-4728-9a29-28474de2eec5}) (Version: 1.47.866.0 - Intel Corporation) Hidden
Intel® Turbo Boost Technology Monitor 2.6 (HKLM\...\{6C9365EB-1F9E-4893-9196-3EC77C88D0C5}) (Version: 2.6.2.0 - Intel)
Intel® USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.0.19 - Intel Corporation)
Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\{3FD0C489-0F02-481a-A3E1-9754CD396761}) (Version:  - Intel Corporation)
Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\3FD0C489-0F02-481a-A3E1-9754CD396761) (Version:  - Intel Corporation)
Intellisense Lang Pack Mobile Extension SDK 10.0.14393.0 (HKLM-x32\...\{26D23C60-AC47-46E5-8EDF-D19F41CAB666}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
iTunes (HKLM\...\{94E81D4F-FB5A-4B29-B385-33896CC9BE7E}) (Version: 12.7.0.166 - Apple Inc.)
Java 8 Update 152 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180152F0}) (Version: 8.0.1520.16 - Oracle Corporation)
Killer Bandwidth Control Filter Driver (HKLM\...\{B7E3FD6A-264E-47A7-96C3-59BB9CFD51D0}) (Version: 1.1.57.1346 - Rivet Networks) Hidden
Killer E240x Drivers (HKLM\...\{A055CF47-FBFC-425E-9C7E-B0695525B489}) (Version: 1.1.57.1346 - Rivet Networks) Hidden
Killer Network Manager (HKLM\...\{2FF1AE25-2625-449A-AB47-E133BAB4996E}) (Version: 1.1.57.1346 - Rivet Networks) Hidden
Killer Performance Suite (HKLM-x32\...\{009DF489-4590-4579-BAB2-0136BB829E4A}) (Version: 1.1.57.1346 - Rivet Networks)
Kits Configuration Installer (HKLM-x32\...\{76825BA0-C536-C284-BAA1-9DB7A2D30D54}) (Version: 10.1.14393.33 - Microsoft) Hidden
K-Lite Codec Pack 9.3.0 (Basic) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 9.3.0 - )
League of Legends (HKLM-x32\...\{79BF4901-1EC4-4726-B3C2-A7859706C6E7}) (Version: 3.0.0 - Riot Games) Hidden
League of Legends (HKLM-x32\...\League of Legends 3.0.0) (Version: 3.0.0 - Riot Games)
Logitech Camera Settings (HKLM-x32\...\LogiUCDPP) (Version: 1.1.87.0 - Logitech Europe S.A.)
Logitech Gaming Software 8.91 (HKLM\...\Logitech Gaming Software) (Version: 8.91.48 - Logitech Inc.)
Logitech Webcam Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.51 - Logitech Inc.)
LOOT version 0.11.0 (HKLM-x32\...\{BF634210-A0D4-443F-A657-0DCE38040374}_is1) (Version: 0.11.0 - LOOT Team)
Malwarebytes version 3.3.1.2183 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes)
Medieval CUE Splitter (HKLM-x32\...\{B96D2269-568B-4CBF-9332-12FAE8B158F7}) (Version: 1.2.0 - Medieval Software)
MestReNova 8.1.1-11591 (HKLM-x32\...\MestReNova) (Version: 8.1.1-11591 - Mestrelab Research S.L.)
MestReNova LITE 5.2.5-5780 (HKLM-x32\...\MestReNova LITE) (Version: 5.2.5-5780 - Mestrelab Research S.L.)
Microsoft .NET Framework 4.6.2 SDK (HKLM-x32\...\{39BEF607-44E6-472B-90C1-BD62AA2B7A3F}) (Version: 4.6.01586 - Microsoft Corporation)
Microsoft .NET Framework 4.6.2 Targeting Pack (HKLM-x32\...\{C07B4BC7-A37D-46A8-B2A3-620CC569D149}) (Version: 4.6.01586 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.30730.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{59E4543A-D49D-4489-B445-473D763C79AF}) (Version: 2.0.672.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2016 (HKLM\...\Office16.PROPLUS) (Version: 16.0.4266.1001 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\OneDriveSetup.exe) (Version: 17.3.7076.1026 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 (64-bit) (HKLM\...\Microsoft SQL Server 2008 R2) (Version:  - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Native Client (HKLM\...\{471AAD2C-9078-4DAC-BD43-FA10FB7C3FCE}) (Version: 10.51.2500.0 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Setup (English) (HKLM\...\{01078B88-2981-4F75-96B0-8B22E2D2DE03}) (Version: 10.51.2500.0 - Microsoft Corporation)
Microsoft SQL Server 2008 Setup Support Files  (HKLM\...\{B40EE88B-400A-4266-A17B-E3DE64E94431}) (Version: 10.1.2731.0 - Microsoft Corporation)
Microsoft SQL Server Browser (HKLM-x32\...\{BF9BF038-FE03-429D-9B26-2FA0FD756052}) (Version: 10.51.2500.0 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{288D79EE-A2D1-42AF-9597-B0ADCC23A8ED}) (Version: 10.51.2500.0 - Microsoft Corporation)
Microsoft Visio Professional 2016 (HKLM\...\Office16.VISPRO) (Version: 16.0.4266.1001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{d491dd9d-2eda-4d75-b504-1a201436e7fd}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{3994d355-238a-4612-af93-26d13deddef1}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Motorola Mobile Drivers Installation 6.3.0 (HKLM\...\{759E6A2F-1F01-45EF-A0C4-22F1B56CB975}) (Version: 6.3.0 - Motorola Mobility LLC)
Mp3tag v2.83 (HKLM-x32\...\Mp3tag) (Version: 2.83 - Florian Heidenreich)
MSI Development Tools (HKLM-x32\...\{D4A10A5F-9300-3FF6-0906-71EBBDD68FDB}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
NCSOFT Game Launcher (HKLM-x32\...\NCLauncher_NCWest) (Version:  - NCSOFT)
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.63.14 - Black Tree Gaming)
Notepad++ (32-bit x86) (HKLM-x32\...\Notepad++) (Version: 7.5.1 - Notepad++ Team)
NVIDIA 3D Vision Controller Driver 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 388.59 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 388.59 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.11.0.73 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.11.0.73 - NVIDIA Corporation)
NVIDIA Graphics Driver 388.59 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 388.59 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.35.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.35.1 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 17.0.2 - OBS Project)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.7466.2038 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.7466.2038 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0409-0000-0000000FF1CE}) (Version: 16.0.7466.2038 - Microsoft Corporation) Hidden
Office Tab (HKLM\...\{DE469D65-1DEB-4058-BF95-C642D733668D}_is1) (Version: 11.00 - Addin Technology Inc.)
OffScrub_O15msi_OFFICE15.0090 (HKLM\...\OFFICE15.0090) (Version:  - )
OffScrub_O15msi_OFFICE15.00C1 (HKLM\...\OFFICE15.00C1) (Version:  - )
OffScrub_O15msi_OFFICE15.00E1 (HKLM\...\OFFICE15.00E1) (Version:  - )
OffScrub_O15msi_OFFICE15.00E2 (HKLM\...\OFFICE15.00E2) (Version:  - )
OffScrub_O15msi_OFFICE15.012B (HKLM\...\OFFICE15.012B) (Version:  - )
OffScrub_O15msi_OFFICE15.ACCESS (HKLM\...\OFFICE15.ACCESS) (Version:  - )
OffScrub_O15msi_OFFICE15.AccessSetupMetadata (HKLM\...\OFFICE15.AccessSetupMetadata) (Version:  - )
OffScrub_O15msi_OFFICE15.EXCEL (HKLM\...\OFFICE15.EXCEL) (Version:  - )
OffScrub_O15msi_OFFICE15.Groove (HKLM\...\OFFICE15.Groove) (Version:  - )
OffScrub_O15msi_OFFICE15.InfoPath (HKLM\...\OFFICE15.InfoPath) (Version:  - )
OffScrub_O15msi_OFFICE15.ONENOTE (HKLM\...\OFFICE15.ONENOTE) (Version:  - )
OffScrub_O15msi_OFFICE15.Outlook (HKLM\...\OFFICE15.Outlook) (Version:  - )
OffScrub_O15msi_OFFICE15.PowerPoint (HKLM\...\OFFICE15.PowerPoint) (Version:  - )
OffScrub_O15msi_OFFICE15.PrjMUI (HKLM\...\OFFICE15.PrjMUI) (Version:  - )
OffScrub_O15msi_OFFICE15.PrjPro (HKLM\...\OFFICE15.PrjPro) (Version:  - )
OffScrub_O15msi_OFFICE15.Proof (HKLM\...\OFFICE15.Proof) (Version:  - )
OffScrub_O15msi_OFFICE15.Proofing (HKLM\...\OFFICE15.Proofing) (Version:  - )
OffScrub_O15msi_OFFICE15.PROPLUS (HKLM\...\OFFICE15.PROPLUS) (Version:  - )
OffScrub_O15msi_OFFICE15.Publisher (HKLM\...\OFFICE15.Publisher) (Version:  - )
OffScrub_O15msi_OFFICE15.Shared (HKLM\...\OFFICE15.Shared) (Version:  - )
OffScrub_O15msi_OFFICE15.SharedSetupMetadata (HKLM\...\OFFICE15.SharedSetupMetadata) (Version:  - )
OffScrub_O15msi_OFFICE15.VisMUI (HKLM\...\OFFICE15.VisMUI) (Version:  - )
OffScrub_O15msi_OFFICE15.VISPRO (HKLM\...\OFFICE15.VISPRO) (Version:  - )
OffScrub_O15msi_OFFICE15.Word (HKLM\...\OFFICE15.Word) (Version:  - )
ON_OFF Charge 2 B15.0709.1 (HKLM-x32\...\{6B4ED6F7-BB88-4945-B0C6-01410E1BAC3A}) (Version: 1.00.0000 - GIGABYTE) Hidden
ON_OFF Charge 2 B15.0709.1 (HKLM-x32\...\InstallShield_{6B4ED6F7-BB88-4945-B0C6-01410E1BAC3A}) (Version: 1.00.0000 - GIGABYTE)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Origin (HKLM-x32\...\Origin) (Version: 10.4.16.25850 - Electronic Arts, Inc.)
Outils de vérification linguistique 2016 de Microsoft Office - Français (HKLM\...\{90160000-001F-040C-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
ph (HKLM-x32\...\{185F9795-9663-4F13-9EF9-307A282ADB5A}) (Version: 1.0.0 - Your Company Name) Hidden
PlatformPowerManagement (HKLM-x32\...\{7A6EB543-522C-4784-9DB5-4FC87522EBDF}) (Version: 1.16.0331 - GIGABYTE) Hidden
PlatformPowerManagement (HKLM-x32\...\InstallShield_{7A6EB543-522C-4784-9DB5-4FC87522EBDF}) (Version: 1.16.0331 - GIGABYTE)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.)
Rainmeter (HKLM-x32\...\Rainmeter) (Version: 4.0 r2746 - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8036 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.52 - Piriform)
RivaTuner Statistics Server 5.2.0 (HKLM-x32\...\RTSS) (Version: 5.2.0 - Unwinder)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.6.1 - Rockstar Games)
SDK Debuggers (HKLM-x32\...\{F894B529-9F16-1890-3474-0AA0AEAC6D67}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
Seagate DiscWizard (HKLM-x32\...\{FDE52A79-D081-483F-8291-BD180887644C}) (Version: 16.0.5861 - Seagate)
Service Pack 1 for SQL Server 2008 R2 (KB2528583) (64-bit) (HKLM\...\KB2528583) (Version: 10.51.2500.0 - Microsoft Corporation)
Shanling Audio Driver v2.29.0 (HKLM-x32\...\Shanling Audio Driver v2.29.0) (Version: 2.29.0 - Shanling)
ShiftWindow 1.02 (HKLM-x32\...\ShiftWindow_is1) (Version:  - Grismar)
SIV (HKLM-x32\...\{AAA057C3-10DC-4EB9-A3D6-8208C1BB7411}) (Version: 1.16.0525 - GIGABYTE) Hidden
SIV (HKLM-x32\...\InstallShield_{AAA057C3-10DC-4EB9-A3D6-8208C1BB7411}) (Version: 1.16.0525 - GIGABYTE)
Smart Backup B16.0408.1  (x64) (HKLM-x32\...\{BC1FA5CF-A36F-4C61-9638-09D0B431B006}) (Version: 1.00.0003 - GIGABYTE)
Sound Blaster Cinema (HKLM-x32\...\{8801CA65-921A-4CCC-9D63-879D1D0BAA97}) (Version: 1.00.02 - Creative Technology Limited)
Sound Blaster Recon3Di (HKLM-x32\...\{DC2EAED6-B1E4-41AA-8081-DEA2BF2E038B}) (Version: 1.03.19 - Creative Technology Limited)
Sound Blaster Recon3Di Extras (HKLM-x32\...\{536BDBFC-CA1A-4AC0-A8EB-BB2D0F1F522E}) (Version: 1.0 - Creative Technology Limited)
Spotify (HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Spotify) (Version: 1.0.68.407.g6864aaaf - Spotify AB)
SQL Server 2008 R2 SP1 Common Files (HKLM\...\{234F6B0D-10AE-4BB7-B2F3-E48D4861952D}) (Version: 10.51.2500.0 - Microsoft Corporation) Hidden
SQL Server 2008 R2 SP1 Common Files (HKLM\...\{36F70DEE-1EBF-4707-AFA2-E035EEAEBAA1}) (Version: 10.51.2500.0 - Microsoft Corporation) Hidden
SQL Server 2008 R2 SP1 Database Engine Services (HKLM\...\{FA7394B8-CE65-4F9E-AC99-F372AD365424}) (Version: 10.51.2500.0 - Microsoft Corporation) Hidden
SQL Server 2008 R2 SP1 Database Engine Services (HKLM\...\{FBD367D1-642F-47CF-B79B-9BE48FB34007}) (Version: 10.51.2500.0 - Microsoft Corporation) Hidden
SQL Server 2008 R2 SP1 Database Engine Shared (HKLM\...\{A2122A9C-A699-4365-ADF8-68FEAC125D61}) (Version: 10.51.2500.0 - Microsoft Corporation) Hidden
SQL Server 2008 R2 SP1 Database Engine Shared (HKLM\...\{C942A025-A840-4BF2-8987-849C0DD44574}) (Version: 10.51.2500.0 - Microsoft Corporation) Hidden
Sql Server Customer Experience Improvement Program (HKLM\...\{F31183CF-E10F-4DE1-BB59-6C0FF38E481E}) (Version: 10.50.1600.1 - Microsoft Corporation) Hidden
Star Citizen Launcher (HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Star Citizen Launcher) (Version: 00.01.00.00 - Cloud Imperium Games)
Steam (HKLM-x32\...\Steam) (Version:  - Valve Corporation)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
TeraCopy 2.27 (HKLM\...\TeraCopy_is1) (Version:  - Code Sector)
The Elder Scrolls Online (HKLM-x32\...\The Elder Scrolls Online) (Version: 2.6.3.0 - Zenimax Online Studios)
Thrustmaster FFB Driver (HKLM-x32\...\{8F5A0981-5CDC-41D0-BCA2-AD3B777FC358}) (Version: 1.FFD.2015 - Thrustmaster)
Thrustmaster TARGET (HKLM-x32\...\{8036A569-CA02-4D33-A7E9-E9BC8A482E91}) (Version: 2.0.10.0 - Thrustmaster)
Thunderbolt™ Software (HKLM-x32\...\{146DE795-0B91-40E7-9991-5DC766EFB211}) (Version: 15.3.40.275 - Intel Corporation)
Titanfall™ 2 (HKLM-x32\...\{4BD80373-FEE7-45B6-8249-6E8E98717405}) (Version: 1.0.0.6 - Electronic Arts, Inc.)
Tom Clancy's Splinter Cell® Blacklist™ (HKLM-x32\...\{A6356F2F-D3E1-4D83-9AA2-72871DD0C298}) (Version: 1.00 - Ubisoft)
TSEV Skyrim LE (HKLM-x32\...\TSEV Skyrim LE_is1) (Version: 2.0.0.0 - )
Universal CRT Extension SDK (HKLM-x32\...\{F6483AD1-9703-F95E-B07B-6BB7A3DA7B71}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (HKLM-x32\...\{96FB0EE4-8F7E-595E-B5CF-BFCC6BF26014}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
Universal CRT Redistributable (HKLM-x32\...\{302A9B8D-5111-6C51-BB99-FF394C4A4255}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
Universal CRT Tools x64 (HKLM\...\{2D359C7E-59C8-79A9-5157-FE9E189F5E8A}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
Universal CRT Tools x86 (HKLM-x32\...\{71436CD5-3E63-CEE9-FC00-5124A5C9A931}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
Universal General MIDI DLS Extension SDK (HKLM-x32\...\{87F42CC0-5403-3698-87D9-3C2A04E476E1}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
Update for Skype for Business 2016 (KB4011563) 64-Bit Edition (HKLM\...\{90160000-0011-0000-1000-0000000FF1CE}_Office16.PROPLUS_{2D441C76-7795-478E-86D0-4508242BC6AE}) (Version:  - Microsoft)
Update for Skype for Business 2016 (KB4011563) 64-Bit Edition (HKLM\...\{90160000-012B-0409-1000-0000000FF1CE}_Office16.PROPLUS_{2D441C76-7795-478E-86D0-4508242BC6AE}) (Version:  - Microsoft)
VBA 7.1 (HKLM-x32\...\{4B2CD236-682C-48CC-A27E-74807C7A0E4B}) (Version: 7.1.00.00 - Microsoft Corporation) Hidden
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
VoiceAttack version 1.6.1 (HKLM-x32\...\{D6EDF6DB-029E-4A34-A3A0-D960CB0FCB2A}_is1) (Version: 1.6.1 - VoiceAttack.com)
Vulkan Run Time Libraries 1.0.61.0 (HKLM\...\VulkanRT1.0.61.0) (Version: 1.0.61.0 - LunarG, Inc.) Hidden
Warcraft III (HKLM-x32\...\Warcraft III) (Version:  - Blizzard Entertainment)
Win32DiskImager version 0.9.5 (HKLM-x32\...\{D074CE74-912A-4AD3-A0BF-3937D9D01F17}_is1) (Version: 0.9.5 - ImageWriter Developers)
WinAppDeploy (HKLM-x32\...\{1182888E-EDC9-05C5-33BD-B61DA5B1F916}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
Windows Driver Package - Corsair Components, Inc. (SIUSBXP) USB  (10/30/2015 3.6) (HKLM\...\689CB8E4310D795D383E65C05A8F13A05D92E771) (Version: 10/30/2015 3.6 - Corsair Components, Inc.)
Windows Driver Package - Focusrite USB 2.0 Audio Driver (09/25/2013 2.5.128.1) (HKLM\...\CF1FC201D237269A9CD51A3A6B14ADBF67175C32) (Version: 09/25/2013 2.5.128.1 - Focusrite)
Windows SDK AddOn (HKLM-x32\...\{45D392D2-5956-4646-9CA6-83CBF67507B6}) (Version: 10.1.0.0 - Microsoft Corporation)
Windows Software Development Kit - Windows 10.0.14393.33 (HKLM-x32\...\{f23f94c5-8bba-4202-85ad-c83d4402cdc1}) (Version: 10.1.14393.33 - Microsoft Corporation)
WinRAR 5.30 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH)
WinRT Intellisense Desktop - en-us (HKLM-x32\...\{01F53182-F1C8-8A72-5C86-B6612BDD4815}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
WinRT Intellisense Desktop - Other Languages (HKLM-x32\...\{2AC000E5-E5E6-75B7-7FC2-9ECA8C57CA98}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - en-us (HKLM-x32\...\{6DF5B5E1-A8A0-B617-AADB-31C3709A3C41}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - Other Languages (HKLM-x32\...\{1AAB8359-4433-FF39-D420-0AD429993AD7}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - en-us (HKLM-x32\...\{CB7AC790-0E8B-D6C9-CE1E-655793E7D541}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - Other Languages (HKLM-x32\...\{87775501-5259-6A7C-51A6-71C832DB7ABA}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - en-us (HKLM-x32\...\{CFD0294B-945D-62E4-7959-9B22A160496F}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - Other Languages (HKLM-x32\...\{F75FD5E5-1F33-AE2B-715A-F829F8A8F51D}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
Wirecast (HKLM\...\{B1FA9554-8942-4C02-97EF-D2618D961CB1}) (Version: 6.0.4 - Telestream LLC)
Wolfram Extras 10.0 (5203600) (HKLM\...\A-WIN-Extras 10.0.2 5203600_is1) (Version: 10.0.2 - Wolfram Research, Inc.)
WPT Redistributables (HKLM-x32\...\{6704BD92-2F42-FE2F-AF4E-5C9D6666C75E}) (Version: 10.1.14393.33 - Microsoft) Hidden
WPTx64 (HKLM-x32\...\{3F61608E-AB68-04B1-82FF-95799F5D01CA}) (Version: 10.1.14393.33 - Microsoft) Hidden
Wrye Bash (HKLM-x32\...\Wrye Bash) (Version: 3.0.4.3 - Wrye & Wrye Bash Development Team)
WS Launcher (HKLM-x32\...\{14725476-FE57-4EF6-8A4F-F8C78AF7A08E}) (Version: 4.0.2.6 - Launcher)
XSplit Broadcaster (HKLM-x32\...\{7BC30FB1-9AA6-4B0C-8E5A-574EA5B6CB2F}) (Version: 2.3.1505.0542 - SplitmediaLabs)
Засоби перевірки правопису Microsoft Office 2016 – українська (HKLM\...\{90160000-001F-0422-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Средства проверки правописания Microsoft Office 2016 — русский (HKLM\...\{90160000-001F-0419-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-2400751361-3771152734-1433153139-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] ()
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] ()
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] ()
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => F:\Programs\7-Zip\7-zip.dll [2010-11-18] (Igor Pavlov)
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] ()
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2015-03-17] (Adobe Systems Inc.)
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll [2017-08-28] ()
ContextMenuHandlers1: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\ShellExt.dll [2017-09-29] (Microsoft Corporation)
ContextMenuHandlers1: [Mp3tagShell] -> {6351E20C-35FA-4BE3-98FB-4CABF1363E12} => F:\Programs\MP3Tag\Mp3tagShell64.dll [2017-06-23] (Florian Heidenreich)
ContextMenuHandlers1: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => D:\Programs\TeraCopy\TeraCopyExt.dll [2011-10-26] ()
ContextMenuHandlers1: [TeraCopyS64] -> {A764EEF0-D6E8-48AF-8DFA-023B1CF660A7} => D:\Programs\TeraCopy\TeraCopyExt64.dll [2011-10-26] ()
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2015-11-18] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2015-11-18] (Alexander Roshal)
ContextMenuHandlers2-x32: [AlcoholShellEx] -> {32020A01-506E-484D-A2A8-BE3CF17601C3} => D:\Programs\Alcohol 120\AxShlex.dll [2014-09-06] (Alcohol Soft Development Team)
ContextMenuHandlers2-x32: [AlcoholShellEx64] -> {AF67B665-D752-424E-9A03-C7C218F2844F} => D:\Programs\Alcohol 120\AxShlEx64.dll [2014-09-06] (Alcohol Soft Development Team)
ContextMenuHandlers2-x32: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\ShellExt.dll [2017-09-29] (Microsoft Corporation)
ContextMenuHandlers2-x32: [Mp3tagShell] -> {6351E20C-35FA-4BE3-98FB-4CABF1363E12} => F:\Programs\MP3Tag\Mp3tagShell64.dll [2017-06-23] (Florian Heidenreich)
ContextMenuHandlers2-x32: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => D:\Programs\TeraCopy\TeraCopyExt.dll [2011-10-26] ()
ContextMenuHandlers2-x32: [TeraCopyS64] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => D:\Programs\TeraCopy\TeraCopyExt.dll [2011-10-26] ()
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => F:\Programs\7-Zip\7-zip.dll [2010-11-18] (Igor Pavlov)
ContextMenuHandlers4: [EncryptionMenu] -> {A470F8CF-A1E8-4f65-8335-227475AA5C46} =>  -> No File
ContextMenuHandlers4: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\ShellExt.dll [2017-09-29] (Microsoft Corporation)
ContextMenuHandlers4: [Mp3tagShell] -> {6351E20C-35FA-4BE3-98FB-4CABF1363E12} => F:\Programs\MP3Tag\Mp3tagShell64.dll [2017-06-23] (Florian Heidenreich)
ContextMenuHandlers4: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => D:\Programs\TeraCopy\TeraCopyExt.dll [2011-10-26] ()
ContextMenuHandlers4: [TeraCopyS64] -> {A764EEF0-D6E8-48AF-8DFA-023B1CF660A7} => D:\Programs\TeraCopy\TeraCopyExt64.dll [2011-10-26] ()
ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} =>  -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} =>  -> No File
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-12-05] (NVIDIA Corporation)
ContextMenuHandlers5: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => D:\Programs\TeraCopy\TeraCopyExt.dll [2011-10-26] ()
ContextMenuHandlers5: [TeraCopyS64] -> {A764EEF0-D6E8-48AF-8DFA-023B1CF660A7} => D:\Programs\TeraCopy\TeraCopyExt64.dll [2011-10-26] ()
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] ()
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2015-03-17] (Adobe Systems Inc.)
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes)
ContextMenuHandlers6: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => D:\Programs\TeraCopy\TeraCopyExt.dll [2011-10-26] ()
ContextMenuHandlers6: [TeraCopyS64] -> {A764EEF0-D6E8-48AF-8DFA-023B1CF660A7} => D:\Programs\TeraCopy\TeraCopyExt64.dll [2011-10-26] ()
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2015-11-18] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2015-11-18] (Alexander Roshal)
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {0139956F-0A82-4169-ABDF-9AF747DF82E7} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {06A455BD-9212-4BA6-B559-DAAD38B63A5C} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {09A00323-B594-44E4-B8AF-4C24FEDF1487} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe
Task: {0EB26105-9C61-4CC8-A8C3-F9A5E9ABC021} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {13F3F62E-CC2C-40E5-80F4-A6D252D3F81B} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION
Task: {14EAD16D-98AB-41AE-A56B-BB5F5778219F} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {1638E303-8F52-4FFF-91E5-4C2094B01CCD} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {1B721A25-40F8-477B-B421-94A65F13924F} - \Microsoft\Windows\Setup\GWXTriggers\Time-3xd -> No File <==== ATTENTION
Task: {27DA66A6-19F0-4D61-8701-80AADCEEF98D} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe
Task: {2ECEFB16-2816-4724-B0E5-9CAE702EB922} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {43F785D6-C6E8-46D0-9C1D-E7CEEFF18EDB} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {44CFAF58-56C2-47CA-8170-5F97E158D49C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {466C9ABA-B4F9-429A-B202-CB332C54D63E} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {4DB3E983-D8AE-472F-A2A5-A9402981E8BA} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service when hardware is detected => sc.exe start ThunderboltService
Task: {4DBCB60F-A2F6-4F59-BE03-8D963CC2DDE5} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {4F5246E0-7999-4A35-B524-2166DDC741B5} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {5175B41B-0E89-40FE-910D-AEA4609CBB95} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {55F4D596-4FDC-42D6-8757-6810E3F18668} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {58590501-7C09-4962-A304-EA165130F6E7} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-11-15] (NVIDIA Corporation)
Task: {59A3EC7B-5EB5-4AF4-A03E-89224D6FD20F} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe
Task: {5AFCC670-3161-4ECD-8B3A-5E9990881DF4} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-11-15] (NVIDIA Corporation)
Task: {5CE531E2-9193-4926-B488-F88D97B12441} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-11-15] (NVIDIA Corporation)
Task: {5DCDFD11-C7ED-4355-AF0C-F824AB0EC726} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2017-12-12] (Microsoft Corporation)
Task: {68FA27F4-301A-4AE5-9612-606CF012F546} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-11-15] (NVIDIA Corporation)
Task: {79F8638A-CDE8-4BD3-B328-E3078E1A7E02} - System32\Tasks\Intel\Intel Telemetry 2 (x86) => C:\Program Files (x86)\Intel\Telemetry 2.0\lrio.exe [2015-05-05] (Intel Corporation)
Task: {7CDBA697-59A3-41E5-BAAD-BCF29BF501C4} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {7EE0D832-EE33-4901-BC1E-2148382D4D76} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {801407D2-283F-4ECA-9FF3-A43F6D24EFCB} - System32\Tasks\AdobeAAMUpdater-1.0-NotAMac-Nicholas => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-07-01] (Adobe Systems Incorporated)
Task: {84A52F6A-0C21-4891-BCE5-B281589B54FC} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-11-15] (NVIDIA Corporation)
Task: {85396F90-CA6E-48B2-BA85-CD32F965FBB7} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [2015-07-31] (Microsoft Corporation)
Task: {8752AD12-7F1E-4459-B20F-2A80856057FB} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {878FF307-0996-4766-87CB-DB81B906F77A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\MpCmdRun.exe [2017-12-07] (Microsoft Corporation)
Task: {87A55C30-3BDE-4477-B00B-5D37D26FFC04} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-11-15] (NVIDIA Corporation)
Task: {8A95BEDA-4D71-4F8E-AA16-09FB40544049} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\MpCmdRun.exe [2017-12-07] (Microsoft Corporation)
Task: {93DACF4B-0A9C-46F1-859A-639C2AF8713E} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {9C7E9C3E-17EF-43F7-8F15-7C71B76511A5} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {A3F5699B-42A7-4CFF-8777-C91FCC8EB31C} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {ADB698FC-DF00-412C-BA19-66A2F0DC9BFC} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2017-12-13] (Piriform Ltd)
Task: {B0CBB4B2-95F8-43BA-8407-F2F9CF96B573} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe
Task: {B19677F2-4D24-4CB1-A193-1CDC197A4217} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [2015-07-31] (Microsoft Corporation)
Task: {B308C238-8D0C-4F1C-A3BB-A510BA10F905} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {B339E3C5-12C3-403C-8324-EC028A649391} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {BB1A3A6D-9462-423C-96CC-8838B176CF5C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\MpCmdRun.exe [2017-12-07] (Microsoft Corporation)
Task: {C044A2A3-0452-48D8-A98E-77C36DF155AE} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2017-07-24] (Apple Inc.)
Task: {C2289395-0DCE-4DC5-B8A1-07CC58E7E9D6} - \Intel\Thunderbolt\Start Thunderbolt application on login if service is up -> No File <==== ATTENTION
Task: {C5EE5AB7-59E0-4585-A100-CEF81B1EC09D} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {C9039007-7EA1-4F99-B4D0-BD65F15B26AA} - \Adobe Acrobat Update Task -> No File <==== ATTENTION
Task: {CBBD6E5D-A8E9-44C9-846D-1873CFD230BC} - \Intel\Thunderbolt\Start Thunderbolt service on boot if driver is up -> No File <==== ATTENTION
Task: {D00ED2A3-2EDC-4ABC-B700-8FB28A051742} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-11-15] (NVIDIA Corporation)
Task: {D600DF64-47D8-4A5C-A693-D91DA8DA8735} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe
Task: {D720E70C-B95C-4C1C-8B6A-553E80E6637A} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-11-15] (NVIDIA Corporation)
Task: {D8B4BDF2-CCF6-41EF-BD79-5FA3103090CF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\MpCmdRun.exe [2017-12-07] (Microsoft Corporation)
Task: {DCA7C2CB-54AD-4FC5-BD43-F03F05F7BE8D} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK
Task: {E3541972-C071-406F-A5E3-02FE79197625} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {E8653787-3A30-4B97-BC9D-0DD9732CD2A3} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {EF79BF3D-F2C0-4A9A-AA8C-554749AED57F} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {F16FFA46-0E9E-47F3-A2AB-641DF693316E} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2015-07-31] (Microsoft Corporation)
Task: {F31212C3-0ED7-438F-ADDB-0E63F31527C5} - \Intel\Thunderbolt\Start Thunderbolt application when hardware is detected -> No File <==== ATTENTION
Task: {F44DD9B3-9EAF-4346-8A5C-5A5F86EA97A6} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {F99444DA-FDCF-4BF1-A8A0-B41F7F7C4BD5} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-12-13] (Piriform Ltd)
Task: {FA1362C9-C605-473C-924F-967D7208216F} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\Intel® Management Engine Components\iCLS\IntelPTTEKRecertification.exe [2017-10-11] (Intel® Corporation)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe
Task: C:\WINDOWS\Tasks\User_Feed_Synchronization-{9DC10795-420A-4033-8E63-D1F230E8C7B1}.job => C:\WINDOWS\system32\msfeedssync.exe
 
==================== Shortcuts & WMI ========================
 
(The entries could be listed to be restored or removed.)
 
 
==================== Loaded Modules (Whitelisted) ==============
 
2017-09-29 07:41 - 2017-09-29 07:41 - 000184432 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2017-09-01 01:49 - 2017-09-01 01:49 - 000092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2017-09-01 01:49 - 2017-09-01 01:49 - 001356088 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2015-06-25 08:45 - 2015-06-25 08:45 - 000017920 _____ () C:\Program Files (x86)\GIGABYTE\AppCenter\AdjustService.exe
2017-12-17 19:36 - 2017-11-29 09:11 - 002301384 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll
2016-10-07 00:24 - 2017-11-15 19:41 - 001267136 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2015-10-04 23:05 - 2015-10-04 23:05 - 000076152 _____ () C:\WINDOWS\system32\PnkBstrA.exe
2016-01-15 17:00 - 2016-01-15 17:00 - 000152136 ____R () C:\Program Files\Intel\NCS2\Agent\AdapterAgnt.DLL
2016-06-10 01:41 - 2016-06-10 01:41 - 000491184 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll
2017-02-22 22:56 - 2017-02-22 22:56 - 008911560 _____ () C:\Program Files\Microsoft Office\Office16\1033\GrooveIntlResource.dll
2016-12-03 19:04 - 2011-10-26 17:41 - 000318976 _____ () D:\Programs\TeraCopy\TeraCopyExt64.dll
2017-08-28 18:43 - 2017-08-28 18:43 - 000230064 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll
2017-12-12 13:41 - 2017-11-26 06:23 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2017-12-12 13:41 - 2017-11-26 06:01 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2013-12-21 16:53 - 2012-11-01 11:21 - 000325120 _____ () C:\Windows\SYSTEM32\APOMgr64.DLL
2015-03-06 18:07 - 2015-03-06 18:07 - 000908568 _____ () C:\Program Files\Logitech Gaming Software\libGLESv2.dll
2017-01-23 16:19 - 2017-01-23 16:19 - 001096824 _____ () C:\Program Files\Logitech Gaming Software\platforms\qwindows.dll
2015-03-06 18:07 - 2015-03-06 18:07 - 000060184 _____ () C:\Program Files\Logitech Gaming Software\libEGL.dll
2017-01-23 16:19 - 2017-01-23 16:19 - 000241784 _____ () C:\Program Files\Logitech Gaming Software\imageformats\qjpeg.dll
2017-12-14 19:06 - 2017-12-13 20:49 - 004063064 _____ () C:\Program Files (x86)\Google\Chrome\Application\63.0.3239.108\libglesv2.dll
2017-12-14 19:06 - 2017-12-13 20:49 - 000099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\63.0.3239.108\libegl.dll
2016-10-07 00:24 - 2017-11-15 19:41 - 001040320 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2015-02-17 00:47 - 2015-02-17 00:47 - 000105472 _____ () C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\ycc.dll
2016-08-22 12:49 - 2016-08-22 12:49 - 040523480 _____ () C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\libcef.dll
2016-10-07 00:24 - 2017-11-15 19:40 - 066906560 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll
2017-11-09 00:44 - 2017-11-09 00:44 - 001244304 _____ () F:\Programs\Intel\LMS\ACE.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
AlternateDataStreams: C:\WINDOWS\system32\Drivers\etssyxaf.sys:changelist [650]
AlternateDataStreams: C:\ProgramData\TEMP:0FF263E8 [340]
AlternateDataStreams: C:\ProgramData\TEMP:58A5270D [376]
AlternateDataStreams: C:\Users\Nicholas\Cookies:1vLbYfJp9r5CqVfyLpw [2308]
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
 
==================== Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2009-07-13 20:34 - 2017-12-18 01:54 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Nicholas\AppData\Local\DisplayFusion\Wallpaper_1.png
DNS Servers: 66.253.214.16 - 50.30.184.16
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Qualcomm Atheros Killer Network Manager.lnk => C:\Windows\pss\Qualcomm Atheros Killer Network Manager.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^Nicholas^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Curse.lnk => C:\Windows\pss\Curse.lnk.Startup
MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
MSCONFIG\startupreg: BitTorrent => "C:\Users\Nicholas\AppData\Roaming\BitTorrent\BitTorrent.exe"  /MINIMIZED
MSCONFIG\startupreg: BrStsMon00 => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN
MSCONFIG\startupreg: CCleaner Monitoring => "F:\Programs\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: Cisco AnyConnect Secure Mobility Agent for Windows => "C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe" -minimized
MSCONFIG\startupreg: Overwolf => C:\Program Files (x86)\Overwolf\Overwolf.exe -silent
MSCONFIG\startupreg: Samsung Link => "F:\Programs\SamsungLink\Samsung Link\Samsung Link Tray Agent.exe"
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: uTorrent => "C:\Users\Nicholas\AppData\Roaming\uTorrent\uTorrent.exe"  /MINIMIZED
HKLM\...\StartupApproved\StartupFolder: => "Killer Network Manager.lnk"
HKLM\...\StartupApproved\StartupFolder: => "Shanling Audio Control Panel Autostart.lnk"
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run: => "RPMKickstart"
HKLM\...\StartupApproved\Run: => "WindowsDefender"
HKLM\...\StartupApproved\Run32: => "Acrobat Assistant 8.0"
HKLM\...\StartupApproved\Run32: => "AdobeCS6ServiceManager"
HKLM\...\StartupApproved\Run32: => "QuickTime Task"
HKLM\...\StartupApproved\Run32: => "Sound Blaster Cinema"
HKLM\...\StartupApproved\Run32: => "SwitchBoard"
HKLM\...\StartupApproved\Run32: => "Command Center"
HKLM\...\StartupApproved\Run32: => "DNS7reminder"
HKLM\...\StartupApproved\Run32: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "ISUSPM"
HKLM\...\StartupApproved\Run32: => "DiscWizardMonitor.exe"
HKLM\...\StartupApproved\Run32: => "Sound Blaster Recon3Di SBX Control Panel"
HKLM\...\StartupApproved\Run32: => "DualBiosRescue"
HKLM\...\StartupApproved\Run32: => "EasyTune"
HKLM\...\StartupApproved\Run32: => "EasyTuneEngineService"
HKLM\...\StartupApproved\Run32: => "PreRun"
HKLM\...\StartupApproved\Run32: => "SIV"
HKLM\...\StartupApproved\Run32: => "FireStormStartUpAutoRun"
HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud"
HKLM\...\StartupApproved\Run32: => "EaseUS Cleanup"
HKLM\...\StartupApproved\Run32: => "EaseUS EPM Tray Agent"
HKLM\...\StartupApproved\Run32: => "DriverPack Notifier"
HKLM\...\StartupApproved\Run32: => "SecurityHealth"
HKLM\...\StartupApproved\Run32: => "Discord"
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\StartupApproved\StartupFolder: => "Curse.lnk"
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\StartupApproved\StartupFolder: => "Send to OneNote.lnk"
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\StartupApproved\Run: => "uTorrent"
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\StartupApproved\Run: => "ISUSPM"
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\StartupApproved\Run: => "Spotify Web Helper"
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\StartupApproved\Run: => "Gaijin.Net Agent"
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [{9C37FCB1-9834-40BA-B375-22863015ECF3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6CAA00E3-B02E-43CD-9E29-290E37115B59}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{725C1E2E-679F-4B4B-964C-0FEEF0C7C88A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B3A165F0-B819-4167-9EB2-77BE78E11434}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7B1AFC2D-B664-4765-8B85-EB2F3D2684E5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E4FD43E4-258A-4094-ACE5-D33334700335}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A54EFA81-FA52-49FD-A30B-0DE26A6D4797}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F89E1DD5-2026-4BE5-BAFD-F002EC24EF79}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B06D496B-174A-42B9-B539-EAD245EADD75}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BF39F0B3-9911-4EFC-8098-2F7A562F6C79}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{886CC659-1F6F-4117-9CAD-087DC4673527}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C0E523F0-F9B8-4975-9D2F-5C0374D17CBC}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{14F581BF-71CC-4CB5-8BD7-AB263C43AEF7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0266AA25-71D2-4A5E-95B8-5B9852168FAF}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{003979F9-4FE7-4064-BF43-8A1DA3A0B640}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{34ACF46E-776C-4A6E-8CB9-CE50E1328AD4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{58D253DF-786C-4A6E-8A9B-62C6AAAE6DDB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{113FD33F-D405-4350-A37B-FD4A39A05D19}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8BBC6A02-F963-4CF2-A68E-CD55652809C6}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{59DF5000-DEBD-47DD-92A0-33E642F23857}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C6431589-56EB-4F8E-9C12-D96B9D64E709}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CB45B5A7-58ED-4983-801B-28FD61D65EA5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B994F48E-1614-4050-8282-6F394A307DB2}] => (Allow) D:\Programs\Steam\steamapps\common\GreyGoo\ClientLauncherG.exe
FirewallRules: [{E0FD18B2-623F-46D0-A17C-F3D0C49FE017}] => (Allow) D:\Programs\Steam\steamapps\common\GreyGoo\ClientLauncherG.exe
FirewallRules: [{EB162DAD-3D0F-47CE-B019-AF93D51132D9}] => (Allow) D:\Programs\Steam\steamapps\common\Oddworld New n Tasty\NNT.exe
FirewallRules: [{930ABA4C-1099-4740-87AA-C39A09F9721F}] => (Allow) D:\Programs\Steam\steamapps\common\Oddworld New n Tasty\NNT.exe
FirewallRules: [{081B8610-EAE5-4638-ADCE-BA96474C02D9}] => (Allow) D:\Programs\Steam\steamapps\common\Prototype 2\prototype2.exe
FirewallRules: [{325DA9FA-E4DB-4022-992B-B6DC6D513A11}] => (Allow) D:\Programs\Steam\steamapps\common\Prototype 2\prototype2.exe
FirewallRules: [{A8CD8508-1A2E-4771-8F8B-C9A36EC21026}] => (Allow) D:\Programs\Steam\steamapps\common\TxP\TormentorXPunisher.exe
FirewallRules: [{BE2DEEB8-3901-494C-BD19-D7BBB28B6719}] => (Allow) D:\Programs\Steam\steamapps\common\TxP\TormentorXPunisher.exe
FirewallRules: [{98A1984A-2525-4A7E-8944-E0502C95AB4B}] => (Allow) D:\Programs\Steam\steamapps\common\Wasteland 2 Director's Cut\Build\WL2.exe
FirewallRules: [{44493ABD-1233-452E-A1E7-719EDB6FA408}] => (Allow) D:\Programs\Steam\steamapps\common\Wasteland 2 Director's Cut\Build\WL2.exe
FirewallRules: [{BF2CCB3D-10C2-4B34-9671-23CA48326C2C}] => (Allow) D:\Programs\Steam\steamapps\common\Out of the Park Baseball 18\ootp18.exe
FirewallRules: [{43D8093E-5940-4291-8525-28526E9DF811}] => (Allow) D:\Programs\Steam\steamapps\common\Out of the Park Baseball 18\ootp18.exe
FirewallRules: [{281B6B93-7FA0-473A-9EF5-9AE459BD445E}] => (Allow) D:\Programs\Steam\steamapps\common\Rebuild Gangs of Deadsville\game\Rebuild3.exe
FirewallRules: [{CE4B7509-10F1-46DC-9654-1C7E16D129CC}] => (Allow) D:\Programs\Steam\steamapps\common\Rebuild Gangs of Deadsville\game\Rebuild3.exe
FirewallRules: [{BFBC2ACC-125E-43B2-B7B0-A91DD25BD433}] => (Allow) D:\Programs\Steam\steamapps\common\SimplePlanes\SimplePlanes.exe
FirewallRules: [{02F5AD4F-71FD-4314-86DC-D605DF718AEF}] => (Allow) D:\Programs\Steam\steamapps\common\SimplePlanes\SimplePlanes.exe
FirewallRules: [{1FAD181C-3451-4503-B461-5C22820B6020}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{61CCCAA0-04FB-4869-9F9E-9FF3201BA904}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3A58DFCE-FD6E-4AAF-885F-B4CC0F89E58B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E98AAF24-A7DD-4E92-860D-636B336CA53E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{20C67A25-6E0D-4258-8245-21B0D6DB416B}] => (Allow) D:\Programs\Steam\steamapps\common\Cuphead\Cuphead.exe
FirewallRules: [{768169C2-D318-4CED-9CB4-05C4727C3FE5}] => (Allow) D:\Programs\Steam\steamapps\common\Cuphead\Cuphead.exe
FirewallRules: [{C0D7D187-24B5-406C-8C76-45287A7FB298}] => (Allow) D:\Programs\Steam\steamapps\common\Nuclear Throne\nuclearthrone.exe
FirewallRules: [{E50FECE7-0107-491A-8577-85CB13C91F55}] => (Allow) D:\Programs\Steam\steamapps\common\Nuclear Throne\nuclearthrone.exe
FirewallRules: [{856975F3-405C-479A-B1C1-93657BD350B8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{332B297B-BCEA-4417-9653-32673CC13937}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BB1BFFF6-C2A3-4813-955C-22A29B18A826}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AD1C92C1-3454-4259-8D12-BDECA8AB5E14}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{39481F65-D5EF-4316-ABDC-9C95F9C992C2}] => (Allow) LPort=8356
FirewallRules: [{AF98186A-F474-44FE-A33B-DD571EEC61CD}] => (Allow) LPort=1900
FirewallRules: [{3467D445-2052-44C3-B9C9-394E3DE98EEE}] => (Allow) LPort=1900
FirewallRules: [{2348959B-CBCB-4747-B1DB-AF83916EBE80}] => (Allow) LPort=1980
FirewallRules: [{8E27B725-3836-4648-BC94-F603763C6C8B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DEDCE6C4-0E03-48BB-AF96-AFC77F1FAA9F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{950BE81F-2A68-42E7-AFF5-9E4BEFAAC79C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BB260620-1E50-4C8D-8186-A4837B9AB197}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{44C60FA8-E4F1-41A7-B5C2-829F89BDCCB4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{36E1E975-4484-456D-B8E8-394DBBE10631}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C446A25C-F631-447E-8C5B-0ACC9C847C83}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E1E10606-E4D4-4F00-BCA4-71B8816C82ED}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{82707F3A-7A55-47B2-BBED-F634B2354B48}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{517D0A67-4965-4D8B-AEF6-EB1737038885}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1CE2491C-6106-47E6-A07A-52EF86B21030}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2142F9D4-5D1F-4D3A-907F-CEC48182E820}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BF3060A3-D0A4-4D84-97DD-5A70893CC622}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{74196FBC-DDDA-46DD-BEC2-94AAE8A2D1A9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5BE7D11C-58F0-414F-9B1E-050184D364B1}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{00E4103D-E69B-4F96-ADBC-B1D89F01E764}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F447FFE1-0747-4B81-8E2B-6EB0D6F8838E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3197FF44-B505-44C2-B8F5-DE4543EADB5B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{26E4289F-ED63-46FB-B914-7C6DCBC628EE}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B31272AD-9724-4C02-8E1F-156DBDCB21BA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AD948A64-BC6B-45D9-B2B4-DFB8AE9CE110}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{A5DD549E-B6EC-4B5A-8430-117F01833248}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4D6222E0-E3A5-4257-ADF4-9F48F05EAB39}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{520703B5-394B-4408-AE98-FEEF68B2ECC7}] => (Allow) D:\Programs\Steam\steamapps\common\Crawl\Crawl.exe
FirewallRules: [{4FF79F44-165A-412D-969F-3351F3D374AA}] => (Allow) D:\Programs\Steam\steamapps\common\Crawl\Crawl.exe
FirewallRules: [{78124666-36C2-42A7-B033-126E4523C424}] => (Allow) D:\Programs\Steam\steamapps\common\Hand of Fate\Hand of Fate.exe
FirewallRules: [{B171FCCA-4189-4D1B-BBC3-388E592FE359}] => (Allow) D:\Programs\Steam\steamapps\common\Hand of Fate\Hand of Fate.exe
FirewallRules: [{DB1B3194-D487-40EA-A38C-3B819BEBBF38}] => (Allow) D:\Programs\Steam\steamapps\common\Hurtworld\HurtworldClient.exe
FirewallRules: [{7DA888DE-550E-4752-8593-928F34E025E4}] => (Allow) D:\Programs\Steam\steamapps\common\Hurtworld\HurtworldClient.exe
FirewallRules: [{7D725A02-6363-4D9F-838E-12627C32BCD3}] => (Allow) D:\Programs\Steam\steamapps\common\Hurtworld\Hurtworld.exe
FirewallRules: [{3B4E02DA-23F6-4EBB-8292-243F96B59C0A}] => (Allow) D:\Programs\Steam\steamapps\common\Hurtworld\Hurtworld.exe
FirewallRules: [{67E375AF-0E92-4ABD-B325-6937D9C5EAEE}] => (Allow) D:\Programs\Steam\steamapps\common\SatelliteReign\SatelliteReignWindows.exe
FirewallRules: [{F220ADD3-C415-491D-AEBF-E1303CFA5714}] => (Allow) D:\Programs\Steam\steamapps\common\SatelliteReign\SatelliteReignWindows.exe
FirewallRules: [{844081F8-AC22-4F48-9C55-A35A542E122F}] => (Allow) D:\Programs\Steam\steamapps\common\Screencheat\screencheat.exe
FirewallRules: [{00E86305-D1E2-4D5D-949B-4AD798E9A18D}] => (Allow) D:\Programs\Steam\steamapps\common\Screencheat\screencheat.exe
FirewallRules: [{FC4783AF-8E8E-43F6-BFA2-93B99FBB9E3F}] => (Allow) D:\Programs\Steam\steamapps\common\The Warlock of Firetop Mountain\The Warlock of Firetop Mountain.exe
FirewallRules: [{09E8F1C7-5257-47C0-9D1B-AD6EF3BC763E}] => (Allow) D:\Programs\Steam\steamapps\common\The Warlock of Firetop Mountain\The Warlock of Firetop Mountain.exe
FirewallRules: [{5DFCF175-FEDC-4D75-97D8-A1C766229B08}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{67A809D6-E37B-4C9F-9385-A3255400D4E4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{28D6BC71-ECCD-4E84-9589-37B3909B5A01}] => (Allow) F:\Programs\Steam\SteamApps\common\The Binding of Isaac Rebirth\isaac-ng.exe
FirewallRules: [{B6819595-3B81-4160-8D6E-3075F324F5BA}] => (Allow) F:\Programs\Steam\SteamApps\common\The Binding of Isaac Rebirth\isaac-ng.exe
FirewallRules: [{591FCC09-684C-4F4F-92B4-43650E3B55E3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7BD89CF7-6049-40C3-B41A-B9A9B87ECA81}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0888BE83-1315-4673-B6F0-77A72FB70F40}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9525642E-8978-4326-8FE6-A94B88D1BDB6}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F48903FF-876A-4051-95EA-9122C1EDF2D8}] => (Allow) D:\Programs\Steam\steamapps\common\WormsWMD\Worms W.M.D.exe
FirewallRules: [{8F88EC0A-AFF4-43DE-9FAE-43C330483BE8}] => (Allow) D:\Programs\Steam\steamapps\common\WormsWMD\Worms W.M.D.exe
FirewallRules: [{23FE673B-ECBF-4FFF-B3C3-ECCAE77D5D8D}] => (Allow) D:\Programs\Steam\steamapps\common\Orwell\Orwell.exe
FirewallRules: [{6048203A-AEBA-44C8-BC01-C163EF7FB807}] => (Allow) D:\Programs\Steam\steamapps\common\Orwell\Orwell.exe
FirewallRules: [{78F990F9-B066-4A47-8EB1-F21AF6B66844}] => (Allow) D:\Programs\Steam\steamapps\common\Rise of the Tomb Raider\ROTTR.exe
FirewallRules: [{83426B8D-9F7F-4D7A-B982-F1F0DCEDC186}] => (Allow) D:\Programs\Steam\steamapps\common\Rise of the Tomb Raider\ROTTR.exe
FirewallRules: [{FA065A68-D83D-43F6-962E-E19AC11A4A23}] => (Allow) D:\Programs\Steam\steamapps\common\Wargame Red Dragon\WarGame3.exe
FirewallRules: [{7DA0B624-AC94-4BBB-95C4-44F852BE7504}] => (Allow) D:\Programs\Steam\steamapps\common\Wargame Red Dragon\WarGame3.exe
FirewallRules: [{0006AB9E-A805-486B-88CF-215BB23ADE1F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FB00FF01-8778-44BA-A515-FBAF2003B232}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DA63F7D5-2326-406D-9DEF-94E7FA43A01D}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C643311D-8F1D-4FB6-92C3-A99B2C3BA12B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B24C86C1-A0C9-4613-98B1-BD56DFD86A69}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{7C360D2A-8E41-4752-A0C8-F4D7E93CDAD8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2E23861A-9D85-4EE8-AC97-072EB986ADA3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7923E566-683B-46C5-85B2-A6FC36B7A0E1}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3D02AC28-0860-4144-BB3A-5F2E0EB76BF5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{131C8A95-55A2-4723-8904-94E39F81EA22}] => (Allow) D:\Programs\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe
FirewallRules: [{516C9DA1-DE7F-477D-BCA7-04609E898737}] => (Allow) D:\Programs\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe
FirewallRules: [{477CA580-2FF0-45DE-B473-A6ACC93A4630}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{51CC2875-377B-449C-B0CA-B5CE8E9BB98D}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D72FDFB5-179E-4594-9550-4B8D7B0C23C6}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EEF15E27-7E82-48B0-9655-74DF32C0CEEC}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [UDP Query User{D1F9D8D7-BBA3-4E0D-A780-231E3B409230}D:\programs\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe] => (Allow) D:\programs\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe
FirewallRules: [TCP Query User{66D3ED59-A888-4849-B41D-7954B29836B1}D:\programs\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe] => (Allow) D:\programs\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe
FirewallRules: [{B9E511CA-618C-4E80-9749-35C48B9FB58A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AF252C20-1207-4494-98E2-AB2DB4F0107B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8BEAFE37-E324-4DEE-8D68-68682242426B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F29BB498-DC98-4CC2-A869-B2D08BDFF5A9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [UDP Query User{C59C9AF2-28BB-4708-886C-46EBBB21121F}F:\programs\deluge\deluge.exe] => (Allow) F:\programs\deluge\deluge.exe
FirewallRules: [TCP Query User{76E016E8-D0A1-44ED-8A7F-8D96053BA20E}F:\programs\deluge\deluge.exe] => (Allow) F:\programs\deluge\deluge.exe
FirewallRules: [{65F92FB0-0BAD-4A4B-9A99-33314053968C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AF3F4765-7AFE-4E7E-81A6-F20509BE8165}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2287675B-1A7F-48F3-9A55-40A77E7730E1}] => (Allow) D:\Programs\Steam\steamapps\common\Verdun\1914-1918 Series.exe
FirewallRules: [{747493C1-910F-4B2D-A2FF-EBE7B93B6C38}] => (Allow) D:\Programs\Steam\steamapps\common\Verdun\1914-1918 Series.exe
FirewallRules: [{126B987F-82FE-4344-8DC5-00A5720416DF}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{27E0C53B-6192-4972-996C-0BBC561A99AD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{090486D2-3954-4452-B3DC-E7D5E16E73E3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7DF8B555-5458-48BF-BF3F-C7D946D17763}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D8862E7D-AAA6-4361-A12E-478C4BED0582}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FE34F06F-1EA5-45ED-B30A-091710BEE9A9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [UDP Query User{B91A4313-F5EC-4F7B-8F8E-07238F577F42}F:\programs\destiny 2\destiny2.exe] => (Allow) F:\programs\destiny 2\destiny2.exe
FirewallRules: [TCP Query User{3CEB14CA-6C91-43BB-9D32-E7CE6534FA74}F:\programs\destiny 2\destiny2.exe] => (Allow) F:\programs\destiny 2\destiny2.exe
FirewallRules: [{F5752E9F-F384-4B02-94BA-E2EABFF26BA1}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{508E010E-0C1A-4837-8782-7EB32E39238E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [UDP Query User{0315ACAA-9950-4546-8E42-5CFB19B510A5}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [TCP Query User{A69830DC-248F-404F-BA10-BB5B83029669}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [{EF5DD0C5-4941-4E37-AB18-E1DE7C14DED5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E90DE09D-8802-49A4-8EC9-3909C86F233E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F7533F60-5655-45CB-AFFA-4826E9B74E20}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{FCB6A012-0D0E-4297-941A-B0417260A854}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{84518121-CB59-4707-AEE8-A8DCBC9EA88C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{E0D315D8-3517-47BC-BC12-4F8EA634C142}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{A460ABE4-521E-4DBF-B649-D4AE8AB39AAF}] => (Allow) D:\Programs\Steam\steamapps\common\DARK SOULS III\Game\DarkSoulsIII.exe
FirewallRules: [{9D485508-CA8F-4EB1-87D6-12693C2C24CC}] => (Allow) D:\Programs\Steam\steamapps\common\DARK SOULS III\Game\DarkSoulsIII.exe
FirewallRules: [{E67E1CEC-F6CA-48C4-9D80-7A44AE76D9EA}] => (Allow) D:\Programs\Steam\steamapps\common\Total War WARHAMMER\launcher\launcher.exe
FirewallRules: [{8B7E3A67-B402-4333-9ADC-7FAECBC4FD52}] => (Allow) D:\Programs\Steam\steamapps\common\Total War WARHAMMER\launcher\launcher.exe
FirewallRules: [{E5925949-B31D-4C97-8FBB-C8AE8F0BB52F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{415E8591-C167-4CE9-AB37-80752576C26E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{97BC344A-6096-499E-AEED-326FD6692C57}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DB66650E-0D7D-4501-896C-4320F888E8C2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4C64D6B8-6C1F-4FD2-92D7-736396D42377}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{38B9FC9D-C22D-46EC-9082-0151DE3AA752}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A2BC9FA1-E534-45B3-9C20-BC39815C944E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{48C9728D-FA7A-47ED-A78A-FEE8AA0B1E5B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{276AA25B-2E74-4496-BFA9-56ADD994018B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{06FED21C-A5A0-43D1-B39A-C6C000683FBD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1C6FA64D-756E-44B5-BB43-33C2AA96D4A3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{85810848-4B0B-45DF-8223-68C786AFA869}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{25E6E700-9C50-4798-9118-01A827E6E92F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3595F78A-63B0-4A47-941C-D150B764F0BD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4BC42F47-DF6A-49C9-AB49-9D7E708ACA2F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4E88E7AD-8A96-48F6-ACBD-1B9D1EA79AF3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BF23E768-81F1-4F59-AAA8-8AA2EA80EE14}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AF655213-DF38-4FB5-9F3E-B8C8F8C4AF8F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{44867A98-7BA8-4900-B49A-A672C799B6E1}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5162DD22-C810-4FC3-A0D4-4A620EA7C610}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{41E60BBB-252B-40BD-97B3-8D0196CF391C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{12F03819-B002-4774-BD3B-35997A5031F1}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DBA86507-E1F8-4FE6-8217-673C810678D3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EBBAD391-E092-477B-907E-8C6759C76BF4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A6A21D35-7C52-43F2-B472-D42183EA7D2A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
 

FirewallRules: [{72F570B7-EC8E-4AD8-986C-7B4F444D882E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4125E5AA-AE7A-43C8-B888-D8A1403C5800}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7A24B050-3648-46F0-87B0-7799C49D9DF5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C01CA467-669F-435C-A8EE-671A94316237}] => (Allow) D:\Programs\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe
FirewallRules: [{E4E45560-5876-4673-86D6-9A146385F129}] => (Allow) D:\Programs\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe
FirewallRules: [{ED8D7EA8-BB22-4A75-892D-590452FC96E4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C4927C80-6106-4D62-B87E-EE3DCB9F35F9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{727DE1A6-3DA0-4067-8BB4-CDED3D523343}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5A3D77B2-C131-4A4E-84CC-0832888CDF39}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AEEB967B-25C2-4D7A-9A3D-B4F3388F84D7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8C99252C-C5C3-4F03-847A-4A57A5470639}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4410244A-0EA5-4E03-9E08-70D5506BAE11}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2BD86D98-B182-41E5-9620-0BA4E549C125}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{55DF139B-C5D6-4A8A-BC1A-91B47084E6FD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{02721C58-9C08-4BE7-87BF-C0AFC5846EF9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7CCCDE8B-3B18-4EA6-A900-ABBAF3754F2C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C3A01396-4CDA-4BB2-8172-024CF18EA62B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{14482910-7BCF-4FFE-BFC7-3615581AAB87}] => (Allow) D:\Programs\OriginGames\Battlefield 1\bf1.exe
FirewallRules: [{FFA00BDD-8C8E-44D2-A124-EC264CBAD989}] => (Allow) D:\Programs\OriginGames\Battlefield 1\bf1.exe
FirewallRules: [{D304A915-9035-4E66-981A-7A9DC2A033AF}] => (Allow) D:\Programs\OriginGames\Battlefield 1\bf1Trial.exe
FirewallRules: [{66418597-E3A5-47A4-A24E-D8F07CFADE18}] => (Allow) D:\Programs\OriginGames\Battlefield 1\bf1Trial.exe
FirewallRules: [UDP Query User{ED41ABD7-F079-4374-9A55-BD27DC6B9CAC}D:\programs\steam\steamapps\common\insurgency2\insurgency.exe] => (Allow) D:\programs\steam\steamapps\common\insurgency2\insurgency.exe
FirewallRules: [TCP Query User{1F01826D-2437-4835-B450-A2F459AC9072}D:\programs\steam\steamapps\common\insurgency2\insurgency.exe] => (Allow) D:\programs\steam\steamapps\common\insurgency2\insurgency.exe
FirewallRules: [{1FFD18A3-131B-4A96-9025-E40AC0920E61}] => (Allow) D:\Programs\Steam\steamapps\common\insurgency2\insurgency_BE.exe
FirewallRules: [{008E6756-0133-42DF-B852-A60E2ACBB582}] => (Allow) D:\Programs\Steam\steamapps\common\insurgency2\insurgency_BE.exe
FirewallRules: [{36E91188-00AC-46E7-A77B-410931F61D68}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{53A9D129-B9AD-481D-B387-913243CEDC93}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3FA19925-AF90-46E8-9D70-797458526EA3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D6454B51-B69C-4C63-AD36-34728CEB5075}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5990C215-B122-40A2-9127-550028123DD6}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{38CFABD5-0524-4447-82A2-21A0C6CA5E46}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3F44A857-1F5A-4315-98FD-6C58282A4C73}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4F2C1B14-5AF9-4CD4-A4AA-4A50DE51EFFD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5AC5184F-2BE5-4983-8030-17B2BFE6217E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{358BFEA5-D543-4938-9F60-2813F3879DC3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{29A4657B-38BD-4547-B2B2-38FF22C9598C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F0A2C336-7CDD-42C4-AEB5-A12B27E6E14C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E6D42694-E1AF-4CBC-8745-3A2144E421C5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7BAB3D43-9356-4707-8F25-3CA5F4887C88}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E854E00F-3AF7-4ACC-8442-267B3C510CC5}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win32\starbound.exe
FirewallRules: [{D0752ABE-695E-4568-9AE9-9FFCEAAEB8C4}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win32\starbound.exe
FirewallRules: [{97364E4A-3130-4CC6-8064-CF19DA7F975A}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\mod_uploader.exe
FirewallRules: [{97CB6B22-8D79-4FBA-9B32-73B3257CCA72}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\mod_uploader.exe
FirewallRules: [{2EF67CBB-2A65-4EFE-9690-9538C510C713}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\starbound_server.exe
FirewallRules: [{69B0391B-21A3-4C7F-BBE9-8F51A0D40554}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\starbound_server.exe
FirewallRules: [{2E46AF03-6CE8-44DB-A8D3-538FCF9B0346}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\starbound.exe
FirewallRules: [{42A7936A-52A1-4E70-8B8B-7ABDC38F941C}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\starbound.exe
FirewallRules: [{47FFC5C5-2386-465C-B258-6F2914D3CD56}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6D96CD7A-56A8-4194-84D9-09562FAE82F3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D93EEB2E-7E0C-46B0-BA5A-BAE9F3185EAF}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5E07C889-7E78-414F-8450-F443F337DB3B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6B0A3CED-CD28-4439-A745-2E584E10616A}] => (Allow) D:\Programs\Steam\steamapps\common\Zenimax Online\zosSteamStarter.exe
FirewallRules: [{4EB1FC49-2A16-4DE0-B8B5-F3D351D3C5C8}] => (Allow) D:\Programs\Steam\steamapps\common\Zenimax Online\zosSteamStarter.exe
FirewallRules: [{7197DBD9-6787-45C2-A879-BCEB3B3767D2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D158C1EB-736D-416E-8612-F0C051F271E5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{242307C7-0875-4326-9177-D455148BF096}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A584F16D-58CE-498E-987D-A552F3BDC50E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E3C54FF0-EB6E-41A4-ACA0-F360586B3089}] => (Allow) D:\Programs\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{A5E2601B-DE9D-4318-A584-8768C087C62E}] => (Allow) D:\Programs\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{312145FC-9C26-462D-8B75-27C26783A4D3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5E317313-762B-4AF7-A046-9D5315F8AF8E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4791A150-A546-414E-B217-B90DC8D4D147}] => (Allow) D:\Programs\Steam\steamapps\common\DarkestDungeon\_windows\Darkest.exe
FirewallRules: [{54D5B051-5C3F-46E7-9E64-89E6E3F9BAD1}] => (Allow) D:\Programs\Steam\steamapps\common\DarkestDungeon\_windows\Darkest.exe
FirewallRules: [{F8E3BFF2-C92A-48FB-9455-AECB3F568ADC}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D7FDB5C8-0414-47BA-B526-14B09DED88B9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0655AC4A-7EFA-42C7-8C16-DED6937C9420}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C661ADB4-BCC6-4762-9E7A-3F2B0342BCB1}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{05022ECD-56E9-4996-9FBB-DE7AC439E37A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9A08F20D-9943-40A2-B289-402D38A4FB72}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D7C187CD-0FB4-4D0F-91F4-2675DD1AE375}] => (Allow) D:\Programs\Steam\steamapps\common\HyperLightDrifter\HyperLightDrifter.exe
FirewallRules: [{2EA460BC-F720-4EF3-ABF8-860C5A26151E}] => (Allow) D:\Programs\Steam\steamapps\common\HyperLightDrifter\HyperLightDrifter.exe
FirewallRules: [{8525773C-85A5-4E8C-8DB9-1D0A4E983079}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5B5E90B8-B8CA-4535-AC3B-D7857AD2E478}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B0077883-7A24-4C29-97E4-73126F99CB18}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0F4A9649-A1F1-46D0-AD2E-2C2BE8879AEF}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2E9D70CE-E922-42B1-8C03-8FD80F02B964}] => (Allow) D:\Programs\Steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe
FirewallRules: [{2F7963A5-39A9-4C19-AF30-2D7D82032AE2}] => (Allow) D:\Programs\Steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe
FirewallRules: [{431BCE35-2AE4-48AD-A6A4-97C2A6288164}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1D9C3F16-43D8-4E25-B4E7-30C4DE6A0839}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A7E2CADC-556F-4148-BB28-2C0524512B4F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8CA8FEC4-35D9-49A9-A07E-67804E16A88E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B7C426FF-9A6D-45AE-81B1-919925E1E2D5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{623A25BD-73A8-45AA-BC47-1500584E98FB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{69CAD524-2F01-4879-8CF5-2B15715C3E62}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F931BA12-BE13-49D9-B383-B204B76CFEB7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AD03F3F8-35B4-4DED-9136-2BA8A2F6A15C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{685EA69D-E88A-478D-A4C5-0FE3FE7A1DCA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E55297EF-4C7C-49F4-A01C-FDFD15AA70F7}] => (Allow) D:\Programs\Steam\steamapps\common\Roguelands\Roguelands.exe
FirewallRules: [{A46EC79A-BE68-4DC9-A2AD-3E6ADF960A8F}] => (Allow) D:\Programs\Steam\steamapps\common\Roguelands\Roguelands.exe
FirewallRules: [UDP Query User{FAE61699-CB40-462B-BC56-13C0210D74FA}D:\programs\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\programs\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [TCP Query User{E2690B88-B009-4B24-BC3D-5763BEAE1DDC}D:\programs\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\programs\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [{ED209AA8-9820-49D6-98AE-CE3AC33B2627}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{624C1968-CA55-45B9-B746-95C68E1EC13E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{678F829F-FD09-46C7-B00A-9CB210DBFACA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E95430D7-3D9D-43F3-B8EF-DCA44D591256}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3583CBF2-B9A8-451A-BEC9-56DE1FB961C8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8568A31A-CEA7-41A9-9ABE-12A8D6E522F3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1F076FB3-8D87-4FE0-98A7-F60BF25D5B7A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8B841EF6-A926-40B6-B58A-5AC72497FA0B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{35E57244-EE07-43E1-9EB1-D5379DDFA5F7}] => (Allow) F:\Programs\Steam\SteamApps\common\ShadowOfMordor\x64\ShadowOfMordor.exe
FirewallRules: [{7DBD0289-6AD6-4582-9508-36D9E0FD23AB}] => (Allow) F:\Programs\Steam\SteamApps\common\ShadowOfMordor\x64\ShadowOfMordor.exe
FirewallRules: [{C2BC5F6D-A891-4DB9-B31B-041ECFED635F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{69EEB83B-5802-4890-B0DF-7DDF5396BE16}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E4D1CB75-DB0F-44B8-A762-455E2CCDA6F8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A178AE86-1AA8-45C8-9E58-8E670A6976AB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6A8690B1-78E2-473D-A95C-F6BBC03237EE}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7F9597CE-F8FF-4998-809D-B54E2BD0C31B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{777156B4-2444-48AA-8A15-341F87400DB8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6ECEA16F-05AD-4E2B-ACA0-C3DB65357435}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6B592C8F-4DE4-44C4-B17B-E92CB97B3ECB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C1D24A1C-F6AB-4186-AAF4-BE3FABF3082B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{13F5AE8E-4297-4F4C-824B-C0585DC60440}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F27B91B7-4E5E-4B05-965E-5D171F79BDA5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FC3AB9E2-62B8-4778-81A7-111D586F56C2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{335116E6-2F47-46F0-AF0E-433490845B11}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E1C4B006-8196-4301-A76B-5A76617C898B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{63F0D036-8528-4ED6-9B5F-7F01E96285E9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4C6A5E04-6C3B-4C17-A0E7-036620AFCA0E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F0D596DC-0F53-44F2-AF0B-8CDACAE28FB6}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C672AD5F-6372-4E66-8B60-D28DBD7267A4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{41233338-B966-4147-97B0-E57D0279A365}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6538CB33-F4EC-409A-A673-8CA5ECC71EB8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1E02ABDB-734F-4720-B396-68FA67A1E2E8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{ADDDCE24-B6E3-44FF-96E7-EC8DC371742A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{89EBB2A6-2FD8-4904-B84B-B15904C45C87}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D1CFA7D2-6123-4A04-8564-AAA7AEF88DC9}] => (Allow) D:\Programs\Steam\steamapps\common\Brigador\brigador.exe
FirewallRules: [{9AE38646-9537-4652-9FEA-7B199EA04A2C}] => (Allow) D:\Programs\Steam\steamapps\common\Brigador\brigador.exe
FirewallRules: [{AB75D243-36B3-42A9-AC02-2B7A2C106C27}] => (Allow) D:\Programs\Steam\steamapps\common\Maize\Maize\Binaries\Win64\Maize.exe
FirewallRules: [{FD012FAD-3A55-4E89-B276-6693D48C869C}] => (Allow) D:\Programs\Steam\steamapps\common\Maize\Maize\Binaries\Win64\Maize.exe
FirewallRules: [{14168574-8961-42CD-83A2-5986B140C277}] => (Allow) D:\Programs\Steam\steamapps\common\SUPERHOT\SUPERHOT.exe
FirewallRules: [{65BF6B4C-B0CC-4477-9EBB-9A18ABAC7E54}] => (Allow) D:\Programs\Steam\steamapps\common\SUPERHOT\SUPERHOT.exe
FirewallRules: [{BC8B84E4-6FFC-40ED-937F-A276F3173B90}] => (Allow) D:\Programs\Steam\steamapps\common\Shoppe Keep\Shoppe Keep.exe
FirewallRules: [{4D28A707-3AE7-4BA4-A655-A39219C2463D}] => (Allow) D:\Programs\Steam\steamapps\common\Shoppe Keep\Shoppe Keep.exe
FirewallRules: [{BD8C7FE4-1A64-44BA-ADB7-5728546EE564}] => (Allow) D:\Programs\Steam\steamapps\common\Ashes of the Singularity Escalation\StardockLauncher.exe
FirewallRules: [{358B55DD-D56E-4CA5-8797-6E91C3E10B0B}] => (Allow) D:\Programs\Steam\steamapps\common\Ashes of the Singularity Escalation\StardockLauncher.exe
FirewallRules: [{B1BAF6C2-3911-4E57-BE48-8A714593132D}] => (Allow) D:\Programs\Steam\steamapps\common\PlagueInc\PlagueIncEvolved.exe
FirewallRules: [{2C7F13A9-ACB2-46EF-888B-A7EE50413FA7}] => (Allow) D:\Programs\Steam\steamapps\common\PlagueInc\PlagueIncEvolved.exe
FirewallRules: [{69B6BE6A-37A6-4439-B20D-8077C846F628}] => (Allow) D:\Programs\Steam\steamapps\common\Stellaris\stellaris.exe
FirewallRules: [{A7C9BAD6-BD95-4DD1-8ABC-AF85234277B6}] => (Allow) D:\Programs\Steam\steamapps\common\Stellaris\stellaris.exe
FirewallRules: [{382C7337-964C-4250-8DEB-7F40D83EEB54}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D7132B3D-C5C8-454D-B6A8-58EE3B470F40}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DAC13063-5561-4E82-9BBA-EC488EDF465A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B05FCD14-A4AF-4A54-AE16-99B1514819A4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CF5537C1-DE0D-4660-A71E-0802B2A85B5C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EF14888D-49C7-43D1-B6AF-1920616445F4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{89C99C57-6715-4CF6-8414-1646FF596F70}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CC8531C4-44AF-4B09-A4E4-FF12D9CE6246}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2AAA0568-4F7C-43C2-AC3F-E243724D69F8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3B15C732-9672-4887-8B25-A482A84A618F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7703FCE1-360A-4A99-88EE-3AA05374AD70}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D5C1CD8C-951E-491E-8420-E80D4A36DE47}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AC6BE01C-0C0E-4FAB-B468-0CCBE94D4C6E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B93B36E7-E510-41CA-A8DF-A4D8747DF4E7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2A93B9A3-37F4-414A-99B2-A7668E58A476}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F7C3C03A-A7F0-428D-990B-194C45A74BA8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EE9AD10C-527B-4404-98A7-08852F0DAE47}] => (Allow) F:\Programs\Steam\SteamApps\common\Call of Duty Black Ops III\BlackOps3.exe
FirewallRules: [{0AC545AB-A3C4-4C1E-B678-ABBA2E11CF21}] => (Allow) F:\Programs\Steam\SteamApps\common\Call of Duty Black Ops III\BlackOps3.exe
FirewallRules: [{8DB50802-60FD-4729-864D-B2EDBF638BF2}] => (Allow) D:\Programs\Steam\steamapps\common\GoatSimulator\Binaries\Win32\GoatGame-Win32-Shipping.exe
FirewallRules: [{56BCFEBC-1CFA-4B3A-BA0F-96CC2E887BC5}] => (Allow) D:\Programs\Steam\steamapps\common\GoatSimulator\Binaries\Win32\GoatGame-Win32-Shipping.exe
FirewallRules: [{10568127-5BE4-46CE-BD6E-15F9B9482FBF}] => (Allow) D:\Programs\Steam\steamapps\common\Streets of Rogue\StreetsOfRogue.exe
FirewallRules: [{D0221AEA-4070-4574-AC68-8AC257A09882}] => (Allow) D:\Programs\Steam\steamapps\common\Streets of Rogue\StreetsOfRogue.exe
FirewallRules: [{B42D9B9B-EF80-4F62-89B4-E0528EEE84C7}] => (Allow) D:\Programs\Steam\steamapps\common\Party Hard\PartyHardGame.exe
FirewallRules: [{107D735D-5B56-4545-A475-940D5AC067F2}] => (Allow) D:\Programs\Steam\steamapps\common\Party Hard\PartyHardGame.exe
FirewallRules: [{A93B5E19-AFD8-4278-A44F-E188B4BE6943}] => (Allow) D:\Programs\Steam\steamapps\common\Guts and Glory\Guts and Glory.exe
FirewallRules: [{BF2E0549-B6E6-4AA4-A397-3FB9731999A2}] => (Allow) D:\Programs\Steam\steamapps\common\Guts and Glory\Guts and Glory.exe
FirewallRules: [{45B980BC-0C21-4E19-8724-51B238CA0104}] => (Allow) D:\Programs\Steam\steamapps\common\TheFinalStation\TheFinalStation.exe
FirewallRules: [{DDC0B909-7FB4-4373-91AD-25B538997207}] => (Allow) D:\Programs\Steam\steamapps\common\TheFinalStation\TheFinalStation.exe
FirewallRules: [{8A6D14D7-AB80-4741-AD6C-00ACD50E4EBF}] => (Allow) D:\Programs\Steam\steamapps\common\Divide by sheep\Dividebysheep.exe
FirewallRules: [{932D19D2-3723-4C73-9D74-11D73A9C6337}] => (Allow) D:\Programs\Steam\steamapps\common\Divide by sheep\Dividebysheep.exe
FirewallRules: [{F91B6B4D-5692-4FC7-9A80-34C18AE68415}] => (Allow) D:\Programs\Steam\steamapps\common\ClusterTruck\Clustertruck.exe
FirewallRules: [{89D6E4A7-6368-4C5D-AD93-3C4AA6A58260}] => (Allow) D:\Programs\Steam\steamapps\common\ClusterTruck\Clustertruck.exe
FirewallRules: [{DA7BE755-7BA3-4FF2-B961-6F0E5A33370D}] => (Allow) D:\Programs\Steam\steamapps\common\Ziggurat\Ziggurat.exe
FirewallRules: [{1B5E9858-CD05-4625-AD53-D184186262E0}] => (Allow) D:\Programs\Steam\steamapps\common\Ziggurat\Ziggurat.exe
FirewallRules: [{1791D1F6-9F25-4FAD-BF9C-A92F2082D0A8}] => (Allow) D:\Programs\Steam\steamapps\common\Windward\Windward.exe
FirewallRules: [{94C4E5CC-BEF9-4717-AB33-D42D6CA1BA11}] => (Allow) D:\Programs\Steam\steamapps\common\Windward\Windward.exe
FirewallRules: [{F2CF195E-AB1A-4AF8-B5C9-20CE71BAC88A}] => (Allow) D:\Programs\Steam\steamapps\common\SteamWorld Heist\Heist.exe
FirewallRules: [{22DB378C-5622-4C15-BD58-07030300EDE4}] => (Allow) D:\Programs\Steam\steamapps\common\SteamWorld Heist\Heist.exe
FirewallRules: [{A1F6FDFB-5E2F-453D-9E56-86C995E80796}] => (Allow) D:\Programs\Steam\steamapps\common\KentuckyRouteZero\KentuckyRouteZero.exe
FirewallRules: [{99AA74A2-7D93-4B59-BEA9-6589EDFD020D}] => (Allow) D:\Programs\Steam\steamapps\common\KentuckyRouteZero\KentuckyRouteZero.exe
FirewallRules: [{1A0ABE69-0C04-4476-8A51-B78A3533F672}] => (Allow) D:\Programs\Steam\steamapps\common\Owlboy\Owlboy.exe
FirewallRules: [{9D6B3FE8-0510-4102-AAAE-4D7D2CDAEEC3}] => (Allow) D:\Programs\Steam\steamapps\common\Owlboy\Owlboy.exe
FirewallRules: [{15C3AB59-5A87-4465-8B99-D19578143043}] => (Allow) D:\Programs\Steam\steamapps\common\Beholder\Beholder.exe
FirewallRules: [{C07CDF27-D609-4503-B1CC-9EF70434CFEF}] => (Allow) D:\Programs\Steam\steamapps\common\Beholder\Beholder.exe
FirewallRules: [{017EA0E4-07DE-481C-A7C8-ECF4DC3B03CE}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6E34C304-A19D-4629-91AA-DA7C827E8961}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F56BF4CB-D758-44E3-A2FB-E847F5A963DF}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{06278A26-4536-46E7-A490-8D7495CCE9D0}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3152CB24-335E-4523-9F7A-97BB8EBE121C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A8599ABB-E1FC-420C-8D09-97E33E660947}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A88F43BC-AD42-45E8-9A77-0E66E8CE9B1F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EC1BFDCA-6535-4521-8DD0-61BB9EC73FAE}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D605A8AF-CA48-4CD5-AD50-D4B122E7A225}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{87BE4DD7-2D73-4760-A0B2-4AA0A5252516}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E609452C-72EE-4C49-B82F-8D1B304B7480}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0CA4DC9E-4F37-4917-B3A7-3C841F085B49}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E404C50B-CE41-40E0-B808-61E9B6F545A2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3460E6FB-7241-4B9C-9670-A85113CDF075}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0453E41E-3A9E-4F81-9207-F2AB3343146D}] => (Allow) D:\Programs\Steam\steamapps\common\Stephen's Sausage Roll\Sausage.exe
FirewallRules: [{6D0DAA5A-A8C9-4A04-AAC4-D0859A0D6E89}] => (Allow) D:\Programs\Steam\steamapps\common\Stephen's Sausage Roll\Sausage.exe
FirewallRules: [{9B69AFB5-BE4F-4FD7-A24D-34D31A906BB9}] => (Allow) D:\Programs\Steam\steamapps\common\The Curious Expedition\electron.exe
FirewallRules: [{BED2DDEE-EBBD-4B97-AE9F-C619B9D5B583}] => (Allow) D:\Programs\Steam\steamapps\common\The Curious Expedition\electron.exe
FirewallRules: [{036416DE-AB1A-4FA4-AF6B-5A9699FF2C7F}] => (Allow) D:\Programs\Steam\steamapps\common\Super Mega Baseball\supermegabaseball.exe
FirewallRules: [{650F76E6-2E70-41B9-AF73-1C891204E9A3}] => (Allow) D:\Programs\Steam\steamapps\common\Super Mega Baseball\supermegabaseball.exe
FirewallRules: [{8BA96301-3534-42C6-8E84-579609F27CA0}] => (Allow) D:\Programs\Steam\steamapps\common\Crashlands\Crashlands.exe
FirewallRules: [{8A429BCF-91A3-4EA4-A426-F73E01F116F5}] => (Allow) D:\Programs\Steam\steamapps\common\Crashlands\Crashlands.exe
FirewallRules: [{0C163119-BAEF-4F0D-B077-DDBACFE625A4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{312113B1-70A0-4E5F-A3B3-F45CE066CDF7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FC084141-E3C5-41FB-91E0-853824561684}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{25118261-EC97-444D-A5EE-7EDCEAA7903F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{954333C8-8B41-45B5-B5DC-3A9855F93A4D}] => (Allow) D:\Programs\Steam\steamapps\common\GoNNER\GoNNER.exe
FirewallRules: [{90693DEE-F0E2-4320-A3CF-214BC1C79054}] => (Allow) D:\Programs\Steam\steamapps\common\GoNNER\GoNNER.exe
FirewallRules: [{4AB9093E-5368-4F58-A277-E9891FCD01A4}] => (Allow) D:\Programs\Steam\steamapps\common\Metrico+\Metrico+.exe
FirewallRules: [{FD7A6D82-D6AD-46D6-9B75-E12C68604088}] => (Allow) D:\Programs\Steam\steamapps\common\Metrico+\Metrico+.exe
FirewallRules: [{7F9C949A-A426-427A-9C6C-B79986772FFB}] => (Allow) D:\Programs\Steam\steamapps\common\Super Rude Bear Resurrection\SRBR.exe
FirewallRules: [{8B91C253-8450-4952-91D0-7EA5DF6BDBB1}] => (Allow) D:\Programs\Steam\steamapps\common\Super Rude Bear Resurrection\SRBR.exe
FirewallRules: [{3011613E-1862-479B-A666-29CF49F68CBD}] => (Allow) D:\Programs\Steam\steamapps\common\The Turing Test\TheTuringTest\Binaries\Win64\TheTuringTest.exe
FirewallRules: [{82D6F69F-8CE0-4AF8-90F1-0EFB32CD2AA4}] => (Allow) D:\Programs\Steam\steamapps\common\The Turing Test\TheTuringTest\Binaries\Win64\TheTuringTest.exe
FirewallRules: [{571AF52E-35B6-432F-BF09-603A69A21C44}] => (Allow) D:\Programs\Steam\steamapps\common\Undertale\UNDERTALE.exe
FirewallRules: [{9BD4B3E3-B88D-44EE-836C-8F4F22F8ED80}] => (Allow) D:\Programs\Steam\steamapps\common\Undertale\UNDERTALE.exe
FirewallRules: [{14E117A0-F06E-40F2-833A-313323EA725B}] => (Allow) D:\Programs\Steam\steamapps\common\This is the Police\Police.exe
FirewallRules: [{AEB7FB01-A039-4362-9CC4-EA3905ED1D07}] => (Allow) D:\Programs\Steam\steamapps\common\This is the Police\Police.exe
FirewallRules: [{EBBE4143-240E-40CB-94B7-97981D188850}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AE4E6A6E-C8AE-46F9-8734-361FE9E78DFD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F5DC84F3-A812-4FF5-A069-6F1BC7F82AB8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D8BB4F96-7547-41F0-9951-35DE6AA3E2C2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{653CD0B5-310F-4768-AB40-B9908255C43E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BC4FC207-4AE6-43A2-9CC3-285D54DEE0CA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DE6D10A2-AFE9-4530-9673-FDA001578AFB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E893F35A-E651-4890-87DA-A4342B63E8D5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0121BA0F-6F4F-4FA1-B4AB-584FB81ADFA2}] => (Allow) D:\Programs\Steam\steamapps\common\Ruin of the Reckless\RotRVC.exe
FirewallRules: [{062E4F67-290A-4506-A173-985958F3A1C0}] => (Allow) D:\Programs\Steam\steamapps\common\Ruin of the Reckless\RotRVC.exe
FirewallRules: [{656935A0-AF02-4E31-BCF7-FD9995265D2A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{13C721B9-F7D7-4BB1-ABCD-1576E911BF84}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A3BC0751-5A29-4F3A-893C-EE528654EE14}] => (Allow) D:\Programs\OriginGames\Titanfall2\Titanfall2_trial.exe
FirewallRules: [{F0443519-8BDC-42B9-B749-BD12ED74B299}] => (Allow) D:\Programs\OriginGames\Titanfall2\Titanfall2_trial.exe
FirewallRules: [{1EBD14C5-581B-4DAD-B43A-DC98EC6D7D5B}] => (Allow) D:\Programs\OriginGames\Titanfall2\Titanfall2.exe
FirewallRules: [{E4746802-242C-4341-BFF1-DA4A085DD9C5}] => (Allow) D:\Programs\OriginGames\Titanfall2\Titanfall2.exe
FirewallRules: [{B185AC18-0454-494E-A913-7B8BDC426C90}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8CA9B357-B6E4-4C28-B7BE-20CC369162AB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8A5DAB1A-46D3-4AA2-8CA7-98ABC241A2D9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{61C274DE-81D8-4034-84A5-CA8173C9EAE1}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4DCF0F25-C117-4A75-897C-C4499E313751}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4682A210-DB9C-48BD-8088-AF79D4A140B9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B6989976-E593-4A2F-8487-E8C3B5E41DAA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A60AD904-375B-41E3-9CD8-B5A70C9D33DE}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7DDCB4EB-6E3A-4515-B43F-6B0C0615287D}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A657BD38-9717-4C90-955D-A17F709E63CE}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0DF96139-F6E3-487B-85AA-48613B64A23F}] => (Allow) D:\Programs\Steam\steamapps\common\HardWest\HardWest.exe
FirewallRules: [{86FB75DE-2A24-458C-902B-01F5EC670002}] => (Allow) D:\Programs\Steam\steamapps\common\HardWest\HardWest.exe
FirewallRules: [{906C743B-374B-4376-BADC-B1C187E4BAAD}] => (Allow) D:\Programs\Steam\steamapps\common\Slime Rancher\SlimeRancher.exe
FirewallRules: [{EACAB247-F702-4A08-8BBB-EE5BCA33F912}] => (Allow) D:\Programs\Steam\steamapps\common\Slime Rancher\SlimeRancher.exe
FirewallRules: [{C9D86320-7A76-4CB8-9B89-480619A6898C}] => (Allow) D:\Programs\Steam\steamapps\common\Planetary Annihilation Titans\bin_x64\PA.exe
FirewallRules: [{5AC78C4A-657B-466C-80E5-5D1A2FF616D0}] => (Allow) D:\Programs\Steam\steamapps\common\Planetary Annihilation Titans\bin_x64\PA.exe
FirewallRules: [{911D3574-82EF-4A27-B8C3-9BB99DEA3718}] => (Allow) D:\Programs\Steam\steamapps\common\Galactic Civilizations III\StardockLauncher.exe
FirewallRules: [{6EF73040-6FE3-4322-BD76-5EA107ABD78F}] => (Allow) D:\Programs\Steam\steamapps\common\Galactic Civilizations III\StardockLauncher.exe
FirewallRules: [{C9AF6CBA-61F1-44C6-AD30-FC1F1248C3BF}] => (Allow) D:\Programs\Steam\steamapps\common\Offworld Trading Company\StardockLauncher.exe
FirewallRules: [{6DF9F0A0-14AE-4F94-8471-AE1CBA216C05}] => (Allow) D:\Programs\Steam\steamapps\common\Offworld Trading Company\StardockLauncher.exe
FirewallRules: [{30F81BFD-CB00-4E4D-B7B4-CC836E5A1462}] => (Allow) D:\Programs\Steam\steamapps\common\Galactic Civilizations I Ultimate Edition\AltarianProphecy\GalCiv.exe
FirewallRules: [{45B0EFC0-71F3-4079-99B3-C88B75F0D558}] => (Allow) D:\Programs\Steam\steamapps\common\Galactic Civilizations I Ultimate Edition\AltarianProphecy\GalCiv.exe
FirewallRules: [{EF8ECF64-EB85-4510-A1A7-91551A94F8AA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D61D6B7D-F2E3-4EAE-8C2C-95952BDDF22C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AB3167A3-8D2C-45F3-9318-604E0D5E28FA}] => (Allow) D:\Programs\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{7959374E-8A31-4EE6-B3A0-D644C7E4745E}] => (Allow) D:\Programs\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{61BE6D02-8C77-4B59-A813-9C143D6EA170}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6D42287B-9259-436C-970A-AE65A1DC910B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{11E0036C-66CD-4B30-B33C-33F1F4CFC7FC}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5E94B4B5-8503-4FC3-9F34-35CB29A2DA9A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{20208194-417A-4ADF-8BC0-748E045A8FD8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1336E7DB-203F-495D-92C0-EE6C69D61B43}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8FFA8323-3646-47A3-B258-DFDF78C59483}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3E48A462-838C-4C9C-BB4D-2FD59D568877}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F0D777CB-7BB7-47B8-B804-92D82957602B}] => (Allow) D:\Programs\Steam\steamapps\common\SuperTimeForceUltra\STF_win32.exe
FirewallRules: [{B7011569-07FD-4EE3-92D0-DFC6B5C4715A}] => (Allow) D:\Programs\Steam\steamapps\common\SuperTimeForceUltra\STF_win32.exe
FirewallRules: [{571F0958-42F2-451D-880D-BB8540A6B298}] => (Allow) D:\Programs\Steam\steamapps\common\Lovers in a Dangerous Spacetime\LoversInADangerousSpacetime.exe
FirewallRules: [{DFDB0D7B-50F9-4CD4-B920-0AC53FCD3BF6}] => (Allow) D:\Programs\Steam\steamapps\common\Lovers in a Dangerous Spacetime\LoversInADangerousSpacetime.exe
FirewallRules: [{75ECA5EB-E0BB-4476-8AD4-AB852BFE1DAA}] => (Allow) F:\Programs\Steam\SteamApps\common\lethalleague\LethalLeague.exe
FirewallRules: [{B6952812-5120-4AFE-B7A6-77B13705643E}] => (Allow) F:\Programs\Steam\SteamApps\common\lethalleague\LethalLeague.exe
FirewallRules: [UDP Query User{CE3337B7-DD41-4F2B-9D96-668F0A436674}C:\program files (x86)\gigabyte\@bios\flashbios.exe] => (Allow) C:\program files (x86)\gigabyte\@bios\flashbios.exe
FirewallRules: [TCP Query User{E0466325-B79C-48B4-B969-7A8EC5526840}C:\program files (x86)\gigabyte\@bios\flashbios.exe] => (Allow) C:\program files (x86)\gigabyte\@bios\flashbios.exe
FirewallRules: [{2DF8E3EE-9F5C-414A-899E-6868D2FA154C}] => (Allow) C:\Program Files (x86)\GIGABYTE\AppCenter\gcupd.exe
FirewallRules: [{F38643B5-9F38-43DF-AC10-0E3022AEF396}] => (Allow) C:\Program Files (x86)\GIGABYTE\AppCenter\ApCent.exe
FirewallRules: [{A576E651-B77D-439E-B478-20147E6A67F9}] => (Allow) D:\Programs\Steam\steamapps\common\Parkitect\Parkitect.exe
FirewallRules: [{8C04163B-CEF3-4D1C-9C34-DBB16F0071A3}] => (Allow) D:\Programs\Steam\steamapps\common\Parkitect\Parkitect.exe
FirewallRules: [{F26EC8D3-A99C-4B3B-A55A-492BCF23EF98}] => (Allow) D:\Programs\Steam\steamapps\common\FINAL FANTASY FFX&FFX-2 HD Remaster\FFX&X-2_LAUNCHER.exe
FirewallRules: [{51658D7F-08FD-4FFD-AA18-B721EFCEC13D}] => (Allow) D:\Programs\Steam\steamapps\common\FINAL FANTASY FFX&FFX-2 HD Remaster\FFX&X-2_LAUNCHER.exe
FirewallRules: [UDP Query User{15B6177D-B3BD-4A6E-81C5-A2FCD02A1E7F}F:\programs\steam\steamapps\common\elite dangerous\products\elite-dangerous-64\elitedangerous64.exe] => (Allow) F:\programs\steam\steamapps\common\elite dangerous\products\elite-dangerous-64\elitedangerous64.exe
FirewallRules: [TCP Query User{279B25AA-5FD4-4671-A361-8724377DC243}F:\programs\steam\steamapps\common\elite dangerous\products\elite-dangerous-64\elitedangerous64.exe] => (Allow) F:\programs\steam\steamapps\common\elite dangerous\products\elite-dangerous-64\elitedangerous64.exe
FirewallRules: [{2BA82440-53EA-4A46-B65E-7078BC1968B7}] => (Allow) D:\Programs\Steam\steamapps\common\Big Pharma\Big Pharma.exe
FirewallRules: [{9EE8BC48-DA40-45A1-A81D-78E4241B0DF4}] => (Allow) D:\Programs\Steam\steamapps\common\Big Pharma\Big Pharma.exe
FirewallRules: [{0CD59270-39CD-456A-B59B-773747E56598}] => (Allow) F:\Programs\Steam\SteamApps\common\Divinity Original Sin Enhanced Edition\Shipping\EoCApp.exe
FirewallRules: [{E3643752-4148-4D7A-8527-9F5B7B8935F1}] => (Allow) F:\Programs\Steam\SteamApps\common\Divinity Original Sin Enhanced Edition\Shipping\EoCApp.exe
FirewallRules: [{036235CC-5460-451A-8DA1-21908A8D74C5}] => (Allow) D:\Programs\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe
FirewallRules: [{BD797A00-4C36-4D40-8292-85C360EDB691}] => (Allow) D:\Programs\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe
FirewallRules: [{998F4FB0-FB2F-4E7F-B0D8-7CE384622DFD}] => (Allow) F:\Programs\Steam\SteamApps\common\Prison Architect\Prison Architect Safe Mode.exe
FirewallRules: [{2D54AE6F-F72A-44A7-98CF-88364FFC9706}] => (Allow) F:\Programs\Steam\SteamApps\common\Prison Architect\Prison Architect Safe Mode.exe
FirewallRules: [UDP Query User{560F388B-FD21-4968-BC1B-BB5EC01FD0CD}D:\programs\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe] => (Allow) D:\programs\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe
FirewallRules: [TCP Query User{C3E45487-F641-43A8-B7D7-26753EC63CF4}D:\programs\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe] => (Allow) D:\programs\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe
FirewallRules: [{CA8E4183-C783-4914-897A-29BE8B707E77}] => (Allow) D:\Programs\Steam\steamapps\common\XCOM 2\Binaries\Win64\Launcher\ModLauncherWPF.exe
FirewallRules: [{E10005F0-8A80-4CE1-8672-1687EE985190}] => (Allow) D:\Programs\Steam\steamapps\common\XCOM 2\Binaries\Win64\Launcher\ModLauncherWPF.exe
FirewallRules: [{D3DAD41B-48EA-4B85-91B0-DDA8039839AA}] => (Allow) D:\Programs\Steam\steamapps\common\Sid Meier's Civilization Beyond Earth\CivilizationBE_Mantle.exe
FirewallRules: [{81269191-17C8-417D-A193-12C20BBB553D}] => (Allow) D:\Programs\Steam\steamapps\common\Sid Meier's Civilization Beyond Earth\CivilizationBE_Mantle.exe
FirewallRules: [{93A1360E-587C-4489-8951-70E99D33779F}] => (Allow) D:\Programs\Steam\steamapps\common\Sid Meier's Civilization Beyond Earth\CivilizationBE_DX11.exe
FirewallRules: [{1D4F446A-6749-425A-BB3C-A679F3E0A7AA}] => (Allow) D:\Programs\Steam\steamapps\common\Sid Meier's Civilization Beyond Earth\CivilizationBE_DX11.exe
FirewallRules: [{C2563AF2-6C24-49BA-9772-9F1745402352}] => (Allow) D:\Programs\Steam\steamapps\common\Sid Meier's Civilization V\Launcher.exe
FirewallRules: [{83C5B429-D8BF-4F8F-8592-140542CE8E88}] => (Allow) D:\Programs\Steam\steamapps\common\Sid Meier's Civilization V\Launcher.exe
FirewallRules: [UDP Query User{7CE43C27-6D41-4220-AE7E-7B3B7B614154}F:\programs\steam\steamapps\common\terraria\terrariaserver.exe] => (Allow) F:\programs\steam\steamapps\common\terraria\terrariaserver.exe
FirewallRules: [TCP Query User{F08C160F-FED0-4C5D-BC3D-926DB27228A1}F:\programs\steam\steamapps\common\terraria\terrariaserver.exe] => (Allow) F:\programs\steam\steamapps\common\terraria\terrariaserver.exe
FirewallRules: [{8E926AA0-1C38-4219-BCF6-890C27220E1C}] => (Allow) F:\Programs\Steam\SteamApps\common\Team Fortress 2\hl2.exe
FirewallRules: [{3E6846F5-BAC8-42F6-A555-B88307480C63}] => (Allow) F:\Programs\Steam\SteamApps\common\Team Fortress 2\hl2.exe
FirewallRules: [{CDEED9EF-95D9-4878-8C91-65A881548AE7}] => (Allow) F:\Programs\Steam\SteamApps\common\Dungeon of the Endless\DungeonoftheEndless.exe
FirewallRules: [{41D5303B-524E-408E-9490-AC81F54024EC}] => (Allow) F:\Programs\Steam\SteamApps\common\Dungeon of the Endless\DungeonoftheEndless.exe
FirewallRules: [{A1A5C317-6057-418F-8B57-923E52013337}] => (Allow) F:\Programs\Steam\SteamApps\common\Endless Legend\EndlessLegend.exe
FirewallRules: [{515578D5-88A9-4540-AB38-1BA08D94C098}] => (Allow) F:\Programs\Steam\SteamApps\common\Endless Legend\EndlessLegend.exe
FirewallRules: [{922B55A1-43A7-45EA-931C-044BC50DA454}] => (Allow) F:\Programs\Steam\SteamApps\common\Endless Space\EndlessSpace.exe
FirewallRules: [{2A6102A7-EEB5-4660-ADF2-69529DB725C2}] => (Allow) F:\Programs\Steam\SteamApps\common\Endless Space\EndlessSpace.exe
FirewallRules: [{90EE037C-058D-4FE0-987C-545DCDF42DFD}] => (Allow) F:\Programs\Steam\SteamApps\common\Crusader Kings II\CK2game.exe
FirewallRules: [{A6CD86AB-F02C-4204-9024-FA23730A4F14}] => (Allow) F:\Programs\Steam\SteamApps\common\Crusader Kings II\CK2game.exe
FirewallRules: [{4CF0A7A7-024A-4507-BED0-316FA4475C5B}] => (Allow) LPort=51001
FirewallRules: [UDP Query User{46079D41-F56C-47BF-98BA-48579B8218F9}F:\programs\steam\steamapps\common\elite dangerous horizons\products\elite-dangerous-64\elitedangerous64.exe] => (Allow) F:\programs\steam\steamapps\common\elite dangerous horizons\products\elite-dangerous-64\elitedangerous64.exe
FirewallRules: [TCP Query User{469FB286-E1C0-4F4F-9574-F14B3AAB97F6}F:\programs\steam\steamapps\common\elite dangerous horizons\products\elite-dangerous-64\elitedangerous64.exe] => (Allow) F:\programs\steam\steamapps\common\elite dangerous horizons\products\elite-dangerous-64\elitedangerous64.exe
FirewallRules: [{B0A01D13-0E5C-439D-A704-CD60DF81669E}] => (Allow) F:\Programs\Steam\SteamApps\common\Elite Dangerous Horizons\EDLaunch.exe
FirewallRules: [{7CCB4E09-8D28-4352-8B9C-2A28F04CDAC3}] => (Allow) F:\Programs\Steam\SteamApps\common\Elite Dangerous Horizons\EDLaunch.exe
FirewallRules: [{2DB19E44-9BFD-4FB2-B1B1-8D912B3F5D4D}] => (Allow) LPort=51001
FirewallRules: [{1D235A22-5CC1-4256-8F2C-1812D6F7DFF4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{68D715F7-7A01-460B-AF15-D74E66ACC2D7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D66B7C85-D718-43BC-979B-673BCAF3A8AD}] => (Allow) F:\Programs\Steam\SteamApps\common\NEO Scavenger\NEOScavenger.exe
FirewallRules: [{BBB4555C-95DC-4F25-81D5-83E12542594F}] => (Allow) F:\Programs\Steam\SteamApps\common\NEO Scavenger\NEOScavenger.exe
FirewallRules: [{3E2D9412-4DC7-49A3-9ACC-BF30C904E982}] => (Allow) F:\Programs\Steam\SteamApps\common\Fallout 3 goty\FalloutLauncher.exe
FirewallRules: [{00761E83-6FBD-496C-8B26-3EE582BCF285}] => (Allow) F:\Programs\Steam\SteamApps\common\Fallout 3 goty\FalloutLauncher.exe
FirewallRules: [{28678AAD-7496-4CD2-A7A6-42F319C38D78}] => (Allow) F:\Programs\Steam\SteamApps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{C2CD2DF9-032C-46BD-90E7-596893C9442B}] => (Allow) F:\Programs\Steam\SteamApps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{F6F7C0C8-4287-49FC-ACC5-2858298E25C4}] => (Allow) F:\Programs\Steam\SteamApps\common\FTL Faster Than Light\FTLGame.exe
FirewallRules: [{B279EBBA-024E-4FB2-A2D5-E3E4A61CE98F}] => (Allow) F:\Programs\Steam\SteamApps\common\FTL Faster Than Light\FTLGame.exe
FirewallRules: [{5B93B7AA-7D28-48C8-B19B-B01E96683F39}] => (Allow) F:\Programs\Steam\SteamApps\common\DisplayFusion\DisplayFusionLauncher.exe
FirewallRules: [{EAECDC7B-A874-4EC5-825C-599C4DFB6ECD}] => (Allow) F:\Programs\Steam\SteamApps\common\DisplayFusion\DisplayFusionLauncher.exe
FirewallRules: [UDP Query User{8C09ED6D-F172-433B-80E6-A8D23327F12C}F:\programs\steam\steamapps\common\arma 3\arma3.exe] => (Allow) F:\programs\steam\steamapps\common\arma 3\arma3.exe
FirewallRules: [TCP Query User{3FD50A8F-4FA1-4390-B0D0-C793911F7F4A}F:\programs\steam\steamapps\common\arma 3\arma3.exe] => (Allow) F:\programs\steam\steamapps\common\arma 3\arma3.exe
FirewallRules: [{8B59C3C7-09AC-46AA-B08E-9A423C8402E6}] => (Allow) F:\Programs\Steam\SteamApps\common\Prison Architect\Prison Architect.exe
FirewallRules: [{55FF192C-0029-4BAE-8406-CC274F3D1D33}] => (Allow) F:\Programs\Steam\SteamApps\common\Prison Architect\Prison Architect.exe
FirewallRules: [{0C3A6A11-9734-4446-B8B4-198300528DAD}] => (Allow) F:\Programs\Steam\SteamApps\common\Democracy 3\Democracy3.exe
FirewallRules: [{5F210E9F-18E8-44F0-9C32-DA28C242EC7F}] => (Allow) F:\Programs\Steam\SteamApps\common\Democracy 3\Democracy3.exe
FirewallRules: [{003CA366-0B81-40B6-8F08-B6A630CE8889}] => (Allow) F:\Programs\Steam\SteamApps\common\Nidhogg\Nidhogg.exe
FirewallRules: [{FC176F73-3331-4859-AD76-B9642B2257AA}] => (Allow) F:\Programs\Steam\SteamApps\common\Nidhogg\Nidhogg.exe
FirewallRules: [{376F4321-82D2-4CF4-B7E9-E432E04833D9}] => (Allow) F:\Programs\Steam\SteamApps\common\Arma 3\arma3launcher.exe
FirewallRules: [{1B5794C3-D688-4A85-80C3-A0BF2A1FE32A}] => (Allow) F:\Programs\Steam\SteamApps\common\Arma 3\arma3launcher.exe
FirewallRules: [{9F623B0C-20F0-4A8C-817B-AD07FF5557E7}] => (Allow) F:\Programs\Steam\SteamApps\common\Life is Feudal Your Own\yo_cm_client.exe
FirewallRules: [{E92A4B8B-9C45-4884-8567-2D31A0073A76}] => (Allow) F:\Programs\Steam\SteamApps\common\Life is Feudal Your Own\yo_cm_client.exe
FirewallRules: [{96374E27-AB11-4BF0-A661-326423ED1FA1}] => (Allow) F:\Programs\Steam\SteamApps\common\ShadowOfMordor\x64\ShadowOfMordor.exe
FirewallRules: [{568A757C-E23F-4221-B3BA-8FAE719A6CE8}] => (Allow) F:\Programs\Steam\SteamApps\common\ShadowOfMordor\x64\ShadowOfMordor.exe
FirewallRules: [{BC8D1A48-B0DE-4725-816B-0FD391EBF645}] => (Allow) LPort=1900
FirewallRules: [{1B0BE3DC-C730-46E7-BCF8-4C002DAB31F7}] => (Allow) LPort=7900
FirewallRules: [{068BDFBF-68DC-4049-9FC0-03CE36ED3044}] => (Allow) LPort=24234
FirewallRules: [{503735AF-28FD-4C46-BAC8-129874E06420}] => (Allow) LPort=7679
FirewallRules: [{B32EE977-E9E0-4341-89E1-ECD0D14D05C0}] => (Allow) LPort=7676
FirewallRules: [{82F5616F-982B-4D25-B9FF-0D88D4943915}] => (Allow) LPort=8643
FirewallRules: [{8783079C-31EC-4DD3-8FB2-9CF4CC9257A9}] => (Allow) LPort=8743
FirewallRules: [{511A0E15-84DF-4D19-8409-D12F2F0BA5E9}] => (Allow) F:\Programs\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe
FirewallRules: [{13BB68BD-A8F1-473A-AAF0-1402899F133D}] => (Allow) F:\Programs\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe
FirewallRules: [{9BC8B434-FFAF-484F-8904-78B055366F99}] => (Allow) F:\Programs\Steam\SteamApps\common\Dark Souls II Scholar of the First Sin\Game\DarkSoulsII.exe
FirewallRules: [{A2DC8A7D-CDA1-40B9-B6CD-5003C2739977}] => (Allow) F:\Programs\Steam\SteamApps\common\Dark Souls II Scholar of the First Sin\Game\DarkSoulsII.exe
FirewallRules: [{EF0A0B27-69A9-4CB9-8707-643D30F63E7B}] => (Allow) F:\Programs\Steam\SteamApps\common\Pillars of Eternity\PillarsOfEternity.exe
FirewallRules: [{D6C680DC-03E1-4848-A241-604C79F7B323}] => (Allow) F:\Programs\Steam\SteamApps\common\Pillars of Eternity\PillarsOfEternity.exe
FirewallRules: [{A982C6CB-25E4-4DBD-B968-BD4DFE73E4C3}] => (Allow) F:\Programs\Steam\SteamApps\common\Cities_Skylines\Cities.exe
FirewallRules: [{50133F95-8A87-4006-818A-4C3DAB6B8FEC}] => (Allow) F:\Programs\Steam\SteamApps\common\Cities_Skylines\Cities.exe
FirewallRules: [{C4388424-228B-4DB3-857F-37846FF9D04F}] => (Allow) F:\Programs\Steam\SteamApps\common\Savage Lands\SavageLands.exe
FirewallRules: [{6445A2E7-BF73-44B3-B642-394A8636DEF0}] => (Allow) F:\Programs\Steam\SteamApps\common\Savage Lands\SavageLands.exe
FirewallRules: [{7B3B2CB9-1368-46BC-93BD-BFD5ED0439B2}] => (Allow) F:\Programs\Steam\SteamApps\common\Banished\Application-steam-x64.exe
FirewallRules: [{90B61B97-8620-4498-9610-427E4F97163A}] => (Allow) F:\Programs\Steam\SteamApps\common\Banished\Application-steam-x64.exe
FirewallRules: [{ACC2B92D-4E55-4F45-BB75-30DD23E34EAB}] => (Allow) F:\Programs\Steam\SteamApps\common\The Escapists\TheEscapists.exe
FirewallRules: [{480837B4-A57B-46A7-B602-C634DFEAC55F}] => (Allow) F:\Programs\Steam\SteamApps\common\The Escapists\TheEscapists.exe
FirewallRules: [{F94BBE60-6036-41E4-8930-90DCF29C5C7F}] => (Allow) F:\Programs\Steam\SteamApps\common\Besiege\Besiege.exe
FirewallRules: [{F2961D25-B813-445F-8B75-E1A89DAD821C}] => (Allow) F:\Programs\Steam\SteamApps\common\Besiege\Besiege.exe
FirewallRules: [{7BF9E725-A5DB-469D-823D-6808772E27EF}] => (Allow) F:\Programs\Steam\SteamApps\common\MountBlade Warband\mb_warband.exe
FirewallRules: [{4677B304-3F12-4460-8DCC-15BDF4B25105}] => (Allow) F:\Programs\Steam\SteamApps\common\MountBlade Warband\mb_warband.exe
FirewallRules: [{05627DAE-8A9E-439C-A2F6-6F5A313C8C78}] => (Allow) F:\Programs\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{F11D5A37-7C91-49D6-A613-5E587B451EE3}] => (Allow) F:\Programs\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{92D73D50-A629-48E7-BB4A-E8614DC3C4C8}] => (Allow) F:\Programs\Steam\SteamApps\common\Terraria\Terraria.exe
FirewallRules: [{CB317A94-B09F-4254-BFBB-9B9F472CA100}] => (Allow) F:\Programs\Steam\SteamApps\common\Terraria\Terraria.exe
FirewallRules: [{7912924E-9F27-4D3C-874B-2B225BB1D693}] => (Allow) F:\Programs\Steam\SteamApps\common\Rust\Rust.exe
FirewallRules: [{62E0873A-E5D6-48EC-96B1-B22B11CACFF4}] => (Allow) F:\Programs\Steam\SteamApps\common\Rust\Rust.exe
FirewallRules: [{25676E8E-EC20-4EC8-A8D9-A9DDB3B1BEB9}] => (Allow) LPort=1900
FirewallRules: [{C1AF30E9-D2C5-4303-8276-5E4713DF8F18}] => (Allow) LPort=7900
FirewallRules: [{4B0FA2C4-E20C-4C81-A520-B9DB1A8784C3}] => (Allow) F:\Programs\Steam\Steam.exe
FirewallRules: [{78717553-8F86-46E4-958A-C609452DC0FA}] => (Allow) F:\Programs\Steam\Steam.exe
FirewallRules: [{48AFFFA4-9629-4D11-B8A1-65C2CDAD879F}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{ACECD6B5-3087-4BA5-AD69-4898FF72940A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [TCP Query User{E7AF7BC9-E6DF-42F3-967E-5D37FD85ECEE}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [UDP Query User{B36747EA-328B-4E39-9046-63A26DADAC07}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [{1506A0B4-5524-4AB2-B097-6A517E1348D0}] => (Allow) D:\Programs\Steam\steamapps\common\Expand\expand.exe
FirewallRules: [{1BEE2D94-EC77-4ABF-BB94-D314C3F63ED4}] => (Allow) D:\Programs\Steam\steamapps\common\Expand\expand.exe
FirewallRules: [{3D01D940-4410-404A-ADE1-9C7932DBF743}] => (Allow) F:\Programs\Steam\SteamApps\common\The Witcher 3\bin\x64\witcher3.exe
FirewallRules: [{CCA26547-8894-41CD-B5F1-2A4AF70D6806}] => (Allow) F:\Programs\Steam\SteamApps\common\The Witcher 3\bin\x64\witcher3.exe
FirewallRules: [{6C2E9AA8-3DA9-4C55-9AEE-E421D1B4B867}] => (Allow) F:\Programs\Steam\SteamApps\common\TeleglitchDME\Teleglitch.exe
FirewallRules: [{C264B4F7-F2A8-4EA5-BAB6-744B14396142}] => (Allow) F:\Programs\Steam\SteamApps\common\TeleglitchDME\Teleglitch.exe
FirewallRules: [{3A053C6D-BF30-48B0-9141-6F6192333704}] => (Allow) F:\Programs\Steam\SteamApps\common\Spelunky\Spelunky.exe
FirewallRules: [{75412634-04D6-4EEE-8ED3-FE8820181C73}] => (Allow) F:\Programs\Steam\SteamApps\common\Spelunky\Spelunky.exe
FirewallRules: [{FF4757AF-349B-4248-B01E-2602573BBC22}] => (Allow) F:\Programs\Steam\SteamApps\common\Dungeon Souls\DungeonSouls.exe
FirewallRules: [{7C9F0DF5-D54C-4876-8468-AAC591BC82C9}] => (Allow) F:\Programs\Steam\SteamApps\common\Dungeon Souls\DungeonSouls.exe
FirewallRules: [{81EA1936-9A23-4E3A-9AAB-A8EB9318B4F2}] => (Allow) F:\Programs\Steam\SteamApps\common\Enter the Gungeon\EtG.exe
FirewallRules: [{5FBF6725-90E9-4C39-ADB7-2C0968A816A6}] => (Allow) F:\Programs\Steam\SteamApps\common\Enter the Gungeon\EtG.exe
FirewallRules: [{BE78516F-5C8E-41DE-BF14-6F1E856BE567}] => (Allow) F:\Programs\Steam\SteamApps\common\Fallout 4\Fallout4Launcher.exe
FirewallRules: [{BA5020DA-6678-4EA8-B3AC-87B68CFFD88C}] => (Allow) F:\Programs\Steam\SteamApps\common\Fallout 4\Fallout4Launcher.exe
FirewallRules: [TCP Query User{C2EF3EEC-EC21-465B-BA47-D0BFE3653FF8}F:\programs\deluge\deluge.exe] => (Allow) F:\programs\deluge\deluge.exe
FirewallRules: [UDP Query User{4285AAC9-53B2-4292-AEBA-D9C78EBA2BE0}F:\programs\deluge\deluge.exe] => (Allow) F:\programs\deluge\deluge.exe
FirewallRules: [{B8DE0DA9-89DF-4E00-92F4-CD286ADA6A4E}] => (Allow) LPort=1688
FirewallRules: [{6FC25C39-D117-44D9-893D-0D9DB52EA3CC}] => (Allow) F:\Programs\Adobe\CC+CS6\Adobe Flash Builder 4.7\FlashBuilder.exe
FirewallRules: [{ACCA4551-D9C6-4B58-83A1-AB96F0019307}] => (Allow) F:\Programs\Adobe\CC+CS6\Adobe Flash Builder 4.7\FlashBuilder.exe
FirewallRules: [{69121C0A-E000-4446-8994-7311B12C03FA}] => (Allow) LPort=7935
FirewallRules: [{BC1A4A1C-77C5-4A9D-A21A-32309FDBC2DE}] => (Allow) D:\Programs\Steam\steamapps\common\Divinity Original Sin 2\bin\SupportTool.exe
FirewallRules: [{29CA853A-2D53-4A52-896F-B42B945F6B77}] => (Allow) D:\Programs\Steam\steamapps\common\Divinity Original Sin 2\bin\SupportTool.exe
FirewallRules: [TCP Query User{AF31BB7A-CBB0-4F32-A4AE-5A3FCE760E64}D:\programs\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe] => (Allow) D:\programs\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe
FirewallRules: [UDP Query User{1FAA396D-9BEC-4CB3-9BC3-9E8329373794}D:\programs\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe] => (Allow) D:\programs\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe
FirewallRules: [{70411176-BA06-4033-8791-DD21698C0C5A}] => (Allow) D:\Programs\Steam\steamapps\common\Miscreated\Miscreated.exe
FirewallRules: [{31A22C3B-7077-4E9D-9665-7D798A9498C2}] => (Allow) D:\Programs\Steam\steamapps\common\Miscreated\Miscreated.exe
FirewallRules: [{98CEF78F-8AC4-4752-B70C-32C9B8AC7A31}] => (Allow) D:\Programs\Steam\steamapps\common\Stronghold Crusader 2\bin\win32_release\Crusader2.exe
FirewallRules: [{FE191EF3-19EC-4B38-B8E0-709262E97C98}] => (Allow) D:\Programs\Steam\steamapps\common\Stronghold Crusader 2\bin\win32_release\Crusader2.exe
FirewallRules: [{A05EA1F6-74E1-49CA-85D6-46EEA1C1C0C7}] => (Allow) D:\Programs\Steam\steamapps\common\Runestone Keeper\RuneStoneKeeper.exe
FirewallRules: [{12428A94-D80C-4BED-8F29-DE0E0735ABD7}] => (Allow) D:\Programs\Steam\steamapps\common\Runestone Keeper\RuneStoneKeeper.exe
FirewallRules: [{27AC7BE8-51B3-4F6C-8FB3-74DB3C2DC80C}] => (Allow) D:\Programs\Steam\steamapps\common\Rollercoaster Tycoon 2\RCT2.EXE
FirewallRules: [{A10B4FB4-DFB3-4A68-907F-6B7770E6E533}] => (Allow) D:\Programs\Steam\steamapps\common\Rollercoaster Tycoon 2\RCT2.EXE
FirewallRules: [{5AE23FBB-56DC-4EB8-9911-36E50BBD6CD6}] => (Allow) D:\Programs\Steam\steamapps\common\devildaggers\dd.exe
FirewallRules: [{F7948183-AE41-49A9-8CD3-3A2BF190EFE8}] => (Allow) D:\Programs\Steam\steamapps\common\devildaggers\dd.exe
FirewallRules: [{65606F0B-5052-419D-A1C4-E7B53F4A7FF6}] => (Allow) D:\Programs\Steam\steamapps\common\Punch Club\Punch Club.exe
FirewallRules: [{95AE5765-D95C-4B40-B19D-47F483CB6753}] => (Allow) D:\Programs\Steam\steamapps\common\Punch Club\Punch Club.exe
FirewallRules: [{20620CE3-8F73-4B56-BE93-A9874E107724}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [{F8F2B983-693D-42AE-95D4-99CC29D9C629}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [{C75697FD-1B37-4D6E-92CC-8949DA80E1CA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9753140B-72B1-469B-918F-C4F90AFE8BDE}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8B056B20-FA7C-4D8E-8116-FCE1A7260E98}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7158992D-2FE6-469C-B856-37545D88DC71}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E0A474BE-96C4-4314-88D4-D5EBD10F1E9B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7061BD09-F842-494E-98FA-B35A86DE55FD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{436C681B-E51E-4BE3-BBD1-4FB9CE74B6E4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C4865E8B-A505-4C68-BA3F-464067467E80}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D1DFAAAE-9BC1-4BF5-9A68-4D11245B8EF7}] => (Allow) D:\Programs\Steam\steamapps\common\Kerbal Space Program\KSP.exe
FirewallRules: [{0217BF5E-287D-4F3A-856F-B01FB1B7A252}] => (Allow) D:\Programs\Steam\steamapps\common\Kerbal Space Program\KSP.exe
FirewallRules: [{04403764-2073-421E-82B2-704D95622595}] => (Allow) D:\Programs\Steam\steamapps\common\Kerbal Space Program\KSP_x64.exe
FirewallRules: [{1DBA6DC1-FC4F-4F71-A186-A2B1B8E0B6E1}] => (Allow) D:\Programs\Steam\steamapps\common\Kerbal Space Program\KSP_x64.exe
FirewallRules: [{C34B18FA-6839-47B0-A9FF-65DA381C76C4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7F485347-897C-4700-89DA-11F312930000}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F468937E-6E3A-4E2D-BEBE-C747F83AE244}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2C0C4EF9-3FD6-4CB0-9EB0-4813F1E787E5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4EFF56D8-CC04-4AB0-B370-C70294BAB0B6}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F3511CE7-77C6-4F3C-9554-5836BC55F5B6}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6A386065-CCBE-4B26-B09C-F75C26A8D157}] => (Allow) D:\Programs\Steam\steamapps\common\Miscreated\Bin64\Miscreated.exe
FirewallRules: [{C7CCF39D-5F18-4CDA-9E9A-77840B45F560}] => (Allow) D:\Programs\Steam\steamapps\common\Miscreated\Bin64\Miscreated.exe
FirewallRules: [{A40BD1F3-8F92-43CA-AA53-C156A75CB36E}] => (Allow) D:\Programs\Steam\steamapps\common\Miscreated\EasyAntiCheat\EasyAntiCheat_x64.dll
FirewallRules: [{4CC18B62-1D6A-41C4-B4AA-171207E328C9}] => (Allow) D:\Programs\Steam\steamapps\common\Miscreated\EasyAntiCheat\EasyAntiCheat_x64.dll
FirewallRules: [{8FFA430D-070C-481A-B441-281601F798EA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{ACF78DCF-6BB7-4847-BFF9-275C3B94D91E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B7D0FAB2-554F-4AD8-8B5E-B5BD8B9CB327}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AD39F175-BED8-414C-8CE1-7523D27F6F24}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E65530AE-5E41-41B0-BE94-B9272C8C2668}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D6B33F8B-64FB-41CA-92D4-8CC994AE7821}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{51974229-9847-4931-80B1-F2CAF4B469C3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{33ECFB93-AC2A-41FF-9D45-C42834E14A9B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{65F58FF0-20B4-4685-B992-9BD747027036}] => (Allow) F:\Programs\Steam\SteamApps\common\Elite Dangerous\EDLaunch.exe
FirewallRules: [{59C46D1A-E991-4CAF-B619-36993B8A3D94}] => (Allow) F:\Programs\Steam\SteamApps\common\Elite Dangerous\EDLaunch.exe
FirewallRules: [{FCFED75E-C7A6-449D-95E1-C849864E4614}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{07B240E5-446B-47FE-A363-9032049AEDFF}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{06EFC1C5-CC68-4FFD-A0B9-97A2A546C46C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EFAF8C26-A093-417E-A0D1-6DC2FF6E78FA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A6D83826-9423-448A-9397-414F43349979}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D6DE5416-999C-4AC9-8458-B9B1B066D925}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{94FCFEF8-11BB-44B5-89B6-46FBEE83721B}] => (Allow) D:\Programs\Steam\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe
FirewallRules: [{24996A33-3753-4A42-A7D3-B56766E3819B}] => (Allow) D:\Programs\Steam\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe
FirewallRules: [{8296FA01-C0B7-4FAF-912D-4B8FB8619350}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{880F65AB-70EF-41A0-A450-796A78A7FB94}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{30590E92-8AF3-4DE6-A8BA-0393D535D013}] => (Allow) F:\Programs\Steam\SteamApps\common\pCars\pCARS64.exe
FirewallRules: [{DBAAFA0C-5869-4B9E-86E4-E390D9093C81}] => (Allow) F:\Programs\Steam\SteamApps\common\pCars\pCARS64.exe
FirewallRules: [{128F4351-03AD-43B7-BE7C-0028EE4B6723}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E7AF7135-E6C9-418E-9C2D-2F687F9DFC0B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A339C40F-5730-403C-A12E-20E5E6A9157A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F65233D5-BD8A-4088-B897-1B8FCF59C9C9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A31C3252-2D29-4D39-A1AE-DE334B14644F}] => (Allow) D:\Programs\Steam\steamapps\common\Cave Story+\CaveStory+.exe
FirewallRules: [{AFFB12DA-082F-4D6F-BB8E-806B11A8C3AD}] => (Allow) D:\Programs\Steam\steamapps\common\Cave Story+\CaveStory+.exe
FirewallRules: [{66304FF1-8923-40BD-924D-BB2CB59ABE1C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DCD8ED2A-2BFC-4773-A4B6-D57DD98A29D8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{524209AC-779B-46E9-8428-606998386972}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0B04D68F-4345-44AA-8222-293E6ADFDC1B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{01E6B5F3-9D75-4909-BCE9-7ED8C366CBD3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B9290BE5-73FC-4FAE-92C6-EE27DEB05D1E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BFB37B74-694C-4950-84F3-82029418EF89}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F017E963-36E7-47BF-8002-46D8E96B0D47}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{71029CF8-4BBE-40FB-A8EA-5C5991E8E852}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{236274DB-5AD7-4A51-B066-BA36ADB19CFB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B7C244B2-1B47-42E0-B511-926BE923CA9C}] => (Allow) F:\Programs\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{652C924F-4636-4C89-BB14-5E9107232775}] => (Allow) F:\Programs\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{4F73EAF4-694B-469E-B976-368B2BDDCB47}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2EB80D79-1810-4464-A124-F34B4D1A7286}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4681A568-00AC-48BA-A710-A32F9FE5227C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{339A7AF4-6252-4256-9C1A-46512F3B2D4A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6C5A57CE-4C43-4DD0-8FBB-A9883B0ACF5F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9C0DFE99-1693-4732-93BF-F096D4845A7E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{03C881EE-87EF-4E9D-88B3-65E019C67A98}] => (Allow) D:\Programs\Steam\steamapps\common\Legend of Grimrock 2\grimrock2.exe
FirewallRules: [{013BD57C-4CB3-4897-B9F3-276B4349F706}] => (Allow) D:\Programs\Steam\steamapps\common\Legend of Grimrock 2\grimrock2.exe
FirewallRules: [{86A3A32D-19CB-4D2F-8E40-066C2F1930BC}] => (Allow) D:\Programs\Steam\steamapps\common\Dungeons2\Dungeons2.exe
FirewallRules: [{FC6CF7A8-2233-4BE5-8DE1-1BD2B0BD4A43}] => (Allow) D:\Programs\Steam\steamapps\common\Dungeons2\Dungeons2.exe
FirewallRules: [{A4C8E361-8B39-40DC-A70A-7B3A677167CB}] => (Allow) D:\Programs\Steam\steamapps\common\Grim Dawn\Grim Dawn.exe
FirewallRules: [{A909F758-6522-48BE-9C37-9ABF8F39A584}] => (Allow) D:\Programs\Steam\steamapps\common\Grim Dawn\Grim Dawn.exe
FirewallRules: [{5BF84544-5D98-4F1A-A48D-BA90577A692A}] => (Allow) F:\Programs\Origin\Games\Battlefield 4\BF4WebHelper.exe
FirewallRules: [{39825E53-2ED0-421C-877F-D586FC5DEE84}] => (Allow) F:\Programs\Origin\Games\Battlefield 4\BF4WebHelper.exe
FirewallRules: [{D6AF5977-1C21-4E4C-8EC5-FC464AB1C7E0}] => (Allow) F:\Programs\Origin\Games\Battlefield 4\BF4X86WebHelper.exe
FirewallRules: [{530E7C85-32C6-49DA-9EC2-3CAA2EA65D9A}] => (Allow) F:\Programs\Origin\Games\Battlefield 4\BF4X86WebHelper.exe
FirewallRules: [{A62D4497-27DA-42AC-9918-0FA39FBBF3B2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A865BC2C-8C42-49F2-9600-0DD60F78D691}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FB6936DB-2670-41FC-8C3D-EBD90F3ECFAD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EA1C563C-13B6-40CD-8368-42050018A319}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EF6AFCE4-F9A0-444E-89C8-104579226675}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5ABDE8E1-50D8-4037-9B75-1FDB592A6892}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{74B11E41-7504-4E6B-A24B-0F0179B9D5AC}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{92F276EF-A681-41EF-BE5D-76F2F98DF571}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{4F50762E-9078-4190-8AA6-94A4230A7E3A}D:\programs\adobe\adobe edge animate cc 2015\edgeanimate.exe] => (Allow) D:\programs\adobe\adobe edge animate cc 2015\edgeanimate.exe
FirewallRules: [UDP Query User{17970CD5-2162-4C80-9E58-C220D858D5CB}D:\programs\adobe\adobe edge animate cc 2015\edgeanimate.exe] => (Allow) D:\programs\adobe\adobe edge animate cc 2015\edgeanimate.exe
FirewallRules: [{84C80E18-B84E-4C9F-A963-562E13B97B33}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{480B8266-AD4C-4828-9C71-966ECBD67E09}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{24926CB1-E0AD-4619-8997-7D547628E29B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{569E4F5B-E253-4441-A8F9-F0C0B12B459F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DA11EDC8-B521-4B40-8275-5D62CB22F739}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{92AE2BE9-165E-4240-A8D5-BE0AF1E5D5BE}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D8C18D87-1053-4F4A-A1AA-EAFC7E63A381}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0B910C77-26C0-4C64-B5C6-9FFF6E3E452B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6FD2295F-C28F-4F47-AF25-9DBC0F5F27BC}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F02DC8FC-2D9B-4A5C-82AD-1BE7AB3E64BB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A8BDB289-EE06-4BC1-A1A8-3312AD8E3D31}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CC1491EA-273B-40D1-890F-16A4E3DA2DA8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9EC3201F-E714-447F-B17F-D50FA6624F3E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BDB7946A-026A-4FD4-B7D6-2D2D0371B4B3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7A503ECE-6D4C-4012-A0A9-FB5532E83A83}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C82578A9-9717-40C1-B92A-C8827F8358F2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A87C9D0D-B8D5-40A8-A61A-8ECDA3E08ED2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{638EE9E7-CC8E-4645-B741-E1619C0F1E0B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5B4E7699-52AE-4504-832F-275926A48071}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DF1796CB-5A30-4E97-B9C6-83CE4F1D11EE}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F558F3A7-2B92-498B-895E-DBCF8638583C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6EF9D420-762E-4C5D-BD26-6752A80A1EEE}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E08587D1-7EF8-4DCE-91B1-8ECD80FE32BC}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C6B92710-127F-425F-A5FA-60B65FA80496}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7578617F-E53A-4E4C-93BF-04FEEC872EF7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4F715663-07B7-4246-AABC-13D1D01B26BD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{056C9685-B229-42FC-8B74-5D779AFBCED2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F70FE9F7-4887-4C08-BB16-6BA103EFBA09}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5C060043-F4A7-46B4-A2E8-493F30944C0B}] => (Allow) D:\Programs\Steam\steamapps\common\This War of Mine\This War of Mine.exe
FirewallRules: [{97E1B36A-A75E-40DF-8BFD-DE7E416102A9}] => (Allow) D:\Programs\Steam\steamapps\common\This War of Mine\This War of Mine.exe
FirewallRules: [{3A28B1CA-4146-4C17-AC32-0E41D9027F2D}] => (Allow) D:\Programs\Steam\steamapps\common\This War of Mine\Storyteller.exe
FirewallRules: [{A23D231C-7EF0-4DC9-873F-C9AFD77D101F}] => (Allow) D:\Programs\Steam\steamapps\common\This War of Mine\Storyteller.exe
FirewallRules: [{7E1C554D-B14F-42DB-8B3D-B2BF901E1FC5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CDCDFB29-9080-415B-A47B-FFD84CBD19B9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{562EB317-06D1-4DBF-9698-3DDE76B9B4A7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DBE49F5B-DED0-46F7-8B41-C7B08ABA067A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{58A2994F-E45A-4EA2-A197-2906FF9C7CD6}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{15438433-B9C5-499A-A1A8-8866B153F8E0}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2A7FDF82-5D69-4137-B39D-B28BDA885014}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{61484603-6497-4B60-AFE9-B22C86421673}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8A89FF78-78FF-4EB8-8505-873EB869BE80}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BFBAEB86-7DFF-4DA8-A7DB-4DE76A591D29}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{13AB5E1F-AC28-4D0B-8E83-DD8B025F0EB6}] => (Allow) D:\Programs\Steam\steamapps\common\RimWorld\RimWorldWin.exe
FirewallRules: [{C1C15C48-75F6-4D4C-ADB4-B51AB9B4A479}] => (Allow) D:\Programs\Steam\steamapps\common\RimWorld\RimWorldWin.exe
FirewallRules: [{93F1815F-6E4F-4A95-94D8-AED95A2BBABA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{94BDABD5-07A8-4158-B867-21744581D077}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{80560CB2-94B3-4797-A1C5-D0DA77677A3B}C:\users\nicholas\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\nicholas\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{9C8FE8F5-F329-430E-85D6-474C05AF72F3}C:\users\nicholas\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\nicholas\appdata\roaming\spotify\spotify.exe
FirewallRules: [{B80B3E11-2706-4401-B2F6-A8F10E7C64D2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A64EEC28-52A5-41B7-973F-9A355059F2F5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BBD6E36D-EA30-47F4-8C89-262C51A2BA63}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2EC48A21-3375-435A-B81B-CEAEA25E2DC7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{596C020E-A5E7-4547-9E59-A806CCCA27DF}] => (Allow) C:\Program Files (x86)\GIGABYTE\AppCenter\ApCent.exe
FirewallRules: [{60AFE98B-B206-4906-82B4-E7F89BE0DBB1}] => (Allow) C:\Program Files (x86)\GIGABYTE\AppCenter\gcupd.exe
FirewallRules: [{164E6E25-82CF-4BF9-9069-CCCF8A85DACF}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{64611F6D-0CC5-42CC-AC81-EE90FB7C0400}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0C9C8BB5-FBB9-419D-BCB8-E6AC6C907944}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9DE42E91-9863-4468-90BF-862B25482120}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CEF98A4B-5464-4BCC-AAB9-342899272942}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{70288101-F6F8-4D2E-9975-3C08A0315915}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{241999DB-5477-4A6D-B6BC-88D85A5427D5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{FEEA2551-A07D-4996-8B1B-16C27CC1BFDA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{5A3804C6-5481-4D4D-9632-6442B9F6B237}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{69EAED4D-B536-44AC-88B0-68713D59B956}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{01091DE6-A7F9-4EF9-AAF0-683D1E4489D5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E9243A60-225A-440F-93F7-C49DC3E5D51B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8C7F51F1-C6FC-45FB-B264-DF1C7A10433B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7A35E12E-7D79-4B95-9982-357B1A4015CB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{ABA617B5-7296-44B1-8FCD-1A74CF78C395}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A0CECF39-14FE-4BB1-A367-B5FC5D1F1BE6}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{281B181B-D01A-43D9-90C5-5A087AE2FA3A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{407B7A18-C44E-4BCD-94DE-FD4F93CE9B97}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C05CA67B-EEA1-43AF-A6D8-183B1E235ADB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{828E3FC4-AD53-4247-97C0-D38C6BBB0947}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{67AB8034-7CF6-43B1-96DF-C85B1D6DE8B2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8ED0D2DA-8FAC-4536-A34E-F2385B2FBC64}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9E05DD2F-970F-4D5C-BB4D-6059D091577B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0DEC93E2-2720-477E-BFB7-4164487B6E14}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6023FF4F-4F85-4681-AE77-06AA2AB0A7ED}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F2E4322B-AE51-48D3-922F-F4B4D5AE8930}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A0A21A38-A306-4D8D-9A91-DD1DD2FE33BF}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DE33E84E-4565-43DC-BAC3-FB7AF2FD962E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B08EFC84-E14C-495A-B8AB-874DE488FC82}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9A65512A-1F9E-42E3-BD38-F92BBD38C813}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FB4B05D2-E4E4-4F83-AE16-0E2FBB28B686}] => (Allow) D:\Programs\Steam\steamapps\common\mordheim\mordheim.exe
FirewallRules: [{709393A6-4964-4C80-BB11-B5050853ED11}] => (Allow) D:\Programs\Steam\steamapps\common\mordheim\mordheim.exe
FirewallRules: [{3C919975-620D-46B4-8544-F4CF4DA87482}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{01927201-9031-4A75-9C06-9B8C53DD38A3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{17841652-80DB-4286-8864-2E34A67A8D84}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{787A5F4D-583D-43FA-82E0-9D684D9E9B66}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BEDD2508-5BF6-473B-9D92-2B64ECB2D1CA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F930A391-7EB7-403F-AEDF-ABFF162D765F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D8132CBA-1F0E-4025-90DA-16566F243AA4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{805AD728-7AEF-46C1-86C1-F1E9112FC891}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{55D0C0E5-A3B4-4A5B-8FE7-61D179A7A057}F:\programs\warcraft 3\warcraft iii\war3.exe] => (Allow) F:\programs\warcraft 3\warcraft iii\war3.exe
FirewallRules: [UDP Query User{40A25207-9DD2-4FB7-8CA8-2D9FF04DD2A9}F:\programs\warcraft 3\warcraft iii\war3.exe] => (Allow) F:\programs\warcraft 3\warcraft iii\war3.exe
FirewallRules: [{27D3AB99-9355-4093-88ED-0A34633BEA28}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{25DB7C0A-5DBA-46B2-B611-096B16C3C7DB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{64CEE77B-7AAC-4FF0-AD9C-56F1F0529554}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{171E8006-CE81-4D63-AA70-6D6127616C01}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D39D7631-5A14-451B-9752-630E70FBB399}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C815F87F-1178-45EA-A720-04444B51E758}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{62073FC3-C68E-417F-8C2B-8F324C2B027E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E505FA57-E112-4B5A-BCDD-2C62DDEF2612}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8EE8BC96-2BB1-41E8-91A4-9F014BB1A273}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D6B1544E-E78E-4638-B776-136A54A25D95}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CCDDBA7F-C75C-4EA0-8652-CE1D39F55B88}] => (Allow) D:\Programs\Steam\steamapps\common\Golf With Your Friends\Golf With Your Friends.exe
FirewallRules: [{311402A2-DB42-439A-AEC5-118B699B3675}] => (Allow) D:\Programs\Steam\steamapps\common\Golf With Your Friends\Golf With Your Friends.exe
FirewallRules: [{DEE8FCD1-6828-4DEE-8D8D-D185B7521359}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{39D9A63D-4770-4EA0-9CD3-A80511B8CB8F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BC0B95F0-D8A6-4AA8-861E-ED227F23E70E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{536B4391-4C5E-4CF1-B160-7C8A7B956ED5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{39BFE2A9-9337-4A66-9B1E-9EC723ED2770}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{26D2C187-C6C8-4633-89DC-B638A50C0EDC}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1C591907-A965-4F46-A0F4-DFF3F3E72B07}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C7BEAE2F-E8CD-4E46-9FAE-8163216419D0}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2A022061-242A-4572-8695-D574A40B4983}] => (Allow) F:\Programs\Steam\SteamApps\common\RimWorld\RimWorldWin.exe
FirewallRules: [{B3FBDA7A-3861-4471-B62D-1E995977D46B}] => (Allow) F:\Programs\Steam\SteamApps\common\RimWorld\RimWorldWin.exe
FirewallRules: [{957B6E45-DFC5-4309-8C2B-2898FE7F36F4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{81F606F8-8DEA-4F3D-9B0F-34D55EAF5BC3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{E9E4E677-C5D1-4CB1-966A-0981517A0CFA}F:\programs\steam\steamapps\common\arma 3\arma3.exe] => (Allow) F:\programs\steam\steamapps\common\arma 3\arma3.exe
FirewallRules: [UDP Query User{7B80F566-DE83-4C8B-9A7D-661827C44F1D}F:\programs\steam\steamapps\common\arma 3\arma3.exe] => (Allow) F:\programs\steam\steamapps\common\arma 3\arma3.exe
FirewallRules: [{C4F512D9-9DA7-455B-A4AF-4AEC5D60AC11}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{203963CC-97F0-4143-BB51-0021E16D30D3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D9EB87AE-8FFB-49FC-B7A8-C2A3C82EAB37}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9613D41C-DCD0-49A5-B0FA-B6725BFE3EA5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0787C260-4417-47DB-86DB-C478A6D233D4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A3A37721-7EED-4536-A05F-73F6A522FD36}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F94E018C-A647-4824-9463-380FC4BA9243}] => (Allow) D:\Programs\Steam\steamapps\common\Poly Bridge\polybridge.exe
FirewallRules: [{F1335A7B-412D-413E-BD94-ABEBC2C16D00}] => (Allow) D:\Programs\Steam\steamapps\common\Poly Bridge\polybridge.exe
FirewallRules: [{F8E2E698-F594-477D-8460-9BEDBCB511FF}] => (Allow) D:\Programs\Steam\steamapps\common\RIVE\rive.exe
FirewallRules: [{4772ED9D-9227-4043-A808-CD6B1D1FD15A}] => (Allow) D:\Programs\Steam\steamapps\common\RIVE\rive.exe
FirewallRules: [{F53C3695-497A-458E-8B6B-A7ABD290E336}] => (Allow) D:\Programs\Steam\steamapps\common\Flat Heroes\FlatHeroes.exe
FirewallRules: [{CF286E76-E136-4709-8612-5757E3E55112}] => (Allow) D:\Programs\Steam\steamapps\common\Flat Heroes\FlatHeroes.exe
FirewallRules: [{55395D2B-BD48-473D-96BE-A69DE9CFF2A0}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A10A65E5-C33B-4559-A972-EE977CCD517B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F6A4E95D-40F2-49FC-A2F8-8B30893B160D}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9C72B3B9-FC48-4365-840E-034B46D0BF74}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B10047BA-54F0-41CE-AD63-8E759254F654}] => (Allow) D:\Programs\Steam\steamapps\common\Turmoil\Turmoil_PC_Full.exe
FirewallRules: [{EFFC4431-6DBE-4AB8-8324-BA142538E880}] => (Allow) D:\Programs\Steam\steamapps\common\Turmoil\Turmoil_PC_Full.exe
FirewallRules: [{B1B136ED-7DF7-4F4B-9028-FDD193E81FE4}] => (Allow) D:\Programs\Steam\steamapps\common\Jotun\Jotun.exe
FirewallRules: [{C70D1ACF-8C42-42EE-BA8A-BEF18359288B}] => (Allow) D:\Programs\Steam\steamapps\common\Jotun\Jotun.exe
FirewallRules: [{B1AB1973-BA85-4265-B444-D3220111100E}] => (Allow) D:\Programs\Steam\steamapps\common\ValhallaHills\ValhallaHills.exe
FirewallRules: [{3BE26591-80D6-4A7F-997C-81DAAB52E3F6}] => (Allow) D:\Programs\Steam\steamapps\common\ValhallaHills\ValhallaHills.exe
FirewallRules: [{5A3D349C-F77E-429F-AC3B-86A24515589D}] => (Allow) D:\Programs\Steam\steamapps\common\Eisenwald\Eisenwald.exe
FirewallRules: [{F0067C12-4ABF-4BCC-A163-A62819C2DB50}] => (Allow) D:\Programs\Steam\steamapps\common\Eisenwald\Eisenwald.exe
FirewallRules: [{4CE37CA9-CC1A-45E4-83C2-63DEB1C3D05F}] => (Allow) D:\Programs\Steam\steamapps\common\Warhammer End Times Vermintide\launcher\launcher.exe
FirewallRules: [{ECAFE29A-02BA-4BB3-8577-20E692CBAC0F}] => (Allow) D:\Programs\Steam\steamapps\common\Warhammer End Times Vermintide\launcher\launcher.exe
FirewallRules: [{5A0C94B7-22E3-4C35-89BD-D9CBCA84BD97}] => (Allow) D:\Programs\Steam\steamapps\common\Warhammer End Times Vermintide\binaries\vermintide.exe
FirewallRules: [{0368C6A7-5F09-41D9-94A3-A0496FD03159}] => (Allow) D:\Programs\Steam\steamapps\common\Warhammer End Times Vermintide\binaries\vermintide.exe
FirewallRules: [{2097FE23-A2B1-41BD-8586-62A1665E408A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{13F2CFFA-56AB-4A0F-8D70-FD37411C01CD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BB92E4D3-98BA-46FA-A5E2-1D052C7D81A6}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8EF3327F-34EB-4EA5-8C01-D73C4E9D00B0}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2847ECC6-BF12-4D84-9199-866AA7CEFDA1}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{51B95A0D-E7EF-4294-9A03-C5799803D232}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{06A5F96B-136F-4339-8D49-0D89F17C07F2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{86AB6ECC-B203-4DBD-A8EA-0730FCCD7748}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{43BF11D3-3C9E-4287-9F53-3DBCC25E7C2D}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B05C78AF-07ED-41E4-BFCD-94AE3BD6F3AD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{59466A2C-FBF2-4A3F-BFC3-F71B24ED7C61}D:\programs\steam\steamapps\common\total war warhammer\warhammer.exe] => (Allow) D:\programs\steam\steamapps\common\total war warhammer\warhammer.exe
FirewallRules: [UDP Query User{F3774962-DBA8-405E-A809-0471F02BBFD9}D:\programs\steam\steamapps\common\total war warhammer\warhammer.exe] => (Allow) D:\programs\steam\steamapps\common\total war warhammer\warhammer.exe
FirewallRules: [{0EBD189B-E4C4-4771-B16C-ACF1584D430F}] => (Allow) C:\Program Files (x86)\GIGABYTE\AppCenter\ApCent.exe
FirewallRules: [{E6BF6D04-64B5-403C-8F66-B63C7C52617C}] => (Allow) C:\Program Files (x86)\GIGABYTE\AppCenter\gcupd.exe
FirewallRules: [{3B632646-1CE9-4B21-AE83-6E38503D9B9C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{ADB996EF-23BF-4581-9A56-33CF4AFF8C34}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1FDB3FB6-BE54-4D92-930C-8A728A0B4D4F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EB7E4430-045F-4B2B-86E5-72CACBE0AE97}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EF5A20C0-EE7B-440B-8D92-B99AF6744948}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{036D4620-07CF-45F8-96EB-0D47D04E57C5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A6421173-8151-41F5-9EDF-CD6E6448C3E2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EAB25FF3-20E9-4D26-9008-FFFBC7D6A3EA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C2743EAC-F3BE-4136-A4AF-84D458013B22}] => (Allow) F:\Programs\Origin\Games\Battlefield 4\BFLauncher.exe
FirewallRules: [{57B83B81-1E79-488D-9181-B9263D2468F1}] => (Allow) F:\Programs\Origin\Games\Battlefield 4\BFLauncher.exe
FirewallRules: [{D84321B6-6D96-4C0C-BD9A-6F370B30996B}] => (Allow) F:\Programs\Origin\Games\Battlefield 4\BFLauncher_x86.exe
FirewallRules: [{268C2B49-BFD3-49E6-B535-DD6A5BD2BD20}] => (Allow) F:\Programs\Origin\Games\Battlefield 4\BFLauncher_x86.exe
FirewallRules: [{E9AB7030-E4DD-41BC-A7EB-311C73D4E2BB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D642DEA4-F539-4DF3-83B4-95CF0BC0DD86}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E1A0AD4B-C148-465B-B916-7CEBB8BE24DD}] => (Allow) D:\Programs\Steam\steamapps\common\Helldivers\binaries\x64\helldivers.exe
FirewallRules: [{C71F0B5A-C3CB-4C2C-A062-81047E43072B}] => (Allow) D:\Programs\Steam\steamapps\common\Helldivers\binaries\x64\helldivers.exe
FirewallRules: [{38378D52-FF7F-42B2-96A3-EFEACC0669F6}] => (Allow) D:\Programs\Steam\steamapps\common\Helldivers\binaries\x86\helldivers.exe
FirewallRules: [{AB666E96-D651-432E-B6A0-650F76387919}] => (Allow) D:\Programs\Steam\steamapps\common\Helldivers\binaries\x86\helldivers.exe
FirewallRules: [{1ABC6852-E52C-4AD6-87FD-420F13E650EC}] => (Allow) D:\Programs\Steam\steamapps\common\Rampage Knights\rampage_knights.exe
FirewallRules: [{182A8AE7-F788-43A8-B90D-C49DC48685D4}] => (Allow) D:\Programs\Steam\steamapps\common\Rampage Knights\rampage_knights.exe
FirewallRules: [{D0AA050A-54F8-4E9C-B3A8-A575EACF8855}] => (Allow) D:\Programs\Steam\steamapps\common\Ultimate Chicken Horse\UltimateChickenHorse.exe
FirewallRules: [{03856AE5-0ECE-43B7-BAD4-47BF29E7AB8D}] => (Allow) D:\Programs\Steam\steamapps\common\Ultimate Chicken Horse\UltimateChickenHorse.exe
FirewallRules: [{00E0C091-A3AA-4EE2-8475-67AF206AA2F4}] => (Allow) D:\Programs\Steam\steamapps\common\Move or Die\MoveOrDie.exe
FirewallRules: [{838E7C81-341F-4C52-BD92-0EB38486BC25}] => (Allow) D:\Programs\Steam\steamapps\common\Move or Die\MoveOrDie.exe
FirewallRules: [{C1B113AC-E9FA-4970-8F72-200D6B6D839E}] => (Allow) D:\Programs\Steam\steamapps\common\Move or Die\Editor.exe
FirewallRules: [{B241D4FF-9F47-492A-BA72-6ACD5CB68020}] => (Allow) D:\Programs\Steam\steamapps\common\Move or Die\Editor.exe
FirewallRules: [{2F5B8EC7-DD24-4756-9CD9-C90F7C436855}] => (Allow) D:\Programs\Steam\steamapps\common\Eon Altar\EonAltar.exe
FirewallRules: [{C6853374-6610-473D-AFFD-23A76181FC6E}] => (Allow) D:\Programs\Steam\steamapps\common\Eon Altar\EonAltar.exe
FirewallRules: [{3753F610-E191-43C5-B412-70EAD4F4B5FA}] => (Allow) D:\Programs\Steam\steamapps\common\Tricky Towers\TrickyTowers.exe
FirewallRules: [{BCA9D40E-9A81-4588-9CF0-14C9EA769EE4}] => (Allow) D:\Programs\Steam\steamapps\common\Tricky Towers\TrickyTowers.exe
FirewallRules: [{073A5E37-DF14-469F-A802-40E2720085AC}] => (Allow) D:\Programs\Steam\steamapps\common\Tyranny\Tyranny.exe
FirewallRules: [{73764DE1-6CBC-4489-A582-7D991C8CFF0A}] => (Allow) D:\Programs\Steam\steamapps\common\Tyranny\Tyranny.exe
FirewallRules: [{83BA4CFF-2720-4C3C-820A-98A6E8F24ABD}] => (Allow) D:\Programs\Steam\steamapps\common\Kingdom New Lands\Kingdom.exe
FirewallRules: [{D5655BEE-48F4-46FD-8EC3-D83B303CF2E4}] => (Allow) D:\Programs\Steam\steamapps\common\Kingdom New Lands\Kingdom.exe
FirewallRules: [{E2D91D55-D72C-414B-BFF5-EE632B2C06F6}] => (Allow) D:\Programs\Steam\steamapps\common\Slime-san\Slime-san.exe
FirewallRules: [{A0265708-9E00-4A54-8CCA-5BC1977514E8}] => (Allow) D:\Programs\Steam\steamapps\common\Slime-san\Slime-san.exe
FirewallRules: [{7C59D483-4AB8-4688-B324-EA7735105B9E}] => (Allow) D:\Programs\Steam\steamapps\common\Event[0]\event0.exe
FirewallRules: [{F76B7A30-2A14-4C84-B1DC-EE11E7998ADB}] => (Allow) D:\Programs\Steam\steamapps\common\Event[0]\event0.exe
FirewallRules: [{A25A830E-B454-4CED-B079-3B6577E47D5D}] => (Allow) D:\Programs\Steam\steamapps\common\Black Mesa\bms.exe
FirewallRules: [{8DD5B459-5B6A-43F7-94E4-6518AECAAF94}] => (Allow) D:\Programs\Steam\steamapps\common\Black Mesa\bms.exe
FirewallRules: [{A9D28A07-DA33-4333-A33F-B24341FFEE18}] => (Allow) D:\Programs\Steam\steamapps\common\Tumblestone\Tumblestone.exe
FirewallRules: [{CCC5502F-E0E9-4096-9CE5-7EB983E1143E}] => (Allow) D:\Programs\Steam\steamapps\common\Tumblestone\Tumblestone.exe
FirewallRules: [{D1175516-7A4D-4F01-B945-44A60732A5D4}] => (Allow) D:\Programs\Steam\steamapps\common\DiRT Rally\drt.exe
FirewallRules: [{0283268B-FC75-40CB-AAA8-31BBE0BEC1DE}] => (Allow) D:\Programs\Steam\steamapps\common\DiRT Rally\drt.exe
FirewallRules: [{C8A28235-1C5D-4630-8E57-3C0CC52A62EA}] => (Allow) D:\Programs\Steam\steamapps\common\INSIDE\INSIDE.exe
FirewallRules: [{E1A87AF4-2AF6-4C13-8DCE-366C82CE71D1}] => (Allow) D:\Programs\Steam\steamapps\common\INSIDE\INSIDE.exe
FirewallRules: [TCP Query User{11F5E09B-3C66-4A20-8A02-A63CA50339AD}D:\programs\steam\steamapps\common\move or die\love\win\love.exe] => (Allow) D:\programs\steam\steamapps\common\move or die\love\win\love.exe
FirewallRules: [UDP Query User{82AA8B44-5E78-4BCF-A88A-78AC567D1EFE}D:\programs\steam\steamapps\common\move or die\love\win\love.exe] => (Allow) D:\programs\steam\steamapps\common\move or die\love\win\love.exe
FirewallRules: [{7B70309B-F32D-44E0-A256-5EE91D52E71B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A0450988-DB8D-4300-AC76-5B238C0A11AD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2F9694C6-32ED-4C0D-A6F7-487B8F9A030F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9E0D91FA-4BE3-4A43-927D-E28198FC4B2D}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5F8E4787-2420-40AD-A35F-27C11DECE624}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4D0CD658-E069-4594-B2F9-9070473ACA93}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B5584ABF-0119-4006-9261-5AC183482E61}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C235613E-3C32-4D1E-8005-30BA96756E11}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B6D69801-68A4-4783-8A6D-68078553DE88}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4900C085-4C13-471D-986E-05972E87F2A2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B96C2918-E5D9-4981-BF32-2F20AB80B5F7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{360B0CAA-B605-49CC-B90D-B96488368FD7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2B02E9D0-9A9A-4492-908D-E51195722128}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7580B295-D81F-4E85-BAC7-9EE752603CC0}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{49DD6DAD-30C9-4D5B-B348-67957E733FE1}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F0E6B541-9341-4664-8DF0-BB09E183814A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B510DC7A-D521-4B26-AA62-3D618873EE19}] => (Allow) D:\Programs\Steam\steamapps\common\Total War WARHAMMER\launcher\launcher.exe
FirewallRules: [{77786615-0AB7-4938-A2D6-A0F93077CEAB}] => (Allow) D:\Programs\Steam\steamapps\common\Total War WARHAMMER\launcher\launcher.exe
FirewallRules: [{B9017627-BC38-4554-8A07-073892171381}] => (Allow) F:\Programs\Steam\SteamApps\common\Divinity Original Sin Enhanced Edition\Shipping\EoCApp.exe
FirewallRules: [{D2F6A242-171F-408E-B097-403897A8D974}] => (Allow) F:\Programs\Steam\SteamApps\common\Divinity Original Sin Enhanced Edition\Shipping\EoCApp.exe
FirewallRules: [{803B5ED7-01B0-4176-9C45-B77146728EBD}] => (Allow) D:\Programs\Steam\steamapps\common\DARK SOULS III\Game\DarkSoulsIII.exe
FirewallRules: [{5D60B595-A81C-4BC8-A15A-FEEBA0FFFF74}] => (Allow) D:\Programs\Steam\steamapps\common\DARK SOULS III\Game\DarkSoulsIII.exe
FirewallRules: [{2A2E02B1-80BC-464F-B95B-5FC001C0A4E2}] => (Allow) D:\Programs\Steam\steamapps\common\The Turing Test\TheTuringTest\Binaries\Win64\TheTuringTest.exe
FirewallRules: [{532EA941-6033-4279-9242-91CDD64A242E}] => (Allow) D:\Programs\Steam\steamapps\common\The Turing Test\TheTuringTest\Binaries\Win64\TheTuringTest.exe
FirewallRules: [{228CDBF6-CCD2-47F3-AB9E-9211BF655395}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FD89CFC2-41C5-4840-A0A7-1601ECD384CD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{66E33D3C-37A7-4243-A305-2C2EE9D497F3}C:\users\nicholas\appdata\local\championify\app-2.1.1\championify.exe] => (Allow) C:\users\nicholas\appdata\local\championify\app-2.1.1\championify.exe
FirewallRules: [UDP Query User{F78407CC-513F-421C-8614-7E94DDCF93E2}C:\users\nicholas\appdata\local\championify\app-2.1.1\championify.exe] => (Allow) C:\users\nicholas\appdata\local\championify\app-2.1.1\championify.exe
FirewallRules: [{E8BFDB8D-5B35-4B89-A416-5C33EF0A24E0}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{028423D0-66F6-444B-A207-F6C8351C121B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{07811A75-EBF3-4356-9665-AB67C01669AC}] => (Allow) D:\Programs\Steam\steamapps\common\How to Survive 2\Exe\HowToSurvive2.exe
FirewallRules: [{048A8E58-DC1B-4EE4-9B90-FE5B4A5EE5E7}] => (Allow) D:\Programs\Steam\steamapps\common\How to Survive 2\Exe\HowToSurvive2.exe
FirewallRules: [{6EBA82A4-F3F1-4F89-8F22-A9F3DD2D32B8}] => (Allow) D:\Programs\Steam\steamapps\common\How to Survive 2\Exe\Detect.exe
FirewallRules: [{9DAB45F7-F8B2-4CD3-A93E-7046E67B12AC}] => (Allow) D:\Programs\Steam\steamapps\common\How to Survive 2\Exe\Detect.exe
FirewallRules: [{612ABE6D-75C1-406E-83F7-82A6BD417DED}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1EF625DA-AB9B-4FD6-87F4-EA297525B3E4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{20A28174-A245-46BA-BFBA-9B5AEAD37204}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{03466980-7214-4D3C-8285-4C7886BAD7FC}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EB34F1B7-E5BA-4B68-BB73-270A8ACDB8FA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1E56D44F-75E5-4009-A361-B91FB1494054}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BDD49E3E-696A-4FEF-9EDC-B5314B61CDF0}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3A7AA296-710A-4574-A742-EABE1E39125E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{908EF79C-7D39-425E-859A-243AA6393774}] => (Allow) D:\Programs\Steam\steamapps\common\Galactic Civilizations I Ultimate Edition\AltarianProphecy\GalCiv.exe
FirewallRules: [{4A133581-A87B-47FA-B057-76C9C4D77D4E}] => (Allow) D:\Programs\Steam\steamapps\common\Galactic Civilizations I Ultimate Edition\AltarianProphecy\GalCiv.exe
FirewallRules: [{2CC9ECAC-8F5B-4BA7-BBC0-D21DAD74166E}] => (Allow) D:\Programs\Steam\steamapps\common\Galactic Civilizations I Ultimate Edition\GalCiv\galciv.exe
FirewallRules: [{5D3B40F8-D7DD-488F-B5EB-BE66E64641AB}] => (Allow) D:\Programs\Steam\steamapps\common\Galactic Civilizations I Ultimate Edition\GalCiv\galciv.exe
FirewallRules: [{D7449707-DE60-422F-8966-B1E6D695B5FF}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1A783FEC-3F1E-4DAB-85F5-A5683161F0C9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EBAEEF70-C641-4E4F-BC4C-9CE0E57C06AA}] => (Allow) D:\Programs\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe
FirewallRules: [{03E848AD-761F-4BFC-8212-151146AB6A9E}] => (Allow) D:\Programs\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe
FirewallRules: [{04D9D06E-8825-4912-BCBB-15BD8F9CBCBD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{719FAC9F-0F2A-42D8-9DE7-954AC293AFD3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E6D01969-4804-4410-BDE3-AE051B9182A0}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{18907EB5-50B5-47CE-B535-D6DC0853FCF3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{97ED733C-7D4C-49FF-B811-9E708E87459C}] => (Allow) D:\Programs\Steam\steamapps\common\Throne of Lies\ThroneOfLies.exe
FirewallRules: [{5F494409-C236-44D7-8550-344223F2BB48}] => (Allow) D:\Programs\Steam\steamapps\common\Throne of Lies\ThroneOfLies.exe
FirewallRules: [{21608FB8-4B16-45CF-8A8F-A75F377A7C8E}] => (Allow) D:\Programs\Steam\steamapps\common\War Thunder\launcher.exe
FirewallRules: [{DC492E2F-A22D-408D-AF46-0EC0A5DBF64F}] => (Allow) D:\Programs\Steam\steamapps\common\War Thunder\launcher.exe
FirewallRules: [TCP Query User{65A154FD-9F3D-4A09-999A-F52B06B950DF}D:\programs\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) D:\programs\steam\steamapps\common\war thunder\win64\aces.exe
FirewallRules: [UDP Query User{EBF8C777-9150-48E4-9261-40453F907BFA}D:\programs\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) D:\programs\steam\steamapps\common\war thunder\win64\aces.exe
FirewallRules: [TCP Query User{847A5999-0F94-4DDB-87B9-F582747C82C2}D:\programs\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\programs\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe
FirewallRules: [UDP Query User{B442D9E1-4C7F-4A50-81A6-28DC7B997669}D:\programs\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\programs\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe
FirewallRules: [{1DED05D5-860A-4F04-B1E5-EA983C369E13}] => (Allow) D:\Programs\Steam\steamapps\common\DarkestDungeon\_windows\Darkest.exe
FirewallRules: [{10FCD5B6-6C44-417F-AE6C-B637EC18C963}] => (Allow) D:\Programs\Steam\steamapps\common\DarkestDungeon\_windows\Darkest.exe
FirewallRules: [{2B7F64E1-A0DE-4AF1-B43A-9613ED06085A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9234D98A-6956-4601-A219-20D3904222EA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F8C0AA90-EFE6-4F08-8ABF-AD390C48EC8E}] => (Allow) D:\Programs\Steam\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe
FirewallRules: [{C72A35BC-D7C9-4313-BAB9-D730EB1A7FFD}] => (Allow) D:\Programs\Steam\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe
FirewallRules: [{C10CE3B7-C3E9-4980-9671-B5B6083116C1}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C96BAE0F-A251-470F-A179-1BF30CC5D2D5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{36039B63-254F-4D7A-A583-F6AB7E270972}] => (Allow) D:\Programs\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{CBC1B092-43DA-4799-820A-E9EC5BA0B22B}] => (Allow) D:\Programs\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{0C880341-A403-4B92-A745-2A129C97773C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{055C140A-1DED-4412-9BA2-0BF44A60BEF2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{17381759-24A9-4C09-9F1E-5F1DFC204D90}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BF268B88-B03D-4383-953D-926E5198E82F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{81A2E051-3ACE-4C2F-B398-411E133F2E84}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{E1EF65AE-48BE-4C9B-B7E1-9B98405AB1D8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C652D360-9BFD-4B41-80A4-167B52BD3F72}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A3DEA745-D887-4270-805C-D999FA4123CC}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\starbound.exe
FirewallRules: [{36ED7F23-04BE-40A7-A594-2AADC53A4B83}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\starbound.exe
FirewallRules: [{43292DCD-3CBB-4090-AF8E-3B06DE89098E}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\starbound_server.exe
FirewallRules: [{5A50CF51-C7CB-4248-A688-EAE9CA4A5972}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\starbound_server.exe
FirewallRules: [{5A4F45D5-C531-4EE7-9D0F-7E29B81481E6}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\mod_uploader.exe
FirewallRules: [{3420D9A8-36E0-4289-ACFA-6FDC1F2C9039}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\mod_uploader.exe
FirewallRules: [{5DA39276-3CC9-4B21-AEEA-A2DAC8042D2E}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win32\starbound.exe
FirewallRules: [{598C3DE5-9E71-46E6-929F-F23F6CDB56BC}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win32\starbound.exe
FirewallRules: [{8B9D2A26-B754-4CB5-B885-3E1240DEE842}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{16627B9F-612F-4D15-B3DC-457080943BE4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B0FDD432-39DB-4F8D-8072-758EEC7EAB12}] => (Allow) D:\Programs\Steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe
FirewallRules: [{FCC51DA1-5C60-4853-90A9-BCBFBB47B9D6}] => (Allow) D:\Programs\Steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe
FirewallRules: [{5DC264C5-51C5-4E52-8557-BE0FE8355739}] => (Allow) D:\Programs\Steam\steamapps\common\tbs2\win32\The Banner Saga 2.exe
FirewallRules: [{4EFAD4F1-8256-4E33-AEE5-A3FCBB56C271}] => (Allow) D:\Programs\Steam\steamapps\common\tbs2\win32\The Banner Saga 2.exe
FirewallRules: [{6D648F58-F5BA-45BD-825E-52648F73552F}] => (Allow) D:\Programs\Steam\steamapps\common\Factorio\bin\x64\factorio.exe
FirewallRules: [{2745F49D-96C9-4871-9451-83E852501BAC}] => (Allow) D:\Programs\Steam\steamapps\common\Factorio\bin\x64\factorio.exe
FirewallRules: [{065CDDD4-534B-4114-9B07-E4B56FFA2444}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2B1791F0-6BAC-441F-BE7F-6A98341D513A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F62F630E-AFE2-4A4D-ACFE-3FEEEC9B4D3C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{701A632D-F25B-4AAC-8FEE-B1005B66F1D3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C594EBB8-1B83-4824-9973-D78A9CD153E9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DB9506D5-6FB6-412F-973B-29FA0CD51546}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{89F1CF59-C4D3-4108-9E9E-4E1F78B631C8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1EB91596-BB05-462D-8D0D-8F71DCCE0D4F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{40DCA692-49B7-49B4-847C-F10DD504FD60}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FA9380A8-0CDB-4D8A-AC5E-99138F465923}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8456A3EA-CF51-4ABC-85BB-3841B4253D32}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1BEDE627-5C89-4DD2-B0B1-F14C7DA7A19F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
StandardProfile\AuthorizedApplications: [D:\Programs\xchat\xchat.exe] => Enabled:XChat IRC Client
 
==================== Restore Points =========================
 
18-12-2017 02:58:35 Malwarebytes Anti-Rootkit Restore Point
 
==================== Faulty Device Manager Devices =============
 
Name: Unknown USB Device (Link in Compliance Mode)
Description: Unknown USB Device (Link in Compliance Mode)
Class Guid: {36fc9e60-c465-11cf-8056-444553540000}
Manufacturer: (Standard USB Host Controller)
Service: 
Problem: : Windows has stopped this device because it has reported problems. (Code 43)
Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. 
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (12/18/2017 03:48:21 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: IAStorDataMgrSvc.exe, version: 14.8.0.1042, time stamp: 0x5639dd97
Faulting module name: ntdll.dll, version: 10.0.16299.64, time stamp: 0xac8afc81
Exception code: 0xc0000374
Fault offset: 0x000da849
Faulting process id: 0x31ec
Faulting application start time: 0x01d377e5565f7b82
Faulting application path: C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll
Report Id: 756521e2-365d-49ee-8ece-b23b7e07fbc3
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (12/18/2017 03:03:53 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: mbam.exe, version: 3.0.0.1284, time stamp: 0x5a15ab42
Faulting module name: Qt5Core.dll, version: 5.6.2.0, time stamp: 0x59a63e00
Exception code: 0xc0000005
Fault offset: 0x001aa3b6
Faulting process id: 0x12e4
Faulting application start time: 0x01d377df15670c49
Faulting application path: C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe
Faulting module path: C:\Program Files\Malwarebytes\Anti-Malware\Qt5Core.dll
Report Id: d7415b64-737f-4069-8cfb-988d86cbfe66
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (12/18/2017 02:35:23 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: IAStorDataMgrSvc.exe, version: 14.8.0.1042, time stamp: 0x5639dd97
Faulting module name: ntdll.dll, version: 10.0.16299.64, time stamp: 0xac8afc81
Exception code: 0xc0000374
Fault offset: 0x000da849
Faulting process id: 0x2a34
Faulting application start time: 0x01d377db2511e10c
Faulting application path: C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll
Report Id: 5c25bfc5-81c4-4bc9-ab02-75906cb4f967
Faulting package full name: 
Faulting package-relative application ID:
 
 
System errors:
=============
Error: (12/18/2017 03:48:23 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Intel® Rapid Storage Technology service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (12/18/2017 03:46:43 AM) (Source: DCOM) (EventID: 10016) (User: NOTAMAC)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 and APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 to the user NotAMac\Nicholas SID (S-1-5-21-2400751361-3771152734-1433153139-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (12/18/2017 03:46:23 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 and APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (12/18/2017 03:46:17 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The WinDefend service failed to start due to the following error: 
The service did not respond to the start or control request in a timely fashion.
 
Error: (12/18/2017 03:46:17 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the WinDefend service to connect.
 
Error: (12/18/2017 03:46:17 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The NetPipeActivator service depends on the WAS service which failed to start because of the following error: 
The system cannot find the path specified.
 
Error: (12/18/2017 03:46:17 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The NetTcpActivator service depends on the WAS service which failed to start because of the following error: 
The system cannot find the path specified.
 
Error: (12/18/2017 03:46:17 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The W3SVC service depends on the WAS service which failed to start because of the following error: 
The system cannot find the path specified.
 
Error: (12/18/2017 03:46:17 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The NetMsmqActivator service depends on the WAS service which failed to start because of the following error: 
The system cannot find the path specified.
 
Error: (12/18/2017 03:46:17 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The WAS service terminated with the following error: 
The system cannot find the path specified.
 
 
CodeIntegrity:
===================================
  Date: 2017-12-17 19:36:09.325
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
 
  Date: 2017-12-15 09:58:02.497
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume9\Programs\SeaTools\uninst.exe that did not meet the Unchecked signing level requirements.
 
  Date: 2017-12-15 09:58:02.493
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume9\Programs\SeaTools\uninst.exe that did not meet the Unchecked signing level requirements.
 
  Date: 2017-12-15 09:58:02.492
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume9\Programs\SeaTools\uninst.exe that did not meet the Unchecked signing level requirements.
 
  Date: 2017-12-15 03:58:59.409
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\sbohdwcsvc.exe that did not meet the Unchecked signing level requirements.
 
  Date: 2017-12-15 03:58:59.306
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\sbohdwcsvc.exe that did not meet the Unchecked signing level requirements.
 
  Date: 2017-12-15 03:58:59.163
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\sbohdwcsvc.exe that did not meet the Unchecked signing level requirements.
 
  Date: 2017-12-15 01:33:27.848
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
 
  Date: 2017-12-15 01:33:02.706
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
 
  Date: 2017-12-15 00:01:36.582
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
 
 
==================== Memory info =========================== 
 
Processor: Intel® Core™ i7-6700K CPU @ 4.00GHz
Percentage of memory in use: 28%
Total physical RAM: 16340.63 MB
Available physical RAM: 11745.96 MB
Total Virtual: 17364.63 MB
Available Virtual: 11545.63 MB
 
==================== Drives ================================
 
Drive c: (SSD) (Fixed) (Total:118.66 GB) (Free:26.45 GB) NTFS
Drive d: (Future Crash Site) (Fixed) (Total:2794.39 GB) (Free:1834.54 GB) NTFS
Drive e: (Space For Rent) (Fixed) (Total:1397.25 GB) (Free:1395.28 GB) NTFS
Drive f: (HDD) (Fixed) (Total:2777.41 GB) (Free:1757.95 GB) NTFS
Drive h: (System Reserve) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[system with boot components (obtained from drive)]
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 119.2 GB) (Disk ID: D8A10754)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=118.7 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=488 MB) - (Type=27)
 
========================================================
Disk: 1 (Size: 1397.3 GB) (Disk ID: 09CC2397)
Partition 1: (Not Active) - (Size=1397.3 GB) - (Type=07 NTFS)
 
========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 2794.5 GB) (Disk ID: 093A2273)
 
Partition: GPT.
 
========================================================
Disk: 3 (Size: 2794.5 GB) (Disk ID: 06EA1DD3)
 
Partition: GPT.
 
==================== End of Addition.txt ============================


#4 Aura

Aura

    Bleepin' Special Ops


  • Malware Response Team
  • 19,586 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:06:08 AM

Posted 18 December 2017 - 11:17 PM

Hi WolfRevenant :)

My name is Aura and I'll be assisting you with your malware issue. Since we'll be working together, you can call me Aura or Yoan, which is my real name, it's up to you! Now that we've broke the ice, I'll just ask you a few things during the time we'll be working together to clean your system and get it back to an operational state.
  • As you'll notice, the logs we are asking for here are quite lenghty, so it's normal for me to not reply exactly after you post them. This is because I need some time to analyse them and then act accordingly. However, I'll always reply within 24 hours, 48 hours at most if something unexpected happens
  • As long as I'm assisting you on BleepingComputer, in this thread, I'll ask you to not seek assistance anywhere else for any issue related to the system we are working on. If you have an issue, question, etc. about your computer, please ask it in this thread and I'll assist you
  • The same principle applies to any modifications you make to your system, I would like you to ask me before you do any manipulations that aren't in the instructions I posted. This is to ensure that we are operating in sync and I know exactly what's happening on your system
  • If you aren't sure about an instruction I'm giving you, ask me about it. This is to ensure that the clean-up process goes without any issue. I'll answer you and even give you more precise instructions/explanations if you need. There's no shame in asking questions here, better be safe than sorry!
  • If you don't reply to your thread within 3 days, I'll bump this thread to let you know that I'm waiting for you. If you don't reply after 5 days, it'll be closed. If you return after that period, you can send me a PM to get it unlocked and we'll continue where we left off
  • Since malware can work quickly, we want to get rid of them as fast as we can, before they make unknown changes to the system. This being said, I would appreciate if you could reply to this thread within 24 hours of me posting. This way, we'll have a good clean-up rhythm and the chances of complications will be reduced
  • I'm against any form of pirated, illegal and counterfeit software and material. So if you have any installed on your system, I'll ask you to uninstall them right now. You don't have to tell me if you indeed had some or not, I'll give you the benefit of the doubt. Plus, this would be against BleepingComputer's rules
  • In the end, you are the one asking for assistance here. So if you wish to go a different way during the clean-up, like format and reinstall Windows, you are free to do so. I would appreciate you to let me know about it first, and if you need, I can also assist you in the process
  • I would appreciate if you were to stay with me until the end, which means, until I declare your system clean. Just because your system isn't behaving weirdly anymore, or is running better than before, it doesn't mean that the infection is completely gone
    This being said, I have a full time job so sometimes it'll take longer for me to reply to you. Don't worry, you'll be my first priority as soon as I get home and have time to look at your thread
This being said, it's time to clean-up some malware, so let's get started, shall we? :)

Open FRST and copy/paste the following inside the text area. Once done, click on the Fix button. Afterwards, a file called fixlog.txt should appear on your desktop. Attach it in your next reply.
CMD: bcdedit.exe /set {bootmgr} displaybootmenu yes
CMD: bcdedit.exe /set {default} recoveryenabled yes
CMD: fltmc instances
CMD: dir /a:-d /o:d C:\windows\system32\drivers

unite_blue.png
Security Administrator | Sysnative Windows Update Senior Analyst | Malware Hunter | @SecurityAura
My timezone UTC-05:00 (East. Coast). If I didn't reply to you within 48 hours, please send me a PM.


#5 WolfRevenant

WolfRevenant
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Local time:04:08 AM

Posted 19 December 2017 - 03:05 AM

Hi Yoan, hope you're having a fantastic day today.

Here's the file.

 

Fix result of Farbar Recovery Scan Tool (x64) Version: 17-12-2017
Ran by Nicholas (19-12-2017 02:04:25) Run:1
Running from C:\Users\Nicholas\Desktop
Loaded Profiles: Nicholas (Available Profiles: Nicholas)
Boot Mode: Normal
==============================================
 
fixlist content:
*****************
CMD: bcdedit.exe /set {bootmgr} displaybootmenu yes
CMD: bcdedit.exe /set {default} recoveryenabled yes
CMD: fltmc instances
CMD: dir C:\Windows\system32\drivers
 
*****************
 
 
========= bcdedit.exe /set {bootmgr} displaybootmenu yes =========
 
The operation completed successfully.
 
========= End of CMD: =========
 
 
========= bcdedit.exe /set {default} recoveryenabled yes =========
 
The operation completed successfully.
 
========= End of CMD: =========
 
 
========= fltmc instances =========
 
Filter                Volume Name                              Altitude        Instance Name       Frame   SprtFtrs  VlStatus
--------------------  -------------------------------------  ------------  ----------------------  -----   --------  --------
CldFlt                C:                                        180451     CldFlt                    0     00000007  
CldFlt                \Device\HarddiskVolumeShadowCopy1         180451     CldFlt                    0     00000007  
FileInfo                                                         40500     FileInfo                  0     00000007  
FileInfo              C:                                         40500     FileInfo                  0     00000007  
FileInfo                                                         40500     FileInfo                  0     00000007  
FileInfo              E:                                         40500     FileInfo                  0     00000007  
FileInfo              D:                                         40500     FileInfo                  0     00000007  
FileInfo              H:                                         40500     FileInfo                  0     00000007  
FileInfo              F:                                         40500     FileInfo                  0     00000007  
FileInfo              \Device\HarddiskVolumeShadowCopy1          40500     FileInfo                  0     00000007  
FileInfo              \Device\Mup                                40500     FileInfo                  0     00000007  
MBAMChameleon                                                   400900     MBAMChameleon             0     00000000  
MBAMChameleon         C:                                        400900     MBAMChameleon             0     00000000  
MBAMChameleon                                                   400900     MBAMChameleon             0     00000000  
MBAMChameleon         E:                                        400900     MBAMChameleon             0     00000000  
MBAMChameleon         D:                                        400900     MBAMChameleon             0     00000000  
MBAMChameleon         H:                                        400900     MBAMChameleon             0     00000000  
MBAMChameleon         F:                                        400900     MBAMChameleon             0     00000000  
MBAMChameleon         \Device\HarddiskVolumeShadowCopy1         400900     MBAMChameleon             0     00000000  
MBAMChameleon         \Device\Mup                               400900     MBAMChameleon             0     00000000  
MBAMFarflt                                                      268150     MBAMFarflt                0     00000004  
MBAMFarflt            C:                                        268150     MBAMFarflt                0     00000004  
MBAMFarflt                                                      268150     MBAMFarflt                0     00000004  
MBAMFarflt            E:                                        268150     MBAMFarflt                0     00000004  
MBAMFarflt            D:                                        268150     MBAMFarflt                0     00000004  
MBAMFarflt            H:                                        268150     MBAMFarflt                0     00000004  
MBAMFarflt            F:                                        268150     MBAMFarflt                0     00000004  
MBAMProtection                                                  328800     MBAMProtection            0     00000004  
MBAMProtection        C:                                        328800     MBAMProtection            0     00000004  
MBAMProtection                                                  328800     MBAMProtection            0     00000004  
MBAMProtection        E:                                        328800     MBAMProtection            0     00000004  
MBAMProtection        D:                                        328800     MBAMProtection            0     00000004  
MBAMProtection        H:                                        328800     MBAMProtection            0     00000004  
MBAMProtection        F:                                        328800     MBAMProtection            0     00000004  
MBAMProtection        \Device\HarddiskVolumeShadowCopy1         328800     MBAMProtection            0     00000004  
MBAMProtection        \Device\Mup                               328800     MBAMProtection            0     00000004  
WdFilter                                                        328010     WdFilter Instance         0     00000007  
WdFilter              C:                                        328010     WdFilter Instance         0     00000007  
WdFilter                                                        328010     WdFilter Instance         0     00000007  
WdFilter              E:                                        328010     WdFilter Instance         0     00000007  
WdFilter              D:                                        328010     WdFilter Instance         0     00000007  
WdFilter              H:                                        328010     WdFilter Instance         0     00000007  
WdFilter              F:                                        328010     WdFilter Instance         0     00000007  
WdFilter              \Device\HarddiskVolumeShadowCopy1         328010     WdFilter Instance         0     00000007  
WdFilter              \Device\Mup                               328010     WdFilter Instance         0     00000007  
Wof                                                              40700     Wof Instance              0     00000007  
Wof                   C:                                         40700     Wof Instance              0     00000007  
Wof                                                              40700     Wof Instance              0     00000007  
Wof                   E:                                         40700     Wof Instance              0     00000007  
Wof                   D:                                         40700     Wof Instance              0     00000007  
Wof                   H:                                         40700     Wof Instance              0     00000007  
Wof                   F:                                         40700     Wof Instance              0     00000007  
Wof                   \Device\HarddiskVolumeShadowCopy1          40700     Wof Instance              0     00000007  
ZAM                                                              80681     ZAMDefaultFilter          0     00000000  
ZAM                   C:                                         80681     ZAMDefaultFilter          0     00000000  
ZAM                                                              80681     ZAMDefaultFilter          0     00000000  
ZAM                   E:                                         80681     ZAMDefaultFilter          0     00000000  
ZAM                   D:                                         80681     ZAMDefaultFilter          0     00000000  
ZAM                   H:                                         80681     ZAMDefaultFilter          0     00000000  
ZAM                   F:                                         80681     ZAMDefaultFilter          0     00000000  
ZAM                   \Device\HarddiskVolumeShadowCopy1          80681     ZAMDefaultFilter          0     00000000  
ZAM                   \Device\Mup                                80681     ZAMDefaultFilter          0     00000000  
ilkura                C:                                         45666     ilkura Instance           0     00000000  
ilkura                \Device\Mup                                45666     ilkura Instance           0     00000000  
luafv                 C:                                        135000     luafv                     0     00000007  
npsvctrig             \Device\NamedPipe                          46000     npsvctrig                 0     00000000  
udiskMgr                                                         45888     udiskMgr Instance         0     00000000  
udiskMgr              C:                                         45888     udiskMgr Instance         0     00000000  
udiskMgr                                                         45888     udiskMgr Instance         0     00000000  
udiskMgr              E:                                         45888     udiskMgr Instance         0     00000000  
udiskMgr              D:                                         45888     udiskMgr Instance         0     00000000  
udiskMgr              H:                                         45888     udiskMgr Instance         0     00000000  
udiskMgr              F:                                         45888     udiskMgr Instance         0     00000000  
udiskMgr              \Device\HarddiskVolumeShadowCopy1          45888     udiskMgr Instance         0     00000000  
wcifs                 C:                                        189900     wcifs Instance            0     00000007  
 
========= End of CMD: =========
 
 
========= dir C:\Windows\system32\drivers =========
 
 Volume in drive C is SSD
 Volume Serial Number is 7AD6-E282
 
 Directory of C:\Windows\system32\drivers
 
12/19/2017  01:56 AM    <DIR>          .
12/19/2017  01:56 AM    <DIR>          ..
09/29/2017  07:41 AM           237,056 1394ohci.sys
09/29/2017  07:41 AM           107,416 3ware.sys
12/15/2017  03:00 AM           255,928 533114CB.sys
12/18/2017  02:45 AM           255,928 5662BC94.sys
12/16/2017  03:46 PM           255,928 7552FD8C.sys
09/29/2017  07:41 AM           733,592 acpi.sys
09/29/2017  07:41 AM            20,480 AcpiDev.sys
09/29/2017  07:41 AM           127,896 acpiex.sys
09/29/2017  07:41 AM            12,800 acpipagr.sys
09/29/2017  07:41 AM            14,336 acpipmi.sys
09/29/2017  07:41 AM            13,312 acpitime.sys
09/29/2017  07:41 AM         1,135,512 adp80xx.sys
09/29/2017  07:41 AM           614,296 afd.sys
09/29/2017  07:41 AM           108,032 agilevpn.sys
09/29/2017  07:41 AM           240,640 ahcache.sys
09/29/2017  07:41 AM           180,224 amdk8.sys
09/29/2017  07:41 AM           178,176 amdppm.sys
09/29/2017  07:41 AM            83,352 amdsata.sys
09/29/2017  07:41 AM           258,592 amdsbs.sys
09/29/2017  07:41 AM            27,032 amdxata.sys
09/29/2017  07:41 AM           191,008 appid.sys
10/28/2013  09:02 AM            22,240 AppleCharger.sys
09/29/2017  07:41 AM            18,432 applockerfltr.sys
09/29/2017  08:42 AM           126,872 AppVStrm.sys
09/29/2017  08:42 AM           158,616 AppvVemgr.sys
09/29/2017  08:42 AM           143,768 AppvVfs.sys
09/29/2017  07:41 AM           131,992 arcsas.sys
07/18/2012  11:29 AM            49,048 asahci64.sys
09/14/2017  01:30 AM            98,312 asstahci64.sys
09/29/2017  07:41 AM            28,160 asyncmac.sys
09/29/2017  07:41 AM            28,568 atapi.sys
09/29/2017  07:41 AM           194,456 ataport.sys
12/07/2017  05:34 PM            59,800 bam.sys
09/29/2017  07:41 AM            58,880 BasicDisplay.sys
11/15/2017  08:46 PM            34,816 BasicRender.sys
09/29/2017  07:41 AM            39,832 battc.sys
09/29/2017  07:41 AM             9,728 bcmfn2.sys
09/29/2017  07:42 AM            10,240 beep.sys
05/07/2013  11:44 AM            66,928 bflwfx64.sys
09/29/2017  07:41 AM           101,888 bowser.sys
09/29/2017  07:41 AM           116,736 bridge.sys
09/29/2017  07:41 AM            23,040 BtaMPM.sys
09/29/2017  07:41 AM            45,056 BthAvrcpTg.sys
09/29/2017  07:41 AM           107,008 bthhfenum.sys
09/29/2017  07:41 AM            31,232 BthhfHid.sys
09/29/2017  07:40 AM            67,584 bthmodem.sys
09/29/2017  07:41 AM            37,784 bttflt.sys
09/29/2017  07:41 AM            39,424 buttonconverter.sys
02/12/2016  10:44 AM           144,456 bwcW10x64.sys
09/29/2017  07:41 AM           533,912 bxvbda.sys
09/29/2017  07:40 AM            60,312 CAD.sys
09/29/2017  07:41 AM           122,368 capimg.sys
09/29/2017  07:41 AM            93,184 cdfs.sys
04/24/2012  03:01 AM            10,864 cdr4_xp.sys
04/24/2012  03:01 AM            11,376 cdralw2k.sys
09/29/2017  07:41 AM           159,744 cdrom.sys
09/29/2017  07:41 AM            78,744 CEA.sys
08/25/2012  09:40 PM           248,496 chdrvr01.sys
08/25/2012  09:41 PM            11,440 chdrvr02.sys
08/25/2012  09:41 PM            24,240 chdrvr03.sys
09/29/2017  07:41 AM           141,208 cht4dx64.sys
09/29/2017  07:41 AM           357,272 cht4sx64.sys
09/29/2017  07:41 AM         1,723,288 cht4vx64.sys
09/29/2017  07:40 AM            49,152 circlass.sys
09/29/2017  07:41 AM           403,352 Classpnp.sys
09/29/2017  07:41 AM           384,000 cldflt.sys
11/26/2017  07:32 AM           373,656 clfs.sys
09/29/2017  07:41 AM         1,007,512 ClipSp.sys
09/29/2017  07:41 AM            29,696 CmBatt.sys
09/29/2017  07:41 AM            28,568 cmimcext.sys
12/07/2017  05:23 PM           677,272 cng.sys
09/29/2017  07:41 AM            39,320 cnghwassist.sys
09/29/2017  07:41 AM            55,704 condrv.sys
09/29/2017  07:41 AM            85,912 crashdmp.sys
09/29/2017  08:42 AM           559,616 csc.sys
01/09/2017  04:05 PM         1,064,968 cthda.sys
09/29/2017  07:42 AM            81,304 dam.sys
09/29/2017  07:41 AM            61,440 dc1-controller.sys
09/29/2017  07:41 AM            45,056 devauthe.sys
09/29/2017  07:41 AM           151,040 dfsc.sys
09/29/2017  07:41 AM            94,104 disk.sys
09/29/2017  07:41 AM            38,808 Diskdump.sys
09/29/2017  07:41 AM            15,360 Dmpusbstor.sys
09/29/2017  07:41 AM            46,592 dmvsc.sys
09/29/2017  07:40 AM            96,768 drmk.sys
09/29/2017  07:40 AM            16,224 drmkaud.sys
09/29/2017  07:41 AM            35,736 Dumpata.sys
09/29/2017  07:43 AM            91,152 dumpfve.sys
11/26/2017  07:31 AM           187,288 dumpsd.sys
09/29/2017  07:41 AM            32,256 dumpsdport.sys
09/29/2017  07:41 AM            25,600 Dumpstorport.sys
11/26/2017  07:29 AM         2,573,208 dxgkrnl.sys
09/29/2017  07:41 AM           408,096 dxgmms1.sys
11/26/2017  07:29 AM           749,976 dxgmms2.sys
10/31/2017  01:55 PM           555,592 e1d65x64.sys
05/07/2013  11:44 AM           165,824 e22W7x64.sys
10/29/2017  11:25 PM           165,608 e2xw10x64.sys
10/20/2017  12:18 AM           798,248 EasyAntiCheat.sys
09/29/2017  07:41 AM            87,960 EhStorClass.sys
09/29/2017  07:40 AM           118,680 EhStorTcgDrv.sys
11/15/2017  08:44 PM    <DIR>          en-US
09/29/2017  07:41 AM            13,824 errdev.sys
12/18/2017  01:54 AM    <DIR>          etc
12/14/2017  04:47 PM            72,816 etssyxaf.sys
09/29/2017  07:41 AM         3,419,032 evbda.sys
09/29/2017  07:41 AM           354,304 exfat.sys
12/19/2017  01:56 AM           110,016 farflt.sys
09/29/2017  07:41 AM           371,608 fastfat.sys
09/29/2017  07:41 AM            32,768 fdc.sys
09/25/2013  01:40 PM           127,280 ffusb2audio.sys
09/29/2017  07:41 AM            55,808 filecrypt.sys
09/29/2017  07:41 AM            85,400 fileinfo.sys
09/29/2017  07:41 AM            36,864 filetrace.sys
05/07/2015  03:49 AM            51,712 flashud.sys
09/29/2017  07:41 AM            26,624 flpydisk.sys
11/26/2017  07:33 AM           398,744 fltMgr.sys
02/05/2016  03:45 PM           108,832 fltsrv.sys
11/08/2017  04:52 PM            97,984 FocusriteUSBSwRoot.sys
09/29/2017  07:41 AM            62,872 fsdepends.sys
09/29/2017  07:41 AM            34,200 fs_rec.sys
09/29/2017  07:43 AM           727,448 fvevol.sys
09/29/2017  07:41 AM           441,240 FWPKCLNT.SYS
08/21/2012  01:01 PM            33,240 GEARAspiWDM.sys
09/29/2017  07:41 AM            20,992 genericusbfn.sys
09/29/2017  07:41 AM         3,440,660 gm.dls
09/29/2017  07:41 AM               646 gmreadme.txt
09/29/2017  07:41 AM             8,192 gpuenergydrv.sys
09/29/2017  07:40 AM            86,016 hdaudbus.sys
01/11/2013  07:02 PM            64,624 HECIx64.sys
09/29/2017  07:41 AM            38,296 hidbatt.sys
09/29/2017  07:41 AM           114,688 hidbth.sys
09/29/2017  07:41 AM           187,392 hidclass.sys
09/29/2017  07:41 AM            52,224 hidi2c.sys
09/29/2017  07:41 AM            50,584 hidinterrupt.sys
09/29/2017  07:40 AM            46,592 hidir.sys
05/05/2015  07:40 AM            17,648 hidkmdf.sys
09/29/2017  07:41 AM            45,568 hidparse.sys
09/29/2017  07:41 AM            40,960 hidusb.sys
12/15/2017  02:59 AM            55,232 hitmanpro37.sys
09/29/2017  07:41 AM            63,520 HpSAMD.sys
09/29/2017  07:41 AM         1,103,768 http.sys
09/29/2017  07:41 AM            73,112 hvservice.sys
12/07/2017  05:22 PM           129,432 hvsocket.sys
09/29/2017  07:41 AM            29,592 hwpolicy.sys
09/29/2017  07:41 AM            16,896 hyperkbd.sys
09/29/2017  07:41 AM            28,160 HyperVideo.sys
09/29/2017  07:41 AM           105,984 i8042prt.sys
09/29/2017  07:40 AM            36,864 iagpio.sys
09/29/2017  07:40 AM            91,648 iai2c.sys
09/29/2017  07:40 AM            79,360 iaLPSS2i_GPIO2.sys
09/29/2017  07:40 AM            88,576 iaLPSS2i_GPIO2_BXT_P.sys
09/29/2017  07:40 AM           171,520 iaLPSS2i_I2C.sys
09/29/2017  07:40 AM           174,592 iaLPSS2i_I2C_BXT_P.sys
09/29/2017  07:41 AM            38,128 iaLPSSi_GPIO.sys
09/29/2017  07:40 AM           113,152 iaLPSSi_I2C.sys
11/24/2016  07:41 PM           795,648 iaStorA.sys
09/29/2017  07:41 AM           674,200 iaStorAV.sys
10/09/2017  09:49 AM         1,007,712 iaStorE.sys
09/29/2017  07:41 AM           412,056 iaStorV.sys
09/29/2017  07:41 AM           526,232 ibbus.sys
05/08/2017  05:39 AM            38,480 ICCWDT.sys
09/29/2017  07:41 AM            39,424 IndirectKmd.sys
09/29/2017  07:41 AM            19,352 intelide.sys
11/09/2017  12:40 AM            21,136 IntelMEFWVer.dll
09/29/2017  07:41 AM           130,640 intelpep.sys
09/29/2017  07:41 AM           198,656 intelppm.sys
09/29/2017  07:41 AM            38,912 invdimm.sys
09/29/2017  07:41 AM            56,728 iorate.sys
09/29/2017  07:41 AM            85,504 ipfltdrv.sys
09/29/2017  07:41 AM            92,056 IPMIDrv.sys
09/29/2017  07:41 AM           214,016 ipnat.sys
09/29/2017  07:41 AM            26,112 ipt.sys
01/15/2016  05:00 PM            38,376 iqvw64e.sys
09/29/2017  07:42 AM           119,808 irda.sys
09/29/2017  07:42 AM            19,968 irenum.sys
09/29/2017  07:41 AM            22,936 isapnp.sys
07/30/2013  09:32 PM            47,008 ISCTD64.sys
09/29/2017  07:41 AM            63,384 kbdclass.sys
09/29/2017  07:41 AM            40,448 kbdhid.sys
09/29/2017  07:41 AM            23,040 kdnic.sys
11/26/2017  06:28 AM           394,752 ks.sys
12/12/2017  01:42 PM           139,672 ksecdd.sys
09/29/2017  07:41 AM           170,904 ksecpkg.sys
09/29/2017  07:41 AM            27,136 ksthunk.sys
01/23/2017  04:20 PM            36,496 LGBusEnum.sys
01/23/2017  04:20 PM            67,736 LGJoyXlCore.sys
01/23/2017  04:20 PM            26,008 LGVirHid.sys
09/29/2017  07:41 AM            65,024 lltdio.sys
12/15/2017  09:20 PM            61,304 lpsport.sys
09/29/2017  07:41 AM           108,064 lsi_sas.sys
09/29/2017  07:41 AM           123,800 lsi_sas2i.sys
09/29/2017  07:41 AM           103,320 lsi_sas3i.sys
09/29/2017  07:41 AM            82,840 lsi_sss.sys
11/15/2017  08:46 PM           124,928 luafv.sys
08/18/2015  06:07 PM           266,828 LVAFT.cfg
08/18/2015  06:07 PM           351,520 lvrs64.sys
08/18/2015  06:07 PM         4,758,176 lvuvc64.sys
09/29/2017  07:41 AM           505,240 mausbhost.sys
09/29/2017  07:41 AM            55,840 mausbip.sys
11/29/2017  09:11 AM            77,432 mbae64.sys
12/19/2017  01:56 AM            46,008 mbam.sys
12/18/2017  03:04 AM           193,968 MbamChameleon.sys
12/19/2017  01:56 AM           253,880 mbamswissarmy.sys
09/29/2017  07:42 AM            23,552 mcd.sys
09/29/2017  07:41 AM            59,800 megasas.sys
09/29/2017  07:41 AM            63,520 MegaSas2i.sys
09/29/2017  07:41 AM           575,896 megasr.sys
09/29/2017  07:41 AM           842,648 mlx4_bus.sys
09/29/2017  07:41 AM            43,520 mmcss.sys
09/29/2017  07:42 AM            42,496 modem.sys
09/29/2017  07:41 AM            38,912 monitor.sys
09/29/2017  07:41 AM            57,240 mouclass.sys
09/29/2017  07:41 AM            32,768 mouhid.sys
09/29/2017  07:41 AM           103,320 mountmgr.sys
09/29/2017  07:41 AM            75,776 mpsdrv.sys
09/29/2017  09:15 AM           176,128 mqac.sys
09/29/2017  07:42 AM           143,872 mrxdav.sys
11/26/2017  07:28 AM           495,000 mrxsmb.sys
11/15/2017  08:46 PM           285,696 mrxsmb10.sys
11/26/2017  07:27 AM           230,296 mrxsmb20.sys
09/29/2017  07:41 AM            31,232 msfs.sys
07/16/2016  05:42 AM                 3 MsftWdf_Kernel_01019_Inbox_Critical.Wdf
12/21/2013  04:54 PM                 0 Msft_Kernel_iusb3hcs_01009.Wdf
12/21/2013  06:58 PM                 0 Msft_Kernel_rzendpt_01009.Wdf
12/21/2013  06:57 PM                 0 Msft_Kernel_rzudd_01009.Wdf
04/13/2017  01:58 PM                 0 Msft_Kernel_Smb_driver_Intel_01011.Wdf
08/08/2015  02:15 PM                 0 Msft_Kernel_TmHid_01009.Wdf
12/22/2014  06:36 PM                 0 Msft_Kernel_WinUsb_01007.Wdf
10/06/2014  09:49 AM                 0 Msft_Kernel_WinUsb_01009.Wdf
12/22/2013  07:20 AM                 0 Msft_User_WpdFs_01_09_00.Wdf
04/13/2017  01:58 PM                 0 Msft_User_WpdFs_01_11_00.Wdf
01/30/2014  07:44 PM                 0 Msft_User_WpdMtpDr_01_09_00.Wdf
08/23/2015  03:55 PM                 0 Msft_User_WpdMtpDr_01_11_00.Wdf
09/29/2017  07:41 AM           169,880 msgpioclx.sys
09/29/2017  07:41 AM            49,048 msgpiowin32.sys
09/29/2017  07:41 AM             8,704 mshidkmdf.sys
09/29/2017  07:41 AM            11,776 mshidumdf.sys
09/29/2017  07:41 AM            27,136 mshwnclx.sys
09/29/2017  07:41 AM            18,840 msisadrv.sys
09/29/2017  07:41 AM           279,448 msiscsi.sys
09/29/2017  07:41 AM            33,280 mskssrv.sys
09/29/2017  07:41 AM            84,480 mslldp.sys
09/29/2017  07:41 AM            10,752 mspclock.sys
09/29/2017  07:41 AM            10,752 mspqm.sys
09/29/2017  07:41 AM           376,864 msrpc.sys
09/29/2017  08:42 AM           293,272 mssecflt.sys
09/29/2017  07:41 AM            40,856 mssmbios.sys
09/29/2017  07:41 AM            12,800 mstee.sys
09/29/2017  07:41 AM            16,896 MTConfig.sys
09/29/2017  07:41 AM           123,800 mup.sys
09/29/2017  07:41 AM            63,896 mvumis.sys
12/17/2017  07:36 PM            94,144 mwac.sys
09/29/2017  07:41 AM           108,952 ndfltr.sys
11/26/2017  07:37 AM         1,277,848 ndis.sys
09/29/2017  07:42 AM            50,688 ndiscap.sys
09/29/2017  07:41 AM           128,000 NdisImPlatform.sys
09/29/2017  07:41 AM            27,136 ndistapi.sys
09/29/2017  07:41 AM            65,024 ndisuio.sys
09/29/2017  07:41 AM            21,504 NdisVirtualBus.sys
09/29/2017  07:41 AM           192,000 ndiswan.sys
09/29/2017  07:41 AM            62,464 ndproxy.sys
09/29/2017  07:41 AM           124,416 Ndu.sys
09/29/2017  07:41 AM           132,608 NetAdapterCx.sys
09/29/2017  07:41 AM            57,752 netbios.sys
09/29/2017  07:41 AM           316,928 netbt.sys
09/29/2017  07:41 AM           535,960 netio.sys
12/07/2017  04:07 PM           192,512 netvsc.sys
09/29/2017  07:41 AM            73,216 npfs.sys
09/29/2017  07:41 AM            26,112 npsvctrig.sys
09/29/2017  07:41 AM            44,544 nsiproxy.sys
11/26/2017  07:33 AM         2,395,032 ntfs.sys
09/29/2017  07:41 AM            19,864 ntosext.sys
09/29/2017  07:41 AM             7,168 null.sys
09/29/2017  07:41 AM            88,576 nvdimmn.sys
11/27/2017  07:56 PM           225,208 nvhda64v.sys
09/29/2017  07:41 AM           150,424 nvraid.sys
09/29/2017  07:41 AM           166,296 nvstor.sys
10/10/2017  07:05 PM            50,624 nvvad64v.sys
11/27/2017  07:56 PM            57,792 nvvhci.sys
11/26/2017  06:31 AM           529,408 nwifi.sys
09/29/2017  07:41 AM           152,984 pacer.sys
09/29/2017  07:41 AM            98,816 parport.sys
12/07/2017  05:30 PM           166,296 partmgr.sys
12/07/2017  05:10 PM           362,904 pci.sys
09/29/2017  07:41 AM            16,280 pciide.sys
09/29/2017  07:41 AM            53,144 pciidex.sys
09/29/2017  07:40 AM           119,704 pcmcia.sys
09/29/2017  07:41 AM            53,144 pcw.sys
09/29/2017  07:41 AM           123,288 pdc.sys
09/29/2017  07:42 AM           723,968 PEAuth.sys
09/29/2017  07:41 AM            58,776 percsas2i.sys
09/29/2017  07:41 AM            61,848 percsas3i.sys
09/29/2017  07:41 AM           100,352 pmem.sys
09/29/2017  07:41 AM            16,896 pnpmem.sys
09/29/2017  07:40 AM           379,392 portcls.sys
09/29/2017  07:41 AM           177,152 processr.sys
12/18/2017  03:46 AM            41,800 PROCEXP152.SYS
12/18/2017  04:16 AM           142,136 pservybe.sys
06/22/2012  03:01 AM            56,336 PxHlpa64.sys
09/29/2017  07:41 AM            49,152 qwavedrv.sys
09/29/2017  07:41 AM            39,832 ramdisk.sys
12/27/2012  12:06 PM            81,912 RAMDriv.sys
09/29/2017  07:41 AM            17,920 rasacd.sys
09/29/2017  07:41 AM           106,496 rasl2tp.sys
09/29/2017  07:41 AM            82,944 raspppoe.sys
09/29/2017  07:41 AM            97,280 raspptp.sys
09/29/2017  07:41 AM            78,336 rassstp.sys
11/26/2017  07:26 AM           428,952 rdbss.sys
09/29/2017  08:42 AM            27,136 rdpbus.sys
09/29/2017  08:42 AM           182,784 rdpdr.sys
09/29/2017  08:42 AM            30,616 rdpvideominiport.sys
09/29/2017  07:42 AM           282,520 rdyboost.sys
09/29/2017  07:41 AM         1,849,752 refs.sys
09/29/2017  07:41 AM           936,856 refsv1.sys
09/29/2017  07:41 AM            43,008 RfxVmt.sys
09/29/2017  07:41 AM           103,936 rhproxy.sys
09/29/2017  07:41 AM           149,504 rmcast.sys
09/29/2017  07:42 AM            35,328 RNDISMP.sys
09/29/2017  07:42 AM            13,312 rootmdm.sys
04/03/2010  09:30 AM           313,696 RsFx0150.sys
06/17/2011  07:54 PM           313,696 RsFx0151.sys
09/29/2017  07:41 AM            80,896 rspndr.sys
09/29/2017  07:41 AM            59,904 rteth.sys
12/30/2014  03:35 AM            39,592 rzendpt.sys
06/09/2014  03:49 AM            32,768 RzMaelstromVAD.sys
02/09/2015  01:17 AM            40,640 RzSurroundVAD.sys
07/13/2015  08:34 AM           199,896 rzudd.sys
09/29/2017  07:41 AM           109,976 sbp2port.sys
08/07/2015  03:49 PM           138,888 Scarlett_UAC2Audio.sys
09/29/2017  07:42 AM            43,008 scfilter.sys
09/29/2017  07:41 AM           118,168 scmbus.sys
09/29/2017  07:42 AM           175,512 scsiport.sys
11/26/2017  07:41 AM           285,080 sdbus.sys
09/29/2017  07:41 AM            33,176 SDFRd.sys
09/29/2017  07:41 AM            97,688 sdport.sys
09/29/2017  07:41 AM            96,664 sdstor.sys
09/17/2009  07:05 AM           145,448 sentinel64.sys
09/29/2017  07:41 AM            74,784 SerCx.sys
09/29/2017  07:41 AM           154,520 SerCx2.sys
09/29/2017  07:41 AM            25,088 serenum.sys
09/29/2017  07:41 AM            84,992 serial.sys
09/29/2017  07:41 AM            28,160 sermouse.sys
06/25/2017  11:01 PM           205,984 SETC2E5.tmp
09/29/2017  07:41 AM            17,920 sfloppy.sys
04/07/2016  09:55 PM            24,576 SiLib.sys
09/29/2017  07:41 AM            44,952 sisraid2.sys
09/29/2017  07:41 AM            81,816 sisraid4.sys
04/07/2016  09:55 PM            19,456 SiUSBXp.sys
07/14/2016  01:14 AM           171,664 SIVX64.sys
09/29/2017  07:41 AM            34,200 SleepStudyHelper.sys
09/08/2015  03:18 PM            33,960 Smb_driver_Intel.sys
09/29/2017  07:42 AM            21,504 smclib.sys
02/05/2016  03:45 PM           233,760 snapman.sys
09/29/2017  07:41 AM           171,416 spacedump.sys
12/07/2017  05:14 PM           571,288 spaceport.sys
09/29/2017  08:42 AM            56,216 SpatialGraphFilter.sys
09/29/2017  07:41 AM            81,816 SpbCx.sys
09/13/2016  02:22 PM           181,816 sptd2.sys
11/26/2017  05:59 AM           422,912 srv.sys
11/26/2017  05:59 AM           726,016 srv2.sys
11/26/2017  05:59 AM           259,072 srvnet.sys
04/24/2016  11:35 PM           129,152 ssudbus.sys
04/24/2016  11:35 PM           221,824 ssudmdm.sys
09/29/2017  07:41 AM            31,128 stexstor.sys
11/26/2017  07:28 AM           149,400 storahci.sys
09/29/2017  07:41 AM           103,320 stornvme.sys
11/15/2017  08:46 PM           559,512 storport.sys
09/29/2017  07:41 AM            79,872 storqosflt.sys
11/15/2017  08:46 PM            45,464 storufs.sys
09/29/2017  07:41 AM            39,320 storvsc.sys
09/29/2017  07:42 AM            75,264 stream.sys
09/29/2017  07:41 AM            18,328 swenum.sys
09/29/2017  07:41 AM            64,512 Synth3dVsc.sys
04/21/2016  03:10 AM            27,136 tap0901.sys
09/29/2017  07:42 AM            31,232 tape.sys
09/29/2017  07:41 AM            28,056 tbs.sys
01/21/2016  02:19 AM           125,488 tbt81x.sys
09/29/2017  07:41 AM         2,773,400 tcpip.sys
09/29/2017  07:41 AM            51,712 tcpipreg.sys
09/29/2017  07:41 AM            40,344 tdi.sys
02/05/2016  03:45 PM         1,462,560 tdrpman.sys
09/29/2017  07:41 AM           121,240 tdx.sys
10/17/2017  07:11 AM           206,496 TeeDriverW8x64.sys
09/29/2017  08:42 AM            37,272 terminpt.sys
02/05/2016  03:45 PM         1,120,032 tib.sys
02/05/2016  03:45 PM           183,224 tib_mounter.sys
09/29/2017  07:41 AM           128,408 tm.sys
01/26/2011  03:04 PM            30,208 TmBusEn.sys
01/26/2011  03:04 PM            24,576 TmFilter.sys
01/26/2011  03:04 PM            24,704 TmHid.sys
09/29/2017  07:41 AM           229,272 tpm.sys
09/29/2017  07:41 AM            62,976 TsUsbFlt.sys
09/29/2017  07:41 AM            35,328 TsUsbGD.sys
09/29/2017  08:42 AM           126,464 tsusbhub.sys
09/29/2017  07:41 AM           106,496 tunnel.sys
05/30/2012  01:10 PM            16,168 TurboB.sys
09/29/2017  07:41 AM            79,256 uaspstor.sys
11/15/2017  08:46 PM           114,688 UcmCx.sys
09/29/2017  07:41 AM           146,944 UcmTcpciCx.sys
11/15/2017  08:46 PM            57,344 UcmUcsi.sys
09/29/2017  07:41 AM           227,224 Ucx01000.sys
09/29/2017  07:41 AM            45,056 Udecx.sys
09/29/2017  07:42 AM           323,072 udfs.sys
09/29/2017  07:41 AM            28,568 uefi.sys
09/29/2017  08:42 AM            40,344 UevAgentDriver.sys
09/29/2017  07:41 AM           266,648 ufx01000.sys
09/29/2017  07:41 AM            97,312 UfxChipidea.sys
09/29/2017  07:41 AM           140,696 ufxsynopsys.sys
09/29/2017  07:41 AM            56,320 umbus.sys
11/18/2017  08:13 AM    <DIR>          UMDF
09/29/2017  07:41 AM            14,336 umpass.sys
09/29/2017  07:41 AM            28,568 urschipidea.sys
11/15/2017  08:46 PM            60,824 urscx01000.sys
09/29/2017  07:41 AM            27,544 urssynopsys.sys
04/25/2013  08:24 PM            41,984 USB3Ver.dll
09/29/2017  07:41 AM            23,040 usb8023.sys
06/10/2015  10:08 PM            54,784 usbaapl64.sys
09/29/2017  07:40 AM           135,168 USBAUDIO.sys
09/29/2017  07:42 AM            37,376 USBCAMD2.sys
09/29/2017  07:41 AM           168,856 usbccgp.sys
10/24/2013  04:29 PM            22,240 UsbCharger.sys
09/29/2017  07:40 AM           102,912 usbcir.sys
09/29/2017  07:41 AM            32,152 usbd.sys
09/29/2017  07:41 AM            95,640 usbehci.sys
09/29/2017  07:41 AM           513,944 usbhub.sys
11/15/2017  08:46 PM           555,416 USBHUB3.SYS
09/29/2017  07:41 AM            30,720 usbohci.sys
09/29/2017  07:41 AM           454,040 usbport.sys
09/29/2017  07:41 AM            27,136 usbprint.sys
09/29/2017  07:41 AM            71,680 usbser.sys
09/29/2017  07:41 AM           130,968 USBSTOR.SYS
09/29/2017  07:41 AM            35,328 usbuhci.sys
12/07/2017  05:24 PM           437,144 USBXHCI.SYS
09/29/2017  07:41 AM            54,680 vdrvroot.sys
09/29/2017  07:41 AM           225,688 VerifierExt.sys
11/26/2017  07:28 AM           713,624 vhdmp.sys
09/29/2017  07:41 AM            34,816 vhf.sys
09/29/2017  07:41 AM            44,544 videoprt.sys
05/05/2015  07:40 AM            44,784 vjoy.sys
09/29/2017  07:41 AM            81,304 vmbkmcl.sys
09/29/2017  07:41 AM            80,384 vmbkmclr.sys
09/29/2017  07:41 AM           109,976 vmbus.sys
09/29/2017  07:41 AM            25,088 VMBusHID.sys
09/29/2017  07:41 AM            13,312 vmgencounter.sys
09/29/2017  07:41 AM            10,240 vmgid.sys
09/29/2017  07:41 AM             9,216 vms3cap.sys
09/29/2017  07:41 AM            47,512 vmstorfl.sys
09/29/2017  07:41 AM            43,008 vnvdimm.sys
11/26/2017  07:32 AM            82,840 volmgr.sys
09/29/2017  07:41 AM           373,144 volmgrx.sys
12/07/2017  05:12 PM           401,304 volsnap.sys
09/29/2017  07:41 AM            15,392 volume.sys
09/29/2017  07:41 AM            75,160 vpci.sys
09/29/2017  07:41 AM           166,808 vsmraid.sys
09/29/2017  07:41 AM           305,560 VSTXRAID.SYS
09/29/2017  07:42 AM            27,136 vwifibus.sys
09/29/2017  07:42 AM            76,800 vwififlt.sys
11/26/2017  06:36 AM            41,472 vwifimp.sys
09/29/2017  07:41 AM            30,720 wacompen.sys
09/29/2017  07:41 AM            80,896 wanarp.sys
09/29/2017  07:41 AM            56,320 watchdog.sys
11/15/2017  08:46 PM           147,864 wcifs.sys
09/29/2017  07:41 AM            76,288 wcnfs.sys
12/16/2017  12:01 PM    <DIR>          wd
09/29/2017  07:41 AM            44,608 WdBoot.sys
09/29/2017  07:41 AM           918,240 Wdf01000.sys
05/28/2014  05:32 PM         1,629,040 WdfCoInstaller01011.dll
09/29/2017  07:41 AM           309,144 WdFilter.sys
09/29/2017  07:41 AM            61,664 WdfLdr.sys
11/26/2017  06:26 AM           770,048 WdiWiFi.sys
09/29/2017  07:41 AM           119,192 WdNisDrv.sys
09/29/2017  07:41 AM            33,792 wdnsfltr.sys
09/29/2017  07:41 AM            45,464 werkernel.sys
09/29/2017  07:41 AM           163,736 wfplwfs.sys
09/29/2017  07:41 AM            35,736 wimmount.sys
09/29/2017  07:41 AM            71,248 WindowsTrustedRT.sys
09/29/2017  07:41 AM            18,000 WindowsTrustedRTProxy.sys
09/29/2017  07:41 AM            31,640 winhv.sys
09/29/2017  07:41 AM            62,464 winhvr.sys
09/29/2017  07:41 AM            32,152 winmad.sys
09/29/2017  07:41 AM           225,280 winnat.sys
09/29/2017  07:41 AM            92,672 winusb.sys
09/29/2017  07:41 AM            64,920 winverbs.sys
04/27/2010  03:57 PM            26,440 WmBEnum.sys
09/29/2017  07:41 AM            18,432 wmiacpi.sys
09/29/2017  07:41 AM            20,376 wmilib.sys
04/27/2010  01:03 PM            77,512 WmXlCore.sys
09/29/2017  07:41 AM           209,304 wof.sys
09/29/2017  07:41 AM            30,104 WpdUpFltr.sys
09/29/2017  07:41 AM            33,176 WppRecorder.sys
09/29/2017  07:42 AM            23,040 ws2ifsl.sys
09/29/2017  07:41 AM            23,040 WSDPrint.sys
09/29/2017  07:41 AM            25,088 WSDScan.sys
09/29/2017  07:41 AM           115,200 WUDFPf.sys
09/29/2017  07:41 AM           259,584 WUDFRd.sys
05/28/2014  05:32 PM            29,408 xb1usb.sys
09/29/2017  07:41 AM           281,600 xboxgip.sys
09/29/2017  07:41 AM            46,592 xinputhid.sys
07/02/2014  07:49 PM            26,200 xspltspk.sys
12/18/2017  01:51 AM           203,680 zam64.sys
12/16/2017  03:43 PM           203,680 zamguard64.sys
             497 File(s)     96,977,737 bytes
               6 Dir(s)  26,960,769,024 bytes free
 
========= End of CMD: =========
 
 
==== End of Fixlog 02:04:25 ====


#6 Aura

Aura

    Bleepin' Special Ops


  • Malware Response Team
  • 19,586 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:06:08 AM

Posted 19 December 2017 - 08:03 AM

Alright, for the next step, you'll need to download FRST and the fixlist.txt on a clean computer and move them on a USB Flash Drive. And that USB cannot be plugged in the infected computer unless that computer is shut down, or in the Windows RE. As soon as you enter Windows normally with the USB plugged in, the infection will corrupt both FRST and the fixlist.

iO3R662.pngFarbar Recovery Scan Tool (FRST) - Recovery Environment Scan
Follow the instructions below to download and execute a scan on your system with FRST from the Recovery Environment, and provide the logs in your next reply.

Item(s) required:
  • USB Flash Drive (size depend on if you have to create a USB Recovery or Installation media)
  • CD/DVD (optional: only needed if you need to create a Recovery or Installation media and your USB Flash Drive is too small)
  • Another computer (optional: only needed if you cannot work from the infected computer directly)
Preparing the USB Flash Drive
  • Download the right version of FRST for your system:
  • Move the executable (FRST.exe or FRST64.exe) on your USB Flash Drive
  • Download the attached fixlist.txt, and move it on your USB Flash Drive as well
Boot in the Recovery Environment
  • Plug your USB Flash Drive in the infected computer
  • To enter the Recovery Environment with Windows Vista and Windows 7, follow the instructions below:
    • Restart the computer
    • Once you've seen your BIOS splashscreen (the computer manufacturer logo), tap the F8 key repeatedly until the Advanced Boot Options menu appears
    • Use the arrow keys to select Repair your computer, and press on Enter
    • Select your keyboard layout (US, French, etc.) and click on Next
    • Click on Command Prompt to open the command prompt
      Note: If you can't access the Recovery Environment using the F8 method above, you'll need to create a Windows installation or repair media. It can be made on the computer itself or another one running the same version of Windows as the one you plan to use it on. For more information, check out this tutorial on SevenForums.
  • To enter the Recovery Environment with Windows 8 or Windows 8.1, follow the instructions in this tutorial on EightForums
    Note: If you can't access the Recovery Environment using the method above, you'll need to create a Windows installation or repair media. It can be made on the computer itself or another one running the same version of Windows as the one you plan to use it on. For more information, check out this tutorial.
  • To enter the Recovery Environment with Windows 10, follow the instructions in this tutorial on TenForums
    Note: If you can't access the Recovery Environment using the method above, you'll need to create a Windows installation or repair media. It can be made on the computer itself or another one running the same version of Windows as the one you plan to use it on. For more information, check out this tutorial on TenForums.
Once in the command prompt
  • In the command prompt, type notepad and press on Enter
  • Notepad will open. Click on the File menu and select Open
  • Click on Computer/This PC, find the letter for your USB Flash Drive, then close the window and Notepad
  • In the command prompt, type e:\frst.exe (for the x64 version, type e:\frst64.exe and press on Enter
  • Note: Replace the letter e with the drive letter of your USB Flash Drive
  • FRST will open
  • Click on Yes to accept the disclaimer
  • Click on the Fix button and wait for the scan to complete
  • A log called fixlog.txt will be saved on your USB Flash Drive. Attach it in your next reply

Attached Files


unite_blue.png
Security Administrator | Sysnative Windows Update Senior Analyst | Malware Hunter | @SecurityAura
My timezone UTC-05:00 (East. Coast). If I didn't reply to you within 48 hours, please send me a PM.


#7 WolfRevenant

WolfRevenant
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Local time:04:08 AM

Posted 20 December 2017 - 03:12 AM

Oh man I really like FRST.

 

Here's the log, Yoan;

 

Fix result of Farbar Recovery Scan Tool (x64) Version: 17-12-2017
Ran by SYSTEM (20-12-2017 02:10:29) Run:2
Running from j:\
Boot Mode: Recovery
==============================================
 
fixlist content:
*****************
DeleteKey: HKLM\SYSTEM\ControlSet001\Services\ilkura
DeleteKey: HKLM\SYSTEM\ControlSet001\Services\udiskMgr
 
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
 
R3 udiskMgr; system32\drivers\ilosvy.sys [X]
 
C:\Users\Nicholas\AppData\Local\sbcgkod
C:\Users\Nicholas\AppData\Local\igfxmtc
C:\Users\Nicholas\AppData\Roaming\et
C:\WINDOWS\system32\scbizko
C:\Windows\System32\sbohdwcsvc.exe
C:\WINDOWS\system32\Drivers\pse*.sys
C:\WINDOWS\SysWOW64\scbizko
*****************
 
"HKLM\SYSTEM\ControlSet001\Services\ilkura" => removed successfully
"HKLM\SYSTEM\ControlSet001\Services\udiskMgr" => removed successfully
"HKLM\SOFTWARE\Policies\Microsoft\Windows Defender" => removed successfully
udiskMgr => service not found.
C:\Users\Nicholas\AppData\Local\sbcgkod => moved successfully
C:\Users\Nicholas\AppData\Local\igfxmtc => moved successfully
C:\Users\Nicholas\AppData\Roaming\et => moved successfully
C:\WINDOWS\system32\scbizko => moved successfully
C:\Windows\System32\sbohdwcsvc.exe => moved successfully
 
=========== "C:\WINDOWS\system32\Drivers\pse*.sys" ==========
 
C:\WINDOWS\system32\Drivers\pseehlor.sys => moved successfully
 
========= End -> "C:\WINDOWS\system32\Drivers\pse*.sys" ========
 
C:\WINDOWS\SysWOW64\scbizko => moved successfully
 
==== End of Fixlog 02:10:29 ====


#8 Aura

Aura

    Bleepin' Special Ops


  • Malware Response Team
  • 19,586 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:06:08 AM

Posted 20 December 2017 - 07:47 AM

Good :) Now you should be able to install and run a scan with Malwarebytes.

j1Bynr2.pngMalwarebytes - Clean Mode
  • Download and install the free version of Malwarebytes
    Note: If you have Malwarebytes already installed, you don't need to install it again. Simply start from the next bullet point
  • Once Malwarebytes is installed, launch it and let it update his database. You might have to click on the little arrow by Scan Status in the middle right pane for it to do so
  • Once the database update is complete, click on the Scan tab, then select the Threat Scan button and click on Start Scan
  • Let the scan run, the time required to complete the scan depends of your system and computer specs
  • Once the scan is complete, make sure that the first checkbox at the top is checked (which will automatically check every detected item), then click on the Quarantine Selected button
    • If it asks you to restart your computer to complete the removal, do so
  • Click on Export Summary after the deletion (in the bottom-left corner) and select Copy to Clipboard. Paste the content in your next reply

unite_blue.png
Security Administrator | Sysnative Windows Update Senior Analyst | Malware Hunter | @SecurityAura
My timezone UTC-05:00 (East. Coast). If I didn't reply to you within 48 hours, please send me a PM.


#9 WolfRevenant

WolfRevenant
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Local time:04:08 AM

Posted 20 December 2017 - 03:26 PM

I'm liking the results!  :)

 

Malwarebytes
www.malwarebytes.com
 
-Log Details-
Scan Date: 12/20/17
Scan Time: 2:21 PM
Log File: 5cff8dc4-e5c3-11e7-9c28-1c1b0d0b338d.json
Administrator: Yes
 
-Software Information-
Version: 3.3.1.2183
Components Version: 1.0.262
Update Package Version: 1.0.3530
License: Trial
 
-System Information-
OS: Windows 10 (Build 16299.125)
CPU: x64
File System: NTFS
User: NOTAMAC\Nicholas
 
-Scan Summary-
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 373208
Threats Detected: 0
(No malicious items detected)
Threats Quarantined: 0
(No malicious items detected)
Time Elapsed: 3 min, 39 sec
 
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
 
-Scan Details-
Process: 0
(No malicious items detected)
 
Module: 0
(No malicious items detected)
 
Registry Key: 0
(No malicious items detected)
 
Registry Value: 0
(No malicious items detected)
 
Registry Data: 0
(No malicious items detected)
 
Data Stream: 0
(No malicious items detected)
 
Folder: 0
(No malicious items detected)
 
File: 0
(No malicious items detected)
 
Physical Sector: 0
(No malicious items detected)
 
 
(end)


#10 Aura

Aura

    Bleepin' Special Ops


  • Malware Response Team
  • 19,586 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:06:08 AM

Posted 20 December 2017 - 07:18 PM

Good :) Now let's do a sweep with RogueKiller and AdwCleaner.

RQKuhw1.pngRogueKiller
  • Download the right version of RogueKiller for your Windows version (32 or 64-bit)
  • Once done, move the executable file to your Desktop, right-click on it and select Spcusrh.pngRun as Administrator (for Windows Vista, 7, 8, 8.1 and 10 users)
  • Click on the Start Scan button in the right panel, which will bring you to another tab, and click on it again (this time it'll be in the bottom right corner)
  • Wait for the scan to complete
  • On completion, the results will be displayed
  • Check every single entry (threat found), and click on the Remove Selected button
  • On completion, the results will be displayed. Click on the Open Report button in the bottom left corner, followed by the Open TXT button (also in the bottom left corner)
  • This will open the report in Notepad. Copy/paste its content in your next reply
zcMPezJ.pngAdwCleaner - Fix Mode
  • Download AdwCleaner and move it to your Desktop
  • Right-click on AdwCleaner.exe and select Spcusrh.pngRun as Administrator (for Windows Vista, 7, 8, 8.1 and 10 users)
  • Accept the EULA (I accept), then click on Scan
  • Let the scan complete. Once it's done, make sure that every item listed in the different tabs is checked and click on the Clean button. This will kill all active processes
    V7SD4El.png
  • Once the cleaning process is complete, AdwCleaner will ask to restart your computer, do it
  • After the restart, a log will open when logging in. Please copy/paste the content of that log in your next reply
Your next reply(ies) should therefore contain:
  • Copy/pasted RogueKiller clean log
  • Copy/pasted AdwCleaner clean log

unite_blue.png
Security Administrator | Sysnative Windows Update Senior Analyst | Malware Hunter | @SecurityAura
My timezone UTC-05:00 (East. Coast). If I didn't reply to you within 48 hours, please send me a PM.


#11 WolfRevenant

WolfRevenant
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Local time:04:08 AM

Posted 21 December 2017 - 03:46 AM

Rogue Killer report: 

 

RogueKiller V12.11.29.0 (x64) [Dec 18 2017] (Free) by Adlice Software
 
Operating System : Windows 10 (10.0.16299) 64 bits version
Started in : Normal mode
User : Nicholas [Administrator]
Started from : C:\Users\Nicholas\Desktop\RogueKiller_portable64.exe
Mode : Delete -- Date : 12/21/2017 02:03:33 (Duration : 00:33:53)
 
¤¤¤ Processes : 0 ¤¤¤
 
¤¤¤ Registry : 15 ¤¤¤
[Adw.Softcnapp] (X64) HKEY_LOCAL_MACHINE\Software\Clover -> Not selected
[Adw.Softcnapp] (X86) HKEY_LOCAL_MACHINE\Software\Clover -> Not selected
[Adw.Softcnapp] (X64) HKEY_USERS\S-1-5-21-2400751361-3771152734-1433153139-1001\Software\Clover -> Not selected
[PUP.Gen1] (X64) HKEY_USERS\S-1-5-21-2400751361-3771152734-1433153139-1001\Software\OCS -> Deleted
[Adw.Softcnapp] (X86) HKEY_USERS\S-1-5-21-2400751361-3771152734-1433153139-1001\Software\Clover -> Not selected
[PUP.Gen1] (X86) HKEY_USERS\S-1-5-21-2400751361-3771152734-1433153139-1001\Software\OCS -> Deleted
[Adw.Softcnapp] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\Clover -> Not selected
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{4be16519-1ca6-41d9-b4d0-febbd39d241d} | DhcpNameServer : 66.253.214.16 50.30.184.16 ([-][United States])  -> Replaced ()
[PUM.Dns] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\Tcpip\Parameters\Interfaces\{9ca0a125-b82e-4823-81a2-02e80ca6f5c5} | DhcpNameServer : 10.253.3.8 10.253.3.11 ([][])  -> Replaced ()
[Suspicious.Path] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules | TCP Query User{66E33D3C-37A7-4243-A305-2C2EE9D497F3}C:\users\nicholas\appdata\local\championify\app-2.1.1\championify.exe : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\users\nicholas\appdata\local\championify\app-2.1.1\championify.exe|Name=championify.exe|Desc=championify.exe|Defer=User| [-] -> Not selected
[Suspicious.Path] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules | UDP Query User{F78407CC-513F-421C-8614-7E94DDCF93E2}C:\users\nicholas\appdata\local\championify\app-2.1.1\championify.exe : v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\users\nicholas\appdata\local\championify\app-2.1.1\championify.exe|Name=championify.exe|Desc=championify.exe|Defer=User| [-] -> Not selected
[PUM.Policies] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System | ConsentPromptBehaviorAdmin : 0  -> Replaced (2)
[PUM.Policies] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System | ConsentPromptBehaviorAdmin : 0  -> Replaced (2)
[PUM.StartMenu] (X64) HKEY_USERS\S-1-5-21-2400751361-3771152734-1433153139-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced | Start_ShowMyGames : 0  -> Replaced (1)
[PUM.StartMenu] (X86) HKEY_USERS\S-1-5-21-2400751361-3771152734-1433153139-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced | Start_ShowMyGames : 0  -> Replaced (1)
 
¤¤¤ Tasks : 0 ¤¤¤
 
¤¤¤ Files : 5 ¤¤¤
[Adw.Softcnapp][File] C:\Users\Nicholas\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Clover.lnk [LNK@] C:\PROGRA~2\Clover\Clover.exe -> Not selected
[Adw.Softcnapp][File] C:\Users\Nicholas\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Clover.lnk [LNK@] C:\PROGRA~2\Clover\Clover.exe -> Not selected
[Adw.Softcnapp][Folder] C:\Users\Nicholas\AppData\Local\Clover -> Not selected
[Adw.Softcnapp][Folder] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Clover -> Not selected
[Adw.Softcnapp][Folder] C:\Program Files (x86)\Clover -> Not selected
 
¤¤¤ WMI : 0 ¤¤¤
 
¤¤¤ Hosts File : 0 ¤¤¤
 
¤¤¤ Antirootkit : 0 (Driver: Loaded) ¤¤¤
 
¤¤¤ Web browsers : 1 ¤¤¤
[PUP.Gen0][Chrome:Addon] Default : Honey [bmnlcjabgnpnenekpadlanbbkooimhnj] -> Deleted
 
¤¤¤ MBR Check : ¤¤¤
+++++ PhysicalDrive0: Samsung SSD 840 PRO Series +++++
--- User ---
[MBR] 3003b1fc92e4f330d68e08b369d77341
[BSP] 23acc38d3f1e040472afa894fa27e6cd : Windows Vista/7/8|VT.Unknown MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 206848 | Size: 121512 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
2 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 249065472 | Size: 488 MB
User = LL1 ... OK
User = LL2 ... OK
 
+++++ PhysicalDrive1: WDC WD15EARS-22MVWB0 +++++
--- User ---
[MBR] 4567a427daa734bc44fff4d34c9b6be9
[BSP] d1d533d3d2d574e797ad7525c3ff6609 : Empty|VT.Unknown MBR Code
Partition table:
0 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 16128 | Size: 1430789 MB [Windows XP Bootstrap | Windows XP Bootloader]
User = LL1 ... OK
User = LL2 ... OK
 
+++++ PhysicalDrive2: ST3000DM001-1ER166 +++++
--- User ---
[MBR] 406181bd09afaa927ea8cee0b9ec0723
[BSP] 945753e5453918ce03e49068b1419ee1 : Windows Vista/7/8|VT.Unknown MBR Code
Partition table:
0 - Microsoft reserved partition | Offset (sectors): 34 | Size: 128 MB
1 - Basic data partition | Offset (sectors): 264192 | Size: 2861459 MB
User = LL1 ... OK
User = LL2 ... OK
 
+++++ PhysicalDrive3: ST3000DM008-2DM166 +++++
--- User ---
[MBR] 7168b7a5cfc032bf6e4210499864726f
[BSP] 73a7ecbfa5c8923dc407031646ab00b4 : Empty|VT.Unknown MBR Code
Partition table:
0 - [MAN-MOUNT] Test Partition | Offset (sectors): 63 | Size: 17414 MB
1 - Test Partition | Offset (sectors): 35664300 | Size: 100 MB
2 - Test Partition | Offset (sectors): 35873145 | Size: 2844070 MB
User = LL1 ... OK
User = LL2 ... OK


#12 WolfRevenant

WolfRevenant
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Local time:04:08 AM

Posted 21 December 2017 - 03:49 AM

ADWCleaner:

 

# AdwCleaner 7.0.5.0 - Logfile created on Thu Dec 21 08:48:21 2017
# Updated on 2017/29/11 by Malwarebytes 
# Database: 12-19-2017.1
# Running on Windows 10 Pro (X64)
# Mode: scan
 
***** [ Services ] *****
 
No malicious services found.
 
***** [ Folders ] *****
 
No malicious folders found.
 
***** [ Files ] *****
 
No malicious files found.
 
***** [ DLL ] *****
 
No malicious DLLs found.
 
***** [ WMI ] *****
 
No malicious WMI found.
 
***** [ Shortcuts ] *****
 
No malicious shortcuts found.
 
***** [ Tasks ] *****
 
No malicious tasks found.
 
***** [ Registry ] *****
 
No malicious registry entries found.
 
***** [ Firefox (and derivatives) ] *****
 
No malicious Firefox entries.
 
***** [ Chromium (and derivatives) ] *****
 
No malicious Chromium entries.
 
*************************
 
 
 
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt ##########


#13 Aura

Aura

    Bleepin' Special Ops


  • Malware Response Team
  • 19,586 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:06:08 AM

Posted 21 December 2017 - 06:53 AM

Good. Now please run a new scan with FRST and provide me a fresh set of logs. I'll look for remnants.

unite_blue.png
Security Administrator | Sysnative Windows Update Senior Analyst | Malware Hunter | @SecurityAura
My timezone UTC-05:00 (East. Coast). If I didn't reply to you within 48 hours, please send me a PM.


#14 WolfRevenant

WolfRevenant
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Local time:04:08 AM

Posted 21 December 2017 - 01:37 PM

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17-12-2017
Ran by Nicholas (administrator) on NOTAMAC (21-12-2017 12:34:46)
Running from C:\Users\Nicholas\Desktop
Loaded Profiles: Nicholas (Available Profiles: Nicholas)
Platform: Windows 10 Pro Version 1709 16299.125 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
(Creative Technology Ltd) C:\Windows\SysWOW64\CtHdaSvc.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
() C:\Program Files (x86)\GIGABYTE\AppCenter\AdjustService.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Rivet Networks) C:\Program Files\Killer Networking\Network Manager\KillerService.exe
(GIGA-BYTE TECHNOLOGY CO., LTD.) C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\OcButtonService.exe
(Seagate) C:\Program Files (x86)\Common Files\Seagate\Schedule2\schedul2.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Common Files\Nuance\dgnsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Guillemot Corporation) C:\Program Files (x86)\Thrustmaster\TARGET\TmService.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Microsoft Corporation) C:\Windows\System32\Locator.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.12.17007.17123-0\MsMpEng.exe
(Alcohol Soft Development Team) D:\Programs\Alcohol 120\AxAHCIServiceEx.exe
() C:\Windows\System32\PnkBstrA.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10_50.CSSQL08\MSSQL\Binn\sqlservr.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Common Files\Nuance\loggerservice.exe
(Intel® Corporation) C:\Program Files\Intel\NCS2\WMIProv\ncs2prov.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.12.17007.17123-0\NisSrv.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(GIGA-BYTE TECHNOLOGY CO., LTD.) C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\EasyTuneEngineService.exe
(Microsoft Corporation) C:\Windows\System32\SppExtComObj.Exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Integrated Clock Controller Service\ICCProxy.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(Seagate) C:\Program Files (x86)\Common Files\Seagate\Schedule2\schedhlp.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AdobeGCClient.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIconLaunch.exe
(Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Corsair Components, Inc.) C:\Program Files (x86)\CorsairLink4\CorsairLink4.exe
(Corsair Components, Inc.) C:\Program Files (x86)\CorsairLink4\CorsairLink4.Service.exe
(Rainmeter) F:\Programs\Rainmeter\Rainmeter.exe
(Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusionHookApp64.exe
(Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusionHookApp32.exe
(Flexera Software LLC.) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMWsc.exe
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation)
HKLM\...\Run: [MBCfg64] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\MBCfg64.dll,RunDLLEntry MBCfg64
HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated)
HKLM\...\Run: [Seagate Scheduler2 Service] => C:\Program Files (x86)\Common Files\Seagate\Schedule2\schedhlp.exe [400384 2015-03-12] (Seagate)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [323056 2015-11-04] (Intel Corporation)
HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [17406072 2017-01-23] (Logitech Inc.)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [297784 2017-09-11] (Apple Inc.)
HKLM-x32\...\Run: [Sound Blaster Cinema] => F:\Programs\Sound Blaster Cinema\SBCinema.exe [711680 2012-11-29] (Creative Technology Ltd)
HKLM-x32\...\Run: [UpdReg] => C:\WINDOWS\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [67896 2017-09-01] (Apple Inc.)
HKLM-x32\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\\isuspm.exe [2075480 2013-06-24] (Flexera Software LLC.)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [1103424 2013-01-10] (Acronis)
HKLM-x32\...\Run: [FireStormStartUpAutoRun] => F:\Programs\Firestorm\FireStorm.exe
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [1871344 2017-11-04] (Adobe Systems Inc.)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2383040 2016-10-12] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [EaseUS Cleanup] => D:\Programs\EaseUS Partition Master 11.0\bin\CleanUpUI.exe [1227456 2016-04-26] (CHENGDU Yiwo Tech Development Co., Ltd.)
HKLM-x32\...\Run: [EaseUS EPM Tray Agent] => D:\Programs\EaseUS Partition Master 11.0\bin\TrayPopupE\TrayTipAgentE.exe [255072 2014-11-18] ()
HKLM-x32\...\Run: [Discord] => C:\ProgramData\SquirrelMachineInstalls\Discord.exe [54332920 2017-08-25] (Discord Inc.)
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Run: [DisplayFusion] => C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [8626064 2017-11-14] (Binary Fortress Software)
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [10249048 2017-12-13] (Piriform Ltd)
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [2075480 2013-06-24] (Flexera Software LLC.)
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Run: [CorsairLink4] => C:\Program Files (x86)\CorsairLink4\CorsairLink4.exe [17064656 2016-08-31] (Corsair Components, Inc.)
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Run: [AlcoholAutomount] => D:\Programs\Alcohol 120\AxAutoMntSrv.exe [39376 2015-03-12] (Alcohol Soft Development Team)
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Run: [Discord] => C:\Users\Nicholas\AppData\Local\Discord\app-0.0.299\Discord.exe [57954808 2017-12-11] (Discord Inc.)
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Run: [Spotify Web Helper] => C:\Users\Nicholas\AppData\Roaming\Spotify\SpotifyWebHelper.exe [777840 2017-11-30] (Spotify Ltd)
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Run: [Gaijin.Net Agent] => C:\Users\Nicholas\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe [2268232 2017-10-15] (Gaijin Entertainment)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Shanling Audio Control Panel Autostart.lnk [2017-02-28]
ShortcutTarget: Shanling Audio Control Panel Autostart.lnk -> C:\Program Files\Shanling\Audio_Driver\ShanlingAudioCplApp.exe ()
Startup: C:\Users\Nicholas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk [2017-01-02]
ShortcutTarget: Rainmeter.lnk -> F:\Programs\Rainmeter\Rainmeter.exe (Rainmeter)
Startup: C:\Users\Nicholas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk [2017-12-16]
ShortcutTarget: Send to OneNote.lnk -> C:\Program Files\Microsoft Office\Office16\ONENOTEM.EXE (Microsoft Corporation)
BootExecute: autocheck autochk * bootdelete
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\Parameters: [DhcpNameServer] 75.75.75.75 75.75.76.76
Tcpip\..\Interfaces\{24d58056-abd9-41ca-a56d-f90a362cf8be}: [DhcpNameServer] 75.75.75.75 75.75.76.76
Tcpip\..\Interfaces\{a1548fa9-16f5-454c-a1f5-2066d5fb9d1e}: [DhcpNameServer] 75.75.75.75 75.75.76.76
Tcpip\..\Interfaces\{be3376fd-ddfd-487b-b28e-b716c4306034}: [DhcpNameServer] 192.168.1.1
 
Internet Explorer:
==================
BHO: GBHO.BHO -> {45d30484-7ded-43d9-957a-d2fd1f046511} -> c:\windows\system32\mscoree.dll [2017-09-29] (Microsoft Corporation)
BHO: Dragon Web Extension For Internet Explorer -> {609C0837-8DD3-4F9B-AAC5-446F36BC0353} -> D:\Programs\Nuance\Program\x64\dgnriaie_x64.dll [2014-07-12] (Nuance Communications, Inc.)
BHO: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_152\bin\ssv.dll [2017-12-18] (Oracle Corporation)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2016-02-26] (Adobe Systems Incorporated)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2017-07-11] (Microsoft Corporation)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_152\bin\jp2ssv.dll [2017-12-18] (Oracle Corporation)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2016-02-26] (Adobe Systems Incorporated)
BHO: ExplorerWatcher Class -> {F8A6CAA2-533D-4AED-9E05-8EB19A4021AB} -> C:\Program Files (x86)\Clover\TabHelper64.dll [2016-12-05] (EJIE Technology)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23] (Adobe Systems Incorporated)
BHO-x32: Dragon Web Extension For Internet Explorer -> {609C0837-8DD3-4F9B-AAC5-446F36BC0353} -> D:\Programs\Nuance\Program\dgnriaie.dll [2014-07-12] (Nuance Communications, Inc.)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2016-02-26] (Adobe Systems Incorporated)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2017-07-11] (Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2016-02-26] (Adobe Systems Incorporated)
BHO-x32: ExplorerWatcher Class -> {F8A6CAA2-533D-4AED-9E05-8EB19A4021AB} -> C:\Program Files (x86)\Clover\TabHelper32.dll [2016-12-05] (EJIE Technology)
Toolbar: HKLM - Smart Backup - {1d09c093-f71e-43c3-b948-19316cbd695e} - c:\windows\system32\mscoree.dll [2017-09-29] (Microsoft Corporation)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2016-02-26] (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2016-02-26] (Adobe Systems Incorporated)
DPF: HKLM-x32 {6C269571-C6D7-4818-BCA4-32A035E8C884} hxxp://ccfiles.creative.com/Web/softwareupdate/su/ocx/15102/CTSUEng.cab
DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab
DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://files.creative.com/Web/softwareupdate/ocx/150323/CTPID.cab
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} -  No File
Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2017-08-15] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2017-08-15] (Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} -  No File
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2017-08-15] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2017-08-15] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} -  No File
 
FireFox:
========
FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2017-11-27]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_27_0_0_187.dll [2017-12-18] ()
FF Plugin: @java.com/DTPlugin,version=11.152.2 -> C:\Program Files\Java\jre1.8.0_152\bin\dtplugin\npDeployJava1.dll [2017-12-18] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.152.2 -> C:\Program Files\Java\jre1.8.0_152\bin\plugin2\npjp2.dll [2017-12-18] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2016-10-12] (Adobe Systems)
FF Plugin: nuance.com/DgnRia2_x86_64 -> D:\Programs\Nuance\Program\x64\npDgnRia2_x64.dll [2014-07-12] (Nuance Communications, Inc.)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_187.dll [2017-12-18] ()
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation)
FF Plugin-x32: @nexon.net/NxGame -> C:\ProgramData\NexonUS\NGM\npNxGameUS.dll [No File]
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-12-05] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-12-05] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-12-14] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-12-14] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> F:\Programs\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> F:\Programs\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> F:\Programs\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> F:\Programs\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> F:\Programs\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: @wolfram.com/Mathematica -> C:\Program Files (x86)\Common Files\Wolfram Research\Browser\10.0.2.5203600\npmathplugin.dll [2014-12-02] (Wolfram Research, Inc.)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2017-11-04] (Adobe Systems Inc.)
FF Plugin-x32: Adobe Reader -> F:\Programs\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2012-12-18] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2016-10-12] (Adobe Systems)
FF Plugin-x32: adobe.com/AdobeExManDetect -> F:\Programs\Adobe\CC+CS6\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll [No File]
FF Plugin-x32: nuance.com/DgnRia2 -> D:\Programs\Nuance\Program\npDgnRia2.dll [2014-07-12] (Nuance Communications, Inc.)
 
Chrome: 
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> hxxp://www.google.com
CHR StartupUrls: Default -> "hxxp://www.google.com"
CHR Profile: C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default [2017-12-21]
CHR Extension: (Slides) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-12-21]
CHR Extension: (Magic Actions for YouTube™) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\abjcfabbhafbcdfjoecdgepllmpfceif [2017-12-20]
CHR Extension: (Docs) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-12]
CHR Extension: (Google Drive) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (YouTube) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
CHR Extension: (Honey) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmnlcjabgnpnenekpadlanbbkooimhnj [2017-12-21]
CHR Extension: (Dark Souls II - Theme) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgbmbnobncmonepjocdiaknioijhejmc [2017-12-21]
CHR Extension: (uBlock Origin) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2017-12-15]
CHR Extension: (Google Search) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-29]
CHR Extension: (Adobe Acrobat) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-03-04]
CHR Extension: (Sheets) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-12-21]
CHR Extension: (Join) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\flejfacjooompmliegamfbpjjdlhokhj [2017-09-11]
CHR Extension: (HTTPS Everywhere) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcbommkclmclpchllfjekcdonpmejbdp [2017-12-06]
CHR Extension: (Google Docs Offline) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-14]
CHR Extension: (Imagus) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\immpkjjlgappgfkkfieppnmlhakdmaab [2017-11-29]
CHR Extension: (Grammarly for Chrome) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2017-12-20]
CHR Extension: (Reddit Enhancement Suite) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbmfpngjjgdllneeigpgjifpgocmfgmb [2017-09-21]
CHR Extension: (Gmail) - C:\Users\Nicholas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-29]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
 
==================== Services (Whitelisted) ====================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [744640 2016-10-12] (Adobe Systems Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2257016 2017-08-23] (Adobe Systems, Incorporated)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2017-09-07] (Apple Inc.)
S3 AppleChargerSrv; C:\WINDOWS\System32\AppleChargerSrv.exe [31272 2010-04-06] ()
R2 AxVirtualAHCISrv; D:\Programs\Alcohol 120\AxAHCIServiceEx.exe [99712 2015-12-04] (Alcohol Soft Development Team)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6998536 2017-12-09] ()
R3 CLink4Service; C:\Program Files (x86)\CorsairLink4\CorsairLink4.Service.exe [83152 2016-08-31] (Corsair Components, Inc.)
R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [429056 2013-10-27] (Creative Technology Ltd) [File not signed]
R2 CtHdaSvc; C:\WINDOWS\sysWow64\CtHdaSvc.exe [113152 2017-01-09] (Creative Technology Ltd)
S2 DisplayFusionService; C:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe [5291424 2017-11-14] (Binary Fortress Software)
R2 DragonLoggerService; C:\Program Files (x86)\Common Files\Nuance\loggerservice.exe [151616 2014-11-04] (Nuance Communications, Inc.)
S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [382504 2017-10-17] (EasyAntiCheat Ltd)
R2 EasyTuneEngineService; C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\EasyTuneEngineService.exe [142656 2016-06-01] (GIGA-BYTE TECHNOLOGY CO., LTD.)
R2 gadjservice; C:\Program Files (x86)\GIGABYTE\AppCenter\AdjustService.exe [17920 2015-06-25] () [File not signed]
S3 HwmRecordService; C:\Program Files (x86)\GIGABYTE\SIV\HwmRecordService.exe [118568 2016-05-24] (GIGA-BYTE TECHNOLOGY CO., LTD.)
S2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [19440 2015-11-04] (Intel Corporation)
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\Intel® Management Engine Components\iCLS\SocketHeciServer.exe [742704 2017-10-11] (Intel® Corporation)
S2 Intel® TPM Provisioning Service; C:\Program Files\Intel\Intel® Management Engine Components\iCLS\TPMProvisioningService.exe [668472 2017-10-11] (Intel® Corporation)
R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21184 2016-07-28] (Microsoft Corporation)
S2 jhi_service; F:\Programs\Intel\DAL\jhi_service.exe [213648 2017-11-09] (Intel Corporation)
R2 Killer Service V2; C:\Program Files\Killer Networking\Network Manager\KillerService.exe [454872 2016-02-12] (Rivet Networks)
S2 LMS; F:\Programs\Intel\LMS\LMS.exe [419984 2017-11-09] (Intel Corporation)
R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [225400 2017-01-23] (Logitech Inc.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6234056 2017-11-01] (Malwarebytes)
R2 MSSQL$CSSQL08; C:\Program Files\Microsoft SQL Server\MSSQL10_50.CSSQL08\MSSQL\Binn\sqlservr.exe [62111072 2011-06-17] (Microsoft Corporation)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-15] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-15] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [463664 2017-12-05] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [460736 2017-11-15] (NVIDIA Corporation)
R2 OcButtonService; C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\OcButtonService.exe [127272 2016-05-20] (GIGA-BYTE TECHNOLOGY CO., LTD.)
S3 Origin Client Service; F:\Programs\Origin\OriginClientService.exe [2169696 2017-07-26] (Electronic Arts)
S3 Origin Web Helper Service; F:\Programs\Origin\OriginWebHelperService.exe [3149672 2017-07-26] (Electronic Arts)
S3 PAExec; C:\WINDOWS\PAExec.exe [189112 2016-08-27] (Power Admin LLC)
R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [76152 2015-10-04] ()
R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76888 2015-10-04] ()
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4329952 2017-11-26] (Microsoft Corporation)
S4 SQLAgent$CSSQL08; C:\Program Files\Microsoft SQL Server\MSSQL10_50.CSSQL08\MSSQL\Binn\SQLAGENT.EXE [431456 2011-06-17] (Microsoft Corporation)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
S3 Te.Service; F:\Programs\WinDBG\Testing\Runtimes\TAEF\Wex.Services.exe [139264 2016-07-27] (Microsoft Corporation) [File not signed]
S3 ThunderboltService; C:\Program Files (x86)\Intel\Thunderbolt Software\tbtsvc.exe [1830088 2016-01-18] (Intel Corporation)
R2 TmWinService; C:\Program Files (x86)\Thrustmaster\TARGET\TmService.exe [304640 2011-03-04] (Guillemot Corporation) [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\NisSrv.exe [356176 2017-12-07] (Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\MsMpEng.exe [105792 2017-12-07] (Microsoft Corporation)
S2 XTU3SERVICE; C:\Program Files (x86)\Intel\Intel® Extreme Tuning Utility\XtuService.exe [19192 2015-06-30] (Intel® Corporation)
 
===================== Drivers (Whitelisted) ======================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R1 AppleCharger; C:\WINDOWS\System32\DRIVERS\AppleCharger.sys [22240 2013-10-28] ()
R0 asstahci64; C:\WINDOWS\System32\drivers\asstahci64.sys [98312 2017-09-14] (Asmedia Technology)
R1 BfLwf; C:\WINDOWS\system32\DRIVERS\bwcW10x64.sys [144456 2016-02-12] (Rivet Networks, LLC.)
R3 cpuz139; C:\WINDOWS\TEMP\cpuz139\cpuz139_x64.sys [43328 2017-12-21] (CPUID)
R3 cthda; C:\WINDOWS\system32\drivers\cthda.sys [1064968 2017-01-09] (Creative Technology Ltd)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [129152 2016-04-24] (Samsung Electronics Co., Ltd.)
R3 e1dexpress; C:\WINDOWS\system32\DRIVERS\e1d65x64.sys [555592 2017-10-31] (Intel Corporation)
R3 e2xw10x64; C:\WINDOWS\System32\drivers\e2xw10x64.sys [165608 2017-10-29] (Qualcomm Atheros, Inc.)
S3 epmntdrv; C:\WINDOWS\system32\epmntdrv.sys [18016 2016-01-20] () [File not signed]
S3 epmntdrv; C:\WINDOWS\SysWOW64\epmntdrv.sys [15968 2016-01-20] () [File not signed]
S3 EuGdiDrv; C:\WINDOWS\system32\EuGdiDrv.sys [10848 2016-01-20] () [File not signed]
S3 EuGdiDrv; C:\WINDOWS\SysWOW64\EuGdiDrv.sys [10208 2016-01-20] () [File not signed]
S3 ffusb2audio; C:\WINDOWS\system32\DRIVERS\ffusb2audio.sys [127280 2013-09-25] (Focusrite Audio Engineering Limited.)
R3 FocusriteUSB; C:\WINDOWS\System32\drivers\FocusriteUSB.sys [96448 2017-11-08] (Focusrite Audio Engineering Ltd.)
R3 FocusriteUSBAudio; C:\WINDOWS\system32\drivers\FocusriteUSBAudio.sys [54464 2017-11-08] (Focusrite Audio Engineering Ltd.)
R3 FocusriteUSBSwRoot; C:\WINDOWS\System32\drivers\FocusriteUSBSwRoot.sys [97984 2017-11-08] (Focusrite Audio Engineering Ltd.)
R0 iaStorE; C:\WINDOWS\System32\drivers\iaStorE.sys [1007712 2017-10-09] (Intel Corporation)
R3 int0800; C:\WINDOWS\System32\drivers\flashud.sys [51712 2015-05-07] (Intel Corporation)
R2 iocbios2; C:\Program Files (x86)\Intel\Intel® Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [30224 2015-05-28] (Intel Corporation)
S3 KillerEth; C:\WINDOWS\System32\drivers\e2xw10x64.sys [165608 2017-10-29] (Qualcomm Atheros, Inc.)
R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech)
R3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [67736 2017-01-23] (Logitech Inc.)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [193968 2017-12-18] (Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\system32\DRIVERS\farflt.sys [110016 2017-12-21] (Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [46008 2017-12-21] (Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [253880 2017-12-21] (Malwarebytes)
S3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [94144 2017-12-17] (Malwarebytes)
S3 nhi; C:\WINDOWS\system32\DRIVERS\tbt81x.sys [125488 2016-01-21] (Intel Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_c68c1eb90f6d242e\nvlddmkm.sys [17025992 2017-12-06] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-11-15] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [50624 2017-10-10] (NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-11-27] (NVIDIA Corporation)
R0 PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [56336 2012-06-22] (Corel Corporation)
S3 RZMAELSTROMVADService; C:\WINDOWS\System32\drivers\RzMaelstromVAD.sys [32768 2014-06-09] (Windows ® Win 7 DDK provider)
S3 RZSURROUNDVADService; C:\WINDOWS\System32\drivers\RzSurroundVAD.sys [40640 2015-02-09] (Windows ® Win 7 DDK provider)
S3 Scarlett_UAC2Audio; C:\WINDOWS\system32\DRIVERS\Scarlett_UAC2Audio.sys [138888 2015-08-07] (Focusrite Audio Engineering Limited.)
S2 Sentinel64; C:\WINDOWS\System32\Drivers\Sentinel64.sys [145448 2009-09-17] (SafeNet, Inc.)
S3 SIVDriver; C:\WINDOWS\system32\Drivers\SIVX64.sys [171664 2016-07-14] (Ray Hinchliffe)
R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [33960 2015-09-08] (Synaptics Incorporated)
R0 sptd2; C:\WINDOWS\System32\Drivers\sptd2.sys [181816 2016-09-13] (Duplex Secure Ltd)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [221824 2016-04-24] (Samsung Electronics Co., Ltd.)
R0 tib; C:\WINDOWS\System32\DRIVERS\tib.sys [1120032 2016-02-05] (Acronis International GmbH)
S3 tib_mounter; C:\WINDOWS\system32\DRIVERS\tib_mounter.sys [183224 2016-02-05] (Acronis)
R3 TmBusEn; C:\WINDOWS\System32\drivers\TmBusEn.sys [30208 2011-01-26] (Guillemot Corporation)
R3 TmBusEn; C:\Windows\SysWOW64\drivers\TmBusEn.sys [30208 2011-01-26] (Guillemot Corporation)
S3 TmFilter; C:\WINDOWS\System32\drivers\TmFilter.sys [24576 2011-01-26] (Guillemot Corporation)
S3 TmFilter; C:\Windows\SysWOW64\drivers\TmFilter.sys [24576 2011-01-26] (Guillemot Corporation)
S3 TmHid; C:\WINDOWS\system32\DRIVERS\TmHid.sys [24704 2011-01-26] (Guillemot Corporation)
S3 TmHid; C:\Windows\SysWOW64\DRIVERS\TmHid.sys [24704 2011-01-26] (Guillemot Corporation)
S1 UsbCharger; C:\WINDOWS\System32\DRIVERS\UsbCharger.sys [22240 2013-10-24] ()
S3 vjoy; C:\WINDOWS\System32\drivers\vjoy.sys [44784 2015-05-05] (Shaul Eizikovich)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46072 2017-12-07] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [288848 2017-12-07] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [129616 2017-12-07] (Microsoft Corporation)
S3 xb1usb; C:\WINDOWS\System32\drivers\xb1usb.sys [29408 2014-05-28] (Microsoft Corporation)
R3 XSplit_Dummy; C:\WINDOWS\system32\drivers\xspltspk.sys [26200 2014-07-02] (SplitmediaLabs Limited)
R1 ZAM; C:\WINDOWS\System32\drivers\zam64.sys [203680 2017-12-18] (Zemana Ltd.)
R1 ZAM_Guard; C:\WINDOWS\System32\drivers\zamguard64.sys [203680 2017-12-16] (Zemana Ltd.)
U3 idsvc; no ImagePath
U0 Partizan; system32\drivers\Partizan.sys [X]
S3 taphss6; \SystemRoot\System32\drivers\taphss6.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2017-12-21 12:34 - 2017-12-21 12:35 - 000037131 _____ C:\Users\Nicholas\Desktop\FRST.txt
2017-12-21 12:33 - 2017-12-21 12:33 - 000000000 ___HD C:\Users\Public\Documents\AdobeGC
2017-12-21 12:33 - 2017-12-21 12:33 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2017-12-21 02:46 - 2017-12-21 02:48 - 000000000 ____D C:\AdwCleaner
2017-12-21 02:03 - 2017-12-21 02:46 - 000000000 ____D C:\ProgramData\RogueKiller
2017-12-21 02:03 - 2017-12-21 02:03 - 000028272 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
2017-12-21 02:02 - 2017-12-21 02:01 - 026878536 _____ (Adlice Software) C:\Users\Nicholas\Desktop\RogueKiller_portable64.exe
2017-12-21 02:02 - 2017-12-21 02:01 - 008172032 _____ (Malwarebytes) C:\Users\Nicholas\Desktop\AdwCleaner.exe
2017-12-18 03:48 - 2017-12-18 02:46 - 002392064 _____ (Farbar) C:\Users\Nicholas\Desktop\FRST64.exe
2017-12-18 03:34 - 2017-12-21 04:16 - 000000000 ____D C:\Users\Nicholas\AppData\Roaming\foobar2000
2017-12-18 03:34 - 2017-12-18 03:34 - 000001189 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\foobar2000.lnk
2017-12-18 03:34 - 2017-12-18 03:34 - 000000000 ____D C:\Program Files (x86)\foobar2000
2017-12-18 03:04 - 2017-12-21 12:33 - 000110016 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2017-12-18 03:04 - 2017-12-21 12:33 - 000046008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2017-12-18 03:04 - 2017-12-18 03:04 - 000193968 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2017-12-18 02:48 - 2017-12-21 12:34 - 000000000 ____D C:\FRST
2017-12-18 02:45 - 2017-12-18 02:45 - 000255928 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\5662BC94.sys
2017-12-18 02:44 - 2017-12-18 02:58 - 000000000 ____D C:\Users\Nicholas\Desktop\mbar
2017-12-18 02:34 - 2017-12-20 02:17 - 000041800 _____ (Sysinternals - www.sysinternals.com) C:\WINDOWS\system32\Drivers\PROCEXP152.SYS
2017-12-18 02:17 - 2017-12-18 02:27 - 000361398 _____ C:\WINDOWS\ntbtlog.txt
2017-12-18 01:51 - 2017-12-18 01:51 - 000203680 _____ (Zemana Ltd.) C:\WINDOWS\system32\Drivers\zam64.sys
2017-12-18 01:42 - 2017-12-18 01:42 - 000110144 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll
2017-12-17 22:41 - 2017-12-17 22:41 - 000000000 ____D C:\ProgramData\Sophos
2017-12-17 19:57 - 2016-07-14 01:14 - 000171664 _____ (Ray Hinchliffe) C:\WINDOWS\system32\Drivers\SIVX64.sys
2017-12-17 19:36 - 2017-12-17 19:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-12-17 19:36 - 2017-11-29 09:11 - 000077432 _____ C:\WINDOWS\system32\Drivers\mbae64.sys
2017-12-17 10:37 - 2017-12-17 10:37 - 000000000 ____D C:\WINDOWS\Panther
2017-12-16 16:26 - 2017-12-16 16:26 - 000000000 ____D C:\Users\Nicholas\AppData\Roaming\Cuphead
2017-12-16 16:22 - 2017-12-16 16:22 - 000006630 _____ C:\WINDOWS\SysWOW64\PARTIZAN.TXT
2017-12-16 15:53 - 2017-12-16 16:05 - 000000000 ____D C:\ProgramData\RegRun
2017-12-16 15:48 - 2017-12-16 16:08 - 000000000 ____D C:\Users\Nicholas\Documents\RegRun2
2017-12-16 15:48 - 2017-12-16 15:48 - 000000002 RSHOT C:\WINDOWS\winstart.bat
2017-12-16 15:48 - 2017-12-16 15:48 - 000000002 RSHOT C:\WINDOWS\SysWOW64\CONFIG.NT
2017-12-16 15:48 - 2017-12-16 15:48 - 000000002 RSHOT C:\WINDOWS\SysWOW64\AUTOEXEC.NT
2017-12-16 15:48 - 2015-12-22 12:43 - 000001052 _____ C:\WINDOWS\system32\Drivers\etc\hosts.old
2017-12-16 15:46 - 2017-12-16 15:46 - 000255928 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\7552FD8C.sys
2017-12-16 15:43 - 2017-12-21 12:34 - 000123401 _____ C:\WINDOWS\ZAM.krnl.trace
2017-12-16 15:43 - 2017-12-21 12:34 - 000087904 _____ C:\WINDOWS\ZAM_Guard.krnl.trace
2017-12-16 15:43 - 2017-12-16 15:43 - 000203680 _____ (Zemana Ltd.) C:\WINDOWS\system32\Drivers\zamguard64.sys
2017-12-16 15:07 - 2017-12-16 15:07 - 000000000 ____D C:\Users\Nicholas\Documents\OneNote Notebooks
2017-12-16 14:51 - 2017-12-16 14:51 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2017-12-16 14:51 - 2017-12-05 13:36 - 000137200 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
2017-12-16 14:51 - 2017-09-13 17:20 - 000798008 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2017-12-16 14:51 - 2017-09-13 17:20 - 000490296 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2017-12-16 14:51 - 2017-09-13 17:19 - 000927544 _____ C:\WINDOWS\system32\vulkan-1.dll
2017-12-16 14:51 - 2017-09-13 17:19 - 000591160 _____ C:\WINDOWS\system32\vulkaninfo.exe
2017-12-16 14:50 - 2017-12-16 14:50 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2017-12-15 21:18 - 2017-12-20 02:23 - 000004212 _____ C:\WINDOWS\System32\Tasks\CCleaner Update
2017-12-15 21:18 - 2017-12-15 21:19 - 000000000 ____D C:\ProgramData\AVAST Software
2017-12-15 10:04 - 2017-12-15 10:04 - 000002403 _____ C:\Users\Nicholas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Etcher.lnk
2017-12-15 10:04 - 2017-12-15 10:04 - 000000000 ____D C:\Users\Nicholas\AppData\Roaming\etcher
2017-12-15 09:22 - 2017-12-21 12:33 - 000253880 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2017-12-15 03:22 - 2017-12-15 03:22 - 000003376 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2400751361-3771152734-1433153139-500
2017-12-15 03:00 - 2017-12-15 03:00 - 000255928 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\533114CB.sys
2017-12-15 02:59 - 2017-12-15 03:07 - 000000000 ____D C:\ProgramData\HitmanPro
2017-12-15 02:56 - 2017-12-19 01:56 - 000000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2017-12-15 02:17 - 2017-12-18 02:21 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2017-12-15 01:32 - 2017-12-17 19:35 - 000000000 ____D C:\ProgramData\Malwarebytes
2017-12-15 01:18 - 2017-12-15 01:50 - 000000000 ____D C:\ProgramData\Alcohol Soft
2017-12-15 01:10 - 2017-12-17 19:36 - 000094144 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2017-12-15 01:09 - 2017-12-15 01:09 - 000000000 ____D C:\Program Files\Malwarebytes
2017-12-14 23:39 - 2017-12-14 23:39 - 000003646 _____ C:\WINDOWS\System32\Tasks\CreateExplorerShellUnelevatedTask
2017-12-14 22:52 - 2017-12-14 22:52 - 000031796 _____ C:\WINDOWS\system32\.crusader
2017-12-14 22:47 - 2017-12-15 02:59 - 000055232 _____ C:\WINDOWS\system32\Drivers\hitmanpro37.sys
2017-12-14 19:06 - 2017-12-14 19:07 - 000002351 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-12-14 19:06 - 2017-12-14 19:06 - 000003416 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2017-12-14 19:06 - 2017-12-14 19:06 - 000003292 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2017-12-14 18:54 - 2017-12-14 18:54 - 000000000 ___HD C:\$AV_ASW
2017-12-14 17:57 - 2017-12-14 17:57 - 000000000 ____D C:\Users\Nicholas\Documents\WPA Files
2017-12-14 16:55 - 2017-12-15 21:20 - 000061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys
2017-12-14 16:55 - 2017-12-14 16:55 - 000000000 ____D C:\Program Files\Common Files\Avast Software
2017-12-14 16:49 - 2017-12-14 17:30 - 000000000 ____D C:\WINDOWS\Minidump
2017-12-14 16:47 - 2017-12-14 16:47 - 000072816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\etssyxaf.sys
2017-12-13 18:44 - 2017-12-13 18:44 - 000000000 ____D C:\Users\Nicholas\AppData\LocalLow\WeirdBeard
2017-12-13 16:01 - 2017-12-13 16:01 - 000000000 ____D C:\Users\Nicholas\AppData\Roaming\com.sarahnorthway.rebuild3
2017-12-12 17:45 - 2017-12-15 03:20 - 000000000 __RHD C:\Users\Public\AccountPictures
2017-12-12 13:41 - 2017-12-08 00:52 - 000666112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2017-12-12 13:41 - 2017-12-07 17:34 - 001925296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2017-12-12 13:41 - 2017-12-07 17:34 - 001634288 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2017-12-12 13:41 - 2017-12-07 17:34 - 000059800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bam.sys
2017-12-12 13:41 - 2017-12-07 17:31 - 008590744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2017-12-12 13:41 - 2017-12-07 17:31 - 000779440 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2017-12-12 13:41 - 2017-12-07 17:30 - 000166296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2017-12-12 13:41 - 2017-12-07 17:28 - 000710912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2017-12-12 13:41 - 2017-12-07 17:28 - 000630752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcrt.dll
2017-12-12 13:41 - 2017-12-07 17:27 - 004504456 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2017-12-12 13:41 - 2017-12-07 17:27 - 003903784 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2017-12-12 13:41 - 2017-12-07 17:27 - 000184984 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2017-12-12 13:41 - 2017-12-07 17:26 - 007385088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2017-12-12 13:41 - 2017-12-07 17:26 - 002709200 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2017-12-12 13:41 - 2017-12-07 17:26 - 000525208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2017-12-12 13:41 - 2017-12-07 17:25 - 000374032 _____ (Microsoft Corporation) C:\WINDOWS\system32\vac.exe
2017-12-12 13:41 - 2017-12-07 17:24 - 000705944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2017-12-12 13:41 - 2017-12-07 17:24 - 000437144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2017-12-12 13:41 - 2017-12-07 17:24 - 000246168 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2017-12-12 13:41 - 2017-12-07 17:23 - 005905752 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2017-12-12 13:41 - 2017-12-07 17:23 - 000677272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2017-12-12 13:41 - 2017-12-07 17:22 - 001003104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2017-12-12 13:41 - 2017-12-07 17:22 - 000979352 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2017-12-12 13:41 - 2017-12-07 17:22 - 000137544 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2017-12-12 13:41 - 2017-12-07 17:22 - 000129432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvsocket.sys
2017-12-12 13:41 - 2017-12-07 17:21 - 007676296 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2017-12-12 13:41 - 2017-12-07 17:20 - 001170000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2017-12-12 13:41 - 2017-12-07 17:19 - 021352136 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2017-12-12 13:41 - 2017-12-07 17:16 - 001776272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2017-12-12 13:41 - 2017-12-07 17:16 - 000603920 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2017-12-12 13:41 - 2017-12-07 17:15 - 001426152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2017-12-12 13:41 - 2017-12-07 17:15 - 000721592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2017-12-12 13:41 - 2017-12-07 17:14 - 000571288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2017-12-12 13:41 - 2017-12-07 17:12 - 000401304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2017-12-12 13:41 - 2017-12-07 17:10 - 000362904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2017-12-12 13:41 - 2017-12-07 16:58 - 000123512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2017-12-12 13:41 - 2017-12-07 16:57 - 000649304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2017-12-12 13:41 - 2017-12-07 16:56 - 001528904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2017-12-12 13:41 - 2017-12-07 16:55 - 001490328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2017-12-12 13:41 - 2017-12-07 16:55 - 000097144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll
2017-12-12 13:41 - 2017-12-07 16:39 - 006092664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2017-12-12 13:41 - 2017-12-07 16:37 - 001145104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2017-12-12 13:41 - 2017-12-07 16:36 - 000769096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcrt.dll
2017-12-12 13:41 - 2017-12-07 16:34 - 003484840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2017-12-12 13:41 - 2017-12-07 16:34 - 002192112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2017-12-12 13:41 - 2017-12-07 16:33 - 000747416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2017-12-12 13:41 - 2017-12-07 16:33 - 000592280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2017-12-12 13:41 - 2017-12-07 16:32 - 020286120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2017-12-12 13:41 - 2017-12-07 16:31 - 001522176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2017-12-12 13:41 - 2017-12-07 16:31 - 001246432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2017-12-12 13:41 - 2017-12-07 16:31 - 000982016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2017-12-12 13:41 - 2017-12-07 16:29 - 000047000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KeyboardFilterShim.dll
2017-12-12 13:41 - 2017-12-07 16:23 - 006478528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2017-12-12 13:41 - 2017-12-07 16:22 - 025245696 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2017-12-12 13:41 - 2017-12-07 16:13 - 002905600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2017-12-12 13:41 - 2017-12-07 16:13 - 001008640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2017-12-12 13:41 - 2017-12-07 16:12 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2017-12-12 13:41 - 2017-12-07 16:12 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2017-12-12 13:41 - 2017-12-07 16:12 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscript.ocx
2017-12-12 13:41 - 2017-12-07 16:11 - 003669504 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2017-12-12 13:41 - 2017-12-07 16:10 - 018916352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2017-12-12 13:41 - 2017-12-07 16:10 - 006466048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2017-12-12 13:41 - 2017-12-07 16:10 - 001313792 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2017-12-12 13:41 - 2017-12-07 16:10 - 000536064 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2017-12-12 13:41 - 2017-12-07 16:10 - 000250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2017-12-12 13:41 - 2017-12-07 16:10 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\itss.dll
2017-12-12 13:41 - 2017-12-07 16:10 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2017-12-12 13:41 - 2017-12-07 16:10 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2017-12-12 13:41 - 2017-12-07 16:09 - 001663488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\batmeter.dll
2017-12-12 13:41 - 2017-12-07 16:09 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FSClient.dll
2017-12-12 13:41 - 2017-12-07 16:09 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscript.exe
2017-12-12 13:41 - 2017-12-07 16:09 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscript.exe
2017-12-12 13:41 - 2017-12-07 16:09 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gamingtcui.dll
2017-12-12 13:41 - 2017-12-07 16:08 - 019336192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2017-12-12 13:41 - 2017-12-07 16:08 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll
2017-12-12 13:41 - 2017-12-07 16:08 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2017-12-12 13:41 - 2017-12-07 16:08 - 000369152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2017-12-12 13:41 - 2017-12-07 16:08 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrobj.dll
2017-12-12 13:41 - 2017-12-07 16:08 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2017-12-12 13:41 - 2017-12-07 16:07 - 000365568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2017-12-12 13:41 - 2017-12-07 16:07 - 000254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\PushToInstall.dll
2017-12-12 13:41 - 2017-12-07 16:07 - 000246272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2017-12-12 13:41 - 2017-12-07 16:07 - 000192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys
2017-12-12 13:41 - 2017-12-07 16:07 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\itss.dll
2017-12-12 13:41 - 2017-12-07 16:07 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2017-12-12 13:41 - 2017-12-07 16:07 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2017-12-12 13:41 - 2017-12-07 16:06 - 023652864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2017-12-12 13:41 - 2017-12-07 16:06 - 000676352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll
2017-12-12 13:41 - 2017-12-07 16:06 - 000559104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2017-12-12 13:41 - 2017-12-07 16:06 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcui.dll
2017-12-12 13:41 - 2017-12-07 16:06 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscript.exe
2017-12-12 13:41 - 2017-12-07 16:05 - 006037504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 001670656 _____ (Microsoft Corporation) C:\WINDOWS\system32\batmeter.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000559616 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000481792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000463360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000363008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrobj.dll
2017-12-12 13:41 - 2017-12-07 16:05 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscript.exe
2017-12-12 13:41 - 2017-12-07 16:05 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2017-12-12 13:41 - 2017-12-07 16:04 - 003678208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2017-12-12 13:41 - 2017-12-07 16:04 - 001498112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2017-12-12 13:41 - 2017-12-07 16:04 - 001321472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2017-12-12 13:41 - 2017-12-07 16:04 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2017-12-12 13:41 - 2017-12-07 16:03 - 002467840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2017-12-12 13:41 - 2017-12-07 16:03 - 001559552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2017-12-12 13:41 - 2017-12-07 16:03 - 001230848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2017-12-12 13:41 - 2017-12-07 16:03 - 000841728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2017-12-12 13:41 - 2017-12-07 16:03 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2017-12-12 13:41 - 2017-12-07 16:03 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2017-12-12 13:41 - 2017-12-07 16:03 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2017-12-12 13:41 - 2017-12-07 16:03 - 000403968 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2017-12-12 13:41 - 2017-12-07 16:03 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2017-12-12 13:41 - 2017-12-07 16:03 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\hascsp.dll
2017-12-12 13:41 - 2017-12-07 16:02 - 007545344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2017-12-12 13:41 - 2017-12-07 16:02 - 002864640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2017-12-12 13:41 - 2017-12-07 16:02 - 002117632 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2017-12-12 13:41 - 2017-12-07 16:02 - 000815616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2017-12-12 13:41 - 2017-12-07 16:02 - 000813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2017-12-12 13:41 - 2017-12-07 16:02 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2017-12-12 13:41 - 2017-12-07 16:01 - 008097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2017-12-12 13:41 - 2017-12-07 16:01 - 004592640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-12-12 13:41 - 2017-12-07 16:01 - 001980928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2017-12-12 13:41 - 2017-12-07 16:01 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2017-12-12 13:41 - 2017-12-07 16:01 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2017-12-12 13:41 - 2017-12-07 16:00 - 004740608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2017-12-12 13:41 - 2017-12-07 16:00 - 002862080 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2017-12-12 13:41 - 2017-12-07 16:00 - 001509888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2017-12-12 13:41 - 2017-12-07 15:59 - 003121664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.dll
2017-12-12 13:41 - 2017-12-07 15:59 - 002105856 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2017-12-12 13:41 - 2017-12-07 15:59 - 001666048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2017-12-12 13:41 - 2017-12-07 15:59 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2017-12-12 13:41 - 2017-12-07 15:59 - 000880640 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2017-12-12 13:41 - 2017-12-07 15:58 - 003478016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2017-12-12 13:41 - 2017-12-07 15:58 - 003211776 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2017-12-12 13:41 - 2017-12-07 15:58 - 001547264 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2017-12-12 13:41 - 2017-12-07 15:58 - 001353728 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2017-12-12 13:41 - 2017-12-07 15:58 - 000812032 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2017-12-12 13:41 - 2017-12-07 15:57 - 001822208 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2017-12-12 13:41 - 2017-12-07 15:57 - 001487872 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2017-12-12 13:41 - 2017-12-07 15:56 - 002666496 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2017-12-12 13:41 - 2017-12-07 15:56 - 001739264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2017-12-12 13:41 - 2017-12-07 15:56 - 000685056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2017-12-12 13:41 - 2017-12-07 15:54 - 002510336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2017-12-12 13:41 - 2017-12-07 15:54 - 001570816 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2017-12-12 13:41 - 2017-12-07 15:54 - 001160704 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2017-12-12 13:41 - 2017-11-26 14:35 - 017084416 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2017-12-12 13:41 - 2017-11-26 14:32 - 021754368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2017-12-12 13:41 - 2017-11-26 14:15 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2017-12-12 13:41 - 2017-11-26 10:43 - 000618496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2017-12-12 13:41 - 2017-11-26 07:48 - 001200536 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2017-12-12 13:41 - 2017-11-26 07:47 - 001053592 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2017-12-12 13:41 - 2017-11-26 07:45 - 001642520 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2017-12-12 13:41 - 2017-11-26 07:45 - 000319352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2017-12-12 13:41 - 2017-11-26 07:45 - 000264040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2017-12-12 13:41 - 2017-11-26 07:45 - 000198888 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2017-12-12 13:41 - 2017-11-26 07:41 - 000285080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2017-12-12 13:41 - 2017-11-26 07:38 - 001636376 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2017-12-12 13:41 - 2017-11-26 07:37 - 001277848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2017-12-12 13:41 - 2017-11-26 07:35 - 001090440 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2017-12-12 13:41 - 2017-11-26 07:35 - 000924136 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2017-12-12 13:41 - 2017-11-26 07:33 - 002395032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2017-12-12 13:41 - 2017-11-26 07:33 - 001208184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2017-12-12 13:41 - 2017-11-26 07:33 - 000471960 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2017-12-12 13:41 - 2017-11-26 07:33 - 000398744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2017-12-12 13:41 - 2017-11-26 07:32 - 000373656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2017-12-12 13:41 - 2017-11-26 07:32 - 000082840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2017-12-12 13:41 - 2017-11-26 07:31 - 000187288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2017-12-12 13:41 - 2017-11-26 07:30 - 001488792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2017-12-12 13:41 - 2017-11-26 07:29 - 003010720 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2017-12-12 13:41 - 2017-11-26 07:29 - 002573208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2017-12-12 13:41 - 2017-11-26 07:29 - 000891800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2017-12-12 13:41 - 2017-11-26 07:29 - 000840440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Perception.Stub.dll
2017-12-12 13:41 - 2017-11-26 07:29 - 000749976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2017-12-12 13:41 - 2017-11-26 07:29 - 000703536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2017-12-12 13:41 - 2017-11-26 07:29 - 000436120 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2017-12-12 13:41 - 2017-11-26 07:28 - 001259344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2017-12-12 13:41 - 2017-11-26 07:28 - 001012120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll
2017-12-12 13:41 - 2017-11-26 07:28 - 000713624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2017-12-12 13:41 - 2017-11-26 07:28 - 000495000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2017-12-12 13:41 - 2017-11-26 07:28 - 000149400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2017-12-12 13:41 - 2017-11-26 07:27 - 002446744 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2017-12-12 13:41 - 2017-11-26 07:27 - 002412168 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2017-12-12 13:41 - 2017-11-26 07:27 - 001413760 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2017-12-12 13:41 - 2017-11-26 07:27 - 000464408 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2017-12-12 13:41 - 2017-11-26 07:27 - 000230296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2017-12-12 13:41 - 2017-11-26 07:26 - 000428952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2017-12-12 13:41 - 2017-11-26 07:26 - 000048112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2017-12-12 13:41 - 2017-11-26 07:25 - 000902416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2017-12-12 13:41 - 2017-11-26 07:23 - 001694224 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2017-12-12 13:41 - 2017-11-26 07:23 - 001054280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2017-12-12 13:41 - 2017-11-26 07:23 - 000754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2017-12-12 13:41 - 2017-11-26 07:22 - 000404888 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 002220952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 001778584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 001628056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 001585376 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 001420696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 000831384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 000819096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVClient.exe
2017-12-12 13:41 - 2017-11-26 07:21 - 000813976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 000744856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 000669592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 000654048 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2017-12-12 13:41 - 2017-11-26 07:21 - 000645528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll
2017-12-12 13:41 - 2017-11-26 07:20 - 000615768 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2017-12-12 13:41 - 2017-11-26 07:20 - 000519152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2017-12-12 13:41 - 2017-11-26 06:57 - 001664000 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2017-12-12 13:41 - 2017-11-26 06:55 - 001289216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2017-12-12 13:41 - 2017-11-26 06:55 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2017-12-12 13:41 - 2017-11-26 06:55 - 000301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll
2017-12-12 13:41 - 2017-11-26 06:55 - 000211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2017-12-12 13:41 - 2017-11-26 06:55 - 000175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2017-12-12 13:41 - 2017-11-26 06:55 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceUpdateAgent.dll
2017-12-12 13:41 - 2017-11-26 06:54 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2017-12-12 13:41 - 2017-11-26 06:54 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2017-12-12 13:41 - 2017-11-26 06:48 - 012829696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2017-12-12 13:41 - 2017-11-26 06:47 - 002890240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2017-12-12 13:41 - 2017-11-26 06:43 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll
2017-12-12 13:41 - 2017-11-26 06:36 - 000204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2017-12-12 13:41 - 2017-11-26 06:36 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2017-12-12 13:41 - 2017-11-26 06:36 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SIUF.dll
2017-12-12 13:41 - 2017-11-26 06:36 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwifimp.sys
2017-12-12 13:41 - 2017-11-26 06:35 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ContentDeliveryManager.dll
2017-12-12 13:41 - 2017-11-26 06:35 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2017-12-12 13:41 - 2017-11-26 06:34 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll
2017-12-12 13:41 - 2017-11-26 06:33 - 000361984 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatializerApo.dll
2017-12-12 13:41 - 2017-11-26 06:31 - 001495040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2017-12-12 13:41 - 2017-11-26 06:31 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2017-12-12 13:41 - 2017-11-26 06:31 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2017-12-12 13:41 - 2017-11-26 06:31 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2017-12-12 13:41 - 2017-11-26 06:29 - 000474112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DictationManager.dll
2017-12-12 13:41 - 2017-11-26 06:29 - 000432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2017-12-12 13:41 - 2017-11-26 06:29 - 000424960 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2017-12-12 13:41 - 2017-11-26 06:29 - 000238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManager.dll
2017-12-12 13:41 - 2017-11-26 06:28 - 000394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2017-12-12 13:41 - 2017-11-26 06:26 - 000830464 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9on12.dll
2017-12-12 13:41 - 2017-11-26 06:26 - 000770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2017-12-12 13:41 - 2017-11-26 06:26 - 000432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2017-12-12 13:41 - 2017-11-26 06:25 - 001425408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2017-12-12 13:41 - 2017-11-26 06:25 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2017-12-12 13:41 - 2017-11-26 06:25 - 000354304 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwaApi.dll
2017-12-12 13:41 - 2017-11-26 06:25 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2017-12-12 13:41 - 2017-11-26 06:25 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe
2017-12-12 13:41 - 2017-11-26 06:23 - 000588288 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2017-12-12 13:41 - 2017-11-26 06:22 - 000720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2017-12-12 13:41 - 2017-11-26 06:19 - 001167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2017-12-12 13:41 - 2017-11-26 06:19 - 000887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2017-12-12 13:41 - 2017-11-26 06:19 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadjcsp.dll
2017-12-12 13:41 - 2017-11-26 06:18 - 003186688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2017-12-12 13:41 - 2017-11-26 06:18 - 001424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2017-12-12 13:41 - 2017-11-26 06:18 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2017-12-12 13:41 - 2017-11-26 06:17 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2017-12-12 13:41 - 2017-11-26 06:17 - 002208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2017-12-12 13:41 - 2017-11-26 06:17 - 001054720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2017-12-12 13:41 - 2017-11-26 06:08 - 017159680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-12-12 13:41 - 2017-11-26 06:05 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2017-12-12 13:41 - 2017-11-26 06:04 - 003578368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2017-12-12 13:41 - 2017-11-26 06:04 - 002596352 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2017-12-12 13:41 - 2017-11-26 06:03 - 004772352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2017-12-12 13:41 - 2017-11-26 06:03 - 002783744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2017-12-12 13:41 - 2017-11-26 06:01 - 003163648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2017-12-12 13:41 - 2017-11-26 06:00 - 000899584 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2017-12-12 13:41 - 2017-11-26 05:59 - 004814848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2017-12-12 13:41 - 2017-11-26 05:59 - 000726016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2017-12-12 13:41 - 2017-11-26 05:59 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2017-12-12 13:41 - 2017-11-26 05:59 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2017-12-12 13:41 - 2017-11-26 05:58 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2017-12-12 13:41 - 2017-11-26 05:48 - 000534528 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2017-12-12 13:41 - 2017-11-26 05:48 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\acppage.dll
2017-12-12 13:41 - 2017-11-26 05:21 - 001474680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2017-12-12 13:41 - 2017-11-26 05:21 - 001432816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2017-12-12 13:41 - 2017-11-26 05:02 - 001124760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll
2017-12-12 13:41 - 2017-11-26 05:01 - 002339296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2017-12-12 13:41 - 2017-11-26 05:01 - 000791960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2017-12-12 13:41 - 2017-11-26 05:01 - 000746904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll
2017-12-12 13:41 - 2017-11-26 05:01 - 000590944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2017-12-12 13:41 - 2017-11-26 05:01 - 000506256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll
2017-12-12 13:41 - 2017-11-26 05:01 - 000354200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2017-12-12 13:41 - 2017-11-26 05:00 - 001990160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2017-12-12 13:41 - 2017-11-26 05:00 - 000353848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2017-12-12 13:41 - 2017-11-26 04:59 - 000703568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2017-12-12 13:41 - 2017-11-26 04:58 - 001148216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2017-12-12 13:41 - 2017-11-26 04:58 - 001057824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2017-12-12 13:41 - 2017-11-26 04:57 - 001490840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2017-12-12 13:41 - 2017-11-26 04:51 - 001558856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2017-12-12 13:41 - 2017-11-26 04:51 - 000661664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2017-12-12 13:41 - 2017-11-26 04:41 - 002393600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2017-12-12 13:41 - 2017-11-26 04:41 - 001470976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2017-12-12 13:41 - 2017-11-26 04:41 - 000372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll
2017-12-12 13:41 - 2017-11-26 04:41 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2017-12-12 13:41 - 2017-11-26 04:41 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2017-12-12 13:41 - 2017-11-26 04:40 - 000160256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smartscreenps.dll
2017-12-12 13:41 - 2017-11-26 04:38 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatializerApo.dll
2017-12-12 13:41 - 2017-11-26 04:37 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2017-12-12 13:41 - 2017-11-26 04:36 - 013703168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2017-12-12 13:41 - 2017-11-26 04:36 - 000444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2017-12-12 13:41 - 2017-11-26 04:36 - 000351232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DictationManager.dll
2017-12-12 13:41 - 2017-11-26 04:36 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2017-12-12 13:41 - 2017-11-26 04:35 - 000557056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9on12.dll
2017-12-12 13:41 - 2017-11-26 04:35 - 000293888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll
2017-12-12 13:41 - 2017-11-26 04:35 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2017-12-12 13:41 - 2017-11-26 04:35 - 000242176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll
2017-12-12 13:41 - 2017-11-26 04:32 - 011923456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2017-12-12 13:41 - 2017-11-26 04:31 - 000660480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2017-12-12 13:41 - 2017-11-26 04:31 - 000456704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2017-12-12 13:41 - 2017-11-26 04:30 - 004385280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2017-12-12 13:41 - 2017-11-26 04:30 - 002859520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2017-12-12 13:41 - 2017-11-26 04:29 - 002869760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2017-12-12 13:41 - 2017-11-26 04:29 - 000823808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2017-12-12 13:41 - 2017-11-26 04:28 - 004249600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2017-12-12 13:41 - 2017-11-26 04:24 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2017-12-12 13:41 - 2017-11-26 04:24 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\acppage.dll
2017-12-12 13:41 - 2017-11-19 01:35 - 003331520 _____ C:\WINDOWS\system32\Windows.Mirage.dll
2017-12-12 13:41 - 2017-11-18 20:20 - 002491112 _____ C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2017-12-11 05:39 - 2017-12-05 15:17 - 036348400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2017-12-11 05:39 - 2017-12-05 15:17 - 029379568 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2017-12-11 05:39 - 2017-12-05 15:17 - 023267096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2017-12-11 05:39 - 2017-12-05 15:17 - 019040512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2017-12-11 05:39 - 2017-12-05 15:17 - 013255032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2017-12-11 05:39 - 2017-12-05 15:17 - 010883744 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 040238576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 013867840 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 011782096 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 004202808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 003615032 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 001331200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 001321264 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 001135464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 001102368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 001044664 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 001038496 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 000982888 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 000932424 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 000885496 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 000794576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 000741224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 000618928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 000616240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 000599536 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll
2017-12-11 05:38 - 2017-12-05 15:17 - 000506680 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2017-12-11 05:37 - 2017-12-05 15:17 - 035156368 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2017-12-11 05:36 - 2017-12-05 15:17 - 001989944 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438859.dll
2017-12-11 05:36 - 2017-12-05 15:17 - 001674736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438859.dll
2017-12-09 20:34 - 2017-12-09 20:34 - 000000000 ____D C:\ProgramData\Gaijin
2017-12-07 23:47 - 2017-12-07 23:47 - 000000000 ____D C:\Users\Nicholas\AppData\LocalLow\Imperium42 Game Studio
2017-12-07 23:16 - 2017-12-16 16:00 - 000000000 ____D C:\Program Files\FocusriteUSB
2017-12-07 23:16 - 2017-12-07 23:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Focusrite Audio Engineering Ltd
2017-12-07 23:16 - 2017-11-08 16:52 - 001805344 _____ (Microsoft Corporation) C:\WINDOWS\system32\WdfCoInstaller01011.dll
2017-12-07 23:16 - 2017-11-08 16:52 - 000097984 _____ (Focusrite Audio Engineering Ltd.) C:\WINDOWS\system32\Drivers\FocusriteUSBSwRoot.sys
2017-12-07 23:16 - 2017-11-08 16:52 - 000096448 _____ (Focusrite Audio Engineering Ltd.) C:\WINDOWS\system32\Drivers\FocusriteUSB.sys
2017-12-07 23:16 - 2017-11-08 16:52 - 000054464 _____ (Focusrite Audio Engineering Ltd.) C:\WINDOWS\system32\Drivers\FocusriteUSBAudio.sys
2017-12-07 23:02 - 2017-12-07 23:02 - 000003800 _____ C:\WINDOWS\System32\Tasks\Intel PTT EK Recertification
2017-12-07 22:10 - 2017-12-11 11:47 - 000000000 ____D C:\Users\Public\Creative
2017-12-06 01:37 - 2017-12-06 01:37 - 000000000 ____D C:\WINDOWS\PCHEALTH
2017-11-30 16:03 - 2017-12-05 15:17 - 000634224 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2017-11-30 16:03 - 2017-11-27 19:56 - 001991016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438843.dll
2017-11-30 16:03 - 2017-11-27 19:56 - 001674552 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438843.dll
2017-11-30 16:03 - 2017-11-27 19:56 - 000045496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2017-12-21 12:34 - 2016-08-08 11:18 - 000000000 ____D C:\ProgramData\CLink4
2017-12-21 12:33 - 2017-11-15 19:02 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-12-21 12:33 - 2017-04-13 13:58 - 000000000 ____D C:\ProgramData\NVIDIA
2017-12-21 12:33 - 2016-08-02 17:40 - 000026192 _____ (Windows ® Server 2003 DDK provider) C:\WINDOWS\gdrv.sys
2017-12-21 04:17 - 2017-09-29 02:45 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2017-12-21 03:39 - 2017-11-15 19:02 - 000004158 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{9DC10795-420A-4033-8E63-D1F230E8C7B1}
2017-12-21 02:50 - 2014-02-08 17:21 - 000000000 ____D C:\ProgramData\Package Cache
2017-12-21 01:25 - 2017-11-15 18:52 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2017-12-21 01:25 - 2015-06-01 13:38 - 000000000 ____D C:\ProgramData\boost_interprocess
2017-12-20 14:28 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\DeliveryOptimization
2017-12-20 14:24 - 2017-11-15 18:54 - 001041148 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-12-20 02:05 - 2017-09-29 02:45 - 034603008 _____ C:\WINDOWS\system32\config\HARDWARE
2017-12-20 01:53 - 2017-09-29 07:44 - 000000000 ____D C:\WINDOWS\INF
2017-12-19 02:02 - 2016-08-29 16:19 - 000000000 ____D C:\Users\Nicholas\AppData\LocalLow\Clover
2017-12-18 01:42 - 2015-06-10 01:14 - 000000000 ____D C:\Program Files\Java
2017-12-18 01:36 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2017-12-18 01:36 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\system32\Macromed
2017-12-18 01:19 - 2017-09-29 07:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2017-12-17 22:37 - 2017-09-29 07:46 - 000000000 ___HD C:\Program Files\WindowsApps
2017-12-17 22:37 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\AppReadiness
2017-12-17 20:01 - 2017-05-10 01:37 - 000000000 ____D C:\Users\Nicholas\Documents\TheCuriousExpedition
2017-12-17 20:01 - 2017-04-13 13:58 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2017-12-17 20:01 - 2016-01-26 16:04 - 000000000 ____D C:\Users\Nicholas\AppData\Roaming\deluge
2017-12-17 20:01 - 2015-09-13 23:33 - 000000000 ____D C:\Users\Nicholas\Documents\The Witcher 3
2017-12-17 20:01 - 2013-12-23 15:08 - 000000000 ____D C:\Program Files (x86)\Adobe
2017-12-17 10:38 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2017-12-16 14:55 - 2015-03-20 12:35 - 000000572 __RSH C:\ProgramData\ntuser.pol
2017-12-16 14:53 - 2009-07-13 21:20 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2017-12-16 14:51 - 2017-04-13 13:58 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2017-12-15 21:26 - 2017-11-15 18:58 - 000000000 ____D C:\Users\Nicholas
2017-12-15 21:18 - 2016-08-09 20:29 - 000000000 ____D C:\Program Files\CCleaner
2017-12-15 17:45 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\rescache
2017-12-15 09:58 - 2016-02-05 15:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Seagate
2017-12-15 09:56 - 2013-12-21 16:50 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-12-15 09:39 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\system32\NDF
2017-12-15 03:46 - 2017-11-15 18:52 - 005137592 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-12-15 03:45 - 2011-04-12 02:28 - 000000000 ____D C:\WINDOWS\CSC
2017-12-15 02:36 - 2013-12-26 10:27 - 000000000 ____D C:\WINDOWS\pss
2017-12-14 23:43 - 2017-09-29 07:46 - 000000000 ___RD C:\WINDOWS\PrintDialog
2017-12-14 23:30 - 2017-04-13 13:58 - 001671164 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2017-12-14 22:58 - 2016-07-21 20:00 - 000000000 ____D C:\Users\Nicholas\AppData\Roaming\discord
2017-12-14 22:33 - 2017-03-18 15:03 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2017-12-14 16:41 - 2013-12-21 17:45 - 000000000 ____D C:\Users\Nicholas\AppData\Roaming\vlc
2017-12-13 13:51 - 2017-08-08 18:35 - 000000000 ____D C:\Users\Nicholas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2017-12-12 17:45 - 2017-11-11 17:07 - 000000000 ___RD C:\Users\Nicholas\3D Objects
2017-12-12 17:43 - 2017-09-29 08:42 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2017-12-12 17:43 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\TextInput
2017-12-12 17:43 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2017-12-12 17:43 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2017-12-12 17:43 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2017-12-12 17:43 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\system32\oobe
2017-12-12 17:43 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\system32\appraiser
2017-12-12 17:43 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\ShellExperiences
2017-12-12 17:43 - 2017-09-29 07:46 - 000000000 ____D C:\WINDOWS\Provisioning
2017-12-12 17:43 - 2017-09-29 07:46 - 000000000 ____D C:\Program Files\Windows Defender
2017-12-12 17:43 - 2017-09-29 07:46 - 000000000 ____D C:\PerfLogs
2017-12-12 17:43 - 2017-09-29 02:45 - 000000000 ____D C:\WINDOWS\system32\Dism
2017-12-12 13:46 - 2013-12-21 16:38 - 000000000 ____D C:\WINDOWS\system32\MRT
2017-12-12 13:43 - 2017-10-11 12:00 - 133326408 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe
2017-12-12 13:43 - 2013-12-21 16:38 - 133326408 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-12-12 13:42 - 2017-09-29 07:42 - 001587200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2017-12-12 13:42 - 2017-09-29 07:41 - 001856000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2017-12-12 13:42 - 2017-09-29 07:41 - 000139672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2017-12-12 13:42 - 2017-09-29 07:41 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2017-12-11 13:27 - 2013-12-21 17:49 - 000000000 ____D C:\Program Files (x86)\League Of Legends
2017-12-11 09:42 - 2015-12-12 22:06 - 000000000 ____D C:\ProgramData\TEMP
2017-12-09 20:38 - 2013-12-23 15:38 - 000000000 ____D C:\Users\Nicholas\Documents\My Games
2017-12-07 23:02 - 2016-08-02 17:41 - 000000000 ____D C:\ProgramData\Intel
2017-12-07 23:02 - 2013-12-21 17:06 - 000000000 ____D C:\Program Files\Intel
2017-12-07 22:58 - 2017-02-27 15:39 - 000146054 _____ C:\WINDOWS\system32\tbt_log.txt
2017-12-06 01:37 - 2009-07-13 20:34 - 000000478 _____ C:\WINDOWS\win.ini
2017-12-05 15:17 - 2017-10-20 00:38 - 004485560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2017-12-05 15:17 - 2017-10-20 00:38 - 003817400 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2017-12-05 15:17 - 2017-10-20 00:38 - 001032688 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2017-12-05 15:17 - 2017-10-20 00:38 - 000048442 _____ C:\WINDOWS\system32\nvinfo.pb
2017-12-05 13:56 - 2017-04-13 13:58 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2017-12-05 13:32 - 2017-04-13 13:58 - 005966696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2017-12-05 13:32 - 2017-04-13 13:58 - 002589168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2017-12-05 13:32 - 2017-04-13 13:58 - 001766288 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2017-12-05 13:32 - 2017-04-13 13:58 - 000607304 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2017-12-05 13:32 - 2017-04-13 13:58 - 000450352 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2017-12-05 13:32 - 2017-04-13 13:58 - 000122768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2017-12-05 13:32 - 2017-04-13 13:58 - 000082744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2017-12-03 16:38 - 2017-09-29 07:49 - 000835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2017-12-03 16:38 - 2017-09-29 07:49 - 000177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2017-11-30 16:07 - 2017-04-13 13:58 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2017-11-30 15:59 - 2017-11-15 19:02 - 000004308 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-30 15:59 - 2017-11-15 19:02 - 000004000 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-30 15:59 - 2017-11-15 19:02 - 000003940 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-30 15:59 - 2017-11-15 19:02 - 000003894 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-30 15:59 - 2017-11-15 19:02 - 000003866 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-30 15:59 - 2017-11-15 19:02 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-30 15:59 - 2017-11-15 19:02 - 000003696 _____ C:\WINDOWS\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-30 15:59 - 2017-11-15 19:02 - 000003654 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2017-11-30 11:38 - 2017-01-15 19:21 - 000000000 ____D C:\Users\Nicholas\AppData\Roaming\Spotify
2017-11-29 16:30 - 2016-12-05 21:28 - 000002469 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk
2017-11-27 19:56 - 2017-10-20 00:38 - 001615472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll
2017-11-27 19:56 - 2017-10-20 00:38 - 000225208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2017-11-27 19:56 - 2017-10-20 00:38 - 000057792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys
2017-11-26 16:54 - 2017-01-11 21:48 - 000000000 ____D C:\Users\Nicholas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dustin Blackman
2017-11-26 16:02 - 2010-11-20 21:27 - 000545440 _____ (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2017-11-25 06:40 - 2017-04-13 13:58 - 007874971 _____ C:\WINDOWS\system32\nvcoproc.bin
 
==================== Files in the root of some directories =======
 
2015-03-10 10:30 - 2015-03-10 10:30 - 000000132 _____ () C:\Users\Nicholas\AppData\Roaming\Adobe BMP Format CS6 Prefs
2015-12-22 03:34 - 2016-12-05 19:07 - 000000033 _____ () C:\Users\Nicholas\AppData\Roaming\AdobeWLCMCache.dat
2015-07-26 11:31 - 2016-07-17 19:50 - 000000300 _____ () C:\Users\Nicholas\AppData\Roaming\BreakingPoint_Login.ini
2015-07-26 11:32 - 2016-05-09 10:16 - 000001428 _____ () C:\Users\Nicholas\AppData\Roaming\BreakingPoint_Options.ini
2015-06-10 13:32 - 2015-06-11 01:30 - 000114431 _____ () C:\Users\Nicholas\AppData\Roaming\net.telestream.wirecast.xml
2015-06-10 13:32 - 2015-06-10 13:32 - 000014543 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_AFL9067099885_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000014186 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_AFL9067099885_brandingimage_main.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000067454 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_AKAMAI_AFFILIATE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000004755 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_BAMBUSER_AFFILIATE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000004935 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_CHURCHSTREAMING_AFFILIATE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000003123 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_DACAST_AFFILIATE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000003931 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_DAILYMOTION_AFFILIATE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000003213 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_HIGH_SCHOOL_CUBE_AFFIALITE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000004356 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_MAKETV_AFFIALITE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000003439 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_MERIDIX_AFFIALITE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000003825 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_MERIDIX_AFFIALITE_ID_brandingimage_main.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000005621 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_NETBRIEFINGS_AFFIALITE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000010088 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_STREAMINGCHURCH_AFFIALITE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000004482 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_STREAMINGCHURCH_AFFIALITE_ID_brandingimage_main.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000007122 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_STREAMING_MEDIA_HOSTING_AFFILIATE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000010619 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_STREAMVU_AFFIALITE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000005241 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_STREAM_SPOT_AFFILIATE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000016966 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_STRETCH_INTERNET_AFFIALITE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000008986 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_SUNDAY_STREAMS_AFFIALITE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000003302 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_TULIX_AFFIALITE_ID_brandingimage_destination.png
2015-06-10 13:32 - 2015-06-10 13:32 - 000008683 _____ () C:\Users\Nicholas\AppData\Roaming\net_telestream_wirecast_partner_NO_ZIXI_AFFILIATE_ID_brandingimage_destination.png
2015-06-11 01:04 - 2015-06-11 01:04 - 000000116 _____ () C:\Users\Nicholas\AppData\Roaming\pc-capture-log.txt
2015-12-12 22:09 - 2016-10-12 23:48 - 000001834 _____ () C:\Users\Nicholas\AppData\Roaming\SAS7_000.DAT
2015-05-07 22:05 - 2017-08-17 17:19 - 000005318 _____ () C:\Users\Nicholas\AppData\Roaming\SpeedRunnersLog.txt
2015-05-08 00:12 - 2015-07-21 00:36 - 000002564 _____ () C:\Users\Nicholas\AppData\Roaming\TargetInvocationLog.txt
2016-09-12 20:44 - 2016-11-17 00:29 - 000048045 _____ () C:\Users\Nicholas\AppData\Local\CDXLExtendedShim.log
2016-08-08 10:50 - 2016-08-09 20:34 - 000000000 _____ () C:\Users\Nicholas\AppData\Local\Driver_LOM_8171Present.flag
2017-12-14 18:08 - 2017-12-14 18:08 - 000000218 _____ () C:\Users\Nicholas\AppData\Local\recently-used.xbel
2017-12-15 01:44 - 2017-12-15 01:44 - 000000017 _____ () C:\Users\Nicholas\AppData\Local\resmon.resmoncfg
 
==================== Bamital & volsnap ======================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
 
LastRegBack: 2017-12-16 18:22
 
==================== End of FRST.txt ============================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-12-2017
Ran by Nicholas (21-12-2017 12:35:25)
Running from C:\Users\Nicholas\Desktop
Windows 10 Pro Version 1709 16299.125 (X64) (2017-11-16 01:04:07)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-2400751361-3771152734-1433153139-500 - Administrator - Enabled)
DefaultAccount (S-1-5-21-2400751361-3771152734-1433153139-503 - Limited - Disabled)
Guest (S-1-5-21-2400751361-3771152734-1433153139-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2400751361-3771152734-1433153139-1009 - Limited - Enabled)
Nicholas (S-1-5-21-2400751361-3771152734-1433153139-1001 - Administrator - Enabled) => C:\Users\Nicholas
WDAGUtilityAccount (S-1-5-21-2400751361-3771152734-1433153139-504 - Limited - Disabled)
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
@BIOS B16.0608.1 (HKLM-x32\...\{C9D46F25-5F9D-4E25-B24F-BC00E9EDF529}) (Version: 3.00.0000 - GIGABYTE) Hidden
@BIOS B16.0608.1 (HKLM-x32\...\InstallShield_{C9D46F25-5F9D-4E25-B24F-BC00E9EDF529}) (Version: 3.00.0000 - GIGABYTE)
3DOSD (HKLM-x32\...\{F0D1FAA5-F9F8-4524-9B65-A5BFDDD5A29B}) (Version: 1.00.0025 - GIGABYTE) Hidden
3DOSD (HKLM-x32\...\InstallShield_{F0D1FAA5-F9F8-4524-9B65-A5BFDDD5A29B}) (Version: 1.00.0025 - GIGABYTE)
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Adobe Acrobat DC (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0C0F074E4100}) (Version: 18.009.20050 - Adobe Systems Incorporated)
Adobe After Effects CC 2015 (HKLM-x32\...\{147EC100-14BE-45EF-AB42-35BAEE7D02F0}) (Version: 13.7.0 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated)
Adobe Animate CC 2015 (HKLM-x32\...\{8CEBC11D-C52F-11E5-A0D6-D44AB5E81A82}) (Version: 15.1 - Adobe Systems Incorporated)
Adobe Audition CC 2015 (HKLM-x32\...\{839A3566-AED6-4787-A849-5CBE2B1DC6AE}) (Version: 8.1.0 - Adobe Systems Incorporated)
Adobe Bridge CC (64 Bit) (HKLM-x32\...\{359F8007-6486-429C-A8C5-D67F6897C88C}) (Version: 6.2 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.9.0.327 - Adobe Systems Incorporated)
Adobe Dreamweaver CC 2015 (HKLM-x32\...\{EE2A0AA8-0386-11E5-8603-BC82F5DB1A71}) (Version: 16.1.0 - Adobe Systems Incorporated)
Adobe Edge Animate CC 2015 (HKLM-x32\...\{92AC6B8F-F962-11E4-867D-81149C0292DF}) (Version: 6.0 - Adobe Systems Incorporated)
Adobe ExtendScript Toolkit CC (HKLM-x32\...\{6297487E-3778-4F72-B458-55690418DB98}) (Version: 4.0.0.0 - Adobe Systems Incorporated)
Adobe Extension Manager CC (HKLM-x32\...\{244FD30F-63F1-49B9-9D98-1150FF4FFCB1}) (Version: 7.3.2 - Adobe Systems Incorporated)
Adobe Flash Player 27 NPAPI (HKLM-x32\...\{34D4D627-00A1-4C0D-BF68-576C146B9ED6}) (Version: 27.0.0.187 - Adobe Systems Incorporated)
Adobe Illustrator CC 2015 (HKLM-x32\...\{5680D629-B263-49CC-821E-3CEBD4507B51}) (Version: 19.2.1 - Adobe Systems Incorporated)
Adobe InCopy CC 2015 (HKLM-x32\...\{9EF1DB49-6D32-1014-93B7-EB62FA572532}) (Version: 11.0.1.105 - Adobe Systems Incorporated)
Adobe InDesign CC 2015 (HKLM-x32\...\{DBFD0312-6E55-1014-8952-E78D43BC0147}) (Version: 11.3.0.034 - Adobe Systems Incorporated)
Adobe Lightroom (HKLM-x32\...\{8048A5DF-8A70-5BE1-954B-E0FDE1BD0D0D}) (Version: 6.7 - Adobe Systems Incorporated)
Adobe Media Encoder CC 2015 (HKLM-x32\...\{0FAC7130-BEC5-47A5-8813-1D339B8326ED}) (Version: 9.0.0 - Adobe Systems Incorporated)
Adobe Muse CC 2015 (HKLM-x32\...\{84ED2B90-CBAB-11E5-B342-F3EAF3E5295A}) (Version: 2015.1.1.21 - Adobe Systems Incorporated)
Adobe Photoshop CC 2015 (HKLM-x32\...\{793C2BF7-A4FE-4608-91C9-9282C5801C21}) (Version: 16.1.2 - Adobe Systems Incorporated)
Adobe Prelude CC 2015 (HKLM-x32\...\{4D911A81-7146-470C-A48F-98479255251C}) (Version: 4.0.0 - Adobe Systems Incorporated)
Adobe Premiere Pro CC 2015 (HKLM-x32\...\{38C72D42-0672-43B1-9E05-E7631684F9A1}) (Version: 9.0.0 - Adobe Systems Incorporated)
Adobe Premiere Pro CC 2017 (HKLM-x32\...\PPRO_11_0_0) (Version: 11.0.0 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.01) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.01 - Adobe Systems Incorporated)
Adobe Scout CC (HKLM\...\{BA573BFE-83B4-11E3-93D2-D231FEB1DC81}) (Version: 1.1.3.354121 - Adobe Systems Incorporated) Hidden
Adobe SpeedGrade CC 2015 (HKLM-x32\...\{8FD7F1DB-7355-469E-A3F2-2118148D8477}) (Version: 9.1.0 - Adobe Systems Incorporated)
Adobe Update Management Tool (HKLM-x32\...\{534A7A1A-7102-4AF6-23EA-7CD279C7B625}_is1) (Version: 8.0 - PainteR)
Ambient LED (HKLM-x32\...\{BEF97B38-D1B8-45B4-A60A-AF5C1556CC72}) (Version: 1.00.1605.2501 - GIGABYTE) Hidden
Ambient LED (HKLM-x32\...\InstallShield_{BEF97B38-D1B8-45B4-A60A-AF5C1556CC72}) (Version: 1.00.1605.2501 - GIGABYTE)
APP Center (HKLM-x32\...\{D50BEE9A-0EC6-4A58-BF90-35BDC6D6495D}) (Version: 1.00.1703.2301 - GIGABYTE) Hidden
APP Center (HKLM-x32\...\InstallShield_{D50BEE9A-0EC6-4A58-BF90-35BDC6D6495D}) (Version: 1.00.1703.2301 - GIGABYTE)
Apple Application Support (32-bit) (HKLM-x32\...\{3D1290E6-1F77-46D5-A715-A56679C8D4E3}) (Version: 6.0.2 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{D0E45DEC-F4B9-4370-A9DF-66837789C2EF}) (Version: 6.0.2 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{E3C4B99B-BE71-4C27-8E3C-4FAE3C46E1D5}) (Version: 11.0.0.30 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{C1BBFD2A-BCDD-45B3-8C0B-66BD434970A8}) (Version: 2.4.8.1 - Apple Inc.)
Application Verifier x64 External Package (HKLM\...\{0115F5D3-35C7-5EF3-0C93-87C92E678D76}) (Version: 10.1.14393.33 - Microsoft) Hidden
Asmedia ASM106x SATA Host Controller Driver (HKLM-x32\...\{DF6C3726-7E53-4772-9763-E9F147769F51}) (Version: 3.1.8.0000 - Asmedia Technology)
AutoGreen (HKLM-x32\...\{CFB76B97-0C1C-4E1A-999A-DE62FA5FEB9A}) (Version: 1.0 - GIGABYTE) Hidden
AutoGreen (HKLM-x32\...\InstallShield_{CFB76B97-0C1C-4E1A-999A-DE62FA5FEB9A}) (Version: 1.0 - GIGABYTE)
Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.8.2.48475 - Electronic Arts)
Battlefield™ 1 (HKLM-x32\...\{335B50BC-6130-4BAF-9A6A-F1561270587B}) (Version: 1.0.50.33312 - Electronic Arts)
Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB)
BIOS Setup (HKLM-x32\...\{9D48202D-C767-40E7-8A4E-C14BD7328168}) (Version: 1.00.0000 - GIGABYTE) Hidden
BIOS Setup (HKLM-x32\...\InstallShield_{9D48202D-C767-40E7-8A4E-C14BD7328168}) (Version: 1.00.0000 - GIGABYTE)
bl (HKLM-x32\...\{2A075BB4-E976-4278-BF3F-E5C6945D84C0}) (Version: 1.0.0 - Your Company Name) Hidden
Blizzard App (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
BOSS Userlist Manager (HKLM-x32\...\{F0AB569C-99EF-4F4D-992D-2206E354C903}) (Version: 6.7.2 - Surazal)
Breaking Point (HKLM-x32\...\{D94AC775-62AF-4630-8292-7EB26691AAAE}) (Version: 5.0.2.9 - The Zombie Infection) Hidden
Breaking Point (HKLM-x32\...\Breaking Point 5.0.2.9) (Version: 5.0.2.9 - The Zombie Infection)
BUSB (HKLM-x32\...\{0AADC50C-C4F8-49A7-8699-AFE46875CA67}) (Version: 1.16.0304.1 - GIGABYTE)
CCleaner (HKLM\...\CCleaner) (Version: 5.38 - Piriform)
CH Control Manager Software (HKLM-x32\...\CHControlManager_is1) (Version:  - )
Championify (HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Championify) (Version: 2.1.3 - Dustin Blackman)
Clover V3.2 (HKLM-x32\...\Clover) (Version: 3.2.3.12011 - 易捷科技)
Corsair Link 4 (HKLM-x32\...\{33593361-5FB1-4D73-BA5A-9F30392BFEE8}) (Version: 4.3.0.154 - Corsair Components, Inc.) Hidden
Corsair Link 4 (HKLM-x32\...\{43242464-db63-47fb-b75c-706bc0dcd863}) (Version: 4.3.0.154 - Corsair Components, Inc.)
Corsair Link™ USB Dongle (Driver Removal) (HKLM-x32\...\SIUSBXP&1B1C&1C00) (Version:  - Corsair Memory, Inc.)
Curse (HKLM-x32\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 6.0.0.0 - Curse)
DayZ Commander (HKLM-x32\...\{B3653588-3AC0-4A1D-950F-D96531E84374}) (Version: 0.92.91 - Dotjosh Studios)
Deluge 1.3.14 (HKLM-x32\...\Deluge) (Version:  - )
Destiny 2 (HKLM-x32\...\Destiny 2) (Version:  - Blizzard Entertainment)
Discord (HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Discord) (Version: 0.0.299 - Discord Inc.)
DisplayFusion 9.1 (HKLM-x32\...\B076073A-5527-4f4f-B46B-B10692277DA2_is1) (Version: 9.1.0.0 - Binary Fortress Software)
Dragon NaturallySpeaking 13 (HKLM-x32\...\{33EA20FB-5389-4938-BA59-2BCD9BB68F41}) (Version: 13.00.000 - Nuance Communications Inc.)
EaseUS Partition Master 11.0 Trial Edition (HKLM-x32\...\EaseUS Partition Master Trial Edition_is1) (Version:  - EaseUS)
EasyTune (HKLM-x32\...\{7F635314-EE21-4E4B-A68D-69AE70BA0E9B}) (Version: 1.16.0506 - GIGABYTE) Hidden
EasyTune (HKLM-x32\...\InstallShield_{7F635314-EE21-4E4B-A68D-69AE70BA0E9B}) (Version: 1.16.0506 - GIGABYTE)
EasyTuneEngineService (HKLM-x32\...\{964575C3-5820-4642-A89A-754255B5EFE1}) (Version: 2.16.0603 - GIGABYTE) Hidden
EasyTuneEngineService (HKLM-x32\...\InstallShield_{964575C3-5820-4642-A89A-754255B5EFE1}) (Version: 2.16.0603 - GIGABYTE)
ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB)
Etcher 1.2.1 (only current user) (HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\573339af-d9e1-5dd3-804c-e0162fac1f41) (Version: 1.2.1 - Resin Inc.)
EVGA PrecisionX OC (HKLM-x32\...\{E1879431-8D6F-422D-A3CD-19773C5E8D37}) (Version: 6.0.4 - EVGA Corporation)
EZRAID  (HKLM-x32\...\{8F307CB5-FE1C-4BF3-8747-305D14161916}) (Version: 1.00.0000 - GIGABYTE) Hidden
EZRAID  (HKLM-x32\...\InstallShield_{8F307CB5-FE1C-4BF3-8747-305D14161916}) (Version: 1.00.0000 - GIGABYTE)
Fast Boot (HKLM-x32\...\{FA8FB4F2-F524-48E1-A06C-45602FBF26CD}) (Version: 1.16.0406 - GIGABYTE) Hidden
Fast Boot (HKLM-x32\...\InstallShield_{FA8FB4F2-F524-48E1-A06C-45602FBF26CD}) (Version: 1.16.0406 - GIGABYTE)
FileBot (HKLM\...\{3C2F8747-8A77-4CF9-8751-83BEA632F148}) (Version: 4.7 - Reinhard Pointner)
Focusrite USB 4.36.6.0 (HKLM\...\Focusrite USB_is1) (Version: 4.36.6.0 - Focusrite Audio Engineering Ltd.)
foobar2000 v1.3.17 (HKLM-x32\...\foobar2000) (Version: 1.3.17 - Peter Pawlowski)
GigabyteFirmwareUpdateUtility (HKLM-x32\...\{1CBA99CE-1AB3-4366-AFB4-7F7B75EBBE35}) (Version: 1.00.0000 - GIGABYTE) Hidden
GigabyteFirmwareUpdateUtility (HKLM-x32\...\InstallShield_{1CBA99CE-1AB3-4366-AFB4-7F7B75EBBE35}) (Version: 1.00.0000 - GIGABYTE)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 63.0.3239.108 - Google Inc.)
HCS Plugins version 2.2 (HKLM-x32\...\{616AF147-5061-4380-85FB-BB564D2CA8A9}_is1) (Version: 2.2 - HCS VoicePacks Ltd)
HCS VoicePacks A.S.T.R.A version 2.2 (HKLM-x32\...\{B17F2FD1-FE8F-4F03-A0E9-084A4E7FBC47}_is1) (Version: 2.2 - HCS VoicePacks Ltd)
Hearthstone (HKLM-x32\...\Hearthstone) (Version:  - Blizzard Entertainment)
Herramientas de corrección de Microsoft Office 2016: español (HKLM\...\{90160000-001F-0C0A-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Intel Extreme Tuning Utility (HKLM-x32\...\{3e93c46f-8b15-4bb9-939f-646ab7287be9}) (Version: 6.0.2.1 - Intel Corporation)
Intel Extreme Tuning Utility (HKLM-x32\...\{51B6F1D8-D460-4883-BB85-66C3BD88771B}) (Version: 6.0.2.1 - Intel Corporation) Hidden
Intel® Chipset Device Software (HKLM-x32\...\{c7f54569-0018-439c-809a-48046a4d4ebc}) (Version: 10.1.1.9 - Intel® Corporation) Hidden
Intel® Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1054 - Intel Corporation)
Intel® Network Connections 20.7.67.0 (HKLM\...\PROSetDX) (Version: 20.7.67.0 - Intel)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4364 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.8.0.1042 - Intel Corporation)
Intel® Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.47.866.0 - Intel Corporation) Hidden
Intel® Trusted Connect Services Client (HKLM-x32\...\{246c6cc0-9810-4728-9a29-28474de2eec5}) (Version: 1.47.866.0 - Intel Corporation) Hidden
Intel® Turbo Boost Technology Monitor 2.6 (HKLM\...\{6C9365EB-1F9E-4893-9196-3EC77C88D0C5}) (Version: 2.6.2.0 - Intel)
Intel® USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 2.5.0.19 - Intel Corporation)
Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\{3FD0C489-0F02-481a-A3E1-9754CD396761}) (Version:  - Intel Corporation)
Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\3FD0C489-0F02-481a-A3E1-9754CD396761) (Version:  - Intel Corporation)
Intellisense Lang Pack Mobile Extension SDK 10.0.14393.0 (HKLM-x32\...\{26D23C60-AC47-46E5-8EDF-D19F41CAB666}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
iTunes (HKLM\...\{94E81D4F-FB5A-4B29-B385-33896CC9BE7E}) (Version: 12.7.0.166 - Apple Inc.)
Java 8 Update 152 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180152F0}) (Version: 8.0.1520.16 - Oracle Corporation)
Killer Bandwidth Control Filter Driver (HKLM\...\{B7E3FD6A-264E-47A7-96C3-59BB9CFD51D0}) (Version: 1.1.57.1346 - Rivet Networks) Hidden
Killer E240x Drivers (HKLM\...\{A055CF47-FBFC-425E-9C7E-B0695525B489}) (Version: 1.1.57.1346 - Rivet Networks) Hidden
Killer Network Manager (HKLM\...\{2FF1AE25-2625-449A-AB47-E133BAB4996E}) (Version: 1.1.57.1346 - Rivet Networks) Hidden
Killer Performance Suite (HKLM-x32\...\{009DF489-4590-4579-BAB2-0136BB829E4A}) (Version: 1.1.57.1346 - Rivet Networks)
Kits Configuration Installer (HKLM-x32\...\{76825BA0-C536-C284-BAA1-9DB7A2D30D54}) (Version: 10.1.14393.33 - Microsoft) Hidden
K-Lite Codec Pack 9.3.0 (Basic) (HKLM-x32\...\KLiteCodecPack_is1) (Version: 9.3.0 - )
League of Legends (HKLM-x32\...\{79BF4901-1EC4-4726-B3C2-A7859706C6E7}) (Version: 3.0.0 - Riot Games) Hidden
League of Legends (HKLM-x32\...\League of Legends 3.0.0) (Version: 3.0.0 - Riot Games)
Logitech Camera Settings (HKLM-x32\...\LogiUCDPP) (Version: 1.1.87.0 - Logitech Europe S.A.)
Logitech Gaming Software 8.91 (HKLM\...\Logitech Gaming Software) (Version: 8.91.48 - Logitech Inc.)
Logitech Webcam Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.51 - Logitech Inc.)
LOOT version 0.11.0 (HKLM-x32\...\{BF634210-A0D4-443F-A657-0DCE38040374}_is1) (Version: 0.11.0 - LOOT Team)
Malwarebytes version 3.3.1.2183 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes)
Medieval CUE Splitter (HKLM-x32\...\{B96D2269-568B-4CBF-9332-12FAE8B158F7}) (Version: 1.2.0 - Medieval Software)
MestReNova 8.1.1-11591 (HKLM-x32\...\MestReNova) (Version: 8.1.1-11591 - Mestrelab Research S.L.)
MestReNova LITE 5.2.5-5780 (HKLM-x32\...\MestReNova LITE) (Version: 5.2.5-5780 - Mestrelab Research S.L.)
Microsoft .NET Framework 4.6.2 SDK (HKLM-x32\...\{39BEF607-44E6-472B-90C1-BD62AA2B7A3F}) (Version: 4.6.01586 - Microsoft Corporation)
Microsoft .NET Framework 4.6.2 Targeting Pack (HKLM-x32\...\{C07B4BC7-A37D-46A8-B2A3-620CC569D149}) (Version: 4.6.01586 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.30730.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{59E4543A-D49D-4489-B445-473D763C79AF}) (Version: 2.0.672.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2016 (HKLM\...\Office16.PROPLUS) (Version: 16.0.4266.1001 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\OneDriveSetup.exe) (Version: 17.3.7076.1026 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 (64-bit) (HKLM\...\Microsoft SQL Server 2008 R2) (Version:  - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Native Client (HKLM\...\{471AAD2C-9078-4DAC-BD43-FA10FB7C3FCE}) (Version: 10.51.2500.0 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Setup (English) (HKLM\...\{01078B88-2981-4F75-96B0-8B22E2D2DE03}) (Version: 10.51.2500.0 - Microsoft Corporation)
Microsoft SQL Server 2008 Setup Support Files  (HKLM\...\{B40EE88B-400A-4266-A17B-E3DE64E94431}) (Version: 10.1.2731.0 - Microsoft Corporation)
Microsoft SQL Server Browser (HKLM-x32\...\{BF9BF038-FE03-429D-9B26-2FA0FD756052}) (Version: 10.51.2500.0 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{288D79EE-A2D1-42AF-9597-B0ADCC23A8ED}) (Version: 10.51.2500.0 - Microsoft Corporation)
Microsoft Visio Professional 2016 (HKLM\...\Office16.VISPRO) (Version: 16.0.4266.1001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{d491dd9d-2eda-4d75-b504-1a201436e7fd}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{3994d355-238a-4612-af93-26d13deddef1}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 (HKLM-x32\...\{c239cea1-d49e-4e16-8e87-8c055765f7ec}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Motorola Mobile Drivers Installation 6.3.0 (HKLM\...\{759E6A2F-1F01-45EF-A0C4-22F1B56CB975}) (Version: 6.3.0 - Motorola Mobility LLC)
Mp3tag v2.83 (HKLM-x32\...\Mp3tag) (Version: 2.83 - Florian Heidenreich)
MSI Development Tools (HKLM-x32\...\{D4A10A5F-9300-3FF6-0906-71EBBDD68FDB}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
NCSOFT Game Launcher (HKLM-x32\...\NCLauncher_NCWest) (Version:  - NCSOFT)
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.63.14 - Black Tree Gaming)
Notepad++ (32-bit x86) (HKLM-x32\...\Notepad++) (Version: 7.5.1 - Notepad++ Team)
NVIDIA 3D Vision Controller Driver 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 388.59 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 388.59 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.11.0.73 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.11.0.73 - NVIDIA Corporation)
NVIDIA Graphics Driver 388.59 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 388.59 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.35.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.35.1 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 17.0.2 - OBS Project)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.7466.2038 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.7466.2038 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0409-0000-0000000FF1CE}) (Version: 16.0.7466.2038 - Microsoft Corporation) Hidden
Office Tab (HKLM\...\{DE469D65-1DEB-4058-BF95-C642D733668D}_is1) (Version: 11.00 - Addin Technology Inc.)
OffScrub_O15msi_OFFICE15.0090 (HKLM\...\OFFICE15.0090) (Version:  - )
OffScrub_O15msi_OFFICE15.00C1 (HKLM\...\OFFICE15.00C1) (Version:  - )
OffScrub_O15msi_OFFICE15.00E1 (HKLM\...\OFFICE15.00E1) (Version:  - )
OffScrub_O15msi_OFFICE15.00E2 (HKLM\...\OFFICE15.00E2) (Version:  - )
OffScrub_O15msi_OFFICE15.012B (HKLM\...\OFFICE15.012B) (Version:  - )
OffScrub_O15msi_OFFICE15.ACCESS (HKLM\...\OFFICE15.ACCESS) (Version:  - )
OffScrub_O15msi_OFFICE15.AccessSetupMetadata (HKLM\...\OFFICE15.AccessSetupMetadata) (Version:  - )
OffScrub_O15msi_OFFICE15.EXCEL (HKLM\...\OFFICE15.EXCEL) (Version:  - )
OffScrub_O15msi_OFFICE15.Groove (HKLM\...\OFFICE15.Groove) (Version:  - )
OffScrub_O15msi_OFFICE15.InfoPath (HKLM\...\OFFICE15.InfoPath) (Version:  - )
OffScrub_O15msi_OFFICE15.ONENOTE (HKLM\...\OFFICE15.ONENOTE) (Version:  - )
OffScrub_O15msi_OFFICE15.Outlook (HKLM\...\OFFICE15.Outlook) (Version:  - )
OffScrub_O15msi_OFFICE15.PowerPoint (HKLM\...\OFFICE15.PowerPoint) (Version:  - )
OffScrub_O15msi_OFFICE15.PrjMUI (HKLM\...\OFFICE15.PrjMUI) (Version:  - )
OffScrub_O15msi_OFFICE15.PrjPro (HKLM\...\OFFICE15.PrjPro) (Version:  - )
OffScrub_O15msi_OFFICE15.Proof (HKLM\...\OFFICE15.Proof) (Version:  - )
OffScrub_O15msi_OFFICE15.Proofing (HKLM\...\OFFICE15.Proofing) (Version:  - )
OffScrub_O15msi_OFFICE15.PROPLUS (HKLM\...\OFFICE15.PROPLUS) (Version:  - )
OffScrub_O15msi_OFFICE15.Publisher (HKLM\...\OFFICE15.Publisher) (Version:  - )
OffScrub_O15msi_OFFICE15.Shared (HKLM\...\OFFICE15.Shared) (Version:  - )
OffScrub_O15msi_OFFICE15.SharedSetupMetadata (HKLM\...\OFFICE15.SharedSetupMetadata) (Version:  - )
OffScrub_O15msi_OFFICE15.VisMUI (HKLM\...\OFFICE15.VisMUI) (Version:  - )
OffScrub_O15msi_OFFICE15.VISPRO (HKLM\...\OFFICE15.VISPRO) (Version:  - )
OffScrub_O15msi_OFFICE15.Word (HKLM\...\OFFICE15.Word) (Version:  - )
ON_OFF Charge 2 B15.0709.1 (HKLM-x32\...\{6B4ED6F7-BB88-4945-B0C6-01410E1BAC3A}) (Version: 1.00.0000 - GIGABYTE) Hidden
ON_OFF Charge 2 B15.0709.1 (HKLM-x32\...\InstallShield_{6B4ED6F7-BB88-4945-B0C6-01410E1BAC3A}) (Version: 1.00.0000 - GIGABYTE)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Origin (HKLM-x32\...\Origin) (Version: 10.4.16.25850 - Electronic Arts, Inc.)
Outils de vérification linguistique 2016 de Microsoft Office - Français (HKLM\...\{90160000-001F-040C-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
ph (HKLM-x32\...\{185F9795-9663-4F13-9EF9-307A282ADB5A}) (Version: 1.0.0 - Your Company Name) Hidden
PlatformPowerManagement (HKLM-x32\...\{7A6EB543-522C-4784-9DB5-4FC87522EBDF}) (Version: 1.16.0331 - GIGABYTE) Hidden
PlatformPowerManagement (HKLM-x32\...\InstallShield_{7A6EB543-522C-4784-9DB5-4FC87522EBDF}) (Version: 1.16.0331 - GIGABYTE)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.)
Rainmeter (HKLM-x32\...\Rainmeter) (Version: 4.0 r2746 - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8036 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.52 - Piriform)
RivaTuner Statistics Server 5.2.0 (HKLM-x32\...\RTSS) (Version: 5.2.0 - Unwinder)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.6.1 - Rockstar Games)
SDK Debuggers (HKLM-x32\...\{F894B529-9F16-1890-3474-0AA0AEAC6D67}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
Seagate DiscWizard (HKLM-x32\...\{FDE52A79-D081-483F-8291-BD180887644C}) (Version: 16.0.5861 - Seagate)
Service Pack 1 for SQL Server 2008 R2 (KB2528583) (64-bit) (HKLM\...\KB2528583) (Version: 10.51.2500.0 - Microsoft Corporation)
Shanling Audio Driver v2.29.0 (HKLM-x32\...\Shanling Audio Driver v2.29.0) (Version: 2.29.0 - Shanling)
ShiftWindow 1.02 (HKLM-x32\...\ShiftWindow_is1) (Version:  - Grismar)
SIV (HKLM-x32\...\{AAA057C3-10DC-4EB9-A3D6-8208C1BB7411}) (Version: 1.16.0525 - GIGABYTE) Hidden
SIV (HKLM-x32\...\InstallShield_{AAA057C3-10DC-4EB9-A3D6-8208C1BB7411}) (Version: 1.16.0525 - GIGABYTE)
Smart Backup B16.0408.1  (x64) (HKLM-x32\...\{BC1FA5CF-A36F-4C61-9638-09D0B431B006}) (Version: 1.00.0003 - GIGABYTE)
Sound Blaster Cinema (HKLM-x32\...\{8801CA65-921A-4CCC-9D63-879D1D0BAA97}) (Version: 1.00.02 - Creative Technology Limited)
Sound Blaster Recon3Di (HKLM-x32\...\{DC2EAED6-B1E4-41AA-8081-DEA2BF2E038B}) (Version: 1.03.19 - Creative Technology Limited)
Sound Blaster Recon3Di Extras (HKLM-x32\...\{536BDBFC-CA1A-4AC0-A8EB-BB2D0F1F522E}) (Version: 1.0 - Creative Technology Limited)
Spotify (HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Spotify) (Version: 1.0.68.407.g6864aaaf - Spotify AB)
SQL Server 2008 R2 SP1 Common Files (HKLM\...\{234F6B0D-10AE-4BB7-B2F3-E48D4861952D}) (Version: 10.51.2500.0 - Microsoft Corporation) Hidden
SQL Server 2008 R2 SP1 Common Files (HKLM\...\{36F70DEE-1EBF-4707-AFA2-E035EEAEBAA1}) (Version: 10.51.2500.0 - Microsoft Corporation) Hidden
SQL Server 2008 R2 SP1 Database Engine Services (HKLM\...\{FA7394B8-CE65-4F9E-AC99-F372AD365424}) (Version: 10.51.2500.0 - Microsoft Corporation) Hidden
SQL Server 2008 R2 SP1 Database Engine Services (HKLM\...\{FBD367D1-642F-47CF-B79B-9BE48FB34007}) (Version: 10.51.2500.0 - Microsoft Corporation) Hidden
SQL Server 2008 R2 SP1 Database Engine Shared (HKLM\...\{A2122A9C-A699-4365-ADF8-68FEAC125D61}) (Version: 10.51.2500.0 - Microsoft Corporation) Hidden
SQL Server 2008 R2 SP1 Database Engine Shared (HKLM\...\{C942A025-A840-4BF2-8987-849C0DD44574}) (Version: 10.51.2500.0 - Microsoft Corporation) Hidden
Sql Server Customer Experience Improvement Program (HKLM\...\{F31183CF-E10F-4DE1-BB59-6C0FF38E481E}) (Version: 10.50.1600.1 - Microsoft Corporation) Hidden
Star Citizen Launcher (HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\Star Citizen Launcher) (Version: 00.01.00.00 - Cloud Imperium Games)
Steam (HKLM-x32\...\Steam) (Version:  - Valve Corporation)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
TeraCopy 2.27 (HKLM\...\TeraCopy_is1) (Version:  - Code Sector)
The Elder Scrolls Online (HKLM-x32\...\The Elder Scrolls Online) (Version: 2.6.3.0 - Zenimax Online Studios)
Thrustmaster FFB Driver (HKLM-x32\...\{8F5A0981-5CDC-41D0-BCA2-AD3B777FC358}) (Version: 1.FFD.2015 - Thrustmaster)
Thrustmaster TARGET (HKLM-x32\...\{8036A569-CA02-4D33-A7E9-E9BC8A482E91}) (Version: 2.0.10.0 - Thrustmaster)
Thunderbolt™ Software (HKLM-x32\...\{146DE795-0B91-40E7-9991-5DC766EFB211}) (Version: 15.3.40.275 - Intel Corporation)
Titanfall™ 2 (HKLM-x32\...\{4BD80373-FEE7-45B6-8249-6E8E98717405}) (Version: 1.0.0.6 - Electronic Arts, Inc.)
Tom Clancy's Splinter Cell® Blacklist™ (HKLM-x32\...\{A6356F2F-D3E1-4D83-9AA2-72871DD0C298}) (Version: 1.00 - Ubisoft)
TSEV Skyrim LE (HKLM-x32\...\TSEV Skyrim LE_is1) (Version: 2.0.0.0 - )
Universal CRT Extension SDK (HKLM-x32\...\{F6483AD1-9703-F95E-B07B-6BB7A3DA7B71}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (HKLM-x32\...\{96FB0EE4-8F7E-595E-B5CF-BFCC6BF26014}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
Universal CRT Redistributable (HKLM-x32\...\{302A9B8D-5111-6C51-BB99-FF394C4A4255}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
Universal CRT Tools x64 (HKLM\...\{2D359C7E-59C8-79A9-5157-FE9E189F5E8A}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
Universal CRT Tools x86 (HKLM-x32\...\{71436CD5-3E63-CEE9-FC00-5124A5C9A931}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
Universal General MIDI DLS Extension SDK (HKLM-x32\...\{87F42CC0-5403-3698-87D9-3C2A04E476E1}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
Update for Skype for Business 2016 (KB4011563) 64-Bit Edition (HKLM\...\{90160000-0011-0000-1000-0000000FF1CE}_Office16.PROPLUS_{2D441C76-7795-478E-86D0-4508242BC6AE}) (Version:  - Microsoft)
Update for Skype for Business 2016 (KB4011563) 64-Bit Edition (HKLM\...\{90160000-012B-0409-1000-0000000FF1CE}_Office16.PROPLUS_{2D441C76-7795-478E-86D0-4508242BC6AE}) (Version:  - Microsoft)
VBA 7.1 (HKLM-x32\...\{4B2CD236-682C-48CC-A27E-74807C7A0E4B}) (Version: 7.1.00.00 - Microsoft Corporation) Hidden
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
VoiceAttack version 1.6.1 (HKLM-x32\...\{D6EDF6DB-029E-4A34-A3A0-D960CB0FCB2A}_is1) (Version: 1.6.1 - VoiceAttack.com)
Vulkan Run Time Libraries 1.0.61.0 (HKLM\...\VulkanRT1.0.61.0) (Version: 1.0.61.0 - LunarG, Inc.) Hidden
Warcraft III (HKLM-x32\...\Warcraft III) (Version:  - Blizzard Entertainment)
Win32DiskImager version 0.9.5 (HKLM-x32\...\{D074CE74-912A-4AD3-A0BF-3937D9D01F17}_is1) (Version: 0.9.5 - ImageWriter Developers)
WinAppDeploy (HKLM-x32\...\{1182888E-EDC9-05C5-33BD-B61DA5B1F916}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
Windows Driver Package - Corsair Components, Inc. (SIUSBXP) USB  (10/30/2015 3.6) (HKLM\...\689CB8E4310D795D383E65C05A8F13A05D92E771) (Version: 10/30/2015 3.6 - Corsair Components, Inc.)
Windows Driver Package - Focusrite USB 2.0 Audio Driver (09/25/2013 2.5.128.1) (HKLM\...\CF1FC201D237269A9CD51A3A6B14ADBF67175C32) (Version: 09/25/2013 2.5.128.1 - Focusrite)
Windows SDK AddOn (HKLM-x32\...\{45D392D2-5956-4646-9CA6-83CBF67507B6}) (Version: 10.1.0.0 - Microsoft Corporation)
Windows Software Development Kit - Windows 10.0.14393.33 (HKLM-x32\...\{f23f94c5-8bba-4202-85ad-c83d4402cdc1}) (Version: 10.1.14393.33 - Microsoft Corporation)
WinRAR 5.30 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH)
WinRT Intellisense Desktop - en-us (HKLM-x32\...\{01F53182-F1C8-8A72-5C86-B6612BDD4815}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
WinRT Intellisense Desktop - Other Languages (HKLM-x32\...\{2AC000E5-E5E6-75B7-7FC2-9ECA8C57CA98}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - en-us (HKLM-x32\...\{6DF5B5E1-A8A0-B617-AADB-31C3709A3C41}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - Other Languages (HKLM-x32\...\{1AAB8359-4433-FF39-D420-0AD429993AD7}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - en-us (HKLM-x32\...\{CB7AC790-0E8B-D6C9-CE1E-655793E7D541}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - Other Languages (HKLM-x32\...\{87775501-5259-6A7C-51A6-71C832DB7ABA}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - en-us (HKLM-x32\...\{CFD0294B-945D-62E4-7959-9B22A160496F}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - Other Languages (HKLM-x32\...\{F75FD5E5-1F33-AE2B-715A-F829F8A8F51D}) (Version: 10.1.14393.33 - Microsoft Corporation) Hidden
Wirecast (HKLM\...\{B1FA9554-8942-4C02-97EF-D2618D961CB1}) (Version: 6.0.4 - Telestream LLC)
Wolfram Extras 10.0 (5203600) (HKLM\...\A-WIN-Extras 10.0.2 5203600_is1) (Version: 10.0.2 - Wolfram Research, Inc.)
WPT Redistributables (HKLM-x32\...\{6704BD92-2F42-FE2F-AF4E-5C9D6666C75E}) (Version: 10.1.14393.33 - Microsoft) Hidden
WPTx64 (HKLM-x32\...\{3F61608E-AB68-04B1-82FF-95799F5D01CA}) (Version: 10.1.14393.33 - Microsoft) Hidden
Wrye Bash (HKLM-x32\...\Wrye Bash) (Version: 3.0.4.3 - Wrye & Wrye Bash Development Team)
WS Launcher (HKLM-x32\...\{14725476-FE57-4EF6-8A4F-F8C78AF7A08E}) (Version: 4.0.2.6 - Launcher)
XSplit Broadcaster (HKLM-x32\...\{7BC30FB1-9AA6-4B0C-8E5A-574EA5B6CB2F}) (Version: 2.3.1505.0542 - SplitmediaLabs)
Засоби перевірки правопису Microsoft Office 2016 – українська (HKLM\...\{90160000-001F-0422-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Средства проверки правописания Microsoft Office 2016 — русский (HKLM\...\{90160000-001F-0419-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-2400751361-3771152734-1433153139-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] ()
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] ()
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] ()
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => F:\Programs\7-Zip\7-zip.dll [2010-11-18] (Igor Pavlov)
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] ()
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2015-03-17] (Adobe Systems Inc.)
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll [2017-08-28] ()
ContextMenuHandlers1: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\ShellExt.dll [2017-09-29] (Microsoft Corporation)
ContextMenuHandlers1: [Mp3tagShell] -> {6351E20C-35FA-4BE3-98FB-4CABF1363E12} => F:\Programs\MP3Tag\Mp3tagShell64.dll [2017-06-23] (Florian Heidenreich)
ContextMenuHandlers1: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => D:\Programs\TeraCopy\TeraCopyExt.dll [2011-10-26] ()
ContextMenuHandlers1: [TeraCopyS64] -> {A764EEF0-D6E8-48AF-8DFA-023B1CF660A7} => D:\Programs\TeraCopy\TeraCopyExt64.dll [2011-10-26] ()
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2015-11-18] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2015-11-18] (Alexander Roshal)
ContextMenuHandlers2-x32: [AlcoholShellEx] -> {32020A01-506E-484D-A2A8-BE3CF17601C3} => D:\Programs\Alcohol 120\AxShlex.dll [2014-09-06] (Alcohol Soft Development Team)
ContextMenuHandlers2-x32: [AlcoholShellEx64] -> {AF67B665-D752-424E-9A03-C7C218F2844F} => D:\Programs\Alcohol 120\AxShlEx64.dll [2014-09-06] (Alcohol Soft Development Team)
ContextMenuHandlers2-x32: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\ShellExt.dll [2017-09-29] (Microsoft Corporation)
ContextMenuHandlers2-x32: [Mp3tagShell] -> {6351E20C-35FA-4BE3-98FB-4CABF1363E12} => F:\Programs\MP3Tag\Mp3tagShell64.dll [2017-06-23] (Florian Heidenreich)
ContextMenuHandlers2-x32: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => D:\Programs\TeraCopy\TeraCopyExt.dll [2011-10-26] ()
ContextMenuHandlers2-x32: [TeraCopyS64] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => D:\Programs\TeraCopy\TeraCopyExt.dll [2011-10-26] ()
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => F:\Programs\7-Zip\7-zip.dll [2010-11-18] (Igor Pavlov)
ContextMenuHandlers4: [EncryptionMenu] -> {A470F8CF-A1E8-4f65-8335-227475AA5C46} =>  -> No File
ContextMenuHandlers4: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\ShellExt.dll [2017-09-29] (Microsoft Corporation)
ContextMenuHandlers4: [Mp3tagShell] -> {6351E20C-35FA-4BE3-98FB-4CABF1363E12} => F:\Programs\MP3Tag\Mp3tagShell64.dll [2017-06-23] (Florian Heidenreich)
ContextMenuHandlers4: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => D:\Programs\TeraCopy\TeraCopyExt.dll [2011-10-26] ()
ContextMenuHandlers4: [TeraCopyS64] -> {A764EEF0-D6E8-48AF-8DFA-023B1CF660A7} => D:\Programs\TeraCopy\TeraCopyExt64.dll [2011-10-26] ()
ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} =>  -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} =>  -> No File
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-12-05] (NVIDIA Corporation)
ContextMenuHandlers5: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => D:\Programs\TeraCopy\TeraCopyExt.dll [2011-10-26] ()
ContextMenuHandlers5: [TeraCopyS64] -> {A764EEF0-D6E8-48AF-8DFA-023B1CF660A7} => D:\Programs\TeraCopy\TeraCopyExt64.dll [2011-10-26] ()
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-06-10] ()
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2015-03-17] (Adobe Systems Inc.)
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes)
ContextMenuHandlers6: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => D:\Programs\TeraCopy\TeraCopyExt.dll [2011-10-26] ()
ContextMenuHandlers6: [TeraCopyS64] -> {A764EEF0-D6E8-48AF-8DFA-023B1CF660A7} => D:\Programs\TeraCopy\TeraCopyExt64.dll [2011-10-26] ()
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2015-11-18] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2015-11-18] (Alexander Roshal)
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {0139956F-0A82-4169-ABDF-9AF747DF82E7} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {06A455BD-9212-4BA6-B559-DAAD38B63A5C} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {09A00323-B594-44E4-B8AF-4C24FEDF1487} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe
Task: {0EB26105-9C61-4CC8-A8C3-F9A5E9ABC021} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {13F3F62E-CC2C-40E5-80F4-A6D252D3F81B} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION
Task: {14EAD16D-98AB-41AE-A56B-BB5F5778219F} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {1638E303-8F52-4FFF-91E5-4C2094B01CCD} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {1B721A25-40F8-477B-B421-94A65F13924F} - \Microsoft\Windows\Setup\GWXTriggers\Time-3xd -> No File <==== ATTENTION
Task: {27DA66A6-19F0-4D61-8701-80AADCEEF98D} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe
Task: {2ECEFB16-2816-4724-B0E5-9CAE702EB922} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {43F785D6-C6E8-46D0-9C1D-E7CEEFF18EDB} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {44CFAF58-56C2-47CA-8170-5F97E158D49C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {466C9ABA-B4F9-429A-B202-CB332C54D63E} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {4DB3E983-D8AE-472F-A2A5-A9402981E8BA} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service when hardware is detected => sc.exe start ThunderboltService
Task: {4DBCB60F-A2F6-4F59-BE03-8D963CC2DDE5} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {4F5246E0-7999-4A35-B524-2166DDC741B5} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {5175B41B-0E89-40FE-910D-AEA4609CBB95} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {55F4D596-4FDC-42D6-8757-6810E3F18668} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {58590501-7C09-4962-A304-EA165130F6E7} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-11-15] (NVIDIA Corporation)
Task: {59A3EC7B-5EB5-4AF4-A03E-89224D6FD20F} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe
Task: {5AFCC670-3161-4ECD-8B3A-5E9990881DF4} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-11-15] (NVIDIA Corporation)
Task: {5CE531E2-9193-4926-B488-F88D97B12441} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-11-15] (NVIDIA Corporation)
Task: {5DCDFD11-C7ED-4355-AF0C-F824AB0EC726} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2017-12-12] (Microsoft Corporation)
Task: {68FA27F4-301A-4AE5-9612-606CF012F546} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-11-15] (NVIDIA Corporation)
Task: {79F8638A-CDE8-4BD3-B328-E3078E1A7E02} - System32\Tasks\Intel\Intel Telemetry 2 (x86) => C:\Program Files (x86)\Intel\Telemetry 2.0\lrio.exe [2015-05-05] (Intel Corporation)
Task: {7CDBA697-59A3-41E5-BAAD-BCF29BF501C4} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {7EE0D832-EE33-4901-BC1E-2148382D4D76} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {801407D2-283F-4ECA-9FF3-A43F6D24EFCB} - System32\Tasks\AdobeAAMUpdater-1.0-NotAMac-Nicholas => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-07-01] (Adobe Systems Incorporated)
Task: {84A52F6A-0C21-4891-BCE5-B281589B54FC} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-11-15] (NVIDIA Corporation)
Task: {85396F90-CA6E-48B2-BA85-CD32F965FBB7} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [2015-07-31] (Microsoft Corporation)
Task: {8752AD12-7F1E-4459-B20F-2A80856057FB} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {878FF307-0996-4766-87CB-DB81B906F77A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\MpCmdRun.exe [2017-12-07] (Microsoft Corporation)
Task: {87A55C30-3BDE-4477-B00B-5D37D26FFC04} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-11-15] (NVIDIA Corporation)
Task: {8A95BEDA-4D71-4F8E-AA16-09FB40544049} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\MpCmdRun.exe [2017-12-07] (Microsoft Corporation)
Task: {93DACF4B-0A9C-46F1-859A-639C2AF8713E} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {9C7E9C3E-17EF-43F7-8F15-7C71B76511A5} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {A3F5699B-42A7-4CFF-8777-C91FCC8EB31C} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {ADB698FC-DF00-412C-BA19-66A2F0DC9BFC} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2017-12-13] (Piriform Ltd)
Task: {B0CBB4B2-95F8-43BA-8407-F2F9CF96B573} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe
Task: {B19677F2-4D24-4CB1-A193-1CDC197A4217} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [2015-07-31] (Microsoft Corporation)
Task: {B308C238-8D0C-4F1C-A3BB-A510BA10F905} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {B339E3C5-12C3-403C-8324-EC028A649391} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {BB1A3A6D-9462-423C-96CC-8838B176CF5C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\MpCmdRun.exe [2017-12-07] (Microsoft Corporation)
Task: {C044A2A3-0452-48D8-A98E-77C36DF155AE} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2017-07-24] (Apple Inc.)
Task: {C2289395-0DCE-4DC5-B8A1-07CC58E7E9D6} - \Intel\Thunderbolt\Start Thunderbolt application on login if service is up -> No File <==== ATTENTION
Task: {C5EE5AB7-59E0-4585-A100-CEF81B1EC09D} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {C9039007-7EA1-4F99-B4D0-BD65F15B26AA} - \Adobe Acrobat Update Task -> No File <==== ATTENTION
Task: {CBBD6E5D-A8E9-44C9-846D-1873CFD230BC} - \Intel\Thunderbolt\Start Thunderbolt service on boot if driver is up -> No File <==== ATTENTION
Task: {D00ED2A3-2EDC-4ABC-B700-8FB28A051742} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-11-15] (NVIDIA Corporation)
Task: {D600DF64-47D8-4A5C-A693-D91DA8DA8735} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe
Task: {D720E70C-B95C-4C1C-8B6A-553E80E6637A} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-11-15] (NVIDIA Corporation)
Task: {D8B4BDF2-CCF6-41EF-BD79-5FA3103090CF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.17123-0\MpCmdRun.exe [2017-12-07] (Microsoft Corporation)
Task: {DCA7C2CB-54AD-4FC5-BD43-F03F05F7BE8D} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK
Task: {E3541972-C071-406F-A5E3-02FE79197625} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {E8653787-3A30-4B97-BC9D-0DD9732CD2A3} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {EF79BF3D-F2C0-4A9A-AA8C-554749AED57F} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {F16FFA46-0E9E-47F3-A2AB-641DF693316E} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2015-07-31] (Microsoft Corporation)
Task: {F31212C3-0ED7-438F-ADDB-0E63F31527C5} - \Intel\Thunderbolt\Start Thunderbolt application when hardware is detected -> No File <==== ATTENTION
Task: {F44DD9B3-9EAF-4346-8A5C-5A5F86EA97A6} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {F99444DA-FDCF-4BF1-A8A0-B41F7F7C4BD5} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-12-13] (Piriform Ltd)
Task: {FA1362C9-C605-473C-924F-967D7208216F} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\Intel® Management Engine Components\iCLS\IntelPTTEKRecertification.exe [2017-10-11] (Intel® Corporation)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe
 
==================== Shortcuts & WMI ========================
 
(The entries could be listed to be restored or removed.)
 
 
==================== Loaded Modules (Whitelisted) ==============
 
2017-09-29 07:41 - 2017-09-29 07:41 - 000184432 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2017-09-01 01:49 - 2017-09-01 01:49 - 000092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2017-09-01 01:49 - 2017-09-01 01:49 - 001356088 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2015-06-25 08:45 - 2015-06-25 08:45 - 000017920 _____ () C:\Program Files (x86)\GIGABYTE\AppCenter\AdjustService.exe
2017-12-17 19:36 - 2017-11-29 09:11 - 002301384 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll
2016-10-07 00:24 - 2017-11-15 19:41 - 001267136 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2015-10-04 23:05 - 2015-10-04 23:05 - 000076152 _____ () C:\WINDOWS\system32\PnkBstrA.exe
2016-01-15 17:00 - 2016-01-15 17:00 - 000152136 ____R () C:\Program Files\Intel\NCS2\Agent\AdapterAgnt.DLL
2016-06-10 01:41 - 2016-06-10 01:41 - 000491184 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll
2017-02-22 22:56 - 2017-02-22 22:56 - 008911560 _____ () C:\Program Files\Microsoft Office\Office16\1033\GrooveIntlResource.dll
2016-12-03 19:04 - 2011-10-26 17:41 - 000318976 _____ () D:\Programs\TeraCopy\TeraCopyExt64.dll
2017-08-28 18:43 - 2017-08-28 18:43 - 000230064 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll
2017-12-12 13:41 - 2017-11-26 06:23 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2017-12-12 13:41 - 2017-11-26 06:01 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2013-12-21 16:53 - 2012-11-01 11:21 - 000325120 _____ () C:\Windows\SYSTEM32\APOMgr64.DLL
2015-03-06 18:07 - 2015-03-06 18:07 - 000908568 _____ () C:\Program Files\Logitech Gaming Software\libGLESv2.dll
2017-01-23 16:19 - 2017-01-23 16:19 - 001096824 _____ () C:\Program Files\Logitech Gaming Software\platforms\qwindows.dll
2015-03-06 18:07 - 2015-03-06 18:07 - 000060184 _____ () C:\Program Files\Logitech Gaming Software\libEGL.dll
2017-01-23 16:19 - 2017-01-23 16:19 - 000241784 _____ () C:\Program Files\Logitech Gaming Software\imageformats\qjpeg.dll
2017-12-14 19:06 - 2017-12-13 20:49 - 004063064 _____ () C:\Program Files (x86)\Google\Chrome\Application\63.0.3239.108\libglesv2.dll
2017-12-14 19:06 - 2017-12-13 20:49 - 000099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\63.0.3239.108\libegl.dll
2016-10-07 00:24 - 2017-11-15 19:41 - 001040320 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2015-02-17 00:47 - 2015-02-17 00:47 - 000105472 _____ () C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\ycc.dll
2016-10-07 00:24 - 2017-11-15 19:40 - 066906560 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll
2016-08-22 12:49 - 2016-08-22 12:49 - 040523480 _____ () C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\libcef.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
AlternateDataStreams: C:\WINDOWS\system32\Drivers\etssyxaf.sys:changelist [650]
AlternateDataStreams: C:\ProgramData\TEMP:0FF263E8 [340]
AlternateDataStreams: C:\ProgramData\TEMP:58A5270D [376]
AlternateDataStreams: C:\Users\Nicholas\Cookies:1vLbYfJp9r5CqVfyLpw [2308]
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
 
==================== Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2009-07-13 20:34 - 2017-12-18 01:54 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Nicholas\AppData\Local\DisplayFusion\Wallpaper_1.png
DNS Servers: 75.75.75.75 - 75.75.76.76
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Qualcomm Atheros Killer Network Manager.lnk => C:\Windows\pss\Qualcomm Atheros Killer Network Manager.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^Nicholas^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Curse.lnk => C:\Windows\pss\Curse.lnk.Startup
MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
MSCONFIG\startupreg: BitTorrent => "C:\Users\Nicholas\AppData\Roaming\BitTorrent\BitTorrent.exe"  /MINIMIZED
MSCONFIG\startupreg: BrStsMon00 => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN
MSCONFIG\startupreg: CCleaner Monitoring => "F:\Programs\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: Cisco AnyConnect Secure Mobility Agent for Windows => "C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe" -minimized
MSCONFIG\startupreg: Overwolf => C:\Program Files (x86)\Overwolf\Overwolf.exe -silent
MSCONFIG\startupreg: Samsung Link => "F:\Programs\SamsungLink\Samsung Link\Samsung Link Tray Agent.exe"
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: uTorrent => "C:\Users\Nicholas\AppData\Roaming\uTorrent\uTorrent.exe"  /MINIMIZED
HKLM\...\StartupApproved\StartupFolder: => "Killer Network Manager.lnk"
HKLM\...\StartupApproved\StartupFolder: => "Shanling Audio Control Panel Autostart.lnk"
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run: => "RPMKickstart"
HKLM\...\StartupApproved\Run: => "WindowsDefender"
HKLM\...\StartupApproved\Run32: => "Acrobat Assistant 8.0"
HKLM\...\StartupApproved\Run32: => "AdobeCS6ServiceManager"
HKLM\...\StartupApproved\Run32: => "QuickTime Task"
HKLM\...\StartupApproved\Run32: => "Sound Blaster Cinema"
HKLM\...\StartupApproved\Run32: => "SwitchBoard"
HKLM\...\StartupApproved\Run32: => "Command Center"
HKLM\...\StartupApproved\Run32: => "DNS7reminder"
HKLM\...\StartupApproved\Run32: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "ISUSPM"
HKLM\...\StartupApproved\Run32: => "DiscWizardMonitor.exe"
HKLM\...\StartupApproved\Run32: => "Sound Blaster Recon3Di SBX Control Panel"
HKLM\...\StartupApproved\Run32: => "DualBiosRescue"
HKLM\...\StartupApproved\Run32: => "EasyTune"
HKLM\...\StartupApproved\Run32: => "EasyTuneEngineService"
HKLM\...\StartupApproved\Run32: => "PreRun"
HKLM\...\StartupApproved\Run32: => "SIV"
HKLM\...\StartupApproved\Run32: => "FireStormStartUpAutoRun"
HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud"
HKLM\...\StartupApproved\Run32: => "EaseUS Cleanup"
HKLM\...\StartupApproved\Run32: => "EaseUS EPM Tray Agent"
HKLM\...\StartupApproved\Run32: => "DriverPack Notifier"
HKLM\...\StartupApproved\Run32: => "SecurityHealth"
HKLM\...\StartupApproved\Run32: => "Discord"
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\StartupApproved\StartupFolder: => "Curse.lnk"
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\StartupApproved\StartupFolder: => "Send to OneNote.lnk"
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\StartupApproved\Run: => "uTorrent"
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\StartupApproved\Run: => "ISUSPM"
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\StartupApproved\Run: => "Spotify Web Helper"
HKU\S-1-5-21-2400751361-3771152734-1433153139-1001\...\StartupApproved\Run: => "Gaijin.Net Agent"
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [{9C37FCB1-9834-40BA-B375-22863015ECF3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6CAA00E3-B02E-43CD-9E29-290E37115B59}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{725C1E2E-679F-4B4B-964C-0FEEF0C7C88A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B3A165F0-B819-4167-9EB2-77BE78E11434}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7B1AFC2D-B664-4765-8B85-EB2F3D2684E5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E4FD43E4-258A-4094-ACE5-D33334700335}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A54EFA81-FA52-49FD-A30B-0DE26A6D4797}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F89E1DD5-2026-4BE5-BAFD-F002EC24EF79}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B06D496B-174A-42B9-B539-EAD245EADD75}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BF39F0B3-9911-4EFC-8098-2F7A562F6C79}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{886CC659-1F6F-4117-9CAD-087DC4673527}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C0E523F0-F9B8-4975-9D2F-5C0374D17CBC}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{14F581BF-71CC-4CB5-8BD7-AB263C43AEF7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0266AA25-71D2-4A5E-95B8-5B9852168FAF}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{003979F9-4FE7-4064-BF43-8A1DA3A0B640}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{34ACF46E-776C-4A6E-8CB9-CE50E1328AD4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{58D253DF-786C-4A6E-8A9B-62C6AAAE6DDB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{113FD33F-D405-4350-A37B-FD4A39A05D19}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8BBC6A02-F963-4CF2-A68E-CD55652809C6}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{59DF5000-DEBD-47DD-92A0-33E642F23857}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C6431589-56EB-4F8E-9C12-D96B9D64E709}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CB45B5A7-58ED-4983-801B-28FD61D65EA5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B994F48E-1614-4050-8282-6F394A307DB2}] => (Allow) D:\Programs\Steam\steamapps\common\GreyGoo\ClientLauncherG.exe
FirewallRules: [{E0FD18B2-623F-46D0-A17C-F3D0C49FE017}] => (Allow) D:\Programs\Steam\steamapps\common\GreyGoo\ClientLauncherG.exe
FirewallRules: [{EB162DAD-3D0F-47CE-B019-AF93D51132D9}] => (Allow) D:\Programs\Steam\steamapps\common\Oddworld New n Tasty\NNT.exe
FirewallRules: [{930ABA4C-1099-4740-87AA-C39A09F9721F}] => (Allow) D:\Programs\Steam\steamapps\common\Oddworld New n Tasty\NNT.exe
FirewallRules: [{081B8610-EAE5-4638-ADCE-BA96474C02D9}] => (Allow) D:\Programs\Steam\steamapps\common\Prototype 2\prototype2.exe
FirewallRules: [{325DA9FA-E4DB-4022-992B-B6DC6D513A11}] => (Allow) D:\Programs\Steam\steamapps\common\Prototype 2\prototype2.exe
FirewallRules: [{A8CD8508-1A2E-4771-8F8B-C9A36EC21026}] => (Allow) D:\Programs\Steam\steamapps\common\TxP\TormentorXPunisher.exe
FirewallRules: [{BE2DEEB8-3901-494C-BD19-D7BBB28B6719}] => (Allow) D:\Programs\Steam\steamapps\common\TxP\TormentorXPunisher.exe
FirewallRules: [{98A1984A-2525-4A7E-8944-E0502C95AB4B}] => (Allow) D:\Programs\Steam\steamapps\common\Wasteland 2 Director's Cut\Build\WL2.exe
FirewallRules: [{44493ABD-1233-452E-A1E7-719EDB6FA408}] => (Allow) D:\Programs\Steam\steamapps\common\Wasteland 2 Director's Cut\Build\WL2.exe
FirewallRules: [{BF2CCB3D-10C2-4B34-9671-23CA48326C2C}] => (Allow) D:\Programs\Steam\steamapps\common\Out of the Park Baseball 18\ootp18.exe
FirewallRules: [{43D8093E-5940-4291-8525-28526E9DF811}] => (Allow) D:\Programs\Steam\steamapps\common\Out of the Park Baseball 18\ootp18.exe
FirewallRules: [{281B6B93-7FA0-473A-9EF5-9AE459BD445E}] => (Allow) D:\Programs\Steam\steamapps\common\Rebuild Gangs of Deadsville\game\Rebuild3.exe
FirewallRules: [{CE4B7509-10F1-46DC-9654-1C7E16D129CC}] => (Allow) D:\Programs\Steam\steamapps\common\Rebuild Gangs of Deadsville\game\Rebuild3.exe
FirewallRules: [{BFBC2ACC-125E-43B2-B7B0-A91DD25BD433}] => (Allow) D:\Programs\Steam\steamapps\common\SimplePlanes\SimplePlanes.exe
FirewallRules: [{02F5AD4F-71FD-4314-86DC-D605DF718AEF}] => (Allow) D:\Programs\Steam\steamapps\common\SimplePlanes\SimplePlanes.exe
FirewallRules: [{1FAD181C-3451-4503-B461-5C22820B6020}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{61CCCAA0-04FB-4869-9F9E-9FF3201BA904}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3A58DFCE-FD6E-4AAF-885F-B4CC0F89E58B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E98AAF24-A7DD-4E92-860D-636B336CA53E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{20C67A25-6E0D-4258-8245-21B0D6DB416B}] => (Allow) D:\Programs\Steam\steamapps\common\Cuphead\Cuphead.exe
FirewallRules: [{768169C2-D318-4CED-9CB4-05C4727C3FE5}] => (Allow) D:\Programs\Steam\steamapps\common\Cuphead\Cuphead.exe
FirewallRules: [{C0D7D187-24B5-406C-8C76-45287A7FB298}] => (Allow) D:\Programs\Steam\steamapps\common\Nuclear Throne\nuclearthrone.exe
FirewallRules: [{E50FECE7-0107-491A-8577-85CB13C91F55}] => (Allow) D:\Programs\Steam\steamapps\common\Nuclear Throne\nuclearthrone.exe
FirewallRules: [{856975F3-405C-479A-B1C1-93657BD350B8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{332B297B-BCEA-4417-9653-32673CC13937}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BB1BFFF6-C2A3-4813-955C-22A29B18A826}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AD1C92C1-3454-4259-8D12-BDECA8AB5E14}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{39481F65-D5EF-4316-ABDC-9C95F9C992C2}] => (Allow) LPort=8356
FirewallRules: [{AF98186A-F474-44FE-A33B-DD571EEC61CD}] => (Allow) LPort=1900
FirewallRules: [{3467D445-2052-44C3-B9C9-394E3DE98EEE}] => (Allow) LPort=1900
FirewallRules: [{2348959B-CBCB-4747-B1DB-AF83916EBE80}] => (Allow) LPort=1980
FirewallRules: [{8E27B725-3836-4648-BC94-F603763C6C8B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DEDCE6C4-0E03-48BB-AF96-AFC77F1FAA9F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{950BE81F-2A68-42E7-AFF5-9E4BEFAAC79C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BB260620-1E50-4C8D-8186-A4837B9AB197}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{44C60FA8-E4F1-41A7-B5C2-829F89BDCCB4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{36E1E975-4484-456D-B8E8-394DBBE10631}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C446A25C-F631-447E-8C5B-0ACC9C847C83}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E1E10606-E4D4-4F00-BCA4-71B8816C82ED}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{82707F3A-7A55-47B2-BBED-F634B2354B48}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{517D0A67-4965-4D8B-AEF6-EB1737038885}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1CE2491C-6106-47E6-A07A-52EF86B21030}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2142F9D4-5D1F-4D3A-907F-CEC48182E820}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BF3060A3-D0A4-4D84-97DD-5A70893CC622}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{74196FBC-DDDA-46DD-BEC2-94AAE8A2D1A9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5BE7D11C-58F0-414F-9B1E-050184D364B1}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{00E4103D-E69B-4F96-ADBC-B1D89F01E764}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F447FFE1-0747-4B81-8E2B-6EB0D6F8838E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3197FF44-B505-44C2-B8F5-DE4543EADB5B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{26E4289F-ED63-46FB-B914-7C6DCBC628EE}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B31272AD-9724-4C02-8E1F-156DBDCB21BA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AD948A64-BC6B-45D9-B2B4-DFB8AE9CE110}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{A5DD549E-B6EC-4B5A-8430-117F01833248}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4D6222E0-E3A5-4257-ADF4-9F48F05EAB39}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{520703B5-394B-4408-AE98-FEEF68B2ECC7}] => (Allow) D:\Programs\Steam\steamapps\common\Crawl\Crawl.exe
FirewallRules: [{4FF79F44-165A-412D-969F-3351F3D374AA}] => (Allow) D:\Programs\Steam\steamapps\common\Crawl\Crawl.exe
FirewallRules: [{78124666-36C2-42A7-B033-126E4523C424}] => (Allow) D:\Programs\Steam\steamapps\common\Hand of Fate\Hand of Fate.exe
FirewallRules: [{B171FCCA-4189-4D1B-BBC3-388E592FE359}] => (Allow) D:\Programs\Steam\steamapps\common\Hand of Fate\Hand of Fate.exe
FirewallRules: [{DB1B3194-D487-40EA-A38C-3B819BEBBF38}] => (Allow) D:\Programs\Steam\steamapps\common\Hurtworld\HurtworldClient.exe
FirewallRules: [{7DA888DE-550E-4752-8593-928F34E025E4}] => (Allow) D:\Programs\Steam\steamapps\common\Hurtworld\HurtworldClient.exe
FirewallRules: [{7D725A02-6363-4D9F-838E-12627C32BCD3}] => (Allow) D:\Programs\Steam\steamapps\common\Hurtworld\Hurtworld.exe
FirewallRules: [{3B4E02DA-23F6-4EBB-8292-243F96B59C0A}] => (Allow) D:\Programs\Steam\steamapps\common\Hurtworld\Hurtworld.exe
FirewallRules: [{67E375AF-0E92-4ABD-B325-6937D9C5EAEE}] => (Allow) D:\Programs\Steam\steamapps\common\SatelliteReign\SatelliteReignWindows.exe
FirewallRules: [{F220ADD3-C415-491D-AEBF-E1303CFA5714}] => (Allow) D:\Programs\Steam\steamapps\common\SatelliteReign\SatelliteReignWindows.exe
FirewallRules: [{844081F8-AC22-4F48-9C55-A35A542E122F}] => (Allow) D:\Programs\Steam\steamapps\common\Screencheat\screencheat.exe
FirewallRules: [{00E86305-D1E2-4D5D-949B-4AD798E9A18D}] => (Allow) D:\Programs\Steam\steamapps\common\Screencheat\screencheat.exe
FirewallRules: [{FC4783AF-8E8E-43F6-BFA2-93B99FBB9E3F}] => (Allow) D:\Programs\Steam\steamapps\common\The Warlock of Firetop Mountain\The Warlock of Firetop Mountain.exe
FirewallRules: [{09E8F1C7-5257-47C0-9D1B-AD6EF3BC763E}] => (Allow) D:\Programs\Steam\steamapps\common\The Warlock of Firetop Mountain\The Warlock of Firetop Mountain.exe
FirewallRules: [{5DFCF175-FEDC-4D75-97D8-A1C766229B08}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{67A809D6-E37B-4C9F-9385-A3255400D4E4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{28D6BC71-ECCD-4E84-9589-37B3909B5A01}] => (Allow) F:\Programs\Steam\SteamApps\common\The Binding of Isaac Rebirth\isaac-ng.exe
FirewallRules: [{B6819595-3B81-4160-8D6E-3075F324F5BA}] => (Allow) F:\Programs\Steam\SteamApps\common\The Binding of Isaac Rebirth\isaac-ng.exe
FirewallRules: [{591FCC09-684C-4F4F-92B4-43650E3B55E3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7BD89CF7-6049-40C3-B41A-B9A9B87ECA81}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0888BE83-1315-4673-B6F0-77A72FB70F40}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9525642E-8978-4326-8FE6-A94B88D1BDB6}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F48903FF-876A-4051-95EA-9122C1EDF2D8}] => (Allow) D:\Programs\Steam\steamapps\common\WormsWMD\Worms W.M.D.exe
FirewallRules: [{8F88EC0A-AFF4-43DE-9FAE-43C330483BE8}] => (Allow) D:\Programs\Steam\steamapps\common\WormsWMD\Worms W.M.D.exe
FirewallRules: [{23FE673B-ECBF-4FFF-B3C3-ECCAE77D5D8D}] => (Allow) D:\Programs\Steam\steamapps\common\Orwell\Orwell.exe
FirewallRules: [{6048203A-AEBA-44C8-BC01-C163EF7FB807}] => (Allow) D:\Programs\Steam\steamapps\common\Orwell\Orwell.exe
FirewallRules: [{78F990F9-B066-4A47-8EB1-F21AF6B66844}] => (Allow) D:\Programs\Steam\steamapps\common\Rise of the Tomb Raider\ROTTR.exe
FirewallRules: [{83426B8D-9F7F-4D7A-B982-F1F0DCEDC186}] => (Allow) D:\Programs\Steam\steamapps\common\Rise of the Tomb Raider\ROTTR.exe
FirewallRules: [{FA065A68-D83D-43F6-962E-E19AC11A4A23}] => (Allow) D:\Programs\Steam\steamapps\common\Wargame Red Dragon\WarGame3.exe
FirewallRules: [{7DA0B624-AC94-4BBB-95C4-44F852BE7504}] => (Allow) D:\Programs\Steam\steamapps\common\Wargame Red Dragon\WarGame3.exe
FirewallRules: [{0006AB9E-A805-486B-88CF-215BB23ADE1F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FB00FF01-8778-44BA-A515-FBAF2003B232}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DA63F7D5-2326-406D-9DEF-94E7FA43A01D}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C643311D-8F1D-4FB6-92C3-A99B2C3BA12B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B24C86C1-A0C9-4613-98B1-BD56DFD86A69}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{7C360D2A-8E41-4752-A0C8-F4D7E93CDAD8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2E23861A-9D85-4EE8-AC97-072EB986ADA3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7923E566-683B-46C5-85B2-A6FC36B7A0E1}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3D02AC28-0860-4144-BB3A-5F2E0EB76BF5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{131C8A95-55A2-4723-8904-94E39F81EA22}] => (Allow) D:\Programs\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe
FirewallRules: [{516C9DA1-DE7F-477D-BCA7-04609E898737}] => (Allow) D:\Programs\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe
FirewallRules: [{477CA580-2FF0-45DE-B473-A6ACC93A4630}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{51CC2875-377B-449C-B0CA-B5CE8E9BB98D}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D72FDFB5-179E-4594-9550-4B8D7B0C23C6}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EEF15E27-7E82-48B0-9655-74DF32C0CEEC}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [UDP Query User{D1F9D8D7-BBA3-4E0D-A780-231E3B409230}D:\programs\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe] => (Allow) D:\programs\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe
FirewallRules: [TCP Query User{66D3ED59-A888-4849-B41D-7954B29836B1}D:\programs\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe] => (Allow) D:\programs\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe
FirewallRules: [{B9E511CA-618C-4E80-9749-35C48B9FB58A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AF252C20-1207-4494-98E2-AB2DB4F0107B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8BEAFE37-E324-4DEE-8D68-68682242426B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F29BB498-DC98-4CC2-A869-B2D08BDFF5A9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [UDP Query User{C59C9AF2-28BB-4708-886C-46EBBB21121F}F:\programs\deluge\deluge.exe] => (Allow) F:\programs\deluge\deluge.exe
FirewallRules: [TCP Query User{76E016E8-D0A1-44ED-8A7F-8D96053BA20E}F:\programs\deluge\deluge.exe] => (Allow) F:\programs\deluge\deluge.exe
FirewallRules: [{65F92FB0-0BAD-4A4B-9A99-33314053968C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AF3F4765-7AFE-4E7E-81A6-F20509BE8165}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2287675B-1A7F-48F3-9A55-40A77E7730E1}] => (Allow) D:\Programs\Steam\steamapps\common\Verdun\1914-1918 Series.exe
FirewallRules: [{747493C1-910F-4B2D-A2FF-EBE7B93B6C38}] => (Allow) D:\Programs\Steam\steamapps\common\Verdun\1914-1918 Series.exe
FirewallRules: [{126B987F-82FE-4344-8DC5-00A5720416DF}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{27E0C53B-6192-4972-996C-0BBC561A99AD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{090486D2-3954-4452-B3DC-E7D5E16E73E3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7DF8B555-5458-48BF-BF3F-C7D946D17763}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D8862E7D-AAA6-4361-A12E-478C4BED0582}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FE34F06F-1EA5-45ED-B30A-091710BEE9A9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [UDP Query User{B91A4313-F5EC-4F7B-8F8E-07238F577F42}F:\programs\destiny 2\destiny2.exe] => (Allow) F:\programs\destiny 2\destiny2.exe
FirewallRules: [TCP Query User{3CEB14CA-6C91-43BB-9D32-E7CE6534FA74}F:\programs\destiny 2\destiny2.exe] => (Allow) F:\programs\destiny 2\destiny2.exe
FirewallRules: [{F5752E9F-F384-4B02-94BA-E2EABFF26BA1}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{508E010E-0C1A-4837-8782-7EB32E39238E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [UDP Query User{0315ACAA-9950-4546-8E42-5CFB19B510A5}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [TCP Query User{A69830DC-248F-404F-BA10-BB5B83029669}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [{EF5DD0C5-4941-4E37-AB18-E1DE7C14DED5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E90DE09D-8802-49A4-8EC9-3909C86F233E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F7533F60-5655-45CB-AFFA-4826E9B74E20}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{FCB6A012-0D0E-4297-941A-B0417260A854}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{84518121-CB59-4707-AEE8-A8DCBC9EA88C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{E0D315D8-3517-47BC-BC12-4F8EA634C142}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{A460ABE4-521E-4DBF-B649-D4AE8AB39AAF}] => (Allow) D:\Programs\Steam\steamapps\common\DARK SOULS III\Game\DarkSoulsIII.exe
FirewallRules: [{9D485508-CA8F-4EB1-87D6-12693C2C24CC}] => (Allow) D:\Programs\Steam\steamapps\common\DARK SOULS III\Game\DarkSoulsIII.exe
FirewallRules: [{E67E1CEC-F6CA-48C4-9D80-7A44AE76D9EA}] => (Allow) D:\Programs\Steam\steamapps\common\Total War WARHAMMER\launcher\launcher.exe
FirewallRules: [{8B7E3A67-B402-4333-9ADC-7FAECBC4FD52}] => (Allow) D:\Programs\Steam\steamapps\common\Total War WARHAMMER\launcher\launcher.exe
FirewallRules: [{E5925949-B31D-4C97-8FBB-C8AE8F0BB52F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{415E8591-C167-4CE9-AB37-80752576C26E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{97BC344A-6096-499E-AEED-326FD6692C57}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DB66650E-0D7D-4501-896C-4320F888E8C2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4C64D6B8-6C1F-4FD2-92D7-736396D42377}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{38B9FC9D-C22D-46EC-9082-0151DE3AA752}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A2BC9FA1-E534-45B3-9C20-BC39815C944E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{48C9728D-FA7A-47ED-A78A-FEE8AA0B1E5B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{276AA25B-2E74-4496-BFA9-56ADD994018B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{06FED21C-A5A0-43D1-B39A-C6C000683FBD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1C6FA64D-756E-44B5-BB43-33C2AA96D4A3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{85810848-4B0B-45DF-8223-68C786AFA869}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{25E6E700-9C50-4798-9118-01A827E6E92F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3595F78A-63B0-4A47-941C-D150B764F0BD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4BC42F47-DF6A-49C9-AB49-9D7E708ACA2F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4E88E7AD-8A96-48F6-ACBD-1B9D1EA79AF3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BF23E768-81F1-4F59-AAA8-8AA2EA80EE14}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AF655213-DF38-4FB5-9F3E-B8C8F8C4AF8F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{44867A98-7BA8-4900-B49A-A672C799B6E1}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5162DD22-C810-4FC3-A0D4-4A620EA7C610}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{41E60BBB-252B-40BD-97B3-8D0196CF391C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{12F03819-B002-4774-BD3B-35997A5031F1}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DBA86507-E1F8-4FE6-8217-673C810678D3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EBBAD391-E092-477B-907E-8C6759C76BF4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A6A21D35-7C52-43F2-B472-D42183EA7D2A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{72F570B7-EC8E-4AD8-986C-7B4F444D882E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4125E5AA-AE7A-43C8-B888-D8A1403C5800}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7A24B050-3648-46F0-87B0-7799C49D9DF5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{ED8D7EA8-BB22-4A75-892D-590452FC96E4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C4927C80-6106-4D62-B87E-EE3DCB9F35F9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{727DE1A6-3DA0-4067-8BB4-CDED3D523343}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5A3D77B2-C131-4A4E-84CC-0832888CDF39}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AEEB967B-25C2-4D7A-9A3D-B4F3388F84D7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8C99252C-C5C3-4F03-847A-4A57A5470639}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4410244A-0EA5-4E03-9E08-70D5506BAE11}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2BD86D98-B182-41E5-9620-0BA4E549C125}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{55DF139B-C5D6-4A8A-BC1A-91B47084E6FD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{02721C58-9C08-4BE7-87BF-C0AFC5846EF9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7CCCDE8B-3B18-4EA6-A900-ABBAF3754F2C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C3A01396-4CDA-4BB2-8172-024CF18EA62B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{14482910-7BCF-4FFE-BFC7-3615581AAB87}] => (Allow) D:\Programs\OriginGames\Battlefield 1\bf1.exe
FirewallRules: [{FFA00BDD-8C8E-44D2-A124-EC264CBAD989}] => (Allow) D:\Programs\OriginGames\Battlefield 1\bf1.exe
FirewallRules: [{D304A915-9035-4E66-981A-7A9DC2A033AF}] => (Allow) D:\Programs\OriginGames\Battlefield 1\bf1Trial.exe
FirewallRules: [{66418597-E3A5-47A4-A24E-D8F07CFADE18}] => (Allow) D:\Programs\OriginGames\Battlefield 1\bf1Trial.exe
FirewallRules: [UDP Query User{ED41ABD7-F079-4374-9A55-BD27DC6B9CAC}D:\programs\steam\steamapps\common\insurgency2\insurgency.exe] => (Allow) D:\programs\steam\steamapps\common\insurgency2\insurgency.exe
FirewallRules: [TCP Query User{1F01826D-2437-4835-B450-A2F459AC9072}D:\programs\steam\steamapps\common\insurgency2\insurgency.exe] => (Allow) D:\programs\steam\steamapps\common\insurgency2\insurgency.exe
FirewallRules: [{1FFD18A3-131B-4A96-9025-E40AC0920E61}] => (Allow) D:\Programs\Steam\steamapps\common\insurgency2\insurgency_BE.exe
FirewallRules: [{008E6756-0133-42DF-B852-A60E2ACBB582}] => (Allow) D:\Programs\Steam\steamapps\common\insurgency2\insurgency_BE.exe
FirewallRules: [{36E91188-00AC-46E7-A77B-410931F61D68}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{53A9D129-B9AD-481D-B387-913243CEDC93}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3FA19925-AF90-46E8-9D70-797458526EA3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D6454B51-B69C-4C63-AD36-34728CEB5075}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5990C215-B122-40A2-9127-550028123DD6}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{38CFABD5-0524-4447-82A2-21A0C6CA5E46}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3F44A857-1F5A-4315-98FD-6C58282A4C73}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4F2C1B14-5AF9-4CD4-A4AA-4A50DE51EFFD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5AC5184F-2BE5-4983-8030-17B2BFE6217E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{358BFEA5-D543-4938-9F60-2813F3879DC3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{29A4657B-38BD-4547-B2B2-38FF22C9598C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F0A2C336-7CDD-42C4-AEB5-A12B27E6E14C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E6D42694-E1AF-4CBC-8745-3A2144E421C5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7BAB3D43-9356-4707-8F25-3CA5F4887C88}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{47FFC5C5-2386-465C-B258-6F2914D3CD56}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6D96CD7A-56A8-4194-84D9-09562FAE82F3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D93EEB2E-7E0C-46B0-BA5A-BAE9F3185EAF}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5E07C889-7E78-414F-8450-F443F337DB3B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6B0A3CED-CD28-4439-A745-2E584E10616A}] => (Allow) D:\Programs\Steam\steamapps\common\Zenimax Online\zosSteamStarter.exe
FirewallRules: [{4EB1FC49-2A16-4DE0-B8B5-F3D351D3C5C8}] => (Allow) D:\Programs\Steam\steamapps\common\Zenimax Online\zosSteamStarter.exe
FirewallRules: [{7197DBD9-6787-45C2-A879-BCEB3B3767D2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D158C1EB-736D-416E-8612-F0C051F271E5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{242307C7-0875-4326-9177-D455148BF096}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A584F16D-58CE-498E-987D-A552F3BDC50E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{312145FC-9C26-462D-8B75-27C26783A4D3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5E317313-762B-4AF7-A046-9D5315F8AF8E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F8E3BFF2-C92A-48FB-9455-AECB3F568ADC}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D7FDB5C8-0414-47BA-B526-14B09DED88B9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0655AC4A-7EFA-42C7-8C16-DED6937C9420}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C661ADB4-BCC6-4762-9E7A-3F2B0342BCB1}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{05022ECD-56E9-4996-9FBB-DE7AC439E37A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9A08F20D-9943-40A2-B289-402D38A4FB72}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D7C187CD-0FB4-4D0F-91F4-2675DD1AE375}] => (Allow) D:\Programs\Steam\steamapps\common\HyperLightDrifter\HyperLightDrifter.exe
FirewallRules: [{2EA460BC-F720-4EF3-ABF8-860C5A26151E}] => (Allow) D:\Programs\Steam\steamapps\common\HyperLightDrifter\HyperLightDrifter.exe
FirewallRules: [{8525773C-85A5-4E8C-8DB9-1D0A4E983079}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5B5E90B8-B8CA-4535-AC3B-D7857AD2E478}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B0077883-7A24-4C29-97E4-73126F99CB18}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0F4A9649-A1F1-46D0-AD2E-2C2BE8879AEF}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2E9D70CE-E922-42B1-8C03-8FD80F02B964}] => (Allow) D:\Programs\Steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe
FirewallRules: [{2F7963A5-39A9-4C19-AF30-2D7D82032AE2}] => (Allow) D:\Programs\Steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe
FirewallRules: [{431BCE35-2AE4-48AD-A6A4-97C2A6288164}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1D9C3F16-43D8-4E25-B4E7-30C4DE6A0839}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A7E2CADC-556F-4148-BB28-2C0524512B4F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8CA8FEC4-35D9-49A9-A07E-67804E16A88E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B7C426FF-9A6D-45AE-81B1-919925E1E2D5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{623A25BD-73A8-45AA-BC47-1500584E98FB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{69CAD524-2F01-4879-8CF5-2B15715C3E62}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F931BA12-BE13-49D9-B383-B204B76CFEB7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AD03F3F8-35B4-4DED-9136-2BA8A2F6A15C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{685EA69D-E88A-478D-A4C5-0FE3FE7A1DCA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E55297EF-4C7C-49F4-A01C-FDFD15AA70F7}] => (Allow) D:\Programs\Steam\steamapps\common\Roguelands\Roguelands.exe
FirewallRules: [{A46EC79A-BE68-4DC9-A2AD-3E6ADF960A8F}] => (Allow) D:\Programs\Steam\steamapps\common\Roguelands\Roguelands.exe
FirewallRules: [UDP Query User{FAE61699-CB40-462B-BC56-13C0210D74FA}D:\programs\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\programs\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [TCP Query User{E2690B88-B009-4B24-BC3D-5763BEAE1DDC}D:\programs\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\programs\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [{ED209AA8-9820-49D6-98AE-CE3AC33B2627}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{624C1968-CA55-45B9-B746-95C68E1EC13E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{678F829F-FD09-46C7-B00A-9CB210DBFACA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E95430D7-3D9D-43F3-B8EF-DCA44D591256}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3583CBF2-B9A8-451A-BEC9-56DE1FB961C8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8568A31A-CEA7-41A9-9ABE-12A8D6E522F3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1F076FB3-8D87-4FE0-98A7-F60BF25D5B7A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8B841EF6-A926-40B6-B58A-5AC72497FA0B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{35E57244-EE07-43E1-9EB1-D5379DDFA5F7}] => (Allow) F:\Programs\Steam\SteamApps\common\ShadowOfMordor\x64\ShadowOfMordor.exe
FirewallRules: [{7DBD0289-6AD6-4582-9508-36D9E0FD23AB}] => (Allow) F:\Programs\Steam\SteamApps\common\ShadowOfMordor\x64\ShadowOfMordor.exe
FirewallRules: [{C2BC5F6D-A891-4DB9-B31B-041ECFED635F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{69EEB83B-5802-4890-B0DF-7DDF5396BE16}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E4D1CB75-DB0F-44B8-A762-455E2CCDA6F8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A178AE86-1AA8-45C8-9E58-8E670A6976AB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6A8690B1-78E2-473D-A95C-F6BBC03237EE}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7F9597CE-F8FF-4998-809D-B54E2BD0C31B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{777156B4-2444-48AA-8A15-341F87400DB8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6ECEA16F-05AD-4E2B-ACA0-C3DB65357435}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6B592C8F-4DE4-44C4-B17B-E92CB97B3ECB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C1D24A1C-F6AB-4186-AAF4-BE3FABF3082B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{13F5AE8E-4297-4F4C-824B-C0585DC60440}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F27B91B7-4E5E-4B05-965E-5D171F79BDA5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FC3AB9E2-62B8-4778-81A7-111D586F56C2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{335116E6-2F47-46F0-AF0E-433490845B11}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E1C4B006-8196-4301-A76B-5A76617C898B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{63F0D036-8528-4ED6-9B5F-7F01E96285E9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4C6A5E04-6C3B-4C17-A0E7-036620AFCA0E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F0D596DC-0F53-44F2-AF0B-8CDACAE28FB6}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C672AD5F-6372-4E66-8B60-D28DBD7267A4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{41233338-B966-4147-97B0-E57D0279A365}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6538CB33-F4EC-409A-A673-8CA5ECC71EB8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1E02ABDB-734F-4720-B396-68FA67A1E2E8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{ADDDCE24-B6E3-44FF-96E7-EC8DC371742A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{89EBB2A6-2FD8-4904-B84B-B15904C45C87}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D1CFA7D2-6123-4A04-8564-AAA7AEF88DC9}] => (Allow) D:\Programs\Steam\steamapps\common\Brigador\brigador.exe
FirewallRules: [{9AE38646-9537-4652-9FEA-7B199EA04A2C}] => (Allow) D:\Programs\Steam\steamapps\common\Brigador\brigador.exe
FirewallRules: [{AB75D243-36B3-42A9-AC02-2B7A2C106C27}] => (Allow) D:\Programs\Steam\steamapps\common\Maize\Maize\Binaries\Win64\Maize.exe
FirewallRules: [{FD012FAD-3A55-4E89-B276-6693D48C869C}] => (Allow) D:\Programs\Steam\steamapps\common\Maize\Maize\Binaries\Win64\Maize.exe
FirewallRules: [{14168574-8961-42CD-83A2-5986B140C277}] => (Allow) D:\Programs\Steam\steamapps\common\SUPERHOT\SUPERHOT.exe
FirewallRules: [{65BF6B4C-B0CC-4477-9EBB-9A18ABAC7E54}] => (Allow) D:\Programs\Steam\steamapps\common\SUPERHOT\SUPERHOT.exe
FirewallRules: [{BC8B84E4-6FFC-40ED-937F-A276F3173B90}] => (Allow) D:\Programs\Steam\steamapps\common\Shoppe Keep\Shoppe Keep.exe
FirewallRules: [{4D28A707-3AE7-4BA4-A655-A39219C2463D}] => (Allow) D:\Programs\Steam\steamapps\common\Shoppe Keep\Shoppe Keep.exe
FirewallRules: [{BD8C7FE4-1A64-44BA-ADB7-5728546EE564}] => (Allow) D:\Programs\Steam\steamapps\common\Ashes of the Singularity Escalation\StardockLauncher.exe
FirewallRules: [{358B55DD-D56E-4CA5-8797-6E91C3E10B0B}] => (Allow) D:\Programs\Steam\steamapps\common\Ashes of the Singularity Escalation\StardockLauncher.exe
FirewallRules: [{B1BAF6C2-3911-4E57-BE48-8A714593132D}] => (Allow) D:\Programs\Steam\steamapps\common\PlagueInc\PlagueIncEvolved.exe
FirewallRules: [{2C7F13A9-ACB2-46EF-888B-A7EE50413FA7}] => (Allow) D:\Programs\Steam\steamapps\common\PlagueInc\PlagueIncEvolved.exe
FirewallRules: [{69B6BE6A-37A6-4439-B20D-8077C846F628}] => (Allow) D:\Programs\Steam\steamapps\common\Stellaris\stellaris.exe
FirewallRules: [{A7C9BAD6-BD95-4DD1-8ABC-AF85234277B6}] => (Allow) D:\Programs\Steam\steamapps\common\Stellaris\stellaris.exe
FirewallRules: [{382C7337-964C-4250-8DEB-7F40D83EEB54}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D7132B3D-C5C8-454D-B6A8-58EE3B470F40}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DAC13063-5561-4E82-9BBA-EC488EDF465A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B05FCD14-A4AF-4A54-AE16-99B1514819A4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CF5537C1-DE0D-4660-A71E-0802B2A85B5C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EF14888D-49C7-43D1-B6AF-1920616445F4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{89C99C57-6715-4CF6-8414-1646FF596F70}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CC8531C4-44AF-4B09-A4E4-FF12D9CE6246}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2AAA0568-4F7C-43C2-AC3F-E243724D69F8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3B15C732-9672-4887-8B25-A482A84A618F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7703FCE1-360A-4A99-88EE-3AA05374AD70}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D5C1CD8C-951E-491E-8420-E80D4A36DE47}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AC6BE01C-0C0E-4FAB-B468-0CCBE94D4C6E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B93B36E7-E510-41CA-A8DF-A4D8747DF4E7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2A93B9A3-37F4-414A-99B2-A7668E58A476}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F7C3C03A-A7F0-428D-990B-194C45A74BA8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EE9AD10C-527B-4404-98A7-08852F0DAE47}] => (Allow) F:\Programs\Steam\SteamApps\common\Call of Duty Black Ops III\BlackOps3.exe
FirewallRules: [{0AC545AB-A3C4-4C1E-B678-ABBA2E11CF21}] => (Allow) F:\Programs\Steam\SteamApps\common\Call of Duty Black Ops III\BlackOps3.exe
FirewallRules: [{8DB50802-60FD-4729-864D-B2EDBF638BF2}] => (Allow) D:\Programs\Steam\steamapps\common\GoatSimulator\Binaries\Win32\GoatGame-Win32-Shipping.exe
FirewallRules: [{56BCFEBC-1CFA-4B3A-BA0F-96CC2E887BC5}] => (Allow) D:\Programs\Steam\steamapps\common\GoatSimulator\Binaries\Win32\GoatGame-Win32-Shipping.exe
FirewallRules: [{10568127-5BE4-46CE-BD6E-15F9B9482FBF}] => (Allow) D:\Programs\Steam\steamapps\common\Streets of Rogue\StreetsOfRogue.exe
FirewallRules: [{D0221AEA-4070-4574-AC68-8AC257A09882}] => (Allow) D:\Programs\Steam\steamapps\common\Streets of Rogue\StreetsOfRogue.exe
FirewallRules: [{B42D9B9B-EF80-4F62-89B4-E0528EEE84C7}] => (Allow) D:\Programs\Steam\steamapps\common\Party Hard\PartyHardGame.exe
FirewallRules: [{107D735D-5B56-4545-A475-940D5AC067F2}] => (Allow) D:\Programs\Steam\steamapps\common\Party Hard\PartyHardGame.exe
FirewallRules: [{A93B5E19-AFD8-4278-A44F-E188B4BE6943}] => (Allow) D:\Programs\Steam\steamapps\common\Guts and Glory\Guts and Glory.exe
FirewallRules: [{BF2E0549-B6E6-4AA4-A397-3FB9731999A2}] => (Allow) D:\Programs\Steam\steamapps\common\Guts and Glory\Guts and Glory.exe
FirewallRules: [{45B980BC-0C21-4E19-8724-51B238CA0104}] => (Allow) D:\Programs\Steam\steamapps\common\TheFinalStation\TheFinalStation.exe
FirewallRules: [{DDC0B909-7FB4-4373-91AD-25B538997207}] => (Allow) D:\Programs\Steam\steamapps\common\TheFinalStation\TheFinalStation.exe
FirewallRules: [{8A6D14D7-AB80-4741-AD6C-00ACD50E4EBF}] => (Allow) D:\Programs\Steam\steamapps\common\Divide by sheep\Dividebysheep.exe
FirewallRules: [{932D19D2-3723-4C73-9D74-11D73A9C6337}] => (Allow) D:\Programs\Steam\steamapps\common\Divide by sheep\Dividebysheep.exe
FirewallRules: [{F91B6B4D-5692-4FC7-9A80-34C18AE68415}] => (Allow) D:\Programs\Steam\steamapps\common\ClusterTruck\Clustertruck.exe
FirewallRules: [{89D6E4A7-6368-4C5D-AD93-3C4AA6A58260}] => (Allow) D:\Programs\Steam\steamapps\common\ClusterTruck\Clustertruck.exe
FirewallRules: [{DA7BE755-7BA3-4FF2-B961-6F0E5A33370D}] => (Allow) D:\Programs\Steam\steamapps\common\Ziggurat\Ziggurat.exe
FirewallRules: [{1B5E9858-CD05-4625-AD53-D184186262E0}] => (Allow) D:\Programs\Steam\steamapps\common\Ziggurat\Ziggurat.exe
FirewallRules: [{1791D1F6-9F25-4FAD-BF9C-A92F2082D0A8}] => (Allow) D:\Programs\Steam\steamapps\common\Windward\Windward.exe
FirewallRules: [{94C4E5CC-BEF9-4717-AB33-D42D6CA1BA11}] => (Allow) D:\Programs\Steam\steamapps\common\Windward\Windward.exe
FirewallRules: [{F2CF195E-AB1A-4AF8-B5C9-20CE71BAC88A}] => (Allow) D:\Programs\Steam\steamapps\common\SteamWorld Heist\Heist.exe
FirewallRules: [{22DB378C-5622-4C15-BD58-07030300EDE4}] => (Allow) D:\Programs\Steam\steamapps\common\SteamWorld Heist\Heist.exe
FirewallRules: [{A1F6FDFB-5E2F-453D-9E56-86C995E80796}] => (Allow) D:\Programs\Steam\steamapps\common\KentuckyRouteZero\KentuckyRouteZero.exe
FirewallRules: [{99AA74A2-7D93-4B59-BEA9-6589EDFD020D}] => (Allow) D:\Programs\Steam\steamapps\common\KentuckyRouteZero\KentuckyRouteZero.exe
FirewallRules: [{1A0ABE69-0C04-4476-8A51-B78A3533F672}] => (Allow) D:\Programs\Steam\steamapps\common\Owlboy\Owlboy.exe
FirewallRules: [{9D6B3FE8-0510-4102-AAAE-4D7D2CDAEEC3}] => (Allow) D:\Programs\Steam\steamapps\common\Owlboy\Owlboy.exe
FirewallRules: [{15C3AB59-5A87-4465-8B99-D19578143043}] => (Allow) D:\Programs\Steam\steamapps\common\Beholder\Beholder.exe
FirewallRules: [{C07CDF27-D609-4503-B1CC-9EF70434CFEF}] => (Allow) D:\Programs\Steam\steamapps\common\Beholder\Beholder.exe
FirewallRules: [{017EA0E4-07DE-481C-A7C8-ECF4DC3B03CE}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6E34C304-A19D-4629-91AA-DA7C827E8961}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F56BF4CB-D758-44E3-A2FB-E847F5A963DF}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{06278A26-4536-46E7-A490-8D7495CCE9D0}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3152CB24-335E-4523-9F7A-97BB8EBE121C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A8599ABB-E1FC-420C-8D09-97E33E660947}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A88F43BC-AD42-45E8-9A77-0E66E8CE9B1F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EC1BFDCA-6535-4521-8DD0-61BB9EC73FAE}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D605A8AF-CA48-4CD5-AD50-D4B122E7A225}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{87BE4DD7-2D73-4760-A0B2-4AA0A5252516}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E609452C-72EE-4C49-B82F-8D1B304B7480}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0CA4DC9E-4F37-4917-B3A7-3C841F085B49}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E404C50B-CE41-40E0-B808-61E9B6F545A2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3460E6FB-7241-4B9C-9670-A85113CDF075}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0453E41E-3A9E-4F81-9207-F2AB3343146D}] => (Allow) D:\Programs\Steam\steamapps\common\Stephen's Sausage Roll\Sausage.exe
FirewallRules: [{6D0DAA5A-A8C9-4A04-AAC4-D0859A0D6E89}] => (Allow) D:\Programs\Steam\steamapps\common\Stephen's Sausage Roll\Sausage.exe
FirewallRules: [{9B69AFB5-BE4F-4FD7-A24D-34D31A906BB9}] => (Allow) D:\Programs\Steam\steamapps\common\The Curious Expedition\electron.exe
FirewallRules: [{BED2DDEE-EBBD-4B97-AE9F-C619B9D5B583}] => (Allow) D:\Programs\Steam\steamapps\common\The Curious Expedition\electron.exe
FirewallRules: [{036416DE-AB1A-4FA4-AF6B-5A9699FF2C7F}] => (Allow) D:\Programs\Steam\steamapps\common\Super Mega Baseball\supermegabaseball.exe
FirewallRules: [{650F76E6-2E70-41B9-AF73-1C891204E9A3}] => (Allow) D:\Programs\Steam\steamapps\common\Super Mega Baseball\supermegabaseball.exe
FirewallRules: [{8BA96301-3534-42C6-8E84-579609F27CA0}] => (Allow) D:\Programs\Steam\steamapps\common\Crashlands\Crashlands.exe
FirewallRules: [{8A429BCF-91A3-4EA4-A426-F73E01F116F5}] => (Allow) D:\Programs\Steam\steamapps\common\Crashlands\Crashlands.exe
FirewallRules: [{0C163119-BAEF-4F0D-B077-DDBACFE625A4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{312113B1-70A0-4E5F-A3B3-F45CE066CDF7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FC084141-E3C5-41FB-91E0-853824561684}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{25118261-EC97-444D-A5EE-7EDCEAA7903F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{954333C8-8B41-45B5-B5DC-3A9855F93A4D}] => (Allow) D:\Programs\Steam\steamapps\common\GoNNER\GoNNER.exe
FirewallRules: [{90693DEE-F0E2-4320-A3CF-214BC1C79054}] => (Allow) D:\Programs\Steam\steamapps\common\GoNNER\GoNNER.exe
FirewallRules: [{4AB9093E-5368-4F58-A277-E9891FCD01A4}] => (Allow) D:\Programs\Steam\steamapps\common\Metrico+\Metrico+.exe
FirewallRules: [{FD7A6D82-D6AD-46D6-9B75-E12C68604088}] => (Allow) D:\Programs\Steam\steamapps\common\Metrico+\Metrico+.exe
FirewallRules: [{7F9C949A-A426-427A-9C6C-B79986772FFB}] => (Allow) D:\Programs\Steam\steamapps\common\Super Rude Bear Resurrection\SRBR.exe
FirewallRules: [{8B91C253-8450-4952-91D0-7EA5DF6BDBB1}] => (Allow) D:\Programs\Steam\steamapps\common\Super Rude Bear Resurrection\SRBR.exe
FirewallRules: [{3011613E-1862-479B-A666-29CF49F68CBD}] => (Allow) D:\Programs\Steam\steamapps\common\The Turing Test\TheTuringTest\Binaries\Win64\TheTuringTest.exe
FirewallRules: [{82D6F69F-8CE0-4AF8-90F1-0EFB32CD2AA4}] => (Allow) D:\Programs\Steam\steamapps\common\The Turing Test\TheTuringTest\Binaries\Win64\TheTuringTest.exe
FirewallRules: [{571AF52E-35B6-432F-BF09-603A69A21C44}] => (Allow) D:\Programs\Steam\steamapps\common\Undertale\UNDERTALE.exe
FirewallRules: [{9BD4B3E3-B88D-44EE-836C-8F4F22F8ED80}] => (Allow) D:\Programs\Steam\steamapps\common\Undertale\UNDERTALE.exe
FirewallRules: [{14E117A0-F06E-40F2-833A-313323EA725B}] => (Allow) D:\Programs\Steam\steamapps\common\This is the Police\Police.exe
FirewallRules: [{AEB7FB01-A039-4362-9CC4-EA3905ED1D07}] => (Allow) D:\Programs\Steam\steamapps\common\This is the Police\Police.exe
FirewallRules: [{EBBE4143-240E-40CB-94B7-97981D188850}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AE4E6A6E-C8AE-46F9-8734-361FE9E78DFD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F5DC84F3-A812-4FF5-A069-6F1BC7F82AB8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D8BB4F96-7547-41F0-9951-35DE6AA3E2C2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{653CD0B5-310F-4768-AB40-B9908255C43E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BC4FC207-4AE6-43A2-9CC3-285D54DEE0CA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DE6D10A2-AFE9-4530-9673-FDA001578AFB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E893F35A-E651-4890-87DA-A4342B63E8D5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0121BA0F-6F4F-4FA1-B4AB-584FB81ADFA2}] => (Allow) D:\Programs\Steam\steamapps\common\Ruin of the Reckless\RotRVC.exe
FirewallRules: [{062E4F67-290A-4506-A173-985958F3A1C0}] => (Allow) D:\Programs\Steam\steamapps\common\Ruin of the Reckless\RotRVC.exe
FirewallRules: [{656935A0-AF02-4E31-BCF7-FD9995265D2A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{13C721B9-F7D7-4BB1-ABCD-1576E911BF84}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A3BC0751-5A29-4F3A-893C-EE528654EE14}] => (Allow) D:\Programs\OriginGames\Titanfall2\Titanfall2_trial.exe
FirewallRules: [{F0443519-8BDC-42B9-B749-BD12ED74B299}] => (Allow) D:\Programs\OriginGames\Titanfall2\Titanfall2_trial.exe
FirewallRules: [{1EBD14C5-581B-4DAD-B43A-DC98EC6D7D5B}] => (Allow) D:\Programs\OriginGames\Titanfall2\Titanfall2.exe
FirewallRules: [{E4746802-242C-4341-BFF1-DA4A085DD9C5}] => (Allow) D:\Programs\OriginGames\Titanfall2\Titanfall2.exe
FirewallRules: [{B185AC18-0454-494E-A913-7B8BDC426C90}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8CA9B357-B6E4-4C28-B7BE-20CC369162AB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8A5DAB1A-46D3-4AA2-8CA7-98ABC241A2D9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{61C274DE-81D8-4034-84A5-CA8173C9EAE1}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4DCF0F25-C117-4A75-897C-C4499E313751}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4682A210-DB9C-48BD-8088-AF79D4A140B9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B6989976-E593-4A2F-8487-E8C3B5E41DAA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A60AD904-375B-41E3-9CD8-B5A70C9D33DE}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7DDCB4EB-6E3A-4515-B43F-6B0C0615287D}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A657BD38-9717-4C90-955D-A17F709E63CE}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0DF96139-F6E3-487B-85AA-48613B64A23F}] => (Allow) D:\Programs\Steam\steamapps\common\HardWest\HardWest.exe
FirewallRules: [{86FB75DE-2A24-458C-902B-01F5EC670002}] => (Allow) D:\Programs\Steam\steamapps\common\HardWest\HardWest.exe
FirewallRules: [{906C743B-374B-4376-BADC-B1C187E4BAAD}] => (Allow) D:\Programs\Steam\steamapps\common\Slime Rancher\SlimeRancher.exe
FirewallRules: [{EACAB247-F702-4A08-8BBB-EE5BCA33F912}] => (Allow) D:\Programs\Steam\steamapps\common\Slime Rancher\SlimeRancher.exe
FirewallRules: [{C9D86320-7A76-4CB8-9B89-480619A6898C}] => (Allow) D:\Programs\Steam\steamapps\common\Planetary Annihilation Titans\bin_x64\PA.exe
FirewallRules: [{5AC78C4A-657B-466C-80E5-5D1A2FF616D0}] => (Allow) D:\Programs\Steam\steamapps\common\Planetary Annihilation Titans\bin_x64\PA.exe
FirewallRules: [{911D3574-82EF-4A27-B8C3-9BB99DEA3718}] => (Allow) D:\Programs\Steam\steamapps\common\Galactic Civilizations III\StardockLauncher.exe
FirewallRules: [{6EF73040-6FE3-4322-BD76-5EA107ABD78F}] => (Allow) D:\Programs\Steam\steamapps\common\Galactic Civilizations III\StardockLauncher.exe
FirewallRules: [{C9AF6CBA-61F1-44C6-AD30-FC1F1248C3BF}] => (Allow) D:\Programs\Steam\steamapps\common\Offworld Trading Company\StardockLauncher.exe
FirewallRules: [{6DF9F0A0-14AE-4F94-8471-AE1CBA216C05}] => (Allow) D:\Programs\Steam\steamapps\common\Offworld Trading Company\StardockLauncher.exe
FirewallRules: [{30F81BFD-CB00-4E4D-B7B4-CC836E5A1462}] => (Allow) D:\Programs\Steam\steamapps\common\Galactic Civilizations I Ultimate Edition\AltarianProphecy\GalCiv.exe
FirewallRules: [{45B0EFC0-71F3-4079-99B3-C88B75F0D558}] => (Allow) D:\Programs\Steam\steamapps\common\Galactic Civilizations I Ultimate Edition\AltarianProphecy\GalCiv.exe
FirewallRules: [{EF8ECF64-EB85-4510-A1A7-91551A94F8AA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D61D6B7D-F2E3-4EAE-8C2C-95952BDDF22C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AB3167A3-8D2C-45F3-9318-604E0D5E28FA}] => (Allow) D:\Programs\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{7959374E-8A31-4EE6-B3A0-D644C7E4745E}] => (Allow) D:\Programs\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{61BE6D02-8C77-4B59-A813-9C143D6EA170}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6D42287B-9259-436C-970A-AE65A1DC910B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{11E0036C-66CD-4B30-B33C-33F1F4CFC7FC}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5E94B4B5-8503-4FC3-9F34-35CB29A2DA9A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{20208194-417A-4ADF-8BC0-748E045A8FD8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1336E7DB-203F-495D-92C0-EE6C69D61B43}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8FFA8323-3646-47A3-B258-DFDF78C59483}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3E48A462-838C-4C9C-BB4D-2FD59D568877}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F0D777CB-7BB7-47B8-B804-92D82957602B}] => (Allow) D:\Programs\Steam\steamapps\common\SuperTimeForceUltra\STF_win32.exe
FirewallRules: [{B7011569-07FD-4EE3-92D0-DFC6B5C4715A}] => (Allow) D:\Programs\Steam\steamapps\common\SuperTimeForceUltra\STF_win32.exe
FirewallRules: [{571F0958-42F2-451D-880D-BB8540A6B298}] => (Allow) D:\Programs\Steam\steamapps\common\Lovers in a Dangerous Spacetime\LoversInADangerousSpacetime.exe
FirewallRules: [{DFDB0D7B-50F9-4CD4-B920-0AC53FCD3BF6}] => (Allow) D:\Programs\Steam\steamapps\common\Lovers in a Dangerous Spacetime\LoversInADangerousSpacetime.exe
FirewallRules: [{75ECA5EB-E0BB-4476-8AD4-AB852BFE1DAA}] => (Allow) F:\Programs\Steam\SteamApps\common\lethalleague\LethalLeague.exe
FirewallRules: [{B6952812-5120-4AFE-B7A6-77B13705643E}] => (Allow) F:\Programs\Steam\SteamApps\common\lethalleague\LethalLeague.exe
FirewallRules: [UDP Query User{CE3337B7-DD41-4F2B-9D96-668F0A436674}C:\program files (x86)\gigabyte\@bios\flashbios.exe] => (Allow) C:\program files (x86)\gigabyte\@bios\flashbios.exe
FirewallRules: [TCP Query User{E0466325-B79C-48B4-B969-7A8EC5526840}C:\program files (x86)\gigabyte\@bios\flashbios.exe] => (Allow) C:\program files (x86)\gigabyte\@bios\flashbios.exe
FirewallRules: [{2DF8E3EE-9F5C-414A-899E-6868D2FA154C}] => (Allow) C:\Program Files (x86)\GIGABYTE\AppCenter\gcupd.exe
FirewallRules: [{F38643B5-9F38-43DF-AC10-0E3022AEF396}] => (Allow) C:\Program Files (x86)\GIGABYTE\AppCenter\ApCent.exe
FirewallRules: [{A576E651-B77D-439E-B478-20147E6A67F9}] => (Allow) D:\Programs\Steam\steamapps\common\Parkitect\Parkitect.exe
FirewallRules: [{8C04163B-CEF3-4D1C-9C34-DBB16F0071A3}] => (Allow) D:\Programs\Steam\steamapps\common\Parkitect\Parkitect.exe
FirewallRules: [{F26EC8D3-A99C-4B3B-A55A-492BCF23EF98}] => (Allow) D:\Programs\Steam\steamapps\common\FINAL FANTASY FFX&FFX-2 HD Remaster\FFX&X-2_LAUNCHER.exe
FirewallRules: [{51658D7F-08FD-4FFD-AA18-B721EFCEC13D}] => (Allow) D:\Programs\Steam\steamapps\common\FINAL FANTASY FFX&FFX-2 HD Remaster\FFX&X-2_LAUNCHER.exe
FirewallRules: [UDP Query User{15B6177D-B3BD-4A6E-81C5-A2FCD02A1E7F}F:\programs\steam\steamapps\common\elite dangerous\products\elite-dangerous-64\elitedangerous64.exe] => (Allow) F:\programs\steam\steamapps\common\elite dangerous\products\elite-dangerous-64\elitedangerous64.exe
FirewallRules: [TCP Query User{279B25AA-5FD4-4671-A361-8724377DC243}F:\programs\steam\steamapps\common\elite dangerous\products\elite-dangerous-64\elitedangerous64.exe] => (Allow) F:\programs\steam\steamapps\common\elite dangerous\products\elite-dangerous-64\elitedangerous64.exe
FirewallRules: [{2BA82440-53EA-4A46-B65E-7078BC1968B7}] => (Allow) D:\Programs\Steam\steamapps\common\Big Pharma\Big Pharma.exe
FirewallRules: [{9EE8BC48-DA40-45A1-A81D-78E4241B0DF4}] => (Allow) D:\Programs\Steam\steamapps\common\Big Pharma\Big Pharma.exe
FirewallRules: [{0CD59270-39CD-456A-B59B-773747E56598}] => (Allow) F:\Programs\Steam\SteamApps\common\Divinity Original Sin Enhanced Edition\Shipping\EoCApp.exe
FirewallRules: [{E3643752-4148-4D7A-8527-9F5B7B8935F1}] => (Allow) F:\Programs\Steam\SteamApps\common\Divinity Original Sin Enhanced Edition\Shipping\EoCApp.exe
FirewallRules: [{036235CC-5460-451A-8DA1-21908A8D74C5}] => (Allow) D:\Programs\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe
FirewallRules: [{BD797A00-4C36-4D40-8292-85C360EDB691}] => (Allow) D:\Programs\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe
FirewallRules: [{998F4FB0-FB2F-4E7F-B0D8-7CE384622DFD}] => (Allow) F:\Programs\Steam\SteamApps\common\Prison Architect\Prison Architect Safe Mode.exe
FirewallRules: [{2D54AE6F-F72A-44A7-98CF-88364FFC9706}] => (Allow) F:\Programs\Steam\SteamApps\common\Prison Architect\Prison Architect Safe Mode.exe
FirewallRules: [UDP Query User{560F388B-FD21-4968-BC1B-BB5EC01FD0CD}D:\programs\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe] => (Allow) D:\programs\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe
FirewallRules: [TCP Query User{C3E45487-F641-43A8-B7D7-26753EC63CF4}D:\programs\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe] => (Allow) D:\programs\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe
FirewallRules: [{CA8E4183-C783-4914-897A-29BE8B707E77}] => (Allow) D:\Programs\Steam\steamapps\common\XCOM 2\Binaries\Win64\Launcher\ModLauncherWPF.exe
FirewallRules: [{E10005F0-8A80-4CE1-8672-1687EE985190}] => (Allow) D:\Programs\Steam\steamapps\common\XCOM 2\Binaries\Win64\Launcher\ModLauncherWPF.exe
FirewallRules: [{D3DAD41B-48EA-4B85-91B0-DDA8039839AA}] => (Allow) D:\Programs\Steam\steamapps\common\Sid Meier's Civilization Beyond Earth\CivilizationBE_Mantle.exe
FirewallRules: [{81269191-17C8-417D-A193-12C20BBB553D}] => (Allow) D:\Programs\Steam\steamapps\common\Sid Meier's Civilization Beyond Earth\CivilizationBE_Mantle.exe
FirewallRules: [{93A1360E-587C-4489-8951-70E99D33779F}] => (Allow) D:\Programs\Steam\steamapps\common\Sid Meier's Civilization Beyond Earth\CivilizationBE_DX11.exe
FirewallRules: [{1D4F446A-6749-425A-BB3C-A679F3E0A7AA}] => (Allow) D:\Programs\Steam\steamapps\common\Sid Meier's Civilization Beyond Earth\CivilizationBE_DX11.exe
FirewallRules: [{C2563AF2-6C24-49BA-9772-9F1745402352}] => (Allow) D:\Programs\Steam\steamapps\common\Sid Meier's Civilization V\Launcher.exe
FirewallRules: [{83C5B429-D8BF-4F8F-8592-140542CE8E88}] => (Allow) D:\Programs\Steam\steamapps\common\Sid Meier's Civilization V\Launcher.exe
FirewallRules: [UDP Query User{7CE43C27-6D41-4220-AE7E-7B3B7B614154}F:\programs\steam\steamapps\common\terraria\terrariaserver.exe] => (Allow) F:\programs\steam\steamapps\common\terraria\terrariaserver.exe
FirewallRules: [TCP Query User{F08C160F-FED0-4C5D-BC3D-926DB27228A1}F:\programs\steam\steamapps\common\terraria\terrariaserver.exe] => (Allow) F:\programs\steam\steamapps\common\terraria\terrariaserver.exe
FirewallRules: [{8E926AA0-1C38-4219-BCF6-890C27220E1C}] => (Allow) F:\Programs\Steam\SteamApps\common\Team Fortress 2\hl2.exe
FirewallRules: [{3E6846F5-BAC8-42F6-A555-B88307480C63}] => (Allow) F:\Programs\Steam\SteamApps\common\Team Fortress 2\hl2.exe
FirewallRules: [{CDEED9EF-95D9-4878-8C91-65A881548AE7}] => (Allow) F:\Programs\Steam\SteamApps\common\Dungeon of the Endless\DungeonoftheEndless.exe
FirewallRules: [{41D5303B-524E-408E-9490-AC81F54024EC}] => (Allow) F:\Programs\Steam\SteamApps\common\Dungeon of the Endless\DungeonoftheEndless.exe
FirewallRules: [{A1A5C317-6057-418F-8B57-923E52013337}] => (Allow) F:\Programs\Steam\SteamApps\common\Endless Legend\EndlessLegend.exe
FirewallRules: [{515578D5-88A9-4540-AB38-1BA08D94C098}] => (Allow) F:\Programs\Steam\SteamApps\common\Endless Legend\EndlessLegend.exe
FirewallRules: [{922B55A1-43A7-45EA-931C-044BC50DA454}] => (Allow) F:\Programs\Steam\SteamApps\common\Endless Space\EndlessSpace.exe
FirewallRules: [{2A6102A7-EEB5-4660-ADF2-69529DB725C2}] => (Allow) F:\Programs\Steam\SteamApps\common\Endless Space\EndlessSpace.exe
FirewallRules: [{90EE037C-058D-4FE0-987C-545DCDF42DFD}] => (Allow) F:\Programs\Steam\SteamApps\common\Crusader Kings II\CK2game.exe
FirewallRules: [{A6CD86AB-F02C-4204-9024-FA23730A4F14}] => (Allow) F:\Programs\Steam\SteamApps\common\Crusader Kings II\CK2game.exe
FirewallRules: [{4CF0A7A7-024A-4507-BED0-316FA4475C5B}] => (Allow) LPort=51001
FirewallRules: [UDP Query User{46079D41-F56C-47BF-98BA-48579B8218F9}F:\programs\steam\steamapps\common\elite dangerous horizons\products\elite-dangerous-64\elitedangerous64.exe] => (Allow) F:\programs\steam\steamapps\common\elite dangerous horizons\products\elite-dangerous-64\elitedangerous64.exe
FirewallRules: [TCP Query User{469FB286-E1C0-4F4F-9574-F14B3AAB97F6}F:\programs\steam\steamapps\common\elite dangerous horizons\products\elite-dangerous-64\elitedangerous64.exe] => (Allow) F:\programs\steam\steamapps\common\elite dangerous horizons\products\elite-dangerous-64\elitedangerous64.exe
FirewallRules: [{B0A01D13-0E5C-439D-A704-CD60DF81669E}] => (Allow) F:\Programs\Steam\SteamApps\common\Elite Dangerous Horizons\EDLaunch.exe
FirewallRules: [{7CCB4E09-8D28-4352-8B9C-2A28F04CDAC3}] => (Allow) F:\Programs\Steam\SteamApps\common\Elite Dangerous Horizons\EDLaunch.exe
FirewallRules: [{2DB19E44-9BFD-4FB2-B1B1-8D912B3F5D4D}] => (Allow) LPort=51001
FirewallRules: [{1D235A22-5CC1-4256-8F2C-1812D6F7DFF4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{68D715F7-7A01-460B-AF15-D74E66ACC2D7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D66B7C85-D718-43BC-979B-673BCAF3A8AD}] => (Allow) F:\Programs\Steam\SteamApps\common\NEO Scavenger\NEOScavenger.exe
FirewallRules: [{BBB4555C-95DC-4F25-81D5-83E12542594F}] => (Allow) F:\Programs\Steam\SteamApps\common\NEO Scavenger\NEOScavenger.exe
FirewallRules: [{3E2D9412-4DC7-49A3-9ACC-BF30C904E982}] => (Allow) F:\Programs\Steam\SteamApps\common\Fallout 3 goty\FalloutLauncher.exe
FirewallRules: [{00761E83-6FBD-496C-8B26-3EE582BCF285}] => (Allow) F:\Programs\Steam\SteamApps\common\Fallout 3 goty\FalloutLauncher.exe
FirewallRules: [{28678AAD-7496-4CD2-A7A6-42F319C38D78}] => (Allow) F:\Programs\Steam\SteamApps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{C2CD2DF9-032C-46BD-90E7-596893C9442B}] => (Allow) F:\Programs\Steam\SteamApps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{F6F7C0C8-4287-49FC-ACC5-2858298E25C4}] => (Allow) F:\Programs\Steam\SteamApps\common\FTL Faster Than Light\FTLGame.exe
FirewallRules: [{B279EBBA-024E-4FB2-A2D5-E3E4A61CE98F}] => (Allow) F:\Programs\Steam\SteamApps\common\FTL Faster Than Light\FTLGame.exe
FirewallRules: [{5B93B7AA-7D28-48C8-B19B-B01E96683F39}] => (Allow) F:\Programs\Steam\SteamApps\common\DisplayFusion\DisplayFusionLauncher.exe
FirewallRules: [{EAECDC7B-A874-4EC5-825C-599C4DFB6ECD}] => (Allow) F:\Programs\Steam\SteamApps\common\DisplayFusion\DisplayFusionLauncher.exe
FirewallRules: [UDP Query User{8C09ED6D-F172-433B-80E6-A8D23327F12C}F:\programs\steam\steamapps\common\arma 3\arma3.exe] => (Allow) F:\programs\steam\steamapps\common\arma 3\arma3.exe
FirewallRules: [TCP Query User{3FD50A8F-4FA1-4390-B0D0-C793911F7F4A}F:\programs\steam\steamapps\common\arma 3\arma3.exe] => (Allow) F:\programs\steam\steamapps\common\arma 3\arma3.exe
FirewallRules: [{8B59C3C7-09AC-46AA-B08E-9A423C8402E6}] => (Allow) F:\Programs\Steam\SteamApps\common\Prison Architect\Prison Architect.exe
FirewallRules: [{55FF192C-0029-4BAE-8406-CC274F3D1D33}] => (Allow) F:\Programs\Steam\SteamApps\common\Prison Architect\Prison Architect.exe
FirewallRules: [{0C3A6A11-9734-4446-B8B4-198300528DAD}] => (Allow) F:\Programs\Steam\SteamApps\common\Democracy 3\Democracy3.exe
FirewallRules: [{5F210E9F-18E8-44F0-9C32-DA28C242EC7F}] => (Allow) F:\Programs\Steam\SteamApps\common\Democracy 3\Democracy3.exe
FirewallRules: [{003CA366-0B81-40B6-8F08-B6A630CE8889}] => (Allow) F:\Programs\Steam\SteamApps\common\Nidhogg\Nidhogg.exe
FirewallRules: [{FC176F73-3331-4859-AD76-B9642B2257AA}] => (Allow) F:\Programs\Steam\SteamApps\common\Nidhogg\Nidhogg.exe
FirewallRules: [{376F4321-82D2-4CF4-B7E9-E432E04833D9}] => (Allow) F:\Programs\Steam\SteamApps\common\Arma 3\arma3launcher.exe
FirewallRules: [{1B5794C3-D688-4A85-80C3-A0BF2A1FE32A}] => (Allow) F:\Programs\Steam\SteamApps\common\Arma 3\arma3launcher.exe
FirewallRules: [{9F623B0C-20F0-4A8C-817B-AD07FF5557E7}] => (Allow) F:\Programs\Steam\SteamApps\common\Life is Feudal Your Own\yo_cm_client.exe
FirewallRules: [{E92A4B8B-9C45-4884-8567-2D31A0073A76}] => (Allow) F:\Programs\Steam\SteamApps\common\Life is Feudal Your Own\yo_cm_client.exe
FirewallRules: [{96374E27-AB11-4BF0-A661-326423ED1FA1}] => (Allow) F:\Programs\Steam\SteamApps\common\ShadowOfMordor\x64\ShadowOfMordor.exe
FirewallRules: [{568A757C-E23F-4221-B3BA-8FAE719A6CE8}] => (Allow) F:\Programs\Steam\SteamApps\common\ShadowOfMordor\x64\ShadowOfMordor.exe
FirewallRules: [{BC8D1A48-B0DE-4725-816B-0FD391EBF645}] => (Allow) LPort=1900
FirewallRules: [{1B0BE3DC-C730-46E7-BCF8-4C002DAB31F7}] => (Allow) LPort=7900
FirewallRules: [{068BDFBF-68DC-4049-9FC0-03CE36ED3044}] => (Allow) LPort=24234
FirewallRules: [{503735AF-28FD-4C46-BAC8-129874E06420}] => (Allow) LPort=7679
FirewallRules: [{B32EE977-E9E0-4341-89E1-ECD0D14D05C0}] => (Allow) LPort=7676
FirewallRules: [{82F5616F-982B-4D25-B9FF-0D88D4943915}] => (Allow) LPort=8643
FirewallRules: [{8783079C-31EC-4DD3-8FB2-9CF4CC9257A9}] => (Allow) LPort=8743
FirewallRules: [{511A0E15-84DF-4D19-8409-D12F2F0BA5E9}] => (Allow) F:\Programs\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe
FirewallRules: [{13BB68BD-A8F1-473A-AAF0-1402899F133D}] => (Allow) F:\Programs\Steam\SteamApps\common\SpeedRunners\SpeedRunners.exe
FirewallRules: [{9BC8B434-FFAF-484F-8904-78B055366F99}] => (Allow) F:\Programs\Steam\SteamApps\common\Dark Souls II Scholar of the First Sin\Game\DarkSoulsII.exe
FirewallRules: [{A2DC8A7D-CDA1-40B9-B6CD-5003C2739977}] => (Allow) F:\Programs\Steam\SteamApps\common\Dark Souls II Scholar of the First Sin\Game\DarkSoulsII.exe
FirewallRules: [{EF0A0B27-69A9-4CB9-8707-643D30F63E7B}] => (Allow) F:\Programs\Steam\SteamApps\common\Pillars of Eternity\PillarsOfEternity.exe
FirewallRules: [{D6C680DC-03E1-4848-A241-604C79F7B323}] => (Allow) F:\Programs\Steam\SteamApps\common\Pillars of Eternity\PillarsOfEternity.exe
FirewallRules: [{A982C6CB-25E4-4DBD-B968-BD4DFE73E4C3}] => (Allow) F:\Programs\Steam\SteamApps\common\Cities_Skylines\Cities.exe
FirewallRules: [{50133F95-8A87-4006-818A-4C3DAB6B8FEC}] => (Allow) F:\Programs\Steam\SteamApps\common\Cities_Skylines\Cities.exe
FirewallRules: [{C4388424-228B-4DB3-857F-37846FF9D04F}] => (Allow) F:\Programs\Steam\SteamApps\common\Savage Lands\SavageLands.exe
FirewallRules: [{6445A2E7-BF73-44B3-B642-394A8636DEF0}] => (Allow) F:\Programs\Steam\SteamApps\common\Savage Lands\SavageLands.exe
FirewallRules: [{7B3B2CB9-1368-46BC-93BD-BFD5ED0439B2}] => (Allow) F:\Programs\Steam\SteamApps\common\Banished\Application-steam-x64.exe
FirewallRules: [{90B61B97-8620-4498-9610-427E4F97163A}] => (Allow) F:\Programs\Steam\SteamApps\common\Banished\Application-steam-x64.exe
FirewallRules: [{ACC2B92D-4E55-4F45-BB75-30DD23E34EAB}] => (Allow) F:\Programs\Steam\SteamApps\common\The Escapists\TheEscapists.exe
FirewallRules: [{480837B4-A57B-46A7-B602-C634DFEAC55F}] => (Allow) F:\Programs\Steam\SteamApps\common\The Escapists\TheEscapists.exe
FirewallRules: [{F94BBE60-6036-41E4-8930-90DCF29C5C7F}] => (Allow) F:\Programs\Steam\SteamApps\common\Besiege\Besiege.exe
FirewallRules: [{F2961D25-B813-445F-8B75-E1A89DAD821C}] => (Allow) F:\Programs\Steam\SteamApps\common\Besiege\Besiege.exe
FirewallRules: [{7BF9E725-A5DB-469D-823D-6808772E27EF}] => (Allow) F:\Programs\Steam\SteamApps\common\MountBlade Warband\mb_warband.exe
FirewallRules: [{4677B304-3F12-4460-8DCC-15BDF4B25105}] => (Allow) F:\Programs\Steam\SteamApps\common\MountBlade Warband\mb_warband.exe
FirewallRules: [{05627DAE-8A9E-439C-A2F6-6F5A313C8C78}] => (Allow) F:\Programs\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{F11D5A37-7C91-49D6-A613-5E587B451EE3}] => (Allow) F:\Programs\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{92D73D50-A629-48E7-BB4A-E8614DC3C4C8}] => (Allow) F:\Programs\Steam\SteamApps\common\Terraria\Terraria.exe
FirewallRules: [{CB317A94-B09F-4254-BFBB-9B9F472CA100}] => (Allow) F:\Programs\Steam\SteamApps\common\Terraria\Terraria.exe
FirewallRules: [{7912924E-9F27-4D3C-874B-2B225BB1D693}] => (Allow) F:\Programs\Steam\SteamApps\common\Rust\Rust.exe
FirewallRules: [{62E0873A-E5D6-48EC-96B1-B22B11CACFF4}] => (Allow) F:\Programs\Steam\SteamApps\common\Rust\Rust.exe
FirewallRules: [{25676E8E-EC20-4EC8-A8D9-A9DDB3B1BEB9}] => (Allow) LPort=1900
FirewallRules: [{C1AF30E9-D2C5-4303-8276-5E4713DF8F18}] => (Allow) LPort=7900
FirewallRules: [{4B0FA2C4-E20C-4C81-A520-B9DB1A8784C3}] => (Allow) F:\Programs\Steam\Steam.exe
FirewallRules: [{78717553-8F86-46E4-958A-C609452DC0FA}] => (Allow) F:\Programs\Steam\Steam.exe
FirewallRules: [{48AFFFA4-9629-4D11-B8A1-65C2CDAD879F}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{ACECD6B5-3087-4BA5-AD69-4898FF72940A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [TCP Query User{E7AF7BC9-E6DF-42F3-967E-5D37FD85ECEE}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [UDP Query User{B36747EA-328B-4E39-9046-63A26DADAC07}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [{1506A0B4-5524-4AB2-B097-6A517E1348D0}] => (Allow) D:\Programs\Steam\steamapps\common\Expand\expand.exe
FirewallRules: [{1BEE2D94-EC77-4ABF-BB94-D314C3F63ED4}] => (Allow) D:\Programs\Steam\steamapps\common\Expand\expand.exe
FirewallRules: [{3D01D940-4410-404A-ADE1-9C7932DBF743}] => (Allow) F:\Programs\Steam\SteamApps\common\The Witcher 3\bin\x64\witcher3.exe
FirewallRules: [{CCA26547-8894-41CD-B5F1-2A4AF70D6806}] => (Allow) F:\Programs\Steam\SteamApps\common\The Witcher 3\bin\x64\witcher3.exe
FirewallRules: [{6C2E9AA8-3DA9-4C55-9AEE-E421D1B4B867}] => (Allow) F:\Programs\Steam\SteamApps\common\TeleglitchDME\Teleglitch.exe
FirewallRules: [{C264B4F7-F2A8-4EA5-BAB6-744B14396142}] => (Allow) F:\Programs\Steam\SteamApps\common\TeleglitchDME\Teleglitch.exe
FirewallRules: [{3A053C6D-BF30-48B0-9141-6F6192333704}] => (Allow) F:\Programs\Steam\SteamApps\common\Spelunky\Spelunky.exe
FirewallRules: [{75412634-04D6-4EEE-8ED3-FE8820181C73}] => (Allow) F:\Programs\Steam\SteamApps\common\Spelunky\Spelunky.exe
FirewallRules: [{FF4757AF-349B-4248-B01E-2602573BBC22}] => (Allow) F:\Programs\Steam\SteamApps\common\Dungeon Souls\DungeonSouls.exe
FirewallRules: [{7C9F0DF5-D54C-4876-8468-AAC591BC82C9}] => (Allow) F:\Programs\Steam\SteamApps\common\Dungeon Souls\DungeonSouls.exe
FirewallRules: [{81EA1936-9A23-4E3A-9AAB-A8EB9318B4F2}] => (Allow) F:\Programs\Steam\SteamApps\common\Enter the Gungeon\EtG.exe
FirewallRules: [{5FBF6725-90E9-4C39-ADB7-2C0968A816A6}] => (Allow) F:\Programs\Steam\SteamApps\common\Enter the Gungeon\EtG.exe
FirewallRules: [{BE78516F-5C8E-41DE-BF14-6F1E856BE567}] => (Allow) F:\Programs\Steam\SteamApps\common\Fallout 4\Fallout4Launcher.exe
FirewallRules: [{BA5020DA-6678-4EA8-B3AC-87B68CFFD88C}] => (Allow) F:\Programs\Steam\SteamApps\common\Fallout 4\Fallout4Launcher.exe
FirewallRules: [TCP Query User{C2EF3EEC-EC21-465B-BA47-D0BFE3653FF8}F:\programs\deluge\deluge.exe] => (Allow) F:\programs\deluge\deluge.exe
FirewallRules: [UDP Query User{4285AAC9-53B2-4292-AEBA-D9C78EBA2BE0}F:\programs\deluge\deluge.exe] => (Allow) F:\programs\deluge\deluge.exe
FirewallRules: [{B8DE0DA9-89DF-4E00-92F4-CD286ADA6A4E}] => (Allow) LPort=1688
FirewallRules: [{6FC25C39-D117-44D9-893D-0D9DB52EA3CC}] => (Allow) F:\Programs\Adobe\CC+CS6\Adobe Flash Builder 4.7\FlashBuilder.exe
FirewallRules: [{ACCA4551-D9C6-4B58-83A1-AB96F0019307}] => (Allow) F:\Programs\Adobe\CC+CS6\Adobe Flash Builder 4.7\FlashBuilder.exe
FirewallRules: [{69121C0A-E000-4446-8994-7311B12C03FA}] => (Allow) LPort=7935
FirewallRules: [{BC1A4A1C-77C5-4A9D-A21A-32309FDBC2DE}] => (Allow) D:\Programs\Steam\steamapps\common\Divinity Original Sin 2\bin\SupportTool.exe
FirewallRules: [{29CA853A-2D53-4A52-896F-B42B945F6B77}] => (Allow) D:\Programs\Steam\steamapps\common\Divinity Original Sin 2\bin\SupportTool.exe
FirewallRules: [TCP Query User{AF31BB7A-CBB0-4F32-A4AE-5A3FCE760E64}D:\programs\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe] => (Allow) D:\programs\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe
FirewallRules: [UDP Query User{1FAA396D-9BEC-4CB3-9BC3-9E8329373794}D:\programs\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe] => (Allow) D:\programs\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe
FirewallRules: [{70411176-BA06-4033-8791-DD21698C0C5A}] => (Allow) D:\Programs\Steam\steamapps\common\Miscreated\Miscreated.exe
FirewallRules: [{31A22C3B-7077-4E9D-9665-7D798A9498C2}] => (Allow) D:\Programs\Steam\steamapps\common\Miscreated\Miscreated.exe
FirewallRules: [{98CEF78F-8AC4-4752-B70C-32C9B8AC7A31}] => (Allow) D:\Programs\Steam\steamapps\common\Stronghold Crusader 2\bin\win32_release\Crusader2.exe
FirewallRules: [{FE191EF3-19EC-4B38-B8E0-709262E97C98}] => (Allow) D:\Programs\Steam\steamapps\common\Stronghold Crusader 2\bin\win32_release\Crusader2.exe
FirewallRules: [{A05EA1F6-74E1-49CA-85D6-46EEA1C1C0C7}] => (Allow) D:\Programs\Steam\steamapps\common\Runestone Keeper\RuneStoneKeeper.exe
FirewallRules: [{12428A94-D80C-4BED-8F29-DE0E0735ABD7}] => (Allow) D:\Programs\Steam\steamapps\common\Runestone Keeper\RuneStoneKeeper.exe
FirewallRules: [{27AC7BE8-51B3-4F6C-8FB3-74DB3C2DC80C}] => (Allow) D:\Programs\Steam\steamapps\common\Rollercoaster Tycoon 2\RCT2.EXE
FirewallRules: [{A10B4FB4-DFB3-4A68-907F-6B7770E6E533}] => (Allow) D:\Programs\Steam\steamapps\common\Rollercoaster Tycoon 2\RCT2.EXE
FirewallRules: [{5AE23FBB-56DC-4EB8-9911-36E50BBD6CD6}] => (Allow) D:\Programs\Steam\steamapps\common\devildaggers\dd.exe
FirewallRules: [{F7948183-AE41-49A9-8CD3-3A2BF190EFE8}] => (Allow) D:\Programs\Steam\steamapps\common\devildaggers\dd.exe
FirewallRules: [{65606F0B-5052-419D-A1C4-E7B53F4A7FF6}] => (Allow) D:\Programs\Steam\steamapps\common\Punch Club\Punch Club.exe
FirewallRules: [{95AE5765-D95C-4B40-B19D-47F483CB6753}] => (Allow) D:\Programs\Steam\steamapps\common\Punch Club\Punch Club.exe
FirewallRules: [{20620CE3-8F73-4B56-BE93-A9874E107724}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [{F8F2B983-693D-42AE-95D4-99CC29D9C629}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [{C75697FD-1B37-4D6E-92CC-8949DA80E1CA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9753140B-72B1-469B-918F-C4F90AFE8BDE}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8B056B20-FA7C-4D8E-8116-FCE1A7260E98}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7158992D-2FE6-469C-B856-37545D88DC71}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E0A474BE-96C4-4314-88D4-D5EBD10F1E9B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7061BD09-F842-494E-98FA-B35A86DE55FD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{436C681B-E51E-4BE3-BBD1-4FB9CE74B6E4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C4865E8B-A505-4C68-BA3F-464067467E80}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D1DFAAAE-9BC1-4BF5-9A68-4D11245B8EF7}] => (Allow) D:\Programs\Steam\steamapps\common\Kerbal Space Program\KSP.exe
FirewallRules: [{0217BF5E-287D-4F3A-856F-B01FB1B7A252}] => (Allow) D:\Programs\Steam\steamapps\common\Kerbal Space Program\KSP.exe
FirewallRules: [{04403764-2073-421E-82B2-704D95622595}] => (Allow) D:\Programs\Steam\steamapps\common\Kerbal Space Program\KSP_x64.exe
FirewallRules: [{1DBA6DC1-FC4F-4F71-A186-A2B1B8E0B6E1}] => (Allow) D:\Programs\Steam\steamapps\common\Kerbal Space Program\KSP_x64.exe
FirewallRules: [{C34B18FA-6839-47B0-A9FF-65DA381C76C4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7F485347-897C-4700-89DA-11F312930000}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F468937E-6E3A-4E2D-BEBE-C747F83AE244}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2C0C4EF9-3FD6-4CB0-9EB0-4813F1E787E5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4EFF56D8-CC04-4AB0-B370-C70294BAB0B6}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F3511CE7-77C6-4F3C-9554-5836BC55F5B6}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6A386065-CCBE-4B26-B09C-F75C26A8D157}] => (Allow) D:\Programs\Steam\steamapps\common\Miscreated\Bin64\Miscreated.exe
FirewallRules: [{C7CCF39D-5F18-4CDA-9E9A-77840B45F560}] => (Allow) D:\Programs\Steam\steamapps\common\Miscreated\Bin64\Miscreated.exe
FirewallRules: [{A40BD1F3-8F92-43CA-AA53-C156A75CB36E}] => (Allow) D:\Programs\Steam\steamapps\common\Miscreated\EasyAntiCheat\EasyAntiCheat_x64.dll
FirewallRules: [{4CC18B62-1D6A-41C4-B4AA-171207E328C9}] => (Allow) D:\Programs\Steam\steamapps\common\Miscreated\EasyAntiCheat\EasyAntiCheat_x64.dll
FirewallRules: [{8FFA430D-070C-481A-B441-281601F798EA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{ACF78DCF-6BB7-4847-BFF9-275C3B94D91E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B7D0FAB2-554F-4AD8-8B5E-B5BD8B9CB327}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AD39F175-BED8-414C-8CE1-7523D27F6F24}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E65530AE-5E41-41B0-BE94-B9272C8C2668}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D6B33F8B-64FB-41CA-92D4-8CC994AE7821}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{51974229-9847-4931-80B1-F2CAF4B469C3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{33ECFB93-AC2A-41FF-9D45-C42834E14A9B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{65F58FF0-20B4-4685-B992-9BD747027036}] => (Allow) F:\Programs\Steam\SteamApps\common\Elite Dangerous\EDLaunch.exe
FirewallRules: [{59C46D1A-E991-4CAF-B619-36993B8A3D94}] => (Allow) F:\Programs\Steam\SteamApps\common\Elite Dangerous\EDLaunch.exe
FirewallRules: [{FCFED75E-C7A6-449D-95E1-C849864E4614}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{07B240E5-446B-47FE-A363-9032049AEDFF}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{06EFC1C5-CC68-4FFD-A0B9-97A2A546C46C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EFAF8C26-A093-417E-A0D1-6DC2FF6E78FA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A6D83826-9423-448A-9397-414F43349979}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D6DE5416-999C-4AC9-8458-B9B1B066D925}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{94FCFEF8-11BB-44B5-89B6-46FBEE83721B}] => (Allow) D:\Programs\Steam\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe
FirewallRules: [{24996A33-3753-4A42-A7D3-B56766E3819B}] => (Allow) D:\Programs\Steam\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe
FirewallRules: [{8296FA01-C0B7-4FAF-912D-4B8FB8619350}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{880F65AB-70EF-41A0-A450-796A78A7FB94}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{30590E92-8AF3-4DE6-A8BA-0393D535D013}] => (Allow) F:\Programs\Steam\SteamApps\common\pCars\pCARS64.exe
FirewallRules: [{DBAAFA0C-5869-4B9E-86E4-E390D9093C81}] => (Allow) F:\Programs\Steam\SteamApps\common\pCars\pCARS64.exe
FirewallRules: [{128F4351-03AD-43B7-BE7C-0028EE4B6723}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E7AF7135-E6C9-418E-9C2D-2F687F9DFC0B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A339C40F-5730-403C-A12E-20E5E6A9157A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F65233D5-BD8A-4088-B897-1B8FCF59C9C9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A31C3252-2D29-4D39-A1AE-DE334B14644F}] => (Allow) D:\Programs\Steam\steamapps\common\Cave Story+\CaveStory+.exe
FirewallRules: [{AFFB12DA-082F-4D6F-BB8E-806B11A8C3AD}] => (Allow) D:\Programs\Steam\steamapps\common\Cave Story+\CaveStory+.exe
FirewallRules: [{66304FF1-8923-40BD-924D-BB2CB59ABE1C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe


#15 WolfRevenant

WolfRevenant
  • Topic Starter

  • Members
  • 22 posts
  • OFFLINE
  •  
  • Local time:04:08 AM

Posted 21 December 2017 - 01:38 PM

FirewallRules: [{DCD8ED2A-2BFC-4773-A4B6-D57DD98A29D8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{524209AC-779B-46E9-8428-606998386972}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0B04D68F-4345-44AA-8222-293E6ADFDC1B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{01E6B5F3-9D75-4909-BCE9-7ED8C366CBD3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B9290BE5-73FC-4FAE-92C6-EE27DEB05D1E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BFB37B74-694C-4950-84F3-82029418EF89}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F017E963-36E7-47BF-8002-46D8E96B0D47}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{71029CF8-4BBE-40FB-A8EA-5C5991E8E852}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{236274DB-5AD7-4A51-B066-BA36ADB19CFB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B7C244B2-1B47-42E0-B511-926BE923CA9C}] => (Allow) F:\Programs\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{652C924F-4636-4C89-BB14-5E9107232775}] => (Allow) F:\Programs\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{4F73EAF4-694B-469E-B976-368B2BDDCB47}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2EB80D79-1810-4464-A124-F34B4D1A7286}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4681A568-00AC-48BA-A710-A32F9FE5227C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{339A7AF4-6252-4256-9C1A-46512F3B2D4A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6C5A57CE-4C43-4DD0-8FBB-A9883B0ACF5F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9C0DFE99-1693-4732-93BF-F096D4845A7E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{03C881EE-87EF-4E9D-88B3-65E019C67A98}] => (Allow) D:\Programs\Steam\steamapps\common\Legend of Grimrock 2\grimrock2.exe
FirewallRules: [{013BD57C-4CB3-4897-B9F3-276B4349F706}] => (Allow) D:\Programs\Steam\steamapps\common\Legend of Grimrock 2\grimrock2.exe
FirewallRules: [{86A3A32D-19CB-4D2F-8E40-066C2F1930BC}] => (Allow) D:\Programs\Steam\steamapps\common\Dungeons2\Dungeons2.exe
FirewallRules: [{FC6CF7A8-2233-4BE5-8DE1-1BD2B0BD4A43}] => (Allow) D:\Programs\Steam\steamapps\common\Dungeons2\Dungeons2.exe
FirewallRules: [{A4C8E361-8B39-40DC-A70A-7B3A677167CB}] => (Allow) D:\Programs\Steam\steamapps\common\Grim Dawn\Grim Dawn.exe
FirewallRules: [{A909F758-6522-48BE-9C37-9ABF8F39A584}] => (Allow) D:\Programs\Steam\steamapps\common\Grim Dawn\Grim Dawn.exe
FirewallRules: [{5BF84544-5D98-4F1A-A48D-BA90577A692A}] => (Allow) F:\Programs\Origin\Games\Battlefield 4\BF4WebHelper.exe
FirewallRules: [{39825E53-2ED0-421C-877F-D586FC5DEE84}] => (Allow) F:\Programs\Origin\Games\Battlefield 4\BF4WebHelper.exe
FirewallRules: [{D6AF5977-1C21-4E4C-8EC5-FC464AB1C7E0}] => (Allow) F:\Programs\Origin\Games\Battlefield 4\BF4X86WebHelper.exe
FirewallRules: [{530E7C85-32C6-49DA-9EC2-3CAA2EA65D9A}] => (Allow) F:\Programs\Origin\Games\Battlefield 4\BF4X86WebHelper.exe
FirewallRules: [{A62D4497-27DA-42AC-9918-0FA39FBBF3B2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A865BC2C-8C42-49F2-9600-0DD60F78D691}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FB6936DB-2670-41FC-8C3D-EBD90F3ECFAD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EA1C563C-13B6-40CD-8368-42050018A319}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EF6AFCE4-F9A0-444E-89C8-104579226675}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5ABDE8E1-50D8-4037-9B75-1FDB592A6892}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{74B11E41-7504-4E6B-A24B-0F0179B9D5AC}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{92F276EF-A681-41EF-BE5D-76F2F98DF571}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{4F50762E-9078-4190-8AA6-94A4230A7E3A}D:\programs\adobe\adobe edge animate cc 2015\edgeanimate.exe] => (Allow) D:\programs\adobe\adobe edge animate cc 2015\edgeanimate.exe
FirewallRules: [UDP Query User{17970CD5-2162-4C80-9E58-C220D858D5CB}D:\programs\adobe\adobe edge animate cc 2015\edgeanimate.exe] => (Allow) D:\programs\adobe\adobe edge animate cc 2015\edgeanimate.exe
FirewallRules: [{84C80E18-B84E-4C9F-A963-562E13B97B33}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{480B8266-AD4C-4828-9C71-966ECBD67E09}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{24926CB1-E0AD-4619-8997-7D547628E29B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{569E4F5B-E253-4441-A8F9-F0C0B12B459F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DA11EDC8-B521-4B40-8275-5D62CB22F739}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{92AE2BE9-165E-4240-A8D5-BE0AF1E5D5BE}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D8C18D87-1053-4F4A-A1AA-EAFC7E63A381}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0B910C77-26C0-4C64-B5C6-9FFF6E3E452B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6FD2295F-C28F-4F47-AF25-9DBC0F5F27BC}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F02DC8FC-2D9B-4A5C-82AD-1BE7AB3E64BB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A8BDB289-EE06-4BC1-A1A8-3312AD8E3D31}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CC1491EA-273B-40D1-890F-16A4E3DA2DA8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9EC3201F-E714-447F-B17F-D50FA6624F3E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BDB7946A-026A-4FD4-B7D6-2D2D0371B4B3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7A503ECE-6D4C-4012-A0A9-FB5532E83A83}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C82578A9-9717-40C1-B92A-C8827F8358F2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A87C9D0D-B8D5-40A8-A61A-8ECDA3E08ED2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{638EE9E7-CC8E-4645-B741-E1619C0F1E0B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5B4E7699-52AE-4504-832F-275926A48071}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DF1796CB-5A30-4E97-B9C6-83CE4F1D11EE}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F558F3A7-2B92-498B-895E-DBCF8638583C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6EF9D420-762E-4C5D-BD26-6752A80A1EEE}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E08587D1-7EF8-4DCE-91B1-8ECD80FE32BC}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C6B92710-127F-425F-A5FA-60B65FA80496}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7578617F-E53A-4E4C-93BF-04FEEC872EF7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4F715663-07B7-4246-AABC-13D1D01B26BD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{056C9685-B229-42FC-8B74-5D779AFBCED2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F70FE9F7-4887-4C08-BB16-6BA103EFBA09}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5C060043-F4A7-46B4-A2E8-493F30944C0B}] => (Allow) D:\Programs\Steam\steamapps\common\This War of Mine\This War of Mine.exe
FirewallRules: [{97E1B36A-A75E-40DF-8BFD-DE7E416102A9}] => (Allow) D:\Programs\Steam\steamapps\common\This War of Mine\This War of Mine.exe
FirewallRules: [{3A28B1CA-4146-4C17-AC32-0E41D9027F2D}] => (Allow) D:\Programs\Steam\steamapps\common\This War of Mine\Storyteller.exe
FirewallRules: [{A23D231C-7EF0-4DC9-873F-C9AFD77D101F}] => (Allow) D:\Programs\Steam\steamapps\common\This War of Mine\Storyteller.exe
FirewallRules: [{7E1C554D-B14F-42DB-8B3D-B2BF901E1FC5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CDCDFB29-9080-415B-A47B-FFD84CBD19B9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{562EB317-06D1-4DBF-9698-3DDE76B9B4A7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DBE49F5B-DED0-46F7-8B41-C7B08ABA067A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{58A2994F-E45A-4EA2-A197-2906FF9C7CD6}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{15438433-B9C5-499A-A1A8-8866B153F8E0}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2A7FDF82-5D69-4137-B39D-B28BDA885014}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{61484603-6497-4B60-AFE9-B22C86421673}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8A89FF78-78FF-4EB8-8505-873EB869BE80}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BFBAEB86-7DFF-4DA8-A7DB-4DE76A591D29}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{13AB5E1F-AC28-4D0B-8E83-DD8B025F0EB6}] => (Allow) D:\Programs\Steam\steamapps\common\RimWorld\RimWorldWin.exe
FirewallRules: [{C1C15C48-75F6-4D4C-ADB4-B51AB9B4A479}] => (Allow) D:\Programs\Steam\steamapps\common\RimWorld\RimWorldWin.exe
FirewallRules: [{93F1815F-6E4F-4A95-94D8-AED95A2BBABA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{94BDABD5-07A8-4158-B867-21744581D077}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{80560CB2-94B3-4797-A1C5-D0DA77677A3B}C:\users\nicholas\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\nicholas\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{9C8FE8F5-F329-430E-85D6-474C05AF72F3}C:\users\nicholas\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\nicholas\appdata\roaming\spotify\spotify.exe
FirewallRules: [{B80B3E11-2706-4401-B2F6-A8F10E7C64D2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A64EEC28-52A5-41B7-973F-9A355059F2F5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BBD6E36D-EA30-47F4-8C89-262C51A2BA63}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2EC48A21-3375-435A-B81B-CEAEA25E2DC7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{596C020E-A5E7-4547-9E59-A806CCCA27DF}] => (Allow) C:\Program Files (x86)\GIGABYTE\AppCenter\ApCent.exe
FirewallRules: [{60AFE98B-B206-4906-82B4-E7F89BE0DBB1}] => (Allow) C:\Program Files (x86)\GIGABYTE\AppCenter\gcupd.exe
FirewallRules: [{164E6E25-82CF-4BF9-9069-CCCF8A85DACF}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{64611F6D-0CC5-42CC-AC81-EE90FB7C0400}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0C9C8BB5-FBB9-419D-BCB8-E6AC6C907944}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9DE42E91-9863-4468-90BF-862B25482120}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CEF98A4B-5464-4BCC-AAB9-342899272942}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{70288101-F6F8-4D2E-9975-3C08A0315915}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{241999DB-5477-4A6D-B6BC-88D85A5427D5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{FEEA2551-A07D-4996-8B1B-16C27CC1BFDA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{5A3804C6-5481-4D4D-9632-6442B9F6B237}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{69EAED4D-B536-44AC-88B0-68713D59B956}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{01091DE6-A7F9-4EF9-AAF0-683D1E4489D5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E9243A60-225A-440F-93F7-C49DC3E5D51B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8C7F51F1-C6FC-45FB-B264-DF1C7A10433B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7A35E12E-7D79-4B95-9982-357B1A4015CB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{ABA617B5-7296-44B1-8FCD-1A74CF78C395}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A0CECF39-14FE-4BB1-A367-B5FC5D1F1BE6}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{281B181B-D01A-43D9-90C5-5A087AE2FA3A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{407B7A18-C44E-4BCD-94DE-FD4F93CE9B97}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C05CA67B-EEA1-43AF-A6D8-183B1E235ADB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{828E3FC4-AD53-4247-97C0-D38C6BBB0947}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{67AB8034-7CF6-43B1-96DF-C85B1D6DE8B2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8ED0D2DA-8FAC-4536-A34E-F2385B2FBC64}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9E05DD2F-970F-4D5C-BB4D-6059D091577B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0DEC93E2-2720-477E-BFB7-4164487B6E14}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6023FF4F-4F85-4681-AE77-06AA2AB0A7ED}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F2E4322B-AE51-48D3-922F-F4B4D5AE8930}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A0A21A38-A306-4D8D-9A91-DD1DD2FE33BF}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DE33E84E-4565-43DC-BAC3-FB7AF2FD962E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B08EFC84-E14C-495A-B8AB-874DE488FC82}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9A65512A-1F9E-42E3-BD38-F92BBD38C813}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FB4B05D2-E4E4-4F83-AE16-0E2FBB28B686}] => (Allow) D:\Programs\Steam\steamapps\common\mordheim\mordheim.exe
FirewallRules: [{709393A6-4964-4C80-BB11-B5050853ED11}] => (Allow) D:\Programs\Steam\steamapps\common\mordheim\mordheim.exe
FirewallRules: [{3C919975-620D-46B4-8544-F4CF4DA87482}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{01927201-9031-4A75-9C06-9B8C53DD38A3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{17841652-80DB-4286-8864-2E34A67A8D84}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{787A5F4D-583D-43FA-82E0-9D684D9E9B66}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BEDD2508-5BF6-473B-9D92-2B64ECB2D1CA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F930A391-7EB7-403F-AEDF-ABFF162D765F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D8132CBA-1F0E-4025-90DA-16566F243AA4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{805AD728-7AEF-46C1-86C1-F1E9112FC891}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{55D0C0E5-A3B4-4A5B-8FE7-61D179A7A057}F:\programs\warcraft 3\warcraft iii\war3.exe] => (Allow) F:\programs\warcraft 3\warcraft iii\war3.exe
FirewallRules: [UDP Query User{40A25207-9DD2-4FB7-8CA8-2D9FF04DD2A9}F:\programs\warcraft 3\warcraft iii\war3.exe] => (Allow) F:\programs\warcraft 3\warcraft iii\war3.exe
FirewallRules: [{27D3AB99-9355-4093-88ED-0A34633BEA28}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{25DB7C0A-5DBA-46B2-B611-096B16C3C7DB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{64CEE77B-7AAC-4FF0-AD9C-56F1F0529554}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{171E8006-CE81-4D63-AA70-6D6127616C01}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D39D7631-5A14-451B-9752-630E70FBB399}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C815F87F-1178-45EA-A720-04444B51E758}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{62073FC3-C68E-417F-8C2B-8F324C2B027E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E505FA57-E112-4B5A-BCDD-2C62DDEF2612}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8EE8BC96-2BB1-41E8-91A4-9F014BB1A273}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D6B1544E-E78E-4638-B776-136A54A25D95}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CCDDBA7F-C75C-4EA0-8652-CE1D39F55B88}] => (Allow) D:\Programs\Steam\steamapps\common\Golf With Your Friends\Golf With Your Friends.exe
FirewallRules: [{311402A2-DB42-439A-AEC5-118B699B3675}] => (Allow) D:\Programs\Steam\steamapps\common\Golf With Your Friends\Golf With Your Friends.exe
FirewallRules: [{DEE8FCD1-6828-4DEE-8D8D-D185B7521359}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{39D9A63D-4770-4EA0-9CD3-A80511B8CB8F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BC0B95F0-D8A6-4AA8-861E-ED227F23E70E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{536B4391-4C5E-4CF1-B160-7C8A7B956ED5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{39BFE2A9-9337-4A66-9B1E-9EC723ED2770}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{26D2C187-C6C8-4633-89DC-B638A50C0EDC}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1C591907-A965-4F46-A0F4-DFF3F3E72B07}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C7BEAE2F-E8CD-4E46-9FAE-8163216419D0}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2A022061-242A-4572-8695-D574A40B4983}] => (Allow) F:\Programs\Steam\SteamApps\common\RimWorld\RimWorldWin.exe
FirewallRules: [{B3FBDA7A-3861-4471-B62D-1E995977D46B}] => (Allow) F:\Programs\Steam\SteamApps\common\RimWorld\RimWorldWin.exe
FirewallRules: [{957B6E45-DFC5-4309-8C2B-2898FE7F36F4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{81F606F8-8DEA-4F3D-9B0F-34D55EAF5BC3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{E9E4E677-C5D1-4CB1-966A-0981517A0CFA}F:\programs\steam\steamapps\common\arma 3\arma3.exe] => (Allow) F:\programs\steam\steamapps\common\arma 3\arma3.exe
FirewallRules: [UDP Query User{7B80F566-DE83-4C8B-9A7D-661827C44F1D}F:\programs\steam\steamapps\common\arma 3\arma3.exe] => (Allow) F:\programs\steam\steamapps\common\arma 3\arma3.exe
FirewallRules: [{C4F512D9-9DA7-455B-A4AF-4AEC5D60AC11}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{203963CC-97F0-4143-BB51-0021E16D30D3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D9EB87AE-8FFB-49FC-B7A8-C2A3C82EAB37}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9613D41C-DCD0-49A5-B0FA-B6725BFE3EA5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0787C260-4417-47DB-86DB-C478A6D233D4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A3A37721-7EED-4536-A05F-73F6A522FD36}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F94E018C-A647-4824-9463-380FC4BA9243}] => (Allow) D:\Programs\Steam\steamapps\common\Poly Bridge\polybridge.exe
FirewallRules: [{F1335A7B-412D-413E-BD94-ABEBC2C16D00}] => (Allow) D:\Programs\Steam\steamapps\common\Poly Bridge\polybridge.exe
FirewallRules: [{F8E2E698-F594-477D-8460-9BEDBCB511FF}] => (Allow) D:\Programs\Steam\steamapps\common\RIVE\rive.exe
FirewallRules: [{4772ED9D-9227-4043-A808-CD6B1D1FD15A}] => (Allow) D:\Programs\Steam\steamapps\common\RIVE\rive.exe
FirewallRules: [{F53C3695-497A-458E-8B6B-A7ABD290E336}] => (Allow) D:\Programs\Steam\steamapps\common\Flat Heroes\FlatHeroes.exe
FirewallRules: [{CF286E76-E136-4709-8612-5757E3E55112}] => (Allow) D:\Programs\Steam\steamapps\common\Flat Heroes\FlatHeroes.exe
FirewallRules: [{55395D2B-BD48-473D-96BE-A69DE9CFF2A0}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A10A65E5-C33B-4559-A972-EE977CCD517B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F6A4E95D-40F2-49FC-A2F8-8B30893B160D}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9C72B3B9-FC48-4365-840E-034B46D0BF74}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B10047BA-54F0-41CE-AD63-8E759254F654}] => (Allow) D:\Programs\Steam\steamapps\common\Turmoil\Turmoil_PC_Full.exe
FirewallRules: [{EFFC4431-6DBE-4AB8-8324-BA142538E880}] => (Allow) D:\Programs\Steam\steamapps\common\Turmoil\Turmoil_PC_Full.exe
FirewallRules: [{B1B136ED-7DF7-4F4B-9028-FDD193E81FE4}] => (Allow) D:\Programs\Steam\steamapps\common\Jotun\Jotun.exe
FirewallRules: [{C70D1ACF-8C42-42EE-BA8A-BEF18359288B}] => (Allow) D:\Programs\Steam\steamapps\common\Jotun\Jotun.exe
FirewallRules: [{B1AB1973-BA85-4265-B444-D3220111100E}] => (Allow) D:\Programs\Steam\steamapps\common\ValhallaHills\ValhallaHills.exe
FirewallRules: [{3BE26591-80D6-4A7F-997C-81DAAB52E3F6}] => (Allow) D:\Programs\Steam\steamapps\common\ValhallaHills\ValhallaHills.exe
FirewallRules: [{5A3D349C-F77E-429F-AC3B-86A24515589D}] => (Allow) D:\Programs\Steam\steamapps\common\Eisenwald\Eisenwald.exe
FirewallRules: [{F0067C12-4ABF-4BCC-A163-A62819C2DB50}] => (Allow) D:\Programs\Steam\steamapps\common\Eisenwald\Eisenwald.exe
FirewallRules: [{4CE37CA9-CC1A-45E4-83C2-63DEB1C3D05F}] => (Allow) D:\Programs\Steam\steamapps\common\Warhammer End Times Vermintide\launcher\launcher.exe
FirewallRules: [{ECAFE29A-02BA-4BB3-8577-20E692CBAC0F}] => (Allow) D:\Programs\Steam\steamapps\common\Warhammer End Times Vermintide\launcher\launcher.exe
FirewallRules: [{5A0C94B7-22E3-4C35-89BD-D9CBCA84BD97}] => (Allow) D:\Programs\Steam\steamapps\common\Warhammer End Times Vermintide\binaries\vermintide.exe
FirewallRules: [{0368C6A7-5F09-41D9-94A3-A0496FD03159}] => (Allow) D:\Programs\Steam\steamapps\common\Warhammer End Times Vermintide\binaries\vermintide.exe
FirewallRules: [{2097FE23-A2B1-41BD-8586-62A1665E408A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{13F2CFFA-56AB-4A0F-8D70-FD37411C01CD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BB92E4D3-98BA-46FA-A5E2-1D052C7D81A6}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8EF3327F-34EB-4EA5-8C01-D73C4E9D00B0}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2847ECC6-BF12-4D84-9199-866AA7CEFDA1}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{51B95A0D-E7EF-4294-9A03-C5799803D232}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{06A5F96B-136F-4339-8D49-0D89F17C07F2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{86AB6ECC-B203-4DBD-A8EA-0730FCCD7748}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{43BF11D3-3C9E-4287-9F53-3DBCC25E7C2D}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B05C78AF-07ED-41E4-BFCD-94AE3BD6F3AD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{59466A2C-FBF2-4A3F-BFC3-F71B24ED7C61}D:\programs\steam\steamapps\common\total war warhammer\warhammer.exe] => (Allow) D:\programs\steam\steamapps\common\total war warhammer\warhammer.exe
FirewallRules: [UDP Query User{F3774962-DBA8-405E-A809-0471F02BBFD9}D:\programs\steam\steamapps\common\total war warhammer\warhammer.exe] => (Allow) D:\programs\steam\steamapps\common\total war warhammer\warhammer.exe
FirewallRules: [{0EBD189B-E4C4-4771-B16C-ACF1584D430F}] => (Allow) C:\Program Files (x86)\GIGABYTE\AppCenter\ApCent.exe
FirewallRules: [{E6BF6D04-64B5-403C-8F66-B63C7C52617C}] => (Allow) C:\Program Files (x86)\GIGABYTE\AppCenter\gcupd.exe
FirewallRules: [{3B632646-1CE9-4B21-AE83-6E38503D9B9C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{ADB996EF-23BF-4581-9A56-33CF4AFF8C34}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1FDB3FB6-BE54-4D92-930C-8A728A0B4D4F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EB7E4430-045F-4B2B-86E5-72CACBE0AE97}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EF5A20C0-EE7B-440B-8D92-B99AF6744948}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{036D4620-07CF-45F8-96EB-0D47D04E57C5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A6421173-8151-41F5-9EDF-CD6E6448C3E2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EAB25FF3-20E9-4D26-9008-FFFBC7D6A3EA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C2743EAC-F3BE-4136-A4AF-84D458013B22}] => (Allow) F:\Programs\Origin\Games\Battlefield 4\BFLauncher.exe
FirewallRules: [{57B83B81-1E79-488D-9181-B9263D2468F1}] => (Allow) F:\Programs\Origin\Games\Battlefield 4\BFLauncher.exe
FirewallRules: [{D84321B6-6D96-4C0C-BD9A-6F370B30996B}] => (Allow) F:\Programs\Origin\Games\Battlefield 4\BFLauncher_x86.exe
FirewallRules: [{268C2B49-BFD3-49E6-B535-DD6A5BD2BD20}] => (Allow) F:\Programs\Origin\Games\Battlefield 4\BFLauncher_x86.exe
FirewallRules: [{E9AB7030-E4DD-41BC-A7EB-311C73D4E2BB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D642DEA4-F539-4DF3-83B4-95CF0BC0DD86}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E1A0AD4B-C148-465B-B916-7CEBB8BE24DD}] => (Allow) D:\Programs\Steam\steamapps\common\Helldivers\binaries\x64\helldivers.exe
FirewallRules: [{C71F0B5A-C3CB-4C2C-A062-81047E43072B}] => (Allow) D:\Programs\Steam\steamapps\common\Helldivers\binaries\x64\helldivers.exe
FirewallRules: [{38378D52-FF7F-42B2-96A3-EFEACC0669F6}] => (Allow) D:\Programs\Steam\steamapps\common\Helldivers\binaries\x86\helldivers.exe
FirewallRules: [{AB666E96-D651-432E-B6A0-650F76387919}] => (Allow) D:\Programs\Steam\steamapps\common\Helldivers\binaries\x86\helldivers.exe
FirewallRules: [{1ABC6852-E52C-4AD6-87FD-420F13E650EC}] => (Allow) D:\Programs\Steam\steamapps\common\Rampage Knights\rampage_knights.exe
FirewallRules: [{182A8AE7-F788-43A8-B90D-C49DC48685D4}] => (Allow) D:\Programs\Steam\steamapps\common\Rampage Knights\rampage_knights.exe
FirewallRules: [{D0AA050A-54F8-4E9C-B3A8-A575EACF8855}] => (Allow) D:\Programs\Steam\steamapps\common\Ultimate Chicken Horse\UltimateChickenHorse.exe
FirewallRules: [{03856AE5-0ECE-43B7-BAD4-47BF29E7AB8D}] => (Allow) D:\Programs\Steam\steamapps\common\Ultimate Chicken Horse\UltimateChickenHorse.exe
FirewallRules: [{00E0C091-A3AA-4EE2-8475-67AF206AA2F4}] => (Allow) D:\Programs\Steam\steamapps\common\Move or Die\MoveOrDie.exe
FirewallRules: [{838E7C81-341F-4C52-BD92-0EB38486BC25}] => (Allow) D:\Programs\Steam\steamapps\common\Move or Die\MoveOrDie.exe
FirewallRules: [{C1B113AC-E9FA-4970-8F72-200D6B6D839E}] => (Allow) D:\Programs\Steam\steamapps\common\Move or Die\Editor.exe
FirewallRules: [{B241D4FF-9F47-492A-BA72-6ACD5CB68020}] => (Allow) D:\Programs\Steam\steamapps\common\Move or Die\Editor.exe
FirewallRules: [{2F5B8EC7-DD24-4756-9CD9-C90F7C436855}] => (Allow) D:\Programs\Steam\steamapps\common\Eon Altar\EonAltar.exe
FirewallRules: [{C6853374-6610-473D-AFFD-23A76181FC6E}] => (Allow) D:\Programs\Steam\steamapps\common\Eon Altar\EonAltar.exe
FirewallRules: [{3753F610-E191-43C5-B412-70EAD4F4B5FA}] => (Allow) D:\Programs\Steam\steamapps\common\Tricky Towers\TrickyTowers.exe
FirewallRules: [{BCA9D40E-9A81-4588-9CF0-14C9EA769EE4}] => (Allow) D:\Programs\Steam\steamapps\common\Tricky Towers\TrickyTowers.exe
FirewallRules: [{073A5E37-DF14-469F-A802-40E2720085AC}] => (Allow) D:\Programs\Steam\steamapps\common\Tyranny\Tyranny.exe
FirewallRules: [{73764DE1-6CBC-4489-A582-7D991C8CFF0A}] => (Allow) D:\Programs\Steam\steamapps\common\Tyranny\Tyranny.exe
FirewallRules: [{83BA4CFF-2720-4C3C-820A-98A6E8F24ABD}] => (Allow) D:\Programs\Steam\steamapps\common\Kingdom New Lands\Kingdom.exe
FirewallRules: [{D5655BEE-48F4-46FD-8EC3-D83B303CF2E4}] => (Allow) D:\Programs\Steam\steamapps\common\Kingdom New Lands\Kingdom.exe
FirewallRules: [{E2D91D55-D72C-414B-BFF5-EE632B2C06F6}] => (Allow) D:\Programs\Steam\steamapps\common\Slime-san\Slime-san.exe
FirewallRules: [{A0265708-9E00-4A54-8CCA-5BC1977514E8}] => (Allow) D:\Programs\Steam\steamapps\common\Slime-san\Slime-san.exe
FirewallRules: [{7C59D483-4AB8-4688-B324-EA7735105B9E}] => (Allow) D:\Programs\Steam\steamapps\common\Event[0]\event0.exe
FirewallRules: [{F76B7A30-2A14-4C84-B1DC-EE11E7998ADB}] => (Allow) D:\Programs\Steam\steamapps\common\Event[0]\event0.exe
FirewallRules: [{A25A830E-B454-4CED-B079-3B6577E47D5D}] => (Allow) D:\Programs\Steam\steamapps\common\Black Mesa\bms.exe
FirewallRules: [{8DD5B459-5B6A-43F7-94E4-6518AECAAF94}] => (Allow) D:\Programs\Steam\steamapps\common\Black Mesa\bms.exe
FirewallRules: [{A9D28A07-DA33-4333-A33F-B24341FFEE18}] => (Allow) D:\Programs\Steam\steamapps\common\Tumblestone\Tumblestone.exe
FirewallRules: [{CCC5502F-E0E9-4096-9CE5-7EB983E1143E}] => (Allow) D:\Programs\Steam\steamapps\common\Tumblestone\Tumblestone.exe
FirewallRules: [{D1175516-7A4D-4F01-B945-44A60732A5D4}] => (Allow) D:\Programs\Steam\steamapps\common\DiRT Rally\drt.exe
FirewallRules: [{0283268B-FC75-40CB-AAA8-31BBE0BEC1DE}] => (Allow) D:\Programs\Steam\steamapps\common\DiRT Rally\drt.exe
FirewallRules: [{C8A28235-1C5D-4630-8E57-3C0CC52A62EA}] => (Allow) D:\Programs\Steam\steamapps\common\INSIDE\INSIDE.exe
FirewallRules: [{E1A87AF4-2AF6-4C13-8DCE-366C82CE71D1}] => (Allow) D:\Programs\Steam\steamapps\common\INSIDE\INSIDE.exe
FirewallRules: [TCP Query User{11F5E09B-3C66-4A20-8A02-A63CA50339AD}D:\programs\steam\steamapps\common\move or die\love\win\love.exe] => (Allow) D:\programs\steam\steamapps\common\move or die\love\win\love.exe
FirewallRules: [UDP Query User{82AA8B44-5E78-4BCF-A88A-78AC567D1EFE}D:\programs\steam\steamapps\common\move or die\love\win\love.exe] => (Allow) D:\programs\steam\steamapps\common\move or die\love\win\love.exe
FirewallRules: [{7B70309B-F32D-44E0-A256-5EE91D52E71B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A0450988-DB8D-4300-AC76-5B238C0A11AD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2F9694C6-32ED-4C0D-A6F7-487B8F9A030F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9E0D91FA-4BE3-4A43-927D-E28198FC4B2D}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5F8E4787-2420-40AD-A35F-27C11DECE624}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4D0CD658-E069-4594-B2F9-9070473ACA93}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B5584ABF-0119-4006-9261-5AC183482E61}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C235613E-3C32-4D1E-8005-30BA96756E11}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B6D69801-68A4-4783-8A6D-68078553DE88}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4900C085-4C13-471D-986E-05972E87F2A2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B96C2918-E5D9-4981-BF32-2F20AB80B5F7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{360B0CAA-B605-49CC-B90D-B96488368FD7}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2B02E9D0-9A9A-4492-908D-E51195722128}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7580B295-D81F-4E85-BAC7-9EE752603CC0}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{49DD6DAD-30C9-4D5B-B348-67957E733FE1}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F0E6B541-9341-4664-8DF0-BB09E183814A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B510DC7A-D521-4B26-AA62-3D618873EE19}] => (Allow) D:\Programs\Steam\steamapps\common\Total War WARHAMMER\launcher\launcher.exe
FirewallRules: [{77786615-0AB7-4938-A2D6-A0F93077CEAB}] => (Allow) D:\Programs\Steam\steamapps\common\Total War WARHAMMER\launcher\launcher.exe
FirewallRules: [{B9017627-BC38-4554-8A07-073892171381}] => (Allow) F:\Programs\Steam\SteamApps\common\Divinity Original Sin Enhanced Edition\Shipping\EoCApp.exe
FirewallRules: [{D2F6A242-171F-408E-B097-403897A8D974}] => (Allow) F:\Programs\Steam\SteamApps\common\Divinity Original Sin Enhanced Edition\Shipping\EoCApp.exe
FirewallRules: [{803B5ED7-01B0-4176-9C45-B77146728EBD}] => (Allow) D:\Programs\Steam\steamapps\common\DARK SOULS III\Game\DarkSoulsIII.exe
FirewallRules: [{5D60B595-A81C-4BC8-A15A-FEEBA0FFFF74}] => (Allow) D:\Programs\Steam\steamapps\common\DARK SOULS III\Game\DarkSoulsIII.exe
FirewallRules: [{2A2E02B1-80BC-464F-B95B-5FC001C0A4E2}] => (Allow) D:\Programs\Steam\steamapps\common\The Turing Test\TheTuringTest\Binaries\Win64\TheTuringTest.exe
FirewallRules: [{532EA941-6033-4279-9242-91CDD64A242E}] => (Allow) D:\Programs\Steam\steamapps\common\The Turing Test\TheTuringTest\Binaries\Win64\TheTuringTest.exe
FirewallRules: [{228CDBF6-CCD2-47F3-AB9E-9211BF655395}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FD89CFC2-41C5-4840-A0A7-1601ECD384CD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{66E33D3C-37A7-4243-A305-2C2EE9D497F3}C:\users\nicholas\appdata\local\championify\app-2.1.1\championify.exe] => (Allow) C:\users\nicholas\appdata\local\championify\app-2.1.1\championify.exe
FirewallRules: [UDP Query User{F78407CC-513F-421C-8614-7E94DDCF93E2}C:\users\nicholas\appdata\local\championify\app-2.1.1\championify.exe] => (Allow) C:\users\nicholas\appdata\local\championify\app-2.1.1\championify.exe
FirewallRules: [{E8BFDB8D-5B35-4B89-A416-5C33EF0A24E0}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{028423D0-66F6-444B-A207-F6C8351C121B}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{07811A75-EBF3-4356-9665-AB67C01669AC}] => (Allow) D:\Programs\Steam\steamapps\common\How to Survive 2\Exe\HowToSurvive2.exe
FirewallRules: [{048A8E58-DC1B-4EE4-9B90-FE5B4A5EE5E7}] => (Allow) D:\Programs\Steam\steamapps\common\How to Survive 2\Exe\HowToSurvive2.exe
FirewallRules: [{6EBA82A4-F3F1-4F89-8F22-A9F3DD2D32B8}] => (Allow) D:\Programs\Steam\steamapps\common\How to Survive 2\Exe\Detect.exe
FirewallRules: [{9DAB45F7-F8B2-4CD3-A93E-7046E67B12AC}] => (Allow) D:\Programs\Steam\steamapps\common\How to Survive 2\Exe\Detect.exe
FirewallRules: [{612ABE6D-75C1-406E-83F7-82A6BD417DED}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1EF625DA-AB9B-4FD6-87F4-EA297525B3E4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{20A28174-A245-46BA-BFBA-9B5AEAD37204}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{03466980-7214-4D3C-8285-4C7886BAD7FC}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EB34F1B7-E5BA-4B68-BB73-270A8ACDB8FA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1E56D44F-75E5-4009-A361-B91FB1494054}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BDD49E3E-696A-4FEF-9EDC-B5314B61CDF0}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3A7AA296-710A-4574-A742-EABE1E39125E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{908EF79C-7D39-425E-859A-243AA6393774}] => (Allow) D:\Programs\Steam\steamapps\common\Galactic Civilizations I Ultimate Edition\AltarianProphecy\GalCiv.exe
FirewallRules: [{4A133581-A87B-47FA-B057-76C9C4D77D4E}] => (Allow) D:\Programs\Steam\steamapps\common\Galactic Civilizations I Ultimate Edition\AltarianProphecy\GalCiv.exe
FirewallRules: [{2CC9ECAC-8F5B-4BA7-BBC0-D21DAD74166E}] => (Allow) D:\Programs\Steam\steamapps\common\Galactic Civilizations I Ultimate Edition\GalCiv\galciv.exe
FirewallRules: [{5D3B40F8-D7DD-488F-B5EB-BE66E64641AB}] => (Allow) D:\Programs\Steam\steamapps\common\Galactic Civilizations I Ultimate Edition\GalCiv\galciv.exe
FirewallRules: [{D7449707-DE60-422F-8966-B1E6D695B5FF}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1A783FEC-3F1E-4DAB-85F5-A5683161F0C9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{04D9D06E-8825-4912-BCBB-15BD8F9CBCBD}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{719FAC9F-0F2A-42D8-9DE7-954AC293AFD3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E6D01969-4804-4410-BDE3-AE051B9182A0}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{18907EB5-50B5-47CE-B535-D6DC0853FCF3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{97ED733C-7D4C-49FF-B811-9E708E87459C}] => (Allow) D:\Programs\Steam\steamapps\common\Throne of Lies\ThroneOfLies.exe
FirewallRules: [{5F494409-C236-44D7-8550-344223F2BB48}] => (Allow) D:\Programs\Steam\steamapps\common\Throne of Lies\ThroneOfLies.exe
FirewallRules: [{21608FB8-4B16-45CF-8A8F-A75F377A7C8E}] => (Allow) D:\Programs\Steam\steamapps\common\War Thunder\launcher.exe
FirewallRules: [{DC492E2F-A22D-408D-AF46-0EC0A5DBF64F}] => (Allow) D:\Programs\Steam\steamapps\common\War Thunder\launcher.exe
FirewallRules: [TCP Query User{65A154FD-9F3D-4A09-999A-F52B06B950DF}D:\programs\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) D:\programs\steam\steamapps\common\war thunder\win64\aces.exe
FirewallRules: [UDP Query User{EBF8C777-9150-48E4-9261-40453F907BFA}D:\programs\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) D:\programs\steam\steamapps\common\war thunder\win64\aces.exe
FirewallRules: [TCP Query User{847A5999-0F94-4DDB-87B9-F582747C82C2}D:\programs\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\programs\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe
FirewallRules: [UDP Query User{B442D9E1-4C7F-4A50-81A6-28DC7B997669}D:\programs\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\programs\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe
FirewallRules: [{1DED05D5-860A-4F04-B1E5-EA983C369E13}] => (Allow) D:\Programs\Steam\steamapps\common\DarkestDungeon\_windows\Darkest.exe
FirewallRules: [{10FCD5B6-6C44-417F-AE6C-B637EC18C963}] => (Allow) D:\Programs\Steam\steamapps\common\DarkestDungeon\_windows\Darkest.exe
FirewallRules: [{2B7F64E1-A0DE-4AF1-B43A-9613ED06085A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9234D98A-6956-4601-A219-20D3904222EA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F8C0AA90-EFE6-4F08-8ABF-AD390C48EC8E}] => (Allow) D:\Programs\Steam\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe
FirewallRules: [{C72A35BC-D7C9-4313-BAB9-D730EB1A7FFD}] => (Allow) D:\Programs\Steam\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe
FirewallRules: [{C10CE3B7-C3E9-4980-9671-B5B6083116C1}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C96BAE0F-A251-470F-A179-1BF30CC5D2D5}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{36039B63-254F-4D7A-A583-F6AB7E270972}] => (Allow) D:\Programs\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{CBC1B092-43DA-4799-820A-E9EC5BA0B22B}] => (Allow) D:\Programs\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{0C880341-A403-4B92-A745-2A129C97773C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{055C140A-1DED-4412-9BA2-0BF44A60BEF2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{17381759-24A9-4C09-9F1E-5F1DFC204D90}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BF268B88-B03D-4383-953D-926E5198E82F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{81A2E051-3ACE-4C2F-B398-411E133F2E84}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{E1EF65AE-48BE-4C9B-B7E1-9B98405AB1D8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C652D360-9BFD-4B41-80A4-167B52BD3F72}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A3DEA745-D887-4270-805C-D999FA4123CC}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\starbound.exe
FirewallRules: [{36ED7F23-04BE-40A7-A594-2AADC53A4B83}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\starbound.exe
FirewallRules: [{43292DCD-3CBB-4090-AF8E-3B06DE89098E}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\starbound_server.exe
FirewallRules: [{5A50CF51-C7CB-4248-A688-EAE9CA4A5972}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\starbound_server.exe
FirewallRules: [{5A4F45D5-C531-4EE7-9D0F-7E29B81481E6}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\mod_uploader.exe
FirewallRules: [{3420D9A8-36E0-4289-ACFA-6FDC1F2C9039}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\mod_uploader.exe
FirewallRules: [{5DA39276-3CC9-4B21-AEEA-A2DAC8042D2E}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win32\starbound.exe
FirewallRules: [{598C3DE5-9E71-46E6-929F-F23F6CDB56BC}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win32\starbound.exe
FirewallRules: [{8B9D2A26-B754-4CB5-B885-3E1240DEE842}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{16627B9F-612F-4D15-B3DC-457080943BE4}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B0FDD432-39DB-4F8D-8072-758EEC7EAB12}] => (Allow) D:\Programs\Steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe
FirewallRules: [{FCC51DA1-5C60-4853-90A9-BCBFBB47B9D6}] => (Allow) D:\Programs\Steam\steamapps\common\dont_starve\bin\dontstarve_steam.exe
FirewallRules: [{5DC264C5-51C5-4E52-8557-BE0FE8355739}] => (Allow) D:\Programs\Steam\steamapps\common\tbs2\win32\The Banner Saga 2.exe
FirewallRules: [{4EFAD4F1-8256-4E33-AEE5-A3FCBB56C271}] => (Allow) D:\Programs\Steam\steamapps\common\tbs2\win32\The Banner Saga 2.exe
FirewallRules: [{6D648F58-F5BA-45BD-825E-52648F73552F}] => (Allow) D:\Programs\Steam\steamapps\common\Factorio\bin\x64\factorio.exe
FirewallRules: [{2745F49D-96C9-4871-9451-83E852501BAC}] => (Allow) D:\Programs\Steam\steamapps\common\Factorio\bin\x64\factorio.exe
FirewallRules: [{065CDDD4-534B-4114-9B07-E4B56FFA2444}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2B1791F0-6BAC-441F-BE7F-6A98341D513A}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F62F630E-AFE2-4A4D-ACFE-3FEEEC9B4D3C}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{701A632D-F25B-4AAC-8FEE-B1005B66F1D3}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C594EBB8-1B83-4824-9973-D78A9CD153E9}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DB9506D5-6FB6-412F-973B-29FA0CD51546}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{89F1CF59-C4D3-4108-9E9E-4E1F78B631C8}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1EB91596-BB05-462D-8D0D-8F71DCCE0D4F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{40DCA692-49B7-49B4-847C-F10DD504FD60}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FA9380A8-0CDB-4D8A-AC5E-99138F465923}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8456A3EA-CF51-4ABC-85BB-3841B4253D32}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1BEDE627-5C89-4DD2-B0B1-F14C7DA7A19F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{39CCC553-ADD5-4D34-B0EF-8C41942A2E2E}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{84C6A75A-3E85-4D7A-81FB-C2185F144828}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{00CADA3B-377D-4B71-B1A1-4961F17FAEF2}] => (Allow) D:\Programs\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe
FirewallRules: [{1360E9E6-B06E-407B-8498-A465BEC1DF85}] => (Allow) D:\Programs\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe
FirewallRules: [{7CABC05B-6C7A-4E8A-A02D-225807E18743}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FD898745-E2AC-448E-A77C-A7330C9EB2B2}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{436BD092-EB05-4EF1-BC02-8E33B08090E4}] => (Allow) D:\Programs\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{CE18AB76-29F7-4708-B637-21477BEF2547}] => (Allow) D:\Programs\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{817B8CE1-D054-4ED1-81EB-EDA9D8851020}] => (Allow) D:\Programs\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe
FirewallRules: [{B8B8719B-615C-4813-B8E2-002E223B900A}] => (Allow) D:\Programs\Steam\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe
FirewallRules: [{172576EA-CAB5-49F1-8E82-E583116592BA}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BAA6C425-FD6D-4BD8-AADA-56D9C71340AB}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E19FFB31-2899-441F-B9EA-678760EFAF86}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\starbound.exe
FirewallRules: [{C5CD482D-04C3-4D8D-A555-FA9A34E1A379}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\starbound.exe
FirewallRules: [{6BB46EB6-CE67-42FD-8820-B6EEC3C3BB39}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\starbound_server.exe
FirewallRules: [{C7ED7DA2-4206-4EE9-81D2-896EFDEE1E61}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\starbound_server.exe
FirewallRules: [{969903E3-C07E-49B0-B7AD-9A29373EEBE4}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\mod_uploader.exe
FirewallRules: [{779B6C2E-C716-4D6A-A429-E3B2399D813C}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win64\mod_uploader.exe
FirewallRules: [{2C7949AF-4223-460F-BA90-C49F399F493F}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win32\starbound.exe
FirewallRules: [{11C150CC-2426-44ED-A77F-9423C43BFD86}] => (Allow) F:\Programs\Steam\SteamApps\common\Starbound\win32\starbound.exe
FirewallRules: [{F84ADCF2-C6AD-4748-9BDC-D4D4581FB070}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E26C43C2-B444-4580-8699-76BF207373D6}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0455EAEA-A97C-427C-A310-FF5F6988BE75}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4463FBA3-0A0B-48CF-80FC-F1FF77DB0F7F}] => (Allow) F:\Programs\Steam\SteamApps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5E7F5FE8-0957-4FA3-9EE6-38C45E459F9D}] => (Allow) D:\Programs\Steam\steamapps\common\DarkestDungeon\_windows\Darkest.exe
FirewallRules: [{818F7755-3453-43D4-A049-D93FDB35F900}] => (Allow) D:\Programs\Steam\steamapps\common\DarkestDungeon\_windows\Darkest.exe
StandardProfile\AuthorizedApplications: [D:\Programs\xchat\xchat.exe] => Enabled:XChat IRC Client
 
==================== Restore Points =========================
 
20-12-2017 15:16:55 Scheduled Checkpoint
 
==================== Faulty Device Manager Devices =============
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (12/21/2017 12:35:40 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: IAStorDataMgrSvc.exe, version: 14.8.0.1042, time stamp: 0x5639dd97
Faulting module name: ntdll.dll, version: 10.0.16299.64, time stamp: 0xac8afc81
Exception code: 0xc0000374
Fault offset: 0x000da849
Faulting process id: 0xa64
Faulting application start time: 0x01d37a8a80371b06
Faulting application path: C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll
Report Id: cdc8d26d-8b74-4288-8cf3-a5a7a6374825
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (12/21/2017 03:22:02 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0
 
Error: (12/20/2017 02:22:44 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: IAStorDataMgrSvc.exe, version: 14.8.0.1042, time stamp: 0x5639dd97
Faulting module name: KERNELBASE.dll, version: 10.0.16299.15, time stamp: 0x2cd1ce3d
Exception code: 0xe0434352
Fault offset: 0x001008b2
Faulting process id: 0x2fd0
Faulting application start time: 0x01d379d049f312f8
Faulting application path: C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
Faulting module path: C:\WINDOWS\System32\KERNELBASE.dll
Report Id: d9ce5c30-5589-4e58-8df9-e70d72b8dbd2
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (12/20/2017 02:22:43 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: IAStorDataMgrSvc.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.AccessViolationException
   at <Module>.IsiSessionOpen(UInt32*)
   at PsiData.PsiDataSource.Load(System.Collections.Generic.Dictionary`2<Int32,System.Object> ByRef, Boolean)
   at PSI.PsiSystemDataModel.LoadDriverData(Int32)
   at PSI.PsiSystemDataModel.CreateStaticDataModel()
   at PSI.PsiSystemDataModel..cctor()
 
Exception Info: System.TypeInitializationException
   at PSI.PsiSystemDataModel.Connect()
   at PSIClient.PsiClient.Init()
   at IAStorUtil.SystemDataModelListener..ctor()
   at IAStorDataMgr.EventRelay.<Start>b__0(System.Object)
   at System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object)
   at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   at System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem()
   at System.Threading.ThreadPoolWorkQueue.Dispatch()
   at System.Threading._ThreadPoolWaitCallback.PerformWaitCallback()
 
Error: (12/20/2017 02:26:00 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0
 
Error: (12/20/2017 02:16:05 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: IAStorDataMgrSvc.exe, version: 14.8.0.1042, time stamp: 0x5639dd97
Faulting module name: ntdll.dll, version: 10.0.16299.64, time stamp: 0xac8afc81
Exception code: 0xc0000374
Fault offset: 0x000da849
Faulting process id: 0x37ac
Faulting application start time: 0x01d3796ac7693352
Faulting application path: C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll
Report Id: 8ea07fd6-5582-4836-bf4d-83d33b61d565
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (12/20/2017 01:55:23 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: IAStorDataMgrSvc.exe, version: 14.8.0.1042, time stamp: 0x5639dd97
Faulting module name: ntdll.dll, version: 10.0.16299.64, time stamp: 0xac8afc81
Exception code: 0xc0000374
Fault offset: 0x000da849
Faulting process id: 0xe40
Faulting application start time: 0x01d37967e35ab213
Faulting application path: C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll
Report Id: f048cc4c-68cc-42fe-bdf9-cee5b3fc976a
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (12/19/2017 01:59:08 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0
 
Error: (12/19/2017 01:58:12 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: IAStorDataMgrSvc.exe, version: 14.8.0.1042, time stamp: 0x5639dd97
Faulting module name: ntdll.dll, version: 10.0.16299.64, time stamp: 0xac8afc81
Exception code: 0xc0000374
Fault offset: 0x000da849
Faulting process id: 0xec4
Faulting application start time: 0x01d3789f1dd3ff3f
Faulting application path: C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll
Report Id: c46789a5-956c-4bf4-b085-83b1892a0098
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (12/18/2017 03:48:21 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: IAStorDataMgrSvc.exe, version: 14.8.0.1042, time stamp: 0x5639dd97
Faulting module name: ntdll.dll, version: 10.0.16299.64, time stamp: 0xac8afc81
Exception code: 0xc0000374
Fault offset: 0x000da849
Faulting process id: 0x31ec
Faulting application start time: 0x01d377e5565f7b82
Faulting application path: C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll
Report Id: 756521e2-365d-49ee-8ece-b23b7e07fbc3
Faulting package full name: 
Faulting package-relative application ID:
 
 
System errors:
=============
Error: (12/21/2017 12:35:42 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Intel® Rapid Storage Technology service terminated unexpectedly.  It has done this 1 time(s).
 
Error: (12/21/2017 12:33:58 PM) (Source: DCOM) (EventID: 10016) (User: NOTAMAC)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 and APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 to the user NotAMac\Nicholas SID (S-1-5-21-2400751361-3771152734-1433153139-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (12/21/2017 12:33:38 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The W3SVC service depends on the WAS service which failed to start because of the following error: 
The system cannot find the path specified.
 
Error: (12/21/2017 12:33:38 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The NetPipeActivator service depends on the WAS service which failed to start because of the following error: 
The system cannot find the path specified.
 
Error: (12/21/2017 12:33:38 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The NetTcpActivator service depends on the WAS service which failed to start because of the following error: 
The system cannot find the path specified.
 
Error: (12/21/2017 12:33:38 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The NetMsmqActivator service depends on the WAS service which failed to start because of the following error: 
The system cannot find the path specified.
 
Error: (12/21/2017 12:33:38 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The WAS service terminated with the following error: 
The system cannot find the path specified.
 
Error: (12/21/2017 12:33:37 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Sentinel64 service failed to start due to the following error: 
The system cannot find the device specified.
 
Error: (12/21/2017 12:33:38 PM) (Source: APPHOSTSVC) (EventID: 9010) (User: )
Description: The Application Host Helper Service encountered an error trying to access the root history directory 'C:\inetpub\history'.  The directory either doesn't exist or the permissions on it don't allow the history service to access it. The config history feature is disabled for now and will be re-enabled after the issue is resolved. To resolve this issue, please ensure that the directory exists and that the Administrators group have read and write access to it.  The data field contains the error number.
 
Error: (12/21/2017 12:33:37 PM) (Source: WAS) (EventID: 5005) (User: )
Description: Windows Process Activation Service (WAS) is stopping because it encountered an error. The data field contains the error number.
 
 
CodeIntegrity:
===================================
  Date: 2017-12-17 19:36:09.325
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
 
  Date: 2017-12-15 09:58:02.497
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume9\Programs\SeaTools\uninst.exe that did not meet the Unchecked signing level requirements.
 
  Date: 2017-12-15 09:58:02.493
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume9\Programs\SeaTools\uninst.exe that did not meet the Unchecked signing level requirements.
 
  Date: 2017-12-15 09:58:02.492
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume9\Programs\SeaTools\uninst.exe that did not meet the Unchecked signing level requirements.
 
  Date: 2017-12-15 03:58:59.409
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\sbohdwcsvc.exe that did not meet the Unchecked signing level requirements.
 
  Date: 2017-12-15 03:58:59.306
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\sbohdwcsvc.exe that did not meet the Unchecked signing level requirements.
 
  Date: 2017-12-15 03:58:59.163
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\sbohdwcsvc.exe that did not meet the Unchecked signing level requirements.
 
  Date: 2017-12-15 01:33:27.848
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
 
  Date: 2017-12-15 01:33:02.706
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
 
  Date: 2017-12-15 00:01:36.582
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
 
 
==================== Memory info =========================== 
 
Processor: Intel® Core™ i7-6700K CPU @ 4.00GHz
Percentage of memory in use: 22%
Total physical RAM: 16340.63 MB
Available physical RAM: 12606.67 MB
Total Virtual: 17364.63 MB
Available Virtual: 12509.32 MB
 
==================== Drives ================================
 
Drive c: (SSD) (Fixed) (Total:118.66 GB) (Free:26.93 GB) NTFS
Drive d: (Future Crash Site) (Fixed) (Total:2794.39 GB) (Free:1827.89 GB) NTFS
Drive e: (Space For Rent) (Fixed) (Total:1397.25 GB) (Free:1395.28 GB) NTFS
Drive f: (HDD) (Fixed) (Total:2777.41 GB) (Free:1758.31 GB) NTFS
Drive g: () (Removable) (Total:119.27 GB) (Free:27.42 GB) exFAT
Drive h: (System Reserve) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[system with boot components (obtained from drive)]
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 119.2 GB) (Disk ID: D8A10754)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=118.7 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=488 MB) - (Type=27)
 
========================================================
Disk: 1 (Size: 1397.3 GB) (Disk ID: 09CC2397)
Partition 1: (Not Active) - (Size=1397.3 GB) - (Type=07 NTFS)
 
========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 2794.5 GB) (Disk ID: 093A2273)
 
Partition: GPT.
 
========================================================
Disk: 3 (Size: 2794.5 GB) (Disk ID: 06EA1DD3)
 
Partition: GPT.
 
========================================================
Disk: 4 (Size: 119.3 GB) (Disk ID: 00000000)
 
Partition: GPT.
 
==================== End of Addition.txt ============================





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users