Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Computer infected with mallware

Mallware

  • Please log in to reply

#1
Machinedrum

Machinedrum

    New Member

  • Member
  • Pip
  • 3 posts

Tricked by a promise for an easy to use free audioconverting (super something) software I downloaded a malware bundle from [bleep]!

After short panic I downloaded and installed bitdefender. I had to delete certifcates restrictions in reg because the malware kept me from installing it.
I ran it. It found alot but I still have problems with my standard browser page, this Tsearch thing in my bar, the aditional popup and this C:\Program Files\Common Files\Noobzo malware thing wich I cant seem to delete because I can't find the service it is running in. so I downloaded FRST and ran it, but I dont know how to make the fixlist myself.
Any help would be welcome :-)

 

Attention in dutch is Aandacht

 

Scanresultaten van Farbar Recovery Scan Tool (FRST) (x64) Versie: 02-07-2017
Gestart door gregs (Beheerder) op DESKTOP-Q2O3B6P (02-07-2017 19:06:55)
Gestart vanaf C:\Users\gregs\Desktop\frst
Geladen Profielen: gregs (Beschikbare Profielen: gregs & Administrator)
Platform: Windows 10 Home Versie 1607 (X64) Taal: Nederlands (Nederland)
Internet Explorer Versie 11 (Standaardbrowser: FF)
Boot Modus: Normal
Handleiding voor Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processen (gefilterd) =================
 
(Als een item is opgenomen in de fixlist, het proces zal worden gesloten. Het bestand zal niet worden verplaatst.)
 
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2017\vsserv.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender Device Management\DevMgmtService.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.23\aaHMSvc.exe
() C:\Program Files (x86)\Blackmagic Design\Blackmagic Desktop Video\DesktopVideoHelper.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
() C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
() C:\Windows\System32\PnkBstrA.exe
(Windows ® Win 7 DDK provider) C:\Windows\System32\AdminService.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(PACE Anti-Piracy, Inc.) C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe
(M-Audio) C:\Program Files (x86)\M-Audio\Fast Track Ultra\AudioDevMon.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Native Instruments GmbH) C:\Program Files\Common Files\Native Instruments\Hardware\NIHostIntegrationAgent.exe
(Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
() C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.08.15\AsusFanControlService.exe
(Native Instruments GmbH) C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2017\updatesrv.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2017\vsservp.exe
(Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
() C:\Windows\Temp\g7E69.tmp.exe
(Intel® Corporation) C:\Program Files (x86)\Intel\Intel® Extreme Tuning Utility\XtuService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Integrated Clock Controller Service\ICCProxy.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe
() C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe
() C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr64.exe
() C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe
() C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotify_PCCtrl.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
() C:\Program Files (x86)\Blackmagic Design\Blackmagic Desktop Video\BMDStreamingServer.exe
(Blackmagic Design) C:\Program Files (x86)\Blackmagic Design\Blackmagic Desktop Video\CheckVersionPCI.exe
(RME) C:\Windows\System32\firefaceusb.exe
(RME) C:\Windows\System32\TotalMixFX.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Unified Intents AB) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe
(nerds.de) C:\Program Files (x86)\nerds.de\LoopBe1\loopBeMon.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2017\seccenter.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2017\bdwtxag.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender Device Management\dmiface.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2017\bdagent.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2017\odscanui.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.12990.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Tixati Software Inc.) C:\Program Files\tixati\tixati.exe
(MPC-HC Team) C:\Program Files (x86)\K-Lite Codec Pack\MPC-HC64\mpc-hc64.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
 
==================== Register (gefilterd) ====================
 
(Als een item is opgenomen in de fixlist, het registry item zal worden teruggezet naar de standaardwaarden of verwijderd. Het bestand zal niet worden verplaatst.)
 
HKLM\...\Run: [Blackmagic Streaming Server] => C:\Program Files (x86)\Blackmagic Design\Blackmagic Desktop Video\BMDStreamingServer.exe [995840 2016-10-24] ()
HKLM\...\Run: [Blackmagic CheckVersion PCI] => C:\Program Files (x86)\Blackmagic Design\Blackmagic Desktop Video\CheckVersionPCI.exe [159743536 2016-10-24] (Blackmagic Design)
HKLM\...\Run: [FirefaceUsbTray1] => C:\WINDOWS\system32\firefaceusb.exe [400368 2017-02-24] (RME)
HKLM\...\Run: [FirefaceMixTray2] => C:\WINDOWS\system32\TotalMixFX.exe [23955544 2017-02-24] (RME)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500936 2015-04-28] (Adobe Systems Incorporated)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [303928 2017-05-09] (Apple Inc.)
HKLM-x32\...\Run: [ASUS AiChargerPlus Execute] => C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe [550272 2013-01-28] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [AO Link Server] => C:\Program Files (x86)\ASUS\AI Suite III\Mobo Connect\ALRun.exe -start
HKLM-x32\...\Run: [Corsair Utility Engine] => C:\Program Files (x86)\Corsair\Corsair Utility Engine\CUE.exe [12447440 2016-08-23] (Corsair Components, Inc.)
HKLM-x32\...\Run: [Blackmagic CheckVersion] => C:\Program Files (x86)\Blackmagic Design\Blackmagic Desktop Video\CheckVersion.exe
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-03-15] (Oracle Corporation)
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKU\S-1-5-21-2296426734-4234570832-937735285-1004\...\Run: [Unified Remote V3] => C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe [3155712 2017-01-30] (Unified Intents AB)
HKU\S-1-5-21-2296426734-4234570832-937735285-1004\...\RunOnce: [FlashPlayerUpdate] => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_24_0_0_194_Plugin.exe [1269336 2017-02-04] (Adobe Systems Incorporated)
ShellExecuteHooks: Geen Naam - {5F51FFFE-7463-4220-B711-E5B9ACB8EDFE} - C:\Windows\C_02iu47.dat [2001920 2017-07-02] (Micrasaft Carparation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\LoopBe1 Monitor.lnk [2016-11-06]
ShortcutTarget: LoopBe1 Monitor.lnk -> C:\Program Files (x86)\nerds.de\LoopBe1\loopBeMon.exe (nerds.de)
Startup: C:\Users\gregs\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GIGABYTE XTREME GAMING ENGINE.lnk [2017-01-28]
ShortcutTarget: GIGABYTE XTREME GAMING ENGINE.lnk -> C:\Program Files (x86)\GIGABYTE\XTREME GAMING ENGINE\autorun.exe ()
BootExecute: autocheck autochk * bddel.exe
GroupPolicy: Restrictie - Windows Defender <==== AANDACHT
 
==================== Internet (gefilterd) ====================
 
(Als een item is opgenomen in de fixlist, als het een registry item is wordt verwijderd of hersteld naar de standaard.)
 
Hosts: Er zijn meer dan één item in Hosts. Zie Hosts deel van Addition.txt
Tcpip\Parameters: [DhcpNameServer] 195.130.131.2 195.130.130.2
Tcpip\..\Interfaces\{15880416-58cc-44ff-b4f3-52bfcce0c4e8}: [DhcpNameServer] 195.130.131.2 195.130.130.2
 
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = 
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = 
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = 
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = 
HKU\S-1-5-21-2296426734-4234570832-937735285-1004\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www-searching.com/?pid=s&s=H72zltpbl1BU,cf9d06eb-20aa-442d-9eda-925e057a7f54,&vp=ch&prd=set_ie
HKU\S-1-5-21-2296426734-4234570832-937735285-1004\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/nl-be/?ocid=iehp
SearchScopes: HKU\S-1-5-21-2296426734-4234570832-937735285-1004 -> {F60FC7B7-D36E-49B1-8ADC-9DCDDE4903DD} URL = hxxp://www-searching.com/s.ashx?prd=opensearch&q={searchTerms}&s=H72zltpbl1BU,cf9d06eb-20aa-442d-9eda-925e057a7f54,
BHO: Bitdefender Wallet  -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender 2017\pmbxie.dll [2017-04-20] (Bitdefender)
BHO-x32: Bitdefender Wallet -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender 2017\Antispam32\pmbxie.dll [2017-04-20] (Bitdefender)
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\ssv.dll [2017-07-02] (Oracle Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\jp2ssv.dll [2017-07-02] (Oracle Corporation)
Toolbar: HKLM - Bitdefender Wallet  - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2017\pmbxie.dll [2017-04-20] (Bitdefender)
Toolbar: HKLM-x32 - Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2017\Antispam32\pmbxie.dll [2017-04-20] (Bitdefender)
 
FireFox:
========
FF DefaultProfile: k4eg9eig.default-1499000293534
FF ProfilePath: C:\Users\gregs\AppData\Roaming\Mozilla\Firefox\Profiles\k4eg9eig.default-1499000293534 [2017-07-02]
FF Extension: (Belgium eID) - C:\Program Files (x86)\Mozilla Firefox\extensions\[email protected] [2017-05-27]
FF Extension: (Adblocker for Youtube™) - C:\Program Files (x86)\Mozilla Firefox\browser\features\{5C3FD6D1-9185-4195-B5E1-FAB622427F59} [2017-07-02] [ niet getekend]
FF Extension: (TSearch) - C:\Program Files (x86)\Mozilla Firefox\browser\features\{D29DBC80-E8B5-4116-AB62-ECD8ED032A33} [2017-07-02] [ niet getekend]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files\Bitdefender\Bitdefender 2017\antispam32\bdwteff
FF Extension: (Bitdefender Wallet) - C:\Program Files\Bitdefender\Bitdefender 2017\antispam32\bdwteff [2017-05-25]
FF HKLM\...\Thunderbird\Extensions: [[email protected]] - C:\Program Files\Bitdefender\Bitdefender 2017\bdtbext
FF Extension: (Bitdefender Antispam Toolbar) - C:\Program Files\Bitdefender\Bitdefender 2017\bdtbext [2017-05-25] [ niet getekend]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Mozilla Firefox\extensions\[email protected]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files\Bitdefender\Bitdefender 2017\antispam32\bdwteff
FF HKLM-x32\...\Thunderbird\Extensions: [[email protected]] - C:\Program Files\Bitdefender\Bitdefender 2017\bdtbext
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_24_0_0_194.dll [2017-02-04] ()
FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-03-09] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_24_0_0_194.dll [2017-02-04] ()
FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.131.2 -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\dtplugin\npDeployJava1.dll [2017-07-02] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.131.2 -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\plugin2\npjp2.dll [2017-07-02] (Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-04-01] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-04-01] (NVIDIA Corporation)
FF Plugin-x32: @qq.com/QQlive -> C:\Program Files (x86)\Tencent\QQLive\10.0.126.0\npQQLive.dll [Geen bestand]
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-03-09] (Adobe Systems)
 
Chrome: 
=======
CHR HKU\S-1-5-21-2296426734-4234570832-937735285-1004\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [jlcgehabolcakkjhgmgpkagpolbjlhfa] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gannpgaobkkhmpomoijebaigcapoeebl] - hxxps://clients2.google.com/service/update2/crx
 
==================== Services (gefilterd) ====================
 
(Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)
 
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2017-04-03] (Apple Inc.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728 2015-09-17] ()
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.23\aaHMSvc.exe [963536 2016-04-18] (ASUSTeK Computer Inc.)
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [1360016 2016-03-07] () [Bestand niet getekend]
R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.08.15\AsusFanControlService.exe [419288 2016-05-27] (ASUSTeK Computer Inc.)
R2 AtherosSvc; C:\WINDOWS\system32\AdminService.exe [355760 2016-10-26] (Windows ® Win 7 DDK provider)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1536520 2017-06-08] ()
R2 DevMgmtService; C:\Program Files\Bitdefender\Bitdefender Device Management\DevMgmtService.exe [104096 2017-05-18] (Bitdefender)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1468608 2016-10-06] (Disc Soft Ltd)
R2 dvhlp; C:\Program Files (x86)\Blackmagic Design\Blackmagic Desktop Video\DesktopVideoHelper.exe [26624 2016-10-24] () [Bestand niet getekend]
S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [382504 2017-05-21] (EasyAntiCheat Ltd)
R2 FastTrackUltraAudioDevMon; C:\Program Files (x86)\M-Audio\Fast Track Ultra\AudioDevMon.exe [1700584 2014-09-22] (M-Audio)
R2 NIHostIntegrationAgent; C:\Program Files\Common Files\Native Instruments\Hardware\NIHostIntegrationAgent.exe [10091120 2017-03-09] (Native Instruments GmbH)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462784 2017-04-01] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [427064 2017-04-01] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2119688 2016-11-27] (Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [2180624 2016-11-27] (Electronic Arts)
R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [76152 2016-10-26] ()
R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76888 2016-10-26] ()
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [1254736 2017-04-11] (Bitdefender)
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender 2017\updatesrv.exe [218416 2017-04-20] (Bitdefender)
R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender 2017\vsserv.exe [1442896 2017-05-25] (Bitdefender)
R2 vsservp; C:\Program Files\Bitdefender\Bitdefender 2017\vsservp.exe [524872 2016-08-25] (Bitdefender)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347320 2017-04-28] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103712 2017-04-28] (Microsoft Corporation)
R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Intel® Extreme Tuning Utility\XtuService.exe [19192 2015-09-21] (Intel® Corporation)
S2 mediatek_86; "C:\WINDOWS\TEMP\WS\mediatek_86.exe" [X]
S2 QQLiveService; C:\Program Files (x86)\Tencent\QQLive\10.0.126.0\LiveService.dll [X]
S4 SMUpd; C:\Program Files\Common Files\Noobzo\GNUpdate\smu.exe /service [X] <==== AANDACHT
 
===================== Drivers (gefilterd) ======================
 
(Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)
 
R3 AiChargerPlus; C:\Windows\SysWow64\drivers\AiChargerPlus.sys [14848 2013-01-28] (ASUSTek Computer Inc.)
R3 AndroidAFD; C:\Windows\SysWow64\drivers\AndroidAFDx64.sys [22192 2015-10-19] (ASUSTek Computer Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2015-09-17] ()
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2014-02-24] ()
R0 avc3; C:\WINDOWS\System32\DRIVERS\avc3.sys [1612648 2017-04-19] (BitDefender)
R3 avckf; C:\WINDOWS\System32\DRIVERS\avckf.sys [879600 2017-04-19] (BitDefender)
S0 bdelam; C:\WINDOWS\System32\drivers\bdelam.sys [23672 2016-03-14] (Bitdefender)
R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [128400 2016-06-24] (BitDefender LLC)
R1 BDVEDISK; C:\WINDOWS\system32\DRIVERS\bdvedisk.sys [87912 2015-12-04] (BitDefender)
R3 CorsairVBusDriver; C:\WINDOWS\System32\drivers\CorsairVBusDriver.sys [47840 2016-07-05] (Corsair)
R3 CorsairVHidDriver; C:\WINDOWS\System32\drivers\CorsairVHidDriver.sys [21728 2016-07-05] (Corsair)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2016-10-25] (Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2016-10-25] (Disc Soft Ltd)
R3 e1dexpress; C:\WINDOWS\system32\DRIVERS\e1d65x64.sys [559080 2016-10-25] (Intel Corporation)
R3 firefaceu64; C:\WINDOWS\system32\drivers\fireface_usb_64.sys [123800 2017-02-24] (RME)
S3 gbxavs; C:\WINDOWS\System32\Drivers\gbxavs.sys [357968 2011-07-07] (Native Instruments GmbH)
S3 gbxusb_svc; C:\WINDOWS\System32\Drivers\gbxusb.sys [68688 2011-07-07] (Native Instruments GmbH)
R0 gzflt; C:\WINDOWS\System32\DRIVERS\gzflt.sys [182944 2016-10-29] (BitDefender LLC)
R1 HWiNFO32; C:\WINDOWS\system32\drivers\HWiNFO64A.SYS [27552 2017-01-22] (REALiX™)
R0 Ignis; C:\WINDOWS\system32\DRIVERS\ignis.sys [305120 2017-03-15] (Bitdefender)
S3 iLokDrvr; C:\WINDOWS\System32\drivers\iLokDrvr.sys [33504 2017-07-01] ()
R2 iocbios2; C:\Program Files (x86)\Intel\Intel® Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [30224 2015-09-21] (Intel Corporation)
S3 libusb0; C:\WINDOWS\system32\DRIVERS\libusb0.sys [52832 2014-01-04] (hxxp://libusb-win32.sourceforge.net)
R3 LoopBeMidi1; C:\WINDOWS\system32\drivers\loopbe1.sys [13824 2011-04-09] (nerds.de)
S3 MAUSBFASTTRACKULTRA; C:\WINDOWS\system32\DRIVERS\MAudioFastTrackUltra.sys [180456 2014-09-22] (M-Audio)
S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
S3 nikkbdmidi; C:\WINDOWS\System32\Drivers\nikkbdmidi.sys [349944 2015-09-04] (Native Instruments GmbH)
S3 nikkbdusb; C:\WINDOWS\system32\DRIVERS\nikkbdusb.sys [101192 2015-09-04] (Native Instruments GmbH)
R3 nikz2audio; C:\WINDOWS\System32\Drivers\nikz2audio.sys [384440 2015-08-29] (Native Instruments GmbH)
R3 nikz2usb; C:\WINDOWS\system32\DRIVERS\nikz2usb.sys [102240 2015-08-29] (Native Instruments GmbH)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_e69a53b8ddde469c\nvlddmkm.sys [14841784 2017-04-03] (NVIDIA Corporation)
R3 Qcamain10x64; C:\WINDOWS\System32\drivers\Qcamain10x64.sys [2336768 2016-07-16] (Qualcomm Atheros, Inc.)
R3 SMUpdd; C:\Program Files\Common Files\Noobzo\GNUpdate\smw.sys [52992 2017-07-02] () <==== AANDACHT
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.)
R0 trufos; C:\WINDOWS\System32\DRIVERS\trufos.sys [520032 2016-06-22] (BitDefender S.R.L.)
R3 uvhid; C:\WINDOWS\System32\drivers\uvhid.sys [27064 2017-01-30] (Windows ® Win 7 DDK provider)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
 
==================== NetSvcs (gefilterd) ===================
 
(Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)
 
 
==================== Een Maand Aangemaakt bestanden en mappen ========
 
(Als een item is opgenomen in de fixlist, het bestand/map wordt verplaatst.)
 
2017-07-02 18:27 - 2017-07-02 18:27 - 00000993 _____ C:\Users\gregs\Downloads\fixlist.txt
2017-07-02 14:58 - 2017-07-02 14:58 - 00000000 ____D C:\Users\gregs\Desktop\Old Firefox Data
2017-07-02 14:45 - 2017-07-02 14:45 - 00027624 _____ C:\WINDOWS\system32\bddel.exe
2017-07-02 14:45 - 2017-07-02 14:45 - 00001864 _____ C:\WINDOWS\system32\bddel.dat
2017-07-02 14:30 - 2017-07-02 14:30 - 00000788 _____ C:\bdlog.txt
2017-07-02 14:05 - 2017-04-21 23:53 - 00029376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aspnet_counters.dll
2017-07-02 14:05 - 2017-04-21 23:53 - 00018600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr100_clr0400.dll
2017-07-02 14:05 - 2017-04-21 23:50 - 00030912 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspnet_counters.dll
2017-07-02 14:05 - 2017-04-21 23:50 - 00018592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr100_clr0400.dll
2017-07-02 14:05 - 2017-04-11 20:27 - 00690008 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp120_clr0400.dll
2017-07-02 14:05 - 2017-03-15 20:15 - 00485576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp120_clr0400.dll
2017-07-02 14:04 - 2017-07-02 14:04 - 00000000 ____D C:\Users\gregs\AppData\Temp
2017-07-02 14:04 - 2017-04-11 20:27 - 00993632 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120_clr0400.dll
2017-07-02 14:04 - 2017-03-15 20:15 - 00987840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll
2017-07-02 14:02 - 2017-07-02 14:16 - 00003406 _____ C:\WINDOWS\System32\Tasks\Bitdefender AgentTask_AD394AE64E874073B10A89FEEC305A3C
2017-07-02 14:02 - 2017-07-02 14:02 - 00438918 _____ C:\ProgramData\cl.1498996745.bdinstall.bin
2017-07-02 14:02 - 2017-07-02 14:02 - 00056298 _____ C:\ProgramData\dm.1498996942.bdinstall.bin
2017-07-02 14:02 - 2017-07-02 14:02 - 00041244 _____ C:\ProgramData\dm.update.1498996958.bdinstall.bin
2017-07-02 14:02 - 2017-07-02 14:02 - 00000385 _____ C:\WINDOWS\system32\user_gensett.xml
2017-07-02 14:02 - 2017-07-02 14:02 - 00000000 ____D C:\ProgramData\Bitdefender Device Management
2017-07-02 14:00 - 2017-07-02 14:00 - 00002299 _____ C:\Users\Public\Desktop\Bitdefender 2017.lnk
2017-07-02 14:00 - 2017-07-02 14:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender 2017
2017-07-02 14:00 - 2017-07-02 14:00 - 00000000 ____D C:\ProgramData\BDLogging
2017-07-02 14:00 - 2016-03-14 22:04 - 00023672 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\bdelam.sys
2017-07-02 14:00 - 2007-04-11 11:11 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\capicom.dll
2017-07-02 13:59 - 2017-07-02 14:02 - 00000000 ____D C:\Users\gregs\AppData\Roaming\Bitdefender
2017-07-02 13:59 - 2017-04-19 07:19 - 01612648 _____ (BitDefender) C:\WINDOWS\system32\Drivers\avc3.sys
2017-07-02 13:59 - 2017-04-19 07:19 - 00879600 _____ (BitDefender) C:\WINDOWS\system32\Drivers\avckf.sys
2017-07-02 13:59 - 2017-03-15 08:03 - 00305120 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\ignis.sys
2017-07-02 13:59 - 2015-12-04 19:27 - 00087912 _____ (BitDefender) C:\WINDOWS\system32\Drivers\bdvedisk.sys
2017-07-02 13:57 - 2017-07-02 13:57 - 00031105 _____ C:\ProgramData\agent.update.1498996639.bdinstall.bin
2017-07-02 13:56 - 2017-07-02 13:56 - 00021617 _____ C:\ProgramData\agent.uninstall.1498996562.bdinstall.bin
2017-07-02 13:26 - 2017-07-02 14:02 - 00000000 ____D C:\Program Files\Bitdefender
2017-07-02 13:26 - 2017-07-02 14:01 - 00000000 ____D C:\ProgramData\Bitdefender
2017-07-02 13:26 - 2017-07-02 13:26 - 00000000 ____D C:\Users\gregs\AppData\Roaming\QuickScan
2017-07-02 13:26 - 2016-10-29 09:54 - 00182944 ____N (BitDefender LLC) C:\WINDOWS\system32\Drivers\gzflt.sys
2017-07-02 13:26 - 2016-06-22 15:40 - 00520032 _____ (BitDefender S.R.L.) C:\WINDOWS\system32\Drivers\trufos.sys
2017-07-02 13:25 - 2017-07-02 13:26 - 00000000 ____D C:\Program Files\Common Files\Bitdefender
2017-07-02 13:24 - 2017-07-02 13:24 - 09915560 _____ C:\Users\gregs\Downloads\bitdefender_windows_8380e2bb-f5ce-41e4-923b-25b1ced4dc01.exe
2017-07-02 13:12 - 2017-07-02 19:06 - 00000000 ____D C:\Users\gregs\Desktop\frst
2017-07-02 13:03 - 2017-07-02 13:03 - 00000000 ____D C:\Users\Administrator\AppData\Roaming\StardewValley
2017-07-02 13:03 - 2017-07-02 13:03 - 00000000 ____D C:\Users\Administrator\AppData\LocalLow\DreamSail Games
2017-07-02 13:02 - 2017-07-02 13:04 - 00000000 ____D C:\Users\Administrator\Documents\My Games
2017-07-02 13:02 - 2017-07-02 13:03 - 00000000 ____D C:\Users\Administrator\Documents\The Witcher 3
2017-07-02 13:02 - 2017-07-02 13:02 - 00000000 ____D C:\Users\Administrator\Documents\nbgi
2017-07-02 13:02 - 2017-07-02 13:02 - 00000000 ____D C:\Users\Administrator\AppData\Roaming\Sun
2017-07-02 13:02 - 2017-07-02 13:02 - 00000000 ____D C:\Users\Administrator\AppData\Roaming\Factorio
2017-07-02 13:02 - 2017-07-02 13:02 - 00000000 ____D C:\Users\Administrator\AppData\Roaming\Doublefine
2017-07-02 13:02 - 2017-07-02 13:02 - 00000000 ____D C:\Users\Administrator\AppData\LocalLow\Sun
2017-07-02 13:02 - 2017-07-02 13:02 - 00000000 ____D C:\Users\Administrator\AppData\LocalLow\David OReilly
2017-07-02 13:01 - 2017-07-02 13:01 - 00000000 ____D C:\Users\Administrator\AppData\Local\Steam
2017-07-02 13:01 - 2017-07-02 13:01 - 00000000 ____D C:\Users\Administrator\AppData\Local\CEF
2017-07-02 12:59 - 2017-07-02 12:59 - 00003798 _____ C:\WINDOWS\System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864
2017-07-02 12:58 - 2017-07-02 12:58 - 00000000 ____D C:\Users\Administrator\AppData\Local\NVIDIA Corporation
2017-07-02 12:57 - 2017-07-02 18:39 - 00000000 ____D C:\Program Files\Bitdefender Agent
2017-07-02 12:57 - 2017-07-02 13:06 - 00000000 ____D C:\Users\Administrator\AppData\Local\TotalMixFX
2017-07-02 12:57 - 2017-07-02 12:57 - 00049713 _____ C:\ProgramData\agent.1498993059.bdinstall.bin
2017-07-02 12:57 - 2017-07-02 12:57 - 00000000 ____D C:\Users\Administrator\AppData\Roaming\Skype
2017-07-02 12:57 - 2017-07-02 12:57 - 00000000 ____D C:\Users\Administrator\AppData\Roaming\Apple Computer
2017-07-02 12:57 - 2017-07-02 12:57 - 00000000 ____D C:\Users\Administrator\AppData\Local\Adobe
2017-07-02 12:57 - 2017-07-02 12:57 - 00000000 ____D C:\ProgramData\Bitdefender Agent
2017-07-02 12:56 - 2017-07-02 13:02 - 00000000 ____D C:\Users\Administrator\AppData\Local\ConnectedDevicesPlatform
2017-07-02 12:56 - 2017-07-02 12:56 - 00000262 __RSH C:\Users\Administrator\ntuser.pol
2017-07-02 12:56 - 2017-07-02 12:56 - 00000020 ___SH C:\Users\Administrator\ntuser.ini
2017-07-02 12:51 - 2017-07-02 12:51 - 09915560 _____ C:\Users\gregs\Downloads\bitdefender_windows_6379d9f2-9770-42a5-ba84-c8080c63e119.exe
2017-07-02 12:48 - 2017-07-02 12:48 - 09915560 _____ C:\Users\gregs\Downloads\bitdefender_windows_1b295913-ae10-4f66-aef5-3ccf0481971a.exe
2017-07-02 12:44 - 2017-07-02 12:45 - 09915560 _____ C:\Users\gregs\Downloads\bitdefender_windows_3b7b3a36-46cf-4fdd-928e-26b8e9e99de8.exe
2017-07-02 12:43 - 2017-07-02 12:43 - 03662426 _____ C:\Users\gregs\Downloads\bitdefender_9c6d75e4-f347-4f4b-8819-4bc03ab462d1.pkg
2017-07-02 12:36 - 2017-07-02 13:11 - 00137455 _____ C:\Users\gregs\Downloads\Addition.txt
2017-07-02 12:35 - 2017-07-02 19:06 - 00000000 ____D C:\FRST
2017-07-02 12:35 - 2017-07-02 13:11 - 00069648 _____ C:\Users\gregs\Downloads\FRST.txt
2017-07-02 12:31 - 2017-07-02 12:31 - 00000000 ____D C:\ProgramData\SearchModule
2017-07-02 12:22 - 2017-07-02 12:25 - 09915560 _____ C:\Users\gregs\Downloads\bitdefender_windows_fa50300e-342b-4ba5-8ec9-d8cd07e17a2e.exe
2017-07-02 10:46 - 2017-07-02 10:46 - 05103792 _____ (Enigma Software Group USA, LLC.) C:\Users\gregs\Downloads\SpyHunter-Installer.exe
2017-07-02 10:46 - 2017-07-02 10:46 - 00000000 _____ C:\autoexec.bat
2017-07-02 10:21 - 2017-07-02 10:21 - 00000000 ____D C:\Users\gregs\AppData\Local\AdvinstAnalytics
2017-07-02 10:19 - 2017-07-02 10:25 - 00000000 ___HD C:\448604c9611dfd3021725bdc366ab85e
2017-07-02 10:18 - 2017-07-02 10:19 - 00000000 ____D C:\Users\gregs\AppData\Roaming\xonnwbvroqx
2017-07-02 10:18 - 2017-07-02 10:19 - 00000000 ____D C:\Users\gregs\AppData\Roaming\mqgpc3bpb0y
2017-07-02 10:18 - 2017-07-02 10:18 - 00000262 __RSH C:\Users\gregs\ntuser.pol
2017-07-02 10:17 - 2017-07-02 10:19 - 00000000 ____D C:\Users\gregs\AppData\Local\TubeTime
2017-07-02 10:17 - 2017-07-02 10:17 - 00930816 _____ C:\Users\gregs\AppData\Local\test_db_cara.db
2017-07-02 10:17 - 2017-07-02 10:17 - 00187904 _____ C:\WINDOWS\rsrcs.dll
2017-07-02 10:17 - 2017-07-02 10:17 - 00004422 _____ C:\WINDOWS\System32\Tasks\SMW_UpdateTask_Time_343039393733373830342d3737555a416c503257344a41
2017-07-02 10:17 - 2017-07-02 10:17 - 00002505 _____ C:\Users\gregs\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯视频.lnk
2017-07-02 10:17 - 2017-07-02 10:17 - 00000000 ____H C:\WINDOWS\system32\BIT642A.tmp
2017-07-02 10:17 - 2017-07-02 10:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\腾讯软件
2017-07-02 10:17 - 2017-07-02 10:17 - 00000000 ____D C:\Program Files\Common Files\Noobzo
2017-07-02 10:16 - 2017-07-02 14:13 - 00000000 ____D C:\ProgramData\WindowsVideoErrorReporting
2017-07-02 10:16 - 2017-07-02 10:18 - 01705984 _____ C:\Users\gregs\AppData\Local\po.db
2017-07-02 10:16 - 2017-07-02 10:18 - 00000004 _____ C:\ProgramData\_lg.3sap
2017-07-02 10:16 - 2017-07-02 10:18 - 00000000 ____D C:\Users\gregs\AppData\Roaming\uq5nareb00d
2017-07-02 10:16 - 2017-07-02 10:18 - 00000000 ____D C:\Users\gregs\AppData\Roaming\uhdvzeo4ic1
2017-07-02 10:16 - 2017-07-02 10:18 - 00000000 ____D C:\Users\gregs\AppData\Roaming\gzbmihdhkoo
2017-07-02 10:16 - 2017-07-02 10:16 - 00140800 _____ C:\Users\gregs\AppData\Local\installer.dat
2017-07-02 10:16 - 2017-07-02 10:16 - 00011568 _____ C:\Users\gregs\AppData\Local\InstallationConfiguration.xml
2017-07-02 10:16 - 2017-07-02 10:16 - 00000000 ____D C:\Users\gregs\AppData\Roaming\UCChannel
2017-07-02 10:16 - 2017-07-02 10:16 - 00000000 ____D C:\Users\gregs\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TubeTime
2017-07-02 10:16 - 2017-07-02 01:40 - 02001920 ___SH (Micrasaft Carparation) C:\WINDOWS\C_02iu47.dat
2017-07-02 10:16 - 2017-06-08 03:59 - 00158920 _____ (Tencent) C:\WINDOWS\SysWOW64\MMInstaller.dll
2017-07-02 10:16 - 2017-01-12 21:49 - 02235392 _____ C:\WINDOWS\SysWOW64\cuda_tromp_75.dll
2017-07-02 10:16 - 2017-01-12 21:49 - 00045056 _____ C:\WINDOWS\SysWOW64\cpu_tromp_SSE2.dll
2017-07-02 10:16 - 2017-01-12 21:48 - 02235392 _____ C:\WINDOWS\SysWOW64\cuda_tromp.dll
2017-07-02 10:16 - 2017-01-12 21:48 - 00044032 _____ C:\WINDOWS\SysWOW64\cpu_tromp_AVX.dll
2017-07-02 10:16 - 2017-01-12 19:18 - 00986112 _____ C:\WINDOWS\SysWOW64\cuda_djezo.dll
2017-07-02 10:16 - 2016-09-05 15:51 - 00366016 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\cudart64_80.dll
2017-07-02 10:16 - 2016-09-05 15:51 - 00297408 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\cudart32_80.dll
2017-07-02 10:16 - 2015-08-16 01:21 - 00360736 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\cudart64_75.dll
2017-07-02 10:16 - 2015-08-16 01:21 - 00291632 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\cudart32_75.dll
2017-07-02 10:15 - 2017-07-02 10:18 - 00000000 ____D C:\Users\gregs\AppData\Roaming\eif1unkdth3
2017-07-02 10:15 - 2017-07-02 10:15 - 01761781 _____ C:\HEADERS
2017-07-02 10:15 - 2017-07-02 10:15 - 00000019 _____ C:\END
2017-07-01 18:57 - 2017-07-01 18:57 - 00000000 ____D C:\Users\gregs\AppData\Roaming\Io Interactive
2017-07-01 18:54 - 2017-07-01 18:54 - 00000000 ____D C:\Users\gregs\AppData\Local\IO Interactive
2017-07-01 17:20 - 2017-07-01 17:20 - 00000222 _____ C:\Users\gregs\Desktop\HITMAN.url
2017-07-01 16:54 - 2017-07-01 16:54 - 00015449 _____ C:\Users\gregs\Downloads\Mexico.mid
2017-07-01 10:53 - 2017-07-01 10:53 - 00002074 _____ C:\Users\Public\Desktop\iLok License Manager.lnk
2017-07-01 10:52 - 2017-07-01 10:52 - 102081890 _____ C:\Users\gregs\Downloads\LicenseSupportInstallerWin64(1).zip
2017-07-01 10:52 - 2017-07-01 10:52 - 00000000 ____D C:\Users\gregs\Downloads\LicenseSupportInstallerWin64(1)
2017-06-28 20:37 - 2017-06-28 20:37 - 00000000 ____D C:\Users\Public\Documents\Steam
2017-06-28 20:11 - 2017-06-28 20:11 - 00001219 _____ C:\Users\gregs\Desktop\Prey.lnk
2017-06-28 20:11 - 2017-06-28 20:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\by.xatab
2017-06-26 19:47 - 2017-06-26 19:47 - 00001875 _____ C:\Users\Public\Desktop\Little Nightmares.lnk
2017-06-23 08:05 - 2017-06-23 08:08 - 00000000 ____D C:\Users\gregs\AppData\Roaming\Apple Computer
2017-06-23 08:05 - 2017-06-23 08:05 - 00001822 _____ C:\Users\Public\Desktop\iTunes.lnk
2017-06-23 08:05 - 2017-06-23 08:05 - 00000000 ____D C:\Users\gregs\AppData\Local\Apple Computer
2017-06-23 08:05 - 2017-06-23 08:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2017-06-23 08:05 - 2017-06-23 08:05 - 00000000 ____D C:\ProgramData\Apple Computer
2017-06-23 08:05 - 2017-06-23 08:05 - 00000000 ____D C:\Program Files\iTunes
2017-06-23 08:05 - 2017-06-23 08:05 - 00000000 ____D C:\Program Files\iPod
2017-06-23 08:04 - 2017-06-23 08:04 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2017-06-23 08:04 - 2017-06-23 08:04 - 00000000 ____D C:\Users\gregs\AppData\Local\Apple
2017-06-23 08:04 - 2017-06-23 08:04 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2017-06-23 08:03 - 2017-06-23 08:04 - 00000000 ____D C:\Program Files\Common Files\Apple
2017-06-23 08:03 - 2017-06-23 08:04 - 00000000 ____D C:\Program Files\Bonjour
2017-06-23 08:03 - 2017-06-23 08:04 - 00000000 ____D C:\Program Files (x86)\Bonjour
2017-06-23 08:01 - 2017-06-23 08:03 - 259195720 _____ (Apple Inc.) C:\Users\gregs\Downloads\iTunes64Setup.exe
2017-06-23 08:00 - 2017-06-23 08:00 - 00002256 _____ C:\Users\Public\Desktop\4Media iPad to PC Transfer.lnk
2017-06-23 08:00 - 2017-06-23 08:00 - 00000000 ____D C:\Users\gregs\Documents\4Media
2017-06-23 08:00 - 2017-06-23 08:00 - 00000000 ____D C:\Users\gregs\AppData\Roaming\4Media
2017-06-23 08:00 - 2017-06-23 08:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\4Media
2017-06-23 08:00 - 2017-06-23 08:00 - 00000000 ____D C:\ProgramData\4Media
2017-06-23 08:00 - 2017-06-23 08:00 - 00000000 ____D C:\Program Files (x86)\4Media
2017-06-23 07:54 - 2017-06-23 07:57 - 76500808 _____ C:\Users\gregs\Downloads\m-ipad-to-pc-transfer-cnet.exe
2017-06-22 22:10 - 2017-06-22 22:10 - 00000872 _____ C:\Users\gregs\Desktop\Tony Hawk's Underground 2.lnk
2017-06-22 22:10 - 2017-06-22 22:10 - 00000000 ____D C:\Users\gregs\AppData\Roaming\Tony Hawk's Underground 2
2017-06-22 19:39 - 2017-06-22 19:39 - 00000000 ____D C:\WINDOWS\Panther
2017-06-18 21:20 - 2017-06-18 21:20 - 00000000 ____D C:\Users\gregs\AppData\Roaming\Doublefine
2017-06-17 17:33 - 2017-06-17 17:33 - 00553628 _____ C:\WINDOWS\Minidump\061717-7421-01.dmp
2017-06-14 21:58 - 2017-06-14 21:58 - 00000000 ___SD C:\WINDOWS\UpdateAssistantV2
2017-06-14 18:54 - 2017-06-03 12:50 - 00315744 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2017-06-14 18:54 - 2017-06-03 12:50 - 00192856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2017-06-14 18:54 - 2017-06-03 12:16 - 00279904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2017-06-14 18:54 - 2017-06-03 12:14 - 01564512 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2017-06-14 18:54 - 2017-06-03 12:14 - 01214816 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2017-06-14 18:54 - 2017-06-03 12:14 - 00629088 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2017-06-14 18:54 - 2017-06-03 12:14 - 00544096 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2017-06-14 18:54 - 2017-06-03 12:14 - 00379232 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2017-06-14 18:54 - 2017-06-03 12:14 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2017-06-14 18:54 - 2017-06-03 12:14 - 00334176 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2017-06-14 18:54 - 2017-06-03 12:14 - 00233824 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2017-06-14 18:54 - 2017-06-03 12:14 - 00136032 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2017-06-14 18:54 - 2017-06-03 12:14 - 00136024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2017-06-14 18:54 - 2017-06-03 12:14 - 00096608 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2017-06-14 18:54 - 2017-06-03 12:14 - 00034648 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2017-06-14 18:54 - 2017-06-03 12:11 - 01706488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2017-06-14 18:54 - 2017-06-03 12:11 - 00128864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2017-06-14 18:54 - 2017-06-03 12:09 - 02213760 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2017-06-14 18:54 - 2017-06-03 12:08 - 07783256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2017-06-14 18:54 - 2017-06-03 12:06 - 02048496 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2017-06-14 18:54 - 2017-06-03 12:01 - 02681200 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2017-06-14 18:54 - 2017-06-03 11:59 - 01181024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2017-06-14 18:54 - 2017-06-03 11:59 - 00764392 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2017-06-14 18:54 - 2017-06-03 11:59 - 00118112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
2017-06-14 18:54 - 2017-06-03 11:58 - 00340832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2017-06-14 18:54 - 2017-06-03 11:55 - 00780640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2017-06-14 18:54 - 2017-06-03 11:54 - 00187232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2017-06-14 18:54 - 2017-06-03 11:53 - 00404824 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2017-06-14 18:54 - 2017-06-03 11:52 - 01021784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2017-06-14 18:54 - 2017-06-03 11:52 - 00607072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2017-06-14 18:54 - 2017-06-03 11:52 - 00111968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2017-06-14 18:54 - 2017-06-03 11:51 - 02187104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2017-06-14 18:54 - 2017-06-03 11:51 - 00402272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2017-06-14 18:54 - 2017-06-03 11:50 - 00857440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2017-06-14 18:54 - 2017-06-03 11:50 - 00381792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2017-06-14 18:54 - 2017-06-03 11:49 - 20967840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2017-06-14 18:54 - 2017-06-03 11:49 - 00624048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2017-06-14 18:54 - 2017-06-03 11:49 - 00509280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2017-06-14 18:54 - 2017-06-03 11:48 - 01112416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2017-06-14 18:54 - 2017-06-03 11:48 - 01100128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2017-06-14 18:54 - 2017-06-03 11:48 - 00989024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2017-06-14 18:54 - 2017-06-03 11:48 - 00857952 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2017-06-14 18:54 - 2017-06-03 11:48 - 00148832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2017-06-14 18:54 - 2017-06-03 11:45 - 22220864 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2017-06-14 18:54 - 2017-06-03 11:44 - 01600624 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2017-06-14 18:54 - 2017-06-03 11:44 - 01412640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2017-06-14 18:54 - 2017-06-03 11:44 - 00545944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2017-06-14 18:54 - 2017-06-03 11:40 - 01566552 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2017-06-14 18:54 - 2017-06-03 11:40 - 00628552 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2017-06-14 18:54 - 2017-06-03 11:39 - 05686272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2017-06-14 18:54 - 2017-06-03 11:39 - 02532192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2017-06-14 18:54 - 2017-06-03 11:39 - 00455520 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2017-06-14 18:54 - 2017-06-03 11:33 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2017-06-14 18:54 - 2017-06-03 11:32 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2017-06-14 18:54 - 2017-06-03 11:31 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll
2017-06-14 18:54 - 2017-06-03 11:31 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2017-06-14 18:54 - 2017-06-03 11:28 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll
2017-06-14 18:54 - 2017-06-03 11:28 - 00232448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edputil.dll
2017-06-14 18:54 - 2017-06-03 11:26 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2017-06-14 18:54 - 2017-06-03 11:26 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthBrokerUI.dll
2017-06-14 18:54 - 2017-06-03 11:23 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2017-06-14 18:54 - 2017-06-03 11:22 - 07217152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2017-06-14 18:54 - 2017-06-03 11:22 - 00364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2017-06-14 18:54 - 2017-06-03 11:22 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcorehc.dll
2017-06-14 18:54 - 2017-06-03 11:22 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tcpipcfg.dll
2017-06-14 18:54 - 2017-06-03 11:20 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2017-06-14 18:54 - 2017-06-03 11:19 - 01164288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certutil.exe
2017-06-14 18:54 - 2017-06-03 11:18 - 22569984 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2017-06-14 18:54 - 2017-06-03 11:16 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2017-06-14 18:54 - 2017-06-03 11:16 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2017-06-14 18:54 - 2017-06-03 11:16 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2017-06-14 18:54 - 2017-06-03 11:15 - 19414016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2017-06-14 18:54 - 2017-06-03 11:15 - 18364928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2017-06-14 18:54 - 2017-06-03 11:15 - 00886272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2017-06-14 18:54 - 2017-06-03 11:15 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2017-06-14 18:54 - 2017-06-03 11:15 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys
2017-06-14 18:54 - 2017-06-03 11:14 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2017-06-14 18:54 - 2017-06-03 11:14 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2017-06-14 18:54 - 2017-06-03 11:14 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2017-06-14 18:54 - 2017-06-03 11:14 - 00045056 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2017-06-14 18:54 - 2017-06-03 11:12 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdProxy.dll
2017-06-14 18:54 - 2017-06-03 11:11 - 00353792 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2017-06-14 18:54 - 2017-06-03 11:10 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2017-06-14 18:54 - 2017-06-03 11:10 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\edputil.dll
2017-06-14 18:54 - 2017-06-03 11:10 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBrokerUI.dll
2017-06-14 18:54 - 2017-06-03 11:09 - 00489472 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2017-06-14 18:54 - 2017-06-03 11:09 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcorehc.dll
2017-06-14 18:54 - 2017-06-03 11:09 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll
2017-06-14 18:54 - 2017-06-03 11:08 - 12187648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2017-06-14 18:54 - 2017-06-03 11:08 - 02643968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2017-06-14 18:54 - 2017-06-03 11:08 - 01221120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2017-06-14 18:54 - 2017-06-03 11:08 - 00691200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2017-06-14 18:54 - 2017-06-03 11:08 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2017-06-14 18:54 - 2017-06-03 11:08 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2017-06-14 18:54 - 2017-06-03 11:07 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2017-06-14 18:54 - 2017-06-03 11:07 - 00456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2017-06-14 18:54 - 2017-06-03 11:07 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\HNetCfgClient.dll
2017-06-14 18:54 - 2017-06-03 11:06 - 03664384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2017-06-14 18:54 - 2017-06-03 11:06 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2017-06-14 18:54 - 2017-06-03 11:05 - 01883648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2017-06-14 18:54 - 2017-06-03 11:05 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hnetcfg.dll
2017-06-14 18:54 - 2017-06-03 11:04 - 06042624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2017-06-14 18:54 - 2017-06-03 11:04 - 02006528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2017-06-14 18:54 - 2017-06-03 11:04 - 00773120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2017-06-14 18:54 - 2017-06-03 11:03 - 01988096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2017-06-14 18:54 - 2017-06-03 11:03 - 00932864 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2017-06-14 18:54 - 2017-06-03 11:02 - 02997760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2017-06-14 18:54 - 2017-06-03 11:01 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2017-06-14 18:54 - 2017-06-03 11:00 - 23677440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2017-06-14 18:54 - 2017-06-03 10:58 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdProxy.dll
2017-06-14 18:54 - 2017-06-03 10:56 - 13091840 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2017-06-14 18:54 - 2017-06-03 10:54 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2017-06-14 18:54 - 2017-06-03 10:53 - 08125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2017-06-14 18:54 - 2017-06-03 10:52 - 03403264 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2017-06-14 18:54 - 2017-06-03 10:52 - 02510848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2017-06-14 18:54 - 2017-06-03 10:52 - 00975872 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2017-06-14 18:54 - 2017-06-03 10:52 - 00886784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2017-06-14 18:54 - 2017-06-03 10:51 - 01418240 _____ (Microsoft Corporation) C:\WINDOWS\system32\certutil.exe
2017-06-14 18:54 - 2017-06-03 10:51 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2017-06-14 18:54 - 2017-06-03 10:50 - 04744704 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2017-06-14 18:54 - 2017-06-03 10:50 - 02538496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2017-06-14 18:54 - 2017-06-03 10:49 - 03615744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2017-06-14 18:54 - 2017-06-03 10:49 - 02691072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2017-06-14 18:54 - 2017-06-03 10:49 - 02475520 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2017-06-14 18:54 - 2017-06-03 10:49 - 02318848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2017-06-14 18:54 - 2017-06-03 10:49 - 01845248 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2017-06-14 18:54 - 2017-06-03 10:49 - 01513472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2017-06-14 18:54 - 2017-06-03 10:49 - 00903680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2017-06-14 18:54 - 2017-06-03 10:49 - 00351744 _____ (Microsoft Corporation) C:\WINDOWS\system32\hnetcfg.dll
2017-06-14 18:54 - 2017-06-03 10:48 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2017-06-14 18:54 - 2017-06-03 10:48 - 01131008 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2017-06-14 18:54 - 2017-06-03 10:48 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2017-06-14 18:54 - 2017-06-03 10:48 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2017-06-14 18:54 - 2017-06-03 10:46 - 01121280 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2017-06-14 18:54 - 2017-06-03 10:40 - 00483840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2017-06-14 18:54 - 2017-06-03 08:08 - 00080078 _____ C:\WINDOWS\system32\normidna.nls
2017-06-14 18:54 - 2017-05-25 07:56 - 00038752 _____ (Microsoft Corporation) C:\WINDOWS\system32\OOBEUpdater.exe
2017-06-14 18:54 - 2017-03-04 08:22 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2017-06-14 18:54 - 2017-03-04 08:19 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2017-06-14 18:54 - 2017-03-04 08:16 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2017-06-14 18:54 - 2017-03-04 08:16 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll
2017-06-14 18:54 - 2016-09-07 06:53 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
2017-06-13 20:58 - 2017-06-13 20:58 - 00035069 _____ C:\Users\gregs\Downloads\the-third-man-english-yify-54231.zip
2017-06-11 12:19 - 2017-06-11 12:19 - 00000000 __HDC C:\ProgramData\{992D615F-F386-4F33-BBB7-37B6DAD18413}
2017-06-11 12:18 - 2017-06-11 12:18 - 00001167 _____ C:\Users\Public\Desktop\Controller Editor.lnk
2017-06-11 12:18 - 2017-06-11 12:18 - 00001097 _____ C:\Users\Public\Desktop\Maschine 2.lnk
2017-06-11 12:18 - 2017-06-11 12:18 - 00000000 __HDC C:\ProgramData\{B49C92CB-1A73-4A41-A84C-5091582E7AA8}
2017-06-11 12:18 - 2017-06-11 12:18 - 00000000 __HDC C:\ProgramData\{8EFC8AA0-E84B-4411-A092-D7C967C4194A}
2017-06-11 12:18 - 2017-06-11 12:18 - 00000000 __HDC C:\ProgramData\{8DB01EBA-372E-4223-9BC2-5FA5C1D27D2D}
2017-06-11 12:15 - 2017-06-11 12:15 - 00000000 __HDC C:\ProgramData\{EB48B20D-290B-4639-B2DC-3530B250BA92}
2017-06-11 12:15 - 2017-06-11 12:15 - 00000000 __HDC C:\ProgramData\{998FE7B9-57BF-4E55-8B09-95CA25685C07}
2017-06-11 12:14 - 2017-06-11 12:14 - 00000000 __HDC C:\ProgramData\{F5EDF9D3-E8DD-4F8E-8BD2-4BC06701CEA0}
2017-06-11 12:13 - 2017-06-11 12:13 - 00001127 _____ C:\Users\Public\Desktop\Native Access.lnk
2017-06-08 22:21 - 2017-06-08 22:21 - 00000000 ____D C:\Users\gregs\AppData\Roaming\UFFMod
2017-06-08 21:09 - 2017-06-08 21:09 - 00466456 _____ (Creative Labs) C:\WINDOWS\system32\wrap_oal.dll
2017-06-08 21:09 - 2017-06-08 21:09 - 00444952 _____ (Creative Labs) C:\WINDOWS\SysWOW64\wrap_oal.dll
2017-06-08 21:09 - 2017-06-08 21:09 - 00122904 _____ (Portions © Creative Labs Inc. and NVIDIA Corp.) C:\WINDOWS\system32\OpenAL32.dll
2017-06-08 21:09 - 2017-06-08 21:09 - 00109080 _____ (Portions © Creative Labs Inc. and NVIDIA Corp.) C:\WINDOWS\SysWOW64\OpenAL32.dll
2017-06-08 21:09 - 2017-06-08 21:09 - 00000000 ____D C:\Program Files (x86)\OpenAL
2017-06-08 21:04 - 2017-07-01 10:53 - 00033504 _____ C:\WINDOWS\system32\Drivers\iLokDrvr.sys
2017-06-08 21:04 - 2017-06-08 21:04 - 01490656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WdfCoInstaller01007.dll
2017-06-07 20:07 - 2017-06-10 18:52 - 00000000 ____D C:\Users\gregs\AppData\Roaming\TS3Client
2017-06-07 20:07 - 2017-06-07 20:07 - 00001008 _____ C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
2017-06-07 20:07 - 2017-06-07 20:07 - 00000970 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk
2017-06-07 20:07 - 2017-06-07 20:07 - 00000000 ____D C:\Users\gregs\.TeamSpeak 3
2017-06-07 20:07 - 2017-06-07 20:07 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client
2017-06-07 20:06 - 2017-06-07 20:06 - 77604984 _____ (TeamSpeak Systems GmbH) C:\Users\gregs\Downloads\TeamSpeak3-Client-win64-3.1.4.exe
2017-06-05 21:48 - 2017-06-05 21:48 - 00008560 _____ C:\Users\gregs\Downloads\twin.peaks.s01.e03.part.3.(2017).eng.1cd.(6989263).zip
2017-06-05 10:54 - 2017-06-05 10:59 - 00000000 ____D C:\Users\gregs\AppData\LocalLow\Daybreak Game Company
2017-06-05 10:54 - 2017-06-05 10:54 - 00000000 ____D C:\Users\gregs\AppData\Local\SCE
2017-06-05 10:54 - 2017-06-05 10:54 - 00000000 ____D C:\Users\gregs\AppData\Local\Daybreak Game Company
2017-06-05 00:37 - 2017-06-05 00:37 - 00000222 _____ C:\Users\gregs\Desktop\PlanetSide 2.url
2017-06-03 12:40 - 2017-06-03 12:40 - 00000000 ____D C:\Users\gregs\AppData\Local\Apps\2.0
 
==================== Een Maand Gewijzigd bestanden en mappen ========
 
(Als een item is opgenomen in de fixlist, het bestand/map wordt verplaatst.)
 
2017-07-02 19:05 - 2016-10-30 10:44 - 00000000 ____D C:\Users\gregs\AppData\Roaming\tixati
2017-07-02 18:24 - 2016-11-19 00:18 - 00000000 ____D C:\Users\gregs\AppData\LocalLow\Mozilla
2017-07-02 16:44 - 2016-11-19 21:29 - 00000000 ____D C:\ProgramData\Oracle
2017-07-02 15:35 - 2016-11-06 00:24 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2017-07-02 14:53 - 2016-11-19 21:29 - 00097856 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2017-07-02 14:53 - 2016-11-19 21:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2017-07-02 14:53 - 2016-11-19 21:28 - 00000000 ____D C:\Program Files (x86)\Java
2017-07-02 14:45 - 2016-07-16 08:04 - 00000000 ____D C:\Program Files\ExamWeb
2017-07-02 14:35 - 2016-10-25 07:56 - 03558152 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-07-02 14:35 - 2016-07-17 00:15 - 01295924 _____ C:\WINDOWS\system32\perfh013.dat
2017-07-02 14:35 - 2016-07-17 00:15 - 00327386 _____ C:\WINDOWS\system32\perfc013.dat
2017-07-02 14:35 - 2016-07-16 08:04 - 00032768 _____ C:\WINDOWS\system32\config\ELAM
2017-07-02 14:31 - 2016-11-06 00:35 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-07-02 14:31 - 2016-11-06 00:25 - 00000000 ____D C:\ProgramData\NVIDIA
2017-07-02 14:30 - 2016-07-16 08:04 - 00524288 _____ C:\WINDOWS\system32\config\BBI
2017-07-02 14:13 - 2016-07-16 08:04 - 00000000 ____D C:\Program Files\ShareakGuePass
2017-07-02 14:07 - 2016-07-16 13:36 - 00000000 ____D C:\WINDOWS\CbsTemp
2017-07-02 14:02 - 2016-07-16 13:45 - 00000000 ____D C:\WINDOWS\INF
2017-07-02 14:01 - 2016-11-06 00:27 - 00000000 ____D C:\Users\Nano S Greg
2017-07-02 13:30 - 2016-11-06 00:27 - 00000000 ____D C:\Users\Administrator
2017-07-02 13:12 - 2016-10-25 20:57 - 00001410 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2017-07-02 13:12 - 2016-10-25 20:57 - 00001398 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2017-07-02 13:03 - 2016-10-25 07:51 - 00000000 ____D C:\Program Files (x86)\Steam
2017-07-02 13:01 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\AppReadiness
2017-07-02 12:58 - 2016-10-27 18:51 - 00000000 ____D C:\Users\Administrator\AppData\Local\Packages
2017-07-02 12:57 - 2016-10-27 18:54 - 00002452 _____ C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-07-02 12:57 - 2016-10-27 18:54 - 00000000 ___RD C:\Users\Administrator\OneDrive
2017-07-02 12:56 - 2016-10-25 07:44 - 00000000 __RHD C:\Users\Public\AccountPictures
2017-07-02 12:32 - 2017-05-20 08:50 - 00000000 ____D C:\ProgramData\Unified Remote
2017-07-02 11:05 - 2016-11-06 00:27 - 00000000 ____D C:\Users\gregs
2017-07-02 10:19 - 2016-10-27 19:02 - 00000000 ____D C:\Users\gregs\AppData\Local\VirtualStore
2017-07-02 10:18 - 2016-11-12 18:37 - 00000000 ____D C:\Users\gregs\AppData\Local\CrashDumps
2017-07-02 10:16 - 2017-01-14 22:14 - 00000262 __RSH C:\ProgramData\ntuser.pol
2017-07-02 10:16 - 2016-10-25 08:01 - 00000000 ____D C:\ProgramData\Package Cache
2017-07-02 10:16 - 2015-10-30 09:24 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy
2017-07-02 09:44 - 2017-02-04 19:58 - 00000000 ____D C:\Users\gregs\AppData\Local\Adobe
2017-07-02 00:12 - 2017-01-21 23:29 - 00000000 ____D C:\Users\gregs\AppData\Roaming\Audacity
2017-07-02 00:12 - 2016-10-30 20:22 - 00000000 ____D C:\Users\gregs\AppData\Roaming\vlc
2017-07-01 22:17 - 2017-01-21 18:42 - 00000000 ____D C:\ProgramData\ValhallaShimmer
2017-07-01 12:38 - 2017-01-21 18:42 - 00000000 ____D C:\ProgramData\ValhallaRoom
2017-07-01 12:29 - 2016-12-31 12:24 - 00000000 ____D C:\ProgramData\boost_interprocess
2017-07-01 11:08 - 2016-07-16 13:47 - 00000000 ___HD C:\Program Files\WindowsApps
2017-07-01 10:54 - 2016-11-18 21:54 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-07-01 10:54 - 2016-10-25 20:57 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-07-01 10:53 - 2017-01-17 20:02 - 00000000 ____D C:\Program Files (x86)\iLok License Manager
2017-07-01 10:53 - 2017-01-14 20:15 - 00002086 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iLok License Manager.lnk
2017-07-01 10:53 - 2016-10-25 07:54 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-07-01 10:49 - 2017-01-21 18:42 - 00000000 ____D C:\ProgramData\ValhallaVintageVerb
2017-06-28 20:24 - 2017-02-03 20:02 - 00000000 ____D C:\WINDOWS\SysWOW64\directx
2017-06-28 20:08 - 2016-10-26 19:04 - 00000000 ____D C:\Games
2017-06-23 08:04 - 2017-01-14 20:14 - 00000000 ____D C:\ProgramData\Apple
2017-06-22 19:43 - 2016-12-13 19:54 - 00003290 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2
2017-06-22 19:43 - 2016-10-27 19:03 - 00002428 _____ C:\Users\gregs\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-06-22 19:43 - 2016-10-27 19:03 - 00000000 ___RD C:\Users\gregs\OneDrive
2017-06-21 08:03 - 2017-01-18 20:46 - 00005632 _____ C:\Users\gregs\PaceKeyChain
2017-06-19 21:46 - 2016-11-25 21:39 - 00000000 ____D C:\Users\gregs\Documents\DuckGame
2017-06-17 17:33 - 2017-04-14 08:11 - 00000000 ____D C:\WINDOWS\Minidump
2017-06-15 19:34 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\rescache
2017-06-15 18:25 - 2016-11-06 00:24 - 04863376 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-06-14 21:58 - 2016-07-16 13:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2017-06-14 21:58 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\appraiser
2017-06-14 21:58 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\ShellExperiences
2017-06-14 21:51 - 2016-10-30 11:37 - 00000000 ____D C:\Users\gregs\AppData\Local\Battle.net
2017-06-14 18:59 - 2016-10-25 19:31 - 00000000 ____D C:\WINDOWS\system32\MRT
2017-06-14 18:58 - 2016-10-25 19:31 - 133627792 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-06-14 18:41 - 2016-10-25 19:53 - 00000000 ____D C:\Program Files (x86)\Battle.net
2017-06-11 19:23 - 2017-04-08 11:32 - 00722472 _____ C:\WINDOWS\system32\Drivers\EasyAntiCheat.sys
2017-06-11 12:19 - 2017-04-21 20:20 - 00001087 _____ C:\Users\Public\Desktop\Kontakt 5.lnk
2017-06-11 12:19 - 2016-10-25 21:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments
2017-06-11 12:19 - 2016-10-25 21:05 - 00000000 ____D C:\Program Files\Native Instruments
2017-06-11 12:18 - 2016-12-31 12:18 - 00000000 ____D C:\Program Files\Common Files\Native Instruments
2017-06-10 22:43 - 2016-04-30 01:54 - 00000000 ____D C:\Program Files (x86)\Overwatch
2017-06-08 20:35 - 2017-03-16 21:51 - 00000000 ____D C:\Users\gregs\AppData\Local\sportsfriends
2017-06-03 08:36 - 2016-07-16 13:49 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2017-06-03 08:36 - 2016-07-16 13:49 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
 
==================== Bestanden in de root van sommige mappen =======
 
2017-07-02 10:16 - 2017-07-02 10:16 - 0011568 _____ () C:\Users\gregs\AppData\Local\InstallationConfiguration.xml
2017-07-02 10:16 - 2017-07-02 10:16 - 0140800 _____ () C:\Users\gregs\AppData\Local\installer.dat
2017-07-02 10:16 - 2017-07-02 10:18 - 1705984 _____ () C:\Users\gregs\AppData\Local\po.db
2017-02-02 20:24 - 2017-02-02 20:24 - 0005005 _____ () C:\Users\gregs\AppData\Local\soulseek-client.dat.1486059867090
2017-02-10 19:35 - 2017-02-10 19:35 - 0005005 _____ () C:\Users\gregs\AppData\Local\soulseek-client.dat.1486748112309
2017-07-02 10:17 - 2017-07-02 10:17 - 0930816 _____ () C:\Users\gregs\AppData\Local\test_db_cara.db
2017-07-02 12:57 - 2017-07-02 12:57 - 0049713 _____ () C:\ProgramData\agent.1498993059.bdinstall.bin
2017-07-02 13:56 - 2017-07-02 13:56 - 0021617 _____ () C:\ProgramData\agent.uninstall.1498996562.bdinstall.bin
2017-07-02 13:57 - 2017-07-02 13:57 - 0031105 _____ () C:\ProgramData\agent.update.1498996639.bdinstall.bin
2017-07-02 14:02 - 2017-07-02 14:02 - 0438918 _____ () C:\ProgramData\cl.1498996745.bdinstall.bin
2017-07-02 14:02 - 2017-07-02 14:02 - 0056298 _____ () C:\ProgramData\dm.1498996942.bdinstall.bin
2017-07-02 14:02 - 2017-07-02 14:02 - 0041244 _____ () C:\ProgramData\dm.update.1498996958.bdinstall.bin
2017-03-25 18:43 - 2017-03-25 18:43 - 0000134 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc
2016-11-11 16:55 - 2016-11-11 16:55 - 0000016 _____ () C:\ProgramData\mntemp
2017-07-02 10:16 - 2017-07-02 10:18 - 0000004 _____ () C:\ProgramData\_lg.3sap
 
Sommige bestanden in TEMP:
====================
2017-07-02 10:16 - 2017-07-02 10:16 - 4015032 _____ (Easeware                                                    ) C:\Users\gregs\AppData\Local\Temp\5361.tmp.exe
2017-07-02 10:16 - 2017-07-02 10:18 - 0355840 _____ () C:\Users\gregs\AppData\Local\Temp\AppHelperV2.exe
2017-07-02 10:15 - 2017-07-02 10:15 - 1167787 _____ (                                                            ) C:\Users\gregs\AppData\Local\Temp\avboost.exe
2017-07-02 10:16 - 2017-07-02 10:16 - 0609127 _____ (3G3WB510zBRxihjMRunR                                        ) C:\Users\gregs\AppData\Local\Temp\browmodule.exe
2017-07-02 10:15 - 2017-07-02 10:15 - 1761781 _____ () C:\Users\gregs\AppData\Local\Temp\FullVersion.exe
2017-07-02 10:16 - 2017-07-02 10:16 - 0694991 _____ (VideoBox                                                    ) C:\Users\gregs\AppData\Local\Temp\ivbs.exe
2017-07-02 14:49 - 2017-07-02 14:49 - 0739904 _____ (Oracle Corporation) C:\Users\gregs\AppData\Local\Temp\jre-8u131-windows-au.exe
2017-07-02 10:16 - 2017-07-02 10:16 - 0328160 _____ (WeMonetize                                                  ) C:\Users\gregs\AppData\Local\Temp\K8GXO90.exe
2016-10-25 08:02 - 2016-12-29 14:43 - 0860776 _____ (NVIDIA Corporation) C:\Users\gregs\AppData\Local\Temp\nvSCPAPI64.dll
2016-11-06 11:04 - 2016-12-29 14:43 - 0351680 _____ (NVIDIA Corporation) C:\Users\gregs\AppData\Local\Temp\nvStInst.exe
2017-07-02 10:16 - 2017-07-02 10:16 - 0386600 _____ (                                                            ) C:\Users\gregs\AppData\Local\Temp\Setup.exe
2017-07-02 10:24 - 2017-07-02 10:24 - 0053760 _____ (W6) C:\Users\gregs\AppData\Local\Temp\SPM7X5358AEN.exe
2017-07-02 10:16 - 2017-07-02 10:16 - 1199825 _____ () C:\Users\gregs\AppData\Local\Temp\unins000.exe
2017-05-28 09:36 - 2017-05-28 09:36 - 30950664 _____ () C:\Users\gregs\AppData\Local\Temp\vlc-2.2.6-win32.exe
2017-07-02 10:16 - 2017-07-02 10:16 - 4611795 _____ (                                                            ) C:\Users\gregs\AppData\Local\Temp\Yeadesktop.exe
2017-07-02 10:16 - 2017-07-02 10:16 - 2582103 _____ () C:\Users\gregs\AppData\Local\Temp\ytab_m_1_big.exe
 
==================== Bamital & volsnap ======================
 
(Er is geen automatische fix voor bestanden die de verificatie niet doorkomen.)
 
C:\WINDOWS\system32\winlogon.exe => Bestand is getekend
C:\WINDOWS\system32\wininit.exe => Bestand is getekend
C:\WINDOWS\explorer.exe => Bestand is getekend
C:\WINDOWS\SysWOW64\explorer.exe => Bestand is getekend
C:\WINDOWS\system32\svchost.exe => Bestand is getekend
C:\WINDOWS\SysWOW64\svchost.exe => Bestand is getekend
C:\WINDOWS\system32\services.exe => Bestand is getekend
C:\WINDOWS\system32\User32.dll => Bestand is getekend
C:\WINDOWS\SysWOW64\User32.dll => Bestand is getekend
C:\WINDOWS\system32\userinit.exe => Bestand is getekend
C:\WINDOWS\SysWOW64\userinit.exe => Bestand is getekend
C:\WINDOWS\system32\rpcss.dll => Bestand is getekend
C:\WINDOWS\system32\dnsapi.dll => Bestand is getekend
C:\WINDOWS\SysWOW64\dnsapi.dll => Bestand is getekend
C:\WINDOWS\system32\Drivers\volsnap.sys => Bestand is getekend
 
LastRegBack: 2017-06-28 21:45
 
==================== Eind van FRST.txt ============================
Extra scanresultaten van Farbar Recovery Scan Tool (x64) Versie: 02-07-2017
Gestart door gregs (02-07-2017 19:07:14)
Gestart vanaf C:\Users\gregs\Desktop\frst
Windows 10 Home Versie 1607 (X64) (2016-11-05 22:36:36)
Boot Modus: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-2296426734-4234570832-937735285-500 - Administrator - Disabled) => C:\Users\Administrator
DefaultAccount (S-1-5-21-2296426734-4234570832-937735285-503 - Limited - Disabled)
Gast (S-1-5-21-2296426734-4234570832-937735285-501 - Limited - Disabled)
gregs (S-1-5-21-2296426734-4234570832-937735285-1004 - Administrator - Enabled) => C:\Users\gregs
HomeGroupUser$ (S-1-5-21-2296426734-4234570832-937735285-1003 - Limited - Enabled)
 
==================== Security Center ========================
 
(Als een item is opgenomen in de fixlist, zal het worden verwijderd.)
 
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Bitdefender Antivirus (Enabled - Up to date) {3FB17364-4FCC-0FA7-6BBF-973897395371}
AS: Bitdefender Antispyware (Enabled - Up to date) {84D09280-69F6-0029-510F-AC4AECBE19CC}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Bitdefender Firewall (Enabled) {078AF241-05A3-0EFF-40E0-3E0D69EA140A}
 
==================== Geïnstalleerde programma's ======================
 
(Alleen de adware-programma's met 'verborgen' vlag zou kunnen worden toegevoegd aan de fixlist om ze zichtbaar te maken. De adware-programma's moeten handmatig gedeinstallerd worden.)
 
4Media iPad to PC Transfer (HKLM-x32\...\4Media iPad to PC Transfer) (Version: 5.7.2.20150413 - 4Media)
Ableton Live 9 Suite (HKLM\...\{1D35814D-952D-4B55-A02D-BBD68CCB74C4}) (Version: 9.0.0.0 - Ableton)
ABZÛ (HKLM\...\Steam App 384190) (Version:  - Giant Squid)
Adobe Flash Player 24 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 24.0.0.194 - Adobe Systems Incorporated)
Adobe Premiere Pro CC 2015 (HKLM-x32\...\{38C72D42-0672-43B1-9E05-E7631684F9A1}) (Version: 9.0.0 - Adobe Systems Incorporated)
AI Suite 3 (HKLM-x32\...\{CD36E28B-6023-469A-91E7-049A2874EC13}) (Version: 1.01.46 - ASUSTeK Computer Inc.)
Analog Lab 2 2.0.4 (HKLM-x32\...\Analog Lab 2_is1) (Version: 2.0.4 - Arturia)
Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 381.65 - NVIDIA Corporation) Hidden
Antichamber (HKLM\...\Steam App 219890) (Version:  - Alexander Bruce)
Apple Application Support (32-bit) (HKLM-x32\...\{E92BB800-BCC5-4C25-8102-AC2C3B7C7C1E}) (Version: 5.5 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{9C912B1E-06DD-43EF-BB2B-45CB2C88BAAE}) (Version: 5.5 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{0A596141-97D5-45FA-9281-98DFAF48D579}) (Version: 10.3.2.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{52D87F32-70E4-4348-8148-C0B9F35B1314}) (Version: 2.3.0.177 - Apple Inc.)
Arma 3 (HKLM\...\Steam App 107410) (Version:  - Bohemia Interactive)
ARP 2600 V2 2.7.0 (HKLM-x32\...\ARP 2600 V2_is1) (Version: 2.7.0 - Arturia)
Arturia Software Center 1.2.2 (HKLM-x32\...\Arturia Software Center_is1) (Version: 1.2.2 - Arturia)
Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.33.1 - Asmedia Technology)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.7.2.45672 - Electronic Arts)
Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.7.1 - EA Digital Illusions CE AB)
Belgium e-ID middleware 4.1.20 (build 1779) (HKLM\...\{DB942AEA-93D6-4FE4-8862-180D35A71779}) (Version: 4.1.1779 - Belgian Government)
Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 21.0.25.49 - Bitdefender)
Bitdefender Device Management (HKLM\...\Bitdefender Device Management) (Version: 21.0.25.80 - Bitdefender)
Bitdefender Total Security 2017 (HKLM\...\Bitdefender) (Version: 21.0.25.92 - Bitdefender)
Blackmagic Design Desktop Video (HKLM\...\{A83FF94A-E1E2-4C86-AF3C-3075DE6FDFF7}) (Version: 10.8.2.0 - Blackmagic Design)
Blade Ballet (HKLM\...\Steam App 460750) (Version:  - DreamSail Games)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Corsair Utility Engine (HKLM-x32\...\{CA3C795C-4A3C-4563-9C57-925EDC79757C}) (Version: 2.4.66 - Corsair)
Crawl (HKLM\...\Steam App 293780) (Version:  - Powerhoof)
CS-80 V2 2.7.0 (HKLM-x32\...\CS-80 V2_is1) (Version: 2.7.0 - Arturia)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.4.0.0196 - Disc Soft Ltd)
Day of Infamy (HKLM\...\Steam App 447820) (Version:  - New World Interactive)
DiRT Rally (HKLM\...\Steam App 310560) (Version:  - Codemasters Racing Studio)
Dishonored (HKLM\...\Steam App 205100) (Version:  - Arkane Studios)
DOOM (HKLM\...\Steam App 379720) (Version:  - id Software)
Dota 2 (HKLM\...\Steam App 570) (Version:  - Valve)
Epic Games Launcher (HKLM-x32\...\{2DE76AAC-8061-4D9B-B7BA-A7CFBE0F8048}) (Version: 1.1.86.0 - Epic Games, Inc.)
Everything (HKLM\...\Steam App 582270) (Version:  - David OReilly)
Factorio (HKLM\...\Steam App 427520) (Version:  - Wube Software LTD.)
Fraps (HKLM-x32\...\Fraps) (Version:  - )
Grand Theft Auto V (HKLM\...\Steam App 271590) (Version:  - Rockstar North)
Gurgamoth (HKLM\...\Steam App 418360) (Version:  - Galvanic Games)
Headlander (HKLM\...\Steam App 340000) (Version:  - Double Fine Productions)
HELLDIVERS™ (HKLM\...\Steam App 394510) (Version:  - Arrowhead Game Studios)
Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version:  - Blizzard Entertainment)
HITMAN™ (HKLM\...\Steam App 236870) (Version:  - Io-Interactive)
Human Resource Machine (HKLM\...\Steam App 375820) (Version:  - Tomorrow Corporation)
HWiNFO64 Version 5.42 (HKLM\...\HWiNFO64_is1) (Version: 5.42 - Martin Malík - REALiX)
INSIDE (HKLM\...\Steam App 304430) (Version:  - Playdead)
Intel® Network Connections 20.2.4001.0 (HKLM\...\PROSetDX) (Version: 20.2.4001.0 - Intel)
iTunes (HKLM\...\{F0C7385A-9D20-45F3-8101-05D383885180}) (Version: 12.6.1.25 - Apple Inc.)
Java 8 Update 131 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180131F0}) (Version: 8.0.1310.11 - Oracle Corporation)
Jupiter-8 V2 2.7.0 (HKLM-x32\...\Jupiter-8 V2_is1) (Version: 2.7.0 - Arturia)
Kentucky Route Zero (HKLM\...\Steam App 231200) (Version:  - Cardboard Computer)
K-Lite Codec Pack 12.4.4 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 12.4.4 - KLCP)
Lance A Lot (HKLM\...\Steam App 495900) (Version:  - Rocket Hammer)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Little Nightmares (HKLM-x32\...\Little Nightmares_is1) (Version:  - )
LoopBe1 - Internal MIDI Port (HKLM-x32\...\LoopBe1) (Version:  - )
Magicka 2 (HKLM\...\Steam App 238370) (Version:  - Pieces Interactive)
Matrix-12 V 1.2.0 (HKLM-x32\...\Matrix-12 V_is1) (Version: 1.2.0 - Arturia)
M-Audio Fast Track Ultra Driver 6.1.10 (x64) (HKLM\...\{D67FFF8A-C1EA-45E0-AEA7-C40254AA8FC3}) (Version: 6.1.10 - M-Audio)
Max 7 (64-bit) (HKLM\...\{0ED56CBB-3E13-45C9-9039-DD618194A10D}) (Version: 7.3.3 - Cycling '74)
Microsoft OneDrive (HKU\S-1-5-21-2296426734-4234570832-937735285-1004\...\OneDriveSetup.exe) (Version: 17.3.6917.0607 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
MIDI-OX (HKLM-x32\...\{A6457851-5EA9-45B0-AF1D-D2A0A4781CFB}) (Version: 7.02.372 - MIDIOX Computing)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
Mini V2 2.7.0 (HKLM-x32\...\Mini V2_is1) (Version: 2.7.0 - Arturia)
MiniFilter V 1.0.0 (HKLM-x32\...\MiniFilter V_is1) (Version: 1.0.0 - Arturia)
Miro (HKLM-x32\...\Miro) (Version: 6.0 - Participatory Culture Foundation)
Modular V2 2.8.0 (HKLM-x32\...\Modular V2_is1) (Version: 2.8.0 - Arturia)
Move or Die (HKLM\...\Steam App 323850) (Version:  - Those Awesome Guys)
Mozilla Firefox 54.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 54.0.1 (x86 en-US)) (Version: 54.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 54.0.1.6388 - Mozilla)
MSI Afterburner 4.3.0 (HKLM-x32\...\Afterburner) (Version: 4.3.0 - MSI Co., LTD)
My Game Long Name (HKLM\...\UDK-1c5aa649-b88c-4786-80dd-838651c510d1) (Version:  - Epic Games, Inc.)
Native Instruments Abbey Road 60s Drummer (HKLM-x32\...\Native Instruments Abbey Road 60s Drummer) (Version: 1.3.0.12 - Native Instruments)
Native Instruments Absynth 5 (HKLM-x32\...\Native Instruments Absynth 5) (Version: 5.3.1.1628 - Native Instruments)
Native Instruments Battery 4 (HKLM-x32\...\Native Instruments Battery 4) (Version: 4.1.5.254 - Native Instruments)
Native Instruments Battery 4 Factory Library (HKLM-x32\...\Native Instruments Battery 4 Factory Library) (Version: 1.1.0.2 - Native Instruments)
Native Instruments Controller Editor (HKLM-x32\...\Native Instruments Controller Editor) (Version: 2.1.0.183 - Native Instruments)
Native Instruments Driver (HKLM-x32\...\Native Instruments Driver) (Version: 1.3.1.45 - Native Instruments)
Native Instruments Drum Lab (HKLM-x32\...\Native Instruments Drum Lab) (Version: 1.2.0.6 - Native Instruments)
Native Instruments FM8 (HKLM-x32\...\Native Instruments FM8) (Version: 1.4.1.1599 - Native Instruments)
Native Instruments Form (HKLM-x32\...\Native Instruments Form) (Version: 1.1.0.7 - Native Instruments)
Native Instruments Guitar Rig 5 (HKLM-x32\...\Native Instruments Guitar Rig 5) (Version: 5.2.2.8 - Native Instruments)
Native Instruments Guitar Rig Mobile IO Driver (HKLM-x32\...\Native Instruments Guitar Rig Mobile IO Driver) (Version:  - Native Instruments)
Native Instruments Guitar Rig Session IO Driver (HKLM-x32\...\Native Instruments Guitar Rig Session IO Driver) (Version:  - Native Instruments)
Native Instruments India (HKLM-x32\...\Native Instruments India) (Version: 1.1.0.2 - Native Instruments)
Native Instruments Kinetic Metal (HKLM-x32\...\Native Instruments Kinetic Metal) (Version: 1.1.0.3 - Native Instruments)
Native Instruments Komplete Kontrol (HKLM-x32\...\Native Instruments Komplete Kontrol) (Version: 1.8.1.5 - Native Instruments)
Native Instruments Komplete Kontrol Driver (HKLM-x32\...\Native Instruments Komplete Kontrol Driver) (Version:  - Native Instruments)
Native Instruments Kontakt 5 (HKLM-x32\...\Native Instruments Kontakt 5) (Version: 5.6.8.25 - Native Instruments)
Native Instruments Kontakt Factory Library (HKLM-x32\...\Native Instruments Kontakt Factory Library) (Version: 1.3.0.5 - Native Instruments)
Native Instruments Kontour (HKLM-x32\...\Native Instruments Kontour) (Version: 1.0.0.1 - Native Instruments)
Native Instruments Maschine 2 (HKLM-x32\...\Native Instruments Maschine 2) (Version: 2.6.5.101 - Native Instruments)
Native Instruments Maschine 2 Factory Library (HKLM-x32\...\Native Instruments Maschine 2 Factory Library) (Version: 1.3.0.10 - Native Instruments)
Native Instruments Maschine Controller Driver (HKLM-x32\...\Native Instruments Maschine Controller Driver) (Version:  - Native Instruments)
Native Instruments Maschine Controller MK2 Driver (HKLM-x32\...\Native Instruments Maschine Controller MK2 Driver) (Version:  - Native Instruments)
Native Instruments Maschine Jam Driver (HKLM-x32\...\Native Instruments Maschine Jam Driver) (Version:  - Native Instruments)
Native Instruments Maschine Mikro Driver (HKLM-x32\...\Native Instruments Maschine Mikro Driver) (Version:  - Native Instruments)
Native Instruments Maschine Mikro MK2 Driver (HKLM-x32\...\Native Instruments Maschine Mikro MK2 Driver) (Version:  - Native Instruments)
Native Instruments Maschine Studio Driver (HKLM-x32\...\Native Instruments Maschine Studio Driver) (Version:  - Native Instruments)
Native Instruments Massive (HKLM-x32\...\Native Instruments Massive) (Version: 1.5.1.637 - Native Instruments)
Native Instruments Monark (HKLM-x32\...\Native Instruments Monark) (Version: 1.3.0.3 - Native Instruments)
Native Instruments Native Access (HKLM-x32\...\Native Instruments Native Access) (Version: 1.1.3.50 - Native Instruments)
Native Instruments Polyplex (HKLM-x32\...\Native Instruments Polyplex) (Version: 1.1.0.3 - Native Instruments)
Native Instruments Rammfire (HKLM-x32\...\Native Instruments Rammfire) (Version: 2.0.0.5 - Native Instruments)
Native Instruments Reaktor 5 (HKLM-x32\...\Native Instruments Reaktor 5) (Version: 5.9.4.1512 - Native Instruments)
Native Instruments Reaktor 6 (HKLM-x32\...\Native Instruments Reaktor 6) (Version: 6.1.1.35 - Native Instruments)
Native Instruments Reaktor Blocks (HKLM-x32\...\Native Instruments Reaktor Blocks) (Version: 1.3.0.5 - Native Instruments)
Native Instruments Reaktor Blocks Wired (HKLM-x32\...\Native Instruments Reaktor Blocks Wired) (Version: 1.0.2.1 - Native Instruments)
Native Instruments Reaktor Factory Library (HKLM-x32\...\Native Instruments Reaktor Factory Library) (Version: 1.1.0.3 - Native Instruments)
Native Instruments Reaktor Factory Selection R2 (HKLM-x32\...\Native Instruments Reaktor Factory Selection R2) (Version: 1.0.0.1 - Native Instruments)
Native Instruments Reaktor Prism (HKLM-x32\...\Native Instruments Reaktor Prism) (Version: 1.6.0.2 - Native Instruments)
Native Instruments Reaktor Spark R2 (HKLM-x32\...\Native Instruments Reaktor Spark R2) (Version: 1.4.0.4 - Native Instruments)
Native Instruments Reflektor (HKLM-x32\...\Native Instruments Reflektor) (Version: 2.0.0.4 - Native Instruments)
Native Instruments Replika (HKLM-x32\...\Native Instruments Replika) (Version: 1.3.2.50 - Native Instruments)
Native Instruments Retro Machines Mk2 (HKLM-x32\...\Native Instruments Retro Machines Mk2) (Version: 1.3.0.4 - Native Instruments)
Native Instruments Rig Kontrol 3 Driver (HKLM-x32\...\Native Instruments Rig Kontrol 3 Driver) (Version:  - Native Instruments)
Native Instruments Rounds (HKLM-x32\...\Native Instruments Rounds) (Version: 1.2.0.3 - Native Instruments)
Native Instruments Scarbee MM-Bass (HKLM-x32\...\Native Instruments Scarbee MM-Bass) (Version: 1.2.0.2 - Native Instruments)
Native Instruments Scarbee Vintage Keys (HKLM-x32\...\Native Instruments Scarbee Vintage Keys) (Version: 1.3.0.6 - Native Instruments)
Native Instruments Service Center (HKLM-x32\...\Native Instruments Service Center) (Version: 2.6.0.137 - Native Instruments)
Native Instruments Session Guitarist - Strummed Acoustic (HKLM-x32\...\Native Instruments Session Guitarist - Strummed Acoustic) (Version: 1.0.0.8 - Native Instruments)
Native Instruments Session Horns (HKLM-x32\...\Native Instruments Session Horns) (Version: 1.1.0.1 - Native Instruments)
Native Instruments Session Strings (HKLM-x32\...\Native Instruments Session Strings) (Version: 1.3.0.1 - Native Instruments)
Native Instruments Solid Bus Comp FX (HKLM-x32\...\Native Instruments Solid Bus Comp FX) (Version: 1.3.1.45 - Native Instruments)
Native Instruments Solid Dynamics FX (HKLM-x32\...\Native Instruments Solid Dynamics FX) (Version: 1.3.1.45 - Native Instruments)
Native Instruments Solid EQ FX (HKLM-x32\...\Native Instruments Solid EQ FX) (Version: 1.3.1.45 - Native Instruments)
Native Instruments Studio Drummer (HKLM-x32\...\Native Instruments Studio Drummer) (Version: 1.4.0.13 - Native Instruments)
Native Instruments Supercharger (HKLM-x32\...\Native Instruments Supercharger) (Version: 1.3.1.45 - Native Instruments)
Native Instruments The Finger R2 (HKLM-x32\...\Native Instruments The Finger R2) (Version: 1.3.0.1 - Native Instruments)
Native Instruments The Gentleman (HKLM-x32\...\Native Instruments The Gentleman) (Version: 1.2.0.3 - Native Instruments)
Native Instruments The Giant (HKLM-x32\...\Native Instruments The Giant) (Version: 1.2.0.8 - Native Instruments)
Native Instruments The Grandeur (HKLM-x32\...\Native Instruments The Grandeur) (Version: 1.2.0.3 - Native Instruments)
Native Instruments The Maverick (HKLM-x32\...\Native Instruments The Maverick) (Version: 1.2.0.3 - Native Instruments)
Native Instruments Traktor 2 (HKLM-x32\...\Native Instruments Traktor 2) (Version: 2.11.0.23 - Native Instruments)
Native Instruments Traktor Kontrol Z2 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol Z2 Driver) (Version:  - Native Instruments)
Native Instruments Traktors 12 (HKLM-x32\...\Native Instruments Traktors 12) (Version: 2.0.0.3 - Native Instruments)
Native Instruments Transient Master FX (HKLM-x32\...\Native Instruments Transient Master FX) (Version: 1.3.1.45 - Native Instruments)
Native Instruments Una Corda (HKLM-x32\...\Native Instruments Una Corda) (Version: 1.0.0.13 - Native Instruments)
Native Instruments Vintage Organs (HKLM-x32\...\Native Instruments Vintage Organs) (Version: 1.4.0.6 - Native Instruments)
Native Instruments West Africa (HKLM-x32\...\Native Instruments West Africa) (Version: 1.3.0.3 - Native Instruments)
NVIDIA 3D Vision controllerstuurprogramma 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA 3D Vision stuurprogramma 381.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 381.65 - NVIDIA Corporation)
NVIDIA Grafisch stuurprogramma 381.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 381.65 - NVIDIA Corporation)
NVIDIA HD Audio-stuurprogramma 1.3.34.26 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.26 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{8A809006-C25A-4A3A-9DAB-94659BCDB107}) (Version: 9.10.0224 - NVIDIA Corporation)
NVIDIA PhysX Systeem Software 9.17.0329 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0329 - NVIDIA Corporation)
NvTelemetry (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry) (Version: 2.4.5.0 - NVIDIA Corporation) Hidden
Oberheim SEM V 1.4.0 (HKLM-x32\...\Oberheim SEM V_is1) (Version: 1.4.0 - Arturia)
Offworld Trading Company (HKLM\...\Steam App 271240) (Version:  - Mohawk Games)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Origin (HKLM-x32\...\Origin) (Version: 10.3.2.64935 - Electronic Arts, Inc.)
Overwatch (HKLM-x32\...\Overwatch) (Version:  - Blizzard Entertainment)
PACE License Support Win64 (HKLM\...\{233E2172-6B0E-4444-8BBA-C0D2BB9D7C37}) (Version: 3.1.7.1901 - PACE Anti-Piracy, Inc.) Hidden
PACE License Support Win64 (HKLM-x32\...\InstallShield_{233E2172-6B0E-4444-8BBA-C0D2BB9D7C37}) (Version: 3.1.7.1901 - PACE Anti-Piracy, Inc.)
Planet Coaster (HKLM\...\Steam App 493340) (Version:  - Frontier Developments)
Planetary Annihilation (HKLM\...\Steam App 233250) (Version:  - Uber Entertainment)
PlanetSide 2 (HKLM\...\Steam App 218230) (Version:  - Daybreak Game Company)
PlanetSide 2 (HKU\S-1-5-21-2296426734-4234570832-937735285-1004\...\DG0-PlanetSide 2) (Version:  - Sony Online Entertainment)
Prey v.1.0 (HKLM-x32\...\Prey_is1) (Version:  - )
Prophet V2 2.7.0 (HKLM-x32\...\Prophet V2_is1) (Version: 2.7.0 - Arturia)
Resolume Arena 5.1.1 (HKLM-x32\...\Resolume Arena 5.1.1_is1) (Version: 5.1.1 - Resolume)
Rising Storm 2: Vietnam (HKLM\...\Steam App 418460) (Version:  - Antimatter Games)
RME Fireface USB (HKLM\...\FIREFACE_USB) (Version: 1.0.98.0 - RME Intelligent Audio Solutions)
ROBLOX Player for gregs (HKU\S-1-5-21-2296426734-4234570832-937735285-1004\...\{373B1718-8CC5-4567-8EE2-9033AD08A680}) (Version:  - ROBLOX Corporation)
Rocket League (HKLM\...\Steam App 252950) (Version:  - Psyonix, Inc.)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.2.0.5 - Rockstar Games)
Shovel Knight (HKLM\...\Steam App 250760) (Version:  - Yacht Club Games)
Solina V 1.1.0 (HKLM-x32\...\Solina V_is1) (Version: 1.1.0 - Arturia)
Soundtoys 5 64 bit (HKLM\...\Soundtoys 5 64 bit_is1) (Version:  - Soundtoys Inc)
Spark 2.3.0 (HKLM-x32\...\Spark_is1) (Version:  - Arturia)
Sportsfriends (HKLM\...\Steam App 277850) (Version:  - Die Gute Fabrik)
Squad (HKLM\...\Steam App 393380) (Version:  - Offworld Industries)
Stardew Valley (HKLM\...\Steam App 413150) (Version:  - ConcernedApe)
STARWHAL (HKLM\...\Steam App 263020) (Version:  - Breakfall)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Stuurprogrammapakket voor Windows - Fedict SmartCard  (11/30/2016 4.1.9) (HKLM\...\A9FBB4D4E267FA9BF2CEBF564F02DB39E147B466) (Version: 11/30/2016 4.1.9 - Fedict)
Synthesia (HKLM-x32\...\Synthesia) (Version: 10.3 - Synthesia LLC)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.1.4 - TeamSpeak Systems GmbH)
The Witcher 3: Wild Hunt (HKLM\...\Steam App 292030) (Version:  - CD PROJEKT RED)
Titanfall™ 2 (HKLM-x32\...\{4BD80373-FEE7-45B6-8249-6E8E98717405}) (Version: 1.0.0.2 - Electronic Arts, Inc.)
Tixati (HKLM-x32\...\tixati) (Version:  - )
Tony Hawk's Underground 2 (HKLM-x32\...\Tony Hawk's Underground 2_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, markfiter)
TSearch (HKLM-x32\...\6E727987-C8EA-44DA-8749-310C0FBE3C3E) (Version: 2.0.0.265 - Company Inc.) <==== AANDACHT
Turbo Pug (HKLM\...\Steam App 418070) (Version:  - Space Cat Studios)
UE4 Prerequisites (x64) (HKLM\...\{36EAD5CF-44EF-4FCF-8BE1-D96C4835D7A4}) (Version: 1.0.11.0 - Epic Games, Inc.) Hidden
UE4 Prerequisites (x64) (HKLM-x32\...\{2890ae6b-90e9-448d-b3e6-97e43c21e2fd}) (Version: 1.0.13.0 - Epic Games, Inc.) Hidden
Unified Remote (HKLM-x32\...\{415B4714-4F8C-49C6-B310-881EAF892CFB}_is1) (Version: 3.6.0 - Unified Intents AB)
Uplay (HKLM-x32\...\Uplay) (Version: 22.1 - Ubisoft)
ValhallaFreqEcho version 1.0.5 (HKLM-x32\...\{86164718-6457-42DE-8DB6-EA05F7045F2C}_is1) (Version: 1.0.5 - Valhalla DSP, LLC)
ValhallaRoom version 1.1.1 (HKLM-x32\...\{375980F3-1584-496E-888B-BD3D81EF0C1D}_is1) (Version: 1.1.1 - Valhalla DSP, LLC)
ValhallaShimmer version 1.0.3dot4 (HKLM-x32\...\{6955BA75-52B6-4C6F-BCC4-1014920D587C}_is1) (Version: 1.0.3dot4 - Valhalla DSP, LLC)
ValhallaUberMod version 1.0.2 (HKLM-x32\...\{E9CEC6F2-2F70-413D-B12D-5B552B6928C1}_is1) (Version: 1.0.2 - Valhalla DSP, LLC)
Verdun (HKLM\...\Steam App 242860) (Version:  - M2H)
VIDEOBALL (HKLM\...\dmlkZW9iYWxs_is1) (Version: 1 - )
Viscera Cleanup Detail (HKLM\...\Steam App 246900) (Version:  - RuneStorm)
Viscera Cleanup Detail: alpha v0.25
 (HKLM\...\UDK-491ff6bc-042c-4413-808b-a808d05962bb) (Version:  - RuneStorm
)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN)
Vox V 1.2.0 (HKLM-x32\...\Vox V_is1) (Version: 1.2.0 - Arturia)
Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.)
Warhammer: End Times - Vermintide (HKLM\...\Steam App 235540) (Version:  - Fatshark)
Waves Complete V9r15 (HKLM-x32\...\{91000001-C561-4E32-99EB-3C5AD3683A70}) (Version: 9.1.15 - Waves)
Windows-stuurprogrammapakket - RME Fireface USB (12/15/2016 1.0.98.0) (HKLM\...\9C5DFC45B48066C78E9FE94C14178FC74D670EB0) (Version: 12/15/2016 1.0.98.0 - RME)
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
Wurlitzer V 1.2.0 (HKLM-x32\...\Wurlitzer V_is1) (Version: 1.2.0 - Arturia)
XTREME GAMING ENGINE (HKLM-x32\...\GIGABYTE XTREME GAMING ENGINE_is1) (Version: 1.2.2.1 - GIGABYTE Technology Co.,Inc.)
XTUPackage (HKLM-x32\...\{84D11A20-6E7F-4FBB-A2FB-117FCF871040}) (Version: 1.0.0 - ASUSTeK COMPUTER INC.)
YoutubeAdBlock (HKLM-x32\...\E3605470-291B-44EB-8648-745EE356599A) (Version: 2.0.0.265 - Company Inc.) <==== AANDACHT
Ziggurat (HKLM\...\Steam App 308420) (Version:  - Milkstone Studios)
 
==================== Aangepaste CLSID (gefilterd): ==========================
 
(Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)
 
ContextMenuHandlers01: [BDFVCtxMenuExt] -> {9E96C1F5-0EFA-4348-9460-15D6802C70AA} => C:\Program Files\Bitdefender\Bitdefender 2017\bdfvsctx.dll [2017-04-20] (Bitdefender)
ContextMenuHandlers01: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers01: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} =>  -> Geen bestand
ContextMenuHandlers04: [BDFVCtxMenuExt] -> {9E96C1F5-0EFA-4348-9460-15D6802C70AA} => C:\Program Files\Bitdefender\Bitdefender 2017\bdfvsctx.dll [2017-04-20] (Bitdefender)
ContextMenuHandlers05: [BDFVCtxMenuExt] -> {9E96C1F5-0EFA-4348-9460-15D6802C70AA} => C:\Program Files\Bitdefender\Bitdefender 2017\bdfvsctx.dll [2017-04-20] (Bitdefender)
ContextMenuHandlers05: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-04-01] (NVIDIA Corporation)
ContextMenuHandlers06: [BDFVCtxMenuExt] -> {9E96C1F5-0EFA-4348-9460-15D6802C70AA} => C:\Program Files\Bitdefender\Bitdefender 2017\bdfvsctx.dll [2017-04-20] (Bitdefender)
ContextMenuHandlers06: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers06: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} =>  -> Geen bestand
 
==================== Geplande Taken (gefilterd) =============
 
(Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)
 
Task: {085C1A37-8806-4046-8A3C-DB7D31F45019} - \2C6A44CB-AD42-4731-A544-3FBD3D83AB5B -> Geen bestand <==== AANDACHT
Task: {0D5559E0-BDED-4FAE-BC7D-A9B303DF86F3} - \B3A986DC-C2DD-40A0-8C0C-FEF66B7835112 -> Geen bestand <==== AANDACHT
Task: {135403D3-2CE1-407B-854B-407A6F0D3A11} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-04-01] (NVIDIA Corporation)
Task: {1E13CFE7-FA54-4B83-BE38-88D522DF2316} - \ShareakGuePass -> Geen bestand <==== AANDACHT
Task: {26E0A617-0DF3-4F50-BD88-3A0A2A5C1E51} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-04-01] (NVIDIA Corporation)
Task: {293726FD-C19D-4854-9873-0523746FBB7B} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-04-01] (NVIDIA Corporation)
Task: {3D3CD6AA-AA3F-4BFF-AF1A-9EA99DB9C615} - \B3A986DC-C2DD-40A0-8C0C-FEF66B783511 -> Geen bestand <==== AANDACHT
Task: {50780883-27B2-4713-9B38-36978F5DF2FD} - System32\Tasks\[email protected] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-04-28] (Adobe Systems Incorporated)
Task: {68904FCF-47E0-4024-A11B-CD1C3437667F} - System32\Tasks\ASUS\GpuFanHelper => C:\Program Files (x86)\ASUS\AI Suite III\DIP4\GpuFanHelper.exe [2016-03-07] (TODO: <Company name>)
Task: {71A091FB-5A4C-43AA-B757-7D5E5F8FBEE4} - \ExamWeb -> Geen bestand <==== AANDACHT
Task: {84F1E12C-B727-409D-9A6D-4557EF6AB450} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\WatchDog.exe [2017-04-11] (Bitdefender)
Task: {8EFFE1AD-486B-45BF-A71D-B6ED3B79F0E7} - \Microsoft\Windows\Windows Error Reporting\ErrorReporting -> Geen bestand <==== AANDACHT
Task: {A329C96F-181B-4B4B-A38A-65605C31B5E2} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2016-10-10] ()
Task: {B0235E2D-CCCB-4D5B-9420-331C547AFD15} - System32\Tasks\ASUS\Push Notice Server Execute => C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe [2014-05-28] (ASUSTeK Computer Inc.)
Task: {B76D574F-75FA-4B79-8E53-C0CC7E8ED8F5} - System32\Tasks\ASUS\USB 3.0 Boost Service => C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr.exe [2013-07-24] (ASUSTeK Computer Inc.)
Task: {B83974F7-BCAD-4E04-B241-F0A0215CA70A} - System32\Tasks\ASUS\Ez Update => C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe [2015-11-11] ()
Task: {BA40F0F8-9CEF-4A46-AF30-2811006BEA48} - System32\Tasks\ASUS\ASUS AISuiteIII => C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe [2016-07-27] (ASUSTeK Computer Inc.)
Task: {C125C5D4-8C0D-4490-AE83-728EC40E84D0} - System32\Tasks\ASUS\ASUS DIPAwayMode => C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe [2016-07-28] ()
Task: {C42D0395-5335-4CE6-A986-492CA95A0838} - \SMW_P -> Geen bestand <==== AANDACHT
Task: {C455DFD6-85F0-411A-99DA-BDECCE89ECF4} - System32\Tasks\Microsoft\Windows\Multimedia\Driver => C:\WINDOWS\SysWOW64\Easeware.Driver.exe
Task: {E4EB1777-7C53-41A9-A803-CE9CF077FCF9} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-04-01] (NVIDIA Corporation)
Task: {E9587B8A-EE2E-4F34-866A-58B5FA09191A} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-04-01] (NVIDIA Corporation)
Task: {EB16214C-E27C-4EFF-8E6E-55DD9017CC2C} - System32\Tasks\autoshutdown => C:\Windows\System32\shutdown.exe [2016-07-16] (Microsoft Corporation)
Task: {EE492680-1CBE-4F52-85EF-34CD5632204C} - System32\Tasks\Bitdefender AgentTask_AD394AE64E874073B10A89FEEC305A3C => C:\Program Files\Bitdefender\Bitdefender 2017\bdagent.exe [2017-04-20] (Bitdefender)
Task: {FBA14CD8-977B-4976-B91B-218E951A6D85} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\gregs\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe
 
(Als een item is opgenomen in de fixlist, de taak (job) bestand wordt verplaatst. Het bestand dat wordt uitgevoerd door de taak zal niet worden verplaatst.)
 
 
==================== Snelkoppelingen & WMI ========================
 
(De items kunnen worden opgenomen in de fixlist.txt om hersteld of verwijderd te worden.)
 
 
ShortcutWithArgument: C:\Users\gregs\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www%2dsearching.com/?prd=set_epf&s=h72zltpbl1bu,cf9d06eb-20aa-442d-9eda-925e057a7f54,
ShortcutWithArgument: C:\Users\gregs\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www-searching.com/?prd=set_epf&s=h72zltpbl1bu,cf9d06eb-20aa-442d-9eda-925e057a7f54,
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www-searching.com/?prd=set_epf&s=h72zltpbl1bu,cf9d06eb-20aa-442d-9eda-925e057a7f54,
ShortcutWithArgument: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www-searching.com/?prd=set_epf&s=h72zltpbl1bu,cf9d06eb-20aa-442d-9eda-925e057a7f54,
 
==================== Geladen Modules (gefilterd) ==============
 
2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2017-06-14 18:54 - 2017-06-03 12:01 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2017-07-02 13:59 - 2013-09-03 14:29 - 00111832 _____ () C:\Program Files\Bitdefender\Bitdefender 2017\bdmetrics.dll
2017-07-02 13:59 - 2017-02-07 12:34 - 01008448 _____ () C:\Program Files\Bitdefender\Bitdefender 2017\otengines_001_001\ashttpbr.mdl
2017-07-02 13:59 - 2017-02-07 12:34 - 00541952 _____ () C:\Program Files\Bitdefender\Bitdefender 2017\otengines_001_001\ashttpdsp.mdl
2017-07-02 13:59 - 2017-02-07 12:34 - 03243920 _____ () C:\Program Files\Bitdefender\Bitdefender 2017\otengines_001_001\ashttpph.mdl
2017-07-02 13:59 - 2017-02-07 12:34 - 01544568 _____ () C:\Program Files\Bitdefender\Bitdefender 2017\otengines_001_001\ashttprbl.mdl
2016-10-24 17:18 - 2016-10-24 17:18 - 00026624 _____ () C:\Program Files (x86)\Blackmagic Design\Blackmagic Desktop Video\DesktopVideoHelper.exe
2016-10-25 07:55 - 2016-03-07 15:42 - 01360016 _____ () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
2016-10-26 21:55 - 2016-10-26 21:55 - 00076152 _____ () C:\WINDOWS\system32\PnkBstrA.exe
2017-05-09 00:44 - 2017-05-09 00:44 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2017-05-09 00:44 - 2017-05-09 00:44 - 01354040 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2016-10-25 07:54 - 2015-09-17 04:58 - 00936728 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
2016-11-06 00:25 - 2017-04-01 04:10 - 00135224 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2017-07-02 13:30 - 2017-07-02 14:31 - 00461824 _____ () C:\WINDOWS\TEMP\g7E69.tmp.exe
2016-10-25 07:55 - 2015-11-11 10:55 - 01460176 _____ () C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe
2016-10-25 07:55 - 2016-07-28 23:33 - 01269208 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
2016-11-06 00:21 - 2016-11-06 00:21 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2017-03-14 22:41 - 2017-03-04 08:31 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2017-06-21 21:10 - 2017-06-21 21:10 - 00074752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2017-06-21 21:10 - 2017-06-21 21:10 - 00203264 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2017-06-21 21:10 - 2017-06-21 21:10 - 43454464 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2017-06-21 21:10 - 2017-06-21 21:10 - 02437120 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.18.614.0_x64__kzf8qxf38zg5c\skypert.dll
2016-10-25 07:55 - 2016-02-01 17:35 - 01056256 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe
2016-10-25 07:55 - 2014-08-28 10:37 - 00033424 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotify_PCCtrl.exe
2016-10-24 17:18 - 2016-10-24 17:18 - 00995840 _____ () C:\Program Files (x86)\Blackmagic Design\Blackmagic Desktop Video\BMDStreamingServer.exe
2017-05-09 03:05 - 2017-05-09 03:05 - 00092472 _____ () C:\Program Files\iTunes\zlib1.dll
2017-05-09 03:05 - 2017-05-09 03:05 - 01354040 _____ () C:\Program Files\iTunes\libxml2.dll
2017-07-02 14:00 - 2017-05-25 15:36 - 00022304 _____ () C:\Program Files\Bitdefender\Bitdefender 2017\lang\en-US\bdaphconp.txtui
2017-07-02 13:59 - 2017-04-20 18:27 - 00066240 _____ () C:\Program Files\Bitdefender\Bitdefender 2017\bddpsp.dll
2017-07-02 14:02 - 2017-05-25 15:37 - 00021280 _____ () C:\Program Files\Bitdefender\Bitdefender Device Management\lang\en-US\dmiface.txtui
2017-07-02 14:00 - 2017-05-25 15:37 - 00023328 _____ () C:\Program Files\Bitdefender\Bitdefender 2017\lang\en-US\bdsystray.txtui
2017-06-19 20:06 - 2017-06-19 20:13 - 00020480 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.12990.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
2017-06-19 20:06 - 2017-06-19 20:13 - 27430400 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.12990.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll
2017-06-06 18:33 - 2017-06-06 18:34 - 00460288 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.12990.0_x64__8wekyb3d8bbwe\Microsoft.Photos.AGM.Native.Windows.dll
2017-06-06 18:33 - 2017-06-06 18:34 - 02275328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.12990.0_x64__8wekyb3d8bbwe\MediaEngine.dll
2017-06-06 18:33 - 2017-06-06 18:34 - 03139496 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.12990.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll
2017-06-06 18:33 - 2017-06-06 18:34 - 00046080 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.12990.0_x64__8wekyb3d8bbwe\Microsoft.Photos.Edit.Services.dll
2016-10-25 19:44 - 2016-10-25 19:46 - 00680448 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.12990.0_x64__8wekyb3d8bbwe\Microsoft.DesignCore.dll
2017-06-06 18:33 - 2017-06-06 18:34 - 00900096 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.12990.0_x64__8wekyb3d8bbwe\Microsoft.RichMedia.Ink.Controls.dll
2017-05-09 18:34 - 2017-05-09 18:35 - 01062400 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.12990.0_x64__8wekyb3d8bbwe\Microsoft.Sharing.dll
2016-10-25 19:44 - 2016-10-25 19:46 - 00291328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.12990.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll
2016-10-25 21:01 - 2016-10-03 11:00 - 00332288 _____ () C:\Program Files (x86)\K-Lite Codec Pack\Filters\LAV64\libbluray.dll
2016-10-25 21:01 - 2015-10-24 18:00 - 04374528 _____ () C:\Program Files (x86)\K-Lite Codec Pack\Filters\ffdshow64\ffdshow.ax
2017-03-14 22:41 - 2017-03-04 08:12 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2017-03-14 22:41 - 2017-03-04 08:05 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-03-14 22:41 - 2017-03-04 08:05 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2017-06-14 18:54 - 2017-06-03 10:47 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2017-06-14 18:54 - 2017-06-03 10:51 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-10-25 07:54 - 2017-07-02 14:31 - 00032552 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\PEbiosinterface32.dll
2016-10-25 07:54 - 2015-09-17 04:58 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\ATKEX.dll
2016-10-25 19:53 - 2016-11-27 00:29 - 02493440 _____ () C:\Program Files (x86)\Origin\libGLESv2.dll
2016-10-25 07:55 - 2015-09-10 16:06 - 00237568 _____ () C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzULIB.dll
2016-10-25 07:55 - 2015-08-14 11:23 - 00621056 _____ () C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\UIImprovmentHelper.dll
2016-10-25 07:55 - 2014-02-24 17:49 - 00208896 _____ () C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\ImageHelper.dll
2016-10-25 07:55 - 2016-04-20 23:52 - 00260056 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4cTDPAction.dll
2016-10-25 07:55 - 2016-05-04 21:46 - 00786416 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4DIGIPowerControlAction.dll
2016-10-25 07:55 - 2016-04-20 23:52 - 00878040 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4EpuAction.dll
2016-10-25 07:55 - 2016-04-20 23:52 - 00828376 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4FanAction.dll
2016-10-25 07:55 - 2016-04-20 23:52 - 00838616 _____ () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4TurboVEVOAction.dll
2016-10-25 07:55 - 2013-11-20 10:10 - 00662016 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\aaHMLib.dll
2016-10-25 07:55 - 2013-07-02 10:40 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\pngio.dll
2016-10-24 17:18 - 2016-10-24 17:18 - 00253440 _____ () C:\Program Files (x86)\Blackmagic Design\Blackmagic Desktop Video\BMDStreamingAPI.dll
 
==================== Alternate Data Streams (gefilterd) =========
 
(Als een item is opgenomen in de fixlist, alleen de ADS wordt verwijderd.)
 
AlternateDataStreams: C:\ProgramData:1E8F1D8A0657EF90 [217]
AlternateDataStreams: C:\Users\All Users:1E8F1D8A0657EF90 [217]
AlternateDataStreams: C:\ProgramData\Application Data:1E8F1D8A0657EF90 [217]
AlternateDataStreams: C:\Users\Public\Desktop\Metal Gear Solid V: The Phantom Pain.lnk [3712]
 
==================== Veilige Modus (gefilterd) ===================
 
(Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. De "AlternateShell" waarde wordt hersteld.)
 
 
==================== Bestandskoppeling (gefilterd) ===============
 
(Als een item is opgenomen in de fixlist, het registry item zal worden teruggezet naar de standaardwaarden of verwijderd.)
 
 
==================== Internet Explorer vertrouwde/beperkte toegang ===============
 
(Als een item is opgenomen in de fixlist, wordt uit het register verwijderd.)
 
 
==================== Hosts inhoud: ==========================
 
(Als nodig Hosts: opdracht kan worden opgenomen in de fixlist om Hosts te resetten.)
 
2017-05-29 19:45 - 2017-07-02 18:31 - 00013767 _____ C:\WINDOWS\system32\Drivers\etc\hosts
 
127.0.0.1 lmlicenses.wip4.adobe.com
127.0.0.1 lm.licenses.adobe.com
127.0.0.1 na1r.services.adobe.com
127.0.0.1 hlrcv.stage.adobe.com
127.0.0.1 practivate.adobe.com 
127.0.0.1 activate.adobe.com127.0.0.1 clients2.google.com 
127.0.0.1 v1.ff.avast.com 
127.0.0.1 vlcproxy.ff.avast.com 
127.0.0.1 gf.tools.avast.com
127.0.0.1 pair.ff.avast.com
127.0.0.1 ipm-provider.ff.avast.com
127.0.0.1 ipm-provider.ff.avast.com
127.0.0.1 ipm-provider.ff.avast.com
127.0.0.1 id.avast.com
127.0.0.1 v4618535.iavs9x.u.avast.com
127.0.0.1 v4618535.ivps9x.u.avast.com
127.0.0.1 v4618535.ivps9tiny.u.avast.com
127.0.0.1 v4618535.vpsnitro.u.avast.com
127.0.0.1 v4618535.vpsnitrotiny.u.avast.com
127.0.0.1 v4618535.iavs5x.u.avast.com
127.0.0.1 v7.stats.avast.com
127.0.0.1 v7.stats.avast.com
127.0.0.1 v7event.stats.avast.com
127.0.0.1 sm00.avast.com
127.0.0.1 submit5.avast.com
127.0.0.1 geoip.avast.com
127.0.0.1 w9448963.iavs9x.u.avast.com
127.0.0.1 w9448963.ivps9x.u.avast.com
127.0.0.1 w9448963.ivps9tiny.u.avast.com
127.0.0.1 w9448963.vpsnitro.u.avast.com
 
Er zijn 338 meer regels.
 
 
==================== Andere gebieden ============================
 
(Momenteel is er geen automatische fix voor dit onderdeel.)
 
HKU\S-1-5-21-2296426734-4234570832-937735285-1004\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
DNS Servers: 195.130.131.2 - 195.130.130.2
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Prompt)
Windows Firewall is ingeschakeld.
 
==================== MSCONFIG/TASK MANAGER Uitgeschakelde items ==
 
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "ASUS AiChargerPlus Execute"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "Blackmagic CheckVersion"
HKLM\...\StartupApproved\Run32: => "AO Link Server"
HKU\S-1-5-21-2296426734-4234570832-937735285-1004\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2296426734-4234570832-937735285-1004\...\StartupApproved\Run: => "Unified Remote V3"
HKU\S-1-5-21-2296426734-4234570832-937735285-1004\...\StartupApproved\Run: => "VRPJFHJTXE.exe"
HKU\S-1-5-21-2296426734-4234570832-937735285-1004\...\StartupApproved\Run: => "B8XIT565LQ489MP"
HKU\S-1-5-21-2296426734-4234570832-937735285-1004\...\StartupApproved\Run: => "2OD9VU4EJ9L73HA"
HKU\S-1-5-21-2296426734-4234570832-937735285-1004\...\StartupApproved\Run: => "qqlive"
 
==================== Firewall regels (gefilterd) ===============
 
(Als een item is opgenomen in de fixlist, wordt uit het register verwijderd. Het bestand zal niet worden verplaatst tenzij apart vermeld.)
 
FirewallRules: [{5188633C-7DF0-49F0-BD47-660FFFCE27E2}] => (Allow) C:\Program Files (x86)\Origin Games\Titanfall2\Titanfall2.exe
FirewallRules: [{58418F82-B213-4168-909F-21DA328F5A55}] => (Allow) C:\Program Files (x86)\Origin Games\Titanfall2\Titanfall2.exe
FirewallRules: [{37847F54-683F-4A64-A69E-CD95A158729C}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Transistor\x64\Transistor.exe
FirewallRules: [{67B69BD3-354A-4542-BC4D-FFC469155525}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Transistor\x64\Transistor.exe
FirewallRules: [UDP Query User{56F1A221-9759-48E3-99ED-07E174F9AB17}E:\program files (x86)\starcraft ii\versions\base47185\sc2_x64.exe] => (Allow) E:\program files (x86)\starcraft ii\versions\base47185\sc2_x64.exe
FirewallRules: [TCP Query User{89C3F4A2-BEC7-45A6-A11D-A78256378E1D}E:\program files (x86)\starcraft ii\versions\base47185\sc2_x64.exe] => (Allow) E:\program files (x86)\starcraft ii\versions\base47185\sc2_x64.exe
FirewallRules: [UDP Query User{55E0514D-B74A-422C-BC44-D1D1DD5AC956}C:\program files\tixati\tixati.exe] => (Allow) C:\program files\tixati\tixati.exe
FirewallRules: [TCP Query User{7D96C137-16B4-47F3-818B-BAA4FFCDAAF6}C:\program files\tixati\tixati.exe] => (Allow) C:\program files\tixati\tixati.exe
FirewallRules: [{A6C2229F-8035-446D-83A3-3F88FE2A658F}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Fistful of Frags\sdk\hl2.exe
FirewallRules: [{D911E240-7F38-4F8B-9CE0-FD10773E11FA}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Fistful of Frags\sdk\hl2.exe
FirewallRules: [{F135E05D-44A5-4E9B-9414-F5A2F200AA8B}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Duck Game\DuckGame.exe
FirewallRules: [{7B36A606-DD1A-4CD7-AD90-7260562399EA}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Duck Game\DuckGame.exe
FirewallRules: [{C724D650-8A07-4A4D-BF57-20FB5D0786C8}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Brawlhalla\Brawlhalla.exe
FirewallRules: [{9189BBA2-D4AF-4EBE-90F9-9BD615ACEE57}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Brawlhalla\Brawlhalla.exe
FirewallRules: [{15754683-7B17-4F89-AC01-A3CCD7F7DB77}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{915C7B5D-5171-4EB4-929D-5DE0CF4BC023}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [UDP Query User{8667C2A1-5C6A-4755-816A-6E6BA27C1CA4}C:\program files (x86)\resolume arena 5.1.1\arena.exe] => (Block) C:\program files (x86)\resolume arena 5.1.1\arena.exe
FirewallRules: [TCP Query User{1FFCE022-E8FF-456F-872B-0088906806A2}C:\program files (x86)\resolume arena 5.1.1\arena.exe] => (Block) C:\program files (x86)\resolume arena 5.1.1\arena.exe
FirewallRules: [UDP Query User{94818571-42B1-4B2E-A2DF-0B51A29195A0}C:\program files (x86)\resolume arena 5.1.1\arena.exe] => (Block) C:\program files (x86)\resolume arena 5.1.1\arena.exe
FirewallRules: [TCP Query User{B0CB2373-ECB9-403B-B4BF-6E1340638A41}C:\program files (x86)\resolume arena 5.1.1\arena.exe] => (Block) C:\program files (x86)\resolume arena 5.1.1\arena.exe
FirewallRules: [{DCD1B9B3-3E9F-45E9-93DC-9EE008A7CE8F}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSixGame.exe
FirewallRules: [{3910DB57-F68A-46B1-A838-7658E5F2FDFF}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSixGame.exe
FirewallRules: [{C0B7DD15-9E82-47D4-9642-D737F2B8AF81}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\rainbowsix.exe
FirewallRules: [{829E2F34-A44F-4E8A-BCF5-EB54809B2803}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\rainbowsix.exe
FirewallRules: [UDP Query User{5CF237C7-B2CA-4297-9C02-3EFF923D6038}E:\program files (x86)\steam\steamapps\common\n++\n++.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\n++\n++.exe
FirewallRules: [TCP Query User{209482AC-1A09-4674-A796-DCD2AE39C843}E:\program files (x86)\steam\steamapps\common\n++\n++.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\n++\n++.exe
FirewallRules: [UDP Query User{4ACE65E7-362D-4A6A-B54A-06CB6F795647}E:\games\inversus.v1.2.2\inversus.exe] => (Allow) E:\games\inversus.v1.2.2\inversus.exe
FirewallRules: [TCP Query User{6AE12278-5CA2-4CF6-9BE8-BBA131421DFC}E:\games\inversus.v1.2.2\inversus.exe] => (Allow) E:\games\inversus.v1.2.2\inversus.exe
FirewallRules: [{27643CF4-44B6-40AC-8799-9839AE26FEB8}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{EFE82545-713C-4827-B1FC-C76D4488F447}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{4796A953-3ADD-4AC4-B1D1-DCBE16564C4C}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{C8E72B01-CC31-4D15-AC65-4C87E2260BB5}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [UDP Query User{8D6FBA69-F33B-4FD3-9F07-E1AFE6C81D97}C:\program files (x86)\origin games\battlefield 4\bf4.exe] => (Allow) C:\program files (x86)\origin games\battlefield 4\bf4.exe
FirewallRules: [TCP Query User{B2DE2F97-06F1-404A-A23F-D9CA6713F16B}C:\program files (x86)\origin games\battlefield 4\bf4.exe] => (Allow) C:\program files (x86)\origin games\battlefield 4\bf4.exe
FirewallRules: [{A18B2120-2E0F-445D-AE6C-47AC5E828863}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe
FirewallRules: [{EA21C11A-E3DE-460E-9EF4-A52E6223C621}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe
FirewallRules: [{96FF9622-201C-4359-AD5F-6B28785A8187}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe
FirewallRules: [{82442E48-558B-48FD-869C-93BDECFE5873}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe
FirewallRules: [UDP Query User{C403FE0A-14A0-4F53-921C-3DBA9A99DF19}C:\games\far cry 4\bin\farcry4.exe] => (Allow) C:\games\far cry 4\bin\farcry4.exe
FirewallRules: [TCP Query User{A4C0C537-4C58-40AF-9AFD-BD67C08FE88E}C:\games\far cry 4\bin\farcry4.exe] => (Allow) C:\games\far cry 4\bin\farcry4.exe
FirewallRules: [UDP Query User{5AB2F013-8E86-40F7-9E25-35AD248D7614}C:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe
FirewallRules: [TCP Query User{F7C6222A-EA5E-4A5E-B4B5-882C7E8FDA66}C:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe
FirewallRules: [{BFBFE348-7356-4875-8B18-C48AE599393A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Arma 3\arma3launcher.exe
FirewallRules: [{5BB06FCA-548D-4807-8D4F-0A9DABFF51F6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Arma 3\arma3launcher.exe
FirewallRules: [{B016863F-D221-404D-8E5B-BA0DCC5D2E88}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DiRT Rally\drt.exe
FirewallRules: [{8F9B7588-1B58-4761-973F-B4016170093C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DiRT Rally\drt.exe
FirewallRules: [UDP Query User{E77876F4-3606-4201-81D2-668234E92964}C:\program files (x86)\steam\steamapps\common\doom\doomx64vk.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\doom\doomx64vk.exe
FirewallRules: [TCP Query User{22224871-4B2E-4060-90D8-7063275FFE2C}C:\program files (x86)\steam\steamapps\common\doom\doomx64vk.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\doom\doomx64vk.exe
FirewallRules: [UDP Query User{456D9F87-D9B1-4686-83C3-EED87F70E5CB}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [TCP Query User{1DE184E7-0912-40B5-A5FF-4D8CF5463731}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [{77C9A9B7-9E26-4668-8CE3-5275DDDD6B14}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DOOM\DOOMx64.exe
FirewallRules: [{253024F5-9BD1-4F56-B769-DCDF8D15ECFD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DOOM\DOOMx64.exe
FirewallRules: [{A9586119-7664-4247-8898-BAF2F8C2275F}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{A23F5A73-2171-494F-B30E-29DF5D3ADF63}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{1AA954B5-3507-4020-98E0-76207FB41663}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Turbo Pug\game.exe
FirewallRules: [{D9A30C94-BF51-4470-986B-958B181852B9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Turbo Pug\game.exe
FirewallRules: [{848697D0-6591-4ABA-BF40-0DA6F9908A10}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{D055DF7A-A93F-4BF3-8472-6C7BC025A308}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [TCP Query User{A9AEDF35-FED8-403D-8F8F-2A2D21FDFF1F}E:\program files (x86)\steam\steamapps\common\dirty bomb\binaries\win32\shootergame-win32-shipping.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\dirty bomb\binaries\win32\shootergame-win32-shipping.exe
FirewallRules: [UDP Query User{F69BB9DC-C4DB-4694-A17C-74DAF3E991ED}E:\program files (x86)\steam\steamapps\common\dirty bomb\binaries\win32\shootergame-win32-shipping.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\dirty bomb\binaries\win32\shootergame-win32-shipping.exe
FirewallRules: [{B3643AA5-AFFF-4693-9440-5C72F985B8DC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
FirewallRules: [{716E6B10-E21C-4BCB-9C7C-B65B8A734C00}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
FirewallRules: [{409A952D-1550-4EF1-8EB1-2595D6DD16C5}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE.exe
FirewallRules: [{66FF6CC6-EC79-40BC-9579-B97028F858EA}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE.exe
FirewallRules: [{5FC4E2E3-4276-44F0-8A53-13CC654A1512}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE_Unrestricted.exe
FirewallRules: [{55C4407C-526F-4EC9-AC5A-5D5F3A5613A9}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE_Unrestricted.exe
FirewallRules: [{226269A9-6B8E-47C5-AE62-DC76F6887FD0}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Ultimate Chicken Horse\UltimateChickenHorse.exe
FirewallRules: [{2624356E-894A-49BC-BECD-6501D2B73723}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Ultimate Chicken Horse\UltimateChickenHorse.exe
FirewallRules: [TCP Query User{C8567C39-4A63-4A19-860F-4CEA1070B5BD}C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe
FirewallRules: [UDP Query User{5710511E-EF4A-4CD2-9DF7-637F522A2447}C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto v\gta5.exe
FirewallRules: [{9C83D035-7EE0-4C39-AA5D-0011302AE7B4}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{B71D0F0F-3D0E-430B-A982-074EA4616034}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Serious Sam 3\Bin\Sam3.exe
FirewallRules: [{ED5A3EC5-5695-41C0-8F3A-58CE8BB82B62}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [{432944B7-4ECC-4358-B1E1-3CDFEC955C8E}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Serious Sam 3\Bin\Sam3_Unrestricted.exe
FirewallRules: [TCP Query User{BF6E12A4-3EF1-49AF-9B94-14E91658B2CB}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{25CAE723-DB55-4669-B470-AF667CD32E9B}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{A3E39466-AA6A-4FC2-B914-1ED2A8AD7F32}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planet Coaster\PlanetCoaster.exe
FirewallRules: [{49B4C3C3-EA7A-4DEA-8050-E612AD4247D6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planet Coaster\PlanetCoaster.exe
FirewallRules: [{1F958D13-986D-4EBE-AF67-37D2EDA58AC9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Witcher 3\bin\x64\witcher3.exe
FirewallRules: [{F3A7A24F-7C6E-4C1C-BED7-42A36AE59B4F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Witcher 3\bin\x64\witcher3.exe
FirewallRules: [TCP Query User{99CFEEA5-7214-434A-BE44-26E86CB5AB99}E:\program files (x86)\starcraft ii\versions\base48258\sc2_x64.exe] => (Allow) E:\program files (x86)\starcraft ii\versions\base48258\sc2_x64.exe
FirewallRules: [UDP Query User{2D522953-2A38-4563-91A3-53AA829EF9B2}E:\program files (x86)\starcraft ii\versions\base48258\sc2_x64.exe] => (Allow) E:\program files (x86)\starcraft ii\versions\base48258\sc2_x64.exe
FirewallRules: [{A1F04626-06C5-4A6E-BB2C-79683F875809}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ABZU\AbzuGame.exe
FirewallRules: [{D2B050FA-0956-479F-81CB-5576FB60410D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ABZU\AbzuGame.exe
FirewallRules: [{BEAFC8AF-B48E-4300-A9F3-7F2B1CBC8BB3}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe
FirewallRules: [{F60D4314-76A1-4E2B-B51E-F2480B8BC9B7}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe
FirewallRules: [{6FA7E748-9492-4D4B-AAEE-B81D2E64077B}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\CastleCrashers\castle.exe
FirewallRules: [{DE975712-6D3F-4644-B598-F21B2FF96B62}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\CastleCrashers\castle.exe
FirewallRules: [TCP Query User{E89372BD-338A-4FB1-87A1-A52B2AD7EB94}E:\games\igg-gurgamoth\gurgamoth.exe] => (Allow) E:\games\igg-gurgamoth\gurgamoth.exe
FirewallRules: [UDP Query User{FB66824D-652F-4AD7-B0DD-BAFEEE30203E}E:\games\igg-gurgamoth\gurgamoth.exe] => (Allow) E:\games\igg-gurgamoth\gurgamoth.exe
FirewallRules: [{B412FEB8-6C78-4CD9-8A07-DE041E2EEFE4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dishonored\Binaries\Win32\Dishonored.exe
FirewallRules: [{3CE7B03E-7B0B-4260-9EA8-23F2443FF6EE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dishonored\Binaries\Win32\Dishonored.exe
FirewallRules: [{B84CDDC8-0E13-4E24-9C06-C59B222E6977}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{4EF66937-260C-40D6-B04B-C08F4D8B5A63}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{70B90CE8-DB02-4CD9-9952-8200A9E772D5}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\Binaries\Win64\CMW.exe
FirewallRules: [{771DBC05-1C9F-4A0C-9174-9344CC88CFF4}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\Binaries\Win64\CMW.exe
FirewallRules: [{FE4CA61F-44CB-4306-8369-58EBE7979867}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\CDW\Binaries\Win64\CDW.exe
FirewallRules: [{62AF6D96-ECBE-4499-ACDD-30BF8BC5ED75}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\CDW\Binaries\Win64\CDW.exe
FirewallRules: [{8C5CCA6A-194C-4450-B18E-C3DD56F18279}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\Binaries\Win32\CMW.exe
FirewallRules: [{4B38B7E1-6322-4F35-9B75-43281FC5119E}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\Binaries\Win32\CMW.exe
FirewallRules: [{0A4C71A1-8BDE-4238-8B2D-CF6DCA62AD9A}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\CDW\Binaries\Win32\CDW.exe
FirewallRules: [{8DC12A5B-6B75-4859-AD50-FA0A1EB9CD3F}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\CDW\Binaries\Win32\CDW.exe
FirewallRules: [{2A1B2135-7C01-4BA8-8C39-BB90C9E7CC1C}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\ChivLauncher.exe
FirewallRules: [{1BCD3FA4-FBA3-4DFA-8445-3F426F1433DF}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\chivalrymedievalwarfare\ChivLauncher.exe
FirewallRules: [{04E91895-FA5C-4F0F-9FA0-1766F369D1EC}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Audiosurf 2\Audiosurf2.exe
FirewallRules: [{7D32317B-5825-4BD7-AD92-4956B808019B}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Audiosurf 2\Audiosurf2.exe
FirewallRules: [{4510D362-369A-4A47-83F3-76ED8A5F0365}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Dark Souls Prepare to Die Edition\DATA\DARKSOULS.exe
FirewallRules: [{4129A374-4D4A-4DE1-BAFA-7854F79B07F6}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Dark Souls Prepare to Die Edition\DATA\DARKSOULS.exe
FirewallRules: [{D083A278-E893-421A-A516-983B5E6B955F}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Gang Beasts\Gang Beasts.exe
FirewallRules: [{5DF067BC-61DA-4CF0-B6BB-CDE869853926}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Gang Beasts\Gang Beasts.exe
FirewallRules: [{9018B26B-6030-4A54-8B54-D1E3D7D80B6E}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Starwhal\Starwhal.exe
FirewallRules: [{7C99FEEB-E2DA-4621-B767-730145B322CC}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Starwhal\Starwhal.exe
FirewallRules: [{CC9C6FEC-0328-46ED-90CF-DEA94C386127}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Shovel Knight\ShovelKnight.exe
FirewallRules: [{6FE678E8-99FC-4448-BC83-3C645F72D1C5}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Shovel Knight\ShovelKnight.exe
FirewallRules: [{06624992-C3E0-40B1-861C-BFE0763EA11A}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Lance A Lot\lancealot.exe
FirewallRules: [{369DA1C5-6D9C-4164-8C05-5F6802F113F9}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Lance A Lot\lancealot.exe
FirewallRules: [{06333CA6-0499-42C1-AB39-287CFCCA4A7C}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\INSIDE\INSIDE.exe
FirewallRules: [{EF245BD5-BB43-4B7A-A54D-08038D670B38}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\INSIDE\INSIDE.exe
FirewallRules: [{BD92A7BD-FCCD-4150-BB9B-9603AC283D7F}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Gurgamoth\Gurgamoth.exe
FirewallRules: [{F0D5E04F-EB6C-478B-A096-2CDE4E8C7CEF}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Gurgamoth\Gurgamoth.exe
FirewallRules: [{8C171F5F-4AF3-488C-8F18-48FD32D97C8D}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Crawl\Crawl.exe
FirewallRules: [{9CB7D73C-F627-47C3-A628-6C7C11FAB0FD}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Crawl\Crawl.exe
FirewallRules: [{EF7CE5B2-3E50-4B41-B4CD-5A4E6496B566}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Blade Ballet\Blade Ballet.exe
FirewallRules: [{A7B8BF23-9607-4FC2-BF50-3FC888DE14AC}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Blade Ballet\Blade Ballet.exe
FirewallRules: [TCP Query User{418632AE-45C6-4224-8C2C-5096519DB2EB}C:\program files (x86)\steam\steamapps\common\abzu\abzugame\binaries\win64\abzugame-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\abzu\abzugame\binaries\win64\abzugame-win64-shipping.exe
FirewallRules: [UDP Query User{745F511D-7E56-4A0E-9613-3E17DBC4DF05}C:\program files (x86)\steam\steamapps\common\abzu\abzugame\binaries\win64\abzugame-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\abzu\abzugame\binaries\win64\abzugame-win64-shipping.exe
FirewallRules: [{CE28ACF8-0FCE-411C-A978-ABE79B31E37C}] => (Block) E:\Downloads\u-sths90\Synthesia-9.0\Synthesia.exe
FirewallRules: [{88DE5FAA-F169-43DF-B233-F24B9545CF58}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Offworld Trading Company\StardockLauncher.exe
FirewallRules: [{036B5195-970D-428F-95CC-397163200CB5}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Offworld Trading Company\StardockLauncher.exe
FirewallRules: [TCP Query User{A18D8DA7-D85E-4CB8-9CE2-B8A27CA3B27D}E:\program files (x86)\steam\steamapps\common\quake live\quakelive_steam.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\quake live\quakelive_steam.exe
FirewallRules: [UDP Query User{24A32F40-009A-4913-8ECB-04A21807D151}E:\program files (x86)\steam\steamapps\common\quake live\quakelive_steam.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\quake live\quakelive_steam.exe
FirewallRules: [TCP Query User{D9F5918C-14A2-4C9D-8CFD-DC4E20F213B4}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [UDP Query User{71576483-BFCA-455F-AA03-162DD7F37D84}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [TCP Query User{08D29FBC-359C-405C-A55D-9A44C6BC3CBE}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [UDP Query User{75F0D9B9-0EB4-4DBF-B415-D3A7747E4785}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [{61957C46-0A13-4D99-81A0-CDF76FDFA3FD}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Prison Architect\Prison Architect.exe
FirewallRules: [{28286055-5C9E-4218-87CF-B71D0CB4289E}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Prison Architect\Prison Architect.exe
FirewallRules: [{4DDF0E65-1188-4633-8331-0908C344DB80}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Prison Architect\Prison Architect Safe Mode.exe
FirewallRules: [{76F7F747-BAEA-4DB5-8DC3-20E496A84E4D}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Prison Architect\Prison Architect Safe Mode.exe
FirewallRules: [TCP Query User{0C0553BD-EC2D-41BE-8D72-D6557AC5550E}C:\program files\epic games\unrealtournament\engine\binaries\win64\ue4-win64-shipping.exe] => (Allow) C:\program files\epic games\unrealtournament\engine\binaries\win64\ue4-win64-shipping.exe
FirewallRules: [UDP Query User{7475CB75-2793-45BE-A89E-959AEECBB9B4}C:\program files\epic games\unrealtournament\engine\binaries\win64\ue4-win64-shipping.exe] => (Allow) C:\program files\epic games\unrealtournament\engine\binaries\win64\ue4-win64-shipping.exe
FirewallRules: [{8CCCFE2D-A121-49A8-84E7-A61E142012DF}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Viscera\Binaries\Win32\UDK.exe
FirewallRules: [{D10C5B80-ADF5-424A-B510-03C085F06035}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Viscera\Binaries\Win32\UDK.exe
FirewallRules: [{851ECC90-965E-4B69-9CF3-E1C6EB2BF33B}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Viscera\Binaries\Win64\UDK.exe
FirewallRules: [{3993DC37-FB37-40A7-AAFF-284D3B97B869}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Viscera\Binaries\Win64\UDK.exe
FirewallRules: [{6B647F2C-FFA9-4C62-9711-5AEB9B1375B2}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Viscera\Binaries\UDKLift.exe
FirewallRules: [{5A0204E8-94E1-4556-B2BF-C3F171B44003}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Viscera\Binaries\UDKLift.exe
FirewallRules: [{8D200DFB-2A6B-4F89-A98D-2C8977960FB2}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Continuum\Continuum.exe
FirewallRules: [{A29E7F36-F6BE-4A44-B1B2-D9972C271108}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Continuum\Continuum.exe
FirewallRules: [TCP Query User{C0A1E088-7867-4653-96E0-6930E526EAB6}H:\program files (x86)\soulseekqt\soulseekqt.exe] => (Allow) H:\program files (x86)\soulseekqt\soulseekqt.exe
FirewallRules: [UDP Query User{7B300830-26F7-43FD-92A7-5DE36FD50868}H:\program files (x86)\soulseekqt\soulseekqt.exe] => (Allow) H:\program files (x86)\soulseekqt\soulseekqt.exe
FirewallRules: [{1B22B0F3-2E00-4B05-A31E-6386D78FD8B4}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{573260F8-2D80-4928-898E-24B0D0FA2419}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{0F6FAAC4-94FF-41F1-9DC0-DDC7394E5CC0}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Portal 2\portal2.exe
FirewallRules: [{54E7D44B-32AF-4E6D-92FA-0B3CA2BE26A8}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Portal 2\portal2.exe
FirewallRules: [{9E77FC7D-8185-41FD-88B0-4FBFCB50035D}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\RaceTheSun\RaceTheSun.exe
FirewallRules: [{F7ABF92D-0EDC-4173-AC46-6D9541731CD8}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\RaceTheSun\RaceTheSun.exe
FirewallRules: [TCP Query User{ECB99CE6-BCBA-477B-B56D-9B62A141F8A7}E:\program files (x86)\soulseekqt\soulseekqt.exe] => (Allow) E:\program files (x86)\soulseekqt\soulseekqt.exe
FirewallRules: [UDP Query User{DD2B449C-4CEE-4EF1-A9AC-80D8C12B6791}E:\program files (x86)\soulseekqt\soulseekqt.exe] => (Allow) E:\program files (x86)\soulseekqt\soulseekqt.exe
FirewallRules: [{78150852-052D-4B0B-BCEE-BC2974305DC9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{32A6A659-3D63-4AA2-BEBD-D374BCD5C84B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F7823FC8-27F8-4845-913D-00B0F7A6AA11}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [{7E255B2F-F148-4C36-960A-565F590A5F23}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [{7BAF825D-CD8B-43D0-B380-B29B54B8BD34}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A314CDFA-5C37-4D4D-B811-7BE9A21911B8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3124246D-6476-4981-984B-B9072F8CE2BF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5D2951CA-012A-40E4-8CE8-B1F73B689E80}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8ACFD0AF-442A-4D12-8E38-C44D92AC0818}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\insurgency2\insurgency_BE.exe
FirewallRules: [{E7906732-2D7F-4E16-8783-C4CBF7B35218}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\insurgency2\insurgency_BE.exe
FirewallRules: [{18073154-1151-4DD8-BEA3-83A984069075}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5081EFB9-90CF-48FE-A0AE-AA28BB49362F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{077A8851-BA43-470F-BD75-5B3D6C20F9B6}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe
FirewallRules: [{BDB1F2F1-AFE9-48C6-BBB0-5539E567EDA5}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe
FirewallRules: [{4574C73B-3274-4980-9451-35229FCE39B4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Magicka 2\engine\Magicka2.exe
FirewallRules: [{07E67973-937F-4A55-A889-1A04A9D9D022}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Magicka 2\engine\Magicka2.exe
FirewallRules: [{0647DBD9-5242-44FF-86DC-9BF561E6672D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B1049E37-5D81-428F-8C94-8330D5E25983}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{3C68ACBB-0EF3-4BCD-8099-785B1C97C7B8}E:\program files (x86)\steam\steamapps\common\insurgency2\insurgency.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\insurgency2\insurgency.exe
FirewallRules: [UDP Query User{8BC76815-7839-4181-855C-DA7303975B1D}E:\program files (x86)\steam\steamapps\common\insurgency2\insurgency.exe] => (Allow) E:\program files (x86)\steam\steamapps\common\insurgency2\insurgency.exe
FirewallRules: [{44B19E37-8A11-448B-8014-8C5A9307E8B1}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Dirty Bomb\DirtyBombLauncher.exe
FirewallRules: [{755A1A4A-88CC-4848-B73B-7C8115959FAA}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Dirty Bomb\DirtyBombLauncher.exe
FirewallRules: [TCP Query User{9F15614D-0507-4246-8BB9-6A06838549E8}C:\programdata\ableton\live 9 suite\program\ableton live 9 suite.exe] => (Allow) C:\programdata\ableton\live 9 suite\program\ableton live 9 suite.exe
FirewallRules: [UDP Query User{69EB7830-05EE-48B8-A041-86BAF14D8213}C:\programdata\ableton\live 9 suite\program\ableton live 9 suite.exe] => (Allow) C:\programdata\ableton\live 9 suite\program\ableton live 9 suite.exe
FirewallRules: [TCP Query User{ECAAD3E8-2F91-424F-A831-78C4F9B4DD5E}C:\program files\common files\native instruments\komplete kontrol\scanpluginsapp_win32.exe] => (Allow) C:\program files\common files\native instruments\komplete kontrol\scanpluginsapp_win32.exe
FirewallRules: [UDP Query User{35FF5FB9-D458-4BA2-B8D2-D210929E08A1}C:\program files\common files\native instruments\komplete kontrol\scanpluginsapp_win32.exe] => (Allow) C:\program files\common files\native instruments\komplete kontrol\scanpluginsapp_win32.exe
FirewallRules: [TCP Query User{7D63BD3A-22D3-4761-81EF-3EC0EE906A63}C:\program files\common files\native instruments\komplete kontrol\scanpluginsapp_x64.exe] => (Allow) C:\program files\common files\native instruments\komplete kontrol\scanpluginsapp_x64.exe
FirewallRules: [UDP Query User{3E9393F5-9ED8-4F59-BB87-1791F8A5D03D}C:\program files\common files\native instruments\komplete kontrol\scanpluginsapp_x64.exe] => (Allow) C:\program files\common files\native instruments\komplete kontrol\scanpluginsapp_x64.exe
FirewallRules: [{8A5F5E9A-CE82-458E-8DE6-D3BC502F659D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe
FirewallRules: [{B96815B5-6190-44FB-8CD1-05F1240875FC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe
FirewallRules: [{C427C63F-E823-4C1B-B95B-F67D593F58F1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{044B7520-52C7-4C1C-954D-0FCC4A179188}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8523AE61-B54A-4F31-9375-580F5DC18731}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{13EB6F68-4D6F-4C34-83D7-6C3E566F0438}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C0C4E0B6-9743-4FB9-8881-7C40DA7F5061}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7C4E6092-E562-42C4-86BC-8710A2681BFC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0AC246F3-A69A-4397-AFA3-28A25BD378A3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{932FB30D-92C1-4FA8-B15D-D8820ADF66DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CC97D516-5139-4951-B6EC-FA540165E60A}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Human Resource Machine\Human Resource Machine.exe
FirewallRules: [{372CBCAD-8A8D-43FF-BA95-9CD078947AF4}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Human Resource Machine\Human Resource Machine.exe
FirewallRules: [{8CC223EA-87D3-4A2B-AA3F-B4D5F7E42EF1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0492FD77-5D36-45DD-95B4-E6AE32EFACD0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{253C4C47-50CD-42E6-A0AE-A0169C01BE47}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CBB5D42D-A7AF-44D3-A271-DF93B8A30F87}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{564E1C71-B34D-49A6-A043-179BC9AF4302}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F825E3C2-C256-43DA-8594-43CFAF06C9D0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A80DF991-59F1-4686-957B-B83E93DC3E79}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{634B8981-5633-47D3-8B3F-77EF65CD7FD5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F77B88EE-5630-441C-9614-441877FF580F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4E2701CD-E0EE-4CDF-9CAE-75F1DCFD3119}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8CAF3453-5779-41EE-A70C-199F23259FCB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EB9FAB67-7D34-4B53-8A07-8297193A8EC3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{74900730-EAFE-4719-A453-BF801F1E4BBB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7B4DC55B-53AA-4103-A4A3-4BCD31F091FD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{01BED4A9-EAC8-44C6-91F2-B327279B7E35}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Verdun\Verdun.exe
FirewallRules: [{9ADCAB9A-CC29-48AB-B7FA-89735E54173B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Verdun\Verdun.exe
FirewallRules: [TCP Query User{6B5EDC39-3F4F-4FD2-B062-989E8D0E4D2C}E:\program files (x86)\heroes of the storm\versions\base50950\heroesofthestorm_x64.exe] => (Allow) E:\program files (x86)\heroes of the storm\versions\base50950\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{F9C3BD97-67A7-4225-BEF6-C42875422EF8}E:\program files (x86)\heroes of the storm\versions\base50950\heroesofthestorm_x64.exe] => (Allow) E:\program files (x86)\heroes of the storm\versions\base50950\heroesofthestorm_x64.exe
FirewallRules: [{34D5E776-9C93-4ACA-9DB3-09F04D74FA39}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{44D5146D-97B3-4B4F-9ED5-B166C68A5E8D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B678B36E-627D-4FC2-946D-2C563AE047E6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{996BC0F0-E5FB-461E-9F0C-B199FFB0F142}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{470B296B-0B95-400B-82B2-722308574B3C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{237A6F73-EFF9-4E36-AC51-6FB642BCF709}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F9A92DFF-61EB-4934-A28D-4CCC29F3FC1E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{605CE432-8A94-46E0-8B53-E32D1C3631A8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DC379E70-9582-449F-A668-EF8856AE1C33}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sportsfriends\Sportsfriends.exe
FirewallRules: [{FED6055A-3DA7-4256-A246-D8A13DB95C48}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sportsfriends\Sportsfriends.exe
FirewallRules: [{0292D550-12CD-4572-B0BB-C149D6F5F5B7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{21B396EA-16C8-4EB2-B718-0E63680CFEE0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{703495CE-5AB4-434F-AAE6-3EA786AD4BE1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AE8B7524-3693-4D5D-8651-0B4F013CB23A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{9F5061BB-8619-4FB7-81C9-16DC632DF0F5}E:\program files (x86)\heroes of the storm\versions\base51375\heroesofthestorm_x64.exe] => (Allow) E:\program files (x86)\heroes of the storm\versions\base51375\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{630263F3-0661-4446-8791-FC7DE43D3008}E:\program files (x86)\heroes of the storm\versions\base51375\heroesofthestorm_x64.exe] => (Allow) E:\program files (x86)\heroes of the storm\versions\base51375\heroesofthestorm_x64.exe
FirewallRules: [{DF734BC7-CC4F-4A51-BE0D-0056208DCA04}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{52CAA4B7-F9C2-463C-94EB-4C8E48A65031}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AA421EA1-CA61-49B5-93A9-9874B3E6F6FE}] => (Allow) H:\Games\SteamLibrary\steamapps\common\Warhammer End Times Vermintide\launcher\launcher.exe
FirewallRules: [{020F2297-40DB-4413-9750-68B235735CB5}] => (Allow) H:\Games\SteamLibrary\steamapps\common\Warhammer End Times Vermintide\launcher\launcher.exe
FirewallRules: [{E33CE902-7ECA-4642-8B62-2469612686E7}] => (Allow) H:\Games\SteamLibrary\steamapps\common\Warhammer End Times Vermintide\binaries\vermintide.exe
FirewallRules: [{88B763FC-5F6F-4D03-B63D-2FE30FA7F53F}] => (Allow) H:\Games\SteamLibrary\steamapps\common\Warhammer End Times Vermintide\binaries\vermintide.exe
FirewallRules: [{9A3D4607-397D-4A0C-9E06-C075CF1EF51E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{211BB804-0514-419D-B10D-D7E52649E9D3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1D0F8EA1-C4E0-4DB7-A28A-0A317A3CA678}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Absolute Drift\AbsoluteDrift.exe
FirewallRules: [{16BAEB33-E61D-42CD-8F94-FE4012E26D93}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Absolute Drift\AbsoluteDrift.exe
FirewallRules: [{A3592094-1E32-4499-AFFF-F91A9F256492}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7A5A1270-974D-483C-849A-EC1DDB9FC185}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{37DB40B4-A818-4937-929E-962F9A407118}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F8B0609F-2411-4653-9DC2-6C4A3292A707}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9A4AD1E1-A3FF-48B2-8566-80EC359B483F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3FC26E4B-E571-45EB-9C4F-62A7567D6940}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B372F254-6BD0-4B5C-9DC7-2D527373E2F3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{255F21AF-327C-4C86-B7A1-D108CD954E56}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8F899908-5CBB-47B0-A019-EA193A83FB29}] => (Allow) H:\Games\SteamLibrary\steamapps\common\Dishonored\Binaries\Win32\Dishonored.exe
FirewallRules: [{A7DEBB3E-D352-46D7-9A96-E4D1CEEC5549}] => (Allow) H:\Games\SteamLibrary\steamapps\common\Dishonored\Binaries\Win32\Dishonored.exe
FirewallRules: [{9D7B4DFE-357E-4DB2-8B33-B22F518AE724}] => (Allow) H:\Games\SteamLibrary\steamapps\common\Magicka 2\engine\Magicka2.exe
FirewallRules: [{6875B7C9-6A4A-4923-9AA7-2C2A9DFD313B}] => (Allow) H:\Games\SteamLibrary\steamapps\common\Magicka 2\engine\Magicka2.exe
FirewallRules: [{0D7ED2FF-A815-4838-B66F-90E829E7AC47}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dayofinfamy\dayofinfamy_BE.exe
FirewallRules: [{F84E6BDE-59CD-4D07-BFD5-1D952B95B8E7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dayofinfamy\dayofinfamy_BE.exe
FirewallRules: [{082E6B4B-635B-4A0B-B69E-E20890978937}] => (Allow) H:\Games\SteamLibrary\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
FirewallRules: [{F1289E31-B7CF-4DD5-B6D3-278A0AF22DB5}] => (Allow) H:\Games\SteamLibrary\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe
FirewallRules: [TCP Query User{2C00516D-93CF-45A4-A578-B39E81E4E0BC}C:\program files (x86)\steam\steamapps\common\dayofinfamy\dayofinfamy.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dayofinfamy\dayofinfamy.exe
FirewallRules: [UDP Query User{A547EE45-652F-4DA9-B3BC-D296712BCA46}C:\program files (x86)\steam\steamapps\common\dayofinfamy\dayofinfamy.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dayofinfamy\dayofinfamy.exe
FirewallRules: [{DEB3BAB8-F52D-46E8-8C9F-851F4CB85BD8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A3897BCC-34F1-4100-9E02-4167E3F5BE98}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{87A6BBF2-C811-4B4C-B257-D1635DDCD8D4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{230BE461-F9D7-46FD-BCCC-7A62EDB1DC00}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{F6FCEB7A-E5CF-40C9-AF5D-A5F6B15BBE30}C:\program files\cycling '74\max 7\max.exe] => (Allow) C:\program files\cycling '74\max 7\max.exe
FirewallRules: [UDP Query User{621F3A24-7B67-4692-878E-DC5476CC48EC}C:\program files\cycling '74\max 7\max.exe] => (Allow) C:\program files\cycling '74\max 7\max.exe
FirewallRules: [{0935E8F0-8495-4ED3-9CFF-DC3CA1ED021D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7E240F80-8B48-41F3-BC9D-73B87CF579E2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CCDA4394-B88F-4F6F-80FB-33091A7DBB1F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Helldivers\binaries\x64\helldivers.exe
FirewallRules: [{A82ADA02-6E65-4172-A1CD-C814CD5DDE52}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Helldivers\binaries\x64\helldivers.exe
FirewallRules: [{88E4BF9E-F22E-4AFD-9678-D4F98DA4A01B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Helldivers\binaries\x86\helldivers.exe
FirewallRules: [{6C097F48-C4F5-4B52-8198-516A44536BDA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Helldivers\binaries\x86\helldivers.exe
FirewallRules: [{8A65CB91-32C5-4B38-911C-9B450864D59E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Squad\squad_launcher.exe
FirewallRules: [{34B66355-1FCA-4D51-8DDB-99A71C5CFFDF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Squad\squad_launcher.exe
FirewallRules: [TCP Query User{AD00F25E-356A-4B2A-BE0A-CBC4F6D27354}C:\program files (x86)\steam\steamapps\common\squad\squad\binaries\win64\squad.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\squad\squad\binaries\win64\squad.exe
FirewallRules: [UDP Query User{828CF86A-7154-44D6-BEB1-0A3DE27C32EF}C:\program files (x86)\steam\steamapps\common\squad\squad\binaries\win64\squad.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\squad\squad\binaries\win64\squad.exe
FirewallRules: [{D397563D-D4A2-4B17-89B7-E885F841A820}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{566F5B36-9052-4693-9B80-628DAD4F06F2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C4A05FC7-51B0-48CC-AA74-63051CCE2D7C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5941637D-B495-44E0-8658-9FE79BA7BAB6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{14821B28-0D87-49C8-B970-7CF8805571CA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Move or Die\MoveOrDie.exe
FirewallRules: [{6D521480-FC16-40CB-B96B-352306E12271}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Move or Die\MoveOrDie.exe
FirewallRules: [{7D7F069F-F2FF-42EC-A3A4-D5B1F92867A7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Move or Die\Editor.exe
FirewallRules: [{B44C2C50-AB7B-4621-A5B0-E860405345CA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Move or Die\Editor.exe
FirewallRules: [{3B58CFEA-9A29-4690-97B4-442717E7BD73}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{35E3F3A6-321C-4521-9C47-A6D0A410F06D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{629B13BF-057D-4F1D-B85C-AFDAC4368231}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{907A5B42-98BF-4742-885C-CBF0A6A28A70}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C5090356-DC1D-4BCE-8BA9-9E9D47A6C3A3}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\The Talos Principle\Bin\Talos.exe
FirewallRules: [{DAA5231C-C13D-4270-A089-FBD112FE3E27}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\The Talos Principle\Bin\Talos.exe
FirewallRules: [{9FAB07BB-DF4A-4FFE-871A-4E544D74E931}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\The Talos Principle\Bin\Talos_Unrestricted.exe
FirewallRules: [{1CF0CED2-0F37-4098-8DFC-0EE9A61A1BD1}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\The Talos Principle\Bin\Talos_Unrestricted.exe
FirewallRules: [{D6CE5C11-BFB7-4562-BFB8-DBF72E06A40F}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\The Talos Principle\Bin\x64\Talos.exe
FirewallRules: [{0671669F-7094-4871-B6E8-5AB01E6B3FD4}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\The Talos Principle\Bin\x64\Talos.exe
FirewallRules: [{136EE8C0-6D20-40C5-A3B4-47765A70C7AA}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\The Talos Principle\Bin\x64\Talos_Unrestricted.exe
FirewallRules: [{761FE45C-1A91-40A9-A723-B2A7855E9D08}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\The Talos Principle\Bin\x64\Talos_Unrestricted.exe
FirewallRules: [{D97ACD35-0BA0-49B7-AD66-2A5999A85D99}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0CDF75F5-C20D-4F02-A829-EF6EA95A0677}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B36548A9-DF4B-4E18-9725-A20C87FB2C2A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{40522DAA-0A0A-4D40-8C23-DD20E9BB1E16}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D29E99BF-D42A-4B7A-832C-B27F4B489078}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{154D7D2A-4AC2-4E19-BDD1-3712B4184FF3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{97865848-7A3F-43DA-98CE-9DF216C5A380}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Everything\Everything.exe
FirewallRules: [{43802990-62BE-4F69-AE40-DD8EA0C43BA8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Everything\Everything.exe
FirewallRules: [{322A0455-C03D-4990-8ACD-DB998225E512}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{968910F1-3008-47A2-B0E3-A7384A15DFB0}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A7537530-3CFA-4CFC-A425-4AF8A59CF525}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [{9D17E792-BDC8-48F5-A831-83DD93DB2B86}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [{AB3FB819-BA95-46C2-BC54-46F9C970DCD8}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D9896321-7CD9-4565-90AE-06B1F4E3ED1A}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3DE60E3C-21DB-4662-9D67-B24702DD0B95}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{26A1FE5A-B409-4485-87DD-ED3A3A746AB9}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{92E5D682-A417-45F0-A8D5-20ADB77D7021}C:\program files\epic games\ue_4.15\engine\binaries\win64\ue4editor.exe] => (Allow) C:\program files\epic games\ue_4.15\engine\binaries\win64\ue4editor.exe
FirewallRules: [UDP Query User{5AAF5E6D-6190-4033-A4FD-D5C3F17EAF3A}C:\program files\epic games\ue_4.15\engine\binaries\win64\ue4editor.exe] => (Allow) C:\program files\epic games\ue_4.15\engine\binaries\win64\ue4editor.exe
FirewallRules: [TCP Query User{6C41B2CE-DE2E-4056-A142-20356409D112}C:\users\gregs\documents\unreal projects\myproject2\saved\stagedbuilds\windowsnoeditor\engine\binaries\win64\ue4game.exe] => (Allow) C:\users\gregs\documents\unreal projects\myproject2\saved\stagedbuilds\windowsnoeditor\engine\binaries\win64\ue4game.exe
FirewallRules: [UDP Query User{830A8BA2-D389-4CC1-8C04-8F1495141944}C:\users\gregs\documents\unreal projects\myproject2\saved\stagedbuilds\windowsnoeditor\engine\binaries\win64\ue4game.exe] => (Allow) C:\users\gregs\documents\unreal projects\myproject2\saved\stagedbuilds\windowsnoeditor\engine\binaries\win64\ue4game.exe
FirewallRules: [TCP Query User{EE67F6C5-862C-4A72-ADD6-24711EE6FD16}C:\users\gregs\documents\unreal projects\myproject\saved\stagedbuilds\windowsnoeditor\engine\binaries\win64\ue4game.exe] => (Allow) C:\users\gregs\documents\unreal projects\myproject\saved\stagedbuilds\windowsnoeditor\engine\binaries\win64\ue4game.exe
FirewallRules: [UDP Query User{3391F8B1-2167-420C-A0DD-7CC2601AC400}C:\users\gregs\documents\unreal projects\myproject\saved\stagedbuilds\windowsnoeditor\engine\binaries\win64\ue4game.exe] => (Allow) C:\users\gregs\documents\unreal projects\myproject\saved\stagedbuilds\windowsnoeditor\engine\binaries\win64\ue4game.exe
FirewallRules: [{44704E79-A3FA-47DB-9B58-9B16BD73CD11}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{52735543-0B84-43F3-9299-C4206D10103B}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B68E67F2-177D-446F-B089-355FE6DA8370}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{07C21086-B9DE-4486-BD2E-15F60D0DD25A}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{20E857BE-E739-4805-8F75-9362CC7705C0}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Factorio\bin\x64\factorio.exe
FirewallRules: [{CA0DB332-0259-4FA8-BCD5-E28E406FD0CE}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Factorio\bin\x64\factorio.exe
FirewallRules: [{C48C54C7-CB4E-4EFE-9C2B-BAF5D6914515}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{725FA375-E553-4B73-8405-3340332BA877}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{25CED6FF-CC3E-469A-83FE-F880DFEFEA8C}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8BA684F7-08EE-4DE2-9661-7F59853C0631}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7270DEA7-9009-464E-A2C2-002CED55F705}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{87768B2E-F375-4F09-A143-4F86CE656528}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{454D0377-A5F0-43C5-8DD5-45D8314C6F09}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DE5415AA-8C74-47B6-99F4-9194BEFD028F}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F2C8596D-B582-4C6F-9029-3FC870C046FB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planetary Annihilation\bin_x64\PA.exe
FirewallRules: [{B2966F7E-7A69-47AF-9220-19CA58A583E9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planetary Annihilation\bin_x64\PA.exe
FirewallRules: [{1B11A37B-CEB4-4F91-897E-78732920943C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planetary Annihilation\bin_x86\PA.exe
FirewallRules: [{50C5B8F8-DB6D-4880-8872-4F0EA9955765}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planetary Annihilation\bin_x86\PA.exe
FirewallRules: [{76B07BEE-4ECA-44CF-A6F5-5EC56A3C0CFA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planetary Annihilation\bin_x86\crashupload.exe
FirewallRules: [{0D80DA72-59F5-4B28-834A-EE8726A0A9A5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planetary Annihilation\bin_x86\crashupload.exe
FirewallRules: [{B6076659-76B9-4F51-9658-EF5FB16EB3D5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planetary Annihilation\bin_x86\host\CoherentUI_Host.exe
FirewallRules: [{56C92774-2B71-4D8F-9DBE-B653DE917C6A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planetary Annihilation\bin_x86\host\CoherentUI_Host.exe
FirewallRules: [{1A1FF4E7-975E-42EE-B9B5-F60F592A4917}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planetary Annihilation\bin_x64\crashupload.exe
FirewallRules: [{3777AAEA-7758-4723-9A8D-69E48DB79930}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planetary Annihilation\bin_x64\crashupload.exe
FirewallRules: [{B47142D8-2861-4DDE-B9AF-4C95057458BE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planetary Annihilation\bin_x64\host\CoherentUI_Host.exe
FirewallRules: [{A56D9841-5C56-4F88-B438-1B256E1A2802}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planetary Annihilation\bin_x64\host\CoherentUI_Host.exe
FirewallRules: [{126383A3-8A83-4EF1-AC19-BE158DB2DEBB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planetary Annihilation\bin_x64\server.exe
FirewallRules: [{70F8A828-235C-40D0-9320-B08117713CD0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planetary Annihilation\bin_x64\server.exe
FirewallRules: [{E6D19429-AF95-42BC-90E2-931CE1C29454}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Antichamber\Binaries\Win32\UDK.exe
FirewallRules: [{39B251A6-E6FA-4230-A7D9-923B55B1849B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Antichamber\Binaries\Win32\UDK.exe
FirewallRules: [{9B0AEEB3-7FD0-4BCF-A73D-8D073428F4A7}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9E8C6620-B6D1-4CC4-9875-8394974880CC}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{42065B63-855F-46C7-BCFF-3D470CA597AB}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EA8F9E01-DE3D-413D-B8A0-52DD001811E1}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{128A86AB-C88C-4574-9DC9-06A3EBA7B4BF}E:\games\invisigun.heroes.v1.02\invisigun.heroes.v1.02\invisigun heroes.exe] => (Allow) E:\games\invisigun.heroes.v1.02\invisigun.heroes.v1.02\invisigun heroes.exe
FirewallRules: [UDP Query User{2BB04311-0659-4895-B91D-81073F489281}E:\games\invisigun.heroes.v1.02\invisigun.heroes.v1.02\invisigun heroes.exe] => (Allow) E:\games\invisigun.heroes.v1.02\invisigun.heroes.v1.02\invisigun heroes.exe
FirewallRules: [{CE259D30-15E0-4994-91F6-7B7DD2F8CCF3}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F5E2C178-E346-4759-98F7-1B5555552494}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FF71C027-F3EA-41CF-9D72-1FF2501850D9}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{54F9F24A-BD74-42FD-A402-EC78211B2E63}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3E2219D3-A961-4A93-A553-97E6171740CB}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3D5B6090-C93A-4C43-AA2C-34A861040D05}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{42E9C344-E470-4859-896C-E5C4AD8E4108}C:\program files\epic games\ue_4.15\engine\binaries\dotnet\swarmagent.exe] => (Allow) C:\program files\epic games\ue_4.15\engine\binaries\dotnet\swarmagent.exe
FirewallRules: [UDP Query User{B4DE1264-897F-4718-9098-48C62AC3CAE7}C:\program files\epic games\ue_4.15\engine\binaries\dotnet\swarmagent.exe] => (Allow) C:\program files\epic games\ue_4.15\engine\binaries\dotnet\swarmagent.exe
FirewallRules: [{48BED845-FF57-4651-81E8-9266EE8C07A6}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{25A44F13-FB28-4180-80EF-6E25D03BE5E0}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D1EBD643-41D2-45DB-8B07-BD334B8871B6}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A6D40DD9-D2F1-4944-A908-8BCE8DF637CC}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4CD66705-DC07-430F-92BE-4B92F2D561D9}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4D3F6E47-EB57-4721-B446-A2BB34FFCE90}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B1213A4B-E54B-4AA5-BAB3-5E000EA76A53}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3A5F3F22-003C-45ED-BC8E-1ED0EE78D562}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D5A51E0F-ACA2-4D29-A906-AD7825205480}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{EAEB70AD-34BD-4741-9C8E-660F1E56FFC3}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{CD16B2AB-7614-435E-993A-D64B750D1D77}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8B6825D1-DB92-4D6B-8F94-EB191768CA04}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{05001A6E-DB47-4D79-AE98-CF3A05E8B3B7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\MirageAWTest\TBL-Win64-Shipping.exe
FirewallRules: [{C0550429-23D5-44BB-A9C4-BD7503CE740D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\MirageAWTest\TBL-Win64-Shipping.exe
FirewallRules: [TCP Query User{3F0F2758-C99F-4255-ABD9-611FB42DF7A4}C:\program files (x86)\steam\steamapps\common\mirageawtest\tbl\binaries\win64\tbl-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\mirageawtest\tbl\binaries\win64\tbl-win64-shipping.exe
FirewallRules: [UDP Query User{B09F448F-3A59-4DA1-8632-82174BDF19CA}C:\program files (x86)\steam\steamapps\common\mirageawtest\tbl\binaries\win64\tbl-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\mirageawtest\tbl\binaries\win64\tbl-win64-shipping.exe
FirewallRules: [{1EA20382-7EB1-4D08-8CBB-4128BEB1444B}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EBB6484E-943D-4FC8-A0D9-8DE25753670C}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DA15CF58-FC37-43AA-ACFF-67204AC53C8E}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F6737104-58CD-49FA-8991-56AC59274F6A}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{47DB03C0-8F6D-49D8-9912-129C0B29D1F3}C:\program files\tixati\tixati.exe] => (Allow) C:\program files\tixati\tixati.exe
FirewallRules: [UDP Query User{6926B270-4AB8-4F84-9CA7-3B5A3D47B773}C:\program files\tixati\tixati.exe] => (Allow) C:\program files\tixati\tixati.exe
FirewallRules: [{CC7A8D14-CEEC-4700-9F30-819D7C251CF1}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1388CA10-5811-4124-B1A8-84876E2B941E}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{095516E0-CA34-418F-BFD4-998BE4D4B50F}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4B391FDA-0480-4FF8-9F73-F38F232DB9B5}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9E679C40-8B43-4713-8ED0-D877F7297D8D}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{89C7C5EA-8F0F-46A2-B701-3AD7198B0650}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{897778FE-2603-4E46-B99A-56099B42D068}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C5232F62-30D6-4643-84A8-828FA8CD262D}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DD1F4989-EAF0-4DF4-8EE0-47FB99E51E80}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe
FirewallRules: [{E3E2A73B-81A6-4F34-A419-000D1550D234}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe
FirewallRules: [{CEFB1A92-7C7A-4ADE-9236-B88DED59A30C}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe
FirewallRules: [{950FA849-51FB-4C9D-B7A1-8298766CF3DD}] => (Allow) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe
FirewallRules: [{CBBC290A-6DB8-4B23-A79B-D0FA9C7C6648}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0E5E65CE-9D18-47C5-9549-C02D1C307495}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DECBAD69-CBC6-42B6-B17B-9F9B1F514691}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Rising Storm 2\Binaries\Win64\RisingStorm2.exe
FirewallRules: [{720F1580-4611-479D-B21F-11422543DA0E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Rising Storm 2\Binaries\Win64\RisingStorm2.exe
FirewallRules: [{576939D7-2F5D-44A9-A2CB-C4152E1D16BE}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{06CEFDD0-7387-4871-A1CE-BD0A8AFA7EC3}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{721C496F-CECF-4714-88F9-D24EADCF0AB0}C:\program files (x86)\steam\steamapps\common\rising storm 2\binaries\win64\vngame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\rising storm 2\binaries\win64\vngame.exe
FirewallRules: [UDP Query User{C19DDD00-5EC0-47F5-8FBF-AD998DB5CA0D}C:\program files (x86)\steam\steamapps\common\rising storm 2\binaries\win64\vngame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\rising storm 2\binaries\win64\vngame.exe
FirewallRules: [{5A92090D-C8B9-4E68-A835-49661D9F76DB}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CE79A8B3-A3D6-40E8-8A8A-CB6DC577777F}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BA4CA014-1722-43A6-B0E5-E945F4027906}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Nidhogg\Nidhogg.exe
FirewallRules: [{A5A23D89-DE84-4A6C-B27E-358B2D4B569D}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Nidhogg\Nidhogg.exe
FirewallRules: [{6FF70E5A-535C-4505-A45E-95611E6651CE}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6CACC413-1B88-4185-9A01-89081FBF3FD3}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{8D38C694-4909-4AF1-B096-265C7EABC539}C:\users\gregs\downloads\archvisdemov2\saved\stagedbuilds\windowsnoeditor\engine\binaries\win64\ue4game.exe] => (Allow) C:\users\gregs\downloads\archvisdemov2\saved\stagedbuilds\windowsnoeditor\engine\binaries\win64\ue4game.exe
FirewallRules: [UDP Query User{E7565CE1-3779-4149-911C-B3D53AACA565}C:\users\gregs\downloads\archvisdemov2\saved\stagedbuilds\windowsnoeditor\engine\binaries\win64\ue4game.exe] => (Allow) C:\users\gregs\downloads\archvisdemov2\saved\stagedbuilds\windowsnoeditor\engine\binaries\win64\ue4game.exe
FirewallRules: [{63F14BFD-629A-45EF-AB2B-896B81FE101E}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0A3F7C4F-240E-429A-8C0D-05059C38A250}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{EF9ED8FA-D2E3-40C7-8DC8-1D77B55B66CF}C:\program files (x86)\participatory culture foundation\miro\miro_downloader.exe] => (Allow) C:\program files (x86)\participatory culture foundation\miro\miro_downloader.exe
FirewallRules: [UDP Query User{FFB86C14-7B45-4E3D-9520-4BFF1ED43253}C:\program files (x86)\participatory culture foundation\miro\miro_downloader.exe] => (Allow) C:\program files (x86)\participatory culture foundation\miro\miro_downloader.exe
FirewallRules: [{610599EC-04AA-4088-90C1-E424366EEDF3}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CABE1BB6-633C-48E7-B953-77862222176D}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{91BFB535-38DD-4E0B-A465-AD6A12D10CDB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Headlander\Headlander.exe
FirewallRules: [{6559900D-550C-4C31-9AD3-42E4E742D37C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Headlander\Headlander.exe
FirewallRules: [{84F0C8CD-90E1-4037-90E0-C48BD713FB99}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ziggurat\Ziggurat.exe
FirewallRules: [{6A07C7EF-5D5E-4B10-A551-C8D3073483FA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ziggurat\Ziggurat.exe
FirewallRules: [{F0695B8B-751A-4980-A24D-521134966FA4}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F467F724-D4BF-410A-B389-8D267F89FD7D}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{60CF10E6-AB5D-43C7-8FAA-831DA95010D8}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\devildaggers\dd.exe
FirewallRules: [{BFBDBCB9-1AF8-486A-B1E5-A7DC7FF71EBB}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\devildaggers\dd.exe
FirewallRules: [{04C52E48-5E2E-4B7E-B101-2AF2E29BAD58}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\KentuckyRouteZero\KentuckyRouteZero.exe
FirewallRules: [{06CEB9E3-D6BA-4E32-839D-2B572A2B633C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\KentuckyRouteZero\KentuckyRouteZero.exe
FirewallRules: [{F4CF714C-FD4D-4167-A461-7D3EC0ED8361}] => (Block) %ProgramFiles%\Adobe\Adobe Premiere Pro CC 2015\Adobe Premiere Pro.exe
FirewallRules: [{9E9523C8-8546-49D8-8AAC-A620A1981F43}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A05374A7-048F-4FD9-B9DA-CEEC3D1C620B}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{260C6274-326A-4EB8-BB3E-742335CC17E6}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D260B7A9-C74C-4C18-BD74-5FB1FFE1A593}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2AE27ABA-8203-4B19-86C0-BA3C1190B9ED}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{13B5E2CC-B6AD-4C5C-BD51-8992F65258D7}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5B42DAA5-CCE3-406E-BDD0-A6BD6AB993DF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PlanetSide 2\LaunchPad.exe
FirewallRules: [{A0651F3F-9BC1-4706-9381-3B1CEBA41F3C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PlanetSide 2\LaunchPad.exe
FirewallRules: [{C06743E6-E958-4191-B44F-968A0A4C514C}] => (Allow) H:\Games\SteamLibrary\steamapps\common\Planet Coaster\PlanetCoaster.exe
FirewallRules: [{1E7266B9-EF83-4396-97A7-460CE27FB9A3}] => (Allow) H:\Games\SteamLibrary\steamapps\common\Planet Coaster\PlanetCoaster.exe
FirewallRules: [{209A6FDA-BB2D-4724-ADB8-C623A2A6F846}] => (Allow) H:\Games\SteamLibrary\steamapps\common\Verdun\Verdun.exe
FirewallRules: [{BC86CAF2-95BE-48CE-BF79-F3AFF3712538}] => (Allow) H:\Games\SteamLibrary\steamapps\common\Verdun\Verdun.exe
FirewallRules: [TCP Query User{982B4B12-9AF8-4B64-9136-161BC2F952DB}C:\program files (x86)\steam\steamapps\common\planetside 2\planetside2_x64.exe] => (Block) C:\program files (x86)\steam\steamapps\common\planetside 2\planetside2_x64.exe
FirewallRules: [UDP Query User{379B261F-C2CF-449C-9562-02BC708D71AD}C:\program files (x86)\steam\steamapps\common\planetside 2\planetside2_x64.exe] => (Block) C:\program files (x86)\steam\steamapps\common\planetside 2\planetside2_x64.exe
FirewallRules: [{D885C198-16BA-4E17-975F-27E04CE96A49}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Planetbase\Planetbase.exe
FirewallRules: [{62B6B25C-0DDD-4C55-9158-8833911028A2}] => (Allow) E:\Program Files (x86)\Steam\steamapps\common\Planetbase\Planetbase.exe
FirewallRules: [{53D6BB22-5F8C-4DAF-8BAE-65960512DBAE}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7767C428-453D-45AD-9DB2-0D4537ABAC56}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F1C0D285-AAC1-4B86-A2E3-22E551339F87}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6C8D5E87-9BBB-4B11-ADBA-730EF3C285E8}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5EC93D9E-66B0-4B02-ABAF-8E24584542F5}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F84A80A3-1CF8-4628-98F2-BDC1A5DBD113}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BDE4CF3F-A3BB-4FDE-80CA-69C6D905F4F9}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F43B5C2B-4893-4560-9040-30F065E5B102}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{64AB9A54-A38F-4BCF-8567-14B038C9FD1A}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AA20E257-8D6A-4612-A2FA-7B23DA193624}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9FF637E3-64D6-4C93-A176-4B1999029787}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{254DCBB7-9953-4925-969A-34009301B2F5}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{538D5502-385A-481E-8C5D-30E71F9B1F91}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [UDP Query User{CE0C051C-9CF6-472E-ADE0-E151FA472190}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [{A9612955-0EE3-41B2-965A-2874496D2302}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{C8950B27-5889-4C38-B723-83C0DEEE2A9C}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{A3BA329C-38D5-433C-A4EB-B19EFD177FA2}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{EB328C50-7B02-4ECB-A220-4BC6F8C05C53}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{E904D263-94B6-4B44-906A-8DF3B709A25F}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{58E0CAB4-5C5A-4D5A-8594-B1A059837BF2}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9ABDF5E1-BE24-4E63-94BF-64FE7CFE9EC7}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EC5D6D0C-6A48-4011-BA40-284494444ADE}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{11CEAB7A-2F1B-4971-9E01-AA3AE11496C1}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DEC606F8-8154-4D3D-8593-AF21445E5AAE}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3A33EDD8-0714-4F69-9CA8-7B4AEC238A64}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [TCP Query User{AAB4FEFC-CE50-4D39-B87E-F75638017ED6}C:\games\prey\binaries\danielle\x64\release\prey.exe] => (Block) C:\games\prey\binaries\danielle\x64\release\prey.exe
FirewallRules: [UDP Query User{1F4E6811-3CE4-48B4-8EE3-438A95B1E487}C:\games\prey\binaries\danielle\x64\release\prey.exe] => (Block) C:\games\prey\binaries\danielle\x64\release\prey.exe
FirewallRules: [{6482A5F2-0C23-4E26-BB04-4FA796679AB1}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{73FE07E1-225A-4B88-A54A-25A05D2F3B0C}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{70DD83D3-B4FF-4F1C-B307-99FD5FB777CD}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{616D4532-DD45-4449-925E-76745DC52550}] => (Allow) H:\Games\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6C61800C-3A20-4CA1-9364-B1C7B5138F23}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman™\Launcher.exe
FirewallRules: [{B2BBAED8-C38B-4A05-9ADD-B7992E559BBE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman™\Launcher.exe
FirewallRules: [{871083AC-4741-4A81-897E-F206BF62DFEA}] => (Allow) C:\WINDOWS\system32\rundll32.exe
FirewallRules: [{293AC0CB-BE6C-4C3B-896E-EF577A41F7F8}] => (Allow) C:\Program Files (x86)\Tencent\QQLive\10.0.126.0\QQLive.exe
FirewallRules: [{4D76137C-DE73-4A87-B421-825C76AD0A55}] => (Allow) C:\Program Files (x86)\Tencent\QQLive\10.0.126.0\QQLive.exe
FirewallRules: [{7206BA72-9ABD-4077-AF31-D4F75A3408CB}] => (Allow) C:\Program Files (x86)\Tencent\QQLive\10.0.126.0\QQLiveUp.exe
FirewallRules: [{DB965EB2-1CAA-4856-AE7E-1F795B36ABED}] => (Allow) C:\Program Files (x86)\Tencent\QQLive\10.0.126.0\QQLiveUp.exe
FirewallRules: [{79CA21CA-95F6-4195-BABA-379933F80301}] => (Allow) C:\Program Files (x86)\Tencent\QQLive\10.0.126.0\Statistics.exe
FirewallRules: [{D3AC0BF9-1BEA-4E40-8300-AF008EC556D9}] => (Allow) C:\Program Files (x86)\Tencent\QQLive\10.0.126.0\Statistics.exe
FirewallRules: [{605175A3-B002-4F51-B2CE-B80567DB0320}] => (Allow) C:\Program Files (x86)\Tencent\QQLive\10.0.126.0\QQLiveService.exe
FirewallRules: [{CB0E7360-E9C5-47F4-85A9-6C4C69056B99}] => (Allow) C:\Program Files (x86)\Tencent\QQLive\10.0.126.0\QQLiveService.exe
FirewallRules: [{93B81FC2-E642-4316-B8CF-75A944E5AF03}] => (Allow) C:\Windows\System32\rundll32.exe
FirewallRules: [{DC947E1B-C858-4057-AB13-918FB709F6DD}] => (Allow) C:\Windows\System32\rundll32.exe
FirewallRules: [{B3B8B6B7-F39D-42C3-9365-D096A69F20C3}] => (Allow) C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe
FirewallRules: [{3DB06715-881A-4261-8704-C43980703DFB}] => (Allow) C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe
 
==================== Herstelpunten =========================
 
30-06-2017 19:41:26 Gepland controlepunt
02-07-2017 10:16:08 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660
 
==================== Defecte Apparaatbeheer Apparaten =============
 
 
==================== Eventlog fouten: =========================
 
Applicatiefouten:
==================
Error: (07/02/2017 02:39:21 PM) (Source: Microsoft-Windows-EFS) (EventID: 4401) (User: DESKTOP-Q2O3B6P)
Description: 7.488: Kan geen gebruiker inrichten voor EDP. Foutcode: 0x80070005.
 
Error: (07/02/2017 02:30:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Naam van toepassing met fout: vsserv.exe, versie: 21.0.25.92, tijdstempel: 0x5926cd41
Naam van module met fout: ntdll.dll, versie: 10.0.14393.479, tijdstempel: 0x5825887f
Uitzonderingscode: 0xc000000d
Foutmarge: 0x00000000000ff44c
Id van proces met fout: 0x1a74
Starttijd van toepassing met fout: 0x01d2f32aed29803f
Pad naar toepassing met fout: C:\Program Files\Bitdefender\Bitdefender 2017\vsserv.exe
Pad naar module met fout: C:\WINDOWS\SYSTEM32\ntdll.dll
Rapport-id: 712b8fa0-7985-4d08-ad44-08fbaf4ec64e
Volledige pakketnaam met fout: 
Relatieve toepassings-id van pakket met fout:
 
Error: (07/02/2017 02:30:08 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Kan activeringscontext voor 'C:\Program Files\Native Instruments\Traktor 2\x86\Traktor.exe' niet maken.
Kan afhankelijke assembly Resources32,processorArchitecture="x86",type="win32",version="2.11.0.23" niet vinden.
Gebruik sxstrace.exe voor een gedetailleerde diagnose.
 
Error: (07/02/2017 02:29:54 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Kan activeringscontext voor 'C:\Program Files (x86)\Waves\Applications\wlc.exe' niet maken. Fout in manifest of beleidsbestand 'C:\Program Files (x86)\Waves\Applications\WavesQtLibs_4.8.2_Win32_Release\WavesQtLibs_4.8.2_Win32_Release.MANIFEST op regel 8.
Onderdeel-id in manifest komt niet overeen met de id van het gevraagde onderdeel.
Verwijzing is WavesQtLibs_4.8.2_Win32_Release,processorArchitecture="AMD64",type="win32",version="1.0.0.0".
Definitie is WavesQtLibs_4.8.2_Win32_Release,processorArchitecture="x86",type="win32",version="1.0.0.0".
Gebruik sxstrace.exe voor gedetailleerde diagnose.
 
Error: (07/02/2017 02:29:54 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Kan activeringscontext voor 'C:\Program Files (x86)\Waves\Applications\GTRSolo 3.5.exe' niet maken. Fout in manifest of beleidsbestand 'C:\Program Files (x86)\Waves\Applications\WavesQtLibs_4.7.3_Win32_Release\WavesQtLibs_4.7.3_Win32_Release.MANIFEST op regel 8.
Onderdeel-id in manifest komt niet overeen met de id van het gevraagde onderdeel.
Verwijzing is WavesQtLibs_4.7.3_Win32_Release,processorArchitecture="AMD64",type="win32",version="1.0.0.0".
Definitie is WavesQtLibs_4.7.3_Win32_Release,processorArchitecture="x86",type="win32",version="1.0.0.0".
Gebruik sxstrace.exe voor gedetailleerde diagnose.
 
Error: (07/02/2017 02:29:54 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Kan activeringscontext voor 'C:\Program Files (x86)\Waves\Applications\GTR 3.5.exe' niet maken. Fout in manifest of beleidsbestand 'C:\Program Files (x86)\Waves\Applications\WavesQtLibs_4.7.3_Win32_Release\WavesQtLibs_4.7.3_Win32_Release.MANIFEST op regel 8.
Onderdeel-id in manifest komt niet overeen met de id van het gevraagde onderdeel.
Verwijzing is WavesQtLibs_4.7.3_Win32_Release,processorArchitecture="AMD64",type="win32",version="1.0.0.0".
Definitie is WavesQtLibs_4.7.3_Win32_Release,processorArchitecture="x86",type="win32",version="1.0.0.0".
Gebruik sxstrace.exe voor gedetailleerde diagnose.
 
Error: (07/02/2017 02:29:54 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Kan activeringscontext voor 'C:\Program Files (x86)\Waves\Applications\Element App.exe' niet maken. Fout in manifest of beleidsbestand 'C:\Program Files (x86)\Waves\Applications\WavesQtLibs_4.7.3_Win32_Release\WavesQtLibs_4.7.3_Win32_Release.MANIFEST op regel 8.
Onderdeel-id in manifest komt niet overeen met de id van het gevraagde onderdeel.
Verwijzing is WavesQtLibs_4.7.3_Win32_Release,processorArchitecture="AMD64",type="win32",version="1.0.0.0".
Definitie is WavesQtLibs_4.7.3_Win32_Release,processorArchitecture="x86",type="win32",version="1.0.0.0".
Gebruik sxstrace.exe voor gedetailleerde diagnose.
 
Error: (07/02/2017 02:08:50 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Kan activeringscontext voor 'C:\Program Files\Native Instruments\Traktor 2\x86\Traktor.exe' niet maken.
Kan afhankelijke assembly Resources32,processorArchitecture="x86",type="win32",version="2.11.0.23" niet vinden.
Gebruik sxstrace.exe voor een gedetailleerde diagnose.
 
Error: (07/02/2017 02:02:57 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Kan activeringscontext voor 'C:\Program Files (x86)\Waves\Applications\wlc.exe' niet maken. Fout in manifest of beleidsbestand 'C:\Program Files (x86)\Waves\Applications\WavesQtLibs_4.8.2_Win32_Release\WavesQtLibs_4.8.2_Win32_Release.MANIFEST op regel 8.
Onderdeel-id in manifest komt niet overeen met de id van het gevraagde onderdeel.
Verwijzing is WavesQtLibs_4.8.2_Win32_Release,processorArchitecture="AMD64",type="win32",version="1.0.0.0".
Definitie is WavesQtLibs_4.8.2_Win32_Release,processorArchitecture="x86",type="win32",version="1.0.0.0".
Gebruik sxstrace.exe voor gedetailleerde diagnose.
 
Error: (07/02/2017 02:02:57 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Kan activeringscontext voor 'C:\Program Files (x86)\Waves\Applications\GTRSolo 3.5.exe' niet maken. Fout in manifest of beleidsbestand 'C:\Program Files (x86)\Waves\Applications\WavesQtLibs_4.7.3_Win32_Release\WavesQtLibs_4.7.3_Win32_Release.MANIFEST op regel 8.
Onderdeel-id in manifest komt niet overeen met de id van het gevraagde onderdeel.
Verwijzing is WavesQtLibs_4.7.3_Win32_Release,processorArchitecture="AMD64",type="win32",version="1.0.0.0".
Definitie is WavesQtLibs_4.7.3_Win32_Release,processorArchitecture="x86",type="win32",version="1.0.0.0".
Gebruik sxstrace.exe voor gedetailleerde diagnose.
 
 
Systeemfouten:
=============
Error: (07/02/2017 04:52:15 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-Q2O3B6P)
Description: De server {37998346-3765-45B1-8C66-AA88CA6B20B8} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd.
 
Error: (07/02/2017 04:50:15 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: De Service Platform voor verbonden apparaten-service is gestopt met de volgende foutcode: 
Niet nader omschreven fout
.
 
Error: (07/02/2017 03:53:59 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-Q2O3B6P)
Description: De server {37998346-3765-45B1-8C66-AA88CA6B20B8} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd.
 
Error: (07/02/2017 03:51:59 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: De Service Platform voor verbonden apparaten-service is gestopt met de volgende foutcode: 
Niet nader omschreven fout
.
 
Error: (07/02/2017 03:48:00 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-Q2O3B6P)
Description: De server {37998346-3765-45B1-8C66-AA88CA6B20B8} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd.
 
Error: (07/02/2017 03:46:00 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: De Service Platform voor verbonden apparaten-service is gestopt met de volgende foutcode: 
Niet nader omschreven fout
.
 
Error: (07/02/2017 03:42:39 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-Q2O3B6P)
Description: De server {37998346-3765-45B1-8C66-AA88CA6B20B8} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd.
 
Error: (07/02/2017 03:40:39 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: De Service Platform voor verbonden apparaten-service is gestopt met de volgende foutcode: 
Niet nader omschreven fout
.
 
Error: (07/02/2017 03:38:49 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: In de machtigingsinstellingen toepassingsspecifiek wordt de machtiging Activeren niet verleend aan Lokaal voor de COM-servertoepassing met CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 en APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 aan de gebruiker NT AUTHORITY\SYSTEM SID (S-1-5-18) met het adres LocalHost (via LRPC) die wordt uitgevoerd in de toepassingscontainer Niet beschikbaar SID (Niet beschikbaar). Deze beveiligingsmachtiging kan worden gewijzigd met het beheerprogramma van Component Services.
 
Error: (07/02/2017 02:55:31 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-Q2O3B6P)
Description: De server {37998346-3765-45B1-8C66-AA88CA6B20B8} heeft zich niet binnen de vereiste termijn bij DCOM geregistreerd.
 
 
CodeIntegrity:
===================================
  Date: 2017-05-16 20:16:48.962
  Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume6\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
  Date: 2017-05-16 20:16:48.961
  Description: Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume6\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
 
==================== Geheugen info =========================== 
 
Processor: Intel® Core™ i7-6700K CPU @ 4.00GHz
Percentage geheugen in gebruik: 44%
Totaal fysiek RAM-geheugen: 16323 MB
Beschikbaar fysiek RAM-geheugen: 9106.7 MB
Totaal Virtueel geheugen: 18755 MB
Beschikbaar Virtual geheugen: 12582.02 MB
 
==================== Schijven ================================
 
Drive c: () (Fixed) (Total:465.21 GB) (Free:7.77 GB) NTFS
Drive d: (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[systeem met boot componenten (verkregen van schijf)]
Drive e: () (Fixed) (Total:931.41 GB) (Free:12.64 GB) NTFS
Drive g: (System Reserved) (Fixed) (Total:0.34 GB) (Free:0.09 GB) NTFS ==>[systeem met boot componenten (verkregen van schijf)]
Drive h: () (Fixed) (Total:1862.67 GB) (Free:266.78 GB) NTFS
 
==================== MBR & Partitietabel ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 064C4036)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=1862.7 GB) - (Type=07 NTFS)
 
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 00000000)
 
Partition: GPT.
 
========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 8DC96E9C)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=931.4 GB) - (Type=07 NTFS)
 
==================== Eind van Addition.txt ============================

Attached Files


Edited by RKinner, 02 July 2017 - 07:11 PM.

  • 0

Advertisements


#2
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,624 posts
  • MVP

Uninstall

YoutubeAdBlock 
Bonjour
 
 
 
Download the attached fixlist.txt to the same location as FRST
 
 
Run FRST and press Fix (It will reboot) 
A fix log will be generated please post that 
 
 
Run FRST again as before.  Make sure Addition.txt is checked and hit Scan.  Post both logs.
 
 
 

 


  • 0

#3
Machinedrum

Machinedrum

    New Member

  • Topic Starter
  • Member
  • Pip
  • 3 posts

Hi Rkinner, thank you so much for the help!
I deleted the noobzo folder yesterday before you replied by starting windows in safemode. So that might show up wrong on the logs.
BItdefender found C:\WINDOWS\System32\bi3.exe and blocked it.
 

I still have Tsearch and YoutubeAdblock in my app listing, I cant uninstall because it doens't find the uninstalls. I think I deleted the folders right after the malware spread.

I did what you asked and ran the fix, here is the log:

 

Attached Files


  • 0

#4
Machinedrum

Machinedrum

    New Member

  • Topic Starter
  • Member
  • Pip
  • 3 posts

and here the fixlog

Attached Files


  • 0

#5
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,624 posts
  • MVP

Copy the next 4 lines:


reg delete HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{E3605470-291B-44EB-8648-745EE356599A}

reg delete HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{E3605470-291B-44EB-8648-745EE356599A}

reg delete HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{6E727987-C8EA-44DA-8749-310C0FBE3C3E}

reg delete HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{6E727987-C8EA-44DA-8749-310C0FBE3C3E}
 

 

 

Open an elevated Command Prompt (admin)

Win 7: Start, All Programs, Accessories then right click on Command Prompt and Run as Administrator
 
Right click and Paste (or Edit then Paste)  and the copied lines should appear.  Hit Enter.
 
If I did it right the two entries should be gone from your uninstall list.
 
I don't see anything else but it wouldn't hurt to run a few scans in case there is something I can't see:
 

 
Download : ADWCleaner to your desktop.  Make sure you get the correct Download button.  Sometimes the ads on BleepingComputer will mimic the real Download button which should say: Download Now @BleepingComputer
 
NOTE: If using Internet Explorer and you get an alert that stops the program downloading, click on the warning and allow the download to complete.
 
Close  all programs, pause your anti-virus and run AdwCleaner (Vista or Win 7 => right click and Run As Administrator).
 
scan-results.jpg
 
Click on Scan  and follow the prompts. Let it run unhindered. When done, click on the Clean button, and follow the prompts. Allow the system to reboot. You will then be presented with the report. Copy & Paste this report on your next reply.
 
The report will be saved in the C:\AdwCleaner folder.
 
 
 
Junkware-Removal-Tool
 
Please download Junkware Removal Tool to your desktop.  Make sure you get the correct Download button.  Sometimes the ads on BleepingComputer will mimic the real Download button which should say: Download Now @Author's site
  • Pause your anti-virus.  Close all browsers.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
  •  
     
    I don't have instructions for it but it should be pretty self explanatory.
     
     

    • 0






    Similar Topics

    0 user(s) are reading this topic

    0 members, 0 guests, 0 anonymous users

    As Featured On:

    Microsoft Yahoo BBC MSN PC Magazine Washington Post HP