Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15-06-2017 Ran by Nick (14-06-2017 22:52:27) Running from C:\Users\Nick\Desktop Windows 8 Enterprise (X64) (2014-12-06 18:17:14) Boot Mode: Safe Mode (with Networking) ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1432171336-2654085293-1989152676-500 - Administrator - Enabled) Guest (S-1-5-21-1432171336-2654085293-1989152676-501 - Limited - Disabled) Nick (S-1-5-21-1432171336-2654085293-1989152676-1004 - Administrator - Enabled) => C:\Users\Nick ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 7-Zip 17.00 beta (x64) (HKLM\...\7-Zip) (Version: 17.00 beta - Igor Pavlov) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 17.009.20044 - Adobe Systems Incorporated) Adobe Flash Player 26 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 26.0.0.126 - Adobe Systems Incorporated) AIMP3 (HKLM-x32\...\AIMP3) (Version: v3.20.1165, 21.12.2012 - AIMP DevTeam) America's Army: Proving Grounds (HKLM\...\Steam App 203290) (Version: - U.S. Army) Arc (HKLM-x32\...\{CED8E25B-122A-4E80-B612-7F99B93284B3}) (Version: 1.0.0.9668 - Perfect World Entertainment) Blizzard App (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Classic Shell (HKLM\...\{383BB30A-B4A7-4666-9A83-22CFA8640097}) (Version: 4.3.0 - IvoSoft) Dota 2 (HKLM\...\Steam App 570) (Version: - Valve) Epic Games Launcher (HKLM-x32\...\{CA3D68C2-DC5C-4652-B7ED-E1088F8EB2F3}) (Version: 1.1.103.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden EVE Isk per Hour (HKLM-x32\...\{7A37BE74-5767-407A-8145-098EF7DA02FB}) (Version: 3.3 - EVE IPH) EveHQ (HKLM-x32\...\EveHQ) (Version: - ) Farming Simulator 15 (HKLM-x32\...\Farming Simulator 15_is1) (Version: - ) Farming Simulator 17 (HKLM\...\ZmFybWluZ3NpbXVsYXRvcjE3_is1) (Version: 1 - ) GIANTS Editor 7.0.0 64-bit (HKLM-x32\...\giants_editor_7.0.0_win64_is1) (Version: 7.0.0 - GIANTS Software GmbH) GIANTS Editor 7.1.0 64-bit (HKLM-x32\...\giants_editor_7.1.0_win64_is1) (Version: 7.1.0 - GIANTS Software GmbH) Glyph (HKLM-x32\...\Glyph) (Version: - Trion Worlds, Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 58.0.3029.110 - Google Inc.) Google Earth (HKLM-x32\...\{F6430171-B86B-4639-839E-374913E7911D}) (Version: 7.1.8.3036 - Google) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.33.5 - Google Inc.) Hidden Intel(R) Chipset Device Software (x32 Version: 10.1.1.9 - Intel(R) Corporation) Hidden Java 8 Update 111 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180111F0}) (Version: 8.0.1110.14 - Oracle Corporation) Launcher Prerequisites (x64) (x32 Version: 1.0.0.0 - Epic Games, Inc.) Hidden League of Legends (HKLM-x32\...\League of Legends 4.1.2) (Version: 4.1.2 - Riot Games) League of Legends (x32 Version: 4.1.2 - Riot Games) Hidden Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visio Premium 2010 (HKLM-x32\...\Office14.VISIO) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23918 (HKLM-x32\...\{dab68466-3a7d-41a8-a5cf-415e3ff8ef71}) (Version: 14.0.23918.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23918 (HKLM-x32\...\{2e085fd2-a3e4-4b39-8e10-6b8d35f55244}) (Version: 14.0.23918.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.31007 - Microsoft Corporation) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) MSI Afterburner 4.3.0 (HKLM-x32\...\Afterburner) (Version: 4.3.0 - MSI Co., LTD) Mumble 1.2.19 (HKLM-x32\...\{F62A874F-2354-49B1-87BE-CAAD7C8FA084}) (Version: 1.2.19 - Thorvald Natvig) Notepad++ (32-bit x86) (HKLM-x32\...\Notepad++) (Version: 7.3.3 - Notepad++ Team) NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.8 - NVIDIA Corporation) NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation) O.R.B (HKLM-x32\...\O.R.B) (Version: - ) Opera Stable 45.0.2552.888 (HKLM-x32\...\Opera 45.0.2552.888) (Version: 45.0.2552.888 - Opera Software) Overwolf (HKLM-x32\...\Overwolf) (Version: 0.104.211.0 - Overwolf Ltd.) PowerISO (HKLM-x32\...\PowerISO) (Version: 6.8 - Power Software Ltd) QuickBooks (x32 Version: 24.0.4005.2403 - Intuit Inc.) Hidden QuickBooks Premier: Accountant Edition 2014 (HKLM-x32\...\{48DCE40F-BD78-4EEA-B810-6F371716A5DD}) (Version: 24.0.4005.2403 - Intuit Inc.) QuickBooks Runtime Redistributable (HKLM\...\{F2A4F809-2DE6-4D27-888B-4D2BB8DAF20E}) (Version: 1.00.0000 - Intuit Inc.) QuickTime (HKLM-x32\...\{AF0CE7C0-A3E4-4D73-988B-B29187EC6E9A}) (Version: 7.73.80.64 - Apple Inc.) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.14393.31228 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.39.703.2015 - Realtek) RuneScape Launcher 1.2.7 (HKLM-x32\...\{FA52A2D0-298E-4D40-8BB7-39928627EA6A}) (Version: 1.2.7 - Jagex Ltd) Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation) Skype™ 7.29 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.29.102 - Skype Technologies S.A.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH) TERA (HKLM-x32\...\{0FCDA0F8-F3E5-402E-B9B6-13CB2B01182B}) (Version: 42.06.03 - En Masse Entertainment) The KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 3.8.0.119 - PandoraTV) Twitch (HKLM-x32\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 6.0.0.0 - Twitch Interactive, Inc.) UnHackMe 8.90 (HKLM-x32\...\UnHackMe_is1) (Version: - Greatis Software, LLC.) Universal Extractor 1.6.1 (HKLM-x32\...\Universal Extractor_is1) (Version: 1.6.1 - Jared Breland) Visual Studio Tools for the Office system 3.0 Runtime (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version: - Microsoft Corporation) Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM-x32\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation) Warframe (HKLM-x32\...\{37CDBD1E-D6C4-4E4E-80AA-53F8C5656FFD}) (Version: 1.0.0 - Digital Extremes) WinRAR 5.00 beta 3 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.00.3 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {23A5D8BE-9196-40EB-BD89-794398B2B073} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask Task: {2B998F10-D02F-47C1-9AF0-8162F030206D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {307D8C75-FDA3-49D3-AA9F-DB79F405FB59} - System32\Tasks\Microsoft\Windows\Autochk\Proxy Task: {3D286E9F-43AF-44E0-8101-8756E60C7D54} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-04-25] (Adobe Systems Incorporated) Task: {5096331C-0CDA-4AB7-BB30-8DA35EF24DE9} - System32\Tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver Task: {67229DF8-B971-4F31-933D-0FD466D45DE1} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater Task: {6DF9A049-4340-48E1-8DD1-C44832E12404} - System32\Tasks\Opera scheduled Autoupdate 1419949592 => C:\Program Files (x86)\Opera\launcher.exe [2017-05-31] (Opera Software) Task: {812790BC-F3B0-4959-A78E-912CE4AC3145} - System32\Tasks\UnHackMe Task Scheduler => C:\Program Files (x86)\UnHackMe\hackmon.exe [2017-05-25] (Greatis Software) Task: {8A08149B-0580-4ADD-9867-4537FA4CBF59} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_26_0_0_126_pepper.exe [2017-06-14] (Adobe Systems Incorporated) Task: {A72208BF-7A49-4FB8-B684-252375F3443A} - System32\Tasks\Microsoft\Windows\WS\License Validation Task: {AB1FBBCC-78CB-44A4-82AE-2A202A5A66F4} - \AdobeAAMUpdater-1.0-valgrind-Administrator -> No File <==== ATTENTION Task: {B85579EB-FB3B-4D76-A2EC-9C95662A9C39} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-06-14] (Adobe Systems Incorporated) Task: {C84F8A44-9FD3-4273-930B-E488674D2812} - System32\Tasks\Microsoft\Windows\Application Experience\AitAgent Task: {DB099640-5867-4668-85C6-45031C0D254F} - System32\Tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector Task: {E08773C9-6826-4BE7-9EE7-A53C69CC8401} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2017-06-06] (Overwolf LTD) Task: {E0992331-57FF-4205-9C14-D01F1D455379} - \Driver Booster SkipUAC (Administrator) -> No File <==== ATTENTION Task: {EB903DF9-A6A3-412F-B401-5E24AB5E3927} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {EBF06DEC-4228-4813-AC0C-62821AE4E330} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask Task: {EFC946A1-81AE-4C68-B1C0-CF5E8929DB95} - System32\Tasks\{3D265BB3-745B-46ED-AF3E-4C4522101B8B} => Iexplore.exe hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=7.4.0.102&LastError=12002 Task: {F6EEB348-4FCE-484C-B5EE-7FDB5F66360C} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) ==================== Loaded Modules (Whitelisted) ============== 2010-01-30 03:40 - 2010-01-30 03:40 - 04254560 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2010-03-24 22:38 - 2010-03-24 22:38 - 08794976 _____ () C:\Program Files\Microsoft Office\Office14\1033\GrooveIntlResource.dll 2017-03-07 21:42 - 2017-03-07 21:42 - 00230064 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll 2017-05-31 11:39 - 2017-05-31 11:39 - 66272856 _____ () C:\Program Files (x86)\Opera\45.0.2552.888\opera_browser.dll 2010-01-30 03:41 - 2010-01-30 03:41 - 04254560 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2010-03-24 22:17 - 2010-03-24 22:17 - 08794464 _____ () C:\Program Files (x86)\Microsoft Office\Office14\1033\GrooveIntlResource.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="2" e" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\str => ""="service" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2012-07-26 00:26 - 2017-06-03 08:39 - 00000918 _____ C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 clients2.google.com 127.0.0.1 v1.ff.avast.com 127.0.0.1 vlcproxy.ff.avast.com ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1432171336-2654085293-1989152676-1004\Control Panel\Desktop\\Wallpaper -> C:\Users\Nick\Pictures\photo.jpg DNS Servers: 192.168.2.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{E6E76525-C54E-440E-B438-C2CC84755ED4}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{28FD028E-5369-4BE8-A868-494DC75605FE}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{9BA858E5-D468-4829-AB75-E07079691547}] => (Allow) C:\Games\World_of_Tanks\WoTLauncher.exe FirewallRules: [{C4863327-51D7-4D5C-84EC-0828F7642F05}] => (Allow) C:\Games\World_of_Tanks\WoTLauncher.exe FirewallRules: [{F7D731BE-2C96-4BCB-BF25-CB8306447756}] => (Allow) C:\Games\World_of_Tanks\worldoftanks.exe FirewallRules: [{95103A65-7DF5-4E84-A378-F4ED0FE98E4D}] => (Allow) C:\Games\World_of_Tanks\worldoftanks.exe FirewallRules: [TCP Query User{FADEFD87-DCBA-4F33-90BA-54B77681BF28}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{FA25178D-0D76-4C39-897A-A9A883B5D6BE}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [TCP Query User{CBFC24DB-F427-4E7F-95AB-0D47938F642E}C:\eve\sharedcache\tq\bin\exefile.exe] => (Allow) C:\eve\sharedcache\tq\bin\exefile.exe FirewallRules: [UDP Query User{1F5DFFC7-A336-4EF0-9FB7-4F2A7F573802}C:\eve\sharedcache\tq\bin\exefile.exe] => (Allow) C:\eve\sharedcache\tq\bin\exefile.exe FirewallRules: [{38BF7906-72CA-4213-AA95-1EC845434C5C}] => (Allow) C:\Games\World_of_Warships\WoWSLauncher.exe FirewallRules: [{D5AFA4E7-D7BA-4E7F-BC1C-77694E5A2FD0}] => (Allow) C:\Games\World_of_Warships\WoWSLauncher.exe FirewallRules: [{DC7D5556-7CE8-477E-9122-E639CB7899EA}] => (Allow) C:\Games\World_of_Warships\worldofwarships.exe FirewallRules: [{2AF802EB-FDC4-45DE-A8C5-733743E39777}] => (Allow) C:\Games\World_of_Warships\worldofwarships.exe FirewallRules: [TCP Query User{A37181AF-C8FD-4AFA-A50D-7003088EC661}C:\program files (x86)\neverwinter_en\neverwinter\live\gameclient.exe] => (Allow) C:\program files (x86)\neverwinter_en\neverwinter\live\gameclient.exe FirewallRules: [UDP Query User{F00FBFA0-69CA-4818-B82B-171827E4E0B1}C:\program files (x86)\neverwinter_en\neverwinter\live\gameclient.exe] => (Allow) C:\program files (x86)\neverwinter_en\neverwinter\live\gameclient.exe FirewallRules: [{E0B160DA-49DC-4540-B679-9821147D29C5}] => (Allow) C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\Surfing Protection\FFNativeMessage.exe FirewallRules: [{AB07B6C9-DED6-46BF-8425-B4C8C5E1E69A}] => (Allow) C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\Surfing Protection\FFNativeMessage.exe FirewallRules: [{4BAD6594-C1FC-4EA2-A67B-4E4B95861F0E}] => (Allow) C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\AutoUpdate.exe FirewallRules: [{6FF83D01-1B9E-4FD9-BCD2-EB9C785F25E1}] => (Allow) C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\AutoUpdate.exe FirewallRules: [{E898CB2E-C638-4D37-8920-F3A497539059}] => (Allow) C:\Program Files (x86)\Warframe\Downloaded\Public\Warframe.exe FirewallRules: [{7E53BCE5-7DD3-4A4A-B3C7-155915D93DF7}] => (Allow) C:\Program Files (x86)\Warframe\Downloaded\Public\Warframe.x64.exe FirewallRules: [{6A118F0A-F381-482E-9EA7-18FDBADDDEF4}] => (Allow) C:\Program Files (x86)\Warframe\Downloaded\Public\Warframe.exe FirewallRules: [{EA073BD1-A733-4B85-BDB8-E2F21C20273C}] => (Allow) C:\Program Files (x86)\Warframe\Downloaded\Public\Warframe.x64.exe FirewallRules: [{27AAA9A4-2E2D-4A7E-8606-469167CA4063}] => (Allow) C:\Users\Administrator\AppData\Local\Warframe\Downloaded\Public\Tools\Launcher.exe FirewallRules: [{AACC4515-DD5C-4468-BC86-3A0C497593D5}] => (Allow) C:\Program Files (x86)\Warframe\Downloaded\Public\Tools\RemoteCrashSender.exe FirewallRules: [{E04C91B5-A0DB-4D72-9E90-652A23131EF6}] => (Allow) C:\Program Files (x86)\Warframe\Downloaded\Public\Warframe.exe FirewallRules: [{164D69BC-79CB-47CE-B0A2-00B3C1F49778}] => (Allow) C:\Program Files (x86)\Warframe\Downloaded\Public\Warframe.x64.exe FirewallRules: [{0153C2F9-EF43-41DC-8A99-4A5917AC8AF3}] => (Allow) C:\Program Files (x86)\Warframe\Downloaded\Public\Warframe.exe FirewallRules: [{9D8DA607-795F-402B-9D15-B9B9B1EC321F}] => (Allow) C:\Program Files (x86)\Warframe\Downloaded\Public\Warframe.x64.exe FirewallRules: [{2E7DE790-773D-4800-996E-304BD4BC6459}] => (Allow) C:\Users\Administrator\AppData\Local\Warframe\Downloaded\Public\Tools\Launcher.exe FirewallRules: [{18FDCCDC-98EB-49EA-9639-4A0A6ECF63E4}] => (Allow) C:\Program Files (x86)\Warframe\Downloaded\Public\Tools\RemoteCrashSender.exe FirewallRules: [{E69C60D0-1595-4AB0-8C26-CF8C1080C68A}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{EAEBF8F8-4DFB-4219-9C1F-47763DB632D6}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{6FD08F26-AFEB-487C-9DBC-1F457BA6B564}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{9C67D72F-B0AE-4B70-9BC0-8D65910B53F0}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [TCP Query User{E4FB4335-F1F4-49F8-81DE-FCE5202CED5D}C:\users\public\daybreak game company\installed games\planetside 2\planetside2_x64.exe] => (Allow) C:\users\public\daybreak game company\installed games\planetside 2\planetside2_x64.exe FirewallRules: [UDP Query User{E459E998-09C4-40D9-A0D4-2C099F3821BA}C:\users\public\daybreak game company\installed games\planetside 2\planetside2_x64.exe] => (Allow) C:\users\public\daybreak game company\installed games\planetside 2\planetside2_x64.exe FirewallRules: [{B0DB887E-DBA1-401E-B00E-EE6EDABCACF2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{56D3A28C-26C7-4873-A0E4-974CE1038829}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{ED86E879-640F-4DF9-82D9-34A6EA4F2B2D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe FirewallRules: [{879DC400-6D47-467B-9F67-3CE51A9A8AB0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe FirewallRules: [{4146E1D5-35D6-4BD8-9B74-2F8119535CCD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{A497783B-646D-418A-A6CD-3385821ADF0F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{72037254-978C-4C09-A8C9-F280A6AE37B7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{EE172B79-CAEF-4CFA-9186-46FEE356460F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{7FEA56F4-B44E-4F4E-A502-646656DFF70F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{2C6E20AA-C322-47A9-8183-70DDF6687EDF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{B62BEE90-CDCF-4966-9471-C34C7EA0FAF7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{6646802C-4960-42AC-AECE-9361895BDB4B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{1B38CB8A-B007-4C31-872D-2CD7CCF45360}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{743B876C-61B6-4C06-B828-4B8827A0A4A3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{A0239506-012D-46E9-9D6B-524812B16240}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{B7A19CA5-EC65-4E8E-B3E5-2AA97AFA0DB0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{60452F94-D051-4A58-96E3-C12A5E91A1FF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{C874F1F6-69F2-44B1-91B1-D2464F01C009}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{A6C634FB-1E12-45BD-A7C8-860017832162}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{DF2AEAD8-77D1-45BE-BA3B-FFD5E5613C78}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{01F2E8BF-45BD-47E4-9D90-5BF3BECBA976}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{1B3A4A71-AE76-4210-BD71-F00FDBAB124B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{ECCD88F7-C0E1-4C84-8D06-F0A12E559F4E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{504FB395-7D89-4FF9-B4A0-ECBBE6E3EF24}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [TCP Query User{256048C7-5EDE-4CCE-8BED-B4CFD246FB84}C:\program files (x86)\arc\arcchat.exe] => (Allow) C:\program files (x86)\arc\arcchat.exe FirewallRules: [UDP Query User{79367988-C6B3-4F65-9B5B-9F24B0803C8E}C:\program files (x86)\arc\arcchat.exe] => (Allow) C:\program files (x86)\arc\arcchat.exe FirewallRules: [TCP Query User{95B7C18E-BF28-44F7-99DD-AE0C1AA58F07}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [UDP Query User{756A7007-28B9-4F2C-B0A6-6D1FE7DE5617}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [{8DB561B4-55C3-475B-A32E-1B9222BF8953}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [{D2BC02B5-D162-4FFC-8FDC-FB244A0F2981}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [TCP Query User{805DC287-AC37-4D3B-9397-9F3E48271B8A}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [UDP Query User{8A5032C3-1109-4878-90BD-B389F8460E88}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [{126B43DA-974E-448E-B1B8-17C30B81C364}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [{35895398-DB02-45CE-B287-E4B695917963}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [{AF9DC65A-CD9E-48A0-9163-CAB89369D731}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{74E38EC5-63B1-4597-9254-46898A67718E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{60E3479A-6F57-4F1B-B470-A58B2AF2C775}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{81F5B0EF-A378-4380-AC6E-06B7A6BB6F10}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{D41BCE32-2C5F-4D9C-8FFF-11FDFA508C15}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{9FD620C8-46FF-435A-B469-66A3CFAE8E2F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{D8817FA6-968D-4F9F-9590-892900727398}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{E34971C1-65B9-4FFB-8D59-E73B1082AF66}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{B511F1C8-5F64-437C-9FAA-5ECCDDF8F8BB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{1AAD9952-3EE6-4ACC-939B-551250EBA4F8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{C2C4697E-8223-49AA-9FF3-E2B1E2085FCF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{677FB869-969B-450D-981B-ABF83E9B10F3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{5DC5DD98-D862-4639-A590-5DC1EDD88755}] => (Allow) C:\Users\Public\Games\En Masse Entertainment\TERA\TERA-Launcher.exe FirewallRules: [{0D097EFF-DA1C-44EC-8E5E-3DDA8C8EC5E6}] => (Allow) C:\Users\Public\Games\En Masse Entertainment\TERA\TERA-Launcher.exe FirewallRules: [{E4890578-3957-4890-9EB6-42CE17CCF1BC}] => (Allow) C:\Users\Public\Games\En Masse Entertainment\TERA\TERA-Launcher.exe FirewallRules: [{4C629981-A27B-4C3A-B30D-DDAE5EF69CD4}] => (Allow) C:\Users\Public\Games\En Masse Entertainment\TERA\TERA-Launcher.exe FirewallRules: [{C106080B-D19D-498D-9284-8819E0D42216}] => (Allow) C:\Users\Public\Games\En Masse Entertainment\TERA\Client\TERA.exe FirewallRules: [{75E82D5B-0D4E-4BD3-B9B3-ADA8A680AC2F}] => (Allow) C:\Users\Public\Games\En Masse Entertainment\TERA\Client\TERA.exe FirewallRules: [{C33045A2-87D0-438A-BE12-EACFD094435A}] => (Allow) C:\Users\Public\Games\En Masse Entertainment\TERA\Client\TERA.exe FirewallRules: [{477949EF-C71E-4891-87BF-E9672A8E91B2}] => (Allow) C:\Users\Public\Games\En Masse Entertainment\TERA\Client\TERA.exe FirewallRules: [{24E774A9-3882-48F8-BF7D-5B1C8BCB9D74}] => (Allow) C:\Users\Public\Games\En Masse Entertainment\TERA\Client\TL.exe FirewallRules: [{A683EC8B-417F-41AA-AF14-A19A895685DF}] => (Allow) C:\Users\Public\Games\En Masse Entertainment\TERA\Client\TL.exe FirewallRules: [{420A5547-1E91-434E-B67A-24E236CB5151}] => (Allow) C:\Users\Public\Games\En Masse Entertainment\TERA\Client\TL.exe FirewallRules: [{9FDDF374-E3BB-46CE-B128-FC8FD07468F4}] => (Allow) C:\Users\Public\Games\En Masse Entertainment\TERA\Client\TL.exe FirewallRules: [{8AE30BA5-4BC1-4107-A5FA-DBA2BE297720}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{0C0C5649-C76E-49E7-BCE1-D07D14C5D311}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{D4334BBD-8A78-4410-9F9F-4AE22AFB337D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{798713F2-5F52-44A3-A316-0B1896DAFB4A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{58BAC79C-A4C3-457B-9291-C81A4A9008A9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{C2E938AC-13DC-496D-BCF6-FDA6D7AE66EB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{6BC0325B-2024-478E-8F6E-32EE032CAABF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{EB37C303-B249-477A-B244-53E5CD3C12A2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{31ED7C24-F11B-4982-A17C-EA8F2033CB7A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{093F0001-1D63-4EB9-928B-8744234ACB9A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{AD2003C2-98C1-4FEB-9519-523BE233D77B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{7E422278-BBAE-412D-9A56-AB77126F5644}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{25BDB673-6673-49CA-AF39-7603C7987850}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{EDE6D9E5-D2D7-4B64-A61A-9876125E743B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{A100BD1B-636A-46CF-BCFD-96CC1D4F0D09}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{4FB38FC7-35F8-4B89-8F1B-5EEB0B19E589}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{70E93C39-C877-432F-B1C7-CE79CB2082A4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{085DDC2E-4B90-46AB-89DF-1BC3A6B70111}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{C6348F29-40D5-43E2-99D5-71592E95B83C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{052C2609-15DD-4F53-A2FD-193602108E11}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{1CF17FC8-CA43-4754-945C-777E76C21AAF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{63FA7C5B-F0FE-4B6F-82A9-A409652D0FC3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{0D495C32-DA06-4483-9E15-7A6B47B7A9AC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{215CCC9E-4B76-4ED3-AB4B-0A10F333430E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{339797BC-99C6-4DA9-8BFA-FB59CD029250}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{2B98B5EB-E64B-44C9-AA91-504B658E8CBD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{7CEE229E-CA3A-4319-992B-93C30A09C309}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{E4A6F574-BA96-4E51-84CF-32C9B5B09808}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{819C275B-E319-481D-8AC0-07AF0C0DC7C3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{82B8E825-C0D8-45C2-B516-F672F9F81DD3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{F2C5D5F2-D112-47A9-8E9D-83FA54CA2FB9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{AF871C20-BD17-4279-8DD8-F7BCC457C445}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{AF36B43F-7B9B-4177-88C1-0E978F03BBBC}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{82A843D0-B3F8-46A5-8CCA-EEB3464E68BF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{0AB5DCE2-9CFE-4594-80D0-8460C5397C5C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{6F5FF75A-36A1-4F4B-8BE7-D42640353CEF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{0AA7BDCE-0D8A-4C3E-89C5-A57F46B18D9D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{C526C1C3-D3CD-45AD-AD02-CA66C6AEDC99}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{445A84A4-E269-4C10-8DB0-8C4D0F59BAD5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{6EE830C1-D045-4DCF-B283-024C1EAFB29F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{16B6228F-09E3-4AD2-8981-E97E7ECE8D8B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{D2FCCBA4-D48E-4CFC-8D48-C4F421BFB70D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{E37E60DB-E560-4D71-9442-2709AAD5A1F2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{1AA925E7-0EEA-4D3F-85FC-4190369A0DD1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{4DFBB45E-89E1-4008-9230-A27C649CE111}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{0EB3306D-1CC4-4780-B09D-0D1E42D81AAE}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{B381C6BE-CF26-4F1A-B667-9CF9216A15C7}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{944D502D-2A32-4082-A5A3-492FB7D888A8}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{088A5C0D-A386-4281-898E-AA12A483CD4F}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{E59450AE-ABFD-43BD-8C8E-98DCCD0E1A25}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{7438483A-FD39-4E15-B623-E331F41F0587}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{52F3096A-484B-4A49-98A1-E11E08CD1321}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{1BB62DDC-4461-4B12-9810-CBE5334FA87F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{EA9A9043-CAB5-43EE-9C07-E1A4FBF940E8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\America's Army\AAPG\Binaries\Win32\AAGame.exe FirewallRules: [{41306C67-FBCC-47AC-A930-7EC47D98A3BD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\America's Army\AAPG\Binaries\Win32\AAGame.exe FirewallRules: [{85A157D0-F2BC-4B3E-935E-8D65C8588BC4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\America's Army\AAPG\Binaries\Win32\AALauncher32.exe FirewallRules: [{4A40FE10-A435-47FB-A2CE-7497253869D5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\America's Army\AAPG\Binaries\Win32\AALauncher32.exe FirewallRules: [{5EE9005E-29E1-43FF-BA80-006913CB960F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{5C426F69-828C-48FB-A74F-6F26B949F4E8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{7F194AF0-7087-4E32-B569-5FF3216897B9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{0967EA11-40D5-4192-ABEE-8C526F02A090}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{97E6E05D-3BF6-4DA2-AFD6-9AF224B44910}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{85B3D2AB-C185-432C-ACD0-1E9A95E24D6F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{D060E6C6-D2BA-44E4-B7E8-5ADC9B129631}] => (Allow) C:\Program Files (x86)\Opera\45.0.2552.881\opera.exe FirewallRules: [{0EA26357-6299-40D9-B160-30338286B5AB}] => (Allow) C:\Program Files (x86)\Wargaming.net\GameCenter\wgc.exe FirewallRules: [{4694154A-445C-42A1-9C83-7C6631FF343A}] => (Allow) C:\Program Files (x86)\Opera\45.0.2552.888\opera.exe FirewallRules: [{C9B0070B-9B45-4DE6-8341-0AD42EC33D15}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{5AA9071E-027D-445C-A6CC-63BCF9D1B1D6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{F3DA4E1B-0C98-4EEC-B4CF-FE94DD046DB9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{DF010928-F0C3-4DFB-BB1B-AE0836AF1894}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{9F50A513-D6AF-41B6-936C-D81FF16EC2CF}] => (Allow) C:\Users\Administrator\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{1C9810E5-0253-4E70-A522-126B5C6A6429}] => (Allow) C:\Users\Administrator\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{3B7117AE-D1FB-45BF-8A95-F8FEF6FA911D}] => (Allow) C:\Users\Administrator\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{C7976EA9-D526-40A1-9D50-6E5332445FF0}] => (Allow) C:\Users\Administrator\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{2671A5EB-BCE0-4E0E-BC83-B54CEA1A790E}] => (Allow) C:\Users\Administrator\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{02AB40BD-C8F3-44A2-81A9-C2CD5B21A2C4}] => (Allow) C:\Users\Administrator\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{198CD68C-2E15-478A-9398-CC9A69D82B28}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{8B91C1B0-799F-45DF-BBA6-735EEB6A880B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [TCP Query User{1D4330C5-3060-4853-822D-03827DE101AE}C:\users\administrator\farming.simulator.17.v1.2.0.0\farming.simulator.17.v1.2.0.0\x64\farmingsimulator2017game.exe] => (Allow) C:\users\administrator\farming.simulator.17.v1.2.0.0\farming.simulator.17.v1.2.0.0\x64\farmingsimulator2017game.exe FirewallRules: [UDP Query User{11086ED9-B53E-4205-87F4-A8F09EC22463}C:\users\administrator\farming.simulator.17.v1.2.0.0\farming.simulator.17.v1.2.0.0\x64\farmingsimulator2017game.exe] => (Allow) C:\users\administrator\farming.simulator.17.v1.2.0.0\farming.simulator.17.v1.2.0.0\x64\farmingsimulator2017game.exe FirewallRules: [{20401D4E-A7C9-4ADC-A72C-621A0C1ECF2B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{2740C0A2-E48F-45A9-A7FD-3EF322448477}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{3AAC5735-1B8B-4352-A56B-DF2B9A82BB44}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{0907ED8D-FEB6-439E-8FFF-18526E6D10F5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{6885B6EC-0A0A-4B3F-BE87-132D735BB4CC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{89488461-8AEB-483A-9761-9EF68AC6F988}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{ECB8858D-A048-44DE-A6FA-93298EE99E42}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{D02CC224-48B1-4838-BCEC-0C610A7BFF11}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{EAA8280D-679A-4D45-A2F8-E6BF6120FCCE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{C6AB44F3-1B34-44CE-8B55-78B7357DBC7B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [TCP Query User{A050C323-31EA-4A77-9F1C-BDA402AFE851}C:\program files\farming simulator 17\x64\farmingsimulator2017game.exe] => (Allow) C:\program files\farming simulator 17\x64\farmingsimulator2017game.exe FirewallRules: [UDP Query User{C2F1189D-F0F3-47FF-8E0C-C79D4A000C82}C:\program files\farming simulator 17\x64\farmingsimulator2017game.exe] => (Allow) C:\program files\farming simulator 17\x64\farmingsimulator2017game.exe FirewallRules: [TCP Query User{3CC639DB-40C3-4D94-8A25-7F89BCFD46CC}C:\program files\farming simulator 17\x86\farmingsimulator2017game.exe] => (Allow) C:\program files\farming simulator 17\x86\farmingsimulator2017game.exe FirewallRules: [UDP Query User{7C13C975-405E-4A9B-8A6E-5FCF3FAA3935}C:\program files\farming simulator 17\x86\farmingsimulator2017game.exe] => (Allow) C:\program files\farming simulator 17\x86\farmingsimulator2017game.exe FirewallRules: [{3D41D32D-87CF-4495-BAA3-C89280548E23}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{47989A3F-0DDE-428A-989B-BA8E4819F976}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{0C6AB7D4-87DC-40F4-8547-04EC04DAE824}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{56BC3EE1-5830-40F8-BEEA-BEE0AC582346}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{C1C2B51A-CBEF-4870-AD7F-902F5746653A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{FBF47C71-A1A8-4701-B3E7-2F7DD0DEC5F5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ==================== Restore Points ========================= 10-06-2017 21:56:10 UnHackMe Malware Removal ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (06/14/2017 01:13:46 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Failed to create restore point (Process = C:\Windows\SysWOW64\sdiagnhost.exe -Embedding; Description = Final Restore Point for MICRODEM Freeware GIS using Program Install and Uninstall troubleshooter.; Error = 0x8007043c). Error: (06/14/2017 01:13:36 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Failed to create restore point (Process = C:\Windows\SysWOW64\sdiagnhost.exe -Embedding; Description = Restore Point before MICRODEM Freeware GIS was removed using Program Install and Uninstall troubleshooter; Error = 0x8007043c). Error: (06/14/2017 01:13:36 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Failed to create restore point (Process = C:\Windows\system32\wbem\wmiprvse.exe; Description = Installed Microsoft Solution - B4164D8C-3813-495A-BBBC-BA51D122A226; Error = 0x8007043c). Error: (06/14/2017 01:12:12 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Failed to create restore point (Process = C:\Windows\SysWOW64\sdiagnhost.exe -Embedding; Description = Final Restore Point for Apple Application Support using Program Install and Uninstall troubleshooter.; Error = 0x8007043c). Error: (06/14/2017 01:11:25 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Failed to create restore point (Process = C:\Windows\SysWOW64\sdiagnhost.exe -Embedding; Description = Restore Point before Apple Application Support was removed using Program Install and Uninstall troubleshooter; Error = 0x8007043c). Error: (06/14/2017 01:11:24 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Failed to create restore point (Process = C:\Windows\SysWOW64\sdiagnhost.exe -Embedding; Description = Restore Point before Corrupt Patch Registry keys; Error = 0x8007043c). Error: (06/14/2017 01:11:23 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Failed to create restore point (Process = C:\Windows\system32\wbem\wmiprvse.exe; Description = Installed Microsoft Solution - B4164D8C-3813-495A-BBBC-BA51D122A226; Error = 0x8007043c). Error: (06/14/2017 12:13:22 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: launcher.exe_Opera Internet Browser, version: 45.0.2552.888, time stamp: 0x592de21a Faulting module name: launcher.exe, version: 45.0.2552.888, time stamp: 0x592de21a Exception code: 0x80000003 Fault offset: 0x0002d932 Faulting process ID: 0x1270 Faulting application start time: 0x01d2e531834c16eb Faulting application path: C:\Program Files (x86)\Opera\launcher.exe Faulting module path: C:\Program Files (x86)\Opera\launcher.exe Report ID: c455b2be-5124-11e7-bf66-6cf049d5a717 Faulting package full name: Faulting package-relative application ID: Error: (06/14/2017 12:08:16 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT AUTHORITY) Description: Skipping: Eap method DLL path validation failed. Error: typeId=43, authorId=9, vendorId=0, vendorType=0 Error: (06/14/2017 12:08:16 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT AUTHORITY) Description: Skipping: Eap method DLL path validation failed. Error: typeId=25, authorId=9, vendorId=0, vendorType=0 System errors: ============= Error: (06/14/2017 10:52:32 PM) (Source: DCOM) (EventID: 10005) (User: VALGRIND) Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Unavailable" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC} Error: (06/14/2017 10:52:24 PM) (Source: DCOM) (EventID: 10005) (User: VALGRIND) Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Unavailable" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC} Error: (06/14/2017 10:52:20 PM) (Source: DCOM) (EventID: 10005) (User: VALGRIND) Description: DCOM got error "1084" attempting to start the service WSearch with arguments "Unavailable" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39} Error: (06/14/2017 10:52:20 PM) (Source: DCOM) (EventID: 10005) (User: VALGRIND) Description: DCOM got error "1084" attempting to start the service WSearch with arguments "Unavailable" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39} Error: (06/14/2017 10:52:19 PM) (Source: DCOM) (EventID: 10005) (User: VALGRIND) Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Unavailable" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC} Error: (06/14/2017 10:51:41 PM) (Source: DCOM) (EventID: 10005) (User: VALGRIND) Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Unavailable" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC} Error: (06/14/2017 10:51:33 PM) (Source: DCOM) (EventID: 10005) (User: VALGRIND) Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Unavailable" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC} Error: (06/14/2017 10:51:12 PM) (Source: DCOM) (EventID: 10005) (User: VALGRIND) Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Unavailable" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC} Error: (06/14/2017 10:51:07 PM) (Source: DCOM) (EventID: 10005) (User: VALGRIND) Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Unavailable" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC} Error: (06/14/2017 10:51:00 PM) (Source: DCOM) (EventID: 10005) (User: VALGRIND) Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Unavailable" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC} CodeIntegrity: =================================== Date: 2017-06-14 22:06:58.175 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load. Date: 2017-06-14 12:37:35.142 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load. Date: 2017-06-14 12:08:09.086 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load. Date: 2017-06-14 12:06:23.033 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load. Date: 2017-06-14 12:00:17.603 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load. Date: 2017-06-14 10:35:22.393 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load. Date: 2017-06-13 10:21:48.484 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load. Date: 2017-06-11 21:06:58.456 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load. Date: 2017-06-11 21:03:39.767 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load. Date: 2017-06-11 20:36:00.657 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load. ==================== Memory info =========================== Processor: AMD Athlon(tm) II X4 640 Processor Percentage of memory in use: 30% Total physical RAM: 4094.49 MB Available physical RAM: 2846.1 MB Total Virtual: 8094.49 MB Available Virtual: 6830.61 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:454.65 GB) (Free:155.74 GB) NTFS Drive d: (USB20FD) (Removable) (Total:0.96 GB) (Free:0.95 GB) FAT Drive z: (BrokerAccountClients) (Fixed) (Total:10.76 GB) (Free:10.64 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 87AD6642) Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=454.7 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=10.8 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 984 MB) (Disk ID: 00000000) Partition: GPT. ==================== End of Addition.txt ============================