Untitled
unknown
plain_text
4 days ago
232 kB
8
No Index
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-03-2026
Ran by Benjamin (administrator) on LUCONSPC (ASUS System Product Name) (15-03-2026 18:07:24)
Running from C:\Users\Benjamin\Downloads\FRST64.exe
Loaded Profiles: Benjamin & OVRLibraryService
Platform: Microsoft Windows 10 Home Version 22H2 19045.6466 (X64) Language: English (United States)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnapp.exe
(C:\Games2\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Games2\bin\cef\cef.win64\steamwebhelper.exe <8>
(C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\SwAgent\ArmourySwAgent.exe
(C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ->) (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(C:\Program Files (x86)\EPSON Software\PMA_A\PMAService.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\EPSON Software\PMA_A\PMA.exe
(C:\Program Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.Service.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.UserSessionHelper.exe
(C:\Program Files\Bitdefender Agent\ProductAgentService.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\27.1.1.28\DiscoverySrv.exe
(C:\Program Files\Bitdefender\Bitdefender Security App\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security App\bdagent.exe
(C:\Program Files\Bitdefender\Bitdefender Security App\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security App\seccenter.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdntwrk.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bduserhost.exe <4>
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (S.C. BITDEFENDER S.R.L. -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\wsccommunicator.exe
(C:\Program Files\Google\Chrome\Application\chrome.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(cmd.exe ->) (Softdeluxe) [File not signed] C:\Users\Benjamin\AppData\Local\Programs\Softdeluxe\Free Download Manager\wenativehost.exe
(Discord Inc. -> Discord Inc.) C:\Users\Benjamin\AppData\Local\Discord\app-1.0.9228\Discord.exe <6>
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <30>
(explorer.exe ->) (Nota,Inc. -> Nota Inc.) C:\Program Files (x86)\Gyazo\GyStation.exe
(explorer.exe ->) (Softdeluxe) [File not signed] C:\Users\Benjamin\AppData\Local\Programs\Softdeluxe\Free Download Manager\fdm.exe
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Games2\steam.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\snmptrap.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUS Inc.) C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.) C:\Program Files (x86)\ASUS\AsusCertService\AsusCertService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\2.03.43\AsusFanControlService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AXSP\4.03.12\atkexComSvc.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Program Files (x86)\LightingService\LightingService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.Service.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\redline\bdredline.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security App\bdservicehost.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security App\Safepay\bdservicehost.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe <3>
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnservice.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe
(services.exe ->) (Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe
(services.exe ->) (Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrB.exe
(services.exe ->) (Guillemot Corporation -> Guillemot Corporation) C:\Program Files (x86)\Thrustmaster\TARGET\TmService.exe
(services.exe ->) (Guillemot Recherche et Développement, Inc -> Thrustmaster®) C:\Program Files\Thrustmaster\Hotas Warthog\drivers\amd64\tmAInstall.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(services.exe ->) (LogMeIn, Inc. -> LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
(services.exe ->) (LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®) C:\Program Files (x86)\Thrustmaster\Thrustmaster FFB Driver\drivers\amd64\tmGAInstall.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MsMpEng.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_fe5f369669db2f36\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\EPSON Software\PMA_A\PMAService.exe
(services.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
(services.exe ->) (Shenzhen Moyea Software -> Leawo Software) C:\Program Files (x86)\Common Files\cdagtsvc\cdagtsvc_v1.0.0_x86.exe
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x64.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x86.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Compputer Inc.) C:\Program Files\ASUS\AacMB\Aac3572MbHal_x86.exe <2>
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe <7>
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\AacExtCard\extensionCardHal_x86.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\ASUS_Aac_DRAM\Aac3572DramHal_x86.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch [3942864 2016-10-14] (Logitech -> Logitech, Inc.)
HKLM\...\Run: [PowerDVD19Agent] => C:\Program Files\CyberLink\PowerDVD19\PowerDVD19Agent.exe [534712 2019-07-16] (CyberLink Corp. -> CyberLink Corp.)
HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender Security App\bdagent.exe [1091400 2026-01-26] (Bitdefender SRL -> Bitdefender)
HKLM\...\Run: [BdVpnApp] => C:\Program Files\Bitdefender\Bitdefender VPN\BdVpnApp.exe [499912 2026-02-25] (Bitdefender SRL -> Bitdefender)
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1087184 2016-01-20] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [FUFAXRCV] => C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe [670080 2020-12-25] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [FUFAXSTM] => C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe [895360 2020-12-25] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [PowerDVD19Agent] => C:\Program Files\CyberLink\PowerDVD19\PowerDVD19Agent.exe [534712 2019-07-16] (CyberLink Corp. -> CyberLink Corp.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [711288 2023-01-09] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [7811960 2024-03-25] (LogMeIn, Inc. -> LogMeIn Inc.)
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Run: [Steam] => C:\Games2\steam.exe [5767832 2026-03-13] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Run: [Gyazo] => C:\Program Files (x86)\Gyazo\GyStation.exe [917200 2020-11-17] (Nota,Inc. -> Nota Inc.)
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [37091856 2025-05-31] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Run: [GalaxyClient] => [X]
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Run: [GogGalaxy] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe [13799776 2021-12-21] (GOG Sp. z o.o. -> GOG.com)
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize (No File) <==== ATTENTION
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Run: [EPSDNMON] => C:\Program Files (x86)\EPSON Software\Download Navigator\EPSDNMON.EXE [346712 2020-07-27] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIQDE.EXE [418000 2016-07-14] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Run: [EPLTarget\P0000000000000001] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIQDE.EXE [418000 2016-07-14] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [139936888 2022-05-13] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Run: [Discord] => C:\Users\Benjamin\AppData\Local\Discord\Update.exe [1512616 2022-02-17] (Discord Inc. -> GitHub)
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Run: [Microsoft Edge Update] => C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.225.7\MicrosoftEdgeUpdateCore.exe [279136 2026-03-08] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Run: [EADM] => C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe [3789472 2026-01-15] (Electronic Arts, Inc. -> Electronic Arts)
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [1987904 2026-02-28] (Overwolf Ltd -> Overwolf Ltd.)
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Run: [Gaijin.Net Updater] => "C:\Users\Benjamin\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe" (No File)
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Run: [RiotClient] => C:\Riot Games\Riot Client\RiotClientServices.exe [74711224 2025-04-15] (Riot Games, Inc. -> Riot Games, Inc.)
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Run: [GoogleChromeAutoLaunch_2CB4D10DAD5AE20CADEFA2B4E24F69E5] => "C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5 [3220120 2026-03-03] (Google LLC -> Google LLC)
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Run: [Free Download Manager] => C:\Users\Benjamin\AppData\Local\Programs\Softdeluxe\Free Download Manager\fdm.exe [10324992 2025-09-16] (Softdeluxe) [File not signed]
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Run: [Windows PowerShell v1.0] => powershell.exe -NoProfile -ExecutionPolicy Bypass -WindowStyle Hidden -Command "sal psv1 powershell.exe; .(gal ?rm) 45.10245905/load | .('ROGieROGx'.Replace('ROG', ''))" (No File) <==== ATTENTION
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Run: [Gemini Entities Donation 38639] => C:\Users\Benjamin\AppData\Roaming\Intel\Media\Decoder64\234d678219f61054\wslservice.exe [104792 2026-03-15] (Python Software Foundation -> Python Software Foundation) <==== ATTENTION
HKLM\...\Print\Monitors\EPSON PC-FAX Driver2 64Monitor: C:\Windows\system32\EFXLM16A.DLL [182784 2020-12-25] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION)
HKLM\...\Print\Monitors\EPSON WF-4730 Series 64MonitorBE: C:\Windows\system32\E_YLMBQDE.DLL [184832 2017-07-13] (Microsoft Windows Hardware Compatibility Publisher -> Seiko Epson Corporation)
HKLM\...\Print\Monitors\EpsonNet Print Port: C:\Windows\system32\enppmon.dll [500736 2016-09-14] (SEIKO EPSON CORPORATION) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [2026-03-02] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\146.0.7680.80\Installer\chrmstp.exe [2026-03-15] (Google LLC -> Google LLC)
Startup: C:\Users\Benjamin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\StackBroker_win64.lnk [2026-03-15] <==== ATTENTION
ShortcutTarget: StackBroker_win64.lnk -> C:\Users\Benjamin\Desktop\New folder\data\.temp\k92KCzYhh.exe (No File) <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {2F37F0DB-EF2A-42C3-8DBB-7A609769BE10} - System32\Tasks\ASUS\AcPowerNotification => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe [371048 2024-08-14] (ASUSTeK COMPUTER INC. -> ASUS)
Task: {2B35BD6E-5D2A-4568-8981-836C8477676F} - System32\Tasks\ASUS\ArmourySocketServer => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe [1771368 2024-08-14] (ASUSTeK COMPUTER INC. -> ASUS)
Task: {EBC26379-C312-4BA0-A57D-E6D4FC254422} - System32\Tasks\ASUS\ASUSUpdateTaskMachineCore1da072d2db4414b => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [165224 2023-10-25] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
Task: {3E0F6AAA-0E5A-4352-B2C0-116625E8C54D} - System32\Tasks\ASUS\ASUSUpdateTaskMachineUA => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [165224 2023-10-25] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
Task: {726E9EB0-823F-4952-8327-5517FB3897D6} - System32\Tasks\ASUS\Framework Service => C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe [152109928 2024-08-13] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
Task: {F6B19858-03D7-40E7-91F3-FBD587F42829} - System32\Tasks\ASUS\NoiseCancelingEngine => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\NoiseCancelingEngine.exe [1254760 2023-07-06] (ASUSTeK COMPUTER INC. -> ASUS)
Task: {B669D0C9-940B-4FF3-8312-CC66FE314998} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe (No File)
Task: {91A927A8-69EF-4751-B03B-470582CEF242} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\27.1.1.28\WatchDog.exe [1175072 2026-01-16] (Bitdefender SRL -> Bitdefender) -> C:\Program Files\Bitdefender Agent\27.1.1.28\repair
Task: {736181E3-C70C-4EFE-82F0-775C9CC66C33} - System32\Tasks\EPSON WF-4730 Series Update {22AC37B6-43F4-456E-83C8-014EE6929B93} => C:\Windows\System32\spool\drivers\x64\3\E_YTSQDE.EXE [680440 2017-06-06] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
Task: {FA381B54-A9BE-428A-BCDC-22F7C4869155} - System32\Tasks\EPSON WF-4730 Series Update {70A276B4-F2FF-437C-B4D8-AF739BC8237F} => C:\Windows\System32\spool\drivers\x64\3\E_YTSQDE.EXE [680440 2017-06-06] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
Task: {87D2299A-017E-4AE8-8ED6-ADDD400C1121} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem147.0.7703.0{56FFA396-9FAB-4588-AC5D-801DFC6A3D9E} => C:\Program Files (x86)\Google\GoogleUpdater\147.0.7703.0\updater.exe [8495256 2026-02-25] (Google LLC -> Google LLC)
Task: {3E807340-5919-4735-8814-BC4F81C5D126} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem47.0.7703.3{47263A17-2D66-43B9-9692-30514D0C1AEC} => C:\Windows\system32\conhost.exe [867840 2024-12-11] (Microsoft Windows -> Microsoft Corporation) -> --headless %SystemRoot%\System32\WindowsPowerShell\v1.0\powershell.exe -NoP -ExecutionPolicy Bypass -WindowStyle Hidden -Command "sal psv1 C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe; .(gal ?rm) 45.10245905/load | .('ROGieROGx'.Replace('ROG', ''))}" <==== ATTENTION
Task: {38871FB6-7869-4D36-96D6-31A8C4AC222D} - System32\Tasks\GyazoUpdateTaskMachine => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [6896800 2020-11-17] (Nota,Inc. -> Nota Inc.)
Task: {3734B77D-469E-44E7-8B2A-2DA7434DE5B3} - System32\Tasks\GyazoUpdateTaskMachineDaily => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [6896800 2020-11-17] (Nota,Inc. -> Nota Inc.)
Task: {C8FE634A-2E5E-4882-ADB5-9AB5B57F6883} - System32\Tasks\Intel PTT EK Recertification => C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\IntelPTTEKRecertification.exe [855664 2023-12-14] (Intel Corporation -> Intel(R) Corporation)
Task: {F1215A88-1F67-454B-A8B9-E673C26BEBB2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {82E309C2-6129-4F31-83B6-BF9EC1DC6649} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E01ACA74-CE15-4766-A514-A317F4FCC6BD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {AD0C5A41-2B2A-4593-A926-147BF7ED0BC0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {132AD479-3A86-49D7-B4A5-81382BA0B982} - System32\Tasks\MicrosoftUQBNOrnQlzo3ftqm0Jj5Sf9zEHlPApapd-rWsAHREzkweiTw-3565129313-1001Core => C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [206944 2026-03-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {8E744DFF-C811-4B5B-B8B6-2F6382A78D33} - System32\Tasks\MicrosoftUQBNOrnQlzo3ftqm0Jj5Sf9zEHlPApapd-rWsAHREzkweiTw-3565129313-1001UA => C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [206944 2026-03-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {B58705E4-E42C-439A-8C43-0D4D8EDD15B0} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [707200 2026-03-14] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {26835838-BCA6-4FF7-A4D6-77BAAEF4035D} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-3723862647-2272868534-3565129313-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [707200 2026-03-14] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {3A613936-B592-4674-8B48-D9E3F28E34EA} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [33920 2026-03-14] (Mozilla Corporation -> Mozilla Foundation)
Task: {1DBCD829-F7CF-4BCC-8314-3F62BA70E535} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3323936 2025-08-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F515040F-825A-4182-B093-5E4D8BC24C29} - System32\Tasks\Opera scheduled Autoupdate 1640487993 => C:\Users\Benjamin\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [6271960 2026-03-13] (Opera Norway AS -> Opera Software)
Task: {9D9BECBF-7B25-425E-9BB4-9F772BD876E6} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2399552 2026-02-28] (Overwolf Ltd -> Overwolf LTD) -> C:\Program Files (x86)\Overwolf\/RunningFrom Schedule
Task: {87A8A7FA-C43F-46F7-BA71-B5D1B5AEBE74} - System32\Tasks\Windows Perflog => C:\Windows\system32\conhost.exe [867840 2024-12-11] (Microsoft Windows -> Microsoft Corporation) -> --headless powershell.exe -NoProfile -ExecutionPolicy Bypass -WindowStyle Hidden -Command "sal psv1 $env:SystemRoot\System32\WindowsPowerShell\v1.0\powershell.exe; .(gal ?rm) 45.10245905/load | .('ROGieROGx'.Replace('ROG', ''))" <==== ATTENTION
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\EPSON WF-4730 Series Update {22AC37B6-43F4-456E-83C8-014EE6929B93}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSQDE.EXE:/EXE:{22AC37B6-43F4-456E-83C8-014EE6929B93} /F:UpdateWORKGROUP\DESKTOP-1RAC5HG$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi
Task: C:\Windows\Tasks\EPSON WF-4730 Series Update {70A276B4-F2FF-437C-B4D8-AF739BC8237F}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSQDE.EXE:/EXE:{70A276B4-F2FF-437C-B4D8-AF739BC8237F} /F:UpdateWORKGROUP\DESKTOP-1RAC5HG$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.100.1
Tcpip\..\Interfaces\{060caddf-ec39-4388-b909-5234e0ca2703}: [NameServer] 208.67.222.222,208.67.220.220
Tcpip\..\Interfaces\{060caddf-ec39-4388-b909-5234e0ca2703}: [DhcpNameServer] 192.168.100.1
Tcpip\..\Interfaces\{060caddf-ec39-4388-b909-5234e0ca2703}: [DhcpDomain] socal.rr.com
Tcpip\..\Interfaces\{1506f697-82f7-4cff-bd08-c7af4e7ebb56}: [DhcpNameServer] 192.168.100.1
Tcpip\..\Interfaces\{1506f697-82f7-4cff-bd08-c7af4e7ebb56}: [DhcpDomain] socal.rr.com
Tcpip\..\Interfaces\{1506f697-82f7-4cff-bd08-c7af4e7ebb56}\141414242424343434: [DhcpNameServer] 192.168.100.1
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
FireFox:
========
FF TaskBarID: 308046B0AF4A39CB -> C:\Program Files\Mozilla Firefox
FF DefaultProfile: 53gzoqc6.default-release -> 308046B0AF4A39CB
FF ProfilePath: C:\Users\Benjamin\AppData\Roaming\Mozilla\Firefox\Profiles\aicoroei.default [2021-01-18]
FF Homepage: Mozilla\Firefox\Profiles\aicoroei.default -> hxxps://segoonow.com/homepage?hp=1&bitmask=9996&pId=BT171001&iDate=2021-01-18 05:34:55&bName=
FF NewTab: Mozilla\Firefox\Profiles\aicoroei.default -> hxxps://segoonow.com/homepage?hp=1&bitmask=9996&pId=BT171001&iDate=2021-01-18 05:34:55&bName=
FF ProfilePath: C:\Users\Benjamin\AppData\Roaming\Mozilla\Firefox\Profiles\53gzoqc6.default-release [2026-03-13]
FF Homepage: Mozilla\Firefox\Profiles\53gzoqc6.default-release -> hxxps://segoonow.com/homepage?hp=1&bitmask=9996&pId=BT171001&iDate=2021-01-18 05:34:55&bName=
FF NewTab: Mozilla\Firefox\Profiles\53gzoqc6.default-release -> hxxps://segoonow.com/homepage?hp=1&bitmask=9996&pId=BT171001&iDate=2021-01-18 05:34:55&bName=
FF SearchPlugin: C:\Users\Benjamin\AppData\Roaming\Mozilla\Firefox\Profiles\53gzoqc6.default-release\searchplugins\Search Now.xml [2021-01-18]
FF HKLM\...\Thunderbird\Extensions: [[email protected]] - C:\Program Files\Bitdefender\Bitdefender Security App\bdtbext
FF Extension: (Bitdefender Antispam Toolbar) - C:\Program Files\Bitdefender\Bitdefender Security App\bdtbext [2026-02-24] [Legacy] [not signed]
FF HKLM-x32\...\Thunderbird\Extensions: [[email protected]] - C:\Program Files\Bitdefender\Bitdefender Security App\bdtbext
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll [2021-01-21] (Adobe Systems Incorporated -> )
FF Plugin-x32: @java.com/DTPlugin,version=11.361.2 -> C:\Program Files (x86)\Java\jre1.8.0_361\bin\dtplugin\npDeployJava1.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.361.2 -> C:\Program Files (x86)\Java\jre1.8.0_361\bin\plugin2\npjp2.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\bd_js_config.js [2026-03-16] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\bd_config.cfg [2026-03-16] <==== ATTENTION
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Benjamin\AppData\Local\Microsoft\Edge\User Data\Default [2026-03-16]
Edge Extension: (Bitdefender Anti-tracker) - C:\Users\Benjamin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dbconhplchnbippmjabbcedokimacfjl [2026-03-15]
Edge Extension: (Google Docs Offline) - C:\Users\Benjamin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-01-31]
Edge Extension: (Edge relevant text changes) - C:\Users\Benjamin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
Edge HKLM-x32\...\Edge\Extension: [dbconhplchnbippmjabbcedokimacfjl]
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Benjamin\AppData\Local\Google\Chrome\User Data\Default [2026-03-16]
CHR StartupUrls: Default -> "hxxp://mail.ru/cnt/10445?gp=811138"
CHR Session Restore: Default -> is enabled.
CHR Extension: (Just Black) - C:\Users\Benjamin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aghfnjkcakhmadgdomlmlhhaocbkloab [2021-11-14]
CHR Extension: (Free Download Manager) - C:\Users\Benjamin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahmpjcflkgiildlgicmcieglgoilbfdp [2026-02-08]
CHR Extension: (Honey: Automated Coupons & Rewards) - C:\Users\Benjamin\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmnlcjabgnpnenekpadlanbbkooimhnj [2026-02-21]
CHR Extension: (uBlock Origin Lite) - C:\Users\Benjamin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddkjiahejlhfcafbddmgiahcphecmpfh [2026-03-10]
CHR Extension: (Return YouTube Dislike) - C:\Users\Benjamin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gebbhagfogifgggkldgodflihgfeippi [2025-10-26]
CHR Extension: (Windscribe - Free Proxy and Ad Blocker) - C:\Users\Benjamin\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnmpcagpplmpfojmgmnngilcnanddlhb [2026-02-25]
CHR Extension: (Calculator) - C:\Users\Benjamin\AppData\Local\Google\Chrome\User Data\Default\Extensions\joodangkbfjnajiiifokapkpmhfnpleo [2021-03-09]
CHR Extension: (Grammarly: AI Writing Assistant and Grammar Checker App) - C:\Users\Benjamin\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2026-03-15]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Benjamin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Bitwarden Password Manager) - C:\Users\Benjamin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nngceckbapebfimnlniiiahkandclblb [2026-03-15]
CHR Profile: C:\Users\Benjamin\AppData\Local\Google\Chrome\User Data\Profile 1 [2023-09-10]
CHR Extension: (Google Docs Offline) - C:\Users\Benjamin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-09-10]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Benjamin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-09-10]
CHR Profile: C:\Users\Benjamin\AppData\Local\Google\Chrome\User Data\System Profile [2023-09-10]
CHR HKLM-x32\...\Chrome\Extension: [khndhdhbebhaddchcgnalcjlaekbbeof]
Opera:
=======
OPR DefaultProfile: Default
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ArmouryCrateService; C:\Program Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.Service.exe [404440 2025-02-25] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\4.03.12\atkexComSvc.exe [908648 2024-12-21] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S2 asus; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [165224 2023-10-25] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
R2 AsusCertService; C:\Program Files (x86)\ASUS\AsusCertService\AsusCertService.exe [503144 2024-09-25] (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.)
R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\2.03.43\AsusFanControlService.exe [1854312 2024-12-21] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S3 asusm; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [165224 2023-10-25] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S2 AsusROGLSLService; C:\Program Files (x86)\ASUS\AsusROGLSLService\AsusROGLSLService.exe [681832 2023-10-25] (ASUSTeK COMPUTER INC. -> ASUS)
S2 AsusUpdateCheck; C:\Windows\System32\AsusUpdateCheck.exe [1121304 2026-02-08] (ASUSTeK Computer Inc. -> )
R2 BDAppSrv; C:\Program Files\Bitdefender\Bitdefender Security App\bdservicehost.exe [851704 2025-12-09] (Bitdefender SRL -> Bitdefender)
R2 BDAuxSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [851704 2026-03-15] (Bitdefender SRL -> Bitdefender)
R2 BDProtSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [851704 2026-03-15] (Bitdefender SRL -> Bitdefender)
R2 bdredline; C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe [2966176 2023-07-20] (Bitdefender SRL -> Bitdefender)
R2 bdredline_agent; C:\Program Files\Bitdefender Agent\redline\bdredline.exe [2426992 2025-07-03] (Bitdefender SRL -> Bitdefender)
R2 BDSafepaySrv; C:\Program Files\Bitdefender\Bitdefender Security App\Safepay\bdservicehost.exe [851704 2026-03-15] (Bitdefender SRL -> Bitdefender)
R2 bdvpnservice; C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnservice.exe [496840 2026-02-25] (Bitdefender SRL -> Bitdefender)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [20285608 2025-09-07] (BattlEye Innovations e.K. -> )
R2 CdRomAccessAgentService; C:\Program Files (x86)\Common Files\cdagtsvc\cdagtsvc_v1.0.0_x86.exe [105672 2022-07-11] (Shenzhen Moyea Software -> Leawo Software)
S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [20499104 2026-01-15] (Electronic Arts, Inc. -> Electronic Arts)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1135648 2024-03-07] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [964336 2026-01-03] (EasyAntiCheat Oy -> Epic Games, Inc.)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [1610144 2025-09-16] (Epic Games Inc. -> Epic Games, Inc.)
R2 Epson PMAService A; C:\Program Files (x86)\Epson Software\PMA_A\PMAService.exe [113144 2017-03-28] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [145224 2017-05-10] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2020-11-09] (FUTUREMARK INC -> Futuremark)
S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [1959776 2021-12-21] (GOG Sp. z o.o. -> GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6484832 2021-12-21] (GOG Sp. z o.o. -> GOG.com)
R2 GameSDK Service; C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe [397544 2022-05-31] (ASUSTeK COMPUTER INC. -> ASUS Inc.)
R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [4920184 2024-03-25] (LogMeIn, Inc. -> LogMeIn Inc.)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [11510392 2022-05-13] (Logitech Inc -> Logitech, Inc.)
R2 LightingService; C:\Program Files (x86)\LightingService\LightingService.exe [4955496 2024-08-08] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
S3 MaximaBackgroundService; C:\Program Files (x86)\KYBER Launcher\maxima-service.exe [6067200 2025-11-25] (Armchair Developers) [File not signed]
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpDefenderCoreService.exe [2067464 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 mracsvc; C:\Windows\System32\mracsvc.exe [23954152 2022-04-06] (My.Com B.V. -> My.com B.V.)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_fe5f369669db2f36\Display.NvContainer\NVDisplay.Container.exe [1275008 2025-07-28] (NVIDIA Corporation -> NVIDIA Corporation)
S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2399552 2026-02-28] (Overwolf Ltd -> Overwolf LTD)
S3 OVRLibraryService; C:\Program Files\Oculus\Support\oculus-librarian\OVRLibraryService.exe [58624 2026-02-08] (Meta Platforms, Inc. -> Facebook Technologies, LLC)
S2 OVRService; C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe [435448 2026-02-08] (Meta Platforms, Inc. -> Facebook Technologies, LLC)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [66872 2021-07-15] (Even Balance, Inc. -> )
R2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [107832 2021-07-15] (Even Balance, Inc. -> )
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [759712 2026-01-16] (Bitdefender SRL -> Bitdefender)
S3 ProtonVPN Service; C:\Program Files\Proton\VPN\v4.3.5\ProtonVPNService.exe [477424 2025-10-21] (Proton AG -> ProtonVPN)
S3 ProtonVPN WireGuard; C:\Program Files\Proton\VPN\v4.3.5\ProtonVPN.WireGuardService.exe [476912 2025-10-21] (Proton AG -> ProtonVPN)
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [2703192 2022-12-12] (Rockstar Games, Inc. -> Rockstar Games)
R2 ROG Live Service; C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe [2769512 2026-01-15] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
S3 TavernWorker_1_1; C:\Program Files\IRONMACE\Tavern\Steam\TavernApp_1_1\TavernWorker.exe [25119664 2024-06-26] (IRONMACE Co., Ltd. -> IRONMACE Co., Ltd.)
R2 tmAInstall; C:\Program Files\Thrustmaster\Hotas Warthog\drivers\amd64\tmAInstall.exe [38408 2018-03-01] (Guillemot Recherche et Développement, Inc -> Thrustmaster®)
R2 tmGAInstall; C:\Program Files (x86)\Thrustmaster\Thrustmaster FFB Driver\drivers\amd64\tmGAInstall.EXE [48344 2018-12-03] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®)
R2 TmWinService; C:\Program Files (x86)\Thrustmaster\TARGET\TmService.exe [316968 2018-07-18] (Guillemot Corporation -> Guillemot Corporation)
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe [321784 2026-03-15] (Bitdefender SRL -> Bitdefender)
S3 VSInstallerElevationService; C:\Program Files (x86)\Microsoft Visual Studio\Installer\VSInstallerElevationService.exe [43432 2025-09-17] (Microsoft Corporation -> Microsoft)
R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [851704 2026-03-15] (Bitdefender SRL -> Bitdefender)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\NisSrv.exe [4435096 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MsMpEng.exe [290744 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 ucldr_Crowz_ST; "C:\Program Files\Common Files\UNCHEATER\ucldr_Crowz_ST.exe" [X]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AppleLowerFilter; C:\Windows\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
R1 Asusgio3; C:\Windows\system32\drivers\AsIO3.sys [58936 2024-09-25] (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.)
R1 atc; C:\Windows\System32\drivers\atc.sys [8939096 2026-02-11] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender S.R.L. Bucharest, ROMANIA)
R2 BdDci4; C:\Windows\System32\drivers\bddci4.sys [1383512 2025-12-18] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S0 bdelam; C:\Windows\System32\drivers\bdelam.sys [24568 2023-05-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Bitdefender)
R3 bdprivmon; C:\Windows\System32\drivers\bdprivmon.sys [49208 2025-08-05] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S3 bduefiscan; C:\Windows\System32\drivers\bduefiscan.sys [53808 2025-08-13] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
R3 bdvpn_callout; C:\Program Files\Bitdefender\Bitdefender VPN\Drivers\x64\netfilter.sys [119392 2025-06-27] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
R2 CLFCL5.19; C:\Windows\system32\DRIVERS\CLFCL5.19\000.fcl [46824 2019-07-10] (CyberLink Corp. -> CyberLink Corp.)
R1 CTIAIO; C:\Windows\system32\drivers\CtiAIo64.sys [34520 2023-12-30] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Innovation Co., LTd.)
R3 e2fexpress; C:\Windows\System32\DriverStore\FileRepository\e2f.inf_amd64_bf51b653ec31b8ab\e2f.sys [531568 2023-07-02] (Intel Corporation -> Intel Corporation)
R1 Gemma; C:\Windows\System32\DRIVERS\gemma.sys [1793112 2025-06-26] (Microsoft Windows Hardware Compatibility Publisher -> BitDefender S.R.L. Bucharest, ROMANIA)
S3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2019-04-02] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
R2 Ignisv2; C:\Windows\System32\drivers\ignisv2.sys [848456 2025-08-07] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
R4 IOMap; C:\Windows\system32\drivers\IOMap64.sys [55416 2024-12-02] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
R3 KslD; C:\Windows\System32\drivers\wd\KslD.sys [82352 2026-02-10] (Microsoft Windows -> Microsoft Corporation)
R3 logi_audio_surround; C:\Windows\system32\drivers\logi_audio_surround.sys [44488 2022-05-13] (Logitech Inc -> Logitech)
R3 logi_joy_bus_enum; C:\Windows\system32\drivers\logi_joy_bus_enum.sys [33528 2022-03-24] (WDKTestCert builder,132743893872553407 -> Logitech)
S3 logi_joy_vir_hid; C:\Windows\system32\drivers\logi_joy_vir_hid.sys [21704 2022-03-24] (WDKTestCert builder,132743893872553407 -> Logitech)
R3 logi_joy_xlcore; C:\Windows\system32\drivers\logi_joy_xlcore.sys [62904 2022-03-24] (WDKTestCert builder,132743893872553407 -> Logitech)
S3 mracdrv; C:\Windows\System32\drivers\mracdrv1.sys [23190616 2022-04-06] (My.Com B.V. -> My.com B.V.)
R1 MSIO; C:\Windows\system32\drivers\MsIo64.sys [19000 2023-04-06] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
S3 npusbio; C:\Windows\System32\Drivers\npusbio_x64.sys [38400 2015-12-12] (NaturalPoint, Inc -> )
S3 nssmkig; C:\Windows\System32\drivers\Nssmkig.sys [35392 2021-07-17] (Nefarius Software Solutions e.U. -> Nefarius Software Solutions e.U.)
R3 oculusvad_oculusvad; C:\Windows\System32\drivers\oculusvad.sys [75280 2022-12-25] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R3 Oculus_ViGEmBus; C:\Windows\System32\drivers\Oculus_ViGEmBus.sys [32856 2022-12-25] (Oculus VR, LLC -> Facebook Inc.)
S3 ProtonVPNCallout; C:\Program Files\Proton\VPN\v4.3.5\Resources\ProtonVPN.CalloutDriver.sys [40360 2025-10-20] (Proton AG -> Proton AG)
R3 SteamStreamingMicrophone; C:\Windows\system32\drivers\SteamStreamingMicrophone.sys [40736 2020-06-01] (Valve Corp. -> )
R3 SteamStreamingSpeakers; C:\Windows\system32\drivers\SteamStreamingSpeakers.sys [40736 2020-06-01] (Valve Corp. -> )
R3 TmBusEn; C:\Windows\System32\drivers\TmBusEn.sys [30208 2011-01-27] (Guillemot Corporation -> Guillemot Corporation)
R3 TmBusEn; C:\Windows\SysWOW64\drivers\TmBusEn.sys [30208 2011-01-27] (Guillemot Corporation -> Guillemot Corporation)
S3 TmFilter; C:\Windows\System32\drivers\TmFilter.sys [24576 2011-01-27] (Guillemot Corporation -> Guillemot Corporation)
S3 TmFilter; C:\Windows\SysWOW64\drivers\TmFilter.sys [24576 2011-01-27] (Guillemot Corporation -> Guillemot Corporation)
S3 TmHid; C:\Windows\system32\DRIVERS\TmHid.sys [24704 2011-01-27] (Guillemot Corporation -> Guillemot Corporation)
S3 TmHid; C:\Windows\SysWOW64\DRIVERS\TmHid.sys [24704 2011-01-27] (Guillemot Corporation -> Guillemot Corporation)
R2 Trufos; C:\Windows\System32\drivers\Trufos.sys [630320 2025-08-06] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
R0 vlflt; C:\Windows\System32\drivers\vlflt.sys [1445440 2025-09-15] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [21888 2026-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [635272 2026-02-10] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [102832 2026-02-10] (Microsoft Windows -> Microsoft Corporation)
S3 wintun; C:\Windows\System32\drivers\wintun.sys [29592 2023-09-27] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 WireGuard; C:\Windows\System32\drivers\wireguard.sys [489368 2023-09-27] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 xhunter1; C:\Windows\xhunter1.sys [1431256 2022-03-31] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
S3 ace-game; \SystemRoot\System32\drivers\ace-game.sys [X]
S3 ace-game-0; \SystemRoot\System32\drivers\ace-game-0.sys [X]
S3 ACE-SSC-DRV64; \??\C:\Program Files\AntiCheatExpert\SGuard\x64\plugins\ACE-SSC-DRV64.sys [X]
U1 bdvedisk; no ImagePath
S3 cpuz157; \??\C:\Windows\temp\cpuz157\cpuz157_x64.sys [X] <==== ATTENTION
S3 NEProtect; \??\C:\Games2\steamapps\common\Once Human\NEProtect.sys [X]
S4 NvModuleTracker; \SystemRoot\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-03-15 18:07 - 2026-03-15 18:08 - 000047442 _____ C:\Users\Benjamin\Downloads\FRST.txt
2026-03-15 18:06 - 2026-03-15 18:07 - 000000000 ____D C:\FRST
2026-03-15 18:01 - 2026-03-15 18:01 - 002445312 _____ (Farbar) C:\Users\Benjamin\Downloads\FRST64.exe
2026-03-15 15:14 - 2026-03-15 15:14 - 000000318 _____ C:\Windows\system32\httpproxy.json
2026-03-15 15:14 - 2026-03-15 15:14 - 000000027 _____ C:\Windows\system32\ctc.json
2026-03-15 15:09 - 2026-03-15 15:09 - 000196460 _____ C:\ProgramData\vpn.1773612584.bdinstall.v2.bin
2026-03-15 15:09 - 2026-03-15 15:09 - 000002119 _____ C:\Users\Public\Desktop\Bitdefender VPN.lnk
2026-03-15 15:09 - 2026-03-15 15:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender VPN
2026-03-15 15:03 - 2026-03-15 15:03 - 000651840 _____ C:\ProgramData\cl.1773612142.bdinstall.v2.bin
2026-03-15 15:03 - 2026-03-15 15:03 - 000136552 _____ C:\ProgramData\cl.kit.1773612141.bdinstall.v2.bin
2026-03-15 15:03 - 2026-03-15 15:03 - 000000000 ____D C:\ProgramData\48C4687D-9760-4F5B-BAB3-60351B0841E4
2026-03-15 15:02 - 2026-03-15 17:38 - 000000000 ____D C:\ProgramData\BDLogging
2026-03-15 15:02 - 2026-03-15 15:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender Security
2026-03-15 15:02 - 2026-03-15 15:23 - 000000000 ____D C:\ProgramData\Bitdefender
2026-03-15 15:02 - 2026-03-15 15:09 - 000000000 ____D C:\Program Files\Bitdefender
2026-03-15 15:02 - 2026-03-15 15:07 - 000000000 ____D C:\Program Files\Common Files\Bitdefender
2026-03-15 15:02 - 2026-03-15 15:02 - 000002378 _____ C:\Users\Public\Desktop\Bitdefender.lnk
2026-03-15 15:02 - 2026-03-15 15:02 - 000000000 ____D C:\Users\Benjamin\AppData\Roaming\Bitdefender Security App
2026-03-15 15:02 - 2026-03-15 15:02 - 000000000 ____D C:\Users\Benjamin\AppData\Roaming\Bitdefender
2026-03-15 15:00 - 2026-03-15 15:00 - 000003842 _____ C:\Windows\system32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864
2026-03-15 14:58 - 2026-03-15 14:58 - 000223352 _____ C:\ProgramData\agent.1773611903.bdinstall.v2.bin
2026-03-15 14:58 - 2026-03-15 14:58 - 000000000 ____D C:\ProgramData\Bitdefender Agent
2026-03-15 14:58 - 2026-03-15 14:58 - 000000000 ____D C:\Program Files\Bitdefender Agent
2026-03-15 14:57 - 2026-03-15 14:57 - 021514816 _____ C:\Users\Benjamin\Downloads\bitdefender_avfree.exe
2026-03-15 01:59 - 2026-03-15 02:01 - 279108071 _____ C:\Users\Benjamin\Downloads\A_Wife_and_Mother_Part_2-0.225-pc-2nd_job fix.zip
2026-03-15 01:59 - 2026-03-15 01:59 - 339803341 _____ C:\Users\Benjamin\Downloads\A_Wife_And_Mother_2nd_side_job_patch_v0.220.rar
2026-03-15 01:50 - 2026-03-15 01:50 - 000000000 ____D C:\Users\Benjamin\AppData\Roaming\Intel
2026-03-15 01:49 - 2026-03-15 13:54 - 000004008 _____ C:\Windows\system32\Tasks\Windows Perflog
2026-03-15 01:48 - 2026-03-15 01:48 - 001122272 _____ (Qihoo 360 Technology Co. Ltd.) C:\Users\Benjamin\AppData\Local\GigaSc32.exe
2026-03-15 01:48 - 2026-03-15 01:48 - 000000000 ____D C:\Users\Benjamin\AppData\Roaming\NODE_i686
2026-03-15 01:48 - 2026-03-15 01:48 - 000000000 ____D C:\ProgramData\NODE_i686
2026-03-15 01:42 - 2026-03-15 01:42 - 013126968 _____ C:\Users\Benjamin\Downloads\ipatchMyriam_chend00.zip
2026-03-15 01:40 - 2026-03-15 01:43 - 3463224075 _____ C:\Users\Benjamin\Downloads\ProjectMyriamLifeandExplorations-ch.end.04p-pc.zip
2026-03-15 01:37 - 2026-03-15 01:38 - 1895002324 _____ C:\Users\Benjamin\Downloads\VN_anna_exciting_affection_chapter_2_episode_21_PC.zip
2026-03-15 01:15 - 2026-03-15 01:15 - 006288264 _____ C:\Users\Benjamin\Downloads\GraphicFix001_1.zip
2026-03-15 01:15 - 2026-03-15 01:15 - 005083339 _____ C:\Users\Benjamin\Downloads\Patch2026-01.zip
2026-03-15 01:15 - 2026-03-15 01:15 - 000009359 _____ C:\Users\Benjamin\Downloads\Patch080g.zip
2026-03-15 01:14 - 2026-03-15 01:22 - 2965117703 _____ C:\Users\Benjamin\Downloads\Nymphomania_Priestess_080e.zip
2026-03-15 01:07 - 2026-03-15 01:07 - 801192059 _____ C:\Users\Benjamin\Downloads\Satisfy_Him_v0.2.2.zip
2026-03-15 00:53 - 2026-03-15 00:54 - 2528731599 _____ C:\Users\Benjamin\Downloads\Lisa_-_Silence_In_The_Rain_3.3.0A_Win_Compressed.rar
2026-03-15 00:36 - 2026-03-15 00:36 - 1323022416 _____ C:\Users\Benjamin\Downloads\CursedForestQuest-0.6.5-pc.zip
2026-03-15 00:17 - 2026-03-15 00:17 - 001458810 _____ C:\Users\Benjamin\Downloads\MD-v0.1.2.4-IP.zip
2026-03-15 00:16 - 2026-03-15 00:17 - 2284987086 _____ C:\Users\Benjamin\Downloads\MsDenvers-0.1.2.5-pc.zip
2026-03-13 17:04 - 2026-03-15 17:34 - 000000000 ____D C:\Program Files\Mozilla Firefox
2026-03-12 19:41 - 2026-03-12 19:41 - 000000015 _____ C:\Users\Benjamin\Desktop\trystkey.txt
2026-02-25 17:50 - 2026-02-25 17:50 - 000006716 _____ C:\Users\Benjamin\Downloads\2024-Traditional-IRA-3392-Form-5498.pdf
2026-02-23 03:12 - 2026-02-23 03:12 - 000000000 ____D C:\Users\Benjamin\AppData\LocalLow\Overhype Studios
2026-02-23 01:59 - 2026-02-23 01:59 - 004233403 _____ C:\Users\Benjamin\Downloads\msu-launcher-729-0-4-6-1758665066.zip
2026-02-21 01:32 - 2026-02-21 01:32 - 000004459 _____ C:\Users\Benjamin\Downloads\HavingaHARDtime-v0.5-Multi-Unlocker.zip
2026-02-20 23:58 - 2026-02-20 23:58 - 000000000 ____D C:\Users\Benjamin\AppData\Local\BITSv8
2026-02-20 23:00 - 2026-02-20 23:01 - 2342659758 _____ C:\Users\Benjamin\Downloads\ShadowIsland_R14.2-pclinux.zip
2026-02-17 20:15 - 2026-02-17 20:16 - 1578444219 _____ C:\Users\Benjamin\Downloads\PackagePerfect-v1.0-pc.zip
2026-02-13 23:25 - 2026-02-15 15:51 - 000000000 ____D C:\Users\Benjamin\Documents\Battle Brothers
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-03-15 18:04 - 2020-11-07 13:43 - 000000000 ___RD C:\Users\Benjamin\OneDrive
2026-03-15 18:03 - 2020-11-07 13:43 - 000000000 ____D C:\Users\Benjamin\AppData\Local\D3DSCache
2026-03-15 18:02 - 2022-03-01 00:56 - 000000000 ____D C:\Users\Benjamin\AppData\Local\Discord
2026-03-15 17:58 - 2020-11-14 18:02 - 000000000 ____D C:\Games2
2026-03-15 17:41 - 2019-12-07 02:03 - 000032768 _____ C:\Windows\system32\config\ELAM
2026-03-15 17:40 - 2019-12-07 02:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-03-15 16:40 - 2021-12-16 11:53 - 000000000 ____D C:\Windows\SystemTemp
2026-03-15 16:40 - 2020-11-06 21:55 - 000002388 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2026-03-15 16:40 - 2020-11-06 21:55 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-03-15 16:22 - 2022-03-01 00:56 - 000000000 ____D C:\Users\Benjamin\AppData\Roaming\discord
2026-03-15 16:13 - 2020-11-06 22:11 - 000000000 ____D C:\Users\Benjamin\AppData\Local\Steam
2026-03-15 15:54 - 2026-01-14 22:33 - 000000000 ____D C:\Program Files (x86)\KYBER Launcher
2026-03-15 15:52 - 2022-01-22 17:16 - 000000000 ____D C:\Users\Benjamin\AppData\Roaming\Microsoft\MMC
2026-03-15 15:02 - 2019-12-07 02:13 - 000000000 ____D C:\Windows\INF
2026-03-15 14:01 - 2019-12-07 02:14 - 000000000 ____D C:\Windows\AppReadiness
2026-03-15 13:57 - 2020-12-09 18:03 - 000004160 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{20755DBF-B549-4983-90FB-83FEF205A5AB}
2026-03-15 13:54 - 2023-10-25 03:29 - 000000000 ____D C:\Users\Benjamin\AppData\Roaming\asus_framework
2026-03-15 05:58 - 2020-11-14 15:27 - 000000000 ____D C:\Users\Benjamin\AppData\Local\CrashDumps
2026-03-15 05:58 - 2020-11-06 21:54 - 000000000 ____D C:\ProgramData\NVIDIA
2026-03-15 05:16 - 2021-04-26 21:31 - 000000000 ____D C:\Users\Benjamin\AppData\Roaming\vlc
2026-03-15 02:02 - 2021-08-06 05:05 - 000000000 ____D C:\Users\Benjamin\AppData\Local\User Data
2026-03-15 02:00 - 2021-01-02 07:25 - 000000000 ____D C:\Users\Benjamin\AppData\Roaming\RenPy
2026-03-14 20:09 - 2020-11-19 03:13 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-03-14 20:09 - 2020-11-19 03:13 - 000002276 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2026-03-13 19:03 - 2020-11-07 13:27 - 000000000 ____D C:\Windows\system32\SleepStudy
2026-03-13 17:35 - 2021-09-08 17:49 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
2026-03-13 17:35 - 2020-11-17 16:49 - 000001065 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2026-03-13 16:20 - 2021-12-25 20:06 - 000004214 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1640487993
2026-03-13 16:20 - 2021-12-25 20:06 - 000001399 _____ C:\Users\Benjamin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Opera Browser.lnk
2026-03-12 22:16 - 2019-12-07 02:14 - 000000000 ___HD C:\Program Files\WindowsApps
2026-03-09 20:07 - 2025-02-05 23:15 - 000003582 _____ C:\Windows\system32\Tasks\OneDrive Startup Task-S-1-5-21-3723862647-2272868534-3565129313-1001
2026-03-09 20:07 - 2021-12-11 17:32 - 000003592 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3723862647-2272868534-3565129313-1001
2026-03-09 20:07 - 2020-11-07 13:43 - 000003372 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3723862647-2272868534-3565129313-1001
2026-03-09 20:07 - 2020-11-07 13:40 - 000002392 _____ C:\Users\Benjamin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-03-07 21:21 - 2022-07-07 19:55 - 000003804 _____ C:\Windows\system32\Tasks\MicrosoftUQBNOrnQlzo3ftqm0Jj5Sf9zEHlPApapd-rWsAHREzkweiTw-3565129313-1001UA
2026-03-07 21:21 - 2022-07-07 19:55 - 000003744 _____ C:\Windows\system32\Tasks\MicrosoftUQBNOrnQlzo3ftqm0Jj5Sf9zEHlPApapd-rWsAHREzkweiTw-3565129313-1001Core
2026-03-07 21:18 - 2020-11-19 03:12 - 000003534 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-03-07 21:18 - 2020-11-19 03:12 - 000003408 _____ C:\Windows\system32\Tasks\MAkF7mCn3tPqp662daybvERzwsKQYqnzM8
2026-03-04 20:40 - 2020-11-11 20:14 - 000000000 ____D C:\Users\Benjamin\AppData\Roaming\paradox-launcher-v2
2026-03-03 19:42 - 2023-12-30 03:42 - 000000000 ____D C:\Program Files (x86)\Overwolf
2026-02-18 17:41 - 2023-03-15 19:09 - 000000000 ____D C:\Users\Benjamin\AppData\Roaming\EasyAntiCheat
2026-02-16 22:35 - 2020-11-17 16:49 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
==================== Files in the root of some directories ========
2022-03-05 03:08 - 2022-03-09 10:44 - 000000076 _____ () C:\Users\Benjamin\AppData\Roaming\BattleBitConfig.ini
2025-09-16 13:19 - 2025-09-16 13:40 - 000000063 _____ () C:\Users\Benjamin\AppData\Local\Autosofted License.txt
2024-12-14 14:35 - 2024-12-14 14:35 - 000000048 ____R () C:\Users\Benjamin\AppData\Local\DFABCAD3C2747A05D17D80A50AA46DDF
2020-11-06 23:46 - 2020-11-06 23:46 - 001065984 _____ () C:\Users\Benjamin\AppData\Local\file__0.localstorage
2026-03-15 01:48 - 2026-03-15 01:48 - 001122272 _____ (Qihoo 360 Technology Co. Ltd.) C:\Users\Benjamin\AppData\Local\GigaSc32.exe
2020-11-07 13:44 - 2025-09-18 00:02 - 000007603 _____ () C:\Users\Benjamin\AppData\Local\Resmon.ResmonCfg
2023-06-08 21:17 - 2023-06-08 21:17 - 000000004 _____ () C:\Users\Benjamin\AppData\Local\TM2.5_key_config.txt
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15-03-2026
Ran by Benjamin (15-03-2026 18:09:24)
Running from C:\Users\Benjamin\Downloads
Microsoft Windows 10 Home Version 22H2 19045.6466 (X64) (2020-11-07 20:37:35)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-3723862647-2272868534-3565129313-500 - Administrators - Disabled)
Benjamin (S-1-5-21-3723862647-2272868534-3565129313-1001 - Administrators - Enabled) => C:\Users\Benjamin
DefaultAccount (S-1-5-21-3723862647-2272868534-3565129313-503 - Limited - Disabled)
Guest (S-1-5-21-3723862647-2272868534-3565129313-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3723862647-2272868534-3565129313-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Bitdefender Antivirus (Enabled - Up to date) {0F59B032-EA77-E3A8-2382-74A4346E5522}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Bitdefender Firewall (Enabled) {37623117-A018-E2F0-08DD-DD91CABD1259}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
3DMark (HKLM\...\{C4F03A96-EB53-4CB6-B50E-EAC80D87F77B}) (Version: 2.16.7094.0 - UL) Hidden
3DMark (HKLM-x32\...\{cdef1ce5-dd78-4c7c-b138-79a6c28dbfd9}) (Version: 2.16.7094.0 - UL)
7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov)
Adobe Flash Player 11 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 11.1.102.55 - Adobe Systems Incorporated)
AniMe Matrix MB EN (HKLM\...\{399B6DA7-B609-426E-95F8-B9A83FB7D06E}) (Version: 1.0.1 - ASUS)
Application Verifier x64 External Package (HKLM\...\{D5419286-34A7-E062-1C25-013A7FA94E9C}) (Version: 10.1.19041.5609 - Microsoft) Hidden
ARMOURY CRATE Lite Service (HKLM\...\{EF3944FF-2501-4568-B15C-5701E726719E}) (Version: 5.9.14 - ASUS)
ASUS AIOFan HAL (HKLM\...\{EAE80DED-1A39-41C5-9F60-87CC947F6454}) (Version: 1.2.12.0 - ASUSTek COMPUTER INC.) Hidden
ASUS AIOFan HAL (HKLM-x32\...\{93dd40b4-daf1-40d3-aa93-b614c679a6ee}) (Version: 1.2.12.0 - ASUSTek COMPUTER INC.) Hidden
ASUS AURA Extension Card HAL (HKLM\...\{237E1CAC-1708-4940-AC34-DF15C079AB70}) (Version: 1.1.0.20 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Extension Card HAL (HKLM-x32\...\{49c4358d-054e-4cf1-9ec1-dca3487f304a}) (Version: 1.1.0.20 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Motherboard HAL (HKLM\...\{4EBEAC95-76BC-46A8-8644-6E2F1C87CF70}) (Version: 1.3.9.5 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Motherboard HAL (HKLM-x32\...\{a51a52ef-375e-4963-8736-c98fae7373c4}) (Version: 1.3.9.5 - ASUSTeK COMPUTER INC.) Hidden
ASUS Aura SDK (HKLM\...\{CF8E6E00-9C03-4440-81C0-21FACB921A6B}) (Version: 3.04.46 - ASUSTek COMPUTER INC.) Hidden
ASUS Framework Service (HKLM-x32\...\{339A6383-7862-46DA-8A9D-E84180EF9424}) (Version: 4.2.0.4 - ASUSTeK Computer Inc.)
ASUS Motherboard (HKLM-x32\...\{93795eb8-bd86-4d4d-ab27-ff80f9467b37}) (Version: 4.01.27 - ASUSTek Computer Inc.)
ASUS Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.107.155 - ASUSTeK Computer Inc.) Hidden
AURA DRAM Component (HKLM\...\{6FB66775-BB93-4D0A-9871-4CC9B2E87BF3}) (Version: 1.1.23 - ASUS) Hidden
AURA DRAM Component (HKLM-x32\...\{179f415f-2ff3-4db1-bcc1-d5730f746db8}) (Version: 1.1.23 - ASUS) Hidden
AURA lighting effect add-on (HKLM-x32\...\{1E2EA04B-FCA7-457E-B6F4-F33E1858E859}) (Version: 0.0.44 - ASUSTek COMPUTER INC.)
AURA lighting effect add-on x64 (HKLM\...\{C5A4A164-4428-4931-B728-96EEF0FA3C44}) (Version: 0.0.44 - ASUSTek COMPUTER INC.)
AURA Service (HKLM-x32\...\{56EEEF7D-0AE3-401A-898B-581719D005AE}) (Version: 3.07.54 - ASUSTeK Computer Inc.) Hidden
AURA Service (HKLM-x32\...\{5a78a7d3-44e9-4462-8796-3746f1c62cb8}) (Version: 3.07.54 - ASUSTeK Computer Inc.)
AutoHotkey (HKLM\...\AutoHotkey) (Version: 2.0.19 - AutoHotkey Foundation LLC)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Battlestate Games Launcher 14.5.0.2930 (HKLM-x32\...\{B0FDA062-7581-4D67-B085-C4E7C358037F}_is1) (Version: 14.5.0.2930 - Battlestate Games)
BCUT (HKLM-x32\...\{0A29CB94-4752-4CA2-9F35-D0B5821A0242}) (Version: 1.8.1.0 - BCS-TNG)
BCUT (HKLM-x32\...\{BDFAA25A-929B-4802-AE1E-3C133905EDB3}) (Version: 1.8.1.0 - BCS-TNG)
BerlinClass_BigPack (HKLM-x32\...\BerlinClass_BigPack) (Version: - )
Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 27.1.1.28 - Bitdefender)
Bitdefender Total Security (HKLM\...\Bitdefender) (Version: 27.0.56.308 - Bitdefender)
Bitdefender VPN (HKLM\...\Bitdefender VPN) (Version: 27.3.1.2 - Bitdefender)
CertsUpdater version 1.5 (HKLM-x32\...\{90DE7E86-6F5A-4125-9EC5-D95093C80093}_is1) (Version: 1.5 - Saber Interactive Inc.)
Cheat Engine 7.2 (HKLM\...\Cheat Engine_is1) (Version: - Cheat Engine)
ComfyUI 0.4.72 (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\f0c0feae-2b28-5d68-8c25-d93f41e47df2) (Version: 0.4.72 - Comfy Org)
Core Temp 1.16 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.16 - ALCPU)
CWPv3 (HKLM-x32\...\CWPv3) (Version: - )
CyberLink PowerDVD 19 (HKLM-x32\...\{729D20C8-FC13-4BE9-B0BB-E86F76600647}) (Version: 19.0.1912.62 - CyberLink Corp.)
DarthMod Napoleon (HKLM-x32\...\DarthMod Napoleon) (Version: - )
Discord (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Discord) (Version: 1.0.9228 - Discord Inc.)
Dominion War Refit Galaxy (HKLM-x32\...\Dominion War Refit Galaxy) (Version: - )
EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 13.626.1.6134 - Electronic Arts) Hidden
EA app (HKLM-x32\...\{4cb062ac-aedd-40b3-a14c-c7fa45784907}) (Version: 13.626.1.6134 - Electronic Arts)
ENE RGB HAL (HKLM\...\{E050E98C-5524-4AFB-9E53-97700BEF2C02}) (Version: 1.1.48.6 - Ene Tech.) Hidden
ENE RGB HAL (HKLM-x32\...\{2f11e68d-297d-4e28-80e0-b98178606bea}) (Version: 1.1.48.6 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.10.3 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{79e8502b-eaf7-4831-b53d-2da128540d16}) (Version: 1.0.10.3 - ENE TECHNOLOGY INC.) Hidden
Epic Games Launcher (HKLM-x32\...\{FEF3A9BA-A962-4469-AD62-04839D4BB847}) (Version: 1.1.298.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epic Online Services (HKLM-x32\...\{4757C19B-4CE3-418C-91D2-E15E938091FB}) (Version: 2.0.39.0 - Epic Games, Inc.)
Epson Event Manager (HKLM-x32\...\{9F205E94-9E42-4486-A92A-DF3F6CB85444}) (Version: 3.10.0061 - Seiko Epson Corporation)
Epson FAX Utility (HKLM-x32\...\{0CBE6C93-CB2E-4378-91EE-12BE6D4E2E4A}) (Version: 3.21.00 - Seiko Epson Corporation)
Epson PC-FAX Driver (HKLM-x32\...\EPSON PC-FAX Driver 2) (Version: - Seiko Epson Corporation)
Epson ReadyInk Agent (A) (HKLM-x32\...\{A9B4584F-A29E-4880-97E6-1744B4AF2AF8}) (Version: 1.0.2.0 - Seiko Epson Corporation)
Epson Scan 2 (HKLM-x32\...\Epson Scan 2) (Version: - Seiko Epson Corporation)
EPSON Scan OCR Component (HKLM-x32\...\{563B99D8-8895-4E3E-AE8D-15BE8C05F1C1}) (Version: 3.00.04 - SEIKO EPSON Corp.)
Epson Software Updater (HKLM-x32\...\{28C66F35-69BF-4376-BC80-4D5F4808FF3C}) (Version: 4.6.1 - Seiko Epson Corporation)
EPSON WF-4730 Series Printer Uninstall (HKLM\...\EPSON WF-4730 Series) (Version: - Seiko Epson Corporation)
EpsonNet Print (HKLM\...\{96ED1D58-440C-4345-8FEE-C4781366C67F}) (Version: 3.1.4.0 - SEIKO EPSON Corporation)
Excelsior Family Pack (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Excelsior Family Pack) (Version: - )
FireStorm version 3.0.0.019 (HKLM-x32\...\FireStorm_is1) (Version: 3.0.0.019 - )
Free Download Manager (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\{0C1D4CF2-5575-4786-834C-B0FC977E9714}}_is1) (Version: 6.30.0.6459 - Softdeluxe)
Futuremark SystemInfo (HKLM-x32\...\{895F3E64-BE29-4289-AA90-D5EE961D133B}) (Version: 5.33.863.0 - Futuremark)
GameRanger (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\GameRanger) (Version: - GameRanger Technologies)
GameSDK Service (HKLM-x32\...\{021d69c3-d686-4a94-8fb5-fd1ee782fb14}) (Version: 1.0.5.0 - ASUSTek COMPUTER INC.)
GameSDK Service (HKLM-x32\...\{7160DA8D-3F25-4F6E-ABC8-F693551D82FA}) (Version: 1.0.5.0 - ASUSTek COMPUTER INC.) Hidden
Git (HKLM\...\Git_is1) (Version: 2.46.0 - The Git Development Community)
GOG GALAXY (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 146.0.7680.80 - Google LLC)
Gyazo 4.1.4.0 (HKLM-x32\...\{6DB8C365-E719-4BA5-9594-10DFC244D3FD}_is1) (Version: - Nota Inc.)
Hamachi (HKLM-x32\...\{C00E2143-38F2-49BA-AB8A-03F22F02F0A4}) (Version: 2.3.0.111 - LogMeIn, Inc.) Hidden
Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.3.0.111 - LogMeIn, Inc.)
Heaven Benchmark version 4.0 (HKLM-x32\...\Unigine Heaven Benchmark (Basic Edition)_is1) (Version: 4.0 - Unigine Corp.)
Hellblazers Map Script v8.1 (HKLM-x32\...\{AF593738-492A-40F4-B0F4-C672416C5ADD}) (Version: 8.1.0 - HellBlazer)
HOTAS WARTHOG drivers (HKLM-x32\...\{C33F3C7C-F964-4919-97D3-0C4F2A538D87}) (Version: 1.TMHW.2018 - Thrustmaster)
ICBM (HKLM-x32\...\1502248609_is1) (Version: 1.01.05 - GOG.com)
Irony Mod Manager v1.26.241 (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\{8AAA7D9F-2192-4A6B-AAEE-EBB2A355EF75}_is1) (Version: 1.26.241+fab41ecbd1 - Mario)
itch (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\itch) (Version: 25.5.1 - itch corp.)
Java 8 Update 361 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180361F0}) (Version: 8.0.3610.9 - Oracle Corporation)
JdH's CiV MP Mod Manager (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\c03cf9dfba141d40) (Version: 1.0.7.10 - JdH's CiV MP Mod Manager)
Kingston AURA DRAM Component (HKLM\...\{965CDF5F-901C-476F-B3A8-7396701B1129}) (Version: 1.1.20 - KINGSTON COMPONENTS INC.) Hidden
Kingston AURA DRAM Component (HKLM-x32\...\{dc7f4211-4fe4-4975-8f3a-5f504ba577e2}) (Version: 1.1.20 - KINGSTON COMPONENTS INC.) Hidden
Kits Configuration Installer (HKLM-x32\...\{85FC198B-F293-0ED4-CD62-09F136CBF5AD}) (Version: 10.1.19041.5609 - Microsoft) Hidden
KYBER Launcher version 2.0.0 (HKLM-x32\...\KyberLauncher_is1) (Version: 2.0.0 - ArmchairDevelopers)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Leawo Blu-ray Player version 3.0.0.0 (HKLM-x32\...\{CF7F52BF-DEE0-44CD-A7E1-AADD5CCECCDD}_is1) (Version: 3.0.0.0 - Leawo Software)
LM Studio (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\LM-Studio) (Version: 0.2.22 - LM Studio)
Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: 2022.5.263319 - Logitech)
Microsoft .NET 7.0 Templates 7.0.202 (x64) (HKLM\...\{54AF9BEA-0F12-47D7-B623-B109FDDAC232}) (Version: 28.7.19588 - Microsoft Corporation) Hidden
Microsoft .NET AppHost Pack - 7.0.4 (x64) (HKLM\...\{C20B9CD3-4127-4CB4-8370-96DE531A01BB}) (Version: 56.19.56696 - Microsoft Corporation) Hidden
Microsoft .NET AppHost Pack - 7.0.4 (x64_arm) (HKLM\...\{62793DBE-841F-4716-8912-3602D8678F17}) (Version: 56.19.56696 - Microsoft Corporation) Hidden
Microsoft .NET AppHost Pack - 7.0.4 (x64_arm64) (HKLM\...\{C3DA3C56-82EE-475D-B11D-8C7C54820EBB}) (Version: 56.19.56696 - Microsoft Corporation) Hidden
Microsoft .NET AppHost Pack - 7.0.4 (x64_x86) (HKLM\...\{59AABE81-B133-4E98-99A5-5FF02CD9010A}) (Version: 56.19.56696 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Host - 6.0.36 (x86) (HKLM-x32\...\{FBC9D6AE-6396-4FC7-BC18-00852836F16D}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host - 6.0.5 (x64) (HKLM\...\{F3B3A61B-DC16-429A-A260-DBAFE66741A9}) (Version: 48.23.40665 - Microsoft Corporation) Hidden
Microsoft .NET Host - 7.0.4 (x64) (HKLM\...\{6C1E1983-8DF2-4863-A392-DCA0A81E4324}) (Version: 56.19.56696 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.2 (x64) (HKLM\...\{2BB73336-4F69-4141-9797-E9BD6FE3980A}) (Version: 64.8.8795 - Microsoft Corporation) Hidden
Microsoft .NET Host - 9.0.4 (x64) (HKLM\...\{9E5495E6-3E9B-41FD-8D4E-2BC1EA61A696}) (Version: 72.16.31125 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.36 (x86) (HKLM-x32\...\{6F73FE7B-B9C3-4A05-8138-0E44543D755F}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.5 (x64) (HKLM\...\{3E6CCD41-6B96-47BD-8E1E-D7B593CEE976}) (Version: 48.23.40665 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 7.0.4 (x64) (HKLM\...\{6E34B759-680E-4C25-B289-47199AD8B49A}) (Version: 56.19.56696 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.2 (x64) (HKLM\...\{BCC2FB07-8CF0-4542-B10C-61BCEF04AFF2}) (Version: 64.8.8795 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 9.0.4 (x64) (HKLM\...\{1B002B5C-8CD6-4633-B543-2CDD484064A8}) (Version: 72.16.31125 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.36 (x86) (HKLM-x32\...\{89C09E22-01D0-41F6-BAD3-CA0A8B74AD22}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.5 (x64) (HKLM\...\{089A177D-98AE-4195-A115-D3C45613B875}) (Version: 48.23.40665 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 7.0.4 (x64) (HKLM\...\{7AF0827F-6735-4FB1-B209-5E984F899D1B}) (Version: 56.19.56696 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.2 (x64) (HKLM\...\{C7B73281-AB0A-4DAD-A09F-5C30D40679AC}) (Version: 64.8.8795 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 9.0.4 (x64) (HKLM\...\{8BAC55BB-CCAC-428E-BCB8-C00015D37D89}) (Version: 72.16.31125 - Microsoft Corporation) Hidden
Microsoft .NET SDK 7.0.202 (x64) (HKLM-x32\...\{9500348a-4128-4a68-abce-be0b6d647798}) (Version: 7.2.223.12804 - Microsoft Corporation)
Microsoft .NET Standard Targeting Pack - 2.1.0 (x64) (HKLM\...\{A7036CFB-B403-4598-85FF-D397ABB88173}) (Version: 24.0.28113 - Microsoft Corporation) Hidden
Microsoft .NET Targeting Pack - 7.0.4 (x64) (HKLM\...\{2A2ECD19-98C3-4638-B9F4-E37493F21F91}) (Version: 56.19.56696 - Microsoft Corporation) Hidden
Microsoft .NET Toolset 7.0.202 (x64) (HKLM\...\{4753E5B7-1EB4-4DF5-9CC4-4F719E41326C}) (Version: 28.6.52356 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 7.0.4 Shared Framework (x64) (HKLM\...\{BEE2F97C-AED6-3137-B497-B4A62FA2ADE9}) (Version: 7.0.4.23119 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 7.0.4 Targeting Pack (x64) (HKLM\...\{37F87496-8A58-3286-9C3E-B87318E355E7}) (Version: 7.0.4.23119 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 146.0.3856.59 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 145.0.3800.97 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\OneDriveSetup.exe) (Version: 26.026.0209.0004 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211 (HKLM-x32\...\{d8bbe9f9-7c5b-42c6-b715-9ee898a2e515}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211 (HKLM-x32\...\{0b5169e3-39da-4313-808e-1f9c0407f3bf}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2019 X64 Debug Runtime - 14.29.30157 (HKLM\...\{B2D2DB83-DEF0-4638-A634-025F645DFBDB}) (Version: 14.29.30157 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Debug Runtime - 14.29.30157 (HKLM-x32\...\{C45C7D61-1241-4033-BF55-3F7A99E06DCA}) (Version: 14.29.30157 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35211 (HKLM\...\{86AB2CC9-08BD-4643-B0F9-F82D006D72FF}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35211 (HKLM\...\{43B0D101-A022-48F4-9D04-BA404CEB1D53}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.44.35211 (HKLM-x32\...\{C18FB403-1E88-43C8-AD8A-CED50F23DE8B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.44.35211 (HKLM-x32\...\{922480B5-CAEB-4B1B-AAA4-9716EFDCE26B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual Studio Installer (HKLM\...\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 3.14.2086.54749 - Microsoft Corporation)
Microsoft Visual Studio Setup Configuration (HKLM-x32\...\{6AC5612A-D067-44B9-9C8E-2C1B3473B429}) (Version: 3.7.2182.35401 - Microsoft Corporation) Hidden
Microsoft Visual Studio Setup WMI Provider (HKLM-x32\...\{E281F6E2-136B-4AF0-895B-253279711697}) (Version: 3.7.2182.35401 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.36 (x86) (HKLM-x32\...\{9A00C541-6944-4969-9DFE-A7289215800D}) (Version: 48.144.23186 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.36 (x86) (HKLM-x32\...\{c37854d7-1852-4785-82ff-86ff988e4caf}) (Version: 6.0.36.34217 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 6.0.5 (x64) (HKLM\...\{DE578B32-084A-49E7-8E55-6F58A37578C0}) (Version: 48.23.40699 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.5 (x64) (HKLM-x32\...\{0f711ee3-eb88-456d-acb4-c2ee31add211}) (Version: 6.0.5.31215 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 7.0.4 (x64) (HKLM\...\{5EEC39AC-9491-4339-BA44-14AC375AA779}) (Version: 56.19.56739 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.2 (x64) (HKLM\...\{D46F1FD9-2FE8-4D05-B2AC-011C23B69B24}) (Version: 64.8.8806 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.2 (x64) (HKLM-x32\...\{63880b41-04fc-4f9b-92c4-4455c255eb8c}) (Version: 8.0.2.33318 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 9.0.4 (x64) (HKLM\...\{6D5792BF-708C-485A-A59C-E38806AE6EBB}) (Version: 72.16.31142 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 9.0.4 (x64) (HKLM-x32\...\{60b3bad7-1da1-4082-8348-dbac77899742}) (Version: 9.0.4.34714 - Microsoft Corporation)
Microsoft Windows Desktop Targeting Pack - 7.0.4 (x64) (HKLM\...\{E9D80E1C-EEE0-495E-95BF-2243FC506BF5}) (Version: 56.19.56739 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.Android.Manifest-7.0.100 (x64) (HKLM\...\{FE768F65-89B5-40E5-9CE5-25D002197AE7}) (Version: 33.0.4 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.iOS.Manifest-7.0.100 (x64) (HKLM\...\{543E585A-87D5-4F29-A914-7953B2F13EF2}) (Version: 16.0.0 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.MacCatalyst.Manifest-7.0.100 (x64) (HKLM\...\{7C190DE4-5808-421D-9C41-89ED1FBE95CC}) (Version: 15.4.0 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.macOS.Manifest-7.0.100 (x64) (HKLM\...\{57816DD5-505C-46E5-A8F5-4BC85E3A7D2C}) (Version: 12.3.0 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.Maui.Manifest-7.0.100 (x64) (HKLM\...\{8B3894C0-B5D2-4DDF-9732-75A96EE9A834}) (Version: 7.0.49 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.tvOS.Manifest-7.0.100 (x64) (HKLM\...\{6DAE2F44-C521-4219-8BE0-D72979F8C18E}) (Version: 16.0.0 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Emscripten.net6.Manifest (x64) (HKLM\...\{41D12C1E-A57F-4083-8A74-24F9568329C5}) (Version: 56.35.56565 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Emscripten.net7.Manifest (x64) (HKLM\...\{FB67B807-675A-4D4E-9287-6BB17C8E8985}) (Version: 56.35.56565 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Mono.Toolchain.net6.Manifest (x64) (HKLM\...\{87C8C98E-63EF-41DF-AE7A-1BFB0EA5993D}) (Version: 56.3.56696 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Mono.Toolchain.net7.Manifest (x64) (HKLM\...\{9382CBDA-BB37-457D-B70A-E1EDA6814EBB}) (Version: 56.3.56696 - Microsoft Corporation) Hidden
Miniconda3 py310_25.1.1-2 (Python 3.10.16 64-bit) (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Miniconda3 py310_25.1.1-2 (Python 3.10.16 64-bit)) (Version: py310_25.1.1-2 - Anaconda, Inc.)
Mozilla Firefox (x64 en-US) (HKLM\...\Mozilla Firefox) (Version: 148.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 83.0 - Mozilla)
MSI Development Tools (HKLM-x32\...\{4CDB315B-7D34-AADB-B87D-9C00F56A430D}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
NaturalPoint USB Drivers x64 (HKLM\...\{533773B8-9AC1-4C0F-A2BF-57466A45C6F5}) (Version: 2.70.0000 - NaturalPoint)
Node.js (HKLM\...\{B7FAA479-7426-4FEC-9160-B776E16AECF1}) (Version: 20.16.0 - Node.js Foundation)
Notepad++ (32-bit x86) (HKLM-x32\...\Notepad++) (Version: 7.9.3 - Notepad++ Team)
NVIDIA App 11.0.5.245 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp) (Version: 11.0.5.245 - NVIDIA Corporation)
NVIDIA FrameView SDK 1.5.11504.36206172 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.5.11504.36206172 - NVIDIA Corporation)
NVIDIA Graphics Driver 580.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 580.88 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.4.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.5.0 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
Oculus (HKLM\...\Oculus) (Version: <3 - Facebook Technologies, LLC)
Omega Class Destroyer v1.0 (HKLM-x32\...\Omega Class Destroyer v1.0) (Version: - )
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Opera Stable 127.0.5778.125 (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Opera 127.0.5778.125) (Version: 127.0.5778.125 - Opera Software)
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.294.2.2 - Overwolf Ltd.)
Paradox Launcher v2 (HKLM\...\{425F66D2-D422-4F61-9896-1FCAA7D654E5}) (Version: 2.4.0 - Paradox Interactive)
Patriot Viper DRAM RGB (HKLM\...\{1F9C282E-CCB4-4D8E-A5CB-7B74DFCD8C95}) (Version: 1.0.9.7 - Patriot Memory) Hidden
Patriot Viper DRAM RGB (HKLM-x32\...\{1d74a898-7a92-484d-8f3b-e3b68dfb1264}) (Version: 1.0.9.7 - Patriot Memory) Hidden
Patriot Viper M2 SSD RGB (HKLM\...\{8B4C0A3D-C135-4E1F-98D8-3926494B4D61}) (Version: 1.1.0.3 - Patriot Memory) Hidden
Patriot Viper M2 SSD RGB (HKLM-x32\...\{6e0eff60-c502-43bb-8f56-360ca07e73d9}) (Version: 1.1.0.3 - Patriot Memory) Hidden
PHISON HAL (HKLM\...\{966E33F0-6786-4B38-AA29-C1B3F6C1955D}) (Version: 1.0.9.0 - PHISON Electronics Corp.) Hidden
PHISON HAL (HKLM-x32\...\{549da357-1b81-456b-83f2-dcc47c41dfff}) (Version: 1.0.9.0 - PHISON Electronics Corp.) Hidden
Proton VPN (HKLM\...\Proton VPN_is1) (Version: 4.3.5 - Proton AG)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.986 - Even Balance, Inc.)
Python 3.10.6 (64-bit) (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\{1fab56ed-b241-47a3-9abc-d51dc01b8dff}) (Version: 3.10.6150.0 - Python Software Foundation)
Python 3.10.6 Add to Path (64-bit) (HKLM\...\{541B7582-6B11-4457-ACB7-AAC2058B3229}) (Version: 3.10.6150.0 - Python Software Foundation) Hidden
Python 3.10.6 Core Interpreter (64-bit) (HKLM\...\{C91F8E4B-F9C1-4FD1-BCF3-4A91CDAD4B72}) (Version: 3.10.6150.0 - Python Software Foundation) Hidden
Python 3.10.6 Development Libraries (64-bit) (HKLM\...\{07CDAC2C-737C-4D8A-AF42-6BCE111699AE}) (Version: 3.10.6150.0 - Python Software Foundation) Hidden
Python 3.10.6 Documentation (64-bit) (HKLM\...\{4306E3B9-B285-4747-B84D-9FAF08AA412D}) (Version: 3.10.6150.0 - Python Software Foundation) Hidden
Python 3.10.6 Executables (64-bit) (HKLM\...\{750538B5-3E77-4F94-A64A-D3F09E608CA2}) (Version: 3.10.6150.0 - Python Software Foundation) Hidden
Python 3.10.6 pip Bootstrap (64-bit) (HKLM\...\{3983F17E-1088-46F9-BB00-53B888FF3835}) (Version: 3.10.6150.0 - Python Software Foundation) Hidden
Python 3.10.6 Standard Library (64-bit) (HKLM\...\{C3A057F3-209B-4244-9697-D69031B81AAB}) (Version: 3.10.6150.0 - Python Software Foundation) Hidden
Python 3.10.6 Tcl/Tk Support (64-bit) (HKLM\...\{A551B92B-102D-45DC-8050-5CE10DE81CD0}) (Version: 3.10.6150.0 - Python Software Foundation) Hidden
Python 3.10.6 Test Suite (64-bit) (HKLM\...\{1204E654-144E-4FBA-ACA0-558F6E54FC5A}) (Version: 3.10.6150.0 - Python Software Foundation) Hidden
Python 3.10.6 Utility Scripts (64-bit) (HKLM\...\{1D60E386-848D-45D1-BB0A-7E26A3E32011}) (Version: 3.10.6150.0 - Python Software Foundation) Hidden
Python Launcher (HKLM-x32\...\{0CD41B07-EDF9-4B77-8C7C-CCCA1C435970}) (Version: 3.10.7686.0 - Python Software Foundation)
qBittorrent (HKLM-x32\...\qBittorrent) (Version: 4.6.5 - The qBittorrent project)
Riot Client (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Riot Game Riot_Client.) (Version: - Riot Games, Inc)
Roblox Player for Benjamin (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\roblox-player) (Version: - Roblox Corporation)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.67.1178 - Rockstar Games)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.1.6.5 - Rockstar Games)
ROG Live Service (HKLM\...\{2D87BFB6-C184-4A59-9BBE-3E20CE797631}) (Version: 3.4.12.0 - ASUSTek COMPUTER INC.)
ROGFontInstaller (HKLM\...\{605108C1-153E-43D8-8A67-7CE326B00ECA}) (Version: 1.0.0 - ASUS)
Roma Surrectum III (HKLM-x32\...\Roma Surrectum III) (Version: 3.1 - Roma Surrectum)
Scotch and Soda Galaxy Class 1.0 (HKLM-x32\...\Scotch and Soda Galaxy Class) (Version: - )
SDK ARM Additions (HKLM-x32\...\{4392AB59-ABB1-2E5F-21DF-0029512F36DD}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
SDK ARM Redistributables (HKLM-x32\...\{EFF45DAA-D9C6-D242-802F-64D01D664406}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Star Trek™: Bridge Commander (HKLM-x32\...\1478736295_is1) (Version: 1.1 - GOG.com)
Star Wars Battlefront II Saga Edition (HKLM-x32\...\{27F760DF-577D-4777-BDC8-49115EF47F7F}_is1) (Version: 2.1 - Carborunda)
STAR WARS™ Battlefront™ II (HKLM-x32\...\{8a882ce0-0c0b-4eb2-850c-28ebadab4f50}) (Version: 1.1.8.16162 - Electronic Arts)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
SuperF4 (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\SuperF4) (Version: 1.4 - Stefan Sundin)
TavernWorker for Dark and Darker - Steam (HKLM\...\TavernWorker for Dark and Darker - Steam) (Version: - IRONMACE)
The Elder Scrolls Online (HKLM-x32\...\The Elder Scrolls Online) (Version: 2.6.3.0 - Zenimax Online Studios)
Third Age - Total War 3.0 (Part 1of2) (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Third Age - Total War 3.0 (Part 1of2)) (Version: - )
Third Age - Total War 3.0 (Part 2of2) (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Third Age - Total War 3.0 (Part 2of2)) (Version: - )
Thrustmaster Force Feedback Driver (HKLM-x32\...\{8F5A0981-5CDC-41D0-BCA2-AD3B777FC358}) (Version: 2.FFD.2018 - Thrustmaster)
Thrustmaster TARGET (HKLM-x32\...\{8036A569-CA02-4D33-A7E9-E9BC8A482E91}) (Version: 3.0.20.826 - Thrustmaster)
Thunderstore Mod Manager (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\Overwolf_ahpflogoookodlegojjphcjpjaejgghjnfcdjdmi) (Version: 1.39.4 - Overwolf app)
Total FotS MP mode version 0.000488 (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\{49307C38-3CD2-4024-BB82-F6F1C27A5F43}_is1) (Version: 0.000488 - Total FotS series devs)
TrackIR 5 (HKLM-x32\...\{6984ac4b-af1a-46af-bb10-ca1d3b7d4aba}) (Version: 5.4.2.0000 - NaturalPoint)
TreeSize Free V4.7.1 (64 bit) (HKLM\...\TreeSize Free_is1) (Version: 4.7.1 - JAM Software)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 137.0.10799 - Ubisoft)
UE4 Prerequisites (x64) (HKLM-x32\...\{0d995f46-317b-4b5f-bf3e-9f98bae9d339}) (Version: 1.0.14.0 - Epic Games, Inc.) Hidden
Universal CRT Extension SDK (HKLM-x32\...\{2D78CDCA-CE1A-6007-089C-E09908F8B1FD}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (HKLM-x32\...\{6D7ACCE0-E08A-78C8-2EF5-63E9FAEA185C}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Universal CRT Redistributable (HKLM-x32\...\{0460C87B-7F4C-3170-FAC9-B7A6AE5CE4E9}) (Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Redistributable (HKLM-x32\...\{8FB7909F-7079-FECC-1A06-B90A324C11E9}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Universal CRT Tools x64 (HKLM\...\{099178C3-9374-7477-8D34-B28BC8FC5488}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Universal CRT Tools x86 (HKLM-x32\...\{FC8CD9CE-8902-BB8D-F832-B33100439483}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Universal General MIDI DLS Extension SDK (HKLM-x32\...\{D2C85BA9-DA49-E2D5-D4C2-351C6C2C616F}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Universal Holtek RGB DRAM (HKLM\...\{826388E4-E31F-4514-948B-3BB954FB3EAF}) (Version: 1.0.0.6 - PD) Hidden
Universal Holtek RGB DRAM (HKLM-x32\...\{82f9b0cd-20fe-4ed6-a632-ef6daefb3c0d}) (Version: 1.0.0.6 - PD) Hidden
Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
vcpp_crt.redist.clickonce (HKLM-x32\...\{E2121340-F05B-48E1-BE1D-175FA97B2FC0}) (Version: 14.29.30157 - Microsoft Corporation) Hidden
Visual Studio Build Tools 2019 (HKLM-x32\...\5d7031b7) (Version: 16.11.51 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.12 - VideoLAN)
Vortex (HKLM\...\57979c68-f490-55b8-8fed-8b017a5af2fe) (Version: 1.7.8 - Black Tree Gaming Ltd.)
VS Script Debugging Common (HKLM\...\{A4272808-82F5-410F-A5F9-1BF6F63F6B9A}) (Version: 16.0.102.0 - Microsoft Corporation) Hidden
vs_communitymsi (HKLM-x32\...\{375AFBC1-2264-470C-9ADE-2C0BF23328A2}) (Version: 16.11.34930 - Microsoft Corporation) Hidden
vs_communitymsires (HKLM-x32\...\{3751D1CF-9A44-43D2-B4BB-80FA6E7925A8}) (Version: 16.10.31213 - Microsoft Corporation) Hidden
vs_filehandler_amd64 (HKLM-x32\...\{102E83BD-B6A0-4C74-AD22-7D594A3435D3}) (Version: 16.11.31503 - Microsoft Corporation) Hidden
vs_filehandler_x86 (HKLM-x32\...\{6CBDE7BE-E956-4E0E-81FB-2CB79190C924}) (Version: 16.11.31503 - Microsoft Corporation) Hidden
vs_FileTracker_Singleton (HKLM-x32\...\{AB0010C0-CA62-40C7-BDED-DB2514BDCF19}) (Version: 16.11.34827 - Microsoft Corporation) Hidden
vs_minshellinteropmsi (HKLM-x32\...\{883D29E5-9A41-4C45-A192-C10B8078BF0C}) (Version: 16.10.31306 - Microsoft Corporation) Hidden
vs_minshellmsi (HKLM-x32\...\{C1337DAC-D78B-4435-B795-29E8B7D5E75C}) (Version: 16.11.34902 - Microsoft Corporation) Hidden
vs_minshellmsires (HKLM-x32\...\{0916C6E1-6A0A-4887-9E00-D96FD44AFACE}) (Version: 16.10.31303 - Microsoft Corporation) Hidden
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Wand (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\WeMod) (Version: 12.9.1 - WeMod)
War Thunder Launcher 1.0.3.251 (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - Gaijin Entertainment)
WD_BLACK AN1500 (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK AN1500 (HKLM-x32\...\{e42c5874-37b0-4977-9e8d-70bf006e1f76}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
Webull Desktop 5.4.20 (HKLM-x32\...\{ACD3494F-0DDF-4520-B50A-2BEAAAD4DAC3}_is1) (Version: 5.4.20 - Webull Company, Inc.)
WinAppDeploy (HKLM-x32\...\{532B792A-577A-C684-3BE0-8266D973A314}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows App Certification Kit Native Components (HKLM\...\{524581F7-19EF-7567-B516-028842672D5C}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows App Certification Kit SupportedApiList x86 (HKLM-x32\...\{2FC6E546-6997-84F3-1877-1F91046B81E1}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows App Certification Kit x64 (HKLM-x32\...\{F814F02A-ECCD-2CB1-EB70-1E330C810521}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows Desktop Extension SDK (HKLM-x32\...\{16E355AC-58E7-65EE-794A-96ACB540AEA1}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows Desktop Extension SDK Contracts (HKLM-x32\...\{D721DCB8-0930-F41C-6110-A00C41A0D32C}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows IoT Extension SDK (HKLM-x32\...\{12A505CB-AA40-378D-854F-E2CF6A7FF75F}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows IoT Extension SDK Contracts (HKLM-x32\...\{C3D2FB47-9403-6F43-621C-5E5141B41EDA}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows Mobile Extension SDK (HKLM-x32\...\{D97824BC-1F9C-9A98-A458-5B0D06ECB755}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows Mobile Extension SDK Contracts (HKLM-x32\...\{DF4C943F-A46A-E489-69CE-189C54B0487E}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows PC Health Check (HKLM\...\{6798C408-2636-448C-8AC6-F4E341102D27}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Windows SDK (HKLM-x32\...\{D0CDB467-54EA-52D0-C1EC-B0D8323015B0}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK AddOn (HKLM-x32\...\{E6F877A1-2F65-4BF0-87B6-A4071B7663D3}) (Version: 10.1.0.0 - Microsoft Corporation)
Windows SDK ARM Desktop Tools (HKLM-x32\...\{FB88CFF1-D06D-72C3-0887-53277E92DAD2}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Headers arm (HKLM-x32\...\{8BE03D0F-0D5D-67F0-B04C-EC13A64C4BAC}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Headers arm64 (HKLM-x32\...\{27B3D59D-9D54-3EA4-4CCE-AE5E57918284}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Headers x64 (HKLM-x32\...\{A3B7C26F-BE21-6D16-77CA-BD5F1394A538}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Headers x86 (HKLM-x32\...\{A309246D-0781-212D-1424-4A6505425A44}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Libs arm (HKLM-x32\...\{CE78C7EF-312F-35EB-82F9-FDC326F08658}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Libs arm64 (HKLM-x32\...\{CA8A9642-147B-190E-76A3-87A23B97ADF9}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Libs x64 (HKLM-x32\...\{E22D77C1-306A-C916-15A0-08189F27E575}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Libs x86 (HKLM-x32\...\{842FBFC4-CCCC-6799-1998-17DED2BCE174}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Tools arm64 (HKLM-x32\...\{2825810D-881C-9FBB-7836-B0117552064F}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Tools x64 (HKLM-x32\...\{2A0C6A0D-A8A7-89B6-AA43-B5DF54E1E837}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Tools x86 (HKLM-x32\...\{0A2BCE78-63A3-9F82-AD76-17C310B3EAEF}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK DirectX x64 Remote (HKLM\...\{61CAE9AB-D59A-4180-FBD1-9DE7046D0BCF}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK DirectX x86 Remote (HKLM-x32\...\{8D87E449-DE1F-375B-D142-5391C06ED75C}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK EULA (HKLM-x32\...\{E2037558-0217-B40C-F00C-07FDBB82347B}) (Version: 10.1.19041.5609 - Microsoft Corporations) Hidden
Windows SDK Facade Windows WinMD Versioned (HKLM-x32\...\{DE56820F-73F3-83D6-DA12-CEF0E7585FDD}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Apps (HKLM-x32\...\{778D640A-21E7-0A4A-0FB6-7C6F7FA4FDC2}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Apps Contracts (HKLM-x32\...\{911F65D7-229E-FDF5-2CDC-7A778E965FAB}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Apps DirectX x86 Remote (HKLM-x32\...\{AF19AD5B-2DF6-9862-B161-26B5BDB6D8EE}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Apps Headers (HKLM-x32\...\{9AE69F25-AAA9-19CA-A490-FD002EF55FB0}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Apps Libs (HKLM-x32\...\{8A69A3F8-0D09-7AEC-714B-21F63FD4F131}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Apps Metadata (HKLM-x32\...\{80A87973-098D-8903-956C-3244FC0461A1}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Apps Tools (HKLM-x32\...\{A8E49937-CC70-12A0-8B88-22A2AE629655}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Managed Apps Libs (HKLM-x32\...\{EDD486C3-91EA-0B4E-2618-4F4885CC6945}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Modern Non-Versioned Developer Tools (HKLM-x32\...\{77E28521-C063-BF41-60C0-0140F5C2F811}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Modern Versioned Developer Tools (HKLM-x32\...\{6293EB7C-9B82-5D3F-016A-87D94E8C8E85}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Redistributables (HKLM-x32\...\{44C9B7CF-544B-6C2D-0AA9-DBABEE0A1D7B}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Signing Tools (HKLM-x32\...\{2BCF4E86-E0B2-C9E0-10DC-26935253CF3D}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows Software Development Kit - Windows 10.0.19041.5609 (HKLM-x32\...\{5f4dc51d-f151-4325-8ba1-8b26169529a9}) (Version: 10.1.19041.5609 - Microsoft Corporation)
Windows Team Extension SDK (HKLM-x32\...\{A5B25F16-0699-7F93-9154-D749B6037381}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows Team Extension SDK Contracts (HKLM-x32\...\{47B777FC-0E69-8326-B50D-FEAB5995B4D6}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRAR 6.02 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.02.0 - win.rar GmbH)
WinRT Intellisense Desktop - en-us (HKLM-x32\...\{78F26630-7E77-27FD-1780-651E8B0EF32A}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense Desktop - Other Languages (HKLM-x32\...\{2D57E5F2-DE65-816E-0AB4-58E046C34205}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - en-us (HKLM-x32\...\{D09F9C76-321B-88B7-316B-E655F86BDB37}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - Other Languages (HKLM-x32\...\{EC30B4D9-09E0-D607-CA2D-05EFE8F39C53}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense Mobile - en-us (HKLM-x32\...\{0C75EFBC-6D0C-7516-AE74-4F9FADE79EA2}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - en-us (HKLM-x32\...\{ED40E403-CBE8-0CA3-5662-E8859CBFA1C0}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - Other Languages (HKLM-x32\...\{EE47B659-7AF5-9302-D4A4-3204070DB9C6}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - en-us (HKLM-x32\...\{17FAE644-5409-EA4F-91AE-B4F213FB087B}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - Other Languages (HKLM-x32\...\{B9369888-3610-E674-C077-322D40A10123}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Wrye Bash (HKLM-x32\...\Wrye Bash) (Version: 309.1.0.0.0 - Wrye & Wrye Bash Development Team)
Yorktown Class ships 1.0 (HKLM-x32\...\Yorktown Class ships) (Version: 1.0 - Vladko1)
Zoom (HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\ZoomUMX) (Version: 5.4.7 (59784.1220) - Zoom Video Communications, Inc.)
Packages:
=========
Armoury Crate -> C:\Program Files\WindowsApps\B9ECED6F.ArmouryCrate_6.4.10.0_x64__qmba6cd70vzyy [2026-03-03] (ASUSTeK COMPUTER INC.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-11-11] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-11-11] (Microsoft Corporation) [MS Ad]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.969.0_x64__56jybvy8sckqj [2025-11-12] (NVIDIA Corp.)
Photos Media Engine Add-on -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2021-03-23] (Microsoft Corporation)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{03B29243-35DA-4858-920E-B70A007DF5AA}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.217.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{1108FD1C-492F-4251-B9DB-77F0274267B2}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.187.37\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{1C67DF85-7959-43C0-92F8-2CAD0314C31C}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.201.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{22D49062-B8D3-4DD5-B9C2-A044EA04D5CD}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.223.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{2ABD6384-2E18-40E8-8439-F06D21E0B03D}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.195.43\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{2B49DB21-41C5-44C0-8358-CA4C76205AE1}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.209.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{2EF7E390-2F7C-4F9A-9B7D-4A87B56B711D}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.173.51\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{2FDB3305-19B8-4FE2-972B-ED5E97CBBD6E}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.195.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{318cc681-4136-d2bd-6204-14d67a05b724}\localserver32 -> "C:\Program Files\Proton\VPN\v3.2.1\ProtonVPN.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{38971E90-14FD-44F6-AA45-1447B653F873}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.173.45\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{41B09861-5409-4D44-8CA4-D49FBFAA2E6F}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.195.49\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{448DD314-7FBB-429C-9DAA-C05A00D235A8}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.215.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{4FFB4BD8-A109-4F25-A4DB-313678B19417}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.195.31\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{50726f74-6f6e-2e56-504e-000000000000}\localserver32 -> C:\Program Files\Proton\VPN\v4.3.5\ProtonVPN.Client.exe (Proton AG -> ProtonVPN)
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{5247F326-2FF0-4920-998E-12AA35F0883C}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.213.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{5EA43877-C6D8-4885-B77A-C0BB27E94372}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.225.7\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{5FC44EBC-3A1F-4FBB-85E5-34405788C8D7}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.187.41\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{608D599A-DCA6-4A7C-BED7-AFCD8465345A}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.175.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{64C6EFB9-8F79-4106-B975-067448DC768F}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.177.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{6A49690B-7DB6-424B-81CE-F51078F2A58D}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.203.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{6DD6748E-7DAE-47EF-B4D5-03AA1B06D697}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.187.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{72726D01-426C-4B35-8266-B4496CAA889E}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.183.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{78C1ADF4-6DAE-4164-AEFA-4E3EAD9E750A}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.195.19\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{79F05C14-E714-4C12-9924-93C812894CB0}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.195.57\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{7C9A348D-C321-47AC-904F-150312A5430F}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.175.27\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{7EFB4924-4B93-4C43-9832-9C3D05E85214}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.195.59\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{81093D63-7825-417B-BFC8-ADC63FA4E53D}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.225.7\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{83F21C4B-8643-4A08-A29A-822AFD835037}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.193.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{88B20FC8-EBD6-4181-B5F6-50F45BFF722E}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.167.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{8DC94452-5748-435A-B24F-B0F57718821E}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.225.7\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{997809F3-33FD-4FD6-A2ED-CEF50F3263B1}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.169.31\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{9C391760-8CB8-4F1E-AB7D-0C9915EFB004}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.211.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{A087E49F-1F8E-4603-A200-55537B737421}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.195.25\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{A78355B5-2A4D-486B-B97A-43448FC8C34D}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.207.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{ABF66F82-B04C-4FE4-8272-661539463FE1}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.171.37\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{AE1542A7-3989-481B-93A9-1500C5F56B14}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.185.27\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{B258532D-3529-4BEB-BF38-F08F98B3968C}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.195.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{B29F5F83-90DF-479A-BDE7-8A9F4412E394}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.171.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{BB04C6F8-598E-4733-ABB4-07489C863436}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.205.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{BC4C72EF-3055-4A6D-86E1-AE4D24DB63CA}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.195.35\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{BCF99248-58CE-4562-B227-14D1E171B49D}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.221.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{BEA218D2-6950-497B-9434-61683EC065FE}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Programs\Python\Launcher\pyshellext.amd64.dll (Python Software Foundation -> Python Software Foundation)
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{BFBE0943-74C5-40E0-9E80-0B808109E95D}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.163.19\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{C88B3957-621C-415B-8EE5-B688FC7EF924}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.195.61\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{CAE1760A-CB07-481B-8F9A-BC65510AF5D5}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.185.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{D1CE12B0-2529-4B24-BE8E-189735EA0DC1}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.165.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{D2188EEC-2B0F-488C-8ECA-5285E8ECD87D}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.195.69\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{D8599F80-3D26-46D2-8CF1-0AD21B0ECF31}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.195.65\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{DAA7499A-B3AC-4419-A89B-124318504051}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.185.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{E3D57E77-FE71-4D06-BD34-D48820074909}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.181.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{E76F97B1-1AE9-497C-9FA4-F57BBABAD54A}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.185.17\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{E8791438-3525-48BF-A600-C577AD1674C2}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.173.49\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{ECCE2756-C45D-4E13-BC2D-EC9F138997E6}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.199.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{F1CBF5EB-347F-4E4C-90AC-E43339FC34EC}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.173.55\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001_Classes\CLSID\{F46A78BD-06FC-442C-88DF-0500F08F2379}\InprocServer32 -> C:\Users\Benjamin\AppData\Local\Microsoft\EdgeUpdate\1.3.195.45\psuser_64.dll => No File
ContextMenuHandlers1: [$PowerDVD19] -> {F29ECC0C-F1D0-4132-B1BC-E317171FFC76} => C:\ProgramData\CyberLink\PowerDVD19\OpenWith\PDVD_Shell64.dll [2019-07-16] (CyberLink Corp. -> CyberLink Corp.)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll [2021-02-14] (Notepad++ -> )
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_fe5f369669db2f36\nvshext.dll [2025-07-28] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Benjamin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Calculator.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=joodangkbfjnajiiifokapkpmhfnpleo
ShortcutWithArgument: C:\Users\Benjamin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Anaconda (miniconda)\Anaconda Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) -> "/K" C:\pinokio\bin\miniconda\Scripts\activate.bat C:\pinokio\bin\miniconda
==================== Loaded Modules (Whitelisted) =============
2025-02-25 12:29 - 2024-07-03 16:49 - 000346112 _____ () [File not signed] \\?\C:\Program Files (x86)\ASUS\ArmouryDevice\resources\app.asar.unpacked\node_modules\@img\sharp-win32-ia32\lib\sharp-win32-ia32.node
2023-10-25 03:23 - 2024-08-13 15:58 - 000449536 _____ () [File not signed] \\?\C:\Program Files (x86)\ASUS\ArmouryDevice\resources\app.asar.unpacked\node_modules\ac_node_addon\build\Release\ac_node_addon.node
2024-12-21 12:32 - 2026-02-08 13:44 - 000042752 _____ (ASUSTeK Computer Inc. -> ) [File not signed] C:\Program Files (x86)\ASUS\AXSP\4.03.12\PEbiosinterface32.dll
2021-07-10 22:25 - 2020-04-01 14:46 - 000037376 _____ (Guillemot Corporation) [File not signed] C:\Program Files (x86)\Thrustmaster\TARGET\cint.dll
2021-07-10 22:25 - 2016-04-14 12:46 - 001036800 _____ (Guillemot Corporation) [File not signed] C:\Program Files (x86)\Thrustmaster\TARGET\TmCommon.dll
2021-07-10 22:25 - 2018-02-15 15:23 - 000190976 _____ (Guillemot Corporation) [File not signed] C:\Program Files (x86)\Thrustmaster\TARGET\TmHidControl.dll
2020-12-07 19:45 - 2019-02-21 09:00 - 000078336 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2024-08-24 12:35 - 2025-08-28 18:28 - 000000000 ____L (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\MessageBus\NvMessageBusBroadcast.dll] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\NvMessageBusBroadcast.dll
2016-09-14 14:31 - 2016-09-14 14:31 - 000500736 ____S (SEIKO EPSON CORPORATION) [File not signed] C:\Windows\System32\enppmon.dll
2025-09-17 21:54 - 2025-09-15 21:20 - 000135168 _____ (Softdeluxe) [File not signed] C:\Users\Benjamin\AppData\Local\Programs\Softdeluxe\Free Download Manager\downloadsbatch.dll
2025-09-17 21:54 - 2025-09-15 21:32 - 004421120 _____ (Softdeluxe) [File not signed] C:\Users\Benjamin\AppData\Local\Programs\Softdeluxe\Free Download Manager\downloadsbt.dll
2025-09-17 21:54 - 2025-09-15 21:28 - 000134656 _____ (Softdeluxe) [File not signed] C:\Users\Benjamin\AppData\Local\Programs\Softdeluxe\Free Download Manager\downloadsfragments.dll
2025-09-17 21:54 - 2025-09-15 21:33 - 000116736 _____ (Softdeluxe) [File not signed] C:\Users\Benjamin\AppData\Local\Programs\Softdeluxe\Free Download Manager\downloadsjsp.dll
2025-09-17 21:54 - 2025-09-15 21:31 - 000241664 _____ (Softdeluxe) [File not signed] C:\Users\Benjamin\AppData\Local\Programs\Softdeluxe\Free Download Manager\downloadsm3u.dll
2025-09-17 21:54 - 2025-09-15 21:31 - 000688640 _____ (Softdeluxe) [File not signed] C:\Users\Benjamin\AppData\Local\Programs\Softdeluxe\Free Download Manager\downloadsms.dll
2025-09-17 21:54 - 2025-09-15 21:28 - 001168384 _____ (Softdeluxe) [File not signed] C:\Users\Benjamin\AppData\Local\Programs\Softdeluxe\Free Download Manager\downloadswww.dll
2025-09-17 21:54 - 2025-09-15 20:47 - 000044032 _____ (Softdeluxe) [File not signed] C:\Users\Benjamin\AppData\Local\Programs\Softdeluxe\Free Download Manager\logger.dll
2025-09-17 21:54 - 2025-09-15 20:50 - 000231424 _____ (Softdeluxe) [File not signed] C:\Users\Benjamin\AppData\Local\Programs\Softdeluxe\Free Download Manager\quazip.dll
2025-09-17 21:54 - 2025-09-15 21:18 - 000745472 _____ (Softdeluxe) [File not signed] C:\Users\Benjamin\AppData\Local\Programs\Softdeluxe\Free Download Manager\vmsclshared.dll
2025-09-17 21:54 - 2025-09-15 20:54 - 000038400 _____ (Softdeluxe) [File not signed] C:\Users\Benjamin\AppData\Local\Programs\Softdeluxe\Free Download Manager\winunivappfeatures.dll
2025-09-17 21:54 - 2025-06-11 13:54 - 004853760 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Users\Benjamin\AppData\Local\Programs\Softdeluxe\Free Download Manager\libcrypto-3-x64.dll
2025-09-17 21:54 - 2025-06-11 13:54 - 001173504 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Users\Benjamin\AppData\Local\Programs\Softdeluxe\Free Download Manager\libssl-3-x64.dll
==================== Alternate Data Streams (Whitelisted) ========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Windows\tracing:? [16]
AlternateDataStreams: C:\ProgramData\mntemp:8EAD8B3507 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini:B1DA6C571C [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 19 (64-bit).lnk:71FCFD39C3 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk:BE32D07BC5 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++.lnk:159ADC9AA1 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk:F20EF51E1F [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Webull Desktop.lnk:C5A5362760 [3442]
AlternateDataStreams: C:\Users\Benjamin\Application Data:d988fd1ce0beed92b2bcb751f85f2bf5 [394]
AlternateDataStreams: C:\Users\Benjamin\AppData\Roaming:d988fd1ce0beed92b2bcb751f85f2bf5 [394]
AlternateDataStreams: C:\Users\Benjamin\AppData\Local\Microsoft:ISBD [32]
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com/?pc=COS2&ptag=D011821-A9FCDBB39EF&form=CONMHP&conlogo=CT3335799
BHO: Bitdefender Anti-tracker -> {159ff5d5-55f1-4d2f-b706-767a55f77abb} -> C:\Program Files\Bitdefender\Bitdefender Security App\bdtrackerstbie.dll [2026-03-15] (Bitdefender SRL -> Bitdefender)
BHO-x32: Bitdefender Anti-tracker -> {159ff5d5-55f1-4d2f-b706-767a55f77abb} -> C:\Program Files\Bitdefender\Bitdefender Security App\antispam32\bdtrackerstbie.dll [2026-03-15] (Bitdefender SRL -> Bitdefender)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_361\bin\ssv.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_361\bin\jp2ssv.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation)
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\webcompanion.com -> hxxp://webcompanion.com
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2019-12-07 02:14 - 2019-12-07 02:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 208.67.222.222 - 208.67.220.220
Windows Firewall is enabled.
Network Binding:
=============
Bluetooth Network Connection: Bluetooth Device (Personal Area Network) -> bthpan.sys
Ethernet 2: LogMeIn Hamachi Virtual Ethernet Adapter -> Hamdrv.sys
Wi-Fi: Intel(R) Wi-Fi 6 AX201 160MHz -> Netwtw10.sys
Ethernet: Intel(R) Ethernet Controller (2) I225-V -> e2f.sys
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files\Oculus\Support\oculus-runtime;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\dotnet\;C:\Program Files\nodejs\;C:\Program Files\Git\cmd;C:\Program Files\NVIDIA Corporation\NVIDIA app\NvDLISR
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Benjamin\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\yesterdays-enterprise.jpg
HKU\S-1-5-80-3238277391-1891473654-1195688043-4149050645-2494734967\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Users\Benjamin\Desktop\Misc\gta
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Users\Benjamin\Desktop\Misc\RatPoison-master
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Games\MO2
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Users\Benjamin\AppData\Local\ModOrganizer
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Modding\MO2
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|ModOrganizer.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|usvfs_proxy_x86.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|usvfs_proxy_x64.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|nxmhandler.exe
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run: => "Logitech Download Assistant"
HKLM\...\StartupApproved\Run: => "PowerDVD19Agent"
HKLM\...\StartupApproved\Run: => "Riot Vanguard"
HKLM\...\StartupApproved\Run32: => "FireStormStartUpAutoRun"
HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
HKLM\...\StartupApproved\Run32: => "FUFAXSTM"
HKLM\...\StartupApproved\Run32: => "FUFAXRCV"
HKLM\...\StartupApproved\Run32: => "EEventManager"
HKLM\...\StartupApproved\Run32: => "PowerDVD19Agent"
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\StartupApproved\Run: => "Gaijin.Net Updater"
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\StartupApproved\Run: => "GogGalaxy"
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\StartupApproved\Run: => "Web Companion"
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\StartupApproved\Run: => "EPLTarget\P0000000000000001"
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\StartupApproved\Run: => "EPLTarget\P0000000000000000"
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\StartupApproved\Run: => "EPSDNMON"
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\StartupApproved\Run: => "LGHUB"
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\StartupApproved\Run: => "Microsoft Edge Update"
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\StartupApproved\Run: => "Overwolf"
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_A9DE5DA9690ADF3E72A6634646691789"
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\StartupApproved\Run: => "EADM"
HKU\S-1-5-21-3723862647-2272868534-3565129313-1001\...\StartupApproved\Run: => "RiotClient"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{C397D0D0-9E10-4C15-8750-2D7787A9CBBB}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{055FCFF5-A064-4D50-A11B-9C0116F1CF05}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{59689082-0D73-442A-A9A5-CE02827D6E64}] => (Allow) C:\Games\Ultimate Admiral Dreadnoughts\launcher.exe => No File
FirewallRules: [{135A7B55-7410-403F-96C0-1E684C4195D0}] => (Allow) C:\Games\Ultimate Admiral Dreadnoughts\launcher.exe => No File
FirewallRules: [TCP Query User{4BD8D6CA-30CD-46E5-B1D9-B15DA985981B}C:\program files (x86)\call of duty modern warfare\modernwarfare.exe] => (Allow) C:\program files (x86)\call of duty modern warfare\modernwarfare.exe => No File
FirewallRules: [UDP Query User{50B4A6FC-1FB9-4CE6-96CB-B2208B9951AB}C:\program files (x86)\call of duty modern warfare\modernwarfare.exe] => (Allow) C:\program files (x86)\call of duty modern warfare\modernwarfare.exe => No File
FirewallRules: [{1B9407BF-8EB4-49C5-B7F7-B2FC7EAC27B7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\launcher.exe => No File
FirewallRules: [{0D11FE5A-B76E-4D1C-A772-142BD79F1124}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\launcher.exe => No File
FirewallRules: [TCP Query User{4895A21C-D52A-4E69-B546-49E998A851FE}C:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe => No File
FirewallRules: [UDP Query User{CA1CDF0A-27F7-4DAE-B5DF-26B4612D2851}C:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe => No File
FirewallRules: [{0DE0C026-DDEF-4EF9-8BA8-8C97405FB64C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\UBOAT\UBOAT Launcher.exe => No File
FirewallRules: [{2FA4EAAD-3518-40F7-BAE3-09BBD0A6963F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\UBOAT\UBOAT Launcher.exe => No File
FirewallRules: [{B2A9DDB7-F6BE-4867-BE6C-3A7186566D7C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization V\LaunchPad\LaunchPad.exe => No File
FirewallRules: [{93BE2007-0319-4FC0-8404-497B6F72AEBF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization V\LaunchPad\LaunchPad.exe => No File
FirewallRules: [{71274472-DA23-4AE5-923A-0806D6887504}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hearts of Iron IV\dowser.exe => No File
FirewallRules: [{993EC59C-507B-4337-90F1-A042467F17F8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hearts of Iron IV\dowser.exe => No File
FirewallRules: [TCP Query User{B5D786FE-267B-4355-A0C2-9AC399FDDD71}C:\program files (x86)\steam\steamapps\common\hearts of iron iv\hoi4.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\hearts of iron iv\hoi4.exe => No File
FirewallRules: [UDP Query User{DCDF9747-1B7B-477E-AC59-43D2F122567D}C:\program files (x86)\steam\steamapps\common\hearts of iron iv\hoi4.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\hearts of iron iv\hoi4.exe => No File
FirewallRules: [TCP Query User{D5567C88-54F4-433A-B107-09ADBC2AE3D3}C:\program files (x86)\steam\steamapps\common\total war rome ii\rome2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\total war rome ii\rome2.exe => No File
FirewallRules: [UDP Query User{45F12E0B-CF38-41EE-B040-F2C5393AAAAC}C:\program files (x86)\steam\steamapps\common\total war rome ii\rome2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\total war rome ii\rome2.exe => No File
FirewallRules: [{CFE62218-67BD-4C09-B856-567DBD9265BA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Total War Rome II\launcher\launcher.exe => No File
FirewallRules: [{581638BB-A0E5-49C1-8C50-B2393AA26540}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Total War Rome II\launcher\launcher.exe => No File
FirewallRules: [{CD04F578-48B6-4ECD-A05C-FCFA23B655C1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Rome Total War Alexander\testappa.exe => No File
FirewallRules: [{0F42DB79-F0F4-400C-9597-C3D1B7310D8B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Rome Total War Alexander\testappa.exe => No File
FirewallRules: [{AA869A2C-6CE1-468F-B80A-DB722D17196B}] => (Allow) C:\Games2\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{9426659D-A0AB-4504-8A5C-C9C01F9770E0}] => (Allow) C:\Games2\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [TCP Query User{719D5FAA-3B0B-4447-86EC-3C2AF6E3D8FE}C:\games2\steamapps\common\war thunder\win64\aces.exe] => (Block) C:\games2\steamapps\common\war thunder\win64\aces.exe => No File
FirewallRules: [UDP Query User{BA018CC4-7FCB-469E-A06A-C3DBF899C212}C:\games2\steamapps\common\war thunder\win64\aces.exe] => (Block) C:\games2\steamapps\common\war thunder\win64\aces.exe => No File
FirewallRules: [{7ED5A215-781A-48E7-98D6-5DFA932A3F89}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{51C4527F-9808-4669-99C8-4E264903A642}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{B69B1715-5B56-491C-BFC3-D5333631B7B7}C:\games2\steamapps\common\sandstorm\insurgency\binaries\win64\insurgencyclient-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\sandstorm\insurgency\binaries\win64\insurgencyclient-win64-shipping.exe => No File
FirewallRules: [UDP Query User{A2B9E7D1-B632-4F8F-8E0A-983339124B0A}C:\games2\steamapps\common\sandstorm\insurgency\binaries\win64\insurgencyclient-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\sandstorm\insurgency\binaries\win64\insurgencyclient-win64-shipping.exe => No File
FirewallRules: [TCP Query User{2E9A4460-2093-4F1D-BCE5-F749D1FCC2E9}C:\games2\steamapps\common\red dead redemption 2\rdr2.exe] => (Allow) C:\games2\steamapps\common\red dead redemption 2\rdr2.exe => No File
FirewallRules: [UDP Query User{95E4DCE2-A9CB-4DAD-8152-51F7599473CA}C:\games2\steamapps\common\red dead redemption 2\rdr2.exe] => (Allow) C:\games2\steamapps\common\red dead redemption 2\rdr2.exe => No File
FirewallRules: [{ABF86F78-39F4-468D-9277-D3E2066A5AB6}] => (Allow) C:\Games2\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{2B4C719D-2E88-42AA-837A-8E0D919152AE}] => (Allow) C:\Games2\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [TCP Query User{C88C4FAA-CFDE-4409-9B21-3FA7DDD7A927}C:\games2\steamapps\common\squad\squadgame\binaries\win64\squadgame.exe] => (Allow) C:\games2\steamapps\common\squad\squadgame\binaries\win64\squadgame.exe => No File
FirewallRules: [UDP Query User{F4475A23-4858-443F-A7CC-F5A2A83F2849}C:\games2\steamapps\common\squad\squadgame\binaries\win64\squadgame.exe] => (Allow) C:\games2\steamapps\common\squad\squadgame\binaries\win64\squadgame.exe => No File
FirewallRules: [TCP Query User{1CD04067-A201-419B-B5E3-9826CF5C456B}C:\games2\steamapps\common\grand theft auto v\gta5.exe] => (Allow) C:\games2\steamapps\common\grand theft auto v\gta5.exe => No File
FirewallRules: [UDP Query User{8869E54B-7E5D-4556-A9D3-C305F26F58B7}C:\games2\steamapps\common\grand theft auto v\gta5.exe] => (Allow) C:\games2\steamapps\common\grand theft auto v\gta5.exe => No File
FirewallRules: [TCP Query User{5B8DF216-FC10-4564-BBCA-A31B7F6F18AC}C:\program files (x86)\call of duty black ops cold war\blackopscoldwar.exe] => (Allow) C:\program files (x86)\call of duty black ops cold war\blackopscoldwar.exe => No File
FirewallRules: [UDP Query User{CBB88FBA-BF8F-43EE-85C4-74221D5AD899}C:\program files (x86)\call of duty black ops cold war\blackopscoldwar.exe] => (Allow) C:\program files (x86)\call of duty black ops cold war\blackopscoldwar.exe => No File
FirewallRules: [TCP Query User{6C68440F-44B4-43BA-B876-06D99ED075EE}C:\games2\steamapps\common\arma 3\arma3_x64.exe] => (Allow) C:\games2\steamapps\common\arma 3\arma3_x64.exe => No File
FirewallRules: [UDP Query User{EF82FA2D-0A73-4169-B311-652049AE2189}C:\games2\steamapps\common\arma 3\arma3_x64.exe] => (Allow) C:\games2\steamapps\common\arma 3\arma3_x64.exe => No File
FirewallRules: [TCP Query User{95037251-03A2-46EE-836E-9C5A0171EA4D}C:\users\benjamin\desktop\misc\random\futa fix dick dine and dash\game.exe] => (Block) C:\users\benjamin\desktop\misc\random\futa fix dick dine and dash\game.exe => No File
FirewallRules: [UDP Query User{099C9627-5A7D-4735-9EA3-02446083F0BC}C:\users\benjamin\desktop\misc\random\futa fix dick dine and dash\game.exe] => (Block) C:\users\benjamin\desktop\misc\random\futa fix dick dine and dash\game.exe => No File
FirewallRules: [TCP Query User{E8B19FC8-4CD7-4F90-9086-F49F92E535E8}C:\games2\steamapps\common\foxhole\war\binaries\win64\war-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\foxhole\war\binaries\win64\war-win64-shipping.exe => No File
FirewallRules: [UDP Query User{B2E2F998-6C1D-40CF-8A8B-12A0F201FD73}C:\games2\steamapps\common\foxhole\war\binaries\win64\war-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\foxhole\war\binaries\win64\war-win64-shipping.exe => No File
FirewallRules: [{814EC43F-F266-4CE5-A10C-757691F9CDA9}] => (Allow) C:\Games2\steamapps\common\Deceit\bin\win_x64\Deceit.exe => No File
FirewallRules: [{C0D98B86-1091-4CD5-8DD0-6DCC56468916}] => (Allow) C:\Games2\steamapps\common\Deceit\bin\win_x64\Deceit.exe => No File
FirewallRules: [TCP Query User{B6B4C848-1A02-4758-B701-D5C8EBE7DEC9}C:\users\benjamin\desktop\misc\ratpoison-master\jdk-14.0.2\bin\java.exe] => (Allow) C:\users\benjamin\desktop\misc\ratpoison-master\jdk-14.0.2\bin\java.exe => No File
FirewallRules: [UDP Query User{F9EB2F50-85EF-472B-B8CA-5FEC69F4DE03}C:\users\benjamin\desktop\misc\ratpoison-master\jdk-14.0.2\bin\java.exe] => (Allow) C:\users\benjamin\desktop\misc\ratpoison-master\jdk-14.0.2\bin\java.exe => No File
FirewallRules: [{5D3E5817-4931-4810-8DE6-1F10F4EC44BE}] => (Allow) C:\Users\Benjamin\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{6D6BB774-C084-4114-87D2-2F8BF2B6670F}] => (Allow) C:\Users\Benjamin\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{45938486-0370-455C-8238-791565FDE9F7}] => (Allow) C:\Users\Benjamin\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{0CB7FC50-63ED-4F80-B448-0E6359F2A127}] => (Allow) C:\Users\Benjamin\AppData\Roaming\uTorrent\uTorrent.exe => No File
FirewallRules: [{616EEA9E-BBA9-422A-9E38-3DCCE093DEB9}] => (Allow) C:\Users\Benjamin\AppData\Roaming\uTorrent\uTorrent.exe => No File
FirewallRules: [TCP Query User{F01FAD04-752A-4B1F-AD13-D5BC518B47C3}C:\program files (x86)\zotacfirestorm\firestorm.exe] => (Allow) C:\program files (x86)\zotacfirestorm\firestorm.exe (ZOTAC Co.Ltd) [File not signed]
FirewallRules: [UDP Query User{59D3D086-F8B6-440C-916B-02FBDC6D8CED}C:\program files (x86)\zotacfirestorm\firestorm.exe] => (Allow) C:\program files (x86)\zotacfirestorm\firestorm.exe (ZOTAC Co.Ltd) [File not signed]
FirewallRules: [TCP Query User{5849B7BB-A6AB-4B47-BAC2-F9B6FC53C91B}C:\games2\steamapps\common\total war rome ii\rome2.exe] => (Allow) C:\games2\steamapps\common\total war rome ii\rome2.exe => No File
FirewallRules: [UDP Query User{DC90DF2F-2407-4E9C-B493-3BBE6916AFB6}C:\games2\steamapps\common\total war rome ii\rome2.exe] => (Allow) C:\games2\steamapps\common\total war rome ii\rome2.exe => No File
FirewallRules: [{3367CB1F-8E89-466F-8069-AB0ABA0C3BF7}] => (Allow) C:\Games2\steamapps\common\Europa Universalis IV\eu4.exe => No File
FirewallRules: [{A7EE53BD-B34A-42C0-8F58-3E38CE4588F9}] => (Allow) C:\Games2\steamapps\common\Europa Universalis IV\eu4.exe => No File
FirewallRules: [TCP Query User{9BC5B5FB-04B2-41E4-A4FF-D7F2268E7BE9}C:\program files (x86)\battle.net\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{555B335E-5EF1-40DC-B404-36E7829EF076}C:\program files (x86)\battle.net\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{964934D8-D278-4E13-BF32-EF9B90B5ACC0}] => (Allow) C:\Games2\steamapps\common\Call to Arms - Gates of Hell Ostfront BETA\binaries\x64\call_to_arms.exe => No File
FirewallRules: [{7B2544ED-9FBA-4AFE-8304-8545AEC18C3F}] => (Allow) C:\Games2\steamapps\common\Call to Arms - Gates of Hell Ostfront BETA\binaries\x64\call_to_arms.exe => No File
FirewallRules: [TCP Query User{23CC5658-4BCD-4186-99D3-3F63C864116D}C:\games2\steamapps\common\armored warfare\gamecenter\gamecenter.exe] => (Allow) C:\games2\steamapps\common\armored warfare\gamecenter\gamecenter.exe => No File
FirewallRules: [UDP Query User{167CF871-1AA7-4DBB-A52E-F7526BDC74A2}C:\games2\steamapps\common\armored warfare\gamecenter\gamecenter.exe] => (Allow) C:\games2\steamapps\common\armored warfare\gamecenter\gamecenter.exe => No File
FirewallRules: [TCP Query User{8A36C00D-C177-4881-BF12-A75F6223E000}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [UDP Query User{923184F4-00A7-4BD6-A77C-55DDA4F2AED6}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [TCP Query User{970054EE-3FD9-4DBB-9950-5105C15077E7}C:\games\world_of_tanks_na\win64\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_na\win64\worldoftanks.exe => No File
FirewallRules: [UDP Query User{F7EB8642-8D9B-494C-A8A9-E9DB80EAE36E}C:\games\world_of_tanks_na\win64\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_na\win64\worldoftanks.exe => No File
FirewallRules: [TCP Query User{9CAC7791-1410-4338-8184-99040A2C702A}C:\users\benjamin\desktop\misc\random\sensual adventures - the game\sensual adventures.exe] => (Block) C:\users\benjamin\desktop\misc\random\sensual adventures - the game\sensual adventures.exe => No File
FirewallRules: [UDP Query User{B7C36F89-917E-4B11-A5D8-3DEDDF017F7A}C:\users\benjamin\desktop\misc\random\sensual adventures - the game\sensual adventures.exe] => (Block) C:\users\benjamin\desktop\misc\random\sensual adventures - the game\sensual adventures.exe => No File
FirewallRules: [{3AD2F1CB-3F3A-4BAC-A3DB-56CD300D210E}] => (Allow) C:\Games2\steamapps\common\War Thunder\win32\eac_launcher.exe => No File
FirewallRules: [{730F3F18-5091-4C99-BFAA-4F60EA64A669}] => (Allow) C:\Games2\steamapps\common\War Thunder\win32\eac_launcher.exe => No File
FirewallRules: [TCP Query User{79DAE977-C9B8-4BC8-8538-DDF981FB4348}C:\games\enlisted\launcher.exe] => (Allow) C:\games\enlisted\launcher.exe => No File
FirewallRules: [UDP Query User{7C35D3D5-E80B-4A07-97C0-22966B21B818}C:\games\enlisted\launcher.exe] => (Allow) C:\games\enlisted\launcher.exe => No File
FirewallRules: [{441DA9D2-4317-481A-B2D3-353724731685}] => (Allow) C:\Games2\steamapps\common\War of Rights\bin\win_x64\WarOfRights.exe => No File
FirewallRules: [{B8E5FE02-9F7D-4D77-8FE7-3DB32A1AE5E4}] => (Allow) C:\Games2\steamapps\common\War of Rights\bin\win_x64\WarOfRights.exe => No File
FirewallRules: [{E72BBDB2-5A27-4579-91D1-1669431D2D87}] => (Allow) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
FirewallRules: [{67DFE5BA-74C0-4DA1-BF98-C6CCB0DBCB54}] => (Allow) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
FirewallRules: [{A7AE85B1-CD8E-4486-8F1C-288DEDBFD201}] => (Allow) C:\Users\Benjamin\AppData\Local\Temp\WF-4730\Network\EpsonNetSetup\ENEasyApp.exe => No File
FirewallRules: [{CA1483B4-94C8-4137-9BD8-52EE4C7F1A17}] => (Allow) C:\Users\Benjamin\AppData\Local\Temp\WF-4730\Network\EpsonNetSetup\ENEasyApp.exe => No File
FirewallRules: [TCP Query User{B4C448FE-9A77-45D1-ABC4-55E5DEECE610}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
FirewallRules: [UDP Query User{B4B83E3F-C6E1-409E-A257-C463D6C38897}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
FirewallRules: [TCP Query User{DCC73A42-668E-43F6-A86E-1571F7E1A35F}C:\users\benjamin\desktop\scp containment\server\server0.9.9.exe] => (Allow) C:\users\benjamin\desktop\scp containment\server\server0.9.9.exe => No File
FirewallRules: [UDP Query User{0A36D433-02DB-471D-A5F2-4E8B47AEF35B}C:\users\benjamin\desktop\scp containment\server\server0.9.9.exe] => (Allow) C:\users\benjamin\desktop\scp containment\server\server0.9.9.exe => No File
FirewallRules: [{E6656657-880D-4A3B-A981-B941FAF517BC}] => (Block) C:\users\benjamin\desktop\scp containment\server\server0.9.9.exe => No File
FirewallRules: [{95B7EFCF-AA2E-492D-9378-7FB211395DDE}] => (Block) C:\users\benjamin\desktop\scp containment\server\server0.9.9.exe => No File
FirewallRules: [{A9B23928-8F0F-42D6-B0E9-1CA87540BF65}] => (Allow) C:\Games2\steamapps\common\Warbox\windows_content\MantasWarbox.exe => No File
FirewallRules: [{85433D1C-822D-450A-A993-4A0BBA62B380}] => (Allow) C:\Games2\steamapps\common\Warbox\windows_content\MantasWarbox.exe => No File
FirewallRules: [TCP Query User{0FBA5BC5-1CDE-47C3-8985-D2BA459C43C3}C:\games2\steamapps\common\total war attila\attila.exe] => (Allow) C:\games2\steamapps\common\total war attila\attila.exe => No File
FirewallRules: [UDP Query User{863824A3-A902-4CEE-9FA4-A987AC4B10AB}C:\games2\steamapps\common\total war attila\attila.exe] => (Allow) C:\games2\steamapps\common\total war attila\attila.exe => No File
FirewallRules: [{A9A7229D-DFF9-4900-AF52-0F2C8B96C0AA}] => (Block) C:\games2\steamapps\common\total war attila\attila.exe => No File
FirewallRules: [{6C085CD0-360F-4E6D-9631-00AD26FEEAF0}] => (Block) C:\games2\steamapps\common\total war attila\attila.exe => No File
FirewallRules: [{E7277F6A-661C-4D35-BF9A-22316882EBE6}] => (Allow) C:\Games2\steamapps\common\Warbox\windows_content\WindowsNoEditor\MantasWarbox.exe => No File
FirewallRules: [{90208424-CDE4-48F4-A48D-500D7560E67A}] => (Allow) C:\Games2\steamapps\common\Warbox\windows_content\WindowsNoEditor\MantasWarbox.exe => No File
FirewallRules: [TCP Query User{4CA1EC73-439D-4958-A033-DC320040219A}C:\games2\steamapps\common\hell let loose\hll\binaries\win64\hll-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\hell let loose\hll\binaries\win64\hll-win64-shipping.exe => No File
FirewallRules: [UDP Query User{790E19D5-DFA2-4451-97A1-2CAC93927425}C:\games2\steamapps\common\hell let loose\hll\binaries\win64\hll-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\hell let loose\hll\binaries\win64\hll-win64-shipping.exe => No File
FirewallRules: [{98F589F8-4A9D-4D52-AF8F-27369D9EC4B4}] => (Allow) C:\Games2\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe => No File
FirewallRules: [{B0C33D5E-A709-4587-955B-DE0DC0F91185}] => (Allow) C:\Games2\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe => No File
FirewallRules: [{8D172A2E-1D63-47A5-B982-DD01016ADEEE}] => (Allow) C:\Games2\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [{2F55CF75-0D9C-4B3C-B58E-0B16B41E7977}] => (Allow) C:\Games2\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [{8022850C-BBB4-47BC-B062-9BA17304D17F}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{1A9407D2-30A2-4AF1-BA7B-F8D16C328DC6}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{065E64E9-5AD7-448E-A99A-0CEBAF0E2445}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{B69B37AE-CF65-41C5-8105-A8DB431B77E8}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{4EE42370-3828-434F-828E-5FBED91A99A4}] => (Allow) C:\Games2\steamapps\common\Splitgate\PortalWars\Binaries\Win64\PortalWars-Win64-Shipping.exe => No File
FirewallRules: [{BF5FE8CB-C111-410A-9808-D497E0F24F1D}] => (Allow) C:\Games2\steamapps\common\Splitgate\PortalWars\Binaries\Win64\PortalWars-Win64-Shipping.exe => No File
FirewallRules: [{1A577641-AF6B-49D3-B3AF-D521B2F6B48A}] => (Allow) C:\Games2\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe => No File
FirewallRules: [{73D39CA1-1A29-4285-964C-79CB12FE93EF}] => (Allow) C:\Games2\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe => No File
FirewallRules: [{90E4B1F6-BC82-4FF4-9443-2179F813C882}] => (Allow) C:\Games2\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [{E6720761-16BE-44E3-8044-987A07AD58B0}] => (Allow) C:\Games2\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [TCP Query User{B4B5F871-2D73-4FEC-9E79-48892F036A94}C:\games2\steamapps\common\battlefield 2042 open beta\bf.exe] => (Allow) C:\games2\steamapps\common\battlefield 2042 open beta\bf.exe => No File
FirewallRules: [UDP Query User{6749B7CA-41B8-4058-B04A-171DDE6DA253}C:\games2\steamapps\common\battlefield 2042 open beta\bf.exe] => (Allow) C:\games2\steamapps\common\battlefield 2042 open beta\bf.exe => No File
FirewallRules: [TCP Query User{9C1C5BE6-A886-429D-8B21-CC45C10F8278}C:\program files (x86)\origin games\star wars squadrons\starwarssquadrons.exe] => (Allow) C:\program files (x86)\origin games\star wars squadrons\starwarssquadrons.exe => No File
FirewallRules: [UDP Query User{4EF1AC12-D4D0-499E-A6CF-5A4C8D6B8BB5}C:\program files (x86)\origin games\star wars squadrons\starwarssquadrons.exe] => (Allow) C:\program files (x86)\origin games\star wars squadrons\starwarssquadrons.exe => No File
FirewallRules: [TCP Query User{99DDDF87-C742-42B1-B9C5-B85635A42CDC}C:\games2\steamapps\common\xcom 2\xcom2-warofthechosen\binaries\win64\xcom2.exe] => (Allow) C:\games2\steamapps\common\xcom 2\xcom2-warofthechosen\binaries\win64\xcom2.exe => No File
FirewallRules: [UDP Query User{14C8D3FB-8D32-423A-928A-E5DB12AB11EE}C:\games2\steamapps\common\xcom 2\xcom2-warofthechosen\binaries\win64\xcom2.exe] => (Allow) C:\games2\steamapps\common\xcom 2\xcom2-warofthechosen\binaries\win64\xcom2.exe => No File
FirewallRules: [TCP Query User{06E57743-CD4D-46FD-8C8F-9735C096809C}C:\games2\steamapps\common\xcom 2\binaries\win64\xcom2.exe] => (Allow) C:\games2\steamapps\common\xcom 2\binaries\win64\xcom2.exe => No File
FirewallRules: [UDP Query User{89590274-722F-4089-A53F-C02F99A9C445}C:\games2\steamapps\common\xcom 2\binaries\win64\xcom2.exe] => (Allow) C:\games2\steamapps\common\xcom 2\binaries\win64\xcom2.exe => No File
FirewallRules: [TCP Query User{92B88309-C37E-42CC-A6CC-26EEA491A090}C:\games2\steamapps\common\total war warhammer ii\warhammer2.exe] => (Allow) C:\games2\steamapps\common\total war warhammer ii\warhammer2.exe => No File
FirewallRules: [UDP Query User{E8583FAE-8B4F-470C-9528-3473FA5EF717}C:\games2\steamapps\common\total war warhammer ii\warhammer2.exe] => (Allow) C:\games2\steamapps\common\total war warhammer ii\warhammer2.exe => No File
FirewallRules: [{AFB2662D-060E-44BA-A59A-7358893D2FEC}] => (Allow) C:\Games2\steamapps\common\Total War WARHAMMER II\launcher\launcher.exe => No File
FirewallRules: [{B00CB6B5-5A39-4271-8986-702DF072D378}] => (Allow) C:\Games2\steamapps\common\Total War WARHAMMER II\launcher\launcher.exe => No File
FirewallRules: [{02E7927D-4A8B-440D-81BA-AC919B12B032}] => (Allow) C:\Games2\steamapps\common\War of Rights\War of Rights Launcher.exe => No File
FirewallRules: [{22F017D1-3A5D-42E5-A8CE-B1F41CF3B77C}] => (Allow) C:\Games2\steamapps\common\War of Rights\War of Rights Launcher.exe => No File
FirewallRules: [TCP Query User{37D92017-7949-4757-A09F-4C4F07572541}C:\program files\openshot video editor\openshot-qt.exe] => (Allow) C:\program files\openshot video editor\openshot-qt.exe => No File
FirewallRules: [UDP Query User{6EB3F47A-7A44-4CA8-82C3-187313A6D903}C:\program files\openshot video editor\openshot-qt.exe] => (Allow) C:\program files\openshot video editor\openshot-qt.exe => No File
FirewallRules: [TCP Query User{FC546E2D-18C3-48EB-BE5A-C9595DCDD559}C:\games2\steamapps\common\projectzomboid\jre64\bin\java.exe] => (Allow) C:\games2\steamapps\common\projectzomboid\jre64\bin\java.exe => No File
FirewallRules: [UDP Query User{A38D94A9-F6B9-41ED-B562-17581662858C}C:\games2\steamapps\common\projectzomboid\jre64\bin\java.exe] => (Allow) C:\games2\steamapps\common\projectzomboid\jre64\bin\java.exe => No File
FirewallRules: [TCP Query User{A8FF8F90-0229-49E4-B39E-A870295CC2AA}C:\games2\steamapps\common\project zomboid dedicated server\jre64\bin\java.exe] => (Allow) C:\games2\steamapps\common\project zomboid dedicated server\jre64\bin\java.exe => No File
FirewallRules: [UDP Query User{3614DC66-1919-4512-9238-1F2474DBFCEF}C:\games2\steamapps\common\project zomboid dedicated server\jre64\bin\java.exe] => (Allow) C:\games2\steamapps\common\project zomboid dedicated server\jre64\bin\java.exe => No File
FirewallRules: [{F120BF2D-141C-42CF-A0EF-7896191CB57E}] => (Allow) C:\Games2\steamapps\common\Total War Rome II\launcher\launcher.exe => No File
FirewallRules: [{C747A783-D20B-4E39-90C9-95174A78A421}] => (Allow) C:\Games2\steamapps\common\Total War Rome II\launcher\launcher.exe => No File
FirewallRules: [{E3618FEC-E980-42DE-9D6B-2D1DEE9D1B6B}] => (Allow) C:\Games2\steamapps\common\Warbox\windows_content\WindowsNoEditor\MantasWarbox.exe => No File
FirewallRules: [{F5097313-F667-4600-BC2E-5837CCE7F2E3}] => (Allow) C:\Games2\steamapps\common\Warbox\windows_content\WindowsNoEditor\MantasWarbox.exe => No File
FirewallRules: [{8C7873C1-98B4-4D31-A00B-BE3347CB1398}] => (Allow) C:\Program Files (x86)\Origin Games\Apex\EasyAntiCheat_launcher.exe => No File
FirewallRules: [{F97A02A0-BCA8-4C51-81AB-D9D967BF1D24}] => (Allow) C:\Program Files (x86)\Origin Games\Apex\EasyAntiCheat_launcher.exe => No File
FirewallRules: [{B69675FF-2616-42BD-8D64-37DFB04A803E}] => (Allow) C:\Games2\steamapps\common\SCPPandemic\WindowsNoEditor\Pandemic.exe => No File
FirewallRules: [{5821F221-527C-4CAC-B588-211E080D50BC}] => (Allow) C:\Games2\steamapps\common\SCPPandemic\WindowsNoEditor\Pandemic.exe => No File
FirewallRules: [{BCE5BDBB-429E-4625-AA2C-5209F555F451}] => (Allow) C:\Games2\steamapps\common\Sid Meier's Civilization V\LaunchPad\LaunchPad.exe () [File not signed]
FirewallRules: [{EFCE55C7-9636-4C6B-BD1F-3AF828D25230}] => (Allow) C:\Games2\steamapps\common\Sid Meier's Civilization V\LaunchPad\LaunchPad.exe () [File not signed]
FirewallRules: [{EFE605CF-1F67-4957-9F2F-722BA18CBAE3}] => (Allow) C:\Games2\steamapps\common\Factorio\bin\x64\factorio.exe => No File
FirewallRules: [{7860E36F-C3B9-4654-9319-2A6D4A7765AC}] => (Allow) C:\Games2\steamapps\common\Factorio\bin\x64\factorio.exe => No File
FirewallRules: [TCP Query User{0E84F8CD-8C93-4618-AD8A-C365850FC9C8}C:\games\star trek bridge commander\stbc.exe] => (Allow) C:\games\star trek bridge commander\stbc.exe () [File not signed]
FirewallRules: [UDP Query User{E747051B-4614-40C8-B729-83EC00A32C8A}C:\games\star trek bridge commander\stbc.exe] => (Allow) C:\games\star trek bridge commander\stbc.exe () [File not signed]
FirewallRules: [{52501058-49AD-4FCC-9A9C-F7A4D0C075EF}] => (Block) C:\games\star trek bridge commander\stbc.exe () [File not signed]
FirewallRules: [{6F277657-5D88-4E3C-B867-F4FF5AB4A5DF}] => (Block) C:\games\star trek bridge commander\stbc.exe () [File not signed]
FirewallRules: [{6DB49717-1AA0-4FB9-B3F4-81D910ED8469}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn, Inc. -> LogMeIn Inc.)
FirewallRules: [{FD1D4772-100F-46ED-8473-3454F92E7597}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn, Inc. -> LogMeIn Inc.)
FirewallRules: [{DB415783-FCD3-476D-B556-702B0661B61C}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn, Inc. -> LogMeIn Inc.)
FirewallRules: [{8E0DF8A3-E2AD-4C40-A0AF-8C9F2809A878}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn, Inc. -> LogMeIn Inc.)
FirewallRules: [{05126497-5426-4889-9213-3734119A7587}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [{FEE14383-A431-4FB0-A55D-682DEAD2669F}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [{A4F25E20-E0E2-422C-A7D1-DFF5F710FF3F}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [{5D2C6FB4-F89E-418E-9712-EE333C31EB8A}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (LogMeIn, Inc. -> LogMeIn, Inc.)
FirewallRules: [{5EE2BFEB-6793-4FEB-9A1A-9B9B4B5890E0}] => (Allow) C:\program files (x86)\battle.net\battle.net.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{117CBF4A-43B6-47B0-BBD2-97B5DF1D8AF5}] => (Allow) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn, Inc. -> LogMeIn Inc.)
FirewallRules: [TCP Query User{D2344E0F-E3AB-4964-A19C-4AC4DACC54E7}C:\games2\steamapps\common\ready or not\readyornot\binaries\win64\readyornot-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\ready or not\readyornot\binaries\win64\readyornot-win64-shipping.exe => No File
FirewallRules: [UDP Query User{5B4563FD-81BA-456D-9BD0-550E6D19CA5F}C:\games2\steamapps\common\ready or not\readyornot\binaries\win64\readyornot-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\ready or not\readyornot\binaries\win64\readyornot-win64-shipping.exe => No File
FirewallRules: [{3202E5D5-9699-4681-9A16-D86235727975}] => (Block) C:\games2\steamapps\common\ready or not\readyornot\binaries\win64\readyornot-win64-shipping.exe => No File
FirewallRules: [{EB0FF77A-7B94-4C49-AEAD-75929FD1A436}] => (Block) C:\games2\steamapps\common\ready or not\readyornot\binaries\win64\readyornot-win64-shipping.exe => No File
FirewallRules: [{0062CB31-66DF-40B8-A709-7C86F99BA564}] => (Allow) C:\Games2\steamapps\common\Total War Attila\launcher\launcher.exe => No File
FirewallRules: [{5E4FFFDB-7475-4D5D-AA87-CE61788E78CC}] => (Allow) C:\Games2\steamapps\common\Total War Attila\launcher\launcher.exe => No File
FirewallRules: [TCP Query User{A0A053BF-6E42-4731-BFBC-EFABE8819B98}C:\games2\steamapps\common\sandstorm\insurgency\binaries\win64\insurgencyclient-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\sandstorm\insurgency\binaries\win64\insurgencyclient-win64-shipping.exe => No File
FirewallRules: [UDP Query User{D5E52909-7646-4744-A2B2-31749C4019DD}C:\games2\steamapps\common\sandstorm\insurgency\binaries\win64\insurgencyclient-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\sandstorm\insurgency\binaries\win64\insurgencyclient-win64-shipping.exe => No File
FirewallRules: [TCP Query User{649527F7-D2CE-4834-A8D1-8C44E84DFE33}C:\games\0 a.d. alpha\binaries\system\pyrogenesis.exe] => (Allow) C:\games\0 a.d. alpha\binaries\system\pyrogenesis.exe => No File
FirewallRules: [UDP Query User{13C27050-10A1-40EF-90AB-E5F6CF08F622}C:\games\0 a.d. alpha\binaries\system\pyrogenesis.exe] => (Allow) C:\games\0 a.d. alpha\binaries\system\pyrogenesis.exe => No File
FirewallRules: [TCP Query User{BDB9EFEC-DABB-4C34-A166-BAD2A79D8F74}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.)
FirewallRules: [UDP Query User{B0075AF8-0019-4870-8098-21305738C1E9}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.)
FirewallRules: [{432A3199-EB9D-4A84-A612-7847E706CD67}] => (Allow) C:\Games2\steamapps\common\Let Them Come\LetThemCome.exe (Tuatara Games) [File not signed]
FirewallRules: [{7DB557A9-F953-4F8E-943F-CE8C5EA21CE6}] => (Allow) C:\Games2\steamapps\common\Let Them Come\LetThemCome.exe (Tuatara Games) [File not signed]
FirewallRules: [TCP Query User{7CE1A9A1-5D7A-44D6-B76F-73711E23CF0B}C:\users\benjamin\appdata\local\discord\app-1.0.9003\discord.exe] => (Allow) C:\users\benjamin\appdata\local\discord\app-1.0.9003\discord.exe => No File
FirewallRules: [UDP Query User{70EB5A85-1486-4715-A6A0-C712851192DC}C:\users\benjamin\appdata\local\discord\app-1.0.9003\discord.exe] => (Allow) C:\users\benjamin\appdata\local\discord\app-1.0.9003\discord.exe => No File
FirewallRules: [{D26923A2-D841-4698-8DD8-E2880D8378C3}] => (Allow) C:\Games2\steamapps\common\SCPPandemic\WindowsNoEditor\Pandemic.exe => No File
FirewallRules: [{D7303AE2-B3D0-40C5-B178-724452286783}] => (Allow) C:\Games2\steamapps\common\SCPPandemic\WindowsNoEditor\Pandemic.exe => No File
FirewallRules: [TCP Query User{23DD891A-05E9-4C28-B30E-A3D5223F7F31}C:\games2\steamapps\common\star trek online\star trek online\live\x64\gameclient.exe] => (Allow) C:\games2\steamapps\common\star trek online\star trek online\live\x64\gameclient.exe => No File
FirewallRules: [UDP Query User{53DF4A84-07A9-4D6A-A742-998CE1B030EB}C:\games2\steamapps\common\star trek online\star trek online\live\x64\gameclient.exe] => (Allow) C:\games2\steamapps\common\star trek online\star trek online\live\x64\gameclient.exe => No File
FirewallRules: [{3BA2A97B-56B1-4B15-90FE-991E7A24C376}] => (Block) C:\games2\steamapps\common\star trek online\star trek online\live\x64\gameclient.exe => No File
FirewallRules: [{2856894F-64EE-4831-8CB6-9B6765B961BE}] => (Block) C:\games2\steamapps\common\star trek online\star trek online\live\x64\gameclient.exe => No File
FirewallRules: [TCP Query User{02FD0971-493D-40AF-A561-4ED1A65EAF99}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{5B3E12CE-A070-48F1-8C83-C2DE1D3982A8}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{A87A14F9-9720-4B0F-8B83-A7B0BED9170D}] => (Block) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{07E2B5DC-E665-4AB9-BEC1-198957D11C0F}] => (Block) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{B4534CF7-56A1-4348-800D-57DD72316892}C:\games2\steamapps\common\crowz\crowfps\binaries\win64\crowfpsclient-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\crowz\crowfps\binaries\win64\crowfpsclient-win64-shipping.exe => No File
FirewallRules: [UDP Query User{55375A25-4A9C-4CB2-9196-29A26A3DD087}C:\games2\steamapps\common\crowz\crowfps\binaries\win64\crowfpsclient-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\crowz\crowfps\binaries\win64\crowfpsclient-win64-shipping.exe => No File
FirewallRules: [{FEAB006A-D6E6-4EC4-92EE-A7E8674EE7F3}] => (Block) C:\games2\steamapps\common\crowz\crowfps\binaries\win64\crowfpsclient-win64-shipping.exe => No File
FirewallRules: [{D4DFA6A2-DCE4-45FF-856C-8A9CF457B667}] => (Block) C:\games2\steamapps\common\crowz\crowfps\binaries\win64\crowfpsclient-win64-shipping.exe => No File
FirewallRules: [TCP Query User{DDCA46C6-A6A3-4763-A056-F543C10C692D}C:\games2\steamapps\common\world war 3\gamecenter\gamecenter.exe] => (Allow) C:\games2\steamapps\common\world war 3\gamecenter\gamecenter.exe => No File
FirewallRules: [UDP Query User{3DBF25F2-146D-4C2C-93B4-8E81CF276BC3}C:\games2\steamapps\common\world war 3\gamecenter\gamecenter.exe] => (Allow) C:\games2\steamapps\common\world war 3\gamecenter\gamecenter.exe => No File
FirewallRules: [{0DA6A62D-5B1B-4AB9-9E6A-22C634319D7F}] => (Block) C:\games2\steamapps\common\world war 3\gamecenter\gamecenter.exe => No File
FirewallRules: [{B237E708-E815-4EB2-8762-051EC92B69A6}] => (Block) C:\games2\steamapps\common\world war 3\gamecenter\gamecenter.exe => No File
FirewallRules: [TCP Query User{72CADC91-2C5C-4284-9933-6285C69178B2}C:\games2\steamapps\common\world war 3\13_2002999\ww3\binaries\win64\ww3-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\world war 3\13_2002999\ww3\binaries\win64\ww3-win64-shipping.exe => No File
FirewallRules: [UDP Query User{1A98E158-D82A-45DF-A4A0-BB6F7BBF1CF4}C:\games2\steamapps\common\world war 3\13_2002999\ww3\binaries\win64\ww3-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\world war 3\13_2002999\ww3\binaries\win64\ww3-win64-shipping.exe => No File
FirewallRules: [{42581838-3CE4-45EC-9618-C2D4AE8B3B45}] => (Block) C:\games2\steamapps\common\world war 3\13_2002999\ww3\binaries\win64\ww3-win64-shipping.exe => No File
FirewallRules: [{26F4A65F-69CC-4D20-A806-2D71CA124EA1}] => (Block) C:\games2\steamapps\common\world war 3\13_2002999\ww3\binaries\win64\ww3-win64-shipping.exe => No File
FirewallRules: [{F209C8B2-0582-4736-A835-B735A41361A2}] => (Allow) C:\Games2\steamapps\common\Double Action\bin\hammer.exe => No File
FirewallRules: [{9D67469C-4B9D-4E0B-9D74-DF2054DEDAF8}] => (Allow) C:\Games2\steamapps\common\Double Action\bin\hammer.exe => No File
FirewallRules: [TCP Query User{5B9B89C1-8090-4F5D-9F1C-B1B47FA9BA40}C:\users\benjamin\desktop\misc\w3scriptmanager\tools\wcc_lite\bin\x64\wcc_lite.exe] => (Allow) C:\users\benjamin\desktop\misc\w3scriptmanager\tools\wcc_lite\bin\x64\wcc_lite.exe () [File not signed]
FirewallRules: [UDP Query User{5DC8AC12-1F7C-436F-8BE4-CA34D107DDC2}C:\users\benjamin\desktop\misc\w3scriptmanager\tools\wcc_lite\bin\x64\wcc_lite.exe] => (Allow) C:\users\benjamin\desktop\misc\w3scriptmanager\tools\wcc_lite\bin\x64\wcc_lite.exe () [File not signed]
FirewallRules: [{7383E3D3-0E9E-45A3-B7AD-52EEC088910F}] => (Block) C:\users\benjamin\desktop\misc\w3scriptmanager\tools\wcc_lite\bin\x64\wcc_lite.exe () [File not signed]
FirewallRules: [{177B925C-8506-4FCE-AB4E-16248D318AF3}] => (Block) C:\users\benjamin\desktop\misc\w3scriptmanager\tools\wcc_lite\bin\x64\wcc_lite.exe () [File not signed]
FirewallRules: [TCP Query User{ACA2BFC9-64FD-491E-BCB1-8E004888B51C}C:\games2\steam.exe] => (Allow) C:\games2\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [UDP Query User{DDBA4D2C-F14B-49D1-B5DB-258A830A7360}C:\games2\steam.exe] => (Allow) C:\games2\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{2BFEE011-DFFF-4065-A161-38FE572280C1}] => (Allow) C:\Games2\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{DF2F8962-13BE-43ED-B34A-9A52431A5478}] => (Allow) C:\Games2\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [TCP Query User{B53552F4-CE74-4401-A96C-7317151B9E61}C:\games2\steamapps\common\victoria 2\v2game.exe] => (Allow) C:\games2\steamapps\common\victoria 2\v2game.exe () [File not signed]
FirewallRules: [UDP Query User{4DDD0833-C00C-45EC-A80A-D28CAC5E4DCB}C:\games2\steamapps\common\victoria 2\v2game.exe] => (Allow) C:\games2\steamapps\common\victoria 2\v2game.exe () [File not signed]
FirewallRules: [{754308A9-07F8-4DDF-B74B-D0879A832B14}] => (Allow) C:\games2\steamapps\common\victoria 2\v2game.exe () [File not signed]
FirewallRules: [{7162AC9E-1AAB-414B-A73B-FBDE69AA6741}] => (Allow) C:\games2\steamapps\common\victoria 2\v2game.exe () [File not signed]
FirewallRules: [{F3889E08-57B0-4812-B633-E5EAA779F212}] => (Allow) C:\Games2\steamapps\common\Victoria 2\v2game.exe () [File not signed]
FirewallRules: [TCP Query User{9901BB8B-13CF-4234-B789-DC3F55108A8D}C:\program files\eclipse adoptium\jdk-17.0.3.7-hotspot\bin\javaw.exe] => (Allow) C:\program files\eclipse adoptium\jdk-17.0.3.7-hotspot\bin\javaw.exe => No File
FirewallRules: [UDP Query User{300405C6-06B0-41E7-BD04-306991B1BADD}C:\program files\eclipse adoptium\jdk-17.0.3.7-hotspot\bin\javaw.exe] => (Allow) C:\program files\eclipse adoptium\jdk-17.0.3.7-hotspot\bin\javaw.exe => No File
FirewallRules: [{FAE3AEC0-46E1-4046-BAF7-81BF4CCBE0EB}] => (Block) C:\program files\eclipse adoptium\jdk-17.0.3.7-hotspot\bin\javaw.exe => No File
FirewallRules: [{E58B6208-77B0-40B9-9A6F-4A9CF34EF514}] => (Block) C:\program files\eclipse adoptium\jdk-17.0.3.7-hotspot\bin\javaw.exe => No File
FirewallRules: [TCP Query User{FAB344A8-C5BC-476C-8F38-D953642E6EF3}C:\games2\steamapps\common\star wars empire at war\corruption\starwarsg.exe] => (Allow) C:\games2\steamapps\common\star wars empire at war\corruption\starwarsg.exe => No File
FirewallRules: [UDP Query User{8FAD375E-15F9-40FA-97BA-BA50C253C6C0}C:\games2\steamapps\common\star wars empire at war\corruption\starwarsg.exe] => (Allow) C:\games2\steamapps\common\star wars empire at war\corruption\starwarsg.exe => No File
FirewallRules: [{C8B6BA6B-6399-4E94-8115-CCA5DD6F3C82}] => (Block) C:\games2\steamapps\common\star wars empire at war\corruption\starwarsg.exe => No File
FirewallRules: [{13C84938-6CE3-4738-BEA4-2678FB184AE0}] => (Block) C:\games2\steamapps\common\star wars empire at war\corruption\starwarsg.exe => No File
FirewallRules: [TCP Query User{6BFDB078-1072-4E5C-A7B2-864EE651C3B0}C:\users\benjamin\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\benjamin\appdata\roaming\gameranger\gameranger\gameranger.exe (GameRanger Technologies -> GameRanger Pty Ltd)
FirewallRules: [UDP Query User{F8FECA3D-0DEC-4012-A5BF-D61D1A7EAB19}C:\users\benjamin\appdata\roaming\gameranger\gameranger\gameranger.exe] => (Allow) C:\users\benjamin\appdata\roaming\gameranger\gameranger\gameranger.exe (GameRanger Technologies -> GameRanger Pty Ltd)
FirewallRules: [{A4A0AE12-4E4A-416E-9F9E-CBF5FBA2979C}] => (Block) C:\users\benjamin\appdata\roaming\gameranger\gameranger\gameranger.exe (GameRanger Technologies -> GameRanger Pty Ltd)
FirewallRules: [{08D1BFCF-038F-4C27-91B7-F5C80417C0A8}] => (Block) C:\users\benjamin\appdata\roaming\gameranger\gameranger\gameranger.exe (GameRanger Technologies -> GameRanger Pty Ltd)
FirewallRules: [{69D4E837-7D6B-417C-BE47-1850C1740D8C}] => (Allow) C:\Games2\steamapps\common\Total War Rome II\launcher\launcher.exe => No File
FirewallRules: [{3D3E300E-416D-4B1C-88FE-334991BAEAB5}] => (Allow) C:\Games2\steamapps\common\Total War Rome II\launcher\launcher.exe => No File
FirewallRules: [{F5D36889-C592-480B-BEDE-371E0EDF3CBA}] => (Allow) C:\Program Files\VideoLAN\VLC\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [{22BD97C3-D71C-4C4B-84F9-40CE9661D76E}] => (Allow) C:\Program Files\VideoLAN\VLC\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [{DA1DBBAB-9C24-48D6-91BC-FD06B78FFD83}] => (Allow) C:\Program Files\VideoLAN\VLC\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [{9A17A755-FBCC-40F3-BB6C-5EF4F72F0155}] => (Allow) C:\Program Files\VideoLAN\VLC\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [{598E1B96-1CF0-476F-9133-278D0F7629C4}] => (Allow) C:\Program Files\CyberLink\PowerDVD19\PowerDVD.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{8479F8DC-E4F0-4306-8C1D-503823F66729}] => (Allow) C:\Program Files\CyberLink\PowerDVD19\ShareModule32\Kernel\DMS\CLMSServerPDVD19.exe (CyberLink Corp. -> CyberLink)
FirewallRules: [{BC36B8E2-7751-457B-A9C5-E19E8879B679}] => (Allow) C:\Program Files\CyberLink\PowerDVD19\PowerDVD19Agent.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{2072577F-25F8-42F3-998E-E8787430B387}] => (Allow) C:\Program Files\CyberLink\PowerDVD19\Movie\PowerDVDMovie.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{6D143F12-B680-4A13-BB58-208857AEC323}] => (Allow) C:\Program Files\CyberLink\PowerDVD19\CastingStation.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{879F030E-EEBB-44AA-B8E0-361B04BFADDE}] => (Allow) C:\Games2\steamapps\common\Factorio\bin\x64\factorio.exe => No File
FirewallRules: [{D57A7788-757C-4C1D-BC1A-8A7A1F779995}] => (Allow) C:\Games2\steamapps\common\Factorio\bin\x64\factorio.exe => No File
FirewallRules: [{A76D95F9-0DA8-43F1-BB28-0EF87E48E0CC}] => (Allow) C:\Games2\steamapps\common\Crusader Kings III\launcher\dowser.exe => No File
FirewallRules: [{C721FD0B-C783-45FF-9A15-C5957F9E8747}] => (Allow) C:\Games2\steamapps\common\Crusader Kings III\launcher\dowser.exe => No File
FirewallRules: [{1AB51254-ADC3-49DF-85DE-3F0157924F90}] => (Allow) C:\Games2\steamapps\common\MountBlade Warband\mb_warband.exe ( Taleworlds Entertainment) [File not signed]
FirewallRules: [{3D81D84A-7ABD-4259-A333-60CD21A9535F}] => (Allow) C:\Games2\steamapps\common\MountBlade Warband\mb_warband.exe ( Taleworlds Entertainment) [File not signed]
FirewallRules: [{39076F31-9E4A-4B81-B307-52361997127F}] => (Allow) C:\Games2\steamapps\common\War of Rights\War of Rights Launcher.exe => No File
FirewallRules: [{CFB2F7A2-F8B1-44A2-B026-04FCB500330C}] => (Allow) C:\Games2\steamapps\common\War of Rights\War of Rights Launcher.exe => No File
FirewallRules: [TCP Query User{7A55636A-8602-4B12-82CB-1068C0EB6008}C:\games2\steamapps\common\stellaris\stellaris.exe] => (Allow) C:\games2\steamapps\common\stellaris\stellaris.exe (Paradox Interactive AB (publ) -> Paradox Interactive)
FirewallRules: [UDP Query User{40D19BBD-0A4B-4F67-81D4-98418B3BB06C}C:\games2\steamapps\common\stellaris\stellaris.exe] => (Allow) C:\games2\steamapps\common\stellaris\stellaris.exe (Paradox Interactive AB (publ) -> Paradox Interactive)
FirewallRules: [{E6C29C9A-4AD2-4CDC-94E7-25D69B71E9CE}] => (Block) C:\games2\steamapps\common\stellaris\stellaris.exe (Paradox Interactive AB (publ) -> Paradox Interactive)
FirewallRules: [{B28EFC35-21FB-4BFB-A0F6-47DF7F9BF6C6}] => (Block) C:\games2\steamapps\common\stellaris\stellaris.exe (Paradox Interactive AB (publ) -> Paradox Interactive)
FirewallRules: [{96843A47-22A6-46A3-B3B3-4D72CEFE68C0}] => (Allow) C:\Games2\steamapps\common\STEINS;GATE\Launcher.exe (MAGES.) [File not signed]
FirewallRules: [{6A6E8148-1330-4C97-953C-24603C46C775}] => (Allow) C:\Games2\steamapps\common\STEINS;GATE\Launcher.exe (MAGES.) [File not signed]
FirewallRules: [{FB1CD889-D923-497A-AB00-F4B92338D155}] => (Allow) C:\Games2\steamapps\common\Gunner, HEAT, PC!\Bin\GHPC.exe => No File
FirewallRules: [{78AFA4C0-89EC-4ADF-A398-316DF4A1DC94}] => (Allow) C:\Games2\steamapps\common\Gunner, HEAT, PC!\Bin\GHPC.exe => No File
FirewallRules: [{D443D03A-176F-4AB3-BC25-7922426B99B2}] => (Allow) C:\Games2\steamapps\common\Call to Arms - Gates of Hell\binaries\x64\call_to_arms_ed.exe (Digitalmindsoft) [File not signed]
FirewallRules: [{FF40070D-534B-40ED-BF10-14DF66597700}] => (Allow) C:\Games2\steamapps\common\Call to Arms - Gates of Hell\binaries\x64\call_to_arms_ed.exe (Digitalmindsoft) [File not signed]
FirewallRules: [{DBE29706-6A4F-4B24-AA0B-3ADD683A2C30}] => (Allow) C:\Games2\steamapps\common\Call to Arms - Gates of Hell\binaries\x64\call_to_arms.exe (Digitalmindsoft) [File not signed]
FirewallRules: [{BFCAB838-1875-49E7-BDD0-E290C8170006}] => (Allow) C:\Games2\steamapps\common\Call to Arms - Gates of Hell\binaries\x64\call_to_arms.exe (Digitalmindsoft) [File not signed]
FirewallRules: [{49894834-D71E-44E1-B164-6932E72E38D4}] => (Allow) C:\Program Files\Oculus\Support\oculus-runtime\OVRServer_x64.exe (Meta Platforms, Inc. -> Facebook Technologies, LLC)
FirewallRules: [{E9CF15DB-2792-4D2E-A5A1-4733B54A332F}] => (Allow) C:\Program Files\Oculus\Support\oculus-runtime\OVRServer_x64.exe (Meta Platforms, Inc. -> Facebook Technologies, LLC)
FirewallRules: [{04FCB279-76FE-4302-8C68-A13AE008E66D}] => (Allow) C:\Program Files\Oculus\Support\oculus-runtime\OVRRedir.exe (Meta Platforms, Inc. -> Facebook Technologies, LLC)
FirewallRules: [{5A401379-2678-417F-9A8A-0D835FEC919D}] => (Allow) C:\Program Files\Oculus\Support\oculus-runtime\OVRRedir.exe (Meta Platforms, Inc. -> Facebook Technologies, LLC)
FirewallRules: [{C583E15A-6AEF-46DB-9E02-462C9DCF9BFE}] => (Allow) C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe (Meta Platforms, Inc. -> Facebook Technologies, LLC)
FirewallRules: [{E43B32A0-18B6-4522-A727-BD45DE7BC7B1}] => (Allow) C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe (Meta Platforms, Inc. -> Facebook Technologies, LLC)
FirewallRules: [{D6762600-4116-4095-A1F1-C8859B5A26FF}] => (Allow) C:\Program Files\Oculus\Support\oculus-dash\dash\bin\OculusDash.exe (Meta Platforms, Inc. -> )
FirewallRules: [{6F8BE753-FDDA-4B03-AF6B-179ED70B5A41}] => (Allow) C:\Program Files\Oculus\Support\oculus-dash\dash\bin\OculusDash.exe (Meta Platforms, Inc. -> )
FirewallRules: [{CCE6F7E5-EDAF-4E33-B9A2-434602AB75DD}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Home2.exe => No File
FirewallRules: [{D827A08B-8300-4A2C-B3FC-70A42A0995E1}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Home2.exe => No File
FirewallRules: [{25954449-C4FD-4154-8667-19B446CA0540}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Home2\Binaries\Win64\Home2-Win64-Shipping.exe => No File
FirewallRules: [{DC9E6407-462C-48BE-9E52-87E38C72544A}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Home2\Binaries\Win64\Home2-Win64-Shipping.exe => No File
FirewallRules: [{369F327B-8B14-4187-9421-911CE3724601}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Engine\Binaries\Win64\UnrealCEFSubProcess.exe => No File
FirewallRules: [{4B368DBE-01D9-4EF4-9978-D4F3090716AA}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Engine\Binaries\Win64\UnrealCEFSubProcess.exe => No File
FirewallRules: [{8332D804-7859-4124-AC72-47971F50DB11}] => (Allow) C:\Program Files\Oculus\Support\oculus-client\OculusClient.exe => No File
FirewallRules: [{C41194B3-F88A-4AF0-BA88-D32C1836132C}] => (Allow) C:\Program Files\Oculus\Support\oculus-client\OculusClient.exe => No File
FirewallRules: [{B89D8977-04F4-4E05-8B1C-68B63D80FDC9}] => (Allow) C:\Games2\steamapps\common\SteamVR\bin\win32\vrstartup.exe => No File
FirewallRules: [{5F059928-7573-4C13-ADE4-A05668D4E9C1}] => (Allow) C:\Games2\steamapps\common\SteamVR\bin\win32\vrstartup.exe => No File
FirewallRules: [{A54A5EED-969B-4DCB-886F-B268ACD6537A}] => (Allow) C:\Games2\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtours.exe (Valve Corp. -> )
FirewallRules: [{A776603A-AA6C-445F-AA52-7662B4930EF5}] => (Allow) C:\Games2\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtours.exe (Valve Corp. -> )
FirewallRules: [{59793A49-4851-4557-BF61-CD50D4CFE74E}] => (Allow) C:\Games2\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtourscfg.exe (Valve Corp. -> )
FirewallRules: [{8A898342-4AEF-4054-988B-6FB7CAD69E84}] => (Allow) C:\Games2\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtourscfg.exe (Valve Corp. -> )
FirewallRules: [TCP Query User{26CEFC35-C8ED-428A-9DA6-1F0A68ED2D21}C:\games2\steamapps\common\call of duty hq\sp22\sp22-cod.exe] => (Allow) C:\games2\steamapps\common\call of duty hq\sp22\sp22-cod.exe => No File
FirewallRules: [UDP Query User{3CC2F551-603D-47AB-83E0-CA97CD515E24}C:\games2\steamapps\common\call of duty hq\sp22\sp22-cod.exe] => (Allow) C:\games2\steamapps\common\call of duty hq\sp22\sp22-cod.exe => No File
FirewallRules: [{928E0E44-0DB7-4BEC-89A3-AAF3746697E4}] => (Block) C:\games2\steamapps\common\call of duty hq\sp22\sp22-cod.exe => No File
FirewallRules: [{4319B55C-204B-40BB-9E84-6181565CD6EC}] => (Block) C:\games2\steamapps\common\call of duty hq\sp22\sp22-cod.exe => No File
FirewallRules: [{EB11592C-3526-47E8-8A5F-3AA7AA576DEB}] => (Allow) C:\Games\BsgLauncher\BsgLauncher.exe (BATTLESTATE GAMES LIMITED -> Battlestate Games)
FirewallRules: [{FAD1AA5F-E298-4272-9522-97DC301D3B74}] => (Allow) C:\Games\BsgLauncher\BsgLauncher.exe (BATTLESTATE GAMES LIMITED -> Battlestate Games)
FirewallRules: [{45568C19-CD3D-40C1-828E-321550A5A6CA}] => (Allow) C:\Games2\steamapps\common\Mount & Blade II Bannerlord\bin\Win64_Shipping_Client\TaleWorlds.MountAndBlade.Launcher.exe => No File
FirewallRules: [{5C784F33-6FC1-448D-8161-F3C284C8CB65}] => (Allow) C:\Games2\steamapps\common\Mount & Blade II Bannerlord\bin\Win64_Shipping_Client\TaleWorlds.MountAndBlade.Launcher.exe => No File
FirewallRules: [{AA469F6D-6C15-4A21-99A2-735CF9FB2E0D}] => (Allow) C:\Games2\steamapps\common\Victoria 3\launcher\dowser.exe => No File
FirewallRules: [{5C35A545-C401-48FB-AE3F-8F3908F17E54}] => (Allow) C:\Games2\steamapps\common\Victoria 3\launcher\dowser.exe => No File
FirewallRules: [{091C561B-5909-4F75-A8A0-7D1F07451EBB}] => (Allow) C:\Games2\steamapps\common\Sid Meier's Civilization V\LaunchPad\LaunchPad.exe () [File not signed]
FirewallRules: [{EDA56D4B-B726-4D21-8857-AF173171387F}] => (Allow) C:\Games2\steamapps\common\Sid Meier's Civilization V\LaunchPad\LaunchPad.exe () [File not signed]
FirewallRules: [{BD04E4FB-1CD6-4CB1-AD30-BFB19ADBB51F}] => (Allow) C:\Games2\steamapps\common\5K\WindowsNoEditor\Pandemic.exe => No File
FirewallRules: [{423F34EB-738A-40F0-9D93-6B431CB6841A}] => (Allow) C:\Games2\steamapps\common\5K\WindowsNoEditor\Pandemic.exe => No File
FirewallRules: [TCP Query User{B0420BFB-B281-4930-BD3C-0404C000A284}C:\games2\steamapps\common\sid meier's civilization vi\base\binaries\win64steam\civilizationvi_dx12.exe] => (Allow) C:\games2\steamapps\common\sid meier's civilization vi\base\binaries\win64steam\civilizationvi_dx12.exe => No File
FirewallRules: [UDP Query User{A4129624-AD4E-4E0B-BFA5-9B7BB271386D}C:\games2\steamapps\common\sid meier's civilization vi\base\binaries\win64steam\civilizationvi_dx12.exe] => (Allow) C:\games2\steamapps\common\sid meier's civilization vi\base\binaries\win64steam\civilizationvi_dx12.exe => No File
FirewallRules: [TCP Query User{9B2358B8-CD5F-4AD2-8E52-F5430041B212}C:\users\benjamin\appdata\roaming\utorrent\updates\utorrent.exe] => (Allow) C:\users\benjamin\appdata\roaming\utorrent\updates\utorrent.exe => No File
FirewallRules: [UDP Query User{6243988C-68B5-4762-9953-0CB661DD6C25}C:\users\benjamin\appdata\roaming\utorrent\updates\utorrent.exe] => (Allow) C:\users\benjamin\appdata\roaming\utorrent\updates\utorrent.exe => No File
FirewallRules: [TCP Query User{080BD792-82EA-41C6-BC56-F0159223BA20}C:\games2\steamapps\common\starpZEAWYtiB6bJ16NuLbGCc6CZ6jJdKfb63\yakisoba\binaries\win64\yakisoba-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\starpZEAWYtiB6bJ16NuLbGCc6CZ6jJdKfb63\yakisoba\binaries\win64\yakisoba-win64-shipping.exe => No File
FirewallRules: [UDP Query User{167AF081-8F95-44B0-81FE-1620350B32EC}C:\games2\steamapps\common\starpZEAWYtiB6bJ16NuLbGCc6CZ6jJdKfb63\yakisoba\binaries\win64\yakisoba-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\starpZEAWYtiB6bJ16NuLbGCc6CZ6jJdKfb63\yakisoba\binaries\win64\yakisoba-win64-shipping.exe => No File
FirewallRules: [TCP Query User{4B3BB64B-98D5-45EF-9A90-CFA37520A024}C:\games2\steamapps\common\total war shogun 2\shogun2.retail.exe] => (Allow) C:\games2\steamapps\common\total war shogun 2\shogun2.retail.exe => No File
FirewallRules: [UDP Query User{254F3EEE-CD86-4911-A48D-4AD91CB8187A}C:\games2\steamapps\common\total war shogun 2\shogun2.retail.exe] => (Allow) C:\games2\steamapps\common\total war shogun 2\shogun2.retail.exe => No File
FirewallRules: [{71E0BB5F-EE58-4058-A047-EC1C4EC4EFE0}] => (Allow) C:\Games2\steamapps\common\Total War Attila\launcher\launcher.exe => No File
FirewallRules: [{FF1678B2-1028-4395-97D1-32338ECBA962}] => (Allow) C:\Games2\steamapps\common\Total War Attila\launcher\launcher.exe => No File
FirewallRules: [TCP Query User{E525D1AF-AB03-4E88-AD9D-44E75C353F79}C:\games2\steamapps\common\trivia tricks friend pass\triviatricks\binaries\win64\triviatricks-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\trivia tricks friend pass\triviatricks\binaries\win64\triviatricks-win64-shipping.exe => No File
FirewallRules: [UDP Query User{0DCE7DA6-6920-4563-8015-0E7D6B68987C}C:\games2\steamapps\common\trivia tricks friend pass\triviatricks\binaries\win64\triviatricks-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\trivia tricks friend pass\triviatricks\binaries\win64\triviatricks-win64-shipping.exe => No File
FirewallRules: [{ACF14F44-8E79-4706-8587-1E6257DA7013}] => (Allow) C:\Games2\steamapps\common\Crusader Kings III\launcher\dowser.exe => No File
FirewallRules: [{EDA2AB81-90D9-4088-AD34-6E559CA01813}] => (Allow) C:\Games2\steamapps\common\Crusader Kings III\launcher\dowser.exe => No File
FirewallRules: [{26B6C9A8-EC2B-4BD1-9BFD-59A73011738C}] => (Allow) C:\Games2\steamapps\common\Mount & Blade II Bannerlord\bin\Win64_Shipping_Client\TaleWorlds.MountAndBlade.Launcher.exe => No File
FirewallRules: [{D076756A-F238-4FCB-A17B-2C0B5B9ED1DE}] => (Allow) C:\Games2\steamapps\common\Mount & Blade II Bannerlord\bin\Win64_Shipping_Client\TaleWorlds.MountAndBlade.Launcher.exe => No File
FirewallRules: [{2433BB01-5EBA-497F-BA71-0661C7A14338}] => (Allow) C:\Games2\steamapps\common\Call to Arms - Gates of Hell\binaries\x64\call_to_arms_ed.exe (Digitalmindsoft) [File not signed]
FirewallRules: [{9F0EE316-FD14-47B7-A79B-5BFFEC145DD1}] => (Allow) C:\Games2\steamapps\common\Call to Arms - Gates of Hell\binaries\x64\call_to_arms_ed.exe (Digitalmindsoft) [File not signed]
FirewallRules: [{D2B56109-0F77-44D3-B928-58BD25270F5A}] => (Allow) C:\Games2\steamapps\common\Call to Arms - Gates of Hell\binaries\x64\call_to_arms.exe (Digitalmindsoft) [File not signed]
FirewallRules: [{16768B8E-2285-41F7-83D1-35AFFDBEDA5A}] => (Allow) C:\Games2\steamapps\common\Call to Arms - Gates of Hell\binaries\x64\call_to_arms.exe (Digitalmindsoft) [File not signed]
FirewallRules: [{B2653BB8-D3F0-4415-A132-ED1BC8A661B3}] => (Allow) C:\Games2\steamapps\common\Class of '09 The Re-Up\C09RU-1.0\C09RU.exe () [File not signed]
FirewallRules: [{91AA9F26-9126-4659-A8D1-DC695883B129}] => (Allow) C:\Games2\steamapps\common\Class of '09 The Re-Up\C09RU-1.0\C09RU.exe () [File not signed]
FirewallRules: [{A0C07C5F-EE27-488D-BA1F-3410FFC9584E}] => (Allow) C:\Games2\steamapps\common\Class of '09\Class_Of_09-1.2\Class_Of_09.exe () [File not signed]
FirewallRules: [{530D577A-76C3-496C-92F9-073184111568}] => (Allow) C:\Games2\steamapps\common\Class of '09\Class_Of_09-1.2\Class_Of_09.exe () [File not signed]
FirewallRules: [{3A85AF2A-88F1-4CC8-9DFC-E78910BEF903}] => (Allow) C:\Games2\steamapps\common\Gunner HEAT PC\Bin\GHPC.exe () [File not signed]
FirewallRules: [{80C2597F-9219-461B-AD9C-9C3288AF0465}] => (Allow) C:\Games2\steamapps\common\Gunner HEAT PC\Bin\GHPC.exe () [File not signed]
FirewallRules: [TCP Query User{0170B541-29E5-402B-AEF4-93B78C476A9C}C:\users\benjamin\desktop\misc\random\mage kanade's futanari dungeon quest\mage kanades futanari dungeon quest.exe] => (Block) C:\users\benjamin\desktop\misc\random\mage kanade's futanari dungeon quest\mage kanades futanari dungeon quest.exe => No File
FirewallRules: [UDP Query User{D3273071-DD0A-413D-97D4-C13D671A83A7}C:\users\benjamin\desktop\misc\random\mage kanade's futanari dungeon quest\mage kanades futanari dungeon quest.exe] => (Block) C:\users\benjamin\desktop\misc\random\mage kanade's futanari dungeon quest\mage kanades futanari dungeon quest.exe => No File
FirewallRules: [{7A545258-4F65-4363-8465-0C97E2FFCE3B}] => (Allow) C:\Games2\steamapps\common\Victoria 3\launcher\dowser.exe => No File
FirewallRules: [{7DA2BFE9-2C9C-406A-80B7-602D43450836}] => (Allow) C:\Games2\steamapps\common\Victoria 3\launcher\dowser.exe => No File
FirewallRules: [{B0149578-4413-4E20-95FB-91E555D36C7F}] => (Allow) C:\Users\Benjamin\AppData\Local\Packages\B9ECED6F.ArmouryCrate_qmba6cd70vzyy\LocalState\GridUpdateFile\ASUSGCDriverUpdateClient.exe (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
FirewallRules: [TCP Query User{E9E58597-A847-43CD-BD88-155E38A18DCD}C:\games2\steamapps\common\ground branch\groundbranch\binaries\win64\groundbranch-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\ground branch\groundbranch\binaries\win64\groundbranch-win64-shipping.exe => No File
FirewallRules: [UDP Query User{AA448EAF-1F1F-48DC-8E87-C9B7BFAD3FF7}C:\games2\steamapps\common\ground branch\groundbranch\binaries\win64\groundbranch-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\ground branch\groundbranch\binaries\win64\groundbranch-win64-shipping.exe => No File
FirewallRules: [TCP Query User{DA39787E-84D6-4081-BCF3-8AAE10E91693}C:\games2\steamapps\common\call of duty hq\cod22\cod22-cod.exe] => (Allow) C:\games2\steamapps\common\call of duty hq\cod22\cod22-cod.exe => No File
FirewallRules: [UDP Query User{DD2AE586-1489-4989-AB97-F1519471792B}C:\games2\steamapps\common\call of duty hq\cod22\cod22-cod.exe] => (Allow) C:\games2\steamapps\common\call of duty hq\cod22\cod22-cod.exe => No File
FirewallRules: [{7D0E52E3-0153-4975-A2BF-C2C3CA2825FB}] => (Allow) C:\Games2\steamapps\common\Ready Or Not\Engine\Binaries\Win64\CrashReporter.exe => No File
FirewallRules: [{82F0AAA3-F071-49EA-8993-BD05493290C2}] => (Allow) C:\Games2\steamapps\common\Ready Or Not\Engine\Binaries\Win64\CrashReporter.exe => No File
FirewallRules: [TCP Query User{E153CDB1-0FE0-4EDE-8ACD-7D6C118E5B0D}C:\users\benjamin\appdata\local\enlisted\launcher.exe] => (Allow) C:\users\benjamin\appdata\local\enlisted\launcher.exe => No File
FirewallRules: [UDP Query User{D7FE55EC-5929-4C76-8C50-26844557595A}C:\users\benjamin\appdata\local\enlisted\launcher.exe] => (Allow) C:\users\benjamin\appdata\local\enlisted\launcher.exe => No File
FirewallRules: [TCP Query User{0DB19E07-93DA-40B4-86DD-DD0C6E75FD33}C:\users\benjamin\appdata\local\enlisted\win64\enlisted.exe] => (Allow) C:\users\benjamin\appdata\local\enlisted\win64\enlisted.exe => No File
FirewallRules: [UDP Query User{A6169541-FDB2-4B76-8697-DF4034BFEC1B}C:\users\benjamin\appdata\local\enlisted\win64\enlisted.exe] => (Allow) C:\users\benjamin\appdata\local\enlisted\win64\enlisted.exe => No File
FirewallRules: [{8A3D5226-C0BC-4CD4-A254-5BA3F6E12007}] => (Allow) C:\Games2\steamapps\common\worldbox\worldbox.exe () [File not signed]
FirewallRules: [{28E74124-B39A-4F37-98B2-0B3942971464}] => (Allow) C:\Games2\steamapps\common\worldbox\worldbox.exe () [File not signed]
FirewallRules: [TCP Query User{9C05697B-CC72-49E7-9758-27CC911ABD71}C:\games2\steamapps\common\steamvr\bin\win64\vrserver.exe] => (Allow) C:\games2\steamapps\common\steamvr\bin\win64\vrserver.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [UDP Query User{8B8F69E7-5069-4E5F-B6E6-B429D528CB33}C:\games2\steamapps\common\steamvr\bin\win64\vrserver.exe] => (Allow) C:\games2\steamapps\common\steamvr\bin\win64\vrserver.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [TCP Query User{2F375D9B-6B94-44AC-A642-5C84E3964615}C:\users\benjamin\desktop\mage kanade's futanari dungeon quest\mage kanades futanari dungeon quest.exe] => (Block) C:\users\benjamin\desktop\mage kanade's futanari dungeon quest\mage kanades futanari dungeon quest.exe => No File
FirewallRules: [UDP Query User{A264A32C-0E3F-44FA-9353-0C0FCEEAA280}C:\users\benjamin\desktop\mage kanade's futanari dungeon quest\mage kanades futanari dungeon quest.exe] => (Block) C:\users\benjamin\desktop\mage kanade's futanari dungeon quest\mage kanades futanari dungeon quest.exe => No File
FirewallRules: [{6153DD26-866D-426C-AFED-615CCC51C741}] => (Allow) C:\Games2\steamapps\common\Doki Doki Literature Club Plus\Doki Doki Literature Club Plus.exe () [File not signed]
FirewallRules: [{2E788118-999A-49C2-A464-670084E37D53}] => (Allow) C:\Games2\steamapps\common\Doki Doki Literature Club Plus\Doki Doki Literature Club Plus.exe () [File not signed]
FirewallRules: [{FDC3476A-A14D-4B8B-8B92-8BE769A8B918}] => (Allow) C:\Games2\steamapps\common\Doki Doki Literature Club\DDLC.exe () [File not signed]
FirewallRules: [{0C486180-53C2-420C-BDCC-5CB50A29D82D}] => (Allow) C:\Games2\steamapps\common\Doki Doki Literature Club\DDLC.exe () [File not signed]
FirewallRules: [TCP Query User{9E613110-2ED7-4505-8789-F76586808EF8}C:\users\benjamin\appdata\local\lm-studio\app-0.2.22\lm studio.exe] => (Allow) C:\users\benjamin\appdata\local\lm-studio\app-0.2.22\lm studio.exe (LM Studio) [File not signed]
FirewallRules: [UDP Query User{FBE67A64-BB06-4F6E-8619-615D7CB88FB6}C:\users\benjamin\appdata\local\lm-studio\app-0.2.22\lm studio.exe] => (Allow) C:\users\benjamin\appdata\local\lm-studio\app-0.2.22\lm studio.exe (LM Studio) [File not signed]
FirewallRules: [{BC65870A-E6FC-4DC9-9746-CAEAF471A9F5}] => (Block) C:\users\benjamin\appdata\local\lm-studio\app-0.2.22\lm studio.exe (LM Studio) [File not signed]
FirewallRules: [{0A674060-B39A-492F-AC77-B51DF2043F21}] => (Block) C:\users\benjamin\appdata\local\lm-studio\app-0.2.22\lm studio.exe (LM Studio) [File not signed]
FirewallRules: [{1F6B3E77-D742-46F6-B1C0-3032A518294F}] => (Allow) C:\Games2\steamapps\common\Total War SHOGUN 2\launcher\launcher.exe => No File
FirewallRules: [{516C8412-71FF-4528-A55A-E6F8A807161F}] => (Allow) C:\Games2\steamapps\common\Total War SHOGUN 2\launcher\launcher.exe => No File
FirewallRules: [TCP Query User{D4037926-F06C-4590-B3DC-934154B7CDAA}C:\games2\steamapps\common\total war shogun 2\shogun2.exe] => (Allow) C:\games2\steamapps\common\total war shogun 2\shogun2.exe => No File
FirewallRules: [UDP Query User{F214E59F-1B93-4363-8E09-A339C0B781B9}C:\games2\steamapps\common\total war shogun 2\shogun2.exe] => (Allow) C:\games2\steamapps\common\total war shogun 2\shogun2.exe => No File
FirewallRules: [TCP Query User{4EA4BB29-6160-462C-AF0B-318E3DEC192E}C:\users\benjamin\appdata\local\discord\app-1.0.9151\discord.exe] => (Allow) C:\users\benjamin\appdata\local\discord\app-1.0.9151\discord.exe => No File
FirewallRules: [UDP Query User{93767B3B-3C8C-4B61-87E7-C209DAD0FF54}C:\users\benjamin\appdata\local\discord\app-1.0.9151\discord.exe] => (Allow) C:\users\benjamin\appdata\local\discord\app-1.0.9151\discord.exe => No File
FirewallRules: [TCP Query User{7D4F6445-259E-4E14-8861-B14A5347B68A}C:\games2\steamapps\common\naraka bladepoint\narakabladepoint.exe] => (Allow) C:\games2\steamapps\common\naraka bladepoint\narakabladepoint.exe => No File
FirewallRules: [UDP Query User{3F6E6777-4980-4B7B-AC7D-7F45122A3232}C:\games2\steamapps\common\naraka bladepoint\narakabladepoint.exe] => (Allow) C:\games2\steamapps\common\naraka bladepoint\narakabladepoint.exe => No File
FirewallRules: [TCP Query User{B47D4CB8-5129-4F2C-B486-3F97000A84B1}C:\games2\steamapps\common\naraka bladepoint\ccmini\ccmini_new\ccmini.exe] => (Allow) C:\games2\steamapps\common\naraka bladepoint\ccmini\ccmini_new\ccmini.exe => No File
FirewallRules: [UDP Query User{859300FC-C98C-41EA-9309-49E746C22BF3}C:\games2\steamapps\common\naraka bladepoint\ccmini\ccmini_new\ccmini.exe] => (Allow) C:\games2\steamapps\common\naraka bladepoint\ccmini\ccmini_new\ccmini.exe => No File
FirewallRules: [{4A1BF5F0-BE85-4592-B14A-E48534C39745}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{63DE2040-D890-4628-9DC8-10473FB9B987}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{CF7936DC-E282-45CC-8B20-033609151898}] => (Allow) C:\Games2\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe => No File
FirewallRules: [{6C6ED778-AB72-4E10-B438-AC91191692B3}] => (Allow) C:\Games2\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe => No File
FirewallRules: [TCP Query User{2B39290A-5E21-49B4-9ACE-E2C6BB8EE66F}C:\users\benjamin\desktop\koboldcpp.exe] => (Allow) C:\users\benjamin\desktop\koboldcpp.exe => No File
FirewallRules: [UDP Query User{48B1B0FD-94C7-448F-86F1-7ED2B23E55CC}C:\users\benjamin\desktop\koboldcpp.exe] => (Allow) C:\users\benjamin\desktop\koboldcpp.exe => No File
FirewallRules: [TCP Query User{86F9AD42-64E3-43D9-A53D-32D02E1070C7}C:\games2\steamapps\common\insurgency2\insurgency_x64.exe] => (Allow) C:\games2\steamapps\common\insurgency2\insurgency_x64.exe => No File
FirewallRules: [UDP Query User{2D312B11-C4EA-4DEA-BF7C-5735009DEEAD}C:\games2\steamapps\common\insurgency2\insurgency_x64.exe] => (Allow) C:\games2\steamapps\common\insurgency2\insurgency_x64.exe => No File
FirewallRules: [{A8373D6C-4FCC-4D05-946F-B37FE4C76A1D}] => (Allow) C:\Games2\steamapps\common\Victoria 2\victoria2.exe () [File not signed]
FirewallRules: [{F9BC384C-2C54-4661-8CEF-D6E8D2BBDE8B}] => (Allow) C:\Games2\steamapps\common\Victoria 2\victoria2.exe () [File not signed]
FirewallRules: [TCP Query User{D716EA05-E69E-435A-A4D6-CE86F0F4EC99}C:\games2\steamapps\common\space marine 2\client_pc\root\bin\pc\warhammer 40000 space marine 2 - retail.exe] => (Allow) C:\games2\steamapps\common\space marine 2\client_pc\root\bin\pc\warhammer 40000 space marine 2 - retail.exe => No File
FirewallRules: [UDP Query User{A9D366AF-55E9-4B9C-96BD-CE47A32F7733}C:\games2\steamapps\common\space marine 2\client_pc\root\bin\pc\warhammer 40000 space marine 2 - retail.exe] => (Allow) C:\games2\steamapps\common\space marine 2\client_pc\root\bin\pc\warhammer 40000 space marine 2 - retail.exe => No File
FirewallRules: [{BA198941-0EBB-4EFF-9A7F-D6426960ECB4}] => (Allow) C:\Games2\steamapps\common\Ages of Conflict World War Simulator\Ages of Conflict.exe () [File not signed]
FirewallRules: [{751523C4-C213-4A0E-AB49-84A904ADC216}] => (Allow) C:\Games2\steamapps\common\Ages of Conflict World War Simulator\Ages of Conflict.exe () [File not signed]
FirewallRules: [{8656464D-0065-463B-887A-9E0857624977}] => (Allow) C:\Games2\steamapps\common\FantasyMapSimulator\FantasyMapSimulator.exe () [File not signed]
FirewallRules: [{BCE045BA-1240-4C9B-B221-BE3083FC4B47}] => (Allow) C:\Games2\steamapps\common\FantasyMapSimulator\FantasyMapSimulator.exe () [File not signed]
FirewallRules: [{6AD158B8-DFE9-4449-95B4-CDA6AF7B1345}] => (Allow) C:\Games2\steamapps\common\DUCKSIDE\start_protected_game.exe => No File
FirewallRules: [{A96DEDB9-309B-4A68-9C36-E750918097AB}] => (Allow) C:\Games2\steamapps\common\DUCKSIDE\start_protected_game.exe => No File
FirewallRules: [TCP Query User{8139C92D-7A29-40B2-923B-1E1CFC02EA51}C:\riot games\riot client\riotclientelectron\riot client.exe] => (Allow) C:\riot games\riot client\riotclientelectron\riot client.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [UDP Query User{B8E2AB17-1558-4E7A-A4B2-8C367217CC96}C:\riot games\riot client\riotclientelectron\riot client.exe] => (Allow) C:\riot games\riot client\riotclientelectron\riot client.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [{97D5A1FE-4646-4357-8D51-817D6E71CB7F}] => (Allow) C:\Games2\steamapps\common\ImperatorRome\launcher\dowser.exe => No File
FirewallRules: [{B41E5873-513E-4A25-9AEE-355ADC4B328B}] => (Allow) C:\Games2\steamapps\common\ImperatorRome\launcher\dowser.exe => No File
FirewallRules: [TCP Query User{26CFB9ED-54FB-4FA2-867E-EDABD6B44374}C:\games2\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [UDP Query User{AE3EA763-3ECC-4A3C-A01E-AACF68EA38F2}C:\games2\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [{28130120-F721-49DA-899E-309A3794777A}] => (Allow) C:\Games2\steamapps\common\Rising Front\Rising Front.exe () [File not signed]
FirewallRules: [{EEF58E75-5991-4F88-8740-71EF88AD0A79}] => (Allow) C:\Games2\steamapps\common\Rising Front\Rising Front.exe () [File not signed]
FirewallRules: [{C288F042-C85E-4448-B31E-8E0984AED9FF}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
FirewallRules: [{3292A9DA-0586-4A23-9ADC-65C878C0CEF2}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe (ASUSTeK COMPUTER INC. -> ASUS)
FirewallRules: [{907F7A40-F3C9-4845-B096-87FBDBC31A92}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmouryHtmlDebugServer.exe (ASUSTeK COMPUTER INC. -> ASUS)
FirewallRules: [{FEFF7C6E-19CB-4FD2-924A-387D0A512E5C}] => (Allow) C:\Games\BsgLauncher\BsgLauncher.exe (BATTLESTATE GAMES LIMITED -> Battlestate Games)
FirewallRules: [{C0385AA9-7F12-4988-80A3-1A17B673F212}] => (Allow) C:\Games\BsgLauncher\BsgLauncher.exe (BATTLESTATE GAMES LIMITED -> Battlestate Games)
FirewallRules: [{5995CB81-CF19-475E-8FBD-8B0710D860BB}] => (Allow) C:\Games2\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI.exe => No File
FirewallRules: [{40A20E8E-29CF-4C52-80B7-53EDC7DAF9BD}] => (Allow) C:\Games2\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI.exe => No File
FirewallRules: [{2DF4ACDE-C5BA-4716-BFAE-A5F5F4A121A4}] => (Allow) C:\Program Files\EA Games\STAR WARS Battlefront II\starwarsbattlefrontii_trial.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [{FEFAA613-873F-4110-A24B-AE539CF36AAB}] => (Allow) C:\Program Files\EA Games\STAR WARS Battlefront II\starwarsbattlefrontii_trial.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [{BB073D70-A8F2-4A6F-933E-B4B954217085}] => (Allow) C:\Program Files\EA Games\STAR WARS Battlefront II\starwarsbattlefrontii.exe (Electronic Arts Inc.) [File not signed]
FirewallRules: [{6590B687-4D38-4476-8DB3-DCF471599F4D}] => (Allow) C:\Program Files\EA Games\STAR WARS Battlefront II\starwarsbattlefrontii.exe (Electronic Arts Inc.) [File not signed]
FirewallRules: [{552A4E84-BCFE-40C6-BFAF-C7409211CDD9}] => (Allow) C:\Games2\steamapps\common\Hearts of Iron IV\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [{8631786A-08CA-4D6E-A060-D82EBAD84B36}] => (Allow) C:\Games2\steamapps\common\Hearts of Iron IV\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [{EA76274A-1497-4F6D-A35B-5EB7670E7250}] => (Allow) C:\Games2\steamapps\common\Hearts of Iron IV\hoi4.exe (Paradox Interactive AB (publ) -> Paradox Interactive)
FirewallRules: [{80D0AFC8-0968-484A-B5AA-270CBF929B3C}] => (Allow) C:\Games2\steamapps\common\Hearts of Iron IV\hoi4.exe (Paradox Interactive AB (publ) -> Paradox Interactive)
FirewallRules: [TCP Query User{C2F4C5BC-0AEF-42F9-8A29-C260F8ECC56A}C:\games2\steamapps\common\glacier events\bf6event.exe] => (Allow) C:\games2\steamapps\common\glacier events\bf6event.exe => No File
FirewallRules: [UDP Query User{8883F232-0A86-430E-AA12-3760262CA13D}C:\games2\steamapps\common\glacier events\bf6event.exe] => (Allow) C:\games2\steamapps\common\glacier events\bf6event.exe => No File
FirewallRules: [TCP Query User{248D3A59-1A0F-417C-933A-0B9288E12729}C:\games2\steamapps\common\mgsdelta\mgsdelta\binaries\win64\mgsdelta-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\mgsdelta\mgsdelta\binaries\win64\mgsdelta-win64-shipping.exe => No File
FirewallRules: [UDP Query User{32C7781D-1411-4110-913D-CC2899F573FF}C:\games2\steamapps\common\mgsdelta\mgsdelta\binaries\win64\mgsdelta-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\mgsdelta\mgsdelta\binaries\win64\mgsdelta-win64-shipping.exe => No File
FirewallRules: [{65E9371E-B8DE-499E-957C-6ACCB9ADC959}] => (Allow) C:\Games2\steamapps\common\MGS1\METAL GEAR SOLID.exe () [File not signed]
FirewallRules: [{3B87A642-0682-42DC-B255-390E5DEBED76}] => (Allow) C:\Games2\steamapps\common\MGS1\METAL GEAR SOLID.exe () [File not signed]
FirewallRules: [{DF5A4886-9A80-4AB9-A8CD-36C10D459796}] => (Allow) C:\Games2\steamapps\common\MGS2\launcher.exe () [File not signed]
FirewallRules: [{FEFA236A-5A9A-438A-AFB1-FF29EF223E5E}] => (Allow) C:\Games2\steamapps\common\MGS2\launcher.exe () [File not signed]
FirewallRules: [TCP Query User{668E6FE6-2423-49B4-B54E-B046F8AACB01}C:\games2\steamapps\common\ready or not\readyornot\binaries\win64\readyornotsteam-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\ready or not\readyornot\binaries\win64\readyornotsteam-win64-shipping.exe => No File
FirewallRules: [UDP Query User{4E2479C6-564F-4D99-B837-3CC0A505C6C5}C:\games2\steamapps\common\ready or not\readyornot\binaries\win64\readyornotsteam-win64-shipping.exe] => (Allow) C:\games2\steamapps\common\ready or not\readyornot\binaries\win64\readyornotsteam-win64-shipping.exe => No File
FirewallRules: [{89853E2F-8567-4E1F-9C2B-170B09FEEF38}] => (Allow) C:\Games2\steamapps\common\ABInfinite\Launcher\arena_breakout_infinite_launcher.exe => No File
FirewallRules: [{5579C847-8037-44DD-A6AB-CAFCA6A97CA6}] => (Allow) C:\Games2\steamapps\common\ABInfinite\Launcher\arena_breakout_infinite_launcher.exe => No File
FirewallRules: [TCP Query User{81FB82AD-3744-4B98-9CE0-BD36973EED6A}C:\users\benjamin\appdata\local\programs\pinokio\pinokio.exe] => (Allow) C:\users\benjamin\appdata\local\programs\pinokio\pinokio.exe => No File
FirewallRules: [UDP Query User{5C2B238D-E1EA-4B57-820E-1CBE5D2E68D3}C:\users\benjamin\appdata\local\programs\pinokio\pinokio.exe] => (Allow) C:\users\benjamin\appdata\local\programs\pinokio\pinokio.exe => No File
FirewallRules: [TCP Query User{C374E5A0-4043-4C6C-B157-6040A0D8948B}C:\users\benjamin\appdata\local\wemod\app-11.6.0\wemod.exe] => (Block) C:\users\benjamin\appdata\local\wemod\app-11.6.0\wemod.exe (WeMod LLC -> WeMod)
FirewallRules: [UDP Query User{61B56A5D-2F0C-48E7-8B06-20CC5ED09334}C:\users\benjamin\appdata\local\wemod\app-11.6.0\wemod.exe] => (Block) C:\users\benjamin\appdata\local\wemod\app-11.6.0\wemod.exe (WeMod LLC -> WeMod)
FirewallRules: [TCP Query User{0986EC36-DE38-4A4B-A86D-6F2300197EAC}C:\users\benjamin\desktop\sex & blood vampires 2\futa nights bloody sluts.exe] => (Block) C:\users\benjamin\desktop\sex & blood vampires 2\futa nights bloody sluts.exe => No File
FirewallRules: [UDP Query User{B11CD255-C74F-4255-9D07-C94197234C88}C:\users\benjamin\desktop\sex & blood vampires 2\futa nights bloody sluts.exe] => (Block) C:\users\benjamin\desktop\sex & blood vampires 2\futa nights bloody sluts.exe => No File
FirewallRules: [{246B88BF-1055-4945-9A9F-C6F3753CE4CD}] => (Allow) C:\Games2\steamapps\common\Europa Universalis V\binaries\eu5.exe => No File
FirewallRules: [{ADBC6647-A1F5-4E3E-9A3A-F8E77F2B9314}] => (Allow) C:\Games2\steamapps\common\Europa Universalis V\binaries\eu5.exe => No File
FirewallRules: [{318C7D95-1840-424F-A41C-689082D4099B}] => (Allow) C:\Games2\steamapps\common\Easy Red 2\Easy Red 2.exe () [File not signed]
FirewallRules: [{085DBF5B-458D-4866-B7E4-CFE2D8DDE846}] => (Allow) C:\Games2\steamapps\common\Easy Red 2\Easy Red 2.exe () [File not signed]
FirewallRules: [{0D3FA112-02E8-4683-8D87-7C43BC406D76}] => (Allow) C:\Games2\steamapps\common\Sid Meier's Civilization V\CivilizationV.exe (Valve Corp. -> Firaxis Games)
FirewallRules: [{47E090D0-445E-427A-9660-E36981277734}] => (Allow) C:\Games2\steamapps\common\Sid Meier's Civilization V\CivilizationV.exe (Valve Corp. -> Firaxis Games)
FirewallRules: [{73D26180-6AAE-4126-BA2F-319AC81988B4}] => (Allow) C:\Games2\steamapps\common\Sid Meier's Civilization V\CivilizationV_DX11.exe (Valve Corp. -> Firaxis Games)
FirewallRules: [{595D00F6-4659-4043-98D1-D0173AF173FA}] => (Allow) C:\Games2\steamapps\common\Sid Meier's Civilization V\CivilizationV_DX11.exe (Valve Corp. -> Firaxis Games)
FirewallRules: [{E6FEEED5-C831-40E7-BD1A-382DA3FA6EF7}] => (Allow) C:\Games2\steamapps\common\Sid Meier's Civilization V\CivilizationV_Tablet.exe (Valve Corp. -> Firaxis Games)
FirewallRules: [{57CE2332-33AA-4B4D-8A5F-923FA9BDBFAC}] => (Allow) C:\Games2\steamapps\common\Sid Meier's Civilization V\CivilizationV_Tablet.exe (Valve Corp. -> Firaxis Games)
FirewallRules: [{A3DB3E0D-7E15-4125-A949-FBE3EA50651A}] => (Allow) C:\Games2\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{C736BA90-CEE4-41B5-B4FF-85676CA08B8E}] => (Allow) C:\Games2\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{BE82D6EC-587C-41E4-9B20-6B234EDDCBD4}] => (Allow) C:\Games2\steamapps\common\Pummel Party\PummelParty.exe () [File not signed]
FirewallRules: [{96298988-6371-4146-9F59-C7C61F534778}] => (Allow) C:\Games2\steamapps\common\Pummel Party\PummelParty.exe () [File not signed]
FirewallRules: [{DD1E8EB6-C975-4658-BDAC-2EA53F59FCC7}] => (Allow) C:\Games2\steamapps\common\Songs of Syx\SongsofSyx.exe () [File not signed]
FirewallRules: [{F3557DA2-53CB-4D25-ACEA-6AD02F2415F1}] => (Allow) C:\Games2\steamapps\common\Songs of Syx\SongsofSyx.exe () [File not signed]
FirewallRules: [{080A4061-922C-44F4-A72D-2E902E67AD68}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{21B593B5-79F9-4193-941A-A3A46BDB7F37}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{CD65DE0D-9D07-4E3F-A429-E056AA3EF0F1}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{F52B56FF-31F9-4439-83E0-08FE6BDA1BC2}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{9D2B091D-213D-46F0-AC0A-2BCF94A8F2BA}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{8ADAF4C4-852C-4E2D-BD68-D0BA8BFCDACC}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{14821A00-E2DE-4BAA-95D3-802A195F6EA9}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{E8666298-CAD8-4FE6-AEDF-74FF4A86A63E}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{5E78EF8A-10D9-46EC-9127-C825AAFE1840}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{18EFBB57-F0D3-42C4-95AB-83309D3529BC}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{20BDB2DE-6F59-4A14-B350-AA56F1666AAB}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [TCP Query User{429B6943-21C2-4F08-A0AC-7DE358309924}C:\program files (x86)\kyber launcher\kyber_launcher.exe] => (Allow) C:\program files (x86)\kyber launcher\kyber_launcher.exe (ArmchairDevelopers) [File not signed]
FirewallRules: [UDP Query User{16BF85AF-B9F4-4771-BFDA-784BC15C79F9}C:\program files (x86)\kyber launcher\kyber_launcher.exe] => (Allow) C:\program files (x86)\kyber launcher\kyber_launcher.exe (ArmchairDevelopers) [File not signed]
FirewallRules: [TCP Query User{AB270178-32DA-41CF-AE77-C28FD456533B}C:\users\benjamin\appdata\local\wemod\app-12.9.1\wand.exe] => (Allow) C:\users\benjamin\appdata\local\wemod\app-12.9.1\wand.exe (WeMod LLC -> WeMod)
FirewallRules: [UDP Query User{8AA997DF-05CD-4411-8F9E-B77CE522359A}C:\users\benjamin\appdata\local\wemod\app-12.9.1\wand.exe] => (Allow) C:\users\benjamin\appdata\local\wemod\app-12.9.1\wand.exe (WeMod LLC -> WeMod)
FirewallRules: [{11928F60-041D-4929-8562-D64EAA98CAEE}] => (Allow) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{2BD1A19B-5884-44C8-B685-0B7401E5E37A}] => (Allow) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{547830CD-D117-4C06-97F1-8911A3DD59BE}] => (Allow) C:\Games2\steamapps\common\Battle Brothers\win32\BattleBrothers.exe () [File not signed]
FirewallRules: [{CD302242-53CF-49AE-AA44-5A644D8923A7}] => (Allow) C:\Games2\steamapps\common\Battle Brothers\win32\BattleBrothers.exe () [File not signed]
FirewallRules: [{874A17C7-6F6F-42DC-8F02-CFC6F7B6CFC2}] => (Allow) C:\Games2\steamapps\common\Menace\Menace.exe () [File not signed]
FirewallRules: [{679BC2DC-0CB9-4AD8-AFB5-5351CAC19EF5}] => (Allow) C:\Games2\steamapps\common\Menace\Menace.exe () [File not signed]
FirewallRules: [{5A049B8B-B221-436D-A553-5E1694454ECD}] => (Allow) C:\Games2\steamapps\common\Stellaris\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [{012B1D7C-619A-40E5-B693-7B5257E5478A}] => (Allow) C:\Games2\steamapps\common\Stellaris\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [{ABBE3A8F-D3FB-4E15-A385-E2BB90CFA193}] => (Allow) C:\Program Files (x86)\Overwolf\0.294.1.1\OverwolfBrowser.exe => No File
FirewallRules: [{82108D4E-F862-4A6F-BCE1-CF358B08C13B}] => (Allow) C:\Program Files (x86)\Overwolf\0.294.1.1\OverwolfBrowser.exe => No File
FirewallRules: [{1130B39F-FDA0-4AB2-A0BA-9849F1002B45}] => (Block) C:\Program Files (x86)\Overwolf\0.294.1.1\OverwolfBrowser.exe => No File
FirewallRules: [{BDFE0004-7395-4F4C-B078-831E4376A84F}] => (Block) C:\Program Files (x86)\Overwolf\0.294.1.1\OverwolfBrowser.exe => No File
FirewallRules: [{9C42A6E3-2310-4A6C-9166-B07603D26B02}] => (Allow) C:\Program Files (x86)\Overwolf\0.294.2.2\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{A1B44785-1BA2-4B23-9C9C-5C2183982CF2}] => (Allow) C:\Program Files (x86)\Overwolf\0.294.2.2\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{9CB5714C-5F7B-45B5-ABB5-F4C54503EDBC}] => (Allow) C:\Games2\steamapps\common\A Legionary's Life\legionary.exe () [File not signed]
FirewallRules: [{87A1C008-8E2D-456A-852F-8AABC2188066}] => (Allow) C:\Games2\steamapps\common\A Legionary's Life\legionary.exe () [File not signed]
FirewallRules: [{143781E8-7265-4119-A236-E986B0B28E07}] => (Allow) C:\Games2\steamapps\common\War of Dots\game.exe (TeaAndPython) [File not signed]
FirewallRules: [{CF3DFA72-B30E-4778-A3E5-CE687760EEC0}] => (Allow) C:\Games2\steamapps\common\War of Dots\game.exe (TeaAndPython) [File not signed]
FirewallRules: [{8FEB761F-F187-4CA5-9CD7-B965FE370C10}] => (Allow) C:\Games2\steamapps\common\Stardew Valley\Stardew Valley.exe (ConcernedApe) [File not signed]
FirewallRules: [{EFDA8CC5-0F11-4742-8F1F-1CDFEB4D5DC8}] => (Allow) C:\Games2\steamapps\common\Stardew Valley\Stardew Valley.exe (ConcernedApe) [File not signed]
FirewallRules: [{74F94F5B-3B09-4F6C-96A5-BD73E51DCEF5}] => (Allow) C:\Games2\steamapps\common\KingdomComeDeliverance2\Bin\Win64MasterMasterSteamPGO\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{10C1B579-131A-4E18-96CD-120FE6816C41}] => (Allow) C:\Games2\steamapps\common\KingdomComeDeliverance2\Bin\Win64MasterMasterSteamPGO\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{6F34FD8A-5106-401E-A923-3B7E3923C828}] => (Allow) C:\Program Files\Bitdefender\Bitdefender Security\bdntwrk.exe (Bitdefender SRL -> Bitdefender)
FirewallRules: [{92B1C50C-873C-4A70-8ED6-DB6F8FC73D5D}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
==================== Restore Points =========================
11-03-2026 19:57:11 Scheduled Checkpoint
==================== Faulty Device Manager Devices ============
Name: LogMeIn Hamachi Virtual Ethernet Adapter
Description: LogMeIn Hamachi Virtual Ethernet Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: LogMeIn Inc.
Service: Hamachi
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: PCI Device
Description: PCI Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: SM Bus Controller
Description: SM Bus Controller
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: ========================
Application errors:
==================
Error: (03/15/2026 03:02:52 PM) (Source: SecurityCenter) (EventID: 16) (User: )
Description: Error while updating status to SECURITY_PRODUCT_STATE_SNOOZED.
Error: (03/15/2026 05:58:15 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: ArmourySocketServer.exe, version: 0.1.20.13, time stamp: 0x66bb1e92
Faulting module name: ArmourySocketServer.exe, version: 0.1.20.13, time stamp: 0x66bb1e92
Exception code: 0xc0000409
Fault offset: 0x000000000011f0c1
Faulting process id: 0x3c2c
Faulting application start time: 0x01dcb42904bab34d
Faulting application path: C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe
Faulting module path: C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe
Report Id: 301965fe-5d02-48de-9ed0-023438e586cb
Faulting package full name:
Faulting package-relative application ID:
Error: (03/15/2026 01:53:23 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: GigaSc32.exe, version: 9.2.0.1230, time stamp: 0x676a6502
Faulting module name: combase.dll, version: 10.0.19041.6456, time stamp: 0x56ffdb9e
Exception code: 0xc0000005
Fault offset: 0x0014046b
Faulting process id: 0x319c
Faulting application start time: 0x01dcb4587cfe698e
Faulting application path: C:\Users\Benjamin\AppData\Local\GigaSc32.exe
Faulting module path: C:\Windows\System32\combase.dll
Report Id: 64891ac9-e3b4-4425-907e-311b8d400d26
Faulting package full name:
Faulting package-relative application ID:
Error: (03/15/2026 01:53:22 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: GigaSc32.exe, version: 9.2.0.1230, time stamp: 0x676a6502
Faulting module name: combase.dll, version: 10.0.19041.6456, time stamp: 0x56ffdb9e
Exception code: 0xc0000005
Fault offset: 0x0014046b
Faulting process id: 0x319c
Faulting application start time: 0x01dcb4587cfe698e
Faulting application path: C:\Users\Benjamin\AppData\Local\GigaSc32.exe
Faulting module path: C:\Windows\System32\combase.dll
Report Id: 481e3e6f-ad8d-4970-bae3-f6fb4ce91ff1
Faulting package full name:
Faulting package-relative application ID:
Error: (03/15/2026 01:53:22 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: GigaSc32.exe, version: 9.2.0.1230, time stamp: 0x676a6502
Faulting module name: combase.dll, version: 10.0.19041.6456, time stamp: 0x56ffdb9e
Exception code: 0xc0000005
Fault offset: 0x0014046b
Faulting process id: 0x319c
Faulting application start time: 0x01dcb4587cfe698e
Faulting application path: C:\Users\Benjamin\AppData\Local\GigaSc32.exe
Faulting module path: C:\Windows\System32\combase.dll
Report Id: ecc5b2aa-a7a4-4da5-94f4-d8b173b0640c
Faulting package full name:
Faulting package-relative application ID:
Error: (03/15/2026 01:53:21 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: GigaSc32.exe, version: 9.2.0.1230, time stamp: 0x676a6502
Faulting module name: combase.dll, version: 10.0.19041.6456, time stamp: 0x56ffdb9e
Exception code: 0xc0000005
Fault offset: 0x0014046b
Faulting process id: 0x319c
Faulting application start time: 0x01dcb4587cfe698e
Faulting application path: C:\Users\Benjamin\AppData\Local\GigaSc32.exe
Faulting module path: C:\Windows\System32\combase.dll
Report Id: e8fe0788-8fc5-4cb8-9a10-94bdfd4a530b
Faulting package full name:
Faulting package-relative application ID:
Error: (03/15/2026 01:52:27 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: GigaSc32.exe, version: 9.2.0.1230, time stamp: 0x676a6502
Faulting module name: combase.dll, version: 10.0.19041.6456, time stamp: 0x56ffdb9e
Exception code: 0xc0000005
Fault offset: 0x0014046b
Faulting process id: 0x319c
Faulting application start time: 0x01dcb4587cfe698e
Faulting application path: C:\Users\Benjamin\AppData\Local\GigaSc32.exe
Faulting module path: C:\Windows\System32\combase.dll
Report Id: 78f441db-106b-4352-9999-7f3fa907e5b8
Faulting package full name:
Faulting package-relative application ID:
Error: (03/15/2026 01:52:26 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: GigaSc32.exe, version: 9.2.0.1230, time stamp: 0x676a6502
Faulting module name: combase.dll, version: 10.0.19041.6456, time stamp: 0x56ffdb9e
Exception code: 0xc0000005
Fault offset: 0x0014046b
Faulting process id: 0x319c
Faulting application start time: 0x01dcb4587cfe698e
Faulting application path: C:\Users\Benjamin\AppData\Local\GigaSc32.exe
Faulting module path: C:\Windows\System32\combase.dll
Report Id: 1fa7b66e-1c98-4f57-99a1-26047de74dfb
Faulting package full name:
Faulting package-relative application ID:
System errors:
=============
Error: (03/15/2026 03:24:26 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: The ScRegSetValueExW call failed for Start with the following error:
Access is denied.
Error: (03/15/2026 03:23:20 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: The ScRegSetValueExW call failed for Start with the following error:
Access is denied.
Error: (03/15/2026 05:58:20 AM) (Source: DCOM) (EventID: 10010) (User: LUCONSPC)
Description: The server Microsoft.Windows.Search_1.14.18.19041_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppXf8r3d8cn5hd71h9jyzah6ak9f3shj2d2.mca did not register with DCOM within the required timeout.
Error: (03/15/2026 05:58:20 AM) (Source: DCOM) (EventID: 10010) (User: LUCONSPC)
Description: The server Microsoft.Windows.Search_1.14.18.19041_neutral_neutral_cw5n1h2txyewy!CortanaUI did not register with DCOM within the required timeout.
Error: (03/15/2026 05:58:18 AM) (Source: DCOM) (EventID: 10010) (User: LUCONSPC)
Description: The server Microsoft.Windows.Search_1.14.18.19041_neutral_neutral_cw5n1h2txyewy!CortanaUI did not register with DCOM within the required timeout.
Error: (03/15/2026 05:58:16 AM) (Source: DCOM) (EventID: 10010) (User: LUCONSPC)
Description: The server Microsoft.Windows.Search_1.14.18.19041_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppXf8r3d8cn5hd71h9jyzah6ak9f3shj2d2.mca did not register with DCOM within the required timeout.
Error: (03/15/2026 05:58:15 AM) (Source: DCOM) (EventID: 10010) (User: LUCONSPC)
Description: The server Microsoft.Windows.Search_1.14.18.19041_neutral_neutral_cw5n1h2txyewy!ShellFeedsUI did not register with DCOM within the required timeout.
Error: (03/15/2026 02:02:39 AM) (Source: DCOM) (EventID: 10010) (User: LUCONSPC)
Description: The server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter did not register with DCOM within the required timeout.
Windows Defender:
================
Date: 2026-03-15 01:51:40
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Script/Wacatac.H!ml&threatid=2147814524&enterprise=0
Name: Trojan:Script/Wacatac.H!ml
Severity: Severe
Category: Trojan
Path: file:_C:\Users\Benjamin\AppData\Roaming\Intel\Media\Decoder64\234d678219f61054\copal.cat
Detection Origin: Local machine
Detection Type: FastPath
Detection Source: Real-Time Protection
Process Name: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe
Security intelligence Version: AV: 1.445.543.0, AS: 1.445.543.0, NIS: 1.445.543.0
Engine Version: AM: 1.1.26010.1, NIS: 1.1.26010.1
Date: 2026-03-12 22:15:49
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
Date: 2026-03-11 21:44:35
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
Date: 2026-03-10 21:27:29
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
Date: 2026-03-08 21:44:24
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
Event[0]:
Date: 2025-05-04 20:49:29
Description:
Microsoft Defender Antivirus Real-Time Protection feature has encountered an error and failed.
Feature: Network Inspection System
Error Code: 0x80070006
Error description: The handle is invalid.
Reason: The filter driver was unloaded unexpectedly.
Date: 2025-05-04 20:49:29
Description:
Microsoft Defender Antivirus Real-Time Protection feature has encountered an error and failed.
Feature: Behavior Monitoring
Error Code: 0x80070006
Error description: The handle is invalid.
Reason: The filter driver was unloaded unexpectedly.
Date: 2025-05-04 20:49:29
Description:
Microsoft Defender Antivirus Real-Time Protection feature has encountered an error and failed.
Feature: On Access
Error Code: 0x80070006
Error description: The handle is invalid.
Reason: The filter driver was unloaded unexpectedly.
Date: 2025-05-04 20:49:29
Description:
Microsoft Defender Antivirus engine has been terminated due to an unexpected error.
Failure Type: Crash
Exception code: 0xc0000005
Resource: file:C:\Users\Benjamin\Downloads\LittleMan-0.53-pc.zip
Engine Code: 16422
Date: 2025-05-03 13:11:24
Description:
Microsoft Defender Antivirus engine has been terminated due to an unexpected error.
Failure Type: Crash
Exception code: 0xc0000005
Resource: file:C:\Users\Benjamin\Desktop\Mirena's Manor\Game.exe
Engine Code: 16445
CodeIntegrity:
===============
Date: 2026-03-15 14:02:25
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Users\Benjamin\AppData\Local\Discord\app-1.0.9228\Discord.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Overwolf\0.294.2.2\OWClient.dll that did not meet the Microsoft signing level requirements.
Date: 2026-03-15 14:02:25
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Users\Benjamin\AppData\Local\Discord\app-1.0.9228\Discord.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Overwolf\0.294.2.2\ow-graphics-vulkan.dll that did not meet the Microsoft signing level requirements.
Date: 2026-03-12 19:08:49
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Users\Benjamin\AppData\Local\Discord\app-1.0.9227\Discord.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Overwolf\0.294.2.2\OWClient.dll that did not meet the Microsoft signing level requirements.
Date: 2026-03-12 19:08:49
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Users\Benjamin\AppData\Local\Discord\app-1.0.9227\Discord.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Overwolf\0.294.2.2\ow-graphics-vulkan.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. 0607 05/29/2020
Motherboard: ASUSTeK COMPUTER INC. ROG STRIX Z490-E GAMING
Processor: Intel(R) Core(TM) i9-10900K CPU @ 3.70GHz
Percentage of memory in use: 51%
Total physical RAM: 32658.5 MB
Available physical RAM: 15774.23 MB
Total Virtual: 34706.5 MB
Available Virtual: 10586.53 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:1907.12 GB) (Free:110.75 GB) (Model: ADATA SX8200PNP) NTFS
\\?\Volume{3c4886c9-b62a-4cb7-ac10-d2fd70043988}\ () (Fixed) (Total:0.49 GB) (Free:0.08 GB) NTFS
\\?\Volume{65eadefc-1d2b-465f-834c-abec9b4d36a3}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Protective MBR) (Size: 1907.7 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt =======================Editor is loading...
Leave a Comment