Additional scan result of Farbar Recovery Scan Tool (x64) Version:18-07-2015 01 Ran by Noah at 2016-04-16 11:39:05 Running from C:\Users\Noah\Desktop Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-751640475-2500746965-3390099758-500 - Administrator - Disabled) Guest (S-1-5-21-751640475-2500746965-3390099758-501 - Limited - Disabled) Noah (S-1-5-21-751640475-2500746965-3390099758-1000 - Administrator - Enabled) => C:\Users\Noah ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Acrobat DC (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0C0F074E4100}) (Version: 15.010.20060 - Adobe Systems Incorporated) Adobe After Effects CC 2015 (HKLM-x32\...\{147EC100-14BE-45EF-AB42-35BAEE7D02F0}) (Version: 13.7.1 - Adobe Systems Incorporated) Adobe Animate CC 2015 (HKLM-x32\...\{8CEBC11D-C52F-11E5-A0D6-D44AB5E81A82}) (Version: 15.1 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.6.0.248 - Adobe Systems Incorporated) Adobe Dreamweaver CC 2015 (HKLM-x32\...\{EE2A0AA8-0386-11E5-8603-BC82F5DB1A71}) (Version: 16.1.2 - Adobe Systems Incorporated) Adobe Edge Animate CC 2015 (HKLM-x32\...\{92AC6B8F-F962-11E4-867D-81149C0292DF}) (Version: 6.0 - Adobe Systems Incorporated) Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.267 - Adobe Systems Incorporated) Adobe Illustrator CC 2015 (HKLM-x32\...\ILST_19_2_1) (Version: 19.2.1 - Adobe Systems Incorporated) Adobe InDesign CC 2015 (HKLM-x32\...\{DBFD0312-6E55-1014-8952-E78D43BC0147}) (Version: 11.3.0.034 - Adobe Systems Incorporated) Adobe Media Encoder CC 2015 (HKLM-x32\...\{0FAC7130-BEC5-47A5-8813-1D339B8326ED}) (Version: 9.2.0 - Adobe Systems Incorporated) Adobe Photoshop CC 2015 (HKLM-x32\...\{793C2BF7-A4FE-4608-91C9-9282C5801C21}) (Version: 16.1.2 - Adobe Systems Incorporated) Adobe Premiere Pro CC 2015 (HKLM-x32\...\{38C72D42-0672-43B1-9E05-E7631684F9A1}) (Version: 9.2.0 - Adobe Systems Incorporated) AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 5.00 - Advanced Micro Devices, Inc.) Apple Application Support (32-bit) (HKLM-x32\...\{7FA9ECCF-A2DE-4DA1-BFF3-81260DBDA68F}) (Version: 4.1.2 - Apple Inc.) Apple Application Support (64-bit) (HKLM\...\{691F30EB-9009-475A-B8A9-E1BF39598FD5}) (Version: 4.1.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{3540181E-340A-4E7A-B409-31663472B2F7}) (Version: 9.1.0.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}) (Version: 2.1.4.131 - Apple Inc.) ASUS Bluetooth Suite (HKLM\...\{230D1595-57DA-4933-8C4E-375797EBB7E1}) (Version: 7.02.000.60 - ASUS Communications) ASUS GPU Tweak (HKLM-x32\...\InstallShield_{532F6E8A-AF97-41C3-915F-39F718EC07D1}) (Version: 2.8.3.0 - ASUSTek COMPUTER INC.) ASUS GPU Tweak (x32 Version: 2.8.3.0 - ASUSTek COMPUTER INC.) Hidden Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.16.282 - Avira Operations GmbH & Co. KG) Avira Launcher (HKLM-x32\...\{3b87484e-d70b-4b4f-ad59-2ae89571e2cf}) (Version: 1.1.56.9119 - Avira Operations GmbH & Co. KG) Avira Launcher (x32 Version: 1.1.56.9119 - Avira Operations GmbH & Co. KG) Hidden Batman™: Arkham Origins (HKLM-x32\...\Steam App 209000) (Version: - WB Games Montreal) BLACKHOLE (HKLM-x32\...\BLACKHOLE_is1) (Version: - FiolaSoft Studios) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Catalyst Control Center Next Localization BR (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.03 - Piriform) CINEMA 4D 15.008 (HKLM\...\MAXON0655BAAC) (Version: 15.008 - MAXON Computer GmbH) <==== ATTENTION Condemned: Criminal Origins (HKLM-x32\...\Steam App 4720) (Version: - Monolith) DivX Setup (HKLM-x32\...\DivX Setup) (Version: 2.7.0.64 - DivX, LLC) Dropbox (HKU\S-1-5-21-751640475-2500746965-3390099758-1000\...\Dropbox) (Version: 3.18.1 - Dropbox, Inc.) Elliot Quest (HKLM-x32\...\Steam App 293440) (Version: - Ansimuz Games) f.lux (HKU\S-1-5-21-751640475-2500746965-3390099758-1000\...\Flux) (Version: - ) Fallout 3 - Game of the Year Edition (HKLM-x32\...\Steam App 22370) (Version: - Bethesda Game Studios) Fallout: New Vegas (HKLM-x32\...\Steam App 22380) (Version: - Obsidian Entertainment) Far Cry 4 version 1.10.0.0 (HKLM-x32\...\Far Cry 4_is1) (Version: 1.10.0.0 - Mr DJ) FastStone Image Viewer 5.5 (HKLM-x32\...\FastStone Image Viewer) (Version: 5.5 - FastStone Soft) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 49.0.2623.112 - Google Inc.) Google Play Music Desktop Player (HKLM-x32\...\{e3d1059b-6fb9-40dc-b6e0-44edc291e554}) (Version: 2.1.1 - MarshallOfSound) Google Play Music Desktop Player (x32 Version: 2.1.1 - MarshallOfSound) Hidden Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games) HandBrake 0.10.1 (HKLM-x32\...\HandBrake) (Version: 0.10.1 - ) Hitman: Contracts (HKLM-x32\...\Steam App 247430) (Version: - IO Interactive) InputMapper (HKLM-x32\...\{1A44056A-C7D8-4561-BC43-A0AA7D7AAA64}) (Version: 1.5.31.0 - DSDCS) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.10.255 - Intel Corporation) Jet Set Radio (HKLM-x32\...\Steam App 205950) (Version: - Blit Software) Just Cause 2 (HKLM-x32\...\Steam App 8190) (Version: - Avalanche Studios) Kerbal Space Program (HKLM-x32\...\Steam App 220200) (Version: - Squad) Life Is Strange™ (HKLM-x32\...\Steam App 319630) (Version: - DONTNOD Entertainment) Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Manga Studio (HKLM-x32\...\{CFA66508-B19D-4032-AB0A-EBBA2BDF1368}) (Version: 5.0.6 - Smith Micro) METAL GEAR SOLID V: THE PHANTOM PAIN (HKLM-x32\...\Steam App 287700) (Version: - Konami Digital Entertainment) Microsoft .NET Framework 4.6 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.00081 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{59E4543A-D49D-4489-B445-473D763C79AF}) (Version: 2.0.672.0 - Microsoft Corporation) Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.3.188.0 - Microsoft Corporation) Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - Корпорация Майкрософт) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation) Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{D9C50188-12D5-4D3E-8F00-682346C2AA5F}) (Version: 1.20.146.0 - Microsoft) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) Mozilla Firefox 42.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 42.0 (x86 en-US)) (Version: 42.0 - Mozilla) MURDERED: SOUL SUSPECT™ (HKLM-x32\...\Steam App 233290) (Version: - Airtight Games) Music Manager (HKU\S-1-5-21-751640475-2500746965-3390099758-1000\...\MusicManager) (Version: - Google, Inc.) Need for Speed™ Most Wanted (HKLM-x32\...\{FB0127F3-985B-44CE-AE29-378CAF60B361}) (Version: 1.5.0.0 - Electronic Arts) Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.61.16 - Black Tree Gaming) NVIDIA PhysX (HKLM-x32\...\{46ED2B64-85C7-4E1F-920C-A555B21F2E4C}) (Version: 9.11.1111 - NVIDIA Corporation) Oceanhorn: Monster of Uncharted Seas (HKLM-x32\...\Steam App 339200) (Version: - Cornfox & Bros.) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenIV (HKU\S-1-5-21-751640475-2500746965-3390099758-1000\...\OpenIV) (Version: 2.6.4.646 - .black/OpenIV Team) OpenToonz version 1.0.1 (HKLM\...\{D9A9B1A3-9370-4BE9-9C8F-7B52EEECB973}_is1) (Version: 1.0.1 - DWANGO Co., Ltd.) Origin (HKLM-x32\...\Origin) (Version: 9.11.5.17432 - Electronic Arts, Inc.) Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Pixel Piracy (HKLM-x32\...\Steam App 264140) (Version: - Vitali Kirpu) Plex Media Server (HKLM-x32\...\{99bd1275-691f-4329-a0b9-eed2b054df6b}) (Version: 0.9.1602 - Plex, Inc.) Plex Media Server (x32 Version: 0.9.1602 - Plex, Inc.) Hidden PowerISO (HKLM-x32\...\PowerISO) (Version: 6.1 - Power Software Ltd) Private Internet Access Support Files (HKLM-x32\...\{7D72DAFF-DCB2-437B-BC22-4B2ABF21462B}) (Version: 1.0.0.0 - Private Internet Access) QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7399 - Realtek Semiconductor Corp.) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.7.8 - Rockstar Games) Rogue Legacy (HKLM-x32\...\Steam App 241600) (Version: - Cellar Door Games) RogueKiller version 12 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 12 - Adlice Software) SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.51.0 - SAMSUNG Electronics Co., Ltd.) Shadowrun Chronicles - Boston Lockdown (HKLM-x32\...\Steam App 267750) (Version: - Cliffhanger Productions) Shantae - Risky's Revenge - Director's Cut (HKLM-x32\...\1442832029_is1) (Version: 2.0.0.1 - GOG.com) Shantae and the Pirate's Curse (HKLM-x32\...\Steam App 345820) (Version: - WayForward) Skype™ 7.18 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.18.112 - Skype Technologies S.A.) Slack (HKU\S-1-5-21-751640475-2500746965-3390099758-1000\...\slack) (Version: 1.2.2 - Slack Technologies) SlimDrivers (HKLM-x32\...\{5AD12E7A-D739-4451-9BD1-3610EC56D8F5}) (Version: 2.2.45206 - SlimWare Utilities, Inc.) SOMA (HKLM-x32\...\Steam App 282140) (Version: - Frictional Games) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Stick it to The Man! (HKLM-x32\...\GOGPACKSTICKITTOTHEMAN_is1) (Version: 2.0.0.3 - GOG.com) Super Panda Adventures (HKLM-x32\...\Steam App 311190) (Version: - Paul Schneider) Super Time Force Ultra (HKLM-x32\...\Steam App 250700) (Version: - Capybara Games) Tablet Driver V8.0 (HKLM-x32\...\TabletDriver) (Version: - ) Tales of Symphonia (HKLM-x32\...\Tales of Symphonia_is1) (Version: - ) Tales of Zestiria (HKLM-x32\...\Steam App 351970) (Version: - BANDAI NAMCO Entertainment) The Last Remnant (HKLM-x32\...\Steam App 23310) (Version: - SQUARE ENIX) The Last Tinker: City of Colors (HKLM-x32\...\Steam App 260160) (Version: - Mimimi Productions) Toon Boom Harmony 12.2 Advanced (HKLM-x32\...\{13ACE86D-C2D2-4EB2-885A-3BECFF0E5FB2}) (Version: 12.2.0 - Toon Boom Animation) Toon Boom Studio 8.1 (HKLM-x32\...\{A3A336BA-61CF-4B0F-83D7-690A8FB23A5D}) (Version: - Toon Boom Animation Inc.) Unepic (HKLM-x32\...\Steam App 233980) (Version: - Francisco Téllez de Meneses) Uplay (HKLM-x32\...\Uplay) (Version: 3.0 - Ubisoft) VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden Visual Studio 2010 SP1 Runtime x64 (HKLM\...\{F6305232-7952-4CCE-BDCD-9B2E66591C4A}) (Version: 1.0.0 - Microsoft Corporation) Visual Studio 2010 SP1 Runtime x86 (HKLM-x32\...\{AEA163A5-BA2F-4E63-9529-DE8606AC82A4}) (Version: 1.0.0 - Microsoft Corporation) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.0 - VideoLAN) WinDirStat 1.1.2 (HKU\S-1-5-21-751640475-2500746965-3390099758-1000\...\WinDirStat) (Version: - ) WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-751640475-2500746965-3390099758-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Noah\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-751640475-2500746965-3390099758-1000_Classes\CLSID\{5C8C2A98-6133-4EBA-BBCC-34D9EA01FC2E}\InprocServer32 -> C:\Users\Noah\AppData\Local\Google\Update\1.3.28.1\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-751640475-2500746965-3390099758-1000_Classes\CLSID\{78550997-5DEF-4A8A-BAF9-D5774E87AC98}\InprocServer32 -> C:\Users\Noah\AppData\Local\Google\Update\1.3.28.13\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-751640475-2500746965-3390099758-1000_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Noah\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-751640475-2500746965-3390099758-1000_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\Noah\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-751640475-2500746965-3390099758-1000_Classes\CLSID\{D1EDC4F5-7F4D-4B12-906A-614ECF66DDAF}\InprocServer32 -> C:\Users\Noah\AppData\Local\Google\Update\1.3.28.15\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-751640475-2500746965-3390099758-1000_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) CustomCLSID: HKU\S-1-5-21-751640475-2500746965-3390099758-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Noah\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-751640475-2500746965-3390099758-1000_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Noah\AppData\Roaming\Dropbox\bin\DropboxExt64.30.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-751640475-2500746965-3390099758-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Noah\AppData\Roaming\Dropbox\bin\DropboxExt64.30.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-751640475-2500746965-3390099758-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Noah\AppData\Roaming\Dropbox\bin\DropboxExt64.30.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-751640475-2500746965-3390099758-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Noah\AppData\Roaming\Dropbox\bin\DropboxExt64.30.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-751640475-2500746965-3390099758-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Noah\AppData\Roaming\Dropbox\bin\DropboxExt64.30.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-751640475-2500746965-3390099758-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Noah\AppData\Roaming\Dropbox\bin\DropboxExt64.30.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-751640475-2500746965-3390099758-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Noah\AppData\Roaming\Dropbox\bin\DropboxExt64.30.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-751640475-2500746965-3390099758-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Noah\AppData\Roaming\Dropbox\bin\DropboxExt64.30.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-751640475-2500746965-3390099758-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Noah\AppData\Roaming\Dropbox\bin\DropboxExt64.30.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-751640475-2500746965-3390099758-1000_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Noah\AppData\Roaming\Dropbox\bin\DropboxExt64.30.dll (Dropbox, Inc.) ==================== Restore Points ========================= 12-04-2016 16:10:17 Scheduled Checkpoint 15-04-2016 17:36:35 JRT Pre-Junkware Removal 16-04-2016 10:36:54 Removed Java 8 Update 71 16-04-2016 11:28:42 JRT Pre-Junkware Removal ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-13 22:34 - 2015-12-08 22:35 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {095669EB-AB4C-4870-BCE1-AC401AD4DE7A} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation) Task: {3DD81B06-DAD0-46B6-A7C4-D783669F13B5} - System32\Tasks\{BA60C630-EF87-4FBB-A05B-31F72BD02220} => pcalua.exe -a "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\Creative Cloud Uninstaller.exe" Task: {40BB2E7F-4984-4965-A19F-485400C8D527} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-02] (Google Inc.) Task: {452C8628-415A-48A7-9312-5F606CBD32FC} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-02-19] (Piriform Ltd) Task: {4774DFF6-9162-4CC2-9FFD-B5267786703F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {5D591444-F180-468E-A5F8-655FF5097249} - System32\Tasks\Private Internet Access Startup => C:\Program Files\pia_manager\pia_manager.exe [2015-12-13] () Task: {5DD05076-5063-4B91-822C-F9302D67FD9C} - System32\Tasks\Microsoft\Windows\TabletPC\InputPersonalization => C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [2009-07-13] (Microsoft Corporation) Task: {6D6644C3-B8AC-4E72-8D5D-61C8C4732A8C} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {6DDD0EA9-7DD2-403D-B781-D7F93A28F369} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2015-10-16] () Task: {766F8386-C369-421E-A546-917F0BA1681E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-02] (Google Inc.) Task: {7B62799F-D420-4055-A056-8E5E08205360} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation) Task: {7D40F543-6BA8-4C1E-BA99-DD7D0871B377} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-751640475-2500746965-3390099758-1000Core => C:\Users\Noah\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-10] (Google Inc.) Task: {891730EF-45CA-43FB-9D39-5FDBAD9CC6CC} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-751640475-2500746965-3390099758-1000Core => C:\Users\Noah\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-17] (Dropbox, Inc.) Task: {A336D8E7-78D8-440B-A0CF-B356CB7560F9} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2015-11-18] (Advanced Micro Devices, Inc.) Task: {AB5E7348-CE04-4CF9-864E-E94CC0659D31} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-751640475-2500746965-3390099758-1000UA => C:\Users\Noah\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-10] (Google Inc.) Task: {ADFD884A-B065-4874-A9C5-40CE26BAF563} - System32\Tasks\AdobeAAMUpdater-1.0-Noah-PC-Noah => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-03-22] (Adobe Systems Incorporated) Task: {B3D04002-82C1-4CE9-943E-5A9C2BBD9A8B} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-751640475-2500746965-3390099758-1000UA => C:\Users\Noah\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-17] (Dropbox, Inc.) Task: {D17B644D-92A8-42ED-8834-AFB208C38D9D} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated) Task: {D5642EC9-0046-4CB5-BCD1-F9A1C050AA80} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation) Task: {E859591C-7578-4137-9A39-3FD91CE00272} - \RegIdleBackup No Task File <==== ATTENTION Task: {FAB1AB00-281A-428E-B524-E32F9EFC9E10} - System32\Tasks\{042EFC5B-A9F3-467C-9B96-32F651DD725D} => pcalua.exe -a C:\Users\Noah\Desktop\V801\SETUP.EXE -d C:\Users\Noah\Desktop\V801 (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-751640475-2500746965-3390099758-1000Core.job => C:\Users\Noah\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-751640475-2500746965-3390099758-1000UA.job => C:\Users\Noah\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-751640475-2500746965-3390099758-1000Core.job => C:\Users\Noah\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-751640475-2500746965-3390099758-1000UA.job => C:\Users\Noah\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2016-04-01 23:18 - 2016-04-01 23:18 - 00426160 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll 2015-12-17 19:38 - 2015-12-17 19:38 - 00085800 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-12-17 19:38 - 2015-12-17 19:38 - 01328912 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2012-01-16 20:24 - 2012-01-16 20:24 - 00055296 _____ () C:\Windows\SysWOW64\ASGT.exe 2014-01-10 01:26 - 2014-01-10 01:26 - 01861968 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe 2016-04-01 23:17 - 2016-04-01 23:17 - 31679664 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe 2014-01-10 01:28 - 2014-01-10 01:28 - 00100688 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll 2015-12-11 23:14 - 2016-03-21 17:50 - 00034768 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\_multiprocessing.pyd 2016-04-15 08:16 - 2016-03-21 17:51 - 00019408 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\faulthandler.pyd 2016-04-15 08:16 - 2016-03-21 17:50 - 00116688 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\pywintypes27.dll 2015-12-11 23:14 - 2016-03-21 17:50 - 00093640 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\_ctypes.pyd 2015-12-11 23:14 - 2016-03-21 17:50 - 00018376 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\select.pyd 2015-12-11 23:14 - 2016-04-08 14:20 - 00019760 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\tornado.speedups.pyd 2015-12-11 23:14 - 2016-03-21 17:52 - 00105928 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\win32api.pyd 2016-04-15 08:16 - 2016-03-21 17:50 - 00392144 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\pythoncom27.dll 2015-12-11 23:14 - 2016-04-08 14:20 - 00381752 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\win32com.shell.shell.pyd 2015-12-11 23:14 - 2016-03-21 17:50 - 00692688 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\unicodedata.pyd 2016-04-15 08:16 - 2016-04-08 14:19 - 00020816 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.pyd 2015-12-11 23:14 - 2016-03-21 17:51 - 00112592 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\_cffi_backend.pyd 2016-04-15 08:16 - 2016-04-08 14:19 - 01682760 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.pyd 2016-04-15 08:16 - 2016-04-08 14:19 - 00020808 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.pyd 2015-12-11 23:14 - 2016-04-08 14:20 - 00021840 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\_cffi_unicode_environ_win32_x8bf8e68bx9968e850.pyd 2016-04-15 08:16 - 2016-04-08 14:19 - 00038696 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\fastpath.pyd 2016-04-15 08:16 - 2016-03-21 17:52 - 00020936 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\mmapfile.pyd 2015-12-11 23:14 - 2016-03-21 17:52 - 00024528 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\win32event.pyd 2015-12-11 23:14 - 2016-03-21 17:52 - 00114640 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\win32security.pyd 2015-12-11 23:14 - 2016-03-21 17:52 - 00124880 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\win32file.pyd 2016-02-12 12:56 - 2016-04-08 14:20 - 00021832 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\_cffi_pywin_kernel32_x64d8f881xc8c369be.pyd 2015-12-11 23:14 - 2016-03-21 17:52 - 00024016 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\win32clipboard.pyd 2015-12-11 23:14 - 2016-03-21 17:52 - 00175560 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\win32gui.pyd 2015-12-11 23:14 - 2016-03-21 17:52 - 00030160 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\win32pipe.pyd 2015-12-11 23:14 - 2016-03-21 17:52 - 00043472 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\win32process.pyd 2015-12-11 23:14 - 2016-03-21 17:52 - 00028616 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\win32ts.pyd 2015-12-11 23:14 - 2016-03-21 17:52 - 00048592 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\win32service.pyd 2016-04-15 08:16 - 2016-04-08 14:19 - 00026456 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\dropbox.infinite.win.compiled._driverinstallation.pyd 2015-12-11 23:14 - 2016-03-21 17:52 - 00057808 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\win32evtlog.pyd 2015-12-11 23:14 - 2016-03-21 17:52 - 00024016 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\win32profile.pyd 2016-04-15 08:16 - 2016-04-08 14:19 - 00117056 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\breakpad.client.windows.handler.pyd 2015-12-11 23:14 - 2016-04-08 14:20 - 00023376 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.pyd 2015-12-11 23:14 - 2016-03-21 17:50 - 00134608 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\_elementtree.pyd 2016-04-15 08:16 - 2016-03-21 17:50 - 00134088 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\pyexpat.pyd 2016-04-15 08:16 - 2016-03-21 17:51 - 00240584 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\jpegtran.pyd 2016-04-15 08:16 - 2016-04-08 14:19 - 00024392 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.pyd 2016-04-15 08:16 - 2016-03-21 17:52 - 00036296 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\librsync.dll 2016-04-15 08:16 - 2016-04-08 14:19 - 00052024 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.pyd 2016-02-12 12:56 - 2016-04-08 14:20 - 00020800 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\winffi.iphlpapi._winffi_iphlpapi.pyd 2016-02-12 12:56 - 2016-04-08 14:20 - 00021824 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\winffi.kernel32._winffi_kernel32.pyd 2016-02-12 12:56 - 2016-04-08 14:20 - 00019776 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\winffi.winerror._winffi_winerror.pyd 2016-02-12 12:56 - 2016-04-08 14:20 - 00020800 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\winffi.wininet._winffi_wininet.pyd 2016-04-15 08:16 - 2016-04-08 14:19 - 00020280 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.pyd 2015-12-11 23:14 - 2016-03-21 17:52 - 00350152 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\winxpgui.pyd 2016-02-12 12:56 - 2016-04-08 14:20 - 00022352 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\winverifysignature.compiled._VerifySignature.pyd 2016-04-15 08:16 - 2016-04-08 14:19 - 00084280 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL 2016-04-15 08:16 - 2016-04-08 14:20 - 01826096 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.pyd 2015-12-11 23:14 - 2016-03-21 17:51 - 00083912 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\sip.pyd 2016-04-15 08:16 - 2016-04-08 14:20 - 03928880 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.pyd 2016-04-15 08:16 - 2016-04-08 14:20 - 01971504 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.pyd 2016-04-15 08:16 - 2016-04-08 14:20 - 00531248 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.pyd 2016-04-15 08:16 - 2016-04-08 14:20 - 00132912 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.pyd 2016-04-15 08:16 - 2016-04-08 14:20 - 00223544 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.pyd 2016-04-15 08:16 - 2016-04-08 14:20 - 00207672 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.pyd 2016-04-15 08:16 - 2016-04-08 14:20 - 00158008 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\PyQt5.QtWebEngineWidgets.pyd 2016-04-15 08:16 - 2016-04-08 14:20 - 00042808 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\PyQt5.QtWebChannel.pyd 2016-04-15 08:16 - 2016-03-21 17:54 - 00017864 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\libEGL.dll 2016-04-15 08:16 - 2016-03-21 17:54 - 01631184 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\libGLESv2.dll 2015-12-11 23:14 - 2016-04-08 14:20 - 00024904 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\_cffi_wpad_proxy_win_x752e3d61xdcfdcc84.pyd 2016-04-15 08:16 - 2016-04-08 14:20 - 00546096 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\PyQt5.QtQuick.pyd 2016-04-15 08:16 - 2016-04-08 14:20 - 00357680 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.pyd 2015-03-04 17:45 - 2016-03-21 17:56 - 00697304 _____ () C:\Users\Noah\AppData\Roaming\Dropbox\bin\QtQuick\Controls\qtquickcontrolsplugin.dll 2016-03-29 17:19 - 2016-03-29 17:19 - 00118272 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\fs-ext\build\Release\fs-ext.node 2016-03-29 17:19 - 2016-03-29 17:19 - 00205824 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\node-vulcanjs\build\Release\VulcanJS.node 2016-03-29 17:19 - 2016-03-29 17:19 - 00121856 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ref\build\Release\binding.node 2016-03-29 17:19 - 2016-03-29 17:19 - 00126464 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ffi\build\Release\ffi_bindings.node 2016-04-07 11:35 - 2016-04-07 11:35 - 00100544 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\node-ProxyResolver\build\Release\ProxyResolverWin7.dll 2016-03-29 17:19 - 2016-03-29 17:19 - 00166400 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\idle-gc\build\Release\idle-gc.node 2016-03-30 17:29 - 2016-03-30 17:29 - 00118272 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\fs-ext\build\Release\fs-ext.node 2016-03-30 17:29 - 2016-03-30 17:29 - 00121856 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\ref\build\Release\binding.node 2016-03-30 17:30 - 2016-03-30 17:30 - 00126464 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\ffi\build\Release\ffi_bindings.node 2016-03-30 17:30 - 2016-03-30 17:30 - 00206336 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\node-vulcanjs\build\Release\VulcanJS.node 2016-04-07 11:27 - 2016-04-07 11:27 - 00100544 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\node-ProxyResolver\build\Release\ProxyResolverWin7.dll 2016-03-30 17:29 - 2016-03-30 17:29 - 00121856 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\bufferutil\build\Release\bufferutil.node 2016-03-30 17:28 - 2016-03-30 17:28 - 00166400 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\idle-gc\build\Release\idle-gc.node ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\Noah\Cookies:w75uloAmxvDCMvEfFDKa5G6 AlternateDataStreams: C:\Users\Noah\Desktop\00_RPPM_Video_FINAL.mov:com.dropbox.attributes AlternateDataStreams: C:\Users\Noah\Desktop\00_TIAA_targetincome.mp4:com.dropbox.attributes AlternateDataStreams: C:\Users\Noah\Desktop\CREF_VariableAnnuities_v6.mov:com.dropbox.attributes AlternateDataStreams: C:\Users\Noah\AppData\Local\Temporary Internet Files:jYY0ex71XIfQOyvQ2YeqlPvakPY5V AlternateDataStreams: C:\Users\Noah\Documents\Fagima:com.dropbox.attributes ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-751640475-2500746965-3390099758-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Noah\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 75.75.75.75 - 75.75.76.76 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{6CB42DA3-553C-4332-A55B-BB0B427E7051}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{B5EE72D0-2342-4296-91A5-D5584BE2B3B5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{A2A54368-8CC1-46E7-A686-55B0F5E431C4}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{17ACDF8F-D674-4BF8-91F5-471F88F0C2EC}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [TCP Query User{59468C75-8A4E-474B-8EEB-B627DBC17DB0}B:\programs\utorrent plus v3.4.2 build 33023 stable\utorrent.exe] => (Allow) B:\programs\utorrent plus v3.4.2 build 33023 stable\utorrent.exe FirewallRules: [UDP Query User{4FD3192F-5F5B-458C-A29C-BD6E471A111B}B:\programs\utorrent plus v3.4.2 build 33023 stable\utorrent.exe] => (Allow) B:\programs\utorrent plus v3.4.2 build 33023 stable\utorrent.exe FirewallRules: [{D6678E65-756E-4DB4-8244-DD0AAC562A71}] => (Allow) C:\Users\Noah\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{76A6DD16-ECBA-4BD3-91BF-13D7542C1D8E}] => (Allow) C:\Users\Noah\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{24D292B3-ABBD-419B-B0DC-F31725F71D29}] => (Allow) B:\GAMES\Steam\Steam.exe FirewallRules: [{A0390AD1-6433-4099-81FE-29D27FEF91B4}] => (Allow) B:\GAMES\Steam\Steam.exe FirewallRules: [{9AC7C524-3E92-48F4-A462-88355BC2A7DD}] => (Allow) B:\GAMES\Steam\bin\steamwebhelper.exe FirewallRules: [{01031BF5-0DCB-4A44-89F9-901C166A968E}] => (Allow) B:\GAMES\Steam\bin\steamwebhelper.exe FirewallRules: [TCP Query User{8FE52F42-F153-4571-9AD5-26BBF0CB611A}B:\games\republique remastered\republique.exe] => (Block) B:\games\republique remastered\republique.exe FirewallRules: [UDP Query User{385FEC78-7086-4227-AAA4-8DE69082512E}B:\games\republique remastered\republique.exe] => (Block) B:\games\republique remastered\republique.exe FirewallRules: [TCP Query User{019071F8-654B-4C51-B8CA-FAF496B8BE7C}B:\games\assetto corsa\acs.exe] => (Block) B:\games\assetto corsa\acs.exe FirewallRules: [UDP Query User{2D603F88-7F40-4BA5-B3E6-099F144F61D3}B:\games\assetto corsa\acs.exe] => (Block) B:\games\assetto corsa\acs.exe FirewallRules: [{8647EFA9-A6E4-4D74-A9FC-FF41020EF931}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\The Forest\TheForest.exe FirewallRules: [{10A41FBF-8B44-4B8E-9D67-227FC7DDCD03}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\The Forest\TheForest.exe FirewallRules: [{797B6071-96CF-45C4-80CF-64AC02DC0145}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Skyrim\SkyrimLauncher.exe FirewallRules: [{EB071E52-1FD2-4165-96DD-1F4AEC0C524E}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Skyrim\SkyrimLauncher.exe FirewallRules: [{7C0EB97D-C6F1-42D7-8458-A6B84F2B3C22}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Borderlands 2\Binaries\Win32\Launcher.exe FirewallRules: [{50B6C5AC-70D0-421C-9731-A0C27BADFC6E}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Borderlands 2\Binaries\Win32\Launcher.exe FirewallRules: [{667F35F7-467F-4BE6-A406-17052E53DC49}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe FirewallRules: [{2A8B71E5-0E0C-4202-8F9A-F05C7710E5B6}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe FirewallRules: [TCP Query User{DF0FEBFC-A2E7-4D7D-8E2F-AB971491AEAD}B:\games\steamlibrary\steamapps\common\the witcher 2\bin\witcher2.exe] => (Allow) B:\games\steamlibrary\steamapps\common\the witcher 2\bin\witcher2.exe FirewallRules: [UDP Query User{39DEAFD3-AFB6-431A-BDAF-72CED8D0A4A8}B:\games\steamlibrary\steamapps\common\the witcher 2\bin\witcher2.exe] => (Allow) B:\games\steamlibrary\steamapps\common\the witcher 2\bin\witcher2.exe FirewallRules: [{32DDC93E-CDC1-4C26-BF61-C793DF088896}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Shadow Warrior\sw.exe FirewallRules: [{A40481FF-CA21-4CB3-A9BF-6C4416A6E0A1}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Shadow Warrior\sw.exe FirewallRules: [TCP Query User{A5190B2A-34DB-4D0E-855B-19DC231BFE5D}C:\program files (x86)\kainy\kainy.exe] => (Allow) C:\program files (x86)\kainy\kainy.exe FirewallRules: [UDP Query User{DDA706B0-FFE4-4CB9-B8D9-0F1DB4F1A0CE}C:\program files (x86)\kainy\kainy.exe] => (Allow) C:\program files (x86)\kainy\kainy.exe FirewallRules: [{23693525-19B7-4FE4-AC41-DF2FB437D031}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{0FBC5F87-C6F4-40B9-A11D-0F00D1845EA6}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{08ADE51C-2702-46C7-9C3A-6D407179B74D}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{879F3071-1386-4160-9F99-56D80A6AE539}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{742EBA25-2904-4558-8DB9-2831415873FC}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Shadow Warrior\dx11\launcher.exe FirewallRules: [{48000AAE-CC2E-4BF6-A4F4-EB1E847DBC3D}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Shadow Warrior\dx11\launcher.exe FirewallRules: [TCP Query User{58523827-1D22-42D6-B5EC-8880874CB457}B:\games\saints row gat out of hell\saintsrowgatoutofhell.exe] => (Block) B:\games\saints row gat out of hell\saintsrowgatoutofhell.exe FirewallRules: [UDP Query User{F8A6EC45-A712-412D-A31E-AE271E784D7D}B:\games\saints row gat out of hell\saintsrowgatoutofhell.exe] => (Block) B:\games\saints row gat out of hell\saintsrowgatoutofhell.exe FirewallRules: [TCP Query User{AC8C796E-2034-4034-8F90-D1D83A990350}B:\games\d light\dying light\dyinglightgame.exe] => (Block) B:\games\d light\dying light\dyinglightgame.exe FirewallRules: [UDP Query User{5D0F1F6D-DF80-4562-A090-0C16EE2E2FD4}B:\games\d light\dying light\dyinglightgame.exe] => (Block) B:\games\d light\dying light\dyinglightgame.exe FirewallRules: [{9096DEBA-AEB1-4FC7-B489-461AAA2BC5F9}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{56495C6D-260B-4EFA-BB5C-0A62B3944277}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{EA20EF7B-2A6E-4AB7-A2B2-B63884012372}] => (Allow) LPort=5556 FirewallRules: [{B5489A18-3EFB-48C1-B15C-A2643FFD88EC}] => (Allow) LPort=5558 FirewallRules: [{77603CA2-B66D-4CED-ABC4-D9011495E76D}] => (Allow) B:\GAMES\Steam\SteamApps\common\OlliOlli\bin\olliolli.exe FirewallRules: [{E8C3D840-5ACD-4D66-AA9E-F97792D9B45E}] => (Allow) B:\GAMES\Steam\SteamApps\common\OlliOlli\bin\olliolli.exe FirewallRules: [TCP Query User{98C20241-D610-49CB-99F7-3EC0581B7110}C:\users\noah\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\noah\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{DEBFBAD3-12FA-4000-B9D5-C42C70E5E1C8}C:\users\noah\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\noah\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [TCP Query User{45D71DC6-4803-4E1B-8488-724F203DE818}C:\program files (x86)\soundwire server\soundwireserver.exe] => (Allow) C:\program files (x86)\soundwire server\soundwireserver.exe FirewallRules: [UDP Query User{41B5F5A4-DCB7-4F9A-9324-4D2565B1A080}C:\program files (x86)\soundwire server\soundwireserver.exe] => (Allow) C:\program files (x86)\soundwire server\soundwireserver.exe FirewallRules: [{BA900E91-38F4-4B90-85DA-6D45BFDD1649}] => (Block) C:\program files (x86)\soundwire server\soundwireserver.exe FirewallRules: [{10421D5C-3EDC-4B3D-8D59-15BE90B8439D}] => (Block) C:\program files (x86)\soundwire server\soundwireserver.exe FirewallRules: [TCP Query User{DFC9A604-4BA4-4DB6-BB0B-2E2562B8F8B8}B:\games\d light\dying light\dyinglightgame.exe] => (Allow) B:\games\d light\dying light\dyinglightgame.exe FirewallRules: [UDP Query User{53F6AC55-3DD6-4998-B767-03A616BC3E86}B:\games\d light\dying light\dyinglightgame.exe] => (Allow) B:\games\d light\dying light\dyinglightgame.exe FirewallRules: [{1403F8A1-7804-422B-90D6-2F748577C2C8}] => (Allow) B:\GAMES\Steam\SteamApps\common\Pixel Piracy\PixelPiracy.exe FirewallRules: [{47CEEA4D-133A-4608-ADDB-5E691656090F}] => (Allow) B:\GAMES\Steam\SteamApps\common\Pixel Piracy\PixelPiracy.exe FirewallRules: [{08210A20-18EB-4F9F-89BE-54E7B7C83D8D}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Broken Age\BrokenAge.exe FirewallRules: [{288E1048-9977-45BD-88D4-415999513FFB}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Broken Age\BrokenAge.exe FirewallRules: [{339AFBF8-409D-4CD9-9048-5AA2DE143E8D}] => (Allow) B:\GAMES\Steam\SteamApps\common\Kerbal Space Program\KSP.exe FirewallRules: [{314E5467-4869-4E75-ABA9-56A7846C61BD}] => (Allow) B:\GAMES\Steam\SteamApps\common\Kerbal Space Program\KSP.exe FirewallRules: [TCP Query User{3EED546E-63FA-42D5-B1E5-5382F17470F0}B:\programs\utorrent plus v3.4.2 build 33023 stable\utorrent.exe] => (Allow) B:\programs\utorrent plus v3.4.2 build 33023 stable\utorrent.exe FirewallRules: [UDP Query User{4A3FCAFC-7AB6-44FA-981E-A2063082536D}B:\programs\utorrent plus v3.4.2 build 33023 stable\utorrent.exe] => (Allow) B:\programs\utorrent plus v3.4.2 build 33023 stable\utorrent.exe FirewallRules: [TCP Query User{F467F6A4-B994-4D62-88E6-951CDC5A0A4D}B:\games\transformers\transformers fall of cybertron\binaries\tfoc.exe] => (Block) B:\games\transformers\transformers fall of cybertron\binaries\tfoc.exe FirewallRules: [UDP Query User{605F046D-1971-4FCF-A88C-69DF4CC37174}B:\games\transformers\transformers fall of cybertron\binaries\tfoc.exe] => (Block) B:\games\transformers\transformers fall of cybertron\binaries\tfoc.exe FirewallRules: [{363ECE04-54C2-42BE-AE77-F719028865B3}] => (Block) B:\GAMES\Wolfenstein The Old Blood\WolfOldBlood_x64.exe FirewallRules: [{25F66AC9-EC09-4382-99C1-20DDE7630906}] => (Block) B:\GAMES\Wolfenstein The Old Blood\WolfOldBlood_x64.exe FirewallRules: [{FF61011D-C5BF-4E7E-8599-3A97B95C04EC}] => (Allow) B:\GAMES\Steam\SteamApps\common\Betrayer\Binaries\Win32\Betrayer.exe FirewallRules: [{67402B7F-3B37-451E-A94A-9C361E4682EB}] => (Allow) B:\GAMES\Steam\SteamApps\common\Betrayer\Binaries\Win32\Betrayer.exe FirewallRules: [{3F232393-C143-420E-AB75-07244F6FB7C0}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{3FB7DB95-A095-4E42-88F3-4B50B8E8C305}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{C23C06F1-7287-471E-9350-E3128270C481}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{660E0BD1-FB32-4E12-825E-37C3B9BCF75E}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{0553CEF7-0111-4CCA-A549-361F23C17F8D}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe FirewallRules: [{C6A00AE2-A412-4C4D-B857-AF93B8F83270}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe FirewallRules: [{6D70D788-47C2-4F05-8090-F1A1D7D5BC9E}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe FirewallRules: [{89FB4777-AA3A-4278-ACE0-20C6CEC4809F}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe FirewallRules: [{394CE95E-7666-4223-80F0-EA9DD58F24BA}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe FirewallRules: [{5CDF3CC3-7E98-4A08-9E6D-EE0CE141650E}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe FirewallRules: [{F3286487-C3CF-4D68-9B4C-F7D5D80E3D66}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe FirewallRules: [{6C0A6271-45C7-45B3-A53C-D31EAB4892A0}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe FirewallRules: [{ADB6837B-32EF-46D6-91DF-1CA56F8B987E}] => (Allow) B:\GAMES\Steam\SteamApps\common\Fallout New Vegas\FalloutNVLauncher.exe FirewallRules: [{9C0EDCE5-173A-4305-9EAF-5996F5F67FBF}] => (Allow) B:\GAMES\Steam\SteamApps\common\Fallout New Vegas\FalloutNVLauncher.exe FirewallRules: [{41A1438D-9C4E-4C8D-8A45-850436E5A13B}] => (Allow) B:\GAMES\Steam\SteamApps\common\Terraria\Terraria.exe FirewallRules: [{80CDD972-2642-4939-8E8A-5095BB67A778}] => (Allow) B:\GAMES\Steam\SteamApps\common\Terraria\Terraria.exe FirewallRules: [{0EFC5B49-17AB-4517-AD37-E491FE85E72D}] => (Block) B:\PROGRAMS\Adobe\Adobe InDesign CC 2014\InDesign.exe FirewallRules: [{BC3A6E81-BE7B-40F7-9273-832C4C8C4901}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{DA28638F-2B85-45C5-984B-2156E208C3DA}B:\games\styx - masters of shadows\binaries\win64\styxgame.exe] => (Block) B:\games\styx - masters of shadows\binaries\win64\styxgame.exe FirewallRules: [UDP Query User{BFEF047D-0742-4EBD-9EF9-A654CEC8B040}B:\games\styx - masters of shadows\binaries\win64\styxgame.exe] => (Block) B:\games\styx - masters of shadows\binaries\win64\styxgame.exe FirewallRules: [{3F092DC2-74C3-49D2-9533-67562FEC3CDD}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\SS2\Shock2.exe FirewallRules: [{7B0B0C6C-B5CB-4116-8944-1465D4D62C44}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\SS2\Shock2.exe FirewallRules: [{2E21F306-C931-4CFC-83BA-BB1CE5EF97BF}] => (Allow) B:\GAMES\Steam\SteamApps\common\dota 2 beta\dota.exe FirewallRules: [{B32C7B21-C9FD-44F5-B653-24927CFD299A}] => (Allow) B:\GAMES\Steam\SteamApps\common\dota 2 beta\dota.exe FirewallRules: [{43B6A5DF-3814-4DA8-A7BE-F58521DD0508}] => (Allow) B:\GAMES\Steam\SteamApps\common\MGS_TPP\mgsvtpp.exe FirewallRules: [{62496755-58A5-4CC8-B9F1-96DD7337395E}] => (Allow) B:\GAMES\Steam\SteamApps\common\MGS_TPP\mgsvtpp.exe FirewallRules: [{8EB9981B-908C-45E9-9FEB-7C4D60366F29}] => (Allow) C:\Users\Noah\AppData\Roaming\Skype\download.exe FirewallRules: [{FC375DC2-EF7D-41E9-B258-B4F6D42B7322}] => (Allow) C:\Users\Noah\AppData\Roaming\Skype\download.exe FirewallRules: [{13E12F78-21A3-450B-B177-E7BB79D8DB35}] => (Allow) B:\GAMES\GTA5.exe FirewallRules: [{3D39576F-F5D5-440C-AEB7-18B5024FB603}] => (Allow) B:\GAMES\GTA5.exe FirewallRules: [{FECD5C09-01BC-4252-B4FD-29B4D269EA01}] => (Allow) B:\GAMES\GTA 5\GTA5.exe FirewallRules: [{D4ADFD73-C5AF-44A0-8884-A3A7F5718C52}] => (Allow) B:\GAMES\GTA 5\GTA5.exe FirewallRules: [{9D0F40BD-6CE4-4F6C-A850-73066202F020}] => (Allow) B:\GAMES\Steam\SteamApps\common\Hitman Contracts\HitmanContracts.exe FirewallRules: [{34965DE8-6892-41E9-8727-04F912B01062}] => (Allow) B:\GAMES\Steam\SteamApps\common\Hitman Contracts\HitmanContracts.exe FirewallRules: [{D060A52C-9904-4C0C-AF9C-B27D123FA16F}] => (Allow) B:\GAMES\Steam\SteamApps\common\Fallout 3 goty\FalloutLauncher.exe FirewallRules: [{CC23BDB2-477A-4381-9397-6A8FF0E7FFC2}] => (Allow) B:\GAMES\Steam\SteamApps\common\Fallout 3 goty\FalloutLauncher.exe FirewallRules: [{BFD4FC93-63BD-414B-9CDE-3EFBC8C9194A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{E739809D-0FE1-4932-B77F-9B7FACA12651}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{93F478AB-AFB9-48D0-9A01-22D788D22A50}B:\games\steamlibrary\steamapps\common\dishonored\binaries\win32\dishonored.exe] => (Allow) B:\games\steamlibrary\steamapps\common\dishonored\binaries\win32\dishonored.exe FirewallRules: [UDP Query User{CECF9497-3F64-406B-A5C1-9F9C8DC0C0EB}B:\games\steamlibrary\steamapps\common\dishonored\binaries\win32\dishonored.exe] => (Allow) B:\games\steamlibrary\steamapps\common\dishonored\binaries\win32\dishonored.exe FirewallRules: [{7CA37738-87BE-4D98-B8A5-624DCD4F2322}] => (Allow) B:\GAMES\Steam\SteamApps\common\The Last Tinker City of Colors\the last tinker.exe FirewallRules: [{1A7F12E2-0753-4AA1-8935-227899169D4E}] => (Allow) B:\GAMES\Steam\SteamApps\common\The Last Tinker City of Colors\the last tinker.exe FirewallRules: [TCP Query User{624CAB38-080D-423F-B986-95A29DF0C439}B:\programs\poser pro 2014\poserpro.exe] => (Block) B:\programs\poser pro 2014\poserpro.exe FirewallRules: [UDP Query User{D3A9A654-D583-4EDD-A723-277AB78C63E1}B:\programs\poser pro 2014\poserpro.exe] => (Block) B:\programs\poser pro 2014\poserpro.exe FirewallRules: [TCP Query User{D54C094A-4843-44D1-940C-7D34806FB3F3}B:\games\gog\divinity - original sin enhanced edition\shipping\eocapp.exe] => (Allow) B:\games\gog\divinity - original sin enhanced edition\shipping\eocapp.exe FirewallRules: [UDP Query User{DB9238C5-8CE0-4D94-AA85-8D079E04FCBC}B:\games\gog\divinity - original sin enhanced edition\shipping\eocapp.exe] => (Allow) B:\games\gog\divinity - original sin enhanced edition\shipping\eocapp.exe FirewallRules: [{C8573A37-1A1E-44E6-92B6-3A66526D2949}] => (Allow) B:\GAMES\Steam\SteamApps\common\The Last Remnant\Binaries\TLR.exe FirewallRules: [{5613BD69-35A6-45A3-A787-430BDBB9554F}] => (Allow) B:\GAMES\Steam\SteamApps\common\The Last Remnant\Binaries\TLR.exe FirewallRules: [{DABD33E7-3E1E-4A66-9A7A-0A2940D1D65E}] => (Allow) B:\GAMES\Steam\SteamApps\common\SuperTimeForceUltra\STF_win32.exe FirewallRules: [{33CD6357-71C1-4082-B7D9-F4BF9E8AB148}] => (Allow) B:\GAMES\Steam\SteamApps\common\SuperTimeForceUltra\STF_win32.exe FirewallRules: [{86FC13ED-FA0F-462F-BA25-6C0FE5C3DC01}] => (Allow) B:\GAMES\Steam\SteamApps\common\Murdered Soul Suspect\Binaries\Win64\Murdered.exe FirewallRules: [{CEE50E09-84F7-42B7-AAB1-2C17D9AC42E2}] => (Allow) B:\GAMES\Steam\SteamApps\common\Murdered Soul Suspect\Binaries\Win64\Murdered.exe FirewallRules: [{4AF93D05-40FB-4203-AD3A-02003BD107DE}] => (Allow) B:\GAMES\Steam\SteamApps\common\ValdisStoryAbyssalCity\Valdis_Story_AC.exe FirewallRules: [{2088B764-DC17-45AA-BA1F-25D3D268EEEC}] => (Allow) B:\GAMES\Steam\SteamApps\common\ValdisStoryAbyssalCity\Valdis_Story_AC.exe FirewallRules: [{E8A3F6F6-7AFD-4EF4-B8B2-6201D9E0C1B0}] => (Allow) B:\GAMES\Steam\SteamApps\common\Dying Light\DyingLightGame.exe FirewallRules: [{99E3A681-467F-4DA4-BDD7-9B33C0413BD9}] => (Allow) B:\GAMES\Steam\SteamApps\common\Dying Light\DyingLightGame.exe FirewallRules: [{ED88BB92-4CB2-4555-9276-FA387D51E04F}] => (Allow) B:\GAMES\Steam\SteamApps\common\Dying Light\DevTools\DyingLightPlayer.exe FirewallRules: [{E57146EB-8390-4A76-8490-9D1DD1B29B2B}] => (Allow) B:\GAMES\Steam\SteamApps\common\Dying Light\DevTools\DyingLightPlayer.exe FirewallRules: [{435EAE65-0ACE-44F6-A60A-A527D011A4E3}] => (Allow) B:\GAMES\Steam\SteamApps\common\Crypt of the NecroDancer\NecroDancer.exe FirewallRules: [{4CCD807F-F593-4A88-B93D-5E97C32E0514}] => (Allow) B:\GAMES\Steam\SteamApps\common\Crypt of the NecroDancer\NecroDancer.exe FirewallRules: [{F1B008C8-7C30-4BC5-9038-28E3BAC6B60A}] => (Allow) B:\GAMES\Steam\SteamApps\common\Just Cause 2\JustCause2.exe FirewallRules: [{AA32C1D1-AECA-43C7-9C49-E64A55DD1132}] => (Allow) B:\GAMES\Steam\SteamApps\common\Just Cause 2\JustCause2.exe FirewallRules: [{4A40EFDF-A8FD-4177-9D45-A9206018C4D8}] => (Allow) B:\GAMES\Steam\SteamApps\common\SOMA\Soma.exe FirewallRules: [{01553262-3CD5-4235-B324-41FFD62CFF3F}] => (Allow) B:\GAMES\Steam\SteamApps\common\SOMA\Soma.exe FirewallRules: [{0D98501E-1ED1-4B6C-9F73-4D011EF9B890}] => (Allow) B:\GAMES\Steam\SteamApps\common\SOMA\ModLauncher.exe FirewallRules: [{95EAE9A3-CCF5-43AB-8E0E-E056FF92A27F}] => (Allow) B:\GAMES\Steam\SteamApps\common\SOMA\ModLauncher.exe FirewallRules: [{F1AE7659-BD90-47FF-9E4D-E179EDBB5D6F}] => (Allow) B:\GAMES\Steam\SteamApps\common\Shantae and the Pirate's Curse\ShantaeCurse.exe FirewallRules: [{A693163B-C700-48F3-8EF9-D877243E9B72}] => (Allow) B:\GAMES\Steam\SteamApps\common\Shantae and the Pirate's Curse\ShantaeCurse.exe FirewallRules: [{6F73E771-0B45-4F6F-AA03-B31F1696DE54}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{6E803720-D24B-4478-AEA0-B7741E7AE24D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{86B5BBD6-96E2-4DD7-8B2F-C1C6902CED21}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{48791B1C-2256-44D4-96E4-EBFC5575E911}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{95B7A81B-A9C1-43E7-B95B-C41991DA44D7}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Psychonauts\Psychonauts.exe FirewallRules: [{CFEEA43A-B952-44F1-95A4-CF269BC878AF}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Psychonauts\Psychonauts.exe FirewallRules: [{5B241ABA-7D8E-411E-A750-25C008A821A5}] => (Allow) B:\GAMES\Need for Speed(TM) Most Wanted\NFS13.exe FirewallRules: [{241A6C43-8BF9-412A-B70F-B6B8B66D3918}] => (Allow) B:\GAMES\Need for Speed(TM) Most Wanted\NFS13.exe FirewallRules: [{FA21613B-AA79-47A4-8436-75CA1580D274}] => (Allow) B:\GAMES\Steam\SteamApps\common\Rogue Legacy\RogueLegacy.exe FirewallRules: [{34E01336-BCAB-4A1A-BFC7-2CFD4873CAA9}] => (Allow) B:\GAMES\Steam\SteamApps\common\Rogue Legacy\RogueLegacy.exe FirewallRules: [{9843B03E-38D5-43DA-8181-F2E9E9894B50}] => (Allow) B:\GAMES\Steam\SteamApps\common\Super Panda Adventures\Super Panda Adventures.exe FirewallRules: [{2B8D25E4-B127-4D4B-9A30-43F27494B61F}] => (Allow) B:\GAMES\Steam\SteamApps\common\Super Panda Adventures\Super Panda Adventures.exe FirewallRules: [TCP Query User{E5263E9B-13AA-492E-BD97-545116B66D04}B:\games\shadowrun dragonfall directors cut\dragonfall.exe] => (Block) B:\games\shadowrun dragonfall directors cut\dragonfall.exe FirewallRules: [UDP Query User{2688224A-44D4-42EB-8B6D-A0E4EDA0D673}B:\games\shadowrun dragonfall directors cut\dragonfall.exe] => (Block) B:\games\shadowrun dragonfall directors cut\dragonfall.exe FirewallRules: [{A75F12BC-D1A6-4B69-B704-28EBDABF113B}] => (Allow) B:\GAMES\Steam\SteamApps\common\ElliotQuestApp\elliot_quest\elliot_quest.exe FirewallRules: [{15FE6EE7-26AD-44C8-8C9A-A40FE55ACCAF}] => (Allow) B:\GAMES\Steam\SteamApps\common\ElliotQuestApp\elliot_quest\elliot_quest.exe FirewallRules: [TCP Query User{8B98C178-C678-45E5-962C-0D0CB6CB27FC}B:\programs\toon boom harmony\win64\bin\harmonyadvanced.exe] => (Allow) B:\programs\toon boom harmony\win64\bin\harmonyadvanced.exe FirewallRules: [UDP Query User{3884459B-88D8-47F5-9F18-B200CB3187D6}B:\programs\toon boom harmony\win64\bin\harmonyadvanced.exe] => (Allow) B:\programs\toon boom harmony\win64\bin\harmonyadvanced.exe FirewallRules: [{9D2E6138-6406-4ECC-85C4-ADB448E29DEF}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Sega Classics\SEGAGenesisClassics.exe FirewallRules: [{86625808-4814-4434-A400-E7360B3FA7FC}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Sega Classics\SEGAGenesisClassics.exe FirewallRules: [{3DD16763-E575-4A25-97E0-F861EDF1452C}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Jet Set Radio\jsrsetup.exe FirewallRules: [{663A6584-21C3-4023-98E7-CBA50211B627}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Jet Set Radio\jsrsetup.exe FirewallRules: [{914AE7E8-DDED-4D49-A51F-E3491ABDD2A8}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Condemned Criminal Origins\Condemned.exe FirewallRules: [{E74F5717-C85E-4A2D-A24E-BD29F4D01D78}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Condemned Criminal Origins\Condemned.exe FirewallRules: [{C0BAF396-A164-4509-A4BF-FE12A7BFB331}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Condemned Criminal Origins\Config.exe FirewallRules: [{3C362C09-CB17-4EA3-8D67-35189623F96E}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Condemned Criminal Origins\Config.exe FirewallRules: [{1A37C62F-A371-45C2-A044-DDDEAE907676}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Unepic\unepic.exe FirewallRules: [{DAFD2DC2-B2A3-42C0-ADE7-6657113EC28C}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Unepic\unepic.exe FirewallRules: [{C0380C73-EAC9-4A0D-873B-203FDB10D727}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Oceanhorn\Oceanhorn.exe FirewallRules: [{01E16B65-9F44-4ACC-B9E0-85EA5CB5BE6B}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Oceanhorn\Oceanhorn.exe FirewallRules: [{80BF6AD5-54FD-498F-AFD0-D1EE6D0FA4B7}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Warmachine Tactics\WarmachineGame\Binaries\Win64\WarmachineGame-Win64-Shipping.exe FirewallRules: [{D5B1C2ED-48F3-446F-8811-325F1B82A54D}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Warmachine Tactics\WarmachineGame\Binaries\Win64\WarmachineGame-Win64-Shipping.exe FirewallRules: [{DB76B4E5-20CB-4FD6-983E-7DEABF6341A8}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\ShadowrunChronicles\Shadowrun.exe FirewallRules: [{E67969F3-6C28-485A-9B22-DFBB3DDDCE20}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\ShadowrunChronicles\Shadowrun.exe FirewallRules: [{894DDDE5-33B7-4287-8175-A9F6D2BEC419}] => (Allow) B:\GAMES\Mr DJ\Far Cry 4\bin\FarCry4.exe FirewallRules: [{7F979FCD-D054-403C-A8E0-6796FD9EBB8D}] => (Allow) B:\GAMES\Mr DJ\Far Cry 4\bin\FarCry4.exe FirewallRules: [{24B67D9B-C632-4B37-8C81-3960A740D60F}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe FirewallRules: [{B165EC63-F214-4E2B-8837-8FC6254758A3}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe FirewallRules: [{E4E667A8-10A7-4807-B8A7-DBD21CA94A0E}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\PlexDlnaServer.exe FirewallRules: [{229F630B-E969-43E9-9F0E-065804EB0560}] => (Block) B:\GAMES\BLACKHOLE\BlackHole.exe FirewallRules: [{C0ED1241-5EA3-407C-806B-66E6C7173CF1}] => (Block) B:\GAMES\BLACKHOLE\BlackHole.exe FirewallRules: [TCP Query User{E058666C-3EB0-4761-AF06-8C45DB21B548}B:\programs\opentoonz 1.0\opentoonz_1.0.exe] => (Allow) B:\programs\opentoonz 1.0\opentoonz_1.0.exe FirewallRules: [UDP Query User{4273FDCC-E958-4207-A6CD-77915117DD6A}B:\programs\opentoonz 1.0\opentoonz_1.0.exe] => (Allow) B:\programs\opentoonz 1.0\opentoonz_1.0.exe FirewallRules: [{292591F1-BA36-48A7-B50B-44BB7879DAD1}] => (Block) B:\programs\opentoonz 1.0\opentoonz_1.0.exe FirewallRules: [{76F48551-21F1-4327-80BC-E690B85D03E8}] => (Block) B:\programs\opentoonz 1.0\opentoonz_1.0.exe FirewallRules: [{3280A882-9A9B-47AF-8DA7-D02422420203}] => (Allow) B:\GAMES\GTA 5\GTA5.exe FirewallRules: [{831746C5-9368-4C94-B48E-CD2DD0FA00EB}] => (Allow) B:\GAMES\GTA 5\GTA5.exe FirewallRules: [TCP Query User{0F08D8F8-4E0E-4CC7-9606-E90058915569}B:\downloads\enter.the.gungeon-mick2k\enter the gungeon\etg.exe] => (Allow) B:\downloads\enter.the.gungeon-mick2k\enter the gungeon\etg.exe FirewallRules: [UDP Query User{960065E8-316C-4C75-98E9-850D7D148151}B:\downloads\enter.the.gungeon-mick2k\enter the gungeon\etg.exe] => (Allow) B:\downloads\enter.the.gungeon-mick2k\enter the gungeon\etg.exe FirewallRules: [{C444DFD1-D5A4-4FC1-8D52-9255CABDC861}] => (Block) B:\downloads\enter.the.gungeon-mick2k\enter the gungeon\etg.exe FirewallRules: [{AD526F52-177B-4D52-A112-67DB604F3D5E}] => (Block) B:\downloads\enter.the.gungeon-mick2k\enter the gungeon\etg.exe FirewallRules: [TCP Query User{2180EAA1-3BAD-4C37-BC32-E2BBA33F134F}B:\games\enter the gungeon\etg.exe] => (Allow) B:\games\enter the gungeon\etg.exe FirewallRules: [UDP Query User{CB7C9065-39BD-448B-B0A9-2F532966B40E}B:\games\enter the gungeon\etg.exe] => (Allow) B:\games\enter the gungeon\etg.exe FirewallRules: [{56963E76-88B5-44CC-8584-4BE11603E3C6}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{32EEC2C8-EA83-4342-BB17-8BF22713E128}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\FINAL FANTASY VII\FF7_Launcher.exe FirewallRules: [{783DAA59-879D-4E93-BDA8-D700AA7520F2}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\FINAL FANTASY VII\FF7_Launcher.exe FirewallRules: [{280245EE-A3FF-4130-A24D-637859462048}] => (Allow) B:\GAMES\Steam\SteamApps\common\Batman Arkham Origins\SinglePlayer\Binaries\Win32\BatmanOrigins.exe FirewallRules: [{07198F4C-02D2-4F4A-ADE7-84478B04D20D}] => (Allow) B:\GAMES\Steam\SteamApps\common\Batman Arkham Origins\SinglePlayer\Binaries\Win32\BatmanOrigins.exe FirewallRules: [{B74D1AD8-B4A6-4FAD-9454-F2944DBE27E7}] => (Allow) B:\GAMES\Steam\SteamApps\common\Batman Arkham Origins\Online\Binaries\Win32\BatmanOriginsOnline.exe FirewallRules: [{C816E57A-24CE-4660-9EC3-A14806C2BD8B}] => (Allow) B:\GAMES\Steam\SteamApps\common\Batman Arkham Origins\Online\Binaries\Win32\BatmanOriginsOnline.exe FirewallRules: [{5EF39CE0-D13D-456C-984A-AE83049C7697}] => (Allow) B:\GAMES\Steam\SteamApps\common\Transistor\x64\Transistor.exe FirewallRules: [{C050806C-5FF3-40EF-BCB4-E8EBF08AE16A}] => (Allow) B:\GAMES\Steam\SteamApps\common\Transistor\x64\Transistor.exe FirewallRules: [{7742816C-88E0-43C7-871D-5DB5C15E8EBF}] => (Allow) B:\GAMES\Steam\SteamApps\common\HacknSlash\Hack.exe FirewallRules: [{3B23ADBD-4D94-4988-BBC3-443F8239E820}] => (Allow) B:\GAMES\Steam\SteamApps\common\HacknSlash\Hack.exe FirewallRules: [{14207807-43FE-4D97-83A9-4FEFF6012575}] => (Allow) B:\GAMES\Steam\SteamApps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe FirewallRules: [{762595D2-7A05-4D86-9814-2704B73B07B6}] => (Allow) B:\GAMES\Steam\SteamApps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe FirewallRules: [{09D41CFB-073B-4F09-9E65-A235DFEE96A0}] => (Allow) B:\GAMES\Steam\SteamApps\common\LEGO Marvel Super Heroes\LEGOMARVEL.exe FirewallRules: [{C6788713-6B2B-4507-B8C4-AB6A70CE3098}] => (Allow) B:\GAMES\Steam\SteamApps\common\LEGO Marvel Super Heroes\LEGOMARVEL.exe FirewallRules: [{15958582-37A4-4AD8-88E4-3B1BBEA7F555}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Spelunky\Spelunky.exe FirewallRules: [{B1F9A8D2-FED9-4041-9299-2F7910DD894D}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Spelunky\Spelunky.exe FirewallRules: [{3B8D663E-0C53-44AB-A749-A791D8F9A8D7}] => (Allow) B:\GAMES\Steam\SteamApps\common\Dying Light\DevTools\DyingLightPlayer.exe FirewallRules: [{956885C0-409D-469D-A32D-E4B167C1B0B5}] => (Allow) B:\GAMES\Steam\SteamApps\common\Dying Light\DevTools\DyingLightPlayer.exe FirewallRules: [{9E2DB879-906D-4DC4-B1CB-3964E5278871}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Shadow Warrior\dx11\launcher.exe FirewallRules: [{0877165A-E011-4C3C-B2EE-64BB066A4B73}] => (Allow) B:\GAMES\SteamLibrary\SteamApps\common\Shadow Warrior\dx11\launcher.exe ==================== Faulty Device Manager Devices ============= Name: Bluetooth Peripheral Device Description: Bluetooth Peripheral Device Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Bluetooth Peripheral Device Description: Bluetooth Peripheral Device Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Ethernet Controller Description: Ethernet Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (04/16/2016 11:36:07 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/16/2016 11:06:10 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/16/2016 10:44:50 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/16/2016 10:44:04 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: Adobe CEF Helper.exe, version: 3.6.0.248, time stamp: 0x5706a3f2 Faulting module name: libcef.dll, version: 3.2171.2069.0, time stamp: 0x551bdc44 Exception code: 0xc0000005 Fault offset: 0x00444106 Faulting process id: 0x1a04 Faulting application start time: 0xAdobe CEF Helper.exe0 Faulting application path: Adobe CEF Helper.exe1 Faulting module path: Adobe CEF Helper.exe2 Report Id: Adobe CEF Helper.exe3 Error: (04/16/2016 12:37:00 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" on line C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3. A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Error: (04/16/2016 12:18:18 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/15/2016 10:23:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: Adobe CEF Helper.exe, version: 3.6.0.248, time stamp: 0x5706a3f2 Faulting module name: libcef.dll, version: 3.2171.2069.0, time stamp: 0x551bdc44 Exception code: 0xc0000005 Fault offset: 0x00444106 Faulting process id: 0x16f4 Faulting application start time: 0xAdobe CEF Helper.exe0 Faulting application path: Adobe CEF Helper.exe1 Faulting module path: Adobe CEF Helper.exe2 Report Id: Adobe CEF Helper.exe3 Error: (04/15/2016 10:23:34 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/15/2016 07:58:59 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/15/2016 07:49:08 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: Skype.exe, version: 7.18.0.112, time stamp: 0x56bb3c45 Faulting module name: Skype.exe, version: 7.18.0.112, time stamp: 0x56bb3c45 Exception code: 0xc0000005 Fault offset: 0x005b8a46 Faulting process id: 0xc08 Faulting application start time: 0xSkype.exe0 Faulting application path: Skype.exe1 Faulting module path: Skype.exe2 Report Id: Skype.exe3 System errors: ============= Error: (04/16/2016 11:28:17 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The Volume Shadow Copy service terminated unexpectedly. It has done this 1 time(s). Error: (04/16/2016 11:28:17 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Windows Media Player Network Sharing Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service. Error: (04/16/2016 11:28:17 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Windows Search service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service. Error: (04/16/2016 11:28:16 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The WinTab Service service terminated unexpectedly. It has done this 1 time(s). Error: (04/16/2016 11:28:16 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The SAMSUNG Mobile Connectivity Service service terminated unexpectedly. It has done this 1 time(s). Error: (04/16/2016 11:28:16 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The Avira System Speedup service terminated unexpectedly. It has done this 1 time(s). Error: (04/16/2016 11:28:15 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The Bonjour Service service terminated unexpectedly. It has done this 1 time(s). Error: (04/16/2016 11:28:15 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The AtherosSvc service terminated unexpectedly. It has done this 1 time(s). Error: (04/16/2016 11:28:15 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The ASGT service terminated unexpectedly. It has done this 1 time(s). Error: (04/16/2016 11:28:15 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Apple Mobile Device Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service. Microsoft Office: ========================= Error: (04/16/2016 11:36:07 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/16/2016 11:06:10 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/16/2016 10:44:50 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/16/2016 10:44:04 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Adobe CEF Helper.exe3.6.0.2485706a3f2libcef.dll3.2171.2069.0551bdc44c0000005004441061a0401d19797023ec5ffC:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exeC:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\CEF\libcef.dlla9c4aefa-03e1-11e6-b13a-5cf3700266ab Error: (04/16/2016 12:37:00 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestc:\program files (x86)\Adobe\adobe creative cloud\Utils\Creative Cloud Uninstaller.exe Error: (04/16/2016 12:18:18 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/15/2016 10:23:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Adobe CEF Helper.exe3.6.0.2485706a3f2libcef.dll3.2171.2069.0551bdc44c00000050044410616f401d19786fb1b7b5cC:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exeC:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\CEF\libcef.dll3e06d7a6-037a-11e6-a5d1-5cf3700266ab Error: (04/15/2016 10:23:34 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/15/2016 07:58:59 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (04/15/2016 07:49:08 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Skype.exe7.18.0.11256bb3c45Skype.exe7.18.0.11256bb3c45c0000005005b8a46c0801d197715afa42adC:\Program Files (x86)\Skype\Phone\Skype.exeC:\Program Files (x86)\Skype\Phone\Skype.exea4d7bf55-0364-11e6-9106-5cf3700266ab CodeIntegrity Errors: =================================== Date: 2016-03-20 21:34:38.685 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Common Files\ATI Technologies\Multimedia\AMDMFTDecoder_64.dll because the set of per-page image hashes could not be found on the system. Date: 2016-03-20 21:33:37.907 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\Common Files\ATI Technologies\Multimedia\AMDMFTDecoder_64.dll because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-3770K CPU @ 3.50GHz Percentage of memory in use: 18% Total physical RAM: 16329.68 MB Available physical RAM: 13290.11 MB Total Virtual: 32657.57 MB Available Virtual: 29424.27 MB ==================== Drives ================================ Drive b: (New Volume) (Fixed) (Total:931.51 GB) (Free:256.43 GB) NTFS ==>[system with boot components (obtained from reading drive)] Drive c: () (Fixed) (Total:111.79 GB) (Free:31.27 GB) NTFS Drive d: (New Volume) (Fixed) (Total:465.76 GB) (Free:316.32 GB) NTFS Drive e: (Expansion Drive) (Fixed) (Total:465.76 GB) (Free:258.26 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: C2567287) Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 731E17A8) Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: 378B6B51) Partition 1: (Not Active) - (Size=111.8 GB) - (Type=07 NTFS) ======================================================== Disk: 3 (Size: 465.8 GB) (Disk ID: 03376EB4) Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS) ==================== End of log ============================