Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Security Essentials closes immediately; C:\ suddenly bloated [Sol


  • This topic is locked This topic is locked

#1
petina

petina

    New Member

  • Member
  • Pip
  • 7 posts

Hello! This past week I've been noticing a few strange things happening with my PC. At least once a day I'd get a popup from Microsoft Security Essentials saying 'detected threats being cleaned, no action needed' but I would open MSE and there would be no record of anything being detected or quarantined. Just today, Windows told me my real-time protection had been disabled, so I went to restart MSE and it closed a split second after opening it, which it has continued to do whenever I try to open it again.

 

I've also noticed my C:\ drive is suddenly completely full (it's a 60gb SSD, too small I know, but before today I had about 5gb free on it) and when i refresh my drive list screen in Windows Explorer I notice it fluctuates between being completely full and having about 64kb free.

 

Another small thing is whatever it is installed a Yahoo search plugin to Chrome, which I promptly removed and it hasn't come back.

 

I installed Malwarebytes, AdwCleaner, and RogueKiller, all of which found a couple of things but they didn't manage to get rid of the issue. I actually am 100% sure of the program I installed that must have contained this malware and have deleted all of the relevant files I could find, but that didn't help. I found this forum by googling my problem and found someone else in 2013 who had a similar issue, so I followed what he had been told to do in that thread up to running ComboFix. ComboFix, like MSE, would close immediately on launching. I had to rename the EXE to get it to run, but it didn't fix anything.

 

Sorry about the wall of text. In all my years of computing I've been very careful with viruses and this is actually the first one I've ever had to deal with. Any help is greatly appreciated!

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:15-10-2015 01
Ran by Samuel (administrator) on ZODIAC-II (16-10-2015 22:02:38)
Running from C:\Users\Samuel\Desktop
Loaded Profiles: Samuel (Available Profiles: Samuel)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Apache Software Foundation) Z:\XAMPP\apache\bin\httpd.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
() Z:\Applications\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe
(Microsoft Corporation) C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe
(Apache Software Foundation) Z:\XAMPP\apache\bin\httpd.exe
() Z:\XAMPP\mysql\bin\mysqld.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() Z:\Applications\Pingzapper\PZService.exe
() C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
() Z:\Applications\TunnelBear\TBear.Maintenance.exe
(UC-Logic Technology Corp.) C:\Windows\System32\drivers\WTSrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
() C:\Program Files (x86)\puush\puush.exe
(Akamai Technologies, Inc.) C:\Users\Samuel\AppData\Local\Akamai\netsession_win.exe
(Akamai Technologies, Inc.) C:\Users\Samuel\AppData\Local\Akamai\netsession_win.exe
(Actual Tools) Z:\Applications\Actual Multiple Monitors\ActualMultipleMonitorsCenter.exe
(Cooler Master) Z:\Applications\Cooler Master\CM Storm\Trigger Z\CMTriggerZ.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Flux Software LLC) C:\Users\Samuel\AppData\Local\FluxSoftware\Flux\flux.exe
(Valve Corporation) Z:\Games\Steam\Steam.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Program Files (x86)\Razer\DeathAdder\razerhid.exe
(Tablet Driver) C:\Windows\SysWOW64\WTClient.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Apple Inc.) Z:\Applications\iTunes\iTunesHelper.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
(Razer Inc.) C:\Program Files (x86)\Razer\DeathAdder\razerofa.exe
() C:\Program Files (x86)\Razer\DeathAdder\vdDaemon.exe
(Actual Tools) Z:\Applications\Actual Multiple Monitors\ActualMultipleMonitorsCenter64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Actual Tools) Z:\Applications\Actual Multiple Monitors\ActualMultipleMonitorsShellCenter64.exe
(Valve Corporation) Z:\Games\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Reader 11.0\Reader\reader_sl.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
 
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [AdobeAAMUpdater-1.0] => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672152 2014-05-09] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2754704 2015-05-23] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [DeathAdder] => C:\Program Files (x86)\Razer\DeathAdder\razerhid.exe [248832 2012-01-14] ()
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [1679360 2012-02-28] (Wondershare)
HKLM-x32\...\Run: [WTClient] => C:\Windows\SysWOW64\WTClient.exe [40832 2012-12-22] (Tablet Driver)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-04-23] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => Z:\Applications\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [592704 2015-07-08] (Razer Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [NoStrCmpLogical] 1
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Run: [puush] => C:\Program Files (x86)\puush\puush.exe [568904 2015-03-30] ()
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Run: [Akamai NetSession Interface] => C:\Users\Samuel\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Run: [Dxtory Update Checker 2.0] => Z:\Applications\Dxtory Software\Dxtory2.0\UpdateChecker.exe [93696 2010-10-17] (Dxtory Software)
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Run: [Actual Multiple Monitors] => Z:\Applications\Actual Multiple Monitors\ActualMultipleMonitorsCenter.exe [1782576 2014-04-04] (Actual Tools)
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Run: [CoolerMaster TriggerZ] => Z:\Applications\Cooler Master\CM Storm\Trigger Z\CMTriggerZ.exe [2172416 2013-08-23] (Cooler Master)
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.)
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Run: [f.lux] => C:\Users\Samuel\AppData\Local\FluxSoftware\Flux\flux.exe [1017224 2013-10-24] (Flux Software LLC)
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Run: [Steam] => Z:\Games\Steam\steam.exe [2901584 2015-10-15] (Valve Corporation)
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Policies\Explorer: [NoDriveTypeAutoRun] 0x00000000
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\..\Interfaces\{860BAE5C-F33F-4FE5-9C1F-ADEAA559C816}: [NameServer] 192.168.0.1
 
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://sg.yahoo.com/?fr=yset_ie_syc_oracle&type=orcl_hpset
SearchScopes: HKLM-x32 -> DefaultScope value is missing
SearchScopes: HKU\S-1-5-21-3399670195-734195552-4159410357-1002 -> {C43C17AC-F638-401E-9982-1A452F806CB5} URL = hxxps://sg.search.yahoo.com/search?p={searchTerms}&fr=yset_ie_syc_oracle&type=orcl_default
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> Z:\Applications\Microsoft Office\Office15\OCHelper.dll [2015-08-12] (Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> Z:\Applications\Microsoft Office\Office15\URLREDIR.DLL [2014-01-23] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> Z:\Applications\Microsoft Office\Office15\GROOVEEX.DLL [2015-09-15] (Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-08-12] (Microsoft Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2014-01-22] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-09-15] (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - Z:\Applications\Microsoft Office\Office15\MSOSB.DLL [2014-04-01] (Microsoft Corporation)
 
FireFox:
========
FF ProfilePath: C:\Users\Samuel\AppData\Roaming\Mozilla\Firefox\Profiles\m9sjfdqr.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_19_0_0_207.dll [2015-10-14] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> Z:\APPLIC~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [No File]
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_207.dll [2015-10-14] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1214154.dll [2014-11-07] (Adobe Systems, Inc.)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> Z:\Applications\iTunes\Mozilla Plugins\npitunes.dll [2014-02-21] ()
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-08-12] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MIF5BA~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @nexon.net/NxGame -> C:\ProgramData\NexonUS\NGM\npNxGameUS.dll [2012-11-14] (Nexon)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2013-11-16] (Pando Networks)
FF Plugin-x32: @t.garena.com/garenatalk -> C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-09-27] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [No File]
FF Plugin HKU\S-1-5-21-3399670195-734195552-4159410357-1002: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Samuel\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-05-25] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-3399670195-734195552-4159410357-1002: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2013-11-16] (Pando Networks)
FF Plugin HKU\S-1-5-21-3399670195-734195552-4159410357-1002: wacom.com/WacomTabletPlugin -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [No File]
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-08-12] (Microsoft Corporation)
 
Chrome: 
=======
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (BetterTTV) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2015-10-10]
CHR Extension: (Google Docs) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-01]
CHR Extension: (Google Drive) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-04-01]
CHR Extension: (YouTube) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-04-01]
CHR Extension: (Google Search) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-04-01]
CHR Extension: (Tampermonkey) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2014-04-09]
CHR Extension: (APNG) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehkepjiconegkhpodgoaeamnpckdbblp [2015-10-16]
CHR Extension: (uBlock) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\epcnnfbjfcgphgdmggkamkmgojdagdnn [2015-10-02]
CHR Extension: (FrankerFaceZ) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\fadndhdgpmmaapbmfcknlfgcflmmmieb [2015-01-07]
CHR Extension: (Google Docs Offline) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-03]
CHR Extension: (AdBlock) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-10-16]
CHR Extension: (Unlimited Free VPN - Hola) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2014-04-18]
CHR Extension: (Enable right click) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhojmcideegachlhfgfdhailpfhgknjm [2015-09-30]
CHR Extension: (Referer Control) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnkcfpcejkafcihlgbojoidoihckciin [2015-09-27]
CHR Extension: (Eric Andre) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifnboedoofdmkfihhgagddionacnpdhb [2015-01-25]
CHR Extension: (New XKit) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\inobiceghmpkaklcknpniboilbjmlald [2015-07-31]
CHR Extension: (FLV Video Downloader) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\khgbngepgkjeffdkkpnblnlogfjehbjn [2014-12-14]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-01]
CHR Extension: (Checker Plus for Gmail™) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj [2014-04-09]
CHR Extension: (Gmail) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-04-01]
CHR HKLM-x32\...\Chrome\Extension: [npdicihegicnhaangkdmcgbjceoemeoo] - hxxps://clients2.google.com/service/update2/crx
 
==================== Services (Whitelisted) ========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 Apache2.4; Z:\xampp\apache\bin\httpd.exe [22016 2013-11-22] (Apache Software Foundation) [File not signed]
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-05-23] (NVIDIA Corporation)
S4 MBAMScheduler; Z:\Applications\Malwarebytes Anti-Malware\mbamscheduler.exe [1513784 2015-10-05] (Malwarebytes)
S2 MBAMService; Z:\Applications\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
R2 mi-raysat_3dsmax2012_64; Z:\Applications\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe [86016 2011-02-22] () [File not signed]
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23816 2015-04-30] (Microsoft Corporation)
R2 MSSQL$BWDATOOLSET; C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation)
R2 mysql; Z:\xampp\mysql\bin\mysqld.exe [10966528 2014-01-14] () [File not signed]
R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [366544 2015-04-30] (Microsoft Corporation)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4145600 2012-06-20] (INCA Internet Co., Ltd.)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1893008 2015-05-23] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [23006864 2015-05-23] (NVIDIA Corporation)
S3 OpenVPNService; Z:\Applications\OpenVPN\bin\openvpnserv.exe [34528 2013-01-08] (The OpenVPN Project)
R2 PingzapperSvc; Z:\Applications\Pingzapper\PZService.exe [679424 2012-06-11] () [File not signed]
R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [187048 2015-06-24] ()
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc.)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5426448 2014-12-15] (TeamViewer GmbH)
R2 TunnelBearMaintenance; Z:\Applications\TunnelBear\TBear.Maintenance.exe [35264 2015-07-17] ()
S4 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WinTabService; C:\Windows\System32\Drivers\WTSRV.EXE [78064 2013-04-19] (UC-Logic Technology Corp.)
S2 nHancer; "C:\Program Files\nHancer\nHancerService.exe" [X]
S2 NIHardwareService; C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe [X]
S2 TabletServicePen; C:\Program Files\Tablet\Pen\Pen_Tablet.exe [X]
S4 TouchServicePen; C:\Program Files\Tablet\Pen\Pen_TouchService.exe [X]
 
===================== Drivers (Whitelisted) ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 CMUSBDAC; C:\Windows\System32\DRIVERS\CMUSBDAC.sys [594944 2014-09-19] (C-MEDIA)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-11] (Broadcom Corporation)
R3 ffusb2audio; C:\Windows\System32\DRIVERS\ffusb2audio.sys [127280 2013-09-25] (Focusrite Audio Engineering Limited.)
S3 libusb0; C:\Windows\System32\DRIVERS\libusb0.sys [32768 2012-02-19] (http://libusb-win32.sourceforge.net) [File not signed]
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [280376 2015-03-04] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124568 2015-03-04] (Microsoft Corporation)
R2 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-05-23] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2015-04-03] (NVIDIA Corporation)
S3 PsSdk41; C:\Windows\system32\Drivers\pssdk41.sys [51776 2013-05-20] (microOLAP Technologies LTD)
S3 PTSimHid; C:\Windows\System32\DRIVERS\PTSimHid.sys [22912 2012-12-22] (UC-Logic Technology Corp.)
R3 rzdaendpt; C:\Windows\System32\DRIVERS\rzdaendpt.sys [33448 2014-09-05] (Razer Inc)
R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [37184 2015-06-12] (Razer, Inc.)
R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [129472 2015-06-27] (Razer, Inc.)
R3 rzvkeyboard; C:\Windows\System32\DRIVERS\rzvkeyboard.sys [31912 2014-12-30] (Razer Inc)
R3 tap-tb-0901; C:\Windows\System32\DRIVERS\tap-tb-0901.sys [38656 2015-04-28] (The OpenVPN Project)
S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2014-03-20] (Anchorfree Inc.)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [35064 2015-10-16] ()
S3 catchme; \??\C:\Combo-Fix\catchme.sys [X]
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 MBfilt; system32\drivers\MBfilt64.sys [X]
S3 MSICDSetup; \??\D:\CDriver64.sys [X]
S3 slb; \??\Z:\Games\ScarletBlade\avital\scarlb64.sys [X]
S3 Tablet2k; "%SystemRoot%\System32\Drivers\Tablet2k.sys" [X]
S3 wacommousefilter; system32\DRIVERS\wacommousefilter.sys [X]
S3 WacomPen; \SystemRoot\system32\DRIVERS\wacompen.sys [X]
S3 wacomvhid; system32\DRIVERS\wacomvhid.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2015-10-16 22:02 - 2015-10-16 22:02 - 00027783 _____ C:\Users\Samuel\Desktop\FRST.txt
2015-10-16 22:02 - 2015-10-16 22:00 - 02196480 _____ (Farbar) C:\Users\Samuel\Desktop\FRST64.exe
2015-10-16 22:01 - 2015-10-16 22:02 - 00000000 ____D C:\FRST
2015-10-16 21:41 - 2015-10-16 21:41 - 00000000 ___SD C:\ComboFix
2015-10-16 21:35 - 2015-10-02 02:06 - 00692672 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-10-16 21:35 - 2015-10-02 02:04 - 00616360 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-10-16 21:35 - 2015-10-02 02:00 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2015-10-16 21:35 - 2015-10-02 02:00 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-10-16 21:35 - 2015-10-02 02:00 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2015-10-16 21:35 - 2015-10-02 02:00 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2015-10-16 21:35 - 2015-10-02 02:00 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2015-10-16 21:35 - 2015-10-02 01:50 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2015-10-16 21:35 - 2015-10-02 01:00 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-10-16 21:34 - 2015-09-02 11:04 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-10-16 21:34 - 2015-09-02 11:04 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-10-16 21:34 - 2015-09-02 11:04 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-10-16 21:34 - 2015-09-02 11:04 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-10-16 21:34 - 2015-09-02 10:48 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-10-16 21:34 - 2015-09-02 10:48 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-10-16 21:34 - 2015-09-02 10:48 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-10-16 21:34 - 2015-09-02 10:47 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-10-16 21:34 - 2015-09-02 09:51 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-10-16 21:34 - 2015-09-02 09:47 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-10-16 21:34 - 2015-09-02 09:33 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-10-16 21:34 - 2015-07-31 02:06 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-10-16 21:34 - 2015-07-31 02:06 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-10-16 21:34 - 2015-07-31 02:06 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-10-16 21:34 - 2015-07-31 01:57 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-10-16 21:34 - 2015-07-31 01:57 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-10-16 21:34 - 2015-07-15 11:19 - 02004992 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-10-16 21:34 - 2015-07-15 11:19 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-10-16 21:34 - 2015-07-15 11:14 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2015-10-16 21:34 - 2015-07-15 11:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-10-16 21:34 - 2015-07-15 10:55 - 01390592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-10-16 21:34 - 2015-07-15 10:55 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-10-16 21:34 - 2015-07-15 10:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2015-10-16 21:34 - 2015-07-15 10:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-10-16 21:34 - 2015-07-10 01:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2015-10-16 21:34 - 2015-07-10 01:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2015-10-16 21:34 - 2015-07-10 01:42 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
2015-10-16 21:34 - 2015-07-02 04:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-10-16 21:34 - 2015-07-02 04:48 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-10-16 21:34 - 2015-07-02 04:30 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-10-16 21:34 - 2015-07-02 04:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-10-16 21:34 - 2015-04-18 11:10 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-10-16 21:34 - 2015-04-18 10:56 - 00342016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-10-16 21:28 - 2015-10-16 21:28 - 00024821 _____ C:\ComboFix.txt
2015-10-16 21:14 - 2015-10-16 21:49 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-10-16 16:26 - 2015-10-16 16:26 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker
2015-10-16 16:02 - 2015-10-16 16:02 - 00003762 _____ C:\blitzblank.log
2015-10-16 15:41 - 2015-10-16 15:41 - 00036169 _____ C:\Users\Samuel\Desktop\ComboFix.txt
2015-10-16 15:33 - 2011-06-26 14:45 - 00256000 _____ C:\Windows\PEV.exe
2015-10-16 15:33 - 2010-11-08 01:20 - 00208896 _____ C:\Windows\MBR.exe
2015-10-16 15:33 - 2009-04-20 12:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-10-16 15:33 - 2000-08-31 08:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-10-16 15:33 - 2000-08-31 08:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-10-16 15:33 - 2000-08-31 08:00 - 00098816 _____ C:\Windows\sed.exe
2015-10-16 15:33 - 2000-08-31 08:00 - 00080412 _____ C:\Windows\grep.exe
2015-10-16 15:33 - 2000-08-31 08:00 - 00068096 _____ C:\Windows\zip.exe
2015-10-16 15:24 - 2015-10-16 21:41 - 00000000 ____D C:\Qoobox
2015-10-16 15:24 - 2015-10-16 15:40 - 00000000 ____D C:\Windows\erdnt
2015-10-16 15:23 - 2015-10-16 15:24 - 05636101 ____R (Swearware) C:\Users\Samuel\Downloads\Combo-Fix.exe
2015-10-16 15:15 - 2015-10-16 15:15 - 00006086 _____ C:\Users\Samuel\Desktop\RKreport[1].txt
2015-10-16 15:01 - 2015-10-16 16:40 - 00035064 _____ C:\Windows\system32\Drivers\TrueSight.sys
2015-10-16 15:01 - 2015-10-16 15:16 - 00000000 ____D C:\ProgramData\RogueKiller
2015-10-16 15:01 - 2015-10-16 15:01 - 00005016 _____ C:\Users\Samuel\Desktop\AdwCleaner[C2].txt
2015-10-16 14:58 - 2015-10-16 16:38 - 00000000 ____D C:\AdwCleaner
2015-10-16 14:56 - 2015-10-16 14:56 - 00002123 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
2015-10-16 14:56 - 2015-10-16 14:56 - 00000000 ____D C:\Program Files\Microsoft Security Client
2015-10-16 14:56 - 2015-10-16 14:56 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2015-10-16 14:51 - 2015-10-16 14:51 - 00001231 _____ C:\Users\Samuel\Desktop\checkup.txt
2015-10-16 14:43 - 2015-10-16 14:43 - 00013922 _____ C:\Users\Samuel\AppData\Local\recently-used.xbel
2015-10-16 14:25 - 2015-10-16 21:49 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-10-16 14:25 - 2015-10-16 14:25 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-10-16 14:25 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-10-16 14:25 - 2015-10-05 09:50 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-10-16 14:25 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2015-10-16 13:50 - 2015-10-16 13:50 - 00398336 __RSH C:\Windows\SysWOW64\NOISEQ.dll
2015-10-16 13:50 - 2015-10-16 13:50 - 00002592 _____ C:\Windows\System32\Tasks\qyqvfov
2015-10-02 00:04 - 2015-10-02 00:04 - 00000016 _____ C:\Windows\SysWOW64\w3data.vss
2015-10-02 00:04 - 2015-10-02 00:04 - 00000016 _____ C:\Windows\msocreg32.dat
2015-10-02 00:01 - 2015-10-02 00:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IK Multimedia
2015-10-01 23:58 - 2015-10-02 00:04 - 00000016 _____ C:\ProgramData\autobk.inc
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2015-10-16 22:01 - 2012-04-28 23:17 - 01586866 _____ C:\Windows\WindowsUpdate.log
2015-10-16 21:54 - 2009-07-14 12:45 - 00016576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-10-16 21:54 - 2009-07-14 12:45 - 00016576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-10-16 21:49 - 2012-05-06 13:39 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\Skype
2015-10-16 21:49 - 2009-07-14 12:45 - 05100032 _____ C:\Windows\system32\FNTCACHE.DAT
2015-10-16 21:48 - 2012-04-29 18:56 - 00245966 _____ C:\Windows\PFRO.log
2015-10-16 21:46 - 2014-11-05 22:59 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-10-16 21:46 - 2014-11-05 22:24 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-10-16 21:37 - 2015-09-04 22:33 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-10-16 21:32 - 2012-05-13 01:39 - 00000000 ____D C:\Users\Samuel\AppData\Local\Apps\2.0
2015-10-16 21:26 - 2009-07-14 10:34 - 00000215 _____ C:\Windows\system.ini
2015-10-16 21:21 - 2009-07-14 13:13 - 00864960 _____ C:\Windows\system32\PerfStringBackup.INI
2015-10-16 17:09 - 2014-11-06 00:27 - 00000000 ____D C:\Windows\AutoKMS
2015-10-16 15:41 - 2009-07-14 11:20 - 00000000 __RHD C:\Users\Default
2015-10-16 15:38 - 2009-07-14 10:34 - 51642368 _____ C:\Windows\system32\config\COMPONENTS.bak
2015-10-16 15:38 - 2009-07-14 10:34 - 25952256 _____ C:\Windows\system32\config\SYSTEM.bak
2015-10-16 15:38 - 2009-07-14 10:34 - 105644032 _____ C:\Windows\system32\config\SOFTWARE.bak
2015-10-16 15:38 - 2009-07-14 10:34 - 00786432 _____ C:\Windows\system32\config\DEFAULT.bak
2015-10-16 15:38 - 2009-07-14 10:34 - 00262144 _____ C:\Windows\system32\config\SECURITY.bak
2015-10-16 15:38 - 2009-07-14 10:34 - 00262144 _____ C:\Windows\system32\config\SAM.bak
2015-10-16 14:56 - 2012-04-28 23:48 - 00001945 _____ C:\Windows\epplauncher.mif
2015-10-16 14:46 - 2009-07-14 11:20 - 00000000 ____D C:\Windows\Branding
2015-10-16 14:41 - 2014-01-17 15:50 - 00000000 ____D C:\Program Files\CamStudio 2.7
2015-10-16 13:00 - 2014-06-20 17:19 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\Mp3tag
2015-10-16 10:36 - 2012-10-22 19:54 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-10-16 10:35 - 2014-12-25 13:33 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2015-10-15 20:29 - 2012-05-04 16:44 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\Audacity
2015-10-14 23:22 - 2013-07-10 14:27 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-10-14 00:50 - 2014-07-10 18:39 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\spek
2015-10-12 22:36 - 2014-08-03 22:55 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\uTorrent
2015-10-12 18:18 - 2015-05-10 13:29 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\MusicBee
2015-10-10 23:50 - 2013-10-06 12:32 - 00000000 ____D C:\Users\Samuel\AppData\Local\SecondLife
2015-10-10 21:14 - 2013-10-06 12:32 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\SecondLife
2015-10-10 19:38 - 2015-05-15 17:47 - 00000045 _____ C:\Users\Samuel\jagex_cl_oldschool_LIVE.dat
2015-10-10 19:25 - 2012-04-29 03:38 - 00000000 ____D C:\Users\Samuel
2015-10-10 00:40 - 2012-04-30 17:09 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\deluge
2015-10-09 20:56 - 2015-01-28 18:09 - 00000000 ____D C:\Users\Samuel\AppData\Local\Native Instruments
2015-10-09 20:54 - 2015-01-28 18:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments
2015-10-09 20:54 - 2012-04-28 23:31 - 00323090 _____ C:\Windows\DPINST.LOG
2015-10-05 21:29 - 2014-09-29 19:01 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\vlc
2015-10-02 15:28 - 2012-04-30 01:30 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-09-28 10:55 - 2015-03-09 20:10 - 00001456 _____ C:\Users\Samuel\AppData\Local\Adobe Save for Web 13.0 Prefs
2015-09-26 11:08 - 2015-06-05 10:01 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\TunnelBear
2015-09-24 02:35 - 2013-03-24 02:18 - 00000000 ____D C:\Users\Samuel\AppData\Local\Akamai
2015-09-17 06:02 - 2014-04-01 23:35 - 00003894 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-09-17 06:02 - 2014-04-01 23:35 - 00003642 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-09-16 12:29 - 2014-08-12 23:04 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\Ableton
 
==================== Files in the root of some directories =======
 
2013-05-24 18:40 - 2014-08-16 16:42 - 0000132 _____ () C:\Users\Samuel\AppData\Roaming\Adobe BMP Format CS5 Prefs
2012-08-30 17:56 - 2014-10-30 01:20 - 0000132 _____ () C:\Users\Samuel\AppData\Roaming\Adobe GIF Format CS5 Prefs
2012-06-24 23:03 - 2015-03-08 23:22 - 0000132 _____ () C:\Users\Samuel\AppData\Roaming\Adobe PNG Format CS5 Prefs
2012-08-24 22:14 - 2013-01-24 21:08 - 0000132 _____ () C:\Users\Samuel\AppData\Roaming\Adobe Targa Format CS5 Prefs
2013-12-04 20:44 - 2013-12-05 00:12 - 0002347 _____ () C:\Users\Samuel\AppData\Roaming\ASSDraw3.cfg
2014-01-17 15:52 - 2014-01-17 18:21 - 0065588 _____ () C:\Users\Samuel\AppData\Roaming\Camdata.ini
2014-01-17 15:52 - 2014-01-17 18:21 - 0000408 _____ () C:\Users\Samuel\AppData\Roaming\CamLayout.ini
2014-01-17 15:52 - 2014-01-17 18:21 - 0000408 _____ () C:\Users\Samuel\AppData\Roaming\CamShapes.ini
2014-01-17 16:37 - 2014-01-17 18:21 - 0004538 _____ () C:\Users\Samuel\AppData\Roaming\CamStudio.cfg
2014-12-15 18:22 - 2014-12-15 18:22 - 0000448 _____ () C:\Users\Samuel\AppData\Roaming\com.remotehd.RemoteHelper.plist
2013-03-11 20:10 - 2014-06-21 22:50 - 0001219 _____ () C:\Users\Samuel\AppData\Roaming\MPQEditor.ini
2014-01-17 15:50 - 2014-01-17 16:37 - 0000096 _____ () C:\Users\Samuel\AppData\Roaming\version2.xml
2013-10-03 07:15 - 2013-10-03 07:15 - 0001877 _____ () C:\Users\Samuel\AppData\Roaming\VPNMasterFreeVPN.pbk
2012-06-24 23:04 - 2014-11-22 01:27 - 0001456 _____ () C:\Users\Samuel\AppData\Local\Adobe Save for Web 12.0 Prefs
2015-03-09 20:10 - 2015-09-28 10:55 - 0001456 _____ () C:\Users\Samuel\AppData\Local\Adobe Save for Web 13.0 Prefs
2012-06-10 13:55 - 2015-08-22 21:50 - 0010240 _____ () C:\Users\Samuel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-05-31 15:38 - 2013-05-31 15:38 - 0000094 _____ () C:\Users\Samuel\AppData\Local\fusioncache.dat
2015-10-16 14:43 - 2015-10-16 14:43 - 0013922 _____ () C:\Users\Samuel\AppData\Local\recently-used.xbel
2012-09-22 12:38 - 2012-09-22 12:38 - 0000017 _____ () C:\Users\Samuel\AppData\Local\resmon.resmoncfg
2015-10-01 23:58 - 2015-10-02 00:04 - 0000016 _____ () C:\ProgramData\autobk.inc
2014-05-27 16:31 - 2014-05-27 16:31 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2014-01-23 10:11 - 2014-01-23 10:11 - 0000040 _____ () C:\ProgramData\DT0001.dat
 
Files to move or delete:
====================
C:\ProgramData\DT0001.dat
 
 
Some files in TEMP:
====================
C:\Users\Samuel\AppData\Local\Temp\ammemb.dll
C:\Users\Samuel\AppData\Local\Temp\ammemb64.dll
 
 
Some zero byte size files/folders:
==========================
C:\Windows\War3Unin.exe
 
==================== Bamital & volsnap =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2015-10-11 01:13
 
==================== End of FRST.txt ============================
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version:15-10-2015 01
Ran by Samuel (2015-10-16 22:03:03)
Running from C:\Users\Samuel\Desktop
Windows 7 Home Premium Service Pack 1 (X64) (2012-04-28 15:17:50)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-3399670195-734195552-4159410357-500 - Administrator - Disabled)
Guest (S-1-5-21-3399670195-734195552-4159410357-501 - Limited - Disabled)
Samuel (S-1-5-21-3399670195-734195552-4159410357-1002 - Administrator - Enabled) => C:\Users\Samuel
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Microsoft Security Essentials (Enabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A}
AS: Microsoft Security Essentials (Enabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
µTorrent (HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\uTorrent) (Version: 3.4.5.41202 - BitTorrent Inc.)
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Ableton Live 9 Suite (HKLM-x32\...\{7D87B740-9B3F-4F11-9A5E-907B5AF7DA54}) (Version: 9.0.0.0 - Ableton)
Ace of Spades (HKLM-x32\...\{6037B8AD-7D5B-4D50-9BCA-A586C44EEF34}) (Version: 0.75.015 - Ben Aksoy)
Actual Multiple Monitors 8.0 (HKLM-x32\...\Actual Multiple Monitors_is1) (Version: 8.0 - Actual Tools)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.6.0.19140 - Adobe Systems Incorporated)
Adobe Flash Player 19 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 19.0.0.207 - Adobe Systems Incorporated)
Adobe Flash Player 19 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 19.0.0.207 - Adobe Systems Incorporated)
Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated)
Adobe Photoshop CC 2014 (HKLM-x32\...\{D7A4F897-B20A-42D0-862D-CB5F6DB7391D}) (Version: 15.0 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.13) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.13 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.4.154 - Adobe Systems, Inc.)
Aegisub 3.0.4 (HKLM-x32\...\{24BC8B57-716C-444F-B46B-A3349B9164C5}_is1) (Version: 3.0.4 - Aegisub Team)
Aeria Ignite (HKLM-x32\...\Aeria Ignite 1.12.2553) (Version: 1.12.2553 - Aeria Games & Entertainment)
Aeria Ignite (HKLM-x32\...\Aeria Ignite) (Version: 1.12.2553 - Aeria Games & Entertainment)
Aeria Ignite (x32 Version: 1.12.2553 - Aeria Games & Entertainment) Hidden
Akamai NetSession Interface (HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Akamai) (Version:  - Akamai Technologies, Inc)
Apple Application Support (HKLM-x32\...\{D9DAD0FF-495A-472B-9F10-BAE430A26682}) (Version: 3.0.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Archeage (HKLM-x32\...\Glyph Archeage) (Version:  - Trion Worlds, Inc.)
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.11 Beta2 - Michael Tippach)
Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.10.1.0 - Asmedia Technology)
ASRock App Charger v1.0.4 (HKLM\...\ASRock App Charger_is1) (Version:  - ASRock Inc.)
Audacity 2.0.6 (HKLM-x32\...\Audacity_is1) (Version: 2.0.6 - Audacity Team)
Autodesk 3ds Max 2011 64-bit (HKLM\...\{39BFB02A-9692-0409-A808-3F5C7B1F8953}) (Version: 13.0 - Autodesk)
Autodesk 3ds Max 2011 64-bit Components (HKLM\...\{7563F495-80F5-0409-A514-747C66C22449}) (Version: 13.0 - Autodesk)
Autodesk 3ds Max 2012 64-bit - English (HKLM\...\Autodesk 3ds Max 2012 64-bit - English) (Version: 14.0 - Autodesk)
Autodesk 3ds Max 2012 64-bit - English (Version: 14.0 - Autodesk) Hidden
Autodesk Backburner 2012.0.0 (HKLM-x32\...\{3D347E6D-5A03-4342-B5BA-6A771885F379}) (Version: 2012.0.0 - Autodesk, Inc.)
Autodesk FBX Plug-in 2011.1 - 3ds Max 2011 64-bit (HKLM\...\Autodesk FBX Plug-in 2011.1 - 3ds Max 2011 64-bit) (Version:  - Autodesk)
Autodesk FBX Plug-in 2012.0 - 3ds Max 2012 64-bit (HKLM\...\Autodesk FBX Plug-in 2012.0 - 3ds Max 2012 64-bit) (Version:  - Autodesk)
Autodesk Material Library 2011 (HKLM-x32\...\{9DEABCB6-B759-4D52-92F8-51B34A2B4D40}) (Version: 2.0.0.49 - Autodesk)
Autodesk Material Library 2011 Base Image library (HKLM-x32\...\{CD1E078C-A6B9-47DA-B035-6365C85C7832}) (Version: 2.0.0.49 - Autodesk)
Autodesk Material Library 2011 Medium Image library (HKLM-x32\...\{975951E7-14D0-49AF-A630-89680D12D7F6}) (Version: 2.0.0.49 - Autodesk)
Autodesk Material Library 2012 (HKLM-x32\...\{8F0837C2-EE09-4903-88F3-1976FE7FFF4E}) (Version: 2.5.0.8 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2012 (HKLM-x32\...\{65420DC9-306E-4371-905F-F4DC3B418E52}) (Version: 2.5.0.8 - Autodesk)
Autodesk Material Library Medium Resolution Image Library 2012 (HKLM-x32\...\{B5751715-EC10-43D9-8C95-62E1368433EF}) (Version: 2.5.0.8 - Autodesk)
Bamboo (HKLM\...\Pen Tablet Driver) (Version: 5.2.5-5 - Wacom Technology Corp.)
Bamboo Dock (HKLM-x32\...\Bamboo Dock) (Version: 4.0 - Wacom Co., Ltd.)
Bamboo Dock (x32 Version: 4.0.0 - Wacom Europe GmbH) Hidden
Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version:  - )
Batman Arkham City version 1.0 (HKLM-x32\...\{8B7IL77L-LKS1-AC3-BATAC-18CD6E6334R1}_is1) (Version: 1.0 - Warner Bros. Interactive)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Blade and Soul (HKLM-x32\...\{CEF766E5-6E15-441F-B14A-C44CB168DBE7}) (Version: 1.0.0 - PlayBns.com)
Blender (HKLM\...\Blender) (Version: 2.64a-release - Blender Foundation)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Borderlands 2 (HKLM-x32\...\Borderlands 2_is1) (Version:  - )
Bulk Rename Utility 2.7.1.2 (HKLM\...\Bulk Rename Utility_is1) (Version:  - TGRMN Software)
CamStudio 2.7.2 (HKLM\...\{04B83666-3A62-452B-85D3-70F8117F2329}_is1) (Version: 2.7.2 - CamStudio Open Source)
China Localization Patcher (HKLM-x32\...\{BD094820-176E-4C5D-8220-3D251B843DF5}) (Version: 1.4.1.0 - LokiReborn)
ClickRepair 3.9.1 and ClickRepairRT 1.3 (HKLM-x32\...\ClickRepair_is1) (Version:  - Caloundra Audio Restoration)
Composite 2012 64-bit (HKLM\...\{EA234BC3-39FE-4734-B72F-076086889F6D}) (Version: 7.0.0 - Autodesk)
Content Manager Assistant for PlayStation® (HKLM-x32\...\{4AC85673-668B-4CC4-8800-D28E29B77A90}) (Version: 2.10.6402.20 - Sony Computer Entertainment Inc.)
Cooler Master - Trigger Z (HKLM-x32\...\{5C1B3C27-86DD-42C8-B773-B65D0E304A5E}) (Version: 1.2.2 - Cooler Master)
Creative ALchemy Universal (HKLM-x32\...\ALchemy) (Version:  - )
Curse Client (HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\101a9f93b8f0bb6f) (Version: 5.1.1.820 - Curse)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
dBpoweramp CD Writer (HKLM-x32\...\dBpoweramp CD Writer) (Version: Release 4 - Illustrate)
dBpoweramp DSP Effects (HKLM-x32\...\dBpoweramp DSP Effects) (Version: Release 9 - Illustrate)
dBpoweramp Music Converter (HKLM-x32\...\dBpoweramp Music Converter) (Version: Release 14.4 - Illustrate)
Deluge 1.3.12 (HKLM-x32\...\Deluge) (Version:  - )
deviantART Favorites Downloader (HKLM-x32\...\{E8130429-DB23-4E81-AA37-82E9C233CBD0}) (Version: 1.2.0 - Dragoniade)
Diablo II (HKLM-x32\...\Diablo II) (Version:  - Blizzard Entertainment)
Dragon Age Toolset (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.01 - Electronic Arts, Inc.)
Dxtory version 2.0.122 (HKLM-x32\...\Dxtory2.0_is1) (Version: 2.0.122 - Dxtory Software)
eLicenser Control (HKLM-x32\...\eLicenser Control) (Version:  - Steinberg Media Technologies GmbH)
Exact Audio Copy 1.0beta3 (HKLM-x32\...\Exact Audio Copy) (Version: 1.0beta3 - Andre Wiethoff)
Explorer Suite IV (HKLM\...\Explorer Suite_is1) (Version:  - )
EZdrummer 2 32-bit (HKLM-x32\...\{7E36EB5B-0739-4DA7-BF26-E63DD2BECA76}) (Version: 2.0.0 - Toontrack)
EZdrummer 2 32-bit Update (HKLM-x32\...\{CDE1FC7E-3E9A-48BA-BBB9-65C2026CA0A2}) (Version: 2.0.1 - Toontrack)
f.lux (HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Flux) (Version:  - )
Façade (HKLM-x32\...\{24E34264-D483-477C-A9A0-4E53F69834CF}) (Version: 1.1.2 - Procedural Arts)
Fallout Mod Manager 0.13.21 (HKLM-x32\...\Generic Mod Manager_is1) (Version:  - Q, Timeslip)
FFmpeg v0.6.2 for Audacity (HKLM-x32\...\FFmpeg for Audacity_is1) (Version:  - )
FINAL FANTASY XIV - A Realm Reborn (HKLM-x32\...\{2B41E132-07DF-4925-A3D3-F2D1765CCDFE}) (Version: 1.0.0000 - SQUARE ENIX CO., LTD.)
FLAC 1.2.1b (remove only) (HKLM-x32\...\FLAC) (Version: 1.2.1b - Xiph.org)
FlacSquisher 1.3.1 (HKLM-x32\...\FlacSquisher) (Version: 1.3.1 - FlacSquisher)
Focusrite USB 2.0 Audio Driver 2.5.1 (HKLM\...\Focusrite USB 2.0 Audio Driver_is1) (Version: 2.5.1 - Focusrite Audio Engineering Limited.)
foobar2000 v1.1.11 (HKLM-x32\...\foobar2000) (Version: 1.1.11 - Peter Pawlowski)
Fraps (remove only) (HKLM-x32\...\Fraps) (Version:  - )
Free VPN version 3.0 (HKLM-x32\...\{353EDE50-22AA-419E-8D7B-2012134CF56E}_is1) (Version: 3.0 - VPNMaster Inc.)
GameMaker-Studio 1.2 (HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\GameMaker-Studio12) (Version:  - YoYo Games Ltd.)
Garena - League of Legends (HKLM-x32\...\LoL) (Version:  - Garena Online Pte Ltd.)
GCFScape 1.8.2 (HKLM\...\GCFScape_is1) (Version:  - Ryan Gregg)
Glyph (HKLM-x32\...\Glyph) (Version:  - Trion Worlds, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 46.0.2490.71 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden
gpedt.msc 1.0 (HKLM-x32\...\{10B9C608-BF7C-4CCF-A658-C01D969DCA21}_is1) (Version:  - Richard)
GTA IV: San Andreas (HKLM-x32\...\{678C5966-3496-4A5C-8436-F6089A0C7DE1}) (Version: 0.5.4.0 - GTA IV: San Andreas Mod Team)
Guild Wars 2 (HKLM-x32\...\Guild Wars 2) (Version:  - NCsoft Corporation, Ltd.)
HandBrake 0.9.9.1 (HKLM-x32\...\HandBrake) (Version: 0.9.9.1 - )
Hearthstone (HKLM-x32\...\Hearthstone) (Version:  - Blizzard Entertainment)
Hex Workshop v5 (HKLM-x32\...\{4E6258E0-F48C-48D9-BB36-007D6C78EC82}) (Version: 5.0.0 - BreakPoint Software)
IK Multimedia Authorization Manager version 1.0.5 (HKLM\...\{85BC0DCB-69E5-4279-AA25-F108EF896588}_is1) (Version: 1.0.5 - IK Multimedia)
ImageToSound  (HKLM-x32\...\ImageToSound) (Version:  - )
Intel® Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3347 - Intel Corporation)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.32 - Irfan Skiljan)
iSkysoft DRM Removal(Build 1.0.4.0) (HKLM-x32\...\iSkysoft DRM Removal_is1) (Version:  - iSkysoft Software)
iTunes (HKLM\...\{5A68A656-979F-4168-8795-E2E368AA4DC2}) (Version: 11.2.2.3 - Apple Inc.)
Janetter 4.2.3.0 (HKLM-x32\...\Janetter2_is1) (Version:  - Jane, Inc.)
JavaFX 2.1.1 (HKLM-x32\...\{1111706F-666A-4037-7777-211328764D10}) (Version: 2.1.1 - Oracle Corporation)
JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH)
LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version:  - )
Last.fm Scrobbler 2.1.36 (HKLM-x32\...\LastFM_is1) (Version:  - Last.fm)
LAV Filters 0.58.2 (HKLM-x32\...\lavfilters_is1) (Version: 0.58.2 - Hendrik Leppkes)
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games)
League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden
LINE (HKLM-x32\...\LINE) (Version: 3.3.2.102 - NHN Japan)
MakeMKV v1.8.12 (HKLM-x32\...\MakeMKV) (Version: v1.8.12 - GuinpinSoft inc)
Malwarebytes Anti-Malware version 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
ME80v2.1 Demo (HKLM\...\{5E1AC790-FCCC-4850-832B-A81627CEA15C}) (Version: 2.1.0 - Memory Moon)
Medieval CUE Splitter (HKLM-x32\...\{B96D2269-568B-4CBF-9332-12FAE8B158F7}) (Version: 1.2.0 - Medieval Software)
Metal Gear Solid (HKLM-x32\...\Metal Gear Solid) (Version:  - )
MetalGearSolid2 Substance (HKLM-x32\...\{2184D9EA-4E5B-43FD-914E-4563CF028C94}) (Version: 1.00.000 - )
Microsoft .NET Framework 1.1 (HKLM-x32\...\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft AppLocale (HKLM-x32\...\{394BE3D9-7F57-4638-A8D1-1D88671913B7}) (Version: 1.0.0 - MS)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Primary Interoperability Assemblies 2010 (HKLM-x32\...\{FA8E7AF5-C70E-3274-9740-9E697FBD5BB7}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.8.204.0 - Microsoft Corporation)
Microsoft SQL Server 2005 (HKLM-x32\...\Microsoft SQL Server 2005) (Version:  - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server Native Client (HKLM\...\{9ACF3FDB-C8E6-444C-8C64-13A221F7BFFD}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server Setup Support Files (English) (HKLM-x32\...\{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{B636C9B9-A3F2-4DCE-ADCC-72E095018385}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft Text-to-Speech Engine 4.0 (English) (HKLM-x32\...\MSTTS) (Version:  - )
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{887868A2-D6DE-3255-AA92-AA0B5A59B874}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Windows Application Compatibility Database (HKLM\...\{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb) (Version:  - )
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
minimoog-v 2.5.1 (HKLM-x32\...\minimoogv2_5_is1) (Version: 2.5.1 - Arturia)
mIRC (HKLM-x32\...\mIRC) (Version: 7.29 - mIRC Co. Ltd.)
MKVToolNix 7.1.0 (64bit) (HKLM-x32\...\MKVToolNix) (Version: 7.1.0 - Moritz Bunkus)
MotioninJoy Gamepad tool 0.7.1001 (HKLM\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: 0.7.1001 - www.motioninjoy.com)
Mozilla Firefox 37.0.2 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 37.0.2 (x86 en-US)) (Version: 37.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 37.0.2 - Mozilla)
Mp3tag v2.62 (HKLM-x32\...\Mp3tag) (Version: v2.62 - Florian Heidenreich)
MPC-HC 1.7.8 (HKLM-x32\...\{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1) (Version: 1.7.8 - MPC-HC Team)
Mumble 1.2.5 (HKLM-x32\...\{C7BC557D-8C8B-4F5F-83AB-D20C58CF4575}) (Version: 1.2.5 - Thorvald Natvig)
MusicBee 2.4 (HKLM-x32\...\MusicBee) (Version: 2.4 - Steven Mayall)
MySQL Connector C++ 1.1.3 (HKLM\...\{5C7A1ED6-DC5F-4017-B363-3E80644B4BD0}) (Version: 1.1.3 - Oracle and/or its affiliates)
MySQL Connector J (HKLM-x32\...\{E8528562-D612-4331-8A5B-57532D89716B}) (Version: 5.1.31 - Oracle Corporation)
MySQL Connector Net 6.8.3 (HKLM-x32\...\{38157422-F952-42F7-88AA-CC16A63CD109}) (Version: 6.8.3 - Oracle)
MySQL Connector/C 6.1 (HKLM\...\{4E2AAB30-1E42-4ACA-B1A9-3AE8629D0C89}) (Version: 6.1.5 - Oracle Corporation)
MySQL Documents 5.6 (HKLM-x32\...\{790BC099-47CC-4215-9BF3-B20AC3D348B2}) (Version: 5.6.19 - Oracle Corporation)
MySQL Examples and Samples 5.6 (HKLM-x32\...\{8934A43E-D901-4337-8313-0C084FBB8ADE}) (Version: 5.6.19 - Oracle Corporation)
MySQL Installer (HKLM-x32\...\{F0A890B5-DE46-4468-A1DF-8F4DE5C478D0}) (Version: 1.3.6.0 - Oracle Corporation)
MySQL Notifier 1.1.5 (HKLM-x32\...\{DB02F4B3-3FC4-4FED-B2A2-7CDCF88D87D3}) (Version: 1.1.5 - Oracle)
MySQL Server 5.6 (HKLM\...\{FB2E13E5-05CE-4C27-B645-A6FB7D0AB412}) (Version: 5.6.19 - Oracle Corporation)
MySQL Utilities (HKLM-x32\...\{AD74E509-A826-4C30-93C3-73E2DFE271F2}) (Version: 1.4.3 - Oracle Corporation)
MySQL Workbench 6.1 CE (HKLM-x32\...\{AD95295B-0279-43B6-A873-F12A1D1CD146}) (Version: 6.1.7 - Oracle Corporation)
Native Instruments Kontakt 5 (HKLM-x32\...\Native Instruments Kontakt 5) (Version: 5.3.0.6464 - Native Instruments)
Neverwinter (HKLM-x32\...\Neverwinter) (Version:  - Cryptic Studios)
Nexon Game Manager (HKLM-x32\...\{EA2DB6E0-72C5-4ef9-A3A0-E6705F4A6A9E}) (Version:  - )
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.45.1 - Black Tree Gaming)
nHancer (HKLM-x32\...\nHancer) (Version: 2.5.0900 - KSE)
nHancer (Version: 2.5.0900 - KSE) Hidden
NIF Utilities 3.7.3.265452180 for 3ds Max (HKLM\...\NIF Utilities for 3ds Max_is1) (Version:  - NIF File Format Library and Tools)
NifSkope (remove only) (HKLM-x32\...\NifSkope) (Version:  - )
Nightly 15.0a1 (x86 en-US) (HKLM-x32\...\Nightly 15.0a1 (x86 en-US)) (Version: 15.0a1 - Mozilla)
Nightly 16.0a1 (x86 en-US) (HKLM-x32\...\Nightly 16.0a1 (x86 en-US)) (Version: 16.0a1 - Mozilla)
NVIDIA GeForce Experience 2.4.5.28 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.4.5.28 - NVIDIA Corporation)
NVIDIA Graphics Driver 355.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 355.82 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation)
NVIDIA Photoshop Plug-ins 64 bit (HKLM-x32\...\{5E386C5B-CDE7-435A-B5C9-EC73A1B0553A}) (Version: 8.50 - )
NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Oblivion mod manager 1.1.12 (HKLM-x32\...\Oblivion mod manager_is1) (Version:  - Timeslip)
OldSchool RuneScape Launcher 1.2.5 (HKLM-x32\...\{375893B6-C8DB-42B0-9547-6E4437542C33}) (Version: 1.2.5 - Jagex Ltd)
Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version:  - )
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
OpenMW 0.24.0 (HKLM-x32\...\OpenMW 0.24.0) (Version: 0.24.0 - OpenMW.org)
OpenMW 0.31.0 (HKLM-x32\...\OpenMW 0.31.0) (Version: 0.31.0 - OpenMW.org)
OpenMW 0.34.0 (HKLM-x32\...\OpenMW 0.34.0) (Version: 0.34.0 - OpenMW.org)
OpenVPN 2.3.0-I001  (HKLM\...\OpenVPN) (Version: 2.3.0-I001 - )
Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
paint.net (HKLM\...\{DF3A46D9-67B3-44B2-9D01-25C8BA772C8A}) (Version: 4.0.6 - dotPDN LLC)
Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.7 - Pando Networks Inc.)
Path of Exile (HKLM-x32\...\{90A4562F-D4A1-4B65-906D-41F236CF6902}) (Version: 0.9.13.22054 - Grinding Gear Games)
PCSX2 - Playstation 2 Emulator (HKLM-x32\...\pcsx2-r5350) (Version:  - )
PFPortChecker 1.0.39 (HKLM-x32\...\PFPortChecker) (Version: 1.0.39 - Portforward.com)
PHANTASY STAR ONLINE 2 (HKLM-x32\...\http://pso2.jp/appid/release_is1)(Version:  - SEGA)
Phoscyon 1.9.0 (64bit) (HKLM\...\{128D2BFF-2122-4D0E-AC87-3EDDEC30358B}) (Version: 1.9.0.0 - D16 Group Audio Software)
PhreePhuzz version 1.0.4 (HKLM\...\PhreePhuzz_is1) (Version: 1.0.4 - LVC-Audio)
Pingzapper version 2.0.1 (HKLM-x32\...\{7FD61982-5436-439B-B5D0-36F0536FF8BF}_is1) (Version: 2.0.1 - Pingzapper)
Pokemon Online 2.0.07 (HKLM-x32\...\{2C08D7E7-9EE1-4A08-AFE0-745F02DCD6A4}_is1) (Version:  - Dreambelievers)
PowerISO (HKLM-x32\...\PowerISO) (Version: 6.0 - Power Software Ltd)
Prime World version 9.8.5 (HKLM-x32\...\{F6F3C462-2729-4555-8A95-CC317A90F8FF}_is1) (Version: 9.8.5 - Nival)
PSP ISO Compressor (HKLM-x32\...\{D47087E7-AA15-4D1D-8C0A-60F7E446D597}) (Version: 1.4.0 - danny_kay1710)
PureVPN (HKLM-x32\...\PureVPN_is1) (Version: 2 - PureVPN)
puush (HKLM-x32\...\{C3592426-531E-4110-911D-BFECE2CE284B}) (Version: 1.0.0.0 - Dean Herbert)
Python 2.7.3 (HKLM-x32\...\{C0C31BCC-56FB-42a7-8766-D29E1BD74C7C}) (Version: 2.7.3150 - Python Software Foundation)
Quest4Bush (HKLM-x32\...\Quest4Bush) (Version:  - GIMF)
QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.)
Rainmeter (HKLM-x32\...\Rainmeter) (Version: 2.3 beta r1334 - )
Razer DeathAdder™ Mouse (HKLM-x32\...\{EB1B8449-CD8F-485B-ADB6-02FBCFE180D3}) (Version: 3.05 - Razer USA Ltd.)
Razer Megalodon Firmware Updater (HKLM-x32\...\{C67A3F9D-E55D-4288-B4EC-1B9863EFB288}) (Version: 2.12.02 - Razer USA Ltd.)
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.21.26914 - Razer Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.44.421.2011 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7246 - Realtek Semiconductor Corp.)
Remote Helper (HKLM-x32\...\{C14ACB14-1995-493E-8543-E560071197AB}) (Version: 4.2.9 - Remote HD)
Resource Hacker Version 3.6.0 (HKLM-x32\...\ResourceHacker_is1) (Version:  - )
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.6.1 - Rockstar Games)
Rosetta Stone V3 (HKLM-x32\...\{7210BCFE-ED8D-4261-8537-81B5A4BDFA2A}) (Version: 3.0.35 - Rosetta Stone)
RPG Maker 2003 v1.08 (HKLM-x32\...\RPG Maker 2003_is1) (Version:  - Enterbrain, Inc.)
RX-SSTV Version 1.3.1b (HKLM-x32\...\RX-SSTV_is1) (Version:  - ON6MU)
Scribblenauts Unlimited (HKLM-x32\...\Scribblenauts Unlimited_is1) (Version:  - )
SecondLifeViewer (HKLM-x32\...\SecondLifeViewer) (Version: 3.8.4.305119 - Linden Research, Inc.)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version:  - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version:  - Microsoft) Hidden
Shadow Of Mordor version Shadow Of Mordor (HKLM-x32\...\Shadow Of Mordor_is1) (Version: Shadow Of Mordor - )
SHIELD Streaming (Version: 4.1.2000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.4.5.28 - NVIDIA Corporation) Hidden
Skype™ 6.21 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.21.104 - Skype Technologies S.A.)
SoulseekQt (HKLM-x32\...\SoulseekQt) (Version:  - )
Speccy (HKLM\...\Speccy) (Version: 1.26 - Piriform)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Sumotori Dreams (HKLM-x32\...\Sumotori Dreams) (Version:  - )
Sumotori Full Version (HKLM-x32\...\Sumotori Full Version) (Version:  - )
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Requirements Lab (HKLM-x32\...\{8DCAB1D8-F20C-4733-9B5F-646DDFEB59C9}) (Version: 6.1.1.0 - Husdawg, LLC)
Tablet Driver V5.02 (HKLM-x32\...\TabletDriver) (Version:  - )
TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - )
TeamSpeak 3 Client (HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.36897 - TeamViewer)
TERA (HKLM-x32\...\{0FCDA0F8-F3E5-402E-B9B6-13CB2B01182B}) (Version: 1.41 - En Masse Entertainment)
The Beginner's Guide (HKLM-x32\...\Steam App 303210) (Version:  - Everything Unlimited Ltd.)
The Elder Scrolls Online Beta (HKLM-x32\...\The Elder Scrolls Online Beta_is1) (Version: 0.3.4 - )
The Witcher 2 (HKLM-x32\...\{F0A209B7-7F85-4BDD-8F1F-B98EEAD9E04B}) (Version: 1.00.0000 - CD Projekt Red)
Toontown Rewritten (HKLM-x32\...\Toontown Rewritten) (Version: 00.00.00.00 - The TTR Team)
TunnelBear (HKLM-x32\...\{8f67e3e6-0ad7-4b14-af73-1db4b6990d69}) (Version: 2.3.15.0 - TunnelBear)
TunnelBear (x32 Version: 2.3.15.0 - TunnelBear) Hidden
Unity (HKLM-x32\...\Unity) (Version:  - Unity Technologies ApS)
Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb)
Vegas Pro 12.0 (64-bit) (HKLM\...\{BD422D00-5232-11E3-A6F3-F04DA23A5C58}) (Version: 12.0.770 - Sony)
Ventrilo Client for Windows x64 (HKLM\...\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}) (Version: 3.0.8.0 - Flagship Industries, Inc.)
Vindictus (HKLM-x32\...\Vindictus) (Version:  - )
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
VTFEdit 1.3.3 (HKLM\...\VTFEdit_is1) (Version:  - Neil Jedrzejewski & Ryan Gregg)
Wakfu (HKLM-x32\...\Wakfu) (Version:  - Ankama Games)
Warcraft III eSK 1.26.0.6401 (HKLM-x32\...\Warcraft III eSK 1.26.0.6401) (Version:  - )
Weiss Engineering Saracon (HKLM-x32\...\Saracon) (Version: 01.61-27 - )
Windows Driver Package - Focusrite USB 2.0 Audio Driver (09/25/2013 2.5.128.1) (HKLM\...\CF1FC201D237269A9CD51A3A6B14ADBF67175C32) (Version: 09/25/2013 2.5.128.1 - Focusrite)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.)
WinRAR 4.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.11.0 - win.rar GmbH)
Wondershare Video Converter Ultimate(Build 5.7.5.4) (HKLM-x32\...\Wondershare Video Converter Ultimate_is1) (Version:  - Wondershare Software)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version:  - Blizzard Entertainment)
World of Warcraft Model Viewer 64-bit (HKLM\...\{93D15425-809E-499E-9E69-A0C1DE8EE741}) (Version: 07.04.000 - WoWModelViewer.org)
Wrye Bash (HKLM-x32\...\Wrye Bash) (Version: 0.3.0.3 - Wrye & Wrye Bash Development Team)
wxPython 2.8.12.1 (unicode) for Python 2.7 (HKLM-x32\...\wxPython2.8-unicode-py27_is1) (Version: 2.8.12.1-unicode - Total Control Software)
XAMPP (HKLM-x32\...\xampp) (Version: 1.8.3-3 - Bitnami)
XLink Kai (HKLM-x32\...\{68698000-12EF-4B09-8A80-1C44BE7FF76B}) (Version: 7.4.26.0 - Team XLink)
XSplit Broadcaster (HKLM-x32\...\{6459F338-FE52-4034-BCA7-74772DA0F24D}) (Version: 1.3.1403.1202 - SplitMediaLabs)
Xvid Video Codec (HKLM-x32\...\Xvid Video Codec 1.3.2) (Version: 1.3.2 - Xvid Team)
xy-VSFilter 3.0.0.211 (HKLM-x32\...\xy-VSFilter_is1) (Version: 3.0.0.211 - xy-VSFilter Team)
Yume Nikki 0.10 English (HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Yume Nikki 0.10 English) (Version:  - )
剑灵_腾讯 (HKLM-x32\...\剑灵_腾讯) (Version:  - Tencent)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Samuel\AppData\Roaming\Dropbox\bin\Dropbox.exe /autoplay => No File
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{D45F043D-F17F-4e8a-8435-70971D9FA46D}\InprocServer32 -> Z:\Applications\Blender Foundation\Blender\BlendThumb64.dll ()
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
 
==================== Restore Points =========================
 
ATTENTION: System Restore is disabled
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2009-07-14 10:34 - 2015-10-16 21:26 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
 
127.0.0.1       localhost
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {15AFAF0B-FEFB-4B14-B086-CFDB691E5F58} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-02] (Google Inc.)
Task: {207E0380-C7C0-4EF1-8373-6E846D42E797} - System32\Tasks\AdobeAAMUpdater-1.0-Zodiac-II-Samuel => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe
Task: {22D93F42-7AB1-43CE-AAE9-2E300FA543F0} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe
Task: {26A1992B-8BA2-4C09-93ED-4F38E323210B} - System32\Tasks\{E500FD1F-56FC-4BBF-AA83-7BEBBBBD3B0D} => Chrome.exe hxxp://ui.skype.com/ui/0/6.7.0.102/en/abandoninstall?page=tsPlugin
Task: {3430B9E5-AF13-402A-824E-128BE74F3226} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-09-14] (Adobe Systems Incorporated)
Task: {3A0A8816-2CF0-4D76-AC98-356D3B3C6C3D} - System32\Tasks\qyqvfov => Rundll32.exe "C:\Windows\SysWOW64\NOISEQ.dll",ERTQUAZDDU
Task: {3ADD33F3-F0F4-42F7-8F0D-38CFBB9BA079} - System32\Tasks\gg_uac_daemon_Samuel => C:\Program Files (x86)\Garena Plus\ggdllhost.exe
Task: {3B1467DF-3AF9-470C-9701-AB31C7216D67} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-10-14] (Adobe Systems Incorporated)
Task: {6CD9F607-4FBF-4996-94D1-FA233A2ECC2F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe
Task: {AC30052F-DF8E-4D85-882D-A0EF795CA364} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-02] (Google Inc.)
Task: {B334D14E-23FD-42A3-8A87-4D0EECCA1825} - \AutoKMS -> No File <==== ATTENTION
Task: {CE543AB8-A3EE-4F5E-B4E7-72AC71F64B96} - System32\Tasks\MySQLNotifierTask => Z:\Applications\MySQL\MySQL Notifier 1.1.5\MySQLNotifier.exe
Task: {F26C06A2-F799-4982-9CD0-D7929670836A} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
 
==================== Loaded Modules (Whitelisted) ==============
 
2011-02-22 21:52 - 2011-02-22 21:52 - 00086016 _____ () Z:\Applications\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe
2014-07-05 17:09 - 2014-01-14 23:54 - 10966528 _____ () Z:\xampp\mysql\bin\mysqld.exe
2014-10-29 19:02 - 2012-06-11 11:57 - 00679424 ___SH () Z:\Applications\Pingzapper\PZService.exe
2015-06-24 03:11 - 2015-06-24 03:11 - 00187048 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
2015-07-17 18:30 - 2015-07-17 18:30 - 00035264 _____ () Z:\Applications\TunnelBear\TBear.Maintenance.exe
2015-09-15 14:58 - 2015-09-15 14:58 - 08901184 _____ () Z:\Applications\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2012-04-29 17:42 - 2012-02-17 20:55 - 00193536 _____ () C:\Program Files\WinRAR\rarext.dll
2012-04-28 23:28 - 2011-04-15 10:16 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2012-01-10 14:41 - 2015-03-30 12:06 - 00568904 _____ () C:\Program Files (x86)\puush\puush.exe
2015-06-02 01:07 - 2015-08-25 22:24 - 00116344 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2012-04-29 01:30 - 2012-01-14 12:56 - 00248832 _____ () C:\Program Files (x86)\Razer\DeathAdder\razerhid.exe
2012-04-29 01:30 - 2011-04-14 11:48 - 01758208 _____ () C:\Program Files (x86)\Razer\DeathAdder\vdDaemon.exe
2014-07-05 17:07 - 2013-07-08 19:34 - 00114688 _____ () Z:\xampp\apache\bin\pcre.dll
2014-07-05 17:09 - 2014-02-06 06:54 - 00128512 _____ () Z:\XAMPP\php\libpq.dll
2014-04-23 16:05 - 2014-04-23 16:05 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-04-23 16:04 - 2014-04-23 16:04 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2015-04-23 18:04 - 2015-05-23 09:48 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2015-09-15 14:58 - 2015-09-15 14:58 - 08901184 _____ () C:\Program Files (x86)\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2015-09-14 14:25 - 2015-10-06 00:18 - 00778752 _____ () Z:\Games\Steam\SDL2.dll
2015-09-14 14:25 - 2015-07-04 00:12 - 04962816 _____ () Z:\Games\Steam\v8.dll
2015-09-14 14:25 - 2015-07-04 00:12 - 01556992 _____ () Z:\Games\Steam\icui18n.dll
2015-09-14 14:25 - 2015-07-04 00:12 - 01187840 _____ () Z:\Games\Steam\icuuc.dll
2015-09-14 14:25 - 2015-10-15 04:56 - 02423376 _____ () Z:\Games\Steam\video.dll
2015-09-14 14:25 - 2015-09-24 08:33 - 02549248 _____ () Z:\Games\Steam\libavcodec-56.dll
2015-09-14 14:25 - 2015-09-24 08:33 - 00442880 _____ () Z:\Games\Steam\libavutil-54.dll
2015-09-14 14:25 - 2015-09-24 08:33 - 00491008 _____ () Z:\Games\Steam\libavformat-56.dll
2015-09-14 14:25 - 2015-09-24 08:33 - 00332800 _____ () Z:\Games\Steam\libavresample-2.dll
2015-09-14 14:25 - 2015-09-24 08:33 - 00485888 _____ () Z:\Games\Steam\libswscale-3.dll
2015-09-14 14:25 - 2015-10-15 04:56 - 00705104 _____ () Z:\Games\Steam\bin\chromehtml.DLL
2015-09-14 14:25 - 2015-10-10 02:13 - 00193024 _____ () Z:\Games\Steam\bin\openvr_api.dll
2015-05-20 10:29 - 2015-05-20 10:29 - 00137728 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll
2015-09-14 14:25 - 2015-10-09 06:20 - 45010208 _____ () Z:\Games\Steam\bin\libcef.dll
2014-01-03 19:03 - 2014-01-03 19:03 - 07816192 _____ () C:\Program Files (x86)\SplitMediaLabs\XSplit\avcodec-54.dll
2014-01-03 19:03 - 2014-01-03 19:03 - 00188416 _____ () C:\Program Files (x86)\SplitMediaLabs\XSplit\avutil-52.dll
2014-01-03 19:03 - 2014-01-03 19:03 - 01425920 _____ () C:\Program Files (x86)\SplitMediaLabs\XSplit\avformat-54.dll
2014-01-03 19:03 - 2014-01-03 19:03 - 00336896 _____ () C:\Program Files (x86)\SplitMediaLabs\XSplit\swscale-2.dll
2014-01-03 19:03 - 2014-01-03 19:03 - 00096256 _____ () C:\Program Files (x86)\SplitMediaLabs\XSplit\swresample-0.dll
2015-10-15 02:08 - 2015-10-09 08:53 - 01532744 _____ () C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.71\libglesv2.dll
2015-10-15 02:08 - 2015-10-09 08:53 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.71\libegl.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
AlternateDataStreams: C:\ProgramData\Temp:DED17083
AlternateDataStreams: C:\Users\Samuel\Local Settings:dBx60XsvYsG61xwsojRanjS
AlternateDataStreams: C:\Users\Samuel\AppData\Local:dBx60XsvYsG61xwsojRanjS
AlternateDataStreams: C:\Users\Samuel\AppData\Local\Application Data:dBx60XsvYsG61xwsojRanjS
AlternateDataStreams: C:\Users\Samuel\AppData\Local\Temp:JQX8ZjKxTW5moBIQHh164fINp
AlternateDataStreams: C:\Users\Samuel\AppData\Local\Temporary Internet Files:HB9Xw3xdXJFXHOjGIl7CQmGX4K
AlternateDataStreams: C:\Users\Samuel\AppData\Local\Temporary Internet Files:kpPHkXdaCG7yMzVlZcC9M1eT0bxb
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver"
 
==================== EXE Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
IE trusted site: HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\aeriagames.com -> hxxps://aeriagames.com
IE trusted site: HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\aeriagames.com -> hxxp://aeriagames.com
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(Currently there is no automatic fix for this section.)
 
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Content Manager Assistant for PlayStation®.lnk => C:\Windows\pss\Content Manager Assistant for PlayStation®.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^Samuel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Rainmeter.exe - Shortcut.lnk => C:\Windows\pss\Rainmeter.exe - Shortcut.lnk.Startup
MSCONFIG\startupreg: AdobeCS5ServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
MSCONFIG\startupreg: Aeria Ignite => "C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe" silent
MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
MSCONFIG\startupreg: BambooCore => C:\Program Files (x86)\Bamboo Dock\BambooCore.exe
MSCONFIG\startupreg: DS3 Tool => C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe -mini
MSCONFIG\startupreg: GarenaPlus => "C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe" -autolaunch
MSCONFIG\startupreg: iTunesHelper => "Z:\Applications\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: LogMeIn Hamachi Ui => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
MSCONFIG\startupreg: WTClient => WTClient.exe
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [TCP Query User{D7CD70F8-B91E-4963-9F58-6E5CD024A7A3}C:\program files (x86)\deluge\deluge.exe] => (Allow) C:\program files (x86)\deluge\deluge.exe
FirewallRules: [UDP Query User{7BDBD88B-EE5C-47E1-A309-FC7662644E38}C:\program files (x86)\deluge\deluge.exe] => (Allow) C:\program files (x86)\deluge\deluge.exe
FirewallRules: [TCP Query User{1D033D43-9207-4F84-A2EB-B95C3DE081C6}Z:\games\steam\steamapps\common\grand theft auto iv episodes from liberty city\eflc\eflc.exe] => (Allow) Z:\games\steam\steamapps\common\grand theft auto iv episodes from liberty city\eflc\eflc.exe
FirewallRules: [UDP Query User{5DEA550F-5891-4A9C-92AA-FD2A9C0BBB82}Z:\games\steam\steamapps\common\grand theft auto iv episodes from liberty city\eflc\eflc.exe] => (Allow) Z:\games\steam\steamapps\common\grand theft auto iv episodes from liberty city\eflc\eflc.exe
FirewallRules: [TCP Query User{F1B5EBE3-5FB2-4E6D-82BF-9AAC6E70AC76}C:\users\samuel\downloads\downloader_diablo2_enus.exe] => (Allow) C:\users\samuel\downloads\downloader_diablo2_enus.exe
FirewallRules: [UDP Query User{9C9816B5-1606-4F2C-B654-D06CF9A19516}C:\users\samuel\downloads\downloader_diablo2_enus.exe] => (Allow) C:\users\samuel\downloads\downloader_diablo2_enus.exe
FirewallRules: [{DABDC0D3-A84A-43B0-BA5C-238084412652}] => (Allow) Z:\Games\World of Warcraft\Launcher.exe
FirewallRules: [{802AF54F-5642-4820-B845-10B0ADA77F8A}] => (Allow) Z:\Games\World of Warcraft\Launcher.exe
FirewallRules: [{3D9BF15E-AE20-4ECF-9752-BBF15BDC50A8}] => (Allow) Z:\Games\World of Warcraft\Launcher.patch.exe
FirewallRules: [{BFFD75BA-7912-4F95-8BE5-AA5858994225}] => (Allow) Z:\Games\World of Warcraft\Launcher.patch.exe
FirewallRules: [TCP Query User{06E78BB7-04C5-4440-B85A-56584D981842}Z:\games\world of warcraft\temp\wow-4.2.1.2736-enus-tools-downloader.exe] => (Allow) Z:\games\world of warcraft\temp\wow-4.2.1.2736-enus-tools-downloader.exe
FirewallRules: [UDP Query User{6ADEAD2C-179F-4750-BE9B-FC2C4841B996}Z:\games\world of warcraft\temp\wow-4.2.1.2736-enus-tools-downloader.exe] => (Allow) Z:\games\world of warcraft\temp\wow-4.2.1.2736-enus-tools-downloader.exe
FirewallRules: [TCP Query User{01719CBB-0291-4E91-9758-172819A7BBD9}Z:\games\world of warcraft\backgrounddownloader.exe] => (Allow) Z:\games\world of warcraft\backgrounddownloader.exe
FirewallRules: [UDP Query User{21CA5EAD-E3A9-4034-83B3-7BD04FB2641D}Z:\games\world of warcraft\backgrounddownloader.exe] => (Allow) Z:\games\world of warcraft\backgrounddownloader.exe
FirewallRules: [{3842655A-829B-49DA-840F-4A3C4824C67C}] => (Allow) C:\Program Files\Ventrilo\Ventrilo.exe
FirewallRules: [{EE83BBCC-6E2E-4B5D-A73D-1D8D6FF50CFF}] => (Allow) C:\Program Files\Ventrilo\Ventrilo.exe
FirewallRules: [TCP Query User{6AD42430-FFA7-45EC-A526-A099A9629975}C:\users\samuel\downloads\diablo-iii-8370-ensg-installer-downloader.exe] => (Allow) C:\users\samuel\downloads\diablo-iii-8370-ensg-installer-downloader.exe
FirewallRules: [UDP Query User{63FFE837-CBB5-4121-B646-C7873F2C6AF4}C:\users\samuel\downloads\diablo-iii-8370-ensg-installer-downloader.exe] => (Allow) C:\users\samuel\downloads\diablo-iii-8370-ensg-installer-downloader.exe
FirewallRules: [{158DBD8F-285E-4817-932B-58EC4B491A83}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.524\Agent.exe
FirewallRules: [{0FCE77F5-5C5E-4372-96DC-2EB069BE8349}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.524\Agent.exe
FirewallRules: [{32B7E1CC-3160-4DA5-B81B-A75880C5C1DE}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.954\Agent.exe
FirewallRules: [{3C258AD4-52F3-489B-B2E9-E507362D6ECA}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.954\Agent.exe
FirewallRules: [{3697186A-16D2-462E-8D29-86FEEC69FF15}] => (Allow) Z:\Games\Diablo III\Diablo III.exe
FirewallRules: [{E039A19F-1529-487A-A31A-37453E922421}] => (Allow) Z:\Games\Diablo III\Diablo III.exe
FirewallRules: [TCP Query User{60ADAEA9-F264-4867-8D2E-395A7AE16781}C:\programdata\battle.net\agent\agent.976\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.976\agent.exe
FirewallRules: [UDP Query User{83C373EE-E9FB-453B-9D24-EE730D24069A}C:\programdata\battle.net\agent\agent.976\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.976\agent.exe
FirewallRules: [TCP Query User{AF9B4EE0-2160-4A78-8C2C-FD96D7CB1D13}C:\programdata\battle.net\agent\agent.998\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.998\agent.exe
FirewallRules: [UDP Query User{CA0F29C9-482D-4CB8-A580-BF323CE354D1}C:\programdata\battle.net\agent\agent.998\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.998\agent.exe
FirewallRules: [TCP Query User{74565C1C-6E68-4360-A962-4E9063CF5148}Z:\games\steam\steamapps\bobnintendo\team fortress 2\hl2.exe] => (Allow) Z:\games\steam\steamapps\bobnintendo\team fortress 2\hl2.exe
FirewallRules: [UDP Query User{2BCD4189-1B38-4C69-848A-A00E024DE7C8}Z:\games\steam\steamapps\bobnintendo\team fortress 2\hl2.exe] => (Allow) Z:\games\steam\steamapps\bobnintendo\team fortress 2\hl2.exe
FirewallRules: [{EDDA9CD2-2882-45B5-BA30-BFBB4A7EE9D2}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{238FAEE5-E34B-4A87-AA47-CF2CF16B6FCD}] => (Allow) LPort=2869
FirewallRules: [{37B6410E-4ACC-4565-AC3E-A1304A2C769A}] => (Allow) LPort=1900
FirewallRules: [{C274C16B-BAF9-40C8-9B8E-300551EF02E2}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\monitor.exe
FirewallRules: [{81C2A7D3-B880-4E85-AD97-3E8D98DE732F}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\monitor.exe
FirewallRules: [{495C958F-A693-48FF-A2D2-6C2024C61ED0}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\manager.exe
FirewallRules: [{C641D821-D9B8-46D3-A985-EC3E4372092A}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\manager.exe
FirewallRules: [{5AC6D0EE-4F14-43CB-9BC8-F6B3527B7266}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\server.exe
FirewallRules: [{ED50578A-674D-4DE8-B082-EA0B50CF33BF}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\server.exe
FirewallRules: [{470C8287-AC95-47CA-AF34-CA13FC901E0A}] => (Allow) Z:\Applications\Autodesk\3ds Max 2012\3dsmax.exe
FirewallRules: [{48CD715B-9EF3-4020-BB5E-F34146427309}] => (Allow) Z:\Applications\Autodesk\3ds Max 2012\3dsmax.exe
FirewallRules: [{25389E6F-6489-45A3-B560-A38CF6099517}] => (Allow) Z:\Applications\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe
FirewallRules: [{95BED236-5AB5-4156-BD13-A5C657677A18}] => (Allow) Z:\Applications\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe
FirewallRules: [{1B4F0F81-9B4E-4215-AAF4-C507A94AF8B9}] => (Allow) Z:\Applications\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64.exe
FirewallRules: [{0F2C6969-8E87-489C-A69C-DB823D953BB6}] => (Allow) Z:\Applications\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64.exe
FirewallRules: [{F1466FD8-7D42-46B0-9724-56942F7F0BAC}] => (Allow) Z:\Applications\Autodesk\3ds Max 2011\3dsmax.exe
FirewallRules: [{1FC89A42-ABCF-41B4-9E9A-BEE315640C81}] => (Allow) Z:\Applications\Autodesk\3ds Max 2011\3dsmax.exe
FirewallRules: [{BD0047F4-8E23-4FDD-8CB3-52D598449018}] => (Allow) Z:\Applications\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64.exe
FirewallRules: [{C184237D-68C7-45F8-BC99-786F59146F33}] => (Allow) Z:\Applications\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64.exe
FirewallRules: [{496A0F02-EE0F-4E10-8CB7-2E3DD2C85E51}] => (Allow) Z:\Applications\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64server.exe
FirewallRules: [{2B520E40-2FC2-4E85-A1C0-84D2AC2C799D}] => (Allow) Z:\Applications\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64server.exe
FirewallRules: [{2E3E0445-FDFA-4200-B00A-E2BC5D8CEF4C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1040\Agent.exe
FirewallRules: [{8A3E0995-777E-4C69-85B5-C92F98492602}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1040\Agent.exe
FirewallRules: [TCP Query User{26DA315C-1FD0-4D65-A4F6-1D41772B0E85}C:\programdata\battle.net\agent\agent.749\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.749\agent.exe
FirewallRules: [UDP Query User{6467C429-B84E-496C-86B4-11CE45E8D62E}C:\programdata\battle.net\agent\agent.749\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.749\agent.exe
FirewallRules: [TCP Query User{F5D68482-58A2-4C52-B67E-0A411658D853}Z:\games\the witcher 2\bin\witcher2.exe] => (Allow) Z:\games\the witcher 2\bin\witcher2.exe
FirewallRules: [UDP Query User{4848D931-E08F-47FB-B967-DDF3BCDEB405}Z:\games\the witcher 2\bin\witcher2.exe] => (Allow) Z:\games\the witcher 2\bin\witcher2.exe
FirewallRules: [TCP Query User{C42FEA80-FF09-46C1-AF44-587F65AEFCFB}Z:\games\steam\steamapps\common\gta iv san andreas\eflc\eflc.exe] => (Allow) Z:\games\steam\steamapps\common\gta iv san andreas\eflc\eflc.exe
FirewallRules: [UDP Query User{61D75CCA-5E05-4166-9C6E-CBC123D5CB06}Z:\games\steam\steamapps\common\gta iv san andreas\eflc\eflc.exe] => (Allow) Z:\games\steam\steamapps\common\gta iv san andreas\eflc\eflc.exe
FirewallRules: [TCP Query User{796B3B11-F82C-4CA3-8297-B9388A35E941}C:\users\samuel\downloads\downloader_warcraft3_the_frozen_throne_enus.exe] => (Allow) C:\users\samuel\downloads\downloader_warcraft3_the_frozen_throne_enus.exe
FirewallRules: [UDP Query User{601D0AA0-DAE2-4460-B40E-F7C7D52FCE1C}C:\users\samuel\downloads\downloader_warcraft3_the_frozen_throne_enus.exe] => (Allow) C:\users\samuel\downloads\downloader_warcraft3_the_frozen_throne_enus.exe
FirewallRules: [{DEEFC6C8-E516-4049-A63E-8A72E75E53EB}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{F025670E-5977-4241-AD79-AF23BB331F9B}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{E24F02B7-7A69-477A-83A3-E46FF878BA07}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{1B75855F-B4A3-46BC-ADC8-365F059D169B}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [TCP Query User{195AE246-8CBB-401C-93DF-6FA33E0CA65C}Z:\games\steam\steamapps\common\dark souls prepare to die edition\data\data.exe] => (Allow) Z:\games\steam\steamapps\common\dark souls prepare to die edition\data\data.exe
FirewallRules: [UDP Query User{26BD0E77-F8E7-4964-AD85-1ECA64107C84}Z:\games\steam\steamapps\common\dark souls prepare to die edition\data\data.exe] => (Allow) Z:\games\steam\steamapps\common\dark souls prepare to die edition\data\data.exe
FirewallRules: [TCP Query User{7DCAE24F-CD29-453A-B74E-5D0C9F92BB4D}Z:\games\world of warcraft\temp\wow-4.2.1.2756-enus-tools-downloader.exe] => (Allow) Z:\games\world of warcraft\temp\wow-4.2.1.2756-enus-tools-downloader.exe
FirewallRules: [UDP Query User{E470265D-0015-424B-8120-87B7FAC13ED2}Z:\games\world of warcraft\temp\wow-4.2.1.2756-enus-tools-downloader.exe] => (Allow) Z:\games\world of warcraft\temp\wow-4.2.1.2756-enus-tools-downloader.exe
FirewallRules: [TCP Query User{995C0358-BB5D-4B6C-BDFE-778D5526C9EA}Z:\games\world of warcraft\temp\wow-4.3-5.0.15890-enus-downloader.exe] => (Allow) Z:\games\world of warcraft\temp\wow-4.3-5.0.15890-enus-downloader.exe
FirewallRules: [UDP Query User{1F85844A-1D5D-4F16-AE3A-85B97DA4BF22}Z:\games\world of warcraft\temp\wow-4.3-5.0.15890-enus-downloader.exe] => (Allow) Z:\games\world of warcraft\temp\wow-4.3-5.0.15890-enus-downloader.exe
FirewallRules: [{F5B02FEF-FA3D-42C6-A25D-2C1E143D1760}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1267\Agent.exe
FirewallRules: [{B69C1A8B-8E31-4947-82A0-7F4458A6CAB4}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1267\Agent.exe
FirewallRules: [{F8E78522-0D1B-411B-8CB9-0605A7139609}] => (Allow) Z:\Applications\Tunngle\TnglCtrl.exe
FirewallRules: [{5CAD603B-62F0-401C-9F46-312EF9C229D4}] => (Allow) Z:\Applications\Tunngle\TnglCtrl.exe
FirewallRules: [{D7A64C8E-6283-4C5A-8A11-AF3FD85CE326}] => (Allow) Z:\Applications\Tunngle\Tunngle.exe
FirewallRules: [{0989CEF2-7AA0-41B3-8937-07C8A245900C}] => (Allow) Z:\Applications\Tunngle\Tunngle.exe
FirewallRules: [{21047489-D0E4-45F4-896E-5DB1A7AEBCB2}] => (Allow) Z:\Games\Steam\Steam.exe
FirewallRules: [{7974CE17-C7D6-4D59-9817-7F1711B858FC}] => (Allow) Z:\Games\Steam\Steam.exe
FirewallRules: [TCP Query User{DCE7759F-B96B-4648-BAD0-A6B1D19C6F4F}Z:\applications\editor\unity.exe] => (Allow) Z:\applications\editor\unity.exe
FirewallRules: [UDP Query User{F141CC54-47A5-4BF3-973C-C03D1DE9D265}Z:\applications\editor\unity.exe] => (Allow) Z:\applications\editor\unity.exe
FirewallRules: [TCP Query User{7ADC5A58-10C3-4801-9CFF-1F599981FF24}Z:\games\steam\steamapps\common\c9\c9.exe] => (Allow) Z:\games\steam\steamapps\common\c9\c9.exe
FirewallRules: [UDP Query User{4B3BFA3C-8591-4807-BF32-14C3038B09B1}Z:\games\steam\steamapps\common\c9\c9.exe] => (Allow) Z:\games\steam\steamapps\common\c9\c9.exe
FirewallRules: [TCP Query User{51ACE03A-7E1D-409C-B357-9CAA3D66ACBB}Z:\games\batman arkham city\binaries\win32\batmanac.exe] => (Allow) Z:\games\batman arkham city\binaries\win32\batmanac.exe
FirewallRules: [UDP Query User{551DE532-7F10-4EE8-B88F-21A450D0BFF1}Z:\games\batman arkham city\binaries\win32\batmanac.exe] => (Allow) Z:\games\batman arkham city\binaries\win32\batmanac.exe
FirewallRules: [TCP Query User{B03344E7-00EF-477A-B792-2303DC54E1BC}Z:\games\borderlands 2\binaries\win32\borderlands2.exe] => (Block) Z:\games\borderlands 2\binaries\win32\borderlands2.exe
FirewallRules: [UDP Query User{A70B6820-A5ED-4FD4-B9E1-642F6E2F0B2A}Z:\games\borderlands 2\binaries\win32\borderlands2.exe] => (Block) Z:\games\borderlands 2\binaries\win32\borderlands2.exe
FirewallRules: [{3F0C390E-7110-42F1-A2B6-4D64BC011135}] => (Allow) Z:\Games\Steam\steamapps\common\saints row the third\saintsrowthethird.exe
FirewallRules: [{32252667-E7C6-4AC7-B049-16B1A753E237}] => (Allow) Z:\Games\Steam\steamapps\common\saints row the third\saintsrowthethird.exe
FirewallRules: [{2EE36555-9123-4D2F-A649-D233ED34B2AC}] => (Allow) Z:\Games\Steam\steamapps\common\saints row the third\saintsrowthethird_dx11.exe
FirewallRules: [{F881CE3E-08C9-437A-BA66-B387A077DD8D}] => (Allow) Z:\Games\Steam\steamapps\common\saints row the third\saintsrowthethird_dx11.exe
FirewallRules: [{A481DED8-4074-48AE-AF27-A763DF99D199}] => (Allow) Z:\Games\Steam\steamapps\common\Oblivion\OblivionLauncher.exe
FirewallRules: [{26E7EB6E-54E3-4324-9DC9-4B349D739CE6}] => (Allow) Z:\Games\Steam\steamapps\common\Oblivion\OblivionLauncher.exe
FirewallRules: [{D8ED8A9B-9EED-447D-98E3-473823F8C591}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1363\Agent.exe
FirewallRules: [{B439B952-FF4C-4550-923F-79A7513A9819}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1363\Agent.exe
FirewallRules: [TCP Query User{DF6E9B51-3653-4509-A77A-65B70E212002}C:\program files (x86)\mozilla firefox\plugin-container.exe] => (Allow) C:\program files (x86)\mozilla firefox\plugin-container.exe
FirewallRules: [UDP Query User{DD11A34A-4643-42CF-AC6F-D1E0B7611B23}C:\program files (x86)\mozilla firefox\plugin-container.exe] => (Allow) C:\program files (x86)\mozilla firefox\plugin-container.exe
FirewallRules: [TCP Query User{82AEFE3E-1818-4589-BF52-05DD8839901C}C:\users\samuel\downloads\mountain climbing adventure\mca.exe] => (Allow) C:\users\samuel\downloads\mountain climbing adventure\mca.exe
FirewallRules: [UDP Query User{E3C4F1C8-B363-45DD-B08F-2483C6BD78B5}C:\users\samuel\downloads\mountain climbing adventure\mca.exe] => (Allow) C:\users\samuel\downloads\mountain climbing adventure\mca.exe
FirewallRules: [{9FBB6C96-9804-46D9-81B1-F9F20FE7B55F}] => (Allow) C:\ProgramData\NexonUS\NGM\NGM.exe
FirewallRules: [{4A015455-DE67-4D2F-A239-6DDAB41C6541}] => (Allow) C:\ProgramData\NexonUS\NGM\NGM.exe
FirewallRules: [{B2E2A240-7C1F-478E-83D2-260DB08E191C}] => (Allow) Z:\Games\Steam\steamapps\common\Just Cause 2\JustCause2.exe
FirewallRules: [{376E2FA1-DF8D-4E63-BC17-03D457D70FD1}] => (Allow) Z:\Games\Steam\steamapps\common\Just Cause 2\JustCause2.exe
FirewallRules: [{B494A252-89ED-4462-ACC8-52C412A3158D}] => (Allow) Z:\Games\Vindictus\en-US\NMService.exe
FirewallRules: [{B7470DFA-12A0-428B-858F-8795C69C7A7F}] => (Allow) Z:\Games\Vindictus\en-US\NMService.exe
FirewallRules: [TCP Query User{2415A355-CD78-4183-BB32-4F8242D35240}C:\users\samuel\appdata\local\temp\gw2.exe] => (Allow) C:\users\samuel\appdata\local\temp\gw2.exe
FirewallRules: [UDP Query User{FC1E4EB0-B832-4335-846F-1859FB10798A}C:\users\samuel\appdata\local\temp\gw2.exe] => (Allow) C:\users\samuel\appdata\local\temp\gw2.exe
FirewallRules: [TCP Query User{FE1AC861-8EA2-4213-86F5-A4BC8C0090E2}Z:\games\guild wars 2\gw2.exe] => (Allow) Z:\games\guild wars 2\gw2.exe
FirewallRules: [UDP Query User{231FE722-6FBD-4AF6-8D04-77A66BE53780}Z:\games\guild wars 2\gw2.exe] => (Allow) Z:\games\guild wars 2\gw2.exe
FirewallRules: [{271B1764-ABFC-4BF1-8585-52474C0B17EE}] => (Allow) C:\Users\Samuel\Downloads\LoLInstaller.exe
FirewallRules: [{13692E2C-8FB7-4065-B1B3-74816E5827F8}] => (Allow) C:\Users\Samuel\Downloads\LoLInstaller.exe
FirewallRules: [{00943072-17B2-45F7-A23B-C5C50718B015}] => (Allow) C:\GarenaDownload\Games\pwen\PerfectWorld_EN_GarenaPlus_Installer.exe
FirewallRules: [{4C8C5EC0-7669-4101-B5E0-E1B3B27AE359}] => (Allow) C:\GarenaDownload\Games\pwen\PerfectWorld_EN_GarenaPlus_Installer.exe
FirewallRules: [TCP Query User{98358981-D916-4542-A543-CD4325F085F9}C:\program files (x86)\garena plus\garenamessenger.exe] => (Allow) C:\program files (x86)\garena plus\garenamessenger.exe
FirewallRules: [UDP Query User{8ACD4D92-4704-46B0-88C7-EFFBDDC99DE4}C:\program files (x86)\garena plus\garenamessenger.exe] => (Allow) C:\program files (x86)\garena plus\garenamessenger.exe
FirewallRules: [{7DE4F6DA-2BAA-4E73-9086-9A5AFCCD0290}] => (Allow) LPort=8370
FirewallRules: [{05F46B6F-8A82-46D0-BA34-86F87A1B0E40}] => (Allow) LPort=8370
FirewallRules: [{D03A0F22-54A5-4536-B01C-F4C91DB002FF}] => (Allow) Z:\Games\League of Legends\GameData\Apps\LoL\Air\LolClient.exe
FirewallRules: [{CCB3522A-8837-4E33-96E4-BC4764561D02}] => (Allow) Z:\Games\League of Legends\GameData\Apps\LoL\Air\LolClient.exe
FirewallRules: [{2ED2C26E-C12B-460D-BA93-92BE287C8DD5}] => (Allow) Z:\Games\League of Legends\GameData\Apps\LoL\Game\League of Legends.exe
FirewallRules: [{C43656C5-7993-4113-B9FB-3E665BB56620}] => (Allow) Z:\Games\League of Legends\GameData\Apps\LoL\Game\League of Legends.exe
FirewallRules: [{B8571494-BAED-4E9D-B3EA-C0428BDC2232}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe
FirewallRules: [{0849CE8A-6ECC-40D5-8A25-1FAF6F4FFDA7}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.EXE
FirewallRules: [{98E4F6B7-4425-4F39-B39C-1A51917D0C5D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1544\Agent.exe
FirewallRules: [{094FCC36-9E05-415A-AA06-DBF59DB37D24}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1544\Agent.exe
FirewallRules: [{FB24F922-AB4C-4A3A-8107-35E6369212EA}] => (Allow) Z:\Games\Steam\steamapps\common\Torchlight II\Torchlight2.exe
FirewallRules: [{3F237301-46C8-4327-BA91-594A83593CE6}] => (Allow) Z:\Games\Steam\steamapps\common\Torchlight II\Torchlight2.exe
FirewallRules: [TCP Query User{708C76C4-8EED-4CF2-BF0C-9D65680FE3C5}C:\program files (x86)\mirc\mirc.exe] => (Allow) C:\program files (x86)\mirc\mirc.exe
FirewallRules: [UDP Query User{BD23AAF2-47B5-4600-A8A4-04EE5C146DEA}C:\program files (x86)\mirc\mirc.exe] => (Allow) C:\program files (x86)\mirc\mirc.exe
FirewallRules: [{BC9E6775-2438-4AE6-9AB3-0346A41A00C2}] => (Block) C:\program files (x86)\mirc\mirc.exe
FirewallRules: [{BD324477-7BEA-4007-9DD2-BB3E23CBA2A3}] => (Block) C:\program files (x86)\mirc\mirc.exe
FirewallRules: [{CB852BD5-B984-4F56-A1EF-BB2AE3517886}] => (Allow) support inRosettaStoneLtdServices.exe
FirewallRules: [{8595EB58-94A6-4CAE-9F8B-6FA4D18F3F67}] => (Allow) support inRosettaStoneLtdServices.exe
FirewallRules: [{749A8DDA-6EDF-47CE-B71D-9216840E1B1D}] => (Allow) RosettaStoneVersion3.exe
FirewallRules: [{940E977F-E507-4C76-9091-B36508BEE265}] => (Allow) RosettaStoneVersion3.exe
FirewallRules: [TCP Query User{FE8C02FD-F0F6-4274-A22E-D5779AD1854D}Z:\games\tera eu\tera-launcher.exe] => (Allow) Z:\games\tera eu\tera-launcher.exe
FirewallRules: [UDP Query User{87819473-4385-43D7-B9D4-C702ED74265C}Z:\games\tera eu\tera-launcher.exe] => (Allow) Z:\games\tera eu\tera-launcher.exe
FirewallRules: [{B71FC6AF-C20C-4381-B1E4-B2DD0DC04ACF}] => (Allow) Z:\games\tera eu\tera-launcher.exe
FirewallRules: [{123D9692-7357-41BC-A3AD-D96B3513B118}] => (Allow) Z:\games\tera eu\tera-launcher.exe
FirewallRules: [{0791E5A8-B962-4B38-B1BC-3B1286D4B023}] => (Allow) Z:\Games\TERA US\TERA-Launcher.exe
FirewallRules: [{29258B3F-0CC6-4780-8D0C-1DA8AD9E4385}] => (Allow) Z:\Games\TERA US\TERA-Launcher.exe
FirewallRules: [{FF187F5E-6477-4102-BDCB-9D28CB7E477D}] => (Allow) Z:\Games\TERA US\TERA-Launcher.exe
FirewallRules: [{6A7618BE-7E78-4392-977A-A4CCB3BFE884}] => (Allow) Z:\Games\TERA US\TERA-Launcher.exe
FirewallRules: [{B4154E9F-EE79-4090-80E3-8D11AB73B2F6}] => (Allow) Z:\Games\TERA US\Client\TERA.exe
FirewallRules: [{353872C0-C924-423A-8F8C-9B3AD89E8D39}] => (Allow) Z:\Games\TERA US\Client\TERA.exe
FirewallRules: [{FA01C945-58DF-44C4-91CF-C5AC837B0750}] => (Allow) Z:\Games\TERA US\Client\TERA.exe
FirewallRules: [{81DCECE6-3460-4093-90E8-56825922AEB5}] => (Allow) Z:\Games\TERA US\Client\TERA.exe
FirewallRules: [{6B4F9FC5-2143-489B-B58D-9F29D74F176A}] => (Allow) Z:\Games\TERA US\Client\TL.exe
FirewallRules: [{63A49F1E-8527-4C5C-A685-59696263B540}] => (Allow) Z:\Games\TERA US\Client\TL.exe
FirewallRules: [{C90DACF7-112E-4C55-B383-F63F2CDCA67B}] => (Allow) Z:\Games\TERA US\Client\TL.exe
FirewallRules: [{F39CB035-E962-42BE-ABF4-D8162B23F2FA}] => (Allow) Z:\Games\TERA US\Client\TL.exe
FirewallRules: [{9788F1FE-F404-44C5-8D1F-C6691544148C}] => (Allow) Z:\Games\Steam\steamapps\common\Legend of Grimrock\grimrock.exe
FirewallRules: [{D8B6A853-8E5A-472C-B2EE-4FFE52FFACE1}] => (Allow) Z:\Games\Steam\steamapps\common\Legend of Grimrock\grimrock.exe
FirewallRules: [{9D007024-3D0C-4837-AF73-2FBC0072F9CC}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1675\Agent.exe
FirewallRules: [{B062F4FD-48C0-4B63-B026-98B2E913635F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1675\Agent.exe
FirewallRules: [{73DC7F21-17FD-4511-8821-61D89BD6E13B}] => (Allow) C:\Users\Samuel\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{1EECFEEC-E4DD-4002-8A9D-CACD4D6879D1}] => (Allow) C:\Users\Samuel\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{473F2CD1-2895-4AA7-913E-5A45C2B0E445}] => (Allow) C:\Users\Samuel\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{CDE4FB9F-52E2-473B-A5D0-C056B7C793C3}] => (Allow) C:\Users\Samuel\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{2212A34E-FE5F-421E-B2F8-3E09A28840D1}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\counter-strike source\hl2.exe
FirewallRules: [{B3DCF3B5-5295-42F0-9770-207615EA4C2D}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\counter-strike source\hl2.exe
FirewallRules: [TCP Query User{4A4BA9B3-52F5-4F1F-A52A-E080F93B9421}C:\users\samuel\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\samuel\appdata\local\akamai\netsession_win.exe
FirewallRules: [UDP Query User{09C7D90E-4BDF-4288-B0CE-5185D60B7515}C:\users\samuel\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\samuel\appdata\local\akamai\netsession_win.exe
FirewallRules: [{5EF66784-99ED-48D3-985B-60C77B4BB2EE}] => (Block) C:\users\samuel\appdata\local\akamai\netsession_win.exe
FirewallRules: [{FCEF7932-F6BE-4D0D-B5DF-4109E3900D82}] => (Block) C:\users\samuel\appdata\local\akamai\netsession_win.exe
FirewallRules: [{97D4469E-0A3B-4E3A-85D3-C33645B7C491}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{0DEC2854-D1E0-44B1-82E1-15957A6629DA}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{95DFBBD0-99BA-440A-9288-6A1AE2358EF5}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1737\Agent.exe
FirewallRules: [{4BD0B2BB-AAB3-4830-A30C-0B40ABE506EF}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1737\Agent.exe
FirewallRules: [{E7E8DAAB-708D-4988-A517-25E17D0758C4}] => (Allow) Z:\Games\Steam\steamapps\common\Torchlight II\ModLauncher.exe
FirewallRules: [{28504F7B-F85D-4839-AE01-3F663FEB872A}] => (Allow) Z:\Games\Steam\steamapps\common\Torchlight II\ModLauncher.exe
FirewallRules: [TCP Query User{ACB60DC4-AC03-40AF-B633-0BA8C6C03137}C:\users\samuel\downloads\neverwinter_nw.1.20130416a.6.exe] => (Allow) C:\users\samuel\downloads\neverwinter_nw.1.20130416a.6.exe
FirewallRules: [UDP Query User{9112A5BD-0325-4EDB-AD99-D3A6EB8E6F79}C:\users\samuel\downloads\neverwinter_nw.1.20130416a.6.exe] => (Allow) C:\users\samuel\downloads\neverwinter_nw.1.20130416a.6.exe
FirewallRules: [{5BBBC239-F70A-4174-BC3E-68174BFAA2AD}] => (Block) C:\users\samuel\downloads\neverwinter_nw.1.20130416a.6.exe
FirewallRules: [{F0FE0139-60FB-4E0E-BF17-3438E9316ECE}] => (Block) C:\users\samuel\downloads\neverwinter_nw.1.20130416a.6.exe
FirewallRules: [TCP Query User{1C2BF823-2706-4DAF-BBD3-2486A06E9236}Z:\games\neverwinter\neverwinter\live\gameclient.exe] => (Allow) Z:\games\neverwinter\neverwinter\live\gameclient.exe
FirewallRules: [UDP Query User{CC0E1540-B5F3-4FD0-BDF4-9ACD6C00FB15}Z:\games\neverwinter\neverwinter\live\gameclient.exe] => (Allow) Z:\games\neverwinter\neverwinter\live\gameclient.exe
FirewallRules: [{193E2F6D-EAF4-4B56-9487-DF1CDE90A059}] => (Block) Z:\games\neverwinter\neverwinter\live\gameclient.exe
FirewallRules: [{DF8AAF02-B793-4D31-B834-7665B97C78CF}] => (Block) Z:\games\neverwinter\neverwinter\live\gameclient.exe
FirewallRules: [{0D678099-2933-4767-B207-BBC3266DD72D}] => (Allow) Z:\Games\Steam\steamapps\common\saints row the third\game_launcher.exe
FirewallRules: [{23B1129C-4B9C-49BE-BBF7-335EDFC07CF1}] => (Allow) Z:\Games\Steam\steamapps\common\saints row the third\game_launcher.exe
FirewallRules: [TCP Query User{442A793A-244E-4338-A238-444367E8DC2F}C:\program files (x86)\xlink kai\kaiengine.exe] => (Allow) C:\program files (x86)\xlink kai\kaiengine.exe
FirewallRules: [UDP Query User{9E6A04E2-279E-4921-8965-A42B71FDA01F}C:\program files (x86)\xlink kai\kaiengine.exe] => (Allow) C:\program files (x86)\xlink kai\kaiengine.exe
FirewallRules: [{783E056E-93C1-47A4-838D-F103E8DB0287}] => (Block) C:\program files (x86)\xlink kai\kaiengine.exe
FirewallRules: [{D15C0DD0-D370-4122-AFB0-39834AB761C7}] => (Block) C:\program files (x86)\xlink kai\kaiengine.exe
FirewallRules: [{E0B0FDF3-E009-4F73-B2D6-52EE5ECEF3ED}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\garry's mod beta\hl2.exe
FirewallRules: [{7BEC90F8-E067-4D8A-A54A-C561C158F3CA}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\garry's mod beta\hl2.exe
FirewallRules: [TCP Query User{FB05CF5D-5EF4-4CB7-B86C-4F6C0A250D9A}Z:\games\steam\steamapps\common\lord of the rings online\lotroclient.exe] => (Allow) Z:\games\steam\steamapps\common\lord of the rings online\lotroclient.exe
FirewallRules: [UDP Query User{81E57F7A-1B7B-4AFA-81EA-F7D311DE582E}Z:\games\steam\steamapps\common\lord of the rings online\lotroclient.exe] => (Allow) Z:\games\steam\steamapps\common\lord of the rings online\lotroclient.exe
FirewallRules: [{45A8376C-1225-4A9A-B4F9-16E4374DE334}] => (Block) Z:\games\steam\steamapps\common\lord of the rings online\lotroclient.exe
FirewallRules: [{3C586614-402D-485D-90A1-568C52CB444B}] => (Block) Z:\games\steam\steamapps\common\lord of the rings online\lotroclient.exe
FirewallRules: [TCP Query User{6CE4745B-2F24-4FFC-AB04-074DC955A957}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe
FirewallRules: [UDP Query User{F911AD46-315B-4BF5-B39D-5161FB3064F0}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe
FirewallRules: [{9797139E-1C8F-4969-BDA8-A6CDECD798A6}] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe
FirewallRules: [{E9CA9706-8C6F-4CBA-AE90-B14B9DD3ED82}] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe
FirewallRules: [{B515EB50-EC1D-4465-9009-C01047D3DBE7}] => (Allow) Z:\Games\Steam\steamapps\common\Super Meat Boy\SuperMeatBoy.exe
FirewallRules: [{68F39506-3CB3-449B-858C-D1AB49CFCC70}] => (Allow) Z:\Games\Steam\steamapps\common\Super Meat Boy\SuperMeatBoy.exe
FirewallRules: [TCP Query User{1D045E01-0BAD-44FD-A2EA-415D80106218}C:\windows\syswow64\java.exe] => (Allow) C:\windows\syswow64\java.exe
FirewallRules: [UDP Query User{D01AD9AD-5441-4158-A186-4CA3904237D7}C:\windows\syswow64\java.exe] => (Allow) C:\windows\syswow64\java.exe
FirewallRules: [{4D6A61D7-9C64-4D3C-8FC9-3826262A8FE8}] => (Allow) C:\windows\syswow64\java.exe
FirewallRules: [{0DC5458A-6CED-4D06-845D-B09108FE68A2}] => (Allow) C:\windows\syswow64\java.exe
FirewallRules: [{6FA0BCD5-D9B1-4AA2-AEC2-F8B1F4BE7649}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\source sdk base 2007\hl2.exe
FirewallRules: [{ACAA4F6C-FCB0-4FDC-B60A-0F0A88B475DD}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\source sdk base 2007\hl2.exe
FirewallRules: [{7ECB71CE-A856-44A6-9963-A7522E739C5E}] => (Allow) Z:\Games\Steam\steamapps\common\Bastion\Bastion.exe
FirewallRules: [{6838AC29-C058-4203-942B-A179C5D1284C}] => (Allow) Z:\Games\Steam\steamapps\common\Bastion\Bastion.exe
FirewallRules: [{30665CD9-3EB4-49FB-9812-879ECDA0823B}] => (Allow) Z:\Games\Steam\steamapps\common\skyrim\SkyrimLauncher.exe
FirewallRules: [{09F063B7-283A-4DE2-90DF-7BB67F824825}] => (Allow) Z:\Games\Steam\steamapps\common\skyrim\SkyrimLauncher.exe
FirewallRules: [{D931AFD9-7060-40BB-970A-2552196FF7A5}] => (Allow) Z:\Games\Steam\steamapps\common\skyrim\CreationKit.exe
FirewallRules: [{687358DC-2DCD-492A-9662-62B0FEAC69FF}] => (Allow) Z:\Games\Steam\steamapps\common\skyrim\CreationKit.exe
FirewallRules: [{DB0CAA33-B20A-4E99-A6A3-18510003DA22}] => (Allow) Z:\Games\Steam\steamapps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe
FirewallRules: [{877C5A71-A982-4A23-ACC5-32CA720F3711}] => (Allow) Z:\Games\Steam\steamapps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe
FirewallRules: [TCP Query User{BFD8AB63-1CC0-44B6-9B39-5A9557140ECE}C:\users\samuel\downloads\tinyumbrella-6.14.00.exe] => (Allow) C:\users\samuel\downloads\tinyumbrella-6.14.00.exe
FirewallRules: [UDP Query User{7BFEE7C3-5877-41DF-82BC-589425EA7EB1}C:\users\samuel\downloads\tinyumbrella-6.14.00.exe] => (Allow) C:\users\samuel\downloads\tinyumbrella-6.14.00.exe
FirewallRules: [{1F110DC4-B8F4-4225-8E7C-5108A054BA28}] => (Block) C:\users\samuel\downloads\tinyumbrella-6.14.00.exe
FirewallRules: [{36AA5D82-01CA-45D9-BD4C-D532CFC13896}] => (Block) C:\users\samuel\downloads\tinyumbrella-6.14.00.exe
FirewallRules: [TCP Query User{DA98283F-4546-43D2-BC03-282A7965DAE7}C:\users\samuel\downloads\tinyumbrella-5.10.14.exe] => (Allow) C:\users\samuel\downloads\tinyumbrella-5.10.14.exe
FirewallRules: [UDP Query User{923EC74D-501C-4386-87B0-51E3D4AA365F}C:\users\samuel\downloads\tinyumbrella-5.10.14.exe] => (Allow) C:\users\samuel\downloads\tinyumbrella-5.10.14.exe
FirewallRules: [{7983D4E0-AF24-4812-B76B-5667D805B705}] => (Block) C:\users\samuel\downloads\tinyumbrella-5.10.14.exe
FirewallRules: [{2349E4FC-0040-4B2E-AD06-15CCAB3A2222}] => (Block) C:\users\samuel\downloads\tinyumbrella-5.10.14.exe
FirewallRules: [TCP Query User{A7EC7D38-5702-4813-9722-57CC471A782B}Z:\games\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe] => (Allow) Z:\games\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe
FirewallRules: [UDP Query User{F52B9837-04E1-4390-8960-D83BDE8BEEA3}Z:\games\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe] => (Allow) Z:\games\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe
FirewallRules: [{49FC2FCB-E54B-49F1-AFB4-84198914D88E}] => (Block) Z:\games\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe
FirewallRules: [{3710ACB0-158F-4D41-821C-5A1AA80A330E}] => (Block) Z:\games\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe
FirewallRules: [{200A7A8F-99D7-4577-813C-8734CCF9A45D}] => (Allow) Z:\Games\Steam\steamapps\common\Morrowind\Morrowind Launcher.exe
FirewallRules: [{44311ED2-7902-4C32-86B9-D282674DEFA5}] => (Allow) Z:\Games\Steam\steamapps\common\Morrowind\Morrowind Launcher.exe
FirewallRules: [{D3972D57-A869-4208-839F-DB63BB8916BF}] => (Allow) Z:\Games\Steam\steamapps\common\Quake\Winquake.exe
FirewallRules: [{F73543BF-A94C-4A2D-B485-A5D2EA2C69AE}] => (Allow) Z:\Games\Steam\steamapps\common\Quake\Winquake.exe
FirewallRules: [{33942B24-6509-466C-9BDF-AB6EFC01A115}] => (Allow) Z:\Games\Steam\steamapps\common\Quake\qwcl.exe
FirewallRules: [{DEBCE86B-7719-45EB-9D89-73624CF6DEAB}] => (Allow) Z:\Games\Steam\steamapps\common\Quake\qwcl.exe
FirewallRules: [{01005B37-BAC4-466F-AEB2-90280EE8C8D1}] => (Allow) Z:\Games\Steam\steamapps\common\Quake\Glquake.exe
FirewallRules: [{68761CBC-C472-47DF-8CCD-F89B854825BD}] => (Allow) Z:\Games\Steam\steamapps\common\Quake\Glquake.exe
FirewallRules: [{1CE21366-705B-4361-BE40-2D5731231A1C}] => (Allow) Z:\Games\Steam\steamapps\common\Quake\glqwcl.exe
FirewallRules: [{C72D6FFB-C251-4A24-A18A-C03CF85EB477}] => (Allow) Z:\Games\Steam\steamapps\common\Quake\glqwcl.exe
FirewallRules: [{30AF802E-3CCE-4C8A-B641-F6449B533BE0}] => (Allow) Z:\Games\Steam\steamapps\common\Fallout 3 goty\FalloutLauncher.exe
FirewallRules: [{B0171B83-4D09-4EED-BD23-FF043BE3BB73}] => (Allow) Z:\Games\Steam\steamapps\common\Fallout 3 goty\FalloutLauncher.exe
FirewallRules: [TCP Query User{E14E30FA-98C7-4691-A30C-03D6825EC878}Z:\games\steam\steamapps\common\fallout 3 goty\fallout3.exe] => (Allow) Z:\games\steam\steamapps\common\fallout 3 goty\fallout3.exe
FirewallRules: [UDP Query User{0BEB6DEE-E4A5-4E78-A222-359B27591283}Z:\games\steam\steamapps\common\fallout 3 goty\fallout3.exe] => (Allow) Z:\games\steam\steamapps\common\fallout 3 goty\fallout3.exe
FirewallRules: [{5C137E7F-94BA-43BF-BA17-53F50969B9D4}] => (Block) Z:\games\steam\steamapps\common\fallout 3 goty\fallout3.exe
FirewallRules: [{B654D17A-D22C-4254-A08D-7211B48318D6}] => (Block) Z:\games\steam\steamapps\common\fallout 3 goty\fallout3.exe
FirewallRules: [{B2C33861-F8C4-4236-9CEA-73378A28FE85}] => (Allow) C:\Windows\SysWOW64\rundll32.exe
FirewallRules: [{54E02E08-7243-46AA-9AC6-B7316BBE3802}] => (Allow) C:\Program Files (x86)\Garena Plus\ggdllhost.exe
FirewallRules: [TCP Query User{D2459A58-0989-4603-9718-B295C9825C08}C:\program files (x86)\garena plus\updatemanager.exe] => (Allow) C:\program files (x86)\garena plus\updatemanager.exe
FirewallRules: [UDP Query User{4D89D224-18FC-43D0-8513-E9542857DAA1}C:\program files (x86)\garena plus\updatemanager.exe] => (Allow) C:\program files (x86)\garena plus\updatemanager.exe
FirewallRules: [{574E8F20-2138-4AE7-B953-7572B31A1586}] => (Block) C:\program files (x86)\garena plus\updatemanager.exe
FirewallRules: [{4A55FEC1-B3FD-49D6-9B5F-5A88E533EEBF}] => (Block) C:\program files (x86)\garena plus\updatemanager.exe
FirewallRules: [{4B6C0012-AADE-494B-8F23-D1647A0F3993}] => (Allow) C:\GarenaDownload\Games\lol\LoLInstaller.exe
FirewallRules: [{C573A34A-7AC8-4668-859E-A4180FB8B9AA}] => (Allow) C:\GarenaDownload\Games\lol\LoLInstaller.exe
FirewallRules: [{F78EBCF5-894C-4DD9-A01A-F34AB3798EF9}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2045\Agent.exe
FirewallRules: [{36A5EBAA-1940-4BAA-A9AE-4B0EE5C0DE9A}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2045\Agent.exe
FirewallRules: [TCP Query User{B544B663-8FC9-48B3-8EBE-FAAF54C84F7A}C:\program files (x86)\garena plus\garenamessenger.exe] => (Allow) C:\program files (x86)\garena plus\garenamessenger.exe
FirewallRules: [UDP Query User{4EA5A709-8A5C-43D6-8A79-A25974348F45}C:\program files (x86)\garena plus\garenamessenger.exe] => (Allow) C:\program files (x86)\garena plus\garenamessenger.exe
FirewallRules: [{AD44D7EB-DB25-4430-ABCE-68BED3314EF3}] => (Block) C:\program files (x86)\garena plus\garenamessenger.exe
FirewallRules: [{5CF9B26E-B37B-4A7F-AA86-CE1C32BD30A5}] => (Block) C:\program files (x86)\garena plus\garenamessenger.exe
FirewallRules: [{8C4B7045-0916-401C-8E83-C7A468428E77}] => (Allow) Z:\Games\Steam\steamapps\common\mountblade warband\mb_warband.exe
FirewallRules: [{23C52475-2424-42B1-B65E-C3BF1B21ABC6}] => (Allow) Z:\Games\Steam\steamapps\common\mountblade warband\mb_warband.exe
FirewallRules: [{AF201735-FD4C-45B1-8365-45CC1243AA8B}] => (Allow) Z:\Games\Steam\steamapps\common\PAYDAY 2 Beta\payday2_win32_release.exe
FirewallRules: [{3C9BFAFF-F79E-4503-8080-DB17B5A6AD88}] => (Allow) Z:\Games\Steam\steamapps\common\PAYDAY 2 Beta\payday2_win32_release.exe
FirewallRules: [{F000D689-ED57-4851-B4AC-CF63409C61A0}] => (Allow) Z:\Games\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivboot.exe
FirewallRules: [{798B7D4A-2890-48E1-833D-9151089E5FEC}] => (Allow) Z:\Games\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivboot.exe
FirewallRules: [{500E8720-5B40-453E-A15B-74FD320A7CCB}] => (Allow) Z:\Games\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivlauncher.exe
FirewallRules: [{7A207F59-729E-4859-ADA3-7BE448748815}] => (Allow) Z:\Games\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivlauncher.exe
FirewallRules: [{83EBD869-1978-4C7F-A9CB-DF02CFB08B8C}] => (Allow) Z:\Games\Steam\steamapps\common\War of the Vikings Limited Public Alpha\run_game.exe
FirewallRules: [{B6B0C6C2-00BF-4679-A9E3-D5FCACCEA9AA}] => (Allow) Z:\Games\Steam\steamapps\common\War of the Vikings Limited Public Alpha\run_game.exe
FirewallRules: [{47F3AB11-9FD6-4CFD-A237-5E63576F5700}] => (Allow) Z:\Applications\Janetter2\bin\JanetterSrv.exe
FirewallRules: [{497D0A25-4A8F-4189-BB5A-989FC0DED7BA}] => (Allow) Z:\Games\Steam\steamapps\common\CastleCrashers\castle.exe
FirewallRules: [{A673C028-D1FA-4CE5-85BF-99AF27577032}] => (Allow) Z:\Games\Steam\steamapps\common\CastleCrashers\castle.exe
FirewallRules: [{667A00D1-7641-46C0-8A94-1FC21DD0A399}] => (Allow) Z:\Games\Steam\steamapps\common\Dark Souls Prepare to Die Edition\DATA\DARKSOULS.exe
FirewallRules: [{A3D59E78-A0FB-479A-A9E9-A5DAA31F0832}] => (Allow) Z:\Games\Steam\steamapps\common\Dark Souls Prepare to Die Edition\DATA\DARKSOULS.exe
FirewallRules: [{BCB38E07-620B-4BB0-B204-CBC2DDF7A74F}] => (Allow) Z:\Games\Steam\steamapps\common\Half-Life 2 Deathmatch\hl2.exe
FirewallRules: [{64127F61-7754-4679-B2F7-ABB948633AF6}] => (Allow) Z:\Games\Steam\steamapps\common\Half-Life 2 Deathmatch\hl2.exe
FirewallRules: [{26084EEF-9C4B-4014-9AC6-4F7A193CB156}] => (Allow) Z:\Games\Steam\steamapps\common\PapersPlease\PapersPlease.exe
FirewallRules: [{150D8650-DAFF-4CE8-A582-663D956CB2D6}] => (Allow) Z:\Games\Steam\steamapps\common\PapersPlease\PapersPlease.exe
FirewallRules: [TCP Query User{1D80A440-A0E9-479B-8D6E-FE992E0708B3}Z:\games\secondlifeviewer2\slvoice.exe] => (Allow) Z:\games\secondlifeviewer2\slvoice.exe
FirewallRules: [UDP Query User{EB1F6D84-8F56-4FDA-AFEB-491099F73D58}Z:\games\secondlifeviewer2\slvoice.exe] => (Allow) Z:\games\secondlifeviewer2\slvoice.exe
FirewallRules: [{250ED3F1-F036-4B44-8A88-8FC286712D5E}] => (Block) Z:\games\secondlifeviewer2\slvoice.exe
FirewallRules: [{C71CAF30-448A-4929-9AB2-A54BCDD6CBE6}] => (Block) Z:\games\secondlifeviewer2\slvoice.exe
FirewallRules: [{75B0DD17-A5AE-4B68-B4A3-D70826F3AA7A}] => (Allow) Z:\Games\Steam\steamapps\common\hotline_miami\HotlineMiami.exe
FirewallRules: [{A1F2F0DA-EF69-4A79-9CF9-1568E8D38CDD}] => (Allow) Z:\Games\Steam\steamapps\common\hotline_miami\HotlineMiami.exe
FirewallRules: [{4B9A0589-F98D-4640-9A23-0AE2EF643F4F}] => (Allow) Z:\Games\Steam\steamapps\common\Saints Row IV Inauguration Station\SaintsRowIV_InaugurationStation.exe
FirewallRules: [{1D245EDF-CFD0-48A7-A424-574B17CD1B44}] => (Allow) Z:\Games\Steam\steamapps\common\Saints Row IV Inauguration Station\SaintsRowIV_InaugurationStation.exe
FirewallRules: [{1E7325C4-3EE1-4CA9-848B-FEDFF440FAEB}] => (Allow) Z:\Games\Steam\steamapps\common\Metro Last Light\MetroLL.exe
FirewallRules: [{B34EBD40-82FB-4757-9FE3-6E81D3F9836B}] => (Allow) Z:\Games\Steam\steamapps\common\Metro Last Light\MetroLL.exe
FirewallRules: [{A150202C-1E8C-4A72-AB4F-3E9587D8E303}] => (Allow) Z:\Games\Steam\steamapps\common\The Stanley Parable Demo\stanley.exe
FirewallRules: [{E96AA3CE-A352-44E8-BA8E-0C916A22AEEB}] => (Allow) Z:\Games\Steam\steamapps\common\The Stanley Parable Demo\stanley.exe
FirewallRules: [{CD1D254B-EB12-4260-B6BB-54FD20E23A79}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2293\Agent.exe
FirewallRules: [{FD706985-D9E9-48F0-B035-C2A78E9E2136}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2293\Agent.exe
FirewallRules: [{120653E6-F17C-4609-AC14-FF0B8EEE4457}] => (Allow) Z:\Games\Battle.net\Battle.net.exe
FirewallRules: [{768B0C9A-6049-4032-9C49-64B12BD489A2}] => (Allow) Z:\Games\Battle.net\Battle.net.exe
FirewallRules: [{C8D9DE81-89AD-45D0-A11A-E0B77AF00A60}] => (Allow) Z:\Games\Hearthstone\Hearthstone.exe
FirewallRules: [{8FC9382E-FAB5-4023-A421-88B462F9AB45}] => (Allow) Z:\Games\Hearthstone\Hearthstone.exe
FirewallRules: [{1D2666DC-7B51-4D40-AA14-6D1E75C23C17}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\sourcesdk\bin\SDKLauncher.exe
FirewallRules: [{DE0F7A54-E519-47E8-A9F9-15BD87B5C955}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\sourcesdk\bin\SDKLauncher.exe
FirewallRules: [{67567F18-4FCB-4FAC-8169-9E1BC41CB50C}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{BDB42BF3-5D86-415B-9033-25802F51D717}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{2169D7CD-3383-4092-ADCC-65EFE296C953}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{86A43A2D-7BE0-403C-B877-E2DC75279088}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{09D8A90B-2EF8-4589-84BE-25E08D80815A}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{37A26A8A-6FE6-434A-AD7A-B92170F4FF4D}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{F522287D-CA6B-4B74-8512-E9D09EBA4B17}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\left4dead2.exe
FirewallRules: [{613D26FC-4EC0-4A18-8020-ADA99E3C95DC}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\left4dead2.exe
FirewallRules: [{4A584C49-6144-458F-BCF0-AFF33C37A78D}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{740959E7-BCE4-4A1B-91CD-BF2A376B0D02}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{21FFC9FB-80B1-4B16-9045-DEE959F0A983}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2328\Agent.exe
FirewallRules: [{00D0AF7C-50A6-4FB8-A451-EA626781D910}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2328\Agent.exe
FirewallRules: [{8F86B079-5435-4EDE-BB6A-FF3880821381}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{DD0A6A17-0678-492B-B0E8-07B29E83CC11}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{BCB8DC53-239A-43C3-AF26-27A22E739CE5}] => (Allow) Z:\Games\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{F01EF64D-CB33-4E7B-BFC0-89BF29661B70}] => (Allow) Z:\Games\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{655AE909-36A6-4284-936C-701C5F30F93D}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{E0F094D7-BFF7-413F-A7E5-B17E63975468}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{41D9B8F3-FD44-45FB-8F1F-7255BF37A492}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{E5369E82-AF85-4B54-B61D-6A4373F47478}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{9D749963-A202-4C05-87F6-B929E8D0C9D5}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{4D850B38-8BA6-4A1D-A402-01553AFAB53E}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{C4B42014-FC16-4778-BF48-A41F5995794B}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{AFC242DB-A945-4084-8B6F-E663473FE204}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{EAA6D4C0-AA70-4665-BB5A-9976C619FF98}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{48427D0B-C2D5-40D5-92A4-C34E64B83CB6}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{1614B3E4-38C3-40C8-867F-292988788456}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{E7363C5F-81D2-47D3-AD23-DBFA2FAFFC7C}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{00800F7D-00E6-48A9-991B-8E105A7E350B}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
FirewallRules: [{000BD7D4-C81C-4DD6-9D4B-4609398DA7B7}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
FirewallRules: [{7D7C51BE-C3E0-4BD4-9FF9-C2EE71347CFD}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
FirewallRules: [{A7E58D97-5DB5-4EE4-8464-D44B415A3DB2}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
FirewallRules: [{7520FC0C-8EA3-433C-947A-D0E0C8284DFB}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
FirewallRules: [{6CEF0DFC-A488-47C0-9A70-1D4523EBAB47}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{B2AD07CB-6E5D-41A9-9B97-7BE929335654}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{C0262077-CB68-4A5A-A1FB-3C12A8817E63}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{B2916885-5696-4369-8D06-B64929CBFC58}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{F3ACAA42-DC85-4715-94AA-3511004A80AF}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{E1EE8146-6753-47F0-8F52-D79394A3F16F}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{17C9F93E-AD47-489E-AD4A-6C85C7E38EA7}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{2A86A18D-9B24-4834-BEB7-2514C80EED90}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{9BB83B35-E837-4F23-A804-3EC4BCDD0A63}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{17417485-0830-4C4B-8F43-C6E4EBF1CBD1}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [TCP Query User{0B5E8D47-2F35-4E4D-9249-0AFCC582EB9B}C:\program files (x86)\pfportchecker\pfportchecker.exe] => (Allow) C:\program files (x86)\pfportchecker\pfportchecker.exe
FirewallRules: [UDP Query User{1989FFD5-E51C-41E9-A288-5A883C28B305}C:\program files (x86)\pfportchecker\pfportchecker.exe] => (Allow) C:\program files (x86)\pfportchecker\pfportchecker.exe
FirewallRules: [{E78C484A-605E-4C87-BE0F-4FFC43FC295A}] => (Block) C:\program files (x86)\pfportchecker\pfportchecker.exe
FirewallRules: [{0D442FF5-57BC-4DC8-9D7C-10CE91ECD6B0}] => (Block) C:\program files (x86)\pfportchecker\pfportchecker.exe
FirewallRules: [{DD2EDF18-8070-48A7-9BFD-A77637529C72}] => (Allow) Z:\Games\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{B97BC866-A931-4D9A-AB2A-0D944E711B4A}] => (Allow) Z:\Games\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{19933A82-697F-4CEF-9BF0-70E09F606C3B}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{96C04B3B-44ED-4093-8799-8FFCF8ADD824}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{1540A9B9-DBFF-443D-B8BB-DE67B60926A0}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{E733573F-B771-40A7-AA85-A6886378BB52}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{6BA5CA1E-3D50-439F-B28D-A105438DEB5C}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{2E3911EA-5F4B-400D-9933-14FF875FB55A}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{EE0777B3-3704-470B-8077-DAA6D581CD71}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2391\Agent.exe
FirewallRules: [{5B735E41-0C7E-4075-BCAA-92469EBF17D5}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2391\Agent.exe
FirewallRules: [{514E04E5-7517-4311-9060-60C1784E6A8F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2380\Agent.exe
FirewallRules: [{DFCD6A65-F845-4F09-AB62-5A3FE23A8D5C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2380\Agent.exe
FirewallRules: [{57D39E24-6906-4498-863F-5722F33EF424}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{2480294B-2D4A-4061-9903-3207376192DA}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{13A5922B-F0F8-40F6-8217-768074947DE6}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{5711730E-9962-4131-9A78-F1928CD79668}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{4FB8A0C1-00BA-46A1-8ED3-38CD4C80E0C3}] => (Allow) Z:\Games\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{6A55AC0D-0AD1-44C6-A455-F88ADD2CEC26}] => (Allow) Z:\Games\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{DA19F6DD-243F-4B9F-A59F-F5300F52B863}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{D2664276-8DB1-44B5-8543-FC749DF860D7}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{D6A056CF-350E-4B19-BC8A-72DD8219801A}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{5539A947-77BE-4760-9767-EB436BE6578A}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{99E72E47-8EFE-4BBC-A501-8A450DC10B32}] => (Allow) Z:\Games\Steam\steamapps\common\Dungeons of Dredmor\Dungeons of Dredmor.exe
FirewallRules: [{83330E07-36D0-42E3-94AD-FAC9FB7E7328}] => (Allow) Z:\Games\Steam\steamapps\common\Dungeons of Dredmor\Dungeons of Dredmor.exe
FirewallRules: [{BDB46FA1-37AC-4F59-8404-617BC932ED29}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{35B6021D-6D5F-4868-9273-FEE2CA0CB8F6}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{F60C2030-A17C-4F9B-8750-9021337C66B3}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{A764FC63-5E1F-4F95-9660-E5F13D146E47}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [TCP Query User{97C34B8C-F4CA-4587-B8E0-3555EDC40F43}C:\programdata\battle.net\agent\agent.beta.2417\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.beta.2417\agent.exe
FirewallRules: [UDP Query User{617003B4-EB2B-4A3A-A1F2-EE82E0A73829}C:\programdata\battle.net\agent\agent.beta.2417\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.beta.2417\agent.exe
FirewallRules: [{72DE177E-3E0E-482E-A657-C05CFA2D7588}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2417\Agent.exe
FirewallRules: [{DBA96177-A407-4397-8F5F-E275578D5B82}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2417\Agent.exe
FirewallRules: [{37080692-4F3E-4EF0-AB07-21A083829280}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\garrysmod\hl2.exe
FirewallRules: [{56722607-AD71-45A3-BEA8-1AF22C0F5C55}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\garrysmod\hl2.exe
FirewallRules: [{F9CFF30C-0EC7-4A90-AC14-11CF88A907CE}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{6D47EA99-7760-4BE4-8806-A5A3224FDB26}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{67EDA77B-5D75-4088-B568-19BB198BACF0}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\garrysmod\hl2.exe
FirewallRules: [{332A35D5-48D7-425F-AA22-2A178FDA7F68}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\garrysmod\hl2.exe
FirewallRules: [{7CE95A9D-4BA5-4AC9-AA18-8F21A2F78F78}] => (Allow) Z:\Games\Steam\steamapps\common\Audiosurf\engine\QuestViewer.exe
FirewallRules: [{615340D5-59F7-470E-8D6B-88367BE371E6}] => (Allow) Z:\Games\Steam\steamapps\common\Audiosurf\engine\QuestViewer.exe
FirewallRules: [{86A96268-7D43-4499-B005-3C2A40458D32}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{006C56C9-C7F8-49D3-8452-E19078F5DA74}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{4DE2EEEA-7521-4AFB-8BBC-9315D1C1B161}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{C2E8F123-EF4E-43A5-A3DE-4E19D232B48E}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{1E190408-955D-4ED4-859E-15273A4149DC}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{06764159-C4A0-474F-B1BE-A3E4DD295111}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{6A269D06-C459-461C-B611-F26856CEFF80}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{F4834310-ABED-488E-B832-6B632418538C}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{AB809649-3E61-4F86-8BF3-5FB3B9C87CEC}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{05685A64-0D5A-4257-8338-ABA869514291}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{0F129257-4956-4A9D-921A-16EBDBD7CD4C}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{FD91D7E6-E11A-4DC2-BB83-EBA45950A052}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{8536A168-4A25-41BB-B730-D8FCB89D2CAF}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{876A3997-E5CF-4280-8FE6-E0EFD64771DF}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{922AF729-CBB9-497D-9B46-A609540934F7}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2426\Agent.exe
FirewallRules: [{1892C235-9F0A-4BC7-BE0E-536D8834ADA6}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2426\Agent.exe
FirewallRules: [{F1B89558-B1CC-4A7E-96F2-2D70A3B68F41}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{85A75C49-BE22-4551-B0F9-4478917C1108}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{0F39644C-7AB2-46DD-9967-50538553F811}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{7A5A3D71-FEE5-4884-9A97-CEE27DE84914}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{A8CDF843-BEA3-4532-9D95-B152D1887CC8}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{08398831-357F-4B24-A3A7-B2EB0ED2EE32}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{81CDD246-E8D1-44F7-8B76-712B21D2FA65}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{60D4B0AA-CFF3-48ED-8510-87B7FB1E7370}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{A11F13AD-28B3-49D5-9A57-2C215B0B1916}] => (Allow) Z:\Games\Steam\steamapps\common\Terraria\Terraria.exe
FirewallRules: [{4C8F9687-D7CE-454A-8A00-73856F8D4B8F}] => (Allow) Z:\Games\Steam\steamapps\common\Terraria\Terraria.exe
FirewallRules: [{9E155C51-4ACA-4006-B56C-5A68E068ACA8}] => (Allow) Z:\Games\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{7AB67655-9E40-4AA3-8B71-80D916233FDF}] => (Allow) Z:\Games\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{D342324B-D5BA-4A8C-9712-54731D06A7CC}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{462F4009-3F9D-4D4B-A9CD-A45FB208F19A}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{3BD773EB-E232-4546-BE95-2AAFCF1F5006}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{3F157142-BAF4-4324-B779-171587F0275B}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{C91D7C6E-7168-4726-B268-46CB1950D194}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{89AB050A-AFC9-4E38-800D-D74E244DC89C}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{01342998-6307-4ADD-8CB2-C9BB77B5FE6A}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{9990E911-10D9-4BE1-B260-00FAD93449E2}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{45631054-235D-4BE1-9174-F287405AA5BC}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{4A344139-BF26-4980-8327-020C9AB10D77}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{287696A1-6787-4B7A-A785-25C34B0A8064}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{47583003-D173-43D8-BDF8-192ADE3E6525}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{CA454A44-BB06-42EB-8AAF-0C29342B7490}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{94376A02-6CBE-42FB-B87F-9A6BB8436F21}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{39701384-1BAB-40D9-AE79-FA1A89B44F80}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{86EF0B79-7E70-4466-A89D-F81379F23504}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{23B6E74A-BB54-4667-9D20-70CA2A4E8598}] => (Allow) Z:\Games\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{994E8670-8004-4146-A0F7-D722D19816C8}] => (Allow) Z:\Games\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{6CC30B53-A804-47F2-90FD-480729391A21}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{04D84B97-A6E8-4F6F-AAC2-FC857B4E171A}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{8FCCD952-B429-475B-913E-3C4C7CF836AC}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{C2D4BCD1-420E-435A-B7B3-ED6B9CA8EA4A}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{0C11E409-CA5F-4647-A373-0E6A64A15C8F}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{A418D871-5017-4D91-8AD2-56338808A72C}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{2211EF74-8C58-4032-8387-D5529D65ADE4}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{A475C18B-CB79-4DDF-A6B1-8A1A3438FF8F}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{2990F876-D451-4D71-906B-373AC8775C93}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{E7B10AAA-BC92-498F-ADC6-B3A2D232BA52}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{32193C82-3CFE-4278-AB6C-B93292D115CE}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{0F2F9CBA-8035-4E91-9BCC-2F141D985C71}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{794329A6-4075-43F7-BD02-258F2B823FFA}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{46A0F531-7CF9-483C-A606-B408EAD6AB8A}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{87590522-CE24-4F49-92DF-4172251208FB}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2426\Agent.exe
FirewallRules: [{1787F704-7431-45B7-B30A-369AACD5DFF2}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2426\Agent.exe
FirewallRules: [{8E9D2FD9-139E-405E-B0E5-A58277AB4991}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{C901CC4E-977A-4955-8AAA-DF3F80005791}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{C8898CB3-2E53-49EA-B78A-0B417D404F4C}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{4017703B-EE3D-413D-BC5E-B8D28435CB7E}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{7603E301-9EDB-4869-A9AC-A9DD67306ABF}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{D2AB9374-90D1-4233-9824-92AB1B0F68E8}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{E42DB542-6D74-4BB9-AAF2-CBE49AB71DE3}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{AC60E677-E5AB-4A8E-87E9-D1693934ABEF}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{65EC730B-8846-4F90-9215-1E3EC0F49C20}] => (Allow) Z:\Games\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{93F3D3E4-6B08-4360-96BC-E4621D02C08B}] => (Allow) Z:\Games\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{C907B176-C62E-44BF-B121-49494BD2A255}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\bin\SDKLauncher.exe
FirewallRules: [{434EBA71-5538-4DFE-AE94-D54BBFADD0C5}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\bin\SDKLauncher.exe
FirewallRules: [{F7F18778-1254-4EFF-AA22-41C9D18F66AA}] => (Allow) Z:\Games\Steam\steamapps\common\SourceFilmmaker\game\sfm.exe
FirewallRules: [{39D16C4B-961C-4A05-8A4F-B74656E576AD}] => (Allow) Z:\Games\Steam\steamapps\common\SourceFilmmaker\game\sfm.exe
FirewallRules: [{9DFFA81E-98CF-468C-9AAF-F2B4EE70F28B}] => (Allow) Z:\Games\Steam\steamapps\common\SourceFilmmaker\game\bin\qsdklauncher.exe
FirewallRules: [{DA6E6B17-BC32-4B15-BFAD-E1B0DB61A451}] => (Allow) Z:\Games\Steam\steamapps\common\SourceFilmmaker\game\bin\qsdklauncher.exe
FirewallRules: [{20EC4B08-3D0F-43CD-975F-5BFF0C894DFB}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\left4dead2.exe
FirewallRules: [{7A35F03F-CE64-4D7B-8BC8-B6ED9B51DCA0}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\left4dead2.exe
FirewallRules: [{BE049794-3980-4FF7-8298-6806CC80F14C}] => (Allow) Z:\Games\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{645253DD-C1C7-45F0-B8D0-14E412CD7E60}] => (Allow) Z:\Games\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{2E1DC3C9-9588-44E2-B41A-2A70B039F8AF}] => (Allow) Z:\Games\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{C839DD38-46D3-4F0A-8306-9FCDEAD2469D}] => (Allow) Z:\Games\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{78716755-6214-448D-B81C-42C9C7031A0C}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{94B3311C-BB24-435D-972B-EADD3895E9B8}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{A513FFD7-C1CA-4B84-B714-AC1046D95CBD}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{A5B8E3FF-2017-45D2-A244-C8485C2E55A1}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{97163198-FC67-4026-8172-249815040941}] => (Allow) Z:\Games\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{2827C616-EB1D-48D3-AC3D-4FD9C57C0FD8}] => (Allow) Z:\Games\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{E6CB43A0-8942-4884-BE15-F29E0BFF7DF6}] => (Allow) Z:\Games\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{7BD9758E-B310-4FAE-9108-AF42C7F250E3}] => (Allow) Z:\Games\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{F4A71890-64F4-45A8-9F5F-A1C26D02F206}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2514\Agent.exe
FirewallRules: [{04292F02-17DE-4E46-807F-3CDD969FFEA8}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2514\Agent.exe
FirewallRules: [{8D458784-B628-4AE2-8E08-4B6516BBCF00}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{F3938594-CEC0-487C-99F6-6FD3B8FFE35E}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{650B7114-05F5-4378-A99D-B1DBF4D8EDDE}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{D1262CB3-AF06-49D2-83CE-2F7498716A35}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{16FEB497-7F77-4170-9CA7-2429AC26627A}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{4C3E2937-386D-4F7A-B42A-1ACD3890D5B5}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{821BD268-253B-4F4C-9A35-969E907E4B85}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{74B0706C-37CB-477C-9F4D-7A578C603CE2}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{14F7FE5A-D6F1-45AB-ACFE-03937E57BBB9}] => (Allow) Z:\Games\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{6A29A1E8-3FF4-4215-8FF6-94F9C852255F}] => (Allow) Z:\Games\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{3000928D-A333-4307-B430-457C16AA305B}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{DF04CF36-CE6B-4907-A377-241509F9849B}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{AC939D9A-2F41-4A25-B4A2-B4D0A3B45DD4}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\left4dead2.exe
FirewallRules: [{54960450-188D-4FF8-938E-7A63C8174AAE}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\left4dead2.exe
FirewallRules: [{CE37C030-3C0D-4567-B93B-3541258695AB}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\bin\SDKLauncher.exe
FirewallRules: [{D9C22DD6-252D-4AD3-B8CD-EA496F4E91BF}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\bin\SDKLauncher.exe
FirewallRules: [{4F7D4171-113A-4E78-AFAD-784AE80254B4}] => (Allow) Z:\Games\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{A683A241-EC3E-4C82-B615-A5ECD591B446}] => (Allow) Z:\Games\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{5D7ED625-84F0-455D-9148-127BA3E114DE}] => (Allow) Z:\Games\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{466F3353-3A1E-40A0-B785-CB7AEA9A1AFD}] => (Allow) Z:\Games\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{7963D58C-9396-44DC-85F2-0471161228A6}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{E8B21A06-E26A-4DB2-A673-6BAE83799564}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{CFC2D2D8-125C-4FF6-87A1-D090BC443C61}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\left4dead2.exe
FirewallRules: [{7DFA7319-F72D-48ED-9D0F-F1797B9CE89B}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\left4dead2.exe
FirewallRules: [{2DBF3C9F-58D9-48F9-9E37-8252819A4031}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{7DDF1942-213C-41E9-BD19-BD60D3DA718E}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{E96FACB4-C0EE-484F-AAC6-8DBBAECDEFEA}] => (Allow) Z:\Games\Steam\steamapps\common\The Stanley Parable\stanley.exe
FirewallRules: [{4269BF90-6A8A-4DF3-BFA9-8F5EFF29ECDF}] => (Allow) Z:\Games\Steam\steamapps\common\The Stanley Parable\stanley.exe
FirewallRules: [{3C0629CA-4B88-4DC6-ACA4-CF95B42FF580}] => (Allow) Z:\Games\Steam\steamapps\common\Day of Defeat Source\hl2.exe
FirewallRules: [{C2833FAD-38C3-4C73-A31E-AC12511BEE32}] => (Allow) Z:\Games\Steam\steamapps\common\Day of Defeat Source\hl2.exe
FirewallRules: [{4C2604E4-69E1-476B-B3C6-0A4957B30E2D}] => (Allow) Z:\Games\Steam\steamapps\common\Merchants of Brooklyn\Bin32\Launcher.exe
FirewallRules: [{DE2CAD69-3A08-4CA2-932D-485AEEA6AE3F}] => (Allow) Z:\Games\Steam\steamapps\common\Merchants of Brooklyn\Bin32\Launcher.exe
FirewallRules: [{BBDDD80D-86A8-496B-A0F2-55D7ECB72694}] => (Allow) Z:\Applications\Sony Vegas Pro 12.0 x64\vegas120.exe
FirewallRules: [{22874E83-C0D1-48EB-951E-BD7A9068BFB7}] => (Allow) Z:\Applications\Sony Vegas Pro 12.0 x64\vegas120.exe
FirewallRules: [{2C244343-0E60-40B0-8A09-5FDA7734E31C}] => (Allow) Z:\Applications\Sony Vegas Pro 12.0 x64\vegas120.exe
FirewallRules: [{6DA2862A-67D5-4B2C-8F68-C26594765DE6}] => (Allow) Z:\Applications\Sony Vegas Pro 12.0 x64\vegas120.exe
FirewallRules: [TCP Query User{ED096723-4166-426D-9010-3142FA8081B2}Z:\games\steam\steam.exe] => (Allow) Z:\games\steam\steam.exe
FirewallRules: [UDP Query User{814F02B0-2574-40F8-99CF-ACF56BF576F2}Z:\games\steam\steam.exe] => (Allow) Z:\games\steam\steam.exe
FirewallRules: [{49A9ED2C-CA17-4937-A064-613C4BD5B861}] => (Allow) Z:\Applications\LINE\Line.exe
FirewallRules: [{0B4F7A77-2788-4E23-8C1C-1A99D8EFEB35}] => (Allow) Z:\Applications\LINE\Line.exe
FirewallRules: [{CC49FD89-229A-4BAA-83D3-F379FC27DB65}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2581\Agent.exe
FirewallRules: [{6EF3A5A6-7C79-4866-B625-F05677A7236C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2581\Agent.exe
FirewallRules: [{D5720C59-04FF-47AF-A65B-8A13A7C4278F}] => (Allow) C:\Users\Samuel\AppData\Local\Temp\QQGameDownloader\bns_1389668381\MiniQQDL.exe
FirewallRules: [{C1A6B7D8-4B56-48FF-9780-7BBBF0C136F3}] => (Allow) C:\Users\Samuel\AppData\Local\Temp\QQGameDownloader\bns_1389668381\MiniQQDL.exe
FirewallRules: [{E66B9422-4DBA-41E8-B6E9-6AB073498FC1}] => (Allow) c:\users\samuel\appdata\local\temp\qqgamedownloader\bns_1389668381\teniodl.exe
FirewallRules: [{AC15F726-8D50-4E18-A52F-E8EB0423AE5F}] => (Allow) c:\users\samuel\appdata\local\temp\qqgamedownloader\bns_1389668381\teniodl.exe
FirewallRules: [{226087ED-51C5-415D-98E7-97F18B437F84}] => (Allow) z:\games\blade and soul\剑灵_腾讯\tcls\launcher.exe
FirewallRules: [{C075765A-00F1-41F0-A594-C7FDAC8F1AAB}] => (Allow) z:\games\blade and soul\剑灵_腾讯\tcls\launcher.exe
FirewallRules: [{6DE94780-A0C5-4E95-80ED-8E9E6D05AC0C}] => (Allow) c:\users\samuel\appdata\roaming\tencent\剑灵\b2ea55f798a1002fef3646082a08635e\teniodl\teniodl.exe
FirewallRules: [{FB29FC3C-8FD7-43F7-AD6C-B29EF610DDF9}] => (Allow) c:\users\samuel\appdata\roaming\tencent\剑灵\b2ea55f798a1002fef3646082a08635e\teniodl\teniodl.exe
FirewallRules: [{A86B8E5E-BEBB-4705-8541-CCD1BC1CA71C}] => (Allow) z:\games\blade and soul\剑灵_腾讯\tcls\launcher.exe
FirewallRules: [{55A22ED0-3BA4-43F9-B3B9-1CF076768F38}] => (Allow) z:\games\blade and soul\剑灵_腾讯\tcls\launcher.exe
FirewallRules: [TCP Query User{61623DC3-8595-44E2-AD0C-39940C94F881}Z:\games\blade and soul\剑灵_腾讯\tcls\tenprotect\taslogin.exe] => (Allow) Z:\games\blade and soul\剑灵_腾讯\tcls\tenprotect\taslogin.exe
FirewallRules: [UDP Query User{C9F41050-92C4-4FA8-9E88-874D9EDBECA4}Z:\games\blade and soul\剑灵_腾讯\tcls\tenprotect\taslogin.exe] => (Allow) Z:\games\blade and soul\剑灵_腾讯\tcls\tenprotect\taslogin.exe
FirewallRules: [{E7AE4D00-B317-42CD-9F69-211A8F48511D}] => (Block) Z:\games\blade and soul\剑灵_腾讯\tcls\tenprotect\taslogin.exe
FirewallRules: [{FDC4DAFA-558D-43A0-AB83-448ADC1229FE}] => (Block) Z:\games\blade and soul\剑灵_腾讯\tcls\tenprotect\taslogin.exe
FirewallRules: [{2B988478-AB34-4E7F-B728-01FD32728A3F}] => (Allow) Z:\Games\Blade and Soul\剑灵_腾讯\bin\Cross\CrossProxy.exe
FirewallRules: [{9DF2A9C6-042A-434F-A59A-72B3FBB9BB1A}] => (Allow) Z:\Games\Blade and Soul\剑灵_腾讯\bin\Cross\CrossProxy.exe
FirewallRules: [{7C7707F6-54A2-48D5-BCA1-9936C5821E28}] => (Allow) Z:\Games\Blade and Soul\剑灵_腾讯\bin\Cross\CrossProxy.exe
FirewallRules: [{FB484DDF-F408-4A82-A06A-07ED1E62CA4C}] => (Allow) Z:\Games\Blade and Soul\剑灵_腾讯\bin\Cross\CrossProxy.exe
FirewallRules: [{357F8184-9E53-4AF9-99CB-FF8E71F89A75}] => (Allow) Z:\Games\Blade and Soul\剑灵_腾讯\bin\Cross\Apps\CQS\QTalk\Bin\miniQTalk.exe
FirewallRules: [{86782CF3-47C2-4FEB-86FC-84F2B25A80DC}] => (Allow) Z:\Games\Blade and Soul\剑灵_腾讯\bin\Cross\Apps\CQS\QTalk\Bin\miniQTalk.exe
FirewallRules: [{A210DB6C-9C55-4414-9637-7A29F62607D3}] => (Allow) Z:\Games\Blade and Soul\剑灵_腾讯\bin\Cross\Apps\CQS\QTalk\Bin\miniQTalk.exe
FirewallRules: [{0F7B078B-BBB2-46ED-B0AE-14994DB6689F}] => (Allow) Z:\Games\Blade and Soul\剑灵_腾讯\bin\Cross\Apps\CQS\QTalk\Bin\miniQTalk.exe
FirewallRules: [{AA9EBB2B-10FC-46D9-86E7-B4F4247D9ECA}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2638\Agent.exe
FirewallRules: [{D8E0ACA8-CE9F-4F45-8B8A-F702A49FB559}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2638\Agent.exe
FirewallRules: [{36A56FB2-5F6C-4C3B-B66E-4ECBCB9AF815}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2680\Agent.exe
FirewallRules: [{639DC8B9-03CA-4CD5-B381-6AEA7670D8C2}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2680\Agent.exe
FirewallRules: [TCP Query User{C839CBED-F9E4-455A-9FCA-AD35DC5CE9DD}Z:\games\steam\steamapps\common\starbound\win32\starbound_server.exe] => (Allow) Z:\games\steam\steamapps\common\starbound\win32\starbound_server.exe
FirewallRules: [UDP Query User{804877AA-1B12-4BF0-B888-0DAD0B3F1E11}Z:\games\steam\steamapps\common\starbound\win32\starbound_server.exe] => (Allow) Z:\games\steam\steamapps\common\starbound\win32\starbound_server.exe
FirewallRules: [{3B544CEC-8373-4651-9A5E-DD3A9F3AE384}] => (Allow) Z:\games\steam\steamapps\common\starbound\win32\starbound_server.exe
FirewallRules: [{A31DBF84-9862-44F0-855B-0C4BA75BEF9C}] => (Allow) Z:\games\steam\steamapps\common\starbound\win32\starbound_server.exe
FirewallRules: [{D0817B92-ABC1-4CB3-A587-1CA462D0D915}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2689\Agent.exe
FirewallRules: [{6FA9E5D0-83C1-4A45-BEEC-53E1C9F40274}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2689\Agent.exe
FirewallRules: [{DAF69F30-E32D-4497-BC1E-77885A00F805}] => (Allow) Z:\Games\Steam\steamapps\common\TacticalIntervention\bin\tacint.exe
FirewallRules: [{929EAEF9-CF32-43B9-B1DC-8376AC00D993}] => (Allow) Z:\Games\Steam\steamapps\common\TacticalIntervention\bin\tacint.exe
FirewallRules: [TCP Query User{CC974AE3-000E-4B5D-81E6-782EF32D704B}C:\users\samuel\downloads\adhocserverproonline\adhocsever.exe] => (Allow) C:\users\samuel\downloads\adhocserverproonline\adhocsever.exe
FirewallRules: [UDP Query User{09A96DE1-6EA8-409D-A81F-05C57817E298}C:\users\samuel\downloads\adhocserverproonline\adhocsever.exe] => (Allow) C:\users\samuel\downloads\adhocserverproonline\adhocsever.exe
FirewallRules: [{7CE4AE9E-A76A-4FBC-A1BA-E34690CDF4CB}] => (Block) C:\users\samuel\downloads\adhocserverproonline\adhocsever.exe
FirewallRules: [{DA66441C-9605-4FE7-B000-F315824AA359}] => (Block) C:\users\samuel\downloads\adhocserverproonline\adhocsever.exe
FirewallRules: [TCP Query User{45557D08-881C-43BD-821B-2DC28BEF8007}Z:\games\emulators\ppsspp 0.9.7.2\ppssppwindows64.exe] => (Allow) Z:\games\emulators\ppsspp 0.9.7.2\ppssppwindows64.exe
FirewallRules: [UDP Query User{87375E0C-1526-4939-AFFB-F64B83B43F8A}Z:\games\emulators\ppsspp 0.9.7.2\ppssppwindows64.exe] => (Allow) Z:\games\emulators\ppsspp 0.9.7.2\ppssppwindows64.exe
FirewallRules: [{16D7117B-B9F1-4F6C-BE7B-502D7992BB41}] => (Block) Z:\games\emulators\ppsspp 0.9.7.2\ppssppwindows64.exe
FirewallRules: [{9EA1D98C-173F-4813-8B5C-D41B700836E7}] => (Block) Z:\games\emulators\ppsspp 0.9.7.2\ppssppwindows64.exe
FirewallRules: [{20628790-6D7E-4874-863F-FF2B25C3BB1F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe
FirewallRules: [{7399A1D3-F27B-4036-A43C-B7412113544A}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe
FirewallRules: [{39ED3570-47B3-4AE9-B943-71042F75E238}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2737\Agent.exe
FirewallRules: [{C4987F96-9637-4AA2-A34E-A1D754B6C0E8}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2737\Agent.exe
FirewallRules: [TCP Query User{8D297276-3D72-4394-A549-A0D40E477525}Z:\applications\soulseekqt\soulseekqt.exe] => (Allow) Z:\applications\soulseekqt\soulseekqt.exe
FirewallRules: [UDP Query User{819409FB-9D0A-4275-98A4-65F3511B7098}Z:\applications\soulseekqt\soulseekqt.exe] => (Allow) Z:\applications\soulseekqt\soulseekqt.exe
FirewallRules: [{2D9C9C25-82DE-45A4-A549-056229252E82}] => (Allow) Z:\applications\soulseekqt\soulseekqt.exe
FirewallRules: [{C4E4F24E-B7A7-4A65-8A55-51872547D5CE}] => (Allow) Z:\applications\soulseekqt\soulseekqt.exe
FirewallRules: [{CFD4AC77-33C8-44D4-8F4C-D66C4D8FF32C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe
FirewallRules: [{9F308F5C-E3F6-4FA0-A8BE-9CAFDD93C058}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe
FirewallRules: [TCP Query User{8E4EB7DD-E5AB-4886-A6EB-F046C9AA06F4}Z:\games\steam\steamapps\common\dark souls prepare to die edition\data\data.exe] => (Allow) Z:\games\steam\steamapps\common\dark souls prepare to die edition\data\data.exe
FirewallRules: [UDP Query User{E5230170-237D-4F83-B661-B58EE3A74039}Z:\games\steam\steamapps\common\dark souls prepare to die edition\data\data.exe] => (Allow) Z:\games\steam\steamapps\common\dark souls prepare to die edition\data\data.exe
FirewallRules: [TCP Query User{2ADE79F1-6466-4300-8822-28631A3547B3}Z:\games\diablo iii\diablo iii.exe] => (Allow) Z:\games\diablo iii\diablo iii.exe
FirewallRules: [UDP Query User{F2BDE8F9-F6E9-4B42-9455-8484BC8410B7}Z:\games\diablo iii\diablo iii.exe] => (Allow) Z:\games\diablo iii\diablo iii.exe
FirewallRules: [{82B77D6D-C88E-489F-A699-4ADC18910507}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe
FirewallRules: [{EC81D653-5B43-4910-BBE1-0E088506C11A}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe
FirewallRules: [{FA9F749D-B6D1-444B-8311-F22C6DAF43CE}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe
FirewallRules: [{8114BBC0-4644-4406-BBDB-EACD67749825}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe
FirewallRules: [{29E33B3F-607B-45A3-88AC-FE6DD1B95184}] => (Allow) Z:\Games\Steam\steamapps\common\FINAL FANTASY VII\FF7_Launcher.exe
FirewallRules: [{16EDB7A9-8FE1-40ED-B126-480DD8312C19}] => (Allow) Z:\Games\Steam\steamapps\common\FINAL FANTASY VII\FF7_Launcher.exe
FirewallRules: [TCP Query User{10F396FA-787B-4727-ACA9-F66367516888}C:\program files (x86)\deluge\deluge.exe] => (Allow) C:\program files (x86)\deluge\deluge.exe
FirewallRules: [UDP Query User{EB051B65-CEC7-436E-8D6F-39E1D0B1EBD9}C:\program files (x86)\deluge\deluge.exe] => (Allow) C:\program files (x86)\deluge\deluge.exe
FirewallRules: [TCP Query User{DA7FBF9A-BFE4-4046-B99F-FE21BE252070}C:\users\samuel\downloads\downloader_diablo2_enus.exe] => (Block) C:\users\samuel\downloads\downloader_diablo2_enus.exe
FirewallRules: [UDP Query User{DFFFB698-2C48-449E-ACAA-BA33EDED9C4A}C:\users\samuel\downloads\downloader_diablo2_enus.exe] => (Block) C:\users\samuel\downloads\downloader_diablo2_enus.exe
FirewallRules: [TCP Query User{946F2A79-9FA6-4EE9-8D18-A5B03C28CFF3}C:\users\samuel\downloads\downloader_diablo2_lord_of_destruction_enus.exe] => (Allow) C:\users\samuel\downloads\downloader_diablo2_lord_of_destruction_enus.exe
FirewallRules: [UDP Query User{17511C1C-823C-42F6-BD7C-6019CC0984FE}C:\users\samuel\downloads\downloader_diablo2_lord_of_destruction_enus.exe] => (Allow) C:\users\samuel\downloads\downloader_diablo2_lord_of_destruction_enus.exe
FirewallRules: [TCP Query User{F93650EA-61E4-4600-B2B0-2AB93462315F}Z:\games\diablo ii\game.exe] => (Allow) Z:\games\diablo ii\game.exe
FirewallRules: [UDP Query User{979EA20A-D3F3-43FA-B88D-375B8BF6F667}Z:\games\diablo ii\game.exe] => (Allow) Z:\games\diablo ii\game.exe
FirewallRules: [TCP Query User{8A107873-7475-4A62-B2EE-4C6E40E9FFF0}Z:\games\diablo ii\d2multiresgame.exe] => (Allow) Z:\games\diablo ii\d2multiresgame.exe
FirewallRules: [UDP Query User{6799B6F1-D55C-4AF1-8045-5066DAC7F6E3}Z:\games\diablo ii\d2multiresgame.exe] => (Allow) Z:\games\diablo ii\d2multiresgame.exe
FirewallRules: [TCP Query User{2B95A397-0E70-49C1-BD9E-1B1CF35EB794}Z:\games\guild wars 2\gw2.exe] => (Allow) Z:\games\guild wars 2\gw2.exe
FirewallRules: [UDP Query User{A5B56625-F02E-486F-A273-D39110E99E00}Z:\games\guild wars 2\gw2.exe] => (Allow) Z:\games\guild wars 2\gw2.exe
FirewallRules: [{AEA63DCE-B7F0-4267-AF17-C4E0F02FDCEC}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\garrysmod\hl2.exe
FirewallRules: [{CAD9614E-7F68-443D-9BE0-CD1F7F425CE5}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\garrysmod\hl2.exe
FirewallRules: [{AB63D70E-CC6D-4F59-A64B-0F523213ACDF}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2787\Agent.exe
FirewallRules: [{D55C055B-2898-464F-BEFC-BD82FE6326DD}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2787\Agent.exe
FirewallRules: [TCP Query User{D501EE54-5CCE-4E0C-9AC8-8016F26E002D}Z:\games\hearthstone\hearthstone.exe] => (Allow) Z:\games\hearthstone\hearthstone.exe
FirewallRules: [UDP Query User{158CA098-55D2-40B5-9EBC-AEA0CD259B41}Z:\games\hearthstone\hearthstone.exe] => (Allow) Z:\games\hearthstone\hearthstone.exe
FirewallRules: [TCP Query User{30A58F5A-4BF2-4A04-9AE0-9DC3FAADD892}Z:\games\steam\steamapps\common\saints row the third\saintsrowthethird_dx11.exe] => (Allow) Z:\games\steam\steamapps\common\saints row the third\saintsrowthethird_dx11.exe
FirewallRules: [UDP Query User{07EA9C57-5437-42C6-9DEE-710B36F3A763}Z:\games\steam\steamapps\common\saints row the third\saintsrowthethird_dx11.exe] => (Allow) Z:\games\steam\steamapps\common\saints row the third\saintsrowthethird_dx11.exe
FirewallRules: [TCP Query User{5C4CAE35-A863-4879-8005-15B13A64F988}C:\program files (x86)\soulseekqt\soulseekqt.exe] => (Allow) C:\program files (x86)\soulseekqt\soulseekqt.exe
FirewallRules: [UDP Query User{2E53EFD4-780C-409D-8FA9-AE024C0BC829}C:\program files (x86)\soulseekqt\soulseekqt.exe] => (Allow) C:\program files (x86)\soulseekqt\soulseekqt.exe
FirewallRules: [{9D5D8C93-89B1-49AE-B7C0-5086326F6C89}] => (Allow) Z:\Games\Steam\steamapps\common\Saints Row IV\SaintsRowIV.exe
FirewallRules: [{36F1EB35-36E1-47D6-AA86-F1D46571409F}] => (Allow) Z:\Games\Steam\steamapps\common\Saints Row IV\SaintsRowIV.exe
FirewallRules: [{0E5DCAD2-E573-4123-ACE4-2AE43032E043}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2816\Agent.exe
FirewallRules: [{F87FDCC3-E957-4AEF-B53E-11710C599A1D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2816\Agent.exe
FirewallRules: [{0C99C984-A8DD-479B-AA36-B73298A5542B}] => (Allow) Z:\Games\Steam\steamapps\common\Half-Life 2 Deathmatch\hl2.exe
FirewallRules: [{A1133F1C-C0A6-40EF-B7AF-E244C3686D48}] => (Allow) Z:\Games\Steam\steamapps\common\Half-Life 2 Deathmatch\hl2.exe
FirewallRules: [{EADC4D8E-67B8-4378-BE0E-85D8AD86CBC0}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{27D3372B-8C03-41AB-9858-5BDDD7B1BB24}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{5DDF621B-7066-4DBB-8123-F03DBAF981DA}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\left4dead2.exe
FirewallRules: [{9E499D78-4D04-4F16-AEA9-8D0DF30BF2A6}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\left4dead2.exe
FirewallRules: [{D0C101C7-1636-4681-8C1B-BD94C2DC1DBF}] => (Allow) Z:\Games\Steam\steamapps\common\CastleCrashers\castle.exe
FirewallRules: [{EC3186C1-0A10-4E68-8614-3D484CFB13DC}] => (Allow) Z:\Games\Steam\steamapps\common\CastleCrashers\castle.exe
FirewallRules: [{767A366A-E0FE-4385-ABA1-84A04AC9AE2D}] => (Allow) Z:\Games\Steam\steamapps\common\mountblade warband\mb_warband.exe
FirewallRules: [{C8033EFE-496C-4027-B5D9-7B861B65F41D}] => (Allow) Z:\Games\Steam\steamapps\common\mountblade warband\mb_warband.exe
FirewallRules: [{0AD11BF4-60A6-41C7-BAF7-FA34CADCE9F0}] => (Allow) Z:\Games\Steam\steamapps\common\RollerCoaster Tycoon Deluxe\RCT.EXE
FirewallRules: [{ED23BAB1-50C9-4BE4-8A09-0748DF465349}] => (Allow) Z:\Games\Steam\steamapps\common\RollerCoaster Tycoon Deluxe\RCT.EXE
FirewallRules: [TCP Query User{4C548C13-6E48-4FF6-9D32-F19314D7F7C1}Z:\games\steam\steamapps\common\sourcefilmmaker\game\sfm.exe] => (Allow) Z:\games\steam\steamapps\common\sourcefilmmaker\game\sfm.exe
FirewallRules: [UDP Query User{E870F148-3F05-435D-ABA0-9441D09C37ED}Z:\games\steam\steamapps\common\sourcefilmmaker\game\sfm.exe] => (Allow) Z:\games\steam\steamapps\common\sourcefilmmaker\game\sfm.exe
FirewallRules: [{1311CB5E-33E8-4226-9E8B-928B1E93BE6A}] => (Allow) Z:\Games\Steam\steamapps\common\TacticalIntervention\bin\tacint.exe
FirewallRules: [{CEB675D7-B9C0-404A-A195-587EE788128D}] => (Allow) Z:\Games\Steam\steamapps\common\TacticalIntervention\bin\tacint.exe
FirewallRules: [{5713A9F7-1387-4046-A7B3-7D8C4CE6D796}] => (Allow) Z:\Games\Steam\steamapps\common\Audiosurf 2\Audiosurf2.exe
FirewallRules: [{F5117360-1D2B-4FE9-9097-45F66566D964}] => (Allow) Z:\Games\Steam\steamapps\common\Audiosurf 2\Audiosurf2.exe
FirewallRules: [{C6B69AE3-4ACA-443A-B0AF-8B0F3988E0A1}] => (Allow) Z:\Games\Steam\steamapps\common\RPGVXAce\RPGVXAce.exe
FirewallRules: [{CEFC2BDB-5A5F-4595-A332-6EF53303E5E4}] => (Allow) Z:\Games\Steam\steamapps\common\RPGVXAce\RPGVXAce.exe
FirewallRules: [{F7DA5EB0-81BD-4A6B-9F46-5413DB206277}] => (Allow) Z:\Applications\iTunes\iTunes.exe
FirewallRules: [{E4881FC8-73CA-4645-BF78-B5EFE68A0984}] => (Allow) Z:\Games\Steam\steamapps\common\The Stanley Parable Demo\stanley.exe
FirewallRules: [{B8DA1CED-3CC3-4EF1-845A-979C006AF20F}] => (Allow) Z:\Games\Steam\steamapps\common\The Stanley Parable Demo\stanley.exe
FirewallRules: [{BA2589AD-18DF-45F7-9072-76B132A993DE}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\bin_ship\daupdatersvc.service.exe
FirewallRules: [{85022791-3686-440A-B7E3-5023A0608A4F}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\bin_ship\daupdatersvc.service.exe
FirewallRules: [{F1D46E10-9E67-464B-852A-AEAF5FEDED5F}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\tools\DragonAgeToolset.exe
FirewallRules: [{7C9ACD7B-A9D3-4317-960F-CC3C104A6CBF}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\tools\DragonAgeToolset.exe
FirewallRules: [{47085FA8-9249-4B73-8E7A-28EA257848B6}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\tools\RPU.exe
FirewallRules: [{822E3C58-6108-4BFB-8A6C-4873825DE107}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\tools\RPU.exe
FirewallRules: [{87279BB6-B18B-4382-8C8E-1D8EF2F70A93}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\tools\lightmapper\eclipseRay.exe
FirewallRules: [{FCAF713F-F9B4-42BD-83AB-90BEA6A4DCFA}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\tools\lightmapper\eclipseRay.exe
FirewallRules: [{53AD25DB-36B7-43AB-80D4-0D751BF3041C}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\tools\GffEditor.exe
FirewallRules: [{721A29D7-2932-4467-9051-747768E06A15}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\tools\GffEditor.exe
FirewallRules: [{216A4CB7-AB33-4173-84DD-F46D72A6856B}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\tools\ErfEditor.exe
FirewallRules: [{76C476DE-AD03-4E5D-AD3B-A5B401999A02}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\tools\ErfEditor.exe
FirewallRules: [TCP Query User{C1D6CE71-0627-47F8-84B4-2D667B168769}C:\windows\syswow64\regsvr32.exe] => (Allow) C:\windows\syswow64\regsvr32.exe
FirewallRules: [UDP Query User{1A20E2C8-21A0-44FE-B775-31805B63DF0F}C:\windows\syswow64\regsvr32.exe] => (Allow) C:\windows\syswow64\regsvr32.exe
FirewallRules: [{3F2C66AF-61B4-49BA-BA3E-2C48400C834E}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Ultimate Edition\DAOriginsLauncher.exe
FirewallRules: [{A8110AE6-0D66-41C9-9E18-D7584DD8221F}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Ultimate Edition\DAOriginsLauncher.exe
FirewallRules: [{8492CF71-D353-4169-A683-FC8C8BB076D1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3023\Agent.exe
FirewallRules: [{1656EDE2-FF3A-423A-921B-C1C75B9FC6B7}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3023\Agent.exe
FirewallRules: [{DE604860-4A1F-4B48-BA65-70B04370E13F}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe
FirewallRules: [{8B495B83-6A9E-4D85-AA83-8936467B3572}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe
FirewallRules: [TCP Query User{7BD6DC7D-1871-40CD-BA54-697DADA59041}Z:\games\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe] => (Allow) Z:\games\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe
FirewallRules: [UDP Query User{E062424B-0414-4935-BA31-DE08B40770A1}Z:\games\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe] => (Allow) Z:\games\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe
FirewallRules: [TCP Query User{A8B93995-0C12-45EA-9F03-B5EF0DA41F8A}Z:\games\steam\steamapps\common\dragon age ultimate edition\tools\dragonagetoolset.exe] => (Allow) Z:\games\steam\steamapps\common\dragon age ultimate edition\tools\dragonagetoolset.exe
FirewallRules: [UDP Query User{921B1BD5-CD8B-4DD6-9DB8-C7875104BA14}Z:\games\steam\steamapps\common\dragon age ultimate edition\tools\dragonagetoolset.exe] => (Allow) Z:\games\steam\steamapps\common\dragon age ultimate edition\tools\dragonagetoolset.exe
FirewallRules: [TCP Query User{A473FDE2-B660-404F-B1AB-C03412DE1322}Z:\games\steam\steamapps\common\dragon age ultimate edition\tools\erfeditor.exe] => (Allow) Z:\games\steam\steamapps\common\dragon age ultimate edition\tools\erfeditor.exe
FirewallRules: [UDP Query User{021F3803-468F-4C74-9DEF-75C458640F76}Z:\games\steam\steamapps\common\dragon age ultimate edition\tools\erfeditor.exe] => (Allow) Z:\games\steam\steamapps\common\dragon age ultimate edition\tools\erfeditor.exe
FirewallRules: [{23C9DFE2-9DAA-48C6-931D-51463D92A0E3}] => (Allow) Z:\Games\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{96C00E76-6A15-4E52-B84C-2C9C3B31B7CD}] => (Allow) Z:\Games\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [TCP Query User{8B08B6D4-FFF6-42F7-84AF-936A94E2B953}Z:\xampp\apache\bin\httpd.exe] => (Allow) Z:\xampp\apache\bin\httpd.exe
FirewallRules: [UDP Query User{C7A79598-D671-4867-8817-C426722426A9}Z:\xampp\apache\bin\httpd.exe] => (Allow) Z:\xampp\apache\bin\httpd.exe
FirewallRules: [TCP Query User{B8EA3DD5-1126-4C44-B810-2E191E2E393A}Z:\xampp\mysql\bin\mysqld.exe] => (Allow) Z:\xampp\mysql\bin\mysqld.exe
FirewallRules: [UDP Query User{64330676-A6DE-4849-8EA3-54CDD89B8428}Z:\xampp\mysql\bin\mysqld.exe] => (Allow) Z:\xampp\mysql\bin\mysqld.exe
FirewallRules: [TCP Query User{E720D8DF-919C-4B5E-AC76-F06CFEC38E6B}C:\program files (x86)\foobar2000\foobar2000.exe] => (Allow) C:\program files (x86)\foobar2000\foobar2000.exe
FirewallRules: [UDP Query User{7B564FD3-EEDD-4A68-93B7-A81F66FE4FD8}C:\program files (x86)\foobar2000\foobar2000.exe] => (Allow) C:\program files (x86)\foobar2000\foobar2000.exe
FirewallRules: [TCP Query User{03EE70C0-34D2-4186-85D6-55DD1610F052}C:\users\samuel\downloads\foobar2000portable\foobar2000.exe] => (Allow) C:\users\samuel\downloads\foobar2000portable\foobar2000.exe
FirewallRules: [UDP Query User{44969AEB-E70A-416D-9E38-8AB40882F24B}C:\users\samuel\downloads\foobar2000portable\foobar2000.exe] => (Allow) C:\users\samuel\downloads\foobar2000portable\foobar2000.exe
FirewallRules: [{95DC0C99-09D9-445A-B154-BE80EB7207A2}] => (Allow) Z:\Games\Steam\steamapps\common\SourceFilmmaker\game\bin\qsdklauncher.exe
FirewallRules: [{64489524-3A43-44FE-86B0-6B222BE6A4BB}] => (Allow) Z:\Games\Steam\steamapps\common\SourceFilmmaker\game\bin\qsdklauncher.exe
FirewallRules: [{74B4AF98-816E-448C-95E1-33C3ADE37AC5}] => (Allow) Z:\Games\Steam\steamapps\common\The Stanley Parable\stanley.exe
FirewallRules: [{F19ACFE3-ED66-4BB9-8F34-E3D4F0C8B14B}] => (Allow) Z:\Games\Steam\steamapps\common\The Stanley Parable\stanley.exe
FirewallRules: [{7F2633A6-FEFF-4EA1-A71D-B188DAFEB1CD}] => (Allow) Z:\Applications\FL Studio 11\FL64.exe
FirewallRules: [{18E0C764-88BF-4A7B-8159-2EDAC0F4DC3C}] => (Allow) Z:\Applications\FL Studio 11\FL64.exe
FirewallRules: [{B9CF593C-FF2C-4577-ABBA-F7911314740A}] => (Allow) Z:\Applications\FL Studio 11\FL64.exe
FirewallRules: [{966CB34B-8890-471A-BC9F-B4F1AC9B4299}] => (Allow) Z:\Applications\FL Studio 11\FL64.exe
FirewallRules: [{41E5AC17-A24C-4902-972D-6850A848C68E}] => (Allow) Z:\Applications\FL Studio 11\FL.exe
FirewallRules: [{78770521-BE46-46E6-B184-80E8D4F2C960}] => (Allow) Z:\Applications\FL Studio 11\FL.exe
FirewallRules: [{4C27D046-C256-40B8-BEDB-397394A2FD5C}] => (Allow) Z:\Applications\FL Studio 11\FL.exe
FirewallRules: [{63174C24-DE6D-4A25-A56B-F34F8250152D}] => (Allow) Z:\Applications\FL Studio 11\FL.exe
FirewallRules: [{D928687A-A0F2-4DF0-86A5-1E942E8547EB}] => (Allow) Z:\Games\Steam\steamapps\common\Metro Last Light\MetroLL.exe
FirewallRules: [{EB75230C-5D53-49D8-B41B-B8295731C5F4}] => (Allow) Z:\Games\Steam\steamapps\common\Metro Last Light\MetroLL.exe
FirewallRules: [{C529BC94-2063-4C62-AB3E-75E681A83FC6}] => (Allow) Z:\Games\Steam\steamapps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{2DB8FB05-1C28-4D9C-8CD1-FFB6DB31A112}] => (Allow) Z:\Games\Steam\steamapps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{4EB37454-BE53-4721-BEBE-1628D841730C}] => (Allow) Z:\Games\Steam\bin\steamwebhelper.exe
FirewallRules: [{81DDF222-D30C-461F-A99F-B3506D44B84F}] => (Allow) Z:\Games\Steam\bin\steamwebhelper.exe
FirewallRules: [{A7D92465-7338-4BD2-B5B3-3FE7CA2D72BD}] => (Allow) C:\Users\Samuel\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{8A4BC407-A3ED-40EA-B70A-E2E448C27354}] => (Allow) C:\Users\Samuel\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{6796D743-3E98-4946-A3E2-A043DD4DE14A}] => (Allow) Z:\Games\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivboot.exe
FirewallRules: [{E69F6EA2-6E7F-483A-9688-471CEF79C51D}] => (Allow) Z:\Games\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivboot.exe
FirewallRules: [{6FC847FA-C5E4-453B-9E48-B393916E02D0}] => (Allow) Z:\Games\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivlauncher.exe
FirewallRules: [{8AA97FAD-C228-4C89-A191-B5FB67593302}] => (Allow) Z:\Games\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivlauncher.exe
FirewallRules: [Daum PotPlayer(PotPlayerMini64.exe)] => (Allow) Z:\Applications\PotPlayer\PotPlayerMini64.exe
FirewallRules: [{D684E141-2473-4E76-8E8A-AB613A71DE5A}] => (Allow) Z:\Applications\PotPlayer\PotPlayerMini64.exe
FirewallRules: [{B31863C0-F262-45CE-96C2-66D7FF68C6CF}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13.exe
FirewallRules: [{3AC971AC-CAC0-40A0-A3F4-528C04F9F76C}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Kernel\DMR\PowerDVD13DMREngine.exe
FirewallRules: [{7906003F-148E-42D5-BE32-312BBEA51005}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe
FirewallRules: [{9815624C-864C-4767-9FB0-91D8E6A1E7BF}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13Agent.exe
FirewallRules: [{A296157F-B12E-444D-91FF-B0AF24369063}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13ML.exe
FirewallRules: [{E04C1301-EB42-433B-8754-274E2EAA7A8A}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Movie\PowerDVD.exe
FirewallRules: [{F0B2BB27-9CB8-4D75-9F54-ED75DE43AC3E}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Movie\PowerDVD Cinema\PowerDVDCinema13.exe
FirewallRules: [{F7F51620-95DB-4CD0-AD16-4E62C5210A5D}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13.exe
FirewallRules: [{8D44EAD1-CB55-4D80-AFD7-2F713BB32B58}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13.exe
FirewallRules: [{78D1FA7B-CF6D-48F4-B402-55BE61E26928}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13.exe
FirewallRules: [{02A33653-1A5C-4EF4-AA2B-6A359C1910E6}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13.exe
FirewallRules: [{DB69A772-3CE9-445A-9D63-34A361E60492}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Activate.exe
FirewallRules: [{B3A6A6D5-D173-4D75-BAE2-8BBC1B051C77}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Activate.exe
FirewallRules: [{B6F65806-5CF3-4CB5-975A-F1A74DDE10C7}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Activate.exe
FirewallRules: [{F920C0F8-CB3D-4572-B515-293101FEF7F7}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Activate.exe
FirewallRules: [{2336C93A-E429-474F-8289-7DF8BB364F51}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13Agent.exe
FirewallRules: [{768F43E4-2253-4DEA-ACFD-F4289D3C45AC}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13Agent.exe
FirewallRules: [{F32F34A0-3EA3-4214-8A6E-66DA592DFB5E}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13Agent.exe
FirewallRules: [{3726B092-1933-4740-B691-F189E8BDDE69}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13Agent.exe
FirewallRules: [{FED21D31-049D-4C39-854B-F0B26CF2880E}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13ML.exe
FirewallRules: [{BCD43207-918D-4C6C-B699-ED7E42833FEA}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13ML.exe
FirewallRules: [{4317C893-3917-44F2-835A-726E7AA12464}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13ML.exe
FirewallRules: [{8CEC7ECC-8E72-488F-9716-928AF45A96ED}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13ML.exe
FirewallRules: [{664FC8B8-758C-461A-B68E-92EDFFBA4C44}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PDVDLP.exe
FirewallRules: [{659732B0-C6AE-484E-BFD9-CD318A164BD6}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PDVDLP.exe
FirewallRules: [{821A0432-DE35-4D3B-87F5-DDCB8C93B3C2}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PDVDLP.exe
FirewallRules: [{079754C6-FF3D-45FA-B5CB-A5BDB8D32021}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PDVDLP.exe
FirewallRules: [{B7657CD5-4433-4E4E-ABA8-63570CA96A0A}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Kernel\DMR\PowerDVD13DMREngine.exe
FirewallRules: [{E8454725-2198-4D50-897F-497FF1338B41}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Kernel\DMR\PowerDVD13DMREngine.exe
FirewallRules: [{B7828C9A-CDE4-4FE1-896F-4DE3157A5551}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe
FirewallRules: [{A662F914-0144-4E42-AB30-8FA1DE285572}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe
FirewallRules: [{439CA36A-DA79-4283-94AB-B4ECCD6AB05C}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Movie\PowerDVD Cinema\PowerDVDCinema13.exe
FirewallRules: [{E55A8C9B-FBD5-45B8-9A48-6DC2ACDE6D32}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Movie\PowerDVD Cinema\PowerDVDCinema13.exe
FirewallRules: [{74F0445D-2C63-471D-B195-65B51812C8E4}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13.exe
FirewallRules: [{84B62904-6E22-464C-B551-A5813579D337}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13.exe
FirewallRules: [{4AA3424C-2E70-4FCC-8CF5-0D0A79C7E967}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13Agent.exe
FirewallRules: [{EDA4352B-5582-43D2-A605-6FF92A66ED6A}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13Agent.exe
FirewallRules: [{9A447539-F05B-4505-9350-06CAC82580A1}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13ML.exe
FirewallRules: [{80239106-CA2D-4A27-AB55-9D4A94377523}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13ML.exe
FirewallRules: [{B8BF1C68-B334-4C32-82A0-7A5265199326}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Movie\PowerDVD.exe
FirewallRules: [{BCC44F4E-3C36-413F-868D-1BFFA3731F85}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Movie\PowerDVD.exe
FirewallRules: [{EC82CA09-4604-4F65-9F21-0DDE2C873391}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota_ugc\game\bin\win64\dota2cfg.exe
FirewallRules: [{C5DDB3F9-48B9-4DEF-B094-3001601A2486}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota_ugc\game\bin\win64\dota2cfg.exe
FirewallRules: [TCP Query User{1F3F58D0-C5B3-4BB4-85AA-3E166F4FB8CE}Z:\games\steam\steamapps\common\dota 2 beta\dota_ugc\game\bin\win64\dota2.exe] => (Allow) Z:\games\steam\steamapps\common\dota 2 beta\dota_ugc\game\bin\win64\dota2.exe
FirewallRules: [UDP Query User{82E37AD9-3182-40FD-8A24-06DB17C6E03C}Z:\games\steam\steamapps\common\dota 2 beta\dota_ugc\game\bin\win64\dota2.exe] => (Allow) Z:\games\steam\steamapps\common\dota 2 beta\dota_ugc\game\bin\win64\dota2.exe
FirewallRules: [{BE64D6A5-B948-4C47-8E16-1637E57A20CB}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{6139EBD5-637D-4565-AA7C-C3611F6414FE}] => (Allow) Z:\Games\Steam\steamapps\common\Half-Life 2\hl2.exe
FirewallRules: [{6991DAB5-0AC6-49FE-ABC1-B4D501D70EF4}] => (Allow) Z:\Games\Steam\steamapps\common\Half-Life 2\hl2.exe
FirewallRules: [{C9B27048-EAFD-48F8-9C40-6AA056BD8DB0}] => (Allow) Z:\Games\Steam\steamapps\common\Audiosurf\engine\QuestViewer.exe
FirewallRules: [{F4D4019E-ED95-45B0-B371-E403415A8612}] => (Allow) Z:\Games\Steam\steamapps\common\Audiosurf\engine\QuestViewer.exe
FirewallRules: [{A968CB87-E468-4A51-A8FE-66BF8AA18918}] => (Allow) Z:\Games\Steam\steamapps\common\Wakfu\transition\transition.exe
FirewallRules: [{53C1E8B5-DE5B-4C9F-A95E-162EAC21E3C3}] => (Allow) Z:\Games\Steam\steamapps\common\Wakfu\transition\transition.exe
FirewallRules: [{67D7CE95-1904-44D3-BBCA-2A55B624C6FA}] => (Allow) Z:\Games\Steam\steamapps\common\Wasteland 2\Build\WL2.exe
FirewallRules: [{38E69764-CC8C-42B7-B148-10556482B9AC}] => (Allow) Z:\Games\Steam\steamapps\common\Wasteland 2\Build\WL2.exe
FirewallRules: [{590622BC-FAAD-402E-91D0-F981367514C6}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe
FirewallRules: [{3BC1B805-5712-49EB-A58A-573EF77C92F1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe
FirewallRules: [TCP Query User{1BEF1B7C-92E2-4284-95FB-7597ABE268EA}Z:\games\world of warcraft 1.12.1\wow-x.x.x.x-4.0.0.12911-eu-downloader.exe] => (Allow) Z:\games\world of warcraft 1.12.1\wow-x.x.x.x-4.0.0.12911-eu-downloader.exe
FirewallRules: [UDP Query User{2E4593DE-08C1-41AC-8D86-DB12C50D8EBE}Z:\games\world of warcraft 1.12.1\wow-x.x.x.x-4.0.0.12911-eu-downloader.exe] => (Allow) Z:\games\world of warcraft 1.12.1\wow-x.x.x.x-4.0.0.12911-eu-downloader.exe
FirewallRules: [{52D0AFBD-E30C-4B24-8206-14DE97CB2915}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3507\Agent.exe
FirewallRules: [{8E24ACA0-567F-4B35-8A89-A023E35E352E}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3507\Agent.exe
FirewallRules: [{66E3CE8B-0515-4D2F-B01F-9D564F181B8E}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe
FirewallRules: [{23F9301E-2B0F-4CC4-BD9C-05719C868A66}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe
FirewallRules: [{6AD03000-0202-4F2B-8E1C-4B26656A75EF}] => (Allow) Z:\Applications\Microsoft Office\Office15\lync.exe
FirewallRules: [{06F01041-8C36-4ECA-8815-90E94F6FA7B9}] => (Allow) Z:\Applications\Microsoft Office\Office15\lync.exe
FirewallRules: [{46EB860F-BBA8-45AE-91C2-B6466EA2341B}] => (Allow) Z:\Applications\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{141984B8-3D9C-465F-BEB2-8A0DA8A56699}] => (Allow) Z:\Applications\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{22A4F9AB-7FEC-44BB-B73C-0C7FC681BC52}] => (Allow) Z:\Applications\Microsoft Office\Office15\outlook.exe
FirewallRules: [{86876844-D653-478C-8F08-BBC2D5CB1165}] => (Allow) Z:\Games\Steam\steamapps\common\Just Cause 2\JustCause2.exe
FirewallRules: [{CD61EAA9-5674-49AD-B2D3-FC842CB91DAD}] => (Allow) Z:\Games\Steam\steamapps\common\Just Cause 2\JustCause2.exe
FirewallRules: [{913518AF-951E-4811-891E-98D2DCCCB63F}] => (Allow) Z:\Applications\Remote HD\Remote Helper\RemoteHelper.exe
FirewallRules: [{A59276E3-DD27-4243-A564-F7968313498D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3632\Agent.exe
FirewallRules: [{2F83A584-BB7A-40CC-993C-4D9FE3B57472}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3632\Agent.exe
FirewallRules: [{420E6F3E-DD36-4FB5-8A1F-80609BEA5B53}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe
FirewallRules: [{6363F36B-5E92-42F7-9AEC-3CDA0A688039}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe
FirewallRules: [TCP Query User{396E0B3F-E975-4555-A280-2072BCA22D22}Z:\games\the witcher 2\bin\witcher2.exe] => (Allow) Z:\games\the witcher 2\bin\witcher2.exe
FirewallRules: [UDP Query User{3E073D90-6039-468C-B339-238BEC4486F0}Z:\games\the witcher 2\bin\witcher2.exe] => (Allow) Z:\games\the witcher 2\bin\witcher2.exe
FirewallRules: [{A56232A6-1A59-424C-838B-FA9B8D6CA53E}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{7918D142-EB55-4CF0-A6D1-646B5979E793}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{50AB7CEE-8A90-4B91-B065-772D3039EDF0}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{7660F396-A476-4CEA-91AD-E846B24D4063}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{6A876E47-38A3-4EDE-85BD-3F5D012834BE}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3668\Agent.exe
FirewallRules: [{690DD606-1F1B-4497-BBF8-768081466E4A}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3668\Agent.exe
FirewallRules: [{DCC69EA8-8F93-4D3F-87C9-A108DE56A6FD}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3669\Agent.exe
FirewallRules: [{6D03D251-1217-443F-9F51-654E7F0B4AE4}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3669\Agent.exe
FirewallRules: [{768212B6-0079-440A-8B95-63DA493E87EA}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3688\Agent.exe
FirewallRules: [{EF36D127-2A1A-43F7-A8B7-E47BB8F1C902}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3688\Agent.exe
FirewallRules: [{52A1E457-B27D-470F-9EE6-EC7340DAECE0}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe
FirewallRules: [{278C6714-491E-4E93-BD01-B846EC4DEF49}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe
FirewallRules: [TCP Query User{F9B409F1-4A49-4659-A67D-D8C27F6DAD3E}Z:\games\steam\steamapps\common\starbound\win64\starbound_server.exe] => (Allow) Z:\games\steam\steamapps\common\starbound\win64\starbound_server.exe
FirewallRules: [UDP Query User{B6DDDE24-6452-46D2-A155-15648220FBBB}Z:\games\steam\steamapps\common\starbound\win64\starbound_server.exe] => (Allow) Z:\games\steam\steamapps\common\starbound\win64\starbound_server.exe
FirewallRules: [{DF1578B7-D7C8-427F-9AFE-540052F110A7}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe
FirewallRules: [{211D912D-845C-44F5-9B23-1DC74E7E6234}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe
FirewallRules: [{C636FC76-6A85-47B9-AEC4-407794E64AE7}] => (Allow) Z:\Games\Blade and Soul\bin\Client.exe
FirewallRules: [TCP Query User{7695A8BA-7E35-4961-AF2B-EE4F8F6451AC}C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe
FirewallRules: [UDP Query User{B6B94FAF-9986-4D3A-8ECF-311A3B4F6416}C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe
FirewallRules: [{FC37C4C8-B749-41F4-8C82-941AB5E3D929}] => (Allow) Z:\Games\Steam\steamapps\common\Metal Gear Solid Ground Zeroes\MgsGroundZeroes.exe
FirewallRules: [{9A457AEA-A69F-474C-AFE1-71BBB4DD4582}] => (Allow) Z:\Games\Steam\steamapps\common\Metal Gear Solid Ground Zeroes\MgsGroundZeroes.exe
FirewallRules: [{AC5A4104-5380-4782-9D2C-A4CB7C1C3011}] => (Allow) Z:\Applications\Adobe\Adobe Photoshop CC 2014\Photoshop.exe
FirewallRules: [{15608145-10F3-49B0-9467-165EF687007E}] => (Allow) Z:\Applications\Adobe\Adobe Photoshop CC 2014\Photoshop.exe
FirewallRules: [{588F5410-8C3C-429B-98FC-13CEC2164455}] => (Allow) Z:\Applications\Adobe\Adobe Photoshop CC 2014\Photoshop.exe
FirewallRules: [{9FC80738-1195-4C38-AA08-2E5B12DC66A5}] => (Allow) Z:\Applications\Adobe\Adobe Photoshop CC 2014\Photoshop.exe
FirewallRules: [{318EA0A6-F940-43B6-899C-55B2C10E26EC}] => (Allow) Z:\Games\Steam\steamapps\common\skyrim\CreationKit.exe
FirewallRules: [{D69C4F26-9F25-46D4-92E8-DCDADFA7F5D3}] => (Allow) Z:\Games\Steam\steamapps\common\skyrim\CreationKit.exe
FirewallRules: [{9FD7DA73-7EA7-4D8F-8E45-2263376752F4}] => (Allow) Z:\Games\Steam\steamapps\common\skyrim\SkyrimLauncher.exe
FirewallRules: [{8810D6FF-215A-4541-A1B0-F0DD3F2CFC5B}] => (Allow) Z:\Games\Steam\steamapps\common\skyrim\SkyrimLauncher.exe
FirewallRules: [TCP Query User{6C901182-AEC7-460B-BB49-3847F5D1A97D}Z:\applications\java\bin\javaw.exe] => (Allow) Z:\applications\java\bin\javaw.exe
FirewallRules: [UDP Query User{48582FDB-4046-497A-8AD6-06A442758DE5}Z:\applications\java\bin\javaw.exe] => (Allow) Z:\applications\java\bin\javaw.exe
FirewallRules: [{0B5C7FBD-82DA-41DD-A340-1879AFBAD7FF}] => (Allow) Z:\Games\Steam\steamapps\common\Pillars of Eternity\PillarsOfEternity.exe
FirewallRules: [{03925D31-3BE2-4264-AA35-BC042AE51A9D}] => (Allow) Z:\Games\Steam\steamapps\common\Pillars of Eternity\PillarsOfEternity.exe
FirewallRules: [{19541347-0399-4C19-A0FF-E8494CEBF09F}] => (Allow) Z:\Games\Steam\steamapps\common\Grand Theft Auto San Andreas\gta-sa.exe
FirewallRules: [{22D2BCC5-DE61-43EC-B3F1-B0DE86B0B42E}] => (Allow) Z:\Games\Steam\steamapps\common\Grand Theft Auto San Andreas\gta-sa.exe
FirewallRules: [{CD06DDC2-88D1-4F46-ABD1-70B4FD257239}] => (Allow) Z:\Games\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
FirewallRules: [{B8E95018-1EF5-4322-B090-CF44AE550B90}] => (Allow) Z:\Games\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
FirewallRules: [TCP Query User{9F660278-1185-4CB7-8FDE-7B153E5BB18B}Z:\games\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) Z:\games\steam\steamapps\common\grand theft auto v\gta5.exe
FirewallRules: [UDP Query User{28DE2C48-5A27-4766-9729-586A7213BDA6}Z:\games\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) Z:\games\steam\steamapps\common\grand theft auto v\gta5.exe
FirewallRules: [{4A07606A-2967-42C3-8ECC-D2C075BBF944}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{3911CDE7-1753-4B4B-9B8C-80C75B46AA6C}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{BFFEFDD5-CB5B-47BD-86E9-3DCAA45ACDC0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{BD5DC5C7-E185-42C7-A379-2E6AE9DC1691}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{B212CAD2-0F5F-4C37-ABD8-2286486AEA7E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{5F3E81B5-C563-416F-8BA9-AFB2002F49CF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{9284DFAF-A40F-4D7F-B76E-0FBEC441F325}] => (Allow) Z:\Games\Steam\steamapps\common\Dark Souls II\Game\DarkSoulsII.exe
FirewallRules: [{A4C575F9-E828-439B-8AF2-7F0B4984B4FB}] => (Allow) Z:\Games\Steam\steamapps\common\Dark Souls II\Game\DarkSoulsII.exe
FirewallRules: [TCP Query User{A4E56039-7D68-4509-A4F3-22906E49D1F3}C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe
FirewallRules: [UDP Query User{B0B541D1-1112-47CD-B16E-2D4DF0C89601}C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe
FirewallRules: [{BD5E8EB4-00BF-42BC-8B80-FC4416906B88}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\game\bin\win32\dota2.exe
FirewallRules: [{A1ABB6CC-D5F1-4D7A-B706-4BE6796E36BE}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\game\bin\win32\dota2.exe
FirewallRules: [{FF6FCC21-F6B4-460B-B00A-683E462A0E07}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [{010DA84A-0DF7-40D6-B89D-2BA9A8A48C3C}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [TCP Query User{A2656D27-0FE0-47C9-9EAB-C550CB3561A5}Z:\games\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe] => (Allow) Z:\games\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [UDP Query User{8087F055-641E-4CEA-AF3F-E687ACF47347}Z:\games\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe] => (Allow) Z:\games\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9C6786DE-AB67-41D4-B413-B264824A462D}] => (Allow) Z:\Games\Steam\steamapps\common\Dark Souls Prepare to Die Edition\DATA\DARKSOULS.exe
FirewallRules: [{48AC2F4B-5F6D-41B1-82A9-C3A2741C4A92}] => (Allow) Z:\Games\Steam\steamapps\common\Dark Souls Prepare to Die Edition\DATA\DARKSOULS.exe
FirewallRules: [{D0B0D6ED-0552-4B04-BC26-954F425313CA}] => (Allow) Z:\Games\Steam\steamapps\common\Merchants of Brooklyn\Bin32\Launcher.exe
FirewallRules: [{D72A72E3-BB9B-4932-A631-FA67CAC8F1DC}] => (Allow) Z:\Games\Steam\steamapps\common\Merchants of Brooklyn\Bin32\Launcher.exe
FirewallRules: [{55389F84-A651-49AD-B9B1-1B3376CF96F4}] => (Allow) Z:\Games\Steam\steamapps\common\Half-Life\hl.exe
FirewallRules: [{81F1F48E-EE33-4CF5-8FF3-FC8D1FB0EE11}] => (Allow) Z:\Games\Steam\steamapps\common\Half-Life\hl.exe
FirewallRules: [{0D1604AC-50EA-4B8C-9CFB-43714A6C5338}] => (Allow) Z:\Games\Steam\steamapps\common\MGS_TPP\mgsvtpp.exe
FirewallRules: [{ACA58B1A-088D-4190-93F8-72C6DC11B76C}] => (Allow) Z:\Games\Steam\steamapps\common\MGS_TPP\mgsvtpp.exe
FirewallRules: [{18A7E9E8-31DC-49B4-A197-6EE74EB22D71}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{2AFBCE5A-F932-41A2-9109-956A270C6236}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{A0A6AA66-B442-408B-94F9-5C15BE77D0BD}] => (Allow) Z:\Games\Steam\steamapps\common\The Beginners Guide\beginnersguide.exe
FirewallRules: [{796AD2CC-AFF9-409D-AF61-7E3C512CC6E4}] => (Allow) Z:\Games\Steam\steamapps\common\The Beginners Guide\beginnersguide.exe
FirewallRules: [TCP Query User{FCB5573C-60DC-41FD-944C-239350AA5D51}Z:\applications\deluge\deluge.exe] => (Allow) Z:\applications\deluge\deluge.exe
FirewallRules: [UDP Query User{C2A30567-7411-4FA2-BAC8-DBD84E9789BE}Z:\applications\deluge\deluge.exe] => (Allow) Z:\applications\deluge\deluge.exe
FirewallRules: [{C8E804E1-8E28-4D10-996C-7AE7DA6A11F2}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
==================== Faulty Device Manager Devices =============
 
Name: Microsoft Loopback Adapter
Description: Microsoft Loopback Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: msloop
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (10/16/2015 09:47:12 PM) (Source: ESENT) (EventID: 482) (User: )
Description: wuaueng.dll (780) SUS20ClientDataStore: An attempt to write to the file "C:\Windows\SoftwareDistribution\DataStore\Logs\edbtmp.log" at offset 0 (0x0000000000000000) for 393216 (0x00060000) bytes failed after wuaueng.dll0 seconds with system error 112 (0x00000070): "There is not enough space on the disk. ".  The write operation will fail with error -1808 (0xfffff8f0).  If this error persists then the file may be damaged and may need to be restored from a previous backup.
 
Error: (10/16/2015 09:46:39 PM) (Source: MsiInstaller) (EventID: 1024) (User: NT AUTHORITY)
Description: Product: Microsoft Office Professional Plus 2013 - Update 'Update for Microsoft Office 2013 (KB2975869) 64-Bit Edition' could not be installed. Error code 1603. Windows Installer can create logs to help troubleshoot issues with installing software packages. Use the following link for instructions on turning on logging support: http://go.microsoft....k/?LinkId=23127
 
Error: (10/16/2015 09:46:38 PM) (Source: MsiInstaller) (EventID: 11307) (User: NT AUTHORITY)
Description: Product: Microsoft Office Professional Plus 2013 -- Error 1307.There is not enough disk space to install this file: C:\Program Files\Common Files\Microsoft Shared\OFFICE15\ACECORE.DLL.  Free some disk space and click 'Retry', or click 'Cancel' to exit.
 
Error: (10/16/2015 09:46:23 PM) (Source: MsiInstaller) (EventID: 1024) (User: NT AUTHORITY)
Description: Product: Microsoft Office Professional Plus 2013 - Update 'Update for Microsoft Office 2013 (KB2881076) 64-Bit Edition' could not be installed. Error code 1603. Windows Installer can create logs to help troubleshoot issues with installing software packages. Use the following link for instructions on turning on logging support: http://go.microsoft....k/?LinkId=23127
 
Error: (10/16/2015 09:46:23 PM) (Source: MsiInstaller) (EventID: 11307) (User: NT AUTHORITY)
Description: Product: Microsoft Office Professional Plus 2013 -- Error 1307.There is not enough disk space to install this file: C:\Program Files (x86)\Microsoft Office\Office15\DCF\Common.WorkflowActivities.dll.  Free some disk space and click 'Retry', or click 'Cancel' to exit.
 
Error: (10/16/2015 09:43:24 PM) (Source: MsiInstaller) (EventID: 1024) (User: NT AUTHORITY)
Description: Product: Microsoft Office Shared MUI (English) 2013 - Update 'Update for Microsoft Office 2013 (KB3085566) 64-Bit Edition' could not be installed. Error code 1603. Windows Installer can create logs to help troubleshoot issues with installing software packages. Use the following link for instructions on turning on logging support: http://go.microsoft....k/?LinkId=23127
 
Error: (10/16/2015 09:43:24 PM) (Source: MsiInstaller) (EventID: 11307) (User: NT AUTHORITY)
Description: Product: Microsoft Office Shared MUI (English) 2013 -- Error 1307.There is not enough disk space to install this file: C:\Windows\Installer\13d7a5.msp.  Free some disk space and click 'Retry', or click 'Cancel' to exit.
 
Error: (10/16/2015 03:40:13 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: AutoKMS.exe, version: 2.5.0.0, time stamp: 0x52ea7aea
Faulting module name: KERNELBASE.dll, version: 6.1.7601.18847, time stamp: 0x554d7df1
Exception code: 0xe0434352
Fault offset: 0x000000000000b3dd
Faulting process id: 0x6b4
Faulting application start time: 0xAutoKMS.exe0
Faulting application path: AutoKMS.exe1
Faulting module path: AutoKMS.exe2
Report Id: AutoKMS.exe3
 
Error: (10/16/2015 03:40:11 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: AutoKMS.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.ComponentModel.Win32Exception
Stack:
   at System.Diagnostics.Process.StartWithCreateProcess(System.Diagnostics.ProcessStartInfo)
   at System.Diagnostics.Process.Start(System.Diagnostics.ProcessStartInfo)
   at ..(System.String, Boolean, Boolean)
   at ..(., System.String, Boolean, System.String, Int32, System.String, System.String, Boolean, Boolean, Boolean, Boolean, Boolean, Boolean, System.String, System.String)
   at ..(Int32, System.String, System.String, System.String, Boolean, Boolean, Boolean, ., Boolean, Boolean, System.String, Boolean, Boolean, System.String)
   at ..(.)
   at ..()
 
Error: (10/16/2015 03:33:12 PM) (Source: WinMgmt) (EventID: 4) (User: )
Description: 0x8004100aC:\PROGRAM FILES (X86)\MICROSOFT SQL SERVER\90\SHARED\SQLMGMPROVIDERXPSP2UP.MOF
 
 
System errors:
=============
Error: (10/16/2015 09:59:11 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: The ScRegSetValueExW call failed for FailureCommand with the following error: 
%%5
 
Error: (10/16/2015 09:59:08 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: The ScRegSetValueExW call failed for Start with the following error: 
%%5
 
Error: (10/16/2015 09:49:21 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The TabletServicePen service failed to start due to the following error: 
%%2
 
Error: (10/16/2015 09:49:15 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The NIHardwareService service failed to start due to the following error: 
%%2
 
Error: (10/16/2015 09:49:15 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The nHancer Support service failed to start due to the following error: 
%%2
 
Error: (10/16/2015 09:48:21 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x80070070: Update for Microsoft Office 2013 (KB3085493) 64-Bit Edition.
 
Error: (10/16/2015 09:48:21 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x800705aa: Security Update for Windows 7 for x64-based Systems (KB3069114).
 
Error: (10/16/2015 09:48:21 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x800705aa: Security Update for Windows 7 for x64-based Systems (KB3067903).
 
Error: (10/16/2015 09:48:21 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x80070070: Security Update for Microsoft .NET Framework 4.5, 4.5.1 and 4.5.2 on Windows 7, Vista, Server 2008, Server 2008 R2 x64 (KB3074550).
 
Error: (10/16/2015 09:48:21 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x800705aa: Security Update for Windows 7 for x64-based Systems (KB3086255).
 
 
CodeIntegrity:
===================================
  Date: 2015-10-16 21:48:57.139
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\libusb0.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2015-10-16 21:48:57.123
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\libusb0.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2015-10-16 21:26:24.507
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Combo-Fix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2015-10-16 21:26:24.487
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Combo-Fix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2015-10-16 21:26:24.467
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Combo-Fix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2015-10-16 21:26:24.447
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Combo-Fix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2015-10-16 21:14:39.268
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\libusb0.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2015-10-16 21:14:39.237
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\libusb0.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2015-10-16 16:39:34.097
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\libusb0.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2015-10-16 16:39:34.081
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\libusb0.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
 
==================== Memory info =========================== 
 
Processor: Intel® Core™ i5-2500K CPU @ 3.30GHz
Percentage of memory in use: 81%
Total physical RAM: 8103.52 MB
Available physical RAM: 1485.6 MB
Total Virtual: 16205.24 MB
Available Virtual: 8962.98 MB
 
==================== Drives ================================
 
Drive c: (Leo II) (Fixed) (Total:55.8 GB) (Free:0.03 GB) NTFS
Drive z: (Libra II) (Fixed) (Total:1863.01 GB) (Free:112.71 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 205714CC)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)
 
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 55.9 GB) (Disk ID: 215EA590)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=55.8 GB) - (Type=07 NTFS)
 
==================== End of Addition.txt ============================

Edited by petina, 16 October 2015 - 08:34 AM.

  • 0

Advertisements


#2
BrianDrab

BrianDrab

    Trusted Helper

  • Malware Removal
  • 3,583 posts

Hi and welcome to G2G.

 

There is evidence in your logs of illegal Windows and/or Office software. If you don't think this is the case, please let me know.
 
I need to abide by the Terms of Use that we all agreed to when creating an account here. Specifically, the following bullet.
 
 

The posting of links or references to warez or any other type of illegal software is strictly forbidden. By doing so you risk having your user account terminated without warning. We will NOT help anyone we suspect of having obtained their software or services illegally.

 
I can continue to assist you if you remove any illegal software from your machine and then provide fresh logs. 
 
Thank you for your understanding.

 


  • 0

#3
petina

petina

    New Member

  • Topic Starter
  • Member
  • Pip
  • 7 posts

Oh, er, I'm terribly sorry about that. I deleted everything, here are the fresh logs. Sorry again.

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:15-10-2015 01
Ran by Samuel (administrator) on ZODIAC-II (17-10-2015 11:36:20)
Running from C:\Users\Samuel\Desktop
Loaded Profiles: Samuel (Available Profiles: Samuel)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Apache Software Foundation) Z:\XAMPP\apache\bin\httpd.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Microsoft Corporation) C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe
(Apache Software Foundation) Z:\XAMPP\apache\bin\httpd.exe
() Z:\XAMPP\mysql\bin\mysqld.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() Z:\Applications\Pingzapper\PZService.exe
() C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
() Z:\Applications\TunnelBear\TBear.Maintenance.exe
(UC-Logic Technology Corp.) C:\Windows\System32\drivers\WTSrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
() C:\Program Files (x86)\puush\puush.exe
(Akamai Technologies, Inc.) C:\Users\Samuel\AppData\Local\Akamai\netsession_win.exe
(Akamai Technologies, Inc.) C:\Users\Samuel\AppData\Local\Akamai\netsession_win.exe
(Actual Tools) Z:\Applications\Actual Multiple Monitors\ActualMultipleMonitorsCenter.exe
(Cooler Master) Z:\Applications\Cooler Master\CM Storm\Trigger Z\CMTriggerZ.exe
(Flux Software LLC) C:\Users\Samuel\AppData\Local\FluxSoftware\Flux\flux.exe
(Valve Corporation) Z:\Games\Steam\Steam.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Program Files (x86)\Razer\DeathAdder\razerhid.exe
(Tablet Driver) C:\Windows\SysWOW64\WTClient.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Apple Inc.) Z:\Applications\iTunes\iTunesHelper.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
(Razer Inc.) C:\Program Files (x86)\Razer\DeathAdder\razerofa.exe
() C:\Program Files (x86)\Razer\DeathAdder\vdDaemon.exe
(Actual Tools) Z:\Applications\Actual Multiple Monitors\ActualMultipleMonitorsCenter64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Actual Tools) Z:\Applications\Actual Multiple Monitors\ActualMultipleMonitorsShellCenter64.exe
(Valve Corporation) Z:\Games\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
(Steven Mayall) Z:\Applications\MusicBee\MusicBee.exe
(Malwarebytes) Z:\Applications\Malwarebytes Anti-Malware\mbam.exe
(Malwarebytes) Z:\Applications\Malwarebytes Anti-Malware\mbamservice.exe
(Malwarebytes) Z:\Applications\Malwarebytes Anti-Malware\mbamscheduler.exe
(Deluge Team) Z:\Applications\Deluge\deluge.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
 
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [AdobeAAMUpdater-1.0] => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672152 2014-05-09] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2754704 2015-05-23] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [DeathAdder] => C:\Program Files (x86)\Razer\DeathAdder\razerhid.exe [248832 2012-01-14] ()
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [1679360 2012-02-28] (Wondershare)
HKLM-x32\...\Run: [WTClient] => C:\Windows\SysWOW64\WTClient.exe [40832 2012-12-22] (Tablet Driver)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-04-23] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => Z:\Applications\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [592704 2015-07-08] (Razer Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [NoStrCmpLogical] 1
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Run: [puush] => C:\Program Files (x86)\puush\puush.exe [568904 2015-03-30] ()
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Run: [Akamai NetSession Interface] => C:\Users\Samuel\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Run: [Dxtory Update Checker 2.0] => Z:\Applications\Dxtory Software\Dxtory2.0\UpdateChecker.exe [93696 2010-10-17] (Dxtory Software)
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Run: [Actual Multiple Monitors] => Z:\Applications\Actual Multiple Monitors\ActualMultipleMonitorsCenter.exe [1782576 2014-04-04] (Actual Tools)
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Run: [CoolerMaster TriggerZ] => Z:\Applications\Cooler Master\CM Storm\Trigger Z\CMTriggerZ.exe [2172416 2013-08-23] (Cooler Master)
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.)
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Run: [f.lux] => C:\Users\Samuel\AppData\Local\FluxSoftware\Flux\flux.exe [1017224 2013-10-24] (Flux Software LLC)
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Run: [Steam] => Z:\Games\Steam\steam.exe [2901584 2015-10-15] (Valve Corporation)
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Policies\Explorer: [NoDriveTypeAutoRun] 0x00000000
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll [2015-02-11] (Dropbox, Inc.)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\..\Interfaces\{860BAE5C-F33F-4FE5-9C1F-ADEAA559C816}: [NameServer] 192.168.0.1
 
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://sg.yahoo.com/?fr=yset_ie_syc_oracle&type=orcl_hpset
SearchScopes: HKLM-x32 -> DefaultScope value is missing
SearchScopes: HKU\S-1-5-21-3399670195-734195552-4159410357-1002 -> {C43C17AC-F638-401E-9982-1A452F806CB5} URL = hxxps://sg.search.yahoo.com/search?p={searchTerms}&fr=yset_ie_syc_oracle&type=orcl_default
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.)
 
FireFox:
========
FF ProfilePath: C:\Users\Samuel\AppData\Roaming\Mozilla\Firefox\Profiles\m9sjfdqr.default
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [No File]
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1214154.dll [2014-11-07] (Adobe Systems, Inc.)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> Z:\Applications\iTunes\Mozilla Plugins\npitunes.dll [2014-02-21] ()
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @nexon.net/NxGame -> C:\ProgramData\NexonUS\NGM\npNxGameUS.dll [2012-11-14] (Nexon)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [No File]
FF Plugin-x32: @t.garena.com/garenatalk -> C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [No File]
FF Plugin HKU\S-1-5-21-3399670195-734195552-4159410357-1002: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Samuel\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-05-25] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-3399670195-734195552-4159410357-1002: wacom.com/WacomTabletPlugin -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [No File]
 
Chrome: 
=======
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (BetterTTV) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2015-10-10]
CHR Extension: (Google Docs) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-01]
CHR Extension: (Google Drive) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-04-01]
CHR Extension: (YouTube) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-04-01]
CHR Extension: (Google Search) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-04-01]
CHR Extension: (Tampermonkey) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2014-04-09]
CHR Extension: (APNG) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehkepjiconegkhpodgoaeamnpckdbblp [2015-10-16]
CHR Extension: (uBlock) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\epcnnfbjfcgphgdmggkamkmgojdagdnn [2015-10-02]
CHR Extension: (FrankerFaceZ) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\fadndhdgpmmaapbmfcknlfgcflmmmieb [2015-01-07]
CHR Extension: (Google Docs Offline) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-03]
CHR Extension: (AdBlock) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-10-16]
CHR Extension: (Unlimited Free VPN - Hola) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2014-04-18]
CHR Extension: (Enable right click) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhojmcideegachlhfgfdhailpfhgknjm [2015-09-30]
CHR Extension: (Referer Control) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnkcfpcejkafcihlgbojoidoihckciin [2015-09-27]
CHR Extension: (Eric Andre) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifnboedoofdmkfihhgagddionacnpdhb [2015-01-25]
CHR Extension: (New XKit) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\inobiceghmpkaklcknpniboilbjmlald [2015-07-31]
CHR Extension: (FLV Video Downloader) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\khgbngepgkjeffdkkpnblnlogfjehbjn [2014-12-14]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-01]
CHR Extension: (Checker Plus for Gmail™) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj [2014-04-09]
CHR Extension: (Gmail) - C:\Users\Samuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-04-01]
CHR HKLM-x32\...\Chrome\Extension: [npdicihegicnhaangkdmcgbjceoemeoo] - hxxps://clients2.google.com/service/update2/crx
 
==================== Services (Whitelisted) ========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 Apache2.4; Z:\xampp\apache\bin\httpd.exe [22016 2013-11-22] (Apache Software Foundation) [File not signed]
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-05-23] (NVIDIA Corporation)
R2 MBAMScheduler; Z:\Applications\Malwarebytes Anti-Malware\mbamscheduler.exe [1513784 2015-10-05] (Malwarebytes)
R2 MBAMService; Z:\Applications\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23816 2015-04-30] (Microsoft Corporation)
R2 MSSQL$BWDATOOLSET; C:\Program Files (x86)\DAODB\MSSQL.1\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation)
R2 mysql; Z:\xampp\mysql\bin\mysqld.exe [10966528 2014-01-14] () [File not signed]
R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [366544 2015-04-30] (Microsoft Corporation)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4145600 2012-06-20] (INCA Internet Co., Ltd.)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1893008 2015-05-23] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [23006864 2015-05-23] (NVIDIA Corporation)
S3 OpenVPNService; Z:\Applications\OpenVPN\bin\openvpnserv.exe [34528 2013-01-08] (The OpenVPN Project)
R2 PingzapperSvc; Z:\Applications\Pingzapper\PZService.exe [679424 2012-06-11] () [File not signed]
R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [187048 2015-06-24] ()
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc.)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5426448 2014-12-15] (TeamViewer GmbH)
R2 TunnelBearMaintenance; Z:\Applications\TunnelBear\TBear.Maintenance.exe [35264 2015-07-17] ()
S4 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WinTabService; C:\Windows\System32\Drivers\WTSRV.EXE [78064 2013-04-19] (UC-Logic Technology Corp.)
S2 nHancer; "C:\Program Files\nHancer\nHancerService.exe" [X]
S2 NIHardwareService; C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe [X]
S2 TabletServicePen; C:\Program Files\Tablet\Pen\Pen_Tablet.exe [X]
S4 TouchServicePen; C:\Program Files\Tablet\Pen\Pen_TouchService.exe [X]
 
===================== Drivers (Whitelisted) ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 CMUSBDAC; C:\Windows\System32\DRIVERS\CMUSBDAC.sys [594944 2014-09-19] (C-MEDIA)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-11] (Broadcom Corporation)
R3 ffusb2audio; C:\Windows\System32\DRIVERS\ffusb2audio.sys [127280 2013-09-25] (Focusrite Audio Engineering Limited.)
S3 libusb0; C:\Windows\System32\DRIVERS\libusb0.sys [32768 2012-02-19] (http://libusb-win32.sourceforge.net) [File not signed]
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2015-10-17] (Malwarebytes)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [280376 2015-03-04] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124568 2015-03-04] (Microsoft Corporation)
R2 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-05-23] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2015-04-03] (NVIDIA Corporation)
S3 PsSdk41; C:\Windows\system32\Drivers\pssdk41.sys [51776 2013-05-20] (microOLAP Technologies LTD)
S3 PTSimHid; C:\Windows\System32\DRIVERS\PTSimHid.sys [22912 2012-12-22] (UC-Logic Technology Corp.)
R3 rzdaendpt; C:\Windows\System32\DRIVERS\rzdaendpt.sys [33448 2014-09-05] (Razer Inc)
R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [37184 2015-06-12] (Razer, Inc.)
R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [129472 2015-06-27] (Razer, Inc.)
R3 rzvkeyboard; C:\Windows\System32\DRIVERS\rzvkeyboard.sys [31912 2014-12-30] (Razer Inc)
R3 tap-tb-0901; C:\Windows\System32\DRIVERS\tap-tb-0901.sys [38656 2015-04-28] (The OpenVPN Project)
S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2014-03-20] (Anchorfree Inc.)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [35064 2015-10-16] ()
S3 catchme; \??\C:\Combo-Fix\catchme.sys [X]
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 MBfilt; system32\drivers\MBfilt64.sys [X]
S3 MSICDSetup; \??\D:\CDriver64.sys [X]
S3 slb; \??\Z:\Games\ScarletBlade\avital\scarlb64.sys [X]
S3 Tablet2k; "%SystemRoot%\System32\Drivers\Tablet2k.sys" [X]
S3 wacommousefilter; system32\DRIVERS\wacommousefilter.sys [X]
S3 WacomPen; \SystemRoot\system32\DRIVERS\wacompen.sys [X]
S3 wacomvhid; system32\DRIVERS\wacomvhid.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2015-10-17 10:57 - 2015-10-17 10:57 - 00000000 ____D C:\Users\Samuel\AppData\Local\backburner
2015-10-17 10:30 - 2015-10-17 10:30 - 00000000 ____D C:\Users\Samuel\AppData\Local\CrashDumps
2015-10-16 22:02 - 2015-10-17 11:36 - 00022683 _____ C:\Users\Samuel\Desktop\FRST.txt
2015-10-16 22:02 - 2015-10-16 22:00 - 02196480 _____ (Farbar) C:\Users\Samuel\Desktop\FRST64.exe
2015-10-16 22:01 - 2015-10-17 11:36 - 00000000 ____D C:\FRST
2015-10-16 21:41 - 2015-10-16 21:41 - 00000000 ___SD C:\ComboFix
2015-10-16 21:35 - 2015-10-02 02:06 - 00692672 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-10-16 21:35 - 2015-10-02 02:04 - 00616360 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-10-16 21:35 - 2015-10-02 02:00 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2015-10-16 21:35 - 2015-10-02 02:00 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-10-16 21:35 - 2015-10-02 02:00 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2015-10-16 21:35 - 2015-10-02 02:00 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2015-10-16 21:35 - 2015-10-02 02:00 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2015-10-16 21:35 - 2015-10-02 01:50 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2015-10-16 21:35 - 2015-10-02 01:00 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-10-16 21:34 - 2015-09-02 11:04 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-10-16 21:34 - 2015-09-02 11:04 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-10-16 21:34 - 2015-09-02 11:04 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-10-16 21:34 - 2015-09-02 11:04 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-10-16 21:34 - 2015-09-02 10:48 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-10-16 21:34 - 2015-09-02 10:48 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-10-16 21:34 - 2015-09-02 10:48 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-10-16 21:34 - 2015-09-02 10:47 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-10-16 21:34 - 2015-09-02 09:51 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-10-16 21:34 - 2015-09-02 09:47 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-10-16 21:34 - 2015-09-02 09:33 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-10-16 21:34 - 2015-07-31 02:06 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-10-16 21:34 - 2015-07-31 02:06 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-10-16 21:34 - 2015-07-31 02:06 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-10-16 21:34 - 2015-07-31 01:57 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-10-16 21:34 - 2015-07-31 01:57 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-10-16 21:34 - 2015-07-15 11:19 - 02004992 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-10-16 21:34 - 2015-07-15 11:19 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-10-16 21:34 - 2015-07-15 11:14 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2015-10-16 21:34 - 2015-07-15 11:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-10-16 21:34 - 2015-07-15 10:55 - 01390592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-10-16 21:34 - 2015-07-15 10:55 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-10-16 21:34 - 2015-07-15 10:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2015-10-16 21:34 - 2015-07-15 10:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-10-16 21:34 - 2015-07-10 01:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2015-10-16 21:34 - 2015-07-10 01:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2015-10-16 21:34 - 2015-07-10 01:42 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
2015-10-16 21:34 - 2015-07-02 04:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-10-16 21:34 - 2015-07-02 04:48 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-10-16 21:34 - 2015-07-02 04:30 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-10-16 21:34 - 2015-07-02 04:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-10-16 21:34 - 2015-04-18 11:10 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-10-16 21:34 - 2015-04-18 10:56 - 00342016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-10-16 21:28 - 2015-10-16 21:28 - 00024821 _____ C:\ComboFix.txt
2015-10-16 21:14 - 2015-10-16 21:49 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-10-16 16:02 - 2015-10-16 16:02 - 00003762 _____ C:\blitzblank.log
2015-10-16 15:41 - 2015-10-16 15:41 - 00036169 _____ C:\Users\Samuel\Desktop\ComboFix.txt
2015-10-16 15:33 - 2011-06-26 14:45 - 00256000 _____ C:\Windows\PEV.exe
2015-10-16 15:33 - 2010-11-08 01:20 - 00208896 _____ C:\Windows\MBR.exe
2015-10-16 15:33 - 2009-04-20 12:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-10-16 15:33 - 2000-08-31 08:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-10-16 15:33 - 2000-08-31 08:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-10-16 15:33 - 2000-08-31 08:00 - 00098816 _____ C:\Windows\sed.exe
2015-10-16 15:33 - 2000-08-31 08:00 - 00080412 _____ C:\Windows\grep.exe
2015-10-16 15:33 - 2000-08-31 08:00 - 00068096 _____ C:\Windows\zip.exe
2015-10-16 15:24 - 2015-10-16 21:41 - 00000000 ____D C:\Qoobox
2015-10-16 15:24 - 2015-10-16 15:40 - 00000000 ____D C:\Windows\erdnt
2015-10-16 15:23 - 2015-10-16 15:24 - 05636101 ____R (Swearware) C:\Users\Samuel\Downloads\Combo-Fix.exe
2015-10-16 15:15 - 2015-10-16 15:15 - 00006086 _____ C:\Users\Samuel\Desktop\RKreport[1].txt
2015-10-16 15:01 - 2015-10-16 16:40 - 00035064 _____ C:\Windows\system32\Drivers\TrueSight.sys
2015-10-16 15:01 - 2015-10-16 15:16 - 00000000 ____D C:\ProgramData\RogueKiller
2015-10-16 15:01 - 2015-10-16 15:01 - 00005016 _____ C:\Users\Samuel\Desktop\AdwCleaner[C2].txt
2015-10-16 14:58 - 2015-10-16 16:38 - 00000000 ____D C:\AdwCleaner
2015-10-16 14:56 - 2015-10-16 14:56 - 00002123 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
2015-10-16 14:56 - 2015-10-16 14:56 - 00000000 ____D C:\Program Files\Microsoft Security Client
2015-10-16 14:56 - 2015-10-16 14:56 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2015-10-16 14:51 - 2015-10-16 14:51 - 00001231 _____ C:\Users\Samuel\Desktop\checkup.txt
2015-10-16 14:43 - 2015-10-16 14:43 - 00013922 _____ C:\Users\Samuel\AppData\Local\recently-used.xbel
2015-10-16 14:25 - 2015-10-17 10:08 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-10-16 14:25 - 2015-10-16 14:25 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-10-16 14:25 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-10-16 14:25 - 2015-10-05 09:50 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-10-16 14:25 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2015-10-16 13:50 - 2015-10-16 13:50 - 00398336 __RSH C:\Windows\SysWOW64\NOISEQ.dll
2015-10-16 13:50 - 2015-10-16 13:50 - 00002592 _____ C:\Windows\System32\Tasks\qyqvfov
2015-10-02 00:04 - 2015-10-02 00:04 - 00000016 _____ C:\Windows\SysWOW64\w3data.vss
2015-10-02 00:04 - 2015-10-02 00:04 - 00000016 _____ C:\Windows\msocreg32.dat
2015-10-02 00:01 - 2015-10-02 00:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IK Multimedia
2015-10-01 23:58 - 2015-10-02 00:04 - 00000016 _____ C:\ProgramData\autobk.inc
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2015-10-17 11:30 - 2012-05-06 13:39 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\Skype
2015-10-17 11:28 - 2009-07-14 11:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2015-10-17 11:27 - 2014-11-05 22:24 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-10-17 11:25 - 2015-09-04 22:33 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-10-17 11:25 - 2014-06-24 19:57 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2015-10-17 11:25 - 2014-06-24 19:56 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2015-10-17 11:25 - 2009-07-14 15:45 - 00000000 ____D C:\Windows\ShellNew
2015-10-17 11:24 - 2009-07-14 11:20 - 00000000 ____D C:\Program Files\Common Files\System
2015-10-17 11:24 - 2009-07-14 10:34 - 00000387 _____ C:\Windows\win.ini
2015-10-17 11:09 - 2012-06-24 21:28 - 00000000 ____D C:\Program Files (x86)\Adobe
2015-10-17 11:09 - 2012-06-24 21:27 - 00000000 ____D C:\ProgramData\Adobe
2015-10-17 10:59 - 2012-07-15 23:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk
2015-10-17 10:53 - 2012-07-15 23:26 - 00000000 ____D C:\ProgramData\Autodesk
2015-10-17 10:52 - 2012-04-28 23:17 - 01687146 _____ C:\Windows\WindowsUpdate.log
2015-10-17 00:18 - 2015-05-15 17:47 - 00000045 _____ C:\Users\Samuel\jagex_cl_oldschool_LIVE.dat
2015-10-17 00:05 - 2009-07-14 13:13 - 00864960 _____ C:\Windows\system32\PerfStringBackup.INI
2015-10-16 21:54 - 2009-07-14 12:45 - 00016576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-10-16 21:54 - 2009-07-14 12:45 - 00016576 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-10-16 21:49 - 2009-07-14 12:45 - 05100032 _____ C:\Windows\system32\FNTCACHE.DAT
2015-10-16 21:48 - 2012-04-29 18:56 - 00245966 _____ C:\Windows\PFRO.log
2015-10-16 21:32 - 2012-05-13 01:39 - 00000000 ____D C:\Users\Samuel\AppData\Local\Apps\2.0
2015-10-16 21:26 - 2009-07-14 10:34 - 00000215 _____ C:\Windows\system.ini
2015-10-16 17:09 - 2014-11-06 00:27 - 00000000 ____D C:\Windows\AutoKMS
2015-10-16 15:41 - 2009-07-14 11:20 - 00000000 __RHD C:\Users\Default
2015-10-16 15:38 - 2009-07-14 10:34 - 51642368 _____ C:\Windows\system32\config\COMPONENTS.bak
2015-10-16 15:38 - 2009-07-14 10:34 - 25952256 _____ C:\Windows\system32\config\SYSTEM.bak
2015-10-16 15:38 - 2009-07-14 10:34 - 105644032 _____ C:\Windows\system32\config\SOFTWARE.bak
2015-10-16 15:38 - 2009-07-14 10:34 - 00786432 _____ C:\Windows\system32\config\DEFAULT.bak
2015-10-16 15:38 - 2009-07-14 10:34 - 00262144 _____ C:\Windows\system32\config\SECURITY.bak
2015-10-16 15:38 - 2009-07-14 10:34 - 00262144 _____ C:\Windows\system32\config\SAM.bak
2015-10-16 14:56 - 2012-04-28 23:48 - 00001945 _____ C:\Windows\epplauncher.mif
2015-10-16 14:46 - 2009-07-14 11:20 - 00000000 ____D C:\Windows\Branding
2015-10-16 13:00 - 2014-06-20 17:19 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\Mp3tag
2015-10-16 10:35 - 2014-12-25 13:33 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2015-10-15 20:29 - 2012-05-04 16:44 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\Audacity
2015-10-14 00:50 - 2014-07-10 18:39 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\spek
2015-10-12 22:36 - 2014-08-03 22:55 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\uTorrent
2015-10-12 18:18 - 2015-05-10 13:29 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\MusicBee
2015-10-10 23:50 - 2013-10-06 12:32 - 00000000 ____D C:\Users\Samuel\AppData\Local\SecondLife
2015-10-10 21:14 - 2013-10-06 12:32 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\SecondLife
2015-10-10 19:25 - 2012-04-29 03:38 - 00000000 ____D C:\Users\Samuel
2015-10-10 00:40 - 2012-04-30 17:09 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\deluge
2015-10-09 20:56 - 2015-01-28 18:09 - 00000000 ____D C:\Users\Samuel\AppData\Local\Native Instruments
2015-10-09 20:54 - 2015-01-28 18:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments
2015-10-09 20:54 - 2012-04-28 23:31 - 00323090 _____ C:\Windows\DPINST.LOG
2015-10-05 21:29 - 2014-09-29 19:01 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\vlc
2015-10-02 15:28 - 2012-04-30 01:30 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-09-28 10:55 - 2015-03-09 20:10 - 00001456 _____ C:\Users\Samuel\AppData\Local\Adobe Save for Web 13.0 Prefs
2015-09-26 11:08 - 2015-06-05 10:01 - 00000000 ____D C:\Users\Samuel\AppData\Roaming\TunnelBear
2015-09-24 02:35 - 2013-03-24 02:18 - 00000000 ____D C:\Users\Samuel\AppData\Local\Akamai
2015-09-17 06:02 - 2014-04-01 23:35 - 00003894 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-09-17 06:02 - 2014-04-01 23:35 - 00003642 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
 
==================== Files in the root of some directories =======
 
2013-05-24 18:40 - 2014-08-16 16:42 - 0000132 _____ () C:\Users\Samuel\AppData\Roaming\Adobe BMP Format CS5 Prefs
2012-08-30 17:56 - 2014-10-30 01:20 - 0000132 _____ () C:\Users\Samuel\AppData\Roaming\Adobe GIF Format CS5 Prefs
2012-06-24 23:03 - 2015-03-08 23:22 - 0000132 _____ () C:\Users\Samuel\AppData\Roaming\Adobe PNG Format CS5 Prefs
2012-08-24 22:14 - 2013-01-24 21:08 - 0000132 _____ () C:\Users\Samuel\AppData\Roaming\Adobe Targa Format CS5 Prefs
2013-12-04 20:44 - 2013-12-05 00:12 - 0002347 _____ () C:\Users\Samuel\AppData\Roaming\ASSDraw3.cfg
2014-01-17 15:52 - 2014-01-17 18:21 - 0065588 _____ () C:\Users\Samuel\AppData\Roaming\Camdata.ini
2014-01-17 15:52 - 2014-01-17 18:21 - 0000408 _____ () C:\Users\Samuel\AppData\Roaming\CamLayout.ini
2014-01-17 15:52 - 2014-01-17 18:21 - 0000408 _____ () C:\Users\Samuel\AppData\Roaming\CamShapes.ini
2014-01-17 16:37 - 2014-01-17 18:21 - 0004538 _____ () C:\Users\Samuel\AppData\Roaming\CamStudio.cfg
2014-12-15 18:22 - 2014-12-15 18:22 - 0000448 _____ () C:\Users\Samuel\AppData\Roaming\com.remotehd.RemoteHelper.plist
2013-03-11 20:10 - 2014-06-21 22:50 - 0001219 _____ () C:\Users\Samuel\AppData\Roaming\MPQEditor.ini
2014-01-17 15:50 - 2014-01-17 16:37 - 0000096 _____ () C:\Users\Samuel\AppData\Roaming\version2.xml
2013-10-03 07:15 - 2013-10-03 07:15 - 0001877 _____ () C:\Users\Samuel\AppData\Roaming\VPNMasterFreeVPN.pbk
2012-06-24 23:04 - 2014-11-22 01:27 - 0001456 _____ () C:\Users\Samuel\AppData\Local\Adobe Save for Web 12.0 Prefs
2015-03-09 20:10 - 2015-09-28 10:55 - 0001456 _____ () C:\Users\Samuel\AppData\Local\Adobe Save for Web 13.0 Prefs
2012-06-10 13:55 - 2015-08-22 21:50 - 0010240 _____ () C:\Users\Samuel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-05-31 15:38 - 2013-05-31 15:38 - 0000094 _____ () C:\Users\Samuel\AppData\Local\fusioncache.dat
2015-10-16 14:43 - 2015-10-16 14:43 - 0013922 _____ () C:\Users\Samuel\AppData\Local\recently-used.xbel
2012-09-22 12:38 - 2012-09-22 12:38 - 0000017 _____ () C:\Users\Samuel\AppData\Local\resmon.resmoncfg
2015-10-01 23:58 - 2015-10-02 00:04 - 0000016 _____ () C:\ProgramData\autobk.inc
2014-05-27 16:31 - 2014-05-27 16:31 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2014-01-23 10:11 - 2014-01-23 10:11 - 0000040 _____ () C:\ProgramData\DT0001.dat
 
Files to move or delete:
====================
C:\ProgramData\DT0001.dat
 
 
Some files in TEMP:
====================
C:\Users\Samuel\AppData\Local\Temp\AcDeltree.exe
C:\Users\Samuel\AppData\Local\Temp\ammemb.dll
C:\Users\Samuel\AppData\Local\Temp\ammemb64.dll
C:\Users\Samuel\AppData\Local\Temp\FNP_ACT_InstallerCA.dll
C:\Users\Samuel\AppData\Local\Temp\ose00000.exe
C:\Users\Samuel\AppData\Local\Temp\SkypeSetup.exe
 
 
Some zero byte size files/folders:
==========================
C:\Windows\War3Unin.exe
 
==================== Bamital & volsnap =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2015-10-11 01:13
 
==================== End of FRST.txt ============================
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version:15-10-2015 01
Ran by Samuel (2015-10-17 11:36:43)
Running from C:\Users\Samuel\Desktop
Windows 7 Home Premium Service Pack 1 (X64) (2012-04-28 15:17:50)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-3399670195-734195552-4159410357-500 - Administrator - Disabled)
Guest (S-1-5-21-3399670195-734195552-4159410357-501 - Limited - Disabled)
Samuel (S-1-5-21-3399670195-734195552-4159410357-1002 - Administrator - Enabled) => C:\Users\Samuel
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Microsoft Security Essentials (Enabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A}
AS: Microsoft Security Essentials (Enabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
µTorrent (HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\uTorrent) (Version: 3.4.5.41202 - BitTorrent Inc.)
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Ableton Live 9 Suite (HKLM-x32\...\{7D87B740-9B3F-4F11-9A5E-907B5AF7DA54}) (Version: 9.0.0.0 - Ableton)
Ace of Spades (HKLM-x32\...\{6037B8AD-7D5B-4D50-9BCA-A586C44EEF34}) (Version: 0.75.015 - Ben Aksoy)
Actual Multiple Monitors 8.0 (HKLM-x32\...\Actual Multiple Monitors_is1) (Version: 8.0 - Actual Tools)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.6.0.19140 - Adobe Systems Incorporated)
Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated)
Adobe Photoshop CC 2014 (HKLM-x32\...\{D7A4F897-B20A-42D0-862D-CB5F6DB7391D}) (Version: 15.0 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.4.154 - Adobe Systems, Inc.)
Aegisub 3.0.4 (HKLM-x32\...\{24BC8B57-716C-444F-B46B-A3349B9164C5}_is1) (Version: 3.0.4 - Aegisub Team)
Aeria Ignite (HKLM-x32\...\Aeria Ignite 1.12.2553) (Version: 1.12.2553 - Aeria Games & Entertainment)
Aeria Ignite (HKLM-x32\...\Aeria Ignite) (Version: 1.12.2553 - Aeria Games & Entertainment)
Aeria Ignite (x32 Version: 1.12.2553 - Aeria Games & Entertainment) Hidden
Akamai NetSession Interface (HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Akamai) (Version:  - Akamai Technologies, Inc)
Apple Application Support (HKLM-x32\...\{D9DAD0FF-495A-472B-9F10-BAE430A26682}) (Version: 3.0.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Archeage (HKLM-x32\...\Glyph Archeage) (Version:  - Trion Worlds, Inc.)
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.11 Beta2 - Michael Tippach)
Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.10.1.0 - Asmedia Technology)
ASRock App Charger v1.0.4 (HKLM\...\ASRock App Charger_is1) (Version:  - ASRock Inc.)
Audacity 2.0.6 (HKLM-x32\...\Audacity_is1) (Version: 2.0.6 - Audacity Team)
Autodesk Material Library 2011 Medium Image library (HKLM-x32\...\{975951E7-14D0-49AF-A630-89680D12D7F6}) (Version: 2.0.0.49 - Autodesk)
Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version:  - )
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Borderlands 2 (HKLM-x32\...\Borderlands 2_is1) (Version:  - )
Bulk Rename Utility 2.7.1.2 (HKLM\...\Bulk Rename Utility_is1) (Version:  - TGRMN Software)
CamStudio 2.7.2 (HKLM\...\{04B83666-3A62-452B-85D3-70F8117F2329}_is1) (Version: 2.7.2 - CamStudio Open Source)
ClickRepair 3.9.1 and ClickRepairRT 1.3 (HKLM-x32\...\ClickRepair_is1) (Version:  - Caloundra Audio Restoration)
Composite 2012 64-bit (HKLM\...\{EA234BC3-39FE-4734-B72F-076086889F6D}) (Version: 7.0.0 - Autodesk)
Content Manager Assistant for PlayStation® (HKLM-x32\...\{4AC85673-668B-4CC4-8800-D28E29B77A90}) (Version: 2.10.6402.20 - Sony Computer Entertainment Inc.)
Cooler Master - Trigger Z (HKLM-x32\...\{5C1B3C27-86DD-42C8-B773-B65D0E304A5E}) (Version: 1.2.2 - Cooler Master)
Creative ALchemy Universal (HKLM-x32\...\ALchemy) (Version:  - )
Curse Client (HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\101a9f93b8f0bb6f) (Version: 5.1.1.820 - Curse)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
dBpoweramp CD Writer (HKLM-x32\...\dBpoweramp CD Writer) (Version: Release 4 - Illustrate)
dBpoweramp DSP Effects (HKLM-x32\...\dBpoweramp DSP Effects) (Version: Release 9 - Illustrate)
dBpoweramp Music Converter (HKLM-x32\...\dBpoweramp Music Converter) (Version: Release 14.4 - Illustrate)
Deluge 1.3.12 (HKLM-x32\...\Deluge) (Version:  - )
deviantART Favorites Downloader (HKLM-x32\...\{E8130429-DB23-4E81-AA37-82E9C233CBD0}) (Version: 1.2.0 - Dragoniade)
Diablo II (HKLM-x32\...\Diablo II) (Version:  - Blizzard Entertainment)
Dragon Age Toolset (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.01 - Electronic Arts, Inc.)
Dxtory version 2.0.122 (HKLM-x32\...\Dxtory2.0_is1) (Version: 2.0.122 - Dxtory Software)
eLicenser Control (HKLM-x32\...\eLicenser Control) (Version:  - Steinberg Media Technologies GmbH)
Exact Audio Copy 1.0beta3 (HKLM-x32\...\Exact Audio Copy) (Version: 1.0beta3 - Andre Wiethoff)
Explorer Suite IV (HKLM\...\Explorer Suite_is1) (Version:  - )
EZdrummer 2 32-bit (HKLM-x32\...\{7E36EB5B-0739-4DA7-BF26-E63DD2BECA76}) (Version: 2.0.0 - Toontrack)
EZdrummer 2 32-bit Update (HKLM-x32\...\{CDE1FC7E-3E9A-48BA-BBB9-65C2026CA0A2}) (Version: 2.0.1 - Toontrack)
f.lux (HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Flux) (Version:  - )
Façade (HKLM-x32\...\{24E34264-D483-477C-A9A0-4E53F69834CF}) (Version: 1.1.2 - Procedural Arts)
Fallout Mod Manager 0.13.21 (HKLM-x32\...\Generic Mod Manager_is1) (Version:  - Q, Timeslip)
FFmpeg v0.6.2 for Audacity (HKLM-x32\...\FFmpeg for Audacity_is1) (Version:  - )
FINAL FANTASY XIV - A Realm Reborn (HKLM-x32\...\{2B41E132-07DF-4925-A3D3-F2D1765CCDFE}) (Version: 1.0.0000 - SQUARE ENIX CO., LTD.)
FLAC 1.2.1b (remove only) (HKLM-x32\...\FLAC) (Version: 1.2.1b - Xiph.org)
FlacSquisher 1.3.1 (HKLM-x32\...\FlacSquisher) (Version: 1.3.1 - FlacSquisher)
Focusrite USB 2.0 Audio Driver 2.5.1 (HKLM\...\Focusrite USB 2.0 Audio Driver_is1) (Version: 2.5.1 - Focusrite Audio Engineering Limited.)
foobar2000 v1.1.11 (HKLM-x32\...\foobar2000) (Version: 1.1.11 - Peter Pawlowski)
Fraps (remove only) (HKLM-x32\...\Fraps) (Version:  - )
Free VPN version 3.0 (HKLM-x32\...\{353EDE50-22AA-419E-8D7B-2012134CF56E}_is1) (Version: 3.0 - VPNMaster Inc.)
GameMaker-Studio 1.2 (HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\GameMaker-Studio12) (Version:  - YoYo Games Ltd.)
Garena - League of Legends (HKLM-x32\...\LoL) (Version:  - Garena Online Pte Ltd.)
GCFScape 1.8.2 (HKLM\...\GCFScape_is1) (Version:  - Ryan Gregg)
Glyph (HKLM-x32\...\Glyph) (Version:  - Trion Worlds, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 46.0.2490.71 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden
gpedt.msc 1.0 (HKLM-x32\...\{10B9C608-BF7C-4CCF-A658-C01D969DCA21}_is1) (Version:  - Richard)
GTA IV: San Andreas (HKLM-x32\...\{678C5966-3496-4A5C-8436-F6089A0C7DE1}) (Version: 0.5.4.0 - GTA IV: San Andreas Mod Team)
Guild Wars 2 (HKLM-x32\...\Guild Wars 2) (Version:  - NCsoft Corporation, Ltd.)
HandBrake 0.9.9.1 (HKLM-x32\...\HandBrake) (Version: 0.9.9.1 - )
Hearthstone (HKLM-x32\...\Hearthstone) (Version:  - Blizzard Entertainment)
Hex Workshop v5 (HKLM-x32\...\{4E6258E0-F48C-48D9-BB36-007D6C78EC82}) (Version: 5.0.0 - BreakPoint Software)
IK Multimedia Authorization Manager version 1.0.5 (HKLM\...\{85BC0DCB-69E5-4279-AA25-F108EF896588}_is1) (Version: 1.0.5 - IK Multimedia)
ImageToSound  (HKLM-x32\...\ImageToSound) (Version:  - )
Intel® Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3347 - Intel Corporation)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.32 - Irfan Skiljan)
iSkysoft DRM Removal(Build 1.0.4.0) (HKLM-x32\...\iSkysoft DRM Removal_is1) (Version:  - iSkysoft Software)
iTunes (HKLM\...\{5A68A656-979F-4168-8795-E2E368AA4DC2}) (Version: 11.2.2.3 - Apple Inc.)
Janetter 4.2.3.0 (HKLM-x32\...\Janetter2_is1) (Version:  - Jane, Inc.)
JavaFX 2.1.1 (HKLM-x32\...\{1111706F-666A-4037-7777-211328764D10}) (Version: 2.1.1 - Oracle Corporation)
JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH)
LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version:  - )
Last.fm Scrobbler 2.1.36 (HKLM-x32\...\LastFM_is1) (Version:  - Last.fm)
LAV Filters 0.58.2 (HKLM-x32\...\lavfilters_is1) (Version: 0.58.2 - Hendrik Leppkes)
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games)
League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden
LINE (HKLM-x32\...\LINE) (Version: 3.3.2.102 - NHN Japan)
MakeMKV v1.8.12 (HKLM-x32\...\MakeMKV) (Version: v1.8.12 - GuinpinSoft inc)
Malwarebytes Anti-Malware version 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
ME80v2.1 Demo (HKLM\...\{5E1AC790-FCCC-4850-832B-A81627CEA15C}) (Version: 2.1.0 - Memory Moon)
Medieval CUE Splitter (HKLM-x32\...\{B96D2269-568B-4CBF-9332-12FAE8B158F7}) (Version: 1.2.0 - Medieval Software)
Metal Gear Solid (HKLM-x32\...\Metal Gear Solid) (Version:  - )
MetalGearSolid2 Substance (HKLM-x32\...\{2184D9EA-4E5B-43FD-914E-4563CF028C94}) (Version: 1.00.000 - )
Microsoft .NET Framework 1.1 (HKLM-x32\...\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft AppLocale (HKLM-x32\...\{394BE3D9-7F57-4638-A8D1-1D88671913B7}) (Version: 1.0.0 - MS)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Primary Interoperability Assemblies 2010 (HKLM-x32\...\{FA8E7AF5-C70E-3274-9740-9E697FBD5BB7}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.8.204.0 - Microsoft Corporation)
Microsoft SQL Server 2005 (HKLM-x32\...\Microsoft SQL Server 2005) (Version:  - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server Native Client (HKLM\...\{9ACF3FDB-C8E6-444C-8C64-13A221F7BFFD}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server Setup Support Files (English) (HKLM-x32\...\{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{B636C9B9-A3F2-4DCE-ADCC-72E095018385}) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft Text-to-Speech Engine 4.0 (English) (HKLM-x32\...\MSTTS) (Version:  - )
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{887868A2-D6DE-3255-AA92-AA0B5A59B874}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Windows Application Compatibility Database (HKLM\...\{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb) (Version:  - )
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
minimoog-v 2.5.1 (HKLM-x32\...\minimoogv2_5_is1) (Version: 2.5.1 - Arturia)
mIRC (HKLM-x32\...\mIRC) (Version: 7.29 - mIRC Co. Ltd.)
MKVToolNix 7.1.0 (64bit) (HKLM-x32\...\MKVToolNix) (Version: 7.1.0 - Moritz Bunkus)
MotioninJoy Gamepad tool 0.7.1001 (HKLM\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: 0.7.1001 - www.motioninjoy.com)
Mozilla Firefox 37.0.2 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 37.0.2 (x86 en-US)) (Version: 37.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 37.0.2 - Mozilla)
Mp3tag v2.62 (HKLM-x32\...\Mp3tag) (Version: v2.62 - Florian Heidenreich)
MPC-HC 1.7.8 (HKLM-x32\...\{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1) (Version: 1.7.8 - MPC-HC Team)
Mumble 1.2.5 (HKLM-x32\...\{C7BC557D-8C8B-4F5F-83AB-D20C58CF4575}) (Version: 1.2.5 - Thorvald Natvig)
MusicBee 2.4 (HKLM-x32\...\MusicBee) (Version: 2.4 - Steven Mayall)
MySQL Connector C++ 1.1.3 (HKLM\...\{5C7A1ED6-DC5F-4017-B363-3E80644B4BD0}) (Version: 1.1.3 - Oracle and/or its affiliates)
MySQL Connector J (HKLM-x32\...\{E8528562-D612-4331-8A5B-57532D89716B}) (Version: 5.1.31 - Oracle Corporation)
MySQL Connector Net 6.8.3 (HKLM-x32\...\{38157422-F952-42F7-88AA-CC16A63CD109}) (Version: 6.8.3 - Oracle)
MySQL Connector/C 6.1 (HKLM\...\{4E2AAB30-1E42-4ACA-B1A9-3AE8629D0C89}) (Version: 6.1.5 - Oracle Corporation)
MySQL Documents 5.6 (HKLM-x32\...\{790BC099-47CC-4215-9BF3-B20AC3D348B2}) (Version: 5.6.19 - Oracle Corporation)
MySQL Examples and Samples 5.6 (HKLM-x32\...\{8934A43E-D901-4337-8313-0C084FBB8ADE}) (Version: 5.6.19 - Oracle Corporation)
MySQL Installer (HKLM-x32\...\{F0A890B5-DE46-4468-A1DF-8F4DE5C478D0}) (Version: 1.3.6.0 - Oracle Corporation)
MySQL Notifier 1.1.5 (HKLM-x32\...\{DB02F4B3-3FC4-4FED-B2A2-7CDCF88D87D3}) (Version: 1.1.5 - Oracle)
MySQL Server 5.6 (HKLM\...\{FB2E13E5-05CE-4C27-B645-A6FB7D0AB412}) (Version: 5.6.19 - Oracle Corporation)
MySQL Utilities (HKLM-x32\...\{AD74E509-A826-4C30-93C3-73E2DFE271F2}) (Version: 1.4.3 - Oracle Corporation)
MySQL Workbench 6.1 CE (HKLM-x32\...\{AD95295B-0279-43B6-A873-F12A1D1CD146}) (Version: 6.1.7 - Oracle Corporation)
Native Instruments Kontakt 5 (HKLM-x32\...\Native Instruments Kontakt 5) (Version: 5.3.0.6464 - Native Instruments)
Neverwinter (HKLM-x32\...\Neverwinter) (Version:  - Cryptic Studios)
Nexon Game Manager (HKLM-x32\...\{EA2DB6E0-72C5-4ef9-A3A0-E6705F4A6A9E}) (Version:  - )
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.45.1 - Black Tree Gaming)
nHancer (HKLM-x32\...\nHancer) (Version: 2.5.0900 - KSE)
nHancer (Version: 2.5.0900 - KSE) Hidden
NifSkope (remove only) (HKLM-x32\...\NifSkope) (Version:  - )
NVIDIA GeForce Experience 2.4.5.28 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.4.5.28 - NVIDIA Corporation)
NVIDIA Graphics Driver 355.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 355.82 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation)
NVIDIA Photoshop Plug-ins 64 bit (HKLM-x32\...\{5E386C5B-CDE7-435A-B5C9-EC73A1B0553A}) (Version: 8.50 - )
NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Oblivion mod manager 1.1.12 (HKLM-x32\...\Oblivion mod manager_is1) (Version:  - Timeslip)
OldSchool RuneScape Launcher 1.2.5 (HKLM-x32\...\{375893B6-C8DB-42B0-9547-6E4437542C33}) (Version: 1.2.5 - Jagex Ltd)
Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version:  - )
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
OpenMW 0.34.0 (HKLM-x32\...\OpenMW 0.34.0) (Version: 0.34.0 - OpenMW.org)
OpenVPN 2.3.0-I001  (HKLM\...\OpenVPN) (Version: 2.3.0-I001 - )
paint.net (HKLM\...\{DF3A46D9-67B3-44B2-9D01-25C8BA772C8A}) (Version: 4.0.6 - dotPDN LLC)
Path of Exile (HKLM-x32\...\{90A4562F-D4A1-4B65-906D-41F236CF6902}) (Version: 0.9.13.22054 - Grinding Gear Games)
PCSX2 - Playstation 2 Emulator (HKLM-x32\...\pcsx2-r5350) (Version:  - )
PFPortChecker 1.0.39 (HKLM-x32\...\PFPortChecker) (Version: 1.0.39 - Portforward.com)
PHANTASY STAR ONLINE 2 (HKLM-x32\...\http://pso2.jp/appid/release_is1)(Version:  - SEGA)
PhreePhuzz version 1.0.4 (HKLM\...\PhreePhuzz_is1) (Version: 1.0.4 - LVC-Audio)
Pingzapper version 2.0.1 (HKLM-x32\...\{7FD61982-5436-439B-B5D0-36F0536FF8BF}_is1) (Version: 2.0.1 - Pingzapper)
Pokemon Online 2.0.07 (HKLM-x32\...\{2C08D7E7-9EE1-4A08-AFE0-745F02DCD6A4}_is1) (Version:  - Dreambelievers)
PowerISO (HKLM-x32\...\PowerISO) (Version: 6.0 - Power Software Ltd)
Prime World version 9.8.5 (HKLM-x32\...\{F6F3C462-2729-4555-8A95-CC317A90F8FF}_is1) (Version: 9.8.5 - Nival)
PSP ISO Compressor (HKLM-x32\...\{D47087E7-AA15-4D1D-8C0A-60F7E446D597}) (Version: 1.4.0 - danny_kay1710)
PureVPN (HKLM-x32\...\PureVPN_is1) (Version: 2 - PureVPN)
puush (HKLM-x32\...\{C3592426-531E-4110-911D-BFECE2CE284B}) (Version: 1.0.0.0 - Dean Herbert)
Python 2.7.3 (HKLM-x32\...\{C0C31BCC-56FB-42a7-8766-D29E1BD74C7C}) (Version: 2.7.3150 - Python Software Foundation)
Quest4Bush (HKLM-x32\...\Quest4Bush) (Version:  - GIMF)
QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.)
Razer DeathAdder™ Mouse (HKLM-x32\...\{EB1B8449-CD8F-485B-ADB6-02FBCFE180D3}) (Version: 3.05 - Razer USA Ltd.)
Razer Megalodon Firmware Updater (HKLM-x32\...\{C67A3F9D-E55D-4288-B4EC-1B9863EFB288}) (Version: 2.12.02 - Razer USA Ltd.)
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.21.26914 - Razer Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.44.421.2011 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7246 - Realtek Semiconductor Corp.)
Remote Helper (HKLM-x32\...\{C14ACB14-1995-493E-8543-E560071197AB}) (Version: 4.2.9 - Remote HD)
Resource Hacker Version 3.6.0 (HKLM-x32\...\ResourceHacker_is1) (Version:  - )
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.6.1 - Rockstar Games)
RPG Maker 2003 v1.08 (HKLM-x32\...\RPG Maker 2003_is1) (Version:  - Enterbrain, Inc.)
RX-SSTV Version 1.3.1b (HKLM-x32\...\RX-SSTV_is1) (Version:  - ON6MU)
Scribblenauts Unlimited (HKLM-x32\...\Scribblenauts Unlimited_is1) (Version:  - )
SecondLifeViewer (HKLM-x32\...\SecondLifeViewer) (Version: 3.8.4.305119 - Linden Research, Inc.)
Shadow Of Mordor version Shadow Of Mordor (HKLM-x32\...\Shadow Of Mordor_is1) (Version: Shadow Of Mordor - )
SHIELD Streaming (Version: 4.1.2000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.4.5.28 - NVIDIA Corporation) Hidden
Skype™ 6.21 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.21.104 - Skype Technologies S.A.)
SoulseekQt (HKLM-x32\...\SoulseekQt) (Version:  - )
Speccy (HKLM\...\Speccy) (Version: 1.26 - Piriform)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Sumotori Dreams (HKLM-x32\...\Sumotori Dreams) (Version:  - )
Sumotori Full Version (HKLM-x32\...\Sumotori Full Version) (Version:  - )
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Requirements Lab (HKLM-x32\...\{8DCAB1D8-F20C-4733-9B5F-646DDFEB59C9}) (Version: 6.1.1.0 - Husdawg, LLC)
Tablet Driver V5.02 (HKLM-x32\...\TabletDriver) (Version:  - )
TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - )
TeamSpeak 3 Client (HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.36897 - TeamViewer)
TERA (HKLM-x32\...\{0FCDA0F8-F3E5-402E-B9B6-13CB2B01182B}) (Version: 1.41 - En Masse Entertainment)
The Beginner's Guide (HKLM-x32\...\Steam App 303210) (Version:  - Everything Unlimited Ltd.)
The Witcher 2 (HKLM-x32\...\{F0A209B7-7F85-4BDD-8F1F-B98EEAD9E04B}) (Version: 1.00.0000 - CD Projekt Red)
Toontown Rewritten (HKLM-x32\...\Toontown Rewritten) (Version: 00.00.00.00 - The TTR Team)
TunnelBear (HKLM-x32\...\{8f67e3e6-0ad7-4b14-af73-1db4b6990d69}) (Version: 2.3.15.0 - TunnelBear)
TunnelBear (x32 Version: 2.3.15.0 - TunnelBear) Hidden
Unity (HKLM-x32\...\Unity) (Version:  - Unity Technologies ApS)
Vegas Pro 12.0 (64-bit) (HKLM\...\{BD422D00-5232-11E3-A6F3-F04DA23A5C58}) (Version: 12.0.770 - Sony)
Ventrilo Client for Windows x64 (HKLM\...\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}) (Version: 3.0.8.0 - Flagship Industries, Inc.)
Vindictus (HKLM-x32\...\Vindictus) (Version:  - )
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
VTFEdit 1.3.3 (HKLM\...\VTFEdit_is1) (Version:  - Neil Jedrzejewski & Ryan Gregg)
Wakfu (HKLM-x32\...\Wakfu) (Version:  - Ankama Games)
Warcraft III eSK 1.26.0.6401 (HKLM-x32\...\Warcraft III eSK 1.26.0.6401) (Version:  - )
Weiss Engineering Saracon (HKLM-x32\...\Saracon) (Version: 01.61-27 - )
Windows Driver Package - Focusrite USB 2.0 Audio Driver (09/25/2013 2.5.128.1) (HKLM\...\CF1FC201D237269A9CD51A3A6B14ADBF67175C32) (Version: 09/25/2013 2.5.128.1 - Focusrite)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.)
WinRAR 4.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.11.0 - win.rar GmbH)
Wondershare Video Converter Ultimate(Build 5.7.5.4) (HKLM-x32\...\Wondershare Video Converter Ultimate_is1) (Version:  - Wondershare Software)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version:  - Blizzard Entertainment)
World of Warcraft Model Viewer 64-bit (HKLM\...\{93D15425-809E-499E-9E69-A0C1DE8EE741}) (Version: 07.04.000 - WoWModelViewer.org)
Wrye Bash (HKLM-x32\...\Wrye Bash) (Version: 0.3.0.3 - Wrye & Wrye Bash Development Team)
wxPython 2.8.12.1 (unicode) for Python 2.7 (HKLM-x32\...\wxPython2.8-unicode-py27_is1) (Version: 2.8.12.1-unicode - Total Control Software)
XAMPP (HKLM-x32\...\xampp) (Version: 1.8.3-3 - Bitnami)
XLink Kai (HKLM-x32\...\{68698000-12EF-4B09-8A80-1C44BE7FF76B}) (Version: 7.4.26.0 - Team XLink)
XSplit Broadcaster (HKLM-x32\...\{6459F338-FE52-4034-BCA7-74772DA0F24D}) (Version: 1.3.1403.1202 - SplitMediaLabs)
Xvid Video Codec (HKLM-x32\...\Xvid Video Codec 1.3.2) (Version: 1.3.2 - Xvid Team)
xy-VSFilter 3.0.0.211 (HKLM-x32\...\xy-VSFilter_is1) (Version: 3.0.0.211 - xy-VSFilter Team)
Yume Nikki 0.10 English (HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\Yume Nikki 0.10 English) (Version:  - )
剑灵_腾讯 (HKLM-x32\...\剑灵_腾讯) (Version:  - Tencent)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Samuel\AppData\Roaming\Dropbox\bin\Dropbox.exe /autoplay => No File
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Samuel\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
 
==================== Restore Points =========================
 
ATTENTION: System Restore is disabled
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2009-07-14 10:34 - 2015-10-16 21:26 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
 
127.0.0.1       localhost
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {15AFAF0B-FEFB-4B14-B086-CFDB691E5F58} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-02] (Google Inc.)
Task: {207E0380-C7C0-4EF1-8373-6E846D42E797} - System32\Tasks\AdobeAAMUpdater-1.0-Zodiac-II-Samuel => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe
Task: {26A1992B-8BA2-4C09-93ED-4F38E323210B} - System32\Tasks\{E500FD1F-56FC-4BBF-AA83-7BEBBBBD3B0D} => Chrome.exe hxxp://ui.skype.com/ui/0/6.7.0.102/en/abandoninstall?page=tsPlugin
Task: {3430B9E5-AF13-402A-824E-128BE74F3226} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-09-14] (Adobe Systems Incorporated)
Task: {3A0A8816-2CF0-4D76-AC98-356D3B3C6C3D} - System32\Tasks\qyqvfov => Rundll32.exe "C:\Windows\SysWOW64\NOISEQ.dll",ERTQUAZDDU
Task: {3ADD33F3-F0F4-42F7-8F0D-38CFBB9BA079} - System32\Tasks\gg_uac_daemon_Samuel => C:\Program Files (x86)\Garena Plus\ggdllhost.exe
Task: {AC30052F-DF8E-4D85-882D-A0EF795CA364} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-02] (Google Inc.)
Task: {B334D14E-23FD-42A3-8A87-4D0EECCA1825} - \AutoKMS -> No File <==== ATTENTION
Task: {CE543AB8-A3EE-4F5E-B4E7-72AC71F64B96} - System32\Tasks\MySQLNotifierTask => Z:\Applications\MySQL\MySQL Notifier 1.1.5\MySQLNotifier.exe
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
 
==================== Loaded Modules (Whitelisted) ==============
 
2014-07-05 17:09 - 2014-01-14 23:54 - 10966528 _____ () Z:\xampp\mysql\bin\mysqld.exe
2014-10-29 19:02 - 2012-06-11 11:57 - 00679424 ___SH () Z:\Applications\Pingzapper\PZService.exe
2015-06-24 03:11 - 2015-06-24 03:11 - 00187048 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
2015-07-17 18:30 - 2015-07-17 18:30 - 00035264 _____ () Z:\Applications\TunnelBear\TBear.Maintenance.exe
2012-04-29 17:42 - 2012-02-17 20:55 - 00193536 _____ () C:\Program Files\WinRAR\rarext.dll
2012-04-28 23:28 - 2011-04-15 10:16 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2012-01-10 14:41 - 2015-03-30 12:06 - 00568904 _____ () C:\Program Files (x86)\puush\puush.exe
2015-06-02 01:07 - 2015-08-25 22:24 - 00116344 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2012-04-29 01:30 - 2012-01-14 12:56 - 00248832 _____ () C:\Program Files (x86)\Razer\DeathAdder\razerhid.exe
2012-04-29 01:30 - 2011-04-14 11:48 - 01758208 _____ () C:\Program Files (x86)\Razer\DeathAdder\vdDaemon.exe
2014-07-05 17:07 - 2013-07-08 19:34 - 00114688 _____ () Z:\xampp\apache\bin\pcre.dll
2014-07-05 17:09 - 2014-02-06 06:54 - 00128512 _____ () Z:\XAMPP\php\libpq.dll
2014-04-23 16:05 - 2014-04-23 16:05 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-04-23 16:04 - 2014-04-23 16:04 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2015-04-23 18:04 - 2015-05-23 09:48 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2015-09-14 14:25 - 2015-10-06 00:18 - 00778752 _____ () Z:\Games\Steam\SDL2.dll
2015-09-14 14:25 - 2015-07-04 00:12 - 04962816 _____ () Z:\Games\Steam\v8.dll
2015-09-14 14:25 - 2015-07-04 00:12 - 01556992 _____ () Z:\Games\Steam\icui18n.dll
2015-09-14 14:25 - 2015-07-04 00:12 - 01187840 _____ () Z:\Games\Steam\icuuc.dll
2015-09-14 14:25 - 2015-10-15 04:56 - 02423376 _____ () Z:\Games\Steam\video.dll
2015-09-14 14:25 - 2015-09-24 08:33 - 02549248 _____ () Z:\Games\Steam\libavcodec-56.dll
2015-09-14 14:25 - 2015-09-24 08:33 - 00442880 _____ () Z:\Games\Steam\libavutil-54.dll
2015-09-14 14:25 - 2015-09-24 08:33 - 00491008 _____ () Z:\Games\Steam\libavformat-56.dll
2015-09-14 14:25 - 2015-09-24 08:33 - 00332800 _____ () Z:\Games\Steam\libavresample-2.dll
2015-09-14 14:25 - 2015-09-24 08:33 - 00485888 _____ () Z:\Games\Steam\libswscale-3.dll
2015-09-14 14:25 - 2015-10-15 04:56 - 00705104 _____ () Z:\Games\Steam\bin\chromehtml.DLL
2015-09-14 14:25 - 2015-10-10 02:13 - 00193024 _____ () Z:\Games\Steam\bin\openvr_api.dll
2015-05-20 10:29 - 2015-05-20 10:29 - 00137728 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll
2015-09-14 14:25 - 2015-10-09 06:20 - 45010208 _____ () Z:\Games\Steam\bin\libcef.dll
2014-07-25 02:01 - 2014-07-25 02:01 - 00103936 _____ () Z:\Applications\MusicBee\MusicBeeBass.dll
2007-09-16 17:39 - 2007-09-16 17:39 - 00155648 _____ () Z:\Applications\MusicBee\libFLAC.dll
2014-05-04 01:48 - 2014-05-04 01:48 - 00100352 _____ () Z:\Applications\Deluge\win32api.pyd
2014-05-04 01:46 - 2014-05-04 01:46 - 00110080 _____ () Z:\Applications\Deluge\pywintypes26.dll
2014-05-04 01:49 - 2014-05-04 01:49 - 00396800 _____ () Z:\Applications\Deluge\pythoncom26.dll
2010-08-25 02:47 - 2010-08-25 02:47 - 00040448 _____ () Z:\Applications\Deluge\_socket.pyd
2010-08-25 02:48 - 2010-08-25 02:48 - 00720896 _____ () Z:\Applications\Deluge\_ssl.pyd
2011-04-09 16:58 - 2011-04-09 16:58 - 00058368 _____ () Z:\Applications\Deluge\glib._glib.pyd
2011-04-09 16:58 - 2011-04-09 16:58 - 00113152 _____ () Z:\Applications\Deluge\gobject._gobject.pyd
2015-09-12 23:59 - 2015-09-12 23:59 - 00019968 _____ () Z:\Applications\Deluge\zope.interface._zope_interface_coptimizations.pyd
2015-09-12 23:59 - 2015-09-12 23:59 - 00006656 _____ () Z:\Applications\Deluge\twisted.python._initgroups.pyd
2010-08-25 02:48 - 2010-08-25 02:48 - 00073728 _____ () Z:\Applications\Deluge\_ctypes.pyd
2010-08-25 02:48 - 2010-08-25 02:48 - 00286208 _____ () Z:\Applications\Deluge\_hashlib.pyd
2011-09-02 19:55 - 2011-09-02 19:55 - 00010752 _____ () Z:\Applications\Deluge\OpenSSL.rand.pyd
2011-09-02 19:55 - 2011-09-02 19:55 - 00056320 _____ () Z:\Applications\Deluge\OpenSSL.crypto.pyd
2011-09-02 19:55 - 2011-09-02 19:55 - 00043520 _____ () Z:\Applications\Deluge\OpenSSL.SSL.pyd
2014-05-04 01:47 - 2014-05-04 01:47 - 00036864 _____ () Z:\Applications\Deluge\win32process.pyd
2010-08-25 02:48 - 2010-08-25 02:48 - 00011776 _____ () Z:\Applications\Deluge\select.pyd
2014-05-04 01:47 - 2014-05-04 01:47 - 00119808 _____ () Z:\Applications\Deluge\win32file.pyd
2014-05-04 01:47 - 2014-05-04 01:47 - 00018432 _____ () Z:\Applications\Deluge\win32event.pyd
2014-05-04 01:48 - 2014-05-04 01:48 - 00167936 _____ () Z:\Applications\Deluge\win32gui.pyd
2011-04-09 17:00 - 2011-04-09 17:00 - 01882624 _____ () Z:\Applications\Deluge\gtk._gtk.pyd
2012-02-09 07:43 - 2012-02-09 07:43 - 01294335 _____ () Z:\Applications\Deluge\libcairo-2.dll
2012-02-09 07:43 - 2012-02-09 07:43 - 00279059 _____ () Z:\Applications\Deluge\libfontconfig-1.dll
2012-02-09 07:43 - 2012-02-09 07:43 - 00143096 _____ () Z:\Applications\Deluge\libexpat-1.dll
2012-02-09 07:43 - 2012-02-09 07:43 - 00538324 _____ () Z:\Applications\Deluge\freetype6.dll
2012-02-09 07:43 - 2012-02-09 07:43 - 00230529 _____ () Z:\Applications\Deluge\libpng14-14.dll
2012-02-09 07:43 - 2012-02-09 07:43 - 00100352 _____ () Z:\Applications\Deluge\zlib1.dll
2010-11-03 04:34 - 2010-11-03 04:34 - 00069632 _____ () Z:\Applications\Deluge\cairo._cairo.pyd
2011-04-09 16:58 - 2011-04-09 16:58 - 00263168 _____ () Z:\Applications\Deluge\gio._gio.pyd
2011-04-09 17:01 - 2011-04-09 17:01 - 00111616 _____ () Z:\Applications\Deluge\pango.pyd
2011-04-09 17:01 - 2011-04-09 17:01 - 00208384 _____ () Z:\Applications\Deluge\atk.pyd
2011-04-09 17:01 - 2011-04-09 17:01 - 00017920 _____ () Z:\Applications\Deluge\pangocairo.pyd
2011-04-09 17:01 - 2011-04-09 17:01 - 00018944 _____ () Z:\Applications\Deluge\gtk.glade.pyd
2012-02-09 07:43 - 2012-02-09 07:43 - 00168833 _____ () Z:\Applications\Deluge\libglade-2.0-0.dll
2012-02-09 07:43 - 2012-02-09 07:43 - 01225225 _____ () Z:\Applications\Deluge\libxml2-2.dll
2010-08-25 02:48 - 2010-08-25 02:48 - 00585728 _____ () Z:\Applications\Deluge\unicodedata.pyd
2014-05-04 01:47 - 2014-05-04 01:47 - 00024064 _____ () Z:\Applications\Deluge\win32pipe.pyd
2015-09-12 23:58 - 2015-09-12 23:58 - 01029120 _____ () Z:\Applications\Deluge\PIL._imaging.pyd
2015-09-20 06:34 - 2015-09-20 06:34 - 00156686 _____ () Z:\Applications\Deluge\lib\gtk-2.0\2.10.0\engines\libmurrine.dll
2012-02-09 07:43 - 2012-02-09 07:43 - 00062248 _____ () Z:\Applications\Deluge\lib\gtk-2.0\2.10.0\engines\libpixmap.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
AlternateDataStreams: C:\ProgramData\Temp:DED17083
AlternateDataStreams: C:\Users\Samuel\Local Settings:dBx60XsvYsG61xwsojRanjS
AlternateDataStreams: C:\Users\Samuel\AppData\Local:dBx60XsvYsG61xwsojRanjS
AlternateDataStreams: C:\Users\Samuel\AppData\Local\Application Data:dBx60XsvYsG61xwsojRanjS
AlternateDataStreams: C:\Users\Samuel\AppData\Local\Temp:JQX8ZjKxTW5moBIQHh164fINp
AlternateDataStreams: C:\Users\Samuel\AppData\Local\Temporary Internet Files:HB9Xw3xdXJFXHOjGIl7CQmGX4K
AlternateDataStreams: C:\Users\Samuel\AppData\Local\Temporary Internet Files:kpPHkXdaCG7yMzVlZcC9M1eT0bxb
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver"
 
==================== EXE Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
IE trusted site: HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\aeriagames.com -> hxxps://aeriagames.com
IE trusted site: HKU\S-1-5-21-3399670195-734195552-4159410357-1002\...\aeriagames.com -> hxxp://aeriagames.com
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(Currently there is no automatic fix for this section.)
 
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Content Manager Assistant for PlayStation®.lnk => C:\Windows\pss\Content Manager Assistant for PlayStation®.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^Samuel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Rainmeter.exe - Shortcut.lnk => C:\Windows\pss\Rainmeter.exe - Shortcut.lnk.Startup
MSCONFIG\startupreg: AdobeCS5ServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
MSCONFIG\startupreg: Aeria Ignite => "C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe" silent
MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
MSCONFIG\startupreg: BambooCore => C:\Program Files (x86)\Bamboo Dock\BambooCore.exe
MSCONFIG\startupreg: DS3 Tool => C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe -mini
MSCONFIG\startupreg: GarenaPlus => "C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe" -autolaunch
MSCONFIG\startupreg: iTunesHelper => "Z:\Applications\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: LogMeIn Hamachi Ui => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
MSCONFIG\startupreg: WTClient => WTClient.exe
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [TCP Query User{D7CD70F8-B91E-4963-9F58-6E5CD024A7A3}C:\program files (x86)\deluge\deluge.exe] => (Allow) C:\program files (x86)\deluge\deluge.exe
FirewallRules: [UDP Query User{7BDBD88B-EE5C-47E1-A309-FC7662644E38}C:\program files (x86)\deluge\deluge.exe] => (Allow) C:\program files (x86)\deluge\deluge.exe
FirewallRules: [TCP Query User{1D033D43-9207-4F84-A2EB-B95C3DE081C6}Z:\games\steam\steamapps\common\grand theft auto iv episodes from liberty city\eflc\eflc.exe] => (Allow) Z:\games\steam\steamapps\common\grand theft auto iv episodes from liberty city\eflc\eflc.exe
FirewallRules: [UDP Query User{5DEA550F-5891-4A9C-92AA-FD2A9C0BBB82}Z:\games\steam\steamapps\common\grand theft auto iv episodes from liberty city\eflc\eflc.exe] => (Allow) Z:\games\steam\steamapps\common\grand theft auto iv episodes from liberty city\eflc\eflc.exe
FirewallRules: [TCP Query User{F1B5EBE3-5FB2-4E6D-82BF-9AAC6E70AC76}C:\users\samuel\downloads\downloader_diablo2_enus.exe] => (Allow) C:\users\samuel\downloads\downloader_diablo2_enus.exe
FirewallRules: [UDP Query User{9C9816B5-1606-4F2C-B654-D06CF9A19516}C:\users\samuel\downloads\downloader_diablo2_enus.exe] => (Allow) C:\users\samuel\downloads\downloader_diablo2_enus.exe
FirewallRules: [{DABDC0D3-A84A-43B0-BA5C-238084412652}] => (Allow) Z:\Games\World of Warcraft\Launcher.exe
FirewallRules: [{802AF54F-5642-4820-B845-10B0ADA77F8A}] => (Allow) Z:\Games\World of Warcraft\Launcher.exe
FirewallRules: [{3D9BF15E-AE20-4ECF-9752-BBF15BDC50A8}] => (Allow) Z:\Games\World of Warcraft\Launcher.patch.exe
FirewallRules: [{BFFD75BA-7912-4F95-8BE5-AA5858994225}] => (Allow) Z:\Games\World of Warcraft\Launcher.patch.exe
FirewallRules: [TCP Query User{06E78BB7-04C5-4440-B85A-56584D981842}Z:\games\world of warcraft\temp\wow-4.2.1.2736-enus-tools-downloader.exe] => (Allow) Z:\games\world of warcraft\temp\wow-4.2.1.2736-enus-tools-downloader.exe
FirewallRules: [UDP Query User{6ADEAD2C-179F-4750-BE9B-FC2C4841B996}Z:\games\world of warcraft\temp\wow-4.2.1.2736-enus-tools-downloader.exe] => (Allow) Z:\games\world of warcraft\temp\wow-4.2.1.2736-enus-tools-downloader.exe
FirewallRules: [TCP Query User{01719CBB-0291-4E91-9758-172819A7BBD9}Z:\games\world of warcraft\backgrounddownloader.exe] => (Allow) Z:\games\world of warcraft\backgrounddownloader.exe
FirewallRules: [UDP Query User{21CA5EAD-E3A9-4034-83B3-7BD04FB2641D}Z:\games\world of warcraft\backgrounddownloader.exe] => (Allow) Z:\games\world of warcraft\backgrounddownloader.exe
FirewallRules: [{3842655A-829B-49DA-840F-4A3C4824C67C}] => (Allow) C:\Program Files\Ventrilo\Ventrilo.exe
FirewallRules: [{EE83BBCC-6E2E-4B5D-A73D-1D8D6FF50CFF}] => (Allow) C:\Program Files\Ventrilo\Ventrilo.exe
FirewallRules: [TCP Query User{6AD42430-FFA7-45EC-A526-A099A9629975}C:\users\samuel\downloads\diablo-iii-8370-ensg-installer-downloader.exe] => (Allow) C:\users\samuel\downloads\diablo-iii-8370-ensg-installer-downloader.exe
FirewallRules: [UDP Query User{63FFE837-CBB5-4121-B646-C7873F2C6AF4}C:\users\samuel\downloads\diablo-iii-8370-ensg-installer-downloader.exe] => (Allow) C:\users\samuel\downloads\diablo-iii-8370-ensg-installer-downloader.exe
FirewallRules: [{158DBD8F-285E-4817-932B-58EC4B491A83}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.524\Agent.exe
FirewallRules: [{0FCE77F5-5C5E-4372-96DC-2EB069BE8349}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.524\Agent.exe
FirewallRules: [{32B7E1CC-3160-4DA5-B81B-A75880C5C1DE}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.954\Agent.exe
FirewallRules: [{3C258AD4-52F3-489B-B2E9-E507362D6ECA}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.954\Agent.exe
FirewallRules: [{3697186A-16D2-462E-8D29-86FEEC69FF15}] => (Allow) Z:\Games\Diablo III\Diablo III.exe
FirewallRules: [{E039A19F-1529-487A-A31A-37453E922421}] => (Allow) Z:\Games\Diablo III\Diablo III.exe
FirewallRules: [TCP Query User{60ADAEA9-F264-4867-8D2E-395A7AE16781}C:\programdata\battle.net\agent\agent.976\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.976\agent.exe
FirewallRules: [UDP Query User{83C373EE-E9FB-453B-9D24-EE730D24069A}C:\programdata\battle.net\agent\agent.976\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.976\agent.exe
FirewallRules: [TCP Query User{AF9B4EE0-2160-4A78-8C2C-FD96D7CB1D13}C:\programdata\battle.net\agent\agent.998\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.998\agent.exe
FirewallRules: [UDP Query User{CA0F29C9-482D-4CB8-A580-BF323CE354D1}C:\programdata\battle.net\agent\agent.998\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.998\agent.exe
FirewallRules: [TCP Query User{74565C1C-6E68-4360-A962-4E9063CF5148}Z:\games\steam\steamapps\bobnintendo\team fortress 2\hl2.exe] => (Allow) Z:\games\steam\steamapps\bobnintendo\team fortress 2\hl2.exe
FirewallRules: [UDP Query User{2BCD4189-1B38-4C69-848A-A00E024DE7C8}Z:\games\steam\steamapps\bobnintendo\team fortress 2\hl2.exe] => (Allow) Z:\games\steam\steamapps\bobnintendo\team fortress 2\hl2.exe
FirewallRules: [{EDDA9CD2-2882-45B5-BA30-BFBB4A7EE9D2}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{238FAEE5-E34B-4A87-AA47-CF2CF16B6FCD}] => (Allow) LPort=2869
FirewallRules: [{37B6410E-4ACC-4565-AC3E-A1304A2C769A}] => (Allow) LPort=1900
FirewallRules: [{C274C16B-BAF9-40C8-9B8E-300551EF02E2}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\monitor.exe
FirewallRules: [{81C2A7D3-B880-4E85-AD97-3E8D98DE732F}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\monitor.exe
FirewallRules: [{495C958F-A693-48FF-A2D2-6C2024C61ED0}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\manager.exe
FirewallRules: [{C641D821-D9B8-46D3-A985-EC3E4372092A}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\manager.exe
FirewallRules: [{5AC6D0EE-4F14-43CB-9BC8-F6B3527B7266}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\server.exe
FirewallRules: [{ED50578A-674D-4DE8-B082-EA0B50CF33BF}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\server.exe
FirewallRules: [{470C8287-AC95-47CA-AF34-CA13FC901E0A}] => (Allow) Z:\Applications\Autodesk\3ds Max 2012\3dsmax.exe
FirewallRules: [{48CD715B-9EF3-4020-BB5E-F34146427309}] => (Allow) Z:\Applications\Autodesk\3ds Max 2012\3dsmax.exe
FirewallRules: [{25389E6F-6489-45A3-B560-A38CF6099517}] => (Allow) Z:\Applications\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe
FirewallRules: [{95BED236-5AB5-4156-BD13-A5C657677A18}] => (Allow) Z:\Applications\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe
FirewallRules: [{1B4F0F81-9B4E-4215-AAF4-C507A94AF8B9}] => (Allow) Z:\Applications\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64.exe
FirewallRules: [{0F2C6969-8E87-489C-A69C-DB823D953BB6}] => (Allow) Z:\Applications\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64.exe
FirewallRules: [{F1466FD8-7D42-46B0-9724-56942F7F0BAC}] => (Allow) Z:\Applications\Autodesk\3ds Max 2011\3dsmax.exe
FirewallRules: [{1FC89A42-ABCF-41B4-9E9A-BEE315640C81}] => (Allow) Z:\Applications\Autodesk\3ds Max 2011\3dsmax.exe
FirewallRules: [{BD0047F4-8E23-4FDD-8CB3-52D598449018}] => (Allow) Z:\Applications\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64.exe
FirewallRules: [{C184237D-68C7-45F8-BC99-786F59146F33}] => (Allow) Z:\Applications\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64.exe
FirewallRules: [{496A0F02-EE0F-4E10-8CB7-2E3DD2C85E51}] => (Allow) Z:\Applications\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64server.exe
FirewallRules: [{2B520E40-2FC2-4E85-A1C0-84D2AC2C799D}] => (Allow) Z:\Applications\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64server.exe
FirewallRules: [{2E3E0445-FDFA-4200-B00A-E2BC5D8CEF4C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1040\Agent.exe
FirewallRules: [{8A3E0995-777E-4C69-85B5-C92F98492602}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1040\Agent.exe
FirewallRules: [TCP Query User{26DA315C-1FD0-4D65-A4F6-1D41772B0E85}C:\programdata\battle.net\agent\agent.749\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.749\agent.exe
FirewallRules: [UDP Query User{6467C429-B84E-496C-86B4-11CE45E8D62E}C:\programdata\battle.net\agent\agent.749\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.749\agent.exe
FirewallRules: [TCP Query User{F5D68482-58A2-4C52-B67E-0A411658D853}Z:\games\the witcher 2\bin\witcher2.exe] => (Allow) Z:\games\the witcher 2\bin\witcher2.exe
FirewallRules: [UDP Query User{4848D931-E08F-47FB-B967-DDF3BCDEB405}Z:\games\the witcher 2\bin\witcher2.exe] => (Allow) Z:\games\the witcher 2\bin\witcher2.exe
FirewallRules: [TCP Query User{C42FEA80-FF09-46C1-AF44-587F65AEFCFB}Z:\games\steam\steamapps\common\gta iv san andreas\eflc\eflc.exe] => (Allow) Z:\games\steam\steamapps\common\gta iv san andreas\eflc\eflc.exe
FirewallRules: [UDP Query User{61D75CCA-5E05-4166-9C6E-CBC123D5CB06}Z:\games\steam\steamapps\common\gta iv san andreas\eflc\eflc.exe] => (Allow) Z:\games\steam\steamapps\common\gta iv san andreas\eflc\eflc.exe
FirewallRules: [TCP Query User{796B3B11-F82C-4CA3-8297-B9388A35E941}C:\users\samuel\downloads\downloader_warcraft3_the_frozen_throne_enus.exe] => (Allow) C:\users\samuel\downloads\downloader_warcraft3_the_frozen_throne_enus.exe
FirewallRules: [UDP Query User{601D0AA0-DAE2-4460-B40E-F7C7D52FCE1C}C:\users\samuel\downloads\downloader_warcraft3_the_frozen_throne_enus.exe] => (Allow) C:\users\samuel\downloads\downloader_warcraft3_the_frozen_throne_enus.exe
FirewallRules: [{DEEFC6C8-E516-4049-A63E-8A72E75E53EB}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{F025670E-5977-4241-AD79-AF23BB331F9B}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{E24F02B7-7A69-477A-83A3-E46FF878BA07}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{1B75855F-B4A3-46BC-ADC8-365F059D169B}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [TCP Query User{195AE246-8CBB-401C-93DF-6FA33E0CA65C}Z:\games\steam\steamapps\common\dark souls prepare to die edition\data\data.exe] => (Allow) Z:\games\steam\steamapps\common\dark souls prepare to die edition\data\data.exe
FirewallRules: [UDP Query User{26BD0E77-F8E7-4964-AD85-1ECA64107C84}Z:\games\steam\steamapps\common\dark souls prepare to die edition\data\data.exe] => (Allow) Z:\games\steam\steamapps\common\dark souls prepare to die edition\data\data.exe
FirewallRules: [TCP Query User{7DCAE24F-CD29-453A-B74E-5D0C9F92BB4D}Z:\games\world of warcraft\temp\wow-4.2.1.2756-enus-tools-downloader.exe] => (Allow) Z:\games\world of warcraft\temp\wow-4.2.1.2756-enus-tools-downloader.exe
FirewallRules: [UDP Query User{E470265D-0015-424B-8120-87B7FAC13ED2}Z:\games\world of warcraft\temp\wow-4.2.1.2756-enus-tools-downloader.exe] => (Allow) Z:\games\world of warcraft\temp\wow-4.2.1.2756-enus-tools-downloader.exe
FirewallRules: [TCP Query User{995C0358-BB5D-4B6C-BDFE-778D5526C9EA}Z:\games\world of warcraft\temp\wow-4.3-5.0.15890-enus-downloader.exe] => (Allow) Z:\games\world of warcraft\temp\wow-4.3-5.0.15890-enus-downloader.exe
FirewallRules: [UDP Query User{1F85844A-1D5D-4F16-AE3A-85B97DA4BF22}Z:\games\world of warcraft\temp\wow-4.3-5.0.15890-enus-downloader.exe] => (Allow) Z:\games\world of warcraft\temp\wow-4.3-5.0.15890-enus-downloader.exe
FirewallRules: [{F5B02FEF-FA3D-42C6-A25D-2C1E143D1760}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1267\Agent.exe
FirewallRules: [{B69C1A8B-8E31-4947-82A0-7F4458A6CAB4}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1267\Agent.exe
FirewallRules: [{F8E78522-0D1B-411B-8CB9-0605A7139609}] => (Allow) Z:\Applications\Tunngle\TnglCtrl.exe
FirewallRules: [{5CAD603B-62F0-401C-9F46-312EF9C229D4}] => (Allow) Z:\Applications\Tunngle\TnglCtrl.exe
FirewallRules: [{D7A64C8E-6283-4C5A-8A11-AF3FD85CE326}] => (Allow) Z:\Applications\Tunngle\Tunngle.exe
FirewallRules: [{0989CEF2-7AA0-41B3-8937-07C8A245900C}] => (Allow) Z:\Applications\Tunngle\Tunngle.exe
FirewallRules: [{21047489-D0E4-45F4-896E-5DB1A7AEBCB2}] => (Allow) Z:\Games\Steam\Steam.exe
FirewallRules: [{7974CE17-C7D6-4D59-9817-7F1711B858FC}] => (Allow) Z:\Games\Steam\Steam.exe
FirewallRules: [TCP Query User{DCE7759F-B96B-4648-BAD0-A6B1D19C6F4F}Z:\applications\editor\unity.exe] => (Allow) Z:\applications\editor\unity.exe
FirewallRules: [UDP Query User{F141CC54-47A5-4BF3-973C-C03D1DE9D265}Z:\applications\editor\unity.exe] => (Allow) Z:\applications\editor\unity.exe
FirewallRules: [TCP Query User{7ADC5A58-10C3-4801-9CFF-1F599981FF24}Z:\games\steam\steamapps\common\c9\c9.exe] => (Allow) Z:\games\steam\steamapps\common\c9\c9.exe
FirewallRules: [UDP Query User{4B3BFA3C-8591-4807-BF32-14C3038B09B1}Z:\games\steam\steamapps\common\c9\c9.exe] => (Allow) Z:\games\steam\steamapps\common\c9\c9.exe
FirewallRules: [TCP Query User{51ACE03A-7E1D-409C-B357-9CAA3D66ACBB}Z:\games\batman arkham city\binaries\win32\batmanac.exe] => (Allow) Z:\games\batman arkham city\binaries\win32\batmanac.exe
FirewallRules: [UDP Query User{551DE532-7F10-4EE8-B88F-21A450D0BFF1}Z:\games\batman arkham city\binaries\win32\batmanac.exe] => (Allow) Z:\games\batman arkham city\binaries\win32\batmanac.exe
FirewallRules: [TCP Query User{B03344E7-00EF-477A-B792-2303DC54E1BC}Z:\games\borderlands 2\binaries\win32\borderlands2.exe] => (Block) Z:\games\borderlands 2\binaries\win32\borderlands2.exe
FirewallRules: [UDP Query User{A70B6820-A5ED-4FD4-B9E1-642F6E2F0B2A}Z:\games\borderlands 2\binaries\win32\borderlands2.exe] => (Block) Z:\games\borderlands 2\binaries\win32\borderlands2.exe
FirewallRules: [{3F0C390E-7110-42F1-A2B6-4D64BC011135}] => (Allow) Z:\Games\Steam\steamapps\common\saints row the third\saintsrowthethird.exe
FirewallRules: [{32252667-E7C6-4AC7-B049-16B1A753E237}] => (Allow) Z:\Games\Steam\steamapps\common\saints row the third\saintsrowthethird.exe
FirewallRules: [{2EE36555-9123-4D2F-A649-D233ED34B2AC}] => (Allow) Z:\Games\Steam\steamapps\common\saints row the third\saintsrowthethird_dx11.exe
FirewallRules: [{F881CE3E-08C9-437A-BA66-B387A077DD8D}] => (Allow) Z:\Games\Steam\steamapps\common\saints row the third\saintsrowthethird_dx11.exe
FirewallRules: [{A481DED8-4074-48AE-AF27-A763DF99D199}] => (Allow) Z:\Games\Steam\steamapps\common\Oblivion\OblivionLauncher.exe
FirewallRules: [{26E7EB6E-54E3-4324-9DC9-4B349D739CE6}] => (Allow) Z:\Games\Steam\steamapps\common\Oblivion\OblivionLauncher.exe
FirewallRules: [{D8ED8A9B-9EED-447D-98E3-473823F8C591}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1363\Agent.exe
FirewallRules: [{B439B952-FF4C-4550-923F-79A7513A9819}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1363\Agent.exe
FirewallRules: [TCP Query User{DF6E9B51-3653-4509-A77A-65B70E212002}C:\program files (x86)\mozilla firefox\plugin-container.exe] => (Allow) C:\program files (x86)\mozilla firefox\plugin-container.exe
FirewallRules: [UDP Query User{DD11A34A-4643-42CF-AC6F-D1E0B7611B23}C:\program files (x86)\mozilla firefox\plugin-container.exe] => (Allow) C:\program files (x86)\mozilla firefox\plugin-container.exe
FirewallRules: [TCP Query User{82AEFE3E-1818-4589-BF52-05DD8839901C}C:\users\samuel\downloads\mountain climbing adventure\mca.exe] => (Allow) C:\users\samuel\downloads\mountain climbing adventure\mca.exe
FirewallRules: [UDP Query User{E3C4F1C8-B363-45DD-B08F-2483C6BD78B5}C:\users\samuel\downloads\mountain climbing adventure\mca.exe] => (Allow) C:\users\samuel\downloads\mountain climbing adventure\mca.exe
FirewallRules: [{9FBB6C96-9804-46D9-81B1-F9F20FE7B55F}] => (Allow) C:\ProgramData\NexonUS\NGM\NGM.exe
FirewallRules: [{4A015455-DE67-4D2F-A239-6DDAB41C6541}] => (Allow) C:\ProgramData\NexonUS\NGM\NGM.exe
FirewallRules: [{B2E2A240-7C1F-478E-83D2-260DB08E191C}] => (Allow) Z:\Games\Steam\steamapps\common\Just Cause 2\JustCause2.exe
FirewallRules: [{376E2FA1-DF8D-4E63-BC17-03D457D70FD1}] => (Allow) Z:\Games\Steam\steamapps\common\Just Cause 2\JustCause2.exe
FirewallRules: [{B494A252-89ED-4462-ACC8-52C412A3158D}] => (Allow) Z:\Games\Vindictus\en-US\NMService.exe
FirewallRules: [{B7470DFA-12A0-428B-858F-8795C69C7A7F}] => (Allow) Z:\Games\Vindictus\en-US\NMService.exe
FirewallRules: [TCP Query User{2415A355-CD78-4183-BB32-4F8242D35240}C:\users\samuel\appdata\local\temp\gw2.exe] => (Allow) C:\users\samuel\appdata\local\temp\gw2.exe
FirewallRules: [UDP Query User{FC1E4EB0-B832-4335-846F-1859FB10798A}C:\users\samuel\appdata\local\temp\gw2.exe] => (Allow) C:\users\samuel\appdata\local\temp\gw2.exe
FirewallRules: [TCP Query User{FE1AC861-8EA2-4213-86F5-A4BC8C0090E2}Z:\games\guild wars 2\gw2.exe] => (Allow) Z:\games\guild wars 2\gw2.exe
FirewallRules: [UDP Query User{231FE722-6FBD-4AF6-8D04-77A66BE53780}Z:\games\guild wars 2\gw2.exe] => (Allow) Z:\games\guild wars 2\gw2.exe
FirewallRules: [{271B1764-ABFC-4BF1-8585-52474C0B17EE}] => (Allow) C:\Users\Samuel\Downloads\LoLInstaller.exe
FirewallRules: [{13692E2C-8FB7-4065-B1B3-74816E5827F8}] => (Allow) C:\Users\Samuel\Downloads\LoLInstaller.exe
FirewallRules: [{00943072-17B2-45F7-A23B-C5C50718B015}] => (Allow) C:\GarenaDownload\Games\pwen\PerfectWorld_EN_GarenaPlus_Installer.exe
FirewallRules: [{4C8C5EC0-7669-4101-B5E0-E1B3B27AE359}] => (Allow) C:\GarenaDownload\Games\pwen\PerfectWorld_EN_GarenaPlus_Installer.exe
FirewallRules: [TCP Query User{98358981-D916-4542-A543-CD4325F085F9}C:\program files (x86)\garena plus\garenamessenger.exe] => (Allow) C:\program files (x86)\garena plus\garenamessenger.exe
FirewallRules: [UDP Query User{8ACD4D92-4704-46B0-88C7-EFFBDDC99DE4}C:\program files (x86)\garena plus\garenamessenger.exe] => (Allow) C:\program files (x86)\garena plus\garenamessenger.exe
FirewallRules: [{7DE4F6DA-2BAA-4E73-9086-9A5AFCCD0290}] => (Allow) LPort=8370
FirewallRules: [{05F46B6F-8A82-46D0-BA34-86F87A1B0E40}] => (Allow) LPort=8370
FirewallRules: [{D03A0F22-54A5-4536-B01C-F4C91DB002FF}] => (Allow) Z:\Games\League of Legends\GameData\Apps\LoL\Air\LolClient.exe
FirewallRules: [{CCB3522A-8837-4E33-96E4-BC4764561D02}] => (Allow) Z:\Games\League of Legends\GameData\Apps\LoL\Air\LolClient.exe
FirewallRules: [{2ED2C26E-C12B-460D-BA93-92BE287C8DD5}] => (Allow) Z:\Games\League of Legends\GameData\Apps\LoL\Game\League of Legends.exe
FirewallRules: [{C43656C5-7993-4113-B9FB-3E665BB56620}] => (Allow) Z:\Games\League of Legends\GameData\Apps\LoL\Game\League of Legends.exe
FirewallRules: [{B8571494-BAED-4E9D-B3EA-C0428BDC2232}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe
FirewallRules: [{0849CE8A-6ECC-40D5-8A25-1FAF6F4FFDA7}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.EXE
FirewallRules: [{98E4F6B7-4425-4F39-B39C-1A51917D0C5D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1544\Agent.exe
FirewallRules: [{094FCC36-9E05-415A-AA06-DBF59DB37D24}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1544\Agent.exe
FirewallRules: [{FB24F922-AB4C-4A3A-8107-35E6369212EA}] => (Allow) Z:\Games\Steam\steamapps\common\Torchlight II\Torchlight2.exe
FirewallRules: [{3F237301-46C8-4327-BA91-594A83593CE6}] => (Allow) Z:\Games\Steam\steamapps\common\Torchlight II\Torchlight2.exe
FirewallRules: [TCP Query User{708C76C4-8EED-4CF2-BF0C-9D65680FE3C5}C:\program files (x86)\mirc\mirc.exe] => (Allow) C:\program files (x86)\mirc\mirc.exe
FirewallRules: [UDP Query User{BD23AAF2-47B5-4600-A8A4-04EE5C146DEA}C:\program files (x86)\mirc\mirc.exe] => (Allow) C:\program files (x86)\mirc\mirc.exe
FirewallRules: [{BC9E6775-2438-4AE6-9AB3-0346A41A00C2}] => (Block) C:\program files (x86)\mirc\mirc.exe
FirewallRules: [{BD324477-7BEA-4007-9DD2-BB3E23CBA2A3}] => (Block) C:\program files (x86)\mirc\mirc.exe
FirewallRules: [TCP Query User{FE8C02FD-F0F6-4274-A22E-D5779AD1854D}Z:\games\tera eu\tera-launcher.exe] => (Allow) Z:\games\tera eu\tera-launcher.exe
FirewallRules: [UDP Query User{87819473-4385-43D7-B9D4-C702ED74265C}Z:\games\tera eu\tera-launcher.exe] => (Allow) Z:\games\tera eu\tera-launcher.exe
FirewallRules: [{B71FC6AF-C20C-4381-B1E4-B2DD0DC04ACF}] => (Allow) Z:\games\tera eu\tera-launcher.exe
FirewallRules: [{123D9692-7357-41BC-A3AD-D96B3513B118}] => (Allow) Z:\games\tera eu\tera-launcher.exe
FirewallRules: [{0791E5A8-B962-4B38-B1BC-3B1286D4B023}] => (Allow) Z:\Games\TERA US\TERA-Launcher.exe
FirewallRules: [{29258B3F-0CC6-4780-8D0C-1DA8AD9E4385}] => (Allow) Z:\Games\TERA US\TERA-Launcher.exe
FirewallRules: [{FF187F5E-6477-4102-BDCB-9D28CB7E477D}] => (Allow) Z:\Games\TERA US\TERA-Launcher.exe
FirewallRules: [{6A7618BE-7E78-4392-977A-A4CCB3BFE884}] => (Allow) Z:\Games\TERA US\TERA-Launcher.exe
FirewallRules: [{B4154E9F-EE79-4090-80E3-8D11AB73B2F6}] => (Allow) Z:\Games\TERA US\Client\TERA.exe
FirewallRules: [{353872C0-C924-423A-8F8C-9B3AD89E8D39}] => (Allow) Z:\Games\TERA US\Client\TERA.exe
FirewallRules: [{FA01C945-58DF-44C4-91CF-C5AC837B0750}] => (Allow) Z:\Games\TERA US\Client\TERA.exe
FirewallRules: [{81DCECE6-3460-4093-90E8-56825922AEB5}] => (Allow) Z:\Games\TERA US\Client\TERA.exe
FirewallRules: [{6B4F9FC5-2143-489B-B58D-9F29D74F176A}] => (Allow) Z:\Games\TERA US\Client\TL.exe
FirewallRules: [{63A49F1E-8527-4C5C-A685-59696263B540}] => (Allow) Z:\Games\TERA US\Client\TL.exe
FirewallRules: [{C90DACF7-112E-4C55-B383-F63F2CDCA67B}] => (Allow) Z:\Games\TERA US\Client\TL.exe
FirewallRules: [{F39CB035-E962-42BE-ABF4-D8162B23F2FA}] => (Allow) Z:\Games\TERA US\Client\TL.exe
FirewallRules: [{9788F1FE-F404-44C5-8D1F-C6691544148C}] => (Allow) Z:\Games\Steam\steamapps\common\Legend of Grimrock\grimrock.exe
FirewallRules: [{D8B6A853-8E5A-472C-B2EE-4FFE52FFACE1}] => (Allow) Z:\Games\Steam\steamapps\common\Legend of Grimrock\grimrock.exe
FirewallRules: [{9D007024-3D0C-4837-AF73-2FBC0072F9CC}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1675\Agent.exe
FirewallRules: [{B062F4FD-48C0-4B63-B026-98B2E913635F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1675\Agent.exe
FirewallRules: [{73DC7F21-17FD-4511-8821-61D89BD6E13B}] => (Allow) C:\Users\Samuel\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{1EECFEEC-E4DD-4002-8A9D-CACD4D6879D1}] => (Allow) C:\Users\Samuel\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{473F2CD1-2895-4AA7-913E-5A45C2B0E445}] => (Allow) C:\Users\Samuel\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{CDE4FB9F-52E2-473B-A5D0-C056B7C793C3}] => (Allow) C:\Users\Samuel\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{2212A34E-FE5F-421E-B2F8-3E09A28840D1}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\counter-strike source\hl2.exe
FirewallRules: [{B3DCF3B5-5295-42F0-9770-207615EA4C2D}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\counter-strike source\hl2.exe
FirewallRules: [TCP Query User{4A4BA9B3-52F5-4F1F-A52A-E080F93B9421}C:\users\samuel\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\samuel\appdata\local\akamai\netsession_win.exe
FirewallRules: [UDP Query User{09C7D90E-4BDF-4288-B0CE-5185D60B7515}C:\users\samuel\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\samuel\appdata\local\akamai\netsession_win.exe
FirewallRules: [{5EF66784-99ED-48D3-985B-60C77B4BB2EE}] => (Block) C:\users\samuel\appdata\local\akamai\netsession_win.exe
FirewallRules: [{FCEF7932-F6BE-4D0D-B5DF-4109E3900D82}] => (Block) C:\users\samuel\appdata\local\akamai\netsession_win.exe
FirewallRules: [{97D4469E-0A3B-4E3A-85D3-C33645B7C491}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{0DEC2854-D1E0-44B1-82E1-15957A6629DA}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{95DFBBD0-99BA-440A-9288-6A1AE2358EF5}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1737\Agent.exe
FirewallRules: [{4BD0B2BB-AAB3-4830-A30C-0B40ABE506EF}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1737\Agent.exe
FirewallRules: [{E7E8DAAB-708D-4988-A517-25E17D0758C4}] => (Allow) Z:\Games\Steam\steamapps\common\Torchlight II\ModLauncher.exe
FirewallRules: [{28504F7B-F85D-4839-AE01-3F663FEB872A}] => (Allow) Z:\Games\Steam\steamapps\common\Torchlight II\ModLauncher.exe
FirewallRules: [TCP Query User{ACB60DC4-AC03-40AF-B633-0BA8C6C03137}C:\users\samuel\downloads\neverwinter_nw.1.20130416a.6.exe] => (Allow) C:\users\samuel\downloads\neverwinter_nw.1.20130416a.6.exe
FirewallRules: [UDP Query User{9112A5BD-0325-4EDB-AD99-D3A6EB8E6F79}C:\users\samuel\downloads\neverwinter_nw.1.20130416a.6.exe] => (Allow) C:\users\samuel\downloads\neverwinter_nw.1.20130416a.6.exe
FirewallRules: [{5BBBC239-F70A-4174-BC3E-68174BFAA2AD}] => (Block) C:\users\samuel\downloads\neverwinter_nw.1.20130416a.6.exe
FirewallRules: [{F0FE0139-60FB-4E0E-BF17-3438E9316ECE}] => (Block) C:\users\samuel\downloads\neverwinter_nw.1.20130416a.6.exe
FirewallRules: [TCP Query User{1C2BF823-2706-4DAF-BBD3-2486A06E9236}Z:\games\neverwinter\neverwinter\live\gameclient.exe] => (Allow) Z:\games\neverwinter\neverwinter\live\gameclient.exe
FirewallRules: [UDP Query User{CC0E1540-B5F3-4FD0-BDF4-9ACD6C00FB15}Z:\games\neverwinter\neverwinter\live\gameclient.exe] => (Allow) Z:\games\neverwinter\neverwinter\live\gameclient.exe
FirewallRules: [{193E2F6D-EAF4-4B56-9487-DF1CDE90A059}] => (Block) Z:\games\neverwinter\neverwinter\live\gameclient.exe
FirewallRules: [{DF8AAF02-B793-4D31-B834-7665B97C78CF}] => (Block) Z:\games\neverwinter\neverwinter\live\gameclient.exe
FirewallRules: [{0D678099-2933-4767-B207-BBC3266DD72D}] => (Allow) Z:\Games\Steam\steamapps\common\saints row the third\game_launcher.exe
FirewallRules: [{23B1129C-4B9C-49BE-BBF7-335EDFC07CF1}] => (Allow) Z:\Games\Steam\steamapps\common\saints row the third\game_launcher.exe
FirewallRules: [TCP Query User{442A793A-244E-4338-A238-444367E8DC2F}C:\program files (x86)\xlink kai\kaiengine.exe] => (Allow) C:\program files (x86)\xlink kai\kaiengine.exe
FirewallRules: [UDP Query User{9E6A04E2-279E-4921-8965-A42B71FDA01F}C:\program files (x86)\xlink kai\kaiengine.exe] => (Allow) C:\program files (x86)\xlink kai\kaiengine.exe
FirewallRules: [{783E056E-93C1-47A4-838D-F103E8DB0287}] => (Block) C:\program files (x86)\xlink kai\kaiengine.exe
FirewallRules: [{D15C0DD0-D370-4122-AFB0-39834AB761C7}] => (Block) C:\program files (x86)\xlink kai\kaiengine.exe
FirewallRules: [{E0B0FDF3-E009-4F73-B2D6-52EE5ECEF3ED}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\garry's mod beta\hl2.exe
FirewallRules: [{7BEC90F8-E067-4D8A-A54A-C561C158F3CA}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\garry's mod beta\hl2.exe
FirewallRules: [TCP Query User{FB05CF5D-5EF4-4CB7-B86C-4F6C0A250D9A}Z:\games\steam\steamapps\common\lord of the rings online\lotroclient.exe] => (Allow) Z:\games\steam\steamapps\common\lord of the rings online\lotroclient.exe
FirewallRules: [UDP Query User{81E57F7A-1B7B-4AFA-81EA-F7D311DE582E}Z:\games\steam\steamapps\common\lord of the rings online\lotroclient.exe] => (Allow) Z:\games\steam\steamapps\common\lord of the rings online\lotroclient.exe
FirewallRules: [{45A8376C-1225-4A9A-B4F9-16E4374DE334}] => (Block) Z:\games\steam\steamapps\common\lord of the rings online\lotroclient.exe
FirewallRules: [{3C586614-402D-485D-90A1-568C52CB444B}] => (Block) Z:\games\steam\steamapps\common\lord of the rings online\lotroclient.exe
FirewallRules: [TCP Query User{6CE4745B-2F24-4FFC-AB04-074DC955A957}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe
FirewallRules: [UDP Query User{F911AD46-315B-4BF5-B39D-5161FB3064F0}C:\program files (x86)\java\jre7\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe
FirewallRules: [{9797139E-1C8F-4969-BDA8-A6CDECD798A6}] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe
FirewallRules: [{E9CA9706-8C6F-4CBA-AE90-B14B9DD3ED82}] => (Allow) C:\program files (x86)\java\jre7\bin\javaw.exe
FirewallRules: [{B515EB50-EC1D-4465-9009-C01047D3DBE7}] => (Allow) Z:\Games\Steam\steamapps\common\Super Meat Boy\SuperMeatBoy.exe
FirewallRules: [{68F39506-3CB3-449B-858C-D1AB49CFCC70}] => (Allow) Z:\Games\Steam\steamapps\common\Super Meat Boy\SuperMeatBoy.exe
FirewallRules: [TCP Query User{1D045E01-0BAD-44FD-A2EA-415D80106218}C:\windows\syswow64\java.exe] => (Allow) C:\windows\syswow64\java.exe
FirewallRules: [UDP Query User{D01AD9AD-5441-4158-A186-4CA3904237D7}C:\windows\syswow64\java.exe] => (Allow) C:\windows\syswow64\java.exe
FirewallRules: [{4D6A61D7-9C64-4D3C-8FC9-3826262A8FE8}] => (Allow) C:\windows\syswow64\java.exe
FirewallRules: [{0DC5458A-6CED-4D06-845D-B09108FE68A2}] => (Allow) C:\windows\syswow64\java.exe
FirewallRules: [{6FA0BCD5-D9B1-4AA2-AEC2-F8B1F4BE7649}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\source sdk base 2007\hl2.exe
FirewallRules: [{ACAA4F6C-FCB0-4FDC-B60A-0F0A88B475DD}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\source sdk base 2007\hl2.exe
FirewallRules: [{7ECB71CE-A856-44A6-9963-A7522E739C5E}] => (Allow) Z:\Games\Steam\steamapps\common\Bastion\Bastion.exe
FirewallRules: [{6838AC29-C058-4203-942B-A179C5D1284C}] => (Allow) Z:\Games\Steam\steamapps\common\Bastion\Bastion.exe
FirewallRules: [{30665CD9-3EB4-49FB-9812-879ECDA0823B}] => (Allow) Z:\Games\Steam\steamapps\common\skyrim\SkyrimLauncher.exe
FirewallRules: [{09F063B7-283A-4DE2-90DF-7BB67F824825}] => (Allow) Z:\Games\Steam\steamapps\common\skyrim\SkyrimLauncher.exe
FirewallRules: [{D931AFD9-7060-40BB-970A-2552196FF7A5}] => (Allow) Z:\Games\Steam\steamapps\common\skyrim\CreationKit.exe
FirewallRules: [{687358DC-2DCD-492A-9662-62B0FEAC69FF}] => (Allow) Z:\Games\Steam\steamapps\common\skyrim\CreationKit.exe
FirewallRules: [{DB0CAA33-B20A-4E99-A6A3-18510003DA22}] => (Allow) Z:\Games\Steam\steamapps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe
FirewallRules: [{877C5A71-A982-4A23-ACC5-32CA720F3711}] => (Allow) Z:\Games\Steam\steamapps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe
FirewallRules: [TCP Query User{BFD8AB63-1CC0-44B6-9B39-5A9557140ECE}C:\users\samuel\downloads\tinyumbrella-6.14.00.exe] => (Allow) C:\users\samuel\downloads\tinyumbrella-6.14.00.exe
FirewallRules: [UDP Query User{7BFEE7C3-5877-41DF-82BC-589425EA7EB1}C:\users\samuel\downloads\tinyumbrella-6.14.00.exe] => (Allow) C:\users\samuel\downloads\tinyumbrella-6.14.00.exe
FirewallRules: [{1F110DC4-B8F4-4225-8E7C-5108A054BA28}] => (Block) C:\users\samuel\downloads\tinyumbrella-6.14.00.exe
FirewallRules: [{36AA5D82-01CA-45D9-BD4C-D532CFC13896}] => (Block) C:\users\samuel\downloads\tinyumbrella-6.14.00.exe
FirewallRules: [TCP Query User{DA98283F-4546-43D2-BC03-282A7965DAE7}C:\users\samuel\downloads\tinyumbrella-5.10.14.exe] => (Allow) C:\users\samuel\downloads\tinyumbrella-5.10.14.exe
FirewallRules: [UDP Query User{923EC74D-501C-4386-87B0-51E3D4AA365F}C:\users\samuel\downloads\tinyumbrella-5.10.14.exe] => (Allow) C:\users\samuel\downloads\tinyumbrella-5.10.14.exe
FirewallRules: [{7983D4E0-AF24-4812-B76B-5667D805B705}] => (Block) C:\users\samuel\downloads\tinyumbrella-5.10.14.exe
FirewallRules: [{2349E4FC-0040-4B2E-AD06-15CCAB3A2222}] => (Block) C:\users\samuel\downloads\tinyumbrella-5.10.14.exe
FirewallRules: [TCP Query User{A7EC7D38-5702-4813-9722-57CC471A782B}Z:\games\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe] => (Allow) Z:\games\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe
FirewallRules: [UDP Query User{F52B9837-04E1-4390-8960-D83BDE8BEEA3}Z:\games\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe] => (Allow) Z:\games\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe
FirewallRules: [{49FC2FCB-E54B-49F1-AFB4-84198914D88E}] => (Block) Z:\games\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe
FirewallRules: [{3710ACB0-158F-4D41-821C-5A1AA80A330E}] => (Block) Z:\games\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe
FirewallRules: [{200A7A8F-99D7-4577-813C-8734CCF9A45D}] => (Allow) Z:\Games\Steam\steamapps\common\Morrowind\Morrowind Launcher.exe
FirewallRules: [{44311ED2-7902-4C32-86B9-D282674DEFA5}] => (Allow) Z:\Games\Steam\steamapps\common\Morrowind\Morrowind Launcher.exe
FirewallRules: [{D3972D57-A869-4208-839F-DB63BB8916BF}] => (Allow) Z:\Games\Steam\steamapps\common\Quake\Winquake.exe
FirewallRules: [{F73543BF-A94C-4A2D-B485-A5D2EA2C69AE}] => (Allow) Z:\Games\Steam\steamapps\common\Quake\Winquake.exe
FirewallRules: [{33942B24-6509-466C-9BDF-AB6EFC01A115}] => (Allow) Z:\Games\Steam\steamapps\common\Quake\qwcl.exe
FirewallRules: [{DEBCE86B-7719-45EB-9D89-73624CF6DEAB}] => (Allow) Z:\Games\Steam\steamapps\common\Quake\qwcl.exe
FirewallRules: [{01005B37-BAC4-466F-AEB2-90280EE8C8D1}] => (Allow) Z:\Games\Steam\steamapps\common\Quake\Glquake.exe
FirewallRules: [{68761CBC-C472-47DF-8CCD-F89B854825BD}] => (Allow) Z:\Games\Steam\steamapps\common\Quake\Glquake.exe
FirewallRules: [{1CE21366-705B-4361-BE40-2D5731231A1C}] => (Allow) Z:\Games\Steam\steamapps\common\Quake\glqwcl.exe
FirewallRules: [{C72D6FFB-C251-4A24-A18A-C03CF85EB477}] => (Allow) Z:\Games\Steam\steamapps\common\Quake\glqwcl.exe
FirewallRules: [{30AF802E-3CCE-4C8A-B641-F6449B533BE0}] => (Allow) Z:\Games\Steam\steamapps\common\Fallout 3 goty\FalloutLauncher.exe
FirewallRules: [{B0171B83-4D09-4EED-BD23-FF043BE3BB73}] => (Allow) Z:\Games\Steam\steamapps\common\Fallout 3 goty\FalloutLauncher.exe
FirewallRules: [TCP Query User{E14E30FA-98C7-4691-A30C-03D6825EC878}Z:\games\steam\steamapps\common\fallout 3 goty\fallout3.exe] => (Allow) Z:\games\steam\steamapps\common\fallout 3 goty\fallout3.exe
FirewallRules: [UDP Query User{0BEB6DEE-E4A5-4E78-A222-359B27591283}Z:\games\steam\steamapps\common\fallout 3 goty\fallout3.exe] => (Allow) Z:\games\steam\steamapps\common\fallout 3 goty\fallout3.exe
FirewallRules: [{5C137E7F-94BA-43BF-BA17-53F50969B9D4}] => (Block) Z:\games\steam\steamapps\common\fallout 3 goty\fallout3.exe
FirewallRules: [{B654D17A-D22C-4254-A08D-7211B48318D6}] => (Block) Z:\games\steam\steamapps\common\fallout 3 goty\fallout3.exe
FirewallRules: [{B2C33861-F8C4-4236-9CEA-73378A28FE85}] => (Allow) C:\Windows\SysWOW64\rundll32.exe
FirewallRules: [{54E02E08-7243-46AA-9AC6-B7316BBE3802}] => (Allow) C:\Program Files (x86)\Garena Plus\ggdllhost.exe
FirewallRules: [TCP Query User{D2459A58-0989-4603-9718-B295C9825C08}C:\program files (x86)\garena plus\updatemanager.exe] => (Allow) C:\program files (x86)\garena plus\updatemanager.exe
FirewallRules: [UDP Query User{4D89D224-18FC-43D0-8513-E9542857DAA1}C:\program files (x86)\garena plus\updatemanager.exe] => (Allow) C:\program files (x86)\garena plus\updatemanager.exe
FirewallRules: [{574E8F20-2138-4AE7-B953-7572B31A1586}] => (Block) C:\program files (x86)\garena plus\updatemanager.exe
FirewallRules: [{4A55FEC1-B3FD-49D6-9B5F-5A88E533EEBF}] => (Block) C:\program files (x86)\garena plus\updatemanager.exe
FirewallRules: [{4B6C0012-AADE-494B-8F23-D1647A0F3993}] => (Allow) C:\GarenaDownload\Games\lol\LoLInstaller.exe
FirewallRules: [{C573A34A-7AC8-4668-859E-A4180FB8B9AA}] => (Allow) C:\GarenaDownload\Games\lol\LoLInstaller.exe
FirewallRules: [{F78EBCF5-894C-4DD9-A01A-F34AB3798EF9}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2045\Agent.exe
FirewallRules: [{36A5EBAA-1940-4BAA-A9AE-4B0EE5C0DE9A}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2045\Agent.exe
FirewallRules: [TCP Query User{B544B663-8FC9-48B3-8EBE-FAAF54C84F7A}C:\program files (x86)\garena plus\garenamessenger.exe] => (Allow) C:\program files (x86)\garena plus\garenamessenger.exe
FirewallRules: [UDP Query User{4EA5A709-8A5C-43D6-8A79-A25974348F45}C:\program files (x86)\garena plus\garenamessenger.exe] => (Allow) C:\program files (x86)\garena plus\garenamessenger.exe
FirewallRules: [{AD44D7EB-DB25-4430-ABCE-68BED3314EF3}] => (Block) C:\program files (x86)\garena plus\garenamessenger.exe
FirewallRules: [{5CF9B26E-B37B-4A7F-AA86-CE1C32BD30A5}] => (Block) C:\program files (x86)\garena plus\garenamessenger.exe
FirewallRules: [{8C4B7045-0916-401C-8E83-C7A468428E77}] => (Allow) Z:\Games\Steam\steamapps\common\mountblade warband\mb_warband.exe
FirewallRules: [{23C52475-2424-42B1-B65E-C3BF1B21ABC6}] => (Allow) Z:\Games\Steam\steamapps\common\mountblade warband\mb_warband.exe
FirewallRules: [{AF201735-FD4C-45B1-8365-45CC1243AA8B}] => (Allow) Z:\Games\Steam\steamapps\common\PAYDAY 2 Beta\payday2_win32_release.exe
FirewallRules: [{3C9BFAFF-F79E-4503-8080-DB17B5A6AD88}] => (Allow) Z:\Games\Steam\steamapps\common\PAYDAY 2 Beta\payday2_win32_release.exe
FirewallRules: [{F000D689-ED57-4851-B4AC-CF63409C61A0}] => (Allow) Z:\Games\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivboot.exe
FirewallRules: [{798B7D4A-2890-48E1-833D-9151089E5FEC}] => (Allow) Z:\Games\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivboot.exe
FirewallRules: [{500E8720-5B40-453E-A15B-74FD320A7CCB}] => (Allow) Z:\Games\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivlauncher.exe
FirewallRules: [{7A207F59-729E-4859-ADA3-7BE448748815}] => (Allow) Z:\Games\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivlauncher.exe
FirewallRules: [{83EBD869-1978-4C7F-A9CB-DF02CFB08B8C}] => (Allow) Z:\Games\Steam\steamapps\common\War of the Vikings Limited Public Alpha\run_game.exe
FirewallRules: [{B6B0C6C2-00BF-4679-A9E3-D5FCACCEA9AA}] => (Allow) Z:\Games\Steam\steamapps\common\War of the Vikings Limited Public Alpha\run_game.exe
FirewallRules: [{47F3AB11-9FD6-4CFD-A237-5E63576F5700}] => (Allow) Z:\Applications\Janetter2\bin\JanetterSrv.exe
FirewallRules: [{497D0A25-4A8F-4189-BB5A-989FC0DED7BA}] => (Allow) Z:\Games\Steam\steamapps\common\CastleCrashers\castle.exe
FirewallRules: [{A673C028-D1FA-4CE5-85BF-99AF27577032}] => (Allow) Z:\Games\Steam\steamapps\common\CastleCrashers\castle.exe
FirewallRules: [{667A00D1-7641-46C0-8A94-1FC21DD0A399}] => (Allow) Z:\Games\Steam\steamapps\common\Dark Souls Prepare to Die Edition\DATA\DARKSOULS.exe
FirewallRules: [{A3D59E78-A0FB-479A-A9E9-A5DAA31F0832}] => (Allow) Z:\Games\Steam\steamapps\common\Dark Souls Prepare to Die Edition\DATA\DARKSOULS.exe
FirewallRules: [{BCB38E07-620B-4BB0-B204-CBC2DDF7A74F}] => (Allow) Z:\Games\Steam\steamapps\common\Half-Life 2 Deathmatch\hl2.exe
FirewallRules: [{64127F61-7754-4679-B2F7-ABB948633AF6}] => (Allow) Z:\Games\Steam\steamapps\common\Half-Life 2 Deathmatch\hl2.exe
FirewallRules: [{26084EEF-9C4B-4014-9AC6-4F7A193CB156}] => (Allow) Z:\Games\Steam\steamapps\common\PapersPlease\PapersPlease.exe
FirewallRules: [{150D8650-DAFF-4CE8-A582-663D956CB2D6}] => (Allow) Z:\Games\Steam\steamapps\common\PapersPlease\PapersPlease.exe
FirewallRules: [TCP Query User{1D80A440-A0E9-479B-8D6E-FE992E0708B3}Z:\games\secondlifeviewer2\slvoice.exe] => (Allow) Z:\games\secondlifeviewer2\slvoice.exe
FirewallRules: [UDP Query User{EB1F6D84-8F56-4FDA-AFEB-491099F73D58}Z:\games\secondlifeviewer2\slvoice.exe] => (Allow) Z:\games\secondlifeviewer2\slvoice.exe
FirewallRules: [{250ED3F1-F036-4B44-8A88-8FC286712D5E}] => (Block) Z:\games\secondlifeviewer2\slvoice.exe
FirewallRules: [{C71CAF30-448A-4929-9AB2-A54BCDD6CBE6}] => (Block) Z:\games\secondlifeviewer2\slvoice.exe
FirewallRules: [{75B0DD17-A5AE-4B68-B4A3-D70826F3AA7A}] => (Allow) Z:\Games\Steam\steamapps\common\hotline_miami\HotlineMiami.exe
FirewallRules: [{A1F2F0DA-EF69-4A79-9CF9-1568E8D38CDD}] => (Allow) Z:\Games\Steam\steamapps\common\hotline_miami\HotlineMiami.exe
FirewallRules: [{4B9A0589-F98D-4640-9A23-0AE2EF643F4F}] => (Allow) Z:\Games\Steam\steamapps\common\Saints Row IV Inauguration Station\SaintsRowIV_InaugurationStation.exe
FirewallRules: [{1D245EDF-CFD0-48A7-A424-574B17CD1B44}] => (Allow) Z:\Games\Steam\steamapps\common\Saints Row IV Inauguration Station\SaintsRowIV_InaugurationStation.exe
FirewallRules: [{1E7325C4-3EE1-4CA9-848B-FEDFF440FAEB}] => (Allow) Z:\Games\Steam\steamapps\common\Metro Last Light\MetroLL.exe
FirewallRules: [{B34EBD40-82FB-4757-9FE3-6E81D3F9836B}] => (Allow) Z:\Games\Steam\steamapps\common\Metro Last Light\MetroLL.exe
FirewallRules: [{A150202C-1E8C-4A72-AB4F-3E9587D8E303}] => (Allow) Z:\Games\Steam\steamapps\common\The Stanley Parable Demo\stanley.exe
FirewallRules: [{E96AA3CE-A352-44E8-BA8E-0C916A22AEEB}] => (Allow) Z:\Games\Steam\steamapps\common\The Stanley Parable Demo\stanley.exe
FirewallRules: [{CD1D254B-EB12-4260-B6BB-54FD20E23A79}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2293\Agent.exe
FirewallRules: [{FD706985-D9E9-48F0-B035-C2A78E9E2136}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2293\Agent.exe
FirewallRules: [{120653E6-F17C-4609-AC14-FF0B8EEE4457}] => (Allow) Z:\Games\Battle.net\Battle.net.exe
FirewallRules: [{768B0C9A-6049-4032-9C49-64B12BD489A2}] => (Allow) Z:\Games\Battle.net\Battle.net.exe
FirewallRules: [{C8D9DE81-89AD-45D0-A11A-E0B77AF00A60}] => (Allow) Z:\Games\Hearthstone\Hearthstone.exe
FirewallRules: [{8FC9382E-FAB5-4023-A421-88B462F9AB45}] => (Allow) Z:\Games\Hearthstone\Hearthstone.exe
FirewallRules: [{1D2666DC-7B51-4D40-AA14-6D1E75C23C17}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\sourcesdk\bin\SDKLauncher.exe
FirewallRules: [{DE0F7A54-E519-47E8-A9F9-15BD87B5C955}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\sourcesdk\bin\SDKLauncher.exe
FirewallRules: [{67567F18-4FCB-4FAC-8169-9E1BC41CB50C}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{BDB42BF3-5D86-415B-9033-25802F51D717}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{2169D7CD-3383-4092-ADCC-65EFE296C953}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{86A43A2D-7BE0-403C-B877-E2DC75279088}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{09D8A90B-2EF8-4589-84BE-25E08D80815A}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{37A26A8A-6FE6-434A-AD7A-B92170F4FF4D}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{F522287D-CA6B-4B74-8512-E9D09EBA4B17}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\left4dead2.exe
FirewallRules: [{613D26FC-4EC0-4A18-8020-ADA99E3C95DC}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\left4dead2.exe
FirewallRules: [{4A584C49-6144-458F-BCF0-AFF33C37A78D}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{740959E7-BCE4-4A1B-91CD-BF2A376B0D02}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{21FFC9FB-80B1-4B16-9045-DEE959F0A983}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2328\Agent.exe
FirewallRules: [{00D0AF7C-50A6-4FB8-A451-EA626781D910}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2328\Agent.exe
FirewallRules: [{8F86B079-5435-4EDE-BB6A-FF3880821381}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{DD0A6A17-0678-492B-B0E8-07B29E83CC11}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{BCB8DC53-239A-43C3-AF26-27A22E739CE5}] => (Allow) Z:\Games\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{F01EF64D-CB33-4E7B-BFC0-89BF29661B70}] => (Allow) Z:\Games\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{655AE909-36A6-4284-936C-701C5F30F93D}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{E0F094D7-BFF7-413F-A7E5-B17E63975468}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{41D9B8F3-FD44-45FB-8F1F-7255BF37A492}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{E5369E82-AF85-4B54-B61D-6A4373F47478}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{9D749963-A202-4C05-87F6-B929E8D0C9D5}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{4D850B38-8BA6-4A1D-A402-01553AFAB53E}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{C4B42014-FC16-4778-BF48-A41F5995794B}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{AFC242DB-A945-4084-8B6F-E663473FE204}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{EAA6D4C0-AA70-4665-BB5A-9976C619FF98}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{48427D0B-C2D5-40D5-92A4-C34E64B83CB6}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{1614B3E4-38C3-40C8-867F-292988788456}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{E7363C5F-81D2-47D3-AD23-DBFA2FAFFC7C}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{6CEF0DFC-A488-47C0-9A70-1D4523EBAB47}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{B2AD07CB-6E5D-41A9-9B97-7BE929335654}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{C0262077-CB68-4A5A-A1FB-3C12A8817E63}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{B2916885-5696-4369-8D06-B64929CBFC58}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{F3ACAA42-DC85-4715-94AA-3511004A80AF}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{E1EE8146-6753-47F0-8F52-D79394A3F16F}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{17C9F93E-AD47-489E-AD4A-6C85C7E38EA7}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{2A86A18D-9B24-4834-BEB7-2514C80EED90}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{9BB83B35-E837-4F23-A804-3EC4BCDD0A63}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{17417485-0830-4C4B-8F43-C6E4EBF1CBD1}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [TCP Query User{0B5E8D47-2F35-4E4D-9249-0AFCC582EB9B}C:\program files (x86)\pfportchecker\pfportchecker.exe] => (Allow) C:\program files (x86)\pfportchecker\pfportchecker.exe
FirewallRules: [UDP Query User{1989FFD5-E51C-41E9-A288-5A883C28B305}C:\program files (x86)\pfportchecker\pfportchecker.exe] => (Allow) C:\program files (x86)\pfportchecker\pfportchecker.exe
FirewallRules: [{E78C484A-605E-4C87-BE0F-4FFC43FC295A}] => (Block) C:\program files (x86)\pfportchecker\pfportchecker.exe
FirewallRules: [{0D442FF5-57BC-4DC8-9D7C-10CE91ECD6B0}] => (Block) C:\program files (x86)\pfportchecker\pfportchecker.exe
FirewallRules: [{DD2EDF18-8070-48A7-9BFD-A77637529C72}] => (Allow) Z:\Games\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{B97BC866-A931-4D9A-AB2A-0D944E711B4A}] => (Allow) Z:\Games\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{19933A82-697F-4CEF-9BF0-70E09F606C3B}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{96C04B3B-44ED-4093-8799-8FFCF8ADD824}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{1540A9B9-DBFF-443D-B8BB-DE67B60926A0}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{E733573F-B771-40A7-AA85-A6886378BB52}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{6BA5CA1E-3D50-439F-B28D-A105438DEB5C}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{2E3911EA-5F4B-400D-9933-14FF875FB55A}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{EE0777B3-3704-470B-8077-DAA6D581CD71}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2391\Agent.exe
FirewallRules: [{5B735E41-0C7E-4075-BCAA-92469EBF17D5}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2391\Agent.exe
FirewallRules: [{514E04E5-7517-4311-9060-60C1784E6A8F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2380\Agent.exe
FirewallRules: [{DFCD6A65-F845-4F09-AB62-5A3FE23A8D5C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2380\Agent.exe
FirewallRules: [{57D39E24-6906-4498-863F-5722F33EF424}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{2480294B-2D4A-4061-9903-3207376192DA}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{13A5922B-F0F8-40F6-8217-768074947DE6}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{5711730E-9962-4131-9A78-F1928CD79668}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{4FB8A0C1-00BA-46A1-8ED3-38CD4C80E0C3}] => (Allow) Z:\Games\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{6A55AC0D-0AD1-44C6-A455-F88ADD2CEC26}] => (Allow) Z:\Games\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{DA19F6DD-243F-4B9F-A59F-F5300F52B863}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{D2664276-8DB1-44B5-8543-FC749DF860D7}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{D6A056CF-350E-4B19-BC8A-72DD8219801A}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{5539A947-77BE-4760-9767-EB436BE6578A}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{99E72E47-8EFE-4BBC-A501-8A450DC10B32}] => (Allow) Z:\Games\Steam\steamapps\common\Dungeons of Dredmor\Dungeons of Dredmor.exe
FirewallRules: [{83330E07-36D0-42E3-94AD-FAC9FB7E7328}] => (Allow) Z:\Games\Steam\steamapps\common\Dungeons of Dredmor\Dungeons of Dredmor.exe
FirewallRules: [{BDB46FA1-37AC-4F59-8404-617BC932ED29}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{35B6021D-6D5F-4868-9273-FEE2CA0CB8F6}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{F60C2030-A17C-4F9B-8750-9021337C66B3}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{A764FC63-5E1F-4F95-9660-E5F13D146E47}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [TCP Query User{97C34B8C-F4CA-4587-B8E0-3555EDC40F43}C:\programdata\battle.net\agent\agent.beta.2417\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.beta.2417\agent.exe
FirewallRules: [UDP Query User{617003B4-EB2B-4A3A-A1F2-EE82E0A73829}C:\programdata\battle.net\agent\agent.beta.2417\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.beta.2417\agent.exe
FirewallRules: [{72DE177E-3E0E-482E-A657-C05CFA2D7588}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2417\Agent.exe
FirewallRules: [{DBA96177-A407-4397-8F5F-E275578D5B82}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2417\Agent.exe
FirewallRules: [{37080692-4F3E-4EF0-AB07-21A083829280}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\garrysmod\hl2.exe
FirewallRules: [{56722607-AD71-45A3-BEA8-1AF22C0F5C55}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\garrysmod\hl2.exe
FirewallRules: [{F9CFF30C-0EC7-4A90-AC14-11CF88A907CE}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{6D47EA99-7760-4BE4-8806-A5A3224FDB26}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{67EDA77B-5D75-4088-B568-19BB198BACF0}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\garrysmod\hl2.exe
FirewallRules: [{332A35D5-48D7-425F-AA22-2A178FDA7F68}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\garrysmod\hl2.exe
FirewallRules: [{7CE95A9D-4BA5-4AC9-AA18-8F21A2F78F78}] => (Allow) Z:\Games\Steam\steamapps\common\Audiosurf\engine\QuestViewer.exe
FirewallRules: [{615340D5-59F7-470E-8D6B-88367BE371E6}] => (Allow) Z:\Games\Steam\steamapps\common\Audiosurf\engine\QuestViewer.exe
FirewallRules: [{86A96268-7D43-4499-B005-3C2A40458D32}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{006C56C9-C7F8-49D3-8452-E19078F5DA74}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{4DE2EEEA-7521-4AFB-8BBC-9315D1C1B161}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{C2E8F123-EF4E-43A5-A3DE-4E19D232B48E}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{1E190408-955D-4ED4-859E-15273A4149DC}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{06764159-C4A0-474F-B1BE-A3E4DD295111}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{6A269D06-C459-461C-B611-F26856CEFF80}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{F4834310-ABED-488E-B832-6B632418538C}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{AB809649-3E61-4F86-8BF3-5FB3B9C87CEC}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{05685A64-0D5A-4257-8338-ABA869514291}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{0F129257-4956-4A9D-921A-16EBDBD7CD4C}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{FD91D7E6-E11A-4DC2-BB83-EBA45950A052}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{8536A168-4A25-41BB-B730-D8FCB89D2CAF}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{876A3997-E5CF-4280-8FE6-E0EFD64771DF}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{922AF729-CBB9-497D-9B46-A609540934F7}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2426\Agent.exe
FirewallRules: [{1892C235-9F0A-4BC7-BE0E-536D8834ADA6}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2426\Agent.exe
FirewallRules: [{F1B89558-B1CC-4A7E-96F2-2D70A3B68F41}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{85A75C49-BE22-4551-B0F9-4478917C1108}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{0F39644C-7AB2-46DD-9967-50538553F811}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{7A5A3D71-FEE5-4884-9A97-CEE27DE84914}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{A8CDF843-BEA3-4532-9D95-B152D1887CC8}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{08398831-357F-4B24-A3A7-B2EB0ED2EE32}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{81CDD246-E8D1-44F7-8B76-712B21D2FA65}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{60D4B0AA-CFF3-48ED-8510-87B7FB1E7370}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{A11F13AD-28B3-49D5-9A57-2C215B0B1916}] => (Allow) Z:\Games\Steam\steamapps\common\Terraria\Terraria.exe
FirewallRules: [{4C8F9687-D7CE-454A-8A00-73856F8D4B8F}] => (Allow) Z:\Games\Steam\steamapps\common\Terraria\Terraria.exe
FirewallRules: [{9E155C51-4ACA-4006-B56C-5A68E068ACA8}] => (Allow) Z:\Games\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{7AB67655-9E40-4AA3-8B71-80D916233FDF}] => (Allow) Z:\Games\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{D342324B-D5BA-4A8C-9712-54731D06A7CC}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{462F4009-3F9D-4D4B-A9CD-A45FB208F19A}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{3BD773EB-E232-4546-BE95-2AAFCF1F5006}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{3F157142-BAF4-4324-B779-171587F0275B}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{C91D7C6E-7168-4726-B268-46CB1950D194}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{89AB050A-AFC9-4E38-800D-D74E244DC89C}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{01342998-6307-4ADD-8CB2-C9BB77B5FE6A}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{9990E911-10D9-4BE1-B260-00FAD93449E2}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{45631054-235D-4BE1-9174-F287405AA5BC}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{4A344139-BF26-4980-8327-020C9AB10D77}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{287696A1-6787-4B7A-A785-25C34B0A8064}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{47583003-D173-43D8-BDF8-192ADE3E6525}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{CA454A44-BB06-42EB-8AAF-0C29342B7490}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{94376A02-6CBE-42FB-B87F-9A6BB8436F21}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 test\dota.exe
FirewallRules: [{39701384-1BAB-40D9-AE79-FA1A89B44F80}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{86EF0B79-7E70-4466-A89D-F81379F23504}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{23B6E74A-BB54-4667-9D20-70CA2A4E8598}] => (Allow) Z:\Games\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{994E8670-8004-4146-A0F7-D722D19816C8}] => (Allow) Z:\Games\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{6CC30B53-A804-47F2-90FD-480729391A21}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{04D84B97-A6E8-4F6F-AAC2-FC857B4E171A}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{8FCCD952-B429-475B-913E-3C4C7CF836AC}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{C2D4BCD1-420E-435A-B7B3-ED6B9CA8EA4A}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{0C11E409-CA5F-4647-A373-0E6A64A15C8F}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{A418D871-5017-4D91-8AD2-56338808A72C}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{2211EF74-8C58-4032-8387-D5529D65ADE4}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{A475C18B-CB79-4DDF-A6B1-8A1A3438FF8F}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{2990F876-D451-4D71-906B-373AC8775C93}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{E7B10AAA-BC92-498F-ADC6-B3A2D232BA52}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{32193C82-3CFE-4278-AB6C-B93292D115CE}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{0F2F9CBA-8035-4E91-9BCC-2F141D985C71}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{794329A6-4075-43F7-BD02-258F2B823FFA}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{46A0F531-7CF9-483C-A606-B408EAD6AB8A}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{87590522-CE24-4F49-92DF-4172251208FB}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2426\Agent.exe
FirewallRules: [{1787F704-7431-45B7-B30A-369AACD5DFF2}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2426\Agent.exe
FirewallRules: [{8E9D2FD9-139E-405E-B0E5-A58277AB4991}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{C901CC4E-977A-4955-8AAA-DF3F80005791}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{C8898CB3-2E53-49EA-B78A-0B417D404F4C}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{4017703B-EE3D-413D-BC5E-B8D28435CB7E}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{7603E301-9EDB-4869-A9AC-A9DD67306ABF}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{D2AB9374-90D1-4233-9824-92AB1B0F68E8}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{E42DB542-6D74-4BB9-AAF2-CBE49AB71DE3}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{AC60E677-E5AB-4A8E-87E9-D1693934ABEF}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{65EC730B-8846-4F90-9215-1E3EC0F49C20}] => (Allow) Z:\Games\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{93F3D3E4-6B08-4360-96BC-E4621D02C08B}] => (Allow) Z:\Games\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{C907B176-C62E-44BF-B121-49494BD2A255}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\bin\SDKLauncher.exe
FirewallRules: [{434EBA71-5538-4DFE-AE94-D54BBFADD0C5}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\bin\SDKLauncher.exe
FirewallRules: [{F7F18778-1254-4EFF-AA22-41C9D18F66AA}] => (Allow) Z:\Games\Steam\steamapps\common\SourceFilmmaker\game\sfm.exe
FirewallRules: [{39D16C4B-961C-4A05-8A4F-B74656E576AD}] => (Allow) Z:\Games\Steam\steamapps\common\SourceFilmmaker\game\sfm.exe
FirewallRules: [{9DFFA81E-98CF-468C-9AAF-F2B4EE70F28B}] => (Allow) Z:\Games\Steam\steamapps\common\SourceFilmmaker\game\bin\qsdklauncher.exe
FirewallRules: [{DA6E6B17-BC32-4B15-BFAD-E1B0DB61A451}] => (Allow) Z:\Games\Steam\steamapps\common\SourceFilmmaker\game\bin\qsdklauncher.exe
FirewallRules: [{20EC4B08-3D0F-43CD-975F-5BFF0C894DFB}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\left4dead2.exe
FirewallRules: [{7A35F03F-CE64-4D7B-8BC8-B6ED9B51DCA0}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\left4dead2.exe
FirewallRules: [{BE049794-3980-4FF7-8298-6806CC80F14C}] => (Allow) Z:\Games\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{645253DD-C1C7-45F0-B8D0-14E412CD7E60}] => (Allow) Z:\Games\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{2E1DC3C9-9588-44E2-B41A-2A70B039F8AF}] => (Allow) Z:\Games\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{C839DD38-46D3-4F0A-8306-9FCDEAD2469D}] => (Allow) Z:\Games\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\Benchmark.bat
FirewallRules: [{78716755-6214-448D-B81C-42C9C7031A0C}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{94B3311C-BB24-435D-972B-EADD3895E9B8}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{A513FFD7-C1CA-4B84-B714-AC1046D95CBD}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{A5B8E3FF-2017-45D2-A244-C8485C2E55A1}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{97163198-FC67-4026-8172-249815040941}] => (Allow) Z:\Games\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{2827C616-EB1D-48D3-AC3D-4FD9C57C0FD8}] => (Allow) Z:\Games\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{E6CB43A0-8942-4884-BE15-F29E0BFF7DF6}] => (Allow) Z:\Games\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{7BD9758E-B310-4FAE-9108-AF42C7F250E3}] => (Allow) Z:\Games\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{F4A71890-64F4-45A8-9F5F-A1C26D02F206}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2514\Agent.exe
FirewallRules: [{04292F02-17DE-4E46-807F-3CDD969FFEA8}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2514\Agent.exe
FirewallRules: [{8D458784-B628-4AE2-8E08-4B6516BBCF00}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{F3938594-CEC0-487C-99F6-6FD3B8FFE35E}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{650B7114-05F5-4378-A99D-B1DBF4D8EDDE}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{D1262CB3-AF06-49D2-83CE-2F7498716A35}] => (Allow) Z:\Games\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{16FEB497-7F77-4170-9CA7-2429AC26627A}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{4C3E2937-386D-4F7A-B42A-1ACD3890D5B5}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{821BD268-253B-4F4C-9A35-969E907E4B85}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{74B0706C-37CB-477C-9F4D-7A578C603CE2}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{14F7FE5A-D6F1-45AB-ACFE-03937E57BBB9}] => (Allow) Z:\Games\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{6A29A1E8-3FF4-4215-8FF6-94F9C852255F}] => (Allow) Z:\Games\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{3000928D-A333-4307-B430-457C16AA305B}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{DF04CF36-CE6B-4907-A377-241509F9849B}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{AC939D9A-2F41-4A25-B4A2-B4D0A3B45DD4}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\left4dead2.exe
FirewallRules: [{54960450-188D-4FF8-938E-7A63C8174AAE}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\left4dead2.exe
FirewallRules: [{CE37C030-3C0D-4567-B93B-3541258695AB}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\bin\SDKLauncher.exe
FirewallRules: [{D9C22DD6-252D-4AD3-B8CD-EA496F4E91BF}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\bin\SDKLauncher.exe
FirewallRules: [{4F7D4171-113A-4E78-AFAD-784AE80254B4}] => (Allow) Z:\Games\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{A683A241-EC3E-4C82-B615-A5ECD591B446}] => (Allow) Z:\Games\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{5D7ED625-84F0-455D-9148-127BA3E114DE}] => (Allow) Z:\Games\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{466F3353-3A1E-40A0-B785-CB7AEA9A1AFD}] => (Allow) Z:\Games\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{7963D58C-9396-44DC-85F2-0471161228A6}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{E8B21A06-E26A-4DB2-A673-6BAE83799564}] => (Allow) Z:\Games\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{CFC2D2D8-125C-4FF6-87A1-D090BC443C61}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\left4dead2.exe
FirewallRules: [{7DFA7319-F72D-48ED-9D0F-F1797B9CE89B}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\left4dead2.exe
FirewallRules: [{2DBF3C9F-58D9-48F9-9E37-8252819A4031}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{7DDF1942-213C-41E9-BD19-BD60D3DA718E}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota.exe
FirewallRules: [{E96FACB4-C0EE-484F-AAC6-8DBBAECDEFEA}] => (Allow) Z:\Games\Steam\steamapps\common\The Stanley Parable\stanley.exe
FirewallRules: [{4269BF90-6A8A-4DF3-BFA9-8F5EFF29ECDF}] => (Allow) Z:\Games\Steam\steamapps\common\The Stanley Parable\stanley.exe
FirewallRules: [{3C0629CA-4B88-4DC6-ACA4-CF95B42FF580}] => (Allow) Z:\Games\Steam\steamapps\common\Day of Defeat Source\hl2.exe
FirewallRules: [{C2833FAD-38C3-4C73-A31E-AC12511BEE32}] => (Allow) Z:\Games\Steam\steamapps\common\Day of Defeat Source\hl2.exe
FirewallRules: [{4C2604E4-69E1-476B-B3C6-0A4957B30E2D}] => (Allow) Z:\Games\Steam\steamapps\common\Merchants of Brooklyn\Bin32\Launcher.exe
FirewallRules: [{DE2CAD69-3A08-4CA2-932D-485AEEA6AE3F}] => (Allow) Z:\Games\Steam\steamapps\common\Merchants of Brooklyn\Bin32\Launcher.exe
FirewallRules: [{BBDDD80D-86A8-496B-A0F2-55D7ECB72694}] => (Allow) Z:\Applications\Sony Vegas Pro 12.0 x64\vegas120.exe
FirewallRules: [{22874E83-C0D1-48EB-951E-BD7A9068BFB7}] => (Allow) Z:\Applications\Sony Vegas Pro 12.0 x64\vegas120.exe
FirewallRules: [{2C244343-0E60-40B0-8A09-5FDA7734E31C}] => (Allow) Z:\Applications\Sony Vegas Pro 12.0 x64\vegas120.exe
FirewallRules: [{6DA2862A-67D5-4B2C-8F68-C26594765DE6}] => (Allow) Z:\Applications\Sony Vegas Pro 12.0 x64\vegas120.exe
FirewallRules: [TCP Query User{ED096723-4166-426D-9010-3142FA8081B2}Z:\games\steam\steam.exe] => (Allow) Z:\games\steam\steam.exe
FirewallRules: [UDP Query User{814F02B0-2574-40F8-99CF-ACF56BF576F2}Z:\games\steam\steam.exe] => (Allow) Z:\games\steam\steam.exe
FirewallRules: [{49A9ED2C-CA17-4937-A064-613C4BD5B861}] => (Allow) Z:\Applications\LINE\Line.exe
FirewallRules: [{0B4F7A77-2788-4E23-8C1C-1A99D8EFEB35}] => (Allow) Z:\Applications\LINE\Line.exe
FirewallRules: [{CC49FD89-229A-4BAA-83D3-F379FC27DB65}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2581\Agent.exe
FirewallRules: [{6EF3A5A6-7C79-4866-B625-F05677A7236C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2581\Agent.exe
FirewallRules: [{D5720C59-04FF-47AF-A65B-8A13A7C4278F}] => (Allow) C:\Users\Samuel\AppData\Local\Temp\QQGameDownloader\bns_1389668381\MiniQQDL.exe
FirewallRules: [{C1A6B7D8-4B56-48FF-9780-7BBBF0C136F3}] => (Allow) C:\Users\Samuel\AppData\Local\Temp\QQGameDownloader\bns_1389668381\MiniQQDL.exe
FirewallRules: [{E66B9422-4DBA-41E8-B6E9-6AB073498FC1}] => (Allow) c:\users\samuel\appdata\local\temp\qqgamedownloader\bns_1389668381\teniodl.exe
FirewallRules: [{AC15F726-8D50-4E18-A52F-E8EB0423AE5F}] => (Allow) c:\users\samuel\appdata\local\temp\qqgamedownloader\bns_1389668381\teniodl.exe
FirewallRules: [{226087ED-51C5-415D-98E7-97F18B437F84}] => (Allow) z:\games\blade and soul\剑灵_腾讯\tcls\launcher.exe
FirewallRules: [{C075765A-00F1-41F0-A594-C7FDAC8F1AAB}] => (Allow) z:\games\blade and soul\剑灵_腾讯\tcls\launcher.exe
FirewallRules: [{6DE94780-A0C5-4E95-80ED-8E9E6D05AC0C}] => (Allow) c:\users\samuel\appdata\roaming\tencent\剑灵\b2ea55f798a1002fef3646082a08635e\teniodl\teniodl.exe
FirewallRules: [{FB29FC3C-8FD7-43F7-AD6C-B29EF610DDF9}] => (Allow) c:\users\samuel\appdata\roaming\tencent\剑灵\b2ea55f798a1002fef3646082a08635e\teniodl\teniodl.exe
FirewallRules: [{A86B8E5E-BEBB-4705-8541-CCD1BC1CA71C}] => (Allow) z:\games\blade and soul\剑灵_腾讯\tcls\launcher.exe
FirewallRules: [{55A22ED0-3BA4-43F9-B3B9-1CF076768F38}] => (Allow) z:\games\blade and soul\剑灵_腾讯\tcls\launcher.exe
FirewallRules: [TCP Query User{61623DC3-8595-44E2-AD0C-39940C94F881}Z:\games\blade and soul\剑灵_腾讯\tcls\tenprotect\taslogin.exe] => (Allow) Z:\games\blade and soul\剑灵_腾讯\tcls\tenprotect\taslogin.exe
FirewallRules: [UDP Query User{C9F41050-92C4-4FA8-9E88-874D9EDBECA4}Z:\games\blade and soul\剑灵_腾讯\tcls\tenprotect\taslogin.exe] => (Allow) Z:\games\blade and soul\剑灵_腾讯\tcls\tenprotect\taslogin.exe
FirewallRules: [{E7AE4D00-B317-42CD-9F69-211A8F48511D}] => (Block) Z:\games\blade and soul\剑灵_腾讯\tcls\tenprotect\taslogin.exe
FirewallRules: [{FDC4DAFA-558D-43A0-AB83-448ADC1229FE}] => (Block) Z:\games\blade and soul\剑灵_腾讯\tcls\tenprotect\taslogin.exe
FirewallRules: [{2B988478-AB34-4E7F-B728-01FD32728A3F}] => (Allow) Z:\Games\Blade and Soul\剑灵_腾讯\bin\Cross\CrossProxy.exe
FirewallRules: [{9DF2A9C6-042A-434F-A59A-72B3FBB9BB1A}] => (Allow) Z:\Games\Blade and Soul\剑灵_腾讯\bin\Cross\CrossProxy.exe
FirewallRules: [{7C7707F6-54A2-48D5-BCA1-9936C5821E28}] => (Allow) Z:\Games\Blade and Soul\剑灵_腾讯\bin\Cross\CrossProxy.exe
FirewallRules: [{FB484DDF-F408-4A82-A06A-07ED1E62CA4C}] => (Allow) Z:\Games\Blade and Soul\剑灵_腾讯\bin\Cross\CrossProxy.exe
FirewallRules: [{357F8184-9E53-4AF9-99CB-FF8E71F89A75}] => (Allow) Z:\Games\Blade and Soul\剑灵_腾讯\bin\Cross\Apps\CQS\QTalk\Bin\miniQTalk.exe
FirewallRules: [{86782CF3-47C2-4FEB-86FC-84F2B25A80DC}] => (Allow) Z:\Games\Blade and Soul\剑灵_腾讯\bin\Cross\Apps\CQS\QTalk\Bin\miniQTalk.exe
FirewallRules: [{A210DB6C-9C55-4414-9637-7A29F62607D3}] => (Allow) Z:\Games\Blade and Soul\剑灵_腾讯\bin\Cross\Apps\CQS\QTalk\Bin\miniQTalk.exe
FirewallRules: [{0F7B078B-BBB2-46ED-B0AE-14994DB6689F}] => (Allow) Z:\Games\Blade and Soul\剑灵_腾讯\bin\Cross\Apps\CQS\QTalk\Bin\miniQTalk.exe
FirewallRules: [{AA9EBB2B-10FC-46D9-86E7-B4F4247D9ECA}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2638\Agent.exe
FirewallRules: [{D8E0ACA8-CE9F-4F45-8B8A-F702A49FB559}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2638\Agent.exe
FirewallRules: [{36A56FB2-5F6C-4C3B-B66E-4ECBCB9AF815}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2680\Agent.exe
FirewallRules: [{639DC8B9-03CA-4CD5-B381-6AEA7670D8C2}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2680\Agent.exe
FirewallRules: [TCP Query User{C839CBED-F9E4-455A-9FCA-AD35DC5CE9DD}Z:\games\steam\steamapps\common\starbound\win32\starbound_server.exe] => (Allow) Z:\games\steam\steamapps\common\starbound\win32\starbound_server.exe
FirewallRules: [UDP Query User{804877AA-1B12-4BF0-B888-0DAD0B3F1E11}Z:\games\steam\steamapps\common\starbound\win32\starbound_server.exe] => (Allow) Z:\games\steam\steamapps\common\starbound\win32\starbound_server.exe
FirewallRules: [{3B544CEC-8373-4651-9A5E-DD3A9F3AE384}] => (Allow) Z:\games\steam\steamapps\common\starbound\win32\starbound_server.exe
FirewallRules: [{A31DBF84-9862-44F0-855B-0C4BA75BEF9C}] => (Allow) Z:\games\steam\steamapps\common\starbound\win32\starbound_server.exe
FirewallRules: [{D0817B92-ABC1-4CB3-A587-1CA462D0D915}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2689\Agent.exe
FirewallRules: [{6FA9E5D0-83C1-4A45-BEEC-53E1C9F40274}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2689\Agent.exe
FirewallRules: [{DAF69F30-E32D-4497-BC1E-77885A00F805}] => (Allow) Z:\Games\Steam\steamapps\common\TacticalIntervention\bin\tacint.exe
FirewallRules: [{929EAEF9-CF32-43B9-B1DC-8376AC00D993}] => (Allow) Z:\Games\Steam\steamapps\common\TacticalIntervention\bin\tacint.exe
FirewallRules: [TCP Query User{CC974AE3-000E-4B5D-81E6-782EF32D704B}C:\users\samuel\downloads\adhocserverproonline\adhocsever.exe] => (Allow) C:\users\samuel\downloads\adhocserverproonline\adhocsever.exe
FirewallRules: [UDP Query User{09A96DE1-6EA8-409D-A81F-05C57817E298}C:\users\samuel\downloads\adhocserverproonline\adhocsever.exe] => (Allow) C:\users\samuel\downloads\adhocserverproonline\adhocsever.exe
FirewallRules: [{7CE4AE9E-A76A-4FBC-A1BA-E34690CDF4CB}] => (Block) C:\users\samuel\downloads\adhocserverproonline\adhocsever.exe
FirewallRules: [{DA66441C-9605-4FE7-B000-F315824AA359}] => (Block) C:\users\samuel\downloads\adhocserverproonline\adhocsever.exe
FirewallRules: [TCP Query User{45557D08-881C-43BD-821B-2DC28BEF8007}Z:\games\emulators\ppsspp 0.9.7.2\ppssppwindows64.exe] => (Allow) Z:\games\emulators\ppsspp 0.9.7.2\ppssppwindows64.exe
FirewallRules: [UDP Query User{87375E0C-1526-4939-AFFB-F64B83B43F8A}Z:\games\emulators\ppsspp 0.9.7.2\ppssppwindows64.exe] => (Allow) Z:\games\emulators\ppsspp 0.9.7.2\ppssppwindows64.exe
FirewallRules: [{16D7117B-B9F1-4F6C-BE7B-502D7992BB41}] => (Block) Z:\games\emulators\ppsspp 0.9.7.2\ppssppwindows64.exe
FirewallRules: [{9EA1D98C-173F-4813-8B5C-D41B700836E7}] => (Block) Z:\games\emulators\ppsspp 0.9.7.2\ppssppwindows64.exe
FirewallRules: [{20628790-6D7E-4874-863F-FF2B25C3BB1F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe
FirewallRules: [{7399A1D3-F27B-4036-A43C-B7412113544A}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe
FirewallRules: [{39ED3570-47B3-4AE9-B943-71042F75E238}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2737\Agent.exe
FirewallRules: [{C4987F96-9637-4AA2-A34E-A1D754B6C0E8}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2737\Agent.exe
FirewallRules: [TCP Query User{8D297276-3D72-4394-A549-A0D40E477525}Z:\applications\soulseekqt\soulseekqt.exe] => (Allow) Z:\applications\soulseekqt\soulseekqt.exe
FirewallRules: [UDP Query User{819409FB-9D0A-4275-98A4-65F3511B7098}Z:\applications\soulseekqt\soulseekqt.exe] => (Allow) Z:\applications\soulseekqt\soulseekqt.exe
FirewallRules: [{2D9C9C25-82DE-45A4-A549-056229252E82}] => (Allow) Z:\applications\soulseekqt\soulseekqt.exe
FirewallRules: [{C4E4F24E-B7A7-4A65-8A55-51872547D5CE}] => (Allow) Z:\applications\soulseekqt\soulseekqt.exe
FirewallRules: [{CFD4AC77-33C8-44D4-8F4C-D66C4D8FF32C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe
FirewallRules: [{9F308F5C-E3F6-4FA0-A8BE-9CAFDD93C058}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe
FirewallRules: [TCP Query User{8E4EB7DD-E5AB-4886-A6EB-F046C9AA06F4}Z:\games\steam\steamapps\common\dark souls prepare to die edition\data\data.exe] => (Allow) Z:\games\steam\steamapps\common\dark souls prepare to die edition\data\data.exe
FirewallRules: [UDP Query User{E5230170-237D-4F83-B661-B58EE3A74039}Z:\games\steam\steamapps\common\dark souls prepare to die edition\data\data.exe] => (Allow) Z:\games\steam\steamapps\common\dark souls prepare to die edition\data\data.exe
FirewallRules: [TCP Query User{2ADE79F1-6466-4300-8822-28631A3547B3}Z:\games\diablo iii\diablo iii.exe] => (Allow) Z:\games\diablo iii\diablo iii.exe
FirewallRules: [UDP Query User{F2BDE8F9-F6E9-4B42-9455-8484BC8410B7}Z:\games\diablo iii\diablo iii.exe] => (Allow) Z:\games\diablo iii\diablo iii.exe
FirewallRules: [{82B77D6D-C88E-489F-A699-4ADC18910507}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe
FirewallRules: [{EC81D653-5B43-4910-BBE1-0E088506C11A}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe
FirewallRules: [{FA9F749D-B6D1-444B-8311-F22C6DAF43CE}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe
FirewallRules: [{8114BBC0-4644-4406-BBDB-EACD67749825}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe
FirewallRules: [{29E33B3F-607B-45A3-88AC-FE6DD1B95184}] => (Allow) Z:\Games\Steam\steamapps\common\FINAL FANTASY VII\FF7_Launcher.exe
FirewallRules: [{16EDB7A9-8FE1-40ED-B126-480DD8312C19}] => (Allow) Z:\Games\Steam\steamapps\common\FINAL FANTASY VII\FF7_Launcher.exe
FirewallRules: [TCP Query User{10F396FA-787B-4727-ACA9-F66367516888}C:\program files (x86)\deluge\deluge.exe] => (Allow) C:\program files (x86)\deluge\deluge.exe
FirewallRules: [UDP Query User{EB051B65-CEC7-436E-8D6F-39E1D0B1EBD9}C:\program files (x86)\deluge\deluge.exe] => (Allow) C:\program files (x86)\deluge\deluge.exe
FirewallRules: [TCP Query User{DA7FBF9A-BFE4-4046-B99F-FE21BE252070}C:\users\samuel\downloads\downloader_diablo2_enus.exe] => (Block) C:\users\samuel\downloads\downloader_diablo2_enus.exe
FirewallRules: [UDP Query User{DFFFB698-2C48-449E-ACAA-BA33EDED9C4A}C:\users\samuel\downloads\downloader_diablo2_enus.exe] => (Block) C:\users\samuel\downloads\downloader_diablo2_enus.exe
FirewallRules: [TCP Query User{946F2A79-9FA6-4EE9-8D18-A5B03C28CFF3}C:\users\samuel\downloads\downloader_diablo2_lord_of_destruction_enus.exe] => (Allow) C:\users\samuel\downloads\downloader_diablo2_lord_of_destruction_enus.exe
FirewallRules: [UDP Query User{17511C1C-823C-42F6-BD7C-6019CC0984FE}C:\users\samuel\downloads\downloader_diablo2_lord_of_destruction_enus.exe] => (Allow) C:\users\samuel\downloads\downloader_diablo2_lord_of_destruction_enus.exe
FirewallRules: [TCP Query User{F93650EA-61E4-4600-B2B0-2AB93462315F}Z:\games\diablo ii\game.exe] => (Allow) Z:\games\diablo ii\game.exe
FirewallRules: [UDP Query User{979EA20A-D3F3-43FA-B88D-375B8BF6F667}Z:\games\diablo ii\game.exe] => (Allow) Z:\games\diablo ii\game.exe
FirewallRules: [TCP Query User{8A107873-7475-4A62-B2EE-4C6E40E9FFF0}Z:\games\diablo ii\d2multiresgame.exe] => (Allow) Z:\games\diablo ii\d2multiresgame.exe
FirewallRules: [UDP Query User{6799B6F1-D55C-4AF1-8045-5066DAC7F6E3}Z:\games\diablo ii\d2multiresgame.exe] => (Allow) Z:\games\diablo ii\d2multiresgame.exe
FirewallRules: [TCP Query User{2B95A397-0E70-49C1-BD9E-1B1CF35EB794}Z:\games\guild wars 2\gw2.exe] => (Allow) Z:\games\guild wars 2\gw2.exe
FirewallRules: [UDP Query User{A5B56625-F02E-486F-A273-D39110E99E00}Z:\games\guild wars 2\gw2.exe] => (Allow) Z:\games\guild wars 2\gw2.exe
FirewallRules: [{AEA63DCE-B7F0-4267-AF17-C4E0F02FDCEC}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\garrysmod\hl2.exe
FirewallRules: [{CAD9614E-7F68-443D-9BE0-CD1F7F425CE5}] => (Allow) Z:\Games\Steam\steamapps\bobnintendo\garrysmod\hl2.exe
FirewallRules: [{AB63D70E-CC6D-4F59-A64B-0F523213ACDF}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2787\Agent.exe
FirewallRules: [{D55C055B-2898-464F-BEFC-BD82FE6326DD}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2787\Agent.exe
FirewallRules: [TCP Query User{D501EE54-5CCE-4E0C-9AC8-8016F26E002D}Z:\games\hearthstone\hearthstone.exe] => (Allow) Z:\games\hearthstone\hearthstone.exe
FirewallRules: [UDP Query User{158CA098-55D2-40B5-9EBC-AEA0CD259B41}Z:\games\hearthstone\hearthstone.exe] => (Allow) Z:\games\hearthstone\hearthstone.exe
FirewallRules: [TCP Query User{30A58F5A-4BF2-4A04-9AE0-9DC3FAADD892}Z:\games\steam\steamapps\common\saints row the third\saintsrowthethird_dx11.exe] => (Allow) Z:\games\steam\steamapps\common\saints row the third\saintsrowthethird_dx11.exe
FirewallRules: [UDP Query User{07EA9C57-5437-42C6-9DEE-710B36F3A763}Z:\games\steam\steamapps\common\saints row the third\saintsrowthethird_dx11.exe] => (Allow) Z:\games\steam\steamapps\common\saints row the third\saintsrowthethird_dx11.exe
FirewallRules: [TCP Query User{5C4CAE35-A863-4879-8005-15B13A64F988}C:\program files (x86)\soulseekqt\soulseekqt.exe] => (Allow) C:\program files (x86)\soulseekqt\soulseekqt.exe
FirewallRules: [UDP Query User{2E53EFD4-780C-409D-8FA9-AE024C0BC829}C:\program files (x86)\soulseekqt\soulseekqt.exe] => (Allow) C:\program files (x86)\soulseekqt\soulseekqt.exe
FirewallRules: [{9D5D8C93-89B1-49AE-B7C0-5086326F6C89}] => (Allow) Z:\Games\Steam\steamapps\common\Saints Row IV\SaintsRowIV.exe
FirewallRules: [{36F1EB35-36E1-47D6-AA86-F1D46571409F}] => (Allow) Z:\Games\Steam\steamapps\common\Saints Row IV\SaintsRowIV.exe
FirewallRules: [{0E5DCAD2-E573-4123-ACE4-2AE43032E043}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2816\Agent.exe
FirewallRules: [{F87FDCC3-E957-4AEF-B53E-11710C599A1D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2816\Agent.exe
FirewallRules: [{0C99C984-A8DD-479B-AA36-B73298A5542B}] => (Allow) Z:\Games\Steam\steamapps\common\Half-Life 2 Deathmatch\hl2.exe
FirewallRules: [{A1133F1C-C0A6-40EF-B7AF-E244C3686D48}] => (Allow) Z:\Games\Steam\steamapps\common\Half-Life 2 Deathmatch\hl2.exe
FirewallRules: [{EADC4D8E-67B8-4378-BE0E-85D8AD86CBC0}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{27D3372B-8C03-41AB-9858-5BDDD7B1BB24}] => (Allow) Z:\Games\Steam\steamapps\common\Risk of Rain\Risk of Rain.exe
FirewallRules: [{5DDF621B-7066-4DBB-8123-F03DBAF981DA}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\left4dead2.exe
FirewallRules: [{9E499D78-4D04-4F16-AEA9-8D0DF30BF2A6}] => (Allow) Z:\Games\Steam\steamapps\common\left 4 dead 2\left4dead2.exe
FirewallRules: [{D0C101C7-1636-4681-8C1B-BD94C2DC1DBF}] => (Allow) Z:\Games\Steam\steamapps\common\CastleCrashers\castle.exe
FirewallRules: [{EC3186C1-0A10-4E68-8614-3D484CFB13DC}] => (Allow) Z:\Games\Steam\steamapps\common\CastleCrashers\castle.exe
FirewallRules: [{767A366A-E0FE-4385-ABA1-84A04AC9AE2D}] => (Allow) Z:\Games\Steam\steamapps\common\mountblade warband\mb_warband.exe
FirewallRules: [{C8033EFE-496C-4027-B5D9-7B861B65F41D}] => (Allow) Z:\Games\Steam\steamapps\common\mountblade warband\mb_warband.exe
FirewallRules: [{0AD11BF4-60A6-41C7-BAF7-FA34CADCE9F0}] => (Allow) Z:\Games\Steam\steamapps\common\RollerCoaster Tycoon Deluxe\RCT.EXE
FirewallRules: [{ED23BAB1-50C9-4BE4-8A09-0748DF465349}] => (Allow) Z:\Games\Steam\steamapps\common\RollerCoaster Tycoon Deluxe\RCT.EXE
FirewallRules: [TCP Query User{4C548C13-6E48-4FF6-9D32-F19314D7F7C1}Z:\games\steam\steamapps\common\sourcefilmmaker\game\sfm.exe] => (Allow) Z:\games\steam\steamapps\common\sourcefilmmaker\game\sfm.exe
FirewallRules: [UDP Query User{E870F148-3F05-435D-ABA0-9441D09C37ED}Z:\games\steam\steamapps\common\sourcefilmmaker\game\sfm.exe] => (Allow) Z:\games\steam\steamapps\common\sourcefilmmaker\game\sfm.exe
FirewallRules: [{1311CB5E-33E8-4226-9E8B-928B1E93BE6A}] => (Allow) Z:\Games\Steam\steamapps\common\TacticalIntervention\bin\tacint.exe
FirewallRules: [{CEB675D7-B9C0-404A-A195-587EE788128D}] => (Allow) Z:\Games\Steam\steamapps\common\TacticalIntervention\bin\tacint.exe
FirewallRules: [{5713A9F7-1387-4046-A7B3-7D8C4CE6D796}] => (Allow) Z:\Games\Steam\steamapps\common\Audiosurf 2\Audiosurf2.exe
FirewallRules: [{F5117360-1D2B-4FE9-9097-45F66566D964}] => (Allow) Z:\Games\Steam\steamapps\common\Audiosurf 2\Audiosurf2.exe
FirewallRules: [{C6B69AE3-4ACA-443A-B0AF-8B0F3988E0A1}] => (Allow) Z:\Games\Steam\steamapps\common\RPGVXAce\RPGVXAce.exe
FirewallRules: [{CEFC2BDB-5A5F-4595-A332-6EF53303E5E4}] => (Allow) Z:\Games\Steam\steamapps\common\RPGVXAce\RPGVXAce.exe
FirewallRules: [{F7DA5EB0-81BD-4A6B-9F46-5413DB206277}] => (Allow) Z:\Applications\iTunes\iTunes.exe
FirewallRules: [{E4881FC8-73CA-4645-BF78-B5EFE68A0984}] => (Allow) Z:\Games\Steam\steamapps\common\The Stanley Parable Demo\stanley.exe
FirewallRules: [{B8DA1CED-3CC3-4EF1-845A-979C006AF20F}] => (Allow) Z:\Games\Steam\steamapps\common\The Stanley Parable Demo\stanley.exe
FirewallRules: [{BA2589AD-18DF-45F7-9072-76B132A993DE}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\bin_ship\daupdatersvc.service.exe
FirewallRules: [{85022791-3686-440A-B7E3-5023A0608A4F}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\bin_ship\daupdatersvc.service.exe
FirewallRules: [{F1D46E10-9E67-464B-852A-AEAF5FEDED5F}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\tools\DragonAgeToolset.exe
FirewallRules: [{7C9ACD7B-A9D3-4317-960F-CC3C104A6CBF}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\tools\DragonAgeToolset.exe
FirewallRules: [{47085FA8-9249-4B73-8E7A-28EA257848B6}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\tools\RPU.exe
FirewallRules: [{822E3C58-6108-4BFB-8A6C-4873825DE107}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\tools\RPU.exe
FirewallRules: [{87279BB6-B18B-4382-8C8E-1D8EF2F70A93}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\tools\lightmapper\eclipseRay.exe
FirewallRules: [{FCAF713F-F9B4-42BD-83AB-90BEA6A4DCFA}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\tools\lightmapper\eclipseRay.exe
FirewallRules: [{53AD25DB-36B7-43AB-80D4-0D751BF3041C}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\tools\GffEditor.exe
FirewallRules: [{721A29D7-2932-4467-9051-747768E06A15}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\tools\GffEditor.exe
FirewallRules: [{216A4CB7-AB33-4173-84DD-F46D72A6856B}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\tools\ErfEditor.exe
FirewallRules: [{76C476DE-AD03-4E5D-AD3B-A5B401999A02}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Origins\tools\ErfEditor.exe
FirewallRules: [TCP Query User{C1D6CE71-0627-47F8-84B4-2D667B168769}C:\windows\syswow64\regsvr32.exe] => (Allow) C:\windows\syswow64\regsvr32.exe
FirewallRules: [UDP Query User{1A20E2C8-21A0-44FE-B775-31805B63DF0F}C:\windows\syswow64\regsvr32.exe] => (Allow) C:\windows\syswow64\regsvr32.exe
FirewallRules: [{3F2C66AF-61B4-49BA-BA3E-2C48400C834E}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Ultimate Edition\DAOriginsLauncher.exe
FirewallRules: [{A8110AE6-0D66-41C9-9E18-D7584DD8221F}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Ultimate Edition\DAOriginsLauncher.exe
FirewallRules: [{8492CF71-D353-4169-A683-FC8C8BB076D1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3023\Agent.exe
FirewallRules: [{1656EDE2-FF3A-423A-921B-C1C75B9FC6B7}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3023\Agent.exe
FirewallRules: [{DE604860-4A1F-4B48-BA65-70B04370E13F}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe
FirewallRules: [{8B495B83-6A9E-4D85-AA83-8936467B3572}] => (Allow) Z:\Games\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe
FirewallRules: [TCP Query User{7BD6DC7D-1871-40CD-BA54-697DADA59041}Z:\games\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe] => (Allow) Z:\games\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe
FirewallRules: [UDP Query User{E062424B-0414-4935-BA31-DE08B40770A1}Z:\games\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe] => (Allow) Z:\games\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe
FirewallRules: [TCP Query User{A8B93995-0C12-45EA-9F03-B5EF0DA41F8A}Z:\games\steam\steamapps\common\dragon age ultimate edition\tools\dragonagetoolset.exe] => (Allow) Z:\games\steam\steamapps\common\dragon age ultimate edition\tools\dragonagetoolset.exe
FirewallRules: [UDP Query User{921B1BD5-CD8B-4DD6-9DB8-C7875104BA14}Z:\games\steam\steamapps\common\dragon age ultimate edition\tools\dragonagetoolset.exe] => (Allow) Z:\games\steam\steamapps\common\dragon age ultimate edition\tools\dragonagetoolset.exe
FirewallRules: [TCP Query User{A473FDE2-B660-404F-B1AB-C03412DE1322}Z:\games\steam\steamapps\common\dragon age ultimate edition\tools\erfeditor.exe] => (Allow) Z:\games\steam\steamapps\common\dragon age ultimate edition\tools\erfeditor.exe
FirewallRules: [UDP Query User{021F3803-468F-4C74-9DEF-75C458640F76}Z:\games\steam\steamapps\common\dragon age ultimate edition\tools\erfeditor.exe] => (Allow) Z:\games\steam\steamapps\common\dragon age ultimate edition\tools\erfeditor.exe
FirewallRules: [{23C9DFE2-9DAA-48C6-931D-51463D92A0E3}] => (Allow) Z:\Games\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{96C00E76-6A15-4E52-B84C-2C9C3B31B7CD}] => (Allow) Z:\Games\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [TCP Query User{8B08B6D4-FFF6-42F7-84AF-936A94E2B953}Z:\xampp\apache\bin\httpd.exe] => (Allow) Z:\xampp\apache\bin\httpd.exe
FirewallRules: [UDP Query User{C7A79598-D671-4867-8817-C426722426A9}Z:\xampp\apache\bin\httpd.exe] => (Allow) Z:\xampp\apache\bin\httpd.exe
FirewallRules: [TCP Query User{B8EA3DD5-1126-4C44-B810-2E191E2E393A}Z:\xampp\mysql\bin\mysqld.exe] => (Allow) Z:\xampp\mysql\bin\mysqld.exe
FirewallRules: [UDP Query User{64330676-A6DE-4849-8EA3-54CDD89B8428}Z:\xampp\mysql\bin\mysqld.exe] => (Allow) Z:\xampp\mysql\bin\mysqld.exe
FirewallRules: [TCP Query User{E720D8DF-919C-4B5E-AC76-F06CFEC38E6B}C:\program files (x86)\foobar2000\foobar2000.exe] => (Allow) C:\program files (x86)\foobar2000\foobar2000.exe
FirewallRules: [UDP Query User{7B564FD3-EEDD-4A68-93B7-A81F66FE4FD8}C:\program files (x86)\foobar2000\foobar2000.exe] => (Allow) C:\program files (x86)\foobar2000\foobar2000.exe
FirewallRules: [TCP Query User{03EE70C0-34D2-4186-85D6-55DD1610F052}C:\users\samuel\downloads\foobar2000portable\foobar2000.exe] => (Allow) C:\users\samuel\downloads\foobar2000portable\foobar2000.exe
FirewallRules: [UDP Query User{44969AEB-E70A-416D-9E38-8AB40882F24B}C:\users\samuel\downloads\foobar2000portable\foobar2000.exe] => (Allow) C:\users\samuel\downloads\foobar2000portable\foobar2000.exe
FirewallRules: [{95DC0C99-09D9-445A-B154-BE80EB7207A2}] => (Allow) Z:\Games\Steam\steamapps\common\SourceFilmmaker\game\bin\qsdklauncher.exe
FirewallRules: [{64489524-3A43-44FE-86B0-6B222BE6A4BB}] => (Allow) Z:\Games\Steam\steamapps\common\SourceFilmmaker\game\bin\qsdklauncher.exe
FirewallRules: [{74B4AF98-816E-448C-95E1-33C3ADE37AC5}] => (Allow) Z:\Games\Steam\steamapps\common\The Stanley Parable\stanley.exe
FirewallRules: [{F19ACFE3-ED66-4BB9-8F34-E3D4F0C8B14B}] => (Allow) Z:\Games\Steam\steamapps\common\The Stanley Parable\stanley.exe
FirewallRules: [{7F2633A6-FEFF-4EA1-A71D-B188DAFEB1CD}] => (Allow) Z:\Applications\FL Studio 11\FL64.exe
FirewallRules: [{18E0C764-88BF-4A7B-8159-2EDAC0F4DC3C}] => (Allow) Z:\Applications\FL Studio 11\FL64.exe
FirewallRules: [{B9CF593C-FF2C-4577-ABBA-F7911314740A}] => (Allow) Z:\Applications\FL Studio 11\FL64.exe
FirewallRules: [{966CB34B-8890-471A-BC9F-B4F1AC9B4299}] => (Allow) Z:\Applications\FL Studio 11\FL64.exe
FirewallRules: [{41E5AC17-A24C-4902-972D-6850A848C68E}] => (Allow) Z:\Applications\FL Studio 11\FL.exe
FirewallRules: [{78770521-BE46-46E6-B184-80E8D4F2C960}] => (Allow) Z:\Applications\FL Studio 11\FL.exe
FirewallRules: [{4C27D046-C256-40B8-BEDB-397394A2FD5C}] => (Allow) Z:\Applications\FL Studio 11\FL.exe
FirewallRules: [{63174C24-DE6D-4A25-A56B-F34F8250152D}] => (Allow) Z:\Applications\FL Studio 11\FL.exe
FirewallRules: [{D928687A-A0F2-4DF0-86A5-1E942E8547EB}] => (Allow) Z:\Games\Steam\steamapps\common\Metro Last Light\MetroLL.exe
FirewallRules: [{EB75230C-5D53-49D8-B41B-B8295731C5F4}] => (Allow) Z:\Games\Steam\steamapps\common\Metro Last Light\MetroLL.exe
FirewallRules: [{C529BC94-2063-4C62-AB3E-75E681A83FC6}] => (Allow) Z:\Games\Steam\steamapps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{2DB8FB05-1C28-4D9C-8CD1-FFB6DB31A112}] => (Allow) Z:\Games\Steam\steamapps\common\Fallout New Vegas\FalloutNVLauncher.exe
FirewallRules: [{4EB37454-BE53-4721-BEBE-1628D841730C}] => (Allow) Z:\Games\Steam\bin\steamwebhelper.exe
FirewallRules: [{81DDF222-D30C-461F-A99F-B3506D44B84F}] => (Allow) Z:\Games\Steam\bin\steamwebhelper.exe
FirewallRules: [{A7D92465-7338-4BD2-B5B3-3FE7CA2D72BD}] => (Allow) C:\Users\Samuel\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{8A4BC407-A3ED-40EA-B70A-E2E448C27354}] => (Allow) C:\Users\Samuel\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{6796D743-3E98-4946-A3E2-A043DD4DE14A}] => (Allow) Z:\Games\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivboot.exe
FirewallRules: [{E69F6EA2-6E7F-483A-9688-471CEF79C51D}] => (Allow) Z:\Games\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivboot.exe
FirewallRules: [{6FC847FA-C5E4-453B-9E48-B393916E02D0}] => (Allow) Z:\Games\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivlauncher.exe
FirewallRules: [{8AA97FAD-C228-4C89-A191-B5FB67593302}] => (Allow) Z:\Games\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivlauncher.exe
FirewallRules: [Daum PotPlayer(PotPlayerMini64.exe)] => (Allow) Z:\Applications\PotPlayer\PotPlayerMini64.exe
FirewallRules: [{D684E141-2473-4E76-8E8A-AB613A71DE5A}] => (Allow) Z:\Applications\PotPlayer\PotPlayerMini64.exe
FirewallRules: [{B31863C0-F262-45CE-96C2-66D7FF68C6CF}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13.exe
FirewallRules: [{3AC971AC-CAC0-40A0-A3F4-528C04F9F76C}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Kernel\DMR\PowerDVD13DMREngine.exe
FirewallRules: [{7906003F-148E-42D5-BE32-312BBEA51005}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe
FirewallRules: [{9815624C-864C-4767-9FB0-91D8E6A1E7BF}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13Agent.exe
FirewallRules: [{A296157F-B12E-444D-91FF-B0AF24369063}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13ML.exe
FirewallRules: [{E04C1301-EB42-433B-8754-274E2EAA7A8A}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Movie\PowerDVD.exe
FirewallRules: [{F0B2BB27-9CB8-4D75-9F54-ED75DE43AC3E}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Movie\PowerDVD Cinema\PowerDVDCinema13.exe
FirewallRules: [{F7F51620-95DB-4CD0-AD16-4E62C5210A5D}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13.exe
FirewallRules: [{8D44EAD1-CB55-4D80-AFD7-2F713BB32B58}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13.exe
FirewallRules: [{78D1FA7B-CF6D-48F4-B402-55BE61E26928}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13.exe
FirewallRules: [{02A33653-1A5C-4EF4-AA2B-6A359C1910E6}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13.exe
FirewallRules: [{DB69A772-3CE9-445A-9D63-34A361E60492}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Activate.exe
FirewallRules: [{B3A6A6D5-D173-4D75-BAE2-8BBC1B051C77}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Activate.exe
FirewallRules: [{B6F65806-5CF3-4CB5-975A-F1A74DDE10C7}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Activate.exe
FirewallRules: [{F920C0F8-CB3D-4572-B515-293101FEF7F7}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Activate.exe
FirewallRules: [{2336C93A-E429-474F-8289-7DF8BB364F51}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13Agent.exe
FirewallRules: [{768F43E4-2253-4DEA-ACFD-F4289D3C45AC}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13Agent.exe
FirewallRules: [{F32F34A0-3EA3-4214-8A6E-66DA592DFB5E}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13Agent.exe
FirewallRules: [{3726B092-1933-4740-B691-F189E8BDDE69}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13Agent.exe
FirewallRules: [{FED21D31-049D-4C39-854B-F0B26CF2880E}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13ML.exe
FirewallRules: [{BCD43207-918D-4C6C-B699-ED7E42833FEA}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13ML.exe
FirewallRules: [{4317C893-3917-44F2-835A-726E7AA12464}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13ML.exe
FirewallRules: [{8CEC7ECC-8E72-488F-9716-928AF45A96ED}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13ML.exe
FirewallRules: [{664FC8B8-758C-461A-B68E-92EDFFBA4C44}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PDVDLP.exe
FirewallRules: [{659732B0-C6AE-484E-BFD9-CD318A164BD6}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PDVDLP.exe
FirewallRules: [{821A0432-DE35-4D3B-87F5-DDCB8C93B3C2}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PDVDLP.exe
FirewallRules: [{079754C6-FF3D-45FA-B5CB-A5BDB8D32021}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PDVDLP.exe
FirewallRules: [{B7657CD5-4433-4E4E-ABA8-63570CA96A0A}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Kernel\DMR\PowerDVD13DMREngine.exe
FirewallRules: [{E8454725-2198-4D50-897F-497FF1338B41}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Kernel\DMR\PowerDVD13DMREngine.exe
FirewallRules: [{B7828C9A-CDE4-4FE1-896F-4DE3157A5551}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe
FirewallRules: [{A662F914-0144-4E42-AB30-8FA1DE285572}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe
FirewallRules: [{439CA36A-DA79-4283-94AB-B4ECCD6AB05C}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Movie\PowerDVD Cinema\PowerDVDCinema13.exe
FirewallRules: [{E55A8C9B-FBD5-45B8-9A48-6DC2ACDE6D32}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Movie\PowerDVD Cinema\PowerDVDCinema13.exe
FirewallRules: [{74F0445D-2C63-471D-B195-65B51812C8E4}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13.exe
FirewallRules: [{84B62904-6E22-464C-B551-A5813579D337}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13.exe
FirewallRules: [{4AA3424C-2E70-4FCC-8CF5-0D0A79C7E967}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13Agent.exe
FirewallRules: [{EDA4352B-5582-43D2-A605-6FF92A66ED6A}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13Agent.exe
FirewallRules: [{9A447539-F05B-4505-9350-06CAC82580A1}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13ML.exe
FirewallRules: [{80239106-CA2D-4A27-AB55-9D4A94377523}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\PowerDVD13ML.exe
FirewallRules: [{B8BF1C68-B334-4C32-82A0-7A5265199326}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Movie\PowerDVD.exe
FirewallRules: [{BCC44F4E-3C36-413F-868D-1BFFA3731F85}] => (Allow) Z:\Applications\Cyberlink PowerDVD 13\PowerDVD13\Movie\PowerDVD.exe
FirewallRules: [{EC82CA09-4604-4F65-9F21-0DDE2C873391}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota_ugc\game\bin\win64\dota2cfg.exe
FirewallRules: [{C5DDB3F9-48B9-4DEF-B094-3001601A2486}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\dota_ugc\game\bin\win64\dota2cfg.exe
FirewallRules: [TCP Query User{1F3F58D0-C5B3-4BB4-85AA-3E166F4FB8CE}Z:\games\steam\steamapps\common\dota 2 beta\dota_ugc\game\bin\win64\dota2.exe] => (Allow) Z:\games\steam\steamapps\common\dota 2 beta\dota_ugc\game\bin\win64\dota2.exe
FirewallRules: [UDP Query User{82E37AD9-3182-40FD-8A24-06DB17C6E03C}Z:\games\steam\steamapps\common\dota 2 beta\dota_ugc\game\bin\win64\dota2.exe] => (Allow) Z:\games\steam\steamapps\common\dota 2 beta\dota_ugc\game\bin\win64\dota2.exe
FirewallRules: [{BE64D6A5-B948-4C47-8E16-1637E57A20CB}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{6139EBD5-637D-4565-AA7C-C3611F6414FE}] => (Allow) Z:\Games\Steam\steamapps\common\Half-Life 2\hl2.exe
FirewallRules: [{6991DAB5-0AC6-49FE-ABC1-B4D501D70EF4}] => (Allow) Z:\Games\Steam\steamapps\common\Half-Life 2\hl2.exe
FirewallRules: [{C9B27048-EAFD-48F8-9C40-6AA056BD8DB0}] => (Allow) Z:\Games\Steam\steamapps\common\Audiosurf\engine\QuestViewer.exe
FirewallRules: [{F4D4019E-ED95-45B0-B371-E403415A8612}] => (Allow) Z:\Games\Steam\steamapps\common\Audiosurf\engine\QuestViewer.exe
FirewallRules: [{A968CB87-E468-4A51-A8FE-66BF8AA18918}] => (Allow) Z:\Games\Steam\steamapps\common\Wakfu\transition\transition.exe
FirewallRules: [{53C1E8B5-DE5B-4C9F-A95E-162EAC21E3C3}] => (Allow) Z:\Games\Steam\steamapps\common\Wakfu\transition\transition.exe
FirewallRules: [{67D7CE95-1904-44D3-BBCA-2A55B624C6FA}] => (Allow) Z:\Games\Steam\steamapps\common\Wasteland 2\Build\WL2.exe
FirewallRules: [{38E69764-CC8C-42B7-B148-10556482B9AC}] => (Allow) Z:\Games\Steam\steamapps\common\Wasteland 2\Build\WL2.exe
FirewallRules: [{590622BC-FAAD-402E-91D0-F981367514C6}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe
FirewallRules: [{3BC1B805-5712-49EB-A58A-573EF77C92F1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe
FirewallRules: [TCP Query User{1BEF1B7C-92E2-4284-95FB-7597ABE268EA}Z:\games\world of warcraft 1.12.1\wow-x.x.x.x-4.0.0.12911-eu-downloader.exe] => (Allow) Z:\games\world of warcraft 1.12.1\wow-x.x.x.x-4.0.0.12911-eu-downloader.exe
FirewallRules: [UDP Query User{2E4593DE-08C1-41AC-8D86-DB12C50D8EBE}Z:\games\world of warcraft 1.12.1\wow-x.x.x.x-4.0.0.12911-eu-downloader.exe] => (Allow) Z:\games\world of warcraft 1.12.1\wow-x.x.x.x-4.0.0.12911-eu-downloader.exe
FirewallRules: [{52D0AFBD-E30C-4B24-8206-14DE97CB2915}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3507\Agent.exe
FirewallRules: [{8E24ACA0-567F-4B35-8A89-A023E35E352E}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3507\Agent.exe
FirewallRules: [{66E3CE8B-0515-4D2F-B01F-9D564F181B8E}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe
FirewallRules: [{23F9301E-2B0F-4CC4-BD9C-05719C868A66}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe
FirewallRules: [{86876844-D653-478C-8F08-BBC2D5CB1165}] => (Allow) Z:\Games\Steam\steamapps\common\Just Cause 2\JustCause2.exe
FirewallRules: [{CD61EAA9-5674-49AD-B2D3-FC842CB91DAD}] => (Allow) Z:\Games\Steam\steamapps\common\Just Cause 2\JustCause2.exe
FirewallRules: [{913518AF-951E-4811-891E-98D2DCCCB63F}] => (Allow) Z:\Applications\Remote HD\Remote Helper\RemoteHelper.exe
FirewallRules: [{A59276E3-DD27-4243-A564-F7968313498D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3632\Agent.exe
FirewallRules: [{2F83A584-BB7A-40CC-993C-4D9FE3B57472}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3632\Agent.exe
FirewallRules: [{420E6F3E-DD36-4FB5-8A1F-80609BEA5B53}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe
FirewallRules: [{6363F36B-5E92-42F7-9AEC-3CDA0A688039}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe
FirewallRules: [TCP Query User{396E0B3F-E975-4555-A280-2072BCA22D22}Z:\games\the witcher 2\bin\witcher2.exe] => (Allow) Z:\games\the witcher 2\bin\witcher2.exe
FirewallRules: [UDP Query User{3E073D90-6039-468C-B339-238BEC4486F0}Z:\games\the witcher 2\bin\witcher2.exe] => (Allow) Z:\games\the witcher 2\bin\witcher2.exe
FirewallRules: [{A56232A6-1A59-424C-838B-FA9B8D6CA53E}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{7918D142-EB55-4CF0-A6D1-646B5979E793}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{50AB7CEE-8A90-4B91-B065-772D3039EDF0}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{7660F396-A476-4CEA-91AD-E846B24D4063}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{6A876E47-38A3-4EDE-85BD-3F5D012834BE}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3668\Agent.exe
FirewallRules: [{690DD606-1F1B-4497-BBF8-768081466E4A}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3668\Agent.exe
FirewallRules: [{DCC69EA8-8F93-4D3F-87C9-A108DE56A6FD}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3669\Agent.exe
FirewallRules: [{6D03D251-1217-443F-9F51-654E7F0B4AE4}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3669\Agent.exe
FirewallRules: [{768212B6-0079-440A-8B95-63DA493E87EA}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3688\Agent.exe
FirewallRules: [{EF36D127-2A1A-43F7-A8B7-E47BB8F1C902}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3688\Agent.exe
FirewallRules: [{52A1E457-B27D-470F-9EE6-EC7340DAECE0}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe
FirewallRules: [{278C6714-491E-4E93-BD01-B846EC4DEF49}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe
FirewallRules: [TCP Query User{F9B409F1-4A49-4659-A67D-D8C27F6DAD3E}Z:\games\steam\steamapps\common\starbound\win64\starbound_server.exe] => (Allow) Z:\games\steam\steamapps\common\starbound\win64\starbound_server.exe
FirewallRules: [UDP Query User{B6DDDE24-6452-46D2-A155-15648220FBBB}Z:\games\steam\steamapps\common\starbound\win64\starbound_server.exe] => (Allow) Z:\games\steam\steamapps\common\starbound\win64\starbound_server.exe
FirewallRules: [{DF1578B7-D7C8-427F-9AFE-540052F110A7}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe
FirewallRules: [{211D912D-845C-44F5-9B23-1DC74E7E6234}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe
FirewallRules: [TCP Query User{7695A8BA-7E35-4961-AF2B-EE4F8F6451AC}C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe
FirewallRules: [UDP Query User{B6B94FAF-9986-4D3A-8ECF-311A3B4F6416}C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe
FirewallRules: [{FC37C4C8-B749-41F4-8C82-941AB5E3D929}] => (Allow) Z:\Games\Steam\steamapps\common\Metal Gear Solid Ground Zeroes\MgsGroundZeroes.exe
FirewallRules: [{9A457AEA-A69F-474C-AFE1-71BBB4DD4582}] => (Allow) Z:\Games\Steam\steamapps\common\Metal Gear Solid Ground Zeroes\MgsGroundZeroes.exe
FirewallRules: [{AC5A4104-5380-4782-9D2C-A4CB7C1C3011}] => (Allow) Z:\Applications\Adobe\Adobe Photoshop CC 2014\Photoshop.exe
FirewallRules: [{15608145-10F3-49B0-9467-165EF687007E}] => (Allow) Z:\Applications\Adobe\Adobe Photoshop CC 2014\Photoshop.exe
FirewallRules: [{588F5410-8C3C-429B-98FC-13CEC2164455}] => (Allow) Z:\Applications\Adobe\Adobe Photoshop CC 2014\Photoshop.exe
FirewallRules: [{9FC80738-1195-4C38-AA08-2E5B12DC66A5}] => (Allow) Z:\Applications\Adobe\Adobe Photoshop CC 2014\Photoshop.exe
FirewallRules: [{318EA0A6-F940-43B6-899C-55B2C10E26EC}] => (Allow) Z:\Games\Steam\steamapps\common\skyrim\CreationKit.exe
FirewallRules: [{D69C4F26-9F25-46D4-92E8-DCDADFA7F5D3}] => (Allow) Z:\Games\Steam\steamapps\common\skyrim\CreationKit.exe
FirewallRules: [{9FD7DA73-7EA7-4D8F-8E45-2263376752F4}] => (Allow) Z:\Games\Steam\steamapps\common\skyrim\SkyrimLauncher.exe
FirewallRules: [{8810D6FF-215A-4541-A1B0-F0DD3F2CFC5B}] => (Allow) Z:\Games\Steam\steamapps\common\skyrim\SkyrimLauncher.exe
FirewallRules: [TCP Query User{6C901182-AEC7-460B-BB49-3847F5D1A97D}Z:\applications\java\bin\javaw.exe] => (Allow) Z:\applications\java\bin\javaw.exe
FirewallRules: [UDP Query User{48582FDB-4046-497A-8AD6-06A442758DE5}Z:\applications\java\bin\javaw.exe] => (Allow) Z:\applications\java\bin\javaw.exe
FirewallRules: [{0B5C7FBD-82DA-41DD-A340-1879AFBAD7FF}] => (Allow) Z:\Games\Steam\steamapps\common\Pillars of Eternity\PillarsOfEternity.exe
FirewallRules: [{03925D31-3BE2-4264-AA35-BC042AE51A9D}] => (Allow) Z:\Games\Steam\steamapps\common\Pillars of Eternity\PillarsOfEternity.exe
FirewallRules: [{19541347-0399-4C19-A0FF-E8494CEBF09F}] => (Allow) Z:\Games\Steam\steamapps\common\Grand Theft Auto San Andreas\gta-sa.exe
FirewallRules: [{22D2BCC5-DE61-43EC-B3F1-B0DE86B0B42E}] => (Allow) Z:\Games\Steam\steamapps\common\Grand Theft Auto San Andreas\gta-sa.exe
FirewallRules: [{CD06DDC2-88D1-4F46-ABD1-70B4FD257239}] => (Allow) Z:\Games\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
FirewallRules: [{B8E95018-1EF5-4322-B090-CF44AE550B90}] => (Allow) Z:\Games\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
FirewallRules: [TCP Query User{9F660278-1185-4CB7-8FDE-7B153E5BB18B}Z:\games\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) Z:\games\steam\steamapps\common\grand theft auto v\gta5.exe
FirewallRules: [UDP Query User{28DE2C48-5A27-4766-9729-586A7213BDA6}Z:\games\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) Z:\games\steam\steamapps\common\grand theft auto v\gta5.exe
FirewallRules: [{4A07606A-2967-42C3-8ECC-D2C075BBF944}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{3911CDE7-1753-4B4B-9B8C-80C75B46AA6C}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{BFFEFDD5-CB5B-47BD-86E9-3DCAA45ACDC0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{BD5DC5C7-E185-42C7-A379-2E6AE9DC1691}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{B212CAD2-0F5F-4C37-ABD8-2286486AEA7E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{5F3E81B5-C563-416F-8BA9-AFB2002F49CF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{9284DFAF-A40F-4D7F-B76E-0FBEC441F325}] => (Allow) Z:\Games\Steam\steamapps\common\Dark Souls II\Game\DarkSoulsII.exe
FirewallRules: [{A4C575F9-E828-439B-8AF2-7F0B4984B4FB}] => (Allow) Z:\Games\Steam\steamapps\common\Dark Souls II\Game\DarkSoulsII.exe
FirewallRules: [TCP Query User{A4E56039-7D68-4509-A4F3-22906E49D1F3}C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe
FirewallRules: [UDP Query User{B0B541D1-1112-47CD-B16E-2D4DF0C89601}C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_45\bin\javaw.exe
FirewallRules: [{BD5E8EB4-00BF-42BC-8B80-FC4416906B88}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\game\bin\win32\dota2.exe
FirewallRules: [{A1ABB6CC-D5F1-4D7A-B706-4BE6796E36BE}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\game\bin\win32\dota2.exe
FirewallRules: [{FF6FCC21-F6B4-460B-B00A-683E462A0E07}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [{010DA84A-0DF7-40D6-B89D-2BA9A8A48C3C}] => (Allow) Z:\Games\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [TCP Query User{A2656D27-0FE0-47C9-9EAB-C550CB3561A5}Z:\games\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe] => (Allow) Z:\games\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [UDP Query User{8087F055-641E-4CEA-AF3F-E687ACF47347}Z:\games\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe] => (Allow) Z:\games\steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9C6786DE-AB67-41D4-B413-B264824A462D}] => (Allow) Z:\Games\Steam\steamapps\common\Dark Souls Prepare to Die Edition\DATA\DARKSOULS.exe
FirewallRules: [{48AC2F4B-5F6D-41B1-82A9-C3A2741C4A92}] => (Allow) Z:\Games\Steam\steamapps\common\Dark Souls Prepare to Die Edition\DATA\DARKSOULS.exe
FirewallRules: [{D0B0D6ED-0552-4B04-BC26-954F425313CA}] => (Allow) Z:\Games\Steam\steamapps\common\Merchants of Brooklyn\Bin32\Launcher.exe
FirewallRules: [{D72A72E3-BB9B-4932-A631-FA67CAC8F1DC}] => (Allow) Z:\Games\Steam\steamapps\common\Merchants of Brooklyn\Bin32\Launcher.exe
FirewallRules: [{55389F84-A651-49AD-B9B1-1B3376CF96F4}] => (Allow) Z:\Games\Steam\steamapps\common\Half-Life\hl.exe
FirewallRules: [{81F1F48E-EE33-4CF5-8FF3-FC8D1FB0EE11}] => (Allow) Z:\Games\Steam\steamapps\common\Half-Life\hl.exe
FirewallRules: [{0D1604AC-50EA-4B8C-9CFB-43714A6C5338}] => (Allow) Z:\Games\Steam\steamapps\common\MGS_TPP\mgsvtpp.exe
FirewallRules: [{ACA58B1A-088D-4190-93F8-72C6DC11B76C}] => (Allow) Z:\Games\Steam\steamapps\common\MGS_TPP\mgsvtpp.exe
FirewallRules: [{18A7E9E8-31DC-49B4-A197-6EE74EB22D71}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{2AFBCE5A-F932-41A2-9109-956A270C6236}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{A0A6AA66-B442-408B-94F9-5C15BE77D0BD}] => (Allow) Z:\Games\Steam\steamapps\common\The Beginners Guide\beginnersguide.exe
FirewallRules: [{796AD2CC-AFF9-409D-AF61-7E3C512CC6E4}] => (Allow) Z:\Games\Steam\steamapps\common\The Beginners Guide\beginnersguide.exe
FirewallRules: [TCP Query User{FCB5573C-60DC-41FD-944C-239350AA5D51}Z:\applications\deluge\deluge.exe] => (Allow) Z:\applications\deluge\deluge.exe
FirewallRules: [UDP Query User{C2A30567-7411-4FA2-BAC8-DBD84E9789BE}Z:\applications\deluge\deluge.exe] => (Allow) Z:\applications\deluge\deluge.exe
FirewallRules: [{C8E804E1-8E28-4D10-996C-7AE7DA6A11F2}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
==================== Faulty Device Manager Devices =============
 
Name: Microsoft Loopback Adapter
Description: Microsoft Loopback Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: msloop
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (10/17/2015 11:00:42 AM) (Source: MsiInstaller) (EventID: 11721) (User: Zodiac-II)
Description: Product: Autodesk Material Library 2011 Base Image library -- Error 1721.There is a problem with this Windows Installer package. A program required for this install to complete could not be run. Contact your support personnel or package vendor. Action: LaunchLuc.exe_Removal, location: C:\Program Files (x86)\Common Files\Autodesk Shared\Materials2011\AssetFiles\Luc.exe, command: -l -r "C:\Program Files (x86)\Common Files\Autodesk Shared\Materials2011\assetlibrary_base.adsklib"
 
Error: (10/17/2015 03:13:40 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: rundll32.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc637
Faulting module name: Flash32_19_0_0_207.ocx, version: 19.0.0.207, time stamp: 0x560737d6
Exception code: 0xc0000005
Fault offset: 0x0060a531
Faulting process id: 0x4118
Faulting application start time: 0xrundll32.exe0
Faulting application path: rundll32.exe1
Faulting module path: rundll32.exe2
Report Id: rundll32.exe3
 
Error: (10/16/2015 10:49:20 PM) (Source: .NET Runtime Optimization Service) (EventID: 1110) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Service Manager returned a fatal error (0x80070070). Will stop service
 
Error: (10/16/2015 10:49:05 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: C:\Program Files (x86)\Common Files\Microsoft Shared\VSTA\Pipeline.v10.0\AddInSideAdapters\Microsoft.VisualStudio.Tools.Office.AddInAdapter.v9.0.dll . Error code = 0x80070070
 
Error: (10/16/2015 09:47:12 PM) (Source: ESENT) (EventID: 482) (User: )
Description: wuaueng.dll (780) SUS20ClientDataStore: An attempt to write to the file "C:\Windows\SoftwareDistribution\DataStore\Logs\edbtmp.log" at offset 0 (0x0000000000000000) for 393216 (0x00060000) bytes failed after wuaueng.dll0 seconds with system error 112 (0x00000070): "There is not enough space on the disk. ".  The write operation will fail with error -1808 (0xfffff8f0).  If this error persists then the file may be damaged and may need to be restored from a previous backup.
 
Error: (10/16/2015 09:46:39 PM) (Source: MsiInstaller) (EventID: 1024) (User: NT AUTHORITY)
Description: Product: Microsoft Office Professional Plus 2013 - Update 'Update for Microsoft Office 2013 (KB2975869) 64-Bit Edition' could not be installed. Error code 1603. Windows Installer can create logs to help troubleshoot issues with installing software packages. Use the following link for instructions on turning on logging support: http://go.microsoft....k/?LinkId=23127
 
Error: (10/16/2015 09:46:38 PM) (Source: MsiInstaller) (EventID: 11307) (User: NT AUTHORITY)
Description: Product: Microsoft Office Professional Plus 2013 -- Error 1307.There is not enough disk space to install this file: C:\Program Files\Common Files\Microsoft Shared\OFFICE15\ACECORE.DLL.  Free some disk space and click 'Retry', or click 'Cancel' to exit.
 
Error: (10/16/2015 09:46:23 PM) (Source: MsiInstaller) (EventID: 1024) (User: NT AUTHORITY)
Description: Product: Microsoft Office Professional Plus 2013 - Update 'Update for Microsoft Office 2013 (KB2881076) 64-Bit Edition' could not be installed. Error code 1603. Windows Installer can create logs to help troubleshoot issues with installing software packages. Use the following link for instructions on turning on logging support: http://go.microsoft....k/?LinkId=23127
 
Error: (10/16/2015 09:46:23 PM) (Source: MsiInstaller) (EventID: 11307) (User: NT AUTHORITY)
Description: Product: Microsoft Office Professional Plus 2013 -- Error 1307.There is not enough disk space to install this file: C:\Program Files (x86)\Microsoft Office\Office15\DCF\Common.WorkflowActivities.dll.  Free some disk space and click 'Retry', or click 'Cancel' to exit.
 
Error: (10/16/2015 09:43:24 PM) (Source: MsiInstaller) (EventID: 1024) (User: NT AUTHORITY)
Description: Product: Microsoft Office Shared MUI (English) 2013 - Update 'Update for Microsoft Office 2013 (KB3085566) 64-Bit Edition' could not be installed. Error code 1603. Windows Installer can create logs to help troubleshoot issues with installing software packages. Use the following link for instructions on turning on logging support: http://go.microsoft....k/?LinkId=23127
 
 
System errors:
=============
Error: (10/17/2015 02:01:32 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: The following fatal alert was received: 20.
 
Error: (10/16/2015 09:59:11 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: The ScRegSetValueExW call failed for FailureCommand with the following error: 
%%5
 
Error: (10/16/2015 09:59:08 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: The ScRegSetValueExW call failed for Start with the following error: 
%%5
 
Error: (10/16/2015 09:49:21 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The TabletServicePen service failed to start due to the following error: 
%%2
 
Error: (10/16/2015 09:49:15 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The NIHardwareService service failed to start due to the following error: 
%%2
 
Error: (10/16/2015 09:49:15 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The nHancer Support service failed to start due to the following error: 
%%2
 
Error: (10/16/2015 09:48:21 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x80070070: Update for Microsoft Office 2013 (KB3085493) 64-Bit Edition.
 
Error: (10/16/2015 09:48:21 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x800705aa: Security Update for Windows 7 for x64-based Systems (KB3069114).
 
Error: (10/16/2015 09:48:21 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x800705aa: Security Update for Windows 7 for x64-based Systems (KB3067903).
 
Error: (10/16/2015 09:48:21 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x80070070: Security Update for Microsoft .NET Framework 4.5, 4.5.1 and 4.5.2 on Windows 7, Vista, Server 2008, Server 2008 R2 x64 (KB3074550).
 
 
CodeIntegrity:
===================================
  Date: 2015-10-16 21:48:57.139
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\libusb0.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2015-10-16 21:48:57.123
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\libusb0.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2015-10-16 21:26:24.507
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Combo-Fix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2015-10-16 21:26:24.487
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Combo-Fix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2015-10-16 21:26:24.467
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Combo-Fix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2015-10-16 21:26:24.447
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Combo-Fix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2015-10-16 21:14:39.268
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\libusb0.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2015-10-16 21:14:39.237
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\libusb0.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2015-10-16 16:39:34.097
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\libusb0.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
  Date: 2015-10-16 16:39:34.081
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\libusb0.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
 
 
==================== Memory info =========================== 
 
Processor: Intel® Core™ i5-2500K CPU @ 3.30GHz
Percentage of memory in use: 34%
Total physical RAM: 8103.52 MB
Available physical RAM: 5308.43 MB
Total Virtual: 16205.24 MB
Available Virtual: 12132.32 MB
 
==================== Drives ================================
 
Drive c: (Leo II) (Fixed) (Total:55.8 GB) (Free:10.1 GB) NTFS
Drive e: () (Fixed) (Total:465.76 GB) (Free:308.28 GB) NTFS
Drive z: (Libra II) (Fixed) (Total:1863.01 GB) (Free:117.71 GB) NTFS
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 205714CC)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)
 
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 55.9 GB) (Disk ID: 215EA590)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=55.8 GB) - (Type=07 NTFS)
 
========================================================
Disk: 2 (Size: 465.8 GB) (Disk ID: 004777F5)
Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS)
 
==================== End of Addition.txt ============================

  • 0

#4
BrianDrab

BrianDrab

    Trusted Helper

  • Malware Removal
  • 3,583 posts

Thank you. I see you have about 10GB free now which is much safer so let's continue.

 

Step#1 - Warnings
The Dangers of P2P Programs
IMPORTANT: I noticed that you have a P2P (Peer to Peer) file sharing program on your computer. I cannot stress highly enough the danger in using these types of programs. P2P programs are one of the major avenues of infection these days. The files downloaded with these programs are more than likely infected with trojans, malware, rootkits, etc.
You run the risk of getting an infection that can compromise your sensitive data, such as financial records, personal information, etc. That is just the infection aspect of using P2P programs. You also run the risk of possible arrest, fines, or in severe cases, jail time for illegal downloading of copyrighted material.
 
Here are some information sources about the dangers of P2P programs:
FBI - Peer to Peer Scams
USA Today Artticle on P2P Programs
File Sharing Infects 500,000 Computers
 
I very much recommend you uninstall this program from your machine. If not, you will likely be back needing help with your machine again. The risks of infections from content downloaded with P2P programs far outweigh any benefit of using them.
 
It is, of course, your choice as to whether or not you remove the program from your machine. It is my duty though, to point out how dangerous it is to use these programs. However, I must request that you do not use it while we are cleaning your machine.
 
Please uninstall the following Peer-to-Peer program(s): uTorrent

 

 

Step#2 - Questions

1. I see you have System Restore disabled. I assume this is intentional because of lack of disk space? It's very dangerous to have disabled as you have no way to roll back your system if an update goes sideways or of a fix we do doesn't work correctly, etc. Please confirm.

 

 

Step#3 - FRST Fix
NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system
1. Download attached file and save it to the Desktop. Attached File  fixlist.txt   1.68KB   69 downloads
Note. It's important that both files, FRST64 and fixlist.txt are in the same location or the fix will not work (in this case...the desktop).
2. Run FRST64 by Right-Clicking on the file and choosing Run as administrator.
3. Press the Fix button just once and wait. If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run.
4. When finished FRST64 will generate a log on the Desktop (Fixlog.txt). Please post the contents of it in your reply.

 

Step#4 - Rootkit Scan
1. Download aswMBR to your desktop.
2. Right-click on aswMBR.exe and select Run as administrator to run it.
3. If you get a question about Virtualization Technology, answer Yes.
4. If you see this question: Would you like to download latest Avast! virus definitions?" say "Yes".
5. Click the "Scan" button to start scan.
6. On completion of the scan click "Save log", save it to your desktop and post in your next reply.
NOTE. aswMBR will create MBR.dat file on your desktop. This is a copy of your MBR. Do NOT delete it.

 

 

Items for your next post

1. Answer to Question

2. Fixlog.txt

3. Rootkit Scan log


  • 0

#5
petina

petina

    New Member

  • Topic Starter
  • Member
  • Pip
  • 7 posts

I had System Restore disabled to conserve disk space, yes, but I've enabled it and created a restore point now that I've had a good bit of space freed up.

 

Also, the first time I ran aswMBR and it finished downloading the Avast virus definitions my computer bluescreened; after rebooting and running it again it worked just fine though.

 

I should also note that after running the fix and the scan I am able to run Security Essentials again and keep it running, but I was also able to get that to happen earlier by launching in safe mode.

 

Fix result of Farbar Recovery Scan Tool (x64) Version:17-10-2015
Ran by Samuel (2015-10-18 09:32:30) Run:1
Running from C:\Users\Samuel\Desktop
Loaded Profiles: Samuel (Available Profiles: Samuel)
Boot Mode: Normal
==============================================
 
fixlist content:
*****************
HKLM-x32\...\Run: [] => [X]
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
HKU\S-1-5-21-3399670195-734195552-4159410357-1002\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION
SearchScopes: HKLM-x32 -> DefaultScope value is missing
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [No File]
2015-10-16 13:50 - 2015-10-16 13:50 - 00398336 __RSH C:\Windows\SysWOW64\NOISEQ.dll
2015-10-16 13:50 - 2015-10-16 13:50 - 00002592 _____ C:\Windows\System32\Tasks\qyqvfov
2015-10-16 17:09 - 2014-11-06 00:27 - 00000000 ____D C:\Windows\AutoKMS
CustomCLSID: HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Samuel\AppData\Roaming\Dropbox\bin\Dropbox.exe /autoplay => No File
Task: {3A0A8816-2CF0-4D76-AC98-356D3B3C6C3D} - System32\Tasks\qyqvfov => Rundll32.exe "C:\Windows\SysWOW64\NOISEQ.dll",ERTQUAZDDU
Task: {B334D14E-23FD-42A3-8A87-4D0EECCA1825} - \AutoKMS -> No File <==== ATTENTION
AlternateDataStreams: C:\ProgramData\Temp:DED17083
AlternateDataStreams: C:\Users\Samuel\Local Settings:dBx60XsvYsG61xwsojRanjS
AlternateDataStreams: C:\Users\Samuel\AppData\Local:dBx60XsvYsG61xwsojRanjS
AlternateDataStreams: C:\Users\Samuel\AppData\Local\Application Data:dBx60XsvYsG61xwsojRanjS
AlternateDataStreams: C:\Users\Samuel\AppData\Local\Temp:JQX8ZjKxTW5moBIQHh164fINp
AlternateDataStreams: C:\Users\Samuel\AppData\Local\Temporary Internet Files:HB9Xw3xdXJFXHOjGIl7CQmGX4K
AlternateDataStreams: C:\Users\Samuel\AppData\Local\Temporary Internet Files:kpPHkXdaCG7yMzVlZcC9M1eT0bxb
EmtpyTemp:
 
*****************
 
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value removed successfully
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully
"HKU\S-1-5-21-3399670195-734195552-4159410357-1002\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
"HKLM\Software\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin" => key removed successfully
C:\Windows\SysWOW64\NOISEQ.dll => moved successfully
C:\Windows\System32\Tasks\qyqvfov => moved successfully
C:\Windows\AutoKMS => moved successfully
"HKU\S-1-5-21-3399670195-734195552-4159410357-1002_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{3A0A8816-2CF0-4D76-AC98-356D3B3C6C3D}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3A0A8816-2CF0-4D76-AC98-356D3B3C6C3D}" => key removed successfully
C:\Windows\System32\Tasks\qyqvfov => not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\qyqvfov" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{B334D14E-23FD-42A3-8A87-4D0EECCA1825}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B334D14E-23FD-42A3-8A87-4D0EECCA1825}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AutoKMS" => key removed successfully
C:\ProgramData\Temp => ":DED17083" ADS removed successfully.
"C:\Users\Samuel\Local Settings" => ":dBx60XsvYsG61xwsojRanjS" ADS not found.
C:\Users\Samuel\AppData\Local => ":dBx60XsvYsG61xwsojRanjS" ADS removed successfully.
"C:\Users\Samuel\AppData\Local\Application Data" => ":dBx60XsvYsG61xwsojRanjS" ADS not found.
C:\Users\Samuel\AppData\Local\Temp => ":JQX8ZjKxTW5moBIQHh164fINp" ADS removed successfully.
"C:\Users\Samuel\AppData\Local\Temporary Internet Files" => ":HB9Xw3xdXJFXHOjGIl7CQmGX4K" ADS not found.
"C:\Users\Samuel\AppData\Local\Temporary Internet Files" => ":kpPHkXdaCG7yMzVlZcC9M1eT0bxb" ADS not found.
EmtpyTemp: => Error: No automatic fix found for this entry.
 
==== End of Fixlog 09:32:31 ====
 
aswMBR version 1.0.1.2252 Copyright© 2014 AVAST Software
Run date: 2015-10-18 09:46:54
-----------------------------
09:46:54.860    OS Version: Windows x64 6.1.7601 Service Pack 1
09:46:54.860    Number of processors: 4 586 0x2A07
09:46:54.861    ComputerName: ZODIAC-II  UserName: Samuel
09:46:55.107    Initialize success
09:46:55.956    VM: initialized successfully
09:46:55.957    VM: Intel CPU supported 
09:46:57.496    VM: supported disk I/O ataport.SYS
09:47:22.112    AVAST engine defs: 15101701
09:48:17.193    Disk 0  \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0
09:48:17.194    Disk 0 Vendor: WDC_WD20EARX-00PASB0 51.0AB51 Size: 1907729MB BusType: 3
09:48:17.196    Disk 1 (boot) \Device\Harddisk1\DR1 -> \Device\Ide\IdeDeviceP1T0L0-1
09:48:17.198    Disk 1 Vendor: INTEL_SSDSC2CT060A3 300i Size: 57241MB BusType: 3
09:48:17.203    Disk 1 MBR read successfully
09:48:17.205    Disk 1 MBR scan
09:48:17.220    Disk 1 Windows 7 default MBR code
09:48:17.230    Disk 1 Partition 1 80 (A) 07    HPFS/NTFS NTFS          100 MB offset 2048
09:48:17.230    Disk 1 default boot code
09:48:17.250    Disk 1 Partition 2 00     07    HPFS/NTFS NTFS        57139 MB offset 206848
09:48:17.615    Disk 1 scanning C:\Windows\system32\drivers
09:48:23.197    Service scanning
09:48:28.518    Service MSICDSetup D:\CDriver64.sys **LOCKED** 21
09:48:34.649    Service Tablet2k C:\Windows\"%SystemRoot%\System32\Drivers\Tablet2k.sys" **LOCKED** 123
09:48:37.970    Modules scanning
09:48:37.970    Disk 1 trace - called modules:
09:48:37.970    ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys ataport.SYS pciide.sys PCIIDEX.SYS hal.dll atapi.sys 
09:48:37.980    1 nt!IofCallDriver -> \Device\Harddisk1\DR1[0xfffffa8008125060]
09:48:37.980    3 CLASSPNP.SYS[fffff8800196543f] -> nt!IofCallDriver -> [0xfffffa8007b25790]
09:48:37.980    5 ACPI.sys[fffff88000f997a1] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP1T0L0-1[0xfffffa8007f1d060]
09:48:38.240    AVAST engine scan C:\Windows
09:48:40.663    AVAST engine scan C:\Windows\system32
09:50:27.980    AVAST engine scan C:\Windows\system32\drivers
09:50:34.253    AVAST engine scan C:\Users\Samuel
09:58:44.468    AVAST engine scan C:\ProgramData
10:00:52.414    Disk 1 statistics 4739314/0/0 @ 10.66 MB/s
10:00:52.420    Scan finished successfully
10:01:55.345    Disk 1 MBR has been saved successfully to "C:\Users\Samuel\Desktop\MBR.dat"
10:01:55.368    The log file has been saved successfully to "C:\Users\Samuel\Desktop\aswMBR.txt"

  • 0

#6
BrianDrab

BrianDrab

    Trusted Helper

  • Malware Removal
  • 3,583 posts

Excellent, thank you.

 

Please do the following.

 

Step#1 - BSOD Log
1. Please download the 64-bit version of Bluescreenview from here and save it to your desktop.
2. Right-click on the downloaded file (bluescreenview-x64.zip) and select Extract All. Click the Extract button and a folder will open with the contents that were extracted.
3. Right-click on BlueScreenView.exe and select Run as administrator. If prompted to Allow, please answer yes.
4. Once the program opens and finishes scanning, click on the Edit menu and choose Select All.
5. Then click on the file menu...Save selected Items...and save it to your desktop named BSOD.txt.
6. Open the BSOD.txt file in notepad (you can simply double-click on the file from the desktop to do this) and copy/paste the contents of this in your next reply.

 

Step#2 - ESET Online Scanner and Post Results
Before running this scan, please temporarily disable your antivirus software to avoid conflicts. You can re-enable once it's done. Instructions for doing this on many AVs are here. This scan can take hours to run but is necessary to ensure we don't miss anything. Plan accordingly.

 

  • Please go here and click on 1.JPG
  • Note: This site is optimized for Internet Explorer. Please use it for this scan. If you wish to use Firefox or Chrome you will be asked to download the ESET Smart Installer first (esetsmartinstaller_enu.exe). Go ahead and download and run this file.
  • Please accept the ESET Online Scanner EULA and click Start.
  • If prompted, allow the Add-On/Active X to install. If you have problems with this step please see this link.
  • Make sure Enable detection of potentially unwanted applications is selected.
  • Click the Advanced Settings link.
  • Make sure Remove found threats is NOT checked.
  • Make sure Scan archives IS checked.
  • Make sure Scan for potentially unsafe applications IS checked.
  • Make sure Enable Anti-Stealth technology IS checked
  • 2.JPG
     
  • Click on Start
  • The virus signature database will begin to download. Be patient this make take some time depending on the speed of your Internet Connection.
  • When completed the Online Scan will begin automatically.
  • Do not touch either the Mouse or keyboard during the scan otherwise it may stall.
  • When completed, if anything was detected please click the List of found threats link.
  • ThreatsFound.JPG
     
  • Then click the Copy to Clipboard link and paste this information into your next reply.
  • CopyToClipboard.JPG

     

     

  • Then you may click the Back button.
  • Check Uninstall Application on Close before clicking finish.

 
Items for your next post

1. BSOD file
2. Contents of the ESET log file

 

 


  • 0

#7
petina

petina

    New Member

  • Topic Starter
  • Member
  • Pip
  • 7 posts
The ESET scan completed successfully but it didn't find anything. Here's the BSOD log:
 
==================================================
Dump File         : 101815-17565-01.dmp
Crash Time        : 18/10/2015 9:43:40 AM
Bug Check String  : 
Bug Check Code    : 0x00000101
Parameter 1       : 00000000`00000031
Parameter 2       : 00000000`00000000
Parameter 3       : fffff880`02fd7180
Parameter 4       : 00000000`00000003
Caused By Driver  : Beep.SYS
Caused By Address : Beep.SYS+17ce180
File Description  : BEEP Driver
Product Name      : Microsoft® Windows® Operating System
Company           : Microsoft Corporation
File Version      : 6.1.7600.16385 (win7_rtm.090713-1255)
Processor         : x64
Crash Address     : ntoskrnl.exe+72a40
Stack Address 1   : 
Stack Address 2   : 
Stack Address 3   : 
Computer Name     : 
Full Path         : C:\Windows\Minidump\101815-17565-01.dmp
Processors Count  : 4
Major Version     : 15
Minor Version     : 7601
Dump File Size    : 384,754
Dump File Time    : 18/10/2015 9:45:25 AM
==================================================

  • 0

#8
BrianDrab

BrianDrab

    Trusted Helper

  • Malware Removal
  • 3,583 posts

Were you unable to click the Copy to Clipboard button when ESET was done with the scan? I needed to see the results.


  • 0

#9
BrianDrab

BrianDrab

    Trusted Helper

  • Malware Removal
  • 3,583 posts

Were you unable to click the Copy to Clipboard button when ESET was done with the scan? I needed to see the results.

 


  • 0

#10
petina

petina

    New Member

  • Topic Starter
  • Member
  • Pip
  • 7 posts

Oh, okay, but this is the entire thing:

 

Z:\Games\Warcraft III\w3l.exe Win32/GameHack.QJ potentially unsafe application


  • 0

#11
BrianDrab

BrianDrab

    Trusted Helper

  • Malware Removal
  • 3,583 posts

Excellent, thanks. How is your machine now? Anymore popups from Microsoft Security Essentials?


  • 0

#12
petina

petina

    New Member

  • Topic Starter
  • Member
  • Pip
  • 7 posts

No, everything seems to be functioning perfectly normal again!


  • 0

#13
BrianDrab

BrianDrab

    Trusted Helper

  • Malware Removal
  • 3,583 posts

Great. If there is nothing else, I'll leave you with the following info and to clean up our tools.

 

OK! Well done, your computer is clean again! :thumbsup: Part of our jobs here is to help you clean your computer. But beyond that and just as important is to provide you with some information to keep you safe and secure on the net as well as to share knowledge. Following is that information.
 
1. Clean Up!
We need to remove all the tools that we used so that should you ever be re-infected, you will download updated versions which may have updated detection logic.
1. Download Delfix from here.
2. Ensure everything is checked.
3. Click Run.
Note: The program will run for a few moments and then notepad will open with a log. Please paste the log in your next reply.
Note: Delete any  other .bat, .log, .reg, .txt,  and any other files created during this process, and left on the desktop and empty the Recycle Bin.
 
2. Windows Updates
Another essential task is to keep your computer updated with the latest operating system patches and security fixes. Windows Updates are constantly being revised to combat the newest hacks and threats. Microsoft releases security updates that help your computer from becoming vulnerable. It is best if you have these set to download automatically. Follow the instructions below to ensure your settings are optimal.
1. Click the Start Orb in the lower left corner of the screen.
2. Type Windows Update in the search box that appears
3. Click on the Windows Update program that appears in the search results.
Windows%20Update.JPG
4. Click on Change Settings.
CheckForUpdates.JPG
5. Select "Install updates automatically (recommended)" from the Important updates drop-down.
WUChangeSettings.JPG
6. Choose a day and a time when you know the computer will be on and connected to the internet. The default is 3:00AM every day.
7. Ensure that all of the other check boxes are checked.
8. Click OK.
 
3. Keeping Programs Updated
You need to ensure that any programs installed on your machine are kept current. The bad guys exploit vulnerabilities that are found in older versions of software. A very good piece of software that keeps your programs up-to-date is Secunia Personal Software Inspector (PSI). You can download and install it from here. You can read more information about this free software as well as a video walkthrough from here.
 
4. Antimalware- Preventative
Note: Let's keep Malwarebytes installed as it's a fantastic piece of software. Malwarebytes is an anti-malware software and not an antivirus software so it won't conflict with the Antivirus that you are running. I would recommend that you open up this program, allow it to update and scan your machine at least quarterly...monthly if you can.
 
5. Crypto Warning!!!! - Complete Data Loss can occur!
There are particularly nasty infections out there at the moment that encrypt your data and hold it for ransom. You may read more about this here.
 


  • Download CryptoPrevent free for home use here following the instructions below.
  • Save the file to your desktop from the link above and then open the program by clicking Run when prompted from your browser or by going to the desktop where the file was saved and double-clicking.
  • Accept all the defaults during the install. The last screen of the install has a checkmark in "Launch CryptoPrevent". This is good and will launch the program once you click Finish.
  • You will get a prompt asking if you purchased a Product Key for Automatic Updates. You can answer No.
  • You will then be prompted to learn more about automatic updates or if you want to purchase a key. This is up to you but you don't have to.
  • You will be prompted to click OK to continue and select your protection level. Go ahead and click OK.
  • Click the Apply button to set Default protection.
  • You may get a message stating that Windows Sidebar and Desktop Gadgets are a major security vulnerability and asking you if you want to disable them. If you don't use these features, answer Yes.
  • That's it. The protection is in place.

Note: The free version doesn't provide automatic updates. Periodically, you should open up the program (there is a shortcut on your desktop now) and select the Updates! menu....and select Check for Updates to see if there are any as this infection has serious consequences.
 
UpdatesV7.4.11.JPG
 

 

 
For more information about computer security and how to protect yourself when on the internet, please read this guide Best Practices for Safe Computing
 
OK, all the best, and stay safe!
 
Items for your next post
1. Contents of the delfix log


  • 0

#14
petina

petina

    New Member

  • Topic Starter
  • Member
  • Pip
  • 7 posts

Thank you very, very much for all your help!

 

# DelFix v1.011 - Logfile created 21/10/2015 at 12:22:34
# Updated 18/08/2015 by Xplode
# Username : Samuel - ZODIAC-II
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
 
~ Activating UAC ... OK
 
~ Removing disinfection tools ...
 
Deleted : C:\Qoobox
Deleted : C:\Combofix
Deleted : C:\FRST
Deleted : C:\AdwCleaner
Deleted : C:\Users\Samuel\Desktop\FRST-OlderVersion
Deleted : C:\ComboFix.txt
Deleted : C:\Users\Samuel\Desktop\Addition.txt
Deleted : C:\Users\Samuel\Desktop\AdwCleaner[C2].txt
Deleted : C:\Users\Samuel\Desktop\aswMBR.exe
Deleted : C:\Users\Samuel\Desktop\aswMBR.txt
Deleted : C:\Users\Samuel\Desktop\ComboFix.txt
Deleted : C:\Users\Samuel\Desktop\Fixlog.txt
Deleted : C:\Users\Samuel\Desktop\FRST.txt
Deleted : C:\Users\Samuel\Desktop\FRST64.exe
Deleted : C:\Users\Samuel\Desktop\MBR.dat
Deleted : C:\Users\Samuel\Desktop\RKreport[1].txt
Deleted : C:\Windows\grep.exe
Deleted : C:\Windows\PEV.exe
Deleted : C:\Windows\NIRCMD.exe
Deleted : C:\Windows\MBR.exe
Deleted : C:\Windows\SED.exe
Deleted : C:\Windows\SWREG.exe
Deleted : C:\Windows\SWSC.exe
Deleted : C:\Windows\SWXCACLS.exe
Deleted : C:\Windows\Zip.exe
Deleted : HKCU\console_combofixbackup
Deleted : HKLM\SOFTWARE\AdwCleaner
Deleted : HKLM\SOFTWARE\Swearware
Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\combofix.exe
Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart
Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys
Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart
Deleted : HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys
Deleted : HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ASWMBR
 
~ Creating registry backup ... OK
 
~ Cleaning system restore ...
 
Deleted : RP #1354 [Windows Update | 10/19/2015 01:57:36]
 
New restore point created !
 
~ Resetting system settings ... OK
 
########## - EOF - ##########

  • 0

#15
BrianDrab

BrianDrab

    Trusted Helper

  • Malware Removal
  • 3,583 posts

Since this issue appears to be resolved ... this Topic has been closed. Glad we could help. :)

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please begin a New Topic.


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP