Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-08-2020 Ran by Ộnibi (28-08-2020 09:49:18) Running from C:\Users\Megaport\Desktop Windows 10 Pro Version 1903 18362.900 (X64) (2019-10-25 00:58:51) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-3010209747-1172268667-3773917220-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3010209747-1172268667-3773917220-503 - Limited - Disabled) Guest (S-1-5-21-3010209747-1172268667-3773917220-501 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-3010209747-1172268667-3773917220-504 - Limited - Disabled) Ộnibi (S-1-5-21-3010209747-1172268667-3773917220-1001 - Administrator - Enabled) => C:\Users\Megaport ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avast Antivirus (Disabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 4.7.0.400 - Adobe Systems Incorporated) Adobe Flash Player 32 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 32.0.0.414 - Adobe) Adobe Illustrator CC 2019 (HKLM-x32\...\ILST_23_0_1) (Version: 23.0.1 - Adobe Systems Incorporated) Adobe Premiere Pro CC 2019 (HKLM-x32\...\PPRO_13_0) (Version: 13.0 - Adobe Systems Incorporated) Apex Legends (HKLM-x32\...\{D7FBF176-382D-484E-863A-DFD1124A2A1C}) (Version: 1.0.4.3 - Electronic Arts, Inc.) Assassin's Creed Unity (HKLM-x32\...\Uplay Install 720) (Version: - Ubisoft) Assistant Mise à jour de Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.23072 - Microsoft Corporation) Avast Antivirus Gratuit (HKLM-x32\...\Avast Antivirus) (Version: 20.3.2405 - Avast Software) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) BitRaider Streaming Client (HKLM-x32\...\BitRaider Streaming Client) (Version: 1.3.3.4098 - BitRaider, LLC) Call of Duty Modern Warfare (HKLM-x32\...\Call of Duty Modern Warfare) (Version: - Blizzard Entertainment) Call of Duty Modern Warfare Beta (HKLM-x32\...\Call of Duty Modern Warfare Beta) (Version: - Blizzard Entertainment) Citra (HKU\S-1-5-21-3010209747-1172268667-3773917220-1001\...\{6b6cafe5-e1b1-4568-8047-20a1d60faf28}) (Version: 1.0.0 - Citra Team) Crossout Launcher 1.0.3.75 (HKLM-x32\...\CrossOutLauncher_is1) (Version: - ) Crossout Launcher 1.0.3.93 (HKU\S-1-5-21-3010209747-1172268667-3773917220-1001\...\CrossOutLauncher_is1) (Version: - ) Discord (HKU\S-1-5-21-3010209747-1172268667-3773917220-1001\...\Discord) (Version: 0.0.307 - Discord Inc.) Enscape 2.5.2.34 (current user) (HKU\S-1-5-21-3010209747-1172268667-3773917220-1001\...\Enscape) (Version: 2.5.2.34 - Enscape GmbH) Epic Games Launcher (HKLM-x32\...\{A17FC61C-F723-4856-9116-3087712BCB11}) (Version: 1.1.167.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden FileZilla Client 3.47.2.1 (HKLM-x32\...\FileZilla Client) (Version: 3.47.2.1 - Tim Kosse) Firestorm Launcher version 1.3 (HKLM-x32\...\{008D5963-9A73-4472-8C16-A5BF04491B9D}_is1) (Version: 1.3 - Firestorm) Foto-Pro (HKLM-x32\...\Foto-Pro_V_is1) (Version: - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 84.0.4147.135 - Google LLC) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.99.0 - Google Inc.) Hidden Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) Hyperscape (HKLM-x32\...\Uplay Install 11957) (Version: - Ubisoft) Java 8 Update 241 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180241F0}) (Version: 8.0.2410.7 - Oracle Corporation) Java 8 Update 241 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180241F0}) (Version: 8.0.2410.7 - Oracle Corporation) Krita (x64) 4.1.5 (HKLM\...\Krita_x64) (Version: 4.1.5.100 - Krita Foundation) Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden League of Legends (HKLM-x32\...\League of Legends 1.0) (Version: 1.0 - Riot Games, Inc) League of Legends (HKU\S-1-5-21-3010209747-1172268667-3773917220-1001\...\Riot Game league_of_legends.live) (Version: - Riot Games, Inc) Lecteur vidéo de l’Overwatch League (HKLM-x32\...\Overwatch League Replay Viewer) (Version: - Blizzard Entertainment) Les Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.0.631 - Electronic Arts) Main service (HKLM-x32\...\{EF758C50-5FA2-4B0A-86D3-8B65B176BC53}) (Version: - ) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 84.0.522.63 - Microsoft Corporation) Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.135.29 - ) Microsoft OneDrive (HKU\S-1-5-21-3010209747-1172268667-3773917220-1001\...\OneDriveSetup.exe) (Version: 20.134.0705.0008 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.24.28127 (HKLM-x32\...\{282975d8-55fe-4991-bbbb-06a72581ce58}) (Version: 14.24.28127.4 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Minecraft (HKLM-x32\...\{756E195A-CB58-4B99-917F-0DDA0D881204}) (Version: 1.0.4.0 - Mojang) Mises à jour NVIDIA 38.0.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.4.0 - NVIDIA Corporation) Hidden Mozilla Firefox 66.0.3 (x64 fr) (HKLM\...\Mozilla Firefox 66.0.3 (x64 fr)) (Version: 66.0.3 - Mozilla) NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.19 - NVIDIA Corporation) Hidden NVIDIA GeForce Experience 3.20.2.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.2.34 - NVIDIA Corporation) NVIDIA Logiciel système PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation) NVIDIA Pilote audio HD : 1.3.38.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.21 - NVIDIA Corporation) NVIDIA Pilote graphique 442.59 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 442.59 - NVIDIA Corporation) OBS Studio (HKLM-x32\...\OBS Studio) (Version: 22.0.2 - OBS Project) OpenOffice 4.1.6 (HKLM-x32\...\{50D70A8D-0503-4AA6-97EF-09849E9FB520}) (Version: 4.16.9790 - Apache Software Foundation) Opera GX Stable 68.0.3618.206 (HKU\S-1-5-21-3010209747-1172268667-3773917220-1001\...\Opera GX 68.0.3618.206) (Version: 68.0.3618.206 - Opera Software) Origin (HKLM-x32\...\Origin) (Version: 10.5.82.43225 - Electronic Arts, Inc.) Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment) Overwatch Test (HKLM-x32\...\Overwatch Test) (Version: - Blizzard Entertainment) Pen Tablet Driver Setup (HKLM-x32\...\{9C456113-17CE-4098-B4AC-5865287BF31E}) (Version: 1.6.12.22 - ) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.18.526.2017 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8258 - Realtek Semiconductor Corp.) Riot Vanguard (HKLM\...\Riot Vanguard) (Version: - Riot Games, Inc.) Snaz version 1.12.7.0 (HKLM-x32\...\{70A76031-FDC6-4F9B-BB5C-33776703F45A}_is1) (Version: 1.12.7.0 - JimsApps) Spotify (HKU\S-1-5-21-3010209747-1172268667-3773917220-1001\...\Spotify) (Version: 1.1.40.508.gd5bc2931 - Spotify AB) Star Wars The Old Republic (HKLM-x32\...\swtor_swtor) (Version: - Bioware/EA) Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Streamlabs OBS 0.20.1 (HKLM\...\029c4619-0385-5543-9426-46f9987161d9) (Version: 0.20.1 - General Workings, Inc.) Titanfall™ 2 (HKLM-x32\...\{4BD80373-FEE7-45B6-8249-6E8E98717405}) (Version: 1.0.1.3 - Electronic Arts, Inc.) Twitch (HKU\S-1-5-21-3010209747-1172268667-3773917220-1001\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden UpdateAssistant (HKLM\...\{F339C545-24DC-4870-AA32-6EB6B0500B95}) (Version: 1.24.0.0 - Microsoft Corporation) Hidden Uplay (HKLM-x32\...\Uplay) (Version: 92.0 - Ubisoft) uTorrent Web (HKU\S-1-5-21-3010209747-1172268667-3773917220-1001\...\utweb) (Version: 1.1.0 - BitTorrent, Inc.) VALORANT (HKU\S-1-5-21-3010209747-1172268667-3773917220-1001\...\Riot Game valorant.live) (Version: - Riot Games, Inc) Warframe (HKLM-x32\...\{E9C7E316-414B-440E-891C-B0773FA1C0FB}) (Version: 1.0.0 - Digital Extremes) Web Companion (HKLM-x32\...\{bc442467-3d81-42c8-b25e-44974b092b6f}) (Version: 4.6.1966.3854 - Lavasoft) WebAdvisor by McAfee (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.145 - McAfee, LLC) WinRAR 5.70 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.70.0 - win.rar GmbH) WinZip 22.0 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C24115}) (Version: 22.0.12670 - Corel Corporation) Packages: ========= AdBlock -> C:\Program Files\WindowsApps\BetaFish.AdBlock_2.13.0.0_neutral__c1wakc4j0nefm [2020-01-11] (BetaFish) Adobe Photoshop Express : éditeur d’images, ajustements, filtres, effets, bordures -> C:\Program Files\WindowsApps\AdobeSystemsIncorporated.AdobePhotoshopExpress_3.0.316.0_x64__ynb6jyjzte8ga [2019-05-25] (Adobe Inc.) Desktop Live Wallpapers -> C:\Program Files\WindowsApps\48405AmbientSoftware.LiveDesktopWallpapers_1.2.17.0_neutral__agy8jafheqhng [2019-08-17] (Ambient Software) [Startup Task] Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.2.169.0_x64__rz1tebttyb220 [2020-04-18] (Dolby Laboratories) iTunes -> C:\Program Files\WindowsApps\AppleInc.iTunes_12107.3.48019.0_x64__nzyj5cx40ttqa [2020-05-22] (Apple Inc.) [Startup Task] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1808.3.0_x64__8wekyb3d8bbwe [2019-10-25] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-24] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-24] (Microsoft Corporation) [MS Ad] MSN Météo -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-25] (Microsoft Corporation) [MS Ad] Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.96.725.0_x64__mcm4njqhnhss8 [2020-04-10] (Netflix, Inc.) Skype -> C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c [2020-02-07] (Skype) Ultra File Opener -> C:\Program Files\WindowsApps\D5BE6627.371995F5E41A5_7.2.6.0_x86__9pm2v9747qaaa [2020-04-29] (CompuClever Systems Inc.) Ultra Uploader -> C:\Program Files\WindowsApps\64775ParseDevInc.UltraUploader_1.2.44.0_x64__f8qv91k3qc5fy [2018-10-20] (ParseDev Inc) VLC -> C:\Program Files\WindowsApps\VideoLAN.VLC_3.2.1.0_x64__paz6r1rewnh0a [2019-06-09] (VideoLAN) ==================== Custom CLSID (Whitelisted): ============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-3010209747-1172268667-3773917220-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems Incorporated -> Adobe Systems) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll -> No File ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll -> No File ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1: [WinZip] -> {E0D79304-84BE-11CE-9641-444553540000} => C:\Program Files\WinZip\wzshls64.dll [2017-11-02] (Corel Corporation -> WinZip Computing, S.L.) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll -> No File ContextMenuHandlers4: [WinZip] -> {E0D79304-84BE-11CE-9641-444553540000} => C:\Program Files\WinZip\wzshls64.dll [2017-11-02] (Corel Corporation -> WinZip Computing, S.L.) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_87086da927dcdf63\nvshext.dll [2020-03-05] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll -> No File ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6: [WinZip] -> {E0D79304-84BE-11CE-9641-444553540000} => C:\Program Files\WinZip\wzshls64.dll [2017-11-02] (Corel Corporation -> WinZip Computing, S.L.) ==================== Codecs (Whitelisted) ==================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Drivers32: [VIDC.FICV] => C:\Windows\system32\ficvdec_x64.dll [652288 2013-05-28] () [File not signed] HKLM\...\Drivers32: [VIDC.FICV] => C:\Windows\SysWOW64\ficvdec_x86.dll [641024 2013-05-28] () [File not signed] HKLM\...\Drivers32: [vidc.VP60] => C:\WINDOWS\SysWOW64\vp6vfw.dll [447752 2008-09-04] (Electronic Arts -> On2.com) HKLM\...\Drivers32: [vidc.VP61] => C:\WINDOWS\SysWOW64\vp6vfw.dll [447752 2008-09-04] (Electronic Arts -> On2.com) ==================== Shortcuts & WMI ======================== ==================== Loaded Modules (Whitelisted) ============= 2017-09-01 13:15 - 2017-09-01 13:15 - 002227456 _____ (Corel Corporation -> WinZip) [File not signed] C:\Program Files\WinZip\WinZip Smart Monitor\SystemInfo-vc100-mt.dll 2020-08-18 19:18 - 2020-08-26 14:09 - 001282048 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\LIBEAY32.dll 2020-08-18 19:18 - 2020-08-26 14:09 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\ssleay32.dll 2020-08-18 19:18 - 2020-08-26 14:09 - 001611264 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\platforms\qwindows.dll 2020-08-26 14:09 - 2020-08-26 14:09 - 005487104 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Core.dll 2020-08-26 14:09 - 2020-08-26 14:09 - 005841920 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Gui.dll 2020-08-26 14:09 - 2020-08-26 14:09 - 001179136 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Network.dll 2020-08-26 14:09 - 2020-08-26 14:09 - 000146432 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5WebSockets.dll 2020-08-26 14:09 - 2020-08-26 14:09 - 005089792 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Widgets.dll 2020-08-26 14:09 - 2020-08-26 14:09 - 000184832 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Xml.dll ==================== Alternate Data Streams (Whitelisted) ======== (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\Megaport\Application Data:6699d3ee8dd9cf775caae782c8f44f03 [394] AlternateDataStreams: C:\Users\Megaport\AppData\Roaming:6699d3ee8dd9cf775caae782c8f44f03 [394] AlternateDataStreams: C:\Users\Megaport\AppData\Local\Temp:$DATA​ [16] AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [466] ==================== Safe Mode (Whitelisted) ================== ==================== Association (Whitelisted) ================= ==================== Internet Explorer trusted/restricted ========== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\.DEFAULT\...\localhost -> localhost IE trusted site: HKU\.DEFAULT\...\webcompanion.com -> hxxp://webcompanion.com IE trusted site: HKU\S-1-5-21-3010209747-1172268667-3773917220-1001\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-3010209747-1172268667-3773917220-1001\...\webcompanion.com -> hxxp://webcompanion.com ==================== Hosts content: ========================= (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2018-04-12 01:38 - 2019-11-22 19:47 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts ==================== Other Areas =========================== (Currently there is no automatic fix for this section.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\ HKU\S-1-5-21-3010209747-1172268667-3773917220-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Megaport\Desktop\Idris\Wallpaper\onibi.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (If an entry is included in the fixlist, it will be removed.) HKLM\...\StartupApproved\Run: => "RTHDVCPL" HKLM\...\StartupApproved\Run: => "WinZip PreLoader" HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKU\S-1-5-21-3010209747-1172268667-3773917220-1001\...\StartupApproved\StartupFolder: => "Twitch.lnk" HKU\S-1-5-21-3010209747-1172268667-3773917220-1001\...\StartupApproved\Run: => "Gaijin.Net Agent" HKU\S-1-5-21-3010209747-1172268667-3773917220-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-3010209747-1172268667-3773917220-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-3010209747-1172268667-3773917220-1001\...\StartupApproved\Run: => "utweb" HKU\S-1-5-21-3010209747-1172268667-3773917220-1001\...\StartupApproved\Run: => "Web Companion" HKU\S-1-5-21-3010209747-1172268667-3773917220-1001\...\StartupApproved\Run: => "com.squirrel.Teams.Teams" ==================== FirewallRules (Whitelisted) ================ (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [UDP Query User{291D8FA7-5788-4922-901C-CCDF290ABA09}C:\riot games\league of legends\game\league of legends.exe] => (Allow) C:\riot games\league of legends\game\league of legends.exe (Riot Games, Inc. -> Riot Games, Inc.) FirewallRules: [TCP Query User{59C53725-D390-4A87-B4C3-6BCC49255AD8}C:\riot games\league of legends\game\league of legends.exe] => (Allow) C:\riot games\league of legends\game\league of legends.exe (Riot Games, Inc. -> Riot Games, Inc.) FirewallRules: [{A5129C17-0624-42F3-BDD4-86DE983EF6D9}] => (Allow) C:\Riot Games\League of Legends\LeagueClient.exe (Riot Games, Inc. -> Riot Games, Inc.) FirewallRules: [{72D7813C-C4FA-41C6-8E8F-BA5493D22255}] => (Allow) C:\Riot Games\League of Legends\LeagueClient.exe (Riot Games, Inc. -> Riot Games, Inc.) FirewallRules: [{034D341A-702B-4A78-8C17-5BBAEBE39207}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Destiny 2\destiny2.exe (Bungie Inc. -> Bungie) FirewallRules: [{9FCA75DD-1FF3-4F9D-AC8B-8BE6B351C0D7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Destiny 2\destiny2.exe (Bungie Inc. -> Bungie) FirewallRules: [{D23793E0-EA08-4EA5-B48A-5DB12EA10813}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [UDP Query User{27DF2182-C394-4312-8EF5-E9754F0E0730}C:\users\megaport\desktop\apex\r5apex.exe] => (Allow) C:\users\megaport\desktop\apex\r5apex.exe (Electronic Arts, Inc. -> Respawn Entertainment) FirewallRules: [TCP Query User{01D50507-E2D3-4191-8B5B-1C4ADFF57488}C:\users\megaport\desktop\apex\r5apex.exe] => (Allow) C:\users\megaport\desktop\apex\r5apex.exe (Electronic Arts, Inc. -> Respawn Entertainment) FirewallRules: [{68A21069-4CDD-46DE-AF30-27B2E69420FC}] => (Allow) C:\Program Files (x86)\Origin Games\Apex\EasyAntiCheat_launcher.exe => No File FirewallRules: [{D3C4F58E-5EB2-452B-8503-1B6617820F9E}] => (Allow) C:\Program Files (x86)\Origin Games\Apex\EasyAntiCheat_launcher.exe => No File FirewallRules: [UDP Query User{2E150751-162A-447C-A938-EBB0D5CDE3FE}C:\program files (x86)\call of duty modern warfare beta\modernwarfare.exe] => (Allow) C:\program files (x86)\call of duty modern warfare beta\modernwarfare.exe => No File FirewallRules: [TCP Query User{D29B4D77-CE2A-47CB-BD23-A2086781032F}C:\program files (x86)\call of duty modern warfare beta\modernwarfare.exe] => (Allow) C:\program files (x86)\call of duty modern warfare beta\modernwarfare.exe => No File FirewallRules: [{8CAF9F36-A2CF-43E8-A320-9A4A14460015}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{1A19CB7D-007B-4D5B-916B-715641329692}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [UDP Query User{C59E3AB3-42FE-4B84-8E60-685EC6212341}C:\program files (x86)\overwatch league replay viewer\_replay_viewer_\overwatch.exe] => (Allow) C:\program files (x86)\overwatch league replay viewer\_replay_viewer_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [TCP Query User{612B9414-7520-49DB-9B9A-033FF50EFECF}C:\program files (x86)\overwatch league replay viewer\_replay_viewer_\overwatch.exe] => (Allow) C:\program files (x86)\overwatch league replay viewer\_replay_viewer_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [UDP Query User{A93A1323-2198-4922-9E36-E632D7CB599F}C:\program files\epic games\dauntless\archon\binaries\win64\dauntless-win64-shipping.exe] => (Allow) C:\program files\epic games\dauntless\archon\binaries\win64\dauntless-win64-shipping.exe => No File FirewallRules: [TCP Query User{ADB0BF16-170F-4F5D-9B7D-FBB6951D8965}C:\program files\epic games\dauntless\archon\binaries\win64\dauntless-win64-shipping.exe] => (Allow) C:\program files\epic games\dauntless\archon\binaries\win64\dauntless-win64-shipping.exe => No File FirewallRules: [UDP Query User{D979B805-A883-425F-8C86-F10B5EE0C7C0}C:\program files (x86)\steam\steamapps\common\kurtzpel\thechase\binaries\win64\thechase-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\kurtzpel\thechase\binaries\win64\thechase-win64-shipping.exe => No File FirewallRules: [TCP Query User{6843784A-8EFF-4BC2-9C19-486F0C091EDC}C:\program files (x86)\steam\steamapps\common\kurtzpel\thechase\binaries\win64\thechase-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\kurtzpel\thechase\binaries\win64\thechase-win64-shipping.exe => No File FirewallRules: [UDP Query User{5784AEE1-D5AB-4E9E-A784-41F48D1EED2F}C:\program files\epic games\forhonor\forhonor.exe] => (Allow) C:\program files\epic games\forhonor\forhonor.exe (Ubisoft Blue Byte GmbH -> Ubisoft) FirewallRules: [TCP Query User{DFE63AC5-4E68-4839-942E-3D8773D95151}C:\program files\epic games\forhonor\forhonor.exe] => (Allow) C:\program files\epic games\forhonor\forhonor.exe (Ubisoft Blue Byte GmbH -> Ubisoft) FirewallRules: [UDP Query User{75ECC3AE-A73E-4EAD-AC5B-7FDA4424DDBF}C:\program files (x86)\overwatch test\_ptr_\overwatch.exe] => (Allow) C:\program files (x86)\overwatch test\_ptr_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [TCP Query User{CD97B9C1-E5C8-463A-8FD0-C71FFA29C828}C:\program files (x86)\overwatch test\_ptr_\overwatch.exe] => (Allow) C:\program files (x86)\overwatch test\_ptr_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [UDP Query User{16FF61C4-E0C3-4900-9A55-C03393D8546D}C:\program files (x86)\overwatch\_retail_\overwatch.exe] => (Block) C:\program files (x86)\overwatch\_retail_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [TCP Query User{55C32267-6EE4-4149-8D7B-ECEFD5EF0E37}C:\program files (x86)\overwatch\_retail_\overwatch.exe] => (Block) C:\program files (x86)\overwatch\_retail_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [UDP Query User{BC7189EE-EF53-4B1B-8690-E0E83477B3B4}C:\program files (x86)\overwatch league replay viewer\overwatch.exe] => (Allow) C:\program files (x86)\overwatch league replay viewer\overwatch.exe => No File FirewallRules: [TCP Query User{B2843F9D-86CA-44F8-8443-271DB0B02B17}C:\program files (x86)\overwatch league replay viewer\overwatch.exe] => (Allow) C:\program files (x86)\overwatch league replay viewer\overwatch.exe => No File FirewallRules: [UDP Query User{70125A56-B69C-4170-BAF7-03B29E821FEE}C:\program files\java\jre1.8.0_171\bin\java.exe] => (Allow) C:\program files\java\jre1.8.0_171\bin\java.exe => No File FirewallRules: [TCP Query User{43F5A600-FFBA-46D0-A63F-D0BA802FAD68}C:\program files\java\jre1.8.0_171\bin\java.exe] => (Allow) C:\program files\java\jre1.8.0_171\bin\java.exe => No File FirewallRules: [{D6DF3EB1-954C-4FCE-A730-965F9941EDB8}] => (Allow) C:\Program Files\BlueStacks\HD-Player.exe => No File FirewallRules: [UDP Query User{123B0B00-EADD-4C6A-AF9B-F3FD029C64E7}C:\program files\epic games\rime\rime\sirengame\binaries\win64\rime.exe] => (Allow) C:\program files\epic games\rime\rime\sirengame\binaries\win64\rime.exe => No File FirewallRules: [TCP Query User{F2691E8C-E998-4D72-BF68-472F0FC278B5}C:\program files\epic games\rime\rime\sirengame\binaries\win64\rime.exe] => (Allow) C:\program files\epic games\rime\rime\sirengame\binaries\win64\rime.exe => No File FirewallRules: [{49D2844D-ACDB-4994-AD41-D5ACB3768FD4}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed Unity\ACU.exe (UBISOFT ENTERTAINMENT INC. -> ) FirewallRules: [{CD22F37B-C84C-4B4B-9CFA-ADB2FF4FABBE}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed Unity\ACU.exe (UBISOFT ENTERTAINMENT INC. -> ) FirewallRules: [UDP Query User{9431DDB8-FE5E-4DDD-9E03-481B763F2244}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe => No File FirewallRules: [TCP Query User{0ADDA478-9FAF-4D9E-80E5-F01CA1A216A7}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe => No File FirewallRules: [UDP Query User{BBB5D4B9-7A4A-42B1-90AD-1E0CA55E0CDD}C:\program files (x86)\call of duty black ops 4\blackops4.exe] => (Allow) C:\program files (x86)\call of duty black ops 4\blackops4.exe => No File FirewallRules: [TCP Query User{345D371B-D2F7-416C-B3D6-F0A19E0E191F}C:\program files (x86)\call of duty black ops 4\blackops4.exe] => (Allow) C:\program files (x86)\call of duty black ops 4\blackops4.exe => No File FirewallRules: [UDP Query User{68A748D4-A977-41DB-8472-A314B59E476D}C:\program files (x86)\origin games\apex\r5apex.exe] => (Allow) C:\program files (x86)\origin games\apex\r5apex.exe => No File FirewallRules: [TCP Query User{2698CB22-813B-426F-AE93-48798998680C}C:\program files (x86)\origin games\apex\r5apex.exe] => (Allow) C:\program files (x86)\origin games\apex\r5apex.exe => No File FirewallRules: [UDP Query User{0044AC29-1614-43BD-AADE-1F4B21C531F5}C:\program files (x86)\destiny 2\destiny2.exe] => (Allow) C:\program files (x86)\destiny 2\destiny2.exe => No File FirewallRules: [TCP Query User{B6B8CDDB-669E-4F19-900A-A142303CBC45}C:\program files (x86)\destiny 2\destiny2.exe] => (Allow) C:\program files (x86)\destiny 2\destiny2.exe => No File FirewallRules: [UDP Query User{27C17F8A-DD67-45B9-86DC-C9CDF27E8BBD}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.192\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.192\deploy\leagueclient.exe => No File FirewallRules: [TCP Query User{6841B33C-9F67-40DA-AE8E-0F35EBFEE71C}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.192\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.192\deploy\leagueclient.exe => No File FirewallRules: [{B62D0063-AD38-4ADD-AC1E-F1A2F37DAAA9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Robocraft\Robocraft.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{B07A4479-00E9-4986-B0A7-39126066DE12}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Robocraft\Robocraft.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [UDP Query User{CF8EFA6B-9DD3-4AC0-B73E-6F89E09E6E65}C:\program files (x86)\java\jre1.8.0_191\bin\java.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_191\bin\java.exe => No File FirewallRules: [TCP Query User{9891BEDB-59C5-45BB-B332-7253DFBA2F9F}C:\program files (x86)\java\jre1.8.0_191\bin\java.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_191\bin\java.exe => No File FirewallRules: [UDP Query User{01D74C9D-854B-4FDD-86CF-7BC3611E6A57}C:\program files (x86)\minecraft\runtime\jre-x64\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\bin\javaw.exe FirewallRules: [TCP Query User{1004ED5E-C922-40DE-A6F6-1E3727787C4A}C:\program files (x86)\minecraft\runtime\jre-x64\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\bin\javaw.exe FirewallRules: [UDP Query User{1A62162E-84E7-4E14-A158-DD99F288C78A}C:\users\megaport\documents\ardacraft launcher\runtime\jre-x64\1.8.0_51\bin\java.exe] => (Allow) C:\users\megaport\documents\ardacraft launcher\runtime\jre-x64\1.8.0_51\bin\java.exe FirewallRules: [TCP Query User{88E80280-8191-4791-A4AB-B02003D0A2B9}C:\users\megaport\documents\ardacraft launcher\runtime\jre-x64\1.8.0_51\bin\java.exe] => (Allow) C:\users\megaport\documents\ardacraft launcher\runtime\jre-x64\1.8.0_51\bin\java.exe FirewallRules: [{AD409683-37D4-4C15-9692-A4F2F4A63E13}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe => No File FirewallRules: [{40753E78-56E7-4A12-9E4A-6219402CB7B4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\Launcher.exe => No File FirewallRules: [{D6BC7F34-C6AA-4603-A1B8-8886233CA538}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe => No File FirewallRules: [{B53FFB0E-1ACA-41AA-A9FB-E9DFEDF610D7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe => No File FirewallRules: [{B5729316-9B4A-4F0B-9400-C429A4A189B0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe => No File FirewallRules: [{6C120889-820C-467E-A8F7-08A72FEDB8B8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe => No File FirewallRules: [{381BE95C-85F4-4562-B5E4-E569753260E0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe => No File FirewallRules: [{0CB609D0-915B-4E3D-9C66-2D067DA24015}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\Launcher.exe => No File FirewallRules: [{4F5C76D6-3BCF-4CC6-9396-0607D7792268}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe => No File FirewallRules: [{59D5D073-AECC-4C7F-9435-9619E6B69370}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe => No File FirewallRules: [{48192889-E221-4CDB-AF80-5356E24A6CD0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe => No File FirewallRules: [{CD01D8B8-ABFF-46B1-9EB9-453BE57D1B1A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe => No File FirewallRules: [{8EFE1F77-C019-4325-9EBA-E4E7EB43F583}] => (Allow) C:\Users\Megaport\AppData\Local\Warframe\Downloaded\Public\Tools\RemoteCrashSender.exe => No File FirewallRules: [{25AA1822-24DB-4200-98F2-F7E7A33DAD71}] => (Allow) C:\Users\Megaport\AppData\Local\Warframe\Downloaded\Public\Tools\Launcher.exe => No File FirewallRules: [{05F2DAFE-3D81-4552-9FE1-D567E95DA074}] => (Allow) C:\Users\Megaport\AppData\Local\Warframe\Downloaded\Public\Warframe.x64.exe => No File FirewallRules: [{4A1A6196-75B4-437C-8183-A55588F74243}] => (Allow) C:\Users\Megaport\AppData\Local\Warframe\Downloaded\Public\Warframe.exe => No File FirewallRules: [{C1C22378-8A32-4BBE-8CA1-FF2ED2310F87}] => (Allow) C:\Users\Megaport\AppData\Local\Warframe\Downloaded\Public\Warframe.x64.exe => No File FirewallRules: [{99069B9C-67BF-4F8D-BE17-75F369771EBC}] => (Allow) C:\Users\Megaport\AppData\Local\Warframe\Downloaded\Public\Warframe.exe => No File FirewallRules: [{38DF310C-F0FD-4F52-AD85-1BCA72571C1F}] => (Allow) C:\Users\Megaport\AppData\Local\Warframe\Downloaded\Public\Tools\RemoteCrashSender.exe => No File FirewallRules: [{D52FB3C5-D411-4BC3-B39F-3389F979D49A}] => (Allow) C:\Users\Megaport\AppData\Local\Warframe\Downloaded\Public\Tools\Launcher.exe => No File FirewallRules: [{07329BF8-5558-40BA-B3E6-CC28DA83A05A}] => (Allow) C:\Users\Megaport\AppData\Local\Warframe\Downloaded\Public\Warframe.x64.exe => No File FirewallRules: [{C8FC11DA-A7E3-4B65-B70F-6D9EE94C163F}] => (Allow) C:\Users\Megaport\AppData\Local\Warframe\Downloaded\Public\Warframe.exe => No File FirewallRules: [{465C96FF-76C9-4C09-BE11-E49548E885F1}] => (Allow) C:\Users\Megaport\AppData\Local\Warframe\Downloaded\Public\Warframe.x64.exe => No File FirewallRules: [{18F07FDB-5D93-441C-8576-86E717F422DB}] => (Allow) C:\Users\Megaport\AppData\Local\Warframe\Downloaded\Public\Warframe.exe => No File FirewallRules: [{DF83EE34-2CE2-4F10-86A2-149DDA47A167}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spore\runme.exe () [File not signed] FirewallRules: [{72F53716-18CF-4E1C-BDFA-6C030A3FE92B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spore\runme.exe () [File not signed] FirewallRules: [{160DC68F-4BA9-4E9B-88A4-9657BF4BAEC1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spore\SporeBin\SporeApp.exe (Maxis, a division of Electronic Arts Inc.) [File not signed] FirewallRules: [{8E07488E-026A-40DC-992F-19323D1A52B5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spore\SporeBin\SporeApp.exe (Maxis, a division of Electronic Arts Inc.) [File not signed] FirewallRules: [UDP Query User{DC569A8D-48D1-4D2B-A739-88CD96784A9C}C:\program files (x86)\java\jre1.8.0_191\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_191\bin\javaw.exe => No File FirewallRules: [TCP Query User{6D64B1C7-6306-4766-A050-2D138D9E4A6B}C:\program files (x86)\java\jre1.8.0_191\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_191\bin\javaw.exe => No File FirewallRules: [UDP Query User{8D68FDD6-7B9C-4101-86FC-6613E1191117}C:\users\megaport\desktop\jeux théo\doom\doomx64vk.exe] => (Allow) C:\users\megaport\desktop\jeux théo\doom\doomx64vk.exe => No File FirewallRules: [TCP Query User{660FB295-F6FA-4F8C-A819-D5C737EB5A64}C:\users\megaport\desktop\jeux théo\doom\doomx64vk.exe] => (Allow) C:\users\megaport\desktop\jeux théo\doom\doomx64vk.exe => No File FirewallRules: [UDP Query User{477BBBC8-973A-4F5A-BA28-897F86C80CDA}C:\users\megaport\desktop\jeux théo\dead.cells.early.access\deadcells.exe] => (Allow) C:\users\megaport\desktop\jeux théo\dead.cells.early.access\deadcells.exe => No File FirewallRules: [TCP Query User{CDA401AD-F99F-42C4-AB51-0BE93D9D8733}C:\users\megaport\desktop\jeux théo\dead.cells.early.access\deadcells.exe] => (Allow) C:\users\megaport\desktop\jeux théo\dead.cells.early.access\deadcells.exe => No File FirewallRules: [UDP Query User{0A6C6503-D186-4574-AA6D-45BC10671935}C:\program files\epic games\subnautica\subnautica.exe] => (Allow) C:\program files\epic games\subnautica\subnautica.exe () [File not signed] FirewallRules: [TCP Query User{EE8290BE-C833-4A42-A4D2-46390D4410B1}C:\program files\epic games\subnautica\subnautica.exe] => (Allow) C:\program files\epic games\subnautica\subnautica.exe () [File not signed] FirewallRules: [UDP Query User{20B03C74-D759-4AE5-B583-B921498DCDB8}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe => No File FirewallRules: [TCP Query User{255AE31F-932A-44B8-8E04-FA1425D8C438}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe => No File FirewallRules: [UDP Query User{2A2DCC69-8C86-4A05-9607-FEC945C77690}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{E0770478-4F5F-4CAC-A175-C54B9927AA59}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{1DFE67C8-5DDE-4AF4-9DAC-03A6872810CD}C:\program files (x86)\overwatch test\overwatch.exe] => (Allow) C:\program files (x86)\overwatch test\overwatch.exe => No File FirewallRules: [TCP Query User{16D1CEA6-AF39-4D94-AE9E-95954A719DB6}C:\program files (x86)\overwatch test\overwatch.exe] => (Allow) C:\program files (x86)\overwatch test\overwatch.exe => No File FirewallRules: [{1BBCA5D9-B423-4C85-BD99-E1FCB89A7D50}] => (Allow) C:\Users\Megaport\AppData\Roaming\uTorrent Web\utweb.exe (Jenkins Win Client Build CA -> BitTorrent Inc.) [File not signed] FirewallRules: [{EB219125-B131-424F-AFF3-AF1399D3BC11}] => (Allow) C:\Users\Megaport\AppData\Roaming\uTorrent Web\utweb.exe (Jenkins Win Client Build CA -> BitTorrent Inc.) [File not signed] FirewallRules: [UDP Query User{A57B1F90-65CA-433A-96E0-6BFED6DB4EFD}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe => No File FirewallRules: [TCP Query User{312603F7-B532-407C-BB42-C7EDFC011EFB}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe => No File FirewallRules: [{9F101B75-37ED-433E-A104-E833AE195227}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{9672EBF1-D74B-4704-B2B3-61059642CB89}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [UDP Query User{A3E87259-B4B9-4F4C-8E26-ADC302885F35}C:\program files (x86)\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\paladins\binaries\win64\paladins.exe => No File FirewallRules: [TCP Query User{221050DC-1AC7-40E9-8E96-F2B979F29D75}C:\program files (x86)\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\paladins\binaries\win64\paladins.exe => No File FirewallRules: [{2DA749BE-249E-4EDA-93D8-8FBD3D5BBCB6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Paladins\Binaries\Win32\HirezBridge.exe => No File FirewallRules: [{7552197C-9F37-428D-90EC-9C7DD2588ACA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Paladins\Binaries\Win32\HirezBridge.exe => No File FirewallRules: [{F5E3718F-7FB8-4EE7-8764-C5962B69452A}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe (Electronic Arts, Inc. -> BioWare) FirewallRules: [{EFC730FF-B71C-4646-9296-2B638CAD8319}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe (Electronic Arts, Inc. -> BioWare) FirewallRules: [{E088DA0C-7871-4C88-95AC-9068ADED4F78}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe (Electronic Arts, Inc. -> BioWare) FirewallRules: [{26168F2E-4486-40D9-A891-AF997EC7B79F}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe (Electronic Arts, Inc. -> BioWare) FirewallRules: [UDP Query User{933CEB5D-1A40-49D5-AABD-B763144E44CD}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe => No File FirewallRules: [TCP Query User{F74FC8A2-2D11-4D7B-BE1D-72E967BAA9B1}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe => No File FirewallRules: [{8B78B5D2-E35A-4F66-B594-B86095AC012C}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File FirewallRules: [{EA663E14-1726-4269-9D06-A1C1D23D48AC}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File FirewallRules: [UDP Query User{1BB10E61-9A8E-4597-B6C8-2A94747F11FA}C:\users\megaport\appdata\local\crossout\launcher.exe] => (Allow) C:\users\megaport\appdata\local\crossout\launcher.exe (Gaijin Network LTD -> Gaijin Entertainment) FirewallRules: [TCP Query User{BA2F8A19-5F5F-405F-82D1-86107D5C77C2}C:\users\megaport\appdata\local\crossout\launcher.exe] => (Allow) C:\users\megaport\appdata\local\crossout\launcher.exe (Gaijin Network LTD -> Gaijin Entertainment) FirewallRules: [{B702155A-B05D-4F32-A81C-469BA6A4E4F5}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{FE3794E0-8A51-4C89-A0E0-B0A215FBE1E7}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{182EFD16-1B0E-4A07-9F6D-15FB6AF1F1B9}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{185F5C30-2F6A-4BA5-9C6E-C9A008DC8628}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [TCP Query User{BCC08D5C-9AC1-4BF7-ACD3-92894B694060}C:\users\megaport\appdata\local\temp\rar$exa2940.44006\codex\swgame\binaries\win64\starwarsjedifallenorder.exe] => (Allow) C:\users\megaport\appdata\local\temp\rar$exa2940.44006\codex\swgame\binaries\win64\starwarsjedifallenorder.exe => No File FirewallRules: [UDP Query User{02582D96-5303-430B-9A01-3A84357078BC}C:\users\megaport\appdata\local\temp\rar$exa2940.44006\codex\swgame\binaries\win64\starwarsjedifallenorder.exe] => (Allow) C:\users\megaport\appdata\local\temp\rar$exa2940.44006\codex\swgame\binaries\win64\starwarsjedifallenorder.exe => No File FirewallRules: [TCP Query User{BEC0FD75-0C77-4D02-82FB-1DB9CC67DEEB}C:\users\megaport\appdata\local\temp\rar$exa2940.49549\codex\swgame\binaries\win64\starwarsjedifallenorder.exe] => (Allow) C:\users\megaport\appdata\local\temp\rar$exa2940.49549\codex\swgame\binaries\win64\starwarsjedifallenorder.exe => No File FirewallRules: [UDP Query User{01533E24-63FA-44C3-B320-BC57A004CBDD}C:\users\megaport\appdata\local\temp\rar$exa2940.49549\codex\swgame\binaries\win64\starwarsjedifallenorder.exe] => (Allow) C:\users\megaport\appdata\local\temp\rar$exa2940.49549\codex\swgame\binaries\win64\starwarsjedifallenorder.exe => No File FirewallRules: [TCP Query User{E2A4FB40-F220-4126-9F64-C1AED88C1D3B}C:\users\megaport\appdata\local\temp\rar$exa5776.10345\codex\swgame\binaries\win64\starwarsjedifallenorder.exe] => (Allow) C:\users\megaport\appdata\local\temp\rar$exa5776.10345\codex\swgame\binaries\win64\starwarsjedifallenorder.exe => No File FirewallRules: [UDP Query User{F7240FF5-666F-460C-BC87-E0B6858BB3BF}C:\users\megaport\appdata\local\temp\rar$exa5776.10345\codex\swgame\binaries\win64\starwarsjedifallenorder.exe] => (Allow) C:\users\megaport\appdata\local\temp\rar$exa5776.10345\codex\swgame\binaries\win64\starwarsjedifallenorder.exe => No File FirewallRules: [TCP Query User{89FB7012-9430-44CD-8129-188E23D6475F}C:\users\megaport\appdata\local\temp\rar$exa5776.19429\codex\swgame\binaries\win64\starwarsjedifallenorder.exe] => (Allow) C:\users\megaport\appdata\local\temp\rar$exa5776.19429\codex\swgame\binaries\win64\starwarsjedifallenorder.exe => No File FirewallRules: [UDP Query User{5ACE1580-D05C-473B-8A9A-D4E8D3AE66DA}C:\users\megaport\appdata\local\temp\rar$exa5776.19429\codex\swgame\binaries\win64\starwarsjedifallenorder.exe] => (Allow) C:\users\megaport\appdata\local\temp\rar$exa5776.19429\codex\swgame\binaries\win64\starwarsjedifallenorder.exe => No File FirewallRules: [{3DCEEB1C-D2BE-4170-884D-0095066AE4BA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Deceit\bin\win_x64\Deceit.exe => No File FirewallRules: [{876BC2BA-61F2-45F3-8CD9-F30EA220140D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Deceit\bin\win_x64\Deceit.exe => No File FirewallRules: [TCP Query User{DB93BE89-6367-4796-A998-0388419530DB}C:\program files\epic games\borderlands3\oakgame\binaries\win64\borderlands3.exe] => (Allow) C:\program files\epic games\borderlands3\oakgame\binaries\win64\borderlands3.exe => No File FirewallRules: [UDP Query User{C56A0CE1-AF35-4531-8A10-82C5CC541753}C:\program files\epic games\borderlands3\oakgame\binaries\win64\borderlands3.exe] => (Allow) C:\program files\epic games\borderlands3\oakgame\binaries\win64\borderlands3.exe => No File FirewallRules: [TCP Query User{1C5BE870-5F49-402D-BF30-5F3DEBC4B263}C:\program files\epic games\batmanarkhamasylum\binaries\shippingpc-bmgame.exe] => (Allow) C:\program files\epic games\batmanarkhamasylum\binaries\shippingpc-bmgame.exe => No File FirewallRules: [UDP Query User{29BD9DD9-D0D5-4243-AF7A-2F95E3B4D19E}C:\program files\epic games\batmanarkhamasylum\binaries\shippingpc-bmgame.exe] => (Allow) C:\program files\epic games\batmanarkhamasylum\binaries\shippingpc-bmgame.exe => No File FirewallRules: [{8253151D-0721-429F-BEEF-A265220FAB5D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{C3837BC1-10D4-4C98-965A-59E772A0BCF0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{7350FDE4-0621-4BB0-AFDD-6379169C7F20}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{F4E56533-D6D3-419C-AD57-7F160A624EA9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [TCP Query User{2FD7F60C-AB15-4559-B156-7692B9C59C5A}C:\program files (x86)\call of duty modern warfare\modernwarfare.exe] => (Allow) C:\program files (x86)\call of duty modern warfare\modernwarfare.exe (Activision Publishing Inc -> Activision) FirewallRules: [UDP Query User{A82A56B6-33E1-496D-94FA-E8DC12FEB1AD}C:\program files (x86)\call of duty modern warfare\modernwarfare.exe] => (Allow) C:\program files (x86)\call of duty modern warfare\modernwarfare.exe (Activision Publishing Inc -> Activision) FirewallRules: [TCP Query User{0D0321AC-6D86-462A-824B-1F0020DBF9F0}C:\users\megaport\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\megaport\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [UDP Query User{2AACBC84-86F7-41ED-8DFA-38665322130F}C:\users\megaport\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\megaport\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{D4259FB6-4B3B-43F1-88EA-548E2189D201}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Main Assembly Beta\MainAssembly.exe (Epic Games, Inc.) [File not signed] FirewallRules: [{C248F1DD-1C6B-49FA-838C-1A2205979809}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Main Assembly Beta\MainAssembly.exe (Epic Games, Inc.) [File not signed] FirewallRules: [TCP Query User{57DB780D-907A-463A-9477-B24DA4E22294}C:\program files (x86)\steam\steamapps\common\main assembly beta\robobuild\binaries\win64\robobuild-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\main assembly beta\robobuild\binaries\win64\robobuild-win64-shipping.exe (Bad Yolk) [File not signed] FirewallRules: [UDP Query User{92271A73-D06D-454D-B48D-3F93FD479772}C:\program files (x86)\steam\steamapps\common\main assembly beta\robobuild\binaries\win64\robobuild-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\main assembly beta\robobuild\binaries\win64\robobuild-win64-shipping.exe (Bad Yolk) [File not signed] FirewallRules: [TCP Query User{8308DF12-5666-4677-A9E7-D4534C50A9FC}C:\users\megaport\appdata\local\programs\opera gx\67.0.3575.130\opera.exe] => (Allow) C:\users\megaport\appdata\local\programs\opera gx\67.0.3575.130\opera.exe => No File FirewallRules: [UDP Query User{8ADC5722-F883-4B1A-966B-A310C3A84D71}C:\users\megaport\appdata\local\programs\opera gx\67.0.3575.130\opera.exe] => (Allow) C:\users\megaport\appdata\local\programs\opera gx\67.0.3575.130\opera.exe => No File FirewallRules: [{93055B37-27E7-46A5-88BE-75592A8526F0}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12107.3.48019.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{EEC9E6D2-1F3C-4600-90FA-CD8E220C030D}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12107.3.48019.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{0BB79B85-EED6-49FC-AA70-3B5F5EA94121}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12107.3.48019.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{FC35E098-4BFC-4FF2-A1B6-63897A1CD1F3}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12107.3.48019.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{1D044C70-B297-45B0-ABE0-6134C03C7A4B}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12107.3.48019.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{E0D77592-2082-43E6-908C-D90E95583224}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12107.3.48019.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{9D5E0560-704E-470D-86AB-6BFD8F70A7DC}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12107.3.48019.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{E697911F-4C5E-4522-A792-A5A05E150ABF}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12107.3.48019.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.) FirewallRules: [TCP Query User{6886673A-DC6A-4D2D-B742-6030A6B065D3}C:\users\megaport\appdata\local\programs\opera gx\68.0.3618.142\opera.exe] => (Allow) C:\users\megaport\appdata\local\programs\opera gx\68.0.3618.142\opera.exe => No File FirewallRules: [UDP Query User{614D4703-A5D3-479D-B8F5-2CDE31E99C88}C:\users\megaport\appdata\local\programs\opera gx\68.0.3618.142\opera.exe] => (Allow) C:\users\megaport\appdata\local\programs\opera gx\68.0.3618.142\opera.exe => No File FirewallRules: [{125045F6-B0B1-46DE-B7BA-EC9818ACDADA}] => (Allow) C:\Program Files\Epic Games\TheCycleEarlyAccess\Prospect\Binaries\Win64\Prospect-Win64-Shipping.exe => No File FirewallRules: [{4FC3279B-9F82-49E7-8337-134718280013}] => (Allow) C:\Program Files\Epic Games\TheCycleEarlyAccess\Prospect\Binaries\Win64\Prospect-Win64-Shipping.exe => No File FirewallRules: [{8C1641E9-E5EB-4376-83F5-3B3895D0E900}] => (Allow) C:\Program Files\Epic Games\TheCycleEarlyAccess\Prospect\Binaries\Win64\Prospect-Win64-Shipping.exe => No File FirewallRules: [{D98C8009-C3F0-4B52-A733-2869E0DADA0C}] => (Allow) C:\Program Files\Epic Games\TheCycleEarlyAccess\Prospect\Binaries\Win64\Prospect-Win64-Shipping.exe => No File FirewallRules: [TCP Query User{75D3AC44-0222-43DE-82F8-774723DA9159}C:\program files\epic games\thecycleearlyaccess\prospect\binaries\win64\prospect-win64-shipping.exe] => (Allow) C:\program files\epic games\thecycleearlyaccess\prospect\binaries\win64\prospect-win64-shipping.exe => No File FirewallRules: [UDP Query User{10A7E130-8547-4408-9B14-207B3A8112B3}C:\program files\epic games\thecycleearlyaccess\prospect\binaries\win64\prospect-win64-shipping.exe] => (Allow) C:\program files\epic games\thecycleearlyaccess\prospect\binaries\win64\prospect-win64-shipping.exe => No File FirewallRules: [TCP Query User{4E1939DC-38D3-469A-9056-2990E5B4C162}C:\program files (x86)\ubisoft\ubisoft game launcher\games\hyperscape\hyperscape.exe] => (Block) C:\program files (x86)\ubisoft\ubisoft game launcher\games\hyperscape\hyperscape.exe (UBISOFT ENTERTAINMENT INC. -> ) FirewallRules: [UDP Query User{CD6A0F56-F0B1-4169-84C2-B368941D222F}C:\program files (x86)\ubisoft\ubisoft game launcher\games\hyperscape\hyperscape.exe] => (Block) C:\program files (x86)\ubisoft\ubisoft game launcher\games\hyperscape\hyperscape.exe (UBISOFT ENTERTAINMENT INC. -> ) FirewallRules: [{82516BEC-945A-476D-8809-90CB0B0D802F}] => (Allow) C:\Program Files (x86)\Origin Games\Titanfall2\Titanfall2.exe (Respawn Entertainment, LLC -> Respawn Entertainment) FirewallRules: [{4703A5C1-D8F0-40BF-ACCA-F021441FBE4C}] => (Allow) C:\Program Files (x86)\Origin Games\Titanfall2\Titanfall2.exe (Respawn Entertainment, LLC -> Respawn Entertainment) FirewallRules: [{FDE8D371-D0B0-41BD-AEFC-4FC74DB880C8}] => (Allow) C:\Program Files (x86)\Origin Games\Titanfall2\Titanfall2_trial.exe (Respawn Entertainment, LLC -> Respawn Entertainment) FirewallRules: [{263148C8-80B5-4A25-AB34-71C0F82F1C90}] => (Allow) C:\Program Files (x86)\Origin Games\Titanfall2\Titanfall2_trial.exe (Respawn Entertainment, LLC -> Respawn Entertainment) FirewallRules: [{311FE089-A895-4D32-80AC-917245565907}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{D998EAB4-D5D3-40E7-B20D-9F0D8FBECF3A}] => (Allow) C:\Users\Megaport\Desktop\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{B068856F-33E9-4A8D-8FE9-A3B87825E959}] => (Allow) C:\Users\Megaport\Desktop\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{0CF8FA3F-E453-4671-AA84-EE69CCA97AE6}] => (Allow) C:\WINDOWS\system32\winrmsrv.exe (Microsoft Corporation) [File not signed] ==================== Restore Points ========================= 24-08-2020 15:46:41 Scheduled Checkpoint ==================== Faulty Device Manager Devices ============ ==================== Event log errors: ======================== Application errors: ================== Error: (08/28/2020 09:39:11 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme Discord.exe version 0.0.307.0 a cessé d'interagir avec Windows et a été fermé. Pour voir si plus d'informations sur le problème sont disponibles, vérifiez l'historique des problèmes dans le Panneau de configuration Sécurité et maintenance. ID de processus : 29d0 Heure de début : 01d67cd3fd3d046b Heure d'arrêt : 4294967295 Chemin d'accès à l'application : C:\Users\Megaport\AppData\Local\Discord\app-0.0.307\Discord.exe ID de rapport : de7e5e32-3fa6-44cf-b69d-3f46102a0c6e Nom complet du package défectueux : ID de l'application relative à un package défectueux : Type de blocage : Top level window is idle Error: (08/28/2020 09:10:07 AM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (9616,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (08/28/2020 08:48:24 AM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (9500,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (08/28/2020 08:42:09 AM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (12604,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (08/28/2020 08:28:25 AM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (8068,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (08/28/2020 08:15:55 AM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (3216,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (08/28/2020 07:47:02 AM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (3560,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (08/28/2020 07:28:45 AM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (14060,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. System errors: ============= Error: (08/28/2020 09:51:28 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Le service wuauserv s’est arrêté avec l’erreur : Le fichier spécifié est introuvable. Error: (08/28/2020 09:51:28 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY) Description: Le serveur {E60687F7-01A1-40AA-86AC-DB1CBF673334} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (08/28/2020 09:49:28 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Le service wuauserv s’est arrêté avec l’erreur : Le fichier spécifié est introuvable. Error: (08/28/2020 09:45:22 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-Q0H09QF) Description: Le serveur {E60687F7-01A1-40AA-86AC-DB1CBF673334} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (08/28/2020 09:43:22 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Le service wuauserv s’est arrêté avec l’erreur : Le fichier spécifié est introuvable. Error: (08/28/2020 09:43:05 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-Q0H09QF) Description: Le serveur {E60687F7-01A1-40AA-86AC-DB1CBF673334} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (08/28/2020 09:41:05 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Le service wuauserv s’est arrêté avec l’erreur : Le fichier spécifié est introuvable. Error: (08/28/2020 09:41:05 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-Q0H09QF) Description: Le serveur {E60687F7-01A1-40AA-86AC-DB1CBF673334} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Windows Defender: =================================== Date: 2020-04-12 15:45:26.042 Description: L’analyse Antivirus Windows Defender a été arrêtée avant la fin. ID de l’analyse : {244C9049-2416-474C-9CFA-5A45C0F1E30E} Type de l’analyse : Logiciel anti-programme malveillant Paramètres de l’analyse : Analyse rapide Utilisateur : NT AUTHORITY\SYSTEM Date: 2020-06-15 17:09:32.975 Description: La fonctionnalité de protection en temps réel Antivirus Windows Defender a rencontré une erreur et échoué. Fonctionnalité : Sur accès Code d’erreur : 0x8007043c Description de l’erreur : This service cannot be started in Safe Mode Raison : La veille de sécurité contre les logiciels malveillants a cessé de fonctionner pour une raison inconnue. Dans certains cas, le redémarrage du service peut résoudre le problème. Date: 2020-06-14 22:48:48.413 Description: La fonctionnalité de protection en temps réel Antivirus Windows Defender a rencontré une erreur et échoué. Fonctionnalité : Analyse du comportement Code d’erreur : 0x80004005 Description de l’erreur : Unspecified error Raison : Le pilote de filtre nécessite un moteur à jour pour fonctionner. Vous devez installer les dernières mises à jour de veille de sécurité afin d’activer la protection en temps réel. Date: 2020-06-14 18:46:33.941 Description: La fonctionnalité de protection en temps réel Antivirus Windows Defender a rencontré une erreur et échoué. Fonctionnalité : Analyse du comportement Code d’erreur : 0x80004005 Description de l’erreur : Unspecified error Raison : Le pilote de filtre nécessite un moteur à jour pour fonctionner. Vous devez installer les dernières mises à jour de veille de sécurité afin d’activer la protection en temps réel. Date: 2020-06-10 19:32:26.790 Description: La fonctionnalité de protection en temps réel Antivirus Windows Defender a rencontré une erreur et échoué. Fonctionnalité : Analyse du comportement Code d’erreur : 0x80004005 Description de l’erreur : Unspecified error Raison : Le pilote de filtre nécessite un moteur à jour pour fonctionner. Vous devez installer les dernières mises à jour de veille de sécurité afin d’activer la protection en temps réel. Date: 2020-06-10 18:04:09.384 Description: La fonctionnalité de protection en temps réel Antivirus Windows Defender a rencontré une erreur et échoué. Fonctionnalité : Analyse du comportement Code d’erreur : 0x80004005 Description de l’erreur : Unspecified error Raison : Le pilote de filtre nécessite un moteur à jour pour fonctionner. Vous devez installer les dernières mises à jour de veille de sécurité afin d’activer la protection en temps réel. CodeIntegrity: =================================== Date: 2020-06-15 17:09:35.993 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. Date: 2020-06-15 17:09:35.952 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. Date: 2020-06-15 17:09:35.900 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. Date: 2020-06-15 16:48:36.486 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements. Date: 2020-06-15 16:32:28.380 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements. Date: 2020-06-15 16:32:28.365 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements. Date: 2020-06-15 16:32:27.995 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswhook.dll that did not meet the Microsoft signing level requirements. Date: 2020-06-15 16:32:27.990 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\snxhk.dll that did not meet the Microsoft signing level requirements. ==================== Memory info =========================== BIOS: American Megatrends Inc. 1401 05/05/2016 Motherboard: ASUSTeK Computer INC. M5A78L-M LX3 Processor: AMD FX(tm)-6300 Six-Core Processor Percentage of memory in use: 44% Total physical RAM: 8174.11 MB Available physical RAM: 4544.35 MB Total Virtual: 15598.11 MB Available Virtual: 9929.08 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:930.47 GB) (Free:68.8 GB) NTFS Drive e: () (RAMDisk) (Total:930.47 GB) (Free:69.11 GB) NTFS \\?\Volume{f9d545f6-0000-0000-0000-100000000000}\ (System Reserved) (Fixed) (Total:0.54 GB) (Free:0.5 GB) NTFS \\?\Volume{f9d545f6-0000-0000-0000-a0c0e8000000}\ () (Fixed) (Total:0.5 GB) (Free:0.08 GB) NTFS ==================== MBR & Partition Table ==================== ========================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: F9D545F6) Partition 1: (Active) - (Size=549 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=930.5 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=514 MB) - (Type=27) ==================== End of Addition.txt =======================