Additional scan result of Farbar Recovery Scan Tool (x64) Version: 31-07-2025 Ran by jm_fe (10-08-2025 13:02:00) Running from C:\Users\jm_fe\Downloads Microsoft Windows 11 Pro Version 24H2 26100.4770 (X64) (2024-11-22 04:42:22) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= (If an entry is included in the fixlist, it will be removed.) Administrator (S-1-5-21-3041118385-2347716452-1599031468-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3041118385-2347716452-1599031468-503 - Limited - Disabled) Guest (S-1-5-21-3041118385-2347716452-1599031468-501 - Limited - Disabled) jm_fe (S-1-5-21-3041118385-2347716452-1599031468-1001 - Administrator - Enabled) => C:\Users\jm_fe WDAGUtilityAccount (S-1-5-21-3041118385-2347716452-1599031468-504 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1034-1033-7760-BC15014EA700}) (Version: 25.001.20577 - Adobe) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 6.7.0.278 - Adobe Inc.) Adobe Photoshop 2024 (HKLM-x32\...\PHSP_25_12_1) (Version: 25.12.1.994 - Adobe Inc.) Adobe Photoshop 2025 (HKLM-x32\...\PHSP_26_4_1) (Version: 26.4.1.194 - Adobe Inc.) Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601110}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden Aeropuertos de MéXico Norte de FlyMex (HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\Aeropuertos de MéXico Norte de FlyMex) (Version: - ) Airline Pack E-190 FS9/FSX (version 1.1) (HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\Airline Pack E-190 FS9/FSX (version 1.1)) (Version: - ) Amazon Kindle (HKLM-x32\...\Amazon Kindle) (Version: 1.32.0.61109 - Amazon) ASUS Aac_GmAcc HAL (HKLM\...\{998249B1-6913-447E-AA37-F445B8CA33D0}) (Version: 1.0.5.0 - ASUSTek COMPUTER INC.) Hidden ASUS Aac_GmAcc HAL (HKLM-x32\...\{9a6a1a1b-c7af-4ff2-8fe2-56e9cc710bba}) (Version: 1.0.5.0 - ASUSTek COMPUTER INC.) Hidden ASUS AIOFan HAL (HKLM\...\{EAE80DED-1A39-41C5-9F60-87CC947F6454}) (Version: 1.1.40.0 - ASUSTek COMPUTER INC.) Hidden ASUS AIOFan HAL (HKLM-x32\...\{10f6ee35-55c3-46eb-91a6-816ce9af34c7}) (Version: 1.1.40.0 - ASUSTek COMPUTER INC.) Hidden ASUS AURA Display Component (HKLM\...\{AFD1CF98-FE97-434C-A095-9F27C5BEA53C}) (Version: 1.1.22 - ASUSTek COMPUTER INC. ) Hidden ASUS AURA Display Component (HKLM-x32\...\{e5378a11-081f-4ff7-bb52-35c22eda20fc}) (Version: 1.1.22 - ASUSTek COMPUTER INC. ) Hidden ASUS AURA Extension Card HAL (HKLM\...\{237E1CAC-1708-4940-AC34-DF15C079AB70}) (Version: 1.1.0.18 - ASUSTeK COMPUTER INC.) Hidden ASUS AURA Extension Card HAL (HKLM-x32\...\{4e2b05b0-eb08-41e5-9eb3-cdcc43d6bee0}) (Version: 1.1.0.18 - ASUSTeK COMPUTER INC.) Hidden ASUS AURA Headset Component (HKLM\...\{A3C4120D-8096-4307-91A2-FFE37EBD5A3D}) (Version: 1.2.2 - ASUSTek COMPUTER INC.) Hidden ASUS AURA Headset Component (HKLM-x32\...\{a2e3261e-9f8b-4ae2-bd1f-308befba0601}) (Version: 1.2.2 - ASUSTek COMPUTER INC.) Hidden ASUS AURA Motherboard HAL (HKLM\...\{4EBEAC95-76BC-46A8-8644-6E2F1C87CF70}) (Version: 1.2.7.0 - ASUSTeK COMPUTER INC.) Hidden ASUS AURA Motherboard HAL (HKLM-x32\...\{b42ffcda-b685-4ba0-8640-2971ae4a70c6}) (Version: 1.2.7.0 - ASUSTeK COMPUTER INC.) Hidden ASUS AURA Odd Component (HKLM\...\{B5E322FB-C191-463E-BDDD-4F22290EDFDB}) (Version: 1.0.8 - ASUSTeK COMPUTER INC.) Hidden ASUS AURA Odd Component (HKLM-x32\...\{277875e0-972c-4705-b09c-ca5acf5b2f7c}) (Version: 1.0.8 - ASUSTeK COMPUTER INC.) Hidden ASUS AURA VGA Component (HKLM\...\{71BB96A6-EAC4-45AE-A17D-D3ED43FF1D14}) (Version: 0.0.4.3 - ASUSTek COMPUTER INC. ) Hidden ASUS AURA VGA Component (HKLM-x32\...\{7a0d5159-cb5e-4f66-91f8-bab46f864f14}) (Version: 0.0.4.3 - ASUSTek COMPUTER INC. ) Hidden ASUS GLCKIO2 Driver (HKLM-x32\...\{548dd834-70c5-4426-8065-fbeabdd2bb5d}) (Version: 1.0.10 - ASUSTeK Computer Inc.) Hidden ASUS GLCKIO2 Driver (HKLM-x32\...\{5960FD0F-BB3B-49AF-B175-F77DC91E995A}) (Version: 1.0.10 - ASUSTeK Computer Inc.) Hidden ASUS Keyboard HAL (HKLM\...\{0FA0CDEE-5DC8-421E-A97D-C74FA6E66FC3}) (Version: 1.0.34 - ASUSTek COMPUTER INC.) Hidden ASUS Keyboard HAL (HKLM-x32\...\{049c2f12-c730-4efc-81db-0adcf3ff5782}) (Version: 1.0.34 - ASUSTek COMPUTER INC.) Hidden ASUS MB Peripheral Products (HKLM\...\{BFED9861-7D96-4528-89F1-B090ABBF11A7}) (Version: 1.0.29 - ASUSTeK Computer Inc.) Hidden ASUS MB Peripheral Products (HKLM-x32\...\{f651776f-58aa-42a2-ab37-593fb3d78ef2}) (Version: 1.0.29 - ASUSTeK Computer Inc.) Hidden ASUS Mouse HAL (HKLM\...\{1838F91B-D481-45AA-B92F-071C62D0A19A}) (Version: 1.0.30 - ASUSTek COMPUTER INC.) Hidden ASUS Mouse HAL (HKLM-x32\...\{48831373-5539-4ba1-b290-8718284e801b}) (Version: 1.0.30 - ASUSTek COMPUTER INC.) Hidden ASUS MousePad HAL (HKLM\...\{723B40A4-5BF2-4DC6-834A-2ADF75F3CF7E}) (Version: 1.0.1.1 - ASUSTek COMPUTER INC.) Hidden ASUS MousePad HAL (HKLM-x32\...\{3fb92594-5d14-44b6-aa83-5e9823daa7e8}) (Version: 1.0.1.1 - ASUSTek COMPUTER INC.) Hidden Asus ProductDaemonSetup (HKLM\...\{36606417-B1C4-42C2-B5C1-67972DA63DAB}) (Version: 3.6.4501 - ASUSTeK COMPUTER INC) Hidden Asus Sonic Radar 3 (HKLM-x32\...\{f302c1fc-67c2-40b1-93c7-266d93310a2d}) (Version: 3.6.45.60920 - ASUSTeK COMPUTER INC) Asus Sonic Studio 3 (HKLM-x32\...\{44d9a0cd-0414-49c0-8488-dc0849f46bd1}) (Version: 3.6.45.60920 - ASUSTeK COMPUTER INC) Asus SonicRadar3Setup (HKLM\...\{09AE428F-CB54-42C8-8342-D0EC6E4136D0}) (Version: 3.6.45.60920 - ASUSTeK COMPUTER INC) Hidden Asus SonicStudio3Setup (HKLM\...\{ACA23ED7-018F-47AE-8C9C-2096E1455DA4}) (Version: 3.6.45.60920 - ASUSTeK COMPUTER INC) Hidden ASUS Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.107.139 - ASUSTeK Computer Inc.) Hidden ATPL AC Electrics (HKLM-x32\...\ATPL AC Electrics1.0) (Version: 1.0 - OAAmedia) ATPL Meteorology (HKLM-x32\...\ATPL Meteorology3.0) (Version: 3.0 - OAAmedia) AURA DRAM Component (HKLM\...\{9AFE5429-866B-457D-A864-80BCF7672EE8}) (Version: 1.1.18 - ASUS) Hidden AURA DRAM Component (HKLM-x32\...\{c3ae9104-ed9b-4ab5-9eb1-569697f4514b}) (Version: 1.1.18 - ASUS) Hidden aviaServer version 19.2.4 (HKLM-x32\...\{B8D65280-3D78-4B7F-94C8-B43B4CE79011}_is1) (Version: 19.2.4 - aviaworx) Battlefield™ V (HKLM-x32\...\{e26b382f-e945-4f70-9318-121b683f1d61}) (Version: 1.0.78.11385 - Electronic Arts) Common Desktop Agent (HKLM\...\{031A0E14-0413-4C97-9772-2639B782F46F}) (Version: 1.62.0 - OEM) Hidden Corsair AURA DRAM Component (HKLM\...\{376E0869-A4F1-4DC7-A1FD-EBF3AFFEB832}) (Version: 1.0.11 - CORSAIR COMPONENTS INC.) Hidden Corsair AURA DRAM Component (HKLM-x32\...\{7381e5cd-5a9b-42eb-85f5-be176d0ea94a}) (Version: 1.0.11 - CORSAIR COMPONENTS INC.) Hidden Corsair Device Control Service (HKLM\...\{073D1566-5971-4E4A-83EB-C7A8211CDDE3}) (Version: 1.7.30 - Corsair) Hidden Corsair Device Control Service (HKLM-x32\...\{a5732996-7f31-4e6c-a2f2-2202dbff6175}) (Version: 1.7.30 - Corsair) Corsair iCUE5 Software (HKLM\...\{A9B0B2D7-8C59-4413-A2FB-99EDBE65A608}) (Version: 5.31.112 - Corsair) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 11.1.0.2051 - Disc Soft Ltd) DirectOutput (HKLM\...\{CD56BF03-87F9-47C7-95C4-7794CC603C27}) (Version: 8.0.213.0 - Logitech) Dynamic Application Loader Host Interface Service (HKLM\...\{C4B0C1E7-6B90-4FC1-BBBD-79D2EB9E47E2}) (Version: 1.0.0.0 - Intel Corporation) Hidden EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 13.468.0.5981 - Electronic Arts) Hidden EA app (HKLM-x32\...\{c5f530ac-f23b-4a35-ad63-582378749d17}) (Version: 13.468.0.5981 - Electronic Arts) EAPI Driver (HKLM-x32\...\{63CC748D-A45F-47A6-AFBA-D9F69D2C6B6D}) (Version: 1.00.0000 - DFI INC.) E-Jets Series (FSX) (HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\E-Jets Series (FSX)) (Version: - ) Elo Service Reporting (HKLM\...\13192ec4-78a3-40c3-840f-76d2e9bfbc61) (Version: - Elo Touch Solutions, Inc.) EloMultiTouch 9.0.1.6 (HKLM\...\Elo Touch Solutions) (Version: 9.0.1.6 - Elo Touch Solutions, Inc.) ENE RGB HAL (HKLM\...\{E050E98C-5524-4AFB-9E53-97700BEF2C02}) (Version: 1.1.39.18 - Ene Tech.) Hidden ENE RGB HAL (HKLM-x32\...\{cf6be873-4fda-41b6-87c1-54f5f726365d}) (Version: 1.1.39.18 - Ene Tech.) Hidden ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.9.12 - ENE TECHNOLOGY INC.) Hidden ENE_EHD_M2_HAL (HKLM-x32\...\{97f3a665-a91b-4def-91e2-97fec9f22bfa}) (Version: 1.0.9.12 - ENE TECHNOLOGY INC.) Hidden Epic Games Launcher (HKLM-x32\...\{B85FAA6E-A9AA-4655-9029-E1A4EDC05E1A}) (Version: 1.3.93.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Epic Online Services (HKLM-x32\...\{57A956AB-4BCC-45C6-9B40-957E4E125568}) (Version: 2.0.44.0 - Epic Games, Inc.) GameSDK Service (HKLM-x32\...\{021d69c3-d686-4a94-8fb5-fd1ee782fb14}) (Version: 1.0.5.0 - ASUSTek COMPUTER INC.) GameSDK Service (HKLM-x32\...\{7160DA8D-3F25-4F6E-ABC8-F693551D82FA}) (Version: 1.0.5.0 - ASUSTek COMPUTER INC.) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 138.0.7204.185 - Google LLC) GPU Tweak III (HKLM-x32\...\{11C313A9-351F-4F10-B9C1-90C3202889C6}) (Version: 1.7.9.0 - ASUS) Hidden GPU Tweak III Install (HKLM-x32\...\{8123fa04-5b4f-404b-bf95-86b41bd2037d}) (Version: 1.7.9.0 - ASUS) HFSExplorer 2021.10.9 (HKLM-x32\...\HFSExplorer) (Version: 2021.10.9 - Catacombae Software) iLovePDF (HKLM-x32\...\iLovePDF) (Version: 2.0.96.0 - iLovePDF.S.L) Intel(R) Chipset Device Software (HKLM\...\{94E05108-3E4E-4F2E-AC5F-33A1B22B779C}) (Version: 10.1.1.44 - Intel Corporation) Hidden Intel(R) Chipset Device Software (HKLM-x32\...\{17408817-d415-4768-a160-ae6d46d6bdb0}) (Version: 10.1.1.44 - Intel(R) Corporation) Hidden Intel(R) Icls (HKLM\...\{B717E4C2-8C1E-4809-9395-843070329BFD}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 2440.6.3.0 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{FA1449D0-8CC0-4112-A922-F2545F2F5CA8}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Management Engine Driver (HKLM\...\{20C75165-A391-43CF-A3CA-13DB63DBDDD6}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) ME WMI Provider (HKLM\...\{5F498BAE-29A8-438C-A997-15B505051F68}) (Version: 1.0.0.0 - Intel Corporation) Hidden Java 8 Update 251 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180251F0}) (Version: 8.0.2510.8 - Oracle Corporation) Kinect for Windows Speech Recognition Language Pack (de-DE) (HKLM-x32\...\{898AA67F-99B8-4C7F-9611-B11F98EF6E78}) (Version: 11.0.7413.611 - Microsoft Corporation) Kinect for Windows Speech Recognition Language Pack (en-AU) (HKLM-x32\...\{48CEC0A3-AE10-4EE3-AC62-76D3D58792E5}) (Version: 11.0.7400.336 - Microsoft Corporation) Kinect for Windows Speech Recognition Language Pack (en-CA) (HKLM-x32\...\{9C5505DA-F9C1-46CB-9F8F-AC38F8EA518A}) (Version: 11.0.7400.336 - Microsoft Corporation) Kinect for Windows Speech Recognition Language Pack (en-GB) (HKLM-x32\...\{A0186231-0A8B-455A-8A25-B64AABCC11A6}) (Version: 11.0.7400.336 - Microsoft Corporation) Kinect for Windows Speech Recognition Language Pack (en-IE) (HKLM-x32\...\{998D5259-3BED-4710-98FF-D63387B5429E}) (Version: 11.0.7400.336 - Microsoft Corporation) Kinect for Windows Speech Recognition Language Pack (en-NZ) (HKLM-x32\...\{07FC9CAD-FCEC-4186-BB83-EF7CCC9372BA}) (Version: 11.0.7400.336 - Microsoft Corporation) Kinect for Windows Speech Recognition Language Pack (en-US) (HKLM-x32\...\{8AAA44BB-487E-4D01-AF76-484ACB90DBFE}) (Version: 11.0.7400.336 - Microsoft Corporation) Kinect for Windows Speech Recognition Language Pack (es-ES) (HKLM-x32\...\{F49AF755-A5C3-4252-A190-5772B2669C3B}) (Version: 11.0.7400.336 - Microsoft Corporation) Kinect for Windows Speech Recognition Language Pack (es-MX) (HKLM-x32\...\{E8F3B154-03CE-4120-8B9D-9E83ED5F3AD7}) (Version: 11.0.7400.336 - Microsoft Corporation) Kinect for Windows Speech Recognition Language Pack (fr-CA) (HKLM-x32\...\{7D179500-CA0C-4456-B624-C15876B15F39}) (Version: 11.0.7400.336 - Microsoft Corporation) Kinect for Windows Speech Recognition Language Pack (fr-FR) (HKLM-x32\...\{4CC174AA-25BC-46FF-B1E2-13B24AFB6142}) (Version: 11.0.7400.336 - Microsoft Corporation) Kinect for Windows Speech Recognition Language Pack (it-IT) (HKLM-x32\...\{969D900A-3481-4A77-B888-D24160D4D727}) (Version: 11.0.7400.336 - Microsoft Corporation) Kinect for Windows Speech Recognition Language Pack (ja-JP) (HKLM-x32\...\{EDA8693D-9E82-4FD1-98C8-0DC4F9141E0F}) (Version: 11.0.7400.336 - Microsoft Corporation) Kingston AURA DRAM Component (HKLM\...\{965CDF5F-901C-476F-B3A8-7396701B1129}) (Version: 1.1.12 - KINGSTON COMPONENTS INC.) Hidden Kingston AURA DRAM Component (HKLM-x32\...\{2237a879-7fa4-4e21-ae3b-00f6a649b9d9}) (Version: 1.1.12 - KINGSTON COMPONENTS INC.) Hidden Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden LorbyAxisAndOhs_MSFS (HKLM-x32\...\LorbyAxisAndOhs_MSFS) (Version: - ) Malwarebytes version 5.3.4.202 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.3.4.202 - Malwarebytes) Microsoft .NET Host - 5.0.14 (x64) (HKLM\...\{61A6E3A7-F406-418A-B2A6-0606DB55B325}) (Version: 40.56.30907 - Microsoft Corporation) Hidden Microsoft .NET Host FX Resolver - 5.0.14 (x64) (HKLM\...\{8D88F0E2-CE9B-4A6D-8309-FDC562195F5B}) (Version: 40.56.30907 - Microsoft Corporation) Hidden Microsoft .NET Runtime - 5.0.14 (x64) (HKLM\...\{B810ACDF-1C0C-4108-9B92-12F1674FA444}) (Version: 40.56.30907 - Microsoft Corporation) Hidden Microsoft 365 - en-gb (HKLM\...\O365HomePremRetail - en-gb) (Version: 16.0.19029.20156 - Microsoft Corporation) Microsoft 365 - es-es (HKLM\...\O365HomePremRetail - es-es) (Version: 16.0.19029.20156 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 139.0.3405.86 - Microsoft Corporation) Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 138.0.3351.121 - Microsoft Corporation) Hidden Microsoft Flight Simulator SimConnect Client v10.0.61259.0 (HKLM-x32\...\{D61CA184-3F6D-4A50-B2CC-7A18447D6A8D}) (Version: 10.0.61259.0 - Microsoft Corporation) Microsoft Flight Simulator SimConnect Client v10.0.62615.0 (HKLM-x32\...\{33D89314-361A-4495-A1E1-0ACBCE08F78D}) (Version: 10.0.62615.0 - Microsoft Corporation) Microsoft GameInput (HKLM-x32\...\{1F2B6AF3-C260-8666-5950-E3FEDBC851D6}) (Version: 10.1.22621.3036 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\OneDriveSetup.exe) (Version: 25.130.0706.0004 - Microsoft Corporation) Microsoft Server Speech Platform Runtime (x64) (HKLM\...\{3B433087-E62E-4BF5-97F9-4AF6E1C2409C}) (Version: 11.0.7400.345 - Microsoft Corporation) Microsoft Server Speech Recognition Language - TELE (en-IN) (HKLM-x32\...\{3B06AC90-DE68-44A9-95EB-0A3C1AF1514F}) (Version: 11.0.7400.335 - Microsoft Corporation) Microsoft Server Speech Recognition Language - TELE (pl-PL) (HKLM-x32\...\{BEFB9378-5E88-4266-8EB1-C92869449885}) (Version: 11.0.7400.335 - Microsoft Corporation) Microsoft Server Speech Recognition Language - TELE (pt-BR) (HKLM-x32\...\{F6B5EB21-0ABF-487C-B9A9-D9DB259C4403}) (Version: 11.0.7400.335 - Microsoft Corporation) Microsoft Server Speech Recognition Language - TELE (ru-RU) (HKLM-x32\...\{9419B7EA-6A4B-4A57-8E2A-3BDD4676118F}) (Version: 11.0.7400.335 - Microsoft Corporation) Microsoft Server Speech Recognition Language - TELE (zh-CN) (HKLM-x32\...\{BAD2A75A-1708-47BA-A498-20890D2C78A7}) (Version: 11.0.7400.335 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 x64 ENU (HKLM\...\{8424B163-D1E0-48B7-88A2-C7A61767B3D7}) (Version: 4.0.8482.1 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x64 8.0.50727.4053 False (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x64 8.0.50727.42 False (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x64 8.0.51011 False (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x64 8.0.56336 False (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x64 8.0.57102 False (HKLM\...\{f0cbd694-71ce-4391-9690-5da93b2f0445}) (Version: 8.0.57102 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x64 8.0.58298 False (HKLM\...\{f45b48a7-f616-4211-b927-17cab6a96613}) (Version: 8.0.58298 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x64 8.0.59192 False (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x64 8.0.61000 (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable - x86 8.0.50727.4053 False (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x86 8.0.50727.42 False (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x86 8.0.51011 False (HKLM-x32\...\{a0fe116e-9a8a-466f-aee0-625cb7c207e3}) (Version: 8.0.51011 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x86 8.0.56336 False (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x86 8.0.57103 False (HKLM-x32\...\{d8fea624-4f2c-432d-9a54-6eee9cd1a77e}) (Version: 8.0.57103 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x86 8.0.58299 False (HKLM-x32\...\{052bac4a-6f79-46d4-a024-1ce1b4f73cd4}) (Version: 8.0.58299 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x86 8.0.59193 False (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001 (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 False (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022.0 False (HKLM\...\{D04659D1-EB2D-3DE5-A833-837A623CCCF7}) (Version: 9.0.21022 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022.218 False (HKLM\...\{BBBE35B2-9349-3C48-BD3D-F574B17C7924}) (Version: 9.0.21022.218 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.30411 False (HKLM\...\{D93AC9C8-B6CF-391E-BD2F-48AF4727476C}) (Version: 9.0.30411 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 False (HKLM\...\{4FFA2088-8317-3B14-93CD-4C699DB37843}) (Version: 9.0.30729 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.0 False (HKLM\...\{2DFD8316-9EF1-3210-908C-4CB61961C1AC}) (Version: 9.0.30729 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 False (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4048 False (HKLM\...\{91415F19-4C22-3609-A105-92ED3522D83C}) (Version: 9.0.30729.4048 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 False (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148.0 False (HKLM\...\{EE936C7A-EA40-31D5-9B65-8E3E089C3828}) (Version: 9.0.30729.4148 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.5570 False (HKLM\...\{8338783A-0968-3B85-AFC7-BAAE0A63DC50}) (Version: 9.0.30729.5570 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 False (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.0 False (HKLM-x32\...\{DCB46B42-723F-350E-B18A-449BC6C21636}) (Version: 9.0.21022 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 False (HKLM-x32\...\{E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942}) (Version: 9.0.21022.218 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 False (HKLM-x32\...\{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}) (Version: 9.0.30411 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 False (HKLM-x32\...\{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}) (Version: 9.0.30729 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.0 False (HKLM-x32\...\{527BBE2F-1FED-3D8B-91CB-4DB0F838E69E}) (Version: 9.0.30729 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 False (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4048 False (HKLM-x32\...\{5B1F2843-B379-3FF2-B0D3-64DD143ED53A}) (Version: 9.0.30729.4048 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 False (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148.0 False (HKLM-x32\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.5570 False (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x64 10.0.30319 False (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Hidden Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x86 10.0.30319 False (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Hidden Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - Корпорация Майкрософт) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 False Eng (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 False Eng (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (HKLM\...\{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.51106 False (HKLM\...\{3C28BFD4-90C7-3138-87EF-418DC16E9598}) (Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 False (HKLM\...\{764384C5-BCA9-307C-9AAC-FD443662686A}) (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (HKLM\...\{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.51106 False (HKLM\...\{5AF4E09F-5C9B-3AAF-B731-544D3DC821DD}) (Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 False (HKLM\...\{2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6}) (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (HKLM-x32\...\{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106 False (HKLM-x32\...\{6C772996-BFF3-3C8C-860B-B3D48FF05D65}) (Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 False (HKLM-x32\...\{3D6AD258-61EA-35F5-812C-B7A02152996E}) (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (HKLM-x32\...\{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106 False (HKLM-x32\...\{E824E81C-80A4-3DFF-B5F9-4842A9FF5F7F}) (Version: 11.0.51106 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 False (HKLM-x32\...\{E7D4E834-93EB-351F-B8FB-82CDAE623003}) (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 False (HKLM-x32\...\{1a63c099-febd-4eaf-83ad-a82ea4fdac49}) (Version: 12.0.30501.0 - Корпорация Майкрософт) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 False Eng (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40649 False (HKLM-x32\...\{c6870a89-ef30-4f22-bbd1-49cd2516bc56}) (Version: 12.0.40649.5 - Корпорация Майкрософт) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40649 False Eng (HKLM-x32\...\{5d0723d3-cff7-4e07-8d0b-ada737deb5e6}) (Version: 12.0.40649.5 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 False (HKLM-x32\...\{0513c9cf-7191-45a7-ace9-ecdad03c93a4}) (Version: 12.0.40660.0 - Корпорация Майкрософт) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 False Eng (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{49e969a1-2990-464d-92b5-25f6f34573c6}) (Version: 12.0.40664.0 - Корпорация Майкрософт) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 False Eng (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 False (HKLM-x32\...\{b55f7208-e02b-4828-ac78-59c73ddf5bc7}) (Version: 12.0.30501.0 - Корпорация Майкрософт) Hidden Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 False Eng (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40649 False (HKLM-x32\...\{78142960-066b-4581-b984-0bdcf560c4be}) (Version: 12.0.40649.5 - Корпорация Майкрософт) Hidden Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40649 False Eng (HKLM-x32\...\{35b83883-40fa-423c-ae73-2aff7e1ea820}) (Version: 12.0.40649.5 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 False (HKLM-x32\...\{10dc8dbf-d3d7-4e23-be07-120fe5c66b78}) (Version: 12.0.40660.0 - Корпорация Майкрософт) Hidden Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 False Eng (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{d2c8df0e-f15d-4426-9e51-f13f329f9cb4}) (Version: 12.0.40664.0 - Корпорация Майкрософт) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 False Eng (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 False (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40649 False (HKLM\...\{20C1086D-C843-36B1-B678-990089D1BD44}) (Version: 12.0.40649 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 False (HKLM\...\{5740BD44-B58D-321A-AFC0-6D3D4556DD6C}) (Version: 12.0.40660 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 False (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40649 False (HKLM\...\{ABB19BB4-838D-3082-BDA4-87C6604181A2}) (Version: 12.0.40649 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 False (HKLM\...\{CB0836EC-B072-368D-82B2-D3470BF95707}) (Version: 12.0.40660 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 False (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40649 False (HKLM-x32\...\{A8589745-51BC-3963-B4E9-201CF8693538}) (Version: 12.0.40649 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660 False (HKLM-x32\...\{7DAD0258-515C-3DD4-8964-BD714199E0F7}) (Version: 12.0.40660 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 False (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40649 False (HKLM-x32\...\{DEA7F8E3-B7B9-3C3C-945B-7F8CE9041748}) (Version: 12.0.40649 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660 False (HKLM-x32\...\{E30D8B21-D82D-3211-82CC-0F0A5D1495E8}) (Version: 12.0.40660 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.42.34438 (HKLM-x32\...\{b49c10dd-4d54-45f8-ad13-fa25704456a4}) (Version: 14.42.34438.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.42.34438 (HKLM-x32\...\{ba10fda9-f731-441f-a999-000bbb7ceec2}) (Version: 14.42.34438.0 - Microsoft Corporation) Microsoft Visual C++ 2022 X64 Additional Runtime - 14.42.34438 (HKLM\...\{E528AD94-12D7-42C4-91A3-908BE28E9BD2}) (Version: 14.42.34438 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.42.34438 (HKLM\...\{2E15F519-4FDA-4834-B4EE-7EFCE7D8D4EE}) (Version: 14.42.34438 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Additional Runtime - 14.42.34438 (HKLM-x32\...\{A5592FEF-F948-4BA6-A066-8BBFC2DC7EE1}) (Version: 14.42.34438 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.42.34438 (HKLM-x32\...\{5D0C4511-3CA1-4FF8-A4BA-C0E1957ABEEA}) (Version: 14.42.34438 - Microsoft Corporation) Hidden Microsoft Visual Studio Tools for Applications 2015 (HKLM-x32\...\{dd8b09df-3ef8-49f1-bd1a-65278435860b}) (Version: 14.0.23217 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2015 Finalizer (HKLM-x32\...\{20D2A362-23EB-3BDB-BAD3-F4510B2B32A5}) (Version: 14.0.23217 - Microsoft Corporation) Hidden Microsoft Visual Studio Tools for Applications 2015 x64 Hosting Support (HKLM\...\{6D0ED930-AE5C-3289-ADA3-E6C3B13050DE}) (Version: 14.0.23217 - Microsoft Corporation) Hidden Microsoft Visual Studio Tools for Applications 2015 x86 Hosting Support (HKLM-x32\...\{84DD3A17-A979-39BC-8816-8226CB7DF8A7}) (Version: 14.0.23217 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 5.0.14 (x64) (HKLM\...\{4CD6FFC6-FA14-4016-A7A6-B7E3D6286331}) (Version: 40.56.30911 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 5.0.14 (x64) (HKLM-x32\...\{d21a4f20-968a-4b0c-bf04-a38da5f06e41}) (Version: 5.0.14.30911 - Microsoft Corporation) Mine-imator 2.0.2 (HKLM-x32\...\{EF61A1AA-5F85-4E94-ACC6-D5650A312AE6}}_is1) (Version: 2.0.2 - David Andrei) MiniTool Partition Wizard Free 11 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: - MiniTool Software Limited) MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation) mydlink services plugin (HKLM-x32\...\{1A9B665A-5F27-4F71-BF90-22FDFE7A1635}) (Version: 1.0.2.7 - D-Link Corporation) NaturalPoint USB Drivers x64 (HKLM\...\{533773B8-9AC1-4C0F-A2BF-57466A45C6F5}) (Version: 2.70.0000 - NaturalPoint) Navigraph Hub 1.2.13 (HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\55f042a9-1285-5a7a-abcd-4e2044c5b51b) (Version: 1.2.13 - Navigraph) NVIDIA App 11.0.3.232 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp) (Version: 11.0.3.232 - NVIDIA Corporation) NVIDIA FrameView SDK 1.5.10920.35420203 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.5.10920.35420203 - NVIDIA Corporation) NVIDIA Graphics Driver 572.83 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 572.83 - NVIDIA Corporation) NVIDIA HD Audio Driver 1.4.3.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.3.2 - NVIDIA Corporation) NVIDIA LED Visualizer 1.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.LEDVisualizer) (Version: 1.3 - NVIDIA Corporation) NVIDIA PhysX System Software 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.19029.20156 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.19029.20156 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.19029.20156 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0C0A-0000-0000000FF1CE}) (Version: 16.0.19029.20156 - Microsoft Corporation) Hidden Patriot Viper DRAM RGB (HKLM\...\{1F9C282E-CCB4-4D8E-A5CB-7B74DFCD8C95}) (Version: 1.0.9.4 - Patriot Memory) Hidden Patriot Viper DRAM RGB (HKLM-x32\...\{7a768c14-2a28-456f-872a-73d67d88f3ce}) (Version: 1.0.9.4 - Patriot Memory) Hidden Patriot Viper M2 SSD RGB (HKLM\...\{8B4C0A3D-C135-4E1F-98D8-3926494B4D61}) (Version: 1.1.0.2 - Patriot Memory) Hidden Patriot Viper M2 SSD RGB (HKLM-x32\...\{959e5696-0edd-4896-b1d8-54aaa725f770}) (Version: 1.1.0.2 - Patriot Memory) Hidden PHISON HAL (HKLM\...\{966E33F0-6786-4B38-AA29-C1B3F6C1955D}) (Version: 1.0.9.0 - PHISON Electronics Corp.) Hidden PHISON HAL (HKLM-x32\...\{549da357-1b81-456b-83f2-dcc47c41dfff}) (Version: 1.0.9.0 - PHISON Electronics Corp.) Hidden PMDG 737 8900 NGX (HKLM-x32\...\{20708FD5-E94D-4097-A21E-E28564CDBC06}) (Version: 1.00.2888 - PMDG Simulations, LLC.) PMDG 737-700 for MSFS (HKLM-x32\...\{9985736A-830C-42AE-AC33-D0EB629D2E14}) (Version: 3.00.0065 - PMDG Simulations, LLC.) PureVPN (HKLM-x32\...\{f81e5a34-9be4-416e-8fbc-663649cd6e68}) (Version: 14.8.0.1 - ) Hidden PureVPN (HKLM-x32\...\PureVPN) (Version: 14.8.0.1 - GZ Systems) RAPID Mode (HKLM\...\{AE75272A-6421-4A65-80F8-31568BCF6E75}) (Version: 1.0.0.101 - Samsung Electronics Co., Ltd.) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8746.1 - Realtek Semiconductor Corp.) Revo Uninstaller 2.6.0 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.6.0 - VS Revo Group, Ltd.) Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.101.2370_S02_ETU2 - Rockstar Games) Rockstar Games SDK (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.4.0.52 - Rockstar Games) ROG Live Service (HKLM\...\{2D87BFB6-C184-4A59-9BBE-3E20CE797631}) (Version: 2.1.5.0 - ASUSTek COMPUTER INC.) Samsung Easy Document Creator (HKLM-x32\...\Samsung Easy Document Creator) (Version: 2.02.59 (4/13/2021) - HP Development Company, L.P.) Samsung Easy Printer Manager (HKLM-x32\...\Samsung Easy Printer Manager) (Version: 2.00.01.34 - HP Inc.) Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 5.2.0.1610 - Samsung Electronics) Samsung Scan Process Machine (HKLM-x32\...\Samsung Scan Process Machine) (Version: 1.03.05.32 - Samsung Electronics Co., Ltd.) Hidden SimBox Control 1.11.1 (HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\8c9202b1-4eb3-5713-b22d-80ca57d1cf54) (Version: 1.11.1 - FlyingArt) simMarket (HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\simMarket) (Version: 3.7.0 - simFlight GmbH) Smart Switch (HKLM-x32\...\{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.3.24094.1 - Samsung Electronics Co., Ltd.) Hidden Smart Switch (HKLM-x32\...\InstallShield_{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.3.24094.1 - Samsung Electronics Co., Ltd.) SNS Upload for Easy Document Creator (HKLM-x32\...\{B6B5F07C-88D5-49D3-A1A7-A6D4BC37DCCC}) (Version: 1.0.0 - Samsung Electronics Co.,Ltd) Hidden STAR WARS™: Squadrons (HKLM-x32\...\{04e47f47-22cd-436d-a373-472125e7fcd6}) (Version: 1.0.10.39591 - Electronic Arts) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Telegram Desktop (HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 4.14.4 - Telegram FZ-LLC) TrackIR 5 (HKLM-x32\...\{6984ac4b-af1a-46af-bb10-ca1d3b7d4aba}) (Version: 5.4.2.0000 - NaturalPoint) Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 4.8 - Ubisoft) Universal Holtek RGB DRAM (HKLM\...\{826388E4-E31F-4514-948B-3BB954FB3EAF}) (Version: 1.0.0.3 - PD) Hidden Universal Holtek RGB DRAM (HKLM-x32\...\{ee57d541-1c3b-44fb-b847-e1b47aae9df4}) (Version: 1.0.0.3 - PD) Hidden Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{16AD6161-2E47-4BF1-AA77-0946EFE93E08}) (Version: 2.61.0.0 - Microsoft Corporation) UXP WebView Support (HKLM-x32\...\UXPW_1_3_0) (Version: 1.3.0 - Adobe Inc.) WD_BLACK AN1500 (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden WD_BLACK AN1500 (HKLM-x32\...\{e42c5874-37b0-4977-9e8d-70bf006e1f76}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden Windows Driver Package - Corsair Components, Inc. (SIUSBXP) USB (07/14/2017 3.3) (HKLM\...\A2206C09905C467F30CB24DCBB49F056D7F0A290) (Version: 07/14/2017 3.3 - Corsair Components, Inc.) Windows PC Health Check (HKLM\...\{014B7442-C784-45D3-A152-F7D2C651F28A}) (Version: 3.3.2110.22002 - Microsoft Corporation) Windows PC Health Check (HKLM\...\{B1E7D0FD-7CFE-4E0C-A5DA-0F676499DB91}) (Version: 3.2.2110.14001 - Microsoft Corporation) WinRAR 5.90 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.90.0 - win.rar GmbH) Wireless Connectivity Software (HKLM\...\{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}) (Version: 12.0.0.1110 - Broadcom Corporation) Wondershare AllMyTube(Build 4.10.3.0) (HKLM-x32\...\Wondershare AllMyTube_is1) (Version: 4.10.3.0 - Wondershare Software) Wondershare AllMyTube(Build 7.4.9.2) (HKLM-x32\...\AllMyTube_is1) (Version: 7.4.9.2 - Wondershare) Wondershare Helper Compact 2.5.3 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.5.3 - Wondershare) Wondershare PDFelement(Build 5.7.3) (HKLM-x32\...\{5CA0183F-6D90-4615-91A5-F1A8A2014E83}_is1) (Version: 5.7.3.7 - Wondershare Software Co.,Ltd.) X-55 Rhino (HKLM\...\{C71EF50A-8FFE-4886-97D2-705F33000FE1}) (Version: 7.0.55.13 - Mad Catz Inc) Zoom (HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\ZoomUMX) (Version: 5.17.7 (31859) - Zoom Video Communications, Inc.) Chrome apps: ============ Documentos (HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\c45ea8c95605791d1e1c3dc4302126a0) (Version: 1.0 - Google\Chrome) Gmail (HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\d5ad986bd9ef56ce6e54df331d55ee59) (Version: 1.0 - Google\Chrome) Google Drive (HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\83de6e0a21452a644b5bf5163e001660) (Version: 1.0 - Google\Chrome) Google Maps (HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\484985a525d5ae1b6b96eff5e3f61d92) (Version: 1.0 - Google\Chrome) Hojas de cálculo (HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\f90755a12bc023be1ed9fa3666ae17fa) (Version: 1.0 - Google\Chrome) Office (HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\9288eaec59498f05f82612a92af1ac4a) (Version: 1.0 - Google\Chrome) Presentaciones (HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\2650382424272b5b03721da781dce5e9) (Version: 1.0 - Google\Chrome) YouTube (HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\e1efbca37cf99dbacea28421e8c54a0b) (Version: 1.0 - Google\Chrome) Packages: ========= @{MicrosoftWindows.55182690.Taskbar_1000.26100.3624.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-05-29] () @{MicrosoftWindows.55182690.Taskbar_1000.26100.3775.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-05-29] () @{MicrosoftWindows.55182690.Taskbar_1000.26100.3912.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-05-29] () @{MicrosoftWindows.57074904.InpApp_1000.26100.4484.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.57074904.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.57074904.InpApp_cw5n1h2txyewy [2025-08-10] (Microsoft Windows) @{MicrosoftWindows.57074904.InpApp_1000.26100.4652.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.57074904.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.57074904.InpApp_cw5n1h2txyewy [2025-08-10] (Microsoft Windows) Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Assets [2025-08-09] () Adobe Notification Client -> C:\Program Files\WindowsApps\AdobeNotificationClient_6.0.0.1_x86__enpm4xejd91yc [2024-11-25] (Adobe Systems Incorporated) Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.27.4390.0_x64__rz1tebttyb220 [2025-08-10] (Dolby Laboratories) Dolby Atmos for Headphones -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAtmosforHeadphones_2.3.303.0_x64__rz1tebttyb220 [2024-11-22] (Dolby Laboratories) DTS Sound Unbound -> C:\Program Files\WindowsApps\DTSInc.DTSSoundUnbound_2025.2.42.0_x64__t5j2fzbtdg37r [2025-07-10] (DTS, Inc.) Ink.Handwriting.en-US.1.0 -> C:\Program Files\WindowsApps\Microsoft.Ink.Handwriting.en-US.1.0_0.850.1840.0_x64__8wekyb3d8bbwe [2025-05-15] (Microsoft Corporation) Ink.Handwriting.en-US.1.0 -> C:\Program Files\WindowsApps\Microsoft.Ink.Handwriting.en-US.1.0_0.850.1840.0_x86__8wekyb3d8bbwe [2025-05-15] (Microsoft Corporation) Ink.Handwriting.Main.en-US.1.0 -> C:\Program Files\WindowsApps\Microsoft.Ink.Handwriting.Main.en-US.1.0.1_0.850.1840.0_x64__8wekyb3d8bbwe [2025-05-15] (Microsoft Corporation) iTunes -> C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa [2025-06-03] (Apple Inc.) [Startup Task] Local Artificial Intelligence Manager -> C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\AI [2025-08-10] () Malwarebytes Anti-Malware -> C:\Program Files\Malwarebytes\Anti-Malware [2025-07-17] () Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2022-01-02] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2022-01-02] (Microsoft Corporation) [MS Ad] Microsoft Flight Simulator -> C:\Program Files\WindowsApps\Microsoft.FlightSimulator_1.38.2.0_x64__8wekyb3d8bbwe [2024-11-02] (Microsoft Studios) Microsoft Flight Simulator 2024 -> C:\Program Files\WindowsApps\Microsoft.Limitless_1.4.20.0_x64__8wekyb3d8bbwe [2025-05-18] (Microsoft Studios) Microsoft Flight Simulator Digital Ownership -> C:\Program Files\WindowsApps\Microsoft.DigitalOwnership_1.0.1.0_x64__8wekyb3d8bbwe [2023-07-30] (Microsoft Studios) Microsoft Guy (Natural) - English (United States) -> C:\Program Files\WindowsApps\MicrosoftWindows.Voice.en-US.Guy.1_1.0.5.0_x64__cw5n1h2txyewy [2023-05-04] (Microsoft Windows) Microsoft Jenny (Natural) - English (United States) -> C:\Program Files\WindowsApps\MicrosoftWindows.Voice.en-US.Jenny.1_1.0.8.0_x64__cw5n1h2txyewy [2023-05-04] (Microsoft Windows) Microsoft.HEVCVideoExtensions -> C:\Program Files\WindowsApps\Microsoft.HEVCVideoExtensions_2.4.15.0_x64__8wekyb3d8bbwe [2025-07-10] (Microsoft Corporation) Microsoft.Office.ActionsServer -> C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\ActionsServer [2025-08-10] () Microsoft.Photos.MediaEngineDLC -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2023-03-13] (Microsoft Corporation) Microsoft.Windows.Photos.DLC.Main -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2023-03-14] (Microsoft Corporation) Minecraft for Windows -> C:\Program Files\WindowsApps\Microsoft.MinecraftUWP_1.21.10006.0_x64__8wekyb3d8bbwe [2025-08-10] (Microsoft Studios) NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.968.0_x64__56jybvy8sckqj [2025-06-19] (NVIDIA Corp.) OfficePushNotificationsUtility -> C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16 [2025-08-10] () Reader Notification Client -> C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r [2024-01-11] (Adobe Systems Incorporated) Samsung Printer Experience -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCO.LTD.SamsungPrinterExperience_1.3.15.0_x64__3c1yjt4zspk6g [2023-09-18] (Samsung Electronics Co. Ltd.) WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2531.4.0_x64__cv1g1gvanyjgm [2025-08-10] (WhatsApp Inc.) [Startup Task] Windows Feature Experience Pack -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.57074904.InpApp_cw5n1h2txyewy [2025-08-10] (Microsoft Windows) ==================== Custom CLSID (Whitelisted): ============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-3041118385-2347716452-1599031468-1001_Classes\CLSID\{0D327DA6-B4DF-4842-B833-2CFF84F0948F}\localserver32 -> D:\AUTODESK\AutoCAD 2017\acad.exe /Automation => No File CustomCLSID: HKU\S-1-5-21-3041118385-2347716452-1599031468-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe) CustomCLSID: HKU\S-1-5-21-3041118385-2347716452-1599031468-1001_Classes\CLSID\{2F81B25E-7507-4844-BFF2-77D2CC24CED4}\localserver32 -> C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Adobe Inc. -> Adobe Inc.) CustomCLSID: HKU\S-1-5-21-3041118385-2347716452-1599031468-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe) CustomCLSID: HKU\S-1-5-21-3041118385-2347716452-1599031468-1001_Classes\CLSID\{720DB9AF-D62C-4ED0-A377-429C22312852}\localserver32 -> D:\AUTODESK\AutoCAD 2017\acad.exe => No File CustomCLSID: HKU\S-1-5-21-3041118385-2347716452-1599031468-1001_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> D:\AUTODESK\AutoCAD 2017\en-US\acadficn.dll => No File CustomCLSID: HKU\S-1-5-21-3041118385-2347716452-1599031468-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Inc. -> Adobe Systems) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2025-02-23] (Adobe Inc. -> ) ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2025-02-23] (Adobe Inc. -> ) ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2025-02-23] (Adobe Inc. -> ) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2025-02-23] (Adobe Inc. -> ) ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2025-07-15] (Adobe Inc. -> Adobe Systems Inc.) ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2023-04-04] (AVB Disc Soft, SIA -> Disc Soft Ltd) ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2023-04-04] (AVB Disc Soft, SIA -> Disc Soft Ltd) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2025-07-16] (Malwarebytes Inc -> Malwarebytes) ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File ContextMenuHandlers4: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_9d15b9aa9e1c885b\nvshext.dll [2025-03-15] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2025-02-23] (Adobe Inc. -> ) ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2025-07-16] (Malwarebytes Inc -> Malwarebytes) ContextMenuHandlers6: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (Whitelisted) ==================== ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) ShortcutWithArgument: C:\Users\jm_fe\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_bkdgnmboooimfcnoiojeegenplccoeam\Google Maps.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=bkdgnmboooimfcnoiojeegenplccoeam ShortcutWithArgument: C:\Users\jm_fe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome\Documentos.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 4" --app-id=mpnpojknpmmopombnjdcgaaiekajbnjb ShortcutWithArgument: C:\Users\jm_fe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome\Gmail.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 4" --app-id=fmgjjmmmlfnkbppncabfkddbjimcfncm ShortcutWithArgument: C:\Users\jm_fe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome\Google Drive.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 4" --app-id=aghbiahbpaijignceidepookljebhfak ShortcutWithArgument: C:\Users\jm_fe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome\Google Maps.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=bkdgnmboooimfcnoiojeegenplccoeam ShortcutWithArgument: C:\Users\jm_fe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome\Hojas de cálculo.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 4" --app-id=fhihpiojkbmbpdjeoajapmgkhlnakfjf ShortcutWithArgument: C:\Users\jm_fe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome\Presentaciones.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 4" --app-id=kefjledonklijopmnomlcbpllchaibag ShortcutWithArgument: C:\Users\jm_fe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome\YouTube Music.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=cinhimbnkkaeohfgghhklpknlkffjgod ShortcutWithArgument: C:\Users\jm_fe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplicaciones de Chrome\YouTube.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 4" --app-id=agimnkijcaahngcdmfeangaknmldooml ==================== Loaded Modules (Whitelisted) ============= 2024-03-17 14:04 - 2023-06-22 20:05 - 001035776 _____ (DFI Inc.) [File not signed] C:\Program Files\Elo Touch Solutions\ServiceReporting\EAPI_Library.dll 2024-09-12 08:51 - 2025-04-13 01:01 - 000000000 ____L (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\MessageBus\NvMessageBusBroadcast.dll] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\NvMessageBusBroadcast.dll 2021-12-29 12:55 - 2020-05-14 15:15 - 003394560 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\libcrypto-1_1-x64.dll 2021-12-29 12:55 - 2020-05-14 15:15 - 000679424 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\libssl-1_1-x64.dll 2018-06-05 18:04 - 2017-07-06 04:47 - 000043520 _____ (Windows (R) Codename Longhorn DDK provider) [File not signed] C:\WINDOWS\system32\spool\PRTPROCS\x64\ssa7mpc.dll ==================== Alternate Data Streams (Whitelisted) ======== (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\WINDOWS\tracing:? [16] AlternateDataStreams: C:\Users\Public\AppData:CSM [468] AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [484] ==================== Safe Mode (Whitelisted) ================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MSIServer => " "="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Whitelisted) ================= (If an entry is included in the fixlist, the registry item will be restored to default or removed.) HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\Software\Classes\.scr: AutoCADScriptFile => ==================== Internet Explorer (Whitelisted) ============= HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://prodigy.msn.com/es-mx/ BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2025-08-09] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Wondershare AllMyTube 4.9.0 -> {067DF9EC-26B7-40DC-8DB8-CD8BE85AE367} -> C:\ProgramData\Wondershare\AllMyTube\WSBrowserAppMgr.dll [2018-06-05] (Wondershare Technology Co.,Ltd -> ) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_251\bin\ssv.dll [2020-07-30] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_251\bin\jp2ssv.dll [2020-07-30] (Oracle America, Inc. -> Oracle Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-08-09] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-08-09] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-08-09] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-08-09] (Microsoft Corporation -> Microsoft Corporation) Handler: WSAllMyTubechrome - {0A0C95CF-A116-4C74 - No File ==================== Hosts content: ========================= (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2017-09-29 07:46 - 2019-08-13 22:50 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts ==================== Network =========================== (Currently there is no automatic fix for this section.) DNS Servers: 192.168.1.1 Windows Firewall is enabled. Network Binding: ============= Ethernet: Intel(R) Ethernet Connection (2) I219-V -> e1i68x64.sys Local Area Connection: TAP-Windows Adapter V9 -> tap0901.sys Bluetooth Network Connection: Bluetooth Device (Personal Area Network) -> bthpan.sys Wi-Fi: Realtek 8822BE Wireless LAN 802.11ac PCI-E NIC -> rtwlane.sys ==================== Other Areas =========================== (Currently there is no automatic fix for this section.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\System32\OpenSSH\;C:\Program Files\WIDCOMM\Bluetooth Software\;C:\Program Files\WIDCOMM\Bluetooth Software\syswow64;C:\Program Files\Common Files\Autodesk Shared\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\dotnet\;C:\Program Files\NVIDIA Corporation\NVIDIA app\NvDLISR;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img19.jpg HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn) HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 5) (TamperProtectionSource: ) HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0) HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\WINDOWS\system32 HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|powershell.EXE ==================== MSCONFIG/TASK MANAGER disabled items == (If an entry is included in the fixlist, it will be removed.) MSCONFIG\Services: AGMService => 2 MSCONFIG\Services: AGSService => 2 MSCONFIG\Services: Apple Mobile Device Service => 2 MSCONFIG\Services: ArmouryCrateService => 2 MSCONFIG\Services: AsusFanControlService => 2 MSCONFIG\Services: Aura Wallpaper Service => 2 MSCONFIG\Services: CorsairLLAService => 3 MSCONFIG\Services: Disc Soft Ultra Bus Service => 3 MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: gupdatem => 3 MSCONFIG\Services: Intel(R) Capability Licensing Service TCP IP Interface => 3 MSCONFIG\Services: LightingService => 2 MSCONFIG\Services: Origin Client Service => 3 MSCONFIG\Services: Origin Web Helper Service => 3 MSCONFIG\Services: PureVPNService => 2 MSCONFIG\Services: RichVideo64 => 2 MSCONFIG\Services: RzThxSrv => 2 MSCONFIG\Services: ss_conn_launcher_service => 3 MSCONFIG\Services: WsDrvInst => 3 HKLM\...\StartupApproved\StartupFolder: => "Bluetooth.lnk" HKLM\...\StartupApproved\StartupFolder: => "Network Server.lnk" HKLM\...\StartupApproved\StartupFolder: => "Samsung Network PC Fax.lnk" HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0" HKLM\...\StartupApproved\Run: => "EloRegRunEloConfig" HKLM\...\StartupApproved\Run: => "iTunesHelper" HKLM\...\StartupApproved\Run: => "CDAServer" HKLM\...\StartupApproved\Run: => "X-55 Rhino" HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run: => "Start WingMan Profiler" HKLM\...\StartupApproved\Run: => "Corel Update Helper" HKLM\...\StartupApproved\Run: => "RZTHXHelper" HKLM\...\StartupApproved\Run32: => "EaseUS EPM Tray Agent" HKLM\...\StartupApproved\Run32: => "Wondershare Helper Compact.exe" HKLM\...\StartupApproved\Run32: => "DelaypluginInstall" HKLM\...\StartupApproved\Run32: => "ADSKAppManager" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "Adobe CCXProcess" HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud" HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\StartupApproved\StartupFolder: => "Folding@home.lnk" HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\StartupApproved\Run: => "Bose Updater" HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\StartupApproved\Run: => "CorsairLink4" HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\StartupApproved\Run: => "EpicGamesLauncher" HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\StartupApproved\Run: => "ASO3SPCDone" HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\StartupApproved\Run: => "com.squirrel.WhatsApp.WhatsApp" HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning" HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_CF1216BD0FFDDAAAB6487A5F9C2E1C96" HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\StartupApproved\Run: => "PureVPN" HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\StartupApproved\Run: => "Web Companion" HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\StartupApproved\Run: => "Navigraph Navdata Center" HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\StartupApproved\Run: => "Adobe Acrobat Synchronizer" HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\StartupApproved\Run: => "EADM" HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\StartupApproved\Run: => "Navigraph Hub" HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\StartupApproved\Run: => "simMarket" HKU\S-1-5-21-3041118385-2347716452-1599031468-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount" ==================== FirewallRules (Whitelisted) ================ (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [UDP Query User{18DE109F-23B1-4240-8050-E61421376E44}E:\games\microsoft flight simulator 2024\content\flightsimulator2024.exe] => (Allow) E:\games\microsoft flight simulator 2024\content\flightsimulator2024.exe (Access Denied) [File not signed?] FirewallRules: [TCP Query User{E415085A-9087-4DCB-8A49-19A44EEEDD70}E:\games\microsoft flight simulator 2024\content\flightsimulator2024.exe] => (Allow) E:\games\microsoft flight simulator 2024\content\flightsimulator2024.exe (Access Denied) [File not signed?] FirewallRules: [UDP Query User{4ABD4AB2-EA00-4CF5-8E0D-0A6E081595D8}C:\users\jm_fe\appdata\local\programs\simbox-control\simbox control.exe] => (Allow) C:\users\jm_fe\appdata\local\programs\simbox-control\simbox control.exe (FlyingArt) [File not signed] FirewallRules: [TCP Query User{2806DB3D-818E-4A9D-800A-C7F9F9FE1BB5}C:\users\jm_fe\appdata\local\programs\simbox-control\simbox control.exe] => (Allow) C:\users\jm_fe\appdata\local\programs\simbox-control\simbox control.exe (FlyingArt) [File not signed] FirewallRules: [UDP Query User{EA75C9B1-6D57-473C-86B9-B93820FA8D79}E:\games\call of duty\content\sp24\sp24-cod.exe] => (Allow) E:\games\call of duty\content\sp24\sp24-cod.exe => No File FirewallRules: [TCP Query User{986D16AC-1BA6-41CF-91A5-E338D7B0354B}E:\games\call of duty\content\sp24\sp24-cod.exe] => (Allow) E:\games\call of duty\content\sp24\sp24-cod.exe => No File FirewallRules: [UDP Query User{8D27D5E1-1D60-4227-B5D0-025CDEC17A70}E:\games\call of duty\content\cod.exe] => (Allow) E:\games\call of duty\content\cod.exe => No File FirewallRules: [TCP Query User{0474DDA3-991A-437A-93AC-520DC6C26E86}E:\games\call of duty\content\cod.exe] => (Allow) E:\games\call of duty\content\cod.exe => No File FirewallRules: [UDP Query User{6EB03A4A-8503-4F2D-8A3A-40564673796E}E:\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) E:\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{CC2D558C-5513-41FE-9326-1BF51DCED504}E:\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) E:\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{C4CEBDC5-7290-423A-A025-AF04278D0D05}C:\program files (x86)\asus\gputweakiii\gt3 mobile service.exe] => (Allow) C:\program files (x86)\asus\gputweakiii\gt3 mobile service.exe => No File FirewallRules: [TCP Query User{97CBFEAB-DDDC-488F-8827-A63ABA871508}C:\program files (x86)\asus\gputweakiii\gt3 mobile service.exe] => (Allow) C:\program files (x86)\asus\gputweakiii\gt3 mobile service.exe => No File FirewallRules: [UDP Query User{C913B66B-B3AA-49EC-8943-CC41D44338A1}C:\program files (x86)\asus\gputweakiii\gt3 mobile service.exe] => (Allow) C:\program files (x86)\asus\gputweakiii\gt3 mobile service.exe => No File FirewallRules: [TCP Query User{AC4D8D54-CE8B-4AAA-8C57-1DDA8A16599B}C:\program files (x86)\asus\gputweakiii\gt3 mobile service.exe] => (Allow) C:\program files (x86)\asus\gputweakiii\gt3 mobile service.exe => No File FirewallRules: [{71D2FD64-4D0E-463B-AF2F-1BB3BC38734F}] => (Allow) LPort=32137 FirewallRules: [{FD71F11F-7404-41FA-9B7D-EA8ADA17FE80}] => (Allow) LPort=32138 FirewallRules: [{580A70D1-A0FC-422E-923E-FEBC8CD41933}] => (Allow) LPort=32136 FirewallRules: [{97EDB9BF-CF3A-499E-AD47-74789F85EF02}] => (Allow) C:\Program Files (x86)\aviaServer\aviaServer.exe (aviaworx) [File not signed] FirewallRules: [{3CA21129-9808-4290-A95E-5A2C3963D625}] => (Allow) LPort=32108 FirewallRules: [{D10E6FBF-ACF8-44C3-AF99-96575D1FF53F}] => (Allow) LPort=32109 FirewallRules: [{8247756A-5570-49E6-9FA9-DA314BFB4C0F}] => (Allow) LPort=32110 FirewallRules: [{508C5FE1-77B4-4F36-860C-78BBB0DCCC0B}] => (Allow) LPort=32135 FirewallRules: [{F9775093-D3EC-40DB-85E2-7E96DC3F63FA}] => (Allow) LPort=32134 FirewallRules: [{42ABF205-130F-4A19-B9E6-7ADB50B033C6}] => (Allow) LPort=32133 FirewallRules: [{B82CEB2F-5DC3-48D5-92C6-156CD585B2A9}] => (Allow) LPort=32132 FirewallRules: [{8D045A95-6805-4E82-A852-A4A203B33920}] => (Allow) LPort=32131 FirewallRules: [{56C41FA1-DEAD-492C-AE66-088F1C759E44}] => (Allow) LPort=32130 FirewallRules: [{35F02631-52F1-4052-A91E-91E328D3A210}] => (Allow) LPort=32129 FirewallRules: [{154EC77F-C5F9-4FA3-8B7F-94E3AA74C68D}] => (Allow) LPort=32128 FirewallRules: [{4D745D51-4B20-46A0-B347-1F598F24AA32}] => (Allow) LPort=32127 FirewallRules: [{034ADEA8-1224-45D5-9FFA-02CC395FA26A}] => (Allow) LPort=32126 FirewallRules: [{5C595E95-B503-401D-8874-DF3887422526}] => (Allow) LPort=32125 FirewallRules: [{A641944D-766F-4821-BCB3-A4D2AE999BF8}] => (Allow) LPort=32124 FirewallRules: [{0320B2B0-14DF-4818-8731-916298466F6E}] => (Allow) LPort=32123 FirewallRules: [{D0975242-C49C-49B8-A994-17094B01FF84}] => (Allow) LPort=32122 FirewallRules: [{8CC9608D-25EB-4FFD-B6DF-6333D69376F6}] => (Allow) LPort=32121 FirewallRules: [{55B7B47B-0535-414C-98F5-3ADEBBDE196E}] => (Allow) LPort=32120 FirewallRules: [{59E2D762-6A1D-4D27-A5D4-4F87DE71C5D6}] => (Allow) LPort=32119 FirewallRules: [{2F1EA081-EF7F-4F08-AFEA-8D87F469E0E4}] => (Allow) LPort=32117 FirewallRules: [{F477DF05-4F46-426E-8691-65F59AB9B6A7}] => (Allow) LPort=32118 FirewallRules: [{AE3FE874-33D3-48A2-B045-E435B5CE73AE}] => (Allow) LPort=32116 FirewallRules: [{084381FD-3962-438D-B2FC-A9B70EEED054}] => (Allow) LPort=32114 FirewallRules: [{69622268-EC4B-424B-9602-BA4E5DB48497}] => (Allow) LPort=32115 FirewallRules: [{0251F0E0-5663-4AB2-95E1-BADEB0C280CF}] => (Allow) LPort=32113 FirewallRules: [{7CCAEBA5-75EC-4C7D-B8AF-503328D593B0}] => (Allow) LPort=32112 FirewallRules: [{E99DBB50-66B6-459B-B972-68DECD61EB9C}] => (Allow) LPort=32111 FirewallRules: [UDP Query User{5772FB36-D3B5-4F04-B2F2-0829760B1369}C:\users\jm_fe\appdata\local\programs\simbox-control\simbox control.exe] => (Allow) C:\users\jm_fe\appdata\local\programs\simbox-control\simbox control.exe (FlyingArt) [File not signed] FirewallRules: [TCP Query User{9FC1555B-4C5A-4EFF-96ED-932C31F0B8FE}C:\users\jm_fe\appdata\local\programs\simbox-control\simbox control.exe] => (Allow) C:\users\jm_fe\appdata\local\programs\simbox-control\simbox control.exe (FlyingArt) [File not signed] FirewallRules: [{EA222202-C2EA-41B2-A374-E3F5E957CBA4}] => (Allow) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) FirewallRules: [{60BA5C14-7980-40C5-8579-452F3F3551E9}] => (Allow) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) FirewallRules: [UDP Query User{58EA3C42-243D-49D0-B161-13ED69AC12CD}C:\users\jm_fe\appdata\local\programs\navigraph-hub\navigraph hub.exe] => (Block) C:\users\jm_fe\appdata\local\programs\navigraph-hub\navigraph hub.exe (Navigraph Kommanditbolag -> Navigraph) FirewallRules: [TCP Query User{60BCD57E-B5E4-4399-9256-FE1FC1747E27}C:\users\jm_fe\appdata\local\programs\navigraph-hub\navigraph hub.exe] => (Block) C:\users\jm_fe\appdata\local\programs\navigraph-hub\navigraph hub.exe (Navigraph Kommanditbolag -> Navigraph) FirewallRules: [UDP Query User{95F0AF3B-95C5-4B6F-B7AF-3626435BBE4C}C:\users\jm_fe\appdata\local\programs\navigraph-hub\navigraph hub.exe] => (Allow) C:\users\jm_fe\appdata\local\programs\navigraph-hub\navigraph hub.exe (Navigraph Kommanditbolag -> Navigraph) FirewallRules: [TCP Query User{DB6B600E-47E8-4358-BDDB-8B031FA220CF}C:\users\jm_fe\appdata\local\programs\navigraph-hub\navigraph hub.exe] => (Allow) C:\users\jm_fe\appdata\local\programs\navigraph-hub\navigraph hub.exe (Navigraph Kommanditbolag -> Navigraph) FirewallRules: [{4FB7D6F7-FD18-4FC7-A7B8-E7E88E13D73E}] => (Allow) D:\XboxGames\Microsoft Flight Simulator\Content\PMDG 737-700 for MSFS.exe (PMDG Simulations, LLC.) [File not signed] FirewallRules: [{07944BE5-2D9B-4948-9F4C-31C62E0E1277}] => (Allow) D:\XboxGames\Microsoft Flight Simulator\Content\PMDG 737-700 for MSFS.exe (PMDG Simulations, LLC.) [File not signed] FirewallRules: [{35D87E20-B4FD-4A84-8ABB-8993AE36322B}] => (Allow) D:\XboxGames\Microsoft Flight Simulator\Content\PMDG 737-700 for MSFS.exe (PMDG Simulations, LLC.) [File not signed] FirewallRules: [{CB84747E-33EA-4DE8-BB33-4CB166E3D822}] => (Allow) D:\XboxGames\Microsoft Flight Simulator\Content\PMDG 737-700 for MSFS.exe (PMDG Simulations, LLC.) [File not signed] FirewallRules: [UDP Query User{E338562D-ADBD-4F1C-A8F8-EB4887140722}C:\users\jm_fe\appdata\local\programs\navigraph navdata center\navigraph hub.exe] => (Allow) C:\users\jm_fe\appdata\local\programs\navigraph navdata center\navigraph hub.exe => No File FirewallRules: [TCP Query User{E238207D-2B1E-4706-8FC8-7AD01B4AB682}C:\users\jm_fe\appdata\local\programs\navigraph navdata center\navigraph hub.exe] => (Allow) C:\users\jm_fe\appdata\local\programs\navigraph navdata center\navigraph hub.exe => No File FirewallRules: [UDP Query User{779AE826-0908-474F-A255-53B54C38744A}C:\program files (x86)\epubor\ultimate\epuborultimate.exe] => (Allow) C:\program files (x86)\epubor\ultimate\epuborultimate.exe => No File FirewallRules: [TCP Query User{A72EA23D-41DE-4583-8A46-509927F77905}C:\program files (x86)\epubor\ultimate\epuborultimate.exe] => (Allow) C:\program files (x86)\epubor\ultimate\epuborultimate.exe => No File FirewallRules: [{42CB727C-48EC-40CF-AC5F-B29EC4C38607}] => (Allow) C:\Users\jm_fe\AppData\Local\Temp\utorrent\utorrent.exe => No File FirewallRules: [{E640B6D2-C384-41C3-9417-94C66B27AC7A}] => (Allow) C:\Users\jm_fe\AppData\Local\Temp\utorrent\utorrent.exe => No File FirewallRules: [{5650D781-40C9-4845-8AC3-22F9001FC228}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) FirewallRules: [{F6C86A55-28AF-4A18-96A2-0E57691B6936}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) FirewallRules: [{2A335BC6-7F53-4C61-8A04-8EB585E20EFF}] => (Allow) D:\Games\Battlefield 2042\Battlefield 2042\BF2042_launcher.exe => No File FirewallRules: [{B92E19A7-30BD-44E8-A6FB-283E378BE254}] => (Allow) D:\Games\Battlefield 2042\Battlefield 2042\BF2042_launcher.exe => No File FirewallRules: [{9C83A804-BEA3-498F-AE54-5C65E01FDCB3}] => (Allow) D:\Games\F1 22\F1_22_Trial.exe => No File FirewallRules: [{539F58DC-B50E-4903-BA70-B62B9FC5BF23}] => (Allow) D:\Games\F1 22\F1_22_Trial.exe => No File FirewallRules: [{43AD6820-5E40-41DB-99A0-F16CA29498D3}] => (Allow) D:\Games\F1 22\F1_22.exe => No File FirewallRules: [{59B9689E-91D2-4FFF-9E8E-3EF201E58A9B}] => (Allow) D:\Games\F1 22\F1_22.exe => No File FirewallRules: [UDP Query User{279C2848-AF42-4E72-B034-01BF4BD1DA4D}D:\star citizen\starcitizen\live\bin64\starcitizen.exe] => (Allow) D:\star citizen\starcitizen\live\bin64\starcitizen.exe => No File FirewallRules: [TCP Query User{21905C39-3426-4970-91BF-F156EA941FC3}D:\star citizen\starcitizen\live\bin64\starcitizen.exe] => (Allow) D:\star citizen\starcitizen\live\bin64\starcitizen.exe => No File FirewallRules: [UDP Query User{C843E821-7F80-450F-BEC1-7EFBA2938AC0}D:\xboxgames\fallout 76\content\project76_gamepass.exe] => (Allow) D:\xboxgames\fallout 76\content\project76_gamepass.exe => No File FirewallRules: [TCP Query User{580CCF40-77C7-47BE-A00A-856E9E372169}D:\xboxgames\fallout 76\content\project76_gamepass.exe] => (Allow) D:\xboxgames\fallout 76\content\project76_gamepass.exe => No File FirewallRules: [UDP Query User{3C3D2E51-4C6D-4377-88DC-B91DF1A71AC2}D:4\flightsimulator.exe] => (Allow) D:4\flightsimulator.exe => No File FirewallRules: [TCP Query User{8C21A8E2-93FA-40AF-A3BA-FCC65CB429EA}D:4\flightsimulator.exe] => (Allow) D:4\flightsimulator.exe => No File FirewallRules: [UDP Query User{D8B4068E-A6AA-4E73-B5E8-CCAEF7102330}C:\program files (x86)\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\purevpn\purevpn.exe (GZ Systems Limited -> GZ Systems) FirewallRules: [TCP Query User{84A1A117-83F7-4642-AD49-F9AC7C560DE1}C:\program files (x86)\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\purevpn\purevpn.exe (GZ Systems Limited -> GZ Systems) FirewallRules: [UDP Query User{BFFFC8FD-E9B5-4912-9ABC-C375746FA5D8}D:\games\battlefield v\bfv.exe] => (Allow) D:\games\battlefield v\bfv.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB) FirewallRules: [TCP Query User{FB1ACCC0-5391-4E63-AC64-939500860795}D:\games\battlefield v\bfv.exe] => (Allow) D:\games\battlefield v\bfv.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB) FirewallRules: [UDP Query User{1FA49433-6DF4-4EE3-A0DE-DF70CF6FB728}D:1\flightsimulator.exe] => (Allow) D:1\flightsimulator.exe => No File FirewallRules: [TCP Query User{687AF52B-BDAC-4B17-8EF5-69153040C8AF}D:1\flightsimulator.exe] => (Allow) D:1\flightsimulator.exe => No File FirewallRules: [{864AE109-C045-4B32-907F-85371A2F11C0}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe => No File FirewallRules: [UDP Query User{4032024F-6B48-4BAE-B0C1-F2D1FBD79AE4}D:\games\battlefield 2042\battlefield 2042\bf2042.exe] => (Allow) D:\games\battlefield 2042\battlefield 2042\bf2042.exe => No File FirewallRules: [TCP Query User{A373B390-904C-458D-BB68-352A4DCB39E4}D:\games\battlefield 2042\battlefield 2042\bf2042.exe] => (Allow) D:\games\battlefield 2042\battlefield 2042\bf2042.exe => No File FirewallRules: [{E5AD79F4-AC0D-4C77-A7CB-77F5A23E3490}] => (Allow) D:\STEAM\steamapps\common\Rise of Flight 2.0\bin_game\release\ROF.exe => No File FirewallRules: [{EAE2953F-4870-49B4-8125-1867DDD3E41E}] => (Allow) D:\STEAM\steamapps\common\Rise of Flight 2.0\bin_game\release\ROF.exe => No File FirewallRules: [{1DB4F469-CC80-47DE-B53E-23131700DD83}] => (Allow) D:\Games\MADDEN 22\Madden NFL 22\Madden22.exe => No File FirewallRules: [{2F65FC64-1309-4AE0-8DE2-D8F71188E3E0}] => (Allow) D:\Games\MADDEN 22\Madden NFL 22\Madden22.exe => No File FirewallRules: [{02B8B465-5BA2-43C0-939F-661F47398F9C}] => (Allow) D:\Games\MADDEN 22\Madden NFL 22\Madden22_Trial.exe => No File FirewallRules: [{25F17E13-9E0C-4CB8-89FD-AFA4DC0D6F4F}] => (Allow) D:\Games\MADDEN 22\Madden NFL 22\Madden22_Trial.exe => No File FirewallRules: [UDP Query User{3AC7172F-4FF7-4DBB-BF81-3CF60E07192F}D:\games\battlefield 2042\battlefield 2042\bf2042.exe] => (Allow) D:\games\battlefield 2042\battlefield 2042\bf2042.exe => No File FirewallRules: [TCP Query User{4603DA26-72BA-4219-AED3-7D958F8CD4F3}D:\games\battlefield 2042\battlefield 2042\bf2042.exe] => (Allow) D:\games\battlefield 2042\battlefield 2042\bf2042.exe => No File FirewallRules: [{C127EDD7-493E-4098-96E5-59C38F28F348}] => (Allow) D:\Games\Battlefield V\bfv.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB) FirewallRules: [{D485C94D-F221-4BD1-BB2E-BFEE5953609B}] => (Allow) D:\Games\Battlefield V\bfv.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB) FirewallRules: [{7C2E4D5B-D95A-46EC-B88B-560A3FBA4249}] => (Allow) D:\Games\Battlefield V\bfvTrial.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB) FirewallRules: [{C5F67F25-B9F2-401E-A931-54708FC6AF39}] => (Allow) D:\Games\Battlefield V\bfvTrial.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB) FirewallRules: [{1DD7A81A-7166-4B45-B4D8-D8732DA90BC7}] => (Allow) D:\STEAM\steamapps\common\Assassin's Creed Unity\ACU.exe (UBISOFT ENTERTAINMENT INC. -> ) FirewallRules: [{B1490EB5-6AC4-494D-988D-5401538D40D7}] => (Allow) D:\STEAM\steamapps\common\Assassin's Creed Unity\ACU.exe (UBISOFT ENTERTAINMENT INC. -> ) FirewallRules: [{8AB26ED2-5F42-4CC7-92DA-37EB7BCE49EF}] => (Allow) D:\STEAM\steamapps\common\Total War Rome II\launcher\launcher.exe (Creative Assembly -> Creative Assembly Ltd) FirewallRules: [{D9799F9E-C675-4F1F-9CAB-811533CA95CB}] => (Allow) D:\STEAM\steamapps\common\Total War Rome II\launcher\launcher.exe (Creative Assembly -> Creative Assembly Ltd) FirewallRules: [{A0CEB51B-AC9E-4015-A3A6-693305980D8D}] => (Allow) D:\STEAM\steamapps\common\Counter-Strike Global Offensive\csgo.exe => No File FirewallRules: [{0BD70F01-FD96-4C99-99A4-3FA8A24B4FD4}] => (Allow) D:\STEAM\steamapps\common\Counter-Strike Global Offensive\csgo.exe => No File FirewallRules: [UDP Query User{E3E2C621-0052-42EF-88F9-06464FFC7DF3}C:\program files (x86)\common files\oracle\java\javapath_target_180137968\javaw.exe] => (Block) C:\program files (x86)\common files\oracle\java\javapath_target_180137968\javaw.exe FirewallRules: [TCP Query User{A3605403-AC0C-4FAF-951D-933EC85608F0}C:\program files (x86)\common files\oracle\java\javapath_target_180137968\javaw.exe] => (Block) C:\program files (x86)\common files\oracle\java\javapath_target_180137968\javaw.exe FirewallRules: [{046DAF71-5C99-4F8B-9484-765646CEC8FA}] => (Allow) D:\STEAM\steamapps\common\DCSWorld\bin\DCS.exe (Eagle Dynamics SA -> Eagle Dynamics SA) FirewallRules: [{3F8C113C-1CDE-4FED-8EAD-0E2EA307D788}] => (Allow) D:\STEAM\steamapps\common\DCSWorld\bin\DCS.exe (Eagle Dynamics SA -> Eagle Dynamics SA) FirewallRules: [UDP Query User{C4543B00-1DD9-48DE-9FD6-98ED94D9BF3C}D:\steam\steamapps\common\world of tanks\na\win64\worldoftanks.exe] => (Allow) D:\steam\steamapps\common\world of tanks\na\win64\worldoftanks.exe => No File FirewallRules: [TCP Query User{A08ABBDC-0E9D-45B2-8968-1E2F29ABCA88}D:\steam\steamapps\common\world of tanks\na\win64\worldoftanks.exe] => (Allow) D:\steam\steamapps\common\world of tanks\na\win64\worldoftanks.exe => No File FirewallRules: [UDP Query User{1AC001FA-A800-47B1-B674-6A909F282B1C}D:\games\star wars squadrons\starwarssquadrons.exe] => (Allow) D:\games\star wars squadrons\starwarssquadrons.exe (Electronic Arts, Inc. -> Electronic Arts Inc.) FirewallRules: [TCP Query User{E9875E24-8ABC-49BC-8144-EFD2879C10BD}D:\games\star wars squadrons\starwarssquadrons.exe] => (Allow) D:\games\star wars squadrons\starwarssquadrons.exe (Electronic Arts, Inc. -> Electronic Arts Inc.) FirewallRules: [{6B82F94C-63A3-4456-93A2-F491B834F6A2}] => (Allow) C:\Users\jm_fe\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [{995B10B5-68ED-4F0E-A0A0-A15B1EDC0243}] => (Allow) C:\Users\jm_fe\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [{4BF567AB-EDD1-49AC-A4DB-D1504ED1950B}] => (Allow) C:\Users\jm_fe\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [{3797B271-26F6-4AB8-8249-B15EB95BA194}] => (Allow) D:\STEAM\steamapps\common\IL-2 Sturmovik Battle of Stalingrad\bin\game\Il-2.exe (LLC 1c Game Studios -> FOR-GAMES CR LTD) FirewallRules: [{C976FCD4-FFF1-4E94-BE53-4584F6322D43}] => (Allow) D:\STEAM\steamapps\common\IL-2 Sturmovik Battle of Stalingrad\bin\game\Il-2.exe (LLC 1c Game Studios -> FOR-GAMES CR LTD) FirewallRules: [{3B286F1D-C8A4-4F15-BCD7-0BC51AAE2EAB}] => (Block) C:\program files (x86)\gz systems\purevpn\purevpn.exe => No File FirewallRules: [{C62A29F0-D41D-4D02-A1BC-9822F7D6A330}] => (Block) C:\program files (x86)\gz systems\purevpn\purevpn.exe => No File FirewallRules: [UDP Query User{6A6DDDB7-5D6D-4119-AA43-D801065CE0D2}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe => No File FirewallRules: [TCP Query User{05BDDA9D-E004-4F42-AE4C-FF9DB705DE9B}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe => No File FirewallRules: [UDP Query User{BBA2541D-157B-4D5D-9DDA-2A9754DD267D}D:\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) D:\steam\steamapps\common\war thunder\win64\aces.exe => No File FirewallRules: [TCP Query User{7E12EDE1-706E-4D4A-98F3-501BF9EA1C66}D:\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) D:\steam\steamapps\common\war thunder\win64\aces.exe => No File FirewallRules: [{6259F422-CA05-4C6E-B5FB-9A12B95DA9CF}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [UDP Query User{4F841093-397D-4A05-ABEE-F41F51801938}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe => No File FirewallRules: [TCP Query User{154C2992-B2F3-4D29-90B9-CA1F9E74D0E4}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe => No File FirewallRules: [{A812F75B-0429-4DE5-A486-A0DAC7BC6470}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> ) FirewallRules: [{92BE1CF7-8DA6-497B-A75A-48CB83F0BE52}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> ) FirewallRules: [{BD89B709-CFE8-4772-8AF9-8E5956CC22CC}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) FirewallRules: [{C774CAB2-9E60-4EC8-B419-D0079010147C}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) FirewallRules: [{0447FEBC-2834-4DBA-A951-760FA96AA524}] => (Allow) D:\STEAM\steamapps\common\WW1GameSeries\WW1 Game Series.exe => No File FirewallRules: [{05D749EA-F495-4519-AE5A-12E4F515765A}] => (Allow) D:\STEAM\steamapps\common\WW1GameSeries\WW1 Game Series.exe => No File FirewallRules: [{CFB9B015-B216-4030-9D57-2D41C3EF3E03}] => (Allow) D:\STEAM\steamapps\common\Cuphead\Cuphead.exe () [File not signed] FirewallRules: [{81D2775F-0B81-4B7A-9A17-BBD90D894BF9}] => (Allow) D:\STEAM\steamapps\common\Cuphead\Cuphead.exe () [File not signed] FirewallRules: [UDP Query User{224B2DCF-AA31-480C-B0C6-609EAB86EF81}D:\offlinebay\offlinebay.exe] => (Allow) D:\offlinebay\offlinebay.exe (TechTac) [File not signed] FirewallRules: [TCP Query User{2019AB6E-7983-4F0A-A0E1-5E63C501418C}D:\offlinebay\offlinebay.exe] => (Allow) D:\offlinebay\offlinebay.exe (TechTac) [File not signed] FirewallRules: [UDP Query User{C2F0C6D5-DFC5-497F-AD7B-2184ED2782D7}D:\games\call of duty modern warfare remastered\h1_sp64_ship.exe] => (Allow) D:\games\call of duty modern warfare remastered\h1_sp64_ship.exe => No File FirewallRules: [TCP Query User{6FF4D3F6-B369-4555-AEA4-6610BCFF405C}D:\games\call of duty modern warfare remastered\h1_sp64_ship.exe] => (Allow) D:\games\call of duty modern warfare remastered\h1_sp64_ship.exe => No File FirewallRules: [{4340AD99-94C8-4C32-AA97-8784E0B3A30D}] => (Block) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe (Wondershare Technology Co.,Ltd -> Wondershare) FirewallRules: [{07DB4793-6ED1-4753-90FD-0F75B91BEE71}] => (Allow) C:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{E3908549-4211-4026-AD8F-B3CCF6B7FECF}] => (Allow) C:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [UDP Query User{BF26A6B0-BE00-4087-B023-C4B010697F03}D:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe => No File FirewallRules: [TCP Query User{EB88E76F-3B02-4D66-A3BC-D477B938F2A4}D:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe => No File FirewallRules: [UDP Query User{E34202DE-BD53-4E07-8729-F1C0B3E7507A}D:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe => No File FirewallRules: [TCP Query User{F58AB22A-4E1A-4468-AE52-04A604CE419B}D:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe => No File FirewallRules: [UDP Query User{B0B2D0FD-C85E-4C08-BD54-57E637790078}D:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe => No File FirewallRules: [TCP Query User{10D5B1A9-F926-4675-9FDB-D837EC224A6C}D:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe => No File FirewallRules: [UDP Query User{5F269918-96C6-45DF-A1B9-6969F1DDF682}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe => No File FirewallRules: [TCP Query User{594F0252-046D-43A0-B536-4AA0500F9808}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe => No File FirewallRules: [{A4B6CE4C-52F7-4DB6-A792-CAB3E6A567F6}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe () [File not signed] FirewallRules: [{5125D541-C80C-44DC-927D-46F21489FE74}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe () [File not signed] FirewallRules: [{858D153C-1B45-4208-8740-BE5367EC8589}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> ) FirewallRules: [{22AEA86F-7C2B-419B-906B-69EF93FC0862}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> ) FirewallRules: [{25DC14C4-FB89-4FC5-8BAE-F961CA7FC9A8}] => (Allow) C:\Windows\twain_32\Samsung\SLM288x\ScanCDLM\ScanCDLM.exe => No File FirewallRules: [{84ABF891-5971-4F3B-90A3-9B0A58AC81CE}] => (Allow) C:\Windows\twain_32\Samsung\SLM288x\ScanCDLM\ScanCDLM.exe => No File FirewallRules: [UDP Query User{A7276B85-3503-4803-A4E9-77B1716A6F82}D:\steam\steamapps\common\rising storm 2\binaries\win64\vngame.exe] => (Allow) D:\steam\steamapps\common\rising storm 2\binaries\win64\vngame.exe => No File FirewallRules: [TCP Query User{0D62F331-EB74-4A19-B0CE-59A2E2FABCAD}D:\steam\steamapps\common\rising storm 2\binaries\win64\vngame.exe] => (Allow) D:\steam\steamapps\common\rising storm 2\binaries\win64\vngame.exe => No File FirewallRules: [{0F9D4BB7-28C8-488C-A721-D23FDE6C7591}] => (Allow) C:\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{1780EDBC-53CB-44E7-B0BD-9B91C3A18C13}] => (Allow) C:\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{99486C73-2602-4AC4-9EB5-3301A258349D}] => (Allow) C:\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File FirewallRules: [{C6A7498D-BE28-496E-A262-A88F7923A729}] => (Allow) C:\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File FirewallRules: [{4BA83C91-A37A-442A-BFB1-E2CAA3CB841D}] => (Allow) C:\Users\jm_fe\AppData\Roaming\uTorrent\uTorrent.exe => No File FirewallRules: [{64D65711-3EE9-41A2-96F3-FD13493DB0C3}] => (Allow) C:\Users\jm_fe\AppData\Roaming\uTorrent\uTorrent.exe => No File FirewallRules: [{9C0276CE-3F3E-4813-A4B7-EC4E81422EE7}] => (Allow) D:\STEAM\steamapps\common\Zombie Army Trilogy\Launcher\ZATLauncher.exe () [File not signed] FirewallRules: [{CC34CD86-AFE3-4B2F-9A75-6C3FCAA927CD}] => (Allow) D:\STEAM\steamapps\common\Zombie Army Trilogy\Launcher\ZATLauncher.exe () [File not signed] FirewallRules: [TCP Query User{CE0F7258-E843-42AB-982B-5814BCAE147B}D:\steam\steamapps\common\total war attila\attila.exe] => (Allow) D:\steam\steamapps\common\total war attila\attila.exe => No File FirewallRules: [UDP Query User{4D524DF9-1A9C-4D64-9BB4-6B2E558A538F}D:\steam\steamapps\common\total war attila\attila.exe] => (Allow) D:\steam\steamapps\common\total war attila\attila.exe => No File FirewallRules: [TCP Query User{09A170D2-4915-4E3B-953A-6E99A1B5C283}C:\program files (x86)\wondershare\youtube-downloader\allmytube.exe] => (Allow) C:\program files (x86)\wondershare\youtube-downloader\allmytube.exe (Wondershare Technology Co.,Ltd -> Wondershare) FirewallRules: [UDP Query User{C4B45535-95F8-499E-A7B1-6A2E2A1052DF}C:\program files (x86)\wondershare\youtube-downloader\allmytube.exe] => (Allow) C:\program files (x86)\wondershare\youtube-downloader\allmytube.exe (Wondershare Technology Co.,Ltd -> Wondershare) FirewallRules: [TCP Query User{F37D46C4-6239-4E12-88F6-C6B4C65D33E2}C:\program files (x86)\wondershare\youtube-downloader\urlreqservice.exe] => (Allow) C:\program files (x86)\wondershare\youtube-downloader\urlreqservice.exe => No File FirewallRules: [UDP Query User{C429A91B-1A56-451E-9122-2FD61ED94FAB}C:\program files (x86)\wondershare\youtube-downloader\urlreqservice.exe] => (Allow) C:\program files (x86)\wondershare\youtube-downloader\urlreqservice.exe => No File FirewallRules: [{DE027559-F193-42F9-8D1A-F0C6237439F1}] => (Allow) D:\STEAM\steamapps\common\Total War Attila\launcher\launcher.exe => No File FirewallRules: [{A05E17A8-924D-47D4-B091-9B00E778477F}] => (Allow) D:\STEAM\steamapps\common\Total War Attila\launcher\launcher.exe => No File FirewallRules: [{E937133F-7A0A-451F-A97A-FFEDF126BBB8}] => (Allow) D:\STEAM\steamapps\common\DCSWorld\Run.exe => No File FirewallRules: [{2449070C-850F-4F62-BF54-BA92EEDC277E}] => (Allow) D:\STEAM\steamapps\common\DCSWorld\Run.exe => No File FirewallRules: [{2876F44C-5584-438F-AEC1-5436F8B77022}] => (Allow) D:\Install\wizard\autorun.exe => No File FirewallRules: [TCP Query User{EE6B537F-62DE-426D-B7B2-1FDA05740931}C:\program files (x86)\wondershare\youtube-downloader\allmytube.exe] => (Allow) C:\program files (x86)\wondershare\youtube-downloader\allmytube.exe (Wondershare Technology Co.,Ltd -> Wondershare) FirewallRules: [UDP Query User{02511D52-8020-408C-89C5-8C66A7A55F1F}C:\program files (x86)\wondershare\youtube-downloader\allmytube.exe] => (Allow) C:\program files (x86)\wondershare\youtube-downloader\allmytube.exe (Wondershare Technology Co.,Ltd -> Wondershare) FirewallRules: [TCP Query User{70F69716-B638-448A-B296-5787674B38A4}C:\program files (x86)\wondershare\youtube-downloader\urlreqservice.exe] => (Allow) C:\program files (x86)\wondershare\youtube-downloader\urlreqservice.exe => No File FirewallRules: [UDP Query User{B10FB60C-BC67-41CB-93BF-15D667F30287}C:\program files (x86)\wondershare\youtube-downloader\urlreqservice.exe] => (Allow) C:\program files (x86)\wondershare\youtube-downloader\urlreqservice.exe => No File FirewallRules: [{78306A0A-333F-4A96-85A8-8FCB1A68F28A}] => (Allow) D:\STEAM\steamapps\common\WW1GameSeries\1914-1918 Series.exe => No File FirewallRules: [{557AF6CB-5794-4ACE-85CD-4ED98478CD28}] => (Allow) D:\STEAM\steamapps\common\WW1GameSeries\1914-1918 Series.exe => No File FirewallRules: [TCP Query User{73FBD61C-2F1E-4320-9487-48520D0F8F4A}D:\steam\steamapps\common\total war rome ii\rome2.exe] => (Allow) D:\steam\steamapps\common\total war rome ii\rome2.exe (The Creative Assembly Ltd) [File not signed] FirewallRules: [UDP Query User{E8C49912-4050-478E-A064-1B4DF67D2344}D:\steam\steamapps\common\total war rome ii\rome2.exe] => (Allow) D:\steam\steamapps\common\total war rome ii\rome2.exe (The Creative Assembly Ltd) [File not signed] FirewallRules: [{EFF0FD9D-5479-498F-BBA8-7CC8B419A30B}] => (Allow) D:\STEAM\steamapps\common\Total War Attila\launcher\launcher.exe => No File FirewallRules: [{4CF04D8C-CEA4-47A7-8304-FA31464884AF}] => (Allow) D:\STEAM\steamapps\common\Total War Attila\launcher\launcher.exe => No File FirewallRules: [{C15C2E0D-7179-420F-A7EC-0E03E4EF0D4D}] => (Allow) D:\STEAM\steamapps\common\Dead Space 2\deadspace2.exe (Electronic Arts Inc.) [File not signed] FirewallRules: [{240481B6-D6FE-4D4B-B088-CA9CD9109594}] => (Allow) D:\STEAM\steamapps\common\Dead Space 2\deadspace2.exe (Electronic Arts Inc.) [File not signed] FirewallRules: [TCP Query User{9B087111-D4CF-4C4F-977F-7108EF459929}C:\program files (x86)\common files\oracle\java\javapath_target_64049234\javaw.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_64049234\javaw.exe => No File FirewallRules: [UDP Query User{900478A0-E228-4492-A181-0E4B12242E25}C:\program files (x86)\common files\oracle\java\javapath_target_64049234\javaw.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_64049234\javaw.exe => No File FirewallRules: [{D693D84A-A1ED-4703-917E-F4D2C3193769}] => (Block) C:\program files (x86)\common files\oracle\java\javapath_target_64049234\javaw.exe => No File FirewallRules: [{7DB9AF90-14E9-41DF-8542-16BB0B7F3399}] => (Block) C:\program files (x86)\common files\oracle\java\javapath_target_64049234\javaw.exe => No File FirewallRules: [TCP Query User{3E9E7C00-4895-4ADE-B1DF-77B20D0E3F1F}C:\program files (x86)\common files\oracle\java\javapath_target_64049234\java.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_64049234\java.exe => No File FirewallRules: [UDP Query User{11313BC8-AEF6-4D15-BA01-71DC9DBE5CCF}C:\program files (x86)\common files\oracle\java\javapath_target_64049234\java.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_64049234\java.exe => No File FirewallRules: [TCP Query User{4E96A807-69ED-4FAF-8D39-DE12DF277723}C:\program files (x86)\fahclient\fahclient.exe] => (Allow) C:\program files (x86)\fahclient\fahclient.exe => No File FirewallRules: [UDP Query User{826B32EA-8FEE-4C0F-A509-EB033DCC2744}C:\program files (x86)\fahclient\fahclient.exe] => (Allow) C:\program files (x86)\fahclient\fahclient.exe => No File FirewallRules: [{5DCF4F69-9E0F-4222-AF34-6110C829385A}] => (Block) C:\Program Files\Mediafour\MacDrive 9\Activate MacDrive 9 Pro.exe => No File FirewallRules: [{03B18FD1-5120-4E4C-B765-7BBD8319D3FA}] => (Block) C:\Program Files\Mediafour\MacDrive 9\MacDrive.exe => No File FirewallRules: [{814FD9A5-9ED9-46CF-9F90-C9FE6F4F961E}] => (Block) C:\Program Files\Mediafour\MacDrive 9\MacDrive9Service.exe => No File FirewallRules: [{41935DCE-74D1-497F-9CA2-8A0AF625201C}] => (Block) C:\Program Files\Common Files\Mediafour\M4CheckForUpdates.exe => No File FirewallRules: [TCP Query User{5B20B11C-328A-4FC4-B84C-8B8B072E43ED}D:\program files\epic games\totalwarsagatroy\troy.exe] => (Allow) D:\program files\epic games\totalwarsagatroy\troy.exe => No File FirewallRules: [UDP Query User{E4D6A169-5BAB-44BB-A960-A98AF77CA113}D:\program files\epic games\totalwarsagatroy\troy.exe] => (Allow) D:\program files\epic games\totalwarsagatroy\troy.exe => No File FirewallRules: [TCP Query User{A693BA8F-53E0-428B-9E70-95581EA2FE57}C:\users\jm_fe\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\jm_fe\appdata\local\gamecenter\gamecenter.exe => No File FirewallRules: [UDP Query User{D118D62B-0E63-424E-B1B0-2168EC1D41D1}C:\users\jm_fe\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\jm_fe\appdata\local\gamecenter\gamecenter.exe => No File FirewallRules: [{CA5393C2-CDC0-4FED-A01E-07524D7167B6}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Printer Diagnostics\SEInstall\SPD\WebInstallAgent\SPNTInst.exe => No File FirewallRules: [{1F9A9FCC-DA0B-4AF8-9B2C-F8C65676DD5A}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> ) FirewallRules: [{2F2A8276-2DCD-47D8-A715-26238BD06C69}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> ) FirewallRules: [{602D00F0-3997-49DE-9BD7-8F3ACE4F4397}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EasyPrinterManagerV2.exe (HP Inc. -> HP Development Company, L.P.) FirewallRules: [{5FCF06AC-DDC3-4CD0-A696-19A1CA59345A}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\OrderSupplies.exe (HP Inc. -> HP Development Company, L.P.) FirewallRules: [{F30DFB92-1D82-4331-BCFB-14FB9259CF1D}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2AlertList.exe (HP Inc. -> HP Development Company, L.P.) FirewallRules: [{4CD8E411-CDB7-47D0-A759-3369DCE21A6D}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2Migrator.exe (HP Inc. -> HP Development Company, L.P.) FirewallRules: [{CC7E7E5D-2138-4853-B611-43B5AABA4E66}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> ) FirewallRules: [{D319D1AD-3ABB-4C8E-8CED-9DC4F2201266}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDCApp.exe () [File not signed] FirewallRules: [{CC532E34-DEDC-4238-82AD-FBA347916BD2}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDCApp.exe () [File not signed] FirewallRules: [{7F397B57-1EFF-43E6-B6A9-0B52BB510673}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe () [File not signed] FirewallRules: [{0E7E3D22-5B1B-4D07-96E6-B048EE4287DB}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe () [File not signed] FirewallRules: [TCP Query User{BFDBB673-4C9A-4733-8382-E85411D067D8}C:\program files (x86)\common files\scan process machine\imageeng.exe] => (Allow) C:\program files (x86)\common files\scan process machine\imageeng.exe (Samsung Electronics CO., LTD. -> ) FirewallRules: [UDP Query User{D609B974-C91A-4A3B-B03D-12BB4DDF2AC4}C:\program files (x86)\common files\scan process machine\imageeng.exe] => (Allow) C:\program files (x86)\common files\scan process machine\imageeng.exe (Samsung Electronics CO., LTD. -> ) FirewallRules: [TCP Query User{6607A1CC-CA50-4336-AFFC-6430D513B297}D:\xboxgames\age of empires iv\content\reliccardinal_ws.exe] => (Allow) D:\xboxgames\age of empires iv\content\reliccardinal_ws.exe => No File FirewallRules: [UDP Query User{90493004-348F-48F0-8D62-D91647EF30ED}D:\xboxgames\age of empires iv\content\reliccardinal_ws.exe] => (Allow) D:\xboxgames\age of empires iv\content\reliccardinal_ws.exe => No File FirewallRules: [{199F44D4-BAB7-472B-AC08-4F00D0A240EC}] => (Allow) D:\STEAM\steamapps\common\Golden Light\Golden Light.exe () [File not signed] FirewallRules: [{4230339C-9F62-46A8-8D36-AF9D3661F364}] => (Allow) D:\STEAM\steamapps\common\Golden Light\Golden Light.exe () [File not signed] FirewallRules: [TCP Query User{FF3471C0-5F04-4DC7-AF43-2CEECFC90EF6}D:\xboxgames\microsoft flight simulator\content\flightsimulator.exe] => (Allow) D:\xboxgames\microsoft flight simulator\content\flightsimulator.exe (Access Denied) [File not signed?] FirewallRules: [UDP Query User{9BB560D4-0E26-48D7-A8B1-D1B4FFEC617D}D:\xboxgames\microsoft flight simulator\content\flightsimulator.exe] => (Allow) D:\xboxgames\microsoft flight simulator\content\flightsimulator.exe (Access Denied) [File not signed?] FirewallRules: [TCP Query User{B7D8F73E-1C4B-4BEE-B1CD-05D0C254BE4C}C:\users\jm_fe\appdata\local\programs\navigraph navdata center\navigraph navdata center.exe] => (Allow) C:\users\jm_fe\appdata\local\programs\navigraph navdata center\navigraph navdata center.exe => No File FirewallRules: [UDP Query User{85546320-EA68-44D7-A374-997661B392F0}C:\users\jm_fe\appdata\local\programs\navigraph navdata center\navigraph navdata center.exe] => (Allow) C:\users\jm_fe\appdata\local\programs\navigraph navdata center\navigraph navdata center.exe => No File FirewallRules: [TCP Query User{51A7A46A-A82D-4375-A557-94356B5AA85D}C:\users\jm_fe\appdata\local\programs\navigraph navdata center\navigraph navdata center.exe] => (Allow) C:\users\jm_fe\appdata\local\programs\navigraph navdata center\navigraph navdata center.exe => No File FirewallRules: [UDP Query User{D06EC676-049D-4E0B-9704-BAC6942A5883}C:\users\jm_fe\appdata\local\programs\navigraph navdata center\navigraph navdata center.exe] => (Allow) C:\users\jm_fe\appdata\local\programs\navigraph navdata center\navigraph navdata center.exe => No File FirewallRules: [{A1ACA39E-DC7E-4D38-A186-0557F44C556D}] => (Allow) D:\STEAM\steamapps\common\FSX\fsx.exe (RailSimulator T/A Dovetail -> Microsoft Corp.) FirewallRules: [{C41210EC-8332-4161-91B7-118993EF9F6A}] => (Allow) D:\STEAM\steamapps\common\FSX\fsx.exe (RailSimulator T/A Dovetail -> Microsoft Corp.) FirewallRules: [TCP Query User{AE8DA3A7-634C-4EB0-8769-F0D154E7D96E}D:\steam\steamapps\common\hell let loose\hll\binaries\win64\hll-win64-shipping.exe] => (Allow) D:\steam\steamapps\common\hell let loose\hll\binaries\win64\hll-win64-shipping.exe => No File FirewallRules: [UDP Query User{AB623279-1CE8-4CE8-869D-F2CD9F7EB1E6}D:\steam\steamapps\common\hell let loose\hll\binaries\win64\hll-win64-shipping.exe] => (Allow) D:\steam\steamapps\common\hell let loose\hll\binaries\win64\hll-win64-shipping.exe => No File FirewallRules: [TCP Query User{D4CDD472-F266-4050-A35B-84FCA6F3F723}D:\steam\steamapps\common\total war rome ii\rome2.exe] => (Allow) D:\steam\steamapps\common\total war rome ii\rome2.exe (The Creative Assembly Ltd) [File not signed] FirewallRules: [UDP Query User{1F519738-6E79-4842-9852-3D2471732DDB}D:\steam\steamapps\common\total war rome ii\rome2.exe] => (Allow) D:\steam\steamapps\common\total war rome ii\rome2.exe (The Creative Assembly Ltd) [File not signed] FirewallRules: [TCP Query User{FA58B88C-BD43-4C89-96E8-178B3F6F570E}D:\xboxgames\forza horizon 5\content\forzahorizon5.exe] => (Allow) D:\xboxgames\forza horizon 5\content\forzahorizon5.exe => No File FirewallRules: [UDP Query User{BD9C0C81-0F51-40EE-AB5F-7CC4D9BD36DC}D:\xboxgames\forza horizon 5\content\forzahorizon5.exe] => (Allow) D:\xboxgames\forza horizon 5\content\forzahorizon5.exe => No File FirewallRules: [{DBE7A216-EF7F-451E-888A-43C9511EA859}] => (Allow) D:\STEAM\steamapps\common\Total War Rome II\launcher\launcher.exe (Creative Assembly -> Creative Assembly Ltd) FirewallRules: [{5BAD03BD-3AA9-4005-8584-4003FC936B09}] => (Allow) D:\STEAM\steamapps\common\Total War Rome II\launcher\launcher.exe (Creative Assembly -> Creative Assembly Ltd) FirewallRules: [TCP Query User{4B012724-107C-4551-92E5-76D0FEAE90C0}D:\xboxgames\project wingman\content\projectwingman\binaries\wingdk\projectwingman-wingdk-shipping.exe] => (Allow) D:\xboxgames\project wingman\content\projectwingman\binaries\wingdk\projectwingman-wingdk-shipping.exe => No File FirewallRules: [UDP Query User{1C2454C2-2DE3-4F9A-A312-AD574D08CAF7}D:\xboxgames\project wingman\content\projectwingman\binaries\wingdk\projectwingman-wingdk-shipping.exe] => (Allow) D:\xboxgames\project wingman\content\projectwingman\binaries\wingdk\projectwingman-wingdk-shipping.exe => No File FirewallRules: [{E497075D-3C13-4E5A-A09B-9F2297CC69BF}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_22227.300.1508.3394_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{031541E3-5233-48E1-B857-E5F0FA8DCC8D}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_22227.300.1508.3394_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{671DED46-610C-446A-993C-6C79CCF4CC97}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe => No File FirewallRules: [{28C567DA-81BD-4A28-A1B2-CAE6C6117384}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmouryHtmlDebugServer.exe (ASUSTeK COMPUTER INC. -> ASUS) FirewallRules: [{91C87B65-6ADE-4966-9130-C0977BE314E5}] => (Allow) C:\Program Files\DAEMON Tools Ultra\DiscSoftBusServiceUltra.exe => No File FirewallRules: [{990E8F9B-871F-42F9-8C05-6087DEA127B0}] => (Allow) C:\Program Files\DAEMON Tools Ultra\DiscSoftBusServiceUltra.exe => No File FirewallRules: [{CC4453E7-7F52-4017-8983-C2DC3FD11E0A}] => (Allow) C:\WINDOWS\system32\lxeacoms.exe => No File FirewallRules: [{060E495F-A51A-4D96-A205-6031936539A1}] => (Allow) C:\WINDOWS\system32\LXEAcoms.exe => No File FirewallRules: [{BA8FCBA6-03FA-403C-A849-EDE8249C3ED2}] => (Allow) C:\WINDOWS\system32\LXEAcoms.exe => No File FirewallRules: [TCP Query User{A45F09DF-8AAB-48A0-AB10-3460D5A4EF30}C:\program files (x86)\samsung\easy printer manager\easyprintermanagerv2.exe] => (Allow) C:\program files (x86)\samsung\easy printer manager\easyprintermanagerv2.exe (HP Inc. -> HP Development Company, L.P.) FirewallRules: [UDP Query User{874F0A26-ED5E-4B57-A98A-65C086972DC9}C:\program files (x86)\samsung\easy printer manager\easyprintermanagerv2.exe] => (Allow) C:\program files (x86)\samsung\easy printer manager\easyprintermanagerv2.exe (HP Inc. -> HP Development Company, L.P.) FirewallRules: [TCP Query User{BFCA8032-E0C4-406E-A1FD-80483096904F}C:\program files (x86)\common files\scan process machine\imageeng.exe] => (Allow) C:\program files (x86)\common files\scan process machine\imageeng.exe (Samsung Electronics CO., LTD. -> ) FirewallRules: [UDP Query User{0EB667CF-8E05-482C-87C6-ACD0988F00A6}C:\program files (x86)\common files\scan process machine\imageeng.exe] => (Allow) C:\program files (x86)\common files\scan process machine\imageeng.exe (Samsung Electronics CO., LTD. -> ) FirewallRules: [TCP Query User{DD1D22E2-EE17-422E-8C2C-42B8C20FE43E}D:\xboxgames\microsoft flight simulator\content\flightsimulator.exe] => (Allow) D:\xboxgames\microsoft flight simulator\content\flightsimulator.exe (Access Denied) [File not signed?] FirewallRules: [UDP Query User{6D3ED2CA-CD76-45ED-8A65-054586BB68C6}D:\xboxgames\microsoft flight simulator\content\flightsimulator.exe] => (Allow) D:\xboxgames\microsoft flight simulator\content\flightsimulator.exe (Access Denied) [File not signed?] FirewallRules: [TCP Query User{133E4984-D293-4683-AD9D-4834831A3E20}E:\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) E:\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{8219751F-0212-434B-97AA-80D76D2EA269}E:\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) E:\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [{C7ED69A6-1491-4B2D-A118-2D8A8AC99CC1}] => (Allow) E:\SteamLibrary\steamapps\common\Total War ROME REMASTERED\launcher\launcher.exe (Creative Assembly -> Creative Assembly Ltd) FirewallRules: [{98143310-4991-4396-B24B-4F56D860B085}] => (Allow) E:\SteamLibrary\steamapps\common\Total War ROME REMASTERED\launcher\launcher.exe (Creative Assembly -> Creative Assembly Ltd) FirewallRules: [{7D76FC86-D66D-458D-9DFB-2C9D1691868D}] => (Allow) E:\SteamLibrary\steamapps\common\Rome Total War Gold\RomeTW.exe (The Creative Assembly Ltd) [File not signed] FirewallRules: [{7E46031A-CC71-480D-ADD3-244D2FCC0EA6}] => (Allow) E:\SteamLibrary\steamapps\common\Rome Total War Gold\RomeTW.exe (The Creative Assembly Ltd) [File not signed] FirewallRules: [{564CE15D-5EE9-42D9-A9EA-C3BA25D19729}] => (Allow) E:\SteamLibrary\steamapps\common\Rome Total War Gold\RomeTW-BI.exe (The Creative Assembly Ltd) [File not signed] FirewallRules: [{C19A02D9-839C-4428-857B-2E8B066F26F8}] => (Allow) E:\SteamLibrary\steamapps\common\Rome Total War Gold\RomeTW-BI.exe (The Creative Assembly Ltd) [File not signed] FirewallRules: [{6D83DE99-BE40-457F-9CCD-E7DD61B7980C}] => (Allow) D:\Games\Battlefield V\EAAntiCheat.GameServiceLauncher.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{E59A421E-90CF-413B-9F0B-CE02EB93F04B}] => (Allow) D:\Games\Battlefield V\EAAntiCheat.GameServiceLauncher.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{777CF46A-02FA-4EDC-9F2A-F7336ED392FD}] => (Allow) D:\Games\STAR WARS Squadrons\starwarssquadrons_launcher.exe (EasyAntiCheat Oy -> Epic Games, Inc) FirewallRules: [{42CFA675-DB29-45FD-8148-3758786BCB98}] => (Allow) D:\Games\STAR WARS Squadrons\starwarssquadrons_launcher.exe (EasyAntiCheat Oy -> Epic Games, Inc) FirewallRules: [{A5B31558-82F1-4CF0-A9F2-5693C6FC75D4}] => (Allow) LPort=32139 FirewallRules: [{E8D4754C-44FB-4B0A-8D23-D37AD54148DD}] => (Allow) LPort=32140 FirewallRules: [TCP Query User{12C40839-B80C-41F5-B4E3-A90ED810C500}E:\steamlibrary\steamapps\common\squad 44\postscriptum\binaries\win64\postscriptum.exe] => (Allow) E:\steamlibrary\steamapps\common\squad 44\postscriptum\binaries\win64\postscriptum.exe => No File FirewallRules: [UDP Query User{7648B385-A920-4682-9C91-4A882B07C339}E:\steamlibrary\steamapps\common\squad 44\postscriptum\binaries\win64\postscriptum.exe] => (Allow) E:\steamlibrary\steamapps\common\squad 44\postscriptum\binaries\win64\postscriptum.exe => No File FirewallRules: [{63E20BB9-ABD2-4E3C-BBC3-102E133D87F2}] => (Allow) D:\STEAM\steamapps\common\3DMark\bin\x64\3DMark.exe (Underwriters Laboratories Inc. -> ) FirewallRules: [{6F6BD5B1-BD3E-41A3-8744-08A5BFB69CDB}] => (Allow) D:\STEAM\steamapps\common\3DMark\bin\x64\3DMark.exe (Underwriters Laboratories Inc. -> ) FirewallRules: [{28DC3458-1EA8-42C1-A2B1-9189CBF05ABC}] => (Allow) E:\SteamLibrary\steamapps\common\ACE COMBAT 7\Ace7Game.exe (BANDAI NAMCO Entertainment Inc.) [File not signed] FirewallRules: [{E5751293-4A32-48CC-A613-0A3E2473E82E}] => (Allow) E:\SteamLibrary\steamapps\common\ACE COMBAT 7\Ace7Game.exe (BANDAI NAMCO Entertainment Inc.) [File not signed] FirewallRules: [{44D04B62-B00B-4E95-AB42-B087A9A189A1}] => (Allow) E:\SteamLibrary\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [{71A4B21D-6995-423D-B205-D54F52C5BE23}] => (Allow) E:\SteamLibrary\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [TCP Query User{E978D06A-1D45-474A-A89E-C4C3C51B375E}E:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe] => (Allow) E:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [UDP Query User{1E85B397-002D-4DAA-AC9E-75AAFEEE0826}E:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe] => (Allow) E:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [{68E3D09E-5A90-4C1A-B96F-70C6D8684A59}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{1892FD81-33A8-442D-AB61-801AED201275}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{8F6C78DF-AB96-47E2-BB84-56960F6C994E}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{E885D76C-0D58-4791-B2DA-5086A2F5D582}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{E0D27C40-59D7-496C-BF58-A4898649326D}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{1CC3EC28-10E3-4055-8156-C1328FA85A32}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{78476510-2905-4B62-A27E-488663E46E4C}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{0A932367-1D68-40BA-B0EC-417425505549}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{3020675D-7B9D-4EF7-AD64-673006E71BEB}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{89F4CBDC-9F20-4978-BFFC-78CC30973E42}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{845074BD-C8F4-45A6-89E3-52C54D430E75}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{D65AB65D-1FD2-4092-8841-F2C82848606E}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) FirewallRules: [{058DEA0A-4BF8-4DFD-B399-7441D3CA33FD}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) FirewallRules: [{B6BA439D-3BFF-4CF2-895E-AFE049B0EF3B}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) FirewallRules: [{A0ADBEA2-0A5B-4D03-9ACB-F4F147A87D19}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) FirewallRules: [{25D928CD-4DAF-4836-8FC9-11DA60B48FCC}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) FirewallRules: [{CA80C92C-C2AD-40B5-95D5-39E578BCD29C}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) FirewallRules: [{70EA4659-729C-40D7-A112-8BA97EF63406}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) FirewallRules: [{AB3DF26E-FB1E-4B69-8F2A-13C18FDAA11C}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) FirewallRules: [{27A4A8FB-501C-4F9F-A2CC-80A242CC650A}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{341DE8B0-A775-441D-BE15-D4CBC7E0DB79}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) ==================== Restore Points ========================= ==================== Faulty Device Manager Devices ============ Name: Elo Touch Solutions 2701U/2700U IntelliTouch Description: Elo Touch Solutions 2701U/2700U IntelliTouch Class Guid: {745a17a0-74d3-11d0-b6fe-00a0c90f57da} Manufacturer: Elo Touch Solutions Service: EloMtUsb Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ======================== Application errors: ================== Error: (08/10/2025 12:50:03 PM) (Source: CertEnroll) (EventID: 57) (User: NT AUTHORITY) Description: The "Microsoft Pluton Cryptographic Provider" provider was not loaded because initialization failed. Error: (08/10/2025 12:50:03 PM) (Source: CertEnroll) (EventID: 57) (User: NT AUTHORITY) Description: The "Microsoft Pluton Cryptographic Provider" provider was not loaded because initialization failed. Error: (08/10/2025 12:50:02 PM) (Source: CertEnroll) (EventID: 57) (User: NT AUTHORITY) Description: The "Microsoft Pluton Cryptographic Provider" provider was not loaded because initialization failed. Error: (08/10/2025 12:49:46 PM) (Source: Application Error) (EventID: 1000) (User: DESKTOP-L10DARB) Description: Faulting application name: NoiseCancelingEngine.exe, version: 1.0.0.14, time stamp: 0x616684f0 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x0000000000000000 Faulting process id: 0x2254 Faulting application start time: 0x1dc0a27889163c5 Faulting application path: C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\NoiseCancelingEngine.exe Faulting module path: unknown Report Id: 439ba2db-8257-441e-99cb-206a9fd37daf Faulting package full name: Faulting package-relative application ID: Error: (08/09/2025 11:28:54 PM) (Source: CertEnroll) (EventID: 57) (User: NT AUTHORITY) Description: The "Microsoft Pluton Cryptographic Provider" provider was not loaded because initialization failed. Error: (08/09/2025 11:28:54 PM) (Source: CertEnroll) (EventID: 57) (User: NT AUTHORITY) Description: The "Microsoft Pluton Cryptographic Provider" provider was not loaded because initialization failed. Error: (08/09/2025 11:28:51 PM) (Source: CertEnroll) (EventID: 57) (User: NT AUTHORITY) Description: The "Microsoft Pluton Cryptographic Provider" provider was not loaded because initialization failed. Error: (08/09/2025 11:28:27 PM) (Source: Application Error) (EventID: 1000) (User: DESKTOP-L10DARB) Description: Faulting application name: NoiseCancelingEngine.exe, version: 1.0.0.14, time stamp: 0x616684f0 Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000 Exception code: 0xc0000005 Fault offset: 0x0000000000000000 Faulting process id: 0x236c Faulting application start time: 0x1dc09b7986919a7 Faulting application path: C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\NoiseCancelingEngine.exe Faulting module path: unknown Report Id: ee928bf6-5f14-414c-ada3-14feb2041135 Faulting package full name: Faulting package-relative application ID: System errors: ============= Error: (08/10/2025 12:54:39 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY) Description: The Secure Boot update failed to update a Secure Boot variable with error (-2147020471 = Secure Boot is not enabled on this machine.). For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931 Error: (08/10/2025 12:54:39 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY) Description: The Secure Boot update failed to update a Secure Boot variable with error (-2147020471 = Secure Boot is not enabled on this machine.). For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931 Error: (08/10/2025 12:49:46 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: The GameInput Service service terminated unexpectedly. It has done this 6 time(s). Error: (08/10/2025 12:49:46 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The GameInput Service service terminated with the following error: The compound file GameInput Service was produced with a newer version of storage. Error: (08/10/2025 12:49:45 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The GameInput Service service terminated unexpectedly. It has done this 5 time(s). The following corrective action will be taken in 1000 milliseconds: Restart the service. Error: (08/10/2025 12:49:45 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The GameInput Service service terminated with the following error: The compound file GameInput Service was produced with a newer version of storage. Error: (08/10/2025 12:49:44 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The GameInput Service service terminated unexpectedly. It has done this 4 time(s). The following corrective action will be taken in 1000 milliseconds: Restart the service. Error: (08/10/2025 12:49:44 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: The GameInput Service service terminated with the following error: The compound file GameInput Service was produced with a newer version of storage. Windows Defender: ================ Date: 2025-08-10 13:05:18 Description: Microsoft Defender Antivirus has detected malware or other potentially unwanted software. For more information please see the following: https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Powdow.HC!MTB&threatid=2147948696&enterprise=0 Name: Trojan:Win32/Powdow.HC!MTB Severity: Severe Category: Trojan Path: CmdLine:_C:\Windows\System32\DomainAuthHost\node.exe -r .\preflight.js .\app.jsc Detection Origin: Unknown Detection Type: Concrete Detection Source: System Process Name: Unknown Security intelligence Version: AV: 1.435.91.0, AS: 1.435.91.0, NIS: 1.435.91.0 Engine Version: AM: 1.1.25070.4, NIS: 1.1.25070.4 Date: 2025-08-10 13:05:18 Description: Microsoft Defender Antivirus has detected malware or other potentially unwanted software. For more information please see the following: https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Powdow.HC!MTB&threatid=2147948696&enterprise=0 Name: Trojan:Win32/Powdow.HC!MTB Severity: Severe Category: Trojan Path: CmdLine:_C:\Windows\System32\DomainAuthHost\node.exe -r .\preflight.js .\app.jsc Detection Origin: Unknown Detection Type: Concrete Detection Source: System Process Name: Unknown Security intelligence Version: AV: 1.435.91.0, AS: 1.435.91.0, NIS: 1.435.91.0 Engine Version: AM: 1.1.25070.4, NIS: 1.1.25070.4 Date: 2025-08-10 13:04:43 Description: Microsoft Defender Antivirus has detected malware or other potentially unwanted software. For more information please see the following: https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Powdow.HC!MTB&threatid=2147948696&enterprise=0 Name: Trojan:Win32/Powdow.HC!MTB Severity: Severe Category: Trojan Path: CmdLine:_C:\Windows\System32\DomainAuthHost\node.exe -r .\preflight.js .\app.jsc Detection Origin: Unknown Detection Type: Concrete Detection Source: System Process Name: Unknown Security intelligence Version: AV: 1.435.91.0, AS: 1.435.91.0, NIS: 1.435.91.0 Engine Version: AM: 1.1.25070.4, NIS: 1.1.25070.4 Date: 2025-08-10 13:04:43 Description: Microsoft Defender Antivirus has detected malware or other potentially unwanted software. For more information please see the following: https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Powdow.HC!MTB&threatid=2147948696&enterprise=0 Name: Trojan:Win32/Powdow.HC!MTB Severity: Severe Category: Trojan Path: CmdLine:_C:\Windows\System32\DomainAuthHost\node.exe -r .\preflight.js .\app.jsc Detection Origin: Unknown Detection Type: Concrete Detection Source: System Process Name: Unknown Security intelligence Version: AV: 1.435.91.0, AS: 1.435.91.0, NIS: 1.435.91.0 Engine Version: AM: 1.1.25070.4, NIS: 1.1.25070.4 Date: 2025-08-10 13:04:08 Description: Microsoft Defender Antivirus has detected malware or other potentially unwanted software. For more information please see the following: https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Powdow.HC!MTB&threatid=2147948696&enterprise=0 Name: Trojan:Win32/Powdow.HC!MTB Severity: Severe Category: Trojan Path: CmdLine:_C:\Windows\System32\DomainAuthHost\node.exe -r .\preflight.js .\app.jsc Detection Origin: Unknown Detection Type: Concrete Detection Source: System Process Name: Unknown Security intelligence Version: AV: 1.435.91.0, AS: 1.435.91.0, NIS: 1.435.91.0 Engine Version: AM: 1.1.25070.4, NIS: 1.1.25070.4 Event[0] Date: 2025-08-09 08:59:45 Description: Microsoft Defender Antivirus has encountered an error trying to update security intelligence. New security intelligence Version: Previous security intelligence Version: 1.431.655.0 Update Source: Microsoft Update Server Security intelligence Type: AntiVirus Update Type: Full Current Engine Version: Previous Engine Version: 1.1.25050.6 Error code: 0x8024001e Error description: An unexpected problem occurred while checking for updates. For information on installing or troubleshooting updates, see Help and Support. Date: 2025-08-09 08:20:25 Description: Microsoft Defender Antivirus Real-Time Protection feature has encountered an error and failed. Feature: On Access Error Code: 0x8007043c Error description: This service cannot be started in Safe Mode Reason: Antimalware security intelligence has stopped functioning for an unknown reason. In some instances, restarting the service may resolve the problem. Date: 2025-08-09 08:17:07 Description: Microsoft Defender Antivirus Real-Time Protection feature has encountered an error and failed. Feature: On Access Error Code: 0x8007043c Error description: This service cannot be started in Safe Mode Reason: Antimalware security intelligence has stopped functioning for an unknown reason. In some instances, restarting the service may resolve the problem. Date: 2025-08-09 08:15:14 Description: Microsoft Defender Antivirus Real-Time Protection feature has encountered an error and failed. Feature: On Access Error Code: 0x8007043c Error description: This service cannot be started in Safe Mode Reason: Antimalware security intelligence has stopped functioning for an unknown reason. In some instances, restarting the service may resolve the problem. Date: 2025-08-09 08:09:47 Description: Microsoft Defender Antivirus Real-Time Protection feature has encountered an error and failed. Feature: On Access Error Code: 0x8007043c Error description: This service cannot be started in Safe Mode Reason: Antimalware security intelligence has stopped functioning for an unknown reason. In some instances, restarting the service may resolve the problem. CodeIntegrity: =============== Date: 2025-08-10 12:49:32 Description: Code Integrity determined that a process (System) attempted to load \Device\HarddiskVolume7\Windows\SysWOW64\Drivers\AsIO.sys that did not meet the Authenticode signing level requirements or violated code integrity policy (Policy ID:{d2bda982-ccf6-4344-ac5b-0b44427b6816}). Date: 2025-08-10 12:49:32 Description: The driver \Device\HarddiskVolume7\Windows\SysWOW64\Drivers\AsIO.sys is blocked from loading as the driver has been revoked by Microsoft. Date: 2025-08-10 12:49:32 Description: Code Integrity determined that a process (System) attempted to load \Device\HarddiskVolume7\Windows\SysWOW64\Drivers\AsUpIO.sys that did not meet the Authenticode signing level requirements or violated code integrity policy (Policy ID:{d2bda982-ccf6-4344-ac5b-0b44427b6816}). Date: 2025-08-10 12:49:32 Description: The driver \Device\HarddiskVolume7\Windows\SysWOW64\Drivers\AsUpIO.sys is blocked from loading as the driver has been revoked by Microsoft. Date: 2025-08-10 12:49:32 Description: Code Integrity determined that a process (System) attempted to load \Device\HarddiskVolume7\Windows\System32\drivers\GLCKIO2.sys that did not meet the Authenticode signing level requirements or violated code integrity policy (Policy ID:{d2bda982-ccf6-4344-ac5b-0b44427b6816}). Date: 2025-08-10 12:49:32 Description: The driver \Device\HarddiskVolume7\Windows\System32\drivers\GLCKIO2.sys is blocked from loading as the driver has been revoked by Microsoft. ==================== Memory info =========================== BIOS: American Megatrends Inc. 4201 11/06/2024 Motherboard: ASUSTeK COMPUTER INC. ROG STRIX X299-XE GAMING Processor: Intel(R) Core(TM) i7-7800X CPU @ 3.50GHz Percentage of memory in use: 38% Total physical RAM: 32449.5 MB Available physical RAM: 19988.4 MB Total Virtual: 34497.5 MB Available Virtual: 20180.16 MB ==================== Drives ================================ Drive c: (Main) (Fixed) (Total:460.96 GB) (Free:246.27 GB) (Model: WD_BLACK SN770 500GB) NTFS Drive d: (Games) (Fixed) (Total:931.51 GB) (Free:50.65 GB) (Model: Samsung SSD 850 EVO 1TB) NTFS Drive e: (Storage) (Fixed) (Total:953.85 GB) (Free:415.19 GB) (Model: T-FORCE 1TB) NTFS Drive f: (Recovery) (Fixed) (Total:2.03 GB) (Free:1.42 GB) (Model: WD_BLACK SN770 500GB) NTFS Drive g: () (Fixed) (Total:0.4 GB) (Free:0.37 GB) (Model: WD_BLACK SN770 500GB) FAT32 \\?\Volume{b9fd37c0-472b-01da-e09b-3cc89523ed00}\ () (Fixed) (Total:0 GB) (Free:0 GB) ==================== MBR & Partition Table ==================== ========================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 0E0EEC1C) Partition: GPT. ========================================================== Disk: 1 (Protective MBR) (Size: 953.9 GB) (Disk ID: 00000000) Partition: GPT. ========================================================== Disk: 2 (MBR Code: Windows XP) (Size: 465.8 GB) (Disk ID: 3EB5B320) Partition: GPT. ==================== End of Addition.txt =======================