==================== Event log errors: ========================
Application errors:
==================
Error: (04/16/2024 03:54:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: AdobeCollabSync.exe, version: 24.2.20687.0, time stamp: 0x66170966
Faulting module name: AdobeCollabSync.exe, version: 24.2.20687.0, time stamp: 0x66170966
Exception code: 0xc0000409
Fault offset: 0x0000000000494b31
Faulting process ID: 0x2208
Faulting application start time: 0x01da900584ba052f
Faulting application path: C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe
Faulting module path: C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe
Report ID: 3cb67022-1c0c-4dec-aa2b-54600cb730d8
Faulting package full name:
Faulting package-relative application ID:
Error: (04/16/2024 12:57:34 AM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: DESKTOP-NG833IV)
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.
Error: (04/16/2024 12:53:24 AM) (Source: Freemake Improver) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.IO.FileLoadException: Die Datei oder Assembly "Newtonsoft.Json, Version=7.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed" oder eine Abhängigkeit davon wurde nicht gefunden. Die gefundene Manifestdefinition der Assembly stimmt nicht mit dem Assemblyverweis überein. (Ausnahme von HRESULT: 0x80131040)
Dateiname: "Newtonsoft.Json, Version=7.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed" ---> System.IO.FileLoadException: Die Datei oder Assembly "Newtonsoft.Json, Version=6.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed" oder eine Abhängigkeit davon wurde nicht gefunden. Die gefundene Manifestdefinition der Assembly stimmt nicht mit dem Assemblyverweis überein. (Ausnahme von HRESULT: 0x80131040)
Dateiname: "Newtonsoft.Json, Version=6.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed"
WRN: Protokollierung der Assemblybindung ist AUS.
Sie können die Protokollierung der Assemblybindungsfehler aktivieren, indem Sie den Registrierungswert [HKLM\Software\Microsoft\Fusion!E...
Error: (04/15/2024 08:32:40 AM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Users\paulm\AppData\Local\CapCut\Apps\CapCut.exe".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_a863d714867441db.manifest.
Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_60b6a03d71f818d5.manifest.
Error: (04/15/2024 08:12:41 AM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: DESKTOP-NG833IV)
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.
Error: (04/15/2024 08:08:41 AM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Users\paulm\AppData\Local\CapCut\Apps\CapCut.exe".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_a863d714867441db.manifest.
Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_60b6a03d71f818d5.manifest.
Error: (04/15/2024 08:08:34 AM) (Source: Freemake Improver) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.IO.FileLoadException: Die Datei oder Assembly "Newtonsoft.Json, Version=7.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed" oder eine Abhängigkeit davon wurde nicht gefunden. Die gefundene Manifestdefinition der Assembly stimmt nicht mit dem Assemblyverweis überein. (Ausnahme von HRESULT: 0x80131040)
Dateiname: "Newtonsoft.Json, Version=7.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed" ---> System.IO.FileLoadException: Die Datei oder Assembly "Newtonsoft.Json, Version=6.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed" oder eine Abhängigkeit davon wurde nicht gefunden. Die gefundene Manifestdefinition der Assembly stimmt nicht mit dem Assemblyverweis überein. (Ausnahme von HRESULT: 0x80131040)
Dateiname: "Newtonsoft.Json, Version=6.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed"
WRN: Protokollierung der Assemblybindung ist AUS.
Sie können die Protokollierung der Assemblybindungsfehler aktivieren, indem Sie den Registrierungswert [HKLM\Software\Microsoft\Fusion!E...
Error: (04/15/2024 07:58:55 AM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Users\paulm\AppData\Local\CapCut\Apps\CapCut.exe".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_a863d714867441db.manifest.
Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_60b6a03d71f818d5.manifest.
System errors:
=============
Error: (04/16/2024 12:53:25 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT-AUTORITÄT)
Error: (04/16/2024 12:53:23 AM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1096) (User: NT-AUTORITÄT)
Description: The processing of Group Policy failed. Windows could not apply the registry-based policy settings for the Group Policy object LocalGPO. Group Policy settings will not be resolved until this event is resolved. View the event details for more information on the filename and path that caused the failure.
Error: (04/16/2024 12:48:32 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The User Energy Server Service queencreek service terminated with the following error:
Debugger received RIP exception.
Error: (04/16/2024 12:48:32 AM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: The Energy Server Service queencreek service did not shut down properly after receiving a pre-shutdown control.
Error: (04/15/2024 08:08:35 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT-AUTORITÄT)
Error: (04/15/2024 08:08:33 AM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1096) (User: NT-AUTORITÄT)
Description: The processing of Group Policy failed. Windows could not apply the registry-based policy settings for the Group Policy object LocalGPO. Group Policy settings will not be resolved until this event is resolved. View the event details for more information on the filename and path that caused the failure.
Error: (04/15/2024 08:08:01 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-NG833IV)
Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Nicht verfügbar" in order to run the server:
{DD522ACC-F821-461A-A407-50B198B896DC}
Error: (04/15/2024 08:07:56 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-NG833IV)
Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Nicht verfügbar" in order to run the server:
{DD522ACC-F821-461A-A407-50B198B896DC}
Windows Defender:
================
Date: 2024-04-16 02:07:34
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Vollständige Überprüfung
Date: 2024-04-15 04:40:43
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Vollständige Überprüfung
Date: 2024-04-15 04:18:27
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Schnellüberprüfung
Date: 2024-04-15 04:09:46
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Schnellüberprüfung
Date: 2024-04-15 00:17:44
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
Name: PUA:Win32/Keygen
Severity: Niedrig
Category: Potenziell unerwünschte Software
Path: containerfile:_C:\Users\paulm\Documents\VST\Bazzism.rar; containerfile:_C:\Users\paulm\Documents\VST\ISM.BazzISM.v2.5.3.Incl.Keygen-R2R\r2r-8520.rar; containerfile:_C:\Users\paulm\Documents\VST\Serum.zip; file:_C:\Users\paulm\Documents\VST\Bazzism.rar->ISM.BazzISM.v2.5.3.Incl.Keygen-R2R\r2r-8520.rar->R2R\ISM_KeyGen.exe; file:_C:\Users\paulm\Documents\VST\ISM.BazzISM.v2.5.3.Incl.Keygen-R2R\r2r-8520.rar->R2R\ISM_KeyGen.exe; file:_C:\Users\paulm\Documents\VST\ISM.BazzISM.v2.5.3.Incl.Keygen-R2R\R2R\ISM_KeyGen.exe; file:_C:\Users\paulm\Documents\VST\Serum.zip->Xfer.Records.Serum.v1.0.1.b3-WiN.OSX/Xfer.Records.Serum.v1.0.0.Incl.Keygen.READ.NFO-R2R/r2r-2596.rar->R2R\Nerve_KeyGen.exe->(nsis-6-keygen.exe)->(UPX); file:_C:\Users\paulm\Documents\VST\Serum.zip->Xfer.Records.Serum.v1.0.1.b3-WiN.OSX/Xfer.Records.Serum.v1.0.0.MacOSX.Incl.Keygen-R2R/r2r-2597.r02->R2R\Nerve_KeyGen.exe->(nsis-6-keygen.exe)->(UPX); file:_C:\Users\paulm\Documents\VST\Serum.zip->Xfer.Records.Serum.v1.0.1.b3-WiN.OSX/Xfer.Records.Serum.v1.0.1.b3.U
Detection Origin: Lokaler Computer
Detection Type: Konkret
Detection Source: Benutzer
Process Name: Unknown
Security intelligence Version: AV: 1.409.255.0, AS: 1.409.255.0, NIS: 1.409.255.0
Engine Version: AM: 1.1.24030.4, NIS: 1.1.24030.4
Event[0]:
Date: 2024-04-15 07:58:55
Description:
Microsoft Defender Antivirus Real-Time Protection feature has encountered an error and failed.
Feature: Bei Zugriff
Error Code: 0x8007043c
Error description: Der Dienst kann nicht im abgesicherten Modus gestartet werden.
Reason: Die Antischadsoft-Sicherheitsfunktion wurde aus unbekanntem Grund beendet. Möglicherweise kann das Problem durch einen Neustart des Diensts behoben werden.
Date: 2024-04-15 07:57:47
Description:
Microsoft Defender Antivirus Real-Time Protection feature has encountered an error and failed.
Feature: Bei Zugriff
Error Code: 0x8007043c
Error description: Der Dienst kann nicht im abgesicherten Modus gestartet werden.
Reason: Die Antischadsoft-Sicherheitsfunktion wurde aus unbekanntem Grund beendet. Möglicherweise kann das Problem durch einen Neustart des Diensts behoben werden.
Date: 2024-03-18 16:06:14
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.407.492.0
Update Source: Microsoft Update-Server
Security intelligence Type: AntiVirus
Update Type: Voll
Current Engine Version:
Previous Engine Version: 1.1.24020.9
Error code: 0x80070102
Error description: Der Wartevorgang wurde abgebrochen.
Date: 2024-03-18 16:06:14
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.407.492.0
Update Source: Microsoft Update-Server
Security intelligence Type: AntiVirus
Update Type: Voll
Current Engine Version:
Previous Engine Version: 1.1.24020.9
Error code: 0x80070102
Error description: Der Wartevorgang wurde abgebrochen.
Date: 2023-09-28 07:02:03
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence and will attempt to revert to a previous version.
Security intelligence Attempted: Aktuell
Error Code: 0x80501102
Error description: Unerwartetes Problem. Installieren Sie bei Bedarf verfügbare Updates, und starten Sie das Programm dann erneut. Informationen zum Installieren von Updates finden Sie unter "Hilfe und Support".
Security intelligence Version: 1.397.1638.0;1.397.1638.0
Engine Version: 1.1.23080.2005
CodeIntegrity:
===============
Date: 2024-04-16 15:53:52
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Users\paulm\AppData\Local\Discord\app-1.0.9041\Discord.exe) attempted to load \Device\HarddiskVolume3\ProgramData\obs-studio-hook\graphics-hook32.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. P1.50 09/03/2020
Motherboard: ASRock B460 Steel Legend
Processor: Intel® Core i7-10700F CPU @ 2.90GHz
Percentage of memory in use: 50%
Total physical RAM: 16314.16 MB
Available physical RAM: 8049.11 MB
Total Virtual: 38842.16 MB
Available Virtual: 27183.3 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:953.25 GB) (Free:48.86 GB) (Model: Patriot M.2 P300) NTFS
Drive d: (New Volume) (Fixed) (Total:1863 GB) (Free:613.33 GB) (Model: CT2000P3SSD8) NTFS
Drive e: (INTENSO) (Removable) (Total:7.49 GB) (Free:7.49 GB) FAT32
\\?\Volume{a414ce20-f078-4499-b493-9476e13a74b3}\ () (Fixed) (Total:0.5 GB) (Free:0.08 GB) NTFS
\\?\Volume{65b593e2-1ac6-4719-b1b1-31014ae85ca1}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 2 (Size: 7.5 GB) (Disk ID: 0232E55A)
Partition 1: (Active) - (Size=7.5 GB) - (Type=FAT32)
==================== End of Addition.txt =======================Additional scan result of Farbar Recovery Scan Tool (x64) Version: 10.04.2024
Ran by paulm (16-04-2024 15:54:47)
Running from C:\Users\paulm\Downloads
Microsoft Windows 10 Home Version 22H2 19045.4291 (X64) (2021-05-15 21:02:58)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-2822836515-2594661799-1331936652-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2822836515-2594661799-1331936652-503 - Limited - Disabled)
Gast (S-1-5-21-2822836515-2594661799-1331936652-501 - Limited - Disabled)
paulm (S-1-5-21-2822836515-2594661799-1331936652-1001 - Administrator - Enabled) => C:\Users\paulm
WDAGUtilityAccount (S-1-5-21-2822836515-2594661799-1331936652-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
888poker.de (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\888poker.de) (Version: 1.1.2.39 - 888)
Ableton Live 10 Suite (HKLM\...\{3AFBB4AE-59CA-414C-8264-BA833986EE54}) (Version: 10.0.0.0 - Ableton)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1033-FFFF-7760-BC15014EA700}) (Version: 24.002.20687 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601067}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 24.3.1 - Advanced Micro Devices, Inc.)
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.13 - Michael Tippach)
Attribute Changer 10.10 (HKLM\...\{27263813-8BDE-4CD2-84D3-02536743428A}_is1) (Version: 10.0 - Romain Petges)
Audacity 3.3.3 (HKLM\...\Audacity_is1) (Version: 3.3.3 - Audacity Team)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Bethesda.net Launcher (HKLM-x32\...\{3448917E-E4FE-4E30-9502-9FD52EABB6F5}_is1) (Version: 1.74.4 - Bethesda Softworks)
Branding64 (HKLM\...\{492AEFBE-1B81-4C20-A111-E6974BB98EC5}) (Version: 1.00.0009 - Advanced Micro Devices, Inc.) Hidden
Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 123.1.64.122 - Die Brave-Autoren)
By Click Downloader (HKLM-x32\...\{A197105C-61BF-450F-B10A-177130E2CF25}) (Version: 2.3.42 - ByClick) Hidden
By Click Downloader (HKLM-x32\...\By Click Downloader 2.3.42) (Version: 2.3.42 - ByClick)
Camo Studio (HKLM\...\{3B3388F2-5E83-4C7A-ACB3-939FA3419D1F}) (Version: 2.1.11.11612 - Reincubate)
CapCut (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\CapCut) (Version: 2.0.0.348 - Bytedance Pte. Ltd.)
Cisco AnyConnect Secure Mobility Client (HKLM-x32\...\Cisco AnyConnect Secure Mobility Client) (Version: 4.10.07061 - Cisco Systems, Inc.)
Cisco AnyConnect Secure Mobility Client (HKLM-x32\...\{11E16B39-0FA6-4DF0-9736-73BB638C9924}) (Version: 4.10.07061 - Cisco Systems, Inc.) Hidden
Core Temp 1.17.1 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.17.1 - ALCPU)
Cyberpunk 2077 (HKLM-x32\...\1423049311_is1) (Version: 2.01 - GOG.com)
Cyberpunk 2077 REDmod (HKLM-x32\...\1597316373_is1) (Version: 2.01 - GOG.com)
Cyberpunk 2077: Phantom Liberty (HKLM-x32\...\1256837418_is1) (Version: 2.01 - GOG.com)
DarkPsy FX466 DEMO version 1.0 (HKLM\...\DarkPsy FX466 DEMO_is1) (Version: 1.0 - G-Sonique)
DarkPsy FX466 version 1.0 (HKLM\...\DarkPsy FX466_is1) (Version: 1.0 - G-Sonique)
Discord (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\Discord) (Version: 1.0.9001 - Discord Inc.)
Dragon Age Redesigned © Morrigan (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\Dragon Age Redesigned © Morrigan) (Version: - )
Dragon Age Redesigned- Leliana's Song (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\Dragon Age Redesigned- Leliana's Song) (Version: - )
Dragon Age Redesigned Oghren© (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\Dragon Age Redesigned Oghren©) (Version: - )
Dragon Age Redesigned© (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\Dragon Age Redesigned©) (Version: - )
Dragon Age Redesigned© Leliana (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\Dragon Age Redesigned© Leliana) (Version: - )
Dragon Age Redesigned© Wynne (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\Dragon Age Redesigned© Wynne) (Version: - )
Driver Easy 5.8.1 (HKLM\...\DriverEasy_is1) (Version: 5.8.1 - Easeware)
Epic Games Launcher (HKLM-x32\...\{37D87A98-763A-44A7-AD9E-8D661616A2C4}) (Version: 1.3.78.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epic Online Services (HKLM-x32\...\{35905844-0610-427D-86A0-2103FABE3D4D}) (Version: 2.0.42.0 - Epic Games, Inc.)
FabFilter Total Bundle (HKLM\...\FabFilter Total Bundle_is1) (Version: 2018.2 - FabFilter & Team V.R)
Fiddler Everywhere 3.1.1 (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\8652495b-663c-5255-8c97-412896fbef82) (Version: 3.1.1 - Progress Software Corporation)
Fraps (HKLM-x32\...\Fraps) (Version: - )
Freemake Video Converter Version 4.1.13 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 4.1.13 - Mixbyte Inc.)
GIMP 2.10.28 (HKLM\...\GIMP-2_is1) (Version: 2.10.28 - The GIMP Team)
Git (HKLM\...\Git_is1) (Version: 2.42.0.2 - The Git Development Community)
GOG GALAXY (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: 2.0.71.2 - GOG.com)
HitFilm Express (HKLM\...\{1D791529-BF85-4D61-89F5-EEA81034F26E}) (Version: 17.0.11715.56097 - FXHOME)
Image Eye v9.2 x64 (HKLM\...\Image Eye x64_is1) (Version: - FMJ-Software)
Infected Mushroom - Wider version 1.0 (HKLM\...\{A7684FCF-245F-4C90-87EE-472DC3EC3868}_is1) (Version: 1.0 - Polyverse Music, Inc.)
Intel Driver && Support Assistant (HKLM-x32\...\{CCDC49A6-B288-4623-AA1D-332D328A8FA8}) (Version: 24.1.13.10 - Intel) Hidden
Intel® Computing Improvement Program (HKLM\...\{76751700-CC7A-4C8E-A7EE-D66651594A6A}) (Version: 2.4.10802 - Intel Corporation)
Intel® Driver & Support Assistant (HKLM-x32\...\{64f50684-bac6-488b-9bab-93616f34d6ec}) (Version: 24.1.13.10 - Intel)
ISM BazzISM (HKLM\...\BazzISM_is1) (Version: 2.5.3 - ISM)
Java 8 Update 191 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180191F0}) (Version: 8.0.1910.12 - Oracle Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Ledger Live 2.60.0 (HKLM\...\c62032b2-0bca-5abc-b458-fd67cfc9e49b) (Version: 2.60.0 - Ledger Live Team)
Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: 2024.2.534136 - Logitech)
Microsoft .NET Core Host - 3.1.28 (x64) (HKLM\...\{26ECE92F-518E-40AF-9108-7B7B444A46DE}) (Version: 24.112.31513 - Microsoft Corporation) Hidden
Microsoft .NET Core Host FX Resolver - 3.1.28 (x64) (HKLM\...\{CDEA72F4-1367-4E0A-AC5F-0EBAF7C6825A}) (Version: 24.112.31513 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.28 (x64) (HKLM\...\{3691148D-EF42-4812-8956-AE11FC413B8D}) (Version: 24.112.31513 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.28 (x64) (HKLM-x32\...\{231e3b76-4d0f-4e60-9d69-f11c9c448630}) (Version: 3.1.28.31513 - Microsoft Corporation)
Microsoft .NET Host - 6.0.25 (x64) (HKLM\...\{C7141A99-592B-4226-A4E9-B767C1D0FBAF}) (Version: 48.100.4028 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.25 (x64) (HKLM\...\{AE86D888-1404-47CC-A7BB-8D86C0503E58}) (Version: 48.100.4028 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.25 (x64) (HKLM\...\{3544B2EE-E62F-4D11-B79C-3DDEACE94DA5}) (Version: 48.100.4028 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 123.0.2420.97 - Microsoft Corporation)
Microsoft Edge WebView2-Laufzeit (HKLM-x32\...\Microsoft EdgeWebView) (Version: 123.0.2420.97 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\OneDriveSetup.exe) (Version: 24.055.0317.0002 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.38.33135 (HKLM-x32\...\{c649ede4-f16a-4486-a117-dcc2f2a35165}) (Version: 14.38.33135.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.38.33135 (HKLM-x32\...\{46c3b171-c15c-4137-8e1d-67eeb2985b44}) (Version: 14.38.33135.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.38.33135 (HKLM\...\{19AFE054-CA83-45D5-A9DB-4108EF4BD391}) (Version: 14.38.33135 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.38.33135 (HKLM\...\{AA0C8AB5-7297-4D46-A0D9-08096FE59E46}) (Version: 14.38.33135 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.38.33135 (HKLM-x32\...\{9C19C103-7DB1-44D1-A039-2C076A633A38}) (Version: 14.38.33135 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.38.33135 (HKLM-x32\...\{286DC39B-5FB7-4AFF-9DD4-22DB47664CD7}) (Version: 14.38.33135 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.25 (x64) (HKLM\...\{E016F2B9-01FE-4FAA-882E-ECC43FA49751}) (Version: 48.100.4037 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.25 (x64) (HKLM-x32\...\{fb0500c1-f968-4621-a48b-985b52884c49}) (Version: 6.0.25.33020 - Microsoft Corporation)
My Game Long Name (HKLM\...\UDK-164f20d7-a9e4-47f5-950c-778e91ea852f) (Version: - Epic Games, Inc.)
Native Instruments Controller Editor (HKLM-x32\...\Native Instruments Controller Editor) (Version: 2.1.0.183 - Native Instruments)
Native Instruments Native Access (HKLM-x32\...\Native Instruments Native Access) (Version: 1.13.3.136 - Native Instruments)
Native Instruments Traktor 2 (HKLM-x32\...\Native Instruments Traktor 2) (Version: 2.11.3.17 - Native Instruments)
Native Instruments Traktor Audio 10 Driver (HKLM-x32\...\Native Instruments Traktor Audio 10 Driver) (Version: - Native Instruments)
Native Instruments Traktor Audio 2 MK2 Driver (HKLM-x32\...\Native Instruments Traktor Audio 2 MK2 Driver) (Version: - Native Instruments)
Native Instruments Traktor Audio 6 Driver (HKLM-x32\...\Native Instruments Traktor Audio 6 Driver) (Version: - Native Instruments)
Native Instruments Traktor Kontrol D2 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol D2 Driver) (Version: - Native Instruments)
Native Instruments Traktor Kontrol F1 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol F1 Driver) (Version: - Native Instruments)
Native Instruments Traktor Kontrol S2 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol S2 Driver) (Version: - Native Instruments)
Native Instruments Traktor Kontrol S2 MK2 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol S2 MK2 Driver) (Version: - Native Instruments)
Native Instruments Traktor Kontrol S4 MK2 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol S4 MK2 Driver) (Version: - Native Instruments)
Native Instruments Traktor Kontrol S5 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol S5 Driver) (Version: - Native Instruments)
Native Instruments Traktor Kontrol S8 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol S8 Driver) (Version: - Native Instruments)
Native Instruments Traktor Kontrol X1 MK2 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol X1 MK2 Driver) (Version: - Native Instruments)
Native Instruments Traktor Kontrol Z1 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol Z1 Driver) (Version: - Native Instruments)
Native Instruments Traktor Kontrol Z2 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol Z2 Driver) (Version: - Native Instruments)
NoMachine Enterprise Client (HKLM\...\NoMachine Enterprise Client_is1) (Version: 8.5.3 - NoMachine S.a.r.l.)
NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 27.2.4 - OBS Project)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
OpenOffice 4.1.10 (HKLM-x32\...\{5A9673DB-4BBE-4FEA-8AB6-840C89E79913}) (Version: 4.110.9807 - Apache Software Foundation)
OpenOffice Updater (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\OpenOffice Updater) (Version: 1.1.10 - OpenOffice) <==== ATTENTION
Origin (HKLM-x32\...\Origin) (Version: 10.5.102.48654 - Electronic Arts, Inc.)
osu! (HKLM-x32\...\{0af024f5-c0d4-481b-bb6b-5f781bfc6fbc}) (Version: latest - ppy Pty Ltd)
Paradox Launcher v2 (HKLM\...\{D3A03918-53CA-485C-B819-E4B86DF5AE82}) (Version: 2.4.0 - Paradox Interactive)
PDFill PDF Editor Professional (HKLM\...\{26037138-C111-4BC5-88E8-DD2B2F2460C7}) (Version: 15.0 - PlotSoft LLC)
Python 3.10.9 (64-bit) (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\{e8531749-5517-4937-a722-a4052cb2d75e}) (Version: 3.10.9150.0 - Python Software Foundation)
Python 3.10.9 Add to Path (64-bit) (HKLM\...\{59ED0114-0C86-4B18-83E2-929AD7D232AD}) (Version: 3.10.9150.0 - Python Software Foundation) Hidden
Python 3.10.9 Core Interpreter (64-bit) (HKLM\...\{9802C929-A3F0-480D-A4B2-DAD129F2236E}) (Version: 3.10.9150.0 - Python Software Foundation) Hidden
Python 3.10.9 Development Libraries (64-bit) (HKLM\...\{E2BC2EBD-7260-458B-A42C-3322DCB0B82F}) (Version: 3.10.9150.0 - Python Software Foundation) Hidden
Python 3.10.9 Documentation (64-bit) (HKLM\...\{F007E8E2-B4A7-4559-BB78-7AC533822431}) (Version: 3.10.9150.0 - Python Software Foundation) Hidden
Python 3.10.9 Executables (64-bit) (HKLM\...\{F115E5B8-9719-4BDF-8B0D-551809BB677D}) (Version: 3.10.9150.0 - Python Software Foundation) Hidden
Python 3.10.9 pip Bootstrap (64-bit) (HKLM\...\{067C6FFC-0FD1-4F3A-8E94-58F091BCC0D5}) (Version: 3.10.9150.0 - Python Software Foundation) Hidden
Python 3.10.9 Standard Library (64-bit) (HKLM\...\{0CBB496F-1D15-42F1-AA45-C01C95196EC8}) (Version: 3.10.9150.0 - Python Software Foundation) Hidden
Python 3.10.9 Tcl/Tk Support (64-bit) (HKLM\...\{92CFA54C-9CE5-4284-83FD-1D0B8AB2AB69}) (Version: 3.10.9150.0 - Python Software Foundation) Hidden
Python 3.10.9 Test Suite (64-bit) (HKLM\...\{0DDDDA24-0876-4BEF-AC9B-26D8B78DCCC9}) (Version: 3.10.9150.0 - Python Software Foundation) Hidden
Python 3.10.9 Utility Scripts (64-bit) (HKLM\...\{1F097B66-81E9-46FB-BBAC-315C5F50CF94}) (Version: 3.10.9150.0 - Python Software Foundation) Hidden
Python Launcher (HKLM-x32\...\{35A2AF4F-C504-4D2A-A025-F69379ECDF07}) (Version: 3.10.8009.0 - Python Software Foundation)
REDlauncher (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\{7258BA11-600C-430E-A759-27E2C691A335}-REDlauncher_is1) (Version: - CD Projekt RED)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.81.1699 - Rockstar Games)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.2.3.4 - Rockstar Games)
ScpToolkit (HKLM\...\{AC052048-9828-45E3-872B-04CE30A3B58B}) (Version: 1.6.238.16010 - Nefarius Software Solutions)
Serum (HKLM\...\Serum_XR_is1) (Version: 1.357 - Xfer Records)
SonoBus version 1.7.2 (HKLM\...\SonoBus_is1) (Version: 1.7.2 - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Steinberg VST Classics 1 64bit (HKLM\...\{AA322103-FC2B-4D86-BA6C-67D4DDB4209C}) (Version: 1.0.0 - Steinberg Media Technologies GmbH)
Telegram Desktop (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 4.15.2 - Telegram FZ-LLC)
TIDAL (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\TIDAL) (Version: 2.36.2 - TIDAL Music AS)
TmUnitedForever Update 2010-03-15 (HKLM-x32\...\TmUnitedForever_is1) (Version: - Nadeo)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 10.51 - Ghisler Software GmbH)
Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{B9A7A138-BFD5-4C73-A269-F78CCA28150E}) (Version: 8.94.0.0 - Microsoft Corporation)
UPDF (HKLM\...\UPDF) (Version: - Superace Software Technology Co., Ltd.)
UPDF_Win version 1.0.7.0 (HKLM-x32\...\{64F0F31B-1791-46EC-96ED-44120E105F77}_is1) (Version: 1.0.7.0 - Superace Software Technology Co., Ltd.)
ValhallaSupermassive version 1.1.1v5 (HKLM-x32\...\{AC6A778B-2004-4BAF-9E1F-CAA5CC27D7FA}_is1) (Version: 1.1.1v5 - Valhalla DSP, LLC)
Vortex (HKLM\...\57979c68-f490-55b8-8fed-8b017a5af2fe) (Version: 1.10.6 - Black Tree Gaming Ltd.)
Winamp (HKLM-x32\...\Winamp) (Version: 5.8 - Winamp SA)
WinDirStat 1.1.2 (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\WinDirStat) (Version: - )
Windows-PC-Integritätsprüfung (HKLM\...\{B3956CF3-F6C5-4567-AC38-1FD4432B319C}) (Version: 3.6.2204.08001 - Microsoft Corporation)
WinRAR 6.01 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 6.01.0 - win.rar GmbH)
Wondershare DemoCreator Spark(Build 6.7.5) (HKLM\...\Wondershare DemoCreator Spark_is1) (Version: - Wondershare Software)
Wondershare DemoCreator(Build 6.9.0) (HKLM\...\Wondershare DemoCreator_is1) (Version: - Wondershare Software)
Wondershare Helper Compact 2.6.0 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.6.0 - Wondershare)
Zoom (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\ZoomUMX) (Version: 5.15.2 (18096) - Zoom Video Communications, Inc.)
Packages:
=========
Acrobat Notification Client -> C:\Program Files\WindowsApps\AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r [2023-08-16] (Adobe Systems Incorporated)
Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC [2024-03-14] ()
FBReader -> C:\Program Files\WindowsApps\FBReader_2.0.3.0_x64__0ydjfefeqf4sp [2023-08-01] (FBReader.ORG Limited)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_152.1.1099.0_x64__v10z8vjag6ke6 [2024-03-15] (HP Inc.)
Microsoft Copilot -> C:\Program Files\WindowsApps\Microsoft.Windows.Ai.Copilot.Provider_1.0.3.0_neutral__8wekyb3d8bbwe [2024-03-29] (Microsoft Corporation)
Photos Media Engine Add-on -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2022-05-01] (Microsoft Corporation)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0 [2024-04-13] (Spotify AB) [Startup Task]
Web Search from Microsoft Bing -> C:\Program Files\WindowsApps\Microsoft.BingSearch_1.0.91.0_x64__8wekyb3d8bbwe [2024-04-13] (Microsoft Corporation)
XING -> C:\Program Files\WindowsApps\XINGAG.XING_4.0.9.0_x86__xpfg3f7e9an52 [2024-02-11] (New Work SE)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-2822836515-2594661799-1331936652-1001_Classes\CLSID\{002add35-e00a-f3ef-f484-215bb738aa23}\localserver32 -> C:\Program Files (x86)\Camo Studio\CamoStudio.exe (Reincubate Limited -> Reincubate)
CustomCLSID: HKU\S-1-5-21-2822836515-2594661799-1331936652-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-2822836515-2594661799-1331936652-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2024-03-12] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-04-07] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-04-07] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [ACShell] -> {D3F9A525-8824-497A-BE36-B23E22F141FC} => C:\Program Files\Attribute Changer\acshell.dll [2021-05-12] (Romain Petges) [File not signed]
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2024-03-13] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2024-03-12] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-04-07] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-04-07] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\system32\frapsv64.dll [105984 2019-08-30] (Beepa P/L) [File not signed]
HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\SysWOW64\frapsvid.dll [94208 2019-08-30] (Beepa P/L) [File not signed]
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2024-03-11 16:47 - 2024-03-11 16:47 - 000295936 _____ () [File not signed] [File is in use] C:\Program Files (x86)\Camo Studio\Service\CamoServiceSupport.dll
2023-10-02 12:22 - 2016-07-21 10:54 - 000137728 _____ () [File not signed] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll
2023-10-02 12:22 - 2017-09-12 10:34 - 001506304 _____ () [File not signed] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\DAQExp.dll
2023-11-05 05:48 - 2023-11-05 05:48 - 000010240 _____ () [File not signed] C:\Program Files\Adobe\Acrobat DC\Acrobat\locale\de_de\AcroTray.deu
2023-10-02 12:26 - 2023-07-27 14:33 - 000009216 _____ () [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\CaptureBase.dll
2023-10-02 12:26 - 2023-07-27 14:33 - 000342528 _____ () [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\CaptureEngineEx.dll
2023-10-02 12:26 - 2023-07-27 14:33 - 000303104 _____ () [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\CaptureNLEMgr.dll
2023-10-02 12:26 - 2023-07-27 14:33 - 000434688 _____ () [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\CaptureSource.dll
2023-10-02 12:26 - 2023-07-27 14:33 - 000018944 _____ () [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\COMSupport.dll
2023-10-02 12:26 - 2023-07-27 14:33 - 002674688 _____ () [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\data_api.dll
2023-10-02 12:26 - 2023-07-27 14:33 - 027441664 _____ () [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\libkernaldec.dll
2023-10-02 12:26 - 2023-07-27 14:33 - 000216064 _____ () [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\quazip1-qt5.dll
2023-10-02 12:26 - 2023-07-27 14:33 - 002374656 _____ () [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\WS_Image.dll
2023-10-02 12:26 - 2023-07-27 14:33 - 000101888 _____ () [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\WS_Log.DLL
2024-04-13 06:51 - 2024-04-13 06:51 - 000356864 _____ (Benjamin Höglinger) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Libarius\0dc73dbff72283235375853041284104\Libarius.ni.dll
2024-03-21 03:00 - 2006-11-02 16:18 - 000850432 _____ (Microsoft Corporation) [File not signed] C:\Windows\system32\spool\DRIVERS\x64\3\PDFILLPS5UI.DLL
2023-10-02 12:26 - 2023-07-27 14:33 - 000094720 _____ (Open Source Software community LGPL) [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\pthreadGC2.dll
2024-02-22 09:58 - 2024-02-22 09:58 - 001626624 _____ (Robert Simpson, et al.) [File not signed] C:\Program Files\Intel\SUR\QUEENCREEK\x64\SQLite.Interop.dll
2024-02-22 09:58 - 2024-02-22 09:58 - 003160576 _____ (SQLite Development Team) [File not signed] C:\Program Files\Intel\SUR\QUEENCREEK\x64\sqlite3.dll
2024-04-13 06:50 - 2024-04-13 06:50 - 000978432 _____ (The Apache Software Foundation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\log4net\9abb5f12056216794776bec54561d515\log4net.ni.dll
2021-07-24 02:13 - 2021-07-24 02:12 - 001282048 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\LIBEAY32.dll
2021-07-24 02:13 - 2021-07-24 02:12 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\ssleay32.dll
2021-07-24 02:13 - 2021-07-24 02:12 - 001611264 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\platforms\qwindows.dll
2021-08-06 01:20 - 2021-07-24 02:12 - 005487104 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Core.dll
2021-08-06 01:20 - 2021-07-24 02:12 - 005841920 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Gui.dll
2021-08-06 01:20 - 2021-07-24 02:12 - 001179136 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Network.dll
2021-08-06 01:20 - 2021-07-24 02:12 - 000146432 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5WebSockets.dll
2021-08-06 01:20 - 2021-07-24 02:12 - 005089792 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Widgets.dll
2021-08-06 01:20 - 2021-07-24 02:12 - 000184832 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Xml.dll
2023-10-02 12:22 - 2017-09-12 10:36 - 000708608 _____ (Wondershare) [File not signed] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSProducstInfo.dll
==================== Alternate Data Streams (Whitelisted) ========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Users\paulm\AppData\Local\Temp:$DATA [16]
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) ==========
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2024-04-11] (Adobe Inc. -> Adobe Systems Incorporated)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2024-04-11] (Adobe Inc. -> Adobe Systems Incorporated)
BHO-x32: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\ssv.dll [2021-06-21] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2024-04-11] (Adobe Inc. -> Adobe Systems Incorporated)
BHO-x32: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\jp2ssv.dll [2021-06-21] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2024-04-11] (Adobe Inc. -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2024-04-11] (Adobe Inc. -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2024-04-11] (Adobe Inc. -> Adobe Systems Incorporated)
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2019-12-07 11:14 - 2021-09-20 21:56 - 000000828 _____ C:\Windows\system32\drivers\etc\hosts
==================== Event log errors: ========================
Application errors:
==================
Error: (04/16/2024 03:54:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: AdobeCollabSync.exe, version: 24.2.20687.0, time stamp: 0x66170966
Faulting module name: AdobeCollabSync.exe, version: 24.2.20687.0, time stamp: 0x66170966
Exception code: 0xc0000409
Fault offset: 0x0000000000494b31
Faulting process ID: 0x2208
Faulting application start time: 0x01da900584ba052f
Faulting application path: C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe
Faulting module path: C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe
Report ID: 3cb67022-1c0c-4dec-aa2b-54600cb730d8
Faulting package full name:
Faulting package-relative application ID:
Error: (04/16/2024 12:57:34 AM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: DESKTOP-NG833IV)
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.
Error: (04/16/2024 12:53:24 AM) (Source: Freemake Improver) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.IO.FileLoadException: Die Datei oder Assembly "Newtonsoft.Json, Version=7.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed" oder eine Abhängigkeit davon wurde nicht gefunden. Die gefundene Manifestdefinition der Assembly stimmt nicht mit dem Assemblyverweis überein. (Ausnahme von HRESULT: 0x80131040)
Dateiname: "Newtonsoft.Json, Version=7.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed" ---> System.IO.FileLoadException: Die Datei oder Assembly "Newtonsoft.Json, Version=6.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed" oder eine Abhängigkeit davon wurde nicht gefunden. Die gefundene Manifestdefinition der Assembly stimmt nicht mit dem Assemblyverweis überein. (Ausnahme von HRESULT: 0x80131040)
Dateiname: "Newtonsoft.Json, Version=6.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed"
WRN: Protokollierung der Assemblybindung ist AUS.
Sie können die Protokollierung der Assemblybindungsfehler aktivieren, indem Sie den Registrierungswert [HKLM\Software\Microsoft\Fusion!E...
Error: (04/15/2024 08:32:40 AM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Users\paulm\AppData\Local\CapCut\Apps\CapCut.exe".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_a863d714867441db.manifest.
Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_60b6a03d71f818d5.manifest.
Error: (04/15/2024 08:12:41 AM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: DESKTOP-NG833IV)
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.
Error: (04/15/2024 08:08:41 AM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Users\paulm\AppData\Local\CapCut\Apps\CapCut.exe".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_a863d714867441db.manifest.
Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_60b6a03d71f818d5.manifest.
Error: (04/15/2024 08:08:34 AM) (Source: Freemake Improver) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.IO.FileLoadException: Die Datei oder Assembly "Newtonsoft.Json, Version=7.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed" oder eine Abhängigkeit davon wurde nicht gefunden. Die gefundene Manifestdefinition der Assembly stimmt nicht mit dem Assemblyverweis überein. (Ausnahme von HRESULT: 0x80131040)
Dateiname: "Newtonsoft.Json, Version=7.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed" ---> System.IO.FileLoadException: Die Datei oder Assembly "Newtonsoft.Json, Version=6.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed" oder eine Abhängigkeit davon wurde nicht gefunden. Die gefundene Manifestdefinition der Assembly stimmt nicht mit dem Assemblyverweis überein. (Ausnahme von HRESULT: 0x80131040)
Dateiname: "Newtonsoft.Json, Version=6.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed"
WRN: Protokollierung der Assemblybindung ist AUS.
Sie können die Protokollierung der Assemblybindungsfehler aktivieren, indem Sie den Registrierungswert [HKLM\Software\Microsoft\Fusion!E...
Error: (04/15/2024 07:58:55 AM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Users\paulm\AppData\Local\CapCut\Apps\CapCut.exe".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_a863d714867441db.manifest.
Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_60b6a03d71f818d5.manifest.
System errors:
=============
Error: (04/16/2024 12:53:25 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT-AUTORITÄT)
Error: (04/16/2024 12:53:23 AM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1096) (User: NT-AUTORITÄT)
Description: The processing of Group Policy failed. Windows could not apply the registry-based policy settings for the Group Policy object LocalGPO. Group Policy settings will not be resolved until this event is resolved. View the event details for more information on the filename and path that caused the failure.
Error: (04/16/2024 12:48:32 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The User Energy Server Service queencreek service terminated with the following error:
Debugger received RIP exception.
Error: (04/16/2024 12:48:32 AM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: The Energy Server Service queencreek service did not shut down properly after receiving a pre-shutdown control.
Error: (04/15/2024 08:08:35 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT-AUTORITÄT)
Error: (04/15/2024 08:08:33 AM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1096) (User: NT-AUTORITÄT)
Description: The processing of Group Policy failed. Windows could not apply the registry-based policy settings for the Group Policy object LocalGPO. Group Policy settings will not be resolved until this event is resolved. View the event details for more information on the filename and path that caused the failure.
Error: (04/15/2024 08:08:01 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-NG833IV)
Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Nicht verfügbar" in order to run the server:
{DD522ACC-F821-461A-A407-50B198B896DC}
Error: (04/15/2024 08:07:56 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-NG833IV)
Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Nicht verfügbar" in order to run the server:
{DD522ACC-F821-461A-A407-50B198B896DC}
Windows Defender:
================
Date: 2024-04-16 02:07:34
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Vollständige Überprüfung
Date: 2024-04-15 04:40:43
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Vollständige Überprüfung
Date: 2024-04-15 04:18:27
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Schnellüberprüfung
Date: 2024-04-15 04:09:46
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Schnellüberprüfung
Date: 2024-04-15 00:17:44
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
Name: PUA:Win32/Keygen
Severity: Niedrig
Category: Potenziell unerwünschte Software
Path: containerfile:_C:\Users\paulm\Documents\VST\Bazzism.rar; containerfile:_C:\Users\paulm\Documents\VST\ISM.BazzISM.v2.5.3.Incl.Keygen-R2R\r2r-8520.rar; containerfile:_C:\Users\paulm\Documents\VST\Serum.zip; file:_C:\Users\paulm\Documents\VST\Bazzism.rar->ISM.BazzISM.v2.5.3.Incl.Keygen-R2R\r2r-8520.rar->R2R\ISM_KeyGen.exe; file:_C:\Users\paulm\Documents\VST\ISM.BazzISM.v2.5.3.Incl.Keygen-R2R\r2r-8520.rar->R2R\ISM_KeyGen.exe; file:_C:\Users\paulm\Documents\VST\ISM.BazzISM.v2.5.3.Incl.Keygen-R2R\R2R\ISM_KeyGen.exe; file:_C:\Users\paulm\Documents\VST\Serum.zip->Xfer.Records.Serum.v1.0.1.b3-WiN.OSX/Xfer.Records.Serum.v1.0.0.Incl.Keygen.READ.NFO-R2R/r2r-2596.rar->R2R\Nerve_KeyGen.exe->(nsis-6-keygen.exe)->(UPX); file:_C:\Users\paulm\Documents\VST\Serum.zip->Xfer.Records.Serum.v1.0.1.b3-WiN.OSX/Xfer.Records.Serum.v1.0.0.MacOSX.Incl.Keygen-R2R/r2r-2597.r02->R2R\Nerve_KeyGen.exe->(nsis-6-keygen.exe)->(UPX); file:_C:\Users\paulm\Documents\VST\Serum.zip->Xfer.Records.Serum.v1.0.1.b3-WiN.OSX/Xfer.Records.Serum.v1.0.1.b3.U
Detection Origin: Lokaler Computer
Detection Type: Konkret
Detection Source: Benutzer
Process Name: Unknown
Security intelligence Version: AV: 1.409.255.0, AS: 1.409.255.0, NIS: 1.409.255.0
Engine Version: AM: 1.1.24030.4, NIS: 1.1.24030.4
Event[0]:
Date: 2024-04-15 07:58:55
Description:
Microsoft Defender Antivirus Real-Time Protection feature has encountered an error and failed.
Feature: Bei Zugriff
Error Code: 0x8007043c
Error description: Der Dienst kann nicht im abgesicherten Modus gestartet werden.
Reason: Die Antischadsoft-Sicherheitsfunktion wurde aus unbekanntem Grund beendet. Möglicherweise kann das Problem durch einen Neustart des Diensts behoben werden.
Date: 2024-04-15 07:57:47
Description:
Microsoft Defender Antivirus Real-Time Protection feature has encountered an error and failed.
Feature: Bei Zugriff
Error Code: 0x8007043c
Error description: Der Dienst kann nicht im abgesicherten Modus gestartet werden.
Reason: Die Antischadsoft-Sicherheitsfunktion wurde aus unbekanntem Grund beendet. Möglicherweise kann das Problem durch einen Neustart des Diensts behoben werden.
Date: 2024-03-18 16:06:14
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.407.492.0
Update Source: Microsoft Update-Server
Security intelligence Type: AntiVirus
Update Type: Voll
Current Engine Version:
Previous Engine Version: 1.1.24020.9
Error code: 0x80070102
Error description: Der Wartevorgang wurde abgebrochen.
Date: 2024-03-18 16:06:14
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.407.492.0
Update Source: Microsoft Update-Server
Security intelligence Type: AntiVirus
Update Type: Voll
Current Engine Version:
Previous Engine Version: 1.1.24020.9
Error code: 0x80070102
Error description: Der Wartevorgang wurde abgebrochen.
Date: 2023-09-28 07:02:03
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence and will attempt to revert to a previous version.
Security intelligence Attempted: Aktuell
Error Code: 0x80501102
Error description: Unerwartetes Problem. Installieren Sie bei Bedarf verfügbare Updates, und starten Sie das Programm dann erneut. Informationen zum Installieren von Updates finden Sie unter "Hilfe und Support".
Security intelligence Version: 1.397.1638.0;1.397.1638.0
Engine Version: 1.1.23080.2005
CodeIntegrity:
===============
Date: 2024-04-16 15:53:52
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Users\paulm\AppData\Local\Discord\app-1.0.9041\Discord.exe) attempted to load \Device\HarddiskVolume3\ProgramData\obs-studio-hook\graphics-hook32.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. P1.50 09/03/2020
Motherboard: ASRock B460 Steel Legend
Processor: Intel® Core i7-10700F CPU @ 2.90GHz
Percentage of memory in use: 50%
Total physical RAM: 16314.16 MB
Available physical RAM: 8049.11 MB
Total Virtual: 38842.16 MB
Available Virtual: 27183.3 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:953.25 GB) (Free:48.86 GB) (Model: Patriot M.2 P300) NTFS
Drive d: (New Volume) (Fixed) (Total:1863 GB) (Free:613.33 GB) (Model: CT2000P3SSD8) NTFS
Drive e: (INTENSO) (Removable) (Total:7.49 GB) (Free:7.49 GB) FAT32
\\?\Volume{a414ce20-f078-4499-b493-9476e13a74b3}\ () (Fixed) (Total:0.5 GB) (Free:0.08 GB) NTFS
\\?\Volume{65b593e2-1ac6-4719-b1b1-31014ae85ca1}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 2 (Size: 7.5 GB) (Disk ID: 0232E55A)
Partition 1: (Active) - (Size=7.5 GB) - (Type=FAT32)
==================== End of Addition.txt =======================Additional scan result of Farbar Recovery Scan Tool (x64) Version: 10.04.2024
Ran by paulm (16-04-2024 15:54:47)
Running from C:\Users\paulm\Downloads
Microsoft Windows 10 Home Version 22H2 19045.4291 (X64) (2021-05-15 21:02:58)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-2822836515-2594661799-1331936652-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2822836515-2594661799-1331936652-503 - Limited - Disabled)
Gast (S-1-5-21-2822836515-2594661799-1331936652-501 - Limited - Disabled)
paulm (S-1-5-21-2822836515-2594661799-1331936652-1001 - Administrator - Enabled) => C:\Users\paulm
WDAGUtilityAccount (S-1-5-21-2822836515-2594661799-1331936652-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
888poker.de (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\888poker.de) (Version: 1.1.2.39 - 888)
Ableton Live 10 Suite (HKLM\...\{3AFBB4AE-59CA-414C-8264-BA833986EE54}) (Version: 10.0.0.0 - Ableton)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1033-FFFF-7760-BC15014EA700}) (Version: 24.002.20687 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601067}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 24.3.1 - Advanced Micro Devices, Inc.)
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.13 - Michael Tippach)
Attribute Changer 10.10 (HKLM\...\{27263813-8BDE-4CD2-84D3-02536743428A}_is1) (Version: 10.0 - Romain Petges)
Audacity 3.3.3 (HKLM\...\Audacity_is1) (Version: 3.3.3 - Audacity Team)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Bethesda.net Launcher (HKLM-x32\...\{3448917E-E4FE-4E30-9502-9FD52EABB6F5}_is1) (Version: 1.74.4 - Bethesda Softworks)
Branding64 (HKLM\...\{492AEFBE-1B81-4C20-A111-E6974BB98EC5}) (Version: 1.00.0009 - Advanced Micro Devices, Inc.) Hidden
Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 123.1.64.122 - Die Brave-Autoren)
By Click Downloader (HKLM-x32\...\{A197105C-61BF-450F-B10A-177130E2CF25}) (Version: 2.3.42 - ByClick) Hidden
By Click Downloader (HKLM-x32\...\By Click Downloader 2.3.42) (Version: 2.3.42 - ByClick)
Camo Studio (HKLM\...\{3B3388F2-5E83-4C7A-ACB3-939FA3419D1F}) (Version: 2.1.11.11612 - Reincubate)
CapCut (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\CapCut) (Version: 2.0.0.348 - Bytedance Pte. Ltd.)
Cisco AnyConnect Secure Mobility Client (HKLM-x32\...\Cisco AnyConnect Secure Mobility Client) (Version: 4.10.07061 - Cisco Systems, Inc.)
Cisco AnyConnect Secure Mobility Client (HKLM-x32\...\{11E16B39-0FA6-4DF0-9736-73BB638C9924}) (Version: 4.10.07061 - Cisco Systems, Inc.) Hidden
Core Temp 1.17.1 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.17.1 - ALCPU)
Cyberpunk 2077 (HKLM-x32\...\1423049311_is1) (Version: 2.01 - GOG.com)
Cyberpunk 2077 REDmod (HKLM-x32\...\1597316373_is1) (Version: 2.01 - GOG.com)
Cyberpunk 2077: Phantom Liberty (HKLM-x32\...\1256837418_is1) (Version: 2.01 - GOG.com)
DarkPsy FX466 DEMO version 1.0 (HKLM\...\DarkPsy FX466 DEMO_is1) (Version: 1.0 - G-Sonique)
DarkPsy FX466 version 1.0 (HKLM\...\DarkPsy FX466_is1) (Version: 1.0 - G-Sonique)
Discord (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\Discord) (Version: 1.0.9001 - Discord Inc.)
Dragon Age Redesigned © Morrigan (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\Dragon Age Redesigned © Morrigan) (Version: - )
Dragon Age Redesigned- Leliana's Song (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\Dragon Age Redesigned- Leliana's Song) (Version: - )
Dragon Age Redesigned Oghren© (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\Dragon Age Redesigned Oghren©) (Version: - )
Dragon Age Redesigned© (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\Dragon Age Redesigned©) (Version: - )
Dragon Age Redesigned© Leliana (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\Dragon Age Redesigned© Leliana) (Version: - )
Dragon Age Redesigned© Wynne (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\Dragon Age Redesigned© Wynne) (Version: - )
Driver Easy 5.8.1 (HKLM\...\DriverEasy_is1) (Version: 5.8.1 - Easeware)
Epic Games Launcher (HKLM-x32\...\{37D87A98-763A-44A7-AD9E-8D661616A2C4}) (Version: 1.3.78.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epic Online Services (HKLM-x32\...\{35905844-0610-427D-86A0-2103FABE3D4D}) (Version: 2.0.42.0 - Epic Games, Inc.)
FabFilter Total Bundle (HKLM\...\FabFilter Total Bundle_is1) (Version: 2018.2 - FabFilter & Team V.R)
Fiddler Everywhere 3.1.1 (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\8652495b-663c-5255-8c97-412896fbef82) (Version: 3.1.1 - Progress Software Corporation)
Fraps (HKLM-x32\...\Fraps) (Version: - )
Freemake Video Converter Version 4.1.13 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 4.1.13 - Mixbyte Inc.)
GIMP 2.10.28 (HKLM\...\GIMP-2_is1) (Version: 2.10.28 - The GIMP Team)
Git (HKLM\...\Git_is1) (Version: 2.42.0.2 - The Git Development Community)
GOG GALAXY (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: 2.0.71.2 - GOG.com)
HitFilm Express (HKLM\...\{1D791529-BF85-4D61-89F5-EEA81034F26E}) (Version: 17.0.11715.56097 - FXHOME)
Image Eye v9.2 x64 (HKLM\...\Image Eye x64_is1) (Version: - FMJ-Software)
Infected Mushroom - Wider version 1.0 (HKLM\...\{A7684FCF-245F-4C90-87EE-472DC3EC3868}_is1) (Version: 1.0 - Polyverse Music, Inc.)
Intel Driver && Support Assistant (HKLM-x32\...\{CCDC49A6-B288-4623-AA1D-332D328A8FA8}) (Version: 24.1.13.10 - Intel) Hidden
Intel® Computing Improvement Program (HKLM\...\{76751700-CC7A-4C8E-A7EE-D66651594A6A}) (Version: 2.4.10802 - Intel Corporation)
Intel® Driver & Support Assistant (HKLM-x32\...\{64f50684-bac6-488b-9bab-93616f34d6ec}) (Version: 24.1.13.10 - Intel)
ISM BazzISM (HKLM\...\BazzISM_is1) (Version: 2.5.3 - ISM)
Java 8 Update 191 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180191F0}) (Version: 8.0.1910.12 - Oracle Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Ledger Live 2.60.0 (HKLM\...\c62032b2-0bca-5abc-b458-fd67cfc9e49b) (Version: 2.60.0 - Ledger Live Team)
Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: 2024.2.534136 - Logitech)
Microsoft .NET Core Host - 3.1.28 (x64) (HKLM\...\{26ECE92F-518E-40AF-9108-7B7B444A46DE}) (Version: 24.112.31513 - Microsoft Corporation) Hidden
Microsoft .NET Core Host FX Resolver - 3.1.28 (x64) (HKLM\...\{CDEA72F4-1367-4E0A-AC5F-0EBAF7C6825A}) (Version: 24.112.31513 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.28 (x64) (HKLM\...\{3691148D-EF42-4812-8956-AE11FC413B8D}) (Version: 24.112.31513 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.28 (x64) (HKLM-x32\...\{231e3b76-4d0f-4e60-9d69-f11c9c448630}) (Version: 3.1.28.31513 - Microsoft Corporation)
Microsoft .NET Host - 6.0.25 (x64) (HKLM\...\{C7141A99-592B-4226-A4E9-B767C1D0FBAF}) (Version: 48.100.4028 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.25 (x64) (HKLM\...\{AE86D888-1404-47CC-A7BB-8D86C0503E58}) (Version: 48.100.4028 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.25 (x64) (HKLM\...\{3544B2EE-E62F-4D11-B79C-3DDEACE94DA5}) (Version: 48.100.4028 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 123.0.2420.97 - Microsoft Corporation)
Microsoft Edge WebView2-Laufzeit (HKLM-x32\...\Microsoft EdgeWebView) (Version: 123.0.2420.97 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\OneDriveSetup.exe) (Version: 24.055.0317.0002 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.38.33135 (HKLM-x32\...\{c649ede4-f16a-4486-a117-dcc2f2a35165}) (Version: 14.38.33135.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.38.33135 (HKLM-x32\...\{46c3b171-c15c-4137-8e1d-67eeb2985b44}) (Version: 14.38.33135.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.38.33135 (HKLM\...\{19AFE054-CA83-45D5-A9DB-4108EF4BD391}) (Version: 14.38.33135 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.38.33135 (HKLM\...\{AA0C8AB5-7297-4D46-A0D9-08096FE59E46}) (Version: 14.38.33135 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.38.33135 (HKLM-x32\...\{9C19C103-7DB1-44D1-A039-2C076A633A38}) (Version: 14.38.33135 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.38.33135 (HKLM-x32\...\{286DC39B-5FB7-4AFF-9DD4-22DB47664CD7}) (Version: 14.38.33135 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.25 (x64) (HKLM\...\{E016F2B9-01FE-4FAA-882E-ECC43FA49751}) (Version: 48.100.4037 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.25 (x64) (HKLM-x32\...\{fb0500c1-f968-4621-a48b-985b52884c49}) (Version: 6.0.25.33020 - Microsoft Corporation)
My Game Long Name (HKLM\...\UDK-164f20d7-a9e4-47f5-950c-778e91ea852f) (Version: - Epic Games, Inc.)
Native Instruments Controller Editor (HKLM-x32\...\Native Instruments Controller Editor) (Version: 2.1.0.183 - Native Instruments)
Native Instruments Native Access (HKLM-x32\...\Native Instruments Native Access) (Version: 1.13.3.136 - Native Instruments)
Native Instruments Traktor 2 (HKLM-x32\...\Native Instruments Traktor 2) (Version: 2.11.3.17 - Native Instruments)
Native Instruments Traktor Audio 10 Driver (HKLM-x32\...\Native Instruments Traktor Audio 10 Driver) (Version: - Native Instruments)
Native Instruments Traktor Audio 2 MK2 Driver (HKLM-x32\...\Native Instruments Traktor Audio 2 MK2 Driver) (Version: - Native Instruments)
Native Instruments Traktor Audio 6 Driver (HKLM-x32\...\Native Instruments Traktor Audio 6 Driver) (Version: - Native Instruments)
Native Instruments Traktor Kontrol D2 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol D2 Driver) (Version: - Native Instruments)
Native Instruments Traktor Kontrol F1 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol F1 Driver) (Version: - Native Instruments)
Native Instruments Traktor Kontrol S2 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol S2 Driver) (Version: - Native Instruments)
Native Instruments Traktor Kontrol S2 MK2 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol S2 MK2 Driver) (Version: - Native Instruments)
Native Instruments Traktor Kontrol S4 MK2 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol S4 MK2 Driver) (Version: - Native Instruments)
Native Instruments Traktor Kontrol S5 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol S5 Driver) (Version: - Native Instruments)
Native Instruments Traktor Kontrol S8 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol S8 Driver) (Version: - Native Instruments)
Native Instruments Traktor Kontrol X1 MK2 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol X1 MK2 Driver) (Version: - Native Instruments)
Native Instruments Traktor Kontrol Z1 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol Z1 Driver) (Version: - Native Instruments)
Native Instruments Traktor Kontrol Z2 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol Z2 Driver) (Version: - Native Instruments)
NoMachine Enterprise Client (HKLM\...\NoMachine Enterprise Client_is1) (Version: 8.5.3 - NoMachine S.a.r.l.)
NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 27.2.4 - OBS Project)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
OpenOffice 4.1.10 (HKLM-x32\...\{5A9673DB-4BBE-4FEA-8AB6-840C89E79913}) (Version: 4.110.9807 - Apache Software Foundation)
OpenOffice Updater (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\OpenOffice Updater) (Version: 1.1.10 - OpenOffice) <==== ATTENTION
Origin (HKLM-x32\...\Origin) (Version: 10.5.102.48654 - Electronic Arts, Inc.)
osu! (HKLM-x32\...\{0af024f5-c0d4-481b-bb6b-5f781bfc6fbc}) (Version: latest - ppy Pty Ltd)
Paradox Launcher v2 (HKLM\...\{D3A03918-53CA-485C-B819-E4B86DF5AE82}) (Version: 2.4.0 - Paradox Interactive)
PDFill PDF Editor Professional (HKLM\...\{26037138-C111-4BC5-88E8-DD2B2F2460C7}) (Version: 15.0 - PlotSoft LLC)
Python 3.10.9 (64-bit) (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\{e8531749-5517-4937-a722-a4052cb2d75e}) (Version: 3.10.9150.0 - Python Software Foundation)
Python 3.10.9 Add to Path (64-bit) (HKLM\...\{59ED0114-0C86-4B18-83E2-929AD7D232AD}) (Version: 3.10.9150.0 - Python Software Foundation) Hidden
Python 3.10.9 Core Interpreter (64-bit) (HKLM\...\{9802C929-A3F0-480D-A4B2-DAD129F2236E}) (Version: 3.10.9150.0 - Python Software Foundation) Hidden
Python 3.10.9 Development Libraries (64-bit) (HKLM\...\{E2BC2EBD-7260-458B-A42C-3322DCB0B82F}) (Version: 3.10.9150.0 - Python Software Foundation) Hidden
Python 3.10.9 Documentation (64-bit) (HKLM\...\{F007E8E2-B4A7-4559-BB78-7AC533822431}) (Version: 3.10.9150.0 - Python Software Foundation) Hidden
Python 3.10.9 Executables (64-bit) (HKLM\...\{F115E5B8-9719-4BDF-8B0D-551809BB677D}) (Version: 3.10.9150.0 - Python Software Foundation) Hidden
Python 3.10.9 pip Bootstrap (64-bit) (HKLM\...\{067C6FFC-0FD1-4F3A-8E94-58F091BCC0D5}) (Version: 3.10.9150.0 - Python Software Foundation) Hidden
Python 3.10.9 Standard Library (64-bit) (HKLM\...\{0CBB496F-1D15-42F1-AA45-C01C95196EC8}) (Version: 3.10.9150.0 - Python Software Foundation) Hidden
Python 3.10.9 Tcl/Tk Support (64-bit) (HKLM\...\{92CFA54C-9CE5-4284-83FD-1D0B8AB2AB69}) (Version: 3.10.9150.0 - Python Software Foundation) Hidden
Python 3.10.9 Test Suite (64-bit) (HKLM\...\{0DDDDA24-0876-4BEF-AC9B-26D8B78DCCC9}) (Version: 3.10.9150.0 - Python Software Foundation) Hidden
Python 3.10.9 Utility Scripts (64-bit) (HKLM\...\{1F097B66-81E9-46FB-BBAC-315C5F50CF94}) (Version: 3.10.9150.0 - Python Software Foundation) Hidden
Python Launcher (HKLM-x32\...\{35A2AF4F-C504-4D2A-A025-F69379ECDF07}) (Version: 3.10.8009.0 - Python Software Foundation)
REDlauncher (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\{7258BA11-600C-430E-A759-27E2C691A335}-REDlauncher_is1) (Version: - CD Projekt RED)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.81.1699 - Rockstar Games)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.2.3.4 - Rockstar Games)
ScpToolkit (HKLM\...\{AC052048-9828-45E3-872B-04CE30A3B58B}) (Version: 1.6.238.16010 - Nefarius Software Solutions)
Serum (HKLM\...\Serum_XR_is1) (Version: 1.357 - Xfer Records)
SonoBus version 1.7.2 (HKLM\...\SonoBus_is1) (Version: 1.7.2 - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Steinberg VST Classics 1 64bit (HKLM\...\{AA322103-FC2B-4D86-BA6C-67D4DDB4209C}) (Version: 1.0.0 - Steinberg Media Technologies GmbH)
Telegram Desktop (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 4.15.2 - Telegram FZ-LLC)
TIDAL (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\TIDAL) (Version: 2.36.2 - TIDAL Music AS)
TmUnitedForever Update 2010-03-15 (HKLM-x32\...\TmUnitedForever_is1) (Version: - Nadeo)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 10.51 - Ghisler Software GmbH)
Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{B9A7A138-BFD5-4C73-A269-F78CCA28150E}) (Version: 8.94.0.0 - Microsoft Corporation)
UPDF (HKLM\...\UPDF) (Version: - Superace Software Technology Co., Ltd.)
UPDF_Win version 1.0.7.0 (HKLM-x32\...\{64F0F31B-1791-46EC-96ED-44120E105F77}_is1) (Version: 1.0.7.0 - Superace Software Technology Co., Ltd.)
ValhallaSupermassive version 1.1.1v5 (HKLM-x32\...\{AC6A778B-2004-4BAF-9E1F-CAA5CC27D7FA}_is1) (Version: 1.1.1v5 - Valhalla DSP, LLC)
Vortex (HKLM\...\57979c68-f490-55b8-8fed-8b017a5af2fe) (Version: 1.10.6 - Black Tree Gaming Ltd.)
Winamp (HKLM-x32\...\Winamp) (Version: 5.8 - Winamp SA)
WinDirStat 1.1.2 (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\WinDirStat) (Version: - )
Windows-PC-Integritätsprüfung (HKLM\...\{B3956CF3-F6C5-4567-AC38-1FD4432B319C}) (Version: 3.6.2204.08001 - Microsoft Corporation)
WinRAR 6.01 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 6.01.0 - win.rar GmbH)
Wondershare DemoCreator Spark(Build 6.7.5) (HKLM\...\Wondershare DemoCreator Spark_is1) (Version: - Wondershare Software)
Wondershare DemoCreator(Build 6.9.0) (HKLM\...\Wondershare DemoCreator_is1) (Version: - Wondershare Software)
Wondershare Helper Compact 2.6.0 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.6.0 - Wondershare)
Zoom (HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\ZoomUMX) (Version: 5.15.2 (18096) - Zoom Video Communications, Inc.)
Packages:
=========
Acrobat Notification Client -> C:\Program Files\WindowsApps\AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r [2023-08-16] (Adobe Systems Incorporated)
Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC [2024-03-14] ()
FBReader -> C:\Program Files\WindowsApps\FBReader_2.0.3.0_x64__0ydjfefeqf4sp [2023-08-01] (FBReader.ORG Limited)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_152.1.1099.0_x64__v10z8vjag6ke6 [2024-03-15] (HP Inc.)
Microsoft Copilot -> C:\Program Files\WindowsApps\Microsoft.Windows.Ai.Copilot.Provider_1.0.3.0_neutral__8wekyb3d8bbwe [2024-03-29] (Microsoft Corporation)
Photos Media Engine Add-on -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2022-05-01] (Microsoft Corporation)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0 [2024-04-13] (Spotify AB) [Startup Task]
Web Search from Microsoft Bing -> C:\Program Files\WindowsApps\Microsoft.BingSearch_1.0.91.0_x64__8wekyb3d8bbwe [2024-04-13] (Microsoft Corporation)
XING -> C:\Program Files\WindowsApps\XINGAG.XING_4.0.9.0_x86__xpfg3f7e9an52 [2024-02-11] (New Work SE)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-2822836515-2594661799-1331936652-1001_Classes\CLSID\{002add35-e00a-f3ef-f484-215bb738aa23}\localserver32 -> C:\Program Files (x86)\Camo Studio\CamoStudio.exe (Reincubate Limited -> Reincubate)
CustomCLSID: HKU\S-1-5-21-2822836515-2594661799-1331936652-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-2822836515-2594661799-1331936652-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2024-03-12] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-04-07] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-04-07] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [ACShell] -> {D3F9A525-8824-497A-BE36-B23E22F141FC} => C:\Program Files\Attribute Changer\acshell.dll [2021-05-12] (Romain Petges) [File not signed]
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2024-03-13] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2024-03-12] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-04-07] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-04-07] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\system32\frapsv64.dll [105984 2019-08-30] (Beepa P/L) [File not signed]
HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\SysWOW64\frapsvid.dll [94208 2019-08-30] (Beepa P/L) [File not signed]
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2024-03-11 16:47 - 2024-03-11 16:47 - 000295936 _____ () [File not signed] [File is in use] C:\Program Files (x86)\Camo Studio\Service\CamoServiceSupport.dll
2023-10-02 12:22 - 2016-07-21 10:54 - 000137728 _____ () [File not signed] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll
2023-10-02 12:22 - 2017-09-12 10:34 - 001506304 _____ () [File not signed] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\DAQExp.dll
2023-11-05 05:48 - 2023-11-05 05:48 - 000010240 _____ () [File not signed] C:\Program Files\Adobe\Acrobat DC\Acrobat\locale\de_de\AcroTray.deu
2023-10-02 12:26 - 2023-07-27 14:33 - 000009216 _____ () [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\CaptureBase.dll
2023-10-02 12:26 - 2023-07-27 14:33 - 000342528 _____ () [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\CaptureEngineEx.dll
2023-10-02 12:26 - 2023-07-27 14:33 - 000303104 _____ () [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\CaptureNLEMgr.dll
2023-10-02 12:26 - 2023-07-27 14:33 - 000434688 _____ () [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\CaptureSource.dll
2023-10-02 12:26 - 2023-07-27 14:33 - 000018944 _____ () [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\COMSupport.dll
2023-10-02 12:26 - 2023-07-27 14:33 - 002674688 _____ () [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\data_api.dll
2023-10-02 12:26 - 2023-07-27 14:33 - 027441664 _____ () [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\libkernaldec.dll
2023-10-02 12:26 - 2023-07-27 14:33 - 000216064 _____ () [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\quazip1-qt5.dll
2023-10-02 12:26 - 2023-07-27 14:33 - 002374656 _____ () [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\WS_Image.dll
2023-10-02 12:26 - 2023-07-27 14:33 - 000101888 _____ () [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\WS_Log.DLL
2024-04-13 06:51 - 2024-04-13 06:51 - 000356864 _____ (Benjamin Höglinger) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Libarius\0dc73dbff72283235375853041284104\Libarius.ni.dll
2024-03-21 03:00 - 2006-11-02 16:18 - 000850432 _____ (Microsoft Corporation) [File not signed] C:\Windows\system32\spool\DRIVERS\x64\3\PDFILLPS5UI.DLL
2023-10-02 12:26 - 2023-07-27 14:33 - 000094720 _____ (Open Source Software community LGPL) [File not signed] C:\Program Files\Wondershare\Wondershare DemoCreator Spark\pthreadGC2.dll
2024-02-22 09:58 - 2024-02-22 09:58 - 001626624 _____ (Robert Simpson, et al.) [File not signed] C:\Program Files\Intel\SUR\QUEENCREEK\x64\SQLite.Interop.dll
2024-02-22 09:58 - 2024-02-22 09:58 - 003160576 _____ (SQLite Development Team) [File not signed] C:\Program Files\Intel\SUR\QUEENCREEK\x64\sqlite3.dll
2024-04-13 06:50 - 2024-04-13 06:50 - 000978432 _____ (The Apache Software Foundation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\log4net\9abb5f12056216794776bec54561d515\log4net.ni.dll
2021-07-24 02:13 - 2021-07-24 02:12 - 001282048 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\LIBEAY32.dll
2021-07-24 02:13 - 2021-07-24 02:12 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\ssleay32.dll
2021-07-24 02:13 - 2021-07-24 02:12 - 001611264 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\platforms\qwindows.dll
2021-08-06 01:20 - 2021-07-24 02:12 - 005487104 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Core.dll
2021-08-06 01:20 - 2021-07-24 02:12 - 005841920 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Gui.dll
2021-08-06 01:20 - 2021-07-24 02:12 - 001179136 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Network.dll
2021-08-06 01:20 - 2021-07-24 02:12 - 000146432 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5WebSockets.dll
2021-08-06 01:20 - 2021-07-24 02:12 - 005089792 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Widgets.dll
2021-08-06 01:20 - 2021-07-24 02:12 - 000184832 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Xml.dll
2023-10-02 12:22 - 2017-09-12 10:36 - 000708608 _____ (Wondershare) [File not signed] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSProducstInfo.dll
==================== Alternate Data Streams (Whitelisted) ========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Users\paulm\AppData\Local\Temp:$DATA [16]
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) ==========
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2024-04-11] (Adobe Inc. -> Adobe Systems Incorporated)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2024-04-11] (Adobe Inc. -> Adobe Systems Incorporated)
BHO-x32: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\ssv.dll [2021-06-21] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2024-04-11] (Adobe Inc. -> Adobe Systems Incorporated)
BHO-x32: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\jp2ssv.dll [2021-06-21] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2024-04-11] (Adobe Inc. -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2024-04-11] (Adobe Inc. -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2024-04-11] (Adobe Inc. -> Adobe Systems Incorporated)
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2019-12-07 11:14 - 2021-09-20 21:56 - 000000828 _____ C:\Windows\system32\drivers\etc\hosts
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\dotnet\;C:\Program Files\Git\cmd
HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\paulm\AppData\Roaming\Mozilla\Firefox\Desktop-Hintergrund.bmp
DNS Servers: 192.168.2.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2822836515-2594661799-1331936652-1001\...\StartupApproved\Run: => "GogGalaxy"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{5CBB5121-F99E-41E7-816E-C1CACD8923F1}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe => No File
FirewallRules: [{7F72BB38-4595-420D-875D-CD9C617FBBF5}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{4CFD9B71-C7AC-43B7-B3B0-2C4522352046}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{CD046BC7-007B-42D0-831F-889A93DA8722}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{AB774F71-2D61-4727-8B5F-2CCF8BC9BE9C}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{A842B544-17DF-4A36-90F2-04934E6AF0D4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TrackMania Nations Forever\TmForever.exe () [File not signed]
FirewallRules: [{EF73914C-65EE-4290-AABF-59EC3C768CF3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TrackMania Nations Forever\TmForever.exe () [File not signed]
FirewallRules: [{264492A4-92FD-4155-A316-82571EBEDA3E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TrackMania Nations Forever\TmForeverLauncher.exe () [File not signed]
FirewallRules: [{9ADDCC27-74D3-4F89-ABA9-AF04EDA6FDF7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TrackMania Nations Forever\TmForeverLauncher.exe () [File not signed]
FirewallRules: [{CEA17D5E-3106-471A-BC45-1849441D0A71}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Transistor\x64\Transistor.exe (Supergiant Games, LLC) [File not signed]
FirewallRules: [{2DDFC459-A167-4603-A274-63DBB2939D8E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Transistor\x64\Transistor.exe (Supergiant Games, LLC) [File not signed]
FirewallRules: [{E9529E00-32DF-4FD4-AC16-AE87DA294339}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Witcher 3\bin\x64\witcher3.exe => No File
FirewallRules: [{6D8519EF-9157-425C-ADC9-0B2E667824E5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Witcher 3\bin\x64\witcher3.exe => No File
FirewallRules: [{AA16543A-312E-4D41-8C91-87D6987A8F73}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe => No File
FirewallRules: [{FE13B242-3812-467E-B7E2-B5187DF1BF00}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe => No File
FirewallRules: [{A2F57542-2800-4EAF-A3DA-4F764D86EFA2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Antichamber\Binaries\Win32\UDK.exe => No File
FirewallRules: [{FD0428F4-9850-42A7-81A1-B926F9F96FA6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Antichamber\Binaries\Win32\UDK.exe => No File
FirewallRules: [{2A192FA9-4CEE-4BE0-A98F-2D3B3C6CEA93}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Risk of Rain 2\Risk of Rain 2.exe () [File not signed]
FirewallRules: [{10A230D5-C0D1-40E4-A017-CA394FA5D48F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Risk of Rain 2\Risk of Rain 2.exe () [File not signed]
FirewallRules: [TCP Query User{550FFCF3-3FDF-4D5A-8E52-610FEF4578DE}C:\program files (x86)\steam\steamapps\common\code vein\codevein\binaries\win64\codevein-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\code vein\codevein\binaries\win64\codevein-win64-shipping.exe => No File
FirewallRules: [UDP Query User{6C52BADC-03FD-4935-9F2B-E051B80A84EB}C:\program files (x86)\steam\steamapps\common\code vein\codevein\binaries\win64\codevein-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\code vein\codevein\binaries\win64\codevein-win64-shipping.exe => No File
FirewallRules: [{79F8DDC9-F868-4C2F-AE08-888676B8A9F9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Outer Wilds\OuterWilds.exe () [File not signed]
FirewallRules: [{5445952C-A7B3-4C4D-9D3A-8E47BA7B3D62}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Outer Wilds\OuterWilds.exe () [File not signed]
FirewallRules: [{2F31F89B-0CFE-4397-9BBD-FD77959E91DD}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Winamp SA -> Winamp SA)
FirewallRules: [{F27D7863-4583-43CC-863D-EC6057B19174}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Winamp SA -> Winamp SA)
FirewallRules: [{8A5D2B06-9D88-4862-ACB3-AEF08592A8C3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cultist Simulator\cultistsimulator.exe () [File not signed]
FirewallRules: [{158A935A-BFAC-412B-8C0E-441E19D2AB96}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cultist Simulator\cultistsimulator.exe () [File not signed]
FirewallRules: [TCP Query User{94DDD160-907D-4F20-848C-60E71D3CC9D5}C:\program files (x86)\overwatch\_retail_\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\_retail_\overwatch.exe => No File
FirewallRules: [UDP Query User{D5266F78-6488-4FC0-AAA3-DD783B3242BD}C:\program files (x86)\overwatch\_retail_\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\_retail_\overwatch.exe => No File
FirewallRules: [{58DF3D11-D207-4FA1-B5A5-85A4CA9EC378}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Destiny 2\destiny2.exe => No File
FirewallRules: [{8BEB37D4-6729-483C-9451-0500730BED98}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Destiny 2\destiny2.exe => No File
FirewallRules: [TCP Query User{2EE4F1FA-5202-4C8F-85BC-B53898D1CDE3}C:\program files (x86)\gog galaxy\games\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Allow) C:\program files (x86)\gog galaxy\games\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File
FirewallRules: [UDP Query User{1867ED0E-0841-4602-84BF-2FC5E0470171}C:\program files (x86)\gog galaxy\games\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Allow) C:\program files (x86)\gog galaxy\games\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File
FirewallRules: [{D16DE47B-37BF-40AC-A6A7-3DAF22E93D1B}] => (Allow) C:\Users\paulm\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{9ECF1E22-59A4-4F88-856A-B4CD6AE9A6F5}] => (Allow) C:\Users\paulm\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{00161AC3-9C07-47AA-A05E-E39C3BE3A2CD}] => (Allow) C:\Users\paulm\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [TCP Query User{17A1D82F-3923-401E-B3BA-2DB0424AC3C9}C:\program files (x86)\overwatch\_retail_\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\_retail_\overwatch.exe => No File
FirewallRules: [UDP Query User{E9731FC8-7D31-4F70-8400-DB5623064A30}C:\program files (x86)\overwatch\_retail_\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\_retail_\overwatch.exe => No File
FirewallRules: [TCP Query User{654E3226-39A0-4415-8D1B-475A2A531F94}C:\program files (x86)\gog galaxy\games\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Allow) C:\program files (x86)\gog galaxy\games\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File
FirewallRules: [UDP Query User{04ADD5EE-1E2C-4BDC-9276-B67584580A4E}C:\program files (x86)\gog galaxy\games\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Allow) C:\program files (x86)\gog galaxy\games\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File
FirewallRules: [{C9B82815-D8CA-40A7-89F2-061F51A23C24}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Edna & Harvey The Breakout\_anniversary\edna.exe => No File
FirewallRules: [{3BCDE331-DAD7-4ED5-8FDF-E03F28BBF9D9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Edna & Harvey The Breakout\_anniversary\edna.exe => No File
FirewallRules: [{52D6A670-53DA-445C-8685-7E6188EEC855}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enter the Gungeon\EtG.exe () [File not signed]
FirewallRules: [{C1712F27-26EB-4189-BE80-E19B6E944782}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enter the Gungeon\EtG.exe () [File not signed]
FirewallRules: [{309CABE2-5276-465B-8A46-8DDD4093F3B2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Danganronpa Trigger Happy Havoc\Launcher.exe () [File not signed]
FirewallRules: [{288C363D-E0B1-4164-B52A-98B334FCD957}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Danganronpa Trigger Happy Havoc\Launcher.exe () [File not signed]
FirewallRules: [{6951D87E-E401-44BF-8021-6016F063DCC6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DarkestDungeon\_windows\Darkest.exe () [File not signed]
FirewallRules: [{A8BDC877-E086-4583-9F07-28082D4F741F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DarkestDungeon\_windows\Darkest.exe () [File not signed]
FirewallRules: [{BFD596E0-43EE-46B2-B373-026892BBD615}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\LobotomyCorp\LobotomyCorp.exe () [File not signed]
FirewallRules: [{D5DB6019-507F-4C95-9A5D-D37B0A8C2903}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\LobotomyCorp\LobotomyCorp.exe () [File not signed]
FirewallRules: [{A6D9451E-FD46-45C9-958E-6E9418CC2F38}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DARK SOULS III\Game\DarkSoulsIII.exe => No File
FirewallRules: [{73548B90-CDE6-4B7C-A353-397095832312}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DARK SOULS III\Game\DarkSoulsIII.exe => No File
FirewallRules: [TCP Query User{FAC5452D-58EE-492C-942F-01BCC57025C9}C:\program files (x86)\steam\steamapps\common\mass effect andromeda\masseffectandromeda.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\mass effect andromeda\masseffectandromeda.exe => No File
FirewallRules: [UDP Query User{498FC9B1-B8E1-4472-821D-6BB5A231AF64}C:\program files (x86)\steam\steamapps\common\mass effect andromeda\masseffectandromeda.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\mass effect andromeda\masseffectandromeda.exe => No File
FirewallRules: [TCP Query User{011A68BE-28FF-41EC-8FDD-EE4FB06EF1A7}C:\program files (x86)\steam\steamapps\common\the beast inside\thebeastinside\binaries\win64\thebeastinside-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\the beast inside\thebeastinside\binaries\win64\thebeastinside-win64-shipping.exe => No File
FirewallRules: [UDP Query User{071BBEBC-6A27-437C-BE08-6CDA6DC3AE16}C:\program files (x86)\steam\steamapps\common\the beast inside\thebeastinside\binaries\win64\thebeastinside-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\the beast inside\thebeastinside\binaries\win64\thebeastinside-win64-shipping.exe => No File
FirewallRules: [{F2459B09-B50F-4E69-AEBB-042EB16E759C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Nidhogg\Nidhogg.exe (Messhof LLC) [File not signed]
FirewallRules: [{C3A10CA6-7F00-420F-A00C-AF02CCCBE28C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Nidhogg\Nidhogg.exe (Messhof LLC) [File not signed]
FirewallRules: [{4DA13CBE-0313-46CB-83EF-81AB8E8EE881}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Divinity Original Sin Enhanced Edition\Shipping\EoCApp.exe => No File
FirewallRules: [{4128719D-7D5B-4611-92C8-049E94DABFD5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Divinity Original Sin Enhanced Edition\Shipping\EoCApp.exe => No File
FirewallRules: [TCP Query User{02759236-E290-4874-92C4-BAA192A5A4E7}C:\program files (x86)\steam\steamapps\common\antichamber\binaries\win32\udk.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\antichamber\binaries\win32\udk.exe => No File
FirewallRules: [UDP Query User{A9C6ED46-0948-4C1A-93FC-258CFE72360E}C:\program files (x86)\steam\steamapps\common\antichamber\binaries\win32\udk.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\antichamber\binaries\win32\udk.exe => No File
FirewallRules: [{638A0FF8-4AB3-40E6-A55D-42A1769B1AA9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phantom Abyss\PhantomAbyss.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{A16151A1-9607-4C2E-A543-FDCCD1EE3868}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phantom Abyss\PhantomAbyss.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{F081488B-8736-48CB-874D-3ABFCFE0DCCB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Darkwood\Darkwood.exe () [File not signed]
FirewallRules: [{84885960-7C76-4DBB-8C5C-7237F028E74D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Darkwood\Darkwood.exe () [File not signed]
FirewallRules: [{2B66BF4E-BED5-4183-B6B7-547BEAF5341A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ori DE\oriDE.exe () [File not signed]
FirewallRules: [{F10DC04B-1220-4BCC-B322-1E50B72D053C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ori DE\oriDE.exe () [File not signed]
FirewallRules: [{9B7B6799-0324-463B-A45B-4762DE176E4E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Pony Island\PonyIsland.exe (Unity Technologies SF -> ) [File not signed]
FirewallRules: [{FC473EE7-7747-4A71-9559-E2A6D9BD5AAD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Pony Island\PonyIsland.exe (Unity Technologies SF -> ) [File not signed]
FirewallRules: [{217834F7-7FF9-42D4-8F73-32FC5C33D36E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Skyrim\skse_steam_boot.exe () [File not signed]
FirewallRules: [{ED9B42F6-E42F-4770-B202-1872D25FD89D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Skyrim\skse_steam_boot.exe () [File not signed]
FirewallRules: [{3CB30662-1E19-4F64-B1C2-C04EC2040E3F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cuphead\Cuphead.exe () [File not signed]
FirewallRules: [{7AC7C6CC-CCB5-4FEC-B6DD-FB1660096299}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cuphead\Cuphead.exe () [File not signed]
FirewallRules: [{A5D02687-761C-470E-9D3C-0E16EBFCB22C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sunless Skies\Sunless Skies.exe () [File not signed]
FirewallRules: [{05825AF7-E74C-4078-B7AA-C0684F3B6472}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sunless Skies\Sunless Skies.exe () [File not signed]
FirewallRules: [{1C1CB156-BF4B-4957-9CCB-57C79FC2B2A3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Crab Game\Crab Game.exe () [File not signed]
FirewallRules: [{2565599E-CA60-4701-9134-683D64BB26B9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Crab Game\Crab Game.exe () [File not signed]
FirewallRules: [{F5760022-E73A-411E-86F8-D65BE6924BFC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Lily's Well\Game.exe (The NW.js Community) [File not signed]
FirewallRules: [{178B7C2B-658C-4D4C-84A2-B29A0FB27C85}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Lily's Well\Game.exe (The NW.js Community) [File not signed]
FirewallRules: [TCP Query User{3CA662E3-98E1-46E8-89C9-B5A57FC0AB9F}C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe => No File
FirewallRules: [UDP Query User{41C9B4E1-F636-455E-B736-7655570C67DC}C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe => No File
FirewallRules: [TCP Query User{47FD5E93-7D49-40B6-8E5D-F04DE7D4F011}C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe] => (Block) C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe => No File
FirewallRules: [UDP Query User{7867B8EA-0C74-4C78-885A-7C31AF0FAF39}C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe] => (Block) C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe => No File
FirewallRules: [TCP Query User{1AE3F11C-C454-481F-94C8-57BACD322AAE}C:\users\paulm\appdata\local\discord\app-1.0.9003\discord.exe] => (Block) C:\users\paulm\appdata\local\discord\app-1.0.9003\discord.exe => No File
FirewallRules: [UDP Query User{19BFEF8C-ACCA-49B2-9FAE-EE9891D7CBCA}C:\users\paulm\appdata\local\discord\app-1.0.9003\discord.exe] => (Block) C:\users\paulm\appdata\local\discord\app-1.0.9003\discord.exe => No File
FirewallRules: [TCP Query User{727B6A16-E808-4F3F-9E2B-0827D084112C}C:\users\paulm\appdata\local\discord\app-1.0.9004\discord.exe] => (Allow) C:\users\paulm\appdata\local\discord\app-1.0.9004\discord.exe => No File
FirewallRules: [UDP Query User{041967A2-6CFC-47C5-8EF3-51047539DAE6}C:\users\paulm\appdata\local\discord\app-1.0.9004\discord.exe] => (Allow) C:\users\paulm\appdata\local\discord\app-1.0.9004\discord.exe => No File
FirewallRules: [{AB1AD9B4-4CDC-4E80-9A71-7E1FC48B3E0D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SlayTheSpire\jre\bin\javaw.exe => No File
FirewallRules: [{B9C1A52D-0D8E-4585-B6CA-F68A6EFAE147}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SlayTheSpire\jre\bin\javaw.exe => No File
FirewallRules: [TCP Query User{9E3CF469-5443-40A6-BD99-EE15289C4257}C:\users\paulm\appdata\local\tidal\app-2.30.0\tidal.exe] => (Allow) C:\users\paulm\appdata\local\tidal\app-2.30.0\tidal.exe => No File
FirewallRules: [UDP Query User{5D8AC470-32DB-4556-A27D-BCDF4C754609}C:\users\paulm\appdata\local\tidal\app-2.30.0\tidal.exe] => (Allow) C:\users\paulm\appdata\local\tidal\app-2.30.0\tidal.exe => No File
FirewallRules: [TCP Query User{104B7C1E-345F-4BFA-B5B5-5BA4138AE5A6}C:\users\paulm\appdata\local\tidal\app-2.30.0\tidal.exe] => (Allow) C:\users\paulm\appdata\local\tidal\app-2.30.0\tidal.exe => No File
FirewallRules: [UDP Query User{671F6468-A5F4-484D-A8A3-3C713DCFC4C6}C:\users\paulm\appdata\local\tidal\app-2.30.0\tidal.exe] => (Allow) C:\users\paulm\appdata\local\tidal\app-2.30.0\tidal.exe => No File
FirewallRules: [TCP Query User{56F38355-0067-4DD6-BE9E-E78E23C297A1}C:\users\paulm\appdata\local\tidal\app-2.30.1\tidal.exe] => (Allow) C:\users\paulm\appdata\local\tidal\app-2.30.1\tidal.exe => No File
FirewallRules: [UDP Query User{8B1AABCE-AE4E-40D8-B2E8-382FA2BD0F41}C:\users\paulm\appdata\local\tidal\app-2.30.1\tidal.exe] => (Allow) C:\users\paulm\appdata\local\tidal\app-2.30.1\tidal.exe => No File
FirewallRules: [{9726BEDD-9DBE-4503-840D-A612D2B3612B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Elder Scrolls Arena\DOSBox-0.74\DOSBox.exe (DOSBox Team) [File not signed]
FirewallRules: [{9C0A054A-2CCE-4798-8B83-4EF6349BFB9D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Elder Scrolls Arena\DOSBox-0.74\DOSBox.exe (DOSBox Team) [File not signed]
FirewallRules: [{2D1C0A71-9132-489F-88FC-ED48D3437318}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Elder Scrolls Daggerfall\DOSBox-0.74\DOSBox.exe (DOSBox Team) [File not signed]
FirewallRules: [{5967373E-8474-4923-9533-C96E385F33E8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Elder Scrolls Daggerfall\DOSBox-0.74\DOSBox.exe (DOSBox Team) [File not signed]
FirewallRules: [TCP Query User{0304CB81-546C-4168-941C-CDC6232A3BDF}C:\users\paulm\appdata\local\tidal\app-2.30.1\tidal.exe] => (Block) C:\users\paulm\appdata\local\tidal\app-2.30.1\tidal.exe => No File
FirewallRules: [UDP Query User{8067F666-65C3-466A-8B0E-3F244059E171}C:\users\paulm\appdata\local\tidal\app-2.30.1\tidal.exe] => (Block) C:\users\paulm\appdata\local\tidal\app-2.30.1\tidal.exe => No File
FirewallRules: [TCP Query User{B40799F5-6D4A-43BF-931D-BCA18D445D70}C:\users\paulm\appdata\local\tidal\app-2.30.4\tidal.exe] => (Block) C:\users\paulm\appdata\local\tidal\app-2.30.4\tidal.exe => No File
FirewallRules: [UDP Query User{CC2D9B0D-B7E1-414F-BDCA-800A01ACD2EB}C:\users\paulm\appdata\local\tidal\app-2.30.4\tidal.exe] => (Block) C:\users\paulm\appdata\local\tidal\app-2.30.4\tidal.exe => No File
FirewallRules: [TCP Query User{4AB3A05C-8CFC-461C-9D65-1B59982140B7}C:\users\paulm\appdata\local\tidal\app-2.30.4\tidal.exe] => (Block) C:\users\paulm\appdata\local\tidal\app-2.30.4\tidal.exe => No File
FirewallRules: [UDP Query User{09ABE797-5E50-4F49-9FE0-499756FB3E8F}C:\users\paulm\appdata\local\tidal\app-2.30.4\tidal.exe] => (Block) C:\users\paulm\appdata\local\tidal\app-2.30.4\tidal.exe => No File
FirewallRules: [{ABAAFFA4-D4B4-4B12-99DB-A88C9F26BF86}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\If On A Winter's Night Four Travelers\ioawn4t.exe (Dead Idle Games) [File not signed]
FirewallRules: [{F227217C-5847-49E7-B065-CEC7B3B885EC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\If On A Winter's Night Four Travelers\ioawn4t.exe (Dead Idle Games) [File not signed]
FirewallRules: [{EAD9AD8F-E039-44BC-B88E-12DFD4D9E053}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\If On A Winter's Night Four Travelers\winsetup.exe (Chris Jones) [File not signed]
FirewallRules: [{DE08192D-2C44-4905-8510-860F9F0F944D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\If On A Winter's Night Four Travelers\winsetup.exe (Chris Jones) [File not signed]
FirewallRules: [TCP Query User{DEC4D06B-11B8-4731-9A91-F6B8AAFAC1A3}C:\users\paulm\appdata\local\tidal\app-2.31.2\tidal.exe] => (Block) C:\users\paulm\appdata\local\tidal\app-2.31.2\tidal.exe => No File
FirewallRules: [UDP Query User{2EB6C223-176C-4A59-B6D0-7D8E9CE19011}C:\users\paulm\appdata\local\tidal\app-2.31.2\tidal.exe] => (Block) C:\users\paulm\appdata\local\tidal\app-2.31.2\tidal.exe => No File
FirewallRules: [TCP Query User{CDBE2899-FF39-43C6-A3F0-D720A71A991E}C:\users\paulm\appdata\local\tidal\app-2.32.0\tidal.exe] => (Block) C:\users\paulm\appdata\local\tidal\app-2.32.0\tidal.exe => No File
FirewallRules: [UDP Query User{1EDECDB3-E72B-40E8-AD05-A2A7A8465255}C:\users\paulm\appdata\local\tidal\app-2.32.0\tidal.exe] => (Block) C:\users\paulm\appdata\local\tidal\app-2.32.0\tidal.exe => No File
FirewallRules: [TCP Query User{4BAC10AF-A9E2-486E-889B-2C6066E8F5B5}C:\users\paulm\appdata\local\tidal\app-2.32.0\tidal.exe] => (Allow) C:\users\paulm\appdata\local\tidal\app-2.32.0\tidal.exe => No File
FirewallRules: [UDP Query User{4C76AC44-78B2-4C7F-BE74-68797DBAD1F7}C:\users\paulm\appdata\local\tidal\app-2.32.0\tidal.exe] => (Allow) C:\users\paulm\appdata\local\tidal\app-2.32.0\tidal.exe => No File
FirewallRules: [{7ECFA62E-5B86-4A47-8E45-2FC4417BBC16}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Riftbreaker\bin\Launcher.exe => No File
FirewallRules: [{3F9EA018-D500-45B9-8681-CC6B62569FFA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Riftbreaker\bin\Launcher.exe => No File
FirewallRules: [{EDBEFF1E-7ECF-40D2-A5D2-999CDF17F7DB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Riftbreaker\bin\riftbreaker_win_release.exe => No File
FirewallRules: [{343BC216-5558-4BCE-B3EA-CBA76B6C9CF5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Riftbreaker\bin\riftbreaker_win_release.exe => No File
FirewallRules: [{A2243EA0-BBC8-48A8-9ED6-4F7F39EAC55D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Last Spell\The Last Spell.exe () [File not signed]
FirewallRules: [{7FA43983-A490-4E2F-8BFB-4F84AF0FB3A6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Last Spell\The Last Spell.exe () [File not signed]
FirewallRules: [{E4D03E02-0B68-475E-B93B-F950E9896C12}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ELDEN RING\Game\start_protected_game.exe => No File
FirewallRules: [{A592BE3A-ECB0-402C-9D42-B76439AEC866}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ELDEN RING\Game\start_protected_game.exe => No File
FirewallRules: [TCP Query User{B8D026D1-9BBF-49B2-9B94-01F7D2E0245B}C:\users\paulm\appdata\local\tidal\app-2.33.2\tidal.exe] => (Block) C:\users\paulm\appdata\local\tidal\app-2.33.2\tidal.exe => No File
FirewallRules: [UDP Query User{CEC66938-40ED-4BFB-BB62-4C2802CA3027}C:\users\paulm\appdata\local\tidal\app-2.33.2\tidal.exe] => (Block) C:\users\paulm\appdata\local\tidal\app-2.33.2\tidal.exe => No File
FirewallRules: [{3703A619-06F1-4604-9502-6E61E415599B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Manifold Garden\ManifoldGarden.exe () [File not signed]
FirewallRules: [{DA6645BE-5432-4C68-9CDB-4D31C924F4CB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Manifold Garden\ManifoldGarden.exe () [File not signed]
FirewallRules: [TCP Query User{BD3841CA-395D-4BAE-AE46-2C866F8B7069}C:\users\paulm\appdata\local\tidal\app-2.33.2\tidal.exe] => (Block) C:\users\paulm\appdata\local\tidal\app-2.33.2\tidal.exe => No File
FirewallRules: [UDP Query User{1C939270-75F9-42B1-BB5D-7DB4D1CE925C}C:\users\paulm\appdata\local\tidal\app-2.33.2\tidal.exe] => (Block) C:\users\paulm\appdata\local\tidal\app-2.33.2\tidal.exe => No File
FirewallRules: [{E199AEF2-9C9A-48E6-965F-2BA6A43B7F87}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\FTL Faster Than Light\FTLGame.exe () [File not signed]
FirewallRules: [{0B52872A-75CF-4717-8ED5-11FC96FBA9CE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\FTL Faster Than Light\FTLGame.exe () [File not signed]
FirewallRules: [TCP Query User{9BF7C049-31DF-495A-BE72-C0C13427FE42}C:\users\paulm\appdata\local\discord\app-1.0.9006\discord.exe] => (Block) C:\users\paulm\appdata\local\discord\app-1.0.9006\discord.exe => No File
FirewallRules: [UDP Query User{C3E3E687-F9CC-4029-9BB8-996BB27F11F2}C:\users\paulm\appdata\local\discord\app-1.0.9006\discord.exe] => (Block) C:\users\paulm\appdata\local\discord\app-1.0.9006\discord.exe => No File
FirewallRules: [TCP Query User{865C0702-4D22-4162-9692-B3FE0E486850}C:\users\paulm\appdata\local\tidal\app-2.34.2\tidal.exe] => (Allow) C:\users\paulm\appdata\local\tidal\app-2.34.2\tidal.exe => No File
FirewallRules: [UDP Query User{83040525-88A2-416C-838C-865D26A791F7}C:\users\paulm\appdata\local\tidal\app-2.34.2\tidal.exe] => (Allow) C:\users\paulm\appdata\local\tidal\app-2.34.2\tidal.exe => No File
FirewallRules: [TCP Query User{8B09DA2C-4190-4DB2-815B-091F61C82C08}C:\program files (x86)\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe => No File
FirewallRules: [UDP Query User{B53AC5E0-419A-4385-9AA2-AE4CF63261A2}C:\program files (x86)\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe => No File
FirewallRules: [{53502F14-2B63-40E1-8B2E-934A0729E680}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bastion\Bastion.exe (Supergiant Games) [File not signed]
FirewallRules: [{1968F963-A2A9-49D5-BD70-31AC6A379CF7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bastion\Bastion.exe (Supergiant Games) [File not signed]
FirewallRules: [{5A77C17A-415D-4EB5-8446-ADCE7225E743}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Vampire Survivors\VampireSurvivors.exe () [File not signed]
FirewallRules: [{AC0430E8-A9F7-4A41-84C0-B2B280780423}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Vampire Survivors\VampireSurvivors.exe () [File not signed]
FirewallRules: [{E3F19289-6A93-418E-89DA-B1E027403AAC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Binding of Isaac Rebirth\isaac-ng.exe () [File not signed]
FirewallRules: [{B7C8C2AB-F673-4A69-A688-512C9C37DC56}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Binding of Isaac Rebirth\isaac-ng.exe () [File not signed]
FirewallRules: [{9B28C20F-E0C3-4BF7-9C5C-0C6633300CF1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SlayTheSpire\jre\bin\javaw.exe => No File
FirewallRules: [{7545DD18-8BFB-4D07-8F0B-8E23163389CC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SlayTheSpire\jre\bin\javaw.exe => No File
FirewallRules: [{68AC3871-1F7B-4B68-A101-964BE53E5F7B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe => No File
FirewallRules: [{26AA6A7F-71C1-4B1F-A313-BA5ECEA0FBEF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe => No File
FirewallRules: [{C2227807-B89F-41C6-B0FB-E830B305006F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Inscryption\Inscryption.exe () [File not signed]
FirewallRules: [{1739C4B5-4EE9-4BF2-852A-2AB939027376}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Inscryption\Inscryption.exe () [File not signed]
FirewallRules: [{ED1B85FA-72E3-4458-8DC6-381BA1236782}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ELDEN RING\Game\start_protected_game.exe => No File
FirewallRules: [{D937C477-5CF1-433E-941A-B87A79527D01}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ELDEN RING\Game\start_protected_game.exe => No File
FirewallRules: [{D8234E5C-0509-46E4-BF86-F5A6703C99ED}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dishonored\Binaries\Win32\Dishonored.exe (ZeniMax Media Inc.) [File not signed]
FirewallRules: [{33FB8FF2-6F61-4788-82F7-5BEE2C9F2146}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dishonored\Binaries\Win32\Dishonored.exe (ZeniMax Media Inc.) [File not signed]
FirewallRules: [{70FF661D-3CF3-4119-A0F1-AB6667ED9A1A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dead Cells\deadcells.exe () [File not signed]
FirewallRules: [{3A4B0E5D-0416-4412-B880-85EC204D9EBE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dead Cells\deadcells.exe () [File not signed]
FirewallRules: [{FC070CF6-9200-4452-B9A9-5B3F7A2D84D0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dead Cells\deadcells_gl.exe () [File not signed]
FirewallRules: [{26BADE71-71D4-4945-BB58-CF78B6C7B257}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dead Cells\deadcells_gl.exe () [File not signed]
FirewallRules: [{3A1977F8-CB89-47F3-B5F7-265E3651289E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ELEX\system\ELEX.exe => No File
FirewallRules: [{A5106284-F2FA-46D2-89AD-F44C3B12210C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ELEX\system\ELEX.exe => No File
FirewallRules: [{ACDE3EB5-44D4-46B4-91FF-F6D4FE165AA8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Nova Drift\NovaDrift.exe (Chimeric) [File not signed]
FirewallRules: [{3145FC45-DE28-4FF4-A1D0-E21ACE1488E5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Nova Drift\NovaDrift.exe (Chimeric) [File not signed]
FirewallRules: [{6288F6C6-76C5-4127-A1B4-C0540853653B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Yakuza Like a Dragon\runtime\media\startup.exe => No File
FirewallRules: [{7BC0B32B-263E-446F-BBFC-B1A6F49CCF75}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Yakuza Like a Dragon\runtime\media\startup.exe => No File
FirewallRules: [{AA78EFD7-8D9F-42D9-A343-F5BF434E4265}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Serious Sam Classic The First Encounter\Bin\SeriousSam.exe () [File not signed]
FirewallRules: [{E1D35659-C393-400B-8A7D-B2AC44586BD6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Serious Sam Classic The First Encounter\Bin\SeriousSam.exe () [File not signed]
FirewallRules: [{40A65686-C13F-4ACA-B6D1-DCA6A68D2DDA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Serious Sam Classic The First Encounter\Bin\SeriousEditor.exe () [File not signed]
FirewallRules: [{A0BD6093-3992-4597-A491-6609E3F4542D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Serious Sam Classic The First Encounter\Bin\SeriousEditor.exe () [File not signed]
FirewallRules: [{50ECD17F-B8E3-4F00-9347-D970D71E8F59}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Serious Sam Classic The First Encounter\Bin\SeriousModeler.exe () [File not signed]
FirewallRules: [{1C40B2BB-84BA-4626-A09E-A66DA9CD56A8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Serious Sam Classic The First Encounter\Bin\SeriousModeler.exe () [File not signed]
FirewallRules: [{5BCA191F-2515-4C25-A83A-B12CB701194B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Dark Pictures Anthology - House of Ashes\HouseOfAshes.exe (BANDAI NAMCO Entertainment) [File not signed]
FirewallRules: [{F51B1B62-1F0E-4206-BCD4-AD542E495EFC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Dark Pictures Anthology - House of Ashes\HouseOfAshes.exe (BANDAI NAMCO Entertainment) [File not signed]
FirewallRules: [{089E3118-7ACA-49FF-AFCA-33AAD82DAE8D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RimWorld\RimWorldWin64.exe () [File not signed]
FirewallRules: [{7AC40C3D-3284-4F50-A271-875E43164BAB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RimWorld\RimWorldWin64.exe () [File not signed]
FirewallRules: [{63279FE3-26D0-4007-97DD-51E7324CDF3F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\L.A.Noire\PlayLAN.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{4EAD9F42-F4BB-49E9-9B4C-E374447B4A39}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\L.A.Noire\PlayLAN.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{86722720-17F7-46CC-929F-59A2D9FA6812}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Riftbreaker\bin\Launcher.exe => No File
FirewallRules: [{8D1F2D91-DFE3-4774-9D05-49FC38380FFF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Riftbreaker\bin\Launcher.exe => No File
FirewallRules: [{1C6917B5-ABE1-4DBA-A77A-A327B78AE4A4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Riftbreaker\bin\riftbreaker_win_release.exe => No File
FirewallRules: [{102AA153-1A82-46BB-963E-A0AB178D282E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Riftbreaker\bin\riftbreaker_win_release.exe => No File
FirewallRules: [{AA2EF6A0-E5AA-4751-90ED-BC78FD045CC0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Pathologic\Pathologic.exe () [File not signed]
FirewallRules: [{3AFE8AA4-E0A3-460D-AA0C-CEC2D8356E17}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Pathologic\Pathologic.exe () [File not signed]
FirewallRules: [{9B359619-5827-4FC7-BEA2-C0BF9A0245E4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ShadowOfMordor\x64\ShadowOfMordor.exe => No File
FirewallRules: [{A8ACA7A4-F177-4AE3-AFCF-0FEC8E6B079E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ShadowOfMordor\x64\ShadowOfMordor.exe => No File
FirewallRules: [TCP Query User{E163FCA7-2DC3-4FE1-9EEE-F2C892AB4837}C:\program files (x86)\steam\steamapps\common\guilty gear strive\red\binaries\win64\ggst-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\guilty gear strive\red\binaries\win64\ggst-win64-shipping.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [UDP Query User{36E5BD30-053B-4053-98B5-1588893272D0}C:\program files (x86)\steam\steamapps\common\guilty gear strive\red\binaries\win64\ggst-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\guilty gear strive\red\binaries\win64\ggst-win64-shipping.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{D4DD9C1E-F396-4B61-845F-1DAD31247DC6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bio Prototype\Bio Prototype.exe () [File not signed]
FirewallRules: [{5840E4FE-D3BA-4ADD-A679-7D8EE3A73A0B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bio Prototype\Bio Prototype.exe () [File not signed]
FirewallRules: [{C6F0C037-4D8C-4223-87D2-1A2E225FB22D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Noita\noita.exe () [File not signed]
FirewallRules: [{32D89744-5FA5-40A4-AAC8-913DCCEF707A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Noita\noita.exe () [File not signed]
FirewallRules: [{4980298E-60E7-4BEF-A28B-199438ACC368}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PapersPlease\PapersPlease.exe () [File not signed]
FirewallRules: [{5AEC4A01-F968-4C1F-8598-DD0A7135BF4B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PapersPlease\PapersPlease.exe () [File not signed]
FirewallRules: [{4CA1CB18-79E2-44CE-BE5F-51DD3660C26A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DarkestDungeon\_windows\Darkest.exe () [File not signed]
FirewallRules: [{138F60C6-AAAD-465F-B9E3-FAF862450FB3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DarkestDungeon\_windows\Darkest.exe () [File not signed]
FirewallRules: [{B75742DE-012F-4871-8ECB-767692879C8D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hades\x64\Hades.exe () [File not signed]
FirewallRules: [{96BEDC93-A210-47E8-992B-61B726366DEA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hades\x64\Hades.exe () [File not signed]
FirewallRules: [{44F57F78-093C-4367-9EA6-AEF07A3B4102}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hades\x64Vk\Hades.exe () [File not signed]
FirewallRules: [{1ABB121C-F967-4704-867F-D70AF3AAEA5F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hades\x64Vk\Hades.exe () [File not signed]
FirewallRules: [{E03F2355-AB01-4417-8130-A296B0AACB35}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hades\x86\Hades.exe () [File not signed]
FirewallRules: [{2698A658-A7AA-4EBB-BC03-BB906FC75F8A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hades\x86\Hades.exe () [File not signed]
FirewallRules: [{43E4C68A-64C7-4217-8109-5866452E43C9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sekiro\sekiro.exe (Activision Publishing Inc -> FromSoftware, Inc.)
FirewallRules: [{3246BEEE-389F-4DC1-BA62-E0A26E2ADEBC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sekiro\sekiro.exe (Activision Publishing Inc -> FromSoftware, Inc.)
FirewallRules: [{27339DC9-A0F4-4CC8-9F90-04018EA672B5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Monster Train\MonsterTrain.exe () [File not signed]
FirewallRules: [{B42948DC-19AE-42A8-B0D8-A2744161DEB9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Monster Train\MonsterTrain.exe () [File not signed]
FirewallRules: [{E7151668-5CC4-4F32-96AE-C90A6D154436}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Divinity Original Sin Enhanced Edition\Shipping\EoCApp.exe => No File
FirewallRules: [{5627392F-A128-4877-A5B4-908D674D57E0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Divinity Original Sin Enhanced Edition\Shipping\EoCApp.exe => No File
FirewallRules: [{7CEE62E9-8628-471C-98C1-9AC20562A3DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Downfall - A Slay the Spire Fan Expansion\jre\bin\javaw.exe
FirewallRules: [{A9132E54-ABCD-47DD-9505-1381BAA71B99}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Downfall - A Slay the Spire Fan Expansion\jre\bin\javaw.exe
FirewallRules: [{3F104A5C-EEE5-48F9-9D1C-A9E12EC2395E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Pentiment\Pentiment.exe (Obsidian Entertainment, Inc. -> )
FirewallRules: [{8AD123A8-2C34-4333-A344-68A1A4C4EA5B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Pentiment\Pentiment.exe (Obsidian Entertainment, Inc. -> )
FirewallRules: [{0CC64679-4A3F-481B-AF0A-5D0B7854F416}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Life and Suffering of Sir Brante\The Life and Suffering of Sir Brante.exe () [File not signed]
FirewallRules: [{9C4E6ED2-9B3B-4E50-9699-588059F674BE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Life and Suffering of Sir Brante\The Life and Suffering of Sir Brante.exe () [File not signed]
FirewallRules: [{F6FC6035-3E37-4105-83F0-A3E50908AFFC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\DAOriginsLauncher.exe (BioWare -> BioWare)
FirewallRules: [{DD7795A9-2CB5-4042-ABC0-A3622F2DACD1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\DAOriginsLauncher.exe (BioWare -> BioWare)
FirewallRules: [{00039E20-4318-4055-81C1-FFB22D5DC624}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe (BioWare -> BioWare)
FirewallRules: [{2FA2DB80-A6C4-4466-9A60-16549AED38EB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe (BioWare -> BioWare)
FirewallRules: [TCP Query User{078E83EC-26F6-45B8-8DE0-0565D77D1A78}C:\program files (x86)\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe (Electronic Arts -> BioWare)
FirewallRules: [UDP Query User{30A084C1-C6FD-4C42-A442-0A385B69E417}C:\program files (x86)\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dragon age ultimate edition\bin_ship\daorigins.exe (Electronic Arts -> BioWare)
FirewallRules: [{0EB11E6A-8E53-4854-ABBA-92C9797F9E76}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Last Epoch\Last Epoch.exe () [File not signed]
FirewallRules: [{90773DE9-06E7-4B75-9565-24A582BDFC9D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Last Epoch\Last Epoch.exe () [File not signed]
FirewallRules: [{6FB9C554-2CC4-407D-8320-BB17EF4D18B4}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.98.3407.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{3318CB53-495C-428A-B17C-E78199C0A952}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.98.3407.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{4A0A49E5-90BD-4936-B7EA-794DF9C2E775}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.98.3407.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{7E3D4BD0-53EC-4B57-B642-49B02BDB3B09}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.98.3407.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{C981B149-400A-4624-AC07-163AF1D0E74F}C:\users\paulm\appdata\local\freedomgpt\app-1.1.3\freedomgpt.exe] => (Block) C:\users\paulm\appdata\local\freedomgpt\app-1.1.3\freedomgpt.exe => No File
FirewallRules: [UDP Query User{4A157D86-4F45-46AD-8DD6-C1B9528C1B3F}C:\users\paulm\appdata\local\freedomgpt\app-1.1.3\freedomgpt.exe] => (Block) C:\users\paulm\appdata\local\freedomgpt\app-1.1.3\freedomgpt.exe => No File
FirewallRules: [{01C6463B-D168-4513-9C99-F1FB2BEB6812}] => (Allow) C:\Program Files\NoMachine Enterprise Client\bin\nxplayer.bin (NoMachine S.a.r.l. -> NoMachine)
FirewallRules: [{85F104F9-D095-4359-ABEA-F85330B68591}] => (Allow) C:\Program Files\NoMachine Enterprise Client\bin\nxplayer.bin (NoMachine S.a.r.l. -> NoMachine)
FirewallRules: [{2B4DD900-D13C-4E69-9170-E6BCB7C9DCA8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Outer Worlds Spacer's Choice\TheOuterWorldsSpacersChoiceEdition.exe => No File
FirewallRules: [{A50BDD17-D40E-42F6-B408-DB24E9BBA98B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Outer Worlds Spacer's Choice\TheOuterWorldsSpacersChoiceEdition.exe => No File
FirewallRules: [TCP Query User{C4658C91-3C80-47D8-9018-E9A64A427828}C:\users\paulm\appdata\local\discord\app-1.0.9013\discord.exe] => (Block) C:\users\paulm\appdata\local\discord\app-1.0.9013\discord.exe => No File
FirewallRules: [UDP Query User{9E5005CE-FA9F-4F8E-ACCB-15C9EFF6D572}C:\users\paulm\appdata\local\discord\app-1.0.9013\discord.exe] => (Block) C:\users\paulm\appdata\local\discord\app-1.0.9013\discord.exe => No File
FirewallRules: [{8FC2A435-B926-4D40-A539-7AED7CD4F9AB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\NEEDY GIRL OVERDOSE\Windose.exe () [File not signed]
FirewallRules: [{FBEDFD9F-361B-4884-9CBB-244BC7E08B6B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\NEEDY GIRL OVERDOSE\Windose.exe () [File not signed]
FirewallRules: [TCP Query User{067F73B9-F387-48A0-BED9-018C96D4A3F0}C:\users\paulm\appdata\local\tidal\app-2.34.3\tidal.exe] => (Allow) C:\users\paulm\appdata\local\tidal\app-2.34.3\tidal.exe => No File
FirewallRules: [UDP Query User{E3AE9685-220D-43CE-82BF-C2B39F24DC65}C:\users\paulm\appdata\local\tidal\app-2.34.3\tidal.exe] => (Allow) C:\users\paulm\appdata\local\tidal\app-2.34.3\tidal.exe => No File
FirewallRules: [{611C41C6-2EB8-4EA1-B023-6FFA09A76A63}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Across the Obelisk\AcrossTheObelisk.exe () [File not signed]
FirewallRules: [{D29798B3-1A21-4206-9D15-30F4FAC10CBC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Across the Obelisk\AcrossTheObelisk.exe () [File not signed]
FirewallRules: [{838C9884-4937-45E8-8E99-D8A3C578F446}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Blasphemous\Blasphemous.exe () [File not signed]
FirewallRules: [{33091920-D99D-4FD3-AC7F-068612BE810B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Blasphemous\Blasphemous.exe () [File not signed]
FirewallRules: [{F70CE465-1F4D-4357-B252-A5F127717DD2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\OCTOPATH TRAVELER\Octopath_Traveler.exe (SQUARE ENIX CO., LTD. -> SQUARE ENIX CO., LTD.)
FirewallRules: [{D5A92856-5122-4B4E-A186-D123EA1C3FC1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\OCTOPATH TRAVELER\Octopath_Traveler.exe (SQUARE ENIX CO., LTD. -> SQUARE ENIX CO., LTD.)
FirewallRules: [{6F7EBBE4-9012-4C71-B673-BAC59039436B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TalesMajEyal\t-engine.exe (te4.org) [File not signed]
FirewallRules: [{3E1A314C-5E7B-41DB-9E93-E044BFC4D934}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TalesMajEyal\t-engine.exe (te4.org) [File not signed]
FirewallRules: [{3BA5B48E-D2D9-441D-983A-66839C507F3B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Against the Storm\Against the Storm.exe () [File not signed]
FirewallRules: [{4F1B3B7F-BC9E-40FE-95B1-FA14BB143035}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Against the Storm\Against the Storm.exe () [File not signed]
FirewallRules: [{D3497ABC-0D54-41F9-A9CE-989B1D56874E}] => (Allow) D:\SteamLibrary\steamapps\common\Red Dead Redemption 2\PlayRDR2.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{6F6287AD-A795-4C53-83A6-B4D9C7036AFA}] => (Allow) D:\SteamLibrary\steamapps\common\Red Dead Redemption 2\PlayRDR2.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{87B3C9D7-3514-409A-980B-0D5CFAB90DB3}] => (Allow) D:\SteamLibrary\steamapps\common\Baldurs Gate 3\Launcher\LariLauncher.exe (Larian Studios Games Ltd. -> LariLauncher)
FirewallRules: [{A26B84FA-930F-4C53-919A-A2D073835A6F}] => (Allow) D:\SteamLibrary\steamapps\common\Baldurs Gate 3\Launcher\LariLauncher.exe (Larian Studios Games Ltd. -> LariLauncher)
FirewallRules: [{C6620A69-C710-4906-BE34-A2EA0574F874}] => (Allow) C:\Program Files\Easeware\DriverEasy\DriverEasy.exe (Easeware Technology Limited -> Easeware)
FirewallRules: [TCP Query User{F5D58BBD-ACDD-4F62-AF55-D01AB4DE4722}D:\steamlibrary\steamapps\common\baldurs gate 3\bin\bg3.exe] => (Allow) D:\steamlibrary\steamapps\common\baldurs gate 3\bin\bg3.exe (Larian Studios Games Ltd. -> )
FirewallRules: [UDP Query User{A5257E08-8DE5-466E-B1CA-64BAF0737EFB}D:\steamlibrary\steamapps\common\baldurs gate 3\bin\bg3.exe] => (Allow) D:\steamlibrary\steamapps\common\baldurs gate 3\bin\bg3.exe (Larian Studios Games Ltd. -> )
FirewallRules: [TCP Query User{7239C912-E328-4F7E-A098-BD3CF49D8E8D}D:\steamlibrary\steamapps\common\baldurs gate 3\bin\bg3_dx11.exe] => (Allow) D:\steamlibrary\steamapps\common\baldurs gate 3\bin\bg3_dx11.exe (Larian Studios Games Ltd. -> )
FirewallRules: [UDP Query User{9353E957-C6DD-4EB8-A0CD-81AACBC5885E}D:\steamlibrary\steamapps\common\baldurs gate 3\bin\bg3_dx11.exe] => (Allow) D:\steamlibrary\steamapps\common\baldurs gate 3\bin\bg3_dx11.exe (Larian Studios Games Ltd. -> )
FirewallRules: [TCP Query User{9DBAC37C-A377-4329-8927-09DBD19719CA}C:\users\paulm\appdata\local\tidal\app-2.34.5\tidal.exe] => (Allow) C:\users\paulm\appdata\local\tidal\app-2.34.5\tidal.exe => No File
FirewallRules: [UDP Query User{01C5EF14-5C82-44E9-9CFF-946C554F5019}C:\users\paulm\appdata\local\tidal\app-2.34.5\tidal.exe] => (Allow) C:\users\paulm\appdata\local\tidal\app-2.34.5\tidal.exe => No File
FirewallRules: [TCP Query User{89253688-7F57-4550-BA22-8A568D826420}D:\gog\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Allow) D:\gog\cyberpunk 2077\bin\x64\cyberpunk2077.exe (CD PROJEKT SPÓŁKA AKCYJNA -> CD PROJEKT S.A.)
FirewallRules: [UDP Query User{031F8DF3-1C71-422A-B6A7-CA53673C8334}D:\gog\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Allow) D:\gog\cyberpunk 2077\bin\x64\cyberpunk2077.exe (CD PROJEKT SPÓŁKA AKCYJNA -> CD PROJEKT S.A.)
FirewallRules: [{6DB0C2D9-32FD-4C0C-AF2E-995D7786CC16}] => (Allow) C:\Program Files\Wondershare\Wondershare DemoCreator Spark\DemoCreator Wsid Service.exe (Wondershare Technology Group Co.,Ltd -> )
FirewallRules: [{DA97D99F-339E-467F-ABFC-E141CC09A299}] => (Allow) C:\Program Files\Wondershare\Wondershare DemoCreator Spark\DemoCreator Spark.exe (Wondershare Technology Group Co.,Ltd -> )
FirewallRules: [{13366C8C-7C02-42CE-BF39-0E76516D6250}] => (Allow) C:\Program Files\Wondershare\Wondershare DemoCreator Spark\DemoCreator Core UX Service.exe (Wondershare Technology Group Co.,Ltd -> )
FirewallRules: [{D529CAAF-C031-454B-A4E2-7F8D187B4C4D}] => (Allow) D:\Wondershare\Wondershare\Wondershare DemoCreator (Deutsch)\DemoCreator Wsid Service.exe (Wondershare Technology Group Co.,Ltd -> )
FirewallRules: [{45571C24-6995-4C2E-A693-6BD898AACABB}] => (Allow) D:\Wondershare\Wondershare\Wondershare DemoCreator (Deutsch)\DemoCreator Camera Service.exe (Wondershare Technology Group Co.,Ltd -> )
FirewallRules: [{66DE1A0E-9568-417F-AD7D-46C5F15F572F}] => (Allow) D:\Wondershare\Wondershare\Wondershare DemoCreator (Deutsch)\DemoCreator.exe (Wondershare Technology Group Co.,Ltd -> )
FirewallRules: [{D0B5AF47-37C5-408A-883F-AA70B016B0F2}] => (Allow) D:\Wondershare\Wondershare\Wondershare DemoCreator (Deutsch)\DemoCreator Recorder.exe (Wondershare Technology Group Co.,Ltd -> )
FirewallRules: [{3A422DAB-37D2-4DA9-A10C-BEDD7957B947}] => (Allow) D:\Wondershare\Wondershare\Wondershare DemoCreator (Deutsch)\DomainNameChecker.exe (Wondershare Technology Group Co.,Ltd -> )
FirewallRules: [{A6C8EE14-817B-4ED6-A9E9-6837C64A1395}] => (Allow) D:\Wondershare\Wondershare\Wondershare DemoCreator (Deutsch)\DemoCreator Core UX Service.exe (Wondershare Technology Group Co.,Ltd -> )
FirewallRules: [{5C30440C-1208-4F62-98BC-0436748D9C79}] => (Allow) D:\Wondershare\Wondershare\Wondershare DemoCreator (Deutsch)\LiveDemo\DemoCreator LiveDemo.exe (Wondershare Technology Group Co.,Ltd -> wondershare kx)
FirewallRules: [{B5CEFF64-1C1B-4377-9030-47E28A0CC224}] => (Allow) C:\Program Files\Wondershare\Wondershare DemoCreator Spark\DemoCreator Wsid Service.exe (Wondershare Technology Group Co.,Ltd -> )
FirewallRules: [{1FCBA979-B3E4-4AA9-B5B2-6F666CE0636C}] => (Allow) C:\Program Files\Wondershare\Wondershare DemoCreator Spark\DemoCreator Spark.exe (Wondershare Technology Group Co.,Ltd -> )
FirewallRules: [{CD6BEB85-E029-4B36-975D-226EFB770245}] => (Allow) C:\Program Files\Wondershare\Wondershare DemoCreator Spark\DemoCreator Core UX Service.exe (Wondershare Technology Group Co.,Ltd -> )
FirewallRules: [{1E612EB4-34F6-4F76-B400-8682EDA34247}] => (Allow) D:\Wondershare\Wondershare\Wondershare DemoCreator (Deutsch)\DemoCreator Wsid Service.exe (Wondershare Technology Group Co.,Ltd -> )
FirewallRules: [{96E9E82C-B2B3-4F88-82EB-150AD089DB19}] => (Allow) D:\Wondershare\Wondershare\Wondershare DemoCreator (Deutsch)\DemoCreator Camera Service.exe (Wondershare Technology Group Co.,Ltd -> )
FirewallRules: [{84491B60-C8DC-4C33-B566-EE502C1725E7}] => (Allow) D:\Wondershare\Wondershare\Wondershare DemoCreator (Deutsch)\DemoCreator.exe (Wondershare Technology Group Co.,Ltd -> )
FirewallRules: [{2E14631E-7AF6-43D0-AC28-4292C2C1C1AD}] => (Allow) D:\Wondershare\Wondershare\Wondershare DemoCreator (Deutsch)\DemoCreator Recorder.exe (Wondershare Technology Group Co.,Ltd -> )
FirewallRules: [{6B899995-9285-43C7-88B7-7E1FC39344BF}] => (Allow) D:\Wondershare\Wondershare\Wondershare DemoCreator (Deutsch)\DomainNameChecker.exe (Wondershare Technology Group Co.,Ltd -> )
FirewallRules: [{38BC13D2-2538-4CD2-8354-0CE128F4A9FF}] => (Allow) D:\Wondershare\Wondershare\Wondershare DemoCreator (Deutsch)\DemoCreator Core UX Service.exe (Wondershare Technology Group Co.,Ltd -> )
FirewallRules: [{6A53BBBE-C3A9-4809-BFFE-0B65B5C29639}] => (Allow) D:\Wondershare\Wondershare\Wondershare DemoCreator (Deutsch)\LiveDemo\DemoCreator LiveDemo.exe (Wondershare Technology Group Co.,Ltd -> wondershare kx)
FirewallRules: [{9035E80F-81C9-4D21-BA96-43C883FDF268}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe (Valve Corp. -> )
FirewallRules: [{F591F2BA-0003-4740-AA5F-AAD1E4A4CA6A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe (Valve Corp. -> )
FirewallRules: [{7CDF4821-0C01-415F-9F92-4B9682E2E038}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Crusader Kings III\launcher\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [{EBFF9745-49A5-4684-8C10-23B0EC0ED0C3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Crusader Kings III\launcher\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [TCP Query User{1E52B262-CC6B-434C-9597-0C6506C4903C}C:\users\paulm\appdata\local\tidal\app-2.35.0\tidal.exe] => (Allow) C:\users\paulm\appdata\local\tidal\app-2.35.0\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{270FBA6B-77BE-4D3D-869F-BC580EB7A0F2}C:\users\paulm\appdata\local\tidal\app-2.35.0\tidal.exe] => (Allow) C:\users\paulm\appdata\local\tidal\app-2.35.0\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [{F3D1D34B-C210-4C53-9E97-360AA7511A55}] => (Allow) D:\SteamLibrary\steamapps\common\Slay the Princess\SlaythePrincess.exe () [File not signed]
FirewallRules: [{ED2EC936-89A2-47F4-986B-04DB33133AFC}] => (Allow) D:\SteamLibrary\steamapps\common\Slay the Princess\SlaythePrincess.exe () [File not signed]
FirewallRules: [{0448984A-0F97-4063-A2AF-713CADE50BA8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ScarletHollow\ScarletHollow.exe () [File not signed]
FirewallRules: [{2A762EE4-E7ED-4035-99B0-D24EEF78FBD0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ScarletHollow\ScarletHollow.exe () [File not signed]
FirewallRules: [{3489DC9E-8431-47EC-AC9B-C0C149631C77}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RoboQuest\RoboQuest.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{67394401-FBA4-4A34-B75A-ED520692C0D9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RoboQuest\RoboQuest.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [TCP Query User{6360AC58-6AE2-4C7D-9616-D66E8474E15D}C:\program files (x86)\steam\steamapps\common\roboquest\roboquest\binaries\win64\roboquest-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\roboquest\roboquest\binaries\win64\roboquest-win64-shipping.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [UDP Query User{CEFB4B4B-12B1-4403-9950-B5871BA3674E}C:\program files (x86)\steam\steamapps\common\roboquest\roboquest\binaries\win64\roboquest-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\roboquest\roboquest\binaries\win64\roboquest-win64-shipping.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [TCP Query User{6349A254-F041-457E-B8C5-AC627B620749}D:\steamlibrary\steamapps\common\ghostrunner demo\ghostrunner\binaries\win64\ghostrunner-win64-shipping.exe] => (Allow) D:\steamlibrary\steamapps\common\ghostrunner demo\ghostrunner\binaries\win64\ghostrunner-win64-shipping.exe => No File
FirewallRules: [UDP Query User{ACF63D3C-4E54-4282-B6C6-F8C8A55514DA}D:\steamlibrary\steamapps\common\ghostrunner demo\ghostrunner\binaries\win64\ghostrunner-win64-shipping.exe] => (Allow) D:\steamlibrary\steamapps\common\ghostrunner demo\ghostrunner\binaries\win64\ghostrunner-win64-shipping.exe => No File
FirewallRules: [{3915C062-EC75-4060-9BE4-D2730292C5BC}] => (Allow) D:\SteamLibrary\steamapps\common\Ghostrunner\Ghostrunner.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{C230A0D2-9749-4A55-AB6E-0A831CB48A9B}] => (Allow) D:\SteamLibrary\steamapps\common\Ghostrunner\Ghostrunner.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [TCP Query User{4CFDCC44-5039-4978-A516-02ABE180FFCB}D:\steamlibrary\steamapps\common\red dead redemption 2\rdr2.exe] => (Allow) D:\steamlibrary\steamapps\common\red dead redemption 2\rdr2.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [UDP Query User{6D4827EA-8281-4F32-BC6F-7AD1061F9BEA}D:\steamlibrary\steamapps\common\red dead redemption 2\rdr2.exe] => (Allow) D:\steamlibrary\steamapps\common\red dead redemption 2\rdr2.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{F91EBADF-EEB2-41DB-B206-9E7C5146C8EA}] => (Allow) D:\SteamLibrary\steamapps\common\Deep Rock Galactic\FSD.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{6679E165-B2CD-42D2-93D4-1C4C12731C25}] => (Allow) D:\SteamLibrary\steamapps\common\Deep Rock Galactic\FSD.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{FC2C7AE3-AF8D-46BD-A0EC-C623FF7A61B6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dave the Diver\DaveTheDiver.exe (NEXON Korea Corporation. -> )
FirewallRules: [{8255833D-60E4-4C7E-8FA6-F6AC86753CDD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dave the Diver\DaveTheDiver.exe (NEXON Korea Corporation. -> )
FirewallRules: [{39E80803-77E0-4700-9659-968DCE780C19}] => (Allow) D:\SteamLibrary\steamapps\common\Hollow Knight\hollow_knight.exe () [File not signed]
FirewallRules: [{8C5234E3-502D-451B-B5D8-B1E5430C3513}] => (Allow) D:\SteamLibrary\steamapps\common\Hollow Knight\hollow_knight.exe () [File not signed]
FirewallRules: [{C33C4C10-190E-4C5D-8AE0-D1811E5B0BEB}] => (Allow) D:\SteamLibrary\steamapps\common\Detroit Become Human\DetroitBecomeHuman.exe () [File not signed]
FirewallRules: [{8B303A54-248F-45EC-BA06-9450B8411726}] => (Allow) D:\SteamLibrary\steamapps\common\Detroit Become Human\DetroitBecomeHuman.exe () [File not signed]
FirewallRules: [{AAAB25A6-35CE-4525-95F0-2D731FFE502D}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve Corp. -> )
FirewallRules: [{DE3A14C0-A24A-4D6B-8AAB-867E6BA5888E}] => (Allow) D:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe (Valve Corp. -> )
FirewallRules: [{5660A261-1810-47D2-BDF2-650E2E743C4C}] => (Allow) D:\SteamLibrary\steamapps\common\Skul\Skul.exe () [File not signed]
FirewallRules: [{1E80B554-EED0-492D-99B6-1643828EBD86}] => (Allow) D:\SteamLibrary\steamapps\common\Skul\Skul.exe () [File not signed]
FirewallRules: [{0FEDC5E0-308A-4DB1-A3A4-3937493F3011}] => (Allow) D:\SteamLibrary\steamapps\common\Fallout 4\Fallout4Launcher.exe (Bethesda Softworks) [File not signed]
FirewallRules: [{1556A106-A253-47C0-B7BE-07E51DC6F05A}] => (Allow) D:\SteamLibrary\steamapps\common\Fallout 4\Fallout4Launcher.exe (Bethesda Softworks) [File not signed]
FirewallRules: [{D10EED90-E046-49DF-B43E-968701353BF7}] => (Allow) D:\SteamLibrary\steamapps\common\XCOM 2\2KLauncher\LauncherPatcher.exe (Take-Two Interactive Software, Inc. -> Take-Two Interactive Software, Inc.)
FirewallRules: [{166E2F03-2C61-418F-A145-82CF9D20EBF1}] => (Allow) D:\SteamLibrary\steamapps\common\XCOM 2\2KLauncher\LauncherPatcher.exe (Take-Two Interactive Software, Inc. -> Take-Two Interactive Software, Inc.)
FirewallRules: [{B5134261-D090-4AF1-9CB0-D0BEF8C94214}] => (Allow) D:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\game\bin\win64\cs2.exe (Valve Corp. -> )
FirewallRules: [{A2D09089-87A7-4D91-BD41-C2C768CC5107}] => (Allow) D:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\game\bin\win64\cs2.exe (Valve Corp. -> )
FirewallRules: [{5A695BBF-440E-4A2A-A8A2-D572ECC4A101}] => (Allow) D:\SteamLibrary\steamapps\common\EYE\EYE.exe () [File not signed]
FirewallRules: [{0F547ED1-60F1-4982-9E67-1610E9BAF35A}] => (Allow) D:\SteamLibrary\steamapps\common\EYE\EYE.exe () [File not signed]
FirewallRules: [TCP Query User{3F97B547-84B9-49B0-937F-A165F7724CA4}C:\users\paulm\appdata\local\tidal\app-2.36.2\tidal.exe] => (Allow) C:\users\paulm\appdata\local\tidal\app-2.36.2\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{54D5C5FD-1B9C-4145-8E6A-55C1F3BBF610}C:\users\paulm\appdata\local\tidal\app-2.36.2\tidal.exe] => (Allow) C:\users\paulm\appdata\local\tidal\app-2.36.2\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [{655A3982-BC78-48D5-9800-AA1623B61E63}] => (Allow) D:\SteamLibrary\steamapps\common\Hellblade\HellbladeGame.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{8C15DD12-0A6B-42A3-8F93-B91BDFF4D384}] => (Allow) D:\SteamLibrary\steamapps\common\Hellblade\HellbladeGame.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{2620A287-5AE8-4DCC-A517-4F28D8A3F9BB}] => (Allow) D:\SteamLibrary\steamapps\common\Hellblade\HellbladeGame\Binaries\Win64\HellbladeGame-Win64-Shipping.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{F0FF869B-30EA-4453-A29A-861385887EA8}] => (Allow) D:\SteamLibrary\steamapps\common\Hellblade\HellbladeGame\Binaries\Win64\HellbladeGame-Win64-Shipping.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{B862C789-7DA9-4DB9-93CF-1E3B642BBB6E}] => (Allow) D:\SteamLibrary\steamapps\common\The Witcher 3\REDprelauncher.exe (GOG sp. z o.o -> GOG.com)
FirewallRules: [{867966C4-685B-4880-B28C-25413EAB031D}] => (Allow) D:\SteamLibrary\steamapps\common\The Witcher 3\REDprelauncher.exe (GOG sp. z o.o -> GOG.com)
FirewallRules: [{FD4DA9EB-0F65-4426-8437-9E87BAEB1AB1}] => (Allow) D:\SteamLibrary\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe (Bethesda Softworks) [File not signed]
FirewallRules: [{720EEC5B-7659-48F5-B65A-B5D41AAC9E1B}] => (Allow) D:\SteamLibrary\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe (Bethesda Softworks) [File not signed]
FirewallRules: [{1BA40A33-4EB6-45D8-8E1F-DF89BDA2AB11}] => (Allow) D:\SteamLibrary\steamapps\common\ARMORED CORE VI FIRES OF RUBICON\Game\start_protected_game.exe (EasyAntiCheat Oy -> Epic Games, Inc.)
FirewallRules: [{5AC6CE6C-5637-4EC0-B3CC-0BFA0377D53B}] => (Allow) D:\SteamLibrary\steamapps\common\ARMORED CORE VI FIRES OF RUBICON\Game\start_protected_game.exe (EasyAntiCheat Oy -> Epic Games, Inc.)
FirewallRules: [{D5979AA1-C9FC-4D5B-8439-7D709D928C66}] => (Allow) D:\SteamLibrary\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe (DONTNOD Entertainment) [File not signed]
FirewallRules: [{7D9DF2D3-2936-4B4C-B0B2-8C1EFDF0A81E}] => (Allow) D:\SteamLibrary\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe (DONTNOD Entertainment) [File not signed]
FirewallRules: [{D14EB02E-F54F-44B7-9AB9-84A37D5D778C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Chrono Trigger\Chrono Trigger.exe (SQUARE ENIX CO., LTD. -> Square Enix)
FirewallRules: [{E975DAEC-8CE5-424B-AE0B-1C9DEF2FEFE3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Chrono Trigger\Chrono Trigger.exe (SQUARE ENIX CO., LTD. -> Square Enix)
FirewallRules: [{4A743622-F9E5-4F3F-85E0-4B9561AE1BC7}] => (Allow) D:\SteamLibrary\steamapps\common\ELDEN RING\Game\start_protected_game.exe (EasyAntiCheat Oy -> Epic Games, Inc.)
FirewallRules: [{5DA7785E-5AFF-45AA-BC56-0425204BE0F6}] => (Allow) D:\SteamLibrary\steamapps\common\ELDEN RING\Game\start_protected_game.exe (EasyAntiCheat Oy -> Epic Games, Inc.)
FirewallRules: [TCP Query User{ADA7C5BE-3B06-4A23-8CEE-729D909AB90F}C:\program files (x86)\updf\updf.exe] => (Block) C:\program files (x86)\updf\updf.exe (Superace Software Technology Co., Ltd. -> Superace Software Technology Co., Ltd.)
FirewallRules: [UDP Query User{3357C044-C137-44BD-BE04-C0EA4FA8D2FF}C:\program files (x86)\updf\updf.exe] => (Block) C:\program files (x86)\updf\updf.exe (Superace Software Technology Co., Ltd. -> Superace Software Technology Co., Ltd.)
FirewallRules: [{AA034544-4C98-4A8A-94F8-6ED3D6F322A2}] => (Allow) C:\Program Files (x86)\Camo Studio\CamoStudio.exe (Reincubate Limited -> Reincubate)
FirewallRules: [{9A578876-D38D-4E4A-B522-7AC5966CE206}] => (Allow) D:\SteamLibrary\steamapps\common\Helldivers 2\bin\helldivers2.exe (Arrowhead Game Studios AB -> Arrowhead Game Studios AB)
FirewallRules: [{EE33C022-79DF-400F-B3F1-6815D6C8E1CB}] => (Allow) D:\SteamLibrary\steamapps\common\Helldivers 2\bin\helldivers2.exe (Arrowhead Game Studios AB -> Arrowhead Game Studios AB)
FirewallRules: [{7460ADB0-4D2B-4973-8347-1D894B90C061}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.116.3213.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{D63B7CAD-F7FB-466F-B06C-E22766195545}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.116.3213.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{D647DDED-0AE3-46FE-9495-188E8956735A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.116.3213.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{E4F15D9B-FB65-4FB3-9B83-DFD2DC101F9D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.116.3213.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{918EBAFD-F1A6-44AB-854A-41F559C8E6AA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{CF6A2022-E2B2-49F4-85F8-C34713738293}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{A564F3CB-E546-495A-BF90-3D1A2D8E0E86}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{9DEA931F-4115-470E-8392-C6624E4A7DF3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{874242E6-D148-40B2-81C6-D7054D271BD5}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{DA85F28C-C304-4331-A7DD-D7E2A498E55C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{DDA0A0EA-C3DD-45DA-8B22-BC9A0976CB2F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{C4A68191-E894-4C0C-9AFF-B1F8CB71ECEC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{9A51AA4E-0F88-4F59-AC0B-9BC101BC5A66}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{505D3114-0262-4A62-B540-E94BD30485EC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{E4F461D4-D94A-4942-AB14-452725FD72DC}] => (Allow) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [{AE7DF23A-35BA-47D5-8C50-662B3341D424}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\123.0.2420.97\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
==================== Restore Points =========================
13-04-2024 06:52:06 Geplanter Prüfpunkt
==================== Faulty Device Manager Devices ============
Name: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64
Description: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Cisco Systems
Service: vpnva
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Event log errors: ========================
Application errors:
==================
Error: (04/16/2024 03:54:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: AdobeCollabSync.exe, version: 24.2.20687.0, time stamp: 0x66170966
Faulting module name: AdobeCollabSync.exe, version: 24.2.20687.0, time stamp: 0x66170966
Exception code: 0xc0000409
Fault offset: 0x0000000000494b31
Faulting process ID: 0x2208
Faulting application start time: 0x01da900584ba052f
Faulting application path: C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe
Faulting module path: C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe
Report ID: 3cb67022-1c0c-4dec-aa2b-54600cb730d8
Faulting package full name:
Faulting package-relative application ID:
Error: (04/16/2024 12:57:34 AM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: DESKTOP-NG833IV)
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.
Error: (04/16/2024 12:53:24 AM) (Source: Freemake Improver) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.IO.FileLoadException: Die Datei oder Assembly "Newtonsoft.Json, Version=7.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed" oder eine Abhängigkeit davon wurde nicht gefunden. Die gefundene Manifestdefinition der Assembly stimmt nicht mit dem Assemblyverweis überein. (Ausnahme von HRESULT: 0x80131040)
Dateiname: "Newtonsoft.Json, Version=7.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed" ---> System.IO.FileLoadException: Die Datei oder Assembly "Newtonsoft.Json, Version=6.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed" oder eine Abhängigkeit davon wurde nicht gefunden. Die gefundene Manifestdefinition der Assembly stimmt nicht mit dem Assemblyverweis überein. (Ausnahme von HRESULT: 0x80131040)
Dateiname: "Newtonsoft.Json, Version=6.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed"
WRN: Protokollierung der Assemblybindung ist AUS.
Sie können die Protokollierung der Assemblybindungsfehler aktivieren, indem Sie den Registrierungswert [HKLM\Software\Microsoft\Fusion!E...
Error: (04/15/2024 08:32:40 AM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Users\paulm\AppData\Local\CapCut\Apps\CapCut.exe".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_a863d714867441db.manifest.
Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_60b6a03d71f818d5.manifest.
Error: (04/15/2024 08:12:41 AM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: DESKTOP-NG833IV)
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.
Error: (04/15/2024 08:08:41 AM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Users\paulm\AppData\Local\CapCut\Apps\CapCut.exe".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_a863d714867441db.manifest.
Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_60b6a03d71f818d5.manifest.
Error: (04/15/2024 08:08:34 AM) (Source: Freemake Improver) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.IO.FileLoadException: Die Datei oder Assembly "Newtonsoft.Json, Version=7.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed" oder eine Abhängigkeit davon wurde nicht gefunden. Die gefundene Manifestdefinition der Assembly stimmt nicht mit dem Assemblyverweis überein. (Ausnahme von HRESULT: 0x80131040)
Dateiname: "Newtonsoft.Json, Version=7.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed" ---> System.IO.FileLoadException: Die Datei oder Assembly "Newtonsoft.Json, Version=6.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed" oder eine Abhängigkeit davon wurde nicht gefunden. Die gefundene Manifestdefinition der Assembly stimmt nicht mit dem Assemblyverweis überein. (Ausnahme von HRESULT: 0x80131040)
Dateiname: "Newtonsoft.Json, Version=6.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed"
WRN: Protokollierung der Assemblybindung ist AUS.
Sie können die Protokollierung der Assemblybindungsfehler aktivieren, indem Sie den Registrierungswert [HKLM\Software\Microsoft\Fusion!E...
Error: (04/15/2024 07:58:55 AM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Users\paulm\AppData\Local\CapCut\Apps\CapCut.exe".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_a863d714867441db.manifest.
Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.3636_none_60b6a03d71f818d5.manifest.
System errors:
=============
Error: (04/16/2024 12:53:25 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT-AUTORITÄT)
Error: (04/16/2024 12:53:23 AM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1096) (User: NT-AUTORITÄT)
Description: The processing of Group Policy failed. Windows could not apply the registry-based policy settings for the Group Policy object LocalGPO. Group Policy settings will not be resolved until this event is resolved. View the event details for more information on the filename and path that caused the failure.
Error: (04/16/2024 12:48:32 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The User Energy Server Service queencreek service terminated with the following error:
Debugger received RIP exception.
Error: (04/16/2024 12:48:32 AM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: The Energy Server Service queencreek service did not shut down properly after receiving a pre-shutdown control.
Error: (04/15/2024 08:08:35 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT-AUTORITÄT)
Error: (04/15/2024 08:08:33 AM) (Source: Microsoft-Windows-GroupPolicy) (EventID: 1096) (User: NT-AUTORITÄT)
Description: The processing of Group Policy failed. Windows could not apply the registry-based policy settings for the Group Policy object LocalGPO. Group Policy settings will not be resolved until this event is resolved. View the event details for more information on the filename and path that caused the failure.
Error: (04/15/2024 08:08:01 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-NG833IV)
Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Nicht verfügbar" in order to run the server:
{DD522ACC-F821-461A-A407-50B198B896DC}
Error: (04/15/2024 08:07:56 AM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-NG833IV)
Description: DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Nicht verfügbar" in order to run the server:
{DD522ACC-F821-461A-A407-50B198B896DC}
Windows Defender:
================
Date: 2024-04-16 02:07:34
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Vollständige Überprüfung
Date: 2024-04-15 04:40:43
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Vollständige Überprüfung
Date: 2024-04-15 04:18:27
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Schnellüberprüfung
Date: 2024-04-15 04:09:46
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Schnellüberprüfung
Date: 2024-04-15 00:17:44
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
Name: PUA:Win32/Keygen
Severity: Niedrig
Category: Potenziell unerwünschte Software
Path: containerfile:_C:\Users\paulm\Documents\VST\Bazzism.rar; containerfile:_C:\Users\paulm\Documents\VST\ISM.BazzISM.v2.5.3.Incl.Keygen-R2R\r2r-8520.rar; containerfile:_C:\Users\paulm\Documents\VST\Serum.zip; file:_C:\Users\paulm\Documents\VST\Bazzism.rar->ISM.BazzISM.v2.5.3.Incl.Keygen-R2R\r2r-8520.rar->R2R\ISM_KeyGen.exe; file:_C:\Users\paulm\Documents\VST\ISM.BazzISM.v2.5.3.Incl.Keygen-R2R\r2r-8520.rar->R2R\ISM_KeyGen.exe; file:_C:\Users\paulm\Documents\VST\ISM.BazzISM.v2.5.3.Incl.Keygen-R2R\R2R\ISM_KeyGen.exe; file:_C:\Users\paulm\Documents\VST\Serum.zip->Xfer.Records.Serum.v1.0.1.b3-WiN.OSX/Xfer.Records.Serum.v1.0.0.Incl.Keygen.READ.NFO-R2R/r2r-2596.rar->R2R\Nerve_KeyGen.exe->(nsis-6-keygen.exe)->(UPX); file:_C:\Users\paulm\Documents\VST\Serum.zip->Xfer.Records.Serum.v1.0.1.b3-WiN.OSX/Xfer.Records.Serum.v1.0.0.MacOSX.Incl.Keygen-R2R/r2r-2597.r02->R2R\Nerve_KeyGen.exe->(nsis-6-keygen.exe)->(UPX); file:_C:\Users\paulm\Documents\VST\Serum.zip->Xfer.Records.Serum.v1.0.1.b3-WiN.OSX/Xfer.Records.Serum.v1.0.1.b3.U
Detection Origin: Lokaler Computer
Detection Type: Konkret
Detection Source: Benutzer
Process Name: Unknown
Security intelligence Version: AV: 1.409.255.0, AS: 1.409.255.0, NIS: 1.409.255.0
Engine Version: AM: 1.1.24030.4, NIS: 1.1.24030.4
Event[0]:
Date: 2024-04-15 07:58:55
Description:
Microsoft Defender Antivirus Real-Time Protection feature has encountered an error and failed.
Feature: Bei Zugriff
Error Code: 0x8007043c
Error description: Der Dienst kann nicht im abgesicherten Modus gestartet werden.
Reason: Die Antischadsoft-Sicherheitsfunktion wurde aus unbekanntem Grund beendet. Möglicherweise kann das Problem durch einen Neustart des Diensts behoben werden.
Date: 2024-04-15 07:57:47
Description:
Microsoft Defender Antivirus Real-Time Protection feature has encountered an error and failed.
Feature: Bei Zugriff
Error Code: 0x8007043c
Error description: Der Dienst kann nicht im abgesicherten Modus gestartet werden.
Reason: Die Antischadsoft-Sicherheitsfunktion wurde aus unbekanntem Grund beendet. Möglicherweise kann das Problem durch einen Neustart des Diensts behoben werden.
Date: 2024-03-18 16:06:14
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.407.492.0
Update Source: Microsoft Update-Server
Security intelligence Type: AntiVirus
Update Type: Voll
Current Engine Version:
Previous Engine Version: 1.1.24020.9
Error code: 0x80070102
Error description: Der Wartevorgang wurde abgebrochen.
Date: 2024-03-18 16:06:14
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.407.492.0
Update Source: Microsoft Update-Server
Security intelligence Type: AntiVirus
Update Type: Voll
Current Engine Version:
Previous Engine Version: 1.1.24020.9
Error code: 0x80070102
Error description: Der Wartevorgang wurde abgebrochen.
Date: 2023-09-28 07:02:03
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence and will attempt to revert to a previous version.
Security intelligence Attempted: Aktuell
Error Code: 0x80501102
Error description: Unerwartetes Problem. Installieren Sie bei Bedarf verfügbare Updates, und starten Sie das Programm dann erneut. Informationen zum Installieren von Updates finden Sie unter "Hilfe und Support".
Security intelligence Version: 1.397.1638.0;1.397.1638.0
Engine Version: 1.1.23080.2005
CodeIntegrity:
===============
Date: 2024-04-16 15:53:52
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Users\paulm\AppData\Local\Discord\app-1.0.9041\Discord.exe) attempted to load \Device\HarddiskVolume3\ProgramData\obs-studio-hook\graphics-hook32.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. P1.50 09/03/2020
Motherboard: ASRock B460 Steel Legend
Processor: Intel® Core i7-10700F CPU @ 2.90GHz
Percentage of memory in use: 50%
Total physical RAM: 16314.16 MB
Available physical RAM: 8049.11 MB
Total Virtual: 38842.16 MB
Available Virtual: 27183.3 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:953.25 GB) (Free:48.86 GB) (Model: Patriot M.2 P300) NTFS
Drive d: (New Volume) (Fixed) (Total:1863 GB) (Free:613.33 GB) (Model: CT2000P3SSD8) NTFS
Drive e: (INTENSO) (Removable) (Total:7.49 GB) (Free:7.49 GB) FAT32
\\?\Volume{a414ce20-f078-4499-b493-9476e13a74b3}\ () (Fixed) (Total:0.5 GB) (Free:0.08 GB) NTFS
\\?\Volume{65b593e2-1ac6-4719-b1b1-31014ae85ca1}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 2 (Size: 7.5 GB) (Disk ID: 0232E55A)
Partition 1: (Active) - (Size=7.5 GB) - (Type=FAT32)
==================== End of Addition.txt =======================