Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-08-2016 01 Ran by Jeremy (22-08-2016 13:55:34) Running from C:\Users\Jeremy\Downloads Windows 10 Pro Version 1511 (X64) (2015-12-18 17:04:47) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-4168254294-3226286423-2175314773-500 - Administrator - Disabled) ASPNET (S-1-5-21-4168254294-3226286423-2175314773-1004 - Limited - Enabled) DefaultAccount (S-1-5-21-4168254294-3226286423-2175314773-503 - Limited - Disabled) Guest (S-1-5-21-4168254294-3226286423-2175314773-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-4168254294-3226286423-2175314773-1002 - Limited - Enabled) Jeremy (S-1-5-21-4168254294-3226286423-2175314773-1000 - Administrator - Enabled) => C:\Users\Jeremy ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: ESET NOD32 Antivirus 9.0.377.1 (Enabled - Out of date) {19259FAE-8396-A113-46DB-15B0E7DFA289} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Avast Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} AS: ESET NOD32 Antivirus 9.0.377.1 (Enabled - Out of date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834} FW: Avast Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Acrobat 5.0 (HKLM-x32\...\Adobe Acrobat 5.0) (Version: 5.0 - Adobe Systems, Inc.) Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 15.017.20053 - Adobe Systems Incorporated) Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated) Ansel (Version: 372.54 - NVIDIA Corporation) Hidden Assistant du gestionnaire de contenu pour PlayStation(R) (HKLM-x32\...\{E5C1C342-5E78-4D91-85BE-40C716B09391}) (Version: 3.55.7671.0901 - Sony Computer Entertainment Inc.) Avast Internet Security (HKLM-x32\...\Avast) (Version: 12.3.2280 - AVAST Software) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) BitComet 1.37 (HKLM-x32\...\BitComet) (Version: 1.37 - CometNetwork) BitRaider Streaming Client (HKLM-x32\...\BitRaider Streaming Client) (Version: 1.3.3.4098 - BitRaider, LLC) Blade & Soul (HKLM-x32\...\InstallShield_{C3F383C1-D050-4A40-843F-8171A6A02C3A}) (Version: 1.0.63.260 - NC Interactive, LLC) Blade & Soul (x32 Version: 1.0.63.260 - NC Interactive, LLC) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.14 - Piriform) Creative ASIO (USB) (HKLM-x32\...\Creative_ASIO(USB)) (Version: 1.00 - Creative Technology Limited) Creative System Information (HKLM-x32\...\SysInfo) (Version: 1.10 - Creative Technology Limited) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 5.0.1.0406 - Disc Soft Ltd) Darkest Dungeon (HKLM-x32\...\Darkest Dungeon_is1) (Version: - ) DisplayFusion 8.0 (HKLM-x32\...\B076073A-5527-4f4f-B46B-B10692277DA2_is1) (Version: 8.0.0.0 - Binary Fortress Software) Dofus (HKU\S-1-5-21-4168254294-3226286423-2175314773-1000\...\2744A393-554C-4E35-A24F-DEF0392B4484-2) (Version: - Ankama) Dolby Digital Live Pack (HKLM-x32\...\Dolby Digital Live Pack) (Version: 3.03 - Creative Technology Limited) DriversCloud.com (64 bits) (HKLM\...\{B3F21810-C58E-4AE1-BFBA-8327721C9F8A}) (Version: 8.0.4.0 - Cybelsoft) ESET NOD32 Antivirus (HKLM\...\{3AABF183-7C2D-4C69-BD83-8A94D39D8436}) (Version: 9.0.377.1 - ESET, spol. s r.o.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 52.0.2743.116 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden Hocus Pocus (HKLM\...\Steam App 358290) (Version: - Moonlite Software) Logitech SetPoint 6.67 (HKLM\...\sp6) (Version: 6.67.82 - Logitech) Microsoft .NET Framework 1.1 (HKLM-x32\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: 1.1.4322 - Microsoft) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - Корпорация Майкрософт) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) MSI Afterburner 4.1.0 (HKLM-x32\...\Afterburner) (Version: 4.1.0 - MSI Co., LTD) MSI GamingApp (HKLM-x32\...\{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1) (Version: 1.0.0.18 - MSI) NCSOFT Game Launcher (HKLM-x32\...\NCLauncher_NCWest) (Version: - NCSOFT) NVIDIA 3D Vision Controller Driver 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation) NVIDIA 3D Vision Driver 372.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 372.54 - NVIDIA Corporation) NVIDIA GeForce Experience 2.11.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.4.0 - NVIDIA Corporation) NVIDIA Graphics Driver 372.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 372.54 - NVIDIA Corporation) NVIDIA HD Audio Driver 1.3.34.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.15 - NVIDIA Corporation) NVIDIA PhysX System Software 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Origin (HKLM-x32\...\Origin) (Version: 9.5.5.2850 - Electronic Arts, Inc.) osu! (HKLM-x32\...\{f2ba0e42-f94f-4246-bce0-33521b9c11d4}) (Version: latest - ppy Pty Ltd) Overwolf (HKLM-x32\...\Overwolf) (Version: 0.92.3.0 - Overwolf Ltd.) Platform (x32 Version: 1.43 - VIA Technologies, Inc.) Hidden Play withSIX Windows client (HKU\S-1-5-21-4168254294-3226286423-2175314773-1000\...\PlaywithSIX) (Version: 1.68.1153.2 - SIX Networks GmbH) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.986 - Even Balance, Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.9.422.2016 - Realtek) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.1.36.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.1.36.0 - Renesas Electronics Corporation) Hidden RivaTuner Statistics Server 6.3.0 (HKLM-x32\...\RTSS) (Version: 6.3.0 - Unwinder) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.7.8 - Rockstar Games) RomStation (HKLM-x32\...\{223B62A8-F6FF-4BEB-BC17-230D12723CD0}_is1) (Version: - RomStation) SafeZone Stable 1.51.2220.53 (x32 Version: 1.51.2220.53 - Avast Software) Hidden SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.11.4.0 - NVIDIA Corporation) Hidden Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.3.0.9150 - Microsoft Corporation) Skype™ 7.26 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.26.101 - Skype Technologies S.A.) Sound Blaster X-Fi Surround 5.1 Pro (HKLM-x32\...\{0A9DA353-D0CD-4922-A54B-2F5F4EC90986}) (Version: 1.0 - Creative Technology Limited) Spotify (HKU\S-1-5-21-4168254294-3226286423-2175314773-1000\...\Spotify) (Version: 1.0.34.146.g28f9eda2 - Spotify AB) Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Stranded Deep (HKLM\...\Steam App 313120) (Version: - Beam Team Games) TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH) The Amazing Spider-Man 2 (HKLM-x32\...\VGhlQW1hemluZ1NwaWRlck1hbjI=_is1) (Version: 1 - ) The Forest (HKLM\...\Steam App 242760) (Version: - Endnight Games Ltd) Trackmania Turbo (HKLM-x32\...\Uplay Install 2070) (Version: - Ubisoft) Unity Web Player (HKU\S-1-5-21-4168254294-3226286423-2175314773-1000\...\UnityWebPlayer) (Version: 5.2.0f3 - Unity Technologies ApS) Uplay (HKLM-x32\...\Uplay) (Version: 4.8 - Ubisoft) VIA Gestionnaire de périphériques de plate-forme (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.43 - VIA Technologies, Inc.) VLC media player (HKLM\...\VLC media player) (Version: 2.2.4 - VideoLAN) Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.3.0 (HKLM\...\VulkanRT1.0.3.0) (Version: 1.0.3.0 - LunarG, Inc.) WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH) World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-4168254294-3226286423-2175314773-1000_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Jeremy\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileCoAuth.exe (Microsoft Corporation) ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {01022AED-DBA9-4D29-9E2E-9E0D1F269D80} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe Task: {05F4E55C-8F9B-4A9D-AD8A-F8C9C9754523} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe Task: {06DA00BF-7426-415C-80A6-054B136B8AC9} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe Task: {14D6CB58-82DF-4951-A63E-9D528DADFF28} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe Task: {1622C5E2-1455-4734-ADC9-7D56474D507E} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe Task: {1E4255A3-D085-49C0-82CA-A73ACC3B1A42} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {20BF2744-5802-484B-B685-5439F1781B83} - System32\Tasks\GoogleUpdateTaskMachineUA1d0414613f0a930 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {23A06E98-A883-4D6C-BE05-98F9647071CF} - System32\Tasks\GoogleUpdateTaskMachineCore1d0e23a51575ab3 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {23DDF263-A1FC-4C2D-91CB-0233E952E7A8} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe Task: {2408970E-3689-46B6-9E32-497A7452DC43} - System32\Tasks\GoogleUpdateTaskMachineCore1d0900db8c20d62 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {294B172A-6E61-4DD2-843F-AA20426CDEAC} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe Task: {3AE40759-1D82-419B-9BEF-2065E6C52CFC} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION Task: {3BFB1B77-4765-4EFA-B438-0D06A01F96B5} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION Task: {4C6DB8EB-B11B-4DA2-A572-A5CD22113BBB} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION Task: {5471605A-9722-4A93-89E9-C2A42B15FED5} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {5680F57F-93B8-4E20-8854-2D6D7333370A} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION Task: {5EEF6DFC-2D99-483E-BCBF-41758BE27139} - System32\Tasks\GoogleUpdateTaskMachineUA1d0900db9c32d75 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {5F1B7461-A272-4C75-AE0C-05AA68ABECFB} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION Task: {600E07DA-928A-434D-A041-48241955AE62} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-08-22] (AVAST Software) Task: {61FED491-3BFE-4C4B-AD2E-3DC4321A57A2} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-06-25] (Adobe Systems Incorporated) Task: {654FAE30-032F-4138-ABFD-A8127DB3D2DD} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION Task: {67292841-0578-4A78-8EED-3C0490154709} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe Task: {7C0E82EE-F632-4875-BA93-80537D2699F9} - System32\Tasks\GoogleUpdateTaskMachineUA1d12e102664a815 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {83BF214A-F6C6-42E0-BB88-5DD8D2935323} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {84F89278-9FAD-4977-BE8C-144C78FD9F32} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe Task: {855019E2-A1ED-457B-8FBB-F4E30CDFE8A2} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe Task: {8C62D2DA-817B-45E2-9003-3647F1FF59C4} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {8F49C7DB-8495-4FF2-AEBF-B9632447B19C} - System32\Tasks\GoogleUpdateTaskMachineUA1d0effd14c60e04 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {98ADEA39-F661-410F-8B98-B98151D00E47} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION Task: {9C12C3FA-C666-43F0-BFEF-11B15745ED6B} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-01-15] (Piriform Ltd) Task: {A0AEF1C1-5F79-47AD-A3AA-0A948B57FF09} - System32\Tasks\GoogleUpdateTaskMachineCore1d12e10255f1b21 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {A44B36D4-870C-44AE-85A6-99AE7035760E} - System32\Tasks\GoogleUpdateTaskMachineUA1d0e23a521a8b8a => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {B3A18E8D-A7E5-444D-A21E-745CDB884458} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe Task: {B9012C75-4777-4FDA-B5C1-AEB7A336E41E} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-08-09] (Microsoft Corporation) Task: {BAF9D1A0-F905-4899-9848-2C926859A39B} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION Task: {BBFCD461-CB3F-4640-923B-831BA5D4485D} - System32\Tasks\SafeZone scheduled Autoupdate 1462457825 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-08-09] (Avast Software) Task: {BEBD6FEF-1658-4078-BF88-42E9380E5F79} - System32\Tasks\GoogleUpdateTaskMachineCore1d0bf3221d805fe => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {BF9C744C-C86E-4271-9A08-A8F21840C8CB} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION Task: {C132B394-D70B-421E-8CAC-91A2D53510C4} - System32\Tasks\GoogleUpdateTaskMachineUA1d0bf3222c63a0b => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {C2076442-EC1B-43FB-A933-CC6DEFB0B265} - System32\Tasks\GoogleUpdateTaskMachineCore1d0effd140a014e => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {C3285E71-75FF-4964-A8A1-1C61255172BC} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe Task: {CD33604C-AE87-42E6-8AC1-926A68C7ABF0} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION Task: {CD48C22B-4889-4D70-927E-39078556945E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {D39C4184-245D-4BFC-A4DA-708DF3D6E911} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe Task: {D6354C9D-B510-45BC-B714-9905D0C6439F} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {D96D6D22-7E41-4AD2-B0DE-E2C4B4B0E2E2} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-08-15] (Adobe Systems Incorporated) Task: {D9FFC7DA-4989-42A0-89FF-D8390CA1002F} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe Task: {DC439D20-7EE1-493F-A8C0-EA67E60DB713} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe Task: {E0C87B92-22AB-4F62-A9D3-88D995343790} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe Task: {E2A41289-E710-4926-82B0-FC445D1F76BC} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {F1372E60-8919-4E85-9A6E-FD3EBC8D3D3E} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {F30126C4-3384-4ADD-B1A6-73A550A7C0C4} - System32\Tasks\{C9156595-FD48-4257-969E-6F58648DBB9C} => pcalua.exe -a C:\Users\Jeremy\AppData\Roaming\istartsurf\UninstallManager.exe -c -ptid=smt Task: {F306413F-C3DC-4E53-AAE1-3E6F6CC6A2D7} - System32\Tasks\{79BC920B-7089-43D3-99E3-854C3B8BDB2E} => pcalua.exe -a E:\FileRgn.exe -d E:\ Task: {F9F501BC-C5F8-4EE1-AC3B-A9EB4EE4B4B4} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0900db8c20d62.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0bf3221d805fe.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0e23a51575ab3.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0effd140a014e.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d12e10255f1b21.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d0414613f0a930.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d0900db9c32d75.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d0bf3222c63a0b.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d0e23a521a8b8a.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d0effd14c60e04.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d12e102664a815.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Shortcuts ============================= (The entries could be listed to be restored or removed.) Shortcut: C:\Users\Jeremy\AppData\Local\Microsoft\Windows\GameExplorer\{EB601090-0C96-4BD2-8476-1809AD93F1B6}\SupportTasks\1\Support.lnk -> hxxp://www.atarisupport.com/ Shortcut: C:\Users\Jeremy\AppData\Local\Microsoft\Windows\GameExplorer\{EB601090-0C96-4BD2-8476-1809AD93F1B6}\SupportTasks\0\More Games from Microsoft.lnk -> hxxp://www.atari.com/rollercoastertycoon/ ShortcutWithArgument: C:\Users\Jeremy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Ubisoft register.lnk -> C:\Program Files (x86)\Ubisoft\Register\schedule.exe (Ubisoft) -> /23/08/2016 10:56:16 /game=XIII /language=English /country=Afghanistan /url=hxxp://register-it.ubi.com/register.asp ShortcutWithArgument: C:\Users\Jeremy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome\Lanceur d'applications Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --show-app-list ShortcutWithArgument: C:\Users\Jeremy\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 1" ==================== Loaded Modules (Whitelisted) ============== 2015-10-30 10:18 - 2015-10-30 10:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2014-11-28 04:21 - 2014-11-28 04:21 - 00066872 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe 2016-07-14 12:12 - 2016-07-01 07:48 - 02656408 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-07-14 12:12 - 2016-07-01 07:48 - 02656408 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2015-12-19 05:30 - 2015-12-19 05:30 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2016-07-14 12:14 - 2016-07-01 06:48 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2016-07-14 12:12 - 2016-07-01 06:27 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-07-14 12:12 - 2016-07-01 06:21 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-07-14 12:12 - 2016-07-01 06:22 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-07-14 12:12 - 2016-07-01 06:24 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2014-11-21 22:52 - 2009-12-30 03:52 - 00089088 _____ () C:\Windows\SYSTEM32\CmdRtr64.DLL 2014-11-21 22:52 - 2010-07-23 03:46 - 00237056 _____ () C:\Windows\SYSTEM32\APOMgr64.DLL 2016-01-15 23:44 - 2016-01-15 23:44 - 00065536 _____ () C:\Program Files\CCleaner\lang\lang-1036.dll 2016-04-19 15:12 - 2016-04-19 15:12 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe 2016-08-22 11:57 - 2016-08-22 11:57 - 00169064 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2016-08-22 10:53 - 2016-08-22 10:53 - 03015680 _____ () C:\Program Files\AVAST Software\Avast\defs\16082200\algo.dll 2016-08-22 11:57 - 2016-08-22 11:57 - 00482928 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2015-03-31 18:49 - 2016-06-14 23:03 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2016-07-01 13:42 - 2016-07-01 13:42 - 48936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2016-08-08 22:14 - 2016-08-03 03:24 - 01771336 _____ () C:\Program Files (x86)\Google\Chrome\Application\52.0.2743.116\libglesv2.dll 2016-08-08 22:14 - 2016-08-03 03:23 - 00094024 _____ () C:\Program Files (x86)\Google\Chrome\Application\52.0.2743.116\libegl.dll 2016-04-19 15:12 - 2016-04-19 15:12 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll 2016-04-19 15:12 - 2016-04-19 15:12 - 22284800 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkyWrap.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-4168254294-3226286423-2175314773-1000\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-21-4168254294-3226286423-2175314773-1000\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-21-4168254294-3226286423-2175314773-1000\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-21-4168254294-3226286423-2175314773-1000\...\sony.com -> sony.com ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 05:34 - 2015-12-14 16:02 - 00000828 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-4168254294-3226286423-2175314773-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Jeremy\AppData\Local\DisplayFusion\Wallpaper_2.png DNS Servers: 192.168.1.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Assistant du gestionnaire de contenu pour PlayStation(R).lnk => C:\Windows\pss\Assistant du gestionnaire de contenu pour PlayStation(R).lnk.CommonStartup MSCONFIG\startupreg: BitComet => "C:\Program Files (x86)\BitComet\BitComet.exe" /tray MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: Comrade.exe => C:\Program Files (x86)\GameSpy\Comrade\Comrade.exe MSCONFIG\startupreg: Creative SB Monitoring Utility => RunDll32 sbavmon.dll,SBAVMonitor MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun MSCONFIG\startupreg: EADM => "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart MSCONFIG\startupreg: EvtMgr6 => C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming MSCONFIG\startupreg: Module Loader => C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe -StartUpRun MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: Spotify => "C:\Users\Jeremy\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\Jeremy\AppData\Roaming\Spotify\SpotifyWebHelper.exe" MSCONFIG\startupreg: Steam => "D:\Steam\steam.exe" -silent MSCONFIG\startupreg: VolPanel => "C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1 Pro\Volume Panel\VolPanlu.exe" /r HKLM\...\StartupApproved\Run: => "EvtMgr6" HKU\S-1-5-21-4168254294-3226286423-2175314773-1000\...\StartupApproved\Run: => "BitComet" HKU\S-1-5-21-4168254294-3226286423-2175314773-1000\...\StartupApproved\Run: => "Spotify Web Helper" HKU\S-1-5-21-4168254294-3226286423-2175314773-1000\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-4168254294-3226286423-2175314773-1000\...\StartupApproved\Run: => "OneDrive" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808 FirewallRules: [{CDB19DCE-70FD-4EBF-8917-8706552B54FF}] => (Allow) D:\Steam\steamapps\common\South Park - The Stick of Truth\South Park - The Stick of Truth.exe FirewallRules: [{401D2F4B-F2D3-4F7A-930A-E28D4CDE886F}] => (Allow) D:\Steam\steamapps\common\South Park - The Stick of Truth\South Park - The Stick of Truth.exe FirewallRules: [UDP Query User{94C9B6F8-745F-4347-A1AE-F54F14942441}D:\heroes of the storm\versions\base39153\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base39153\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{188D6BEE-6F7B-4BA4-9158-F7D2CE9A85B7}D:\heroes of the storm\versions\base39153\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base39153\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{A839EC53-AA11-424C-AD16-4BE5F22B960C}C:\program files (x86)\origin games\fifa 16 demo\fifa16_demo.exe] => (Allow) C:\program files (x86)\origin games\fifa 16 demo\fifa16_demo.exe FirewallRules: [TCP Query User{17B8C76F-C6F9-4B13-8D8A-E049F159D395}C:\program files (x86)\origin games\fifa 16 demo\fifa16_demo.exe] => (Allow) C:\program files (x86)\origin games\fifa 16 demo\fifa16_demo.exe FirewallRules: [UDP Query User{F8E3EE28-C352-4BC8-947D-255226943986}D:\heroes of the storm\versions\base38793\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base38793\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{3318F80C-FB9C-4E81-BD31-34E33DE12894}D:\heroes of the storm\versions\base38793\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base38793\heroesofthestorm_x64.exe FirewallRules: [{3BB3306B-CABD-4E1E-A3DE-6124366A7CDB}] => (Allow) D:\Steam\bin\steamwebhelper.exe FirewallRules: [{F64CDC08-7EDE-44FF-8A27-9C5E3425DE50}] => (Allow) D:\Steam\bin\steamwebhelper.exe FirewallRules: [UDP Query User{BBE38DDF-67A7-4867-83BB-C10EBEA165A6}D:\overwatch\gameclientapp.exe] => (Allow) D:\overwatch\gameclientapp.exe FirewallRules: [TCP Query User{3E9A55D9-9604-4DDB-82BB-05094B3511A2}D:\overwatch\gameclientapp.exe] => (Allow) D:\overwatch\gameclientapp.exe FirewallRules: [{1322E8C1-3139-4444-924E-D14DA07D1947}] => (Allow) D:\Steam\steamapps\common\Child of Light\ChildofLight.exe FirewallRules: [{FB4DA56E-E818-4A01-AC60-95F37DA4FB1E}] => (Allow) D:\Steam\steamapps\common\Child of Light\ChildofLight.exe FirewallRules: [{FF0E9E30-4D64-4B0E-B6CE-6FCA04E459B6}] => (Allow) D:\Steam\steamapps\common\Child of Light\ChildofLight.exe FirewallRules: [{1CEC4E75-E7B8-453C-9F25-1130267400ED}] => (Allow) D:\Steam\steamapps\common\Child of Light\ChildofLight.exe FirewallRules: [UDP Query User{F7E4E708-D44D-4342-BBE7-2A5CEE2F4007}D:\steam\steamapps\common\aftermath\aftermath.exe] => (Block) D:\steam\steamapps\common\aftermath\aftermath.exe FirewallRules: [TCP Query User{64AAC5E0-B5DD-4D74-86CE-6EC687970B0F}D:\steam\steamapps\common\aftermath\aftermath.exe] => (Block) D:\steam\steamapps\common\aftermath\aftermath.exe FirewallRules: [{DDBE4CFC-4551-4317-8970-502FA6197B94}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Rainbow Six Siege - Closed Beta\RainbowSix.exe FirewallRules: [{6014AD93-E673-4BF4-BC8E-273403585EFB}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Rainbow Six Siege - Closed Beta\RainbowSix.exe FirewallRules: [{33D124AA-C7CE-46C4-AEF9-01A7F6F5C470}] => (Allow) D:\Steam\steamapps\common\Trine 3\trine3_launcher.exe FirewallRules: [{23607C0B-5157-4FF1-A28C-71EB87A641D1}] => (Allow) D:\Steam\steamapps\common\Trine 3\trine3_launcher.exe FirewallRules: [UDP Query User{84F24FB7-50D1-474B-9641-F22E4C35B3C1}D:\diablo iii\diablo iii.exe] => (Block) D:\diablo iii\diablo iii.exe FirewallRules: [TCP Query User{CCE84B66-681A-4B90-A309-DE2A0FF71278}D:\diablo iii\diablo iii.exe] => (Block) D:\diablo iii\diablo iii.exe FirewallRules: [UDP Query User{CC4689F1-D037-4A64-B19D-E6167B268A77}D:\steam\steamapps\common\arma 3\arma3.exe] => (Allow) D:\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [TCP Query User{4D0AFAE5-BA63-4D4D-ABFD-41381651A024}D:\steam\steamapps\common\arma 3\arma3.exe] => (Allow) D:\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [{1CBCE7AD-CC2C-403F-81D8-CA2F9938C7AE}] => (Allow) D:\Steam\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe FirewallRules: [{2E3D6FA0-3B80-4BFA-A2ED-0075066F2419}] => (Allow) D:\Steam\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe FirewallRules: [UDP Query User{1DC384A5-A6E5-4F6F-8F00-2959F340A36D}C:\program files (x86)\ubisoft\ubisoft game launcher\games\far cry 4\bin\farcry4.exe] => (Allow) C:\program files (x86)\ubisoft\ubisoft game launcher\games\far cry 4\bin\farcry4.exe FirewallRules: [TCP Query User{11834756-531B-48BD-A025-2B975412D503}C:\program files (x86)\ubisoft\ubisoft game launcher\games\far cry 4\bin\farcry4.exe] => (Allow) C:\program files (x86)\ubisoft\ubisoft game launcher\games\far cry 4\bin\farcry4.exe FirewallRules: [UDP Query User{F18513FA-BF28-483E-957D-FCC52725C6C8}D:\steam\steamapps\common\dayz\dayz.exe] => (Block) D:\steam\steamapps\common\dayz\dayz.exe FirewallRules: [TCP Query User{2B584440-E63C-42C1-827D-78416F1BF419}D:\steam\steamapps\common\dayz\dayz.exe] => (Block) D:\steam\steamapps\common\dayz\dayz.exe FirewallRules: [{3B6740AF-222C-4B66-BC0E-B02272E0F806}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{93157789-6C04-45B1-90DC-EBB6A7D694C2}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{DE3F5447-C13C-4838-A059-43449B36F2F3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{A42D03E9-4B68-4FB6-9F5B-40E881639B4E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{50C1539F-E97D-4D21-AE17-DF3C8C495FA8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{2E210279-F4E8-49E1-992A-B4E1A2E93F4F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{7E88148D-1DF4-4378-B16B-FA36908A9042}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{1F6840C0-01C7-4ABD-B630-37659D8898B4}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{05573716-8F9D-45A0-90D6-56C62ED95F15}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{99778A0B-A0A0-4A14-9EF4-BD2BD176216D}] => (Allow) C:\Program Files\ma-config.com\MaConfigAgent.exe FirewallRules: [{89923D25-FDF7-46B2-9D46-3CE7DF8E65C6}] => (Allow) C:\Program Files\ma-config.com\MaConfigAgent.exe FirewallRules: [{2BC92017-9672-4DB9-9769-993110105F9F}] => (Allow) D:\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGameOldLoad.exe FirewallRules: [{6E39E48A-8121-46E0-B92D-0384A894668A}] => (Allow) D:\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGameOldLoad.exe FirewallRules: [UDP Query User{F3508F11-5D18-480D-A6B4-9D5AB10626E5}D:\steam\steamapps\common\survarium\game\binaries\x86\survarium.exe] => (Allow) D:\steam\steamapps\common\survarium\game\binaries\x86\survarium.exe FirewallRules: [TCP Query User{A3361EA5-AF68-495D-BDC0-C20251BCFA00}D:\steam\steamapps\common\survarium\game\binaries\x86\survarium.exe] => (Allow) D:\steam\steamapps\common\survarium\game\binaries\x86\survarium.exe FirewallRules: [{33CA6811-C08D-4ACC-B7AF-0195ADC377DA}] => (Allow) D:\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGameServer.exe FirewallRules: [{56378512-F92C-40D8-97F6-7A32CDFE9D72}] => (Allow) D:\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGameServer.exe FirewallRules: [UDP Query User{7A4E4602-9647-4DB5-B532-72003C4EE3F8}D:\steam\steamapps\common\cryptic studios\neverwinter\live\gameclient.exe] => (Allow) D:\steam\steamapps\common\cryptic studios\neverwinter\live\gameclient.exe FirewallRules: [TCP Query User{8392DDB2-9933-4539-ACA5-2788A19CFF1F}D:\steam\steamapps\common\cryptic studios\neverwinter\live\gameclient.exe] => (Allow) D:\steam\steamapps\common\cryptic studios\neverwinter\live\gameclient.exe FirewallRules: [{327B053C-45F1-4505-ACB3-1EA278348A07}] => (Allow) D:\Hearthstone\Hearthstone.exe FirewallRules: [{75A14C43-438A-4632-B8D9-7CAA7E08833C}] => (Allow) D:\Hearthstone\Hearthstone.exe FirewallRules: [UDP Query User{084B8247-F635-46C7-BE93-18351EFA3BF9}D:\steam\steamapps\common\planetside 2\planetside2_x64.exe] => (Block) D:\steam\steamapps\common\planetside 2\planetside2_x64.exe FirewallRules: [TCP Query User{DA86DA59-3555-469D-89DC-57A99E755248}D:\steam\steamapps\common\planetside 2\planetside2_x64.exe] => (Block) D:\steam\steamapps\common\planetside 2\planetside2_x64.exe FirewallRules: [UDP Query User{5A23EF8B-CA4A-407C-80DB-C192DE80786F}D:\dead island riptide\deadislandgame_x86_rwdi.exe] => (Allow) D:\dead island riptide\deadislandgame_x86_rwdi.exe FirewallRules: [TCP Query User{A1BB1C7D-857C-4FE0-8EA7-FB0FC119109B}D:\dead island riptide\deadislandgame_x86_rwdi.exe] => (Allow) D:\dead island riptide\deadislandgame_x86_rwdi.exe FirewallRules: [UDP Query User{65B5E733-E0A8-4056-A3A1-F3B1DA81346E}D:\games\left 4 dead 2\left4dead2.exe] => (Block) D:\games\left 4 dead 2\left4dead2.exe FirewallRules: [TCP Query User{21DE7930-57D6-4749-874C-68FBC44B4106}D:\games\left 4 dead 2\left4dead2.exe] => (Block) D:\games\left 4 dead 2\left4dead2.exe FirewallRules: [UDP Query User{20ED3D8E-1FAB-4625-9EE8-D76BE85764B5}D:\steam\steamapps\common\the witcher 2\bin\witcher2.exe] => (Allow) D:\steam\steamapps\common\the witcher 2\bin\witcher2.exe FirewallRules: [TCP Query User{DD090AEE-C5FF-4154-B8AB-6412C0664EEE}D:\steam\steamapps\common\the witcher 2\bin\witcher2.exe] => (Allow) D:\steam\steamapps\common\the witcher 2\bin\witcher2.exe FirewallRules: [UDP Query User{AD0CEBA8-0EF5-4C85-9BFF-379DE2AC312B}C:\program files\strogino cs portal\counter-strike global offensive\csgo.exe] => (Block) C:\program files\strogino cs portal\counter-strike global offensive\csgo.exe FirewallRules: [TCP Query User{7B5EB73F-1376-41F3-95C0-A5BFDE54154E}C:\program files\strogino cs portal\counter-strike global offensive\csgo.exe] => (Block) C:\program files\strogino cs portal\counter-strike global offensive\csgo.exe FirewallRules: [UDP Query User{15632D0D-04F5-4235-9C81-DD1BA10AC85D}C:\program files (x86)\r.g. mechanics\assassins creed chronicles china\binaries\win32\accgame-win32-shipping.exe] => (Allow) C:\program files (x86)\r.g. mechanics\assassins creed chronicles china\binaries\win32\accgame-win32-shipping.exe FirewallRules: [TCP Query User{A5975FAB-FE62-4669-9E4E-D6955F34E20C}C:\program files (x86)\r.g. mechanics\assassins creed chronicles china\binaries\win32\accgame-win32-shipping.exe] => (Allow) C:\program files (x86)\r.g. mechanics\assassins creed chronicles china\binaries\win32\accgame-win32-shipping.exe FirewallRules: [UDP Query User{AFDCC244-24DE-45FA-B3D4-188CFF424CE4}D:\steam\steamapps\common\h1z1 test\h1z1.exe] => (Block) D:\steam\steamapps\common\h1z1 test\h1z1.exe FirewallRules: [TCP Query User{A9EF2BBF-0469-44C5-BEE7-C1F03CBEEE80}D:\steam\steamapps\common\h1z1 test\h1z1.exe] => (Block) D:\steam\steamapps\common\h1z1 test\h1z1.exe FirewallRules: [UDP Query User{8453A183-86D6-4DCD-A119-3122F4760182}D:\steam\steamapps\common\dayz\dayz.exe] => (Block) D:\steam\steamapps\common\dayz\dayz.exe FirewallRules: [TCP Query User{C9ED399A-CE0F-45B3-B077-13472AB35215}D:\steam\steamapps\common\dayz\dayz.exe] => (Block) D:\steam\steamapps\common\dayz\dayz.exe FirewallRules: [UDP Query User{CFB31C84-3561-4635-AE9D-E073FC1B0D7B}D:\steam\steamapps\common\h1z1\h1z1.exe] => (Block) D:\steam\steamapps\common\h1z1\h1z1.exe FirewallRules: [TCP Query User{6D1B5159-6FAE-4BCF-A312-6BBA77978252}D:\steam\steamapps\common\h1z1\h1z1.exe] => (Block) D:\steam\steamapps\common\h1z1\h1z1.exe FirewallRules: [{ED6F4C74-0DB9-454E-8C35-9F16FDFEFC79}] => (Allow) D:\Steam\Steam.exe FirewallRules: [{BF7BB62E-D1E2-47DA-BE4A-D9727C4947B4}] => (Allow) D:\Steam\Steam.exe FirewallRules: [UDP Query User{96E4C0F8-6774-4127-B63B-6CC84CBB0E0B}D:\heroes of the storm\versions\base34659\heroesofthestorm_x64.exe] => (Block) D:\heroes of the storm\versions\base34659\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{52000DDD-3BA2-4105-AB28-23A76BD1F743}D:\heroes of the storm\versions\base34659\heroesofthestorm_x64.exe] => (Block) D:\heroes of the storm\versions\base34659\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{FD22B2D8-927E-4EC2-9D42-9279632663AA}C:\program files (x86)\origin games\fifa 15 demo\fifa15_demo.exe] => (Block) C:\program files (x86)\origin games\fifa 15 demo\fifa15_demo.exe FirewallRules: [TCP Query User{60224A59-F4AE-445D-BC0F-B68D4DE42C00}C:\program files (x86)\origin games\fifa 15 demo\fifa15_demo.exe] => (Block) C:\program files (x86)\origin games\fifa 15 demo\fifa15_demo.exe FirewallRules: [{564BD19F-382B-44F9-A50C-1C99EDD855E9}] => (Allow) D:\PayDay 2\payday2_win32_release.exe FirewallRules: [{1773BAA9-ABD0-47F1-88F1-BCA78641DEC4}] => (Allow) D:\PayDay 2\payday2_win32_release.exe FirewallRules: [{07ED97E0-B65B-40AF-9ECB-84AF5FD205F0}] => (Allow) \crime.exe FirewallRules: [{1AD09434-C9A5-4904-AEC2-0D541C029631}] => (Allow) \crime.exe FirewallRules: [{2FF6DC62-6CE1-43C4-A480-D9AE07608310}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\Thief\Binaries\Win64\Shipping-ThiefGame.exe FirewallRules: [{B0EDC0CA-DB24-4093-8B6E-A4D479F7AABD}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\Thief\Binaries\Win64\Shipping-ThiefGame.exe FirewallRules: [UDP Query User{9226A806-C496-435C-BC31-ABE139297AB7}D:\steamjeu jeremy\steamapps\common\h1z1\h1z1.exe] => (Block) D:\steamjeu jeremy\steamapps\common\h1z1\h1z1.exe FirewallRules: [TCP Query User{2148A2A5-258C-46E1-9194-71E27016A0CB}D:\steamjeu jeremy\steamapps\common\h1z1\h1z1.exe] => (Block) D:\steamjeu jeremy\steamapps\common\h1z1\h1z1.exe FirewallRules: [{4812A550-6860-4938-B631-58827842F7F4}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\H1Z1\LaunchPad.exe FirewallRules: [{99B5364C-F538-46F6-B352-6891099823BF}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\H1Z1\LaunchPad.exe FirewallRules: [UDP Query User{A4AFFC48-8AA1-4C93-A5D9-92DC7795DD49}D:\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{40063B85-3671-41E6-A87C-19CBBC451C74}D:\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe FirewallRules: [{D175F479-E6FE-478D-9986-E67E5FE54BFB}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{A5DECF72-3239-4430-89B6-C491E4D90212}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{8E4AE581-46FB-4559-88E2-5B1784287C23}] => (Allow) LPort=10907 FirewallRules: [{B26A2B6C-7D06-442C-84F4-B87FE7BC2092}] => (Allow) LPort=10907 FirewallRules: [UDP Query User{7318F9A7-B79A-46B0-BBF5-6E1E65DD1F46}D:\dying light\dyinglightgame.exe] => (Allow) D:\dying light\dyinglightgame.exe FirewallRules: [TCP Query User{4C4898F1-BFAC-4B84-B3AF-ACB5F2BFA0D1}D:\dying light\dyinglightgame.exe] => (Allow) D:\dying light\dyinglightgame.exe FirewallRules: [{F2D7A136-977B-453F-9B50-F7D200E87DE8}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\Just Cause 2 - Multiplayer Mod\JcmpLauncher.exe FirewallRules: [{965D2170-732F-4B11-A785-6F316AB0B810}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\Just Cause 2 - Multiplayer Mod\JcmpLauncher.exe FirewallRules: [UDP Query User{0DACA702-5EBD-4B73-BDED-1250B265C8D1}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [TCP Query User{F450E4F5-7460-49F3-BB95-7CFEAA71F535}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{5F384495-01B9-4C18-96A7-ECC6BAECC077}C:\users\jeremy\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\jeremy\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{D264DE74-4FE0-4D5F-9568-9299B13A058B}C:\users\jeremy\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\jeremy\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{6AE3DBD2-F5EC-46AE-865C-43B8E72182B6}D:\steamjeu jeremy\steamapps\common\wormsrevolution\wormsrevolution.exe] => (Block) D:\steamjeu jeremy\steamapps\common\wormsrevolution\wormsrevolution.exe FirewallRules: [TCP Query User{1BCEC7BA-0093-42C2-BD89-739B3D9E4621}D:\steamjeu jeremy\steamapps\common\wormsrevolution\wormsrevolution.exe] => (Block) D:\steamjeu jeremy\steamapps\common\wormsrevolution\wormsrevolution.exe FirewallRules: [{5047D390-320A-48DB-9B8D-AF22DBDA8F1B}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\Need for Speed Hot Pursuit\NFS11.exe FirewallRules: [{F538C5B5-7CA0-4D83-8A4F-C3EAD1EFBC7C}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\Need for Speed Hot Pursuit\NFS11.exe FirewallRules: [UDP Query User{0232570F-1FE0-4302-8285-93304400F677}D:\steamjeu jeremy\steamapps\common\primalfears\project4.exe] => (Allow) D:\steamjeu jeremy\steamapps\common\primalfears\project4.exe FirewallRules: [TCP Query User{51731C3A-0B56-4BAC-949B-1944FC38112A}D:\steamjeu jeremy\steamapps\common\primalfears\project4.exe] => (Allow) D:\steamjeu jeremy\steamapps\common\primalfears\project4.exe FirewallRules: [{B0C046A3-31FA-453E-B172-8064338D4FBF}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\DayZ\DayZ_BE.exe FirewallRules: [{D4393AF7-7B85-4CB0-8492-610C00D697B0}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\DayZ\DayZ_BE.exe FirewallRules: [{D7169A35-1DDE-416C-AFB3-FC7F7BC1106F}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\MsSplosionMan\MsSplosionMan.exe FirewallRules: [{B304F9C2-3B39-4CE9-8B06-3AD3DDB5BBBA}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\MsSplosionMan\MsSplosionMan.exe FirewallRules: [{9E28CB5F-6AF1-4BBD-8C99-5BFE79E49926}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\Dishonored\Binaries\Win32\Dishonored.exe FirewallRules: [{877FE759-6789-443C-A10D-3CC4200B6E7A}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\Dishonored\Binaries\Win32\Dishonored.exe FirewallRules: [{5EE2C66D-ABD3-4F3A-9DF5-9E972B5A68EB}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\DayZ\DayZ.exe FirewallRules: [{68F4534B-F5D0-4FAF-96D1-321827D6E5B7}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\DayZ\DayZ.exe FirewallRules: [{D2425989-D06A-4F40-9F83-6A0DF4307C77}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{B4A4C673-36DF-4E50-A1EE-7E440110F3E6}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{2DC816B5-3F67-4D40-9963-1F7AC0FA9B85}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{9D5D5184-55EC-45E1-8C5F-33269A28FF31}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{AE411398-D4A3-45D8-9135-429F46041E73}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\BattleBlock Theater\BattleBlockTheater.exe FirewallRules: [{738E6210-360D-4EC3-8145-7E41ACB6C50F}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\BattleBlock Theater\BattleBlockTheater.exe FirewallRules: [{714E556F-6A0A-475F-91AB-8DA569CB4446}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\BorderlandsPreSequel\Binaries\Win32\Launcher.exe FirewallRules: [{DA81301B-3F07-49ED-A545-DE4A88ABDD79}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\BorderlandsPreSequel\Binaries\Win32\Launcher.exe FirewallRules: [{BD7BABCC-8103-4E67-AE16-966B3A308F0B}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [UDP Query User{CCCEEDC5-22DC-41C5-BD3C-2E432C40D193}C:\users\jeremy\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\jeremy\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{F8F0EB26-22F1-4847-A424-0A3C04BF58B9}C:\users\jeremy\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\jeremy\appdata\roaming\spotify\spotify.exe FirewallRules: [{BC738EFF-6276-4450-A91C-FA49A1072DFC}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\Tomb Raider\TombRaider.exe FirewallRules: [{D9C9FE40-FDBD-46D6-A4D8-1C84AAA1871C}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\Tomb Raider\TombRaider.exe FirewallRules: [{B277D6CC-C21C-4FA7-BA14-6A8C57357855}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe FirewallRules: [{361BC263-A11B-4DAF-B4F9-7EB147A9FDDE}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe FirewallRules: [{526E90F4-4306-4F9B-A980-FD7D0CE4019B}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [{42A1DC7C-92CA-482A-B9EE-6D1055E7ABD4}] => (Allow) D:\SteamJeu Jeremy\SteamApps\common\Team Fortress 2\hl2.exe FirewallRules: [UDP Query User{0CE73EB2-B5D6-41AF-A9EB-757A8A911B35}C:\program files (x86)\bitcomet\bitcomet.exe] => (Allow) C:\program files (x86)\bitcomet\bitcomet.exe FirewallRules: [TCP Query User{C6524754-E34E-44E1-A295-9D86B1497FC4}C:\program files (x86)\bitcomet\bitcomet.exe] => (Allow) C:\program files (x86)\bitcomet\bitcomet.exe FirewallRules: [UDP Query User{BA192CE2-07C7-4134-AC1E-6D4DE82D5398}D:\steamjeu jeremy\steamapps\common\borderlandspresequel\binaries\win32\borderlandspresequel.exe] => (Allow) D:\steamjeu jeremy\steamapps\common\borderlandspresequel\binaries\win32\borderlandspresequel.exe FirewallRules: [TCP Query User{D5807EC2-0148-4333-AE93-44D2822965B7}D:\steamjeu jeremy\steamapps\common\borderlandspresequel\binaries\win32\borderlandspresequel.exe] => (Allow) D:\steamjeu jeremy\steamapps\common\borderlandspresequel\binaries\win32\borderlandspresequel.exe FirewallRules: [{E5A1FC8E-D5D3-4C69-8627-D5B9A9888854}] => (Allow) LPort=48114 FirewallRules: [{8DFC7DC7-795A-4BCD-8CEE-F78BBCDF5A48}] => (Allow) LPort=48113 FirewallRules: [{98078D94-E9B3-429B-A075-546CDC17B43C}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{2D3F0855-367E-4FC2-BAC7-9D993C88EE18}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{DF9F52AA-7E2C-4D66-A780-E60651231054}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{4C043050-1404-46D5-B3EE-ACA3FA8B6616}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{D26FA47E-3060-4667-80ED-E43C77D5F230}] => (Allow) C:\Program Files (x86)\BitComet\BitComet.exe FirewallRules: [{BC83F7CF-0872-40FC-A829-A21FFE31B8C0}] => (Allow) C:\Program Files (x86)\BitComet\BitComet.exe FirewallRules: [{54C75CD4-D233-4492-818B-67E1BC03F62A}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{3C3EC969-8B18-49D7-865A-009AE5FAAEE0}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{9E5F3598-4A80-4F24-8DB0-0742C98AF72C}] => (Allow) D:\Steam\steamapps\common\Stranded Deep\Stranded_Deep_x64.exe FirewallRules: [{80CC78B2-E7C3-473E-94DC-A50DC1E50FCB}] => (Allow) D:\Steam\steamapps\common\Stranded Deep\Stranded_Deep_x64.exe FirewallRules: [{FCA2B05A-ED68-4DD8-B961-D431455AB247}] => (Allow) D:\Steam\steamapps\common\Warframe\Warframe.exe FirewallRules: [{C3D39D78-FADF-45AD-8215-7E4425CC108D}] => (Allow) D:\Steam\steamapps\common\Warframe\Warframe.x64.exe FirewallRules: [{4D6B8D4E-F91B-4534-A6EC-A41CC8C4AABC}] => (Allow) D:\Steam\steamapps\common\Warframe\Warframe.exe FirewallRules: [{610FD73E-CB2E-418D-9252-7B90ECE0BF8A}] => (Allow) D:\Steam\steamapps\common\Warframe\Warframe.x64.exe FirewallRules: [{1D295E01-4049-4E6D-9891-572CDE6387C7}] => (Allow) D:\Steam\steamapps\common\Warframe\Tools\Launcher.exe FirewallRules: [{D8984B02-20BC-4005-B26F-14A0AA2DAD1A}] => (Allow) D:\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe FirewallRules: [{C6A95261-CCA7-4E4C-AAB9-218AEDD168C2}] => (Allow) D:\Steam\steamapps\common\Warframe\Warframe.exe FirewallRules: [{245FCB66-F324-4812-BBED-7C39B02E8424}] => (Allow) D:\Steam\steamapps\common\Warframe\Warframe.x64.exe FirewallRules: [{0F271692-CFFD-40E4-9AB6-DF6444EDA2AB}] => (Allow) D:\Steam\steamapps\common\Warframe\Warframe.exe FirewallRules: [{21548A41-34B8-4787-A6C7-1CF9DCC763B5}] => (Allow) D:\Steam\steamapps\common\Warframe\Warframe.x64.exe FirewallRules: [{48A83ECB-F582-4B75-B46E-DC22E3D361FA}] => (Allow) D:\Steam\steamapps\common\Warframe\Tools\Launcher.exe FirewallRules: [{466C5C08-ACB2-496B-BCB5-69F974CAB9AD}] => (Allow) D:\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe FirewallRules: [{7AB18004-BEB8-424B-8F7F-C9BA78F0C927}] => (Allow) D:\Steam\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{785299CA-7B57-4B6D-BD9A-E1AB86E04683}] => (Allow) D:\Steam\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{ABB64A9F-868C-4377-A38A-C76540CADCB2}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\FarCry4.exe FirewallRules: [{51948274-C8DA-48F0-B134-D04774EAC929}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\FarCry4.exe FirewallRules: [{75E711C8-96D3-494F-B183-C2B8A5FA7ED9}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\IGE_WPF64.exe FirewallRules: [{60A8E876-1F82-4274-8448-8BE0703EFD36}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\IGE_WPF64.exe FirewallRules: [{3486D2A6-091A-4106-AB20-AD2794BA70C4}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{B0E295A7-787C-4C00-B69A-AE947F7F55BA}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [TCP Query User{5CFCF9DB-26AF-4F77-B54C-9ADA4F353A6E}D:\heroes of the storm\versions\base40697\heroesofthestorm_x64.exe] => (Block) D:\heroes of the storm\versions\base40697\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{FFCA02E8-7EDB-4C0F-954B-A9FDDED0F42D}D:\heroes of the storm\versions\base40697\heroesofthestorm_x64.exe] => (Block) D:\heroes of the storm\versions\base40697\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{1CA45A34-BC71-4292-9730-762F4F390F18}C:\program files (x86)\call of duty - black ops 2\t6sp.exe] => (Block) C:\program files (x86)\call of duty - black ops 2\t6sp.exe FirewallRules: [UDP Query User{5D15D77B-F3ED-49F4-8CD5-99A686F02813}C:\program files (x86)\call of duty - black ops 2\t6sp.exe] => (Block) C:\program files (x86)\call of duty - black ops 2\t6sp.exe FirewallRules: [{221174FD-33A3-4FEC-A215-CD73D6309B2C}] => (Allow) D:\JEUX\Steam.exe FirewallRules: [{E1775C2E-4672-4DA5-8902-225DFB349826}] => (Allow) D:\JEUX\Steam.exe FirewallRules: [{5C097849-0E31-406A-801D-C671B4E92E61}] => (Allow) D:\JEUX\bin\steamwebhelper.exe FirewallRules: [{71C30822-6600-42F4-ABE6-A5B48B01BA7E}] => (Allow) D:\JEUX\bin\steamwebhelper.exe FirewallRules: [{0DF5CD2E-1186-4541-91D6-9D7D123CED0F}] => (Allow) C:\Program Files (x86)\crxbro Browser\crxbro\chrome.exe FirewallRules: [{927A3CD2-9644-4698-920E-8118DFC08D00}] => (Allow) C:\Program Files (x86)\crxbro Browser\crxbro\bin\browserServer.exe FirewallRules: [{786C079B-68FE-4905-B3A3-3A981E8A0A5E}] => (Allow) D:\JEUX\steamapps\common\Stranded Deep\Stranded_Deep_x64.exe FirewallRules: [{8EC9D9CE-04CC-4EFC-867F-D8F73EDE55FE}] => (Allow) D:\JEUX\steamapps\common\Stranded Deep\Stranded_Deep_x64.exe FirewallRules: [{70C671F0-4231-414A-BDF1-97088BA3661B}] => (Allow) D:\\bin\BlackDesert32.exe FirewallRules: [{C957E88E-0313-4C5C-9EB6-989C9E2F0B83}] => (Allow) D:\\bin64\BlackDesert64.exe FirewallRules: [{33B3208B-E5B9-4E09-9184-41FCC0F7EB29}] => (Allow) D:\\BlackDesert_Launcher.exe FirewallRules: [{FA78C216-3106-4C46-8CC8-20D7CCB28003}] => (Allow) D:\\BlackDesert_Downloader.exe FirewallRules: [{E3DA6EDE-A742-489D-9339-9469947BE284}] => (Allow) D:\JEUX\steamapps\common\The Forest\TheForest.exe FirewallRules: [{B9170F4D-5D7D-4838-B160-E848368D5E19}] => (Allow) D:\JEUX\steamapps\common\The Forest\TheForest.exe FirewallRules: [TCP Query User{2686BE12-8020-4397-9BB4-9D72151D7379}D:\bin64\blackdesert64.exe] => (Block) D:\bin64\blackdesert64.exe FirewallRules: [UDP Query User{0F2895F3-55E3-42A6-9DEF-76B4243CF610}D:\bin64\blackdesert64.exe] => (Block) D:\bin64\blackdesert64.exe FirewallRules: [TCP Query User{8017A7BE-45F9-4A70-B3A6-25CAECFE8308}D:\jeux\steamapps\common\h1z1\h1z1.exe] => (Block) D:\jeux\steamapps\common\h1z1\h1z1.exe FirewallRules: [UDP Query User{9CDD03EF-7F97-4F1E-9EEA-6399FF06509F}D:\jeux\steamapps\common\h1z1\h1z1.exe] => (Block) D:\jeux\steamapps\common\h1z1\h1z1.exe FirewallRules: [{267AB612-EE23-4DF7-BF30-4240FA3AF9A0}] => (Allow) C:\Program Files\DriversCloud.com\MCDetection.exe FirewallRules: [{060A5AB6-700B-4B12-8635-3BC621ACF76D}] => (Allow) C:\Program Files\DriversCloud.com\MCDetection.exe FirewallRules: [{F13E3C77-C374-4512-ADA4-25AA1DC9FC9D}] => (Allow) D:\JEUX\steamapps\common\Hocus Pocus\Hocus Pocus\Dosbox\dosbox.exe FirewallRules: [{B4034787-9186-4F5A-99AB-3AF8FED9E360}] => (Allow) D:\JEUX\steamapps\common\Hocus Pocus\Hocus Pocus\Dosbox\dosbox.exe FirewallRules: [{1522EB76-6D7E-4AE3-870B-AAFAB9E10133}] => (Allow) C:\ProgramData\Google\update\GoogleUpdate.exe FirewallRules: [TCP Query User{B14751CC-00F6-4CB4-B927-A5D274A48A7C}D:\overwatch\overwatch.exe] => (Allow) D:\overwatch\overwatch.exe FirewallRules: [UDP Query User{65B0A884-F246-4870-B39C-88DC9FFEFA59}D:\overwatch\overwatch.exe] => (Allow) D:\overwatch\overwatch.exe FirewallRules: [{72B7B010-C0D4-4C57-BA90-970C72AA1B87}] => (Allow) LPort=1688 FirewallRules: [TCP Query User{E92906D2-10EA-49E9-AD46-7AB3F8BC873E}D:\jeux\steamapps\common\borderlandspresequel\binaries\win32\borderlandspresequel.exe] => (Allow) D:\jeux\steamapps\common\borderlandspresequel\binaries\win32\borderlandspresequel.exe FirewallRules: [UDP Query User{FDB2ADE8-1F0E-4F2A-8D14-EB9A5AB3AD66}D:\jeux\steamapps\common\borderlandspresequel\binaries\win32\borderlandspresequel.exe] => (Allow) D:\jeux\steamapps\common\borderlandspresequel\binaries\win32\borderlandspresequel.exe FirewallRules: [TCP Query User{BBBF9F22-D015-4401-A826-090CD647E18D}D:\games\shadow complex remastered\binaries\win32\shadowcomplex-win32.exe] => (Allow) D:\games\shadow complex remastered\binaries\win32\shadowcomplex-win32.exe FirewallRules: [UDP Query User{EADC4A79-BD31-429F-ACDE-D7528ED4630A}D:\games\shadow complex remastered\binaries\win32\shadowcomplex-win32.exe] => (Allow) D:\games\shadow complex remastered\binaries\win32\shadowcomplex-win32.exe FirewallRules: [{B4046577-868D-4A39-A3D6-C4F31917E721}] => (Allow) D:\Tom Clancy's Rainbow Six Siege\RainbowSix.exe FirewallRules: [{D1AFA574-57DF-458E-986D-1B3AC64BF1C2}] => (Allow) D:\Tom Clancy's Rainbow Six Siege\RainbowSix.exe FirewallRules: [TCP Query User{6F2AB9EA-28B9-48A7-8185-7488229B0FD7}D:\gta5.exe] => (Allow) D:\gta5.exe FirewallRules: [UDP Query User{18258A81-C9CC-4F56-A282-805DFC528699}D:\gta5.exe] => (Allow) D:\gta5.exe FirewallRules: [TCP Query User{1085EB86-B16A-496C-A969-FCEABEC3DFDF}C:\program files (x86)\diablo iii\diablo iii.exe] => (Allow) C:\program files (x86)\diablo iii\diablo iii.exe FirewallRules: [UDP Query User{011EB741-6A79-43B2-8297-BB47C201C77B}C:\program files (x86)\diablo iii\diablo iii.exe] => (Allow) C:\program files (x86)\diablo iii\diablo iii.exe FirewallRules: [{BACF61EB-20A9-42E3-9360-682D84E8B7A1}] => (Allow) D:\JEUX\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{CE7EA512-19E9-492D-BCDB-4E978A890742}] => (Allow) D:\JEUX\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{6980E311-FA60-422B-BC12-C7F52EAAC6B7}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{60912770-92A2-4A79-8B30-F62F95BC9A98}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe FirewallRules: [{86671B17-8F32-4469-891D-70C6F5236525}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe FirewallRules: [{CE608523-4CF6-42A5-A263-0261CA34AD10}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe FirewallRules: [{E11B27C6-4B50-4247-9C2D-089FDCA952FA}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe ==================== Restore Points ========================= ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (08/22/2016 01:49:56 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program OTL.exe version 3.2.69.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel. Process ID: 1984 Start Time: 01d1fc5f06f2cbe1 Termination Time: 17 Application Path: C:\Users\Jeremy\Downloads\OTL.exe Report Id: 27b7a083-6856-11e6-9b1f-bcaec59295e4 Faulting package full name: Faulting package-relative application ID: Error: (08/22/2016 01:42:04 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: backgroundTaskHost.exe, version: 10.0.10586.0, time stamp: 0x5632d8f0 Faulting module name: twinapi.appcore.dll, version: 10.0.10586.494, time stamp: 0x5775e2d9 Exception code: 0xc000027b Fault offset: 0x000000000004b1c9 Faulting process id: 0x1198 Faulting application start time: 0xbackgroundTaskHost.exe0 Faulting application path: backgroundTaskHost.exe1 Faulting module path: backgroundTaskHost.exe2 Report Id: backgroundTaskHost.exe3 Faulting package full name: backgroundTaskHost.exe4 Faulting package-relative application ID: backgroundTaskHost.exe5 Error: (08/22/2016 01:27:04 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: backgroundTaskHost.exe, version: 10.0.10586.0, time stamp: 0x5632d8f0 Faulting module name: twinapi.appcore.dll, version: 10.0.10586.494, time stamp: 0x5775e2d9 Exception code: 0xc000027b Fault offset: 0x000000000004b1c9 Faulting process id: 0x210c Faulting application start time: 0xbackgroundTaskHost.exe0 Faulting application path: backgroundTaskHost.exe1 Faulting module path: backgroundTaskHost.exe2 Report Id: backgroundTaskHost.exe3 Faulting package full name: backgroundTaskHost.exe4 Faulting package-relative application ID: backgroundTaskHost.exe5 Error: (08/22/2016 01:17:43 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: backgroundTaskHost.exe, version: 10.0.10586.0, time stamp: 0x5632d8f0 Faulting module name: twinapi.appcore.dll, version: 10.0.10586.494, time stamp: 0x5775e2d9 Exception code: 0xc000027b Fault offset: 0x000000000004b1c9 Faulting process id: 0x1818 Faulting application start time: 0xbackgroundTaskHost.exe0 Faulting application path: backgroundTaskHost.exe1 Faulting module path: backgroundTaskHost.exe2 Report Id: backgroundTaskHost.exe3 Faulting package full name: backgroundTaskHost.exe4 Faulting package-relative application ID: backgroundTaskHost.exe5 Error: (08/22/2016 01:15:42 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3 Faulting module name: VDeck.exe, version: 11.7.0.20, time stamp: 0x56839bc3 Exception code: 0xc0000005 Fault offset: 0x00000000000fd132 Faulting process id: 0x183c Faulting application start time: 0xVDeck.exe0 Faulting application path: VDeck.exe1 Faulting module path: VDeck.exe2 Report Id: VDeck.exe3 Faulting package full name: VDeck.exe4 Faulting package-relative application ID: VDeck.exe5 Error: (08/22/2016 01:15:06 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: License Activation (slui.exe) failed with the following error code: hr=0x8007232B Command-line arguments: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=UserLogon;SessionId=1 Error: (08/22/2016 01:14:08 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: License Activation (slui.exe) failed with the following error code: hr=0x8007139F Command-line arguments: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=NetworkAvailable Error: (08/22/2016 01:12:18 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: nvxdsync.exe, version: 8.17.13.7254, time stamp: 0x57ac6254 Faulting module name: ntdll.dll, version: 10.0.10586.306, time stamp: 0x571af2eb Exception code: 0xc0000005 Fault offset: 0x00000000000302c6 Faulting process id: 0x510 Faulting application start time: 0xnvxdsync.exe0 Faulting application path: nvxdsync.exe1 Faulting module path: nvxdsync.exe2 Report Id: nvxdsync.exe3 Faulting package full name: nvxdsync.exe4 Faulting package-relative application ID: nvxdsync.exe5 Error: (08/22/2016 01:11:02 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: NvStreamNetworkService.exe, version: 7.1.2084.9592, time stamp: 0x57605ac0 Faulting module name: NvMdnsPlugin.dll_unloaded, version: 0.0.0.0, time stamp: 0x57605fbb Exception code: 0xc0000005 Fault offset: 0x00000000000d45a0 Faulting process id: 0xe94 Faulting application start time: 0xNvStreamNetworkService.exe0 Faulting application path: NvStreamNetworkService.exe1 Faulting module path: NvStreamNetworkService.exe2 Report Id: NvStreamNetworkService.exe3 Faulting package full name: NvStreamNetworkService.exe4 Faulting package-relative application ID: NvStreamNetworkService.exe5 Error: (08/22/2016 01:09:34 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: ) Description: License Activation (slui.exe) failed with the following error code: hr=0x8007232B Command-line arguments: RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-108dd189f588;NotificationInterval=1440;Trigger=NetworkAvailable System errors: ============= Error: (08/22/2016 01:13:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The DisplayFusionService service failed to start due to the following error: %%1053 = The service did not respond to the start or control request in a timely fashion. Error: (08/22/2016 01:13:14 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: A timeout was reached (30000 milliseconds) while waiting for the DisplayFusionService service to connect. Error: (08/22/2016 01:12:45 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The NetTcpActivator service depends on the NetTcpPortSharing service which failed to start because of the following error: %%1058 = The service cannot be started, either because it is disabled or because it has no enabled devices associated with it. Error: (08/22/2016 01:12:45 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \SystemRoot\SysWow64\drivers\tandpl.sys Error: (08/22/2016 01:10:57 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The User Data Access_6659f service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service. Error: (08/22/2016 01:10:57 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The User Data Storage_6659f service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service. Error: (08/22/2016 01:10:57 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Contact Data_6659f service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service. Error: (08/22/2016 01:10:57 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: The Sync Host_6659f service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service. Error: (08/22/2016 01:06:50 PM) (Source: volsnap) (EventID: 36) (User: ) Description: The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit. Error: (08/22/2016 12:01:04 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The DisplayFusionService service failed to start due to the following error: %%1053 = The service did not respond to the start or control request in a timely fashion. CodeIntegrity: =================================== Date: 2016-08-22 13:14:17.470 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ESET\ESET NOD32 Antivirus\Drivers\ehdrv\ehdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-08-22 13:14:17.406 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ESET\ESET NOD32 Antivirus\Drivers\ehdrv\ehdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-08-22 13:13:52.908 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-08-22 13:13:52.892 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-08-22 13:13:52.859 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ESET\ESET NOD32 Antivirus\Drivers\eelam\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-08-22 13:13:52.802 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ESET\ESET NOD32 Antivirus\Drivers\eelam\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-08-22 12:02:20.963 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ESET\ESET NOD32 Antivirus\Drivers\ehdrv\ehdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-08-22 12:02:20.427 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ESET\ESET NOD32 Antivirus\Drivers\ehdrv\ehdrv.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-08-22 12:01:46.573 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-08-22 12:01:46.555 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\drivers\eelam.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5 CPU 760 @ 2.80GHz Percentage of memory in use: 31% Total physical RAM: 8190.05 MB Available physical RAM: 5585.63 MB Total Virtual: 16382.05 MB Available Virtual: 13599.63 MB ==================== Drives ================================ Drive c: (System Reserved) (Fixed) (Total:195.31 GB) (Free:31.02 GB) NTFS ==>[drive with boot components (obtained from BCD)] Drive d: () (Fixed) (Total:736.2 GB) (Free:179.81 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: A14D5560) Partition 1: (Active) - (Size=195.3 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=736.2 GB) - (Type=07 NTFS) ==================== End of Addition.txt ============================