Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-12-2021
Ran by Martin (06-12-2021 18:27:34)
Running from C:\Users\marti\Desktop
Microsoft Windows 10 Pro Version 20H2 19042.1348 (X64) (2020-11-27 13:01:51)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-3257028437-1245432346-1761199567-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3257028437-1245432346-1761199567-503 - Limited - Disabled)
Guest (S-1-5-21-3257028437-1245432346-1761199567-501 - Limited - Disabled)
Martin (S-1-5-21-3257028437-1245432346-1761199567-1001 - Administrator - Enabled) => C:\Users\marti
WDAGUtilityAccount (S-1-5-21-3257028437-1245432346-1761199567-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

A Way Out (HKLM-x32\...\{E8D752CF-2FCC-470D-B0C5-4BFC6F42ACCE}) (Version: 1.0.62.0 - Electronic Arts, Inc.)
Adobe Photoshop 2021 (HKLM-x32\...\PHSP_22_0) (Version: 22.0.0.35 - Adobe Inc.)
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 2.11.26.106 - Advanced Micro Devices, Inc.)
AMD_Chipset_Drivers (HKLM-x32\...\{ac726f18-c961-4fa1-a46d-6f0c644cd12b}) (Version: 2.11.26.106 - Advanced Micro Devices, Inc.) Hidden
Apex Legends (HKLM-x32\...\{D7FBF176-382D-484E-863A-DFD1124A2A1C}) (Version: 1.0.7.9 - Electronic Arts, Inc.)
Assassin's Creed Valhalla (HKLM-x32\...\Uplay Install 13504) (Version:  - Ubisoft)
Audacity 2.4.2 (HKLM-x32\...\Audacity_is1) (Version: 2.4.2 - Audacity Team)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Battlefield™ 2042 (HKLM-x32\...\{45e281f3-1414-47ea-bb64-4f50d50121f3}) (Version: 1.0.71.3671 - Electronic Arts)
Battlestate Games Launcher 12.11.0.1747 (HKLM-x32\...\{B0FDA062-7581-4D67-B085-C4E7C358037F}_is1) (Version: 12.11.0.1747 - Battlestate Games)
Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 96.1.32.113 - Autori prehliadača Brave)
Counter-Strike 1.6 v43g (HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\Counter-Strike 1.6_is1) (Version:  - Valve)
CPUID CPU-Z 1.97 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.97 - CPUID, Inc.)
ČEŠTINA A WAY OUT v 0.9 (HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\ČEŠTINA A WAY OUT v 0.9) (Version:  - )
Discord (HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\Discord) (Version: 0.0.309 - Discord Inc.)
Discord PTB (HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\DiscordPTB) (Version: 1.0.1010 - Discord Inc.)
Enlisted Launcher 1.0.3.76 (HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\{5fcad5a5-d0d8-4edf-a5ba-040b397eac31}}_is1) (Version:  - Gaijin Network)
Epic Games Launcher (HKLM-x32\...\{FEF3A9BA-A962-4469-AD62-04839D4BB847}) (Version: 1.1.298.0 - Epic Games, Inc.)
Epic Online Services (HKLM-x32\...\{67EB0062-C490-4CFA-B39E-67FBEC5C2215}) (Version: 2.0.31.0 - Epic Games, Inc.)
Escape from Tarkov (HKLM-x32\...\EscapeFromTarkov) (Version: 0.12.11.7.15680 - Battlestate Games)
Esportal Client (HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\Esportal Client Installer) (Version:  - Esportal)
Excel (HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\1fc5b090eab9aa41f8a2f5987367e6da) (Version: 1.0 - Excel)
FACEIT (HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\FACEIT) (Version: 1.31.5 - FACEIT Ltd.)
FACEIT Anti-Cheat (HKLM\...\{1419E44C-0EF4-4822-9194-9F1A4D43973D}_is1) (Version: 2.0 - FACEIT LTD)
FIFA 22 (HKLM-x32\...\{67F7ABF6-2557-4756-923A-AB99086B1490}) (Version: 1.0.72.35303 - Electronic Arts)
FiveM (HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\CitizenFX_FiveM) (Version:  - Cfx.re)
FL Studio 20 (HKLM-x32\...\FL Studio 20) (Version:  - Image-Line)
FL Studio ASIO (HKLM-x32\...\FL Studio ASIO) (Version:  - Image-Line)
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.101.0 - Google LLC) Hidden
i-Menu version 4.3.6 (HKLM-x32\...\{0121C0BD-363C-4B1D-8B64-FE7681A37D0A}_is1) (Version: 4.3.6 - AOC)
Java 8 Update 291 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180291F0}) (Version: 8.0.2910.10 - Oracle Corporation)
Jump King (HKLM-x32\...\1644859307_is1) (Version: g1.06(2021-01-22) - GOG.com)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\Riot Game league_of_legends.live) (Version:  - Riot Games, Inc)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 96.0.1054.43 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 96.0.1054.43 - Microsoft Corporation)
Microsoft Office 2019 Professional Plus - sk-sk (HKLM\...\ProPlus2019Volume - sk-sk) (Version: 16.0.14527.20276 - Microsoft Corporation)
Microsoft Office Professional Plus 2019 - cs-cz (HKLM\...\ProPlus2019Volume - cs-cz) (Version: 16.0.14527.20276 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\Teams) (Version: 1.4.00.16575 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{29B15818-E79F-4AB0-8938-9410C807AD76}) (Version: 2.84.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.29.30133 (HKLM-x32\...\{295d1583-fdb9-414b-a4c8-da539362a26b}) (Version: 14.29.30133.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.29.30133 (HKLM-x32\...\{38b2c744-ad08-4d5b-91a2-3fb6f739ff3e}) (Version: 14.29.30133.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 5.0.12 (x64) (HKLM-x32\...\{ce8037d8-35f7-4142-ad18-23609ac5db17}) (Version: 5.0.12.30623 - Microsoft Corporation)
MPC-HC 1.7.13 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.13 - MPC-HC Team)
NBA 2K Playgrounds 2 All Star (HKLM-x32\...\NBA 2K Playgrounds 2 All Star_is1) (Version:  - )
Nefarius Virtual Gamepad Emulation Bus Driver (HKLM\...\{93D91F60-7C94-4A79-863F-EA713D2EB3F3}) (Version: 1.17.333.0 - Nefarius Software Solutions e.U.)
NVIDIA FrameView SDK 1.2.4999.30397803 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.2.4999.30397803 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.24.0.123 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.24.0.123 - NVIDIA Corporation)
NVIDIA Grafický ovládač 497.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 497.09 - NVIDIA Corporation)
NVIDIA Ovládač zvuku HD 1.3.38.94 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.94 - NVIDIA Corporation)
NVIDIA Softvér systému s podporou technológie PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
NVIDIA USBC Driver 1.46.831.832 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_USBC) (Version: 1.46.831.832 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.14527.20276 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.14527.20276 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.14131.20278 - Microsoft Corporation) Hidden
Origin (HKLM-x32\...\Origin) (Version: 10.5.107.49426 - Electronic Arts, Inc.)
Outlook (HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\6b0f23e57a39ebfbf2814acb1a24293d) (Version: 1.0 - Outlook)
PowerPoint (HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\319814cb56b667dff88f54e08be8f51f) (Version: 1.0 - PowerPoint)
Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 2.0.1.0 - Advanced Micro Devices, Inc.) Hidden
qBittorrent 4.3.1 (HKLM-x32\...\qBittorrent) (Version: 4.3.1 - The qBittorrent project)
Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8955.1 - Realtek Semiconductor Corp.)
Riot Vanguard (HKLM\...\Riot Vanguard) (Version:  - Riot Games, Inc.)
Roblox Player for Martin (HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\roblox-player) (Version:  - Roblox Corporation)
Roblox Studio for Martin (HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\roblox-studio) (Version:  - Roblox Corporation)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.46.448 - Rockstar Games)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.0.9.0 - Rockstar Games)
Screen+ version Screen+ 1.4.2 (HKLM\...\Screen+_is1) (Version: Screen+ 1.4.2 - AOC)
Sekiro: Shadows Die Twice (HKLM-x32\...\Sekiro: Shadows Die Twice_is1) (Version:  - )
Sherlock Holmes Chapter One (HKLM-x32\...\Sherlock Holmes Chapter One_is1) (Version:  - )
Snap Camera 1.11.0 (HKLM-x32\...\{024A6CF5-627D-497F-980B-B9A6EC5C40AF}_is1) (Version: 1.11.0 - Snap Inc.)
SPC Gear VIRO Plus (HKLM-x32\...\SSS16xxAudioExt) (Version: 3.42.2019.1030 - SPC Gear)
Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
SteelSeries GG 11.2.0 (HKLM\...\SteelSeries GG) (Version: 11.2.0 - SteelSeries ApS)
Streamlabs OBS 1.2.0 (HKLM\...\029c4619-0385-5543-9426-46f9987161d9) (Version: 1.2.0 - General Workings, Inc.)
TAP-Windows 9.24.2 (HKLM\...\TAP-Windows) (Version: 9.24.2 - OpenVPN Technologies, Inc.)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.5.5 - TeamSpeak Systems GmbH)
Telegram Desktop version 3.2.5 (HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 3.2.5 - Telegram FZ-LLC)
The Sims 4 v. 1.68.154.1020 (HKLM-x32\...\The Sims 4_is1) (Version:  - )
TLauncher (HKLM-x32\...\TLauncher2.8) (Version: 2.8 - TLauncher Inc.)
Tom Clancy's Rainbow Six Siege RUS (HKLM-x32\...\Uplay Install 1842) (Version:  - Ubisoft Montreal)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 117.0.10324 - Ubisoft)
UE4 Prerequisites (x64) (HKLM\...\{D7B591D8-1091-4A00-A0B3-5301C45E5D51}) (Version: 1.0.14.0 - Epic Games, Inc.) Hidden
UE4 Prerequisites (x64) (HKLM-x32\...\{0d995f46-317b-4b5f-bf3e-9f98bae9d339}) (Version: 1.0.14.0 - Epic Games, Inc.) Hidden
UrbanVPN (HKLM\...\{6109A611-488D-407B-AA65-0FF765E6CA9C}) (Version: 2.2.4 - Urban Security) Hidden
UrbanVPN (HKLM\...\UrbanVPN 2.2.4) (Version: 2.2.4 - Urban Security)
WinRAR 6.00 beta 2 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.00.2 - win.rar GmbH)
ZeroTier One Virtual Network Port (HKLM\...\{272B1192-65BE-4BDE-894B-6D3AD8BF7FD2}) (Version: 1.0.1 - ZeroTier) Hidden
Zoom (HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\ZoomUMX) (Version: 5.4.6 (59296.1207) - Zoom Video Communications, Inc.)

Packages:
=========
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.10.188.0_x64__rz1tebttyb220 [2021-10-15] (Dolby Laboratories)
Doplnok mediálneho nástroja pre Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2021-02-09] (Microsoft Corporation)
Doplnok pre Fotografie -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2021-05-17] (Microsoft Corporation)
EarTrumpet -> C:\Program Files\WindowsApps\40459File-New-Project.EarTrumpet_2.1.9.0_x86__1sdd7yawvg6ne [2021-10-06] (File-New-Project) [Startup Task]
iTunes -> C:\Program Files\WindowsApps\AppleInc.iTunes_12122.2.54019.0_x64__nzyj5cx40ttqa [2021-10-30] (Apple Inc.) [Startup Task]
Microsoft Jigsaw -> C:\Program Files\WindowsApps\Microsoft.MicrosoftJigsaw_2.1.7200.0_x86__8wekyb3d8bbwe [2021-02-26] (Microsoft Studios) [MS Ad]
Microsoft Minesweeper -> C:\Program Files\WindowsApps\Microsoft.MicrosoftMinesweeper_3.1.9160.0_x86__8wekyb3d8bbwe [2021-02-08] (Microsoft Studios) [MS Ad]
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_51.10913.5796.0_x64__8wekyb3d8bbwe [2021-12-01] (Microsoft Corporation)
ModernFlyouts (Preview) -> C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg [2021-11-25] (Sam G) [Startup Task]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.961.0_x64__56jybvy8sckqj [2021-12-02] (NVIDIA Corp.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.12.219.0_x64__dt26b99r8h8gj [2021-10-19] (Realtek Semiconductor Corp)
Roblox -> C:\Program Files\WindowsApps\ROBLOXCORPORATION.ROBLOX_2.505.418.0_x86__55nm5eh3cm0pr [2021-12-04] (ROBLOX Corporation)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.173.517.0_x86__zpdnekdrzrea0 [2021-11-27] (Spotify AB) [Startup Task]
TranslucentTB -> C:\Program Files\WindowsApps\28017CharlesMilette.TranslucentTB_2021.5.0.0_x64__v826wp6bftszj [2021-11-18] (Charles Milette) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3257028437-1245432346-1761199567-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\marti\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.21063.3\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-11-12] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-11-12] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_642e50d7b66aa2a4\nvshext.dll [2021-11-27] (Nvidia Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-11-12] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-11-12] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Excel.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) ->  --profile-directory=Default --app-id=leffmjdabcgaflkikcefahmlgpodjkdm
ShortcutWithArgument: C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Outlook.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) ->  --profile-directory=Default --app-id=bjhmmnoficofgoiacjaajpkfndojknpb
ShortcutWithArgument: C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) ->  --profile-directory=Default --app-id=opfacbhaojodjaojgocnibmklknchehf

==================== Loaded Modules (Whitelisted) =============

2021-09-09 21:04 - 2021-09-09 21:04 - 000488448 _____ () [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\DirectWriteForwarder.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000124928 _____ () [File not signed] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\dxgi.dll
2020-11-29 07:19 - 2020-11-29 07:19 - 001265664 _____ () [File not signed] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\e_sqlite3.DLL
2021-09-09 21:04 - 2021-09-09 21:05 - 001945088 _____ () [File not signed] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\wpfgfx_cor3.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000030208 _____ (ADeltaX) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\NPSMLib.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000014848 _____ (hardcodet.net) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\H.NotifyIcon.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000037376 _____ (hardcodet.net) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\Hardcodet.Wpf.TaskbarNotification.dll
2021-07-27 15:36 - 2021-07-27 15:36 - 002146304 _____ (Holtek Semiconductor Inc.) [File not signed] C:\Program Files\SteelSeries\GG\HIDDLL.dll
2021-07-27 15:36 - 2021-07-27 15:36 - 002284032 _____ (Holtek) [File not signed] C:\Program Files\SteelSeries\GG\ISPDLL.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000167424 _____ (Mark Heath) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\NAudio.Wasapi.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000014336 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\Microsoft.Win32.Primitives.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000046080 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\Microsoft.Win32.Registry.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000044544 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\Microsoft.Win32.SystemEvents.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000048128 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\mscorlib.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000090624 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\netstandard.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 008577536 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\PresentationCore.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000441856 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\PresentationFramework.Aero2.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 015841792 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\PresentationFramework.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000013312 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\PresentationFramework-SystemXml.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000005120 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Buffers.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000235008 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Collections.Concurrent.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000261632 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Collections.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000090624 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Collections.NonGeneric.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000083968 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Collections.Specialized.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000008192 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.ComponentModel.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000027648 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.ComponentModel.EventBasedAsync.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000054784 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.ComponentModel.Primitives.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000724480 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.ComponentModel.TypeConverter.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000964608 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Configuration.ConfigurationManager.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 002912256 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Data.Common.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000005632 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Diagnostics.Debug.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000185344 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Diagnostics.DiagnosticSource.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000022016 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Diagnostics.FileVersionInfo.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000276992 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Diagnostics.Process.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000118784 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Diagnostics.TraceSource.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000006144 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Diagnostics.Tracing.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000435712 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Drawing.Common.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000118272 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Drawing.Primitives.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000219136 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.IO.FileSystem.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000266752 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.IO.Packaging.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000126464 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.IO.Pipes.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000517120 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Linq.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 003847680 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Linq.Expressions.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000286720 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Management.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000164864 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Memory.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 001673216 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Net.Http.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000089600 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Net.NameResolution.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000138240 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Net.NetworkInformation.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000200192 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Net.Primitives.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000218624 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Net.Quic.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000334336 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Net.Requests.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000646656 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Net.Security.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000026112 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Net.ServicePoint.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000504320 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Net.Sockets.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000155648 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Net.WebClient.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000050176 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Net.WebHeaderCollection.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000005632 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Numerics.Vectors.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000080896 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.ObjectModel.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 009705984 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Private.CoreLib.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000242688 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Private.Uri.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 008425984 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Private.Xml.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000005632 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Reflection.Emit.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000005632 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Reflection.Emit.ILGeneration.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000005632 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Reflection.Emit.Lightweight.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000005632 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Reflection.Primitives.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000005632 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Resources.ResourceManager.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000012288 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Runtime.CompilerServices.Unsafe.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000009728 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Runtime.CompilerServices.VisualC.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000029696 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Runtime.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000007680 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Runtime.Extensions.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000038912 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Runtime.InteropServices.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000019456 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Runtime.InteropServices.RuntimeInformation.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000198144 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Runtime.Numerics.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000309248 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Runtime.Serialization.Formatters.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000017920 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Runtime.Serialization.Primitives.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000096768 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Security.AccessControl.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000082432 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Security.Claims.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000749568 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Security.Cryptography.Algorithms.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000174592 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Security.Cryptography.Csp.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000083456 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Security.Cryptography.Encoding.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000112128 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Security.Cryptography.Primitives.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000465920 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Security.Cryptography.X509Certificates.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000005632 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Security.Principal.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000074752 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Security.Principal.Windows.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000005632 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Text.Encoding.Extensions.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000527360 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Text.RegularExpressions.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000068608 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Threading.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000005632 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Threading.Overlapped.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000006656 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Threading.Tasks.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000005632 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Threading.Thread.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000005632 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Threading.ThreadPool.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000005120 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Threading.Timer.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000065024 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Windows.Extensions.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 013032960 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Windows.Forms.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 001403392 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Xaml.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000011776 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\System.Xml.ReaderWriter.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000039424 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\UIAutomationProvider.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000269824 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\UIAutomationTypes.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 002179072 _____ (Microsoft Corporation) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\WindowsBase.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 001277952 _____ (Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\clrjit.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 004901888 _____ (Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\coreclr.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000545280 _____ (Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\hostfxr.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000559104 _____ (Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\hostpolicy.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000011264 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\af\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000015360 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\ar\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000011264 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\da-DK\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000011264 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\de\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000014336 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\el\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000010752 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\en-GB\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000012288 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\es\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000012800 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\fa\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000011776 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\fr\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000012288 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\he\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000015360 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\hi\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000013824 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\hu\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000013312 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\id\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000011264 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\is\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000011776 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\it\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000014336 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\ja\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000013824 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\ko\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000128512 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\ModernFlyouts.Core.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000762880 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\ModernFlyouts.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000011264 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\ms\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000011264 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\nb\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000011264 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\nl\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000011264 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\pl\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000011776 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\pt\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000012800 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\ru\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000011264 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\sv\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000013824 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\tr\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000013312 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\uk\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000012288 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\vi\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000011264 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\zh-Hans\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:05 - 000011264 _____ (ModernFlyouts Community) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\zh-Hant\ModernFlyouts.resources.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000913920 _____ (ModernWpf) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\ModernWpf.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000006144 _____ (ModernWpf) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\sk-SK\ModernWpf.resources.dll
2020-11-29 07:19 - 2020-11-29 07:19 - 000006144 _____ (SourceGear) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\SQLitePCLRaw.batteries_v2.dll
2020-11-29 07:19 - 2020-11-29 07:19 - 000046080 _____ (SourceGear) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\SQLitePCLRaw.core.dll
2021-09-09 21:04 - 2021-09-09 21:04 - 000005632 _____ (SourceGear) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\SQLitePCLRaw.nativelibrary.dll
2020-11-29 07:19 - 2020-11-29 07:19 - 000056832 _____ (SourceGear) [File not signed] [File is in use] C:\Program Files\WindowsApps\32669SamG.ModernFlyouts_0.9.3.0_x64__pcy8vm99wrpcg\SQLitePCLRaw.provider.dynamic_cdecl.dll
2021-06-02 21:31 - 2021-05-26 13:46 - 001282048 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\LIBEAY32.dll
2021-05-26 13:46 - 2021-05-26 13:46 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\ssleay32.dll
2021-05-26 13:46 - 2021-05-26 13:46 - 001611264 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\platforms\qwindows.dll
2021-11-23 21:07 - 2021-05-26 13:46 - 005487104 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Core.dll
2021-11-23 21:07 - 2021-05-26 13:46 - 005841920 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Gui.dll
2021-11-23 21:07 - 2021-05-26 13:46 - 001179136 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Network.dll
2021-11-23 21:07 - 2021-05-26 13:46 - 000146432 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5WebSockets.dll
2021-11-23 21:07 - 2021-05-26 13:46 - 005089792 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Widgets.dll
2021-11-23 21:07 - 2021-05-26 13:46 - 000184832 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Xml.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\marti\Application Data:00e481b5e22dbe1f649fcddd505d3eb7 [394]
AlternateDataStreams: C:\Users\marti\AppData\Roaming:00e481b5e22dbe1f649fcddd505d3eb7 [394]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [4218]

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_291\bin\ssv.dll [2021-06-20] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_291\bin\jp2ssv.dll [2021-06-20] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\sharepoint.com -> hxxps://csssnina-files.sharepoint.com

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 10:14 - 2021-10-15 12:10 - 000000822 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\dotnet\
HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\marti\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\wallpaperflare.com_wallpaper (1).jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "SecurityHealth"
HKLM\...\StartupApproved\Run: => "Riot Vanguard"
HKLM\...\StartupApproved\Run: => "UrbanVPN"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\StartupApproved\Run: => "Overwolf"
HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\StartupApproved\Run: => "Lync"
HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\StartupApproved\Run: => "Gaijin.Net Updater"
HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\StartupApproved\Run: => "EADM"
HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\StartupApproved\Run: => "Battle.net"
HKU\S-1-5-21-3257028437-1245432346-1761199567-1001\...\StartupApproved\Run: => "DiscordPTB"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{CB0838DD-BE5D-465C-8D23-E7E9D9CDB599}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{EE7F294C-AE67-4866-9429-029F1F342275}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{1C8BD31C-FAFE-4B1B-8F32-BCC59C8076D9}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{D0B5E3F2-5A19-46D2-BA3F-9F8FCDE3F646}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{238D3F95-3E75-4099-97E3-D926FF3CD461}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{C13E59CB-5FB6-4CEF-9D69-3E217F6B024E}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{B6FFDCDA-1CAF-454B-8949-A8F28B902E84}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\launcher.exe (Skutta, Kristjan -> )
FirewallRules: [{FE7ED3D6-7F4F-43E5-9574-3292E12F52BE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\launcher.exe (Skutta, Kristjan -> )
FirewallRules: [{621C2D4F-7531-4397-A348-BDB7F2041951}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{16034F7A-F83A-4DD2-9C94-C424A84689A2}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{EB6D74E1-9529-4160-ABAF-967EB90D58DA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve Corp. -> )
FirewallRules: [{A19012C0-FF76-4D48-8436-0104D7EF74FD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve Corp. -> )
FirewallRules: [{E95CCDB0-052E-43F9-AC6C-CABFBC29C6A2}] => (Allow) C:\Users\marti\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{5313E362-2B42-4FA8-8A2A-395D3EEDC64B}] => (Allow) C:\Users\marti\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{6D96B82A-51A5-4292-897B-4C85077EF346}] => (Allow) C:\Users\marti\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [TCP Query User{0CB75075-D467-4956-B67C-7E7478B05F81}E:\hry\the sims 4\game\bin\ts4_x64.exe] => (Allow) E:\hry\the sims 4\game\bin\ts4_x64.exe => No File
FirewallRules: [UDP Query User{12D32B1E-16E5-43FD-8926-EB6011543D77}E:\hry\the sims 4\game\bin\ts4_x64.exe] => (Allow) E:\hry\the sims 4\game\bin\ts4_x64.exe => No File
FirewallRules: [TCP Query User{15D77673-C443-4519-8EED-1341E8CC271B}C:\users\marti\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\marti\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{75C0C7FD-826A-4857-B830-3D96D3DE1B04}C:\users\marti\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\marti\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0CB30691-9F57-46C5-ABCB-27CE4EA6E013}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{E793ACC3-289E-468F-840A-670AB2A1DC06}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [TCP Query User{DC69232E-D0FC-46F9-9DA2-2333082AF5BE}E:\hry\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Allow) E:\hry\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File
FirewallRules: [UDP Query User{9248F2E0-1F0A-4CB7-B3A7-5A8FF1EB283A}E:\hry\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Allow) E:\hry\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File
FirewallRules: [{7E5A9A41-FC5D-4F1D-9AD3-33FB6E856ADC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Gotham City Impostors F2P\Engine.exe => No File
FirewallRules: [{52C5BEA4-6839-43D3-9166-452B9FA2D79F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Gotham City Impostors F2P\Engine.exe => No File
FirewallRules: [TCP Query User{83D89783-BB3B-4717-9B40-B5AD04341259}C:\program files\java\jre1.8.0_271\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_271\bin\javaw.exe => No File
FirewallRules: [UDP Query User{0E05F33D-5C16-4F65-BD79-F74ED3ED4245}C:\program files\java\jre1.8.0_271\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_271\bin\javaw.exe => No File
FirewallRules: [TCP Query User{7D2A9F74-AB4F-4076-B5D2-A7880A0D504A}E:\hry\golf.with.your.friends.the.deep\golf.with.your.friends.the.deep\golf with your friends\golf with your friends.exe] => (Allow) E:\hry\golf.with.your.friends.the.deep\golf.with.your.friends.the.deep\golf with your friends\golf with your friends.exe => No File
FirewallRules: [UDP Query User{FE6E5168-3CA0-4031-B04A-38410C29CA61}E:\hry\golf.with.your.friends.the.deep\golf.with.your.friends.the.deep\golf with your friends\golf with your friends.exe] => (Allow) E:\hry\golf.with.your.friends.the.deep\golf.with.your.friends.the.deep\golf with your friends\golf with your friends.exe => No File
FirewallRules: [TCP Query User{03781BC8-EE47-46BA-B03B-475B89F526DF}E:\hry\rocketleague\binaries\win64\rocketleague.exe] => (Allow) E:\hry\rocketleague\binaries\win64\rocketleague.exe => No File
FirewallRules: [UDP Query User{A29232A2-51B4-487F-82D7-169B79618F80}E:\hry\rocketleague\binaries\win64\rocketleague.exe] => (Allow) E:\hry\rocketleague\binaries\win64\rocketleague.exe => No File
FirewallRules: [{68888449-F538-42DB-B06A-68AC4DCD8731}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege RUS\rainbowsix_be.exe (BattlEye Innovations e.K. -> BattlEye Innovations)
FirewallRules: [{701ED3E1-7B4D-49A1-BBC2-97DD13AAD6C4}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege RUS\rainbowsix_be.exe (BattlEye Innovations e.K. -> BattlEye Innovations)
FirewallRules: [{F1A6DED4-9938-4E58-9CA0-EE4D3DA2DB0F}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege RUS\RainbowSix.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [{6BA7E930-99EF-4D55-A5FD-59FA779B51A4}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege RUS\RainbowSix.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [{C3CDB9B9-B705-4715-8780-6F550836FC4B}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe => No File
FirewallRules: [{252A64BE-BD31-4C00-B234-874620FACA7D}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe => No File
FirewallRules: [TCP Query User{AE92B965-E0AB-4805-B6BC-2D7BF722284A}C:\program files (x86)\steam\steamapps\common\sandstorm\insurgency\binaries\win64\insurgencyclient-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\sandstorm\insurgency\binaries\win64\insurgencyclient-win64-shipping.exe => No File
FirewallRules: [UDP Query User{C81A4C27-05E4-454A-BBAE-D8706B491725}C:\program files (x86)\steam\steamapps\common\sandstorm\insurgency\binaries\win64\insurgencyclient-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\sandstorm\insurgency\binaries\win64\insurgencyclient-win64-shipping.exe => No File
FirewallRules: [TCP Query User{F0CA7CE6-875E-451C-8598-9F5AAF206D3F}E:\hry\session\session.skateboarding.sim.game.v0.0.0.8\session\sessiongame\binaries\win64\sessiongame-win64-shipping.exe] => (Allow) E:\hry\session\session.skateboarding.sim.game.v0.0.0.8\session\sessiongame\binaries\win64\sessiongame-win64-shipping.exe => No File
FirewallRules: [UDP Query User{2374AB8E-6D71-49D6-AD65-77547588170D}E:\hry\session\session.skateboarding.sim.game.v0.0.0.8\session\sessiongame\binaries\win64\sessiongame-win64-shipping.exe] => (Allow) E:\hry\session\session.skateboarding.sim.game.v0.0.0.8\session\sessiongame\binaries\win64\sessiongame-win64-shipping.exe => No File
FirewallRules: [TCP Query User{C39081CB-9F71-42F8-95F5-586748A7C6E3}E:\hry\gamer.shop.simulator.early.access\gamer.shop.simulator.early.access\gamer shop simulator\shop simulator.exe] => (Allow) E:\hry\gamer.shop.simulator.early.access\gamer.shop.simulator.early.access\gamer shop simulator\shop simulator.exe => No File
FirewallRules: [UDP Query User{2A0F7014-7E61-4AC6-AC76-407C79421124}E:\hry\gamer.shop.simulator.early.access\gamer.shop.simulator.early.access\gamer shop simulator\shop simulator.exe] => (Allow) E:\hry\gamer.shop.simulator.early.access\gamer.shop.simulator.early.access\gamer shop simulator\shop simulator.exe => No File
FirewallRules: [TCP Query User{CBEE8886-8BDA-4398-A8E6-3E2439EED901}E:\hry\gtav\gta5.exe] => (Allow) E:\hry\gtav\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [UDP Query User{B24DA2BB-C5D5-4763-B474-6412F6439C65}E:\hry\gtav\gta5.exe] => (Allow) E:\hry\gtav\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [TCP Query User{14EFE097-040E-4DBC-A9C2-B0C8A178AC95}C:\program files (x86)\ubisoft\ubisoft game launcher\games\tom clancy's rainbow six siege rus\rainbowsix_vulkan.exe] => (Block) C:\program files (x86)\ubisoft\ubisoft game launcher\games\tom clancy's rainbow six siege rus\rainbowsix_vulkan.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [UDP Query User{3FB1D50A-2C3E-49D8-8DEC-FDBD48F851E9}C:\program files (x86)\ubisoft\ubisoft game launcher\games\tom clancy's rainbow six siege rus\rainbowsix_vulkan.exe] => (Block) C:\program files (x86)\ubisoft\ubisoft game launcher\games\tom clancy's rainbow six siege rus\rainbowsix_vulkan.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [TCP Query User{BFCCC859-B30F-4816-B255-0FEFE1F3FBAF}E:\hry\the.tenants\the.tenants\the tenants\the tenants.exe] => (Allow) E:\hry\the.tenants\the.tenants\the tenants\the tenants.exe => No File
FirewallRules: [UDP Query User{D2A3483F-7864-45A9-B031-3C3BB9870917}E:\hry\the.tenants\the.tenants\the tenants\the tenants.exe] => (Allow) E:\hry\the.tenants\the.tenants\the tenants\the tenants.exe => No File
FirewallRules: [TCP Query User{C60B886A-C2FF-4FED-B5D4-717D8BF63741}E:\hry\drug dealer simulator\drug.dealer.simulator.pimp.my.house\drugdealersimulator\drugdealersimulator\binaries\win64\drugdealersimulator-win64-shipping.exe] => (Allow) E:\hry\drug dealer simulator\drug.dealer.simulator.pimp.my.house\drugdealersimulator\drugdealersimulator\binaries\win64\drugdealersimulator-win64-shipping.exe => No File
FirewallRules: [UDP Query User{CD284DA4-3267-4BBD-9323-E6097CA92D82}E:\hry\drug dealer simulator\drug.dealer.simulator.pimp.my.house\drugdealersimulator\drugdealersimulator\binaries\win64\drugdealersimulator-win64-shipping.exe] => (Allow) E:\hry\drug dealer simulator\drug.dealer.simulator.pimp.my.house\drugdealersimulator\drugdealersimulator\binaries\win64\drugdealersimulator-win64-shipping.exe => No File
FirewallRules: [TCP Query User{70423883-4596-4361-B38E-F884C27250AE}C:\users\marti\appdata\local\enlisted\launcher.exe] => (Allow) C:\users\marti\appdata\local\enlisted\launcher.exe (Gaijin Network LTD -> Gaijin)
FirewallRules: [UDP Query User{4C84F7F9-C6B1-41F2-AC1A-041C2D908C3B}C:\users\marti\appdata\local\enlisted\launcher.exe] => (Allow) C:\users\marti\appdata\local\enlisted\launcher.exe (Gaijin Network LTD -> Gaijin)
FirewallRules: [TCP Query User{ABAA2C80-5A51-4CF1-8E0A-AD668CDD6E01}C:\program files\java\jre1.8.0_291\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_291\bin\javaw.exe
FirewallRules: [UDP Query User{4AEA1FEB-18BA-4841-B58E-784D6E1FC360}C:\program files\java\jre1.8.0_291\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_291\bin\javaw.exe
FirewallRules: [TCP Query User{504840BE-E536-433E-BD83-800281B3F16A}C:\program files (x86)\steam\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\realm royale\binaries\win64\realm.exe => No File
FirewallRules: [UDP Query User{B8E1CA56-710D-4122-B78E-B6A18821B77C}C:\program files (x86)\steam\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\realm royale\binaries\win64\realm.exe => No File
FirewallRules: [TCP Query User{E2DEE264-8FC7-4B1F-8A44-EC10B0AEB722}C:\users\marti\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_gtaprocess.exe] => (Allow) C:\users\marti\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_gtaprocess.exe (Cfx.re) [File not signed]
FirewallRules: [UDP Query User{D9261BDD-2262-4632-87E0-9AA26E1EEC70}C:\users\marti\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_gtaprocess.exe] => (Allow) C:\users\marti\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_gtaprocess.exe (Cfx.re) [File not signed]
FirewallRules: [TCP Query User{1B13E403-494D-4267-96AE-137710AE248E}C:\users\marti\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_b2189_gtaprocess.exe] => (Allow) C:\users\marti\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_b2189_gtaprocess.exe (TASKS ME - IT DEVELOPMENT (AILENE BULALACAO TAGOLGOL) -> Cfx.re)
FirewallRules: [UDP Query User{75AD7351-22CD-451A-86A1-C37AFF824D0B}C:\users\marti\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_b2189_gtaprocess.exe] => (Allow) C:\users\marti\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_b2189_gtaprocess.exe (TASKS ME - IT DEVELOPMENT (AILENE BULALACAO TAGOLGOL) -> Cfx.re)
FirewallRules: [TCP Query User{3BBD77FD-2BEC-4096-9AA7-7DD2E129FD3A}E:\hry\police.simulator.patrol.officers\police.simulator.patrol.officers\police simulator patrol officers\boston\binaries\win64\boston-win64-shipping.exe] => (Allow) E:\hry\police.simulator.patrol.officers\police.simulator.patrol.officers\police simulator patrol officers\boston\binaries\win64\boston-win64-shipping.exe => No File
FirewallRules: [UDP Query User{26FE15EA-72BF-4819-9EB5-5AF3FCD4D6C9}E:\hry\police.simulator.patrol.officers\police.simulator.patrol.officers\police simulator patrol officers\boston\binaries\win64\boston-win64-shipping.exe] => (Allow) E:\hry\police.simulator.patrol.officers\police.simulator.patrol.officers\police simulator patrol officers\boston\binaries\win64\boston-win64-shipping.exe => No File
FirewallRules: [TCP Query User{7ACB4111-26FD-4298-B1C2-5D45577A4F54}E:\program files\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) E:\program files\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe => No File
FirewallRules: [UDP Query User{F7747CC9-20A5-43FC-8361-0F2F888E892D}E:\program files\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) E:\program files\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe => No File
FirewallRules: [{BDB66BB5-7992-4629-BC29-CC4C0FBC9F7F}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Dead by Daylight\DeadByDaylight.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{D5872648-1E3E-44AD-829B-EBA2BECB2BE6}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Dead by Daylight\DeadByDaylight.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [TCP Query User{13B16A30-8D3E-4D6B-A61A-316C12C75314}C:\users\marti\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe] => (Allow) C:\users\marti\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe
FirewallRules: [UDP Query User{BABDD7AD-AC2C-44A8-9083-EA0B18CB8F5D}C:\users\marti\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe] => (Allow) C:\users\marti\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe
FirewallRules: [TCP Query User{80C9D581-B33D-4752-A3EB-BE3020A76290}E:\hry\fifa 21\fifa21.exe] => (Allow) E:\hry\fifa 21\fifa21.exe => No File
FirewallRules: [UDP Query User{79B92D6F-261E-4FE1-9F3C-89216C7F7AC7}E:\hry\fifa 21\fifa21.exe] => (Allow) E:\hry\fifa 21\fifa21.exe => No File
FirewallRules: [{F81BBAA5-19DF-438D-8EE5-2B7F6F4446D0}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\EasyAntiCheat\EasyAntiCheat.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{7369C30A-1B92-4296-809C-C302691805A5}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\EasyAntiCheat\EasyAntiCheat.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [TCP Query User{C4C99278-D826-4473-ACFC-5F0CAEC43674}C:\users\marti\appdata\roaming\.minecraft\runtime\java-runtime-alpha\windows\java-runtime-alpha\bin\javaw.exe] => (Allow) C:\users\marti\appdata\roaming\.minecraft\runtime\java-runtime-alpha\windows\java-runtime-alpha\bin\javaw.exe
FirewallRules: [UDP Query User{532E385F-87E8-477C-8303-422C6C8D97BE}C:\users\marti\appdata\roaming\.minecraft\runtime\java-runtime-alpha\windows\java-runtime-alpha\bin\javaw.exe] => (Allow) C:\users\marti\appdata\roaming\.minecraft\runtime\java-runtime-alpha\windows\java-runtime-alpha\bin\javaw.exe
FirewallRules: [{24440159-8D56-457B-B8DE-8C81EC317E61}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\sogame\game\sogame.exe => No File
FirewallRules: [{A67BF19B-A438-44EE-B7FF-43BE116BCCBF}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\sogame\game\sogame.exe => No File
FirewallRules: [TCP Query User{3FB88648-B774-4059-A443-A1A0EF89CC63}E:\program files\steamlibrary\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) E:\program files\steamlibrary\steamapps\common\realm royale\binaries\win64\realm.exe => No File
FirewallRules: [UDP Query User{A1122D9B-441E-4B98-AB85-8DDF51A79D7D}E:\program files\steamlibrary\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) E:\program files\steamlibrary\steamapps\common\realm royale\binaries\win64\realm.exe => No File
FirewallRules: [TCP Query User{A6401827-FE35-4007-9129-6CFA6F8D28B9}C:\users\marti\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe] => (Allow) C:\users\marti\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe
FirewallRules: [UDP Query User{35C58AFD-0016-4D70-AB2B-7DE2113C6B61}C:\users\marti\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe] => (Allow) C:\users\marti\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe
FirewallRules: [TCP Query User{C3DF3CA9-105B-401E-BFED-26AB153956E6}C:\program files (x86)\call of duty modern warfare\modernwarfare.exe] => (Allow) C:\program files (x86)\call of duty modern warfare\modernwarfare.exe => No File
FirewallRules: [UDP Query User{CDD76ECD-306E-4D8A-A884-737D97B69A2B}C:\program files (x86)\call of duty modern warfare\modernwarfare.exe] => (Allow) C:\program files (x86)\call of duty modern warfare\modernwarfare.exe => No File
FirewallRules: [TCP Query User{BDB34A48-0BB4-4BDD-8FEC-FCA29CD99582}E:\hry\saintsrowthethird\srttr.exe] => (Allow) E:\hry\saintsrowthethird\srttr.exe => No File
FirewallRules: [UDP Query User{09AF779A-D47C-4156-9AA4-E9E8B6AF10AC}E:\hry\saintsrowthethird\srttr.exe] => (Allow) E:\hry\saintsrowthethird\srttr.exe => No File
FirewallRules: [{C6CAB1D1-B860-42B7-9594-CEBB262E787D}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Run Zeus Run\ZeusRunner.exe () [File not signed]
FirewallRules: [{901F3D8F-C302-4383-9D3E-EA70A487FFE6}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Run Zeus Run\ZeusRunner.exe () [File not signed]
FirewallRules: [TCP Query User{6880751A-FEDF-45D9-AB00-D3F44E3ECF11}C:\users\marti\appdata\local\crossout\launcher.exe] => (Allow) C:\users\marti\appdata\local\crossout\launcher.exe => No File
FirewallRules: [UDP Query User{137B0DA8-6704-41DA-AFE3-C1E7675A2AD7}C:\users\marti\appdata\local\crossout\launcher.exe] => (Allow) C:\users\marti\appdata\local\crossout\launcher.exe => No File
FirewallRules: [{3FEEC74F-FB9C-424A-9D20-2BA6657168C8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\bin\diagnostics32.exe (Skutta, Kristjan -> )
FirewallRules: [{6EE3ED28-B98B-4038-B7B3-FDD2EDD101D3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\bin\diagnostics32.exe (Skutta, Kristjan -> )
FirewallRules: [{5E7CFBDB-E50F-4471-AAA8-219FC25F0B27}] => (Allow) E:\Hry\Origin\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{68A79EE5-10A7-4B28-9E30-0EB80BA22743}] => (Allow) E:\Hry\Origin\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [TCP Query User{9F1D3B0F-298F-43E4-8F85-75E51A0CF3EA}E:\program files\origin games\fifa 22\fifa22.exe] => (Allow) E:\program files\origin games\fifa 22\fifa22.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [UDP Query User{90028708-6DB9-43D4-AD15-8420F263202D}E:\program files\origin games\fifa 22\fifa22.exe] => (Allow) E:\program files\origin games\fifa 22\fifa22.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [TCP Query User{E5BB2276-4782-4B09-B308-804893F4B9AF}E:\hry\the forest v1.12 repack by neo\theforest.exe] => (Allow) E:\hry\the forest v1.12 repack by neo\theforest.exe => No File
FirewallRules: [UDP Query User{D211E45A-30A9-46F1-9E92-46B660BEC3B1}E:\hry\the forest v1.12 repack by neo\theforest.exe] => (Allow) E:\hry\the forest v1.12 repack by neo\theforest.exe => No File
FirewallRules: [TCP Query User{63766692-30E3-45B7-AAB4-F7BCB8D847A3}E:\hry\call of duty modern warfare\modernwarfare.exe] => (Allow) E:\hry\call of duty modern warfare\modernwarfare.exe => No File
FirewallRules: [UDP Query User{57BDA623-2FD3-4B9C-A733-85EE12EE68B3}E:\hry\call of duty modern warfare\modernwarfare.exe] => (Allow) E:\hry\call of duty modern warfare\modernwarfare.exe => No File
FirewallRules: [TCP Query User{22651B74-2226-486A-83FE-DF9D8D4937A9}C:\riot games\riot client\riotclientservices.exe] => (Allow) C:\riot games\riot client\riotclientservices.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [UDP Query User{29EB91D7-2D47-41F4-9CEF-F28A045D8194}C:\riot games\riot client\riotclientservices.exe] => (Allow) C:\riot games\riot client\riotclientservices.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [{A7A07A05-C121-46A6-82FE-A86BAE7F5D41}] => (Allow) E:\Program Files\Origin Games\FIFA 22\FIFASetup\fifaconfig.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{1E570253-7986-46DB-84E1-B920DD86DEE4}] => (Allow) E:\Program Files\Origin Games\FIFA 22\FIFASetup\fifaconfig.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [TCP Query User{64C52BAB-317C-4413-ACF7-21C96B5E3A35}C:\program files (x86)\steam\steamapps\common\new world\bin64\newworld.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\new world\bin64\newworld.exe => No File
FirewallRules: [UDP Query User{C6E0A8DC-A7C3-4BE0-A563-19708045401D}C:\program files (x86)\steam\steamapps\common\new world\bin64\newworld.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\new world\bin64\newworld.exe => No File
FirewallRules: [{8AEFEF87-8BCD-4974-B116-D61317D18FE2}] => (Allow) C:\ProgramData\ZeroTier\One\zerotier-one_x64.exe => No File
FirewallRules: [{E95046B5-9ABB-457A-B37A-89589F53C5EB}] => (Allow) C:\ProgramData\ZeroTier\One\zerotier-one_x64.exe => No File
FirewallRules: [{80711E92-1B0B-4DA0-8443-0F2CD8EAEBC7}] => (Allow) C:\Program Files\UrbanVPN\bin\urbanvpn.exe (Urban Cyber Security Inc. -> Urban Cyber Security Inc.)
FirewallRules: [{5119719A-F404-44E4-BB65-BE6204E8CC9C}] => (Allow) C:\Windows\SysWOW64\TCPSVCS.EXE (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{09C6E8A4-D0C4-4D1B-B186-8E28E223B3ED}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Human Fall Flat\Human.exe () [File not signed]
FirewallRules: [{5EE64156-CA13-45C8-966F-0D77C8A6DFC8}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Human Fall Flat\Human.exe () [File not signed]
FirewallRules: [TCP Query User{06F748AB-D265-41F8-9831-D19998D8A23C}E:\program files\steamlibrary\steamapps\common\battlefield 1\bf1.exe] => (Allow) E:\program files\steamlibrary\steamapps\common\battlefield 1\bf1.exe => No File
FirewallRules: [UDP Query User{8E07ED5B-2FD7-4246-84F1-F1FCDF32F6F2}E:\program files\steamlibrary\steamapps\common\battlefield 1\bf1.exe] => (Allow) E:\program files\steamlibrary\steamapps\common\battlefield 1\bf1.exe => No File
FirewallRules: [{36C74718-BD16-4B4F-9EBF-C919562E6148}] => (Allow) E:\Program Files (x86)\Star Wars-The Old Republic\launcher.exe => No File
FirewallRules: [{9FE73E5D-238A-44A7-BCB6-38FD3936F37C}] => (Allow) E:\Program Files (x86)\Star Wars-The Old Republic\launcher.exe => No File
FirewallRules: [{DA27C39D-4039-4B2B-A650-113FFF26A124}] => (Allow) E:\Program Files (x86)\Star Wars-The Old Republic\launcher.exe => No File
FirewallRules: [{3ED33D62-DE32-4809-9BCC-123894E928EF}] => (Allow) E:\Program Files (x86)\Star Wars-The Old Republic\launcher.exe => No File
FirewallRules: [{63D0F53F-B385-4E4B-B223-99C5CA147447}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Squad\squad_launcher.exe (EasyAntiCheat Oy -> Epic Games, Inc)
FirewallRules: [{22B7E94D-EA53-46AB-94E9-AD2F874699DD}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Squad\squad_launcher.exe (EasyAntiCheat Oy -> Epic Games, Inc)
FirewallRules: [TCP Query User{175AAD21-C0CF-49E2-83DB-50C88C8E997B}E:\program files\steamlibrary\steamapps\common\squad\squadgame\binaries\win64\squadgame.exe] => (Allow) E:\program files\steamlibrary\steamapps\common\squad\squadgame\binaries\win64\squadgame.exe (Offworld Industries -> Offworld Industries Ltd.)
FirewallRules: [UDP Query User{E60402BD-D754-45F0-AFC1-925186A2A2FA}E:\program files\steamlibrary\steamapps\common\squad\squadgame\binaries\win64\squadgame.exe] => (Allow) E:\program files\steamlibrary\steamapps\common\squad\squadgame\binaries\win64\squadgame.exe (Offworld Industries -> Offworld Industries Ltd.)
FirewallRules: [{4C5456FE-CE3D-49E2-A681-97A6DD8C654E}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12122.2.54019.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{DEC4C7DA-99E0-46C5-8649-97E02658B44D}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12122.2.54019.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{5CEB112C-EE99-4A1E-8218-88E263F9FE4F}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12122.2.54019.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{1CB6E8C1-E8B4-48D7-805C-C209B641AFDA}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12122.2.54019.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{7C55A330-008E-4880-B604-94FD72701CF9}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12122.2.54019.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{F92B26B5-A894-4D47-9165-4F28179DA3DE}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12122.2.54019.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{A5A6EE26-58C9-4B3E-AA6A-01FD7958C34B}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12122.2.54019.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{1092A656-7A36-4BC9-B8FC-E7950733A8A2}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12122.2.54019.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{2CE1954A-F600-49F1-A210-E40E2FCCD47A}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Marbles on Stream\MarblesOnStream.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{1D5CC231-85C1-4ACA-8989-B5CC481FC180}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Marbles on Stream\MarblesOnStream.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [TCP Query User{AD4B07C4-5C47-493A-9B71-038B34A27A58}E:\hry\1.6\hl.exe] => (Allow) E:\hry\1.6\hl.exe => No File
FirewallRules: [UDP Query User{4096FDFA-63C9-491B-AB56-06E799DAFB6E}E:\hry\1.6\hl.exe] => (Allow) E:\hry\1.6\hl.exe => No File
FirewallRules: [{78D9F35C-D17B-4AD7-977B-9CB6F3F5B34B}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Half-Life\hl.exe (Valve -> Valve)
FirewallRules: [{1CF2C4E9-63B9-4F4A-A723-0BABA4B816F1}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Half-Life\hl.exe (Valve -> Valve)
FirewallRules: [{2F332A6C-8C37-4C17-A80F-9499C56B1E1D}] => (Allow) F:\Assassin's Creed Valhalla\ACValhalla_Plus.exe => No File
FirewallRules: [{494CF8DE-14D4-4330-911F-34FC30C40892}] => (Allow) E:\Program Files (x86)\Battlefield 2042\BF2042_launcher.exe => No File
FirewallRules: [{9DCC1469-C4A1-4A0D-906B-C0229669CC31}] => (Allow) E:\Program Files (x86)\Battlefield 2042\BF2042_launcher.exe => No File
FirewallRules: [TCP Query User{F091E0C6-7E1A-42F3-B9F1-10DC14B61CC2}E:\program files (x86)\battlefield 2042\bf2042.exe] => (Allow) E:\program files (x86)\battlefield 2042\bf2042.exe => No File
FirewallRules: [UDP Query User{12810932-D24D-4FA8-8617-E9BDF437D442}E:\program files (x86)\battlefield 2042\bf2042.exe] => (Allow) E:\program files (x86)\battlefield 2042\bf2042.exe => No File
FirewallRules: [TCP Query User{24EC20B4-E74E-46AE-8765-E5E89E4552DC}C:\program files (x86)\origin games\battlefield 2042\bf2042.exe] => (Allow) C:\program files (x86)\origin games\battlefield 2042\bf2042.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [UDP Query User{CF6EC176-132E-48F1-AD2C-F21B529579D4}C:\program files (x86)\origin games\battlefield 2042\bf2042.exe] => (Allow) C:\program files (x86)\origin games\battlefield 2042\bf2042.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{C8FF16E3-207E-452E-A73E-FB23C094B316}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Muck\Muck.exe () [File not signed]
FirewallRules: [{196E39CE-7DDC-4573-80E7-589EA5CDD72A}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Muck\Muck.exe () [File not signed]
FirewallRules: [TCP Query User{B585AA8C-A563-4FDE-B3CB-617B1AAE0324}E:\program files\steamlibrary\steamapps\common\drug dealer simulator free sample\drugdealersimfs\binaries\win64\drugdealersimulator-win64-shipping.exe] => (Allow) E:\program files\steamlibrary\steamapps\common\drug dealer simulator free sample\drugdealersimfs\binaries\win64\drugdealersimulator-win64-shipping.exe => No File
FirewallRules: [UDP Query User{24A0E8AC-79CB-49BF-836B-9E8CEDCA9549}E:\program files\steamlibrary\steamapps\common\drug dealer simulator free sample\drugdealersimfs\binaries\win64\drugdealersimulator-win64-shipping.exe] => (Allow) E:\program files\steamlibrary\steamapps\common\drug dealer simulator free sample\drugdealersimfs\binaries\win64\drugdealersimulator-win64-shipping.exe => No File
FirewallRules: [TCP Query User{52455E26-0819-49D2-9ADB-751C7756AC4A}E:\hry\call of duty vanguard\vanguard.exe] => (Allow) E:\hry\call of duty vanguard\vanguard.exe => No File
FirewallRules: [UDP Query User{2CC8C2EF-8047-43B1-A841-A065D2D995E8}E:\hry\call of duty vanguard\vanguard.exe] => (Allow) E:\hry\call of duty vanguard\vanguard.exe => No File
FirewallRules: [{A4E410ED-6B40-4543-B83B-4E410FAC5744}] => (Allow) E:\Program Files (x86)\Origin Games\AWayOut\Haze1\Binaries\Win64\AWayOut.exe (Hazelight Studios AB -> Hazelight Studios AB)
FirewallRules: [{27061D92-FB9F-4E0D-9BA0-3556B903C987}] => (Allow) E:\Program Files (x86)\Origin Games\AWayOut\Haze1\Binaries\Win64\AWayOut.exe (Hazelight Studios AB -> Hazelight Studios AB)
FirewallRules: [{B016B676-7053-4475-ADC0-06F7A83D8968}] => (Allow) E:\Program Files (x86)\Origin Games\AWayOut\Haze1\Binaries\Win64\AWayOut_friend.exe (Hazelight Studios AB -> Hazelight Studios AB)
FirewallRules: [{7992CD28-4116-4D79-800B-1077A88F0EAF}] => (Allow) E:\Program Files (x86)\Origin Games\AWayOut\Haze1\Binaries\Win64\AWayOut_friend.exe (Hazelight Studios AB -> Hazelight Studios AB)
FirewallRules: [{577B6D6F-8808-421A-99D8-765E63CA5A35}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Halo Infinite\HaloInfinite.exe (343 Industries (Microsoft Corporation) -> Microsoft Corporation)
FirewallRules: [{1B684353-648A-4224-BBA6-D98136849DF1}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Halo Infinite\HaloInfinite.exe (343 Industries (Microsoft Corporation) -> Microsoft Corporation)
FirewallRules: [TCP Query User{3C0CAB4F-B062-4AAE-9330-46DAFFD23F73}E:\hry\phasmophobia.v0.4.1.2\phasmophobia.v0.4.1.2\phasmophobia.v0.4.1.2\phasmophobia.exe] => (Allow) E:\hry\phasmophobia.v0.4.1.2\phasmophobia.v0.4.1.2\phasmophobia.v0.4.1.2\phasmophobia.exe () [File not signed]
FirewallRules: [UDP Query User{94386CE3-129C-4DAF-A24B-9D6E43E07E45}E:\hry\phasmophobia.v0.4.1.2\phasmophobia.v0.4.1.2\phasmophobia.v0.4.1.2\phasmophobia.exe] => (Allow) E:\hry\phasmophobia.v0.4.1.2\phasmophobia.v0.4.1.2\phasmophobia.v0.4.1.2\phasmophobia.exe () [File not signed]
FirewallRules: [TCP Query User{D6B4AAAA-16BF-469F-A87B-B4196CAACB50}C:\users\marti\appdata\local\enlisted\win64\enlisted.exe] => (Allow) C:\users\marti\appdata\local\enlisted\win64\enlisted.exe (Gaijin Network LTD -> Gaijin Entertainment)
FirewallRules: [UDP Query User{31F23CEE-AE29-4088-80F0-A76ABBDE9779}C:\users\marti\appdata\local\enlisted\win64\enlisted.exe] => (Allow) C:\users\marti\appdata\local\enlisted\win64\enlisted.exe (Gaijin Network LTD -> Gaijin Entertainment)
FirewallRules: [{8B9F090D-62E9-48A5-80C8-D5D075E93211}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Crab Game\Crab Game.exe () [File not signed]
FirewallRules: [{C1A38CBB-AE96-4939-94DC-3F23885DFA2E}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Crab Game\Crab Game.exe () [File not signed]
FirewallRules: [{C406E56A-4D4B-4884-A55F-2771D37C34A3}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 2042\BF2042_launcher.exe (EasyAntiCheat Oy -> Epic Games, Inc)
FirewallRules: [{06C09D5E-C19F-465E-9001-7375C2945ED7}] => (Allow) C:\Program Files (x86)\Origin Games\Battlefield 2042\BF2042_launcher.exe (EasyAntiCheat Oy -> Epic Games, Inc)
FirewallRules: [{837AAE0E-C049-4BD9-9C58-98620FCCCEE6}] => (Allow) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [{3D704B5C-2B40-4299-AA28-77A1AD1D4998}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.173.517.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{94E46717-EF9C-4D2C-961D-99EBADE9D83E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.173.517.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{9AAD4710-E82D-4123-960F-EFDBDDDD6497}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.173.517.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{168F646F-A58E-4093-B838-C0089772540C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.173.517.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{B0CB2CC7-CD45-4366-999A-79273F9E73E3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.173.517.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{78767392-BBAD-47B0-816E-DBE846ADAA3F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.173.517.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{A7493A82-40F2-4862-8680-53948F57DC54}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.173.517.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{6BF66DDB-96FE-44BC-A56D-8A12D050FCC9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.173.517.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{46B401C0-EC58-46B6-8CF2-27435B3CA733}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Myth of Empires\MOE\Binaries\Win64\Moe_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations)
FirewallRules: [{DFC11857-5C91-44D2-A59E-5AA76BEDA21F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Myth of Empires\MOE\Binaries\Win64\Moe_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations)
FirewallRules: [{AC35FC22-70FE-4DEB-B5BF-3E4A60FC564F}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Fall Guys\FallGuys_client.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{F537117B-BC51-479F-B442-90F9C28B768E}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Fall Guys\FallGuys_client.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{603ED034-1389-4B31-B968-AEDB27700710}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Fall Guys\FallGuys_client_game.exe () [File not signed]
FirewallRules: [{F2E2B415-6A3E-4C79-BE65-AA15D82115CC}] => (Allow) E:\Program Files\SteamLibrary\steamapps\common\Fall Guys\FallGuys_client_game.exe () [File not signed]
FirewallRules: [{113CFD36-85A5-42D5-8C2C-C2BCB9575F72}] => (Allow) C:\Battlestate Games\BsgLauncher\BsgLauncher.exe (BATTLESTATE GAMES LIMITED -> Battlestate Games)
FirewallRules: [{10FB47EA-3808-4EE2-8E8B-A8DB9AA850EA}] => (Allow) C:\Battlestate Games\BsgLauncher\BsgLauncher.exe (BATTLESTATE GAMES LIMITED -> Battlestate Games)
FirewallRules: [{9F9C6288-FEE0-4FAF-B28A-7078A733D893}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\WitchIt\WitchIt\Binaries\Win64\PropWitchHuntModule-Win64-Shipping.exe (G=Barrel Roll Games) [File not signed]
FirewallRules: [{9E0F9C44-9AD2-416C-8FAB-3054ED524584}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\WitchIt\WitchIt\Binaries\Win64\PropWitchHuntModule-Win64-Shipping.exe (G=Barrel Roll Games) [File not signed]
FirewallRules: [{FD6D0405-BF9E-46E4-BA2A-C22DD70E8559}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{B74759C1-B2E0-4990-90F7-AB64189AA926}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{4FE09CE2-11CB-4472-82CC-8B8EB33426EC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{427EB5A1-14D4-4321-93D4-30D0FE18574F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{AFAF1AC3-3AF3-4425-A79F-1C2F92BAB424}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.43\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)

==================== Restore Points =========================


==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (12/06/2021 06:22:08 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: SCEP Certificate enrollment initialization for WORKGROUP\DESKTOP-H0JO0S1$ via https://AMD-KeyId-578c545f796951421221a4a578acdb5f682f89c8.microsoftaik.azure.net/templates/Aik/scep failed:

GetCACaps
GetCACaps: Not Found
{"Message":"The authority \"amd-keyid-578c545f796951421221a4a578acdb5f682f89c8.microsoftaik.azure.net\" does not exist."}
HTTP/1.1 404 Not Found
Date: Mon, 06 Dec 2021 17:22:07 GMT
Content-Length: 121
Content-Type: application/json; charset=utf-8
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000;includeSubDomains
x-ms-request-id: 4c022cf1-528d-460c-a92d-7de9e7030572

Method: GET(1203ms)
Stage: GetCACaps
Not found (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND)

Error: (12/06/2021 02:55:22 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiska nemohol dokončiť opätovné vystrihnutie v (E:), pretože: Hardvér, ktorý podporuje tento zväzok, nepodporuje požadovanú operáciu. (0x8900002A)

Error: (12/06/2021 02:55:16 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiska nemohol dokončiť opätovné vystrihnutie v System Reserved (D:), pretože: Hardvér, ktorý podporuje tento zväzok, nepodporuje požadovanú operáciu. (0x8900002A)

Error: (12/06/2021 02:28:05 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiska nemohol dokončiť opätovné vystrihnutie v (E:), pretože: Hardvér, ktorý podporuje tento zväzok, nepodporuje požadovanú operáciu. (0x8900002A)

Error: (12/06/2021 02:27:59 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiska nemohol dokončiť opätovné vystrihnutie v System Reserved (D:), pretože: Hardvér, ktorý podporuje tento zväzok, nepodporuje požadovanú operáciu. (0x8900002A)

Error: (12/06/2021 02:09:49 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiska nemohol dokončiť opätovné vystrihnutie v (E:), pretože: Hardvér, ktorý podporuje tento zväzok, nepodporuje požadovanú operáciu. (0x8900002A)

Error: (12/06/2021 02:09:36 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiska nemohol dokončiť opätovné vystrihnutie v System Reserved (D:), pretože: Hardvér, ktorý podporuje tento zväzok, nepodporuje požadovanú operáciu. (0x8900002A)

Error: (12/06/2021 01:59:58 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: SCEP Certificate enrollment initialization for WORKGROUP\DESKTOP-H0JO0S1$ via https://AMD-KeyId-578c545f796951421221a4a578acdb5f682f89c8.microsoftaik.azure.net/templates/Aik/scep failed:

GetCACaps
GetCACaps: Not Found
{"Message":"The authority \"amd-keyid-578c545f796951421221a4a578acdb5f682f89c8.microsoftaik.azure.net\" does not exist."}
HTTP/1.1 404 Not Found
Date: Mon, 06 Dec 2021 12:59:57 GMT
Content-Length: 121
Content-Type: application/json; charset=utf-8
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000;includeSubDomains
x-ms-request-id: 9c97643a-ce4e-438f-af17-5caaa165beda

Method: GET(1250ms)
Stage: GetCACaps
Not found (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND)


System errors:
=============
Error: (12/06/2021 06:20:59 PM) (Source: TPM) (EventID: 15) (User: NT AUTHORITY)
Description: The device driver for the Trusted Platform Module (TPM) encountered a non-recoverable error in the TPM hardware, which prevents TPM services (such as data encryption) from being used. For further help, please contact the computer manufacturer.

Error: (12/06/2021 03:54:08 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-H0JO0S1)
Description: The server {FD06603A-2BDF-4BB1-B7DF-5DC68F353601} did not register with DCOM within the required timeout.

Error: (12/06/2021 01:59:04 PM) (Source: TPM) (EventID: 15) (User: NT AUTHORITY)
Description: The device driver for the Trusted Platform Module (TPM) encountered a non-recoverable error in the TPM hardware, which prevents TPM services (such as data encryption) from being used. For further help, please contact the computer manufacturer.

Error: (12/06/2021 11:43:39 AM) (Source: TPM) (EventID: 15) (User: NT AUTHORITY)
Description: The device driver for the Trusted Platform Module (TPM) encountered a non-recoverable error in the TPM hardware, which prevents TPM services (such as data encryption) from being used. For further help, please contact the computer manufacturer.

Error: (12/06/2021 08:33:33 AM) (Source: volsnap) (EventID: 36) (User: )
Description: The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit.

Error: (12/06/2021 07:47:34 AM) (Source: TPM) (EventID: 15) (User: NT AUTHORITY)
Description: The device driver for the Trusted Platform Module (TPM) encountered a non-recoverable error in the TPM hardware, which prevents TPM services (such as data encryption) from being used. For further help, please contact the computer manufacturer.

Error: (12/05/2021 06:50:12 PM) (Source: TPM) (EventID: 15) (User: NT AUTHORITY)
Description: The device driver for the Trusted Platform Module (TPM) encountered a non-recoverable error in the TPM hardware, which prevents TPM services (such as data encryption) from being used. For further help, please contact the computer manufacturer.

Error: (12/05/2021 09:24:55 AM) (Source: TPM) (EventID: 15) (User: NT AUTHORITY)
Description: The device driver for the Trusted Platform Module (TPM) encountered a non-recoverable error in the TPM hardware, which prevents TPM services (such as data encryption) from being used. For further help, please contact the computer manufacturer.


Windows Defender:
================
Date: 2021-12-05 20:49:17
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2021-12-01 10:11:17
Description: 
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid=37020&name=Virus:Win32/Neshta.A&threatid=2147575939&enterprise=0
Name: Virus:Win32/Neshta.A
Severity: Závažná
Category: Vírus
Path: file:_E:\Diagbox_v9.96\7Zip\7zX.exe
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: Real-Time Protection
Process Name: C:\Program Files\qBittorrent\qbittorrent.exe
Security intelligence Version: AV: 1.353.1904.0, AS: 1.353.1904.0, NIS: 1.353.1904.0
Engine Version: AM: 1.1.18700.4, NIS: 1.1.18700.4

Date: 2021-11-30 12:55:48
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
﻿
CodeIntegrity:
===============
Date: 2021-05-28 22:37:42
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Overwolf\0.170.0.13\OWExplorer.dll that did not meet the Microsoft signing level requirements.

Date: 2021-05-25 21:17:07
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Users\marti\AppData\Local\Discord\app-1.0.9002\Discord.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Overwolf\0.170.0.13\win32\OWExplorer.dll that did not meet the Microsoft signing level requirements.

Date: 2021-05-25 21:16:46
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Overwolf\0.170.0.13\OWExplorer.dll that did not meet the Microsoft signing level requirements.


==================== Memory info =========================== 

BIOS: American Megatrends Inc. 3211 08/10/2021
Motherboard: ASUSTeK COMPUTER INC. PRIME B450M-K
Processor: AMD Ryzen 5 2600 Six-Core Processor 
Percentage of memory in use: 23%
Total physical RAM: 16295.77 MB
Available physical RAM: 12434.47 MB
Total Virtual: 23207.77 MB
Available Virtual: 17590.01 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:446.59 GB) (Free:59.11 GB) NTFS
Drive d: (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.02 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive e: () (Fixed) (Total:931.41 GB) (Free:122.58 GB) NTFS ==>[system with boot components (obtained from drive)]

\\?\Volume{3f80a835-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.54 GB) (Free:0.15 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 447.1 GB) (Disk ID: 3F80A835)
Partition 1: (Active) - (Size=549 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=446.6 GB) - (Type=07 NTFS)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 3FC5B496)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Active) - (Size=931.4 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================