Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Laptop going slow


  • Please log in to reply

#1
Wolfman360

Wolfman360

    Member

  • Member
  • PipPip
  • 32 posts

Good evening, I've been finding recently that my laptop is going slow and that several of my accounts Facebook/Emails/other programs I use have been accessed. I've since changed the password for everything.

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15.11.2018
Ran by dan31 (administrator) on DESKTOP-84H6AVC (16-11-2018 22:39:57)
Running from C:\Users\dan31\Downloads
Loaded Profiles: dan31 (Available Profiles: dan31)
Platform: Windows 10 Home Version 1803 17134.407 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki127176.inf_amd64_86c658cabfb17c9c\igfxCUIService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Rivet Networks) C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe
(Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki127176.inf_amd64_86c658cabfb17c9c\IntelCpHDCPSvc.exe
(Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel® Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel Corporation) C:\Windows\System32\ibtsiva.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(AVAST Software) C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki127176.inf_amd64_86c658cabfb17c9c\IntelCpHeciSvc.exe
(CloudBees, Inc.) C:\Program Files\Rivet Networks\SmartByte\RNDBWMService.exe
(Rivet Networks LLC) C:\Program Files\Rivet Networks\SmartByte\RNDBWM.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.136.333\AvastBrowserCrashHandler.exe
(AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.136.333\AvastBrowserCrashHandler64.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe
(Dell Inc.) C:\Program Files (x86)\Dell Customer Connect\DCCService.exe
(Dell) C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe
(PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1382\DSAPI.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler.exe
(Dell Inc.) C:\Program Files\Dell\Dell Help & Support\MDLCSvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler64.exe
(Dell Products, LP.) C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe
(DELL) C:\Program Files\Rivet Networks\SmartByte\SmartByteTelemetry.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Dell) C:\Program Files\Dell\Dell Product Registration\PRSvc.exe
(Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe
(Microsoft Corporation) C:\Program Files\rempl\sedsvc.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Security Assist\isa.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki127176.inf_amd64_86c658cabfb17c9c\igfxEM.exe
(Dell) C:\Program Files\Dell\Dell Foundation Services\DFS.Common.Agent.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11001.20083.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.34.81.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.34.81.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
(AVAST Software) C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-11] (Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9226752 2017-05-04] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_MAXX6] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1485312 2017-05-04] (Realtek Semiconductor)
HKLM\...\Run: [QuickSet] => c:\Program Files\Dell\QuickSet\QuickSet.exe [3075552 2015-04-29] (Dell Inc.)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [323040 2015-11-18] (Intel Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [242392 2018-10-11] (AVAST Software)
HKLM\...\Run: [RtHDVBg_PushButton] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1485312 2017-05-04] (Realtek Semiconductor)
HKLM\...\Run: [WavesSvc] => C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [723928 2017-01-26] (Waves Audio Ltd.)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [3784512 2018-10-09] (Dropbox, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3131680 2018-11-10] (Valve Corporation)
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3106088 2018-04-10] (Electronic Arts)
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\Run: [Chromium] => c:\users\dan31\appdata\local\chromium\application\chrome.exe [829440 2017-02-15] (The Chromium Authors)
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\Run: [GoogleChromeAutoLaunch_34001F2131DECEAF85E80D446A5BD02C] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589080 2018-11-08] (Google Inc.)
IFEO\appvlp.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\brave.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\dropbox.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\excel.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\hirezgamesdiagandsupport.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\lync.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\mbam.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\msaccess.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\msoev.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\msotd.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\msoxmled.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\mspub.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\ocpubmgr.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\onenote.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\origin.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\originer.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\originuninstall.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\outlook.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\powerpnt.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\setlang.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\ts4.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\unins000.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\unins001.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
IFEO\winword.exe: [Debugger] "C:\Program Files (x86)\AVAST Software\Avast Cleanup\autoreactivator.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast Cleanup Premium.lnk [2018-07-28]
ShortcutTarget: Avast Cleanup Premium.lnk -> C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe (AVAST Software)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{3b316302-223d-4171-9622-f9d9728ee6f0}: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{5bc89408-0041-4781-b444-d716ad43cd82}: [DhcpNameServer] 192.168.1.254
 
Internet Explorer:
==================
HKU\S-1-5-21-50118766-877759180-1359360943-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell17win10.msn.com/?pc=DCTE
SearchScopes: HKU\S-1-5-21-50118766-877759180-1359360943-1001 -> DefaultScope {435D8A9F-20CE-4D95-838B-FCED344812AC} URL = 
SearchScopes: HKU\S-1-5-21-50118766-877759180-1359360943-1001 -> {435D8A9F-20CE-4D95-838B-FCED344812AC} URL = 
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2018-10-28] (Microsoft Corporation)
BHO: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_112\bin\ssv.dll [2017-01-02] (Oracle Corporation)
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll => No File
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_112\bin\jp2ssv.dll [2017-01-02] (Oracle Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2018-09-11] (Microsoft Corporation)
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll [2016-11-21] (Oracle Corporation)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll => No File
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-11-21] (Oracle Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-10-03] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-10-03] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-10-03] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-10-03] (Microsoft Corporation)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll No File
 
FireFox:
========
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\e10ssaffplg.xpi => not found
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\e10ssaffplg.xpi => not found
FF Plugin: @java.com/DTPlugin,version=11.112.2 -> C:\Program Files\Java\jre1.8.0_112\bin\dtplugin\npDeployJava1.dll [2017-01-02] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.112.2 -> C:\Program Files\Java\jre1.8.0_112\bin\plugin2\npjp2.dll [2017-01-02] (Oracle Corporation)
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1227197.dll [2017-02-20] (Adobe Systems, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-08-25] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-08-25] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2016-11-21] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-11-21] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2018-09-11] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-09-11] (Microsoft Corporation)
FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=3 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2018-11-09] (BraveSoftware Inc.)
FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=9 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2018-11-09] (BraveSoftware Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-16] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-16] (Google Inc.)
FF Plugin HKU\S-1-5-21-50118766-877759180-1359360943-1001: @nsroblox.roblox.com/launcher -> C:\Users\dan31\AppData\Local\Roblox\Versions\version-6a65e85da5fe4a75\\NPRobloxProxy.dll [2012-12-31] ( ROBLOX Corporation)
FF Plugin HKU\S-1-5-21-50118766-877759180-1359360943-1001: @nsroblox.roblox.com/launcher64 -> C:\Users\dan31\AppData\Local\Roblox\Versions\version-6a65e85da5fe4a75\\NPRobloxProxy64.dll [2012-12-31] ( ROBLOX Corporation)
 
Chrome: 
=======
CHR Profile: C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default [2018-11-16]
CHR Extension: (Slides) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-11-01]
CHR Extension: (Docs) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-11-06]
CHR Extension: (Google Drive) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-10-17]
CHR Extension: (YouTube) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-11-07]
CHR Extension: (Avast SafePrice | Comparison, deals, coupons) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2018-11-16]
CHR Extension: (Pouch - Instantly Get UK Voucher Codes) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\eoolfmmapnkhandljfaaofncecfakljd [2018-10-27]
CHR Extension: (Sheets) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-11-01]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2018-10-17]
CHR Extension: (Google Docs Offline) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-22]
CHR Extension: (AdBlock) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-10-15]
CHR Extension: (Avast Online Security) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2018-09-26]
CHR Extension: (Grammarly for Chrome) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2018-11-16]
CHR Extension: (Chrome Web Store Payments) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Amazon Assistant for Chrome) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam [2018-06-22]
CHR Extension: (Gmail) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-11-07]
CHR Extension: (Chrome Media Router) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-11-05]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
 
==================== Services (Whitelisted) ====================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [8188768 2018-10-11] (AVAST Software)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-05-15] (AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [325024 2018-10-11] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [338632 2018-10-11] (AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-05-15] (AVAST Software)
S3 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2018-10-11] (AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1522184 2017-07-31] ()
S4 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [160200 2018-11-09] (BraveSoftware Inc.)
S4 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [160200 2018-11-09] (BraveSoftware Inc.)
S4 BRSptStub; C:\ProgramData\BitRaider\BRSptStub.exe [363208 2017-12-26] (BitRaider, LLC)
R2 CleanupPSvc; C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupSvc.exe [9121248 2018-11-05] (AVAST Software)
R4 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9683736 2018-10-14] (Microsoft Corporation)
S4 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-07] (Dropbox, Inc.)
S4 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-11-07] (Dropbox, Inc.)
R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [51024 2018-10-09] (Dropbox, Inc.)
R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [209392 2018-10-22] (Dell Inc.)
R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3347440 2018-10-22] (Dell Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [218096 2018-10-22] (Dell Inc.)
R2 Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [130936 2016-12-21] (Dell Inc.)
R2 Dell Foundation Services; C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe [97616 2017-01-11] (Dell)
R2 Dell Hardware Support; C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1382\DSAPI.exe [1002816 2018-11-08] (PC-Doctor, Inc.)
R2 Dell Help & Support; C:\Program Files\Dell\Dell Help & Support\MDLCSvc.exe [40976 2017-09-18] (Dell Inc.)
S2 DellUpdate; C:\Program Files (x86)\Dell Update\DellUpService.exe [232320 2017-11-21] (Dell Inc.)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [780928 2018-07-29] (EasyAntiCheat Ltd)
R2 esifsvc; C:\WINDOWS\System32\Intel\DPTF\esif_uf.exe [1585784 2016-06-03] (Intel Corporation)
S4 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2018-06-11] (Hi-Rez Studios) [File not signed]
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [19424 2015-11-18] (Intel Corporation)
R2 ibtsiva; C:\WINDOWS\system32\ibtsiva.exe [190216 2016-10-15] (Intel Corporation)
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel® Corporation)
R3 Intel® Security Assist; C:\Program Files (x86)\Intel\Intel® Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [File not signed]
S3 Intel® WiDi SAM; C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel® Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [19088 2015-06-24] (Intel Corporation)
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel® Security Assist\isaHelperService.exe [7680 2015-05-19] () [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [207648 2015-10-16] (Intel Corporation)
S4 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6347056 2018-09-19] (Malwarebytes)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [265864 2018-03-19] ()
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [523152 2018-03-14] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [523152 2018-03-14] (NVIDIA Corporation)
S4 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2158912 2018-04-10] (Electronic Arts)
S4 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3028808 2018-04-10] (Electronic Arts)
R2 Product Registration; C:\Program Files\Dell\Dell Product Registration\PRSvc.exe [47144 2017-04-06] (Dell)
R2 RNDBWM; C:\Program Files\Rivet Networks\SmartByte\RNDBWMService.exe [64184 2018-03-20] (CloudBees, Inc.)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [324608 2017-05-04] (Realtek Semiconductor)
R2 SmartByte Network Service x64; C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe [2011848 2018-03-20] (Rivet Networks)
S4 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] ()
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [38872 2018-10-25] (Dell Inc.)
R2 WavesSysSvc; C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe [615384 2017-02-07] (Waves Audio Ltd.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4451616 2018-04-11] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [107136 2018-09-21] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3848328 2018-03-19] (Intel® Corporation)
S2 0220131532022826mcinstcleanup; C:\WINDOWS\TEMP\022013~1.EXE -cleanup -nolog [X]
S2 McAfee SiteAdvisor Service; "C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe" [X]
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
 
===================== Drivers (Whitelisted) ======================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (Apple Inc.)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [201408 2018-10-11] (AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdrivera.sys [230512 2018-10-11] (AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsha.sys [201928 2018-10-11] (AVAST Software)
R0 aswblog; C:\WINDOWS\System32\drivers\aswbloga.sys [346760 2018-10-11] (AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniva.sys [59664 2018-10-11] (AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [15360 2018-07-28] (AVAST Software)
S3 aswHwid; C:\WINDOWS\System32\drivers\aswHwid.sys [47064 2018-10-11] (AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42456 2018-10-11] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [163376 2018-10-11] (AVAST Software)
R1 aswNetSec; C:\WINDOWS\System32\drivers\aswNetSec.sys [483384 2018-10-11] (AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [111968 2018-10-11] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [88112 2018-10-11] (AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [1028840 2018-10-11] (AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [467904 2018-10-11] (AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [208640 2018-10-11] (AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [381144 2018-10-11] (AVAST Software)
S3 BRDriver64_1_3_3_E02B25FC; C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [78088 2018-01-01] (BitRaider)
R3 DDDriver; C:\WINDOWS\system32\drivers\DDDriver64Dcsa.sys [36400 2018-10-20] (Dell Inc.)
S3 DellProf; C:\WINDOWS\system32\drivers\DellProf.sys [41208 2018-05-08] (Dell Computer Corporation)
R3 DellRbtn; C:\WINDOWS\System32\drivers\DellRbtn.sys [19440 2015-05-08] (OSR Open Systems Resources, Inc.)
R3 dptf_acpi; C:\WINDOWS\System32\drivers\dptf_acpi.sys [70208 2016-05-19] (Intel Corporation)
R3 dptf_cpu; C:\WINDOWS\System32\drivers\dptf_cpu.sys [65088 2016-05-19] (Intel Corporation)
R3 esif_lf; C:\WINDOWS\System32\drivers\esif_lf.sys [343608 2016-05-19] (Intel Corporation)
R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [250624 2016-10-15] (Intel Corporation)
R3 Netwtw04; C:\WINDOWS\system32\DRIVERS\Netwtw04.sys [8623128 2018-04-04] (Intel Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvdm.inf_amd64_2c7c773e20d8bcfa\nvlddmkm.sys [17538080 2018-06-12] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [31632 2018-03-14] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [59240 2017-12-15] (NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [59272 2018-03-14] (NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [886528 2015-05-29] (Realtek )
R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [777944 2016-03-21] (Realsil Semiconductor Corporation)
R2 SmbCoSvc; C:\WINDOWS\system32\DRIVERS\SmbCo10X64.sys [119528 2018-03-20] (Rivet Networks, LLC.)
S3 SWDUMon; C:\WINDOWS\system32\DRIVERS\SWDUMon.sys [25608 2018-11-10] (SlimWare Utilities, Inc.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44616 2018-04-11] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [331680 2018-04-11] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [44032 2018-04-11] (Microsoft Corporation)
S3 mfesapsn; \??\C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2018-11-16 22:39 - 2018-11-16 22:42 - 000034807 _____ C:\Users\dan31\Downloads\FRST.txt
2018-11-16 22:39 - 2018-11-16 22:39 - 002416128 _____ (Farbar) C:\Users\dan31\Downloads\FRST64.exe
2018-11-16 22:39 - 2018-11-16 22:39 - 000000000 ____D C:\FRST
2018-11-16 19:48 - 2018-11-16 19:48 - 000002500 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business.lnk
2018-11-16 19:48 - 2018-11-16 19:48 - 000002495 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2018-11-16 19:48 - 2018-11-16 19:48 - 000002494 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2018-11-16 19:48 - 2018-11-16 19:48 - 000002458 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2018-11-16 19:48 - 2018-11-16 19:48 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2018-11-16 19:48 - 2018-11-16 19:48 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2018-11-16 19:48 - 2018-11-16 19:48 - 000002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2018-11-16 19:48 - 2018-11-16 19:48 - 000002437 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2018-11-16 19:48 - 2018-11-16 19:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
2018-11-16 19:36 - 2018-11-16 19:36 - 000000000 ____D C:\Program Files\rempl
2018-11-14 22:00 - 2018-11-01 11:45 - 004527776 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2018-11-14 22:00 - 2018-11-01 11:45 - 001617320 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2018-11-14 22:00 - 2018-11-01 11:31 - 006602240 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2018-11-14 22:00 - 2018-11-01 11:29 - 012710400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2018-11-14 22:00 - 2018-11-01 11:28 - 004491264 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2018-11-14 22:00 - 2018-11-01 11:28 - 003649024 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2018-11-14 22:00 - 2018-11-01 09:59 - 005669888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2018-11-14 22:00 - 2018-11-01 09:56 - 011902464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2018-11-14 22:00 - 2018-11-01 09:15 - 023861760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2018-11-14 22:00 - 2018-11-01 09:13 - 019525120 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2018-11-14 22:00 - 2018-11-01 07:28 - 001221432 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2018-11-14 22:00 - 2018-11-01 07:27 - 001017152 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2adec.dll
2018-11-14 22:00 - 2018-11-01 07:26 - 007432120 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2018-11-14 22:00 - 2018-11-01 07:26 - 003291640 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2018-11-14 22:00 - 2018-11-01 07:26 - 003180080 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2018-11-14 22:00 - 2018-11-01 07:25 - 009089848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2018-11-14 22:00 - 2018-11-01 07:25 - 007520088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2018-11-14 22:00 - 2018-11-01 07:25 - 004404912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2018-11-14 22:00 - 2018-11-01 07:25 - 002371296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2018-11-14 22:00 - 2018-11-01 07:25 - 001784680 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2018-11-14 22:00 - 2018-11-01 07:25 - 001288920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2018-11-14 22:00 - 2018-11-01 07:09 - 025855488 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2018-11-14 22:00 - 2018-11-01 07:03 - 003397120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2018-11-14 22:00 - 2018-11-01 07:01 - 022716416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2018-11-14 22:00 - 2018-11-01 07:01 - 009084928 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2018-11-14 22:00 - 2018-11-01 07:01 - 007057408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2018-11-14 22:00 - 2018-11-01 07:00 - 008189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2018-11-14 22:00 - 2018-11-01 07:00 - 006031360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2018-11-14 22:00 - 2018-11-01 07:00 - 003392000 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2018-11-14 22:00 - 2018-11-01 06:58 - 007573504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2018-11-14 22:00 - 2018-11-01 06:58 - 004867072 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2018-11-14 22:00 - 2018-11-01 06:58 - 004383744 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2018-11-14 22:00 - 2018-11-01 06:55 - 002738688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2018-11-14 22:00 - 2018-11-01 06:53 - 002248192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2018-11-14 22:00 - 2018-11-01 04:50 - 000861712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2adec.dll
2018-11-14 22:00 - 2018-11-01 04:48 - 006039064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2018-11-14 22:00 - 2018-11-01 04:48 - 004790184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2018-11-14 22:00 - 2018-11-01 04:48 - 002478872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2018-11-14 22:00 - 2018-11-01 04:48 - 002331480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2018-11-14 22:00 - 2018-11-01 04:47 - 006570368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2018-11-14 22:00 - 2018-11-01 04:47 - 001379792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2018-11-14 22:00 - 2018-11-01 04:40 - 022015488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2018-11-14 22:00 - 2018-11-01 04:35 - 019403776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2018-11-14 22:00 - 2018-11-01 04:33 - 006661632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2018-11-14 22:00 - 2018-11-01 04:30 - 005883904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2018-11-14 22:00 - 2018-11-01 04:30 - 005775872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2018-11-14 22:00 - 2018-10-21 13:00 - 021386368 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2018-11-14 22:00 - 2018-10-21 12:46 - 013572096 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2018-11-14 22:00 - 2018-10-21 12:46 - 004393472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2018-11-14 22:00 - 2018-10-21 11:37 - 020381808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2018-11-14 22:00 - 2018-10-21 11:28 - 012501504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2018-11-14 22:00 - 2018-10-21 07:48 - 005602456 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2018-11-14 22:00 - 2018-10-21 07:45 - 003283512 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll
2018-11-14 22:00 - 2018-10-21 07:28 - 016592384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2018-11-14 22:00 - 2018-10-21 07:22 - 004710912 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2018-11-14 22:00 - 2018-10-21 07:17 - 001826816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2018-11-14 22:00 - 2018-10-21 07:09 - 013873664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2018-11-14 21:59 - 2018-11-01 11:49 - 000348160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2018-11-14 21:59 - 2018-11-01 11:46 - 002394960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2018-11-14 21:59 - 2018-11-01 11:45 - 001376672 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2018-11-14 21:59 - 2018-11-01 11:32 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2018-11-14 21:59 - 2018-11-01 11:30 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2018-11-14 21:59 - 2018-11-01 11:30 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msisip.dll
2018-11-14 21:59 - 2018-11-01 11:29 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
2018-11-14 21:59 - 2018-11-01 11:28 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\prnntfy.dll
2018-11-14 21:59 - 2018-11-01 11:27 - 001121792 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2018-11-14 21:59 - 2018-11-01 11:27 - 000878592 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2018-11-14 21:59 - 2018-11-01 11:26 - 001364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2018-11-14 21:59 - 2018-11-01 11:26 - 000503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2018-11-14 21:59 - 2018-11-01 11:26 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2018-11-14 21:59 - 2018-11-01 11:25 - 000577024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2018-11-14 21:59 - 2018-11-01 10:09 - 001027000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2018-11-14 21:59 - 2018-11-01 09:56 - 000226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prnntfy.dll
2018-11-14 21:59 - 2018-11-01 09:56 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msisip.dll
2018-11-14 21:59 - 2018-11-01 09:54 - 003397632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2018-11-14 21:59 - 2018-11-01 09:54 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2018-11-14 21:59 - 2018-11-01 09:53 - 000908288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2018-11-14 21:59 - 2018-11-01 09:52 - 002892800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2018-11-14 21:59 - 2018-11-01 07:39 - 001035256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2018-11-14 21:59 - 2018-11-01 07:38 - 000269336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2018-11-14 21:59 - 2018-11-01 07:37 - 000272408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll
2018-11-14 21:59 - 2018-11-01 07:28 - 001062712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2018-11-14 21:59 - 2018-11-01 07:28 - 001029944 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2018-11-14 21:59 - 2018-11-01 07:28 - 000566568 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2018-11-14 21:59 - 2018-11-01 07:28 - 000134968 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2018-11-14 21:59 - 2018-11-01 07:28 - 000076088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2018-11-14 21:59 - 2018-11-01 07:27 - 000491200 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2018-11-14 21:59 - 2018-11-01 07:26 - 001363536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2018-11-14 21:59 - 2018-11-01 07:25 - 002822456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2018-11-14 21:59 - 2018-11-01 07:25 - 002571320 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2018-11-14 21:59 - 2018-11-01 07:25 - 001934808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2018-11-14 21:59 - 2018-11-01 07:25 - 001456728 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2018-11-14 21:59 - 2018-11-01 07:25 - 001257880 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2018-11-14 21:59 - 2018-11-01 07:25 - 001209888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2018-11-14 21:59 - 2018-11-01 07:25 - 001190248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2018-11-14 21:59 - 2018-11-01 07:25 - 001140672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2018-11-14 21:59 - 2018-11-01 07:25 - 000982592 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2018-11-14 21:59 - 2018-11-01 07:25 - 000885968 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2018-11-14 21:59 - 2018-11-01 07:25 - 000793080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2018-11-14 21:59 - 2018-11-01 07:25 - 000713472 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2018-11-14 21:59 - 2018-11-01 07:25 - 000594224 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2018-11-14 21:59 - 2018-11-01 07:25 - 000463672 _____ (Microsoft Corporation) C:\WINDOWS\system32\coml2.dll
2018-11-14 21:59 - 2018-11-01 07:25 - 000413720 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2018-11-14 21:59 - 2018-11-01 07:25 - 000412984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2018-11-14 21:59 - 2018-11-01 07:25 - 000375824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys
2018-11-14 21:59 - 2018-11-01 07:25 - 000268088 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2018-11-14 21:59 - 2018-11-01 07:25 - 000261000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2018-11-14 21:59 - 2018-11-01 07:03 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmtask.exe
2018-11-14 21:59 - 2018-11-01 07:02 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmapi.dll
2018-11-14 21:59 - 2018-11-01 07:02 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
2018-11-14 21:59 - 2018-11-01 07:00 - 000433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2018-11-14 21:59 - 2018-11-01 07:00 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2018-11-14 21:59 - 2018-11-01 06:59 - 000322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2018-11-14 21:59 - 2018-11-01 06:59 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2018-11-14 21:59 - 2018-11-01 06:59 - 000192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
2018-11-14 21:59 - 2018-11-01 06:59 - 000176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WPTaskScheduler.dll
2018-11-14 21:59 - 2018-11-01 06:59 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dab.dll
2018-11-14 21:59 - 2018-11-01 06:58 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2018-11-14 21:59 - 2018-11-01 06:58 - 000273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2018-11-14 21:59 - 2018-11-01 06:58 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2018-11-14 21:59 - 2018-11-01 06:58 - 000149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2018-11-14 21:59 - 2018-11-01 06:57 - 003381248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll
2018-11-14 21:59 - 2018-11-01 06:57 - 002825728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2018-11-14 21:59 - 2018-11-01 06:57 - 002364928 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2018-11-14 21:59 - 2018-11-01 06:57 - 001804288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2018-11-14 21:59 - 2018-11-01 06:57 - 001708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSPhotography.dll
2018-11-14 21:59 - 2018-11-01 06:57 - 000898560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2018-11-14 21:59 - 2018-11-01 06:57 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2018-11-14 21:59 - 2018-11-01 06:57 - 000835584 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2018-11-14 21:59 - 2018-11-01 06:57 - 000808448 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2018-11-14 21:59 - 2018-11-01 06:57 - 000726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2018-11-14 21:59 - 2018-11-01 06:57 - 000356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll
2018-11-14 21:59 - 2018-11-01 06:57 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2018-11-14 21:59 - 2018-11-01 06:57 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2018-11-14 21:59 - 2018-11-01 06:56 - 002929664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2018-11-14 21:59 - 2018-11-01 06:56 - 002172928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2018-11-14 21:59 - 2018-11-01 06:56 - 001768448 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2018-11-14 21:59 - 2018-11-01 06:56 - 001395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2018-11-14 21:59 - 2018-11-01 06:56 - 000506880 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2018-11-14 21:59 - 2018-11-01 06:55 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2018-11-14 21:59 - 2018-11-01 06:55 - 000684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2018-11-14 21:59 - 2018-11-01 06:54 - 001679360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2018-11-14 21:59 - 2018-11-01 06:54 - 001551360 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2018-11-14 21:59 - 2018-11-01 06:54 - 001264640 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2018-11-14 21:59 - 2018-11-01 06:54 - 001225216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2018-11-14 21:59 - 2018-11-01 06:54 - 001023488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2018-11-14 21:59 - 2018-11-01 06:54 - 000943616 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2018-11-14 21:59 - 2018-11-01 06:54 - 000916480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2018-11-14 21:59 - 2018-11-01 06:54 - 000895488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2018-11-14 21:59 - 2018-11-01 06:54 - 000884736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2018-11-14 21:59 - 2018-11-01 06:54 - 000796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2018-11-14 21:59 - 2018-11-01 06:54 - 000606208 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2018-11-14 21:59 - 2018-11-01 06:53 - 001373696 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2018-11-14 21:59 - 2018-11-01 06:53 - 001159680 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2018-11-14 21:59 - 2018-11-01 06:53 - 000889344 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2018-11-14 21:59 - 2018-11-01 06:53 - 000542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2018-11-14 21:59 - 2018-11-01 06:53 - 000406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2018-11-14 21:59 - 2018-11-01 05:39 - 000001310 _____ C:\WINDOWS\system32\tcbres.wim
2018-11-14 21:59 - 2018-11-01 05:08 - 002417952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2018-11-14 21:59 - 2018-11-01 04:50 - 000786288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2018-11-14 21:59 - 2018-11-01 04:48 - 001805656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2018-11-14 21:59 - 2018-11-01 04:48 - 001011872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2018-11-14 21:59 - 2018-11-01 04:48 - 000880248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2018-11-14 21:59 - 2018-11-01 04:48 - 000384520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coml2.dll
2018-11-14 21:59 - 2018-11-01 04:47 - 001980776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2018-11-14 21:59 - 2018-11-01 04:47 - 001020064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2018-11-14 21:59 - 2018-11-01 04:47 - 000581600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll
2018-11-14 21:59 - 2018-11-01 04:47 - 000567256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2018-11-14 21:59 - 2018-11-01 04:47 - 000129304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2018-11-14 21:59 - 2018-11-01 04:34 - 002700288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2018-11-14 21:59 - 2018-11-01 04:33 - 003711488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2018-11-14 21:59 - 2018-11-01 04:32 - 006647296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2018-11-14 21:59 - 2018-11-01 04:31 - 005307904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2018-11-14 21:59 - 2018-11-01 04:31 - 000288768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2018-11-14 21:59 - 2018-11-01 04:30 - 002449408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll
2018-11-14 21:59 - 2018-11-01 04:30 - 001361408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSPhotography.dll
2018-11-14 21:59 - 2018-11-01 04:30 - 000561152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2018-11-14 21:59 - 2018-11-01 04:30 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2018-11-14 21:59 - 2018-11-01 04:30 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2018-11-14 21:59 - 2018-11-01 04:29 - 002258944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2018-11-14 21:59 - 2018-11-01 04:29 - 001986560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll
2018-11-14 21:59 - 2018-11-01 04:29 - 001862656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2018-11-14 21:59 - 2018-11-01 04:29 - 000848384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2018-11-14 21:59 - 2018-11-01 04:29 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2018-11-14 21:59 - 2018-11-01 04:29 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2018-11-14 21:59 - 2018-11-01 04:29 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll
2018-11-14 21:59 - 2018-11-01 04:28 - 001348096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
2018-11-14 21:59 - 2018-11-01 04:28 - 001000448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2018-11-14 21:59 - 2018-11-01 04:28 - 000978944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2018-11-14 21:59 - 2018-11-01 04:27 - 001627648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2018-11-14 21:59 - 2018-11-01 04:27 - 000856576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2018-11-14 21:59 - 2018-11-01 04:27 - 000713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll
2018-11-14 21:59 - 2018-11-01 04:27 - 000678400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2018-11-14 21:59 - 2018-11-01 04:27 - 000534016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2018-11-14 21:59 - 2018-11-01 04:26 - 000795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2018-11-14 21:59 - 2018-11-01 04:26 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2018-11-14 21:59 - 2018-11-01 04:26 - 000345088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2018-11-14 21:59 - 2018-10-21 13:00 - 001639560 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2018-11-14 21:59 - 2018-10-21 13:00 - 001516120 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2018-11-14 21:59 - 2018-10-21 13:00 - 000790416 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2018-11-14 21:59 - 2018-10-21 13:00 - 000396304 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2018-11-14 21:59 - 2018-10-21 12:59 - 000766480 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2018-11-14 21:59 - 2018-10-21 12:59 - 000236728 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2018-11-14 21:59 - 2018-10-21 12:45 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2018-11-14 21:59 - 2018-10-21 12:44 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2018-11-14 21:59 - 2018-10-21 12:44 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\INETRES.dll
2018-11-14 21:59 - 2018-10-21 12:43 - 000345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2018-11-14 21:59 - 2018-10-21 12:43 - 000276992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wisp.dll
2018-11-14 21:59 - 2018-10-21 12:43 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2018-11-14 21:59 - 2018-10-21 12:42 - 001127936 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2018-11-14 21:59 - 2018-10-21 12:42 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2018-11-14 21:59 - 2018-10-21 12:42 - 000592896 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguagesCpl.dll
2018-11-14 21:59 - 2018-10-21 12:42 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2018-11-14 21:59 - 2018-10-21 12:41 - 001180672 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2018-11-14 21:59 - 2018-10-21 11:38 - 001322376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2018-11-14 21:59 - 2018-10-21 11:38 - 000662312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2018-11-14 21:59 - 2018-10-21 11:38 - 000660480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2018-11-14 21:59 - 2018-10-21 11:38 - 000221216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeManagerObj.dll
2018-11-14 21:59 - 2018-10-21 11:37 - 001626656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2018-11-14 21:59 - 2018-10-21 11:28 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\INETRES.dll
2018-11-14 21:59 - 2018-10-21 11:23 - 000622080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2018-11-14 21:59 - 2018-10-21 11:23 - 000523264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguagesCpl.dll
2018-11-14 21:59 - 2018-10-21 11:22 - 002405888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2018-11-14 21:59 - 2018-10-21 11:22 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wisp.dll
2018-11-14 21:59 - 2018-10-21 09:29 - 001008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MixedRealityCapture.dll
2018-11-14 21:59 - 2018-10-21 08:44 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MixedRealityCapture.dll
2018-11-14 21:59 - 2018-10-21 07:47 - 000368440 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2018-11-14 21:59 - 2018-10-21 07:46 - 000717112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2018-11-14 21:59 - 2018-10-21 07:46 - 000709936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2018-11-14 21:59 - 2018-10-21 07:46 - 000611640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2018-11-14 21:59 - 2018-10-21 07:46 - 000560136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2018-11-14 21:59 - 2018-10-21 07:46 - 000497864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2018-11-14 21:59 - 2018-10-21 07:46 - 000171024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2018-11-14 21:59 - 2018-10-21 07:45 - 002719032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2018-11-14 21:59 - 2018-10-21 07:45 - 001946208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2018-11-14 21:59 - 2018-10-21 07:45 - 001098064 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2018-11-14 21:59 - 2018-10-21 07:45 - 000607136 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2018-11-14 21:59 - 2018-10-21 07:45 - 000185120 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2018-11-14 21:59 - 2018-10-21 07:45 - 000175624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2018-11-14 21:59 - 2018-10-21 07:45 - 000139792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2018-11-14 21:59 - 2018-10-21 07:45 - 000058088 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2018-11-14 21:59 - 2018-10-21 07:21 - 001589248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2018-11-14 21:59 - 2018-10-21 07:21 - 000123424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2018-11-14 21:59 - 2018-10-21 07:20 - 000424000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2018-11-14 21:59 - 2018-10-21 07:20 - 000295224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2018-11-14 21:59 - 2018-10-21 07:20 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\spacebridge.dll
2018-11-14 21:59 - 2018-10-21 07:20 - 000141312 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2018-11-14 21:59 - 2018-10-21 07:20 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcimage.dll
2018-11-14 21:59 - 2018-10-21 07:19 - 002487088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2018-11-14 21:59 - 2018-10-21 07:19 - 001620776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2018-11-14 21:59 - 2018-10-21 07:19 - 001130768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2018-11-14 21:59 - 2018-10-21 07:19 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2018-11-14 21:59 - 2018-10-21 07:19 - 000505616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2018-11-14 21:59 - 2018-10-21 07:19 - 000463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2018-11-14 21:59 - 2018-10-21 07:19 - 000409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2018-11-14 21:59 - 2018-10-21 07:19 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2018-11-14 21:59 - 2018-10-21 07:19 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Diagnostics.dll
2018-11-14 21:59 - 2018-10-21 07:19 - 000137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2018-11-14 21:59 - 2018-10-21 07:19 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys
2018-11-14 21:59 - 2018-10-21 07:19 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ofdeploy.exe
2018-11-14 21:59 - 2018-10-21 07:19 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthAvrcpAppSvc.dll
2018-11-14 21:59 - 2018-10-21 07:19 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhf.sys
2018-11-14 21:59 - 2018-10-21 07:19 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2018-11-14 21:59 - 2018-10-21 07:18 - 000761344 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2018-11-14 21:59 - 2018-10-21 07:18 - 000461824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Activities.dll
2018-11-14 21:59 - 2018-10-21 07:18 - 000395264 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthAvctpSvc.dll
2018-11-14 21:59 - 2018-10-21 07:18 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\scecli.dll
2018-11-14 21:59 - 2018-10-21 07:18 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2018-11-14 21:59 - 2018-10-21 07:18 - 000130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\officecsp.dll
2018-11-14 21:59 - 2018-10-21 07:18 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll
2018-11-14 21:59 - 2018-10-21 07:17 - 001668096 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdprt.dll
2018-11-14 21:59 - 2018-10-21 07:17 - 000787456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2018-11-14 21:59 - 2018-10-21 07:17 - 000625152 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2018-11-14 21:59 - 2018-10-21 07:17 - 000473600 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2018-11-14 21:59 - 2018-10-21 07:17 - 000311296 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthAvrcp.dll
2018-11-14 21:59 - 2018-10-21 07:17 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2018-11-14 21:59 - 2018-10-21 07:16 - 002584576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2018-11-14 21:59 - 2018-10-21 07:16 - 002368512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2018-11-14 21:59 - 2018-10-21 07:16 - 001535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2018-11-14 21:59 - 2018-10-21 07:16 - 000847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2018-11-14 21:59 - 2018-10-21 07:16 - 000514048 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2018-11-14 21:59 - 2018-10-21 07:16 - 000323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2018-11-14 21:59 - 2018-10-21 07:15 - 003212800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2018-11-14 21:59 - 2018-10-21 07:15 - 002904064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2018-11-14 21:59 - 2018-10-21 07:15 - 000743936 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintRenderAPIHost.DLL
2018-11-14 21:59 - 2018-10-21 07:15 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2018-11-14 21:59 - 2018-10-21 07:14 - 002224640 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2018-11-14 21:59 - 2018-10-21 07:14 - 001919488 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2018-11-14 21:59 - 2018-10-21 07:14 - 001854976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2018-11-14 21:59 - 2018-10-21 07:14 - 001097216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2018-11-14 21:59 - 2018-10-21 07:14 - 001034752 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2018-11-14 21:59 - 2018-10-21 07:14 - 000932352 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2018-11-14 21:59 - 2018-10-21 07:14 - 000632320 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2018-11-14 21:59 - 2018-10-21 07:14 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2018-11-14 21:59 - 2018-10-21 07:14 - 000311296 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2018-11-14 21:59 - 2018-10-21 07:02 - 002966528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2018-11-14 21:59 - 2018-10-21 07:02 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spacebridge.dll
2018-11-14 21:59 - 2018-10-21 07:01 - 001189376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2018-11-14 21:59 - 2018-10-21 07:01 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Diagnostics.dll
2018-11-14 21:59 - 2018-10-21 07:00 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scecli.dll
2018-11-14 21:59 - 2018-10-21 06:59 - 000602112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2018-11-14 21:59 - 2018-10-21 06:58 - 001124352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdprt.dll
2018-11-14 21:59 - 2018-10-21 06:58 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2018-11-14 21:59 - 2018-10-21 06:58 - 000230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2018-11-14 21:59 - 2018-10-21 06:57 - 002611200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2018-11-14 21:59 - 2018-10-21 05:59 - 000806320 _____ C:\WINDOWS\SysWOW64\locale.nls
2018-11-14 21:59 - 2018-10-21 05:59 - 000806320 _____ C:\WINDOWS\system32\locale.nls
2018-11-14 21:59 - 2018-04-28 04:02 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2018-11-12 20:41 - 2018-11-12 20:41 - 000197748 _____ C:\Users\dan31\OneDrive\Documents\ID Verification Form.pdf
2018-11-11 18:43 - 2018-11-14 21:28 - 000000000 ____D C:\Users\dan31\AppData\Local\ESET
2018-11-11 18:43 - 2018-11-11 18:43 - 006981240 _____ (ESET spol. s r.o.) C:\Users\dan31\Downloads\esetonlinescanner_enu.exe
2018-11-09 23:38 - 2018-11-09 23:44 - 854935321 _____ C:\Users\dan31\Downloads\medical_examination_2.zip
2018-11-09 22:55 - 2018-11-14 22:35 - 000003424 _____ C:\WINDOWS\System32\Tasks\BraveSoftwareUpdateTaskMachineUA
2018-11-09 22:55 - 2018-11-14 22:35 - 000003200 _____ C:\WINDOWS\System32\Tasks\BraveSoftwareUpdateTaskMachineCore
2018-11-09 22:55 - 2018-11-09 22:55 - 000002488 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2018-11-09 22:55 - 2018-11-09 22:55 - 000002447 _____ C:\Users\Public\Desktop\Brave.lnk
2018-11-09 22:55 - 2018-11-09 22:55 - 000000000 ____D C:\Program Files (x86)\BraveSoftware
2018-11-09 22:54 - 2018-11-09 22:55 - 000000000 ____D C:\Users\dan31\AppData\Local\BraveSoftware
2018-11-09 22:54 - 2018-11-09 22:54 - 001138904 _____ (BraveSoftware Inc.) C:\Users\dan31\Downloads\BraveBrowserSetup (1).exe
2018-11-09 19:55 - 2018-11-09 19:55 - 001138904 _____ (BraveSoftware Inc.) C:\Users\dan31\Downloads\BraveBrowserSetup.exe
2018-11-05 22:49 - 2018-11-05 22:49 - 000581047 _____ C:\Users\dan31\Downloads\Daniel Browning Final.pdf
2018-10-24 19:56 - 2018-10-24 19:56 - 000000000 ____D C:\Users\dan31\AppData\Local\mbam
2018-10-24 19:24 - 2018-11-09 19:56 - 000152688 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2018-10-24 19:24 - 2018-10-24 19:24 - 000001914 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2018-10-24 19:24 - 2018-10-24 19:24 - 000000000 ____D C:\Users\dan31\AppData\Local\mbamtray
2018-10-24 19:24 - 2018-10-24 19:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2018-10-20 16:34 - 2018-10-20 16:34 - 000036400 _____ (Dell Inc.) C:\WINDOWS\system32\Drivers\dddriver64Dcsa.sys
2018-10-18 00:12 - 2018-11-12 21:55 - 000003176 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-18 00:12 - 2018-11-12 21:55 - 000002914 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-18 00:12 - 2018-10-18 00:12 - 000001483 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2018-10-18 00:12 - 2018-10-18 00:12 - 000000000 ____D C:\Users\dan31\ansel
2018-10-18 00:12 - 2018-10-18 00:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2018-10-18 00:12 - 2018-03-14 13:01 - 002480520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2018-10-18 00:12 - 2018-03-14 13:01 - 002137488 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2018-10-18 00:12 - 2018-03-14 13:01 - 001310608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll
2018-10-18 00:11 - 2018-11-12 21:55 - 000003398 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-18 00:11 - 2018-11-12 21:55 - 000003140 _____ C:\WINDOWS\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-18 00:11 - 2018-11-12 21:55 - 000002984 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-18 00:11 - 2018-11-12 21:55 - 000002956 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-18 00:11 - 2018-11-12 21:55 - 000002838 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-18 00:11 - 2018-11-12 21:55 - 000002744 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-18 00:11 - 2018-03-14 12:44 - 000001951 _____ C:\WINDOWS\NvTelemetryContainerRecovery.bat
2018-10-18 00:10 - 2018-03-14 13:01 - 000059272 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys
2018-10-18 00:10 - 2017-12-15 02:03 - 000059240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys
2018-10-17 23:43 - 2018-10-17 23:43 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2018-10-17 17:26 - 2018-11-08 21:51 - 000000000 ____D C:\Users\dan31\AppData\Roaming\.technic
2018-10-17 17:04 - 2018-10-17 17:04 - 001297735 _____ C:\Users\dan31\Downloads\modpack.jar
2018-10-17 16:46 - 2018-11-08 21:51 - 004769176 _____ () C:\Users\dan31\Downloads\TechnicLauncher.exe
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2018-11-16 22:42 - 2018-06-20 11:13 - 000000000 ____D C:\Users\dan31\OneDrive\Documents\MacroToolworksFiles
2018-11-16 22:38 - 2016-11-07 16:48 - 000000000 ____D C:\Users\dan31\AppData\Local\CrashDumps
2018-11-16 22:37 - 2018-04-11 23:38 - 000000000 ____D C:\WINDOWS\AppReadiness
2018-11-16 22:37 - 2017-08-15 22:11 - 000000000 ____D C:\ProgramData\NVIDIA
2018-11-16 22:37 - 2016-11-07 15:46 - 000000000 __SHD C:\Users\dan31\IntelGraphicsProfiles
2018-11-16 20:34 - 2018-04-11 23:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2018-11-16 19:53 - 2018-09-16 22:10 - 000003372 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-50118766-877759180-1359360943-1001
2018-11-16 19:53 - 2018-06-13 21:41 - 000002361 _____ C:\Users\dan31\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2018-11-16 19:53 - 2016-11-07 15:52 - 000000000 ___RD C:\Users\dan31\OneDrive
2018-11-16 19:47 - 2018-04-11 23:38 - 000000000 ___HD C:\Program Files\WindowsApps
2018-11-16 19:46 - 2016-04-25 20:00 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2018-11-16 19:35 - 2018-06-13 22:08 - 000004162 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{836EAE97-C031-448F-B8B6-44DD43AE308F}
2018-11-16 19:28 - 2018-06-13 21:51 - 000840376 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2018-11-16 19:28 - 2018-04-11 23:36 - 000000000 ____D C:\WINDOWS\INF
2018-11-16 19:24 - 2016-04-25 20:52 - 000000000 __RHD C:\Users\Public\AccountPictures
2018-11-16 19:23 - 2017-11-20 21:44 - 000000000 ___RD C:\Users\dan31\3D Objects
2018-11-16 19:21 - 2018-10-16 22:28 - 000401568 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2018-11-16 19:21 - 2018-06-13 22:08 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2018-11-14 22:51 - 2018-04-11 21:04 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2018-11-14 22:50 - 2018-06-13 21:41 - 000000000 ____D C:\Users\dan31
2018-11-14 22:50 - 2018-04-11 23:38 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2018-11-14 22:50 - 2018-04-11 23:38 - 000000000 ___SD C:\WINDOWS\system32\F12
2018-11-14 22:50 - 2018-04-11 23:38 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2018-11-14 22:50 - 2018-04-11 23:38 - 000000000 ____D C:\WINDOWS\TextInput
2018-11-14 22:50 - 2018-04-11 23:38 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2018-11-14 22:50 - 2018-04-11 23:38 - 000000000 ____D C:\WINDOWS\ShellExperiences
2018-11-14 22:50 - 2018-04-11 23:38 - 000000000 ____D C:\WINDOWS\bcastdvr
2018-11-14 22:23 - 2018-04-11 23:30 - 000000000 ____D C:\WINDOWS\CbsTemp
2018-11-14 22:22 - 2016-11-13 13:40 - 000000000 ____D C:\WINDOWS\system32\MRT
2018-11-14 22:13 - 2018-03-10 16:13 - 000000000 ____D C:\Users\dan31\OneDrive\Documents\Physician Associate
2018-11-14 22:11 - 2016-11-13 13:40 - 137810048 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2018-11-14 21:54 - 2016-11-07 15:52 - 000002303 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-11-14 21:54 - 2016-11-07 15:52 - 000002262 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-11-14 21:29 - 2018-08-09 15:31 - 000000000 ____D C:\Program Files (x86)\Hi-Rez Studios
2018-11-14 21:28 - 2018-06-13 21:32 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2018-11-12 21:55 - 2018-07-09 21:26 - 000002246 _____ C:\WINDOWS\System32\Tasks\SmartByte Telemetry
2018-11-12 21:55 - 2018-06-13 22:08 - 000003346 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2018-11-12 21:55 - 2018-06-13 22:08 - 000003302 _____ C:\WINDOWS\System32\Tasks\Dell SupportAssistAgent AutoUpdate
2018-11-12 21:55 - 2018-06-13 22:08 - 000003122 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2018-11-12 21:55 - 2018-06-13 22:08 - 000003042 _____ C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2018-11-12 21:55 - 2018-06-13 22:08 - 000003040 _____ C:\WINDOWS\System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec
2018-11-12 21:55 - 2018-06-13 22:08 - 000002674 _____ C:\WINDOWS\System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec-Logon
2018-11-12 21:55 - 2018-06-13 22:08 - 000002318 _____ C:\WINDOWS\System32\Tasks\DropboxOEM
2018-11-12 21:55 - 2018-06-13 22:08 - 000002304 _____ C:\WINDOWS\System32\Tasks\RtHDVBg_PushButton
2018-11-12 21:54 - 2018-06-13 22:08 - 000000000 ____D C:\WINDOWS\System32\Tasks\AVAST Software
2018-11-12 20:58 - 2016-11-07 15:52 - 000000000 ____D C:\Program Files (x86)\Steam
2018-11-11 22:32 - 2018-07-28 10:43 - 000000000 ____D C:\Program Files (x86)\Avast Driver Updater
2018-11-10 15:20 - 2018-07-28 10:43 - 000025608 _____ (SlimWare Utilities, Inc.) C:\WINDOWS\system32\Drivers\SWDUMon.sys
2018-11-08 21:44 - 2016-08-29 16:02 - 000000000 ____D C:\ProgramData\PCDr
2018-11-08 21:42 - 2016-08-29 16:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2018-11-08 21:38 - 2017-06-28 16:12 - 000000000 ____D C:\ProgramData\SupportAssist
2018-11-08 21:33 - 2018-06-13 22:08 - 000004264 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update
2018-11-05 17:34 - 2018-08-16 13:44 - 000835168 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2018-11-05 17:34 - 2018-08-16 13:44 - 000179808 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2018-11-04 22:03 - 2017-11-08 10:20 - 000000000 ____D C:\Users\dan31\AppData\Local\Packages
2018-10-27 13:57 - 2018-05-15 22:33 - 000002500 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk
2018-10-27 13:57 - 2018-05-15 22:33 - 000002465 _____ C:\Users\Public\Desktop\Avast Secure Browser.lnk
2018-10-24 20:05 - 2016-11-13 14:31 - 000000904 _____ C:\Users\dan31\Desktop\nativelog.txt
2018-10-24 20:04 - 2016-11-10 18:03 - 000000000 ____D C:\Users\dan31\AppData\Roaming\.minecraft
2018-10-24 20:04 - 2016-11-10 18:03 - 000000000 ____D C:\Program Files (x86)\Minecraft
2018-10-20 18:26 - 2016-08-29 16:27 - 000000934 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job
2018-10-20 18:26 - 2016-08-29 16:27 - 000000930 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job
2018-10-18 22:20 - 2016-11-07 15:46 - 000000000 ____D C:\Users\dan31\AppData\Local\NVIDIA Corporation
2018-10-18 00:14 - 2016-11-07 15:46 - 000000000 ____D C:\Users\dan31\AppData\Local\NVIDIA
2018-10-18 00:12 - 2017-08-15 22:11 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2018-10-18 00:12 - 2017-08-15 22:11 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2018-10-18 00:12 - 2016-08-29 16:08 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2018-10-17 23:45 - 2017-08-15 22:10 - 000000000 ____D C:\Program Files (x86)\VulkanRT
 
==================== Files in the root of some directories =======
 
2018-04-16 16:13 - 2018-04-16 16:13 - 000000045 _____ () C:\Users\dan31\AppData\Roaming\WB.CFG
2018-07-08 20:30 - 2018-07-08 20:30 - 000007605 _____ () C:\Users\dan31\AppData\Local\Resmon.ResmonCfg
 
Files to move or delete:
====================
C:\Windows\Tasks\{5BDEAF25-8DB1-B43D-27E7-2E0CA8139B12}.job
 
 
==================== Bamital & volsnap ======================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
 
LastRegBack: 2018-06-13 21:32
 
==================== End of FRST.txt ============================
 
 
 
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15.11.2018
Ran by dan31 (16-11-2018 22:43:21)
Running from C:\Users\dan31\Downloads
Windows 10 Home Version 1803 17134.407 (X64) (2018-06-13 22:11:04)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-50118766-877759180-1359360943-500 - Administrator - Disabled)
dan31 (S-1-5-21-50118766-877759180-1359360943-1001 - Administrator - Enabled) => C:\Users\dan31
DefaultAccount (S-1-5-21-50118766-877759180-1359360943-503 - Limited - Disabled)
Guest (S-1-5-21-50118766-877759180-1359360943-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-50118766-877759180-1359360943-504 - Limited - Disabled)
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
FW: Avast Antivirus (Enabled) {B693136B-F6EE-DD1C-A0EF-229B8B0B29C4}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
Adobe Shockwave Player 12.2 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.2.7.197 - Adobe Systems, Inc.)
Auto Clicker v12.1 (HKLM-x32\...\{C0A7E4F3-82CC-416B-82C6-BA06AACFD635}_is1) (Version: 12.1 - MurGee.com)
Auto Mouse Click v75.1 (HKLM-x32\...\{F5E3859D-0720-41F0-BAF5-4CBCDFD8F406}_is1) (Version: 75.1 - MurGee.com)
AutoHotkey 1.1.24.02 (HKLM\...\AutoHotkey) (Version: 1.1.24.02 - Lexikos)
Avast Cleanup Premium (HKLM-x32\...\{075CC190-59EE-499F-828B-0B5C098C8C15}_is1) (Version: 18.2.5964 - AVAST Software)
Avast Driver Updater (HKLM-x32\...\{984D8789-07A6-4CD8-9766-35408C67395D}) (Version: 2.4.0 - AVAST Software) Hidden
Avast Driver Updater (HKLM-x32\...\Avast Driver Updater) (Version: 2.4.0 - AVAST Software)
Avast Internet Security (HKLM-x32\...\Avast Antivirus) (Version: 18.7.2354 - AVAST Software)
Avast Secure Browser (HKLM-x32\...\Avast Secure Browser) (Version: 69.1.867.100 - AVAST Software)
Avast Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.4.136.333 - AVAST Software) Hidden
BitLord 2.5 (HKLM-x32\...\BitLord) (Version: 2.4.5-323 - House of Life)
BitRaider Streaming Client (HKLM-x32\...\BitRaider Streaming Client) (Version: 1.3.3.4098 - BitRaider, LLC)
Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 70.0.56.12 - Brave Software Inc)
CryptoPrevent (HKLM-x32\...\{5C5B24E7-4694-4049-A222-CCE7D3FAC63F}_is1) (Version: 8.0.3.2 - Foolish IT LLC)
Dell Customer Connect (HKLM-x32\...\{4FA72FF9-DD64-43A8-8704-6380A11F11D5}) (Version: 1.4.15.0 - Dell Inc.)
Dell Digital Delivery (HKLM-x32\...\{AB7F2792-2ED1-4C5C-9F28-680E5110BF72}) (Version: 3.1.1018.0 - Dell Products, LP)
Dell Foundation Services (HKLM\...\{BDB50421-E961-42F3-B803-6DAC6F173834}) (Version: 3.4.16100.0 - Dell Inc.)
Dell Help & Support (HKLM\...\{457EFE69-8F49-43E0-80F9-1DEF4F7690C2}) (Version: 2.5.23.0 - Dell Inc.) Hidden
Dell Help & Support (HKLM-x32\...\InstallShield_{457EFE69-8F49-43E0-80F9-1DEF4F7690C2}) (Version: 2.5.23.0 - Dell Inc.)
Dell Product Registration (HKLM-x32\...\InstallShield_{48114909-3C3B-43E6-BF98-AE9C396500A3}) (Version: 3.0.127.0 - Dell Inc.)
Dell SupportAssist (HKLM\...\{5A18ABE3-52D1-4CA5-9169-25EC7E789582}) (Version: 3.0.2.48 - Dell Inc.)
Dell Update (HKLM-x32\...\{632610E3-5B12-403C-9C93-EF533ED1C113}) (Version: 1.10.5.0 - Dell Inc.)
Dropbox (HKLM-x32\...\Dropbox) (Version: 59.4.93 - Dropbox, Inc.)
Dropbox 20 GB (HKLM-x32\...\{84D8451D-2ED6-3A59-ABA5-2A447F7C6310}) (Version: 4.1.2.0 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.141.1 - Dropbox, Inc.) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 70.0.3538.102 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden
Grammarly (HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\GrammarlyForWindows) (Version: 1.5.26 - Grammarly)
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
Intel® Chipset Device Software (HKLM-x32\...\{60c073df-e736-4210-9c3a-5fc2b651cef3}) (Version: 10.1.1.7 - Intel® Corporation) Hidden
Intel® Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.2.10900.330 - Intel Corporation)
Intel® Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1173 - Intel Corporation)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 21.20.16.4590 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.8.1.1043 - Intel Corporation)
Intel® Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1519.7 - Intel Corporation)
Intel® WiDi (HKLM\...\{5DD8D7E4-87F1-4134-AD28-4228FB1A03BA}) (Version: 6.0.44.0 - Intel Corporation)
Intel® WiDi Software Asset Manager (HKLM-x32\...\{86905E62-645F-482E-A417-82C812ABD787}) (Version: 1.1.383 - Intel Corporation) Hidden
Intel® Wireless Bluetooth® (HKLM-x32\...\{9A287643-10C5-4463-B9D1-B2404CE18CCF}) (Version: 17.1.1529.1620 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{8c595286-0f9e-42de-a0d4-969aba282637}) (Version: 20.50.0 - Intel Corporation)
Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation)
Java 8 Update 111 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180111F0}) (Version: 8.0.1110.14 - Oracle Corporation)
Java 8 Update 112 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180112F0}) (Version: 8.0.1120.15 - Oracle Corporation)
Macro Recorder 5.8.0 (HKLM-x32\...\Macro Recorder_is1) (Version: 5.8.0 - Jitbit Software)
MacroToolworks Free version 8.5.0 (HKLM-x32\...\MacroToolworks Free_is1) (Version: 8.5.0 - )
Malwarebytes version 3.6.1.2711 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.6.1.2711 - Malwarebytes)
Maxx Audio Installer (x64) (HKLM\...\{307032B2-6AF2-46D7-B933-62438DEB2B9A}) (Version: 2.6.9060.3 - Waves Audio Ltd.) Hidden
McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.0.7.208 - McAfee, Inc.)
Microsoft Office 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.10827.20181 - Microsoft Corporation)
Microsoft Office 365 ProPlus - en-us (HKLM\...\O365ProPlusRetail - en-us) (Version: 16.0.10827.20181 - Microsoft Corporation)
Microsoft OneDrive (HKU\.DEFAULT\...\OneDriveSetup.exe) (Version: 17.3.6743.1212 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\OneDriveSetup.exe) (Version: 18.192.0920.0015 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 (HKLM-x32\...\{c239cea1-d49e-4e16-8e87-8c055765f7ec}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{756E195A-CB58-4B99-917F-0DDA0D881204}) (Version: 1.0.4.0 - Mojang)
Mouse Macro Recorder 2.6.0 (HKLM-x32\...\{E290CF70-C9EA-4C9E-8B41-20E5FFDF2E64}_is1) (Version:  - Mouse Macro Recorder Ltd.)
MouseRecorder v1.0.51 (HKLM-x32\...\MouseRecorder_is1) (Version: 1.0.51 - Bartels Media GmbH)
NVIDIA GeForce Experience 3.13.1.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.13.1.30 - NVIDIA Corporation)
NVIDIA Graphics Driver 391.25 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 391.25 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.10827.20181 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.10827.20181 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.10827.20181 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0409-0000-0000000FF1CE}) (Version: 16.0.10827.20181 - Microsoft Corporation) Hidden
OldSchool RuneScape Launcher 1.2.7 (HKLM-x32\...\{FEDDCE73-34B8-4980-90B8-8619A78C902C}) (Version: 1.2.7 - Jagex Ltd)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Opera 12.00 (HKLM-x32\...\Opera 12.00.1467) (Version: 12.00.1467 - Opera Software ASA)
Opera Stable 52.0.2871.64 (HKLM-x32\...\Opera 52.0.2871.64) (Version: 52.0.2871.64 - Opera Software)
Origin (HKLM-x32\...\Origin) (Version: 10.5.17.52805 - Electronic Arts, Inc.)
Product Registration (HKLM\...\{48114909-3C3B-43E6-BF98-AE9C396500A3}) (Version: 3.0.127.0 - Dell Inc.) Hidden
Quickset64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 11.5.02 - Dell Inc.)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.21289 - Realtek Semiconduct Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8142 - Realtek Semiconductor Corp.)
ROBLOX Player for dan31 (HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\{373B1718-8CC5-4567-8EE2-9033AD08A680}) (Version:  - ROBLOX Corporation)
RuneScape Launcher 2.2.4 (HKLM\...\RuneScape Launcher_is1) (Version: 2.2.4 - Jagex Ltd)
Sid Meier's Civilization V (HKLM-x32\...\steam app 8930) (Version:  - 2K Games, Inc.)
SmartByte Drivers and Services (HKLM\...\{EC62F71A-6CFA-4918-9EBC-99BFF86DB3C9}) (Version: 1.2.600 - Rivet Networks)
Star Wars The Old Republic (HKLM-x32\...\swtor_swtor) (Version: 13.0.0.13 - Bioware/EA)
Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.42.30.1020 - Electronic Arts Inc.)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{C5FDDED7-DEC7-48B4-AFD8-DFB8A0FD199A}) (Version: 2.51.0.0 - Microsoft Corporation)
Vulkan Run Time Libraries 1.0.3.1 (HKLM\...\VulkanRT1.0.3.1) (Version: 1.0.3.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.3.1 (HKLM\...\VulkanRT1.0.3.1-2) (Version: 1.0.3.1 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.33.0 (HKLM\...\VulkanRT1.0.33.0) (Version: 1.0.33.0 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.33.0 (HKLM\...\VulkanRT1.0.33.0-2) (Version: 1.0.33.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1-2) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
WinRAR 5.60 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.60.0 - win.rar GmbH)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-50118766-877759180-1359360943-1001_Classes\CLSID\{DEE03C2B-0C0C-41A9-9877-FD4B4D7B6EA3}\InprocServer32 -> C:\Users\dan31\AppData\Local\Roblox\Versions\version-6a65e85da5fe4a75\RobloxProxy64.dll (ROBLOX Corporation)
ShellIconOverlayIdentifiers: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-10-11] (AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-10-11] (AVAST Software)
ShellIconOverlayIdentifiers-x32: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-10-11] (AVAST Software)
ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2018-06-24] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2018-06-24] (Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-10-11] (AVAST Software)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-09-19] (Malwarebytes)
ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll [2018-10-09] (Dropbox, Inc.)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\ki127176.inf_amd64_86c658cabfb17c9c\igfxDTCM.dll [2018-03-22] (Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2018-03-16] (NVIDIA Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-10-11] (AVAST Software)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-09-19] (Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2018-06-24] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2018-06-24] (Alexander Roshal)
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {179D4B04-01A4-468A-A890-74371DB77464} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-10-28] (Microsoft Corporation)
Task: {26D09D89-7EAD-47FE-8BE4-052CDDC75DA7} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [2018-05-15] (AVAST Software)
Task: {2BC66B09-D01D-4558-8D82-AE5160C5999F} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2018-03-14] (NVIDIA Corporation)
Task: {333A1249-2CF6-4EE2-8365-B13BBD929B6B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-10-28] (Microsoft Corporation)
Task: {39A3F141-813D-4326-AE53-FAD7E8E4A2C4} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistInstaller.exe [2018-10-25] (Dell Inc.)
Task: {3C37CA82-B788-451B-9C6B-7F701A207C9B} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2018-11-12] (AVAST Software)
Task: {3C695115-CC7A-48B7-A651-AE0759583F70} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel® Update Manager\bin\iumsvc.exe
Task: {3D64A047-0D9D-460A-A8DF-6FA7770DE49A} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-10-11] (AVAST Software)
Task: {434619FB-B8B4-4BB4-8CC5-62DD3B1D95EC} - System32\Tasks\DropboxOEM => C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [2016-11-30] (DropboxOEM)
Task: {4C75E912-1A5C-44A2-932C-120BD1696B32} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-03-14] (NVIDIA Corporation)
Task: {4EF7D2ED-5938-4946-B7F3-6C0AEBEB0783} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-11-07] (Dropbox, Inc.)
Task: {561E4F6F-C029-45B8-BB7C-305E2DD694C3} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-10-14] (Microsoft Corporation)
Task: {5CD97253-F67C-4200-B9B0-DEA447D10747} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2018-10-28] (Microsoft Corporation)
Task: {5F9DCF9A-3E33-4DDD-AD20-D954909FB0F1} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-03-14] (NVIDIA Corporation)
Task: {63F92250-525C-47A6-BF61-820377AFF440} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-10-14] (Microsoft Corporation)
Task: {65B85F6F-35B3-4459-A179-28255D5B7B25} - System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask => C:\WINDOWS\System32\WinBioPlugIns\FaceFodUninstaller.exe [2018-04-11] ()
Task: {888DF747-1F1B-46E5-B189-5E4F6B37C6F0} - System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec => C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel® Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [2015-06-24] (Intel Corporation)
Task: {91046CB9-C5D2-4451-8262-561DE6BB224B} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2018-03-14] (NVIDIA Corporation)
Task: {BAC72AB7-97ED-40D8-B060-E233A2B8980D} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-10-28] (Microsoft Corporation)
Task: {BF17303E-0BD2-432A-8D25-0A27EA020167} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe [2018-10-28] (Microsoft Corporation)
Task: {C186FBA0-A679-4ED1-8EC3-72DB044CD1E1} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-03-14] (NVIDIA Corporation)
Task: {C1A9916C-1596-40FD-9A00-A4A58F01AA9E} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {C2958C42-7F7A-4588-A1FC-CC441EE9D6C8} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {C6729E60-E8CB-4BC6-A865-F82F30A50A4F} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-11-07] (Dropbox, Inc.)
Task: {C83893D7-374B-42D9-A251-CFE5776FA4D9} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-03-14] (NVIDIA Corporation)
Task: {D4E76E50-A367-4096-92C3-58DFD5D718EB} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [2018-11-09] (BraveSoftware Inc.) <==== ATTENTION
Task: {D5299B30-487F-4FBE-B54A-62251E656A8A} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [2018-11-09] (BraveSoftware Inc.) <==== ATTENTION
Task: {DA7DA9E1-DFCB-46B8-B5EE-4241FD69C04E} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-10-28] (Microsoft Corporation)
Task: {DB452E8A-49CF-486F-AB99-E780B9417BA3} - System32\Tasks\Avast TUNEUP Update => C:\Program Files (x86)\AVAST Software\Avast Cleanup\TUNEUpdate.exe [2018-11-05] (AVAST Software)
Task: {DDE64289-9AFF-42BB-8BAE-A5BB122E730E} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [2015-06-05] (Intel Corporation)
Task: {E160940F-74CF-41C0-B776-D6B0360225EE} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-03-14] (NVIDIA Corporation)
Task: {E6AD0975-E211-4ACE-B42C-23FE4D0A6823} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2018-03-14] (NVIDIA Corporation)
Task: {E9AD453B-3319-45CA-A230-29260010973D} - System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec-Logon => C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel® Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [2015-06-24] (Intel Corporation)
Task: {ED40ACB8-5E54-455F-BF91-F47BE8F11780} - System32\Tasks\RtHDVBg_PushButton => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2017-05-04] (Realtek Semiconductor)
Task: {F58C7DF1-10F0-4E15-B89A-BCECED3D9372} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-11-07] (Google Inc.)
Task: {F67DAAEA-BC1B-4BCB-A5C9-871841AD26C8} - System32\Tasks\SmartByte Telemetry => C:\Program Files\Rivet Networks\SmartByte\SmartByteTelemetry.exe [2018-03-20] (DELL)
Task: {FADAF86B-5C6F-4E06-9555-A86698C4BB72} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [2018-05-15] (AVAST Software)
Task: {FD5870DB-F64F-4DEB-82F6-579CC5310891} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-11-07] (Google Inc.)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\RunDLC.job => cmd c sc start Dell Help SupportWORKGROUP DESKTOP 84H6AVC
Task: C:\WINDOWS\Tasks\{5BDEAF25-8DB1-B43D-27E7-2E0CA8139B12}.job => C:\PROGRA~2\COMMON~1\Neler\UpdTask.exe <==== ATTENTION
 
==================== Shortcuts & WMI ========================
 
(The entries could be listed to be restored or removed.)
 
 
Shortcut: C:\Users\dan31\AppData\Local\Microsoft\Windows\RoamingTiles\12192648070.lnk -> hxxp://www.southampton.ac.uk/healthsciencesnet/staffandstudents/timetables.htm
 
==================== Loaded Modules (Whitelisted) ==============
 
2018-10-18 00:11 - 2018-03-14 13:01 - 001268112 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2018-04-11 23:34 - 2018-04-11 23:34 - 000491744 _____ () C:\Windows\System32\InputHost.dll
2018-11-08 21:43 - 2018-11-08 21:43 - 002587976 _____ () C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1382\libprotobuf.dll
2018-04-11 23:34 - 2018-04-11 23:34 - 000472064 _____ () C:\Windows\ShellExperiences\TileControl.dll
2018-04-11 23:34 - 2018-04-11 23:34 - 002759168 _____ () C:\Windows\ShellComponents\TaskFlowUI.dll
2018-11-14 21:59 - 2018-11-01 06:55 - 002185216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2018-10-09 18:55 - 2018-10-09 18:55 - 004389888 _____ () C:\Program Files\WindowsApps\Microsoft.OneConnect_5.1809.2571.0_x64__8wekyb3d8bbwe\OneConnect.dll
2018-10-01 19:51 - 2018-10-01 19:51 - 002959872 _____ () C:\Program Files\WindowsApps\Microsoft.People_10.1808.2473.0_x64__8wekyb3d8bbwe\People.BackgroundTasks.dll
2018-10-01 19:51 - 2018-10-01 19:51 - 000119808 _____ () C:\Program Files\WindowsApps\Microsoft.People_10.1808.2473.0_x64__8wekyb3d8bbwe\PeopleUtilRT.dll
2018-10-01 19:51 - 2018-10-01 19:51 - 009026560 _____ () C:\Program Files\WindowsApps\Microsoft.People_10.1808.2473.0_x64__8wekyb3d8bbwe\Microsoft.People.NativeComponents.dll
2018-11-08 21:56 - 2018-11-08 21:57 - 000070144 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11810.1001.12.0_x64__8wekyb3d8bbwe\WinStoreTasksWrapper.dll
2018-11-08 21:56 - 2018-11-08 21:57 - 000194048 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11810.1001.12.0_x64__8wekyb3d8bbwe\WinStore.Preview.dll
2018-04-07 22:15 - 2018-04-07 22:15 - 004734464 _____ () C:\Program Files\WindowsApps\Microsoft.Wallet_2.2.18065.0_x64__8wekyb3d8bbwe\Microsoft.Wallet.dll
2018-10-24 19:33 - 2018-10-24 19:33 - 000009216 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.34.81.0_x64__kzf8qxf38zg5c\ImagePipelineNative.dll
2018-11-14 21:51 - 2018-11-14 21:51 - 000060416 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.34.81.0_x64__kzf8qxf38zg5c\ChakraBridge.dll
2018-11-14 21:51 - 2018-11-14 21:52 - 000183808 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.34.81.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
2018-11-14 21:54 - 2018-11-08 22:14 - 005020504 _____ () C:\Program Files (x86)\Google\Chrome\Application\70.0.3538.102\libglesv2.dll
2018-11-14 21:54 - 2018-11-08 22:14 - 000116056 _____ () C:\Program Files (x86)\Google\Chrome\Application\70.0.3538.102\libegl.dll
2018-10-11 19:44 - 2018-10-11 19:44 - 000598232 _____ () c:\program files\avast software\avast\streamback.dll
2016-12-21 10:24 - 2016-12-21 10:24 - 000134008 _____ () C:\Program Files (x86)\Dell Customer Connect\ServiceTagPlusPlus.dll
2015-06-23 23:26 - 2015-06-23 23:26 - 000155888 _____ () c:\Program Files (x86)\Dell Digital Delivery\ServiceTagPlusPlus.dll
2015-10-16 13:14 - 2015-10-16 13:14 - 001243936 _____ () C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\ACE.dll
2018-07-28 11:24 - 2016-09-12 14:53 - 048936448 _____ () C:\Program Files (x86)\AVAST Software\Avast Cleanup\libcef.dll
2018-04-02 15:29 - 2018-04-02 15:29 - 067126928 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2018-11-16 22:43 - 2018-04-15 01:01 - 000156922 _____ () C:\Users\dan31\AppData\Local\Temp\~nsuA.tmp\Au_.exe
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
 
==================== Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
IE trusted site: HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\webcompanion.com -> hxxp://webcompanion.com
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2015-10-30 07:24 - 2018-11-16 19:22 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-50118766-877759180-1359360943-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\dan31\AppData\Local\Microsoft\Windows\Themes\transcodedwallpaper
DNS Servers: 192.168.1.254
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
If an entry is included in the fixlist, it will be removed.
 
HKLM\...\StartupApproved\Run32: => "Dropbox"
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\StartupApproved\Run: => "EADM"
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\StartupApproved\Run: => "GoogleChromeAutoLaunch_34001F2131DECEAF85E80D446A5BD02C"
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\StartupApproved\Run: => "Chromium"
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [UDP Query User{3E0A62E7-E8D5-46B2-B4B8-20A96ED7750D}C:\program files (x86)\steam\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\realm royale\binaries\win64\realm.exe
FirewallRules: [TCP Query User{ECCE45C4-2B83-4E25-AA31-E2852D620768}C:\program files (x86)\steam\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\realm royale\binaries\win64\realm.exe
FirewallRules: [{5B296FCF-40C9-421E-9EDF-F8CC9511FD01}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Realm Royale\Binaries\Win64\RealmEAC.exe
FirewallRules: [{3F6D7BDC-B573-4767-A6CA-7428DF6A49B8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Realm Royale\Binaries\Win64\RealmEAC.exe
FirewallRules: [{509581DA-60C2-4904-A446-2F80EEA8E093}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Forts\Forts.exe
FirewallRules: [{C9836854-9DBA-4F04-96F7-8731A0440D35}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Forts\Forts.exe
FirewallRules: [{34F7C521-B5AA-4794-81D5-E0AC9DFBC6C8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3D59EA73-A1A3-4FE5-A9B4-69D6B0C46EDE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DEEF6BCC-D32F-4D6B-969C-DCA6586DC932}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization V\Launcher.exe
FirewallRules: [{E082A65C-22E0-48B4-AB51-AD7FE8861B2D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization V\Launcher.exe
FirewallRules: [{8653AC64-24F1-4C14-9E63-AFE856A95B38}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FCA88113-1EA9-4604-8A2F-F39E098527B1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B93896D3-C9EE-4F8D-9292-E02AE3B61902}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BABBE0BE-EDB1-4AE9-B6F0-26D84E6D7603}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4FCB1FBE-8B84-4005-A227-0423986854FA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spore\SporeBin\SporeApp.exe
FirewallRules: [{6FB30529-B784-4468-A639-0B90BBB1B520}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spore\SporeBin\SporeApp.exe
FirewallRules: [{7D09309E-AE81-4871-8EAB-1AA60F8FDB45}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe
FirewallRules: [{9366D207-2C6E-46EA-9C46-7FF393270F66}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe
FirewallRules: [{6182C830-282B-40B5-9001-4F7B11301B23}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe
FirewallRules: [{55E19B7F-0C20-4294-A851-47E99E12A962}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe
FirewallRules: [{3B297849-AD7B-4001-9E8E-AB1EB1EA8410}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FA33BD2C-9CD5-450B-A871-8F2570E72A6A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{95CAEB92-B9BA-42D7-B13B-C975ECD557F9}] => (Allow) C:\Users\dan31\AppData\Local\Chromium\Application\chrome.exe
FirewallRules: [{25928CB9-AD2E-413C-8805-193FBFFD6F17}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E4A744F9-5AEB-479C-9960-49FE98A3CF73}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{507880F3-AFBF-40CD-99A9-B40972F5D23C}] => (Allow) C:\Program Files\Opera\52.0.2871.40\opera.exe
FirewallRules: [{CA190820-F4FF-4636-8211-EAC69C1C96EA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{787D09F5-A1BE-44C6-B7C8-5E987DFC7BEE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C055B2FC-A7EA-4F73-80F4-693E24817445}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{054C8761-28A5-46C0-9579-78ACD49EECD8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7BF32182-E1E6-4D56-845F-B4914D65001F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C53B2362-8526-47D8-8092-4A213BD63A20}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DE5C06FC-2CDE-4878-A7A5-4EC3D75CC3C1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F0D0CEB1-5780-4868-8B8C-312C4D62A3EC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A414992E-95F4-4C3F-A0A4-6523A6B8A876}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Surviving Mars\MarsSteam.exe
FirewallRules: [{BF3659E6-40BD-400D-8D92-4A6EC929F43B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Surviving Mars\MarsSteam.exe
FirewallRules: [{307A373B-2EB8-41F3-B26E-9BA1D140D892}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{85AD6EF8-B05F-4C6E-93A2-CC62F553C5A6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{642BC5C4-1F6F-4876-8568-466E22E66728}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Game Dev Tycoon\nw.exe
FirewallRules: [{81FCE11F-EE06-4C36-8ACB-2BA6CD725594}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Game Dev Tycoon\nw.exe
FirewallRules: [{8584FC95-2144-49D1-9D73-6171F7305B2B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4A5B8A6B-916B-405B-9ECC-DCF4AE6D3467}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9DA387D7-36BE-4EF1-9EF2-C2BC2D9D3EF2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{739A7C9F-D240-4AF1-AF3B-6019F0346818}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EA37646E-77C2-44A9-8B0E-03CD53044F6A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BA3A4056-EC29-4AA8-9061-6BAB3B04C93C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CD42D317-EC73-4420-9947-EB0CBEDE7173}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe
FirewallRules: [{F1DB7314-1389-4094-B497-71DB25BF4637}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe
FirewallRules: [{B22033D0-34B5-43B9-85C3-949CA0DD9A26}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe
FirewallRules: [{5D3319F9-2A7A-44CC-AC60-4843023BB451}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe
FirewallRules: [{6357E413-10A8-4BBF-B15C-64E72E8AB32F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{25534AF3-878A-43F4-A545-2F6103154ADD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3204C912-B040-4EE9-A4E6-8F49CA734D02}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kingdoms and Castles\KingdomsAndCastles.exe
FirewallRules: [{41C0377A-7236-4984-82E5-F19D365F296E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kingdoms and Castles\KingdomsAndCastles.exe
FirewallRules: [{D10DE1EE-5177-4A61-ADE8-60D9BC47A601}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Northgard\Northgard.exe
FirewallRules: [{1FF85492-63DF-42CE-A74A-317D8D618C08}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Northgard\Northgard.exe
FirewallRules: [{18D8D2F9-DED2-4F96-ABB9-573E3D194AE9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Jackbox Party Pack 2\The Jackbox Party Pack 2.exe
FirewallRules: [{872580DF-457C-4997-9512-798FD7C87070}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Jackbox Party Pack 2\The Jackbox Party Pack 2.exe
FirewallRules: [{F89D2AB8-885B-47C2-AD14-07CA857BA229}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age2HD\Launcher.exe
FirewallRules: [{A932C7E8-761F-49D1-8AD7-22EF570EA648}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age2HD\Launcher.exe
FirewallRules: [{9BB0CD8E-07B3-4858-8F6C-7B11FEF86A14}] => (Allow) C:\Program Files (x86)\Opera\opera.exe
FirewallRules: [{44963E64-2761-4035-AEE2-C5F7D22101EE}] => (Allow) C:\Program Files (x86)\Opera\opera.exe
FirewallRules: [{B543FEA0-E682-4ACD-9933-8F1B2056AEC6}] => (Allow) C:\Program Files (x86)\Opera\pluginwrapper\opera_plugin_wrapper.exe
FirewallRules: [{211CA479-18A6-4AED-BDFC-6C73EB22E400}] => (Allow) C:\Program Files (x86)\Opera\pluginwrapper\opera_plugin_wrapper.exe
FirewallRules: [{6CFEA3C7-2E88-4740-8DFE-0689728430AF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Besiege\Besiege.exe
FirewallRules: [{74C9B48A-8AC4-49B6-9276-DF2A6A3BD058}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Besiege\Besiege.exe
FirewallRules: [{A0035508-B605-4C5D-98DF-E4304A788D69}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8B1D3E16-73AE-4D6E-8EB9-70D6268DA672}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6C1B306B-ACBC-4543-AA5B-E060DD5B7EFE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FF81D002-8514-40BB-87DA-D9497CCA6EDF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{688622A2-15FC-4F18-8455-5E8425DEF9F2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2E220969-D7CF-45ED-94BD-FF7602BA7D2D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EBC1A7DF-D531-466D-BBA4-AECACE675E9D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F7ECB925-E8D4-4507-A771-BE04B76F05CA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CFCC3EC3-38E9-4D0C-83CF-CD05091CB079}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7A4A8B81-973F-4513-93A0-25897CE4D3BC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{102A0F85-9F4A-430D-9015-A0E46EC238EE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{96786C2C-DBFF-4A37-ABED-23BD121639A7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{24B99136-3638-42B7-A04E-E4FCAD560FA5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Poly Bridge\polybridge.exe
FirewallRules: [{3AD88AE5-ACAD-4657-81A1-8F7DA1302BB6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Poly Bridge\polybridge.exe
FirewallRules: [{1735296B-D33D-4BB9-B8F9-667BCDD2F534}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{42B7CD8A-71DA-49DF-BB99-7200DFD79F22}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D17D4F1F-123F-4FB5-A5EB-07F25843B352}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Town of Salem\TownOfSalem.exe
FirewallRules: [{ABDAA99A-7052-42BB-88C2-0D04FD7FEA09}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Town of Salem\TownOfSalem.exe
FirewallRules: [{45388BAB-2A30-47A2-B225-8BD9948992BD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{88963823-B4C6-42EF-BC95-8DAA08C35DAA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{22D83D90-D7C4-46AE-8CA2-C4130B5B97FE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3636F2BB-D120-4029-9E35-380A56949897}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{33C6A3F9-AA79-445E-B31D-9A724E233D41}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tavern Tycoon\TavernTycoon.exe
FirewallRules: [{CA0DD489-AC44-412B-A181-E96CD48711F0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tavern Tycoon\TavernTycoon.exe
FirewallRules: [{375B4DA0-A865-46A4-8238-B58402F8D3DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B5486CB1-1D3E-47B9-8A58-52DC56499D52}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8B157C33-0B2D-47F3-A435-6E2AB0B3C17E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C2121397-1C1C-4DFB-80F1-9D6452CE3F51}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F1664B6F-857E-4F28-A98E-53777545103B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{20834BD1-D862-4A72-8307-B266A6E76471}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{212954F5-D4AC-434E-A05D-BB266B27DCE3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{28E270A4-3021-4C02-AC13-E68C80BD814A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D1C7787C-7D46-42B9-8CA0-E033299273D9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DF8BF926-4A7C-44D1-A294-DA6AD43B17B1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FE993968-EEEF-47F8-9A42-6F80F239A397}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C1E01B67-DD21-441B-8A20-C70C42BB37C6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AE7B7A91-E928-4434-9853-A7E0258E33C7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DD39A01B-6DCA-42DC-BAB8-A1D7518E6EB8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C8309798-6F89-4A75-81F2-14F1C737D615}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Holy Potatoes! A Weapon Shop!\HPAWS.exe
FirewallRules: [{74D8D68E-4566-4A2A-B2C0-408CE277345E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Holy Potatoes! A Weapon Shop!\HPAWS.exe
FirewallRules: [{35B26F5E-A407-4611-976D-0F6684211B0B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Holy Potatoes! We're in Space!\HPWIS.exe
FirewallRules: [{74554441-FF5B-4E1C-A612-C996DBC162F1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Holy Potatoes! We're in Space!\HPWIS.exe
FirewallRules: [{1F2572C1-AA26-4BC3-B7C3-5F466338159E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{57F5234C-DEE5-4AB3-9E88-1D6F998C18E7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B2E6973A-6966-408D-9C08-0EF393F9EB6B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A0064337-EED6-465D-9B10-E27F1AF551E9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D06F6C76-BCBB-4398-8012-D0B486204DFB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{49BBCA5E-9675-47B2-8698-E584C23C72AD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B1EF6635-3375-4420-A514-AD7557503556}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5649B25A-7B75-4B50-BF44-53AF9C3E8A1C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{67345AD2-3539-41C5-B6B8-56E3CF54D361}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{56FC07CE-87A3-4B85-89C5-80F87BC6B485}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F24B2F7D-07C9-4995-86F1-0E3E925C5CCC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7117F1C5-5CE0-4B50-B75C-DDD7AD2D3B91}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{48859DD6-077B-4873-BEB0-CBC43D8CE783}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{16E919B7-64C9-45A3-9CC3-697321E33FCF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8EAEDB0E-787C-4C26-A95A-A5CF00275928}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CraftTheWorld\CraftWorld.exe
FirewallRules: [{5BC30B26-0CCA-41B6-A9DD-C352662709F8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CraftTheWorld\CraftWorld.exe
FirewallRules: [{D7F84F40-4F4C-40C0-9935-79030ED0FC88}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5AD8A2C9-F1DA-414D-B88F-E1EEA3BE53E9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{09FBD17B-45CC-4179-9BF4-D8EE688A5665}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0CCB84FB-9763-4E2D-A2CB-45F580B16BDC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2381BEE9-9151-4B41-A27D-561DDB73729F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EFFF5210-4897-4134-8283-2F1C0675C114}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B7A362B0-FD3F-4C06-BEE6-15D19E5B7A05}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A5A1AECB-09CA-44C9-96C6-E34387BB0038}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{83FA56D5-B860-43DA-9A82-56CDC04B8689}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5A59B2FC-8300-4FF1-9FF9-5702E62072A1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{79684956-F7B6-4810-A184-9E80B235D5F6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{30CBC24D-E9CE-4692-9387-94E8373985CC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{25CAF347-87B0-4E5C-AC6F-6EB7AAEF22DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0D730145-0EBF-4F85-B421-03923C0D2933}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A79387B9-9BB5-45C3-A5EF-435BD7166E60}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{617BDF0A-FB4A-4AD1-BEDC-0A29AA3B1519}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F776840F-E12E-4BD8-8C13-DEA66DB9B57D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\60 Seconds!\60Seconds.exe
FirewallRules: [{30FAC735-7AB4-49DA-88B3-5C5BBA2FCCBE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\60 Seconds!\60Seconds.exe
FirewallRules: [{42DE02A7-D97E-425F-A9BA-FD152BA127DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe
FirewallRules: [{FECBC2BC-439B-464D-A8D7-AF2D536DFC4B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe
FirewallRules: [{E37EA6E7-CA31-4892-9BAE-91413E42833C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4B671C58-FE2A-44CF-B52E-7A21FFFBA6F4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5B825109-09A5-40B3-A0F2-BB37FFF72CA5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{29DEE354-D7F3-423B-AC6E-E7A19C44DC99}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9B77AA7B-93DF-490D-B4AB-CB2B688C26D7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EE9EA67D-DD16-4098-938C-C595E373898F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0A5843CA-1593-47F4-AF14-5FB9296270A1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{373E78CD-E2AA-4A77-B1EF-C32910567800}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{43C998F8-6E9F-40FE-8A0D-A0555167B9B7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{97B4EBBC-7826-4D6C-BF7E-5C2A48143B9A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B5F9C2FA-0066-44B0-BA6C-E3A21694C216}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B1936BE1-C6E4-49CA-B6A5-B79B212FF3B0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3B296F0C-1B1C-40D8-8D16-8E2848098A1C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8C889A81-8CDC-4990-BE35-FFE581BA1A0C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{91B626F7-62B2-4347-BFF1-C55E15366B1C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E6E98C3D-F228-4C7B-BC4B-CE70386AD2F9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E415A9D6-78FD-4FA6-9930-8F1F9E28C570}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{080F9D64-4F18-4702-B9E6-C9433F2EE785}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{FAD70B6D-E161-4C62-AA44-C3E5CCFAE73A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5AA034C6-2252-4F59-A6A0-DFC93D244933}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{99299D16-CD88-4E2E-BD39-81C4C89FE496}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E9CDC0F5-5714-4425-8A4C-447FCA1FEE8B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CE42E185-DC59-4663-87C4-ACBCA3A77963}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B9271747-EA8E-423B-B5CE-EC3D45F3E5BD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{42DD49B6-DD8F-4886-A048-B65F11EB30F7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{76DFCEC7-CAAA-4E93-8EE1-2837AB583A8A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{68D52182-1999-4097-8013-18121BB6155D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{558E67EF-E634-429B-BD58-918C4E812B14}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0300BDB5-99C3-4EDB-ABCD-D9250039A085}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D98C258F-AA7A-4DBF-98C2-BECCC8B09FE1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A8BDF9AF-85C6-4BCD-B4D6-AE2C9134CF3B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2E7C4D38-3E25-4548-8BEA-3D6FB98D809F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3F66BA07-873D-4DF5-97F6-62C1B9FACF41}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe
FirewallRules: [{0E65034A-5433-4852-A07B-8235A18400FF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe
FirewallRules: [{E5D5005F-3B60-4D03-9084-CD0C73FA7C6D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A5F71BF4-25A9-4755-ACEF-F49FAD05E877}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{28E82A8B-B976-4C3B-BB5E-731DCA025E67}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3C1CF36D-EA14-4C75-9467-091C780A20E5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8E995159-182E-4A4C-AE44-6FB730809411}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8A58BFA9-D2B2-4F74-B02B-CFF7CE1B4B97}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{85C81D24-BA2F-4CEA-BA26-F94E1337C844}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CBC8DFA2-1674-4C2B-8D00-D6FA88B13D8C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{935C4C7A-3998-46EC-A99D-0B1B862541A7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{320992EF-B5E3-4B8D-9BD2-B983F8DD2C7E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{56148057-F0D8-48C6-B35D-AA76E692DF14}] => (Allow) C:\Program Files\Intel Corporation\Intel WiDi\WiDiApp.exe
FirewallRules: [{11328306-B844-400F-AAB4-0DE942861F17}] => (Allow) C:\Program Files\Intel Corporation\Intel WiDi\WiDiAppOld.exe
FirewallRules: [{54BB83C1-A266-4F55-ACA1-9D0D4229FF95}] => (Allow) C:\Program Files\Intel Corporation\Intel WiDi\Next\WirelessDisplay.exe
FirewallRules: [{7B31AE1C-BE2B-41A1-B117-5509A8161648}] => (Allow) C:\Program Files\Intel Corporation\Intel WiDi\SmartAgentTest.exe
FirewallRules: [{B7E9C315-AD8D-422D-B957-49CD9C26C3CD}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{7C85059F-4F2C-496A-9B4F-F1EFE6D45D85}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{C4C2C6B2-74E3-474A-865F-8646EDBB553D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{98EC1319-6F75-4167-8A86-5456D69F0A1F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{504A9FBE-B625-49B8-A579-EC9B8441A795}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Oblivion\OblivionLauncher.exe
FirewallRules: [{9F811048-9ED2-4D21-8130-ECB768B6DD13}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Oblivion\OblivionLauncher.exe
FirewallRules: [{C4C0F1F7-5E9C-408F-AB45-C535B9944147}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [{41C414F3-62B9-4C86-99C7-20D45DDE0E7C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe
FirewallRules: [{9A731C22-7DCB-4CCE-A98E-AFFBC898DD7C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{29B10BD2-4FB0-4E68-B70C-3A5CBBF5C8BC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8AB67B81-5124-4976-B599-4255689D69FA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C3883DC6-1E4F-4D23-8BBC-5883D8BB77B6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B3C19B72-B4A7-4C81-9ED0-AA3C9CF2B075}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RailWorks\RailWorks.exe
FirewallRules: [{B5F16C27-CD39-456B-A4CF-8D08823AE318}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RailWorks\RailWorks.exe
FirewallRules: [{FE2797DB-8C68-4496-86DB-0F0EBC529984}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Star Wars Battlefront II\GameData\BattlefrontII.exe
FirewallRules: [{D2FFB983-E669-45AF-8F24-EB87F715AB23}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Star Wars Battlefront II\GameData\BattlefrontII.exe
FirewallRules: [{96329E41-DE38-4F21-80C0-AC2C48FE0879}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SpaceEngineers\Bin64\SpaceEngineers.exe
FirewallRules: [{FD06CCA2-FA5E-48AA-9D56-F11FBBE6B22C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SpaceEngineers\Bin64\SpaceEngineers.exe
FirewallRules: [{EFAFF20D-6FC0-45E0-9413-6667189BD0DD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe
FirewallRules: [{D213BFF0-9EB0-4DD9-B947-7FEC5ABD85A8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe
FirewallRules: [{F8C08D5A-7258-4D61-8BFA-DD17FBCA844E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SpaceEmpiresV\SE5\SE5.exe
FirewallRules: [{DA142B3A-CACA-4C67-8926-84940B371284}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SpaceEmpiresV\SE5\SE5.exe
FirewallRules: [{B26597BD-D44E-4102-88BC-DC7A0851C860}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{95090949-0CFF-497F-AF49-D63CEABB1BD3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{D7FD6266-9C4C-4414-A2CE-C2912DB60707}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{35200795-F116-4EB7-B9A3-F0ABC0AF3FB9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8184F5C5-04E5-448C-AB72-E99628D2CD90}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4901D114-D1C7-441B-BBB4-7D5110CC52E5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{737E63F8-106D-403F-9C98-FDDE9BD46BB3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D38E2437-FB48-47CA-B7EC-03F43A9E6A98}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Factorio\bin\x64\factorio.exe
FirewallRules: [{8BF535D4-B58E-4EBB-B9DB-C14D2D2345A1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Factorio\bin\x64\factorio.exe
FirewallRules: [{15FEEBD7-FCE9-4F45-9ACF-04C6E3497E45}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{332F4053-218B-4D6C-94A9-E773A9733463}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0241FB20-F10F-459A-9242-FA26DBD71808}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stellaris\stellaris.exe
FirewallRules: [{AED36333-0BD2-4CD9-91A7-36B3C13C70AC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stellaris\stellaris.exe
FirewallRules: [{64FECDAD-E056-4189-BE3D-CBC188FB8BA0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{39BC47BC-4B9C-448F-BEF3-5AA835350568}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E53EA080-217B-43DF-A5D1-DBBA409D31E8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{87FF7539-9768-4A82-80C3-454337153287}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FBF1819D-E1AA-4293-B944-53B8FF51FA5B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{53AE528B-F984-46EC-B4BA-F3FAD8ADB063}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6C1D6EB7-68D5-4688-B3C9-EB146D97B24A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{44BF904A-F524-407D-B2B8-B216E46019BE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DBDB1ACE-DDE3-42C5-B808-07BCD251EA9D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9A52F394-F7DC-434A-9EEC-857CFCB8241A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7CA8B46A-E3C1-403E-B660-D5F27AFDA96C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D4D2A627-F825-4838-B49C-A1D1B3F89549}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{67AF08DC-5A35-4778-AFAB-0D929D6B9459}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2A8C0C73-B887-4349-8496-E51C9367EC3C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F723C360-F6CF-4EE5-815B-F2299657F457}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DED1A08C-E32B-4C42-BE5F-6682C79C7EF8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2C9A1927-5A21-4F72-8E30-0E3BBC9A0A88}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9052BEF9-6FF4-4086-B357-72A2009F78FB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A47390FB-ADB2-42D4-AD71-85E2C3915746}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BDE8A0AA-6B49-4E2E-B718-FE4150D4A01D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2EE2BA93-5648-47C6-8BDC-98BEC9776DF5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DB4CCB56-6509-48F0-8951-689BAFFD8C30}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EABEB767-4384-4539-8F7A-AF0314191319}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7905AA02-E384-4706-BACF-1C1003C18F61}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FEA0F5EF-35BC-418A-ADFB-0C253FF44D5D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI.exe
FirewallRules: [{95A9E59F-1165-4DC3-A8A2-D0E9D384D104}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI.exe
FirewallRules: [{5C5D8219-FFDA-47BD-B1C0-BA44912EEE34}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI_DX12.exe
FirewallRules: [{11FA9922-E965-4E2B-B76F-7A8C73469895}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI_DX12.exe
FirewallRules: [{9D71AF0F-8F0C-4571-B487-81338C161877}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{48B97D18-3DBA-44F2-85D1-7C9D9877ACDD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FA7BC545-3198-4933-8C90-FB49675A2BAF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F682D076-964E-43C3-9E52-830B564CFF58}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D47653CD-4710-4E0C-B650-37800D7EEAD8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{08BBE2BF-A820-4AB4-B7B8-6892FA7FCFF8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{60DEF6C2-40CE-42B6-97F2-50022BC43417}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8B2E6F25-89E1-4135-972F-C8BF4D715A9D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BC7DEAE4-305B-45C8-8F95-7F07D6EBFD61}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{133C59D7-A528-48E4-A41C-E88666A41EE4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{13171A0D-C35A-4DFB-A888-545F266A75A5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F4F3B379-F145-4221-92E2-19413AA7A11C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B0937E2F-5EBC-4D74-91E2-E193F9553D0C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2BE63DD4-F132-4590-BEE1-8B1F935C0177}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1C636370-9393-4F42-85D9-F969FA1E4CF7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win32\HirezBridge.exe
FirewallRules: [{19A55577-37CE-4A7E-8445-21A327BAF7B3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win32\HirezBridge.exe
FirewallRules: [{ACC371B9-8E34-4B4B-9B1B-286064D6B3E4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F47ADB93-4BBE-478F-AA15-4F5B06BAE912}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8850DD54-0E2D-4878-A413-60571A9C041C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{42C3E1EF-8144-4ADE-BD6C-7D76B4AD879B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5A384BA2-E202-4979-8E0F-12A385F7225E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4DB64C63-3EC2-43A0-BF14-AB1F651FE5D9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2DC65B30-32DA-4C0F-B20B-B8F83B276D69}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{33C80575-5011-47C9-B7E2-09717F89B70D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CFC3B83C-A213-4CBC-9785-BA0669C9ADF8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E9C705DE-A74B-4B1F-9DE1-C33D0535FC99}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DC14A9EE-D702-4C46-A5FF-FD60E5F9326B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{91C396F9-593D-4D26-A8FF-0D34332D66FE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B9F590E9-5411-4A4A-8FB8-C271EE9CA7B3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0B4CF5E3-F669-4487-BBA4-F602DF57F684}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B0D5A17A-C8DA-401C-B9CC-4476717F6327}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BCA42A44-6166-406E-A441-62CE74AC6014}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{922F9FD1-9BB2-4670-B0F3-4821F9DA6D19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F520B3B6-27B9-42D7-9196-B2CEF4829072}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{26A7975C-3853-4286-8317-10DF4DA37415}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{50BCDF3A-AC64-4C7A-BA32-13CD6C32FB55}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{85D85F99-4C8D-40F8-A07C-06CA81283258}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4ABCA8A2-2FF8-4245-BB18-8E2338CCFE08}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{272D2467-F717-4550-BBD6-F9AFC04796E2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{48F9762D-8D57-4198-B76D-C0EE9E746D7F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{45884561-772E-48BF-9EF2-42DD55B00EBD}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
FirewallRules: [{B5AD2CE1-D1FD-4A3D-9D62-46700104C04B}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
FirewallRules: [{B7E35E32-32E2-4316-B70F-41304E71E78D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9FFCDB8E-80CC-4185-9F0D-44E2F12BB9EE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{891A6E39-B8ED-4F69-9110-8FE1A96A2232}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6EC09374-B984-40EC-B13B-FB9A801844D7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BFD7A849-8860-441F-9C1B-33B974F5EB74}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B6BA794F-D3EF-437D-83BF-5326C2BF2A8B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{3413EDC0-AB1F-4AF7-A1CC-21E9DBD6FE98}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{28639CA4-C826-4A5E-8BE1-F1415F521117}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{54616364-9F1C-4496-974E-511438DBA6DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{ACFB5064-19B0-45E8-9A2F-34C3CC47E6C3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0CC6A86C-9F1B-4AF8-AD94-6B092918E241}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{57FC85A2-94DC-4760-9B94-1AF7CE5E6287}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5E2D83B1-ABE7-488B-AFA0-512C0BBD7EB6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A21C0DE8-C4D9-47F1-ABD0-71ED4E8421A5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F6FE1002-747A-4424-A0BA-2F94F80F3F11}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kerbal Space Program\KSP_x64.exe
FirewallRules: [{49D969E9-A119-4C77-ADAD-6B4C7FB380DF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kerbal Space Program\KSP_x64.exe
FirewallRules: [{A892FF3D-427B-4E2D-954B-C4EEFAA38243}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kerbal Space Program\KSP.exe
FirewallRules: [{75F69336-A8BD-4687-85EF-E49262819228}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kerbal Space Program\KSP.exe
FirewallRules: [{57571106-02CB-4D67-B32A-F0CC58158701}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FAAFC2F3-45D8-4C40-AB37-AC4C095B74F9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C0F19DB5-7815-4863-8D9D-11BFB438194A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{83C45693-20A3-4D44-BE5C-EA294D3CC934}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7AF844EB-4333-4E87-B459-D2D0C59DA42D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F6166402-8182-43B5-8ED8-977E6794C1D5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C3129613-0005-43BB-ACF6-7B483C92F562}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{75854770-EC87-4D54-AEA7-1371013A84B1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{9C848931-76E5-41A4-BA14-94E7A8325970}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6AD9823E-BA04-41B8-8AA9-CA6C254A0F52}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{575F17A0-0245-4377-98BC-8EFE8F54599C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{24328895-DC5A-4E72-97FC-88C3A7AEFF24}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D53F5685-6BA5-4932-86ED-31515A5B37C1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BA2DF6EF-31AB-41E0-8B94-E2A503D289BC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FFF9BB47-21D2-4A48-81B6-D2872F8AF062}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{81EF8074-B582-4AEA-90A0-4DC89B003651}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{4F9B59B3-FCFF-46A1-947C-0DF5177DC707}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7FCBC07B-A17C-4BC6-AACE-7D7985DA1519}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A8A22344-EB9A-473A-944A-2649A3D57DDB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{E3BAF962-0C5D-4A70-82B2-FD732C39D353}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FA73E1E6-7802-4C3C-BD7A-798A95D010E5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{69512C20-B6BB-4731-B395-92F3BB78A5E2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{82B9DDAD-1572-43E0-91CC-3A038001DF06}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TPH\TPH.exe
FirewallRules: [{FF871158-F372-40B9-BF27-79BB134D89AB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TPH\TPH.exe
FirewallRules: [{99D5C26C-152E-4A26-AB0F-0DE6C85D0709}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{1AD00345-71F2-4914-9CD2-D1AD962DC90D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7A0FA7FC-32B4-4BD2-AB15-82E86E72382B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{10C72726-C5FC-48B9-A381-40C28C8BEFC8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0EE32997-60CE-40F8-9B90-DAAC5087F70D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2BC148C2-7D7C-4598-8BFF-BBF843926419}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{93570598-FD12-48B0-BF86-17E0B50FFAFB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{64CA829C-4517-4C53-8DEA-76D5D3FFB2AC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2D792E1C-316A-4602-8CE3-BA4F0A6CB223}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A3C72C7A-1C12-42B7-BCFE-5C5A40EE144F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{58EEBD46-A562-4F05-A4D6-AA1EF4256939}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{67F5E547-E72A-41E7-8C4E-7400ABBD5E64}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C60D1EF7-1167-4479-A748-38731975015D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2E8A8F78-930D-4FD8-A907-52A07E963C61}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7925E6B8-BCFF-428B-BE3F-F1DC4AC966CB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{955F604F-5CB3-4437-8B6D-7404EA502FF2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C809F7B4-76BC-4883-AF8F-5959F5F251C0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{69693446-0220-4FFA-89C4-59E0584D22FD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{7C288EB6-C2AF-4E7D-8FA3-FE472FDB70DB}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{C5F5D5A1-982B-4113-8AB1-8BAFFB2F887B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D2FF8829-45F2-4BCC-BA1E-D988D87D2ABB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{0CEBA27B-A1A6-4509-964E-B3F9A39FD2B3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{79BF2E37-672F-489F-B14F-A314E88051BE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D9C31A0C-F6F8-4ECF-ABA9-D95BD8E5A232}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{FD07BFCE-EE53-4F88-AE1C-5A44888487AE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{880AB95B-913A-4C70-A336-F0861EC953C6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D1E6A77F-898D-4099-9D03-10C8E2840A94}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{BEE94B37-5F9E-4887-840E-4715A9345AD2}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{B5980BF5-14C7-4EEF-B166-31C59A81A7E7}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{253EACDC-F488-485A-9C59-B933A462C85A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{53575DB1-6145-4AF8-863B-4BE5AEE560C3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{76DC7918-1683-489B-A672-2926CD75F623}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{994D3D39-BE55-4525-92FE-EF379AAE1391}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C0DC2CDA-0205-4CD9-BE68-4FAD4ABCCE3F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{79C33BB4-5E48-49E1-9AC0-D7C0206129DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D09E39D3-926C-4055-865C-E2C5A858FF71}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{B6A41A99-DCE6-42CE-87AE-68F64E58A104}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{C5B97F25-C892-4221-A9A9-F83609C2191B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{8B26943C-3E27-4B82-864F-693E8DAB1CA9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{DE8CE76B-3F8C-4FA1-B933-74CA1F1B85F0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{EC664069-16AB-4F2D-8E6E-8C3ABDDE3D7C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{2F10ACDB-0629-49C1-B9BB-C6FDA241B2B9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{05423CFC-7B2F-4F3A-91B3-E67AF8118B64}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{57596BF1-E967-4A56-AA9E-CE536606095E}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
FirewallRules: [{DD792584-7914-4534-ABB7-634C8F8B7EA1}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
FirewallRules: [{20F21AFC-E537-4A51-913C-82918D88E38F}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
FirewallRules: [{80B11541-6675-48D7-9959-170D8AE6BDA5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RailWorks\RailWorks64.exe
FirewallRules: [{B28581FC-69DD-41B4-A319-4444E14EB8A6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RailWorks\RailWorks64.exe
FirewallRules: [{CC4AD28C-70B9-40A0-BFA8-1E0E911055AA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{D1275D6D-3ACB-4913-B5E0-205CD265DDBB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{AFBD0AE6-4779-43D1-8383-39D2D54FAC19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{37D33EDB-3F60-4A3F-98BD-9E9912C5AEDA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A13CE41F-3189-44C3-8BE9-28DA3F0FDA0D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe
FirewallRules: [{FD293FD8-F147-4887-AF94-6C68BBC01B10}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe
FirewallRules: [{0E44CAEF-CFF9-4A42-8233-F2AEE52AE57B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Use Your Words\uyw.exe
FirewallRules: [{6AD3EAA7-7A38-4D4B-B563-778772345CC5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Use Your Words\uyw.exe
FirewallRules: [{94CE779D-6814-4BBF-A894-FCC2528862B8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{4B4D1F85-39BA-475A-90C8-7EDE7F69F6C3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{04A5851B-4B8F-47DB-856C-A3260EAF3A65}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{AA1252CE-D853-43FD-B29F-58F57544C960}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{82DF2937-4F0D-46EB-B669-BD5E5E9D3BE4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{B1ED6CE3-69AD-47B7-9678-11926C69BEF9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{407A9B4D-6FF6-4D27-B829-6658EABB0EB4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{6C312BE8-FFE4-4275-BB8E-E20584D1EA9A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{CF3FAE6E-FA2A-411F-98CD-DF17B2A12153}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{00863379-21B1-44A2-A708-344CD7AE1C05}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{44227A48-1A7D-466A-8C30-44E5BB13544F}] => (Allow) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe
FirewallRules: [{58F0F47F-64DF-45F6-8CC6-8E10A931693F}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12091.4.37126.0_x64__nzyj5cx40ttqa\iTunes.exe
FirewallRules: [{714C27BA-E10B-4D4E-B367-5C1469E762B6}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12091.4.37126.0_x64__nzyj5cx40ttqa\iTunes.exe
FirewallRules: [{A437F096-7070-495D-A922-48F405834340}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12091.4.37126.0_x64__nzyj5cx40ttqa\iTunes.exe
FirewallRules: [{F731757C-824F-4EE7-BDE6-F566B96C068A}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12091.4.37126.0_x64__nzyj5cx40ttqa\iTunes.exe
FirewallRules: [{F478904A-81B0-41FE-8304-8B0AB073357F}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12091.4.37126.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe
FirewallRules: [{33CACB06-E257-4BB7-86BA-F6F620CA9F05}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12091.4.37126.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe
FirewallRules: [{B524D225-DD9E-4C88-8320-0B7F82B329C1}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12091.4.37126.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe
FirewallRules: [{116F1FF5-290A-43FD-9055-AF6814E3ACEB}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12091.4.37126.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe
FirewallRules: [{A846EAB0-B52E-4250-9353-C3038EAD7899}] => (Allow) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe
FirewallRules: [{9BE15517-3DEE-47A8-AE6F-A82CE1555A4D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{92851379-F0CE-4482-A8AB-22D1EC0E2037}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{5CB77E78-5C0B-4A72-895B-04B780D02749}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win64\SmiteEAC.exe
FirewallRules: [{7DFF2146-828A-4E64-9EE6-8B32BBA83419}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win64\SmiteEAC.exe
FirewallRules: [{1E72282B-6955-40E0-B353-ACA2CF13DBF5}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
==================== Restore Points =========================
 
30-10-2018 20:22:54 Scheduled Checkpoint
10-11-2018 17:43:42 Scheduled Checkpoint
14-11-2018 21:58:00 Windows Update
 
==================== Faulty Device Manager Devices =============
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (11/16/2018 10:38:46 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: DropboxOEM.exe, version: 4.1.2.0, time stamp: 0x583f7854
Faulting module name: KERNELBASE.dll, version: 10.0.17134.407, time stamp: 0xade8d4fe
Exception code: 0xe0434352
Fault offset: 0x00111812
Faulting process id: 0x27a4
Faulting application start time: 0x01d47dfd1a1744d4
Faulting application path: C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe
Faulting module path: C:\WINDOWS\System32\KERNELBASE.dll
Report Id: 531820d8-03c8-43b7-86be-a84404478f67
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (11/16/2018 10:38:45 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: DropboxOEM.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.Xml.XmlException
   at System.Xml.XmlTextReaderImpl.Throw(System.Exception)
   at System.Xml.XmlTextReaderImpl.Throw(System.String, System.String[])
   at System.Xml.XmlTextReaderImpl.ParseText(Int32 ByRef, Int32 ByRef, Int32 ByRef)
   at System.Xml.XmlTextReaderImpl.ParseText()
   at System.Xml.XmlTextReaderImpl.ParseElementContent()
   at System.Xml.XmlTextReaderImpl.Read()
   at System.Xml.XmlTextReader.Read()
   at System.Xml.XmlTextReaderImpl.Skip()
   at System.Xml.XmlTextReader.Skip()
   at System.Configuration.XmlUtil.StrictSkipToNextElement(System.Configuration.ExceptionAction)
   at System.Configuration.BaseConfigurationRecord.ScanSectionsRecursive(System.Configuration.XmlUtil, System.String, Boolean, System.String, System.Configuration.OverrideModeSetting, Boolean)
   at System.Configuration.BaseConfigurationRecord.ScanSectionsRecursive(System.Configuration.XmlUtil, System.String, Boolean, System.String, System.Configuration.OverrideModeSetting, Boolean)
   at System.Configuration.BaseConfigurationRecord.ScanSections(System.Configuration.XmlUtil)
   at System.Configuration.BaseConfigurationRecord.InitConfigFromFile()
 
Exception Info: System.Configuration.ConfigurationErrorsException
   at System.Configuration.ConfigurationSchemaErrors.ThrowIfErrors(Boolean)
   at System.Configuration.BaseConfigurationRecord.ThrowIfParseErrors(System.Configuration.ConfigurationSchemaErrors)
   at System.Configuration.BaseConfigurationRecord.ThrowIfInitErrors()
   at System.Configuration.ClientConfigurationSystem.OnConfigRemoved(System.Object, System.Configuration.Internal.InternalConfigEventArgs)
 
Exception Info: System.Configuration.ConfigurationErrorsException
   at System.Configuration.ClientConfigurationSystem.OnConfigRemoved(System.Object, System.Configuration.Internal.InternalConfigEventArgs)
   at System.Configuration.Internal.InternalConfigRoot.OnConfigRemoved(System.Configuration.Internal.InternalConfigEventArgs)
   at System.Configuration.Internal.InternalConfigRoot.RemoveConfigImpl(System.String, System.Configuration.BaseConfigurationRecord)
   at System.Configuration.BaseConfigurationRecord.GetSectionRecursive(System.String, Boolean, Boolean, Boolean, Boolean, System.Object ByRef, System.Object ByRef)
   at System.Configuration.BaseConfigurationRecord.GetSection(System.String)
   at System.Configuration.ClientConfigurationSystem.System.Configuration.Internal.IInternalConfigSystem.GetSection(System.String)
   at System.Configuration.ConfigurationManager.GetSection(System.String)
   at System.Configuration.ClientSettingsStore.ReadSettings(System.String, Boolean)
   at System.Configuration.LocalFileSettingsProvider.GetPropertyValues(System.Configuration.SettingsContext, System.Configuration.SettingsPropertyCollection)
   at System.Configuration.SettingsBase.GetPropertiesFromProvider(System.Configuration.SettingsProvider)
   at System.Configuration.SettingsBase.GetPropertyValueByName(System.String)
   at System.Configuration.SettingsBase.get_Item(System.String)
   at System.Configuration.ApplicationSettingsBase.GetPropertyValue(System.String)
   at System.Configuration.ApplicationSettingsBase.get_Item(System.String)
   at DropboxOEM.Properties.Settings.get_ForegroundProcessPriority()
   at DropboxOEM.App.Application_Startup(System.Object, System.Windows.StartupEventArgs)
   at System.Windows.Application.OnStartup(System.Windows.StartupEventArgs)
   at System.Windows.Application.<.ctor>b__1_0(System.Object)
   at System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
   at System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
   at System.Windows.Threading.DispatcherOperation.InvokeImpl()
   at System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object)
   at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
   at MS.Internal.CulturePreservingExecutionContext.Run(MS.Internal.CulturePreservingExecutionContext, System.Threading.ContextCallback, System.Object)
   at System.Windows.Threading.DispatcherOperation.Invoke()
   at System.Windows.Threading.Dispatcher.ProcessQueue()
   at System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
   at MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
   at MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object)
   at System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
   at System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
   at System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
   at MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
   at MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
   at System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
   at System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame)
   at System.Windows.Application.RunDispatcher(System.Object)
   at System.Windows.Application.RunInternal(System.Windows.Window)
   at System.Windows.Application.Run(System.Windows.Window)
   at DropboxOEM.App.Main()
 
Error: (11/16/2018 07:28:45 PM) (Source: SideBySide) (EventID: 59) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Dell Update\DellUpService.exe".Error in manifest or policy file "C:\Program Files (x86)\Dell Update\DellUpService.exe.Config" on line 0.
Invalid Xml syntax.
 
Error: (11/16/2018 07:23:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: DropboxOEM.exe, version: 4.1.2.0, time stamp: 0x583f7854
Faulting module name: KERNELBASE.dll, version: 10.0.17134.407, time stamp: 0xade8d4fe
Exception code: 0xe0434352
Fault offset: 0x00111812
Faulting process id: 0x20b4
Faulting application start time: 0x01d47de1dd3b3c3a
Faulting application path: C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe
Faulting module path: C:\WINDOWS\System32\KERNELBASE.dll
Report Id: 8a08c40f-88e0-44ad-b5e2-7d00644eca68
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (11/16/2018 07:23:51 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: DropboxOEM.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.Xml.XmlException
   at System.Xml.XmlTextReaderImpl.Throw(System.Exception)
   at System.Xml.XmlTextReaderImpl.Throw(System.String, System.String[])
   at System.Xml.XmlTextReaderImpl.ParseText(Int32 ByRef, Int32 ByRef, Int32 ByRef)
   at System.Xml.XmlTextReaderImpl.ParseText()
   at System.Xml.XmlTextReaderImpl.ParseElementContent()
   at System.Xml.XmlTextReaderImpl.Read()
   at System.Xml.XmlTextReader.Read()
   at System.Xml.XmlTextReaderImpl.Skip()
   at System.Xml.XmlTextReader.Skip()
   at System.Configuration.XmlUtil.StrictSkipToNextElement(System.Configuration.ExceptionAction)
   at System.Configuration.BaseConfigurationRecord.ScanSectionsRecursive(System.Configuration.XmlUtil, System.String, Boolean, System.String, System.Configuration.OverrideModeSetting, Boolean)
   at System.Configuration.BaseConfigurationRecord.ScanSectionsRecursive(System.Configuration.XmlUtil, System.String, Boolean, System.String, System.Configuration.OverrideModeSetting, Boolean)
   at System.Configuration.BaseConfigurationRecord.ScanSections(System.Configuration.XmlUtil)
   at System.Configuration.BaseConfigurationRecord.InitConfigFromFile()
 
Exception Info: System.Configuration.ConfigurationErrorsException
   at System.Configuration.ConfigurationSchemaErrors.ThrowIfErrors(Boolean)
   at System.Configuration.BaseConfigurationRecord.ThrowIfParseErrors(System.Configuration.ConfigurationSchemaErrors)
   at System.Configuration.BaseConfigurationRecord.ThrowIfInitErrors()
   at System.Configuration.ClientConfigurationSystem.OnConfigRemoved(System.Object, System.Configuration.Internal.InternalConfigEventArgs)
 
Exception Info: System.Configuration.ConfigurationErrorsException
   at System.Configuration.ClientConfigurationSystem.OnConfigRemoved(System.Object, System.Configuration.Internal.InternalConfigEventArgs)
   at System.Configuration.Internal.InternalConfigRoot.OnConfigRemoved(System.Configuration.Internal.InternalConfigEventArgs)
   at System.Configuration.Internal.InternalConfigRoot.RemoveConfigImpl(System.String, System.Configuration.BaseConfigurationRecord)
   at System.Configuration.BaseConfigurationRecord.GetSectionRecursive(System.String, Boolean, Boolean, Boolean, Boolean, System.Object ByRef, System.Object ByRef)
   at System.Configuration.BaseConfigurationRecord.GetSection(System.String)
   at System.Configuration.ClientConfigurationSystem.System.Configuration.Internal.IInternalConfigSystem.GetSection(System.String)
   at System.Configuration.ConfigurationManager.GetSection(System.String)
   at System.Configuration.ClientSettingsStore.ReadSettings(System.String, Boolean)
   at System.Configuration.LocalFileSettingsProvider.GetPropertyValues(System.Configuration.SettingsContext, System.Configuration.SettingsPropertyCollection)
   at System.Configuration.SettingsBase.GetPropertiesFromProvider(System.Configuration.SettingsProvider)
   at System.Configuration.SettingsBase.GetPropertyValueByName(System.String)
   at System.Configuration.SettingsBase.get_Item(System.String)
   at System.Configuration.ApplicationSettingsBase.GetPropertyValue(System.String)
   at System.Configuration.ApplicationSettingsBase.get_Item(System.String)
   at DropboxOEM.Properties.Settings.get_ForegroundProcessPriority()
   at DropboxOEM.App.Application_Startup(System.Object, System.Windows.StartupEventArgs)
   at System.Windows.Application.OnStartup(System.Windows.StartupEventArgs)
   at System.Windows.Application.<.ctor>b__1_0(System.Object)
   at System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
   at System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
   at System.Windows.Threading.DispatcherOperation.InvokeImpl()
   at System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object)
   at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
   at MS.Internal.CulturePreservingExecutionContext.Run(MS.Internal.CulturePreservingExecutionContext, System.Threading.ContextCallback, System.Object)
   at System.Windows.Threading.DispatcherOperation.Invoke()
   at System.Windows.Threading.Dispatcher.ProcessQueue()
   at System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
   at MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
   at MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object)
   at System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
   at System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
   at System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
   at MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
   at MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
   at System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
   at System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame)
   at System.Windows.Application.RunDispatcher(System.Object)
   at System.Windows.Application.RunInternal(System.Windows.Window)
   at System.Windows.Application.Run(System.Windows.Window)
   at DropboxOEM.App.Main()
 
Error: (11/14/2018 10:00:13 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Google Update Helper -- Error 1316. The specified account already exists.
 
Error: (11/14/2018 09:38:34 PM) (Source: SideBySide) (EventID: 59) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Dell Update\DellUpService.exe".Error in manifest or policy file "C:\Program Files (x86)\Dell Update\DellUpService.exe.Config" on line 0.
Invalid Xml syntax.
 
Error: (11/14/2018 09:37:32 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program chrome.exe version 70.0.3538.77 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
 
Process ID: 2fec
 
Start Time: 01d47c618dc12f3a
 
Termination Time: 22
 
Application Path: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
Report Id: 75213ca0-efd3-439f-adc5-40a24aa0a81d
 
Faulting package full name: 
 
Faulting package-relative application ID:
 
 
System errors:
=============
Error: (11/16/2018 10:39:19 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 and APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (11/16/2018 10:38:30 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-84H6AVC)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 and APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 to the user DESKTOP-84H6AVC\dan31 SID (S-1-5-21-50118766-877759180-1359360943-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (11/16/2018 10:37:33 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (11/16/2018 10:37:33 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (11/16/2018 07:39:45 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-84H6AVC)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 and APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 to the user DESKTOP-84H6AVC\dan31 SID (S-1-5-21-50118766-877759180-1359360943-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (11/16/2018 07:39:08 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 and APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (11/16/2018 07:34:30 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 and APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (11/16/2018 07:33:00 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: The Intel® Management and Security Application Local Management Service service hung on starting.
 
 
CodeIntegrity:
===================================
 
Date: 2018-08-27 19:07:02.847
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
 
Date: 2018-08-27 19:06:54.138
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
 
Date: 2018-08-27 16:53:26.151
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
 
Date: 2018-08-27 16:53:26.144
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
 
Date: 2018-08-27 16:28:04.870
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
 
Date: 2018-08-27 16:28:04.669
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
 
Date: 2018-08-26 13:54:59.190
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
 
Date: 2018-08-26 13:54:59.189
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
 
==================== Memory info =========================== 
 
Processor: Intel® Core™ i7-6700HQ CPU @ 2.60GHz
Percentage of memory in use: 73%
Total physical RAM: 8064.96 MB
Available physical RAM: 2117.61 MB
Total Virtual: 13440.96 MB
Available Virtual: 6022.07 MB
 
==================== Drives ================================
 
Drive c: (OS) (Fixed) (Total:918.51 GB) (Free:576.59 GB) NTFS
 
\\?\Volume{7ef1e1f8-ec7c-4bca-a503-b945bfdda851}\ () (Fixed) (Total:0.83 GB) (Free:0.45 GB) NTFS
\\?\Volume{f63abb0e-f9e6-4ad0-9723-6c3ecb9e096e}\ (Image) (Fixed) (Total:11.56 GB) (Free:0.62 GB) NTFS
\\?\Volume{b7615190-e819-4947-b561-b4cb7f83b049}\ (ESP) (Fixed) (Total:0.48 GB) (Free:0.45 GB) FAT32
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: CF8F55DC)
 
Partition: GPT.
 
==================== End of Addition.txt ============================

 


  • 0

Advertisements


#2
Wolfman360

Wolfman360

    Member

  • Topic Starter
  • Member
  • PipPip
  • 32 posts

Anyone free to look at this?


  • 0

#3
Wolfman360

Wolfman360

    Member

  • Topic Starter
  • Member
  • PipPip
  • 32 posts

Anyone free?


  • 0

#4
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

Uninstall:

 

Avast Cleanup Premium (not really a good thing but save your license info)
Avast Secure Browser (causes errors)
CryptoPrevent (no longer supported plus it's not set up correctly)
Dell Update (broken)
Dropbox 20 GB (broken save license if any)
Intel® Security Assist (Foistware)
Java 8 Update 111 (Seldom needed these days.)
Java 8 Update 112 (64-bit) (Seldom needed these days.)
McAfee WebAdvisor (Foistware)

 

Also

 

Get Process Explorer

https://live.sysinte...com/procexp.exe

Save it to your desktop then run it (Vista or Win7+ - right click and Run As Administrator).  

View, Select Column, check Verified Signer, OK
Options, Verify Image Signatures


Click twice on the CPU column header  to sort things by CPU usage with the big hitters at the top.  

Wait a full minute then:

File, Save As, Save.  Note the file name.   Open the file  on your desktop and copy and paste the text to a reply.


Copy the next 2 lines:

TASKLIST /SVC  > \junk.txt
notepad \junk.txt

Open an Elevated Command Prompt:
Win 7: Start, All Programs, Accessories then right click on Command Prompt and Run as Administrator
Win 8: http://www.eightforu...indows-8-a.html
win 10: http://www.howtogeek...-in-windows-10/

Right click and Paste (or Edit then Paste) and the copied lines should appear.
Hit Enter if notepad does not open.  Copy and paste the text from notepad into a reply.


Get the free version of Speccy:

http://www.filehippo...ownload_speccy/ 

(Look in the upper right for the Download
Latest Version button  - Do NOT press the large Start Download button on the upper left!)  
Download, Save and Install it.  Tell it you do not need CCLEANER or uninstall it after you install speccy.    Run Speccy.  When it finishes (the little icon in the bottom left will stop moving),
File, Save as Text File,  (to your desktop) note the name it gives. OK.  Open the file in notepad and delete the line that gives the serial number of your Operating System.  
(It will be near the top,  10-20  lines down.) Save the file.  Attach the file to your next post.  Attaching the log is the best option as it is too big for the forum.  Attaching is a multi step process.

First click on More Reply Options
Then scroll down to where you see
Choose File and click on it.  Point it at the file and hit Open.
Now click on Attach this file.


 


  • 0

#5
Wolfman360

Wolfman360

    Member

  • Topic Starter
  • Member
  • PipPip
  • 32 posts

I kept getting an error every time I tried to uninstall Dell Update. The other programs uninstalled okay.

 

Please see logs below - Process Explorer, CMD and Speccy (attached)

Process CPU Private Bytes Working Set PID Description Company Name Verified Signer
ApplicationFrameHost.exe 11,188 K 28,244 K 18400 Application Frame Host Microsoft Corporation (Verified) Microsoft Windows
audiodg.exe 11,432 K 19,772 K 16832
backgroundTaskHost.exe 9,072 K 17,600 K 3484 Background Task Host Microsoft Corporation (Verified) Microsoft Windows
brave_installer-x64.exe 1,592 K 1,816 K 15396
chrome.exe 4,948 K 8,572 K 9040 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 2,452 K 7,952 K 21788 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe < 0.01 21,480 K 25,068 K 16328 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 23,600 K 37,184 K 4832 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe < 0.01 24,948 K 35,604 K 6748 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe < 0.01 31,216 K 42,580 K 10104 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 45,956 K 61,252 K 20848 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 14,648 K 24,176 K 20500 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe < 0.01 48,316 K 58,220 K 11676 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 26,324 K 41,252 K 11336 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe < 0.01 44,832 K 56,656 K 2280 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe < 0.01 63,516 K 75,236 K 6000 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 24,012 K 33,344 K 10940 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 26,644 K 38,608 K 20380 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 26,552 K 41,624 K 13436 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe < 0.01 39,412 K 52,652 K 19212 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 39,212 K 52,452 K 8896 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 24,468 K 39,060 K 22696 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 24,356 K 35,436 K 9720 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 52,860 K 75,112 K 22364 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 44,288 K 61,332 K 12932 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 60,180 K 27,796 K 20320 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 24,672 K 34,400 K 21240 Google Chrome Google Inc. (Verified) Google Inc
CompatTelRunner.exe 1,100 K 112 K 1828
CompatTelRunner.exe 19,632 K 29,580 K 14264
CompatTelRunner.exe 18,908 K 19,548 K 22984
conhost.exe 5,360 K 972 K 3804
conhost.exe 5,868 K 6,116 K 6856 Console Window Host Microsoft Corporation (Verified) Microsoft Windows
conhost.exe 5,592 K 1,004 K 12676 Console Window Host Microsoft Corporation (Verified) Microsoft Windows
conhost.exe 5,496 K 9,284 K 2528
conhost.exe 5,508 K 9,404 K 236
conhost.exe 5,492 K 900 K 12864
ctfmon.exe 0.01 5,164 K 14,328 K 23288
dasHost.exe 3,736 K 6,284 K 1628
DCCService.exe 30,932 K 11,876 K 13432 DCCService Dell Inc. (Verified) Dell Inc
DDVCollectorSvcApi.exe 1,888 K 1,828 K 10208 Dell Data Vault Data Collector Service API Dell Inc. (Verified) Dell Inc
DDVDataCollector.exe 30,308 K 9,160 K 15288 Dell Data Vault Data Collector Service Dell Inc. (Verified) Dell Inc
DDVRulesProcessor.exe 5,528 K 4,672 K 13908 Dell Data Vault Rules Processor Dell Inc. (Verified) Dell Inc
DeliveryService.exe 30,404 K 7,280 K 7288 Dell Digital Delivery Windows Service Dell Products, LP. (Verified) Dell Inc.
DeviceCensus.exe 6,716 K 9,820 K 15808
DFS.Common.Agent.exe 29,884 K 15,972 K 21536 DFS.Common.Agent Dell (Verified) Dell Inc
DFSSvc.exe 48,840 K 30,008 K 14136 DFS.Agent.WinService Dell (Verified) Dell Inc
dllhost.exe 3,992 K 3,080 K 13040
dllhost.exe 2,320 K 9,816 K 10736 COM Surrogate Microsoft Corporation (Verified) Microsoft Windows
esif_uf.exe 2,720 K 2,712 K 4500 Intel® Dynamic Platform and Thermal Framework Intel Corporation (Verified) Intel Corporation - pGFX
EvtEng.exe < 0.01 5,540 K 5,520 K 4408 Intel® PROSet/Wireless Event Log Service Intel® Corporation (Verified) Intel Corporation
fontdrvhost.exe 2,316 K 844 K 1016
fontdrvhost.exe 7,392 K 10,612 K 4772
GoogleCrashHandler.exe 2,088 K 156 K 14544
GoogleCrashHandler64.exe 1,808 K 128 K 10420
IAStorDataMgrSvc.exe 44,244 K 9,976 K 8764 IAStorDataSvc Intel Corporation (Verified) Intel® Rapid Storage Technology
IAStorIcon.exe 31,276 K 23,292 K 18948 IAStorIcon Intel Corporation (Verified) Intel® Rapid Storage Technology
ibtsiva.exe 1,064 K 1,860 K 4392 Intel® Wireless Bluetooth® iBtSiva Service Intel Corporation (Verified) Intel Corporation-Wireless Connectivity Solutions
igfxCUIService.exe 2,020 K 3,244 K 2360 igfxCUIService Module Intel Corporation (Verified) Intel® pGFX
igfxEM.exe 7,296 K 24,724 K 1924 igfxEM Module Intel Corporation (Verified) Intel® pGFX
IntelCpHDCPSvc.exe 1,532 K 1,616 K 4508 Intel HD Graphics Drivers for Windows® Intel Corporation (Verified) Intel® pGFX
IntelCpHeciSvc.exe 1,536 K 1,704 K 4204 IntelCpHeciSvc Executable Intel Corporation (Verified) Intel® pGFX
IntelSoftwareAssetManagerService.exe 19,544 K 21,200 K 2432
jhi_service.exe 1,480 K 1,336 K 9628 Intel® Dynamic Application Loader Host Interface Intel Corporation (Verified) Intel Corporation - Embedded Subsystems and IP Blocks Group
jucheck.exe 3,524 K 13,400 K 10316 Java Update Checker Oracle Corporation (Verified) Oracle America, Inc.
jusched.exe < 0.01 3,964 K 16,944 K 11564 Java Update Scheduler Oracle Corporation (Verified) Oracle America, Inc.
LMS.exe 3,632 K 3,256 K 7836 Intel® Local Management Service Intel Corporation (Verified) Intel Corporation - Embedded Subsystems and IP Blocks Group
MDLCSvc.exe 39,468 K 6,696 K 14992 MDLCService Dell Inc. (Verified) Dell Inc
MSASCuiL.exe 2,128 K 8,160 K 22248 Windows Defender notification icon Microsoft Corporation (Verified) Microsoft Windows
msiexec.exe 17,644 K 34,900 K 20132 Windows® installer Microsoft Corporation (Verified) Microsoft Windows
NVDisplay.Container.exe 3,712 K 6,072 K 1736 NVIDIA Container NVIDIA Corporation (Verified) NVIDIA Corporation
NvTelemetryContainer.exe 6,452 K 6,712 K 4328 NVIDIA Container NVIDIA Corporation (Verified) NVIDIA Corporation
OfficeClickToRun.exe < 0.01 35,016 K 26,136 K 10864 Microsoft Office Click-to-Run (SxS) Microsoft Corporation (Verified) Microsoft Corporation
OfficeHubTaskHost.exe Suspended 7,392 K 22,392 K 11412 Office Hub Task Host Microsoft Corporation (Verified) Microsoft Corporation
ONENOTEM.EXE 2,512 K 2,644 K 12076 Send to OneNote Tool Microsoft Corporation (Verified) Microsoft Corporation
PresentationFontCache.exe 28,960 K 2,800 K 7980 PresentationFontCache.exe Microsoft Corporation (Verified) Microsoft Corporation
PrintIsolationHost.exe 2,020 K 8,304 K 9204
procexp.exe 3,212 K 10,304 K 21264 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
quickset.exe 3,204 K 10,816 K 20504 QuickSet Dell Inc. (A certificate chain processed, but terminated in a root certificate which is not trusted by the trust provider) Dell Inc.
RAVBg64.exe 6,444 K 10,960 K 15676
RAVBg64.exe 6,164 K 10,292 K 18864
RAVBg64.exe 10,468 K 12,400 K 17316 HD Audio Background Process Realtek Semiconductor (Verified) Realtek Semiconductor Corp.
Registry 5,564 K 25,100 K 120
RegSrvc.exe 2,212 K 3,528 K 4400 Intel® PROSet/Wireless Registry Service Intel® Corporation (Verified) Intel Corporation
RNDBWMService.exe 13,704 K 13,408 K 22712 Windows Service Wrapper CloudBees, Inc. (Verified) Rivet Networks LLC
RtkAudioService64.exe 1,940 K 2,476 K 2776 Realtek Audio Service Realtek Semiconductor (Verified) Realtek Semiconductor Corp.
RtkNGUI64.exe 7,516 K 12,152 K 21224 Realtek HD Audio Manager Realtek Semiconductor (Verified) Realtek Semiconductor Corp.
RuntimeBroker.exe 3,104 K 11,580 K 8776 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 2,868 K 9,788 K 5448 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe < 0.01 8,432 K 25,032 K 16252 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 1,964 K 10,968 K 9580 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 2,656 K 13,164 K 9816 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 7,452 K 27,952 K 9252 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
SearchUI.exe Suspended 104,236 K 86,496 K 17736 Search and Cortana application Microsoft Corporation (Verified) Microsoft Windows
SecurityHealthService.exe 5,928 K 9,592 K 4912 Windows Security Health Service Microsoft Corporation (Verified) Microsoft Windows Publisher
sedlauncher.exe 6,528 K 1,192 K 14208
services.exe 7,044 K 7,024 K 984
SettingSyncHost.exe < 0.01 9,232 K 17,504 K 15652 Host Process for Setting Synchronization Microsoft Corporation (Verified) Microsoft Windows
setup.exe 3,480 K 7,764 K 19676
SgrmBroker.exe 3,672 K 3,616 K 12388 System Guard Runtime Monitor Broker Service Microsoft Corporation (Verified) Microsoft Windows Publisher
ShellExperienceHost.exe Suspended 39,572 K 64,592 K 11848 Windows Shell Experience Host Microsoft Corporation (Verified) Microsoft Windows
sihost.exe 8,748 K 27,760 K 13524 Shell Infrastructure Host Microsoft Corporation (Verified) Microsoft Windows
SkypeApp.exe < 0.01 16,932 K 40,288 K 22660 SkypeApp Microsoft Corporation (No signature was present in the subject) Microsoft Corporation
SkypeBackgroundHost.exe 2,052 K 10,620 K 15112 Microsoft Skype Microsoft Corporation (No signature was present in the subject) Microsoft Corporation
smss.exe 540 K 592 K 596
software_reporter_tool.exe 2,448 K 1,588 K 12336 Software Reporter Tool Google (Verified) Google Inc
software_reporter_tool.exe 2,900 K 1,332 K 12940 Software Reporter Tool Google (Verified) Google Inc
software_reporter_tool.exe 2,568 K 316 K 20624 Software Reporter Tool Google (Verified) Google Inc
spoolsv.exe 6,872 K 8,316 K 3192 Spooler SubSystem App Microsoft Corporation (Verified) Microsoft Windows
SrTasks.exe 38,144 K 14,800 K 7732
SrTasks.exe 38,216 K 13,180 K 7428
SupportAssistAppWire.exe 0.01 20,164 K 27,252 K 16580 SupportAssistAppWire (Verified) Dell Inc.
svchost.exe 1,024 K 920 K 748 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,616 K 5,752 K 1312 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,904 K 2,180 K 1320 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,336 K 5,036 K 1408 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,612 K 1,968 K 1492 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,760 K 2,480 K 1280 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,272 K 6,332 K 2088 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,296 K 5,032 K 2332 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,048 K 3,128 K 2400 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,376 K 5,288 K 2408 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe < 0.01 1,960 K 2,352 K 2876 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,220 K 4,616 K 2448 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,848 K 3,028 K 8072 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,108 K 4,168 K 9180 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 4,196 K 6,088 K 2344 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,080 K 3,876 K 11340 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe < 0.01 2,332 K 2,604 K 8128 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,444 K 1,520 K 13672 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,652 K 4,436 K 10180 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 6,620 K 3,100 K 11520 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,032 K 4,224 K 13564 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,548 K 4,948 K 18964 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,848 K 6,548 K 21372 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,100 K 7,612 K 12044 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,020 K 7,652 K 3728 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,548 K 4,920 K 1416 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,496 K 2,172 K 4424 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,916 K 3,244 K 4436 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,668 K 1,516 K 4336 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,696 K 2,364 K 4540 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,076 K 2,676 K 4516 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,008 K 3,480 K 5148 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,804 K 6,904 K 5392 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,832 K 1,688 K 2044 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe < 0.01 4,300 K 9,420 K 1656 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 7,880 K 10,920 K 2180 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,588 K 6,316 K 13352 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,820 K 4,340 K 1636 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 20,364 K 21,192 K 4456 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,196 K 3,680 K 3152 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,636 K 7,856 K 2724 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,200 K 5,160 K 4220 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 4,564 K 5,468 K 2856 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 4,048 K 10,892 K 9436 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,576 K 3,732 K 5260 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 8,080 K 14,776 K 4464 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,112 K 4,460 K 2156 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1,392 K 1,884 K 2116 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 9,376 K 35,712 K 8580 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 9,212 K 26,220 K 21432 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 12,396 K 24,960 K 5768 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2,408 K 2,448 K 4956 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe < 0.01 5,344 K 13,924 K 4444 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 4,800 K 16,972 K 7572 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,096 K 5,768 K 15012 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,596 K 6,472 K 3520 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 5,956 K 13,484 K 8720 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 5,080 K 14,248 K 16924 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 18,272 K 14,992 K 1756 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 13,092 K 18,472 K 3308 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,488 K 5,360 K 1196 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe < 0.01 10,812 K 14,500 K 3380 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3,136 K 4,840 K 13900 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 15,412 K 24,336 K 4416 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
SystemSettings.exe 49,912 K 103,196 K 16808 Settings Microsoft Corporation (Verified) Microsoft Windows
taskhostw.exe < 0.01 8,876 K 16,808 K 6644 Host Process for Windows Tasks Microsoft Corporation (Verified) Microsoft Windows
TiWorker.exe 11,432 K 15,652 K 19924
unsecapp.exe 2,464 K 4,292 K 6604
Video.UI.exe Suspended 18,460 K 34,040 K 16140 (No signature was present in the subject)
VSSVC.exe 8,676 K 16,992 K 20224 Microsoft® Volume Shadow Copy Service Microsoft Corporation (Verified) Microsoft Windows
WavesSysSvc64.exe 2,416 K 1,108 K 4376 WavesSysSvc Service Application Waves Audio Ltd. (Verified) Waves Inc
wininit.exe 1,812 K 2,752 K 936
winlogon.exe 2,520 K 7,984 K 12764
wlanext.exe 0.01 5,660 K 3,904 K 3796
WmiPrvSE.exe 17,412 K 33,652 K 18388
WmiPrvSE.exe < 0.01 16,608 K 14,564 K 6700
WUDFHost.exe 25,768 K 7,644 K 756
ZeroConfigService.exe < 0.01 5,896 K 8,936 K 4320 Intel® PROSet/Wireless Zero Configure Service Intel® Corporation (Verified) Intel Corporation
MBAMService.exe < 0.01 17,712 K 49,688 K 10972
svchost.exe < 0.01 3,732 K 5,416 K 5336 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
nvcontainer.exe < 0.01 15,100 K 16,780 K 22896 NVIDIA Container NVIDIA Corporation (Verified) NVIDIA Corporation
sedsvc.exe 2,804 K 1,816 K 9012 sedsvc Microsoft Corporation (Verified) Microsoft Windows
Memory Compression < 0.01 1,132 K 287,356 K 2576
svchost.exe < 0.01 7,180 K 22,916 K 1096 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
TrustedInstaller.exe < 0.01 2,424 K 6,980 K 18812 Windows Modules Installer Microsoft Corporation (Verified) Microsoft Windows
RAVBg64.exe < 0.01 4,480 K 1,360 K 14864 HD Audio Background Process Realtek Semiconductor (Verified) Realtek Semiconductor Corp.
chrome.exe < 0.01 189,168 K 247,932 K 4740 Google Chrome Google Inc. (Verified) Google Inc
RuntimeBroker.exe 7,104 K 21,080 K 11124 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 21,188 K 27,932 K 828 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
NVDisplay.Container.exe < 0.01 24,196 K 23,204 K 9700
chrome.exe 25,616 K 33,276 K 10780 Google Chrome Google Inc. (Verified) Google Inc
svchost.exe < 0.01 2,264 K 2,928 K 4088 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe < 0.01 3,732 K 6,420 K 3040 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
chrome.exe < 0.01 41,740 K 61,792 K 11196 Google Chrome Google Inc. (Verified) Google Inc
SearchIndexer.exe 58,536 K 46,644 K 8980 Microsoft Windows Search Indexer Microsoft Corporation (Verified) Microsoft Windows
svchost.exe 3,268 K 6,388 K 2140 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
conhost.exe < 0.01 5,792 K 396 K 2076
chrome.exe < 0.01 73,836 K 111,556 K 20396 Google Chrome Google Inc. (Verified) Google Inc
conhost.exe < 0.01 5,772 K 10,964 K 22700
mbamtray.exe < 0.01 24,004 K 42,572 K 20556 Malwarebytes Tray Application Malwarebytes (Verified) Malwarebytes Corporation
svchost.exe 2,824 K 5,896 K 1852 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe < 0.01 5,512 K 8,340 K 2096 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
lsass.exe < 0.01 10,128 K 14,588 K 1004 Local Security Authority Process Microsoft Corporation (Verified) Microsoft Windows Publisher
conhost.exe < 0.01 5,772 K 564 K 13252
svchost.exe 8,336 K 5,716 K 1936 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
setup.exe < 0.01 18,512 K 32,304 K 8540
WavesSvc64.exe < 0.01 1,540 K 5,820 K 8620 Waves MaxxAudio Service Application Waves Audio Ltd. (Verified) Waves Inc
esif_assist_64.exe < 0.01 1,312 K 3,368 K 10576
PRSvc.exe 51,304 K 9,460 K 13420 KickStart.WindowService Dell (Verified) Dell Inc
svchost.exe < 0.01 2,840 K 4,036 K 1968 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
chrome.exe < 0.01 37,112 K 52,688 K 13784 Google Chrome Google Inc. (Verified) Google Inc
aswidsagenta.exe 0.01 37,928 K 48,432 K 6228 Avast Behavior Shield AVAST Software (Verified) AVAST Software s.r.o.
svchost.exe < 0.01 12,184 K 15,504 K 1672 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
csrss.exe < 0.01 2,380 K 2,456 K 804
svchost.exe < 0.01 15,596 K 18,728 K 4524 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
chrome.exe 0.01 96,608 K 113,284 K 4272 Google Chrome Google Inc. (Verified) Google Inc
afwServ.exe 0.01 20,724 K 24,008 K 4208 Avast firewall service AVAST Software (Verified) AVAST Software s.r.o.
HiPatchService.exe 0.01 33,148 K 40,764 K 13968
chrome.exe 0.01 26,524 K 39,780 K 1340 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 0.01 37,136 K 53,072 K 7780 Google Chrome Google Inc. (Verified) Google Inc
conhost.exe 0.01 5,740 K 6,004 K 14428
svchost.exe 0.02 6,272 K 8,352 K 3420 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
chrome.exe 0.01 175,304 K 216,088 K 18696 Google Chrome Google Inc. (Verified) Google Inc
SupportAssistAgent.exe 0.01 640,612 K 78,460 K 11932 Service Dell Inc. (Verified) Dell Inc.
explorer.exe 0.05 62,988 K 111,512 K 17680 Windows Explorer Microsoft Corporation (Verified) Microsoft Windows
chrome.exe 0.02 109,892 K 162,012 K 11524 Google Chrome Google Inc. (Verified) Google Inc
SupportAssistAppWire.exe 0.02 20,812 K 33,988 K 13212 SupportAssistAppWire (Verified) Dell Inc.
SmartByteTelemetry.exe 0.02 49,432 K 11,792 K 3904
svchost.exe 0.01 11,448 K 13,524 K 1144 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
chrome.exe 0.02 213,264 K 242,108 K 10656 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 0.03 178,192 K 198,676 K 9348 Google Chrome Google Inc. (Verified) Google Inc
csrss.exe 0.04 3,060 K 5,868 K 11460
svchost.exe 0.01 7,048 K 12,572 K 11600 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
BraveUpdate.exe 0.03 3,612 K 6,864 K 14072
AvastSvc.exe 0.01 226,064 K 48,024 K 3544 Avast Service AVAST Software (Verified) AVAST Software s.r.o.
svchost.exe 0.02 4,148 K 6,016 K 2492 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
chrome.exe 0.04 161,064 K 243,476 K 21276 Google Chrome Google Inc. (Verified) Google Inc
AvastUI.exe 0.06 24,048 K 36,712 K 22180 Avast Antivirus AVAST Software (Verified) AVAST Software s.r.o.
nvcontainer.exe 0.05 10,608 K 9,688 K 4492 NVIDIA Container NVIDIA Corporation (Verified) NVIDIA Corporation
pcdrwi.exe 0.16 112,960 K 63,092 K 7292
BraveUpdate.exe 0.07 4,988 K 15,092 K 19864
NVIDIA Web Helper.exe 0.07 15,356 K 16,364 K 17684 NVIDIA Web Helper Service Node.js (Verified) NVIDIA Corporation
svchost.exe 0.04 124,888 K 114,916 K 2124 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
chrome.exe 0.10 87,300 K 109,780 K 22456 Google Chrome Google Inc. (Verified) Google Inc
SmartByteNetworkService.exe 0.05 161,980 K 66,944 K 4384 SmartByte Network Service Rivet Networks (Verified) Rivet Networks LLC
DSAPI.exe 0.17 53,868 K 33,736 K 13984 PC-Doctor, Inc. (Verified) PC-Doctor, Inc.
System 0.23 212 K 4,828 K 4
dwm.exe 0.31 60,140 K 71,828 K 9764
RNDBWM.exe 0.53 6,128 K 10,500 K 12992
Interrupts 0.43 0 K 0 K n/a Hardware Interrupts and DPCs
procexp64.exe 0.92 89,228 K 120,608 K 464 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
svchost.exe 2.03 32,920 K 50,916 K 11912 Host Process for Windows Services Microsoft Corporation (Verified) Microsoft Windows Publisher
System Idle Process 94.08 52 K 8 K 0
 
 
 
 
Image Name                     PID Services                                    
========================= ======== ============================================
System Idle Process              0 N/A                                         
System                           4 N/A                                         
Registry                       120 N/A                                         
smss.exe                       596 N/A                                         
csrss.exe                      804 N/A                                         
wininit.exe                    936 N/A                                         
services.exe                   984 N/A                                         
lsass.exe                     1004 KeyIso, SamSs, VaultSvc                     
svchost.exe                    748 PlugPlay                                    
svchost.exe                    828 BrokerInfrastructure, DcomLaunch, Power,    
                                   SystemEventsBroker                          
fontdrvhost.exe               1016 N/A                                         
WUDFHost.exe                   756 N/A                                         
svchost.exe                   1144 RpcEptMapper, RpcSs                         
svchost.exe                   1196 LSM                                         
svchost.exe                   1312 bthserv                                     
svchost.exe                   1320 BthAvctpSvc                                 
svchost.exe                   1408 NcbService                                  
svchost.exe                   1416 TimeBrokerSvc                               
svchost.exe                   1492 hidserv                                     
svchost.exe                   1656 lfsvc                                       
NVDisplay.Container.exe       1736 NVDisplay.ContainerLocalSystem              
svchost.exe                   1756 EventLog                                    
svchost.exe                   1852 ProfSvc                                     
svchost.exe                   1936 nsi                                         
svchost.exe                   1968 Dhcp                                        
svchost.exe                   2044 BTAGService                                 
svchost.exe                   1280 DeviceAssociationService                    
dasHost.exe                   1628 N/A                                         
svchost.exe                   2088 camsvc                                      
svchost.exe                   2096 NlaSvc                                      
svchost.exe                   2116 Themes                                      
svchost.exe                   2124 SysMain                                     
svchost.exe                   2140 UserManager                                 
svchost.exe                   2156 EventSystem                                 
svchost.exe                   2180 Schedule                                    
svchost.exe                   2332 SENS                                        
igfxCUIService.exe            2360 igfxCUIService2.0.0.0                       
svchost.exe                   2400 AudioEndpointBuilder                        
svchost.exe                   2408 FontCache                                   
svchost.exe                   2492 netprofm                                    
Memory Compression            2576 N/A                                         
svchost.exe                   2724 Audiosrv                                    
RtkAudioService64.exe         2776 RtkAudioService                             
svchost.exe                   2856 Dnscache                                    
svchost.exe                   2876 DusmSvc                                     
svchost.exe                   3040 Wcmsvc                                      
svchost.exe                   2448 SEMgrSvc                                    
svchost.exe                   3152 WinHttpAutoProxySvc                         
svchost.exe                   3308 StateRepository                             
svchost.exe                   3380 BFE, CoreMessagingRegistrar, mpssvc         
svchost.exe                   3420 WlanSvc                                     
svchost.exe                   3520 ShellHWDetection                            
AvastSvc.exe                  3544 avast! Antivirus                            
wlanext.exe                   3796 N/A                                         
conhost.exe                   3804 N/A                                         
spoolsv.exe                   3192 Spooler                                     
svchost.exe                   4088 LanmanWorkstation                           
afwServ.exe                   4208 avast! Firewall                             
ZeroConfigService.exe         4320 ZeroConfigService                           
NvTelemetryContainer.exe      4328 NvTelemetryContainer                        
svchost.exe                   4336 SstpSvc                                     
WavesSysSvc64.exe             4376 WavesSysSvc                                 
SmartByteNetworkService.e     4384 SmartByte Network Service x64               
ibtsiva.exe                   4392 ibtsiva                                     
RegSrvc.exe                   4400 RegSrvc                                     
EvtEng.exe                    4408 EvtEng                                      
svchost.exe                   4416 DiagTrack                                   
svchost.exe                   4424 TrkWks                                      
svchost.exe                   4436 Netman                                      
svchost.exe                   4444 WpnService                                  
svchost.exe                   4456 DPS                                         
svchost.exe                   4464 CryptSvc                                    
nvcontainer.exe               4492 NvContainerLocalSystem                      
esif_uf.exe                   4500 esifsvc                                     
IntelCpHDCPSvc.exe            4508 cplspcon                                    
svchost.exe                   4516 stisvc                                      
svchost.exe                   4524 Winmgmt                                     
svchost.exe                   4540 IKEEXT                                      
SecurityHealthService.exe     4912 SecurityHealthService                       
svchost.exe                   4956 TapiSrv                                     
IntelCpHeciSvc.exe            4204 cphs                                        
svchost.exe                   5148 WdiServiceHost                              
svchost.exe                   5260 LanmanServer                                
svchost.exe                   5336 RasMan                                      
svchost.exe                   5392 iphlpsvc                                    
unsecapp.exe                  6604 N/A                                         
WmiPrvSE.exe                  6700 N/A                                         
svchost.exe                   1636 wscsvc                                      
aswidsagenta.exe              6228 aswbIDSAgent                                
svchost.exe                   7572 TokenBroker                                 
PresentationFontCache.exe     7980 FontCache3.0.0.0                            
svchost.exe                   8072 TabletInputService                          
svchost.exe                   8720 CDPSvc                                      
SearchIndexer.exe             8980 WSearch                                     
svchost.exe                   9180 NgcCtnrSvc                                  
svchost.exe                   2344 PcaSvc                                      
svchost.exe                   9436 LicenseManager                              
svchost.exe                  11912 UsoSvc, wuauserv                            
dllhost.exe                  13040 N/A                                         
svchost.exe                  13900 SSDPSRV                                     
DDVRulesProcessor.exe        13908 DDVRulesProcessor                           
DCCService.exe               13432 Dell Customer Connect                       
DFSSvc.exe                   14136 Dell Foundation Services                    
DSAPI.exe                    13984 Dell Hardware Support                       
MDLCSvc.exe                  14992 Dell Help & Support                         
pcdrwi.exe                    7292 N/A                                         
conhost.exe                  12864 N/A                                         
DeliveryService.exe           7288 DellDigitalDelivery                         
sedlauncher.exe              14208 N/A                                         
svchost.exe                  11340 PolicyAgent                                 
svchost.exe                  15012 StorSvc                                     
svchost.exe                  11600 DoSvc                                       
svchost.exe                   8128 RmSvc                                       
svchost.exe                   1672 BITS                                        
svchost.exe                  13672 seclogon                                    
GoogleCrashHandler.exe       14544 N/A                                         
IAStorDataMgrSvc.exe          8764 IAStorDataMgrSvc                            
jhi_service.exe               9628 jhi_service                                 
LMS.exe                       7836 LMS                                         
GoogleCrashHandler64.exe     10420 N/A                                         
PRSvc.exe                    13420 Product Registration                        
sedsvc.exe                    9012 sedsvc                                      
SgrmBroker.exe               12388 SgrmBroker                                  
SupportAssistAgent.exe       11932 SupportAssistAgent                          
DDVDataCollector.exe         15288 DDVDataCollector                            
DDVCollectorSvcApi.exe       10208 DDVCollectorSvcApi                          
svchost.exe                  13352 Appinfo                                     
svchost.exe                  10180 SensorService                               
SmartByteTelemetry.exe        3904 N/A                                         
svchost.exe                  11520 DsSvc                                       
svchost.exe                  16924 wlidsvc                                     
svchost.exe                   4220 WebClient                                   
svchost.exe                  13564 WdiSystemHost                               
csrss.exe                    11460 N/A                                         
winlogon.exe                 12764 N/A                                         
fontdrvhost.exe               4772 N/A                                         
dwm.exe                       9764 N/A                                         
NVDisplay.Container.exe       9700 N/A                                         
svchost.exe                  18964 lmhosts                                     
esif_assist_64.exe           10576 N/A                                         
RAVBg64.exe                  15676 N/A                                         
RAVBg64.exe                  18864 N/A                                         
sihost.exe                   13524 N/A                                         
svchost.exe                   1096 CDPUserSvc_57b64fa                          
svchost.exe                   8580 WpnUserService_57b64fa                      
igfxEM.exe                    1924 N/A                                         
taskhostw.exe                 6644 N/A                                         
nvcontainer.exe              22896 N/A                                         
explorer.exe                 17680 N/A                                         
WmiPrvSE.exe                 18388 N/A                                         
DFS.Common.Agent.exe         21536 N/A                                         
conhost.exe                   6856 N/A                                         
svchost.exe                  21372 NgcSvc                                      
RNDBWMService.exe            22712 RNDBWM                                      
SupportAssistAppWire.exe     16580 N/A                                         
ShellExperienceHost.exe      11848 N/A                                         
RNDBWM.exe                   12992 N/A                                         
conhost.exe                  14428 N/A                                         
SearchUI.exe                 17736 N/A                                         
RuntimeBroker.exe            11124 N/A                                         
OfficeClickToRun.exe         10864 ClickToRunSvc                               
RuntimeBroker.exe            16252 N/A                                         
RuntimeBroker.exe             9252 N/A                                         
SettingSyncHost.exe          15652 N/A                                         
ctfmon.exe                   23288 N/A                                         
RAVBg64.exe                  14864 N/A                                         
svchost.exe                  21432 OneSyncSvc_57b64fa,                         
                                   PimIndexMaintenanceSvc_57b64fa,             
                                   UnistoreSvc_57b64fa, UserDataSvc_57b64fa    
SkypeApp.exe                 22660 N/A                                         
MSASCuiL.exe                 22248 N/A                                         
OfficeHubTaskHost.exe        11412 N/A                                         
RtkNGUI64.exe                21224 N/A                                         
Video.UI.exe                 16140 N/A                                         
RAVBg64.exe                  17316 N/A                                         
SkypeBackgroundHost.exe      15112 N/A                                         
quickset.exe                 20504 N/A                                         
WavesSvc64.exe                8620 N/A                                         
backgroundTaskHost.exe        3484 N/A                                         
RuntimeBroker.exe             8776 N/A                                         
jusched.exe                  11564 N/A                                         
chrome.exe                   21276 N/A                                         
ONENOTEM.EXE                 12076 N/A                                         
chrome.exe                    9040 N/A                                         
chrome.exe                   21788 N/A                                         
chrome.exe                    2280 N/A                                         
chrome.exe                   11676 N/A                                         
chrome.exe                   16328 N/A                                         
chrome.exe                    6000 N/A                                         
chrome.exe                   13784 N/A                                         
chrome.exe                   19212 N/A                                         
RuntimeBroker.exe             9816 N/A                                         
chrome.exe                    4272 N/A                                         
AvastUI.exe                  22180 N/A                                         
chrome.exe                   22364 N/A                                         
IAStorIcon.exe               18948 N/A                                         
chrome.exe                    9720 N/A                                         
chrome.exe                   12932 N/A                                         
chrome.exe                    7780 N/A                                         
chrome.exe                   10104 N/A                                         
chrome.exe                   10780 N/A                                         
chrome.exe                    6748 N/A                                         
chrome.exe                   10656 N/A                                         
TrustedInstaller.exe         18812 TrustedInstaller                            
TiWorker.exe                 19924 N/A                                         
chrome.exe                   10940 N/A                                         
DeviceCensus.exe             15808 N/A                                         
CompatTelRunner.exe           1828 N/A                                         
conhost.exe                  13252 N/A                                         
conhost.exe                   2076 N/A                                         
CompatTelRunner.exe          22984 N/A                                         
chrome.exe                    9348 N/A                                         
chrome.exe                   11336 N/A                                         
chrome.exe                   11196 N/A                                         
chrome.exe                   22456 N/A                                         
chrome.exe                    4832 N/A                                         
chrome.exe                   20848 N/A                                         
RuntimeBroker.exe             5448 N/A                                         
chrome.exe                   21240 N/A                                         
chrome.exe                   20320 N/A                                         
chrome.exe                   20380 N/A                                         
chrome.exe                    4740 N/A                                         
NVIDIA Web Helper.exe        17684 N/A                                         
chrome.exe                   18696 N/A                                         
chrome.exe                    8896 N/A                                         
chrome.exe                   11524 N/A                                         
IntelSoftwareAssetManager     2432 N/A                                         
chrome.exe                   22696 N/A                                         
jucheck.exe                  10316 N/A                                         
conhost.exe                  12676 N/A                                         
chrome.exe                   20396 N/A                                         
chrome.exe                   13436 N/A                                         
chrome.exe                    1340 N/A                                         
dllhost.exe                  10736 N/A                                         
procexp.exe                  21264 N/A                                         
procexp64.exe                  464 N/A                                         
software_reporter_tool.ex    12940 N/A                                         
software_reporter_tool.ex    12336 N/A                                         
software_reporter_tool.ex    20624 N/A                                         
svchost.exe                  12044 swprv                                       
ApplicationFrameHost.exe     18400 N/A                                         
SystemSettings.exe           16808 N/A                                         
svchost.exe                   5768 AppXSvc                                     
audiodg.exe                  16832 N/A                                         
HiPatchService.exe           13968 HiPatchService                              
MBAMService.exe              10972 MBAMService                                 
msiexec.exe                  20132 msiserver                                   
mbamtray.exe                 20556 N/A                                         
SrTasks.exe                   7732 N/A                                         
conhost.exe                   2528 N/A                                         
CompatTelRunner.exe          14264 N/A                                         
conhost.exe                  22700 N/A                                         
SrTasks.exe                   7428 N/A                                         
conhost.exe                    236 N/A                                         
BraveUpdate.exe              14072 N/A                                         
chrome.exe                   20500 N/A                                         
svchost.exe                   3728 ClipSVC                                     
BraveUpdate.exe              19864 brave                                       
brave_installer-x64.exe      15396 N/A                                         
setup.exe                     8540 N/A                                         
setup.exe                    19676 N/A                                         
RuntimeBroker.exe             9580 N/A                                         
SupportAssistAppWire.exe     13212 N/A                                         
SearchProtocolHost.exe       17080 N/A                                         
SearchFilterHost.exe         19032 N/A                                         
smartscreen.exe              20884 N/A                                         
notepad.exe                   7700 N/A                                         
SearchProtocolHost.exe       16280 N/A                                         
VSSVC.exe                    21424 VSS                                         
wuauclt.exe                  21756 N/A                                         
svchost.exe                  14312 DeviceInstall                               
backgroundTaskHost.exe       19788 N/A                                         
drvinst.exe                  21064 N/A                                         
dllhost.exe                   9140 N/A                                         
dllhost.exe                  17956 N/A                                         
cmd.exe                      13232 N/A                                         
conhost.exe                  19396 N/A                                         
tasklist.exe                  5272 N/A                                         
 

  • 0

#6
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

Don't see Speccy.  Try again.

 

Also can I see a new FRST scan with Addition.txt checked?


  • 0

#7
Wolfman360

Wolfman360

    Member

  • Topic Starter
  • Member
  • PipPip
  • 32 posts

Having real issues trying to post to the forum, it keeps saying "You are attempting to perform an unauthorised operation"

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 01.01.2019
Ran by dan31 (administrator) on DESKTOP-84H6AVC (04-01-2019 11:45:18)
Running from C:\Users\dan31\OneDrive\Documents\Archive\MacroToolworksFiles
Loaded Profiles: dan31 (Available Profiles: dan31)
Platform: Windows 10 Home Version 1803 17134.472 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki127176.inf_amd64_86c658cabfb17c9c\igfxCUIService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Rivet Networks) C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe
(Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Intel® Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki127176.inf_amd64_86c658cabfb17c9c\IntelCpHDCPSvc.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki127176.inf_amd64_86c658cabfb17c9c\IntelCpHeciSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe
(Dell Inc.) C:\Program Files (x86)\Dell Customer Connect\DCCService.exe
(Dell) C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe
(PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1382\DSAPI.exe
(Dell Inc.) C:\Program Files\Dell\Dell Help & Support\MDLCSvc.exe
(PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1382\pcdrwi.exe
(Dell Products, LP.) C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.23\GoogleCrashHandler.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.23\GoogleCrashHandler64.exe
(Dell) C:\Program Files\Dell\Dell Product Registration\PRSvc.exe
(Microsoft Corporation) C:\Program Files\rempl\sedsvc.exe
(Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe
(DELL) C:\Program Files\Rivet Networks\SmartByte\SmartByteTelemetry.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki127176.inf_amd64_86c658cabfb17c9c\igfxEM.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Dell) C:\Program Files\Dell\Dell Foundation Services\DFS.Common.Agent.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.10314.31700.1000_x64__8wekyb3d8bbwe\Office16\OfficeHubTaskHost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\SET6FF6.tmp
() C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18102.12011.0_x64__8wekyb3d8bbwe\Video.UI.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(Waves Audio Ltd.) C:\Config.Msi\371f40db.rbf
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
(Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\SkypeBridge\SkypeBridge.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\nvapiw.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
(CloudBees, Inc.) C:\Program Files\Rivet Networks\SmartByte\RNDBWMService.exe
(Rivet Networks LLC) C:\Program Files\Rivet Networks\SmartByte\RNDBWM.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Office.OneNote_16001.11126.20076.0_x64__8wekyb3d8bbwe\onenoteim.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18112.17430.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\HelpPane.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-11] (Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9278152 2018-11-29] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_MAXX6] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1515208 2018-11-29] (Realtek Semiconductor)
HKLM\...\Run: [QuickSet] => c:\Program Files\Dell\QuickSet\QuickSet.exe [3075552 2015-04-29] (Dell Inc.)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [323040 2015-11-18] (Intel Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [242392 2018-12-02] (AVAST Software)
HKLM\...\Run: [RtHDVBg_PushButton] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1515208 2018-11-29] (Realtek Semiconductor)
HKLM\...\Run: [WavesSvc] => C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [723928 2017-01-26] (Waves Audio Ltd.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
HKLM-x32\...\RunOnce: [GrpConv] => grpconv -o
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3133216 2018-12-14] (Valve Corporation)
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3106088 2018-04-10] (Electronic Arts)
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\Run: [Chromium] => c:\users\dan31\appdata\local\chromium\application\chrome.exe [829440 2017-02-15] (The Chromium Authors)
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\Run: [GoogleChromeAutoLaunch_34001F2131DECEAF85E80D446A5BD02C] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1587680 2018-12-12] (Google Inc.)
HKLM\...\Drivers32-x32: [vidc.VP60] => C:\Windows\SysWOW64\vp6vfw.dll [447752 2014-09-16] (On2.com)
HKLM\...\Drivers32-x32: [vidc.VP61] => C:\Windows\SysWOW64\vp6vfw.dll [447752 2014-09-16] (On2.com)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\71.0.3578.98\Installer\chrmstp.exe [2018-12-14] (Google Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\71.0.58.18\Installer\chrmstp.exe [2019-01-02] (Brave Software, Inc.)
Startup: C:\Users\dan31\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk [2019-01-02]
ShortcutTarget: Send to OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\..\Interfaces\{3b316302-223d-4171-9622-f9d9728ee6f0}: [DhcpNameServer] 192.168.1.254
 
Internet Explorer:
==================
HKU\S-1-5-21-50118766-877759180-1359360943-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell17win10.msn.com/?pc=DCTE
SearchScopes: HKU\S-1-5-21-50118766-877759180-1359360943-1001 -> DefaultScope {435D8A9F-20CE-4D95-838B-FCED344812AC} URL = 
SearchScopes: HKU\S-1-5-21-50118766-877759180-1359360943-1001 -> {435D8A9F-20CE-4D95-838B-FCED344812AC} URL = 
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2018-12-19] (Microsoft Corporation)
BHO: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_112\bin\ssv.dll [2017-01-02] (Oracle Corporation)
BHO: No Name -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> No File
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_112\bin\jp2ssv.dll [2017-01-02] (Oracle Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2018-12-06] (Microsoft Corporation)
BHO-x32: No Name -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> No File
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-12-06] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-12-06] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-12-06] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-12-06] (Microsoft Corporation)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} -  No File
 
FireFox:
========
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\e10ssaffplg.xpi => not found
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\e10ssaffplg.xpi => not found
FF Plugin: @java.com/DTPlugin,version=11.112.2 -> C:\Program Files\Java\jre1.8.0_112\bin\dtplugin\npDeployJava1.dll [2017-01-02] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.112.2 -> C:\Program Files\Java\jre1.8.0_112\bin\plugin2\npjp2.dll [2017-01-02] (Oracle Corporation)
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1227197.dll [2017-02-20] (Adobe Systems, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-08-25] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-08-25] (Intel Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2018-09-11] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-09-11] (Microsoft Corporation)
FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=3 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2018-11-09] (BraveSoftware Inc.)
FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=9 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2018-11-09] (BraveSoftware Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-17] (Google Inc.)
FF Plugin HKU\S-1-5-21-50118766-877759180-1359360943-1001: @nsroblox.roblox.com/launcher -> C:\Users\dan31\AppData\Local\Roblox\Versions\version-6a65e85da5fe4a75\\NPRobloxProxy.dll [2012-12-31] ( ROBLOX Corporation)
FF Plugin HKU\S-1-5-21-50118766-877759180-1359360943-1001: @nsroblox.roblox.com/launcher64 -> C:\Users\dan31\AppData\Local\Roblox\Versions\version-6a65e85da5fe4a75\\NPRobloxProxy64.dll [2012-12-31] ( ROBLOX Corporation)
 
Chrome: 
=======
CHR Profile: C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default [2019-01-04]
CHR Extension: (Slides) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-11-01]
CHR Extension: (Docs) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-11-06]
CHR Extension: (Google Drive) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-10-17]
CHR Extension: (YouTube) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-11-07]
CHR Extension: (Avast SafePrice | Comparison, deals, coupons) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2018-12-22]
CHR Extension: (Pouch - Instantly Get UK Voucher Codes) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\eoolfmmapnkhandljfaaofncecfakljd [2018-12-06]
CHR Extension: (Sheets) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-11-01]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2018-12-06]
CHR Extension: (Google Docs Offline) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-22]
CHR Extension: (AdBlock) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-12-14]
CHR Extension: (Avast Online Security) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2018-09-26]
CHR Extension: (Grammarly for Chrome) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2018-12-06]
CHR Extension: (Chrome Web Store Payments) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Amazon Assistant for Chrome) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam [2018-12-05]
CHR Extension: (Gmail) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-11-07]
CHR Extension: (Chrome Media Router) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-12-19]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
 
==================== Services (Whitelisted) ====================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [8188768 2018-12-02] (AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [324000 2018-12-02] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [338632 2018-12-02] (AVAST Software)
S3 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2018-12-02] (AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1522184 2017-07-31] ()
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [160200 2018-11-09] (BraveSoftware Inc.)
S3 BraveElevationService; C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\71.0.58.18\elevation_service.exe [442856 2018-12-23] (Brave Software, Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [160200 2018-11-09] (BraveSoftware Inc.)
S3 BRSptStub; C:\ProgramData\BitRaider\BRSptStub.exe [363208 2017-12-26] (BitRaider, LLC)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9646240 2018-12-07] (Microsoft Corporation)
R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [209392 2018-10-22] (Dell Inc.)
R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3347440 2018-10-22] (Dell Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [218096 2018-10-22] (Dell Inc.)
R2 Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [130936 2016-12-21] (Dell Inc.)
R2 Dell Foundation Services; C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe [97616 2017-01-11] (Dell)
R2 Dell Hardware Support; C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1382\DSAPI.exe [1002816 2018-11-08] (PC-Doctor, Inc.)
R2 Dell Help & Support; C:\Program Files\Dell\Dell Help & Support\MDLCSvc.exe [40976 2017-09-18] (Dell Inc.)
S2 DellUpdate; C:\Program Files (x86)\Dell Update\DellUpService.exe [232320 2017-11-21] (Dell Inc.)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [780928 2018-07-29] (EasyAntiCheat Ltd)
R2 esifsvc; C:\WINDOWS\System32\Intel\DPTF\esif_uf.exe [1585784 2016-06-03] (Intel Corporation)
U2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2018-06-11] (Hi-Rez Studios) [File not signed]
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [19424 2015-11-18] (Intel Corporation)
R2 ibtsiva; C:\WINDOWS\system32\ibtsiva.exe [190216 2016-10-15] (Intel Corporation)
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel® Corporation)
S3 Intel® WiDi SAM; C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel® Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [19088 2015-06-24] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [207648 2015-10-16] (Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6347056 2018-09-19] (Malwarebytes)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [265864 2018-03-19] ()
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [523152 2018-03-14] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [523152 2018-03-14] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2158912 2018-04-10] (Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3028808 2018-04-10] (Electronic Arts)
R2 Product Registration; C:\Program Files\Dell\Dell Product Registration\PRSvc.exe [47144 2017-04-06] (Dell)
R2 RNDBWM; C:\Program Files\Rivet Networks\SmartByte\RNDBWMService.exe [64184 2018-03-20] (CloudBees, Inc.)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [277192 2018-11-29] (Realtek Semiconductor)
R2 SmartByte Network Service x64; C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe [2011848 2018-03-20] (Rivet Networks)
S4 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] ()
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [38872 2018-10-25] (Dell Inc.)
R2 WavesSysSvc; C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe [615384 2017-02-07] (Waves Audio Ltd.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4451616 2018-04-11] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [107136 2018-09-21] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3848328 2018-03-19] (Intel® Corporation)
S4 McAfee SiteAdvisor Service; "C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe" [X]
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
 
===================== Drivers (Whitelisted) ======================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (Apple Inc.)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [201240 2018-12-02] (AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdrivera.sys [230344 2018-12-02] (AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsha.sys [201768 2018-12-02] (AVAST Software)
R0 aswblog; C:\WINDOWS\System32\drivers\aswbloga.sys [346592 2018-12-02] (AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniva.sys [59496 2018-12-02] (AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [15360 2018-07-28] (AVAST Software)
S3 aswHwid; C:\WINDOWS\System32\drivers\aswHwid.sys [46384 2018-12-02] (AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42288 2018-12-02] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [163208 2018-12-02] (AVAST Software)
R1 aswNetSec; C:\WINDOWS\System32\drivers\aswNetSec.sys [512072 2018-12-02] (AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [111800 2018-12-02] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [87432 2018-12-02] (AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [1028680 2018-12-02] (AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [469272 2018-12-02] (AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [208472 2018-12-02] (AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [380464 2018-12-02] (AVAST Software)
S3 BRDriver64_1_3_3_E02B25FC; C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [78088 2018-01-01] (BitRaider)
R3 DDDriver; C:\WINDOWS\system32\drivers\DDDriver64Dcsa.sys [36400 2018-10-20] (Dell Inc.)
S3 DellProf; C:\WINDOWS\system32\drivers\DellProf.sys [41208 2018-05-08] (Dell Computer Corporation)
R3 DellRbtn; C:\WINDOWS\System32\drivers\DellRbtn.sys [19440 2015-05-08] (OSR Open Systems Resources, Inc.)
R3 dptf_acpi; C:\WINDOWS\System32\drivers\dptf_acpi.sys [70208 2016-05-19] (Intel Corporation)
R3 dptf_cpu; C:\WINDOWS\System32\drivers\dptf_cpu.sys [65088 2016-05-19] (Intel Corporation)
R3 esif_lf; C:\WINDOWS\System32\drivers\esif_lf.sys [343608 2016-05-19] (Intel Corporation)
R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [250624 2016-10-15] (Intel Corporation)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [260480 2019-01-02] (Malwarebytes)
R3 Netwtw04; C:\WINDOWS\system32\DRIVERS\Netwtw04.sys [8623128 2018-04-04] (Intel Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvdm.inf_amd64_2c7c773e20d8bcfa\nvlddmkm.sys [17538080 2018-06-12] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [31632 2018-03-14] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [59240 2017-12-15] (NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [59272 2018-03-14] (NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [886528 2015-05-29] (Realtek )
R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [777944 2016-03-21] (Realsil Semiconductor Corporation)
R2 SmbCoSvc; C:\WINDOWS\system32\DRIVERS\SmbCo10X64.sys [119528 2018-03-20] (Rivet Networks, LLC.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44616 2018-04-11] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [331680 2018-04-11] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [44032 2018-04-11] (Microsoft Corporation)
S3 mfesapsn; \??\C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2019-01-04 11:09 - 2019-01-04 11:10 - 000000000 ____D C:\checkspec
2019-01-02 18:27 - 2019-01-02 18:28 - 000000000 ____D C:\Users\dan31\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpeedFan
2019-01-02 18:27 - 2019-01-02 18:28 - 000000000 ____D C:\Program Files (x86)\SpeedFan
2019-01-02 18:27 - 2019-01-02 18:27 - 003086696 _____ C:\Users\dan31\Downloads\instspeedfan452 (1).exe
2019-01-02 18:27 - 2019-01-02 18:27 - 000000045 _____ C:\WINDOWS\SysWOW64\initdebug.nfo
2019-01-02 17:18 - 2019-01-02 17:18 - 000000000 ____D C:\Users\dan31\Desktop\Dan's PA Bible
2019-01-02 14:08 - 2019-01-02 14:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy
2019-01-02 14:08 - 2019-01-02 14:08 - 000000000 ____D C:\Program Files\Speccy
2019-01-02 14:07 - 2019-01-02 14:07 - 006889184 _____ (Piriform Ltd) C:\Users\dan31\Downloads\spsetup132.exe
2019-01-02 14:06 - 2019-01-02 14:06 - 000000000 ____D C:\Program Files\Waves
2019-01-02 14:05 - 2019-01-02 14:05 - 000022763 _____ C:\junk.txt
2019-01-02 14:00 - 2017-01-02 13:00 - 000110144 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-64.dll
2019-01-02 13:53 - 2019-01-02 13:53 - 000260480 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2019-01-02 13:50 - 2019-01-02 13:50 - 002703128 _____ (Sysinternals - www.sysinternals.com) C:\Users\dan31\Downloads\procexp.exe
2018-12-28 00:31 - 2018-12-28 00:31 - 000649611 _____ C:\Users\dan31\Downloads\Browning (1).pdf
2018-12-28 00:31 - 2018-12-28 00:31 - 000240833 _____ C:\Users\dan31\Downloads\Daniel.pdf
2018-12-28 00:17 - 2018-12-28 00:18 - 000000000 ____D C:\Users\dan31\OneDrive\Documents\Archive
2018-12-28 00:14 - 2018-12-28 00:14 - 000613318 _____ C:\Users\dan31\Downloads\club_lloyds_cinema_vouchers_0.pdf
2018-12-28 00:05 - 2018-12-28 00:05 - 000000000 ____D C:\Users\dan31\AppData\LocalLow\Temp
2018-12-27 22:31 - 2018-12-27 22:31 - 000020715 _____ C:\Users\dan31\Downloads\Browning Daniel.pdf
2018-12-23 00:22 - 2018-12-23 00:28 - 854935321 _____ C:\Users\dan31\Downloads\medical_examination_2.zip
2018-12-22 23:49 - 2018-12-22 23:49 - 000000000 ____D C:\Users\dan31\AppData\LocalLow\Strange Loop Games
2018-12-19 22:38 - 2018-12-14 12:24 - 001364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2018-12-19 22:38 - 2018-12-14 07:29 - 006567472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2018-12-19 22:38 - 2018-12-14 07:29 - 001130760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2018-12-19 22:38 - 2018-12-14 07:25 - 001035256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2018-12-19 22:38 - 2018-12-14 07:23 - 001221432 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2018-12-19 22:38 - 2018-12-14 07:23 - 001029944 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2018-12-19 22:38 - 2018-12-14 07:23 - 000566568 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2018-12-19 22:38 - 2018-12-14 07:23 - 000134968 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2018-12-19 22:38 - 2018-12-14 07:23 - 000076088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2018-12-19 22:38 - 2018-12-14 07:22 - 009084216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2018-12-19 22:38 - 2018-12-14 07:22 - 007520104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2018-12-19 22:38 - 2018-12-14 07:21 - 001457240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2018-12-19 22:38 - 2018-12-14 07:21 - 001257672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2018-12-19 22:38 - 2018-12-14 07:21 - 001140480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2018-12-19 22:38 - 2018-12-14 07:21 - 001098064 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2018-12-19 22:38 - 2018-12-14 07:21 - 000982912 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2018-12-19 22:38 - 2018-12-14 07:13 - 005775872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2018-12-19 22:38 - 2018-12-14 07:12 - 005307392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2018-12-19 22:38 - 2018-12-14 07:10 - 001295360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll
2018-12-19 22:38 - 2018-12-14 07:07 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2018-12-19 22:38 - 2018-12-14 06:55 - 003396608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2018-12-19 22:38 - 2018-12-14 06:55 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2018-12-19 22:38 - 2018-12-14 06:54 - 006032384 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2018-12-19 22:38 - 2018-12-14 06:54 - 001307648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll
2018-12-19 22:38 - 2018-12-14 06:54 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2018-12-19 22:38 - 2018-12-14 06:53 - 007573504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2018-12-19 22:38 - 2018-12-14 06:52 - 002173440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2018-12-19 22:38 - 2018-12-14 06:52 - 001826816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2018-12-19 22:38 - 2018-12-14 06:51 - 001551360 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2018-12-19 22:38 - 2018-12-14 06:50 - 000776192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2018-12-19 22:38 - 2018-12-14 05:34 - 000001312 _____ C:\WINDOWS\system32\tcbres.wim
2018-12-19 22:24 - 2018-12-19 22:24 - 000002500 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business.lnk
2018-12-19 22:24 - 2018-12-19 22:24 - 000002495 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2018-12-19 22:24 - 2018-12-19 22:24 - 000002494 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2018-12-19 22:24 - 2018-12-19 22:24 - 000002458 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2018-12-19 22:24 - 2018-12-19 22:24 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2018-12-19 22:24 - 2018-12-19 22:24 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2018-12-19 22:24 - 2018-12-19 22:24 - 000002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2018-12-19 22:24 - 2018-12-19 22:24 - 000002437 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2018-12-19 22:24 - 2018-12-19 22:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
2018-12-19 22:22 - 2018-12-19 22:22 - 000085828 _____ C:\Users\dan31\Downloads\Welcome_to_the_Physician_Associate_Programme.zip
2018-12-18 00:03 - 2018-12-18 00:03 - 000008087 _____ C:\Users\dan31\Downloads\ePayslip (5).pdf
2018-12-18 00:03 - 2018-12-18 00:03 - 000008013 _____ C:\Users\dan31\Downloads\ePayslip (4).pdf
2018-12-17 23:58 - 2018-12-17 23:58 - 000025378 _____ C:\Users\dan31\Downloads\Leavers-Annual-Leave-Calculator.xlsx
2018-12-17 23:11 - 2018-12-17 23:11 - 000341551 _____ C:\Users\dan31\Downloads\49183228211-DSA2-181213-0846-(18-19).pdf
2018-12-14 20:20 - 2018-12-14 20:20 - 000051172 _____ C:\Users\dan31\Downloads\CSageDocuments541837640.pdf
2018-12-14 20:20 - 2018-12-14 20:20 - 000033689 _____ C:\Users\dan31\Downloads\Sales Order 0000029302.pdf
2018-12-14 20:19 - 2018-12-14 20:20 - 000032047 _____ C:\Users\dan31\Downloads\CSageDocuments541837203.pdf
2018-12-14 20:19 - 2018-12-08 12:42 - 004527800 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2018-12-14 20:19 - 2018-12-08 12:42 - 001616824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2018-12-14 20:19 - 2018-12-08 12:29 - 013572608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2018-12-14 20:19 - 2018-12-08 12:28 - 012710400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2018-12-14 20:19 - 2018-12-08 12:25 - 012500992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2018-12-14 20:19 - 2018-12-08 08:07 - 005625352 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2018-12-14 20:19 - 2018-12-08 08:06 - 001017168 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2adec.dll
2018-12-14 20:19 - 2018-12-08 08:05 - 007436216 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2018-12-14 20:19 - 2018-12-08 08:04 - 002371296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2018-12-14 20:19 - 2018-12-08 07:49 - 025855488 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2018-12-14 20:19 - 2018-12-08 07:45 - 006043496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2018-12-14 20:19 - 2018-12-08 07:42 - 022715392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2018-12-14 20:19 - 2018-12-08 07:41 - 007057408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2018-12-14 20:19 - 2018-12-08 07:40 - 004710912 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2018-12-14 20:19 - 2018-12-08 07:40 - 004384768 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2018-12-14 20:19 - 2018-12-08 07:38 - 022016000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2018-12-14 20:19 - 2018-12-08 07:33 - 019405312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2018-12-14 20:19 - 2018-11-09 06:15 - 021388752 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2018-12-14 20:19 - 2018-11-09 02:56 - 001213472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2018-12-14 20:19 - 2018-11-09 02:21 - 004866560 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2018-12-14 20:19 - 2018-11-09 02:16 - 004939776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2018-12-14 20:19 - 2018-11-09 01:26 - 004514816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2018-12-14 20:18 - 2018-12-08 12:47 - 001048712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2018-12-14 20:18 - 2018-12-08 12:47 - 000645320 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2018-12-14 20:18 - 2018-12-08 12:46 - 000549760 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2018-12-14 20:18 - 2018-12-08 12:42 - 001634944 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2018-12-14 20:18 - 2018-12-08 12:41 - 002394960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2018-12-14 20:18 - 2018-12-08 12:41 - 000481880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2018-12-14 20:18 - 2018-12-08 12:40 - 001454648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2018-12-14 20:18 - 2018-12-08 12:28 - 006586880 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2018-12-14 20:18 - 2018-12-08 12:28 - 004708864 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2018-12-14 20:18 - 2018-12-08 12:27 - 005657600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2018-12-14 20:18 - 2018-12-08 12:25 - 011902976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2018-12-14 20:18 - 2018-12-08 12:23 - 003649024 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2018-12-14 20:18 - 2018-12-08 12:23 - 002892288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2018-12-14 20:18 - 2018-12-08 12:23 - 001856512 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2018-12-14 20:18 - 2018-12-08 12:23 - 001661440 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2018-12-14 20:18 - 2018-12-08 12:22 - 001586176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2018-12-14 20:18 - 2018-12-08 12:22 - 001469952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2018-12-14 20:18 - 2018-12-08 12:22 - 000577024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2018-12-14 20:18 - 2018-12-08 08:07 - 001328632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll
2018-12-14 20:18 - 2018-12-08 08:06 - 000777512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2018-12-14 20:18 - 2018-12-08 08:06 - 000491416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2018-12-14 20:18 - 2018-12-08 08:06 - 000433168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2018-12-14 20:18 - 2018-12-08 08:05 - 002822656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2018-12-14 20:18 - 2018-12-08 08:05 - 002463384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2018-12-14 20:18 - 2018-12-08 08:05 - 001935008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2018-12-14 20:18 - 2018-12-08 08:05 - 001209888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2018-12-14 20:18 - 2018-12-08 08:05 - 000793592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2018-12-14 20:18 - 2018-12-08 08:05 - 000594224 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2018-12-14 20:18 - 2018-12-08 08:04 - 004404720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2018-12-14 20:18 - 2018-12-08 08:04 - 001943328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2018-12-14 20:18 - 2018-12-08 08:04 - 001188512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2018-12-14 20:18 - 2018-12-08 08:04 - 000604984 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2018-12-14 20:18 - 2018-12-08 08:04 - 000416024 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2018-12-14 20:18 - 2018-12-08 08:04 - 000268280 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2018-12-14 20:18 - 2018-12-08 08:04 - 000260800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2018-12-14 20:18 - 2018-12-08 07:47 - 000861744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2adec.dll
2018-12-14 20:18 - 2018-12-08 07:47 - 000785760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2018-12-14 20:18 - 2018-12-08 07:46 - 002331480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2018-12-14 20:18 - 2018-12-08 07:46 - 001989040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2018-12-14 20:18 - 2018-12-08 07:46 - 000665224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2018-12-14 20:18 - 2018-12-08 07:46 - 000457056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAudDecMFT.dll
2018-12-14 20:18 - 2018-12-08 07:45 - 004789952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2018-12-14 20:18 - 2018-12-08 07:45 - 002307240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL
2018-12-14 20:18 - 2018-12-08 07:45 - 001805656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2018-12-14 20:18 - 2018-12-08 07:45 - 001620472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2018-12-14 20:18 - 2018-12-08 07:45 - 001379816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2018-12-14 20:18 - 2018-12-08 07:45 - 001011872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2018-12-14 20:18 - 2018-12-08 07:42 - 009084928 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2018-12-14 20:18 - 2018-12-08 07:38 - 003392000 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2018-12-14 20:18 - 2018-12-08 07:38 - 002739200 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2018-12-14 20:18 - 2018-12-08 07:38 - 000419328 _____ (Microsoft Corporation) C:\WINDOWS\system32\eeprov.dll
2018-12-14 20:18 - 2018-12-08 07:37 - 002825728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2018-12-14 20:18 - 2018-12-08 07:36 - 003381248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll
2018-12-14 20:18 - 2018-12-08 07:36 - 003090432 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2018-12-14 20:18 - 2018-12-08 07:36 - 002364928 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2018-12-14 20:18 - 2018-12-08 07:36 - 001768448 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2018-12-14 20:18 - 2018-12-08 07:36 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2018-12-14 20:18 - 2018-12-08 07:36 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2018-12-14 20:18 - 2018-12-08 07:35 - 002126336 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2018-12-14 20:18 - 2018-12-08 07:35 - 000808448 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2018-12-14 20:18 - 2018-12-08 07:35 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2018-12-14 20:18 - 2018-12-08 07:34 - 001535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2018-12-14 20:18 - 2018-12-08 07:34 - 001023488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2018-12-14 20:18 - 2018-12-08 07:34 - 000884224 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2018-12-14 20:18 - 2018-12-08 07:34 - 000693248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2018-12-14 20:18 - 2018-12-08 07:34 - 000684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2018-12-14 20:18 - 2018-12-08 07:34 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2018-12-14 20:18 - 2018-12-08 07:33 - 002904064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2018-12-14 20:18 - 2018-12-08 07:33 - 001457152 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2018-12-14 20:18 - 2018-12-08 07:33 - 001264640 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2018-12-14 20:18 - 2018-12-08 07:33 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2018-12-14 20:18 - 2018-12-08 07:33 - 000949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2018-12-14 20:18 - 2018-12-08 07:33 - 000823296 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2018-12-14 20:18 - 2018-12-08 07:32 - 001097728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2018-12-14 20:18 - 2018-12-08 07:32 - 001032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2018-12-14 20:18 - 2018-12-08 07:32 - 000542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2018-12-14 20:18 - 2018-12-08 07:30 - 006647296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2018-12-14 20:18 - 2018-12-08 07:30 - 002966528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2018-12-14 20:18 - 2018-12-08 07:29 - 005883904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2018-12-14 20:18 - 2018-12-08 07:29 - 002700288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2018-12-14 20:18 - 2018-12-08 07:28 - 002258944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2018-12-14 20:18 - 2018-12-08 07:28 - 000391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2018-12-14 20:18 - 2018-12-08 07:27 - 002449408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll
2018-12-14 20:18 - 2018-12-08 07:27 - 001986560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll
2018-12-14 20:18 - 2018-12-08 07:27 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2018-12-14 20:18 - 2018-12-08 07:26 - 000848384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2018-12-14 20:18 - 2018-12-08 07:25 - 000978944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2018-12-14 20:18 - 2018-12-08 07:25 - 000856576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2018-12-14 20:18 - 2018-12-08 07:24 - 000795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2018-12-14 20:18 - 2018-12-08 07:24 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2018-12-14 20:18 - 2018-11-09 05:59 - 008623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2018-12-14 20:18 - 2018-11-09 05:58 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSCard.dll
2018-12-14 20:18 - 2018-11-09 05:57 - 004491264 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2018-12-14 20:18 - 2018-11-09 05:56 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ninput.dll
2018-12-14 20:18 - 2018-11-09 05:55 - 001254400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2018-12-14 20:18 - 2018-11-09 05:55 - 000878592 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2018-12-14 20:18 - 2018-11-09 05:32 - 020383832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2018-12-14 20:18 - 2018-11-09 05:20 - 007987712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2018-12-14 20:18 - 2018-11-09 05:20 - 003397632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2018-12-14 20:18 - 2018-11-09 05:17 - 000704000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2018-12-14 20:18 - 2018-11-09 02:49 - 000723416 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2018-12-14 20:18 - 2018-11-09 02:48 - 003179760 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2018-12-14 20:18 - 2018-11-09 02:48 - 002719736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2018-12-14 20:18 - 2018-11-09 02:48 - 001613288 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2018-12-14 20:18 - 2018-11-09 02:48 - 000899920 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2018-12-14 20:18 - 2018-11-09 02:48 - 000766704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2018-12-14 20:18 - 2018-11-09 02:48 - 000375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2018-12-14 20:18 - 2018-11-09 02:47 - 002765344 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2018-12-14 20:18 - 2018-11-09 02:47 - 002571128 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2018-12-14 20:18 - 2018-11-09 02:47 - 002062392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2018-12-14 20:18 - 2018-11-09 02:47 - 001285432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2018-12-14 20:18 - 2018-11-09 02:47 - 000930616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2018-12-14 20:18 - 2018-11-09 02:47 - 000537912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2018-12-14 20:18 - 2018-11-09 02:21 - 001627136 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2018-12-14 20:18 - 2018-11-09 02:20 - 000399872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthAvctpSvc.dll
2018-12-14 20:18 - 2018-11-09 02:19 - 002368512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2018-12-14 20:18 - 2018-11-09 02:18 - 003320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2018-12-14 20:18 - 2018-11-09 02:18 - 001487360 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2018-12-14 20:18 - 2018-11-09 02:18 - 000514048 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2018-12-14 20:18 - 2018-11-09 02:17 - 002584576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2018-12-14 20:18 - 2018-11-09 02:17 - 001069568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2018-12-14 20:18 - 2018-11-09 02:16 - 002224640 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2018-12-14 20:18 - 2018-11-09 02:16 - 001364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpasvc.dll
2018-12-14 20:18 - 2018-11-09 02:16 - 001225216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2018-12-14 20:18 - 2018-11-09 02:16 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2018-12-14 20:18 - 2018-11-09 02:15 - 000943616 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2018-12-14 20:18 - 2018-11-09 02:15 - 000933888 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2018-12-14 20:18 - 2018-11-09 02:15 - 000884224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2018-12-14 20:18 - 2018-11-09 02:15 - 000505344 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2018-12-14 20:18 - 2018-11-09 02:07 - 002417976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2018-12-14 20:18 - 2018-11-09 02:07 - 001299704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2018-12-14 20:18 - 2018-11-09 01:48 - 000550728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2018-12-14 20:18 - 2018-11-09 01:46 - 002253184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2018-12-14 20:18 - 2018-11-09 01:46 - 002161008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2018-12-14 20:18 - 2018-11-09 01:46 - 001980776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2018-12-14 20:18 - 2018-11-09 01:46 - 000829960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2018-12-14 20:18 - 2018-11-09 01:46 - 000721024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2018-12-14 20:18 - 2018-11-09 01:46 - 000573504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2018-12-14 20:18 - 2018-11-09 01:29 - 003711488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2018-12-14 20:18 - 2018-11-09 01:28 - 002900992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2018-12-14 20:18 - 2018-11-09 01:26 - 001110528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2018-12-14 20:18 - 2018-11-09 01:25 - 000713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll
2018-12-14 20:17 - 2018-12-08 12:39 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll
2018-12-14 20:17 - 2018-12-08 12:27 - 000068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdBth.dll
2018-12-14 20:17 - 2018-12-08 12:27 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdBth.dll
2018-12-14 20:17 - 2018-12-08 12:23 - 000503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2018-12-14 20:17 - 2018-12-08 12:23 - 000471040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcSpecfc.dll
2018-12-14 20:17 - 2018-12-08 08:12 - 000272408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll
2018-12-14 20:17 - 2018-12-08 08:12 - 000269336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2018-12-14 20:17 - 2018-12-08 08:12 - 000092688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2018-12-14 20:17 - 2018-12-08 08:07 - 001063416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2018-12-14 20:17 - 2018-12-08 08:06 - 000709936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2018-12-14 20:17 - 2018-12-08 08:06 - 000249088 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2018-12-14 20:17 - 2018-12-08 08:05 - 001018880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2018-12-14 20:17 - 2018-12-08 08:05 - 000706040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2018-12-14 20:17 - 2018-12-08 08:05 - 000421176 _____ (Microsoft Corporation) C:\WINDOWS\system32\xbgmengine.dll
2018-12-14 20:17 - 2018-12-08 08:05 - 000413920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2018-12-14 20:17 - 2018-12-08 08:05 - 000171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2018-12-14 20:17 - 2018-12-08 08:05 - 000130312 _____ (Microsoft Corporation) C:\WINDOWS\system32\rmclient.dll
2018-12-14 20:17 - 2018-12-08 08:05 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fileinfo.sys
2018-12-14 20:17 - 2018-12-08 08:04 - 002590296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL
2018-12-14 20:17 - 2018-12-08 08:04 - 001150312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVP9DEC.dll
2018-12-14 20:17 - 2018-12-08 08:04 - 000885760 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2018-12-14 20:17 - 2018-12-08 08:04 - 000527160 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2018-12-14 20:17 - 2018-12-08 08:04 - 000413176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2018-12-14 20:17 - 2018-12-08 08:04 - 000375608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys
2018-12-14 20:17 - 2018-12-08 08:04 - 000335672 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2018-12-14 20:17 - 2018-12-08 08:04 - 000158624 _____ (Microsoft Corporation) C:\WINDOWS\system32\vertdll.dll
2018-12-14 20:17 - 2018-12-08 08:04 - 000128824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2018-12-14 20:17 - 2018-12-08 08:04 - 000058168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\iorate.sys
2018-12-14 20:17 - 2018-12-08 08:04 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser_broker.exe
2018-12-14 20:17 - 2018-12-08 07:46 - 001397104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVP9DEC.dll
2018-12-14 20:17 - 2018-12-08 07:46 - 000101192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rmclient.dll
2018-12-14 20:17 - 2018-12-08 07:45 - 000567256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2018-12-14 20:17 - 2018-12-08 07:45 - 000356864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2018-12-14 20:17 - 2018-12-08 07:45 - 000129296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2018-12-14 20:17 - 2018-12-08 07:39 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnsruprov.dll
2018-12-14 20:17 - 2018-12-08 07:38 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2018-12-14 20:17 - 2018-12-08 07:38 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcnfs.sys
2018-12-14 20:17 - 2018-12-08 07:37 - 000395776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2018-12-14 20:17 - 2018-12-08 07:37 - 000386048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Diagnostics.dll
2018-12-14 20:17 - 2018-12-08 07:37 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthserv.dll
2018-12-14 20:17 - 2018-12-08 07:37 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\appsruprov.dll
2018-12-14 20:17 - 2018-12-08 07:37 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll
2018-12-14 20:17 - 2018-12-08 07:37 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2018-12-14 20:17 - 2018-12-08 07:37 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2018-12-14 20:17 - 2018-12-08 07:36 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2018-12-14 20:17 - 2018-12-08 07:36 - 000356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll
2018-12-14 20:17 - 2018-12-08 07:36 - 000227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2018-12-14 20:17 - 2018-12-08 07:36 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mmcss.sys
2018-12-14 20:17 - 2018-12-08 07:35 - 001708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSPhotography.dll
2018-12-14 20:17 - 2018-12-08 07:33 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2018-12-14 20:17 - 2018-12-08 07:32 - 000895488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2018-12-14 20:17 - 2018-12-08 07:32 - 000796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2018-12-14 20:17 - 2018-12-08 07:32 - 000406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2018-12-14 20:17 - 2018-12-08 07:29 - 000311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Diagnostics.dll
2018-12-14 20:17 - 2018-12-08 07:28 - 000288768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2018-12-14 20:17 - 2018-12-08 07:27 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2018-12-14 20:17 - 2018-12-08 07:27 - 000555008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2018-12-14 20:17 - 2018-12-08 07:27 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll
2018-12-14 20:17 - 2018-12-08 07:26 - 001348096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
2018-12-14 20:17 - 2018-12-08 07:25 - 000729088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2018-12-14 20:17 - 2018-12-08 07:25 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2018-12-14 20:17 - 2018-12-08 07:25 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2018-12-14 20:17 - 2018-12-08 07:24 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2018-12-14 20:17 - 2018-12-08 07:24 - 000345088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2018-12-14 20:17 - 2018-11-09 06:00 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2018-12-14 20:17 - 2018-11-09 05:57 - 000208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\sensrsvc.dll
2018-12-14 20:17 - 2018-11-09 05:56 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2018-12-14 20:17 - 2018-11-09 05:56 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSoftwareInstallationClient.dll
2018-12-14 20:17 - 2018-11-09 05:54 - 001535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2018-12-14 20:17 - 2018-11-09 05:22 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2018-12-14 20:17 - 2018-11-09 05:19 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSCard.dll
2018-12-14 20:17 - 2018-11-09 05:18 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2018-12-14 20:17 - 2018-11-09 05:18 - 000320512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ninput.dll
2018-12-14 20:17 - 2018-11-09 02:49 - 000565048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2018-12-14 20:17 - 2018-11-09 02:49 - 000368656 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2018-12-14 20:17 - 2018-11-09 02:48 - 000745472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2018-12-14 20:17 - 2018-11-09 02:21 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2018-12-14 20:17 - 2018-11-09 02:21 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys
2018-12-14 20:17 - 2018-11-09 02:20 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2018-12-14 20:17 - 2018-11-09 02:20 - 000193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiswan.sys
2018-12-14 20:17 - 2018-11-09 02:18 - 000573952 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2018-12-14 20:17 - 2018-11-09 02:18 - 000300032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2018-12-14 20:17 - 2018-11-09 01:47 - 000295224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2018-12-14 20:17 - 2018-11-09 01:31 - 000094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2018-12-14 20:17 - 2018-11-09 01:29 - 000561152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2018-12-14 20:17 - 2018-11-09 01:29 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2018-12-14 20:17 - 2018-11-09 01:29 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2018-12-14 20:17 - 2018-11-09 01:27 - 000463872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2018-12-14 20:17 - 2018-11-09 01:26 - 000873472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2018-12-14 20:17 - 2018-11-09 01:25 - 000705024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2018-12-14 20:16 - 2018-12-08 12:27 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storqosflt.sys
2018-12-14 20:15 - 2018-12-08 12:29 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2018-12-14 20:15 - 2018-12-08 07:38 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataUsageLiveTileTask.exe
2018-12-14 20:15 - 2018-12-08 07:38 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2018-12-14 20:15 - 2018-12-08 07:38 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2018-12-14 20:15 - 2018-12-08 07:37 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataUsageHandlers.dll
2018-12-14 20:15 - 2018-12-08 07:37 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2018-12-14 20:15 - 2018-12-08 07:36 - 000153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll
2018-12-14 20:15 - 2018-12-08 07:30 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2018-12-14 20:15 - 2018-12-08 07:29 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2018-12-14 20:15 - 2018-12-08 07:28 - 001361408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSPhotography.dll
2018-12-14 20:15 - 2018-11-09 02:22 - 000185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2018-12-14 20:15 - 2018-11-09 02:22 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttpcom.dll
2018-12-14 20:15 - 2018-11-09 02:21 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2018-12-14 20:15 - 2018-11-09 02:20 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2018-12-14 20:15 - 2018-11-09 02:19 - 000726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2018-12-14 20:15 - 2018-11-09 02:19 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2018-12-14 20:15 - 2018-11-09 01:31 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2018-12-14 20:15 - 2018-11-09 01:30 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2018-12-14 20:15 - 2018-11-09 01:30 - 000082944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttpcom.dll
2018-12-14 20:15 - 2018-11-09 01:26 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2018-12-08 23:27 - 2018-12-08 23:27 - 000126137 _____ C:\Users\dan31\Downloads\PostOffice-Locations.pdf
2018-12-08 20:05 - 2018-12-08 20:05 - 000229003 _____ C:\Users\dan31\Downloads\NHS Pension Calculator V2 2.xlsx
2018-12-08 19:22 - 2018-12-08 19:22 - 000008342 _____ C:\Users\dan31\Downloads\ePayslip (3).pdf
2018-12-08 19:18 - 2018-12-08 19:18 - 000008087 _____ C:\Users\dan31\Downloads\ePayslip (2).pdf
2018-12-08 19:04 - 2018-12-08 19:04 - 000008087 _____ C:\Users\dan31\Downloads\ePayslip (1).pdf
2018-12-08 19:03 - 2018-12-08 19:03 - 000008112 _____ C:\Users\dan31\Downloads\ePayslip.pdf
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2019-01-04 11:45 - 2018-11-16 22:39 - 000000000 ____D C:\FRST
2019-01-04 11:40 - 2018-04-11 23:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-01-04 11:39 - 2016-11-07 16:48 - 000000000 ____D C:\Users\dan31\AppData\Local\CrashDumps
2019-01-04 11:31 - 2018-11-09 22:55 - 000003364 _____ C:\WINDOWS\System32\Tasks\BraveSoftwareUpdateTaskMachineUA
2019-01-04 11:31 - 2018-11-09 22:55 - 000003140 _____ C:\WINDOWS\System32\Tasks\BraveSoftwareUpdateTaskMachineCore
2019-01-04 11:31 - 2018-10-18 00:12 - 000003176 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-01-04 11:31 - 2018-10-18 00:12 - 000002914 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-01-04 11:31 - 2018-10-18 00:11 - 000003398 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-01-04 11:31 - 2018-10-18 00:11 - 000003140 _____ C:\WINDOWS\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-01-04 11:31 - 2018-10-18 00:11 - 000002984 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-01-04 11:31 - 2018-10-18 00:11 - 000002956 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-01-04 11:31 - 2018-10-18 00:11 - 000002838 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-01-04 11:31 - 2018-10-18 00:11 - 000002744 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-01-04 11:31 - 2018-09-16 22:10 - 000002848 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-50118766-877759180-1359360943-1001
2019-01-04 11:31 - 2018-07-09 21:26 - 000002246 _____ C:\WINDOWS\System32\Tasks\SmartByte Telemetry
2019-01-04 11:31 - 2018-06-13 22:08 - 000003346 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2019-01-04 11:31 - 2018-06-13 22:08 - 000003304 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{836EAE97-C031-448F-B8B6-44DD43AE308F}
2019-01-04 11:31 - 2018-06-13 22:08 - 000003304 _____ C:\WINDOWS\System32\Tasks\Dell SupportAssistAgent AutoUpdate
2019-01-04 11:31 - 2018-06-13 22:08 - 000003122 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2019-01-04 11:31 - 2018-06-13 22:08 - 000003042 _____ C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2019-01-04 11:31 - 2018-06-13 22:08 - 000003040 _____ C:\WINDOWS\System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec
2019-01-04 11:31 - 2018-06-13 22:08 - 000002674 _____ C:\WINDOWS\System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec-Logon
2019-01-04 11:31 - 2018-06-13 22:08 - 000002304 _____ C:\WINDOWS\System32\Tasks\RtHDVBg_PushButton
2019-01-04 11:31 - 2018-06-13 22:08 - 000000000 ____D C:\WINDOWS\System32\Tasks\AVAST Software
2019-01-04 11:12 - 2018-04-11 23:38 - 000000000 ___HD C:\Program Files\WindowsApps
2019-01-04 11:12 - 2018-04-11 23:38 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-01-04 11:07 - 2017-08-15 22:11 - 000000000 ____D C:\ProgramData\NVIDIA
2019-01-04 11:06 - 2018-04-11 23:36 - 000000000 ____D C:\WINDOWS\INF
2019-01-03 13:38 - 2018-06-13 21:32 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-01-02 19:25 - 2018-04-11 23:30 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-01-02 17:21 - 2016-11-07 15:52 - 000000000 ___RD C:\Users\dan31\OneDrive
2019-01-02 14:22 - 2018-11-09 22:55 - 000002420 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2019-01-02 14:07 - 2017-08-15 22:10 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2019-01-02 14:07 - 2016-08-29 16:04 - 000000000 ____D C:\WINDOWS\system32\RTCOM
2019-01-02 14:01 - 2018-06-20 11:12 - 000000000 ____D C:\Program Files (x86)\MacroToolworks
2019-01-02 14:01 - 2018-05-15 22:32 - 000000000 ____D C:\Users\dan31\AppData\Local\AVAST Software
2019-01-02 14:01 - 2018-05-15 22:32 - 000000000 ____D C:\Program Files (x86)\AVAST Software
2019-01-02 14:01 - 2016-11-07 16:29 - 000000000 ____D C:\ProgramData\AVAST Software
2019-01-02 14:00 - 2017-08-15 22:10 - 000000000 ____D C:\Program Files (x86)\Intel
2019-01-02 14:00 - 2016-11-21 17:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2019-01-02 13:54 - 2016-11-07 16:31 - 000000000 ____D C:\Users\dan31\AppData\Roaming\AVAST Software
2019-01-02 13:53 - 2018-08-09 15:31 - 000000000 ____D C:\Program Files (x86)\Hi-Rez Studios
2019-01-02 13:41 - 2016-11-07 15:46 - 000000000 __SHD C:\Users\dan31\IntelGraphicsProfiles
2018-12-28 12:21 - 2018-06-17 23:52 - 000039436 ____H C:\Users\dan31\AppData\Local\IconCache.db.backup
2018-12-28 00:18 - 2018-03-10 16:13 - 000000000 ____D C:\Users\dan31\OneDrive\Documents\Physician Associate
2018-12-27 22:46 - 2018-06-13 21:51 - 000840376 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2018-12-26 12:54 - 2016-11-07 15:52 - 000000000 ____D C:\Program Files (x86)\Steam
2018-12-22 21:21 - 2018-06-13 21:41 - 000002361 _____ C:\Users\dan31\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2018-12-22 21:08 - 2018-04-11 23:38 - 000000000 ____D C:\WINDOWS\system32\NDF
2018-12-22 21:08 - 2016-08-29 16:02 - 000000000 ____D C:\ProgramData\PCDr
2018-12-22 21:01 - 2018-06-13 22:08 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2018-12-20 21:22 - 2018-04-11 21:04 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2018-12-20 21:21 - 2018-04-11 23:38 - 000000000 ____D C:\WINDOWS\TextInput
2018-12-20 21:21 - 2018-04-11 23:38 - 000000000 ____D C:\WINDOWS\bcastdvr
2018-12-19 23:39 - 2017-11-08 10:20 - 000000000 ____D C:\Users\dan31\AppData\Local\Packages
2018-12-19 22:22 - 2016-04-25 20:00 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2018-12-17 23:40 - 2016-11-13 13:40 - 000000000 ____D C:\WINDOWS\system32\MRT
2018-12-17 23:17 - 2016-11-13 13:40 - 137260640 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2018-12-17 23:04 - 2017-11-20 21:44 - 000000000 ___RD C:\Users\dan31\3D Objects
2018-12-17 23:04 - 2016-04-25 20:52 - 000000000 __RHD C:\Users\Public\AccountPictures
2018-12-17 23:02 - 2018-06-13 21:41 - 000000000 ____D C:\Users\dan31
2018-12-17 22:58 - 2018-04-11 23:38 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2018-12-17 22:58 - 2018-04-11 23:38 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2018-12-17 22:58 - 2018-04-11 23:38 - 000000000 ____D C:\WINDOWS\ShellComponents
2018-12-15 23:33 - 2016-11-07 15:52 - 000002303 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-12-08 18:48 - 2018-11-16 19:36 - 000000000 ____D C:\Program Files\rempl
2018-12-08 18:44 - 2016-11-10 18:03 - 000000000 ____D C:\Program Files (x86)\Minecraft
2018-12-06 17:33 - 2018-11-16 23:35 - 000000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
 
==================== Files in the root of some directories =======
 
2018-04-16 16:13 - 2018-04-16 16:13 - 000000045 _____ () C:\Users\dan31\AppData\Roaming\WB.CFG
2018-07-08 20:30 - 2018-07-08 20:30 - 000007605 _____ () C:\Users\dan31\AppData\Local\Resmon.ResmonCfg
 
Files to move or delete:
====================
C:\Windows\Tasks\{5BDEAF25-8DB1-B43D-27E7-2E0CA8139B12}.job
 
 
Some files in TEMP:
====================
2019-01-02 18:28 - 2019-01-02 18:28 - 000192512 _____ () C:\Users\dan31\AppData\Local\Temp\sfamcc00001.dll
2015-02-10 17:56 - 2015-02-10 17:56 - 000105984 _____ () C:\Users\dan31\AppData\Local\Temp\sfextra.dll
 
==================== Bamital & volsnap ======================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
 
LastRegBack: 2018-06-13 21:32
 
==================== End of FRST.txt ============================
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 01.01.2019
Ran by dan31 (04-01-2019 11:47:28)
Running from C:\Users\dan31\OneDrive\Documents\Archive\MacroToolworksFiles
Windows 10 Home Version 1803 17134.472 (X64) (2018-06-13 22:11:04)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-50118766-877759180-1359360943-500 - Administrator - Disabled)
dan31 (S-1-5-21-50118766-877759180-1359360943-1001 - Administrator - Enabled) => C:\Users\dan31
DefaultAccount (S-1-5-21-50118766-877759180-1359360943-503 - Limited - Disabled)
Guest (S-1-5-21-50118766-877759180-1359360943-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-50118766-877759180-1359360943-504 - Limited - Disabled)
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
FW: Avast Antivirus (Enabled) {B693136B-F6EE-DD1C-A0EF-229B8B0B29C4}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
Adobe Shockwave Player 12.2 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.2.7.197 - Adobe Systems, Inc.)
Auto Clicker v12.1 (HKLM-x32\...\{C0A7E4F3-82CC-416B-82C6-BA06AACFD635}_is1) (Version: 12.1 - MurGee.com)
Auto Mouse Click v75.1 (HKLM-x32\...\{F5E3859D-0720-41F0-BAF5-4CBCDFD8F406}_is1) (Version: 75.1 - MurGee.com)
AutoHotkey 1.1.24.02 (HKLM\...\AutoHotkey) (Version: 1.1.24.02 - Lexikos)
Avast Driver Updater (HKLM-x32\...\{984D8789-07A6-4CD8-9766-35408C67395D}) (Version: 2.4.0 - AVAST Software) Hidden
Avast Driver Updater (HKLM-x32\...\Avast Driver Updater) (Version: 2.4.0 - AVAST Software)
Avast Internet Security (HKLM-x32\...\Avast Antivirus) (Version: 18.8.2356 - AVAST Software)
Avast Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.4.136.333 - AVAST Software) Hidden
BitRaider Streaming Client (HKLM-x32\...\BitRaider Streaming Client) (Version: 1.3.3.4098 - BitRaider, LLC)
Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 71.0.58.18 - Brave Software Inc)
Dell Customer Connect (HKLM-x32\...\{4FA72FF9-DD64-43A8-8704-6380A11F11D5}) (Version: 1.4.15.0 - Dell Inc.)
Dell Digital Delivery (HKLM-x32\...\{AB7F2792-2ED1-4C5C-9F28-680E5110BF72}) (Version: 3.1.1018.0 - Dell Products, LP)
Dell Foundation Services (HKLM\...\{BDB50421-E961-42F3-B803-6DAC6F173834}) (Version: 3.4.16100.0 - Dell Inc.)
Dell Help & Support (HKLM\...\{457EFE69-8F49-43E0-80F9-1DEF4F7690C2}) (Version: 2.5.23.0 - Dell Inc.) Hidden
Dell Help & Support (HKLM-x32\...\InstallShield_{457EFE69-8F49-43E0-80F9-1DEF4F7690C2}) (Version: 2.5.23.0 - Dell Inc.)
Dell Product Registration (HKLM-x32\...\InstallShield_{48114909-3C3B-43E6-BF98-AE9C396500A3}) (Version: 3.0.127.0 - Dell Inc.)
Dell SupportAssist (HKLM\...\{5A18ABE3-52D1-4CA5-9169-25EC7E789582}) (Version: 3.0.2.48 - Dell Inc.)
Dell Update (HKLM-x32\...\{632610E3-5B12-403C-9C93-EF533ED1C113}) (Version: 1.10.5.0 - Dell Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 71.0.3578.98 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.23 - Google Inc.) Hidden
Grammarly (HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\GrammarlyForWindows) (Version: 1.5.26 - Grammarly)
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
Intel® Chipset Device Software (HKLM-x32\...\{60c073df-e736-4210-9c3a-5fc2b651cef3}) (Version: 10.1.1.7 - Intel® Corporation) Hidden
Intel® Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.2.10900.330 - Intel Corporation)
Intel® Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1054 - Intel Corporation)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 21.20.16.4590 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.8.1.1043 - Intel Corporation)
Intel® Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1519.7 - Intel Corporation)
Intel® WiDi (HKLM\...\{5DD8D7E4-87F1-4134-AD28-4228FB1A03BA}) (Version: 6.0.44.0 - Intel Corporation)
Intel® WiDi Software Asset Manager (HKLM-x32\...\{86905E62-645F-482E-A417-82C812ABD787}) (Version: 1.1.383 - Intel Corporation) Hidden
Intel® Wireless Bluetooth® (HKLM-x32\...\{9A287643-10C5-4463-B9D1-B2404CE18CCF}) (Version: 17.1.1529.1620 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{8c595286-0f9e-42de-a0d4-969aba282637}) (Version: 20.50.0 - Intel Corporation)
Java 8 Update 112 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180112F0}) (Version: 8.0.1120.15 - Oracle Corporation)
Malwarebytes version 3.6.1.2711 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.6.1.2711 - Malwarebytes)
Maxx Audio Installer (x64) (HKLM\...\{307032B2-6AF2-46D7-B933-62438DEB2B9A}) (Version: 2.6.9060.3 - Waves Audio Ltd.) Hidden
Microsoft Office 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.11029.20108 - Microsoft Corporation)
Microsoft Office 365 ProPlus - en-us (HKLM\...\O365ProPlusRetail - en-us) (Version: 16.0.11029.20108 - Microsoft Corporation)
Microsoft OneDrive (HKU\.DEFAULT\...\OneDriveSetup.exe) (Version: 17.3.6743.1212 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\OneDriveSetup.exe) (Version: 18.222.1104.0007 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 (HKLM-x32\...\{c239cea1-d49e-4e16-8e87-8c055765f7ec}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{756E195A-CB58-4B99-917F-0DDA0D881204}) (Version: 1.0.4.0 - Mojang)
Mouse Macro Recorder 2.6.0 (HKLM-x32\...\{E290CF70-C9EA-4C9E-8B41-20E5FFDF2E64}_is1) (Version:  - Mouse Macro Recorder Ltd.)
MouseRecorder v1.0.51 (HKLM-x32\...\MouseRecorder_is1) (Version: 1.0.51 - Bartels Media GmbH)
NVIDIA GeForce Experience 3.13.1.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.13.1.30 - NVIDIA Corporation)
NVIDIA Graphics Driver 391.25 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 391.25 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.11029.20108 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.11029.20108 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.11029.20108 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0409-0000-0000000FF1CE}) (Version: 16.0.11029.20108 - Microsoft Corporation) Hidden
OldSchool RuneScape Launcher 1.2.7 (HKLM-x32\...\{FEDDCE73-34B8-4980-90B8-8619A78C902C}) (Version: 1.2.7 - Jagex Ltd)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Origin (HKLM-x32\...\Origin) (Version: 10.5.17.52805 - Electronic Arts, Inc.)
Product Registration (HKLM\...\{48114909-3C3B-43E6-BF98-AE9C396500A3}) (Version: 3.0.127.0 - Dell Inc.) Hidden
Quickset64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 11.5.02 - Dell Inc.)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.21289 - Realtek Semiconduct Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8578 - Realtek Semiconductor Corp.)
Revo Uninstaller 2.0.5 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.5 - VS Revo Group, Ltd.)
ROBLOX Player for dan31 (HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\{373B1718-8CC5-4567-8EE2-9033AD08A680}) (Version:  - ROBLOX Corporation)
RogueKiller version 13.0.10.0 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 13.0.10.0 - Adlice Software)
RuneScape Launcher 2.2.4 (HKLM\...\RuneScape Launcher_is1) (Version: 2.2.4 - Jagex Ltd)
Sid Meier's Civilization V (HKLM-x32\...\steam app 8930) (Version:  - 2K Games, Inc.)
SmartByte Drivers and Services (HKLM\...\{EC62F71A-6CFA-4918-9EBC-99BFF86DB3C9}) (Version: 1.2.600 - Rivet Networks)
Speccy (HKLM\...\Speccy) (Version: 1.32 - Piriform)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version:  - )
Star Wars The Old Republic (HKLM-x32\...\swtor_swtor) (Version: 13.0.0.13 - Bioware/EA)
Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.42.30.1020 - Electronic Arts Inc.)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{9CBA860F-7437-4A75-941C-8EF559F2D145}) (Version: 2.52.0.0 - Microsoft Corporation)
Vulkan Run Time Libraries 1.0.3.1 (HKLM\...\VulkanRT1.0.3.1) (Version: 1.0.3.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.3.1 (HKLM\...\VulkanRT1.0.3.1-2) (Version: 1.0.3.1 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.33.0 (HKLM\...\VulkanRT1.0.33.0) (Version: 1.0.33.0 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.33.0 (HKLM\...\VulkanRT1.0.33.0-2) (Version: 1.0.33.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1-2) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
WinRAR 5.60 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.60.0 - win.rar GmbH)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-12-02] (AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-12-02] (AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-12-02] (AVAST Software)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2018-06-24] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2018-06-24] (Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-12-02] (AVAST Software)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-09-19] (Malwarebytes)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\ki127176.inf_amd64_86c658cabfb17c9c\igfxDTCM.dll [2018-03-22] (Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2018-03-16] (NVIDIA Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-12-02] (AVAST Software)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-09-19] (Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2018-06-24] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2018-06-24] (Alexander Roshal)
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {1E151AEA-442D-44F3-82E4-7D5C26E3801F} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-12-19] (Microsoft Corporation)
Task: {2BC66B09-D01D-4558-8D82-AE5160C5999F} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2018-03-14] (NVIDIA Corporation)
Task: {39A3F141-813D-4326-AE53-FAD7E8E4A2C4} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistInstaller.exe [2018-10-25] (Dell Inc.)
Task: {3C37CA82-B788-451B-9C6B-7F701A207C9B} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2018-11-12] (AVAST Software)
Task: {3C695115-CC7A-48B7-A651-AE0759583F70} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel® Update Manager\bin\iumsvc.exe
Task: {4B7BF3C4-BFE5-4458-A9C9-7957BAEC4FF4} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-12-18] (Microsoft Corporation)
Task: {4C75E912-1A5C-44A2-932C-120BD1696B32} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-03-14] (NVIDIA Corporation)
Task: {51EE6466-0962-4878-9EA4-4DF29FF597F2} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-12-18] (Microsoft Corporation)
Task: {5F9DCF9A-3E33-4DDD-AD20-D954909FB0F1} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-03-14] (NVIDIA Corporation)
Task: {65B85F6F-35B3-4459-A179-28255D5B7B25} - System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask => C:\WINDOWS\System32\WinBioPlugIns\FaceFodUninstaller.exe [2018-04-11] ()
Task: {788F14C8-D461-457F-B614-83C1DB47EBB8} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe [2018-12-19] (Microsoft Corporation)
Task: {888DF747-1F1B-46E5-B189-5E4F6B37C6F0} - System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec => C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel® Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [2015-06-24] (Intel Corporation)
Task: {91046CB9-C5D2-4451-8262-561DE6BB224B} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2018-03-14] (NVIDIA Corporation)
Task: {967B656F-A9B0-4494-ACFB-0C4E2C8A3F35} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-12-02] (AVAST Software)
Task: {A1F1FE74-35FD-4A3F-9346-855EB60CCFC3} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2018-12-19] (Microsoft Corporation)
Task: {B01EBF53-47E5-4910-A731-264CFB238904} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-12-07] (Microsoft Corporation)
Task: {BF696A06-3DB6-46FF-BBDF-5D86FD8062BB} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-12-07] (Microsoft Corporation)
Task: {C186FBA0-A679-4ED1-8EC3-72DB044CD1E1} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-03-14] (NVIDIA Corporation)
Task: {C1A9916C-1596-40FD-9A00-A4A58F01AA9E} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {C2958C42-7F7A-4588-A1FC-CC441EE9D6C8} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {C83893D7-374B-42D9-A251-CFE5776FA4D9} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-03-14] (NVIDIA Corporation)
Task: {D4E76E50-A367-4096-92C3-58DFD5D718EB} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [2018-11-09] (BraveSoftware Inc.) <==== ATTENTION
Task: {D5299B30-487F-4FBE-B54A-62251E656A8A} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [2018-11-09] (BraveSoftware Inc.) <==== ATTENTION
Task: {DB452E8A-49CF-486F-AB99-E780B9417BA3} - System32\Tasks\Avast TUNEUP Update => C:\Program Files (x86)\AVAST Software\Avast Cleanup\TUNEUpdate.exe [2018-11-05] (AVAST Software)
Task: {DDE64289-9AFF-42BB-8BAE-A5BB122E730E} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [2015-06-05] (Intel Corporation)
Task: {E160940F-74CF-41C0-B776-D6B0360225EE} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-03-14] (NVIDIA Corporation)
Task: {E4E941F7-1CCA-44B2-980D-33BD14E411BD} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe [2018-12-19] (Microsoft Corporation)
Task: {E6AD0975-E211-4ACE-B42C-23FE4D0A6823} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2018-03-14] (NVIDIA Corporation)
Task: {E9AD453B-3319-45CA-A230-29260010973D} - System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec-Logon => C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel® Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [2015-06-24] (Intel Corporation)
Task: {ED40ACB8-5E54-455F-BF91-F47BE8F11780} - System32\Tasks\RtHDVBg_PushButton => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2018-11-29] (Realtek Semiconductor)
Task: {F58C7DF1-10F0-4E15-B89A-BCECED3D9372} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-11-07] (Google Inc.)
Task: {F67DAAEA-BC1B-4BCB-A5C9-871841AD26C8} - System32\Tasks\SmartByte Telemetry => C:\Program Files\Rivet Networks\SmartByte\SmartByteTelemetry.exe [2018-03-20] (DELL)
Task: {FB5DD6E9-19F3-450B-84FB-680498104D1F} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-12-19] (Microsoft Corporation)
Task: {FD5870DB-F64F-4DEB-82F6-579CC5310891} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-11-07] (Google Inc.)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\WINDOWS\Tasks\RunDLC.job => cmd c sc start Dell Help SupportWORKGROUP DESKTOP 84H6AVC
Task: C:\WINDOWS\Tasks\{5BDEAF25-8DB1-B43D-27E7-2E0CA8139B12}.job => C:\PROGRA~2\COMMON~1\Neler\UpdTask.exe <==== ATTENTION
 
==================== Shortcuts & WMI ========================
 
(The entries could be listed to be restored or removed.)
 
 
Shortcut: C:\Users\dan31\AppData\Local\Microsoft\Windows\RoamingTiles\12192648070.lnk -> hxxp://www.southampton.ac.uk/healthsciencesnet/staffandstudents/timetables.htm
 
==================== Loaded Modules (Whitelisted) ==============
 
2018-10-18 00:11 - 2018-03-14 13:01 - 001268112 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2018-04-11 23:34 - 2018-04-11 23:34 - 000491744 _____ () C:\Windows\System32\InputHost.dll
2018-11-08 21:43 - 2018-11-08 21:43 - 002587976 _____ () C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1382\libprotobuf.dll
2018-04-11 23:34 - 2018-04-11 23:34 - 000472064 _____ () C:\Windows\ShellExperiences\TileControl.dll
2018-12-14 20:18 - 2018-11-09 02:17 - 002759680 _____ () C:\Windows\ShellComponents\TaskFlowUI.dll
2018-12-19 22:38 - 2018-12-14 06:50 - 002185728 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2018-10-24 19:33 - 2018-10-24 19:33 - 000009216 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\ImagePipelineNative.dll
2018-12-17 23:24 - 2018-12-17 23:24 - 000060416 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\ChakraBridge.dll
2018-12-17 23:24 - 2018-12-17 23:24 - 000019456 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\SkypeProxiesAndStubs.dll
2018-12-17 23:24 - 2018-12-17 23:24 - 010927616 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\LibWrapper.dll
2018-12-17 23:24 - 2018-12-17 23:24 - 002916864 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\skypert.dll
2018-12-17 23:24 - 2018-12-17 23:24 - 000688128 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\RtmMvrUap.dll
2018-07-11 15:47 - 2018-07-11 15:47 - 001922224 _____ () C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.10314.31700.1000_x64__8wekyb3d8bbwe\Microsoft.Applications.Telemetry.Windows.dll
2018-12-12 22:48 - 2018-12-12 22:49 - 034870272 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18102.12011.0_x64__8wekyb3d8bbwe\Video.UI.exe
2018-12-12 22:48 - 2018-12-12 22:49 - 000292352 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18102.12011.0_x64__8wekyb3d8bbwe\SharedUI.dll
2017-12-02 21:52 - 2017-12-02 21:52 - 000902656 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18102.12011.0_x64__8wekyb3d8bbwe\Microsoft.Membership.MeControl.UI.Xaml.dll
2018-12-02 19:10 - 2018-12-02 19:11 - 004202208 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18102.12011.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll
2018-12-12 22:48 - 2018-12-12 22:49 - 005967872 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18102.12011.0_x64__8wekyb3d8bbwe\EntCommon.dll
2018-12-12 22:48 - 2018-12-12 22:49 - 009072128 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18102.12011.0_x64__8wekyb3d8bbwe\EntPlat.dll
2018-12-17 23:24 - 2018-12-17 23:24 - 000182272 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
2018-12-15 23:30 - 2018-12-12 05:12 - 002682336 _____ () C:\Program Files (x86)\Google\Chrome\Application\71.0.3578.98\swiftshader\libglesv2.dll
2018-12-15 23:30 - 2018-12-12 05:12 - 000156640 _____ () C:\Program Files (x86)\Google\Chrome\Application\71.0.3578.98\swiftshader\libegl.dll
2018-10-24 19:24 - 2018-11-09 19:56 - 002695360 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll
2018-11-21 19:45 - 2018-11-21 19:45 - 001966712 _____ () C:\Program Files\WindowsApps\Microsoft.Office.OneNote_16001.11126.20076.0_x64__8wekyb3d8bbwe\Microsoft.Applications.Telemetry.Windows.dll
2019-01-04 11:11 - 2019-01-04 11:11 - 000478720 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18112.17430.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
2019-01-04 11:11 - 2019-01-04 11:11 - 065905152 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18112.17430.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll
2017-10-04 22:22 - 2017-10-04 22:23 - 002523136 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18112.17430.0_x64__8wekyb3d8bbwe\UnityEngineDelegates.dll
2018-11-16 19:44 - 2018-11-16 19:45 - 003715072 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18112.17430.0_x64__8wekyb3d8bbwe\MediaEngineCSWrapper.dll
2019-01-04 11:11 - 2019-01-04 11:11 - 000010752 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18112.17430.0_x64__8wekyb3d8bbwe\RenderingPlugin.dll
2018-11-16 19:44 - 2018-11-16 19:46 - 000036352 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18112.17430.0_x64__8wekyb3d8bbwe\WinMLWrapper.UWP.dll
2018-08-18 08:32 - 2018-08-18 08:32 - 002480640 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18112.17430.0_x64__8wekyb3d8bbwe\opencv_imgproc320.dll
2018-08-18 08:32 - 2018-08-18 08:32 - 002280960 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18112.17430.0_x64__8wekyb3d8bbwe\opencv_core320.dll
2018-04-03 21:06 - 2018-04-03 21:07 - 002283008 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18112.17430.0_x64__8wekyb3d8bbwe\TrackingDLLUWP.dll
2019-01-04 11:11 - 2019-01-04 11:11 - 014190080 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18112.17430.0_x64__8wekyb3d8bbwe\PhotosApp.Windows.dll
2018-11-16 19:44 - 2018-11-16 19:45 - 003569152 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18112.17430.0_x64__8wekyb3d8bbwe\MediaEngine.dll
2019-01-04 11:11 - 2019-01-04 11:11 - 002871296 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18112.17430.0_x64__8wekyb3d8bbwe\AppCore.Windows.dll
2018-08-28 20:47 - 2018-08-28 20:47 - 000973312 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18112.17430.0_x64__8wekyb3d8bbwe\RuntimeConfiguration.dll
2018-07-27 09:15 - 2018-07-27 09:15 - 004584960 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18112.17430.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll
2018-12-02 14:32 - 2018-12-02 14:32 - 000596696 _____ () c:\program files\avast software\avast\streamback.dll
2016-12-21 10:24 - 2016-12-21 10:24 - 000134008 _____ () C:\Program Files (x86)\Dell Customer Connect\ServiceTagPlusPlus.dll
2015-06-23 23:26 - 2015-06-23 23:26 - 000155888 _____ () c:\Program Files (x86)\Dell Digital Delivery\ServiceTagPlusPlus.dll
2015-10-16 13:14 - 2015-10-16 13:14 - 001243936 _____ () C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\ACE.dll
2018-04-02 15:29 - 2018-04-02 15:29 - 067126928 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2018-10-18 00:11 - 2018-03-14 13:01 - 001041808 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
 
==================== Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
IE trusted site: HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\webcompanion.com -> hxxp://webcompanion.com
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2015-10-30 07:24 - 2019-01-04 11:04 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path: C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL;C:\Program Files\Intel\Intel® Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT;C:\Program Files\Intel\Intel® Management Engine Components\IPT;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\
HKU\S-1-5-21-50118766-877759180-1359360943-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\dan31\AppData\Local\Microsoft\Windows\Themes\transcodedwallpaper
DNS Servers: 192.168.1.254
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
If an entry is included in the fixlist, it will be removed.
 
HKLM\...\StartupApproved\Run32: => "Dropbox"
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\StartupApproved\Run: => "EADM"
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\StartupApproved\Run: => "GoogleChromeAutoLaunch_34001F2131DECEAF85E80D446A5BD02C"
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\StartupApproved\Run: => "Chromium"
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [UDP Query User{3E0A62E7-E8D5-46B2-B4B8-20A96ED7750D}C:\program files (x86)\steam\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\realm royale\binaries\win64\realm.exe (Hirez Studios, Inc.)
FirewallRules: [TCP Query User{ECCE45C4-2B83-4E25-AA31-E2852D620768}C:\program files (x86)\steam\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\realm royale\binaries\win64\realm.exe (Hirez Studios, Inc.)
FirewallRules: [{5B296FCF-40C9-421E-9EDF-F8CC9511FD01}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Realm Royale\Binaries\Win64\RealmEAC.exe (EasyAntiCheat Ltd)
FirewallRules: [{3F6D7BDC-B573-4767-A6CA-7428DF6A49B8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Realm Royale\Binaries\Win64\RealmEAC.exe (EasyAntiCheat Ltd)
FirewallRules: [{509581DA-60C2-4904-A446-2F80EEA8E093}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Forts\Forts.exe ()
FirewallRules: [{C9836854-9DBA-4F04-96F7-8731A0440D35}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Forts\Forts.exe ()
FirewallRules: [{34F7C521-B5AA-4794-81D5-E0AC9DFBC6C8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{3D59EA73-A1A3-4FE5-A9B4-69D6B0C46EDE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{DEEF6BCC-D32F-4D6B-969C-DCA6586DC932}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization V\Launcher.exe (Firaxis Games)
FirewallRules: [{E082A65C-22E0-48B4-AB51-AD7FE8861B2D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization V\Launcher.exe (Firaxis Games)
FirewallRules: [{8653AC64-24F1-4C14-9E63-AFE856A95B38}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FCA88113-1EA9-4604-8A2F-F39E098527B1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B93896D3-C9EE-4F8D-9292-E02AE3B61902}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{BABBE0BE-EDB1-4AE9-B6F0-26D84E6D7603}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{4FCB1FBE-8B84-4005-A227-0423986854FA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spore\SporeBin\SporeApp.exe (Maxis, a division of Electronic Arts Inc.)
FirewallRules: [{6FB30529-B784-4468-A639-0B90BBB1B520}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spore\SporeBin\SporeApp.exe (Maxis, a division of Electronic Arts Inc.)
FirewallRules: [{7D09309E-AE81-4871-8EAB-1AA60F8FDB45}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe (Electronic Arts Inc.)
FirewallRules: [{9366D207-2C6E-46EA-9C46-7FF393270F66}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe (Electronic Arts Inc.)
FirewallRules: [{6182C830-282B-40B5-9001-4F7B11301B23}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe (Electronic Arts Inc.)
FirewallRules: [{55E19B7F-0C20-4294-A851-47E99E12A962}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe (Electronic Arts Inc.)
FirewallRules: [{3B297849-AD7B-4001-9E8E-AB1EB1EA8410}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FA33BD2C-9CD5-450B-A871-8F2570E72A6A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{95CAEB92-B9BA-42D7-B13B-C975ECD557F9}] => (Allow) C:\Users\dan31\AppData\Local\Chromium\Application\chrome.exe (The Chromium Authors)
FirewallRules: [{25928CB9-AD2E-413C-8805-193FBFFD6F17}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{E4A744F9-5AEB-479C-9960-49FE98A3CF73}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{CA190820-F4FF-4636-8211-EAC69C1C96EA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{787D09F5-A1BE-44C6-B7C8-5E987DFC7BEE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C055B2FC-A7EA-4F73-80F4-693E24817445}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{054C8761-28A5-46C0-9579-78ACD49EECD8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{7BF32182-E1E6-4D56-845F-B4914D65001F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C53B2362-8526-47D8-8092-4A213BD63A20}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{DE5C06FC-2CDE-4878-A7A5-4EC3D75CC3C1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F0D0CEB1-5780-4868-8B8C-312C4D62A3EC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A414992E-95F4-4C3F-A0A4-6523A6B8A876}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Surviving Mars\MarsSteam.exe (Haemimont Games)
FirewallRules: [{BF3659E6-40BD-400D-8D92-4A6EC929F43B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Surviving Mars\MarsSteam.exe (Haemimont Games)
FirewallRules: [{307A373B-2EB8-41F3-B26E-9BA1D140D892}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{85AD6EF8-B05F-4C6E-93A2-CC62F553C5A6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{642BC5C4-1F6F-4876-8568-466E22E66728}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Game Dev Tycoon\nw.exe ()
FirewallRules: [{81FCE11F-EE06-4C36-8ACB-2BA6CD725594}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Game Dev Tycoon\nw.exe ()
FirewallRules: [{8584FC95-2144-49D1-9D73-6171F7305B2B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{4A5B8A6B-916B-405B-9ECC-DCF4AE6D3467}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{9DA387D7-36BE-4EF1-9EF2-C2BC2D9D3EF2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{739A7C9F-D240-4AF1-AF3B-6019F0346818}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{EA37646E-77C2-44A9-8B0E-03CD53044F6A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{BA3A4056-EC29-4AA8-9061-6BAB3B04C93C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{CD42D317-EC73-4420-9947-EB0CBEDE7173}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe (BioWare)
FirewallRules: [{F1DB7314-1389-4094-B497-71DB25BF4637}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe (BioWare)
FirewallRules: [{B22033D0-34B5-43B9-85C3-949CA0DD9A26}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe (BioWare)
FirewallRules: [{5D3319F9-2A7A-44CC-AC60-4843023BB451}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe (BioWare)
FirewallRules: [{6357E413-10A8-4BBF-B15C-64E72E8AB32F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{25534AF3-878A-43F4-A545-2F6103154ADD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{3204C912-B040-4EE9-A4E6-8F49CA734D02}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kingdoms and Castles\KingdomsAndCastles.exe ()
FirewallRules: [{41C0377A-7236-4984-82E5-F19D365F296E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kingdoms and Castles\KingdomsAndCastles.exe ()
FirewallRules: [{D10DE1EE-5177-4A61-ADE8-60D9BC47A601}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Northgard\Northgard.exe ()
FirewallRules: [{1FF85492-63DF-42CE-A74A-317D8D618C08}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Northgard\Northgard.exe ()
FirewallRules: [{18D8D2F9-DED2-4F96-ABB9-573E3D194AE9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Jackbox Party Pack 2\The Jackbox Party Pack 2.exe ()
FirewallRules: [{872580DF-457C-4997-9512-798FD7C87070}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Jackbox Party Pack 2\The Jackbox Party Pack 2.exe ()
FirewallRules: [{F89D2AB8-885B-47C2-AD14-07CA857BA229}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age2HD\Launcher.exe (TODO: <Company name>)
FirewallRules: [{A932C7E8-761F-49D1-8AD7-22EF570EA648}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age2HD\Launcher.exe (TODO: <Company name>)
FirewallRules: [{6CFEA3C7-2E88-4740-8DFE-0689728430AF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Besiege\Besiege.exe ()
FirewallRules: [{74C9B48A-8AC4-49B6-9276-DF2A6A3BD058}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Besiege\Besiege.exe ()
FirewallRules: [{A0035508-B605-4C5D-98DF-E4304A788D69}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8B1D3E16-73AE-4D6E-8EB9-70D6268DA672}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{6C1B306B-ACBC-4543-AA5B-E060DD5B7EFE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FF81D002-8514-40BB-87DA-D9497CCA6EDF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{688622A2-15FC-4F18-8455-5E8425DEF9F2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2E220969-D7CF-45ED-94BD-FF7602BA7D2D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{EBC1A7DF-D531-466D-BBA4-AECACE675E9D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F7ECB925-E8D4-4507-A771-BE04B76F05CA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{CFCC3EC3-38E9-4D0C-83CF-CD05091CB079}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{7A4A8B81-973F-4513-93A0-25897CE4D3BC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{102A0F85-9F4A-430D-9015-A0E46EC238EE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{96786C2C-DBFF-4A37-ABED-23BD121639A7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{24B99136-3638-42B7-A04E-E4FCAD560FA5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Poly Bridge\polybridge.exe ()
FirewallRules: [{3AD88AE5-ACAD-4657-81A1-8F7DA1302BB6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Poly Bridge\polybridge.exe ()
FirewallRules: [{1735296B-D33D-4BB9-B8F9-667BCDD2F534}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{42B7CD8A-71DA-49DF-BB99-7200DFD79F22}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D17D4F1F-123F-4FB5-A5EB-07F25843B352}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Town of Salem\TownOfSalem.exe ()
FirewallRules: [{ABDAA99A-7052-42BB-88C2-0D04FD7FEA09}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Town of Salem\TownOfSalem.exe ()
FirewallRules: [{45388BAB-2A30-47A2-B225-8BD9948992BD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{88963823-B4C6-42EF-BC95-8DAA08C35DAA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{22D83D90-D7C4-46AE-8CA2-C4130B5B97FE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{3636F2BB-D120-4029-9E35-380A56949897}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{33C6A3F9-AA79-445E-B31D-9A724E233D41}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tavern Tycoon\TavernTycoon.exe ()
FirewallRules: [{CA0DD489-AC44-412B-A181-E96CD48711F0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tavern Tycoon\TavernTycoon.exe ()
FirewallRules: [{375B4DA0-A865-46A4-8238-B58402F8D3DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B5486CB1-1D3E-47B9-8A58-52DC56499D52}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8B157C33-0B2D-47F3-A435-6E2AB0B3C17E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C2121397-1C1C-4DFB-80F1-9D6452CE3F51}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F1664B6F-857E-4F28-A98E-53777545103B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{20834BD1-D862-4A72-8307-B266A6E76471}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{212954F5-D4AC-434E-A05D-BB266B27DCE3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{28E270A4-3021-4C02-AC13-E68C80BD814A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D1C7787C-7D46-42B9-8CA0-E033299273D9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{DF8BF926-4A7C-44D1-A294-DA6AD43B17B1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FE993968-EEEF-47F8-9A42-6F80F239A397}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C1E01B67-DD21-441B-8A20-C70C42BB37C6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{AE7B7A91-E928-4434-9853-A7E0258E33C7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{DD39A01B-6DCA-42DC-BAB8-A1D7518E6EB8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C8309798-6F89-4A75-81F2-14F1C737D615}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Holy Potatoes! A Weapon Shop!\HPAWS.exe ()
FirewallRules: [{74D8D68E-4566-4A2A-B2C0-408CE277345E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Holy Potatoes! A Weapon Shop!\HPAWS.exe ()
FirewallRules: [{35B26F5E-A407-4611-976D-0F6684211B0B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Holy Potatoes! We're in Space!\HPWIS.exe ()
FirewallRules: [{74554441-FF5B-4E1C-A612-C996DBC162F1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Holy Potatoes! We're in Space!\HPWIS.exe ()
FirewallRules: [{1F2572C1-AA26-4BC3-B7C3-5F466338159E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{57F5234C-DEE5-4AB3-9E88-1D6F998C18E7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B2E6973A-6966-408D-9C08-0EF393F9EB6B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A0064337-EED6-465D-9B10-E27F1AF551E9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D06F6C76-BCBB-4398-8012-D0B486204DFB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{49BBCA5E-9675-47B2-8698-E584C23C72AD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B1EF6635-3375-4420-A514-AD7557503556}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{5649B25A-7B75-4B50-BF44-53AF9C3E8A1C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{67345AD2-3539-41C5-B6B8-56E3CF54D361}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{56FC07CE-87A3-4B85-89C5-80F87BC6B485}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F24B2F7D-07C9-4995-86F1-0E3E925C5CCC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{7117F1C5-5CE0-4B50-B75C-DDD7AD2D3B91}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{48859DD6-077B-4873-BEB0-CBC43D8CE783}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{16E919B7-64C9-45A3-9CC3-697321E33FCF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8EAEDB0E-787C-4C26-A95A-A5CF00275928}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CraftTheWorld\CraftWorld.exe ()
FirewallRules: [{5BC30B26-0CCA-41B6-A9DD-C352662709F8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CraftTheWorld\CraftWorld.exe ()
FirewallRules: [{D7F84F40-4F4C-40C0-9935-79030ED0FC88}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{5AD8A2C9-F1DA-414D-B88F-E1EEA3BE53E9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{09FBD17B-45CC-4179-9BF4-D8EE688A5665}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{0CCB84FB-9763-4E2D-A2CB-45F580B16BDC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2381BEE9-9151-4B41-A27D-561DDB73729F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{EFFF5210-4897-4134-8283-2F1C0675C114}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B7A362B0-FD3F-4C06-BEE6-15D19E5B7A05}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A5A1AECB-09CA-44C9-96C6-E34387BB0038}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{83FA56D5-B860-43DA-9A82-56CDC04B8689}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{5A59B2FC-8300-4FF1-9FF9-5702E62072A1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{79684956-F7B6-4810-A184-9E80B235D5F6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{30CBC24D-E9CE-4692-9387-94E8373985CC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{25CAF347-87B0-4E5C-AC6F-6EB7AAEF22DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{0D730145-0EBF-4F85-B421-03923C0D2933}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A79387B9-9BB5-45C3-A5EF-435BD7166E60}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{617BDF0A-FB4A-4AD1-BEDC-0A29AA3B1519}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F776840F-E12E-4BD8-8C13-DEA66DB9B57D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\60 Seconds!\60Seconds.exe ()
FirewallRules: [{30FAC735-7AB4-49DA-88B3-5C5BBA2FCCBE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\60 Seconds!\60Seconds.exe ()
FirewallRules: [{42DE02A7-D97E-425F-A9BA-FD152BA127DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe (ConcernedApe)
FirewallRules: [{FECBC2BC-439B-464D-A8D7-AF2D536DFC4B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe (ConcernedApe)
FirewallRules: [{E37EA6E7-CA31-4892-9BAE-91413E42833C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{4B671C58-FE2A-44CF-B52E-7A21FFFBA6F4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{5B825109-09A5-40B3-A0F2-BB37FFF72CA5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{29DEE354-D7F3-423B-AC6E-E7A19C44DC99}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{9B77AA7B-93DF-490D-B4AB-CB2B688C26D7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{EE9EA67D-DD16-4098-938C-C595E373898F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{0A5843CA-1593-47F4-AF14-5FB9296270A1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{373E78CD-E2AA-4A77-B1EF-C32910567800}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{43C998F8-6E9F-40FE-8A0D-A0555167B9B7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{97B4EBBC-7826-4D6C-BF7E-5C2A48143B9A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B5F9C2FA-0066-44B0-BA6C-E3A21694C216}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B1936BE1-C6E4-49CA-B6A5-B79B212FF3B0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{3B296F0C-1B1C-40D8-8D16-8E2848098A1C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8C889A81-8CDC-4990-BE35-FFE581BA1A0C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{91B626F7-62B2-4347-BFF1-C55E15366B1C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{E6E98C3D-F228-4C7B-BC4B-CE70386AD2F9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FAD70B6D-E161-4C62-AA44-C3E5CCFAE73A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{5AA034C6-2252-4F59-A6A0-DFC93D244933}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{99299D16-CD88-4E2E-BD39-81C4C89FE496}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{E9CDC0F5-5714-4425-8A4C-447FCA1FEE8B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{CE42E185-DC59-4663-87C4-ACBCA3A77963}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B9271747-EA8E-423B-B5CE-EC3D45F3E5BD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{42DD49B6-DD8F-4886-A048-B65F11EB30F7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{76DFCEC7-CAAA-4E93-8EE1-2837AB583A8A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{68D52182-1999-4097-8013-18121BB6155D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{558E67EF-E634-429B-BD58-918C4E812B14}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{0300BDB5-99C3-4EDB-ABCD-D9250039A085}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D98C258F-AA7A-4DBF-98C2-BECCC8B09FE1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A8BDF9AF-85C6-4BCD-B4D6-AE2C9134CF3B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2E7C4D38-3E25-4548-8BEA-3D6FB98D809F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{3F66BA07-873D-4DF5-97F6-62C1B9FACF41}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe ()
FirewallRules: [{0E65034A-5433-4852-A07B-8235A18400FF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe ()
FirewallRules: [{E5D5005F-3B60-4D03-9084-CD0C73FA7C6D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A5F71BF4-25A9-4755-ACEF-F49FAD05E877}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{28E82A8B-B976-4C3B-BB5E-731DCA025E67}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{3C1CF36D-EA14-4C75-9467-091C780A20E5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8E995159-182E-4A4C-AE44-6FB730809411}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8A58BFA9-D2B2-4F74-B02B-CFF7CE1B4B97}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{85C81D24-BA2F-4CEA-BA26-F94E1337C844}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{CBC8DFA2-1674-4C2B-8D00-D6FA88B13D8C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{935C4C7A-3998-46EC-A99D-0B1B862541A7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{320992EF-B5E3-4B8D-9BD2-B983F8DD2C7E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B7E9C315-AD8D-422D-B957-49CD9C26C3CD}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation)
FirewallRules: [{7C85059F-4F2C-496A-9B4F-F1EFE6D45D85}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation)
FirewallRules: [{C4C2C6B2-74E3-474A-865F-8646EDBB553D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{98EC1319-6F75-4167-8A86-5456D69F0A1F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{504A9FBE-B625-49B8-A579-EC9B8441A795}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Oblivion\OblivionLauncher.exe (Bethesda Softworks)
FirewallRules: [{9F811048-9ED2-4D21-8130-ECB768B6DD13}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Oblivion\OblivionLauncher.exe (Bethesda Softworks)
FirewallRules: [{C4C0F1F7-5E9C-408F-AB45-C535B9944147}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe ()
FirewallRules: [{41C414F3-62B9-4C86-99C7-20D45DDE0E7C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe ()
FirewallRules: [{9A731C22-7DCB-4CCE-A98E-AFFBC898DD7C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{29B10BD2-4FB0-4E68-B70C-3A5CBBF5C8BC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8AB67B81-5124-4976-B599-4255689D69FA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C3883DC6-1E4F-4D23-8BBC-5883D8BB77B6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B3C19B72-B4A7-4C81-9ED0-AA3C9CF2B075}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RailWorks\RailWorks.exe ()
FirewallRules: [{B5F16C27-CD39-456B-A4CF-8D08823AE318}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RailWorks\RailWorks.exe ()
FirewallRules: [{FE2797DB-8C68-4496-86DB-0F0EBC529984}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Star Wars Battlefront II\GameData\BattlefrontII.exe ()
FirewallRules: [{D2FFB983-E669-45AF-8F24-EB87F715AB23}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Star Wars Battlefront II\GameData\BattlefrontII.exe ()
FirewallRules: [{96329E41-DE38-4F21-80C0-AC2C48FE0879}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SpaceEngineers\Bin64\SpaceEngineers.exe (Keen Software House)
FirewallRules: [{FD06CCA2-FA5E-48AA-9D56-F11FBBE6B22C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SpaceEngineers\Bin64\SpaceEngineers.exe (Keen Software House)
FirewallRules: [{EFAFF20D-6FC0-45E0-9413-6667189BD0DD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe (Bethesda Softworks)
FirewallRules: [{D213BFF0-9EB0-4DD9-B947-7FEC5ABD85A8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe (Bethesda Softworks)
FirewallRules: [{F8C08D5A-7258-4D61-8BFA-DD17FBCA844E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SpaceEmpiresV\SE5\SE5.exe (Malfador Machinations)
FirewallRules: [{DA142B3A-CACA-4C67-8926-84940B371284}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SpaceEmpiresV\SE5\SE5.exe (Malfador Machinations)
FirewallRules: [{B26597BD-D44E-4102-88BC-DC7A0851C860}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe ()
FirewallRules: [{95090949-0CFF-497F-AF49-D63CEABB1BD3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe ()
FirewallRules: [{D7FD6266-9C4C-4414-A2CE-C2912DB60707}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe ()
FirewallRules: [{35200795-F116-4EB7-B9A3-F0ABC0AF3FB9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8184F5C5-04E5-448C-AB72-E99628D2CD90}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{4901D114-D1C7-441B-BBB4-7D5110CC52E5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{737E63F8-106D-403F-9C98-FDDE9BD46BB3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D38E2437-FB48-47CA-B7EC-03F43A9E6A98}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Factorio\bin\x64\factorio.exe (Wube Software)
FirewallRules: [{8BF535D4-B58E-4EBB-B9DB-C14D2D2345A1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Factorio\bin\x64\factorio.exe (Wube Software)
FirewallRules: [{15FEEBD7-FCE9-4F45-9ACF-04C6E3497E45}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{332F4053-218B-4D6C-94A9-E773A9733463}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{0241FB20-F10F-459A-9242-FA26DBD71808}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stellaris\stellaris.exe (Paradox Interactive)
FirewallRules: [{AED36333-0BD2-4CD9-91A7-36B3C13C70AC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stellaris\stellaris.exe (Paradox Interactive)
FirewallRules: [{64FECDAD-E056-4189-BE3D-CBC188FB8BA0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{39BC47BC-4B9C-448F-BEF3-5AA835350568}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{E53EA080-217B-43DF-A5D1-DBBA409D31E8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{87FF7539-9768-4A82-80C3-454337153287}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FBF1819D-E1AA-4293-B944-53B8FF51FA5B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{53AE528B-F984-46EC-B4BA-F3FAD8ADB063}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{6C1D6EB7-68D5-4688-B3C9-EB146D97B24A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{44BF904A-F524-407D-B2B8-B216E46019BE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{DBDB1ACE-DDE3-42C5-B808-07BCD251EA9D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{9A52F394-F7DC-434A-9EEC-857CFCB8241A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{7CA8B46A-E3C1-403E-B660-D5F27AFDA96C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D4D2A627-F825-4838-B49C-A1D1B3F89549}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{67AF08DC-5A35-4778-AFAB-0D929D6B9459}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2A8C0C73-B887-4349-8496-E51C9367EC3C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F723C360-F6CF-4EE5-815B-F2299657F457}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{DED1A08C-E32B-4C42-BE5F-6682C79C7EF8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2C9A1927-5A21-4F72-8E30-0E3BBC9A0A88}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{9052BEF9-6FF4-4086-B357-72A2009F78FB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A47390FB-ADB2-42D4-AD71-85E2C3915746}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{BDE8A0AA-6B49-4E2E-B718-FE4150D4A01D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2EE2BA93-5648-47C6-8BDC-98BEC9776DF5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{DB4CCB56-6509-48F0-8951-689BAFFD8C30}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{EABEB767-4384-4539-8F7A-AF0314191319}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{7905AA02-E384-4706-BACF-1C1003C18F61}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FEA0F5EF-35BC-418A-ADFB-0C253FF44D5D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI.exe (Firaxis Games)
FirewallRules: [{95A9E59F-1165-4DC3-A8A2-D0E9D384D104}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI.exe (Firaxis Games)
FirewallRules: [{5C5D8219-FFDA-47BD-B1C0-BA44912EEE34}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI_DX12.exe (Firaxis Games)
FirewallRules: [{11FA9922-E965-4E2B-B76F-7A8C73469895}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI_DX12.exe (Firaxis Games)
FirewallRules: [{9D71AF0F-8F0C-4571-B487-81338C161877}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{48B97D18-3DBA-44F2-85D1-7C9D9877ACDD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FA7BC545-3198-4933-8C90-FB49675A2BAF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F682D076-964E-43C3-9E52-830B564CFF58}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D47653CD-4710-4E0C-B650-37800D7EEAD8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{08BBE2BF-A820-4AB4-B7B8-6892FA7FCFF8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{60DEF6C2-40CE-42B6-97F2-50022BC43417}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8B2E6F25-89E1-4135-972F-C8BF4D715A9D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{BC7DEAE4-305B-45C8-8F95-7F07D6EBFD61}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{133C59D7-A528-48E4-A41C-E88666A41EE4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{13171A0D-C35A-4DFB-A888-545F266A75A5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F4F3B379-F145-4221-92E2-19413AA7A11C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B0937E2F-5EBC-4D74-91E2-E193F9553D0C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2BE63DD4-F132-4590-BEE1-8B1F935C0177}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{1C636370-9393-4F42-85D9-F969FA1E4CF7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win32\HirezBridge.exe (Microsoft)
FirewallRules: [{19A55577-37CE-4A7E-8445-21A327BAF7B3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win32\HirezBridge.exe (Microsoft)
FirewallRules: [{ACC371B9-8E34-4B4B-9B1B-286064D6B3E4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F47ADB93-4BBE-478F-AA15-4F5B06BAE912}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8850DD54-0E2D-4878-A413-60571A9C041C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{42C3E1EF-8144-4ADE-BD6C-7D76B4AD879B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{5A384BA2-E202-4979-8E0F-12A385F7225E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{4DB64C63-3EC2-43A0-BF14-AB1F651FE5D9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2DC65B30-32DA-4C0F-B20B-B8F83B276D69}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{33C80575-5011-47C9-B7E2-09717F89B70D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{CFC3B83C-A213-4CBC-9785-BA0669C9ADF8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{E9C705DE-A74B-4B1F-9DE1-C33D0535FC99}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{DC14A9EE-D702-4C46-A5FF-FD60E5F9326B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{91C396F9-593D-4D26-A8FF-0D34332D66FE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B9F590E9-5411-4A4A-8FB8-C271EE9CA7B3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{0B4CF5E3-F669-4487-BBA4-F602DF57F684}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B0D5A17A-C8DA-401C-B9CC-4476717F6327}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{BCA42A44-6166-406E-A441-62CE74AC6014}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{922F9FD1-9BB2-4670-B0F3-4821F9DA6D19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F520B3B6-27B9-42D7-9196-B2CEF4829072}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{26A7975C-3853-4286-8317-10DF4DA37415}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{50BCDF3A-AC64-4C7A-BA32-13CD6C32FB55}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{85D85F99-4C8D-40F8-A07C-06CA81283258}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{4ABCA8A2-2FF8-4245-BB18-8E2338CCFE08}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{272D2467-F717-4550-BBD6-F9AFC04796E2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{48F9762D-8D57-4198-B76D-C0EE9E746D7F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{45884561-772E-48BF-9EF2-42DD55B00EBD}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corporation)
FirewallRules: [{B5AD2CE1-D1FD-4A3D-9D62-46700104C04B}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corporation)
FirewallRules: [{B7E35E32-32E2-4316-B70F-41304E71E78D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{9FFCDB8E-80CC-4185-9F0D-44E2F12BB9EE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{891A6E39-B8ED-4F69-9110-8FE1A96A2232}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{6EC09374-B984-40EC-B13B-FB9A801844D7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{BFD7A849-8860-441F-9C1B-33B974F5EB74}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B6BA794F-D3EF-437D-83BF-5326C2BF2A8B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{3413EDC0-AB1F-4AF7-A1CC-21E9DBD6FE98}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation)
FirewallRules: [{28639CA4-C826-4A5E-8BE1-F1415F521117}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation)
FirewallRules: [{54616364-9F1C-4496-974E-511438DBA6DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{ACFB5064-19B0-45E8-9A2F-34C3CC47E6C3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{0CC6A86C-9F1B-4AF8-AD94-6B092918E241}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{57FC85A2-94DC-4760-9B94-1AF7CE5E6287}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{5E2D83B1-ABE7-488B-AFA0-512C0BBD7EB6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A21C0DE8-C4D9-47F1-ABD0-71ED4E8421A5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F6FE1002-747A-4424-A0BA-2F94F80F3F11}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kerbal Space Program\KSP_x64.exe ()
FirewallRules: [{49D969E9-A119-4C77-ADAD-6B4C7FB380DF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kerbal Space Program\KSP_x64.exe ()
FirewallRules: [{57571106-02CB-4D67-B32A-F0CC58158701}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FAAFC2F3-45D8-4C40-AB37-AC4C095B74F9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C0F19DB5-7815-4863-8D9D-11BFB438194A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{83C45693-20A3-4D44-BE5C-EA294D3CC934}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{7AF844EB-4333-4E87-B459-D2D0C59DA42D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F6166402-8182-43B5-8ED8-977E6794C1D5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C3129613-0005-43BB-ACF6-7B483C92F562}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{75854770-EC87-4D54-AEA7-1371013A84B1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{9C848931-76E5-41A4-BA14-94E7A8325970}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{6AD9823E-BA04-41B8-8AA9-CA6C254A0F52}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{575F17A0-0245-4377-98BC-8EFE8F54599C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{24328895-DC5A-4E72-97FC-88C3A7AEFF24}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D53F5685-6BA5-4932-86ED-31515A5B37C1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{BA2DF6EF-31AB-41E0-8B94-E2A503D289BC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FFF9BB47-21D2-4A48-81B6-D2872F8AF062}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{81EF8074-B582-4AEA-90A0-4DC89B003651}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{4F9B59B3-FCFF-46A1-947C-0DF5177DC707}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{7FCBC07B-A17C-4BC6-AACE-7D7985DA1519}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A8A22344-EB9A-473A-944A-2649A3D57DDB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{E3BAF962-0C5D-4A70-82B2-FD732C39D353}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FA73E1E6-7802-4C3C-BD7A-798A95D010E5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{69512C20-B6BB-4731-B395-92F3BB78A5E2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{82B9DDAD-1572-43E0-91CC-3A038001DF06}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TPH\TPH.exe ()
FirewallRules: [{FF871158-F372-40B9-BF27-79BB134D89AB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TPH\TPH.exe ()
FirewallRules: [{99D5C26C-152E-4A26-AB0F-0DE6C85D0709}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{1AD00345-71F2-4914-9CD2-D1AD962DC90D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{7A0FA7FC-32B4-4BD2-AB15-82E86E72382B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{10C72726-C5FC-48B9-A381-40C28C8BEFC8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{0EE32997-60CE-40F8-9B90-DAAC5087F70D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2BC148C2-7D7C-4598-8BFF-BBF843926419}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{93570598-FD12-48B0-BF86-17E0B50FFAFB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{64CA829C-4517-4C53-8DEA-76D5D3FFB2AC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2D792E1C-316A-4602-8CE3-BA4F0A6CB223}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A3C72C7A-1C12-42B7-BCFE-5C5A40EE144F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{58EEBD46-A562-4F05-A4D6-AA1EF4256939}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{67F5E547-E72A-41E7-8C4E-7400ABBD5E64}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C60D1EF7-1167-4479-A748-38731975015D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2E8A8F78-930D-4FD8-A907-52A07E963C61}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{7925E6B8-BCFF-428B-BE3F-F1DC4AC966CB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{955F604F-5CB3-4437-8B6D-7404EA502FF2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C809F7B4-76BC-4883-AF8F-5959F5F251C0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{69693446-0220-4FFA-89C4-59E0584D22FD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{7C288EB6-C2AF-4E7D-8FA3-FE472FDB70DB}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation)
FirewallRules: [{C5F5D5A1-982B-4113-8AB1-8BAFFB2F887B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D2FF8829-45F2-4BCC-BA1E-D988D87D2ABB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{0CEBA27B-A1A6-4509-964E-B3F9A39FD2B3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{79BF2E37-672F-489F-B14F-A314E88051BE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D9C31A0C-F6F8-4ECF-ABA9-D95BD8E5A232}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FD07BFCE-EE53-4F88-AE1C-5A44888487AE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{880AB95B-913A-4C70-A336-F0861EC953C6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D1E6A77F-898D-4099-9D03-10C8E2840A94}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{BEE94B37-5F9E-4887-840E-4715A9345AD2}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation)
FirewallRules: [{B5980BF5-14C7-4EEF-B166-31C59A81A7E7}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation)
FirewallRules: [{253EACDC-F488-485A-9C59-B933A462C85A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{53575DB1-6145-4AF8-863B-4BE5AEE560C3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{76DC7918-1683-489B-A672-2926CD75F623}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{994D3D39-BE55-4525-92FE-EF379AAE1391}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C0DC2CDA-0205-4CD9-BE68-4FAD4ABCCE3F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{79C33BB4-5E48-49E1-9AC0-D7C0206129DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D09E39D3-926C-4055-865C-E2C5A858FF71}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B6A41A99-DCE6-42CE-87AE-68F64E58A104}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C5B97F25-C892-4221-A9A9-F83609C2191B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8B26943C-3E27-4B82-864F-693E8DAB1CA9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{DE8CE76B-3F8C-4FA1-B933-74CA1F1B85F0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{EC664069-16AB-4F2D-8E6E-8C3ABDDE3D7C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2F10ACDB-0629-49C1-B9BB-C6FDA241B2B9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{05423CFC-7B2F-4F3A-91B3-E67AF8118B64}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{80B11541-6675-48D7-9959-170D8AE6BDA5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RailWorks\RailWorks64.exe ()
FirewallRules: [{B28581FC-69DD-41B4-A319-4444E14EB8A6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RailWorks\RailWorks64.exe ()
FirewallRules: [{CC4AD28C-70B9-40A0-BFA8-1E0E911055AA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D1275D6D-3ACB-4913-B5E0-205CD265DDBB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{AFBD0AE6-4779-43D1-8383-39D2D54FAC19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{37D33EDB-3F60-4A3F-98BD-9E9912C5AEDA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A13CE41F-3189-44C3-8BE9-28DA3F0FDA0D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe (Robot Entertainment)
FirewallRules: [{FD293FD8-F147-4887-AF94-6C68BBC01B10}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe (Robot Entertainment)
FirewallRules: [{0E44CAEF-CFF9-4A42-8233-F2AEE52AE57B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Use Your Words\uyw.exe ()
FirewallRules: [{6AD3EAA7-7A38-4D4B-B563-778772345CC5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Use Your Words\uyw.exe ()
FirewallRules: [{94CE779D-6814-4BBF-A894-FCC2528862B8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation)
FirewallRules: [{4B4D1F85-39BA-475A-90C8-7EDE7F69F6C3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation)
FirewallRules: [{04A5851B-4B8F-47DB-856C-A3260EAF3A65}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation)
FirewallRules: [{AA1252CE-D853-43FD-B29F-58F57544C960}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation)
FirewallRules: [{82DF2937-4F0D-46EB-B669-BD5E5E9D3BE4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation)
FirewallRules: [{B1ED6CE3-69AD-47B7-9678-11926C69BEF9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation)
FirewallRules: [{407A9B4D-6FF6-4D27-B829-6658EABB0EB4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{6C312BE8-FFE4-4275-BB8E-E20584D1EA9A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{CF3FAE6E-FA2A-411F-98CD-DF17B2A12153}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{00863379-21B1-44A2-A708-344CD7AE1C05}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{9BE15517-3DEE-47A8-AE6F-A82CE1555A4D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{92851379-F0CE-4482-A8AB-22D1EC0E2037}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{5CB77E78-5C0B-4A72-895B-04B780D02749}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win64\SmiteEAC.exe (EasyAntiCheat Ltd)
FirewallRules: [{7DFF2146-828A-4E64-9EE6-8B32BBA83419}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win64\SmiteEAC.exe (EasyAntiCheat Ltd)
FirewallRules: [{D5C1FFC4-F446-452E-B65B-D1E241F894F7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{6B569823-C321-4233-B736-454DEF3B0EBA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{53CF73FC-0C8D-4634-83ED-D946D0F89D70}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win32\SmiteEAC.exe (EasyAntiCheat Ltd)
FirewallRules: [{EE0E12AB-10D1-4D36-A9B4-A15CE1292B0A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win32\SmiteEAC.exe (EasyAntiCheat Ltd)
FirewallRules: [{920DBC66-C5FB-4AE3-823B-AC7277584158}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{266252ED-E5D5-478A-AF54-3C1FF643A3AE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{57596BF1-E967-4A56-AA9E-CE536606095E}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (AVAST Software)
FirewallRules: [{DD792584-7914-4534-ABB7-634C8F8B7EA1}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (AVAST Software)
FirewallRules: [{0EF63021-C1E3-4523-B540-6051C04E6AE6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FF37021F-9A6F-4528-B019-2BAED40EB13F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{39B57A76-E939-4914-A569-16065DB7380C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{143ECB4C-133E-42FC-A698-544E48A3600E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{BD73B125-0DAC-4595-9A42-E139893A892C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\LaunchPad\LaunchPad.exe ()
FirewallRules: [{65EC4750-E14C-4943-889C-E37EE797E75C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\LaunchPad\LaunchPad.exe ()
FirewallRules: [{62403600-65E1-4509-A0CB-B9D95A84D37D}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12092.6.37131.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc.)
FirewallRules: [{BD7C2CDF-CFAB-4F87-BE43-11BB2E559E5D}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12092.6.37131.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc.)
FirewallRules: [{93F82980-857D-4524-816D-795FC1E4374B}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12092.6.37131.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc.)
FirewallRules: [{BCECEE7E-AB40-482A-B160-562A79FC99E1}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12092.6.37131.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc.)
FirewallRules: [{71EC9647-638A-493F-AD50-89B5C4BF9978}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12092.6.37131.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc.)
FirewallRules: [{6237EB9E-8F52-4B81-A88C-F8D303722BC3}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12092.6.37131.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc.)
FirewallRules: [{8ED692E3-10AA-4BE8-A64C-2C12531E4913}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12092.6.37131.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc.)
FirewallRules: [{4F8E6530-1309-4580-B80B-FDFF20019512}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12092.6.37131.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc.)
FirewallRules: [{CAE2EFF6-1FA4-4758-9FD8-DCD4FBAF36EA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{BB59ECBD-E1AD-4665-A2AC-5A130B1C321C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{1DBCDCE6-6500-4E8F-A920-2FD34D999C1A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{842F9379-925A-4416-9F10-806769E604A5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{36C78C45-B16C-4B7B-8351-EA92F9021026}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
FirewallRules: [{32562113-DB6B-42F0-BC79-B171CFB04955}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Eco\Eco.exe ()
FirewallRules: [{DFA7F619-2AB3-48DD-94C3-A7A788C2ADAC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Eco\Eco.exe ()
FirewallRules: [{826E58E6-1FD4-43AF-A9C1-BB60925C728D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{69323C3A-F006-4EC6-9FF8-85A3704D0ECA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{1575B3FE-D86A-4386-A199-44D058EA0A50}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization V\LaunchPad\LaunchPad.exe ()
FirewallRules: [{CF81E176-2A44-48D2-A1E3-76526FA3F071}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization V\LaunchPad\LaunchPad.exe ()
FirewallRules: [{17A871F8-0C47-4D99-945E-2D0E8AE14D47}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F09AD687-3E96-488E-A71D-642BD375C60F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{6C0C7F83-26D1-4E3F-9CB2-2761EDE767B7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CraftTheWorld\Editor.exe ()
FirewallRules: [{0CC8E1C5-A6E9-4BC2-990D-743F21EDE409}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CraftTheWorld\Editor.exe ()
FirewallRules: [{09365EE2-A829-4A72-8214-65720FA4B4FD}] => (Allow) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc.)
 
==================== Restore Points =========================
 
17-12-2018 23:15:24 Windows Update
27-12-2018 22:38:55 SupportAssist_d8868e5d-89f3-4aba-9aea-c6da80bc330e
02-01-2019 13:53:41 Removed Dropbox 20 GB
02-01-2019 13:57:22 Removed Intel® Security Assist
 
==================== Faulty Device Manager Devices =============
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (01/04/2019 11:39:45 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Taskmgr.exe, version: 10.0.17134.1, time stamp: 0xe3592b68
Faulting module name: Taskmgr.exe, version: 10.0.17134.1, time stamp: 0xe3592b68
Exception code: 0xc0000409
Fault offset: 0x0000000000018961
Faulting process id: 0x2f5c
Faulting application start time: 0x01d4a41dc6fa6568
Faulting application path: C:\WINDOWS\System32\Taskmgr.exe
Faulting module path: C:\WINDOWS\System32\Taskmgr.exe
Report Id: ead17b76-446e-4078-8686-fbadd0d54282
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (01/04/2019 11:09:13 AM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Google Update Helper -- Error 1316. The specified account already exists.
 
Error: (01/04/2019 11:08:54 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0
 
Error: (01/02/2019 07:00:07 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Google Update Helper -- Error 1316. The specified account already exists.
 
Error: (01/02/2019 06:00:06 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Google Update Helper -- Error 1316. The specified account already exists.
 
Error: (01/02/2019 05:06:31 PM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Google Update Helper -- Error 1316. The specified account already exists.
 
Error: (01/02/2019 05:06:09 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program ShellExperienceHost.exe version 10.0.17134.1 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
 
Process ID: 2e48
 
Start Time: 01d4a2a0e210a0f7
 
Termination Time: 4294967295
 
Application Path: C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
 
Report Id: 769e4860-44d7-4ec6-8f29-8ddd9a54e51b
 
Faulting package full name: Microsoft.Windows.ShellExperienceHost_10.0.17134.112_neutral_neutral_cw5n1h2txyewy
 
Faulting package-relative application ID: App
 
Error: (01/02/2019 02:08:00 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: backgroundTaskHost.exe, version: 10.0.17134.1, time stamp: 0xcb43d9c5
Faulting module name: twinapi.appcore.dll, version: 10.0.17134.137, time stamp: 0xb5d50228
Exception code: 0xc000027b
Fault offset: 0x000000000009cad5
Faulting process id: 0xd9c
Faulting application start time: 0x01d4a2a0fa3949df
Faulting application path: C:\WINDOWS\system32\backgroundTaskHost.exe
Faulting module path: C:\Windows\System32\twinapi.appcore.dll
Report Id: 2efdb07f-8b5d-4b36-b852-3952a27e6ca3
Faulting package full name: DellInc.DellSupportAssistforPCs_3.1.15.0_x64__htrsf667h5kn2
Faulting package-relative application ID: App
 
 
System errors:
=============
Error: (01/04/2019 11:18:35 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 and APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (01/04/2019 11:08:42 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 and APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (01/04/2019 11:08:08 AM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-84H6AVC)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{8BC3F05E-D86B-11D0-A075-00C04FB68820}
 and APPID 
{8BC3F05E-D86B-11D0-A075-00C04FB68820}
 to the user DESKTOP-84H6AVC\dan31 SID (S-1-5-21-50118766-877759180-1359360943-1001) from address LocalHost (Using LRPC) running in the application container Microsoft.Windows.ContentDeliveryManager_10.0.17134.1_neutral_neutral_cw5n1h2txyewy SID (S-1-15-2-350187224-1905355452-1037786396-3028148496-2624191407-3283318427-1255436723). This security permission can be modified using the Component Services administrative tool.
 
Error: (01/04/2019 11:07:07 AM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-84H6AVC)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{8BC3F05E-D86B-11D0-A075-00C04FB68820}
 and APPID 
{8BC3F05E-D86B-11D0-A075-00C04FB68820}
 to the user DESKTOP-84H6AVC\dan31 SID (S-1-5-21-50118766-877759180-1359360943-1001) from address LocalHost (Using LRPC) running in the application container Microsoft.Windows.ContentDeliveryManager_10.0.17134.1_neutral_neutral_cw5n1h2txyewy SID (S-1-15-2-350187224-1905355452-1037786396-3028148496-2624191407-3283318427-1255436723). This security permission can be modified using the Component Services administrative tool.
 
Error: (01/02/2019 02:38:01 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 and APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (01/02/2019 01:45:55 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-84H6AVC)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 and APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 to the user DESKTOP-84H6AVC\dan31 SID (S-1-5-21-50118766-877759180-1359360943-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (01/02/2019 01:45:46 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-84H6AVC)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 and APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 to the user DESKTOP-84H6AVC\dan31 SID (S-1-5-21-50118766-877759180-1359360943-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (01/02/2019 01:45:27 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-84H6AVC)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 and APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 to the user DESKTOP-84H6AVC\dan31 SID (S-1-5-21-50118766-877759180-1359360943-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
 
CodeIntegrity:
===================================
 
Date: 2018-12-24 22:47:58.592
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll that did not meet the Microsoft signing level requirements.
 
Date: 2018-12-24 22:47:58.583
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll that did not meet the Microsoft signing level requirements.
 
Date: 2018-08-27 19:07:02.847
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
 
Date: 2018-08-27 19:06:54.138
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
 
Date: 2018-08-27 16:53:26.151
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
 
Date: 2018-08-27 16:53:26.144
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
 
Date: 2018-08-27 16:28:04.870
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
 
Date: 2018-08-27 16:28:04.669
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
 
==================== Memory info =========================== 
 
Processor: Intel® Core™ i7-6700HQ CPU @ 2.60GHz
Percentage of memory in use: 65%
Total physical RAM: 8064.96 MB
Available physical RAM: 2809.11 MB
Total Virtual: 14427.54 MB
Available Virtual: 6784.96 MB
 
==================== Drives ================================
 
Drive c: (OS) (Fixed) (Total:918.51 GB) (Free:574.69 GB) NTFS
Drive d: (WININSTALL) (Removable) (Total:29.71 GB) (Free:24.45 GB) FAT32
 
\\?\Volume{7ef1e1f8-ec7c-4bca-a503-b945bfdda851}\ () (Fixed) (Total:0.83 GB) (Free:0.45 GB) NTFS
\\?\Volume{f63abb0e-f9e6-4ad0-9723-6c3ecb9e096e}\ (Image) (Fixed) (Total:11.56 GB) (Free:0.62 GB) NTFS
\\?\Volume{b7615190-e819-4947-b561-b4cb7f83b049}\ (ESP) (Fixed) (Total:0.48 GB) (Free:0.45 GB) FAT32
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: CF8F55DC)
 
Partition: GPT.
 
========================================================
Disk: 1 (Size: 29.7 GB) (Disk ID: 486668B2)
Partition 1: (Active) - (Size=29.7 GB) - (Type=0B)
 
==================== End of Addition.txt ============================

  • 0

#8
Wolfman360

Wolfman360

    Member

  • Topic Starter
  • Member
  • PipPip
  • 32 posts

Here is the speccy report as it would not let me attach it due to the error being displayed by the webpage. I've also noticed that microsoft click to run has been using 100% of my disk until being killed.

 

Summary
Operating System
Windows 10 Home 64-bit
CPU
Intel Core i7 6700HQ @ 2.60GHz 49 °C
Skylake 14nm Technology
RAM
8.00GB Single-Channel DDR3 @ 797MHz (11-11-11-28)
Motherboard
Dell Inc. 0H0CC0 (U3E1)
Graphics
Generic PnP Monitor (1920x1080@60Hz)
Intel HD Graphics 530 (Dell)
4095MB NVIDIA GeForce GTX 960M (Dell) 53 °C
ForceWare version: 391.25
SLI Disabled
Storage
931GB Seagate ST1000LM014-1EJ164 (SATA ) 34 °C
29GB Generic- SD/MMC USB Device (USB )
Optical Drives
No optical disk drives detected
Audio
Realtek Audio
Operating System
Windows 10 Home 64-bit
Computer type: Portable
Installation Date: 13/06/2018 23:11:04
Windows Security Center
User Account Control (UAC) Enabled
Notify level 2 - Default
Windows Update
AutoUpdate Not configured
Windows Defender
Windows Defender Disabled
Firewall
Firewall Enabled
Display Name Avast Antivirus
Antivirus
Avast Antivirus
Antivirus Enabled
Virus Signature Database Up to date
Windows Defender
Antivirus Disabled
Virus Signature Database Up to date
.NET Frameworks installed
v4.7 Full
v4.7 Client
v3.5 SP1
v3.0 SP2
v2.0 SP2
Internet Explorer
Version 11.472.17134.0
PowerShell
Version 5.1.17134.1
Java
Java Runtime Environment
Path C:\Program Files\Java\jre1.8.0_112\bin\java.exe
Version 8.0
Update 112
Build 15
Environment Variables
USERPROFILE C:\Users\dan31
SystemRoot C:\WINDOWS
User Variables
BESIEGE_GAME_ASSEMBLIES C:/Program Files (x86)/Steam/steamapps/common/Besiege/Besiege_Data\Managed/
BESIEGE_UNITY_ASSEMBLIES C:/Program Files (x86)/Steam/steamapps/common/Besiege/Besiege_Data\Managed/
GOOGLE_API_KEY no
GOOGLE_DEFAULT_CLIENT_ID no
GOOGLE_DEFAULT_CLIENT_SECRET no
GPU_MAX_ALLOC_PERCENT 100
GPU_USE_SYNC_OBJECTS 1
OneDrive C:\Users\dan31\OneDrive
OneDriveConsumer C:\Users\dan31\OneDrive
Path C:\Users\dan31\AppData\Local\Microsoft\WindowsApps
TEMP C:\Users\dan31\AppData\Local\Temp
TMP C:\Users\dan31\AppData\Local\Temp
Machine Variables
ComSpec C:\WINDOWS\system32\cmd.exe
DriverData C:\Windows\System32\Drivers\DriverData
NUMBER_OF_PROCESSORS 8
OS Windows_NT
Path C:\ProgramData\Oracle\Java\javapath
C:\Program Files (x86)\Intel\iCLS Client\
C:\Program Files\Intel\iCLS Client\
C:\Windows\system32
C:\Windows
C:\Windows\System32\Wbem
C:\Windows\System32\WindowsPowerShell\v1.0\
C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common
C:\Program Files (x86)\Intel\Intel Management Engine Components\DAL
C:\Program Files\Intel\Intel Management Engine Components\DAL
C:\Program Files (x86)\Intel\Intel Management Engine Components\IPT
C:\Program Files\Intel\Intel Management Engine Components\IPT
C:\WINDOWS\system32
C:\WINDOWS
C:\WINDOWS\System32\Wbem
C:\WINDOWS\System32\WindowsPowerShell\v1.0\
C:\WINDOWS\System32\OpenSSH\
C:\Program Files\Intel\WiFi\bin\
C:\Program Files\Common Files\Intel\WirelessCommon\
PATHEXT .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
PROCESSOR_ARCHITECTURE AMD64
PROCESSOR_IDENTIFIER Intel64 Family 6 Model 94 Stepping 3, GenuineIntel
PROCESSOR_LEVEL 6
PROCESSOR_REVISION 5e03
PSModulePath %ProgramFiles%\WindowsPowerShell\Modules
C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules
TEMP C:\WINDOWS\TEMP
TMP C:\WINDOWS\TEMP
USERNAME SYSTEM
windir C:\WINDOWS
Battery
AC Line Online
Battery Charge % 100 %
Battery State High
Remaining Battery Time Unknown
Power Profile
Active power scheme Dell
Hibernation Enabled
Turn Off Monitor after: (On AC Power) 10 min
Turn Off Monitor after: (On Battery Power) 5 min
Turn Off Hard Disk after: (On AC Power) 20 min
Turn Off Hard Disk after: (On Battery Power) 10 min
Suspend after: (On AC Power) 180 min
Suspend after: (On Battery Power) 15 min
Screen saver Disabled
Uptime
Current Session
Current Time 04/01/2019 11:50:59
Current Uptime 1,090,247 sec (12 d, 14 h, 50 m, 47 s)
Last Boot Time 22/12/2018 21:00:12
Services
Running Application Information
Running AppX Deployment Service (AppXSVC)
Running aswbIDSAgent
Running Avast Antivirus
Running Avast Firewall Service
Running AVCTP service
Running Background Intelligent Transfer Service
Running Background Tasks Infrastructure Service
Running Base Filtering Engine
Running Bluetooth Audio Gateway Service
Running Bluetooth Support Service
Running Capability Access Manager Service
Running Client License Service (ClipSVC)
Running CNG Key Isolation
Running COM+ Event System
Running Connected Devices Platform Service
Running Connected Devices Platform User Service_57b64fa
Running Connected User Experiences and Telemetry
Running Contact Data_57b64fa
Running CoreMessaging
Running Credential Manager
Running Cryptographic Services
Running Data Sharing Service
Running Data Usage
Running DCOM Server Process Launcher
Running Delivery Optimization
Running Dell Customer Connect
Running Dell Data Vault Collector
Running Dell Data Vault Processor
Running Dell Data Vault Service API
Running Dell Digital Delivery Service
Running Dell Foundation Services
Running Dell Hardware Support
Running Dell Help & Support
Running Dell SupportAssist
Running Device Association Service
Running DHCP Client
Running Diagnostic Policy Service
Running Diagnostic Service Host
Running Diagnostic System Host
Running Distributed Link Tracking Client
Running DNS Client
Running ESIF Upper Framework Service
Running Geolocation Service
Running Human Interface Device Service
Running IKE and AuthIP IPsec Keying Modules
Running Intel Bluetooth Service
Running Intel Content Protection HDCP Service
Running Intel Content Protection HECI Service
Running Intel Dynamic Application Loader Host Interface Service
Running Intel HD Graphics Control Panel Service
Running Intel Management and Security Application Local Management Service
Running Intel PROSet/Wireless Event Log
Running Intel PROSet/Wireless Registry Service
Running Intel PROSet/Wireless Zero Configuration Service
Running Intel Rapid Storage Technology
Running IP Helper
Running IPsec Policy Agent
Running Local Session Manager
Running Malwarebytes Service
Running Microsoft Account Sign-in Assistant
Running Microsoft Office Click-to-Run Service
Running Microsoft Passport
Running Microsoft Passport Container
Running Microsoft Software Shadow Copy Provider
Running Network Connection Broker
Running Network Connections
Running Network List Service
Running Network Location Awareness
Running Network Store Interface Service
Running NVIDIA Display Container LS
Running NVIDIA LocalSystem Container
Running NVIDIA Telemetry Container
Running Payments and NFC/SE Manager
Running Peer Name Resolution Protocol
Running Peer Networking Identity Manager
Running Plug and Play
Running Power
Running Print Spooler
Running Product Registration
Running Program Compatibility Assistant Service
Running Radio Management Service
Running Realtek Audio Service
Running Remote Access Connection Manager
Running Remote Procedure Call (RPC)
Running Rivet Dynamic Bandwidth Management
Running RPC Endpoint Mapper
Running Secondary Logon
Running Secure Socket Tunneling Protocol Service
Running Security Accounts Manager
Running Security Center
Running Sensor Service
Running Server
Running Shell Hardware Detection
Running SmartByte Network Service
Running SSDP Discovery
Running State Repository Service
Running Storage Service
Running Superfetch
Running Sync Host_57b64fa
Running System Event Notification Service
Running System Events Broker
Running System Guard Runtime Monitor Broker
Running Task Scheduler
Running TCP/IP NetBIOS Helper
Running Telephony
Running Themes
Running Time Broker
Running Touch Keyboard and Handwriting Panel Service
Running Update Orchestrator Service
Running User Data Access_57b64fa
Running User Data Storage_57b64fa
Running User Manager
Running User Profile Service
Running Volume Shadow Copy
Running Waves Audio Services
Running Web Account Manager
Running WebClient
Running Windows Audio
Running Windows Audio Endpoint Builder
Running Windows Connection Manager
Running Windows Defender Firewall
Running Windows Defender Security Center Service
Running Windows Event Log
Running Windows Font Cache Service
Running Windows Image Acquisition (WIA)
Running Windows License Manager Service
Running Windows Management Instrumentation
Running Windows Presentation Foundation Font Cache 3.0.0.0
Running Windows Push Notifications System Service
Running Windows Push Notifications User Service_57b64fa
Running Windows Remediation Service
Running Windows Search
Running WinHTTP Web Proxy Auto-Discovery Service
Running WLAN AutoConfig
Running Workstation
Stopped ActiveX Installer (AxInstSV)
Stopped AllJoyn Router Service
Stopped App Readiness
Stopped Application Identity
Stopped Application Layer Gateway Service
Stopped Auto Time Zone Updater
Stopped AvastWscReporter
Stopped BattlEye Service
Stopped BitLocker Drive Encryption Service
Stopped BitRaider Mini-Support Service Stub Loader
Stopped Block Level Backup Engine Service
Stopped Bluetooth User Support Service_57b64fa
Stopped Brave Elevation Service
Stopped Brave Update Service (brave)
Stopped Brave Update Service (bravem)
Stopped Certificate Propagation
Stopped COM+ System Application
Stopped Dell Update Service
Stopped Device Install Service
Stopped Device Management Enrollment Service
Stopped Device Setup Manager
Stopped DevicePicker_57b64fa
Stopped DevicesFlow_57b64fa
Stopped DevQuery Background Discovery Broker
Stopped Diagnostic Execution Service
Stopped Distributed Transaction Coordinator
Stopped dmwappushsvc
Stopped Downloaded Maps Manager
Stopped EasyAntiCheat
Stopped Embedded Mode
Stopped Encrypting File System (EFS)
Stopped Enterprise App Management Service
Stopped Extensible Authentication Protocol
Stopped Fax
Stopped File History Service
Stopped Function Discovery Provider Host
Stopped Function Discovery Resource Publication
Stopped GameDVR and Broadcast User Service_57b64fa
Stopped Google Chrome Elevation Service
Stopped Google Update Service (gupdate)
Stopped Google Update Service (gupdatem)
Stopped GraphicsPerfSvc
Stopped Group Policy Client
Paused Hi-Rez Studios Authenticate and Update Service
Stopped HV Host Service
Stopped Hyper-V Data Exchange Service
Stopped Hyper-V Guest Service Interface
Stopped Hyper-V Guest Shutdown Service
Stopped Hyper-V Heartbeat Service
Stopped Hyper-V PowerShell Direct Service
Stopped Hyper-V Remote Desktop Virtualization Service
Stopped Hyper-V Time Synchronization Service
Stopped Hyper-V Volume Shadow Copy Requestor
Stopped Infrared monitor service
Stopped Intel Capability Licensing Service TCP IP Interface
Stopped Intel WiDi Software Asset Manager
Stopped Internet Connection Sharing (ICS)
Stopped IP Translation Configuration Service
Stopped KtmRm for Distributed Transaction Coordinator
Stopped Language Experience Service
Stopped Link-Layer Topology Discovery Mapper
Stopped Local Profile Assistant Service
Stopped McAfee SiteAdvisor Service
Stopped MessagingService_57b64fa
Stopped Microsoft Diagnostics Hub Standard Collector Service
Stopped Microsoft iSCSI Initiator Service
Stopped Microsoft Storage Spaces SMP
Stopped Microsoft Store Install Service
Stopped Microsoft Windows SMS Router Service.
Stopped Natural Authentication
Stopped Net.Tcp Port Sharing Service
Stopped Netlogon
Stopped Network Connected Devices Auto-Setup
Stopped Network Connectivity Assistant
Stopped Network Setup Service
Stopped NVIDIA NetworkService Container
Stopped Office Source Engine
Stopped OpenSSH Authentication Agent
Stopped Optimize drives
Stopped Origin Client Service
Stopped Origin Web Helper Service
Stopped Parental Controls
Stopped Peer Networking Grouping
Stopped Performance Counter DLL Host
Stopped Performance Logs & Alerts
Stopped Phone Service
Stopped PNRP Machine Name Publication Service
Stopped Portable Device Enumerator Service
Stopped Printer Extensions and Notifications
Stopped PrintWorkflow_57b64fa
Stopped Problem Reports and Solutions Control Panel Support
Stopped Quality Windows Audio Video Experience
Stopped Remote Access Auto Connection Manager
Stopped Remote Desktop Configuration
Stopped Remote Desktop Services
Stopped Remote Desktop Services UserMode Port Redirector
Stopped Remote Procedure Call (RPC) Locator
Stopped Remote Registry
Stopped Retail Demo Service
Stopped Routing and Remote Access
Stopped Sensor Data Service
Stopped Sensor Monitoring Service
Stopped Shared PC Account Manager
Stopped Smart Card
Stopped Smart Card Device Enumeration Service
Stopped Smart Card Removal Policy
Stopped SNMP Trap
Stopped Software Protection
Stopped Spatial Data Service
Stopped Spot Verifier
Stopped Steam Client Service
Stopped Still Image Acquisition Events
Stopped Storage Tiers Management
Stopped UPnP Device Host
Stopped Virtual Disk
Stopped Volumetric Audio Compositor Service
Stopped WalletService
Stopped WarpJITSvc
Stopped Wi-Fi Direct Services Connection Manager Service
Stopped Windows Backup
Stopped Windows Biometric Service
Stopped Windows Camera Frame Server
Stopped Windows Connect Now - Config Registrar
Stopped Windows Defender Antivirus Network Inspection Service
Stopped Windows Defender Antivirus Service
Stopped Windows Encryption Provider Host Service
Stopped Windows Error Reporting Service
Stopped Windows Event Collector
Stopped Windows Insider Service
Stopped Windows Installer
Stopped Windows Media Player Network Sharing Service
Stopped Windows Mobile Hotspot Service
Stopped Windows Modules Installer
Stopped Windows Perception Service
Stopped Windows PushToInstall Service
Stopped Windows Remote Management (WS-Management)
Stopped Windows Time
Stopped Windows Update
Stopped Windows Update Medic Service
Stopped Wired AutoConfig
Stopped Wireless PAN DHCP Server
Stopped WMI Performance Adapter
Stopped Work Folders
Stopped WWAN AutoConfig
Stopped Xbox Accessory Management Service
Stopped Xbox Game Monitoring
Stopped Xbox Live Auth Manager
Stopped Xbox Live Game Save
Stopped Xbox Live Networking Service
TimeZone
TimeZone GMT
Language English (United Kingdom)
Location United Kingdom
Format English (United Kingdom)
Currency £
Date Format dd/MM/yyyy
Time Format HH:mm:ss
Scheduler
04/01/2019 12:00; BraveSoftwareUpdateTaskMachineUA
04/01/2019 12:19; GoogleUpdateTaskMachineUA
04/01/2019 16:44; IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
04/01/2019 16:46; IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec
04/01/2019 23:00; BraveSoftwareUpdateTaskMachineCore
04/01/2019 23:19; GoogleUpdateTaskMachineCore
05/01/2019 17:12; OneDrive Standalone Update Task-S-1-5-21-50118766-877759180-1359360943-1001
09/01/2019 13:47; Dell SupportAssistAgent AutoUpdate
IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec-Logon
RtHDVBg_PushButton
SmartByte Telemetry
Hotfixes
Installed
02/01/2019  Realtek Semiconductor Corp. - MEDIA - 11/20/2018 12:00:00 AM - 6.0.1.8578
Realtek Semiconductor Corp. MEDIA driver update released in November
2018
19/12/2018  2018-12 Cumulative Update for Windows 10 Version 1803 for x64-based Systems (KB4483234)
Install this update to resolve issues in Windows. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article for more information.
After you install this item, you may have to restart your computer.
17/12/2018  Windows Malicious Software Removal Tool x64 - December 2018 (KB890830)
After the download, this tool runs one time to check your computer
for infection by specific, prevalent malicious software (including
Blaster, Sasser, and Mydoom) and helps remove any infection that
is found. If an infection is found, the tool will display a status
report the next time that you start your computer. A new version
of the tool will be offered every month. If you want to manually
run the tool on your computer, you can download a copy from the
Microsoft Download Center, or you can run an online version from
microsoft.com. This tool is not a replacement for an antivirus
product. To help protect your computer, you should use an antivirus
product.
08/12/2018  2018-12 Update for Windows 10 Version 1803 for x64-based Systems (KB4023057)
A security issue has been identified in a Microsoft software
product that could affect your system. You can help protect your
system by installing this update from Microsoft. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article. After you install
this update, you may have to restart your system.
06/12/2018  2018-12 Security Update for Adobe Flash Player for Windows 10 Version 1803 for x64-based Systems (KB4471331)
A security issue has been identified in a Microsoft software
product that could affect your system. You can help protect your
system by installing this update from Microsoft. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article. After you install
this update, you may have to restart your system.
21/11/2018  2018-11 Security Update for Adobe Flash Player for Windows 10 Version 1803 for x64-based Systems (KB4477029)
A security issue has been identified in a Microsoft software
product that could affect your system. You can help protect your
system by installing this update from Microsoft. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article. After you install
this update, you may have to restart your system.
16/11/2018  2018-11 Update for Windows 10 Version 1803 for x64-based Systems (KB4023057)
A security issue has been identified in a Microsoft software
product that could affect your system. You can help protect your
system by installing this update from Microsoft. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article. After you install
this update, you may have to restart your system.
14/11/2018  2018-11 Security Update for Adobe Flash Player for Windows 10 Version 1803 for x64-based Systems (KB4467694)
A security issue has been identified in a Microsoft software
product that could affect your system. You can help protect your
system by installing this update from Microsoft. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article. After you install
this update, you may have to restart your system.
14/11/2018  Windows Malicious Software Removal Tool x64 - November 2018 (KB890830)
After the download, this tool runs one time to check your computer
for infection by specific, prevalent malicious software (including
Blaster, Sasser, and Mydoom) and helps remove any infection that
is found. If an infection is found, the tool will display a status
report the next time that you start your computer. A new version
of the tool will be offered every month. If you want to manually
run the tool on your computer, you can download a copy from the
Microsoft Download Center, or you can run an online version from
microsoft.com. This tool is not a replacement for an antivirus
product. To help protect your computer, you should use an antivirus
product.
14/11/2018  2018-11 Cumulative Update for Windows 10 Version 1803 for x64-based Systems (KB4467702)
Install this update to resolve issues in Windows. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article for more information.
After you install this item, you may have to restart your computer.
19/10/2018  2018-09 Update for Windows 10 Version 1803 for x64-based Systems (KB4100347)
Install this update to resolve issues in Windows. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article for more information.
After you install this item, you may have to restart your computer.
13/10/2018  Update for Adobe Flash Player for Windows 10 Version 1803 for x64-based Systems (KB4462930)
Install this update to resolve issues in Windows. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article for more information.
After you install this item, you may have to restart your computer.
13/10/2018  Windows Malicious Software Removal Tool x64 - October 2018 (KB890830)
After the download, this tool runs one time to check your computer
for infection by specific, prevalent malicious software (including
Blaster, Sasser, and Mydoom) and helps remove any infection that
is found. If an infection is found, the tool will display a status
report the next time that you start your computer. A new version
of the tool will be offered every month. If you want to manually
run the tool on your computer, you can download a copy from the
Microsoft Download Center, or you can run an online version from
microsoft.com. This tool is not a replacement for an antivirus
product. To help protect your computer, you should use an antivirus
product.
13/10/2018  2018-10 Cumulative Update for Windows 10 Version 1803 for x64-based Systems (KB4462919)
Install this update to resolve issues in Windows. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article for more information.
After you install this item, you may have to restart your computer.
02/10/2018  Apple, Inc. - USBDevice - 5/7/2018 12:00:00 AM - 423.36
Apple, Inc. USBDevice driver update released in May 2018
29/09/2018  Canon - Printers - Canon MG5400 series Printer
Canon Printers software update released in June, 2013
13/09/2018  2018-09 Cumulative Update for Windows 10 Version 1803 for x64-based Systems (KB4457128)
Install this update to resolve issues in Windows. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article for more information.
After you install this item, you may have to restart your computer.
12/09/2018  2018-09 Update for Windows 10 Version 1803 for x64-based Systems (KB4456655)
Install this update to resolve issues in Windows. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article for more information.
After you install this item, you may have to restart your computer.
12/09/2018  2018-09 Security Update for Adobe Flash Player for Windows 10 Version 1803 for x64-based Systems (KB4457146)
A security issue has been identified in a Microsoft software
product that could affect your system. You can help protect your
system by installing this update from Microsoft. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article. After you install
this update, you may have to restart your system.
12/09/2018  2018-09 Cumulative Update for Windows 10 Version 1803 for x64-based Systems (KB4457128)
Install this update to resolve issues in Windows. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article for more information.
After you install this item, you may have to restart your computer.
15/08/2018  Windows Malicious Software Removal Tool x64 - August 2018 (KB890830)
After the download, this tool runs one time to check your computer
for infection by specific, prevalent malicious software (including
Blaster, Sasser, and Mydoom) and helps remove any infection that
is found. If an infection is found, the tool will display a status
report the next time that you start your computer. A new version
of the tool will be offered every month. If you want to manually
run the tool on your computer, you can download a copy from the
Microsoft Download Center, or you can run an online version from
microsoft.com. This tool is not a replacement for an antivirus
product. To help protect your computer, you should use an antivirus
product.
15/08/2018  2018-08 Cumulative Update for Windows 10 Version 1803 for x64-based Systems (KB4343909)
Install this update to resolve issues in Windows. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article for more information.
After you install this item, you may have to restart your computer.
15/08/2018  2018-08 Security Update for Adobe Flash Player for Windows 10 Version 1803 for x64-based Systems (KB4343902)
A security issue has been identified in a Microsoft software
product that could affect your system. You can help protect your
system by installing this update from Microsoft. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article. After you install
this update, you may have to restart your system.
17/07/2018  2018-07 Security Update for Adobe Flash Player for Windows 10 Version 1803 for x64-based Systems (KB4338832)
A security issue has been identified in a Microsoft software
product that could affect your system. You can help protect your
system by installing this update from Microsoft. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article. After you install
this update, you may have to restart your system.
14/07/2018  2018-07 Cumulative Update for Windows 10 Version 1803 for x64-based Systems (KB4338819)
Install this update to resolve issues in Windows. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article for more information.
After you install this item, you may have to restart your computer.
14/07/2018  Windows Malicious Software Removal Tool x64 - July 2018 (KB890830)
After the download, this tool runs one time to check your computer
for infection by specific, prevalent malicious software (including
Blaster, Sasser, and Mydoom) and helps remove any infection that
is found. If an infection is found, the tool will display a status
report the next time that you start your computer. A new version
of the tool will be offered every month. If you want to manually
run the tool on your computer, you can download a copy from the
Microsoft Download Center, or you can run an online version from
microsoft.com. This tool is not a replacement for an antivirus
product. To help protect your computer, you should use an antivirus
product.
21/06/2018  2018-06 Cumulative Update for Windows 10 Version 1803 for x64-based Systems (KB4284835)
Install this update to resolve issues in Windows. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article for more information.
After you install this item, you may have to restart your computer.
17/06/2018  2018-06 Security Update for Adobe Flash Player for Windows 10 Version 1803 for x64-based Systems (KB4287903)
A security issue has been identified in a Microsoft software
product that could affect your system. You can help protect your
system by installing this update from Microsoft. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article. After you install
this update, you may have to restart your system.
17/06/2018  2018-06 Cumulative Update for Windows 10 Version 1803 for x64-based Systems (KB4284835)
Install this update to resolve issues in Windows. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article for more information.
After you install this item, you may have to restart your computer.
13/06/2018  Feature update to Windows 10, version 1803
Install the latest update for Windows 10: the Windows 10 April
2018 Update.
Not Installed
15/12/2018  2018-12 Cumulative Update for Windows 10 Version 1803 for x64-based Systems (KB4471324)
Installation Status Failed
Install this update to resolve issues in Windows. For a complete
listing of the issues that are included in this update, see the
associated Microsoft Knowledge Base article for more information.
After you install this item, you may have to restart your computer.
25/10/2018  Definition Update for Windows Defender Antivirus - KB2267602 (Definition 1.279.504.0)
Installation Status Canceled
Install this update to revise the definition files that are used
to detect viruses, spyware, and other potentially unwanted software.
Once you have installed this item, it cannot be removed.
20/10/2018  Definition Update for Windows Defender Antivirus - KB2267602 (Definition 1.279.182.0)
Installation Status Canceled
Install this update to revise the definition files that are used
to detect viruses, spyware, and other potentially unwanted software.
Once you have installed this item, it cannot be removed.
17/10/2018  NVIDIA - Display - 3/16/2018 12:00:00 AM - 23.21.13.9125
Installation Status Failed
NVIDIA Display driver update released in March 2018
15/10/2018  NVIDIA - Display - 3/16/2018 12:00:00 AM - 23.21.13.9125
Installation Status Failed
NVIDIA Display driver update released in March 2018
12/09/2018  Windows Malicious Software Removal Tool x64 - September 2018 (KB890830)
Installation Status Failed
After the download, this tool runs one time to check your computer
for infection by specific, prevalent malicious software (including
Blaster, Sasser, and Mydoom) and helps remove any infection that
is found. If an infection is found, the tool will display a status
report the next time that you start your computer. A new version
of the tool will be offered every month. If you want to manually
run the tool on your computer, you can download a copy from the
Microsoft Download Center, or you can run an online version from
microsoft.com. This tool is not a replacement for an antivirus
product. To help protect your computer, you should use an antivirus
product.
15/08/2018  Windows Malicious Software Removal Tool x64 - August 2018 (KB890830)
Installation Status Failed
After the download, this tool runs one time to check your computer
for infection by specific, prevalent malicious software (including
Blaster, Sasser, and Mydoom) and helps remove any infection that
is found. If an infection is found, the tool will display a status
report the next time that you start your computer. A new version
of the tool will be offered every month. If you want to manually
run the tool on your computer, you can download a copy from the
Microsoft Download Center, or you can run an online version from
microsoft.com. This tool is not a replacement for an antivirus
product. To help protect your computer, you should use an antivirus
product.
15/08/2018  Definition Update for Windows Defender Antivirus - KB2267602 (Definition 1.273.1420.0)
Installation Status Canceled
Install this update to revise the definition files that are used
to detect viruses, spyware, and other potentially unwanted software.
Once you have installed this item, it cannot be removed.
System Folders
Application Data C:\ProgramData
Cookies C:\Users\dan31\AppData\Local\Microsoft\Windows\INetCookies
Desktop C:\Users\dan31\Desktop
Documents C:\Users\Public\Documents
Fonts C:\WINDOWS\Fonts
Global Favorites C:\Users\dan31\Favorites
Internet History C:\Users\dan31\AppData\Local\Microsoft\Windows\History
Local Application Data C:\Users\dan31\AppData\Local
Music C:\Users\Public\Music
Path for burning CD C:\Users\dan31\AppData\Local\Microsoft\Windows\Burn\Burn
Physical Desktop C:\Users\dan31\Desktop
Pictures C:\Users\Public\Pictures
Program Files C:\Program Files
Public Desktop C:\Users\Public\Desktop
Start Menu C:\ProgramData\Microsoft\Windows\Start Menu
Start Menu Programs C:\ProgramData\Microsoft\Windows\Start Menu\Programs
Startup C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Templates C:\ProgramData\Microsoft\Windows\Templates
Temporary Internet Files C:\Users\dan31\AppData\Local\Microsoft\Windows\INetCache
User Favorites C:\Users\dan31\Favorites
Videos C:\Users\Public\Videos
Windows Directory C:\WINDOWS
Windows/System C:\WINDOWS\system32
Process List
afwServ.exe
Process ID 4208
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\AVAST Software\Avast\afwServ.exe
Memory Usage 24 MB
Peak Memory Usage 37 MB
ApplicationFrameHost.exe
Process ID 18400
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\ApplicationFrameHost.exe
Memory Usage 31 MB
Peak Memory Usage 56 MB
aswidsagenta.exe
Process ID 6228
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
Memory Usage 48 MB
Peak Memory Usage 73 MB
audiodg.exe
Process ID 8656
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\audiodg.exe
Memory Usage 17 MB
Peak Memory Usage 30 MB
AvastSvc.exe
Process ID 3544
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\AVAST Software\Avast\AvastSvc.exe
Memory Usage 51 MB
Peak Memory Usage 327 MB
AvastUI.exe
Process ID 22180
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files\AVAST Software\Avast\AvastUI.exe
Memory Usage 39 MB
Peak Memory Usage 42 MB
backgroundTaskHost.exe
Process ID 20644
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\backgroundTaskHost.exe
Memory Usage 19 MB
Peak Memory Usage 22 MB
chrome.exe
Process ID 22556
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 44 MB
Peak Memory Usage 46 MB
chrome.exe
Process ID 9040
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 6.54 MB
Peak Memory Usage 19 MB
chrome.exe
Process ID 23280
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 193 MB
Peak Memory Usage 219 MB
chrome.exe
Process ID 23080
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 123 MB
Peak Memory Usage 132 MB
chrome.exe
Process ID 21788
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 6.14 MB
Peak Memory Usage 9.04 MB
chrome.exe
Process ID 17384
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 24 MB
Peak Memory Usage 24 MB
chrome.exe
Process ID 21456
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 41 MB
Peak Memory Usage 41 MB
chrome.exe
Process ID 22036
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 133 MB
Peak Memory Usage 138 MB
chrome.exe
Process ID 21276
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 294 MB
Peak Memory Usage 350 MB
chrome.exe
Process ID 8896
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 41 MB
Peak Memory Usage 62 MB
chrome.exe
Process ID 6068
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 41 MB
Peak Memory Usage 41 MB
chrome.exe
Process ID 13576
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 58 MB
Peak Memory Usage 67 MB
chrome.exe
Process ID 20320
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 59 MB
Peak Memory Usage 110 MB
chrome.exe
Process ID 20848
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 46 MB
Peak Memory Usage 83 MB
chrome.exe
Process ID 19212
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 56 MB
Peak Memory Usage 59 MB
chrome.exe
Process ID 13784
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 59 MB
Peak Memory Usage 75 MB
chrome.exe
Process ID 3404
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 39 MB
Peak Memory Usage 39 MB
chrome.exe
Process ID 6000
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 61 MB
Peak Memory Usage 99 MB
chrome.exe
Process ID 16328
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 19 MB
Peak Memory Usage 35 MB
chrome.exe
Process ID 23292
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 76 MB
Peak Memory Usage 103 MB
chrome.exe
Process ID 11676
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 56 MB
Peak Memory Usage 88 MB
chrome.exe
Process ID 2280
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 60 MB
Peak Memory Usage 66 MB
chrome.exe
Process ID 18472
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 61 MB
Peak Memory Usage 61 MB
chrome.exe
Process ID 16264
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 41 MB
Peak Memory Usage 42 MB
chrome.exe
Process ID 12380
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 41 MB
Peak Memory Usage 46 MB
chrome.exe
Process ID 23096
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 313 MB
Peak Memory Usage 376 MB
chrome.exe
Process ID 6524
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 203 MB
Peak Memory Usage 226 MB
chrome.exe
Process ID 6844
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 58 MB
Peak Memory Usage 59 MB
chrome.exe
Process ID 14064
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 334 MB
Peak Memory Usage 421 MB
chrome.exe
Process ID 8440
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
Memory Usage 49 MB
Peak Memory Usage 49 MB
conhost.exe
Process ID 12864
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\conhost.exe
Memory Usage 1.06 MB
Peak Memory Usage 9.18 MB
conhost.exe
Process ID 3804
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\conhost.exe
Memory Usage 1.06 MB
Peak Memory Usage 9.09 MB
conhost.exe
Process ID 6856
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\conhost.exe
Memory Usage 4.80 MB
Peak Memory Usage 11 MB
conhost.exe
Process ID 12676
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\conhost.exe
Memory Usage 964 KB
Peak Memory Usage 9.59 MB
conhost.exe
Process ID 8276
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\conhost.exe
Memory Usage 5.12 MB
Peak Memory Usage 11 MB
csrss.exe
Process ID 804
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\csrss.exe
Memory Usage 2.38 MB
Peak Memory Usage 6.30 MB
csrss.exe
Process ID 11460
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\csrss.exe
Memory Usage 4.85 MB
Peak Memory Usage 31 MB
ctfmon.exe
Process ID 23288
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\ctfmon.exe
Memory Usage 14 MB
Peak Memory Usage 18 MB
dasHost.exe
Process ID 1628
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\dasHost.exe
Memory Usage 8.52 MB
Peak Memory Usage 9.50 MB
DCCService.exe
Process ID 13432
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Dell Customer Connect\DCCService.exe
Memory Usage 10 MB
Peak Memory Usage 42 MB
DDVCollectorSvcApi.exe
Process ID 10208
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe
Memory Usage 1.73 MB
Peak Memory Usage 7.00 MB
DDVDataCollector.exe
Process ID 15288
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe
Memory Usage 11 MB
Peak Memory Usage 27 MB
DDVRulesProcessor.exe
Process ID 13908
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe
Memory Usage 4.79 MB
Peak Memory Usage 13 MB
DeliveryService.exe
Process ID 7288
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe
Memory Usage 7.55 MB
Peak Memory Usage 49 MB
DFS.Common.Agent.exe
Process ID 21536
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files\Dell\Dell Foundation Services\DFS.Common.Agent.exe
Memory Usage 12 MB
Peak Memory Usage 35 MB
DFSSvc.exe
Process ID 14136
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe
Memory Usage 24 MB
Peak Memory Usage 67 MB
dllhost.exe
Process ID 9632
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\dllhost.exe
Memory Usage 5.99 MB
Peak Memory Usage 5.99 MB
dllhost.exe
Process ID 15572
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\dllhost.exe
Memory Usage 6.23 MB
Peak Memory Usage 6.23 MB
dllhost.exe
Process ID 13040
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\dllhost.exe
Memory Usage 3.32 MB
Peak Memory Usage 11 MB
dllhost.exe
Process ID 10736
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\dllhost.exe
Memory Usage 10 MB
Peak Memory Usage 11 MB
DSAPI.exe
Process ID 13984
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1382\DSAPI.exe
Memory Usage 29 MB
Peak Memory Usage 127 MB
dwm.exe
Process ID 9764
User DWM-7
Domain Window Manager
Path C:\Windows\System32\dwm.exe
Memory Usage 72 MB
Peak Memory Usage 170 MB
esif_assist_64.exe
Process ID 10576
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\Temp\DPTF\esif_assist_64.exe
Memory Usage 2.49 MB
Peak Memory Usage 3.75 MB
esif_uf.exe
Process ID 4500
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\Intel\DPTF\esif_uf.exe
Memory Usage 2.27 MB
Peak Memory Usage 6.03 MB
EvtEng.exe
Process ID 4408
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Intel\WiFi\bin\EvtEng.exe
Memory Usage 5.95 MB
Peak Memory Usage 14 MB
explorer.exe
Process ID 17680
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\explorer.exe
Memory Usage 171 MB
Peak Memory Usage 185 MB
fontdrvhost.exe
Process ID 1016
User UMFD-0
Domain Font Driver Host
Path C:\Windows\System32\fontdrvhost.exe
Memory Usage 956 KB
Peak Memory Usage 4.05 MB
fontdrvhost.exe
Process ID 4772
User UMFD-7
Domain Font Driver Host
Path C:\Windows\System32\fontdrvhost.exe
Memory Usage 5.89 MB
Peak Memory Usage 39 MB
FRST64.exe
Process ID 2168
User dan31
Domain DESKTOP-84H6AVC
Path C:\Users\dan31\OneDrive\Documents\Archive\MacroToolworksFiles\FRST64.exe
Memory Usage 49 MB
Peak Memory Usage 171 MB
GoogleCrashHandler.exe
Process ID 14544
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Google\Update\1.3.33.23\GoogleCrashHandler.exe
Memory Usage 884 KB
Peak Memory Usage 6.66 MB
GoogleCrashHandler64.exe
Process ID 10420
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Google\Update\1.3.33.23\GoogleCrashHandler64.exe
Memory Usage 852 KB
Peak Memory Usage 6.11 MB
HelpPane.exe
Process ID 17676
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\HelpPane.exe
Memory Usage 23 MB
Peak Memory Usage 24 MB
HiPatchService.exe
Process ID 13968
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
Memory Usage 31 MB
Peak Memory Usage 43 MB
IAStorDataMgrSvc.exe
Process ID 8764
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Intel\Intel Rapid Storage Technology\IAStorDataMgrSvc.exe
Memory Usage 8.14 MB
Peak Memory Usage 47 MB
IAStorIcon.exe
Process ID 18948
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files\Intel\Intel Rapid Storage Technology\IAStorIcon.exe
Memory Usage 17 MB
Peak Memory Usage 31 MB
ibtsiva.exe
Process ID 4392
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\ibtsiva.exe
Memory Usage 2.00 MB
Peak Memory Usage 4.09 MB
igfxCUIService.exe
Process ID 2360
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\ki127176.inf_amd64_86c658cabfb17c9c\igfxCUIService.exe
Memory Usage 2.98 MB
Peak Memory Usage 8.20 MB
igfxEM.exe
Process ID 1924
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\DriverStore\FileRepository\ki127176.inf_amd64_86c658cabfb17c9c\igfxEM.exe
Memory Usage 22 MB
Peak Memory Usage 27 MB
IntelCpHDCPSvc.exe
Process ID 4508
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\ki127176.inf_amd64_86c658cabfb17c9c\IntelCpHDCPSvc.exe
Memory Usage 1.73 MB
Peak Memory Usage 6.75 MB
IntelCpHeciSvc.exe
Process ID 4204
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\DriverStore\FileRepository\ki127176.inf_amd64_86c658cabfb17c9c\IntelCpHeciSvc.exe
Memory Usage 1.82 MB
Peak Memory Usage 6.66 MB
jhi_service.exe
Process ID 9628
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Intel\Intel Management Engine Components\DAL\jhi_service.exe
Memory Usage 1.27 MB
Peak Memory Usage 6.37 MB
jucheck.exe
Process ID 10316
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
Memory Usage 10 MB
Peak Memory Usage 14 MB
jusched.exe
Process ID 11564
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
Memory Usage 13 MB
Peak Memory Usage 18 MB
LMS.exe
Process ID 7836
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files (x86)\Intel\Intel Management Engine Components\LMS\LMS.exe
Memory Usage 3.11 MB
Peak Memory Usage 14 MB
LockApp.exe
Process ID 17988
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
Memory Usage 37 MB
Peak Memory Usage 50 MB
lsass.exe
Process ID 1004
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\lsass.exe
Memory Usage 14 MB
Peak Memory Usage 20 MB
MBAMService.exe
Process ID 10972
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
Memory Usage 36 MB
Peak Memory Usage 102 MB
mbamtray.exe
Process ID 20556
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
Memory Usage 37 MB
Peak Memory Usage 51 MB
MDLCSvc.exe
Process ID 14992
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Dell\Dell Help & Support\MDLCSvc.exe
Memory Usage 6.93 MB
Peak Memory Usage 52 MB
Memory Compression
Process ID 2576
User SYSTEM
Domain NT AUTHORITY
Memory Usage 325 MB
Peak Memory Usage 693 MB
Microsoft.Photos.exe
Process ID 13316
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18112.17430.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
Memory Usage 3.62 MB
Peak Memory Usage 64 MB
MSASCuiL.exe
Process ID 22248
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files\Windows Defender\MSASCuiL.exe
Memory Usage 10 MB
Peak Memory Usage 10 MB
notepad.exe
Process ID 20764
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\notepad.exe
Memory Usage 15 MB
Peak Memory Usage 15 MB
notepad.exe
Process ID 8736
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\notepad.exe
Memory Usage 11 MB
Peak Memory Usage 15 MB
notepad.exe
Process ID 18272
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\notepad.exe
Memory Usage 15 MB
Peak Memory Usage 15 MB
notepad.exe
Process ID 7700
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\notepad.exe
Memory Usage 11 MB
Peak Memory Usage 15 MB
notepad.exe
Process ID 12660
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\notepad.exe
Memory Usage 11 MB
Peak Memory Usage 15 MB
nvapiw.exe
Process ID 1296
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files\Dell\DellDataVault\nvapiw.exe
Memory Usage 5.46 MB
Peak Memory Usage 9.50 MB
nvcontainer.exe
Process ID 22896
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
Memory Usage 18 MB
Peak Memory Usage 47 MB
nvcontainer.exe
Process ID 4492
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
Memory Usage 9.29 MB
Peak Memory Usage 29 MB
NVDisplay.Container.exe
Process ID 1736
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
Memory Usage 5.92 MB
Peak Memory Usage 11 MB
NVDisplay.Container.exe
Process ID 9700
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
Memory Usage 20 MB
Peak Memory Usage 40 MB
NVIDIA Web Helper.exe
Process ID 17684
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
Memory Usage 3.71 MB
Peak Memory Usage 39 MB
NvTelemetryContainer.exe
Process ID 4328
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
Memory Usage 8.32 MB
Peak Memory Usage 16 MB
OfficeClickToRun.exe
Process ID 20468
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
Memory Usage 49 MB
Peak Memory Usage 74 MB
OfficeHubTaskHost.exe
Process ID 11412
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.10314.31700.1000_x64__8wekyb3d8bbwe\Office16\OfficeHubTaskHost.exe
Memory Usage 17 MB
Peak Memory Usage 30 MB
OneDrive.exe
Process ID 664
User dan31
Domain DESKTOP-84H6AVC
Path C:\Users\dan31\AppData\Local\Microsoft\OneDrive\OneDrive.exe
Memory Usage 45 MB
Peak Memory Usage 94 MB
onenoteim.exe
Process ID 7204
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files\WindowsApps\Microsoft.Office.OneNote_16001.11126.20076.0_x64__8wekyb3d8bbwe\onenoteim.exe
Memory Usage 38 MB
Peak Memory Usage 68 MB
ONENOTEM.EXE
Process ID 12076
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE
Memory Usage 1.96 MB
Peak Memory Usage 9.99 MB
pcdrwi.exe
Process ID 7292
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1382\pcdrwi.exe
Memory Usage 34 MB
Peak Memory Usage 239 MB
PresentationFontCache.exe
Process ID 7980
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
Memory Usage 2.65 MB
Peak Memory Usage 24 MB
PrintIsolationHost.exe
Process ID 12816
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\PrintIsolationHost.exe
Memory Usage 8.18 MB
Peak Memory Usage 8.18 MB
PRSvc.exe
Process ID 13420
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Dell\Dell Product Registration\PRSvc.exe
Memory Usage 9.22 MB
Peak Memory Usage 66 MB
quickset.exe
Process ID 20504
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files\Dell\QuickSet\quickset.exe
Memory Usage 8.68 MB
Peak Memory Usage 12 MB
RAVBg64.exe
Process ID 5500
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
Memory Usage 8.24 MB
Peak Memory Usage 14 MB
RAVBg64.exe
Process ID 9344
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
Memory Usage 8.71 MB
Peak Memory Usage 15 MB
Registry
Process ID 120
User SYSTEM
Domain NT AUTHORITY
Memory Usage 40 MB
Peak Memory Usage 264 MB
RegSrvc.exe
Process ID 4400
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
Memory Usage 2.84 MB
Peak Memory Usage 9.23 MB
RNDBWM.exe
Process ID 22480
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Rivet Networks\SmartByte\RNDBWM.exe
Memory Usage 7.63 MB
Peak Memory Usage 12 MB
RNDBWMService.exe
Process ID 14788
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Rivet Networks\SmartByte\RNDBWMService.exe
Memory Usage 11 MB
Peak Memory Usage 16 MB
RtkAudioService64.exe
Process ID 12648
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
Memory Usage 4.91 MB
Peak Memory Usage 7.73 MB
RtkNGUI64.exe
Process ID 21224
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files\Realtek\Audio\HDA\SET6FF6.tmp
Memory Usage 10 MB
Peak Memory Usage 16 MB
RuntimeBroker.exe
Process ID 16372
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 6.36 MB
Peak Memory Usage 11 MB
RuntimeBroker.exe
Process ID 8776
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 8.23 MB
Peak Memory Usage 18 MB
RuntimeBroker.exe
Process ID 14116
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 16 MB
Peak Memory Usage 20 MB
RuntimeBroker.exe
Process ID 4712
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 25 MB
Peak Memory Usage 38 MB
RuntimeBroker.exe
Process ID 5448
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 7.45 MB
Peak Memory Usage 12 MB
RuntimeBroker.exe
Process ID 11124
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 24 MB
Peak Memory Usage 33 MB
RuntimeBroker.exe
Process ID 16252
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 41 MB
Peak Memory Usage 45 MB
RuntimeBroker.exe
Process ID 9252
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 31 MB
Peak Memory Usage 36 MB
RuntimeBroker.exe
Process ID 9816
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\RuntimeBroker.exe
Memory Usage 21 MB
Peak Memory Usage 29 MB
SearchFilterHost.exe
Process ID 13428
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\SearchFilterHost.exe
Memory Usage 7.17 MB
Peak Memory Usage 9.08 MB
SearchIndexer.exe
Process ID 8980
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\SearchIndexer.exe
Memory Usage 55 MB
Peak Memory Usage 85 MB
SearchProtocolHost.exe
Process ID 9132
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\SearchProtocolHost.exe
Memory Usage 9.45 MB
Peak Memory Usage 13 MB
SearchUI.exe
Process ID 17736
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
Memory Usage 210 MB
Peak Memory Usage 258 MB
SecurityHealthService.exe
Process ID 4912
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\SecurityHealthService.exe
Memory Usage 11 MB
Peak Memory Usage 15 MB
sedsvc.exe
Process ID 9012
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\rempl\sedsvc.exe
Memory Usage 1.69 MB
Peak Memory Usage 11 MB
services.exe
Process ID 984
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\services.exe
Memory Usage 8.98 MB
Peak Memory Usage 12 MB
SettingSyncHost.exe
Process ID 15652
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\SettingSyncHost.exe
Memory Usage 7.40 MB
Peak Memory Usage 49 MB
SgrmBroker.exe
Process ID 12388
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\SgrmBroker.exe
Memory Usage 3.80 MB
Peak Memory Usage 5.12 MB
ShellExperienceHost.exe
Process ID 400
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
Memory Usage 69 MB
Peak Memory Usage 113 MB
sihost.exe
Process ID 13524
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\sihost.exe
Memory Usage 26 MB
Peak Memory Usage 28 MB
SkypeApp.exe
Process ID 22660
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\SkypeApp.exe
Memory Usage 47 MB
Peak Memory Usage 211 MB
SkypeBackgroundHost.exe
Process ID 15112
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
Memory Usage 8.26 MB
Peak Memory Usage 12 MB
SkypeBridge.exe
Process ID 15772
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\SkypeBridge\SkypeBridge.exe
Memory Usage 32 MB
Peak Memory Usage 50 MB
SmartByteNetworkService.exe
Process ID 4384
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe
Memory Usage 13 MB
Peak Memory Usage 83 MB
SmartByteTelemetry.exe
Process ID 3904
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Rivet Networks\SmartByte\SmartByteTelemetry.exe
Memory Usage 7.70 MB
Peak Memory Usage 47 MB
smartscreen.exe
Process ID 20940
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\smartscreen.exe
Memory Usage 25 MB
Peak Memory Usage 25 MB
smss.exe
Process ID 596
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\smss.exe
Memory Usage 476 KB
Peak Memory Usage 1.22 MB
Speccy64.exe
Process ID 19692
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files\Speccy\Speccy64.exe
Memory Usage 30 MB
Peak Memory Usage 30 MB
spoolsv.exe
Process ID 3192
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\spoolsv.exe
Memory Usage 7.65 MB
Peak Memory Usage 17 MB
SupportAssistAgent.exe
Process ID 11932
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
Memory Usage 41 MB
Peak Memory Usage 162 MB
svchost.exe
Process ID 2088
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.49 MB
Peak Memory Usage 7.20 MB
svchost.exe
Process ID 2096
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.35 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 2116
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 1.59 MB
Peak Memory Usage 5.61 MB
svchost.exe
Process ID 2140
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.11 MB
Peak Memory Usage 9.34 MB
svchost.exe
Process ID 2156
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.34 MB
Peak Memory Usage 7.57 MB
svchost.exe
Process ID 2180
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 10 MB
Peak Memory Usage 16 MB
svchost.exe
Process ID 2332
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.98 MB
Peak Memory Usage 9.34 MB
svchost.exe
Process ID 2400
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.62 MB
Peak Memory Usage 7.89 MB
svchost.exe
Process ID 2408
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.07 MB
Peak Memory Usage 14 MB
svchost.exe
Process ID 2492
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.26 MB
Peak Memory Usage 9.45 MB
svchost.exe
Process ID 2724
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.61 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 2856
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.52 MB
Peak Memory Usage 8.21 MB
svchost.exe
Process ID 2876
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 2.49 MB
Peak Memory Usage 6.30 MB
svchost.exe
Process ID 3040
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.28 MB
Peak Memory Usage 13 MB
svchost.exe
Process ID 2448
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 3.95 MB
Peak Memory Usage 9.89 MB
svchost.exe
Process ID 3152
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 3.82 MB
Peak Memory Usage 7.38 MB
svchost.exe
Process ID 3308
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 12 MB
Peak Memory Usage 19 MB
svchost.exe
Process ID 3380
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 15 MB
Peak Memory Usage 29 MB
svchost.exe
Process ID 3420
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 9.26 MB
Peak Memory Usage 17 MB
svchost.exe
Process ID 3520
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.65 MB
Peak Memory Usage 13 MB
svchost.exe
Process ID 4088
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 2.84 MB
Peak Memory Usage 8.00 MB
svchost.exe
Process ID 4336
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 1.62 MB
Peak Memory Usage 6.46 MB
svchost.exe
Process ID 4416
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 24 MB
Peak Memory Usage 33 MB
svchost.exe
Process ID 4424
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 1.83 MB
Peak Memory Usage 5.50 MB
svchost.exe
Process ID 4436
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 3.44 MB
Peak Memory Usage 7.66 MB
svchost.exe
Process ID 4444
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 13 MB
Peak Memory Usage 21 MB
svchost.exe
Process ID 4456
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 21 MB
Peak Memory Usage 105 MB
svchost.exe
Process ID 4464
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 13 MB
Peak Memory Usage 76 MB
svchost.exe
Process ID 4516
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 2.75 MB
Peak Memory Usage 7.70 MB
svchost.exe
Process ID 4524
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 17 MB
Peak Memory Usage 45 MB
svchost.exe
Process ID 21120
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.22 MB
Peak Memory Usage 6.14 MB
svchost.exe
Process ID 20248
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.38 MB
Peak Memory Usage 5.57 MB
svchost.exe
Process ID 4540
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 2.70 MB
Peak Memory Usage 7.54 MB
svchost.exe
Process ID 4956
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 2.33 MB
Peak Memory Usage 7.03 MB
svchost.exe
Process ID 5148
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 3.25 MB
Peak Memory Usage 14 MB
svchost.exe
Process ID 5260
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 3.74 MB
Peak Memory Usage 8.86 MB
svchost.exe
Process ID 5336
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 5.17 MB
Peak Memory Usage 13 MB
svchost.exe
Process ID 5392
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.53 MB
Peak Memory Usage 12 MB
svchost.exe
Process ID 1636
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.18 MB
Peak Memory Usage 9.65 MB
svchost.exe
Process ID 7572
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 13 MB
Peak Memory Usage 20 MB
svchost.exe
Process ID 8072
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 2.77 MB
Peak Memory Usage 7.82 MB
svchost.exe
Process ID 8720
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 13 MB
Peak Memory Usage 18 MB
svchost.exe
Process ID 9180
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.30 MB
Peak Memory Usage 8.29 MB
svchost.exe
Process ID 2344
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.09 MB
Peak Memory Usage 16 MB
svchost.exe
Process ID 15812
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 5.15 MB
Peak Memory Usage 5.63 MB
svchost.exe
Process ID 9436
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 13 MB
Peak Memory Usage 21 MB
svchost.exe
Process ID 13900
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.67 MB
Peak Memory Usage 7.88 MB
svchost.exe
Process ID 16064
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.54 MB
Peak Memory Usage 6.67 MB
svchost.exe
Process ID 11340
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 3.43 MB
Peak Memory Usage 9.63 MB
svchost.exe
Process ID 15012
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.25 MB
Peak Memory Usage 51 MB
svchost.exe
Process ID 11600
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 11 MB
Peak Memory Usage 73 MB
svchost.exe
Process ID 8128
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.05 MB
Peak Memory Usage 8.60 MB
svchost.exe
Process ID 1672
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 13 MB
Peak Memory Usage 24 MB
svchost.exe
Process ID 13672
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 1.54 MB
Peak Memory Usage 5.85 MB
svchost.exe
Process ID 13352
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 6.43 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 11912
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 24 MB
Peak Memory Usage 60 MB
svchost.exe
Process ID 10180
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 3.77 MB
Peak Memory Usage 9.91 MB
svchost.exe
Process ID 4700
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\svchost.exe
Memory Usage 39 MB
Peak Memory Usage 40 MB
svchost.exe
Process ID 2124
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 111 MB
Peak Memory Usage 178 MB
svchost.exe
Process ID 11376
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.68 MB
Peak Memory Usage 7.75 MB
svchost.exe
Process ID 16924
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 13 MB
Peak Memory Usage 16 MB
svchost.exe
Process ID 17244
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.28 MB
Peak Memory Usage 7.37 MB
svchost.exe
Process ID 4220
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.46 MB
Peak Memory Usage 7.18 MB
svchost.exe
Process ID 1096
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\svchost.exe
Memory Usage 21 MB
Peak Memory Usage 29 MB
svchost.exe
Process ID 748
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 1.01 MB
Peak Memory Usage 3.91 MB
svchost.exe
Process ID 828
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 24 MB
Peak Memory Usage 31 MB
svchost.exe
Process ID 1144
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 13 MB
Peak Memory Usage 16 MB
svchost.exe
Process ID 21372
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 5.59 MB
Peak Memory Usage 7.25 MB
svchost.exe
Process ID 1196
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.76 MB
Peak Memory Usage 8.36 MB
svchost.exe
Process ID 1312
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.82 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 1320
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 2.08 MB
Peak Memory Usage 9.70 MB
svchost.exe
Process ID 1408
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.75 MB
Peak Memory Usage 9.51 MB
svchost.exe
Process ID 1416
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 4.67 MB
Peak Memory Usage 11 MB
svchost.exe
Process ID 20640
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 7.38 MB
Peak Memory Usage 7.39 MB
svchost.exe
Process ID 1492
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 2.06 MB
Peak Memory Usage 5.80 MB
svchost.exe
Process ID 21432
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\svchost.exe
Memory Usage 24 MB
Peak Memory Usage 28 MB
svchost.exe
Process ID 1656
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 12 MB
Peak Memory Usage 19 MB
svchost.exe
Process ID 1756
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 12 MB
Peak Memory Usage 22 MB
svchost.exe
Process ID 1852
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 5.64 MB
Peak Memory Usage 10 MB
svchost.exe
Process ID 1936
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 8.43 MB
Peak Memory Usage 10 MB
svchost.exe
Process ID 1968
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 3.84 MB
Peak Memory Usage 7.54 MB
svchost.exe
Process ID 11520
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 2.86 MB
Peak Memory Usage 10 MB
svchost.exe
Process ID 2044
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 1.96 MB
Peak Memory Usage 6.79 MB
svchost.exe
Process ID 1280
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\svchost.exe
Memory Usage 2.43 MB
Peak Memory Usage 6.30 MB
System
Process ID 4
Memory Usage 8.18 MB
Peak Memory Usage 32 MB
System Idle Process
Process ID 0
SystemSettings.exe
Process ID 22576
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\ImmersiveControlPanel\SystemSettings.exe
Memory Usage 37 MB
Peak Memory Usage 61 MB
taskhostw.exe
Process ID 6644
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\taskhostw.exe
Memory Usage 17 MB
Peak Memory Usage 18 MB
Taskmgr.exe
Process ID 8240
User dan31
Domain DESKTOP-84H6AVC
Path C:\Windows\System32\Taskmgr.exe
Memory Usage 56 MB
Peak Memory Usage 67 MB
unsecapp.exe
Process ID 6604
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\wbem\unsecapp.exe
Memory Usage 3.57 MB
Peak Memory Usage 7.01 MB
Video.UI.exe
Process ID 16140
User dan31
Domain DESKTOP-84H6AVC
Path C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18102.12011.0_x64__8wekyb3d8bbwe\Video.UI.exe
Memory Usage 27 MB
Peak Memory Usage 50 MB
VSSVC.exe
Process ID 12532
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\VSSVC.exe
Memory Usage 8.03 MB
Peak Memory Usage 8.05 MB
WavesSvc64.exe
Process ID 21480
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
Memory Usage 4.18 MB
Peak Memory Usage 6.20 MB
WavesSvc64.exe
Process ID 8620
User dan31
Domain DESKTOP-84H6AVC
Path C:\Config.Msi\371f40db.rbf
Memory Usage 4.29 MB
Peak Memory Usage 6.42 MB
WavesSysSvc64.exe
Process ID 5088
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
Memory Usage 3.34 MB
Peak Memory Usage 8.49 MB
wininit.exe
Process ID 936
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\wininit.exe
Memory Usage 2.14 MB
Peak Memory Usage 6.68 MB
winlogon.exe
Process ID 12764
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\winlogon.exe
Memory Usage 7.14 MB
Peak Memory Usage 17 MB
wlanext.exe
Process ID 3796
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\wlanext.exe
Memory Usage 6.82 MB
Peak Memory Usage 17 MB
WmiPrvSE.exe
Process ID 6700
User SYSTEM
Domain NT AUTHORITY
Path C:\Windows\System32\wbem\WmiPrvSE.exe
Memory Usage 16 MB
Peak Memory Usage 40 MB
WmiPrvSE.exe
Process ID 21428
User NETWORK SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\wbem\WmiPrvSE.exe
Memory Usage 24 MB
Peak Memory Usage 25 MB
WUDFHost.exe
Process ID 6932
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\WUDFHost.exe
Memory Usage 7.05 MB
Peak Memory Usage 8.39 MB
WUDFHost.exe
Process ID 756
User LOCAL SERVICE
Domain NT AUTHORITY
Path C:\Windows\System32\WUDFHost.exe
Memory Usage 7.40 MB
Peak Memory Usage 36 MB
ZeroConfigService.exe
Process ID 4320
User SYSTEM
Domain NT AUTHORITY
Path C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
Memory Usage 7.82 MB
Peak Memory Usage 17 MB
Security Options
Accounts: Administrator account status Disabled
Accounts: Block Microsoft accounts Not Defined
Accounts: Guest account status Disabled
Accounts: Limit local account use of blank passwords to console logon only Enabled
Accounts: Rename administrator account Administrator
Accounts: Rename guest account Guest
Audit: Audit the access of global system objects Disabled
Audit: Audit the use of Backup and Restore privilege Enabled
Audit: Force audit policy subcategory settings (Windows Vista or later) to override audit policy category settings Not Defined
Audit: Shut down system immediately if unable to log security audits Disabled
DCOM: Machine Access Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined
DCOM: Machine Launch Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined
Devices: Allow undock without having to log on Enabled
Devices: Allowed to format and eject removable media Not Defined
Devices: Prevent users from installing printer drivers Disabled
Devices: Restrict CD-ROM access to locally logged-on user only Not Defined
Devices: Restrict floppy access to locally logged-on user only Not Defined
Domain controller: Allow server operators to schedule tasks Not Defined
Domain controller: LDAP server signing requirements Not Defined
Domain controller: Refuse machine account password changes Not Defined
Domain member: Digitally encrypt or sign secure channel data (always) Enabled
Domain member: Digitally encrypt secure channel data (when possible) Enabled
Domain member: Digitally sign secure channel data (when possible) Enabled
Domain member: Disable machine account password changes Disabled
Domain member: Maximum machine account password age 30 days
Domain member: Require strong (Windows 2000 or later) session key Enabled
Interactive logon: Display user information when the session is locked Not Defined
Interactive logon: Do not require CTRL+ALT+DEL Not Defined
Interactive logon: Don't display last signed-in Disabled
Interactive logon: Don't display username at sign-in Not Defined
Interactive logon: Machine account lockout threshold Not Defined
Interactive logon: Machine inactivity limit Not Defined
Interactive logon: Message text for users attempting to log on
Interactive logon: Message title for users attempting to log on
Interactive logon: Number of previous logons to cache (in case domain controller is not available) 10 logons
Interactive logon: Prompt user to change password before expiration 5 days
Interactive logon: Require Domain Controller authentication to unlock workstation Disabled
Interactive logon: Require Windows Hello for Business or smart card Disabled
Interactive logon: Smart card removal behavior No Action
Microsoft network client: Digitally sign communications (always) Disabled
Microsoft network client: Digitally sign communications (if server agrees) Enabled
Microsoft network client: Send unencrypted password to third-party SMB servers Disabled
Microsoft network server: Amount of idle time required before suspending session Not Defined
Microsoft network server: Attempt S4U2Self to obtain claim information Not Defined
Microsoft network server: Digitally sign communications (always) Disabled
Microsoft network server: Digitally sign communications (if client agrees) Disabled
Microsoft network server: Disconnect clients when logon hours expire Enabled
Microsoft network server: Server SPN target name validation level Not Defined
Network access: Allow anonymous SID/Name translation Disabled
Network access: Do not allow anonymous enumeration of SAM accounts Enabled
Network access: Do not allow anonymous enumeration of SAM accounts and shares Enabled
Network access: Do not allow storage of passwords and credentials for network authentication Disabled
Network access: Let Everyone permissions apply to anonymous users Disabled
Network access: Named Pipes that can be accessed anonymously SQL\QUERY,EPMAPPER,LOCATOR,TrkWks,TrkSvr
Network access: Remotely accessible registry paths System\CurrentControlSet\Control\ProductOptions,System\CurrentControlSet\Control\Server Applications,Software\Microsoft\Windows NT\CurrentVersion
Network access: Remotely accessible registry paths and sub-paths System\CurrentControlSet\Control\Print\Printers,System\CurrentControlSet\Services\Eventlog,Software\Microsoft\OLAP Server,Software\Microsoft\Windows NT\CurrentVersion\Print,Software\Microsoft\Windows NT\CurrentVersion\Windows,System\CurrentControlSet\Control\ContentIndex,System\CurrentControlSet\Control\Terminal Server,System\CurrentControlSet\Control\Terminal Server\UserConfig,System\CurrentControlSet\Control\Terminal Server\DefaultUserConfiguration,Software\Microsoft\Windows NT\CurrentVersion\Perflib,System\CurrentControlSet\Services\SysmonLog
Network access: Restrict anonymous access to Named Pipes and Shares Enabled
Network access: Restrict clients allowed to make remote calls to SAM
Network access: Shares that can be accessed anonymously Not Defined
Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves
Network security: Allow Local System to use computer identity for NTLM Not Defined
Network security: Allow LocalSystem NULL session fallback Not Defined
Network security: Allow PKU2U authentication requests to this computer to use online identities.
 
Not Defined
Network security: Configure encryption types allowed for Kerberos Not Defined
Network security: Do not store LAN Manager hash value on next password change Enabled
Network security: Force logoff when logon hours expire Disabled
Network security: LAN Manager authentication level Not Defined
Network security: LDAP client signing requirements Negotiate signing
Network security: Minimum session security for NTLM SSP based (including secure RPC) clients Require 128-bit encryption
Network security: Minimum session security for NTLM SSP based (including secure RPC) servers Require 128-bit encryption
Network security: Restrict NTLM: Add remote server exceptions for NTLM authentication Not Defined
Network security: Restrict NTLM: Add server exceptions in this domain Not Defined
Network security: Restrict NTLM: Audit Incoming NTLM Traffic Not Defined
Network security: Restrict NTLM: Audit NTLM authentication in this domain Not Defined
Network security: Restrict NTLM: Incoming NTLM traffic Not Defined
Network security: Restrict NTLM: NTLM authentication in this domain Not Defined
Network security: Restrict NTLM: Outgoing NTLM traffic to remote servers Not Defined
Recovery console: Allow automatic administrative logon Not Defined
Recovery console: Allow floppy copy and access to all drives and all folders Not Defined
Shutdown: Allow system to be shut down without having to log on Enabled
Shutdown: Clear virtual memory pagefile Disabled
System cryptography: Force strong key protection for user keys stored on the computer Not Defined
System cryptography: Use FIPS compliant algorithms for encryption, hashing, and signing Disabled
System objects: Require case insensitivity for non-Windows subsystems Enabled
System objects: Strengthen default permissions of internal system objects (e.g. Symbolic Links) Enabled
System settings: Optional subsystems
System settings: Use Certificate Rules on Windows Executables for Software Restriction Policies Disabled
User Account Control: Admin Approval Mode for the Built-in Administrator account Not Defined
User Account Control: Allow UIAccess applications to prompt for elevation without using the secure desktop Disabled
User Account Control: Behavior of the elevation prompt for administrators in Admin Approval Mode Prompt for consent for non-Windows binaries
User Account Control: Behavior of the elevation prompt for standard users Prompt for credentials
User Account Control: Detect application installations and prompt for elevation Enabled
User Account Control: Only elevate executables that are signed and validated Disabled
User Account Control: Only elevate UIAccess applications that are installed in secure locations Enabled
User Account Control: Run all administrators in Admin Approval Mode Enabled
User Account Control: Switch to the secure desktop when prompting for elevation Enabled
User Account Control: Virtualize file and registry write failures to per-user locations Enabled
Device Tree
ACPI x64-based PC
Microsoft ACPI-Compliant System
ACPI Fan
ACPI Fan
ACPI Fan
ACPI Fan
ACPI Fan
ACPI Fixed Feature Button
ACPI Lid
ACPI Power Button
ACPI Processor Aggregator
ACPI Sleep Button
ACPI Thermal Zone
ACPI Thermal Zone
Intel Core i7-6700HQ CPU @ 2.60GHz
Intel Core i7-6700HQ CPU @ 2.60GHz
Intel Core i7-6700HQ CPU @ 2.60GHz
Intel Core i7-6700HQ CPU @ 2.60GHz
Intel Core i7-6700HQ CPU @ 2.60GHz
Intel Core i7-6700HQ CPU @ 2.60GHz
Intel Core i7-6700HQ CPU @ 2.60GHz
Intel Core i7-6700HQ CPU @ 2.60GHz
Intel Dynamic Platform and Thermal Framework Manager
Intel Power Engine Plug-in
Microsoft Windows Management Interface for ACPI
Motherboard resources
Trusted Platform Module 2.0
PCI Express Root Complex
Intel 100 Series/C230 Series Chipset Family PCI Express Root Port #1 - A110
Intel 100 Series/C230 Series Chipset PMC - A121
Intel 100 Series/C230 Series Chipset SMBus - A123
Intel 100 Series/C230 Series Chipset Thermal subsystem - A131
Intel Dynamic Platform and Thermal Framework Processor Participant
Intel Management Engine Interface
Intel Serial IO GPIO Host Controller - INT345D
Intel Xeon E3 - 1200/1500 v5/6th Gen Intel Core PCIe Controller (x16) - 1901
Microsoft Windows Management Interface for ACPI
Motherboard resources
Motherboard resources
Motherboard resources
Motherboard resources
PCI standard host CPU bridge
PS/2 Compatible Mouse
Standard PS/2 Keyboard
Intel® Xeon® E3 - 1200/1500 v5/6th Gen Intel® Core™ PCIe Controller (x8) - 1905
NVIDIA GeForce GTX 960M
Intel® HD Graphics 530
Generic PnP Monitor
Intel® USB 3.0 eXtensible Host Controller - 1.0 (Microsoft)
USB Root Hub (USB 3.0)
USB Composite Device
USB Input Device
HID Keyboard Device
USB Input Device
HID-compliant consumer control device
HID-compliant device
HID-compliant mouse
HID-compliant system controller
USB Composite Device
Integrated Webcam
Intel® Wireless Bluetooth®
Bluetooth Device (Personal Area Network)
Bluetooth Device (RFCOMM Protocol TDI)
Microsoft Bluetooth Enumerator
Microsoft Bluetooth LE Enumerator
USB Mass Storage Device
Generic- SD/MMC USB Device
Intel® Serial IO I2C Host Controller - A160
I2C HID Device
HID-compliant mouse
HID-compliant touch pad
Microsoft Input Configuration Device
Intel® 100 Series/C230 Chipset Family SATA AHCI Controller
ST1000LM014-1EJ164
Intel® 100 Series/C230 Series Chipset Family PCI Express Root Port #5 - A114
Realtek PCIe GBE Family Controller
Intel® 100 Series/C230 Series Chipset Family PCI Express Root Port #6 - A115
Intel® Dual Band Wireless-AC 3165
Microsoft Wi-Fi Direct Virtual Adapter
Microsoft Wi-Fi Direct Virtual Adapter #3
Intel® 100 Series/C230 Series Chipset Family PCI Express Root Port #7 - A116
Realtek PCIE CardReader
Intel® 100 Series/C230 Series Chipset Family LPC Controller - A14E
High precision event timer
Legacy device
Microsoft AC Adapter
Microsoft ACPI-Compliant Control Method Battery
Motherboard resources
Motherboard resources
Motherboard resources
Numeric data processor
Programmable interrupt controller
System CMOS/real time clock
System timer
Microsoft ACPI-Compliant Embedded Controller
Intel Dynamic Platform and Thermal Framework Generic Participant
Intel Dynamic Platform and Thermal Framework Generic Participant
High Definition Audio Controller
Intel Display Audio
Realtek Audio
Microphone (Realtek Audio)
Speakers / Headphones (Realtek Audio)
Airplane Mode Switch
Airplane Mode Switch Collection
Microsoft UEFI-Compliant System
System Firmware
CPU
Intel Core i7 6700HQ
Cores 4
Threads 8
Name Intel Core i7 6700HQ
Code Name Skylake
Package Socket 1440 FCBGA
Technology 14nm
Specification Intel Core i7-6700HQ CPU @ 2.60GHz
Family 6
Extended Family 6
Model E
Extended Model 5E
Stepping 3
Revision R0
Instructions MMX, SSE, SSE2, SSE3, SSSE3, SSE4.1, SSE4.2, Intel 64, NX, VMX, AES, AVX, AVX2, FMA3
Virtualization Supported, Enabled
Hyperthreading Supported, Enabled
Bus Speed 99.8 MHz
Stock Core Speed 2600 MHz
Stock Bus Speed 100 MHz
Average Temperature 49 °C
Caches
L1 Data Cache Size 4 x 32 KBytes
L1 Instructions Cache Size 4 x 32 KBytes
L2 Unified Cache Size 4 x 256 KBytes
L3 Unified Cache Size 6144 KBytes
Cores
Core 0
Core Speed 1197.1 MHz
Multiplier x 12.0
Bus Speed 99.8 MHz
Temperature 49 °C
Threads APIC ID: 0, 1
Core 1
Core Speed 997.6 MHz
Multiplier x 10.0
Bus Speed 99.8 MHz
Temperature 50 °C
Threads APIC ID: 2, 3
Core 2
Core Speed 1197.1 MHz
Multiplier x 12.0
Bus Speed 99.8 MHz
Temperature 48 °C
Threads APIC ID: 4, 5
Core 3
Core Speed 1197.1 MHz
Multiplier x 12.0
Bus Speed 99.8 MHz
Temperature 48 °C
Threads APIC ID: 6, 7
RAM
Memory slots
Total memory slots 2
Used memory slots 1
Free memory slots 1
Memory
Type DDR3
Size 8192 MBytes
Channels # Single
DRAM Frequency 798.1 MHz
CAS# Latency (CL) 11 clocks
RAS# to CAS# Delay (tRCD) 11 clocks
RAS# Precharge (tRP) 11 clocks
Cycle Time (tRAS) 28 clocks
Command Rate (CR) 1T
Physical Memory
Memory Usage 65 %
Total Physical 7.88 GB
Available Physical 2.75 GB
Total Virtual 14 GB
Available Virtual 6.46 GB
SPD
Number Of SPD Modules 1
Slot #1
Type DDR3
Size 8192 MBytes
Manufacturer Kingston
Max Bandwidth PC3-12800 (800 MHz)
Part Number KN2M64-ETB
Serial Number 3308676989
Week/year 30 / 16
Timing table
JEDEC #1
Frequency 381.0 MHz
CAS# Latency 5.0
RAS# To CAS# 5
RAS# Precharge 5
tRAS 14
tRC 19
Voltage 1.350 V
JEDEC #2
Frequency 457.1 MHz
CAS# Latency 6.0
RAS# To CAS# 6
RAS# Precharge 6
tRAS 16
tRC 22
Voltage 1.350 V
JEDEC #3
Frequency 533.3 MHz
CAS# Latency 7.0
RAS# To CAS# 7
RAS# Precharge 7
tRAS 19
tRC 26
Voltage 1.350 V
JEDEC #4
Frequency 609.5 MHz
CAS# Latency 8.0
RAS# To CAS# 8
RAS# Precharge 8
tRAS 22
tRC 30
Voltage 1.350 V
JEDEC #5
Frequency 685.7 MHz
CAS# Latency 9.0
RAS# To CAS# 9
RAS# Precharge 9
tRAS 24
tRC 33
Voltage 1.350 V
JEDEC #6
Frequency 761.9 MHz
CAS# Latency 10.0
RAS# To CAS# 10
RAS# Precharge 10
tRAS 27
tRC 37
Voltage 1.350 V
JEDEC #7
Frequency 800.0 MHz
CAS# Latency 11.0
RAS# To CAS# 11
RAS# Precharge 11
tRAS 28
tRC 39
Voltage 1.350 V
Motherboard
Manufacturer Dell Inc.
Model 0H0CC0 (U3E1)
Version A00
Chipset Vendor Intel
Chipset Model Skylake-H
Chipset Revision 07
Southbridge Vendor Intel
Southbridge Model Skylake-H PCH
Southbridge Revision 31
BIOS
Brand Dell Inc.
Version 1.1.8
Date 17/04/2016
PCI Data
Slot PCI-E
Slot Type PCI-E
Slot Usage In Use
Data lanes x16
Slot Designation J6B2
Characteristics 3.3V, Shared, PME
Slot Number 0
Slot PCI-E
Slot Type PCI-E
Slot Usage In Use
Data lanes x1
Slot Designation J6B1
Characteristics 3.3V, Shared, PME
Slot Number 1
Slot PCI-E
Slot Type PCI-E
Slot Usage In Use
Data lanes x1
Slot Designation J6D1
Characteristics 3.3V, Shared, PME
Slot Number 2
Slot PCI-E
Slot Type PCI-E
Slot Usage In Use
Data lanes x1
Slot Designation J7B1
Characteristics 3.3V, Shared, PME
Slot Number 3
Slot PCI-E
Slot Type PCI-E
Slot Usage In Use
Data lanes x1
Slot Designation J8B4
Characteristics 3.3V, Shared, PME
Slot Number 4
Graphics
Monitor
Name Generic PnP Monitor on Intel HD Graphics 530
Current Resolution 1536x864 pixels
Work Resolution 1536x824 pixels
State Enabled, Primary
Monitor Width 1920
Monitor Height 1080
Monitor BPP 32 bits per pixel
Monitor Frequency 60 Hz
Device \\.\DISPLAY1\Monitor0
Intel HD Graphics 530
Manufacturer Intel
Model HD Graphics 530
Device ID 8086-191B
Revision 7
Subvendor Dell (1028)
Current Performance Level Level 0
Current GPU Clock 0 MHz
Voltage 0.918 V
Driver version 23.20.16.4973
Count of performance levels : 1
Level 1 - "Perf Level 0"
GPU Clock 448 MHz
NVIDIA GeForce GTX 960M
Manufacturer NVIDIA
Model GeForce GTX 960M
Device ID 10DE-139B
Revision A3
Subvendor Dell (1028)
Current Performance Level Level 0
Current GPU Clock 1176 MHz
Current Memory Clock 2505 MHz
Current Shader Clock 2505 MHz
Voltage 0.918 V
Technology 28 nm
Bus Interface PCI Express x8
Temperature 53 °C
Driver version 23.21.13.9125
BIOS Version 82.07.7a.00.19
Memory 4095 MB
Count of performance levels : 1
Level 1 - "Perf Level 0"
Storage
Hard drives
ST1000LM014-1EJ164
Manufacturer Seagate
Heads 16
Cylinders 121,601
Tracks 31,008,255
Sectors 1,953,520,065
SATA type SATA-III 6.0Gb/s
Device type Fixed
ATA Standard ACS2
Serial Number W7737X1V
Firmware Version Number DEMG
LBA Size 48-bit LBA
Power On Count 823 times
Power On Time 62.8 days
Speed 5400 RPM
Features S.M.A.R.T., APM, NCQ
Max. Transfer Mode SATA III 6.0Gb/s
Used Transfer Mode SATA III 6.0Gb/s
Interface SATA
Capacity 931 GB
Real size 1,000,204,886,016 bytes
RAID Type None
S.M.A.R.T
Status Good
Temperature 34 °C
Temperature Range OK (less than 50 °C)
S.M.A.R.T attributes
01
Attribute name Read Error Rate
Real value 0
Current 111
Worst 99
Threshold 6
Raw Value 0002322BC8
Status Good
03
Attribute name Spin-Up Time
Real value 0 ms
Current 97
Worst 97
Threshold 85
Raw Value 0000000000
Status Good
04
Attribute name Start/Stop Count
Real value 760
Current 100
Worst 100
Threshold 20
Raw Value 00000002F8
Status Good
05
Attribute name Reallocated Sectors Count
Real value 0
Current 100
Worst 100
Threshold 10
Raw Value 0000000000
Status Good
07
Attribute name Seek Error Rate
Real value 0
Current 70
Worst 60
Threshold 30
Raw Value 0005F61144
Status Good
09
Attribute name Power-On Hours (POH)
Real value 62d 19h
Current 99
Worst 99
Threshold 0
Raw Value 00000005E3
Status Good
0A
Attribute name Spin Retry Count
Real value 0
Current 100
Worst 100
Threshold 97
Raw Value 0000000000
Status Good
0C
Attribute name Device Power Cycle Count
Real value 823
Current 100
Worst 100
Threshold 20
Raw Value 0000000337
Status Good
B8
Attribute name End-to-End error / IOEDC
Real value 0
Current 100
Worst 100
Threshold 99
Raw Value 0000000000
Status Good
BB
Attribute name Reported Uncorrectable Errors
Real value 0
Current 100
Worst 100
Threshold 0
Raw Value 0000000000
Status Good
BC
Attribute name Command Timeout
Real value 2
Current 100
Worst 99
Threshold 0
Raw Value 0000000002
Status Good
BD
Attribute name High Fly Writes (WDC)
Real value 0
Current 100
Worst 100
Threshold 0
Raw Value 0000000000
Status Good
BE
Attribute name Airflow Temperature
Real value 34 °C
Current 66
Worst 46
Threshold 45
Raw Value 00221B0022
Status Good
BF
Attribute name G-sense error rate
Real value 0
Current 100
Worst 100
Threshold 0
Raw Value 0000000000
Status Good
C0
Attribute name Power-off Retract Count
Real value 0
Current 100
Worst 100
Threshold 0
Raw Value 0000000000
Status Good
C1
Attribute name Load/Unload Cycle Count
Real value 48,564
Current 76
Worst 76
Threshold 0
Raw Value 000000BDB4
Status Good
C2
Attribute name Temperature
Real value 34 °C
Current 34
Worst 54
Threshold 0
Raw Value 0000000022
Status Good
C5
Attribute name Current Pending Sector Count
Real value 0
Current 100
Worst 100
Threshold 0
Raw Value 0000000000
Status Good
C6
Attribute name Uncorrectable Sector Count
Real value 0
Current 100
Worst 100
Threshold 0
Raw Value 0000000000
Status Good
C7
Attribute name UltraDMA CRC Error Count
Real value 0
Current 200
Worst 200
Threshold 0
Raw Value 0000000000
Status Good
F0
Attribute name Head Flying Hours
Real value 52d 21h
Current 100
Worst 253
Threshold 0
Raw Value 00000004F5
Status Good
F1
Attribute name Total LBAs Written
Real value 13,310,251,598
Current 100
Worst 253
Threshold 0
Raw Value 00195A524E
Status Good
F2
Attribute name Total LBAs Read
Real value 233,632,948,057
Current 100
Worst 253
Threshold 0
Raw Value 00659BDF59
Status Good
FE
Attribute name Free Fall Protection
Real value 0
Current 100
Worst 100
Threshold 0
Raw Value 0000000000
Status Good
Partition 0
Partition ID Disk #0, Partition #0
File System FAT32
Volume Serial Number 0423202E
Size 496 MB
Used Space 33.8 MB (6%)
Free Space 462 MB (94%)
Partition 1
Partition ID Disk #0, Partition #1
Disk Letter C:
File System NTFS
Volume Serial Number 0CA8CDA1
Size 918 GB
Used Space 343 GB (37%)
Free Space 574 GB (63%)
Partition 2
Partition ID Disk #0, Partition #2
File System NTFS
Volume Serial Number 60F37AAC
Size 852 MB
Used Space 392 MB (45%)
Free Space 460 MB (55%)
Partition 3
Partition ID Disk #0, Partition #3
File System NTFS
Volume Serial Number F0672FB0
Size 11.6 GB
Used Space 10.9 GB (94%)
Free Space 639 MB (6%)
Flash drives
Generic- SD/MMC USB Device
Interface USB
Capacity 29.7 GB
Real size 31,914,983,424 bytes
RAID Type None
S.M.A.R.T
S.M.A.R.T not supported
Partition 0
Partition ID Disk #1, Partition #0
Disk Letter D:
File System FAT32
Volume Serial Number 13CE13F7
Size 29.7 GB
Used Space 5.26 GB (17%)
Free Space 24.4 GB (83%)
Optical Drives
No optical disk drives detected
Audio
Sound Cards
NVIDIA Virtual Audio Device (Wave Extensible) (WDM)
Realtek Audio
Intel Display Audio
Playback Device
Speakers / Headphones (Realtek Audio)
Recording Device
Microphone (Realtek Audio)
Peripherals
HID Keyboard Device
Device Kind Keyboard
Device Name HID Keyboard Device
Vendor Baldor Electric Company
Location USB Input Device
Driver
Date 6-21-2006
Version 10.0.17134.1
File C:\WINDOWS\system32\DRIVERS\kbdhid.sys
File C:\WINDOWS\system32\DRIVERS\kbdclass.sys
Standard PS/2 Keyboard
Device Kind Keyboard
Device Name Standard PS/2 Keyboard
Vendor DLLK
Location PCI Express Root Complex
Driver
Date 6-21-2006
Version 10.0.17134.1
File C:\WINDOWS\system32\DRIVERS\i8042prt.sys
File C:\WINDOWS\system32\DRIVERS\kbdclass.sys
PS/2 Compatible Mouse
Device Kind Mouse
Device Name PS/2 Compatible Mouse
Vendor DLL
Location PCI Express Root Complex
Driver
Date 6-21-2006
Version 10.0.17134.1
File C:\WINDOWS\system32\DRIVERS\mouclass.sys
File C:\WINDOWS\system32\DRIVERS\i8042prt.sys
HID-compliant mouse
Device Kind Mouse
Device Name HID-compliant mouse
Vendor Baldor Electric Company
Location USB Input Device
Driver
Date 6-21-2006
Version 10.0.17134.1
File C:\WINDOWS\system32\DRIVERS\mouhid.sys
File C:\WINDOWS\system32\DRIVERS\mouclass.sys
HID-compliant mouse
Device Kind Mouse
Device Name HID-compliant mouse
Vendor ELAN
Location I2C HID Device
Driver
Date 6-21-2006
Version 10.0.17134.1
File C:\WINDOWS\system32\DRIVERS\mouhid.sys
File C:\WINDOWS\system32\DRIVERS\mouclass.sys
SD/MMC          
Device Kind Portable Device
Device Name SD/MMC
Vendor GENERIC-
Comment WININSTALL
Location Volume
Driver
Date 6-21-2006
Version 10.0.17134.1
File C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
Printers
Canon MG5400 series Printer WS
Printer Port WSD-294805db-1ed0-4ec2-882e-7ca3e24efc66.003b
Print Processor Canon MG5400 series Print Processor
Availability Always
Priority 1
Duplex None
Print Quality 4294967293 dpi Color
Status Unknown
Driver
Driver Name Canon MG5400 series Printer (v12.09)
Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\CNMDRBB.DLL
EPSON689443 (XP-442 445 Series)
Printer Port WSD-deea8f93-36d0-49a0-b22a-6161caf24c67.0032
Print Processor winprint
Availability Always
Priority 1
Duplex None
Print Quality 360 * 360 dpi Color
Status Unknown
Driver
Driver Name Epson ESC/P-R V4 Class Driver (v6.03)
Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_318eda08781bddd7\Amd64\mxdwdrv.dll
Fax
Printer Port SHRFAX:
Print Processor winprint
Availability Always
Priority 1
Duplex None
Print Quality 200 * 200 dpi Monochrome
Status Unknown
Driver
Driver Name Microsoft Shared Fax Driver (v4.00)
Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\FXSDRV.DLL
KodakESPC310+0122
Printer Port WSD-3bf65e58-e5c0-4733-a345-71fd46a67900.003d
Print Processor winprint
Availability Always
Priority 1
Duplex None
Print Quality 600 * 600 dpi Color
Status Unknown
Driver
Driver Name KODAK ESP C310 AiO (v6.03)
Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_318eda08781bddd7\Amd64\mxdwdrv.dll
Microsoft Print to PDF (Default Printer)
Printer Port PORTPROMPT:
Print Processor winprint
Availability Always
Priority 1
Duplex None
Print Quality 600 * 600 dpi Color
Status Unknown
Driver
Driver Name Microsoft Print To PDF (v6.03)
Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_318eda08781bddd7\Amd64\mxdwdrv.dll
Microsoft XPS Document Writer
Printer Port PORTPROMPT:
Print Processor winprint
Availability Always
Priority 1
Duplex None
Print Quality 600 * 600 dpi Color
Status Unknown
Driver
Driver Name Microsoft XPS Document Writer v4 (v6.03)
Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_318eda08781bddd7\Amd64\mxdwdrv.dll
Send To OneNote 2016
Printer Port nul:
Print Processor winprint
Availability Always
Priority 1
Duplex None
Print Quality 600 * 600 dpi Color
Status Unknown
Driver
Driver Name Send to Microsoft OneNote 16 Driver (v6.03)
Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_318eda08781bddd7\Amd64\mxdwdrv.dll
Network
You are connected to the internet
Connected through Realtek PCIe GBE Family Controller
IP Address 192.168.1.87
Subnet mask 255.255.255.0
Gateway server 192.168.1.254
Preferred DNS server 192.168.1.254
DHCP Enabled
DHCP server 192.168.1.254
External IP Address 209.93.174.167
Adapter Type Ethernet
NetBIOS over TCP/IP Enabled via DHCP
NETBIOS Node Type Hybrid node
Link Speed 0 Bps
Computer Name
NetBIOS Name DESKTOP-84H6AVC
DNS Name DESKTOP-84H6AVC
Membership Part of workgroup
Workgroup WORKGROUP
Remote Desktop
Disabled
Console
State Active
Domain DESKTOP-84H6AVC
WinInet Info
LAN Connection
Local system uses a local area network to connect to the Internet
Local system has RAS to connect to the Internet
Wi-Fi Info
Using native Wi-Fi API version 2
Available access points count 7
Wi-Fi (BTHub6-Z3MR)
SSID BTHub6-Z3MR
Frequency 2412000 kHz
Channel Number 1
Name BTHub6-Z3MR
Signal Strength/Quality 33
Security Enabled
State The interface is not connected to any network
Dot11 Type Infrastructure BSS network
Network Connectible
Network Flags There is a profile for this network
Cipher Algorithm to be used when joining this network AES-CCMP algorithm
Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK
Wi-Fi (BTWifi-X)
SSID BTWifi-X
Frequency 2412000 kHz
Channel Number 1
Name BTWifi-X
Signal Strength/Quality 33
Security Enabled
State The interface is not connected to any network
Dot11 Type Infrastructure BSS network
Network Connectible
Network Flags There is a profile for this network
Cipher Algorithm to be used when joining this network AES-CCMP algorithm
Default Auth used to join this network for the first time 802.11i Robust Security Network Association (RSNA) algorithm (WPA2 is one such algorithm)
Wi-Fi (BTWifi-with-FON)
SSID BTWifi-with-FON
Frequency 2412000 kHz
Channel Number 1
Name BTWifi-with-FON
Signal Strength/Quality 31
Security Disabled
State The interface is not connected to any network
Dot11 Type Infrastructure BSS network
Network Connectible
Network Flags There is a profile for this network
Cipher Algorithm to be used when joining this network No Cipher algorithm is enabled/supported
Default Auth used to join this network for the first time IEEE 802.11 Open System authentication algorithm
Wi-Fi (HUAWEI-B310-AC2F)
SSID HUAWEI-B310-AC2F
Frequency 2442000 kHz
Channel Number 7
Name HUAWEI-B310-AC2F
Signal Strength/Quality 68
Security Enabled
State The interface is not connected to any network
Dot11 Type Infrastructure BSS network
Network Connectible
Network Flags There is a profile for this network
Cipher Algorithm to be used when joining this network AES-CCMP algorithm
Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK
Wi-Fi (PLUSNET-M792)
SSID PLUSNET-M792
Frequency 2437000 kHz
Channel Number 6
Name PLUSNET-M792
Signal Strength/Quality 8
Security Enabled
State The interface is not connected to any network
Dot11 Type Infrastructure BSS network
Network Connectible
Network Flags There is a profile for this network
Cipher Algorithm to be used when joining this network AES-CCMP algorithm
Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK
Wi-Fi (PLUSNET-MC7S)
SSID PLUSNET-MC7S
Frequency 5240000 kHz
Channel Number 48
Name PLUSNET-MC7S
Signal Strength/Quality 99
Security Enabled
State The interface is not connected to any network
Dot11 Type Infrastructure BSS network
Network Connectible
Network Flags There is a profile for this network
Cipher Algorithm to be used when joining this network AES-CCMP algorithm
Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK
Wi-Fi (SKY092F5)
SSID SKY092F5
Frequency 2437000 kHz
Channel Number 6
Name SKY092F5
Signal Strength/Quality 38
Security Enabled
State The interface is not connected to any network
Dot11 Type Infrastructure BSS network
Network Connectible
Network Flags There is a profile for this network
Cipher Algorithm to be used when joining this network AES-CCMP algorithm
Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK
WinHTTPInfo
WinHTTPSessionProxyType No proxy
Session Proxy
Session Proxy Bypass
Connect Retries 5
Connect Timeout (ms) 60,000
HTTP Version HTTP 1.1
Max Connects Per 1.0 Servers INFINITE
Max Connects Per Servers INFINITE
Max HTTP automatic redirects 10
Max HTTP status continue 10
Send Timeout (ms) 30,000
IEProxy Auto Detect Yes
IEProxy Auto Config
IEProxy
IEProxy Bypass
Default Proxy Config Access Type No proxy
Default Config Proxy
Default Config Proxy Bypass
Sharing and Discovery
Network Discovery Disabled
File and Printer Sharing Enabled
File and printer sharing service Enabled
Simple File Sharing Enabled
Administrative Shares Enabled
Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves
Adapters List
Enabled
Bluetooth Device (Personal Area Network)
Connection Name Bluetooth Network Connection
DHCP enabled Yes
MAC Address B8-81-98-D0-62-8A
Intel® Dual Band Wireless-AC 3165
Connection Name Wi-Fi
DHCP enabled Yes
MAC Address A6-28-71-E0-24-3D
Realtek PCIe GBE Family Controller
Connection-specific DNS Suffix lan
Connection Name Ethernet
NetBIOS over TCPIP Yes
DHCP enabled Yes
MAC Address F4-8E-38-EB-A1-FC
IP Address 192.168.1.87
Subnet mask 255.255.255.0
Gateway server 192.168.1.254
DHCP 192.168.1.254
DNS Server 192.168.1.254
Network Shares
No network shares
Current TCP Connections
AvastSvc.exe (3544)
Local 127.0.0.1:12465 LISTEN
Local 127.0.0.1:12143 LISTEN
Local 127.0.0.1:12119 LISTEN
Local 127.0.0.1:12110 LISTEN
Local 127.0.0.1:12025 LISTEN
Local 127.0.0.1:12563 LISTEN
Local 192.168.1.87:56421 ESTABLISHED Remote 77.234.43.25:80 (Querying... ) (HTTP)
Local 192.168.1.87:56346 CLOSE-WAIT Remote 77.234.45.54:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58659 CLOSE-WAIT Remote 77.234.43.201:53 (Querying... )
Local 127.0.0.1:27275 LISTEN
Local 127.0.0.1:12993 LISTEN
Local 192.168.1.87:58665 CLOSE-WAIT Remote 77.234.43.201:53 (Querying... )
Local 192.168.1.87:58663 CLOSE-WAIT Remote 77.234.43.201:53 (Querying... )
Local 192.168.1.87:58661 CLOSE-WAIT Remote 77.234.43.201:53 (Querying... )
Local 127.0.0.1:12995 LISTEN
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (21276)
Local 192.168.1.87:58367 ESTABLISHED Remote 13.81.252.60:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58601 ESTABLISHED Remote 104.244.42.136:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58628 ESTABLISHED Remote 216.58.212.109:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58629 ESTABLISHED Remote 104.28.28.94:80 (Querying... ) (HTTP)
Local 192.168.1.87:58200 ESTABLISHED Remote 13.107.42.11:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58639 ESTABLISHED Remote 104.28.28.94:80 (Querying... ) (HTTP)
Local 192.168.1.87:58646 ESTABLISHED Remote 52.114.128.9:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58587 ESTABLISHED Remote 104.28.28.94:80 (Querying... ) (HTTP)
Local 192.168.1.87:58649 ESTABLISHED Remote 216.58.206.138:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58650 ESTABLISHED Remote 172.217.23.3:443 (Querying... ) (HTTPS)
Local 192.168.1.87:57390 ESTABLISHED Remote 31.13.90.2:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58589 ESTABLISHED Remote 108.177.15.156:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58653 ESTABLISHED Remote 192.0.73.2:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58597 ESTABLISHED Remote 104.27.168.253:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58598 ESTABLISHED Remote 31.13.90.36:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58648 ESTABLISHED Remote 216.58.213.68:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58599 ESTABLISHED Remote 173.194.76.188:5228 (Querying... )
Local 192.168.1.87:58600 ESTABLISHED Remote 77.234.43.41:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58657 ESTABLISHED Remote 172.217.23.3:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58583 ESTABLISHED Remote 104.28.28.94:80 (Querying... ) (HTTP)
Local 192.168.1.87:58610 ESTABLISHED Remote 40.77.226.194:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58459 ESTABLISHED Remote 52.109.28.33:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58614 ESTABLISHED Remote 216.58.204.14:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58622 ESTABLISHED Remote 104.28.28.94:80 (Querying... ) (HTTP)
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (17684)
Local 127.0.0.1:62958 LISTEN
C:\Program Files\WindowsApps\Microsoft.Office.OneNote_16001.11126.20076.0_x64__8wekyb3d8bbwe\onenoteim.exe (7204)
Local 192.168.1.87:55215 CLOSE-WAIT Remote 23.38.33.245:443 (Querying... ) (HTTPS)
C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18102.12011.0_x64__8wekyb3d8bbwe\Video.UI.exe (16140)
Local 192.168.1.87:56541 CLOSE-WAIT Remote 88.221.16.11:443 (Querying... ) (HTTPS)
C:\Windows\System32\svchost.exe (4700)
Local 192.168.1.87:58638 ESTABLISHED Remote 88.221.18.56:80 (Querying... ) (HTTP)
C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe (17736)
Local 192.168.1.87:58667 ESTABLISHED Remote 204.79.197.222:443 (Querying... ) (HTTPS)
Local 192.168.1.87:57981 ESTABLISHED Remote 40.100.174.34:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58651 ESTABLISHED Remote 204.79.197.200:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58652 ESTABLISHED Remote 13.107.6.158:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58662 ESTABLISHED Remote 13.107.136.254:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58658 ESTABLISHED Remote 13.107.18.11:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58660 ESTABLISHED Remote 23.56.186.127:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58664 ESTABLISHED Remote 13.107.6.254:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58666 ESTABLISHED Remote 13.107.246.254:443 (Querying... ) (HTTPS)
DSAPI.exe (13984)
Local 127.0.0.1:50063 ESTABLISHED Remote 127.0.0.1:50062 (Querying... )
Local 127.0.0.1:50064 LISTEN
HiPatchService.exe (13968)
Local 0.0.0.0:17729 LISTEN
lsass.exe (1004)
Local 0.0.0.0:49668 LISTEN
nvcontainer.exe (4492)
Local 127.0.0.1:57008 ESTABLISHED Remote 127.0.0.1:65001 (Querying... )
Local 127.0.0.1:65001 ESTABLISHED Remote 127.0.0.1:57008 (Querying... )
Local 127.0.0.1:65001 LISTEN
Local 127.0.0.1:65000 LISTEN
pcdrwi.exe (7292)
Local 127.0.0.1:50062 LISTEN
Local 127.0.0.1:50062 ESTABLISHED Remote 127.0.0.1:50063 (Querying... )
services.exe (984)
Local 0.0.0.0:49673 LISTEN
spoolsv.exe (3192)
Local 0.0.0.0:49669 LISTEN
SupportAssistAgent.exe (11932)
Local 0.0.0.0:9012 LISTEN
svchost.exe (1144)
Local 0.0.0.0:135 (DCE) LISTEN
svchost.exe (11600)
Local 0.0.0.0:7680 LISTEN
svchost.exe (1756)
Local 0.0.0.0:49665 LISTEN
svchost.exe (2180)
Local 0.0.0.0:49666 LISTEN
svchost.exe (4444)
Local 192.168.1.87:57048 ESTABLISHED Remote 40.67.248.104:443 (Querying... ) (HTTPS)
svchost.exe (8720)
Local 0.0.0.0:5040 LISTEN
System Process
Local 192.168.1.87:58206 TIME-WAIT Remote 52.20.106.170:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58572 TIME-WAIT Remote 216.58.204.65:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58575 TIME-WAIT Remote 52.216.2.24:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58545 TIME-WAIT Remote 216.58.206.104:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58576 TIME-WAIT Remote 104.27.130.22:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58536 TIME-WAIT Remote 216.58.213.68:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58577 TIME-WAIT Remote 104.27.130.22:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58527 TIME-WAIT Remote 77.234.43.41:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58526 TIME-WAIT Remote 104.27.168.253:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58586 TIME-WAIT Remote 216.58.198.226:80 (Querying... ) (HTTP)
Local 192.168.1.87:58525 TIME-WAIT Remote 31.13.90.36:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58521 TIME-WAIT Remote 77.234.43.41:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58591 TIME-WAIT Remote 35.176.162.161:80 (Querying... ) (HTTP)
Local 192.168.1.87:58519 TIME-WAIT Remote 77.234.43.41:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58425 TIME-WAIT Remote 216.58.204.14:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58593 TIME-WAIT Remote 35.176.180.214:80 (Querying... ) (HTTP)
Local 192.168.1.87:58518 TIME-WAIT Remote 77.234.43.41:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58504 TIME-WAIT Remote 77.234.45.219:80 (Querying... ) (HTTP)
Local 192.168.1.87:58501 TIME-WAIT Remote 23.56.186.92:80 (Querying... ) (HTTP)
Local 192.168.1.87:58500 TIME-WAIT Remote 37.157.6.253:80 (Querying... ) (HTTP)
Local 192.168.1.87:58492 TIME-WAIT Remote 154.57.158.51:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58489 TIME-WAIT Remote 152.199.19.161:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58487 TIME-WAIT Remote 52.114.75.69:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58475 TIME-WAIT Remote 185.94.180.125:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58473 TIME-WAIT Remote 104.18.98.194:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58441 TIME-WAIT Remote 54.76.71.124:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58435 TIME-WAIT Remote 52.109.28.33:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58427 TIME-WAIT Remote 216.58.198.110:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58613 TIME-WAIT Remote 77.234.43.201:53 (Querying... )
Local 192.168.1.87:58421 TIME-WAIT Remote 37.157.6.253:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58419 TIME-WAIT Remote 35.186.234.100:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58417 TIME-WAIT Remote 37.252.172.80:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58415 TIME-WAIT Remote 72.21.206.140:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58411 TIME-WAIT Remote 77.238.185.35:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58615 TIME-WAIT Remote 192.0.77.2:80 (Querying... ) (HTTP)
Local 192.168.1.87:58410 TIME-WAIT Remote 213.19.162.90:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58407 TIME-WAIT Remote 185.29.133.208:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58395 TIME-WAIT Remote 104.244.38.20:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58392 TIME-WAIT Remote 216.58.206.38:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58386 TIME-WAIT Remote 216.58.206.38:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58385 TIME-WAIT Remote 216.58.213.70:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58380 TIME-WAIT Remote 77.234.43.201:53 (Querying... )
Local 192.168.1.87:58371 TIME-WAIT Remote 23.102.41.131:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58205 TIME-WAIT Remote 216.58.206.34:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58370 TIME-WAIT Remote 52.114.142.73:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58211 TIME-WAIT Remote 54.72.146.137:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58221 TIME-WAIT Remote 77.234.43.41:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58235 TIME-WAIT Remote 88.221.16.138:80 (Querying... ) (HTTP)
Local 192.168.1.87:58240 TIME-WAIT Remote 104.28.28.94:80 (Querying... ) (HTTP)
Local 192.168.1.87:58241 TIME-WAIT Remote 104.28.28.94:80 (Querying... ) (HTTP)
Local 192.168.1.87:58242 TIME-WAIT Remote 216.58.198.226:80 (Querying... ) (HTTP)
Local 192.168.1.87:58246 TIME-WAIT Remote 104.28.28.94:80 (Querying... ) (HTTP)
Local 192.168.1.87:58249 TIME-WAIT Remote 216.58.198.226:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58251 TIME-WAIT Remote 104.28.28.94:80 (Querying... ) (HTTP)
Local 192.168.1.87:58252 TIME-WAIT Remote 104.28.28.94:80 (Querying... ) (HTTP)
Local 192.168.1.87:58253 TIME-WAIT Remote 104.28.28.94:80 (Querying... ) (HTTP)
Local 192.168.1.87:58256 TIME-WAIT Remote 3.8.104.38:80 (Querying... ) (HTTP)
Local 192.168.1.87:58257 TIME-WAIT Remote 108.177.15.156:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58260 TIME-WAIT Remote 3.8.83.125:80 (Querying... ) (HTTP)
Local 192.168.1.87:58261 TIME-WAIT Remote 54.239.164.119:80 (Querying... ) (HTTP)
Local 192.168.1.87:58262 TIME-WAIT Remote 216.58.198.226:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58264 TIME-WAIT Remote 54.239.164.119:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58265 TIME-WAIT Remote 216.58.204.14:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58274 TIME-WAIT Remote 77.234.45.240:80 (Querying... ) (HTTP)
Local 192.168.1.87:58276 TIME-WAIT Remote 77.234.45.219:80 (Querying... ) (HTTP)
Local 192.168.1.87:58282 TIME-WAIT Remote 77.234.43.41:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58284 TIME-WAIT Remote 65.55.163.78:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58303 TIME-WAIT Remote 40.100.174.226:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58314 TIME-WAIT Remote 216.58.210.42:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58318 TIME-WAIT Remote 52.114.128.10:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58321 TIME-WAIT Remote 13.107.21.200:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58322 TIME-WAIT Remote 52.142.114.2:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58324 TIME-WAIT Remote 13.107.3.128:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58326 TIME-WAIT Remote 188.125.66.34:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58330 TIME-WAIT Remote 152.195.39.122:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58332 TIME-WAIT Remote 152.195.15.114:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58336 TIME-WAIT Remote 54.77.151.154:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58340 TIME-WAIT Remote 18.232.135.92:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58343 TIME-WAIT Remote 31.13.90.6:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58344 TIME-WAIT Remote 31.13.90.36:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58346 TIME-WAIT Remote 52.169.122.66:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58352 TIME-WAIT Remote 40.77.226.194:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58353 TIME-WAIT Remote 13.107.3.128:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58354 TIME-WAIT Remote 52.174.247.243:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58356 TIME-WAIT Remote 52.114.77.24:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58357 TIME-WAIT Remote 40.77.226.194:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58358 TIME-WAIT Remote 40.77.226.194:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58360 TIME-WAIT Remote 40.77.226.194:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58361 TIME-WAIT Remote 40.77.226.194:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58362 TIME-WAIT Remote 152.199.19.161:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58366 TIME-WAIT Remote 13.81.252.60:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58551 TIME-WAIT Remote 216.58.198.226:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58554 TIME-WAIT Remote 54.239.164.182:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58556 TIME-WAIT Remote 31.13.90.6:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58557 TIME-WAIT Remote 108.177.15.156:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58558 TIME-WAIT Remote 77.234.43.201:53 (Querying... )
Local 192.168.1.87:58560 TIME-WAIT Remote 52.200.164.62:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58561 TIME-WAIT Remote 35.237.227.24:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58562 TIME-WAIT Remote 216.58.204.14:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58563 TIME-WAIT Remote 192.0.73.2:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58565 TIME-WAIT Remote 93.184.220.66:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58567 TIME-WAIT Remote 216.58.198.226:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58568 TIME-WAIT Remote 35.237.227.24:443 (Querying... ) (HTTPS)
Local 192.168.1.87:58570 TIME-WAIT Remote 216.58.214.2:443 (Querying... ) (HTTPS)
System Process
Local 0.0.0.0:445 (Windows shares) LISTEN
Local 0.0.0.0:3648 LISTEN
Local 0.0.0.0:5700 LISTEN
Local 0.0.0.0:7779 LISTEN
Local 127.0.0.1:8884 LISTEN
Local 192.168.1.87:139 (NetBIOS session service) LISTEN
wininit.exe (936)
Local 0.0.0.0:49664 LISTEN
Generated with Speccy v1.32.740

  • 0

#9
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

Suspect you saved Speccy log as XML instead of Text file.  Speccy does not show any problems so you can uninstall it (and CCleaner if it instaled at the same time)

 

 

Since you have Office 365 you should be able to do without click to run.  See Option 2 on this site:

 

https://windowsrepor...e-click-to-run/

 

 

Download OOSU10.exe:

https://www.oo-softw...com/en/shutup10

Save it then Right click and Run As Admin.

Change each item in the first column to green if the column on the far right says Yes.

Close the program and reboot.

 

I see FRST is flagging your Brave browser.  Is that something you use?

 

Let's run Rogue Killer

http://www.adlice.co...iller/#download
Portable 32 bits
Portable 64 bits

Download and Save.



Right click on the downloaded file (RogueKillerX64.exe or RogueKiller.exe)  and Run As admin

Start Scan
Start Scan

Will take about 20 minutes to complete.

Open Report
Export TXT (save it to your desktop as rk) Save

Do not let Rogue Killer remove anything until you hear from me.  Leave Rogue Killer up (but minimized) so you won't have to rescan.

Open rk.txt and copy and paste it to your next Reply.
 


  • 0

#10
Wolfman360

Wolfman360

    Member

  • Topic Starter
  • Member
  • PipPip
  • 32 posts

Click to run uninstalled. A few hang ups today where everything has just froze - First caused by Chrome, second by "pc-doctor module" and the third by Avast all using 100% of disk.

 

Is O&Osu really good? I've left the ones related to microphone turned off as I use speech to text software for uni lectures

 

Rogue killer is running, will post report shorly.


  • 0

Advertisements


#11
Wolfman360

Wolfman360

    Member

  • Topic Starter
  • Member
  • PipPip
  • 32 posts
I don't really need brave software, it just sounded good at the time. - https://brave.com/
 
 
RogueKiller Anti-Malware V13.0.20.0 (x64) [Dec 31 2018] (Free) by Adlice Software
Operating System : Windows 10 (10.0.17134) 64 bits
Started in : Normal mode
User : dan31 [Administrator]
Started from : C:\Users\dan31\Downloads\RogueKiller_portable64.exe
Mode : Standard Scan, Scan -- Date : 2019/01/04 22:09:04 (Duration : 00:18:36)
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processes ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Process Modules ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Services ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Tasks ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Registry ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
>>>>>> XX - Explorer Advanced
  [PUM.StartMenu (Potentially Malicious)] (X64) HKEY_USERS\S-1-5-21-50118766-877759180-1359360943-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced|Start_TrackProgs -- 0 -> Found
  [PUM.StartMenu (Potentially Malicious)] (X86) HKEY_USERS\S-1-5-21-50118766-877759180-1359360943-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced|Start_TrackProgs -- 0 -> Found
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ WMI ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Hosts File ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Files ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Web browsers ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
>>>>>> Chrome Addon
  [PUP.Gen0 (Potentially Malicious)] Amazon Assistant for Chrome (C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\PBJIKB~1) -- pbjikboenpfhbbejgkoklgkhjpfogcam -> Found

  • 0

#12
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

I'd remove Brave if you aren't using it.

 

In Rogue Killer:

 

>>>>>> XX - Explorer Advanced
  [PUM.StartMenu (Potentially Malicious)] (X64) HKEY_USERS\S-1-5-21-50118766-877759180-1359360943-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced|Start_TrackProgs -- 0 -> Found
  [PUM.StartMenu (Potentially Malicious)] (X86) HKEY_USERS\S-1-5-21-50118766-877759180-1359360943-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced|Start_TrackProgs -- 0 -> Found
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ WMI ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Hosts File ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Files ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
 
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Web browsers ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
>>>>>> Chrome Addon
  [PUP.Gen0 (Potentially Malicious)] Amazon Assistant for Chrome (C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\PBJIKB~1) -- pbjikboenpfhbbejgkoklgkhjpfogcam -> Found
 
can be checked and removed tho I expect you will have to go into Chrome to remove the Amazon Assistant add-on/extension
 
I will work up a fixlist for you to get rid of the deadwood but it doesn't look like it should be that slow now.  Is it?

  • 0

#13
Wolfman360

Wolfman360

    Member

  • Topic Starter
  • Member
  • PipPip
  • 32 posts

Removed, and manually removed amazon assistant. Also removed Brave. Laptop is still hanging up, with the causes listed as above, it's either Avast causing it or Chrome.

 

I had a guy come round to install some software for uni (speech to text software) he recommended not having Avast and just using the antivirus that comes with Windows 10. Would you recommend this?


  • 0

#14
RKinner

RKinner

    Malware Expert

  • Expert
  • 24,625 posts
  • MVP

Download the attached fixlist.txt to the same location as FRST

Attached File  fixlist.txt   7.44KB   156 downloads

Run FRST and press Fix
A fix log will be generated please post that

Reboot if the fix doesn't reboot it for you

Run FRST again as before.  Make sure Addition.txt is checked and hit Scan.  Post both logs.

 

 

Try resetting Chrome:

 

https://www.asus.com...rt/FAQ/1007476/

 

You will lose your adblock.  Install Ublock Origin instead.


  • 0

#15
Wolfman360

Wolfman360

    Member

  • Topic Starter
  • Member
  • PipPip
  • 32 posts

Chrome reset, please see the fixlog and reports below. Still noticing PC-Doctor using a lot of Disk as well as other dell services.

Just a snapshot of my task manager  - https://imgur.com/a/y8Wp21X

 

Fix result of Farbar Recovery Scan Tool (x64) Version: 01.01.2019
Ran by dan31 (06-01-2019 00:23:10) Run:1
Running from C:\Users\dan31\Downloads
Loaded Profiles: dan31 (Available Profiles: dan31)
Boot Mode: Normal
==============================================
 
fixlist content:
*****************
HKLM-x32\...\RunOnce: [GrpConv] => grpconv -o
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\Run: [Chromium] => c:\users\dan31\appdata\local\chromium\application\chrome.exe [829440 2017-02-15] (The Chromium Authors)
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\Run: [GoogleChromeAutoLaunch_34001F2131DECEAF85E80D446A5BD02C] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1587680 2018-12-12] (Google Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\71.0.3578.98\Installer\chrmstp.exe [2018-12-14] (Google Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\71.0.58.18\Installer\chrmstp.exe [2019-01-02] (Brave Software, Inc.)
Startup: C:\Users\dan31\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk [2019-01-02]
ShortcutTarget: Send to OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation)
SearchScopes: HKU\S-1-5-21-50118766-877759180-1359360943-1001 -> DefaultScope {435D8A9F-20CE-4D95-838B-FCED344812AC} URL = 
SearchScopes: HKU\S-1-5-21-50118766-877759180-1359360943-1001 -> {435D8A9F-20CE-4D95-838B-FCED344812AC} URL = 
BHO: No Name -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> No File
BHO-x32: No Name -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> No File
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} -  No File
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\e10ssaffplg.xpi => not found
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\e10ssaffplg.xpi => not found
CHR Extension: (Avast SafePrice | Comparison, deals, coupons) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2018-12-22]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2018-12-06]
CHR Extension: (Amazon Assistant for Chrome) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam [2018-12-05]
S3 mfesapsn; \??\C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [X]
Task: {39A3F141-813D-4326-AE53-FAD7E8E4A2C4} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistInstaller.exe [2018-10-25] (Dell Inc.)
Task: {C2958C42-7F7A-4588-A1FC-CC441EE9D6C8} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {D4E76E50-A367-4096-92C3-58DFD5D718EB} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [2018-11-09] (BraveSoftware Inc.) <==== ATTENTION
Task: {D5299B30-487F-4FBE-B54A-62251E656A8A} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [2018-11-09] (BraveSoftware Inc.) <==== ATTENTION
Task: C:\WINDOWS\Tasks\RunDLC.job => cmd c sc start Dell Help SupportWORKGROUP DESKTOP 84H6AVC
Task: C:\WINDOWS\Tasks\{5BDEAF25-8DB1-B43D-27E7-2E0CA8139B12}.job => C:\PROGRA~2\COMMON~1\Neler\UpdTask.exe <==== ATTENTION
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\StartupApproved\Run: => "GoogleChromeAutoLaunch_34001F2131DECEAF85E80D446A5BD02C"
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\StartupApproved\Run: => "Chromium"
CMD: DIR /a c:\Users\kebli\AppData\Local\Comms\UnistoreDB\store.vol
CMD: FOR /F "usebackq delims==" %i IN (`wevtutil el`) DO wevtutil cl "%i"
Reboot:
 
 
 
 
 
 
*****************
 
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\RunOnce\\GrpConv" => not found
"HKU\S-1-5-21-50118766-877759180-1359360943-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Chromium" => removed successfully
"HKU\S-1-5-21-50118766-877759180-1359360943-1001\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_34001F2131DECEAF85E80D446A5BD02C" => not found
HKLM\Software\Microsoft\Active Setup\Installed Components\{8A69D345-D564-463c-AFF1-A69D9E530F96} => removed successfully
HKLM\Software\Microsoft\Active Setup\Installed Components\{AFE6A462-C574-4B8A-AF43-4CC60DF4563B} => removed successfully
C:\Users\dan31\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk => moved successfully
C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE => moved successfully
"HKU\S-1-5-21-50118766-877759180-1359360943-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => removed successfully
HKU\S-1-5-21-50118766-877759180-1359360943-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{435D8A9F-20CE-4D95-838B-FCED344812AC} => removed successfully
HKLM\Software\Classes\CLSID\{435D8A9F-20CE-4D95-838B-FCED344812AC} => not found
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} => removed successfully
HKLM\Software\Classes\CLSID\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} => not found
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{B164E929-A1B6-4A06-B104-2CD0E90A88FF} => not found
HKLM\Software\Classes\PROTOCOLS\Handler\sacore => removed successfully
HKLM\Software\Classes\CLSID\{5513F07E-936B-4E52-9B00-067394E91CC5} => not found
"HKLM\Software\Mozilla\Firefox\Extensions\\{4ED1F68A-5463-4931-9384-8FFF5ED91D92}" => removed successfully
"HKLM\Software\Wow6432Node\Mozilla\Firefox\Extensions\\{4ED1F68A-5463-4931-9384-8FFF5ED91D92}" => removed successfully
CHR Extension: (Avast SafePrice | Comparison, deals, coupons) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2018-12-22] => Error: No automatic fix found for this entry.
CHR Extension: (McAfee® WebAdvisor) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2018-12-06] => Error: No automatic fix found for this entry.
CHR Extension: (Amazon Assistant for Chrome) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam [2018-12-05] => Error: No automatic fix found for this entry.
HKLM\System\CurrentControlSet\Services\mfesapsn => removed successfully
mfesapsn => service removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{39A3F141-813D-4326-AE53-FAD7E8E4A2C4}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{39A3F141-813D-4326-AE53-FAD7E8E4A2C4}" => removed successfully
C:\WINDOWS\System32\Tasks\Dell SupportAssistAgent AutoUpdate => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Dell SupportAssistAgent AutoUpdate" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C2958C42-7F7A-4588-A1FC-CC441EE9D6C8}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C2958C42-7F7A-4588-A1FC-CC441EE9D6C8}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunCampaignManager" => not found
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D4E76E50-A367-4096-92C3-58DFD5D718EB}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D4E76E50-A367-4096-92C3-58DFD5D718EB}" => removed successfully
C:\WINDOWS\System32\Tasks\BraveSoftwareUpdateTaskMachineUA => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BraveSoftwareUpdateTaskMachineUA" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{D5299B30-487F-4FBE-B54A-62251E656A8A}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D5299B30-487F-4FBE-B54A-62251E656A8A}" => removed successfully
C:\WINDOWS\System32\Tasks\BraveSoftwareUpdateTaskMachineCore => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\BraveSoftwareUpdateTaskMachineCore" => removed successfully
C:\WINDOWS\Tasks\RunDLC.job => moved successfully
C:\WINDOWS\Tasks\{5BDEAF25-8DB1-B43D-27E7-2E0CA8139B12}.job => moved successfully
"HKU\S-1-5-21-50118766-877759180-1359360943-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\GoogleChromeAutoLaunch_34001F2131DECEAF85E80D446A5BD02C" => removed successfully
"HKU\S-1-5-21-50118766-877759180-1359360943-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_34001F2131DECEAF85E80D446A5BD02C" => not found
"HKU\S-1-5-21-50118766-877759180-1359360943-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\Chromium" => removed successfully
"HKU\S-1-5-21-50118766-877759180-1359360943-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Chromium" => not found
 
========= DIR /a c:\Users\kebli\AppData\Local\Comms\UnistoreDB\store.vol =========
 
The system cannot find the path specified.
 
========= End of CMD: =========
 
 
========= FOR /F "usebackq delims==" %i IN (`wevtutil el`) DO wevtutil cl "%i" =========
 
Failed to clear log Intel-SST-CFD-HDA/IntelSST. The instance name passed was not recognized as valid by a WMI data provider.
Failed to clear log Microsoft-Windows-LiveId/Analytic. Access is denied.
Failed to clear log Microsoft-Windows-LiveId/Operational. Access is denied.
Failed to clear log Microsoft-Windows-USBVideo/Analytic. The instance name passed was not recognized as valid by a WMI data provider.
 
========= End of CMD: =========
 
 
 
The system needed a reboot.
 
==== End of Fixlog 00:24:07 ====
 
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 01.01.2019
Ran by dan31 (administrator) on DESKTOP-84H6AVC (06-01-2019 00:28:51)
Running from C:\Users\dan31\Downloads
Loaded Profiles: dan31 (Available Profiles: dan31)
Platform: Windows 10 Home Version 1803 17134.472 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki127176.inf_amd64_86c658cabfb17c9c\igfxCUIService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
(Rivet Networks) C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel® Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki127176.inf_amd64_86c658cabfb17c9c\IntelCpHDCPSvc.exe
() C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(CloudBees, Inc.) C:\Program Files\Rivet Networks\SmartByte\RNDBWMService.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki127176.inf_amd64_86c658cabfb17c9c\IntelCpHeciSvc.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Rivet Networks LLC) C:\Program Files\Rivet Networks\SmartByte\RNDBWM.exe
(Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki127176.inf_amd64_86c658cabfb17c9c\igfxEM.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\SkypeApp.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
() C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18102.12011.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.10314.31700.1000_x64__8wekyb3d8bbwe\Office16\OfficeHubTaskHost.exe
(Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
(Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iTunes_12092.6.37131.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
(CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.23\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.23\GoogleCrashHandler64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-11] (Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9278152 2018-11-29] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_MAXX6] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1515208 2018-11-29] (Realtek Semiconductor)
HKLM\...\Run: [QuickSet] => c:\Program Files\Dell\QuickSet\QuickSet.exe [3075552 2015-04-29] (Dell Inc.)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [323040 2015-11-18] (Intel Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [242392 2018-12-02] (AVAST Software)
HKLM\...\Run: [RtHDVBg_PushButton] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1515208 2018-11-29] (Realtek Semiconductor)
HKLM\...\Run: [WavesSvc] => C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [723928 2017-01-26] (Waves Audio Ltd.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [235624 2015-01-09] (CANON INC.)
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1313408 2017-07-05] (CANON INC.)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-11] (Microsoft Corporation)
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3133216 2018-12-14] (Valve Corporation)
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3106088 2018-04-10] (Electronic Arts)
HKLM\...\Drivers32-x32: [vidc.VP60] => C:\Windows\SysWOW64\vp6vfw.dll [447752 2014-09-16] (On2.com)
HKLM\...\Drivers32-x32: [vidc.VP61] => C:\Windows\SysWOW64\vp6vfw.dll [447752 2014-09-16] (On2.com)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{3b316302-223d-4171-9622-f9d9728ee6f0}: [DhcpNameServer] 192.168.1.254
 
Internet Explorer:
==================
HKU\S-1-5-21-50118766-877759180-1359360943-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell17win10.msn.com/?pc=DCTE
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2018-12-19] (Microsoft Corporation)
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (CANON INC.)
BHO: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_112\bin\ssv.dll [2017-01-02] (Oracle Corporation)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_112\bin\jp2ssv.dll [2017-01-02] (Oracle Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2018-12-06] (Microsoft Corporation)
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (CANON INC.)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (CANON INC.)
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (CANON INC.)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-12-06] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-12-06] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-12-06] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-12-06] (Microsoft Corporation)
 
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.112.2 -> C:\Program Files\Java\jre1.8.0_112\bin\dtplugin\npDeployJava1.dll [2017-01-02] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.112.2 -> C:\Program Files\Java\jre1.8.0_112\bin\plugin2\npjp2.dll [2017-01-02] (Oracle Corporation)
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1227197.dll [2017-02-20] (Adobe Systems, Inc.)
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2017-10-17] (CANON INC.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-08-25] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-08-25] (Intel Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2018-09-11] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-09-11] (Microsoft Corporation)
FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=3 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2018-11-09] (BraveSoftware Inc.)
FF Plugin-x32: @tools.brave.com/BraveSoftware Update;version=9 -> C:\Program Files (x86)\BraveSoftware\Update\1.3.99.0\npBraveUpdate3.dll [2018-11-09] (BraveSoftware Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-17] (Google Inc.)
FF Plugin HKU\S-1-5-21-50118766-877759180-1359360943-1001: @nsroblox.roblox.com/launcher -> C:\Users\dan31\AppData\Local\Roblox\Versions\version-6a65e85da5fe4a75\\NPRobloxProxy.dll [2012-12-31] ( ROBLOX Corporation)
FF Plugin HKU\S-1-5-21-50118766-877759180-1359360943-1001: @nsroblox.roblox.com/launcher64 -> C:\Users\dan31\AppData\Local\Roblox\Versions\version-6a65e85da5fe4a75\\NPRobloxProxy64.dll [2012-12-31] ( ROBLOX Corporation)
 
Chrome: 
=======
CHR Profile: C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default [2019-01-06]
CHR Extension: (Slides) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-11-01]
CHR Extension: (Docs) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-11-06]
CHR Extension: (Google Drive) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-10-17]
CHR Extension: (YouTube) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-11-07]
CHR Extension: (Sheets) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-11-01]
CHR Extension: (Avast Online Security) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2018-09-26]
CHR Extension: (Grammarly for Chrome) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2018-12-06]
CHR Extension: (Chrome Web Store Payments) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Support for Read&Write Desktop) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofdopmlmgifpfkijadehmhjccbefaeec [2019-01-04]
CHR Extension: (Gmail) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-11-07]
CHR Extension: (Chrome Media Router) - C:\Users\dan31\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-12-19]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
 
==================== Services (Whitelisted) ====================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [8188768 2018-12-02] (AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [324000 2018-12-02] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [338632 2018-12-02] (AVAST Software)
S3 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2018-12-02] (AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1522184 2017-07-31] ()
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [160200 2018-11-09] (BraveSoftware Inc.)
S3 BraveElevationService; C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\71.0.58.18\elevation_service.exe [442856 2018-12-23] (Brave Software, Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [160200 2018-11-09] (BraveSoftware Inc.)
S3 BRSptStub; C:\ProgramData\BitRaider\BRSptStub.exe [363208 2017-12-26] (BitRaider, LLC)
S3 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9646240 2018-12-07] (Microsoft Corporation)
S2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [209392 2018-10-22] (Dell Inc.)
S2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3347440 2018-10-22] (Dell Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [218096 2018-10-22] (Dell Inc.)
R2 Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [130936 2016-12-21] (Dell Inc.)
R2 Dell Foundation Services; C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe [97616 2017-01-11] (Dell)
R2 Dell Hardware Support; C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1382\DSAPI.exe [1002816 2018-11-08] (PC-Doctor, Inc.)
R2 Dell Help & Support; C:\Program Files\Dell\Dell Help & Support\MDLCSvc.exe [40976 2017-09-18] (Dell Inc.)
S2 DellUpdate; C:\Program Files (x86)\Dell Update\DellUpService.exe [232320 2017-11-21] (Dell Inc.)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [780928 2018-07-29] (EasyAntiCheat Ltd)
R2 esifsvc; C:\WINDOWS\System32\Intel\DPTF\esif_uf.exe [1585784 2016-06-03] (Intel Corporation)
U2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2018-06-11] (Hi-Rez Studios) [File not signed]
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [19424 2015-11-18] (Intel Corporation)
R2 ibtsiva; C:\WINDOWS\system32\ibtsiva.exe [190216 2016-10-15] (Intel Corporation)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [397256 2018-11-19] ()
S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel® Corporation)
S3 Intel® WiDi SAM; C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel® Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [19088 2015-06-24] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [207648 2015-10-16] (Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6347056 2018-09-19] (Malwarebytes)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [265864 2018-03-19] ()
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [523152 2018-03-14] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [523152 2018-03-14] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2158912 2018-04-10] (Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3028808 2018-04-10] (Electronic Arts)
S2 Product Registration; C:\Program Files\Dell\Dell Product Registration\PRSvc.exe [47144 2017-04-06] (Dell)
R2 RNDBWM; C:\Program Files\Rivet Networks\SmartByte\RNDBWMService.exe [64184 2018-03-20] (CloudBees, Inc.)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [277192 2018-11-29] (Realtek Semiconductor)
R2 SmartByte Network Service x64; C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe [2011848 2018-03-20] (Rivet Networks)
S4 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] ()
S2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [38872 2018-10-25] (Dell Inc.)
R2 WavesSysSvc; C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe [615384 2017-02-07] (Waves Audio Ltd.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4451616 2018-04-11] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [107136 2018-09-21] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3848328 2018-03-19] (Intel® Corporation)
S4 McAfee SiteAdvisor Service; "C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe" [X]
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
 
===================== Drivers (Whitelisted) ======================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (Apple Inc.)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [201240 2018-12-02] (AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdrivera.sys [230344 2018-12-02] (AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsha.sys [201768 2018-12-02] (AVAST Software)
R0 aswblog; C:\WINDOWS\System32\drivers\aswbloga.sys [346592 2018-12-02] (AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniva.sys [59496 2018-12-02] (AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [15360 2018-07-28] (AVAST Software)
S3 aswHwid; C:\WINDOWS\System32\drivers\aswHwid.sys [46384 2018-12-02] (AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42288 2018-12-02] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [163208 2018-12-02] (AVAST Software)
R1 aswNetSec; C:\WINDOWS\System32\drivers\aswNetSec.sys [512072 2018-12-02] (AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [111800 2018-12-02] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [87432 2018-12-02] (AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [1028680 2018-12-02] (AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [469272 2018-12-02] (AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [208472 2018-12-02] (AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [380464 2018-12-02] (AVAST Software)
S3 BRDriver64_1_3_3_E02B25FC; C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [78088 2018-01-01] (BitRaider)
R3 DDDriver; C:\WINDOWS\system32\drivers\DDDriver64Dcsa.sys [36400 2018-10-20] (Dell Inc.)
S3 DellProf; C:\WINDOWS\system32\drivers\DellProf.sys [41208 2018-05-08] (Dell Computer Corporation)
R3 DellRbtn; C:\WINDOWS\System32\drivers\DellRbtn.sys [19440 2015-05-08] (OSR Open Systems Resources, Inc.)
R3 dptf_acpi; C:\WINDOWS\System32\drivers\dptf_acpi.sys [70208 2016-05-19] (Intel Corporation)
R3 dptf_cpu; C:\WINDOWS\System32\drivers\dptf_cpu.sys [65088 2016-05-19] (Intel Corporation)
R3 esif_lf; C:\WINDOWS\System32\drivers\esif_lf.sys [343608 2016-05-19] (Intel Corporation)
R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [250624 2016-10-15] (Intel Corporation)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [260480 2019-01-06] (Malwarebytes)
R3 Netwtw04; C:\WINDOWS\system32\DRIVERS\Netwtw04.sys [8623128 2018-04-04] (Intel Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvdm.inf_amd64_2c7c773e20d8bcfa\nvlddmkm.sys [17538080 2018-06-12] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [31632 2018-03-14] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [59240 2017-12-15] (NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [59272 2018-03-14] (NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [886528 2015-05-29] (Realtek )
R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [777944 2016-03-21] (Realsil Semiconductor Corporation)
R2 SmbCoSvc; C:\WINDOWS\system32\DRIVERS\SmbCo10X64.sys [119528 2018-03-20] (Rivet Networks, LLC.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44616 2018-04-11] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [331680 2018-04-11] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [44032 2018-04-11] (Microsoft Corporation)
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2019-01-06 00:28 - 2019-01-06 00:30 - 000025450 _____ C:\Users\dan31\Downloads\FRST.txt
2019-01-06 00:26 - 2019-01-06 00:26 - 000260480 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2019-01-06 00:23 - 2019-01-06 00:24 - 000010462 _____ C:\Users\dan31\Downloads\Fixlog.txt
2019-01-06 00:23 - 2019-01-04 11:45 - 002426368 _____ (Farbar) C:\Users\dan31\Downloads\FRST64.exe
2019-01-05 19:21 - 2019-01-05 19:21 - 000000000 ____D C:\ProgramData\Apple
2019-01-05 19:20 - 2019-01-05 19:20 - 000000000 ____D C:\ProgramData\Apple Computer
2019-01-05 19:11 - 2019-01-05 19:11 - 033361464 _____ C:\Users\dan31\Downloads\RogueKiller_portable64 (1).exe
2019-01-04 23:01 - 2019-01-04 23:01 - 000485868 _____ C:\Users\dan31\Downloads\A2L-1819-CB071-BROWNING-DANIEL-PLY (1).pdf
2019-01-04 22:29 - 2019-01-04 22:29 - 000003248 _____ C:\Users\dan31\Downloads\rk report.txt
2019-01-04 22:07 - 2019-01-04 22:07 - 033361464 _____ C:\Users\dan31\Downloads\RogueKiller_portable64.exe
2019-01-04 22:00 - 2019-01-04 22:00 - 001659096 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-01-04 21:51 - 2019-01-04 21:57 - 000002865 _____ C:\Users\dan31\Downloads\OOSU10.ini
2019-01-04 21:51 - 2019-01-04 21:51 - 000906016 _____ (O&O Software GmbH) C:\Users\dan31\Downloads\OOSU10.exe
2019-01-04 21:29 - 2019-01-04 21:29 - 000017612 _____ C:\Users\dan31\Downloads\PA Year 1 timetable 2019 INDUCTION.xlsx
2019-01-04 21:07 - 2019-01-04 21:07 - 000000000 ___HD C:\ProgramData\CanonIJQuickMenu
2019-01-04 21:07 - 2019-01-04 21:07 - 000000000 ____D C:\Users\dan31\AppData\Roaming\Canon
2019-01-04 21:00 - 2019-01-04 21:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG5700 series User Registration
2019-01-04 21:00 - 2015-03-15 05:00 - 000409088 _____ (CANON INC.) C:\WINDOWS\system32\CNMXLMCS.DLL
2019-01-04 20:59 - 2019-01-04 20:59 - 000002094 _____ C:\Users\Public\Desktop\Canon Quick Menu.lnk
2019-01-04 20:59 - 2019-01-04 20:59 - 000000000 ____D C:\Users\dan31\AppData\LocalLow\Canon Easy-WebPrint EX2
2019-01-04 20:59 - 2019-01-04 20:59 - 000000000 ____D C:\Users\dan31\AppData\LocalLow\Canon Easy-WebPrint EX
2019-01-04 20:57 - 2019-01-04 20:59 - 000000000 ____D C:\Program Files\Canon
2019-01-04 20:56 - 2019-01-04 20:56 - 000002441 _____ C:\Users\Public\Desktop\Canon MG5700 series On-screen Manual.lnk
2019-01-04 20:56 - 2019-01-04 20:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG5700 series Manual
2019-01-04 20:55 - 2019-01-04 20:59 - 000000000 ____D C:\ProgramData\CanonIJWSpt
2019-01-04 20:54 - 2019-01-04 20:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2019-01-04 20:54 - 2019-01-04 20:54 - 000000000 ____D C:\WINDOWS\system32\STRING
2019-01-04 20:54 - 2019-01-04 20:54 - 000000000 ____D C:\ProgramData\Canon IJ Network Tool
2019-01-04 20:54 - 2015-03-17 08:51 - 000375296 _____ (CANON INC.) C:\WINDOWS\system32\CNMN6PPM.DLL
2019-01-04 20:54 - 2015-03-17 08:51 - 000039424 _____ (CANON INC.) C:\WINDOWS\system32\CNMN6UI.DLL
2019-01-04 20:54 - 2015-03-17 08:50 - 000380928 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNMNPPM.DLL
2019-01-04 20:54 - 2015-01-29 11:22 - 000353792 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNC_CSL.dll
2019-01-04 20:54 - 2014-12-02 16:01 - 000096256 _____ C:\WINDOWS\SysWOW64\CNC178ED.TBL
2019-01-04 20:54 - 2008-08-25 18:02 - 000015872 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNHMCA.dll
2019-01-04 20:53 - 2019-01-04 20:54 - 000000000 ___HD C:\Program Files\CanonBJ
2019-01-04 17:52 - 2019-01-04 22:02 - 000000000 ____D C:\ProgramData\CanonIJPLM
2019-01-04 17:52 - 2019-01-04 17:52 - 000000000 ____D C:\ProgramData\Canon
2019-01-04 17:50 - 2019-01-04 21:07 - 000000000 ____D C:\Program Files (x86)\Canon
2019-01-04 17:50 - 2019-01-04 17:50 - 050515504 _____ C:\Users\dan31\Downloads\win-mg5700-1_0-mcd.exe
2019-01-04 13:59 - 2019-01-04 13:59 - 000200507 _____ C:\Users\dan31\Downloads\Mail – Daniel . - Outlook.pdf
2019-01-04 13:30 - 2015-03-15 05:00 - 000406528 _____ (CANON INC.) C:\WINDOWS\system32\CNMLMCS.DLL
2019-01-04 13:23 - 2019-01-04 21:44 - 000000000 ____D C:\Users\dan31\OneDrive\Documents\Audio Notetaker Recordings
2019-01-04 13:22 - 2019-01-04 13:22 - 000000000 ____D C:\Users\dan31\AppData\Roaming\Sonocent
2019-01-04 13:22 - 2019-01-04 13:22 - 000000000 ____D C:\Users\dan31\AppData\Local\Sonocent
2019-01-04 13:21 - 2019-01-04 13:21 - 000002489 _____ C:\Users\Public\Desktop\Sonocent Audio Notetaker.lnk
2019-01-04 13:21 - 2019-01-04 13:21 - 000000000 ____D C:\ProgramData\Sonocent
2019-01-04 13:21 - 2019-01-04 13:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sonocent Audio Notetaker
2019-01-04 13:21 - 2019-01-04 13:21 - 000000000 ____D C:\Program Files\Sonocent
2019-01-04 13:16 - 2019-01-04 13:16 - 000000000 ____D C:\Users\dan31\AppData\Roaming\MatchWare
2019-01-04 13:15 - 2019-01-04 13:15 - 000002126 _____ C:\Users\Public\Desktop\MindView 7.0.lnk
2019-01-04 13:15 - 2019-01-04 13:15 - 000000000 ____D C:\ProgramData\Caphyon
2019-01-04 13:14 - 2019-01-04 13:15 - 000000000 ____D C:\ProgramData\mwas
2019-01-04 13:14 - 2019-01-04 13:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MindView 7.0
2019-01-04 13:14 - 2019-01-04 13:14 - 000000000 ____D C:\Program Files (x86)\MatchWare
2019-01-04 13:11 - 2019-01-04 13:16 - 000000000 ____D C:\Users\dan31\AppData\Local\MatchWare
2019-01-04 13:09 - 2019-01-04 13:09 - 000002144 _____ C:\Users\Public\Desktop\Read&Write.lnk
2019-01-04 13:02 - 2019-01-04 13:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Texthelp
2019-01-04 13:02 - 2019-01-04 13:02 - 000000000 ____D C:\Users\dan31\AppData\Roaming\Texthelp
2019-01-04 13:02 - 2019-01-04 13:02 - 000000000 ____D C:\Texthelp
2019-01-04 13:02 - 2019-01-04 13:02 - 000000000 ____D C:\ProgramData\Texthelp
2019-01-04 13:02 - 2019-01-04 13:02 - 000000000 ____D C:\Program Files (x86)\Texthelp
2019-01-04 11:09 - 2019-01-04 11:10 - 000000000 ____D C:\checkspec
2019-01-02 18:27 - 2019-01-02 18:28 - 000000000 ____D C:\Users\dan31\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpeedFan
2019-01-02 18:27 - 2019-01-02 18:28 - 000000000 ____D C:\Program Files (x86)\SpeedFan
2019-01-02 18:27 - 2019-01-02 18:27 - 003086696 _____ C:\Users\dan31\Downloads\instspeedfan452 (1).exe
2019-01-02 18:27 - 2019-01-02 18:27 - 000000045 _____ C:\WINDOWS\SysWOW64\initdebug.nfo
2019-01-02 17:18 - 2019-01-02 17:18 - 000000000 ____D C:\Users\dan31\Desktop\Dan's PA Bible
2019-01-02 14:08 - 2019-01-02 14:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy
2019-01-02 14:08 - 2019-01-02 14:08 - 000000000 ____D C:\Program Files\Speccy
2019-01-02 14:07 - 2019-01-02 14:07 - 006889184 _____ (Piriform Ltd) C:\Users\dan31\Downloads\spsetup132.exe
2019-01-02 14:06 - 2019-01-02 14:06 - 000000000 ____D C:\Program Files\Waves
2019-01-02 14:05 - 2019-01-02 14:05 - 000022763 _____ C:\junk.txt
2019-01-02 14:00 - 2017-01-02 13:00 - 000110144 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-64.dll
2019-01-02 13:50 - 2019-01-02 13:50 - 002703128 _____ (Sysinternals - www.sysinternals.com) C:\Users\dan31\Downloads\procexp.exe
2018-12-28 00:31 - 2018-12-28 00:31 - 000649611 _____ C:\Users\dan31\Downloads\Browning (1).pdf
2018-12-28 00:31 - 2018-12-28 00:31 - 000240833 _____ C:\Users\dan31\Downloads\Daniel.pdf
2018-12-28 00:17 - 2018-12-28 00:18 - 000000000 ____D C:\Users\dan31\OneDrive\Documents\Archive
2018-12-28 00:14 - 2018-12-28 00:14 - 000613318 _____ C:\Users\dan31\Downloads\club_lloyds_cinema_vouchers_0.pdf
2018-12-28 00:05 - 2018-12-28 00:05 - 000000000 ____D C:\Users\dan31\AppData\LocalLow\Temp
2018-12-27 22:31 - 2018-12-27 22:31 - 000020715 _____ C:\Users\dan31\Downloads\Browning Daniel.pdf
2018-12-23 00:22 - 2018-12-23 00:28 - 854935321 _____ C:\Users\dan31\Downloads\medical_examination_2.zip
2018-12-22 23:49 - 2018-12-22 23:49 - 000000000 ____D C:\Users\dan31\AppData\LocalLow\Strange Loop Games
2018-12-19 22:38 - 2018-12-14 12:24 - 001364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2018-12-19 22:38 - 2018-12-14 07:29 - 006567472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2018-12-19 22:38 - 2018-12-14 07:29 - 001130760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2018-12-19 22:38 - 2018-12-14 07:25 - 001035256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2018-12-19 22:38 - 2018-12-14 07:23 - 001221432 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2018-12-19 22:38 - 2018-12-14 07:23 - 001029944 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2018-12-19 22:38 - 2018-12-14 07:23 - 000566568 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2018-12-19 22:38 - 2018-12-14 07:23 - 000134968 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2018-12-19 22:38 - 2018-12-14 07:23 - 000076088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2018-12-19 22:38 - 2018-12-14 07:22 - 009084216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2018-12-19 22:38 - 2018-12-14 07:22 - 007520104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2018-12-19 22:38 - 2018-12-14 07:21 - 001457240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2018-12-19 22:38 - 2018-12-14 07:21 - 001257672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2018-12-19 22:38 - 2018-12-14 07:21 - 001140480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2018-12-19 22:38 - 2018-12-14 07:21 - 001098064 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2018-12-19 22:38 - 2018-12-14 07:21 - 000982912 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2018-12-19 22:38 - 2018-12-14 07:13 - 005775872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2018-12-19 22:38 - 2018-12-14 07:12 - 005307392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2018-12-19 22:38 - 2018-12-14 07:10 - 001295360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll
2018-12-19 22:38 - 2018-12-14 07:07 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2018-12-19 22:38 - 2018-12-14 06:55 - 003396608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2018-12-19 22:38 - 2018-12-14 06:55 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2018-12-19 22:38 - 2018-12-14 06:54 - 006032384 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2018-12-19 22:38 - 2018-12-14 06:54 - 001307648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll
2018-12-19 22:38 - 2018-12-14 06:54 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2018-12-19 22:38 - 2018-12-14 06:53 - 007573504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2018-12-19 22:38 - 2018-12-14 06:52 - 002173440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2018-12-19 22:38 - 2018-12-14 06:52 - 001826816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2018-12-19 22:38 - 2018-12-14 06:51 - 001551360 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2018-12-19 22:38 - 2018-12-14 06:50 - 000776192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2018-12-19 22:38 - 2018-12-14 05:34 - 000001312 _____ C:\WINDOWS\system32\tcbres.wim
2018-12-19 22:24 - 2018-12-19 22:24 - 000002500 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business.lnk
2018-12-19 22:24 - 2018-12-19 22:24 - 000002495 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2018-12-19 22:24 - 2018-12-19 22:24 - 000002494 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2018-12-19 22:24 - 2018-12-19 22:24 - 000002458 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2018-12-19 22:24 - 2018-12-19 22:24 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2018-12-19 22:24 - 2018-12-19 22:24 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2018-12-19 22:24 - 2018-12-19 22:24 - 000002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2018-12-19 22:24 - 2018-12-19 22:24 - 000002437 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2018-12-19 22:24 - 2018-12-19 22:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
2018-12-19 22:22 - 2018-12-19 22:22 - 000085828 _____ C:\Users\dan31\Downloads\Welcome_to_the_Physician_Associate_Programme.zip
2018-12-18 00:03 - 2018-12-18 00:03 - 000008087 _____ C:\Users\dan31\Downloads\ePayslip (5).pdf
2018-12-18 00:03 - 2018-12-18 00:03 - 000008013 _____ C:\Users\dan31\Downloads\ePayslip (4).pdf
2018-12-17 23:58 - 2018-12-17 23:58 - 000025378 _____ C:\Users\dan31\Downloads\Leavers-Annual-Leave-Calculator.xlsx
2018-12-17 23:11 - 2018-12-17 23:11 - 000341551 _____ C:\Users\dan31\Downloads\49183228211-DSA2-181213-0846-(18-19).pdf
2018-12-14 20:20 - 2018-12-14 20:20 - 000051172 _____ C:\Users\dan31\Downloads\CSageDocuments541837640.pdf
2018-12-14 20:20 - 2018-12-14 20:20 - 000033689 _____ C:\Users\dan31\Downloads\Sales Order 0000029302.pdf
2018-12-14 20:19 - 2018-12-14 20:20 - 000032047 _____ C:\Users\dan31\Downloads\CSageDocuments541837203.pdf
2018-12-14 20:19 - 2018-12-08 12:42 - 004527800 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2018-12-14 20:19 - 2018-12-08 12:42 - 001616824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2018-12-14 20:19 - 2018-12-08 12:29 - 013572608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2018-12-14 20:19 - 2018-12-08 12:28 - 012710400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2018-12-14 20:19 - 2018-12-08 12:25 - 012500992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2018-12-14 20:19 - 2018-12-08 08:07 - 005625352 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2018-12-14 20:19 - 2018-12-08 08:06 - 001017168 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2adec.dll
2018-12-14 20:19 - 2018-12-08 08:05 - 007436216 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2018-12-14 20:19 - 2018-12-08 08:04 - 002371296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2018-12-14 20:19 - 2018-12-08 07:49 - 025855488 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2018-12-14 20:19 - 2018-12-08 07:45 - 006043496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2018-12-14 20:19 - 2018-12-08 07:42 - 022715392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2018-12-14 20:19 - 2018-12-08 07:41 - 007057408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2018-12-14 20:19 - 2018-12-08 07:40 - 004710912 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2018-12-14 20:19 - 2018-12-08 07:40 - 004384768 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2018-12-14 20:19 - 2018-12-08 07:38 - 022016000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2018-12-14 20:19 - 2018-12-08 07:33 - 019405312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2018-12-14 20:19 - 2018-11-09 06:15 - 021388752 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2018-12-14 20:19 - 2018-11-09 02:56 - 001213472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2018-12-14 20:19 - 2018-11-09 02:21 - 004866560 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2018-12-14 20:19 - 2018-11-09 02:16 - 004939776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2018-12-14 20:19 - 2018-11-09 01:26 - 004514816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2018-12-14 20:18 - 2018-12-08 12:47 - 001048712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2018-12-14 20:18 - 2018-12-08 12:47 - 000645320 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2018-12-14 20:18 - 2018-12-08 12:46 - 000549760 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2018-12-14 20:18 - 2018-12-08 12:42 - 001634944 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2018-12-14 20:18 - 2018-12-08 12:41 - 002394960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2018-12-14 20:18 - 2018-12-08 12:41 - 000481880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2018-12-14 20:18 - 2018-12-08 12:40 - 001454648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2018-12-14 20:18 - 2018-12-08 12:28 - 006586880 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2018-12-14 20:18 - 2018-12-08 12:28 - 004708864 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2018-12-14 20:18 - 2018-12-08 12:27 - 005657600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2018-12-14 20:18 - 2018-12-08 12:25 - 011902976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2018-12-14 20:18 - 2018-12-08 12:23 - 003649024 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2018-12-14 20:18 - 2018-12-08 12:23 - 002892288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2018-12-14 20:18 - 2018-12-08 12:23 - 001856512 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2018-12-14 20:18 - 2018-12-08 12:23 - 001661440 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2018-12-14 20:18 - 2018-12-08 12:22 - 001586176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2018-12-14 20:18 - 2018-12-08 12:22 - 001469952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2018-12-14 20:18 - 2018-12-08 12:22 - 000577024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2018-12-14 20:18 - 2018-12-08 08:07 - 001328632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll
2018-12-14 20:18 - 2018-12-08 08:06 - 000777512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2018-12-14 20:18 - 2018-12-08 08:06 - 000491416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2018-12-14 20:18 - 2018-12-08 08:06 - 000433168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2018-12-14 20:18 - 2018-12-08 08:05 - 002822656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2018-12-14 20:18 - 2018-12-08 08:05 - 002463384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2018-12-14 20:18 - 2018-12-08 08:05 - 001935008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2018-12-14 20:18 - 2018-12-08 08:05 - 001209888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2018-12-14 20:18 - 2018-12-08 08:05 - 000793592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2018-12-14 20:18 - 2018-12-08 08:05 - 000594224 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2018-12-14 20:18 - 2018-12-08 08:04 - 004404720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2018-12-14 20:18 - 2018-12-08 08:04 - 001943328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2018-12-14 20:18 - 2018-12-08 08:04 - 001188512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2018-12-14 20:18 - 2018-12-08 08:04 - 000604984 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2018-12-14 20:18 - 2018-12-08 08:04 - 000416024 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2018-12-14 20:18 - 2018-12-08 08:04 - 000268280 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2018-12-14 20:18 - 2018-12-08 08:04 - 000260800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2018-12-14 20:18 - 2018-12-08 07:47 - 000861744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2adec.dll
2018-12-14 20:18 - 2018-12-08 07:47 - 000785760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2018-12-14 20:18 - 2018-12-08 07:46 - 002331480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2018-12-14 20:18 - 2018-12-08 07:46 - 001989040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2018-12-14 20:18 - 2018-12-08 07:46 - 000665224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2018-12-14 20:18 - 2018-12-08 07:46 - 000457056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAudDecMFT.dll
2018-12-14 20:18 - 2018-12-08 07:45 - 004789952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2018-12-14 20:18 - 2018-12-08 07:45 - 002307240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL
2018-12-14 20:18 - 2018-12-08 07:45 - 001805656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2018-12-14 20:18 - 2018-12-08 07:45 - 001620472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2018-12-14 20:18 - 2018-12-08 07:45 - 001379816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2018-12-14 20:18 - 2018-12-08 07:45 - 001011872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2018-12-14 20:18 - 2018-12-08 07:42 - 009084928 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2018-12-14 20:18 - 2018-12-08 07:38 - 003392000 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2018-12-14 20:18 - 2018-12-08 07:38 - 002739200 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2018-12-14 20:18 - 2018-12-08 07:38 - 000419328 _____ (Microsoft Corporation) C:\WINDOWS\system32\eeprov.dll
2018-12-14 20:18 - 2018-12-08 07:37 - 002825728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2018-12-14 20:18 - 2018-12-08 07:36 - 003381248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll
2018-12-14 20:18 - 2018-12-08 07:36 - 003090432 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2018-12-14 20:18 - 2018-12-08 07:36 - 002364928 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2018-12-14 20:18 - 2018-12-08 07:36 - 001768448 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2018-12-14 20:18 - 2018-12-08 07:36 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2018-12-14 20:18 - 2018-12-08 07:36 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2018-12-14 20:18 - 2018-12-08 07:35 - 002126336 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2018-12-14 20:18 - 2018-12-08 07:35 - 000808448 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2018-12-14 20:18 - 2018-12-08 07:35 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2018-12-14 20:18 - 2018-12-08 07:34 - 001535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2018-12-14 20:18 - 2018-12-08 07:34 - 001023488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2018-12-14 20:18 - 2018-12-08 07:34 - 000884224 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2018-12-14 20:18 - 2018-12-08 07:34 - 000693248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2018-12-14 20:18 - 2018-12-08 07:34 - 000684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2018-12-14 20:18 - 2018-12-08 07:34 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2018-12-14 20:18 - 2018-12-08 07:33 - 002904064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2018-12-14 20:18 - 2018-12-08 07:33 - 001457152 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2018-12-14 20:18 - 2018-12-08 07:33 - 001264640 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2018-12-14 20:18 - 2018-12-08 07:33 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2018-12-14 20:18 - 2018-12-08 07:33 - 000949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2018-12-14 20:18 - 2018-12-08 07:33 - 000823296 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2018-12-14 20:18 - 2018-12-08 07:32 - 001097728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2018-12-14 20:18 - 2018-12-08 07:32 - 001032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2018-12-14 20:18 - 2018-12-08 07:32 - 000542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2018-12-14 20:18 - 2018-12-08 07:30 - 006647296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2018-12-14 20:18 - 2018-12-08 07:30 - 002966528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2018-12-14 20:18 - 2018-12-08 07:29 - 005883904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2018-12-14 20:18 - 2018-12-08 07:29 - 002700288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2018-12-14 20:18 - 2018-12-08 07:28 - 002258944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2018-12-14 20:18 - 2018-12-08 07:28 - 000391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2018-12-14 20:18 - 2018-12-08 07:27 - 002449408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll
2018-12-14 20:18 - 2018-12-08 07:27 - 001986560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll
2018-12-14 20:18 - 2018-12-08 07:27 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2018-12-14 20:18 - 2018-12-08 07:26 - 000848384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2018-12-14 20:18 - 2018-12-08 07:25 - 000978944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2018-12-14 20:18 - 2018-12-08 07:25 - 000856576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2018-12-14 20:18 - 2018-12-08 07:24 - 000795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2018-12-14 20:18 - 2018-12-08 07:24 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2018-12-14 20:18 - 2018-11-09 05:59 - 008623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2018-12-14 20:18 - 2018-11-09 05:58 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSCard.dll
2018-12-14 20:18 - 2018-11-09 05:57 - 004491264 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2018-12-14 20:18 - 2018-11-09 05:56 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ninput.dll
2018-12-14 20:18 - 2018-11-09 05:55 - 001254400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2018-12-14 20:18 - 2018-11-09 05:55 - 000878592 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2018-12-14 20:18 - 2018-11-09 05:32 - 020383832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2018-12-14 20:18 - 2018-11-09 05:20 - 007987712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2018-12-14 20:18 - 2018-11-09 05:20 - 003397632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2018-12-14 20:18 - 2018-11-09 05:17 - 000704000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2018-12-14 20:18 - 2018-11-09 02:49 - 000723416 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2018-12-14 20:18 - 2018-11-09 02:48 - 003179760 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2018-12-14 20:18 - 2018-11-09 02:48 - 002719736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2018-12-14 20:18 - 2018-11-09 02:48 - 001613288 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2018-12-14 20:18 - 2018-11-09 02:48 - 000899920 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2018-12-14 20:18 - 2018-11-09 02:48 - 000766704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2018-12-14 20:18 - 2018-11-09 02:48 - 000375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2018-12-14 20:18 - 2018-11-09 02:47 - 002765344 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2018-12-14 20:18 - 2018-11-09 02:47 - 002571128 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2018-12-14 20:18 - 2018-11-09 02:47 - 002062392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2018-12-14 20:18 - 2018-11-09 02:47 - 001285432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2018-12-14 20:18 - 2018-11-09 02:47 - 000930616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2018-12-14 20:18 - 2018-11-09 02:47 - 000537912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2018-12-14 20:18 - 2018-11-09 02:21 - 001627136 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2018-12-14 20:18 - 2018-11-09 02:20 - 000399872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthAvctpSvc.dll
2018-12-14 20:18 - 2018-11-09 02:19 - 002368512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2018-12-14 20:18 - 2018-11-09 02:18 - 003320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2018-12-14 20:18 - 2018-11-09 02:18 - 001487360 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2018-12-14 20:18 - 2018-11-09 02:18 - 000514048 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2018-12-14 20:18 - 2018-11-09 02:17 - 002584576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2018-12-14 20:18 - 2018-11-09 02:17 - 001069568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2018-12-14 20:18 - 2018-11-09 02:16 - 002224640 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2018-12-14 20:18 - 2018-11-09 02:16 - 001364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpasvc.dll
2018-12-14 20:18 - 2018-11-09 02:16 - 001225216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2018-12-14 20:18 - 2018-11-09 02:16 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2018-12-14 20:18 - 2018-11-09 02:15 - 000943616 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2018-12-14 20:18 - 2018-11-09 02:15 - 000933888 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2018-12-14 20:18 - 2018-11-09 02:15 - 000884224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2018-12-14 20:18 - 2018-11-09 02:15 - 000505344 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2018-12-14 20:18 - 2018-11-09 02:07 - 002417976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2018-12-14 20:18 - 2018-11-09 02:07 - 001299704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2018-12-14 20:18 - 2018-11-09 01:48 - 000550728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2018-12-14 20:18 - 2018-11-09 01:46 - 002253184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2018-12-14 20:18 - 2018-11-09 01:46 - 002161008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2018-12-14 20:18 - 2018-11-09 01:46 - 001980776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2018-12-14 20:18 - 2018-11-09 01:46 - 000829960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2018-12-14 20:18 - 2018-11-09 01:46 - 000721024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2018-12-14 20:18 - 2018-11-09 01:46 - 000573504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2018-12-14 20:18 - 2018-11-09 01:29 - 003711488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2018-12-14 20:18 - 2018-11-09 01:28 - 002900992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2018-12-14 20:18 - 2018-11-09 01:26 - 001110528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2018-12-14 20:18 - 2018-11-09 01:25 - 000713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll
2018-12-14 20:17 - 2018-12-08 12:39 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll
2018-12-14 20:17 - 2018-12-08 12:27 - 000068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdBth.dll
2018-12-14 20:17 - 2018-12-08 12:27 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdBth.dll
2018-12-14 20:17 - 2018-12-08 12:23 - 000503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2018-12-14 20:17 - 2018-12-08 12:23 - 000471040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcSpecfc.dll
2018-12-14 20:17 - 2018-12-08 08:12 - 000272408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll
2018-12-14 20:17 - 2018-12-08 08:12 - 000269336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2018-12-14 20:17 - 2018-12-08 08:12 - 000092688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2018-12-14 20:17 - 2018-12-08 08:07 - 001063416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2018-12-14 20:17 - 2018-12-08 08:06 - 000709936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2018-12-14 20:17 - 2018-12-08 08:06 - 000249088 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2018-12-14 20:17 - 2018-12-08 08:05 - 001018880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2018-12-14 20:17 - 2018-12-08 08:05 - 000706040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2018-12-14 20:17 - 2018-12-08 08:05 - 000421176 _____ (Microsoft Corporation) C:\WINDOWS\system32\xbgmengine.dll
2018-12-14 20:17 - 2018-12-08 08:05 - 000413920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2018-12-14 20:17 - 2018-12-08 08:05 - 000171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2018-12-14 20:17 - 2018-12-08 08:05 - 000130312 _____ (Microsoft Corporation) C:\WINDOWS\system32\rmclient.dll
2018-12-14 20:17 - 2018-12-08 08:05 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fileinfo.sys
2018-12-14 20:17 - 2018-12-08 08:04 - 002590296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL
2018-12-14 20:17 - 2018-12-08 08:04 - 001150312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVP9DEC.dll
2018-12-14 20:17 - 2018-12-08 08:04 - 000885760 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2018-12-14 20:17 - 2018-12-08 08:04 - 000527160 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2018-12-14 20:17 - 2018-12-08 08:04 - 000413176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2018-12-14 20:17 - 2018-12-08 08:04 - 000375608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys
2018-12-14 20:17 - 2018-12-08 08:04 - 000335672 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2018-12-14 20:17 - 2018-12-08 08:04 - 000158624 _____ (Microsoft Corporation) C:\WINDOWS\system32\vertdll.dll
2018-12-14 20:17 - 2018-12-08 08:04 - 000128824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2018-12-14 20:17 - 2018-12-08 08:04 - 000058168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\iorate.sys
2018-12-14 20:17 - 2018-12-08 08:04 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser_broker.exe
2018-12-14 20:17 - 2018-12-08 07:46 - 001397104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVP9DEC.dll
2018-12-14 20:17 - 2018-12-08 07:46 - 000101192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rmclient.dll
2018-12-14 20:17 - 2018-12-08 07:45 - 000567256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2018-12-14 20:17 - 2018-12-08 07:45 - 000356864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2018-12-14 20:17 - 2018-12-08 07:45 - 000129296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2018-12-14 20:17 - 2018-12-08 07:39 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnsruprov.dll
2018-12-14 20:17 - 2018-12-08 07:38 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2018-12-14 20:17 - 2018-12-08 07:38 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcnfs.sys
2018-12-14 20:17 - 2018-12-08 07:37 - 000395776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2018-12-14 20:17 - 2018-12-08 07:37 - 000386048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Diagnostics.dll
2018-12-14 20:17 - 2018-12-08 07:37 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthserv.dll
2018-12-14 20:17 - 2018-12-08 07:37 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\appsruprov.dll
2018-12-14 20:17 - 2018-12-08 07:37 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll
2018-12-14 20:17 - 2018-12-08 07:37 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2018-12-14 20:17 - 2018-12-08 07:37 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2018-12-14 20:17 - 2018-12-08 07:36 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2018-12-14 20:17 - 2018-12-08 07:36 - 000356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll
2018-12-14 20:17 - 2018-12-08 07:36 - 000227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2018-12-14 20:17 - 2018-12-08 07:36 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mmcss.sys
2018-12-14 20:17 - 2018-12-08 07:35 - 001708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSPhotography.dll
2018-12-14 20:17 - 2018-12-08 07:33 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2018-12-14 20:17 - 2018-12-08 07:32 - 000895488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2018-12-14 20:17 - 2018-12-08 07:32 - 000796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2018-12-14 20:17 - 2018-12-08 07:32 - 000406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2018-12-14 20:17 - 2018-12-08 07:29 - 000311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Diagnostics.dll
2018-12-14 20:17 - 2018-12-08 07:28 - 000288768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2018-12-14 20:17 - 2018-12-08 07:27 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2018-12-14 20:17 - 2018-12-08 07:27 - 000555008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2018-12-14 20:17 - 2018-12-08 07:27 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll
2018-12-14 20:17 - 2018-12-08 07:26 - 001348096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
2018-12-14 20:17 - 2018-12-08 07:25 - 000729088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2018-12-14 20:17 - 2018-12-08 07:25 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2018-12-14 20:17 - 2018-12-08 07:25 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2018-12-14 20:17 - 2018-12-08 07:24 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2018-12-14 20:17 - 2018-12-08 07:24 - 000345088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2018-12-14 20:17 - 2018-11-09 06:00 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2018-12-14 20:17 - 2018-11-09 05:57 - 000208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\sensrsvc.dll
2018-12-14 20:17 - 2018-11-09 05:56 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2018-12-14 20:17 - 2018-11-09 05:56 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSoftwareInstallationClient.dll
2018-12-14 20:17 - 2018-11-09 05:54 - 001535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2018-12-14 20:17 - 2018-11-09 05:22 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2018-12-14 20:17 - 2018-11-09 05:19 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSCard.dll
2018-12-14 20:17 - 2018-11-09 05:18 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2018-12-14 20:17 - 2018-11-09 05:18 - 000320512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ninput.dll
2018-12-14 20:17 - 2018-11-09 02:49 - 000565048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2018-12-14 20:17 - 2018-11-09 02:49 - 000368656 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2018-12-14 20:17 - 2018-11-09 02:48 - 000745472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2018-12-14 20:17 - 2018-11-09 02:21 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2018-12-14 20:17 - 2018-11-09 02:21 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys
2018-12-14 20:17 - 2018-11-09 02:20 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2018-12-14 20:17 - 2018-11-09 02:20 - 000193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiswan.sys
2018-12-14 20:17 - 2018-11-09 02:18 - 000573952 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2018-12-14 20:17 - 2018-11-09 02:18 - 000300032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2018-12-14 20:17 - 2018-11-09 01:47 - 000295224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2018-12-14 20:17 - 2018-11-09 01:31 - 000094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2018-12-14 20:17 - 2018-11-09 01:29 - 000561152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2018-12-14 20:17 - 2018-11-09 01:29 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2018-12-14 20:17 - 2018-11-09 01:29 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2018-12-14 20:17 - 2018-11-09 01:27 - 000463872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2018-12-14 20:17 - 2018-11-09 01:26 - 000873472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2018-12-14 20:17 - 2018-11-09 01:25 - 000705024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2018-12-14 20:16 - 2018-12-08 12:27 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storqosflt.sys
2018-12-14 20:15 - 2018-12-08 12:29 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2018-12-14 20:15 - 2018-12-08 07:38 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataUsageLiveTileTask.exe
2018-12-14 20:15 - 2018-12-08 07:38 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2018-12-14 20:15 - 2018-12-08 07:38 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2018-12-14 20:15 - 2018-12-08 07:37 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataUsageHandlers.dll
2018-12-14 20:15 - 2018-12-08 07:37 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2018-12-14 20:15 - 2018-12-08 07:36 - 000153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll
2018-12-14 20:15 - 2018-12-08 07:30 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2018-12-14 20:15 - 2018-12-08 07:29 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2018-12-14 20:15 - 2018-12-08 07:28 - 001361408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSPhotography.dll
2018-12-14 20:15 - 2018-11-09 02:22 - 000185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2018-12-14 20:15 - 2018-11-09 02:22 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttpcom.dll
2018-12-14 20:15 - 2018-11-09 02:21 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2018-12-14 20:15 - 2018-11-09 02:20 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2018-12-14 20:15 - 2018-11-09 02:19 - 000726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2018-12-14 20:15 - 2018-11-09 02:19 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2018-12-14 20:15 - 2018-11-09 01:31 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2018-12-14 20:15 - 2018-11-09 01:30 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2018-12-14 20:15 - 2018-11-09 01:30 - 000082944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttpcom.dll
2018-12-14 20:15 - 2018-11-09 01:26 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2018-12-08 23:27 - 2018-12-08 23:27 - 000126137 _____ C:\Users\dan31\Downloads\PostOffice-Locations.pdf
2018-12-08 20:05 - 2018-12-08 20:05 - 000229003 _____ C:\Users\dan31\Downloads\NHS Pension Calculator V2 2.xlsx
2018-12-08 19:22 - 2018-12-08 19:22 - 000008342 _____ C:\Users\dan31\Downloads\ePayslip (3).pdf
2018-12-08 19:18 - 2018-12-08 19:18 - 000008087 _____ C:\Users\dan31\Downloads\ePayslip (2).pdf
2018-12-08 19:04 - 2018-12-08 19:04 - 000008087 _____ C:\Users\dan31\Downloads\ePayslip (1).pdf
2018-12-08 19:03 - 2018-12-08 19:03 - 000008112 _____ C:\Users\dan31\Downloads\ePayslip.pdf
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2019-01-06 00:28 - 2018-11-16 22:39 - 000000000 ____D C:\FRST
2019-01-06 00:26 - 2018-04-11 23:38 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-01-06 00:26 - 2018-04-11 23:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-01-06 00:26 - 2017-08-15 22:11 - 000000000 ____D C:\ProgramData\NVIDIA
2019-01-06 00:26 - 2016-11-07 15:46 - 000000000 __SHD C:\Users\dan31\IntelGraphicsProfiles
2019-01-06 00:25 - 2018-08-09 15:31 - 000000000 ____D C:\Program Files (x86)\Hi-Rez Studios
2019-01-06 00:25 - 2018-06-13 22:08 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-01-06 00:24 - 2018-04-11 21:04 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2019-01-06 00:22 - 2018-06-13 22:08 - 000004162 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{836EAE97-C031-448F-B8B6-44DD43AE308F}
2019-01-05 20:32 - 2018-06-13 21:32 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-01-05 20:14 - 2017-11-08 10:20 - 000000000 ____D C:\Users\dan31\AppData\Local\Packages
2019-01-05 19:10 - 2018-04-11 23:38 - 000000000 ___HD C:\Program Files\WindowsApps
2019-01-04 22:58 - 2018-04-11 23:36 - 000000000 ____D C:\WINDOWS\INF
2019-01-04 21:05 - 2016-11-07 16:48 - 000000000 ____D C:\Users\dan31\AppData\Local\CrashDumps
2019-01-04 20:54 - 2018-04-11 23:38 - 000000000 __RSD C:\WINDOWS\media
2019-01-04 13:59 - 2018-10-18 00:12 - 000003176 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-01-04 13:59 - 2018-10-18 00:12 - 000002914 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-01-04 13:59 - 2018-10-18 00:11 - 000003398 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-01-04 13:59 - 2018-10-18 00:11 - 000003140 _____ C:\WINDOWS\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-01-04 13:59 - 2018-10-18 00:11 - 000002984 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-01-04 13:59 - 2018-10-18 00:11 - 000002956 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-01-04 13:59 - 2018-10-18 00:11 - 000002838 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-01-04 13:59 - 2018-10-18 00:11 - 000002744 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-01-04 13:59 - 2018-09-16 22:10 - 000002848 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-50118766-877759180-1359360943-1001
2019-01-04 13:59 - 2018-07-09 21:26 - 000002246 _____ C:\WINDOWS\System32\Tasks\SmartByte Telemetry
2019-01-04 13:59 - 2018-06-13 22:08 - 000003346 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2019-01-04 13:59 - 2018-06-13 22:08 - 000003122 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2019-01-04 13:59 - 2018-06-13 22:08 - 000003042 _____ C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2019-01-04 13:59 - 2018-06-13 22:08 - 000003040 _____ C:\WINDOWS\System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec
2019-01-04 13:59 - 2018-06-13 22:08 - 000002674 _____ C:\WINDOWS\System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec-Logon
2019-01-04 13:59 - 2018-06-13 22:08 - 000002304 _____ C:\WINDOWS\System32\Tasks\RtHDVBg_PushButton
2019-01-04 13:59 - 2018-06-13 22:08 - 000000000 ____D C:\WINDOWS\System32\Tasks\AVAST Software
2019-01-04 13:21 - 2016-08-29 16:03 - 000000000 ____D C:\ProgramData\Package Cache
2019-01-02 19:25 - 2018-04-11 23:30 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-01-02 17:21 - 2016-11-07 15:52 - 000000000 ___RD C:\Users\dan31\OneDrive
2019-01-02 14:22 - 2018-11-09 22:55 - 000002420 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2019-01-02 14:07 - 2017-08-15 22:10 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2019-01-02 14:07 - 2016-08-29 16:04 - 000000000 ____D C:\WINDOWS\system32\RTCOM
2019-01-02 14:01 - 2018-06-20 11:12 - 000000000 ____D C:\Program Files (x86)\MacroToolworks
2019-01-02 14:01 - 2018-05-15 22:32 - 000000000 ____D C:\Users\dan31\AppData\Local\AVAST Software
2019-01-02 14:01 - 2018-05-15 22:32 - 000000000 ____D C:\Program Files (x86)\AVAST Software
2019-01-02 14:01 - 2016-11-07 16:29 - 000000000 ____D C:\ProgramData\AVAST Software
2019-01-02 14:00 - 2017-08-15 22:10 - 000000000 ____D C:\Program Files (x86)\Intel
2019-01-02 14:00 - 2016-11-21 17:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2019-01-02 13:54 - 2016-11-07 16:31 - 000000000 ____D C:\Users\dan31\AppData\Roaming\AVAST Software
2018-12-28 12:21 - 2018-06-17 23:52 - 000039436 ____H C:\Users\dan31\AppData\Local\IconCache.db.backup
2018-12-28 00:18 - 2018-03-10 16:13 - 000000000 ____D C:\Users\dan31\OneDrive\Documents\Physician Associate
2018-12-27 22:46 - 2018-06-13 21:51 - 000840376 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2018-12-26 12:54 - 2016-11-07 15:52 - 000000000 ____D C:\Program Files (x86)\Steam
2018-12-22 21:21 - 2018-06-13 21:41 - 000002361 _____ C:\Users\dan31\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2018-12-22 21:08 - 2018-04-11 23:38 - 000000000 ____D C:\WINDOWS\system32\NDF
2018-12-22 21:08 - 2016-08-29 16:02 - 000000000 ____D C:\ProgramData\PCDr
2018-12-20 21:21 - 2018-04-11 23:38 - 000000000 ____D C:\WINDOWS\TextInput
2018-12-20 21:21 - 2018-04-11 23:38 - 000000000 ____D C:\WINDOWS\bcastdvr
2018-12-19 22:22 - 2016-04-25 20:00 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2018-12-17 23:40 - 2016-11-13 13:40 - 000000000 ____D C:\WINDOWS\system32\MRT
2018-12-17 23:17 - 2016-11-13 13:40 - 137260640 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2018-12-17 23:04 - 2017-11-20 21:44 - 000000000 ___RD C:\Users\dan31\3D Objects
2018-12-17 23:04 - 2016-04-25 20:52 - 000000000 __RHD C:\Users\Public\AccountPictures
2018-12-17 23:02 - 2018-06-13 21:41 - 000000000 ____D C:\Users\dan31
2018-12-17 22:58 - 2018-04-11 23:38 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2018-12-17 22:58 - 2018-04-11 23:38 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2018-12-17 22:58 - 2018-04-11 23:38 - 000000000 ____D C:\WINDOWS\ShellComponents
2018-12-15 23:33 - 2016-11-07 15:52 - 000002303 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-12-08 18:48 - 2018-11-16 19:36 - 000000000 ____D C:\Program Files\rempl
2018-12-08 18:44 - 2016-11-10 18:03 - 000000000 ____D C:\Program Files (x86)\Minecraft
 
==================== Files in the root of some directories =======
 
2018-04-16 16:13 - 2018-04-16 16:13 - 000000045 _____ () C:\Users\dan31\AppData\Roaming\WB.CFG
2018-07-08 20:30 - 2018-07-08 20:30 - 000007605 _____ () C:\Users\dan31\AppData\Local\Resmon.ResmonCfg
 
Some files in TEMP:
====================
2019-01-04 17:50 - 2015-03-23 15:28 - 001207376 ____N (CANON INC.) C:\Users\dan31\AppData\Local\Temp\MSETUP4.EXE
2019-01-02 18:28 - 2019-01-02 18:28 - 000192512 _____ () C:\Users\dan31\AppData\Local\Temp\sfamcc00001.dll
2015-02-10 17:56 - 2015-02-10 17:56 - 000105984 _____ () C:\Users\dan31\AppData\Local\Temp\sfextra.dll
 
==================== Bamital & volsnap ======================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
 
LastRegBack: 2018-06-13 21:32
 
==================== End of FRST.txt ============================
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 01.01.2019
Ran by dan31 (06-01-2019 00:31:48)
Running from C:\Users\dan31\Downloads
Windows 10 Home Version 1803 17134.472 (X64) (2018-06-13 22:11:04)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-50118766-877759180-1359360943-500 - Administrator - Disabled)
dan31 (S-1-5-21-50118766-877759180-1359360943-1001 - Administrator - Enabled) => C:\Users\dan31
DefaultAccount (S-1-5-21-50118766-877759180-1359360943-503 - Limited - Disabled)
Guest (S-1-5-21-50118766-877759180-1359360943-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-50118766-877759180-1359360943-504 - Limited - Disabled)
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
FW: Avast Antivirus (Enabled) {B693136B-F6EE-DD1C-A0EF-229B8B0B29C4}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
Adobe Shockwave Player 12.2 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.2.7.197 - Adobe Systems, Inc.)
Auto Clicker v12.1 (HKLM-x32\...\{C0A7E4F3-82CC-416B-82C6-BA06AACFD635}_is1) (Version: 12.1 - MurGee.com)
Auto Mouse Click v75.1 (HKLM-x32\...\{F5E3859D-0720-41F0-BAF5-4CBCDFD8F406}_is1) (Version: 75.1 - MurGee.com)
AutoHotkey 1.1.24.02 (HKLM\...\AutoHotkey) (Version: 1.1.24.02 - Lexikos)
Avast Driver Updater (HKLM-x32\...\{984D8789-07A6-4CD8-9766-35408C67395D}) (Version: 2.4.0 - AVAST Software) Hidden
Avast Driver Updater (HKLM-x32\...\Avast Driver Updater) (Version: 2.4.0 - AVAST Software)
Avast Internet Security (HKLM-x32\...\Avast Antivirus) (Version: 18.8.2356 - AVAST Software)
Avast Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.4.136.333 - AVAST Software) Hidden
BitRaider Streaming Client (HKLM-x32\...\BitRaider Streaming Client) (Version: 1.3.3.4098 - BitRaider, LLC)
Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 71.0.58.18 - Brave Software Inc)
Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.7.0.0 - Canon Inc.)
Canon IJ Network Scanner Selector EX (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: 1.5.4.4 - Canon Inc.)
Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: 3.7.0 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.1.20.13 - Canon Inc.)
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 6.0.1 - Canon Inc.)
Canon MG5700 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5700_series) (Version: 1.00 - Canon Inc.)
Canon MG5700 series On-screen Manual (HKLM-x32\...\Canon MG5700 series On-screen Manual) (Version: 7.8.0 - Canon Inc.)
Canon MG5700 series User Registration (HKLM-x32\...\Canon MG5700 series User Registration) (Version:  - ‭Canon Inc.)
Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 3.6.1 - Canon Inc.)
Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 3.6.0 - Canon Inc.)
Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.3.0 - Canon Inc.)
Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.8.5 - Canon Inc.)
Dell Customer Connect (HKLM-x32\...\{4FA72FF9-DD64-43A8-8704-6380A11F11D5}) (Version: 1.4.15.0 - Dell Inc.)
Dell Digital Delivery (HKLM-x32\...\{AB7F2792-2ED1-4C5C-9F28-680E5110BF72}) (Version: 3.1.1018.0 - Dell Products, LP)
Dell Foundation Services (HKLM\...\{BDB50421-E961-42F3-B803-6DAC6F173834}) (Version: 3.4.16100.0 - Dell Inc.)
Dell Help & Support (HKLM\...\{457EFE69-8F49-43E0-80F9-1DEF4F7690C2}) (Version: 2.5.23.0 - Dell Inc.) Hidden
Dell Help & Support (HKLM-x32\...\InstallShield_{457EFE69-8F49-43E0-80F9-1DEF4F7690C2}) (Version: 2.5.23.0 - Dell Inc.)
Dell Product Registration (HKLM-x32\...\InstallShield_{48114909-3C3B-43E6-BF98-AE9C396500A3}) (Version: 3.0.127.0 - Dell Inc.)
Dell SupportAssist (HKLM\...\{5A18ABE3-52D1-4CA5-9169-25EC7E789582}) (Version: 3.0.2.48 - Dell Inc.)
Dell Update (HKLM-x32\...\{632610E3-5B12-403C-9C93-EF533ED1C113}) (Version: 1.10.5.0 - Dell Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 71.0.3578.98 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.23 - Google Inc.) Hidden
Grammarly (HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\GrammarlyForWindows) (Version: 1.5.26 - Grammarly)
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
Intel® Chipset Device Software (HKLM-x32\...\{60c073df-e736-4210-9c3a-5fc2b651cef3}) (Version: 10.1.1.7 - Intel® Corporation) Hidden
Intel® Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.2.10900.330 - Intel Corporation)
Intel® Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1054 - Intel Corporation)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 21.20.16.4590 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.8.1.1043 - Intel Corporation)
Intel® Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1519.7 - Intel Corporation)
Intel® WiDi (HKLM\...\{5DD8D7E4-87F1-4134-AD28-4228FB1A03BA}) (Version: 6.0.44.0 - Intel Corporation)
Intel® WiDi Software Asset Manager (HKLM-x32\...\{86905E62-645F-482E-A417-82C812ABD787}) (Version: 1.1.383 - Intel Corporation) Hidden
Intel® Wireless Bluetooth® (HKLM-x32\...\{9A287643-10C5-4463-B9D1-B2404CE18CCF}) (Version: 17.1.1529.1620 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{8c595286-0f9e-42de-a0d4-969aba282637}) (Version: 20.50.0 - Intel Corporation)
Java 8 Update 112 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180112F0}) (Version: 8.0.1120.15 - Oracle Corporation)
Malwarebytes version 3.6.1.2711 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.6.1.2711 - Malwarebytes)
MatchWare MindView 7.0 (HKLM-x32\...\MindView 7.0 7.0.15506.0) (Version: 7.0.15506.0 - MatchWare)
Maxx Audio Installer (x64) (HKLM\...\{307032B2-6AF2-46D7-B933-62438DEB2B9A}) (Version: 2.6.9060.3 - Waves Audio Ltd.) Hidden
Microsoft Office 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.11029.20108 - Microsoft Corporation)
Microsoft Office 365 ProPlus - en-us (HKLM\...\O365ProPlusRetail - en-us) (Version: 16.0.11029.20108 - Microsoft Corporation)
Microsoft OneDrive (HKU\.DEFAULT\...\OneDriveSetup.exe) (Version: 17.3.6743.1212 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\OneDriveSetup.exe) (Version: 18.222.1104.0007 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 (HKLM-x32\...\{c239cea1-d49e-4e16-8e87-8c055765f7ec}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
MindView 7.0 (HKLM-x32\...\{9F77AE7F-6716-4449-95A7-6BDC2B000707}) (Version: 7.0.15506.0 - MatchWare) Hidden
Minecraft (HKLM-x32\...\{756E195A-CB58-4B99-917F-0DDA0D881204}) (Version: 1.0.4.0 - Mojang)
Mouse Macro Recorder 2.6.0 (HKLM-x32\...\{E290CF70-C9EA-4C9E-8B41-20E5FFDF2E64}_is1) (Version:  - Mouse Macro Recorder Ltd.)
MouseRecorder v1.0.51 (HKLM-x32\...\MouseRecorder_is1) (Version: 1.0.51 - Bartels Media GmbH)
NVIDIA GeForce Experience 3.13.1.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.13.1.30 - NVIDIA Corporation)
NVIDIA Graphics Driver 391.25 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 391.25 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.11029.20108 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.11029.20108 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.11029.20108 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0409-0000-0000000FF1CE}) (Version: 16.0.11029.20108 - Microsoft Corporation) Hidden
OldSchool RuneScape Launcher 1.2.7 (HKLM-x32\...\{FEDDCE73-34B8-4980-90B8-8619A78C902C}) (Version: 1.2.7 - Jagex Ltd)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Origin (HKLM-x32\...\Origin) (Version: 10.5.17.52805 - Electronic Arts, Inc.)
Product Registration (HKLM\...\{48114909-3C3B-43E6-BF98-AE9C396500A3}) (Version: 3.0.127.0 - Dell Inc.) Hidden
Quickset64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 11.5.02 - Dell Inc.)
Read&Write (HKLM-x32\...\{355AB00F-48E8-474E-ACC4-D917BAFA4D58}) (Version: 12.0.41 - Texthelp Limited)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.21289 - Realtek Semiconduct Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8578 - Realtek Semiconductor Corp.)
Revo Uninstaller 2.0.5 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.5 - VS Revo Group, Ltd.)
ROBLOX Player for dan31 (HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\{373B1718-8CC5-4567-8EE2-9033AD08A680}) (Version:  - ROBLOX Corporation)
RogueKiller version 13.0.10.0 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 13.0.10.0 - Adlice Software)
RuneScape Launcher 2.2.4 (HKLM\...\RuneScape Launcher_is1) (Version: 2.2.4 - Jagex Ltd)
Sid Meier's Civilization V (HKLM-x32\...\steam app 8930) (Version:  - 2K Games, Inc.)
SmartByte Drivers and Services (HKLM\...\{EC62F71A-6CFA-4918-9EBC-99BFF86DB3C9}) (Version: 1.2.600 - Rivet Networks)
Sonocent Audio Notetaker 5.3 (HKLM\...\{0C089214-D1A7-4B8C-AEA9-ACD7B7CCC8A4}) (Version: 5.3.6.0 - Sonocent Ltd.) Hidden
Sonocent Audio Notetaker 5.3 (HKLM-x32\...\{7f58369d-0fa4-4a6b-a3c1-276af6c85b92}) (Version: 5.3.6.0 - Sonocent Ltd.)
Speccy (HKLM\...\Speccy) (Version: 1.32 - Piriform)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version:  - )
Star Wars The Old Republic (HKLM-x32\...\swtor_swtor) (Version: 13.0.0.13 - Bioware/EA)
Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.42.30.1020 - Electronic Arts Inc.)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{9CBA860F-7437-4A75-941C-8EF559F2D145}) (Version: 2.52.0.0 - Microsoft Corporation)
Vulkan Run Time Libraries 1.0.3.1 (HKLM\...\VulkanRT1.0.3.1) (Version: 1.0.3.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.3.1 (HKLM\...\VulkanRT1.0.3.1-2) (Version: 1.0.3.1 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.33.0 (HKLM\...\VulkanRT1.0.33.0) (Version: 1.0.33.0 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.33.0 (HKLM\...\VulkanRT1.0.33.0-2) (Version: 1.0.33.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1-2) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
WinRAR 5.60 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.60.0 - win.rar GmbH)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-12-02] (AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-12-02] (AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-12-02] (AVAST Software)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2018-06-24] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2018-06-24] (Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-12-02] (AVAST Software)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-09-19] (Malwarebytes)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\ki127176.inf_amd64_86c658cabfb17c9c\igfxDTCM.dll [2018-03-22] (Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2018-03-16] (NVIDIA Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-12-02] (AVAST Software)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-09-19] (Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2018-06-24] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2018-06-24] (Alexander Roshal)
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {1E151AEA-442D-44F3-82E4-7D5C26E3801F} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-12-19] (Microsoft Corporation)
Task: {2BC66B09-D01D-4558-8D82-AE5160C5999F} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2018-03-14] (NVIDIA Corporation)
Task: {3C37CA82-B788-451B-9C6B-7F701A207C9B} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2018-11-12] (AVAST Software)
Task: {3C695115-CC7A-48B7-A651-AE0759583F70} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel® Update Manager\bin\iumsvc.exe
Task: {4B7BF3C4-BFE5-4458-A9C9-7957BAEC4FF4} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-12-18] (Microsoft Corporation)
Task: {4C75E912-1A5C-44A2-932C-120BD1696B32} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-03-14] (NVIDIA Corporation)
Task: {51EE6466-0962-4878-9EA4-4DF29FF597F2} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-12-18] (Microsoft Corporation)
Task: {5F9DCF9A-3E33-4DDD-AD20-D954909FB0F1} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-03-14] (NVIDIA Corporation)
Task: {65B85F6F-35B3-4459-A179-28255D5B7B25} - System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask => C:\WINDOWS\System32\WinBioPlugIns\FaceFodUninstaller.exe [2018-04-11] ()
Task: {788F14C8-D461-457F-B614-83C1DB47EBB8} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe [2018-12-19] (Microsoft Corporation)
Task: {888DF747-1F1B-46E5-B189-5E4F6B37C6F0} - System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec => C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel® Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [2015-06-24] (Intel Corporation)
Task: {91046CB9-C5D2-4451-8262-561DE6BB224B} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2018-03-14] (NVIDIA Corporation)
Task: {967B656F-A9B0-4494-ACFB-0C4E2C8A3F35} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-12-02] (AVAST Software)
Task: {A1F1FE74-35FD-4A3F-9346-855EB60CCFC3} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2018-12-19] (Microsoft Corporation)
Task: {B01EBF53-47E5-4910-A731-264CFB238904} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-12-07] (Microsoft Corporation)
Task: {BF696A06-3DB6-46FF-BBDF-5D86FD8062BB} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-12-07] (Microsoft Corporation)
Task: {C186FBA0-A679-4ED1-8EC3-72DB044CD1E1} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-03-14] (NVIDIA Corporation)
Task: {C1A9916C-1596-40FD-9A00-A4A58F01AA9E} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {C83893D7-374B-42D9-A251-CFE5776FA4D9} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-03-14] (NVIDIA Corporation)
Task: {DB452E8A-49CF-486F-AB99-E780B9417BA3} - System32\Tasks\Avast TUNEUP Update => C:\Program Files (x86)\AVAST Software\Avast Cleanup\TUNEUpdate.exe [2018-11-05] (AVAST Software)
Task: {DDE64289-9AFF-42BB-8BAE-A5BB122E730E} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [2015-06-05] (Intel Corporation)
Task: {E160940F-74CF-41C0-B776-D6B0360225EE} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-03-14] (NVIDIA Corporation)
Task: {E4E941F7-1CCA-44B2-980D-33BD14E411BD} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe [2018-12-19] (Microsoft Corporation)
Task: {E6AD0975-E211-4ACE-B42C-23FE4D0A6823} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2018-03-14] (NVIDIA Corporation)
Task: {E9AD453B-3319-45CA-A230-29260010973D} - System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec-Logon => C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel® Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [2015-06-24] (Intel Corporation)
Task: {ED40ACB8-5E54-455F-BF91-F47BE8F11780} - System32\Tasks\RtHDVBg_PushButton => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2018-11-29] (Realtek Semiconductor)
Task: {F58C7DF1-10F0-4E15-B89A-BCECED3D9372} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-11-07] (Google Inc.)
Task: {F67DAAEA-BC1B-4BCB-A5C9-871841AD26C8} - System32\Tasks\SmartByte Telemetry => C:\Program Files\Rivet Networks\SmartByte\SmartByteTelemetry.exe [2018-03-20] (DELL)
Task: {FB5DD6E9-19F3-450B-84FB-680498104D1F} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-12-19] (Microsoft Corporation)
Task: {FD5870DB-F64F-4DEB-82F6-579CC5310891} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-11-07] (Google Inc.)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
 
==================== Shortcuts & WMI ========================
 
(The entries could be listed to be restored or removed.)
 
 
Shortcut: C:\Users\dan31\AppData\Local\Microsoft\Windows\RoamingTiles\12192648070.lnk -> hxxp://www.southampton.ac.uk/healthsciencesnet/staffandstudents/timetables.htm
 
==================== Loaded Modules (Whitelisted) ==============
 
2018-10-18 00:11 - 2018-03-14 13:01 - 001268112 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2019-01-04 17:52 - 2018-11-19 19:32 - 000397256 _____ () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
2018-10-24 19:24 - 2018-11-09 19:56 - 002695360 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll
2018-04-11 23:34 - 2018-04-11 23:34 - 000491744 _____ () C:\Windows\System32\InputHost.dll
2018-04-11 23:34 - 2018-04-11 23:34 - 000472064 _____ () C:\Windows\ShellExperiences\TileControl.dll
2018-12-14 20:18 - 2018-11-09 02:17 - 002759680 _____ () C:\Windows\ShellComponents\TaskFlowUI.dll
2018-12-19 22:38 - 2018-12-14 06:50 - 002185728 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2019-01-04 11:10 - 2019-01-04 11:10 - 002834944 _____ () C:\Program Files\WindowsApps\Microsoft.People_10.1811.3343.0_x64__8wekyb3d8bbwe\People.BackgroundTasks.dll
2019-01-04 11:10 - 2019-01-04 11:10 - 000120320 _____ () C:\Program Files\WindowsApps\Microsoft.People_10.1811.3343.0_x64__8wekyb3d8bbwe\PeopleUtilRT.dll
2019-01-04 11:10 - 2019-01-04 11:10 - 009032704 _____ () C:\Program Files\WindowsApps\Microsoft.People_10.1811.3343.0_x64__8wekyb3d8bbwe\Microsoft.People.NativeComponents.dll
2018-10-24 19:33 - 2018-10-24 19:33 - 000009216 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\ImagePipelineNative.dll
2018-12-17 23:24 - 2018-12-17 23:24 - 000060416 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\ChakraBridge.dll
2018-12-17 23:24 - 2018-12-17 23:24 - 000182272 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
2018-04-07 22:15 - 2018-04-07 22:15 - 004734464 _____ () C:\Program Files\WindowsApps\Microsoft.Wallet_2.2.18065.0_x64__8wekyb3d8bbwe\Microsoft.Wallet.dll
2018-10-09 18:55 - 2018-10-09 18:55 - 004389888 _____ () C:\Program Files\WindowsApps\Microsoft.OneConnect_5.1809.2571.0_x64__8wekyb3d8bbwe\OneConnect.dll
2018-11-08 21:56 - 2018-11-08 21:57 - 000070144 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11810.1001.12.0_x64__8wekyb3d8bbwe\WinStoreTasksWrapper.dll
2018-11-08 21:56 - 2018-11-08 21:57 - 000194048 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11810.1001.12.0_x64__8wekyb3d8bbwe\WinStore.Preview.dll
2018-12-12 22:48 - 2018-12-12 22:49 - 034870272 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18102.12011.0_x64__8wekyb3d8bbwe\Video.UI.exe
2018-12-12 22:48 - 2018-12-12 22:49 - 000292352 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18102.12011.0_x64__8wekyb3d8bbwe\SharedUI.dll
2017-12-02 21:52 - 2017-12-02 21:52 - 000902656 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18102.12011.0_x64__8wekyb3d8bbwe\Microsoft.Membership.MeControl.UI.Xaml.dll
2018-12-02 19:10 - 2018-12-02 19:11 - 004202208 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18102.12011.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll
2018-12-12 22:48 - 2018-12-12 22:49 - 005967872 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18102.12011.0_x64__8wekyb3d8bbwe\EntCommon.dll
2018-12-12 22:48 - 2018-12-12 22:49 - 009072128 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18102.12011.0_x64__8wekyb3d8bbwe\EntPlat.dll
2018-07-11 15:47 - 2018-07-11 15:47 - 001922224 _____ () C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.10314.31700.1000_x64__8wekyb3d8bbwe\Microsoft.Applications.Telemetry.Windows.dll
2018-12-06 14:48 - 2018-12-06 14:49 - 000088888 _____ () C:\Program Files\WindowsApps\AppleInc.iTunes_12092.6.37131.0_x64__nzyj5cx40ttqa\zlib1.dll
2018-12-06 14:48 - 2018-12-06 14:49 - 001356088 _____ () C:\Program Files\WindowsApps\AppleInc.iTunes_12092.6.37131.0_x64__nzyj5cx40ttqa\libxml2.dll
2018-12-15 23:30 - 2018-12-12 05:11 - 005237216 _____ () C:\Program Files (x86)\Google\Chrome\Application\71.0.3578.98\libglesv2.dll
2018-12-15 23:30 - 2018-12-12 05:11 - 000117216 _____ () C:\Program Files (x86)\Google\Chrome\Application\71.0.3578.98\libegl.dll
2018-12-02 14:32 - 2018-12-02 14:32 - 000596696 _____ () c:\program files\avast software\avast\streamback.dll
2018-04-02 15:29 - 2018-04-02 15:29 - 067126928 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2016-12-21 10:24 - 2016-12-21 10:24 - 000134008 _____ () C:\Program Files (x86)\Dell Customer Connect\ServiceTagPlusPlus.dll
2015-06-23 23:26 - 2015-06-23 23:26 - 000155888 _____ () c:\Program Files (x86)\Dell Digital Delivery\ServiceTagPlusPlus.dll
2015-10-16 13:14 - 2015-10-16 13:14 - 001243936 _____ () C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\ACE.dll
2015-06-24 06:16 - 2015-06-24 06:16 - 000044176 _____ () C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel® Software Asset Manager\bin\win32api.pyd
2015-06-24 06:15 - 2015-06-24 06:15 - 000062608 _____ () C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel® Software Asset Manager\bin\pywintypes27.dll
2015-06-24 06:15 - 2015-06-24 06:15 - 000122000 _____ () C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel® Software Asset Manager\bin\pythoncom27.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
 
==================== Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
IE trusted site: HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\webcompanion.com -> hxxp://webcompanion.com
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2015-10-30 07:24 - 2019-01-04 11:04 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path: C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL;C:\Program Files\Intel\Intel® Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT;C:\Program Files\Intel\Intel® Management Engine Components\IPT;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\
HKU\S-1-5-21-50118766-877759180-1359360943-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\dan31\AppData\Local\Microsoft\Windows\Themes\transcodedwallpaper
DNS Servers: 192.168.1.254
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
If an entry is included in the fixlist, it will be removed.
 
HKLM\...\StartupApproved\Run32: => "Dropbox"
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-50118766-877759180-1359360943-1001\...\StartupApproved\Run: => "EADM"
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [UDP Query User{3E0A62E7-E8D5-46B2-B4B8-20A96ED7750D}C:\program files (x86)\steam\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\realm royale\binaries\win64\realm.exe (Hirez Studios, Inc.)
FirewallRules: [TCP Query User{ECCE45C4-2B83-4E25-AA31-E2852D620768}C:\program files (x86)\steam\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\realm royale\binaries\win64\realm.exe (Hirez Studios, Inc.)
FirewallRules: [{5B296FCF-40C9-421E-9EDF-F8CC9511FD01}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Realm Royale\Binaries\Win64\RealmEAC.exe (EasyAntiCheat Ltd)
FirewallRules: [{3F6D7BDC-B573-4767-A6CA-7428DF6A49B8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Realm Royale\Binaries\Win64\RealmEAC.exe (EasyAntiCheat Ltd)
FirewallRules: [{509581DA-60C2-4904-A446-2F80EEA8E093}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Forts\Forts.exe ()
FirewallRules: [{C9836854-9DBA-4F04-96F7-8731A0440D35}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Forts\Forts.exe ()
FirewallRules: [{34F7C521-B5AA-4794-81D5-E0AC9DFBC6C8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{3D59EA73-A1A3-4FE5-A9B4-69D6B0C46EDE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{DEEF6BCC-D32F-4D6B-969C-DCA6586DC932}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization V\Launcher.exe (Firaxis Games)
FirewallRules: [{E082A65C-22E0-48B4-AB51-AD7FE8861B2D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization V\Launcher.exe (Firaxis Games)
FirewallRules: [{8653AC64-24F1-4C14-9E63-AFE856A95B38}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FCA88113-1EA9-4604-8A2F-F39E098527B1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B93896D3-C9EE-4F8D-9292-E02AE3B61902}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{BABBE0BE-EDB1-4AE9-B6F0-26D84E6D7603}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{4FCB1FBE-8B84-4005-A227-0423986854FA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spore\SporeBin\SporeApp.exe (Maxis, a division of Electronic Arts Inc.)
FirewallRules: [{6FB30529-B784-4468-A639-0B90BBB1B520}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spore\SporeBin\SporeApp.exe (Maxis, a division of Electronic Arts Inc.)
FirewallRules: [{7D09309E-AE81-4871-8EAB-1AA60F8FDB45}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe (Electronic Arts Inc.)
FirewallRules: [{9366D207-2C6E-46EA-9C46-7FF393270F66}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe (Electronic Arts Inc.)
FirewallRules: [{6182C830-282B-40B5-9001-4F7B11301B23}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe (Electronic Arts Inc.)
FirewallRules: [{55E19B7F-0C20-4294-A851-47E99E12A962}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe (Electronic Arts Inc.)
FirewallRules: [{3B297849-AD7B-4001-9E8E-AB1EB1EA8410}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FA33BD2C-9CD5-450B-A871-8F2570E72A6A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{95CAEB92-B9BA-42D7-B13B-C975ECD557F9}] => (Allow) C:\Users\dan31\AppData\Local\Chromium\Application\chrome.exe (The Chromium Authors)
FirewallRules: [{25928CB9-AD2E-413C-8805-193FBFFD6F17}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{E4A744F9-5AEB-479C-9960-49FE98A3CF73}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{CA190820-F4FF-4636-8211-EAC69C1C96EA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{787D09F5-A1BE-44C6-B7C8-5E987DFC7BEE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C055B2FC-A7EA-4F73-80F4-693E24817445}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{054C8761-28A5-46C0-9579-78ACD49EECD8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{7BF32182-E1E6-4D56-845F-B4914D65001F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C53B2362-8526-47D8-8092-4A213BD63A20}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{DE5C06FC-2CDE-4878-A7A5-4EC3D75CC3C1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F0D0CEB1-5780-4868-8B8C-312C4D62A3EC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A414992E-95F4-4C3F-A0A4-6523A6B8A876}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Surviving Mars\MarsSteam.exe (Haemimont Games)
FirewallRules: [{BF3659E6-40BD-400D-8D92-4A6EC929F43B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Surviving Mars\MarsSteam.exe (Haemimont Games)
FirewallRules: [{307A373B-2EB8-41F3-B26E-9BA1D140D892}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{85AD6EF8-B05F-4C6E-93A2-CC62F553C5A6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{642BC5C4-1F6F-4876-8568-466E22E66728}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Game Dev Tycoon\nw.exe ()
FirewallRules: [{81FCE11F-EE06-4C36-8ACB-2BA6CD725594}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Game Dev Tycoon\nw.exe ()
FirewallRules: [{8584FC95-2144-49D1-9D73-6171F7305B2B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{4A5B8A6B-916B-405B-9ECC-DCF4AE6D3467}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{9DA387D7-36BE-4EF1-9EF2-C2BC2D9D3EF2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{739A7C9F-D240-4AF1-AF3B-6019F0346818}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{EA37646E-77C2-44A9-8B0E-03CD53044F6A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{BA3A4056-EC29-4AA8-9061-6BAB3B04C93C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{CD42D317-EC73-4420-9947-EB0CBEDE7173}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe (BioWare)
FirewallRules: [{F1DB7314-1389-4094-B497-71DB25BF4637}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe (BioWare)
FirewallRules: [{B22033D0-34B5-43B9-85C3-949CA0DD9A26}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe (BioWare)
FirewallRules: [{5D3319F9-2A7A-44CC-AC60-4843023BB451}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe (BioWare)
FirewallRules: [{6357E413-10A8-4BBF-B15C-64E72E8AB32F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{25534AF3-878A-43F4-A545-2F6103154ADD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{3204C912-B040-4EE9-A4E6-8F49CA734D02}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kingdoms and Castles\KingdomsAndCastles.exe ()
FirewallRules: [{41C0377A-7236-4984-82E5-F19D365F296E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kingdoms and Castles\KingdomsAndCastles.exe ()
FirewallRules: [{D10DE1EE-5177-4A61-ADE8-60D9BC47A601}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Northgard\Northgard.exe ()
FirewallRules: [{1FF85492-63DF-42CE-A74A-317D8D618C08}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Northgard\Northgard.exe ()
FirewallRules: [{18D8D2F9-DED2-4F96-ABB9-573E3D194AE9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Jackbox Party Pack 2\The Jackbox Party Pack 2.exe ()
FirewallRules: [{872580DF-457C-4997-9512-798FD7C87070}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Jackbox Party Pack 2\The Jackbox Party Pack 2.exe ()
FirewallRules: [{F89D2AB8-885B-47C2-AD14-07CA857BA229}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age2HD\Launcher.exe (TODO: <Company name>)
FirewallRules: [{A932C7E8-761F-49D1-8AD7-22EF570EA648}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Age2HD\Launcher.exe (TODO: <Company name>)
FirewallRules: [{6CFEA3C7-2E88-4740-8DFE-0689728430AF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Besiege\Besiege.exe ()
FirewallRules: [{74C9B48A-8AC4-49B6-9276-DF2A6A3BD058}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Besiege\Besiege.exe ()
FirewallRules: [{A0035508-B605-4C5D-98DF-E4304A788D69}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8B1D3E16-73AE-4D6E-8EB9-70D6268DA672}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{6C1B306B-ACBC-4543-AA5B-E060DD5B7EFE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FF81D002-8514-40BB-87DA-D9497CCA6EDF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{688622A2-15FC-4F18-8455-5E8425DEF9F2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2E220969-D7CF-45ED-94BD-FF7602BA7D2D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{EBC1A7DF-D531-466D-BBA4-AECACE675E9D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F7ECB925-E8D4-4507-A771-BE04B76F05CA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{CFCC3EC3-38E9-4D0C-83CF-CD05091CB079}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{7A4A8B81-973F-4513-93A0-25897CE4D3BC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{102A0F85-9F4A-430D-9015-A0E46EC238EE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{96786C2C-DBFF-4A37-ABED-23BD121639A7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{24B99136-3638-42B7-A04E-E4FCAD560FA5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Poly Bridge\polybridge.exe ()
FirewallRules: [{3AD88AE5-ACAD-4657-81A1-8F7DA1302BB6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Poly Bridge\polybridge.exe ()
FirewallRules: [{1735296B-D33D-4BB9-B8F9-667BCDD2F534}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{42B7CD8A-71DA-49DF-BB99-7200DFD79F22}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D17D4F1F-123F-4FB5-A5EB-07F25843B352}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Town of Salem\TownOfSalem.exe ()
FirewallRules: [{ABDAA99A-7052-42BB-88C2-0D04FD7FEA09}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Town of Salem\TownOfSalem.exe ()
FirewallRules: [{45388BAB-2A30-47A2-B225-8BD9948992BD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{88963823-B4C6-42EF-BC95-8DAA08C35DAA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{22D83D90-D7C4-46AE-8CA2-C4130B5B97FE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{3636F2BB-D120-4029-9E35-380A56949897}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{33C6A3F9-AA79-445E-B31D-9A724E233D41}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tavern Tycoon\TavernTycoon.exe ()
FirewallRules: [{CA0DD489-AC44-412B-A181-E96CD48711F0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tavern Tycoon\TavernTycoon.exe ()
FirewallRules: [{375B4DA0-A865-46A4-8238-B58402F8D3DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B5486CB1-1D3E-47B9-8A58-52DC56499D52}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8B157C33-0B2D-47F3-A435-6E2AB0B3C17E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C2121397-1C1C-4DFB-80F1-9D6452CE3F51}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F1664B6F-857E-4F28-A98E-53777545103B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{20834BD1-D862-4A72-8307-B266A6E76471}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{212954F5-D4AC-434E-A05D-BB266B27DCE3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{28E270A4-3021-4C02-AC13-E68C80BD814A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D1C7787C-7D46-42B9-8CA0-E033299273D9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{DF8BF926-4A7C-44D1-A294-DA6AD43B17B1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FE993968-EEEF-47F8-9A42-6F80F239A397}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C1E01B67-DD21-441B-8A20-C70C42BB37C6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{AE7B7A91-E928-4434-9853-A7E0258E33C7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{DD39A01B-6DCA-42DC-BAB8-A1D7518E6EB8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C8309798-6F89-4A75-81F2-14F1C737D615}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Holy Potatoes! A Weapon Shop!\HPAWS.exe ()
FirewallRules: [{74D8D68E-4566-4A2A-B2C0-408CE277345E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Holy Potatoes! A Weapon Shop!\HPAWS.exe ()
FirewallRules: [{35B26F5E-A407-4611-976D-0F6684211B0B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Holy Potatoes! We're in Space!\HPWIS.exe ()
FirewallRules: [{74554441-FF5B-4E1C-A612-C996DBC162F1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Holy Potatoes! We're in Space!\HPWIS.exe ()
FirewallRules: [{1F2572C1-AA26-4BC3-B7C3-5F466338159E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{57F5234C-DEE5-4AB3-9E88-1D6F998C18E7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B2E6973A-6966-408D-9C08-0EF393F9EB6B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A0064337-EED6-465D-9B10-E27F1AF551E9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D06F6C76-BCBB-4398-8012-D0B486204DFB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{49BBCA5E-9675-47B2-8698-E584C23C72AD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B1EF6635-3375-4420-A514-AD7557503556}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{5649B25A-7B75-4B50-BF44-53AF9C3E8A1C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{67345AD2-3539-41C5-B6B8-56E3CF54D361}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{56FC07CE-87A3-4B85-89C5-80F87BC6B485}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F24B2F7D-07C9-4995-86F1-0E3E925C5CCC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{7117F1C5-5CE0-4B50-B75C-DDD7AD2D3B91}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{48859DD6-077B-4873-BEB0-CBC43D8CE783}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{16E919B7-64C9-45A3-9CC3-697321E33FCF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8EAEDB0E-787C-4C26-A95A-A5CF00275928}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CraftTheWorld\CraftWorld.exe ()
FirewallRules: [{5BC30B26-0CCA-41B6-A9DD-C352662709F8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CraftTheWorld\CraftWorld.exe ()
FirewallRules: [{D7F84F40-4F4C-40C0-9935-79030ED0FC88}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{5AD8A2C9-F1DA-414D-B88F-E1EEA3BE53E9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{09FBD17B-45CC-4179-9BF4-D8EE688A5665}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{0CCB84FB-9763-4E2D-A2CB-45F580B16BDC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2381BEE9-9151-4B41-A27D-561DDB73729F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{EFFF5210-4897-4134-8283-2F1C0675C114}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B7A362B0-FD3F-4C06-BEE6-15D19E5B7A05}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A5A1AECB-09CA-44C9-96C6-E34387BB0038}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{83FA56D5-B860-43DA-9A82-56CDC04B8689}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{5A59B2FC-8300-4FF1-9FF9-5702E62072A1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{79684956-F7B6-4810-A184-9E80B235D5F6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{30CBC24D-E9CE-4692-9387-94E8373985CC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{25CAF347-87B0-4E5C-AC6F-6EB7AAEF22DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{0D730145-0EBF-4F85-B421-03923C0D2933}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A79387B9-9BB5-45C3-A5EF-435BD7166E60}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{617BDF0A-FB4A-4AD1-BEDC-0A29AA3B1519}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F776840F-E12E-4BD8-8C13-DEA66DB9B57D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\60 Seconds!\60Seconds.exe ()
FirewallRules: [{30FAC735-7AB4-49DA-88B3-5C5BBA2FCCBE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\60 Seconds!\60Seconds.exe ()
FirewallRules: [{42DE02A7-D97E-425F-A9BA-FD152BA127DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe (ConcernedApe)
FirewallRules: [{FECBC2BC-439B-464D-A8D7-AF2D536DFC4B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe (ConcernedApe)
FirewallRules: [{E37EA6E7-CA31-4892-9BAE-91413E42833C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{4B671C58-FE2A-44CF-B52E-7A21FFFBA6F4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{5B825109-09A5-40B3-A0F2-BB37FFF72CA5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{29DEE354-D7F3-423B-AC6E-E7A19C44DC99}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{9B77AA7B-93DF-490D-B4AB-CB2B688C26D7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{EE9EA67D-DD16-4098-938C-C595E373898F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{0A5843CA-1593-47F4-AF14-5FB9296270A1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{373E78CD-E2AA-4A77-B1EF-C32910567800}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{43C998F8-6E9F-40FE-8A0D-A0555167B9B7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{97B4EBBC-7826-4D6C-BF7E-5C2A48143B9A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B5F9C2FA-0066-44B0-BA6C-E3A21694C216}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B1936BE1-C6E4-49CA-B6A5-B79B212FF3B0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{3B296F0C-1B1C-40D8-8D16-8E2848098A1C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8C889A81-8CDC-4990-BE35-FFE581BA1A0C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{91B626F7-62B2-4347-BFF1-C55E15366B1C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{E6E98C3D-F228-4C7B-BC4B-CE70386AD2F9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FAD70B6D-E161-4C62-AA44-C3E5CCFAE73A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{5AA034C6-2252-4F59-A6A0-DFC93D244933}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{99299D16-CD88-4E2E-BD39-81C4C89FE496}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{E9CDC0F5-5714-4425-8A4C-447FCA1FEE8B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{CE42E185-DC59-4663-87C4-ACBCA3A77963}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B9271747-EA8E-423B-B5CE-EC3D45F3E5BD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{42DD49B6-DD8F-4886-A048-B65F11EB30F7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{76DFCEC7-CAAA-4E93-8EE1-2837AB583A8A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{68D52182-1999-4097-8013-18121BB6155D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{558E67EF-E634-429B-BD58-918C4E812B14}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{0300BDB5-99C3-4EDB-ABCD-D9250039A085}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D98C258F-AA7A-4DBF-98C2-BECCC8B09FE1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A8BDF9AF-85C6-4BCD-B4D6-AE2C9134CF3B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2E7C4D38-3E25-4548-8BEA-3D6FB98D809F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{3F66BA07-873D-4DF5-97F6-62C1B9FACF41}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe ()
FirewallRules: [{0E65034A-5433-4852-A07B-8235A18400FF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe ()
FirewallRules: [{E5D5005F-3B60-4D03-9084-CD0C73FA7C6D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A5F71BF4-25A9-4755-ACEF-F49FAD05E877}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{28E82A8B-B976-4C3B-BB5E-731DCA025E67}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{3C1CF36D-EA14-4C75-9467-091C780A20E5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8E995159-182E-4A4C-AE44-6FB730809411}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8A58BFA9-D2B2-4F74-B02B-CFF7CE1B4B97}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{85C81D24-BA2F-4CEA-BA26-F94E1337C844}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{CBC8DFA2-1674-4C2B-8D00-D6FA88B13D8C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{935C4C7A-3998-46EC-A99D-0B1B862541A7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{320992EF-B5E3-4B8D-9BD2-B983F8DD2C7E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B7E9C315-AD8D-422D-B957-49CD9C26C3CD}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation)
FirewallRules: [{7C85059F-4F2C-496A-9B4F-F1EFE6D45D85}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation)
FirewallRules: [{C4C2C6B2-74E3-474A-865F-8646EDBB553D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{98EC1319-6F75-4167-8A86-5456D69F0A1F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{504A9FBE-B625-49B8-A579-EC9B8441A795}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Oblivion\OblivionLauncher.exe (Bethesda Softworks)
FirewallRules: [{9F811048-9ED2-4D21-8130-ECB768B6DD13}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Oblivion\OblivionLauncher.exe (Bethesda Softworks)
FirewallRules: [{C4C0F1F7-5E9C-408F-AB45-C535B9944147}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe ()
FirewallRules: [{41C414F3-62B9-4C86-99C7-20D45DDE0E7C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe ()
FirewallRules: [{9A731C22-7DCB-4CCE-A98E-AFFBC898DD7C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{29B10BD2-4FB0-4E68-B70C-3A5CBBF5C8BC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8AB67B81-5124-4976-B599-4255689D69FA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C3883DC6-1E4F-4D23-8BBC-5883D8BB77B6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B3C19B72-B4A7-4C81-9ED0-AA3C9CF2B075}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RailWorks\RailWorks.exe ()
FirewallRules: [{B5F16C27-CD39-456B-A4CF-8D08823AE318}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RailWorks\RailWorks.exe ()
FirewallRules: [{FE2797DB-8C68-4496-86DB-0F0EBC529984}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Star Wars Battlefront II\GameData\BattlefrontII.exe ()
FirewallRules: [{D2FFB983-E669-45AF-8F24-EB87F715AB23}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Star Wars Battlefront II\GameData\BattlefrontII.exe ()
FirewallRules: [{96329E41-DE38-4F21-80C0-AC2C48FE0879}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SpaceEngineers\Bin64\SpaceEngineers.exe (Keen Software House)
FirewallRules: [{FD06CCA2-FA5E-48AA-9D56-F11FBBE6B22C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SpaceEngineers\Bin64\SpaceEngineers.exe (Keen Software House)
FirewallRules: [{EFAFF20D-6FC0-45E0-9413-6667189BD0DD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe (Bethesda Softworks)
FirewallRules: [{D213BFF0-9EB0-4DD9-B947-7FEC5ABD85A8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe (Bethesda Softworks)
FirewallRules: [{F8C08D5A-7258-4D61-8BFA-DD17FBCA844E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SpaceEmpiresV\SE5\SE5.exe (Malfador Machinations)
FirewallRules: [{DA142B3A-CACA-4C67-8926-84940B371284}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SpaceEmpiresV\SE5\SE5.exe (Malfador Machinations)
FirewallRules: [{B26597BD-D44E-4102-88BC-DC7A0851C860}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe ()
FirewallRules: [{95090949-0CFF-497F-AF49-D63CEABB1BD3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe ()
FirewallRules: [{D7FD6266-9C4C-4414-A2CE-C2912DB60707}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe ()
FirewallRules: [{35200795-F116-4EB7-B9A3-F0ABC0AF3FB9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8184F5C5-04E5-448C-AB72-E99628D2CD90}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{4901D114-D1C7-441B-BBB4-7D5110CC52E5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{737E63F8-106D-403F-9C98-FDDE9BD46BB3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D38E2437-FB48-47CA-B7EC-03F43A9E6A98}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Factorio\bin\x64\factorio.exe (Wube Software)
FirewallRules: [{8BF535D4-B58E-4EBB-B9DB-C14D2D2345A1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Factorio\bin\x64\factorio.exe (Wube Software)
FirewallRules: [{15FEEBD7-FCE9-4F45-9ACF-04C6E3497E45}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{332F4053-218B-4D6C-94A9-E773A9733463}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{0241FB20-F10F-459A-9242-FA26DBD71808}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stellaris\stellaris.exe (Paradox Interactive)
FirewallRules: [{AED36333-0BD2-4CD9-91A7-36B3C13C70AC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stellaris\stellaris.exe (Paradox Interactive)
FirewallRules: [{64FECDAD-E056-4189-BE3D-CBC188FB8BA0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{39BC47BC-4B9C-448F-BEF3-5AA835350568}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{E53EA080-217B-43DF-A5D1-DBBA409D31E8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{87FF7539-9768-4A82-80C3-454337153287}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FBF1819D-E1AA-4293-B944-53B8FF51FA5B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{53AE528B-F984-46EC-B4BA-F3FAD8ADB063}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{6C1D6EB7-68D5-4688-B3C9-EB146D97B24A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{44BF904A-F524-407D-B2B8-B216E46019BE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{DBDB1ACE-DDE3-42C5-B808-07BCD251EA9D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{9A52F394-F7DC-434A-9EEC-857CFCB8241A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{7CA8B46A-E3C1-403E-B660-D5F27AFDA96C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D4D2A627-F825-4838-B49C-A1D1B3F89549}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{67AF08DC-5A35-4778-AFAB-0D929D6B9459}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2A8C0C73-B887-4349-8496-E51C9367EC3C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F723C360-F6CF-4EE5-815B-F2299657F457}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{DED1A08C-E32B-4C42-BE5F-6682C79C7EF8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2C9A1927-5A21-4F72-8E30-0E3BBC9A0A88}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{9052BEF9-6FF4-4086-B357-72A2009F78FB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A47390FB-ADB2-42D4-AD71-85E2C3915746}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{BDE8A0AA-6B49-4E2E-B718-FE4150D4A01D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2EE2BA93-5648-47C6-8BDC-98BEC9776DF5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{DB4CCB56-6509-48F0-8951-689BAFFD8C30}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{EABEB767-4384-4539-8F7A-AF0314191319}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{7905AA02-E384-4706-BACF-1C1003C18F61}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FEA0F5EF-35BC-418A-ADFB-0C253FF44D5D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI.exe (Firaxis Games)
FirewallRules: [{95A9E59F-1165-4DC3-A8A2-D0E9D384D104}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI.exe (Firaxis Games)
FirewallRules: [{5C5D8219-FFDA-47BD-B1C0-BA44912EEE34}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI_DX12.exe (Firaxis Games)
FirewallRules: [{11FA9922-E965-4E2B-B76F-7A8C73469895}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI_DX12.exe (Firaxis Games)
FirewallRules: [{9D71AF0F-8F0C-4571-B487-81338C161877}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{48B97D18-3DBA-44F2-85D1-7C9D9877ACDD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FA7BC545-3198-4933-8C90-FB49675A2BAF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F682D076-964E-43C3-9E52-830B564CFF58}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D47653CD-4710-4E0C-B650-37800D7EEAD8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{08BBE2BF-A820-4AB4-B7B8-6892FA7FCFF8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{60DEF6C2-40CE-42B6-97F2-50022BC43417}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8B2E6F25-89E1-4135-972F-C8BF4D715A9D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{BC7DEAE4-305B-45C8-8F95-7F07D6EBFD61}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{133C59D7-A528-48E4-A41C-E88666A41EE4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{13171A0D-C35A-4DFB-A888-545F266A75A5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F4F3B379-F145-4221-92E2-19413AA7A11C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B0937E2F-5EBC-4D74-91E2-E193F9553D0C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2BE63DD4-F132-4590-BEE1-8B1F935C0177}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{1C636370-9393-4F42-85D9-F969FA1E4CF7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win32\HirezBridge.exe (Microsoft)
FirewallRules: [{19A55577-37CE-4A7E-8445-21A327BAF7B3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win32\HirezBridge.exe (Microsoft)
FirewallRules: [{ACC371B9-8E34-4B4B-9B1B-286064D6B3E4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F47ADB93-4BBE-478F-AA15-4F5B06BAE912}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8850DD54-0E2D-4878-A413-60571A9C041C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{42C3E1EF-8144-4ADE-BD6C-7D76B4AD879B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{5A384BA2-E202-4979-8E0F-12A385F7225E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{4DB64C63-3EC2-43A0-BF14-AB1F651FE5D9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2DC65B30-32DA-4C0F-B20B-B8F83B276D69}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{33C80575-5011-47C9-B7E2-09717F89B70D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{CFC3B83C-A213-4CBC-9785-BA0669C9ADF8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{E9C705DE-A74B-4B1F-9DE1-C33D0535FC99}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{DC14A9EE-D702-4C46-A5FF-FD60E5F9326B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{91C396F9-593D-4D26-A8FF-0D34332D66FE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B9F590E9-5411-4A4A-8FB8-C271EE9CA7B3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{0B4CF5E3-F669-4487-BBA4-F602DF57F684}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B0D5A17A-C8DA-401C-B9CC-4476717F6327}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{BCA42A44-6166-406E-A441-62CE74AC6014}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{922F9FD1-9BB2-4670-B0F3-4821F9DA6D19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F520B3B6-27B9-42D7-9196-B2CEF4829072}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{26A7975C-3853-4286-8317-10DF4DA37415}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{50BCDF3A-AC64-4C7A-BA32-13CD6C32FB55}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{85D85F99-4C8D-40F8-A07C-06CA81283258}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{4ABCA8A2-2FF8-4245-BB18-8E2338CCFE08}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{272D2467-F717-4550-BBD6-F9AFC04796E2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{48F9762D-8D57-4198-B76D-C0EE9E746D7F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{45884561-772E-48BF-9EF2-42DD55B00EBD}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corporation)
FirewallRules: [{B5AD2CE1-D1FD-4A3D-9D62-46700104C04B}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corporation)
FirewallRules: [{B7E35E32-32E2-4316-B70F-41304E71E78D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{9FFCDB8E-80CC-4185-9F0D-44E2F12BB9EE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{891A6E39-B8ED-4F69-9110-8FE1A96A2232}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{6EC09374-B984-40EC-B13B-FB9A801844D7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{BFD7A849-8860-441F-9C1B-33B974F5EB74}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B6BA794F-D3EF-437D-83BF-5326C2BF2A8B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{3413EDC0-AB1F-4AF7-A1CC-21E9DBD6FE98}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation)
FirewallRules: [{28639CA4-C826-4A5E-8BE1-F1415F521117}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation)
FirewallRules: [{54616364-9F1C-4496-974E-511438DBA6DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{ACFB5064-19B0-45E8-9A2F-34C3CC47E6C3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{0CC6A86C-9F1B-4AF8-AD94-6B092918E241}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{57FC85A2-94DC-4760-9B94-1AF7CE5E6287}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{5E2D83B1-ABE7-488B-AFA0-512C0BBD7EB6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A21C0DE8-C4D9-47F1-ABD0-71ED4E8421A5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F6FE1002-747A-4424-A0BA-2F94F80F3F11}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kerbal Space Program\KSP_x64.exe ()
FirewallRules: [{49D969E9-A119-4C77-ADAD-6B4C7FB380DF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Kerbal Space Program\KSP_x64.exe ()
FirewallRules: [{57571106-02CB-4D67-B32A-F0CC58158701}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FAAFC2F3-45D8-4C40-AB37-AC4C095B74F9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C0F19DB5-7815-4863-8D9D-11BFB438194A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{83C45693-20A3-4D44-BE5C-EA294D3CC934}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{7AF844EB-4333-4E87-B459-D2D0C59DA42D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F6166402-8182-43B5-8ED8-977E6794C1D5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C3129613-0005-43BB-ACF6-7B483C92F562}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{75854770-EC87-4D54-AEA7-1371013A84B1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{9C848931-76E5-41A4-BA14-94E7A8325970}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{6AD9823E-BA04-41B8-8AA9-CA6C254A0F52}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{575F17A0-0245-4377-98BC-8EFE8F54599C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{24328895-DC5A-4E72-97FC-88C3A7AEFF24}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D53F5685-6BA5-4932-86ED-31515A5B37C1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{BA2DF6EF-31AB-41E0-8B94-E2A503D289BC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FFF9BB47-21D2-4A48-81B6-D2872F8AF062}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{81EF8074-B582-4AEA-90A0-4DC89B003651}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{4F9B59B3-FCFF-46A1-947C-0DF5177DC707}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{7FCBC07B-A17C-4BC6-AACE-7D7985DA1519}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A8A22344-EB9A-473A-944A-2649A3D57DDB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{E3BAF962-0C5D-4A70-82B2-FD732C39D353}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FA73E1E6-7802-4C3C-BD7A-798A95D010E5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{69512C20-B6BB-4731-B395-92F3BB78A5E2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{82B9DDAD-1572-43E0-91CC-3A038001DF06}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TPH\TPH.exe ()
FirewallRules: [{FF871158-F372-40B9-BF27-79BB134D89AB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TPH\TPH.exe ()
FirewallRules: [{99D5C26C-152E-4A26-AB0F-0DE6C85D0709}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{1AD00345-71F2-4914-9CD2-D1AD962DC90D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{7A0FA7FC-32B4-4BD2-AB15-82E86E72382B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{10C72726-C5FC-48B9-A381-40C28C8BEFC8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{0EE32997-60CE-40F8-9B90-DAAC5087F70D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2BC148C2-7D7C-4598-8BFF-BBF843926419}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{93570598-FD12-48B0-BF86-17E0B50FFAFB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{64CA829C-4517-4C53-8DEA-76D5D3FFB2AC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2D792E1C-316A-4602-8CE3-BA4F0A6CB223}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A3C72C7A-1C12-42B7-BCFE-5C5A40EE144F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{58EEBD46-A562-4F05-A4D6-AA1EF4256939}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{67F5E547-E72A-41E7-8C4E-7400ABBD5E64}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C60D1EF7-1167-4479-A748-38731975015D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2E8A8F78-930D-4FD8-A907-52A07E963C61}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{7925E6B8-BCFF-428B-BE3F-F1DC4AC966CB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{955F604F-5CB3-4437-8B6D-7404EA502FF2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C809F7B4-76BC-4883-AF8F-5959F5F251C0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{69693446-0220-4FFA-89C4-59E0584D22FD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{7C288EB6-C2AF-4E7D-8FA3-FE472FDB70DB}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation)
FirewallRules: [{C5F5D5A1-982B-4113-8AB1-8BAFFB2F887B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D2FF8829-45F2-4BCC-BA1E-D988D87D2ABB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{0CEBA27B-A1A6-4509-964E-B3F9A39FD2B3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{79BF2E37-672F-489F-B14F-A314E88051BE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D9C31A0C-F6F8-4ECF-ABA9-D95BD8E5A232}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FD07BFCE-EE53-4F88-AE1C-5A44888487AE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{880AB95B-913A-4C70-A336-F0861EC953C6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D1E6A77F-898D-4099-9D03-10C8E2840A94}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{BEE94B37-5F9E-4887-840E-4715A9345AD2}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation)
FirewallRules: [{B5980BF5-14C7-4EEF-B166-31C59A81A7E7}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation)
FirewallRules: [{253EACDC-F488-485A-9C59-B933A462C85A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{53575DB1-6145-4AF8-863B-4BE5AEE560C3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{76DC7918-1683-489B-A672-2926CD75F623}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{994D3D39-BE55-4525-92FE-EF379AAE1391}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C0DC2CDA-0205-4CD9-BE68-4FAD4ABCCE3F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{79C33BB4-5E48-49E1-9AC0-D7C0206129DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D09E39D3-926C-4055-865C-E2C5A858FF71}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{B6A41A99-DCE6-42CE-87AE-68F64E58A104}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{C5B97F25-C892-4221-A9A9-F83609C2191B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{8B26943C-3E27-4B82-864F-693E8DAB1CA9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{DE8CE76B-3F8C-4FA1-B933-74CA1F1B85F0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{EC664069-16AB-4F2D-8E6E-8C3ABDDE3D7C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{2F10ACDB-0629-49C1-B9BB-C6FDA241B2B9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{05423CFC-7B2F-4F3A-91B3-E67AF8118B64}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{80B11541-6675-48D7-9959-170D8AE6BDA5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RailWorks\RailWorks64.exe ()
FirewallRules: [{B28581FC-69DD-41B4-A319-4444E14EB8A6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RailWorks\RailWorks64.exe ()
FirewallRules: [{CC4AD28C-70B9-40A0-BFA8-1E0E911055AA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{D1275D6D-3ACB-4913-B5E0-205CD265DDBB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{AFBD0AE6-4779-43D1-8383-39D2D54FAC19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{37D33EDB-3F60-4A3F-98BD-9E9912C5AEDA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{A13CE41F-3189-44C3-8BE9-28DA3F0FDA0D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe (Robot Entertainment)
FirewallRules: [{FD293FD8-F147-4887-AF94-6C68BBC01B10}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Orcs Must Die 2\build\release\OrcsMustDie2.exe (Robot Entertainment)
FirewallRules: [{0E44CAEF-CFF9-4A42-8233-F2AEE52AE57B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Use Your Words\uyw.exe ()
FirewallRules: [{6AD3EAA7-7A38-4D4B-B563-778772345CC5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Use Your Words\uyw.exe ()
FirewallRules: [{94CE779D-6814-4BBF-A894-FCC2528862B8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation)
FirewallRules: [{4B4D1F85-39BA-475A-90C8-7EDE7F69F6C3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation)
FirewallRules: [{04A5851B-4B8F-47DB-856C-A3260EAF3A65}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation)
FirewallRules: [{AA1252CE-D853-43FD-B29F-58F57544C960}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation)
FirewallRules: [{82DF2937-4F0D-46EB-B669-BD5E5E9D3BE4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation)
FirewallRules: [{B1ED6CE3-69AD-47B7-9678-11926C69BEF9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation)
FirewallRules: [{407A9B4D-6FF6-4D27-B829-6658EABB0EB4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{6C312BE8-FFE4-4275-BB8E-E20584D1EA9A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{CF3FAE6E-FA2A-411F-98CD-DF17B2A12153}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{00863379-21B1-44A2-A708-344CD7AE1C05}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{9BE15517-3DEE-47A8-AE6F-A82CE1555A4D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{92851379-F0CE-4482-A8AB-22D1EC0E2037}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{5CB77E78-5C0B-4A72-895B-04B780D02749}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win64\SmiteEAC.exe (EasyAntiCheat Ltd)
FirewallRules: [{7DFF2146-828A-4E64-9EE6-8B32BBA83419}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win64\SmiteEAC.exe (EasyAntiCheat Ltd)
FirewallRules: [{D5C1FFC4-F446-452E-B65B-D1E241F894F7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{6B569823-C321-4233-B736-454DEF3B0EBA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{53CF73FC-0C8D-4634-83ED-D946D0F89D70}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win32\SmiteEAC.exe (EasyAntiCheat Ltd)
FirewallRules: [{EE0E12AB-10D1-4D36-A9B4-A15CE1292B0A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SMITE\Binaries\Win32\SmiteEAC.exe (EasyAntiCheat Ltd)
FirewallRules: [{920DBC66-C5FB-4AE3-823B-AC7277584158}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{266252ED-E5D5-478A-AF54-3C1FF643A3AE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{57596BF1-E967-4A56-AA9E-CE536606095E}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (AVAST Software)
FirewallRules: [{DD792584-7914-4534-ABB7-634C8F8B7EA1}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (AVAST Software)
FirewallRules: [{0EF63021-C1E3-4523-B540-6051C04E6AE6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{FF37021F-9A6F-4528-B019-2BAED40EB13F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{39B57A76-E939-4914-A569-16065DB7380C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{143ECB4C-133E-42FC-A698-544E48A3600E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{BD73B125-0DAC-4595-9A42-E139893A892C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\LaunchPad\LaunchPad.exe ()
FirewallRules: [{65EC4750-E14C-4943-889C-E37EE797E75C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\LaunchPad\LaunchPad.exe ()
FirewallRules: [{62403600-65E1-4509-A0CB-B9D95A84D37D}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12092.6.37131.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc.)
FirewallRules: [{BD7C2CDF-CFAB-4F87-BE43-11BB2E559E5D}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12092.6.37131.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc.)
FirewallRules: [{93F82980-857D-4524-816D-795FC1E4374B}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12092.6.37131.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc.)
FirewallRules: [{BCECEE7E-AB40-482A-B160-562A79FC99E1}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12092.6.37131.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc.)
FirewallRules: [{71EC9647-638A-493F-AD50-89B5C4BF9978}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12092.6.37131.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc.)
FirewallRules: [{6237EB9E-8F52-4B81-A88C-F8D303722BC3}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12092.6.37131.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc.)
FirewallRules: [{8ED692E3-10AA-4BE8-A64C-2C12531E4913}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12092.6.37131.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc.)
FirewallRules: [{4F8E6530-1309-4580-B80B-FDFF20019512}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12092.6.37131.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc.)
FirewallRules: [{CAE2EFF6-1FA4-4758-9FD8-DCD4FBAF36EA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{BB59ECBD-E1AD-4665-A2AC-5A130B1C321C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{1DBCDCE6-6500-4E8F-A920-2FD34D999C1A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{842F9379-925A-4416-9F10-806769E604A5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{36C78C45-B16C-4B7B-8351-EA92F9021026}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
FirewallRules: [{32562113-DB6B-42F0-BC79-B171CFB04955}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Eco\Eco.exe ()
FirewallRules: [{DFA7F619-2AB3-48DD-94C3-A7A788C2ADAC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Eco\Eco.exe ()
FirewallRules: [{826E58E6-1FD4-43AF-A9C1-BB60925C728D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{69323C3A-F006-4EC6-9FF8-85A3704D0ECA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{1575B3FE-D86A-4386-A199-44D058EA0A50}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization V\LaunchPad\LaunchPad.exe ()
FirewallRules: [{CF81E176-2A44-48D2-A1E3-76526FA3F071}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization V\LaunchPad\LaunchPad.exe ()
FirewallRules: [{17A871F8-0C47-4D99-945E-2D0E8AE14D47}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{F09AD687-3E96-488E-A71D-642BD375C60F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ()
FirewallRules: [{6C0C7F83-26D1-4E3F-9CB2-2761EDE767B7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CraftTheWorld\Editor.exe ()
FirewallRules: [{0CC8E1C5-A6E9-4BC2-990D-743F21EDE409}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CraftTheWorld\Editor.exe ()
FirewallRules: [{09365EE2-A829-4A72-8214-65720FA4B4FD}] => (Allow) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc.)
 
==================== Restore Points =========================
 
17-12-2018 23:15:24 Windows Update
27-12-2018 22:38:55 SupportAssist_d8868e5d-89f3-4aba-9aea-c6da80bc330e
02-01-2019 13:53:41 Removed Dropbox 20 GB
02-01-2019 13:57:22 Removed Intel® Security Assist
04-01-2019 13:12:33 Installed MindView 7.0
04-01-2019 21:52:12 O&O ShutUp10
 
==================== Faulty Device Manager Devices =============
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (01/06/2019 12:31:06 AM) (Source: MsiInstaller) (EventID: 11316) (User: NT AUTHORITY)
Description: Product: Google Update Helper -- Error 1316. The specified account already exists.
 
Error: (01/06/2019 12:29:40 AM) (Source: SideBySide) (EventID: 59) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Dell Update\DellUpService.exe".Error in manifest or policy file "C:\Program Files (x86)\Dell Update\DellUpService.exe.Config" on line 0.
Invalid Xml syntax.
 
Error: (01/06/2019 12:25:25 AM) (Source: DPTF) (EventID: 256) (User: )
Description: Intel® Dynamic Platform and Thermal Framework : ESIF(8.2.10900.330) TYPE: ERROR MODULE: DPTF TIME 33320 ms
 
DPTF Build Version:  8.2.10900.330
DPTF Build Date:  May 16 2016 11:32:37
Source File:  ..\..\..\Sources\Manager\WIPolicyActiveRelationshipTableChanged.cpp @ line 52
Executing Function:  WIPolicyActiveRelationshipTableChanged::execute
Message:  Unhandled exception caught during execution of work item
Framework Event:  PolicyActiveRelationshipTableChanged [44]
Policy:  Active Policy [0]
Exception Function:  Policy::executePolicyActiveRelationshipTableChanged
Exception Text:  
 
DPTF Build Version:  8.2.10900.330
DPTF Build Date:  May 16 2016 11:32:37
Source File:  ..\..\..\Sources\Manager\EsifServices.cpp @ line 457
Executing Function:  EsifServices::primitiveExecuteGet
Message:  Error returned from ESIF services interface function call
Participant:  NoParticipant
Domain:  NoDomain
ESIF Primitive:  GET_ACTIVE_RELATIONSHIP_TABLE [89]
ESIF Instance:  255
ESIF Return Code:  ESIF_E_UNSUPPORTED_ACTION_TYPE [1202]
 
Error: (01/06/2019 12:25:25 AM) (Source: DPTF) (EventID: 256) (User: )
Description: Intel® Dynamic Platform and Thermal Framework : ESIF(8.2.10900.330) TYPE: ERROR MODULE: DPTF TIME 33315 ms
 
DPTF Build Version:  8.2.10900.330
DPTF Build Date:  May 16 2016 11:32:37
Source File:  ..\..\..\Sources\Manager\WIPolicyActiveRelationshipTableChanged.cpp @ line 52
Executing Function:  WIPolicyActiveRelationshipTableChanged::execute
Message:  Unhandled exception caught during execution of work item
Framework Event:  PolicyActiveRelationshipTableChanged [44]
Policy:  Active Policy [0]
Exception Function:  Policy::executePolicyActiveRelationshipTableChanged
Exception Text:  
 
DPTF Build Version:  8.2.10900.330
DPTF Build Date:  May 16 2016 11:32:37
Source File:  ..\..\..\Sources\Manager\EsifServices.cpp @ line 457
Executing Function:  EsifServices::primitiveExecuteGet
Message:  Error returned from ESIF services interface function call
Participant:  NoParticipant
Domain:  NoDomain
ESIF Primitive:  GET_ACTIVE_RELATIONSHIP_TABLE [89]
ESIF Instance:  255
ESIF Return Code:  ESIF_E_UNSUPPORTED_ACTION_TYPE [1202]
 
Error: (01/06/2019 12:25:25 AM) (Source: DPTF) (EventID: 256) (User: )
Description: Intel® Dynamic Platform and Thermal Framework : ESIF(8.2.10900.330) TYPE: ERROR MODULE: DPTF TIME 32880 ms
 
DPTF Build Version:  8.2.10900.330
DPTF Build Date:  May 16 2016 11:32:37
Source File:  ..\..\..\Sources\Manager\WIPolicyActiveRelationshipTableChanged.cpp @ line 52
Executing Function:  WIPolicyActiveRelationshipTableChanged::execute
Message:  Unhandled exception caught during execution of work item
Framework Event:  PolicyActiveRelationshipTableChanged [44]
Policy:  Active Policy [0]
Exception Function:  Policy::executePolicyActiveRelationshipTableChanged
Exception Text:  
 
DPTF Build Version:  8.2.10900.330
DPTF Build Date:  May 16 2016 11:32:37
Source File:  ..\..\..\Sources\Manager\EsifServices.cpp @ line 457
Executing Function:  EsifServices::primitiveExecuteGet
Message:  Error returned from ESIF services interface function call
Participant:  NoParticipant
Domain:  NoDomain
ESIF Primitive:  GET_ACTIVE_RELATIONSHIP_TABLE [89]
ESIF Instance:  255
ESIF Return Code:  ESIF_E_UNSUPPORTED_ACTION_TYPE [1202]
 
 
System errors:
=============
Error: (01/06/2019 12:29:40 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Dell Update Service service failed to start due to the following error: 
The application has failed to start because its side-by-side configuration is incorrect. Please see the application event log or use the command-line sxstrace.exe tool for more detail.
 
Error: (01/06/2019 12:27:03 AM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-84H6AVC)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 and APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 to the user DESKTOP-84H6AVC\dan31 SID (S-1-5-21-50118766-877759180-1359360943-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (01/06/2019 12:26:46 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Origin Web Helper Service service failed to start due to the following error: 
The service did not respond to the start or control request in a timely fashion.
 
Error: (01/06/2019 12:26:46 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (60000 milliseconds) while waiting for the Origin Web Helper Service service to connect.
 
Error: (01/06/2019 12:26:10 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (01/06/2019 12:26:10 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 and APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
Error: (01/06/2019 12:26:05 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 and APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 to the user NT AUTHORITY\LOCAL SERVICE SID (S-1-5-19) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
 
 
==================== Memory info =========================== 
 
Processor: Intel® Core™ i7-6700HQ CPU @ 2.60GHz
Percentage of memory in use: 46%
Total physical RAM: 8064.96 MB
Available physical RAM: 4293.43 MB
Total Virtual: 13440.96 MB
Available Virtual: 8922.78 MB
 
==================== Drives ================================
 
Drive c: (OS) (Fixed) (Total:918.51 GB) (Free:571.18 GB) NTFS
 
\\?\Volume{7ef1e1f8-ec7c-4bca-a503-b945bfdda851}\ () (Fixed) (Total:0.83 GB) (Free:0.45 GB) NTFS
\\?\Volume{f63abb0e-f9e6-4ad0-9723-6c3ecb9e096e}\ (Image) (Fixed) (Total:11.56 GB) (Free:0.62 GB) NTFS
\\?\Volume{b7615190-e819-4947-b561-b4cb7f83b049}\ (ESP) (Fixed) (Total:0.48 GB) (Free:0.45 GB) FAT32
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: CF8F55DC)
 
Partition: GPT.
 
==================== End of Addition.txt ============================

  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP