|
Log-Analyse und Auswertung: wahrscheinlicher Trojaner nach öffnen zweifelhafter zip. dateiWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
30.05.2018, 20:55 | #1 |
| wahrscheinlicher Trojaner nach öffnen zweifelhafter zip. datei Hallo, ich war gestern sehr dumm und habe eine zweifelhafte Datei geöffnet seit dem stolpert Kaspersky nach jeder Bereinigung inkl. Neustart über eine neue Datei. Das ganze läuft somit in endlosschleife. Die Datein befinden sich immer im Windows Ordner und haben wechselnde zufällig wirkende Namen z.B. wqsfqddqiekoexsn.wqs . Falls es sehr schlecht aussieht kann ich das System zur Not neu aufsetzen, allerdings müsste ich noch daten sichern und habe Angst, dass ich darüber dann vielleicht wieder das neue System infiziere. Die Logs vom FR Scan hänge ich mit an. Vielen Dank! Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 16.05.2018 01 durchgeführt von marvin (Administrator) auf MARVIN-PC (30-05-2018 21:44:59) Gestartet von C:\Users\marvin\Downloads Geladene Profile: marvin (Verfügbare Profile: marvin & Gast) Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe () C:\Program Files\0625597b0007638d2e4372e844cc7d16\07a56c2b9ba77905956b180efb2044d3.exe (Advanced Micro Devices) C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe () C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe (AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avp.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Chip Digital GmbH) C:\Program Files (x86)\Chip Digital GmbH\chip1click\chip 1-click installer.exe (Digital Wave Ltd.) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe (Native Instruments GmbH) C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe () C:\Program Files (x86)\Edimax\Edimax Wireless LAN\WPSService20.exe () C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe (Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe (Valve Corporation) E:\Steam1\Steam.exe (Spotify Ltd) C:\Users\marvin\AppData\Roaming\Spotify\SpotifyWebHelper.exe (AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avpui.exe () C:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe () C:\Program Files (x86)\RivaTuner Statistics Server\EncoderServer.exe () C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooksLoader64.exe (Valve Corporation) E:\Steam1\bin\cef\cef.win7\steamwebhelper.exe (Valve Corporation) E:\Steam1\bin\cef\cef.win7\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Valve Corporation) E:\Steam1\bin\cef\cef.win7\steamwebhelper.exe (Valve Corporation) E:\Steam1\bin\cef\cef.win7\steamwebhelper.exe (AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\wmi64.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [7536520 2016-09-07] (Advanced Micro Devices, Inc.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8446320 2015-01-06] (Realtek Semiconductor) HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation) HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [17406072 2017-01-24] (Logitech Inc.) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [303928 2017-07-14] (Apple Inc.) HKU\S-1-5-21-3033322874-683822815-1906121015-1000\...\Run: [Steam] => E:\Steam1\steam.exe [3200800 2018-05-19] (Valve Corporation) HKU\S-1-5-21-3033322874-683822815-1906121015-1000\...\Run: [Spotify Web Helper] => C:\Users\marvin\AppData\Roaming\Spotify\SpotifyWebHelper.exe [782736 2018-05-24] (Spotify Ltd) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{0FB4E4BE-E023-4B80-BD7A-D675B542188B}: [DhcpNameServer] 192.168.0.1 Internet Explorer: ================== HKU\S-1-5-21-3033322874-683822815-1906121015-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp BHO: Kaspersky Protection -> {2E38825B-8815-42CF-9126-C58BC28D4591} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\IEExt\ie_plugin.dll [2017-01-22] (AO Kaspersky Lab) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Kaspersky Protection -> {2E38825B-8815-42CF-9126-C58BC28D4591} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\IEExt\ie_plugin.dll [2017-01-22] (AO Kaspersky Lab) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) Toolbar: HKLM - Kaspersky Protection Toolbar - {093F479D-712E-46CD-9E06-62E734A05F68} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\IEExt\ie_plugin.dll [2017-01-22] (AO Kaspersky Lab) Toolbar: HKLM-x32 - Kaspersky Protection Toolbar - {093F479D-712E-46CD-9E06-62E734A05F68} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\IEExt\ie_plugin.dll [2017-01-22] (AO Kaspersky Lab) Toolbar: HKU\S-1-5-21-3033322874-683822815-1906121015-1000 -> Kaspersky Protection Toolbar - {093F479D-712E-46CD-9E06-62E734A05F68} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\IEExt\ie_plugin.dll [2017-01-22] (AO Kaspersky Lab) FireFox: ======== FF DefaultProfile: a4640khj.default FF ProfilePath: C:\Users\marvin\AppData\Roaming\Mozilla\Firefox\Profiles\a4640khj.default [2018-05-30] FF Session Restore: Mozilla\Firefox\Profiles\a4640khj.default -> ist aktiviert. FF Extension: (Adblock Plus) - C:\Users\marvin\AppData\Roaming\Mozilla\Firefox\Profiles\a4640khj.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2018-05-16] FF Extension: (TLS 1.3 gradual roll-out fallback-limit) - C:\Users\marvin\AppData\Roaming\Mozilla\Firefox\Profiles\a4640khj.default\features\{c8d438bf-5228-4848-ae09-e5612fc4169d}\tls13-version-fallback-rollout-bug1462099@mozilla.org.xpi [2018-05-24] [Legacy] FF HKLM\...\Firefox\Extensions: [light_plugin_F363A72DD7B6435783A76E5F612C9006@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi FF Extension: (Kaspersky Protection) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi [2018-04-18] FF HKLM-x32\...\Firefox\Extensions: [light_plugin_F363A72DD7B6435783A76E5F612C9006@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\FFExt\light_plugin_firefox\addon.xpi FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-05-11] (Adobe Systems Inc.) FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\secure_cert.js [2018-05-30] Chrome: ======= CHR HKLM\...\Chrome\Extension: [fhoibnponjcgjgcnfacekaijdbbplhib] - hxxps://chrome.google.com/webstore/detail/fhoibnponjcgjgcnfacekaijdbbplhib CHR HKLM-x32\...\Chrome\Extension: [fhoibnponjcgjgcnfacekaijdbbplhib] - hxxps://chrome.google.com/webstore/detail/fhoibnponjcgjgcnfacekaijdbbplhib ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 0625597b0007638d2e4372e844cc7d16; C:\Program Files\0625597b0007638d2e4372e844cc7d16\07a56c2b9ba77905956b180efb2044d3.exe [1404368 2018-05-29] () R2 amdacpusrsvc; C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [121856 2016-09-07] (Advanced Micro Devices) [Datei ist nicht signiert] R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2018-03-29] (Apple Inc.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728 2014-07-23] () R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [1360016 2014-07-23] () [Datei ist nicht signiert] R2 AVP17.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\avp.exe [241544 2016-06-28] (AO Kaspersky Lab) R2 chip1click; C:\Program Files (x86)\Chip Digital GmbH\chip1click\chip 1-click installer.exe [91136 2016-10-27] (Chip Digital GmbH) [Datei ist nicht signiert] <==== ACHTUNG R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [440808 2017-02-08] (Digital Wave Ltd.) S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [383016 2017-08-24] (EasyAntiCheat Ltd) S3 GalaxyClientService; E:\GOG Galaxy\GalaxyClientService.exe [665160 2018-05-04] (GOG.com) S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [8109640 2018-05-04] (GOG.com) S3 klvssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\vssbridge64.exe [77328 2016-06-28] (AO Kaspersky Lab) R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [225400 2017-01-24] (Logitech Inc.) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) R2 WPSService20; C:\Program Files (x86)\Edimax\Edimax Wireless LAN\WPSService20.exe [96768 2013-05-15] () [Datei ist nicht signiert] S2 e79d0a473b9452268b73bd40648c876f; rundll32.exe C:\Windows\wqsfqddqiekoexsn.wqs HWGTbxNki [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R1 9a0574414218baa922d4e75d476fd048; C:\Windows\System32\drivers\9a0574414218baa922d4e75d476fd048.sys [180208 2018-05-29] () R2 amdacpksd; C:\Windows\system32\drivers\amdacpksd.sys [305544 2016-09-07] (Advanced Micro Devices) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-07-23] () R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [238936 2016-06-10] (AO Kaspersky Lab) R3 e1dexpress; C:\Windows\System32\DRIVERS\e1d62x64.sys [534512 2017-04-25] (Intel Corporation) S3 FTDIBUS; C:\Windows\System32\drivers\ftdibus.sys [118160 2016-10-04] (Future Technology Devices International Ltd.) S3 FTSER2K; C:\Windows\System32\drivers\ftser2k.sys [88752 2016-10-04] () R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [554416 2016-06-02] (AO Kaspersky Lab) R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [63920 2016-06-08] (AO Kaspersky Lab) R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [92864 2018-04-18] (AO Kaspersky Lab) R2 kldisk; C:\Windows\System32\DRIVERS\kldisk.sys [78216 2016-06-01] (AO Kaspersky Lab) R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [195784 2018-05-22] (AO Kaspersky Lab) R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [1192128 2018-05-22] (AO Kaspersky Lab) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [1040072 2018-05-22] (AO Kaspersky Lab) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [57024 2018-02-28] (AO Kaspersky Lab) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [52144 2016-05-19] (AO Kaspersky Lab) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [41648 2015-06-07] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [45488 2016-06-01] (AO Kaspersky Lab) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [75696 2016-05-18] (AO Kaspersky Lab) R1 Klwtp; C:\Windows\System32\DRIVERS\klwtp.sys [139976 2018-04-18] (AO Kaspersky Lab) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [199640 2017-07-25] (AO Kaspersky Lab) R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech) R3 LGJoyXlCore; C:\Windows\System32\drivers\LGJoyXlCore.sys [67736 2017-01-24] (Logitech Inc.) R3 LGSHidFilt; C:\Windows\System32\DRIVERS\LGSHidFilt.Sys [64280 2017-01-24] (Logitech Inc.) R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13512 2016-09-02] () R3 RtlWlanu; C:\Windows\System32\DRIVERS\rtwlanu.sys [1525904 2012-12-26] (Realtek Semiconductor Corporation ) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2018-05-30 21:44 - 2018-05-30 21:45 - 000014494 _____ C:\Users\marvin\Downloads\FRST.txt 2018-05-30 21:44 - 2018-05-30 21:44 - 000000000 ____D C:\FRST 2018-05-30 21:43 - 2018-05-30 21:43 - 002413056 _____ (Farbar) C:\Users\marvin\Downloads\FRST64.exe 2018-05-30 21:42 - 2018-05-30 21:42 - 001000448 _____ C:\Windows\wqsfqddqiekoexsn.wqs 2018-05-29 19:42 - 2018-05-29 19:42 - 000262144 _____ C:\Windows\system32\config\elam 2018-05-29 17:34 - 2018-05-29 19:14 - 000000000 ____D C:\Windows\SysWOW64\SSL 2018-05-29 17:34 - 2018-05-29 17:34 - 000000000 ____D C:\Program Files\0625597b0007638d2e4372e844cc7d16 2018-05-29 14:51 - 2018-05-29 14:51 - 001886208 _____ C:\Windows\6ee8b8d6f87873e123a9dce0b8198ea0.exe 2018-05-29 14:51 - 2018-05-29 14:51 - 000180208 _____ C:\Windows\system32\Drivers\9a0574414218baa922d4e75d476fd048.sys 2018-05-29 14:51 - 2018-05-29 14:51 - 000041220 _____ C:\Windows\uninstaller.dat 2018-05-03 13:08 - 2018-05-03 13:08 - 000028634 _____ C:\Users\marvin\Downloads\Beschreibung_Austellung_MarvinDreblow.pdf 2018-05-02 09:15 - 2018-05-02 09:15 - 000000000 ____D C:\Users\marvin\Desktop\programme 2018-05-02 09:13 - 2018-05-29 17:58 - 000000000 ____D C:\Users\marvin\Desktop\Neuer Ordner (5) 2018-05-01 23:48 - 2018-05-01 23:48 - 000000000 ____D C:\Users\marvin\AppData\Local\CrashReportClient ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2018-05-30 21:43 - 2017-01-22 13:16 - 000000000 ____D C:\Users\marvin\AppData\LocalLow\Mozilla 2018-05-30 21:42 - 2017-01-22 21:05 - 000003026 _____ C:\Windows\System32\Tasks\MSIAfterburner 2018-05-30 21:42 - 2017-01-22 13:28 - 000000000 ____D C:\ProgramData\Kaspersky Lab 2018-05-30 21:42 - 2017-01-22 13:12 - 000065536 _____ C:\Windows\system32\spu_storage.bin 2018-05-30 21:42 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2018-05-30 21:38 - 2017-03-21 21:16 - 000203264 ___SH C:\Users\marvin\Desktop\Thumbs.db 2018-05-30 21:03 - 2009-07-14 06:45 - 000021664 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2018-05-30 21:03 - 2009-07-14 06:45 - 000021664 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2018-05-30 21:01 - 2011-04-12 09:43 - 000699092 _____ C:\Windows\system32\perfh007.dat 2018-05-30 21:01 - 2011-04-12 09:43 - 000149232 _____ C:\Windows\system32\perfc007.dat 2018-05-30 21:01 - 2009-07-14 07:13 - 001619284 _____ C:\Windows\system32\PerfStringBackup.INI 2018-05-30 09:33 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf 2018-05-28 21:50 - 2017-01-22 13:30 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner 2018-05-27 23:24 - 2017-01-22 13:25 - 000000000 ____D C:\Users\marvin\AppData\Local\Battle.net 2018-05-24 21:44 - 2017-01-22 19:49 - 000000000 ____D C:\Program Files (x86)\Overwatch 2018-05-24 21:34 - 2017-01-22 18:41 - 000000000 ____D C:\Users\marvin\AppData\Local\Spotify 2018-05-24 20:13 - 2017-01-22 18:37 - 000000000 ____D C:\Users\marvin\AppData\Roaming\Spotify 2018-05-23 10:58 - 2017-01-22 13:16 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2018-05-23 10:58 - 2017-01-22 13:16 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2018-05-22 14:06 - 2017-01-22 13:28 - 001040072 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klif.sys 2018-05-22 14:06 - 2017-01-22 13:28 - 000195784 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klflt.sys 2018-05-22 14:04 - 2018-04-18 13:37 - 000152360 _____ (AO Kaspersky Lab) C:\Windows\system32\klhkum.dll 2018-05-22 14:04 - 2016-06-20 18:51 - 001192128 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klhk.sys 2018-05-14 23:53 - 2017-01-22 13:16 - 000001159 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2018-05-14 23:53 - 2017-01-22 13:16 - 000001147 _____ C:\Users\Public\Desktop\Firefox.lnk 2018-05-14 23:28 - 2017-04-23 14:46 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2018-05-14 23:27 - 2017-04-23 14:46 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2018-04-24 10:56 - 2018-04-24 10:56 - 000000765 _____ () C:\Users\marvin\AppData\Local\recently-used.xbel Einige Dateien in TEMP: ==================== 2011-04-01 08:02 - 2011-04-01 08:02 - 000149352 ____R (Microsoft Corporation) C:\Users\marvin\AppData\Local\Temp\ose00000.exe ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2018-05-29 20:02 ==================== Ende von FRST.txt ============================ Geändert von marv58 (30.05.2018 um 21:15 Uhr) |
30.05.2018, 21:16 | #2 |
| wahrscheinlicher Trojaner nach öffnen zweifelhafter zip. dateiCode:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 16.05.2018 01 durchgeführt von marvin (30-05-2018 21:45:16) Gestartet von C:\Users\marvin\Downloads Windows 7 Home Premium Service Pack 1 (X64) (2017-01-22 10:01:22) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-3033322874-683822815-1906121015-500 - Administrator - Disabled) Gast (S-1-5-21-3033322874-683822815-1906121015-501 - Limited - Enabled) => C:\Users\Gast HomeGroupUser$ (S-1-5-21-3033322874-683822815-1906121015-1002 - Limited - Enabled) marvin (S-1-5-21-3033322874-683822815-1906121015-1000 - Administrator - Enabled) => C:\Users\marvin ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Kaspersky Internet Security (Enabled - Up to date) {86367591-4BE4-AE08-2FD9-7FCB8259CD98} AS: Kaspersky Internet Security (Enabled - Up to date) {3D579475-6DDE-A186-1569-44B9F9DE8725} AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky Internet Security (Enabled) {BE0DF4B4-018B-AF50-0486-D6FE7C8A8AE3} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) ACP Application (HKLM\...\{0273D1D0-549B-E505-57FD-92691DCF8D3B}) (Version: 2016.0907.1018.39 - Advanced Micro Devices, Inc.) Hidden Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 18.011.20040 - Adobe Systems Incorporated) AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.6 - Advanced Micro Devices, Inc.) Apple Application Support (32-Bit) (HKLM-x32\...\{D2FE6376-E549-4F63-A2C5-CA24DA035DE4}) (Version: 5.6 - Apple Inc.) Apple Application Support (64-Bit) (HKLM\...\{0ECA3BB5-4410-414B-B226-241FF1C12CD0}) (Version: 6.4 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{9E005AAA-81A3-478E-8944-532D350952EE}) (Version: 11.3.1.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{52D87F32-70E4-4348-8148-C0B9F35B1314}) (Version: 2.3.0.177 - Apple Inc.) Application Profiles (HKLM-x32\...\{30FC8A1F-182C-2A1F-69D8-5988C9467C29}) (Version: 2.0.6094.16647 - Advanced Micro Devices, Inc.) Arduino (HKLM-x32\...\Arduino) (Version: 1.6.13 - Arduino LLC) Assassin's Creed IV Black Flag (HKLM-x32\...\Uplay Install 273) (Version: - Ubisoft) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Catalyst Control Center Next Localization BR (HKLM\...\{D7146A6B-7332-3E70-10C0-58C542BEE992}) (Version: 2016.0907.1109.18253 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (HKLM\...\{E82F4744-C8CC-AC06-FB33-5159F352F447}) (Version: 2016.0907.1109.18253 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (HKLM\...\{73625BB5-62CF-EDD9-1D74-59632209610C}) (Version: 2016.0907.1109.18253 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (HKLM\...\{6EB0963A-5F6C-2CE5-839F-7F5282B0E2FF}) (Version: 2016.0907.1109.18253 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (HKLM\...\{EC2A1888-6E10-66FE-5908-0702E419295A}) (Version: 2016.0907.1109.18253 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (HKLM\...\{56613EA7-33D7-12E0-8F85-6F9B34B090FB}) (Version: 2016.0907.1109.18253 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (HKLM\...\{31371EF7-8B7D-A0DA-C431-7F266EEFE2D2}) (Version: 2016.0907.1109.18253 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (HKLM\...\{626EB909-D761-CD0E-9014-B14B0B72929F}) (Version: 2016.0907.1109.18253 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (HKLM\...\{0DCC8BF4-22E5-A2C9-1C3B-A405A409DE7D}) (Version: 2016.0907.1109.18253 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (HKLM\...\{ED983086-4E2A-77FF-2E93-AD8E603A36F7}) (Version: 2016.0907.1109.18253 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (HKLM\...\{C0B0C896-5471-D57B-3143-A73D4FAF6D88}) (Version: 2016.0907.1109.18253 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (HKLM\...\{2DBAD098-33C8-7A09-A94A-08E9C6C5B8DF}) (Version: 2016.0907.1109.18253 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (HKLM\...\{B28C6201-F5FC-9782-40B5-55CA1295682E}) (Version: 2016.0907.1109.18253 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (HKLM\...\{D564C586-1E9E-4132-5B07-015AE3C6522B}) (Version: 2016.0907.1109.18253 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (HKLM\...\{CC818E09-ECBE-F7F9-CEB9-2C705B05B857}) (Version: 2016.0907.1109.18253 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (HKLM\...\{7AD88B10-1BAD-6DA3-FEA9-CDE5A2706E67}) (Version: 2016.0907.1109.18253 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (HKLM\...\{6452BA69-0B9D-3D2D-B5E8-A8F3EAC6CE9A}) (Version: 2016.0907.1109.18253 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (HKLM\...\{9DF94031-88E3-984A-FE55-A9341823A237}) (Version: 2016.0907.1109.18253 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (HKLM\...\{8A8BC476-D9F2-DD93-0103-D498DE9CD308}) (Version: 2016.0907.1109.18253 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (HKLM\...\{78013DA1-6D80-3AF3-8852-3DE311DEA796}) (Version: 2016.0907.1109.18253 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (HKLM\...\{82227B1F-0232-6231-AB7B-EF84297F0132}) (Version: 2016.0907.1109.18253 - Advanced Micro Devices, Inc.) Hidden CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.7.6521 - CDBurnerXP) chip 1-click download service (HKLM-x32\...\{503CA94E-0834-4CEE-AD92-BA17AF4E809A}) (Version: 3.6.9.0 - Chip Digital GmbH) <==== ACHTUNG darktable (HKLM\...\darktable) (Version: 2.4.2 - the darktable project) Edimax Wireless LAN (HKLM-x32\...\{B63CCD1C-A133-4DF8-8306-DA0387231152}) (Version: 1.00.0205.2 - Edimax Technology Co.) Free YouTube Download (HKLM-x32\...\Free YouTube Download_is1) (Version: 4.1.36.208 - Digital Wave Ltd) GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com) Kaspersky Internet Security (HKLM-x32\...\{E27B1D7B-3B34-43A2-9FC0-9828D5DF46E2}) (Version: 17.0.0.611 - Kaspersky Lab) Hidden Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{E27B1D7B-3B34-43A2-9FC0-9828D5DF46E2}) (Version: 17.0.0.611 - Kaspersky Lab) Logitech Gaming Software 8.91 (HKLM\...\Logitech Gaming Software) (Version: 8.91.48 - Logitech Inc.) Microsoft .NET Framework 4.7 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.02053 - Microsoft Corporation) Microsoft Age of Empires (HKLM-x32\...\Age of Empires) (Version: - ) Microsoft Office Home and Student 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{D9C50188-12D5-4D3E-8F00-682346C2AA5F}) (Version: 1.20.146.0 - Microsoft) Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation) Mozilla Firefox 60.0.1 (x64 en-US) (HKLM\...\Mozilla Firefox 60.0.1 (x64 en-US)) (Version: 60.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 60.0 - Mozilla) MSI Afterburner 4.3.0 Beta 14 (HKLM-x32\...\Afterburner) (Version: 4.3.0 Beta 14 - MSI Co., LTD) My Game Long Name (HKLM\...\UDK-7bf9e014-0566-4212-89df-885fc236de79) (Version: - Epic Games, Inc.) Native Instruments Audio 2 DJ Driver (HKLM-x32\...\Native Instruments Audio 2 DJ Driver) (Version: - Native Instruments) Native Instruments Audio 4 DJ Driver (HKLM-x32\...\Native Instruments Audio 4 DJ Driver) (Version: - Native Instruments) Native Instruments Audio 8 DJ Driver (HKLM-x32\...\Native Instruments Audio 8 DJ Driver) (Version: - Native Instruments) Native Instruments Controller Editor (HKLM-x32\...\Native Instruments Controller Editor) (Version: 2.1.0.183 - Native Instruments) Native Instruments Service Center (HKLM-x32\...\Native Instruments Service Center) (Version: - Native Instruments) Native Instruments Traktor 2 (HKLM-x32\...\Native Instruments Traktor 2) (Version: 2.11.0.23 - Native Instruments) Native Instruments Traktor Audio 10 Driver (HKLM-x32\...\Native Instruments Traktor Audio 10 Driver) (Version: - Native Instruments) Native Instruments Traktor Audio 2 Driver (HKLM-x32\...\Native Instruments Traktor Audio 2 Driver) (Version: - Native Instruments) Native Instruments Traktor Audio 2 MK2 Driver (HKLM-x32\...\Native Instruments Traktor Audio 2 MK2 Driver) (Version: - Native Instruments) Native Instruments Traktor Audio 6 Driver (HKLM-x32\...\Native Instruments Traktor Audio 6 Driver) (Version: - Native Instruments) Native Instruments Traktor Kontrol D2 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol D2 Driver) (Version: - Native Instruments) Native Instruments Traktor Kontrol F1 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol F1 Driver) (Version: - Native Instruments) Native Instruments Traktor Kontrol S2 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol S2 Driver) (Version: - Native Instruments) Native Instruments Traktor Kontrol S2 MK2 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol S2 MK2 Driver) (Version: - Native Instruments) Native Instruments Traktor Kontrol S4 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol S4 Driver) (Version: - Native Instruments) Native Instruments Traktor Kontrol S4 MK2 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol S4 MK2 Driver) (Version: - Native Instruments) Native Instruments Traktor Kontrol S5 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol S5 Driver) (Version: - Native Instruments) Native Instruments Traktor Kontrol S8 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol S8 Driver) (Version: - Native Instruments) Native Instruments Traktor Kontrol X1 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol X1 Driver) (Version: - Native Instruments) Native Instruments Traktor Kontrol X1 MK2 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol X1 MK2 Driver) (Version: - Native Instruments) Native Instruments Traktor Kontrol Z1 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol Z1 Driver) (Version: - Native Instruments) Native Instruments Traktor Kontrol Z2 Driver (HKLM-x32\...\Native Instruments Traktor Kontrol Z2 Driver) (Version: - Native Instruments) NVIDIA PhysX (HKLM-x32\...\{8A809006-C25A-4A3A-9DAB-94659BCDB107}) (Version: 9.10.0224 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7422 - Realtek Semiconductor Corp.) RivaTuner Statistics Server 6.5.0 Beta 5 (HKLM-x32\...\RTSS) (Version: 6.5.0 Beta 5 - Unwinder) Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 4.5.1 - Samsung Electronics) SearchAwesome (HKLM\...\0625597b0007638d2e4372e844cc7d16) (Version: 13.14.1.242 (i1.0) - SearchAwesome) <==== ACHTUNG Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Spotify (HKU\S-1-5-21-3033322874-683822815-1906121015-1000\...\Spotify) (Version: 1.0.80.474.gef6b503e - Spotify AB) StarCraft (HKLM-x32\...\StarCraft) (Version: - Blizzard Entertainment) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH) The Witcher 3 - Wild Hunt (HKLM-x32\...\1207664643_is1) (Version: 1.31.0.0 - GOG.com) The Witcher 3: Wild Hunt - Free DLC program (16 DLC) (HKLM-x32\...\Free DLC program (16 DLC)_is1) (Version: 1.24.0.0 - GOG.com) Uplay (HKLM-x32\...\Uplay) (Version: 31.1 - Ubisoft) VideoPad Video Editor (HKLM-x32\...\VideoPad) (Version: 3.89 - NCH Software) Vulkan Run Time Libraries 1.0.21.0 (HKLM\...\VulkanRT1.0.21.0) (Version: 1.0.21.0 - LunarG, Inc.) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ContextMenuHandlers1: [Kaspersky Anti-Virus 17.0.0] -> {39C9FA89-7012-4573-A92D-BFD1F8CA542D} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\shellex.dll [2017-03-14] (AO Kaspersky Lab) ContextMenuHandlers2: [Kaspersky Anti-Virus 17.0.0] -> {39C9FA89-7012-4573-A92D-BFD1F8CA542D} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\shellex.dll [2017-03-14] (AO Kaspersky Lab) ContextMenuHandlers4: [Kaspersky Anti-Virus 17.0.0] -> {39C9FA89-7012-4573-A92D-BFD1F8CA542D} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\shellex.dll [2017-03-14] (AO Kaspersky Lab) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2016-09-07] (Advanced Micro Devices, Inc.) ContextMenuHandlers6: [Kaspersky Anti-Virus 17.0.0] -> {39C9FA89-7012-4573-A92D-BFD1F8CA542D} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\x64\shellex.dll [2017-03-14] (AO Kaspersky Lab) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {2A1A4A44-A381-4CB2-9F8A-0FACEBBA8BE4} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-09-07] (Advanced Micro Devices, Inc.) Task: {CB38B390-0E0A-497B-B3D5-33B0AF290801} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-02-09] (Adobe Systems Incorporated) Task: {D68DDECF-E1F8-4354-9780-5CB77EB405C8} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe [2014-09-28] (Samsung Electronics.) Task: {DEE8FBE6-2621-48B6-BED0-88D2103782CA} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2016-09-02] () (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) ==================== Verknüpfungen & WMI ======================== (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) Shortcut: C:\Users\marvin\Favorites\NCH Software Download Site.lnk -> hxxp://www.nchsoftware.com/index.htm ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2018-05-29 14:51 - 2018-05-29 14:51 - 001404368 _____ () C:\Program Files\0625597b0007638d2e4372e844cc7d16\07a56c2b9ba77905956b180efb2044d3.exe 2018-03-16 15:19 - 2018-03-16 15:19 - 001356088 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2018-03-16 15:19 - 2018-03-16 15:19 - 000088888 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2014-07-23 03:59 - 2014-07-23 03:59 - 000936728 ____R () C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe 2017-01-22 16:33 - 2014-07-23 03:59 - 001360016 ____R () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe 2017-01-22 12:10 - 2013-05-15 16:27 - 000096768 _____ () C:\Program Files (x86)\Edimax\Edimax Wireless LAN\WPSService20.exe 2016-08-31 17:47 - 2016-08-31 17:47 - 000183808 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks64.dll 2016-09-02 11:11 - 2016-09-02 11:11 - 000589512 _____ () C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe 2015-03-07 02:07 - 2015-03-07 02:07 - 000908568 _____ () C:\Program Files\Logitech Gaming Software\libGLESv2.dll 2017-01-24 00:19 - 2017-01-24 00:19 - 001096824 _____ () C:\Program Files\Logitech Gaming Software\platforms\qwindows.dll 2015-03-07 02:07 - 2015-03-07 02:07 - 000060184 _____ () C:\Program Files\Logitech Gaming Software\libEGL.dll 2017-01-24 00:19 - 2017-01-24 00:19 - 000241784 _____ () C:\Program Files\Logitech Gaming Software\imageformats\qjpeg.dll 2016-08-31 17:50 - 2016-08-31 17:50 - 000206024 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe 2016-08-31 17:46 - 2016-08-31 17:46 - 000026112 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\EncoderServer.exe 2016-08-31 17:47 - 2016-08-31 17:47 - 000088576 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooksLoader64.exe 2017-01-22 16:33 - 2018-05-30 21:42 - 000035472 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\PEbiosinterface32.dll 2017-01-22 16:33 - 2014-07-23 03:59 - 000104448 ____R () C:\Program Files (x86)\ASUS\AXSP\1.02.00\ATKEX.dll 2016-06-28 01:19 - 2016-06-28 01:19 - 000865232 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\kpcengine.2.3.dll 2017-03-13 14:37 - 2017-02-08 16:11 - 000114664 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\zlib1.dll 2017-03-13 14:37 - 2017-02-08 16:11 - 000108008 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll 2017-03-13 14:37 - 2017-02-08 16:11 - 000024040 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll 2017-03-13 14:37 - 2017-02-08 16:11 - 000048104 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll 2016-08-19 17:31 - 2016-08-19 17:31 - 000071680 _____ () C:\Program Files (x86)\MSI Afterburner\RTMUI.dll 2016-08-19 17:31 - 2016-08-19 17:31 - 000056832 _____ () C:\Program Files (x86)\MSI Afterburner\RTFC.dll 2016-08-28 13:19 - 2016-08-28 13:19 - 000227840 _____ () C:\Program Files (x86)\MSI Afterburner\RTCore.dll 2016-08-19 17:31 - 2016-08-19 17:31 - 000357888 _____ () C:\Program Files (x86)\MSI Afterburner\RTUI.dll 2016-08-28 13:19 - 2016-08-28 13:19 - 000525824 _____ () C:\Program Files (x86)\MSI Afterburner\RTHAL.dll 2016-08-31 17:46 - 2016-08-31 17:46 - 000163328 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooks.dll 2016-09-07 16:07 - 2016-09-07 16:07 - 000223744 _____ () C:\Windows\SysWOW64\GameManager32.dll 2017-01-27 18:38 - 2018-05-01 09:32 - 000788256 _____ () E:\Steam1\SDL2.dll 2017-01-27 18:38 - 2016-09-01 03:02 - 004969248 _____ () E:\Steam1\v8.dll 2017-01-27 18:38 - 2016-09-01 03:02 - 001563936 _____ () E:\Steam1\icui18n.dll 2017-01-27 18:38 - 2016-09-01 03:02 - 001195296 _____ () E:\Steam1\icuuc.dll 2017-01-27 18:38 - 2018-05-19 01:01 - 002632480 _____ () E:\Steam1\video.dll 2017-12-17 13:06 - 2017-12-20 03:43 - 005137696 _____ () E:\Steam1\libavcodec-57.dll 2017-12-17 13:06 - 2017-12-20 03:43 - 000847136 _____ () E:\Steam1\libavutil-55.dll 2017-12-17 13:06 - 2017-12-20 03:43 - 000695584 _____ () E:\Steam1\libavformat-57.dll 2017-12-17 13:06 - 2017-12-20 03:43 - 000351520 _____ () E:\Steam1\libavresample-3.dll 2017-12-17 13:06 - 2017-12-20 03:43 - 000783648 _____ () E:\Steam1\libswscale-4.dll 2017-01-27 18:38 - 2018-05-19 01:01 - 000979232 _____ () E:\Steam1\bin\chromehtml.DLL 2017-01-27 18:38 - 2016-07-05 00:17 - 000266560 _____ () E:\Steam1\openvr_api.dll 2016-08-31 17:46 - 2016-08-31 17:46 - 000055808 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTFC.dll 2016-08-31 17:46 - 2016-08-31 17:46 - 000353792 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTUI.dll 2016-08-31 17:46 - 2016-08-31 17:46 - 000071680 _____ () C:\Program Files (x86)\RivaTuner Statistics Server\RTMUI.dll 2017-06-08 13:45 - 2018-05-01 09:32 - 000788256 _____ () E:\Steam1\bin\cef\cef.win7\SDL2.dll 2017-01-27 18:39 - 2018-05-14 21:39 - 083524384 _____ () E:\Steam1\bin\cef\cef.win7\libcef.dll 2017-01-27 18:38 - 2015-09-25 01:52 - 000119208 _____ () E:\Steam1\winh264.dll 2017-07-12 14:28 - 2018-05-14 21:39 - 002253600 _____ () E:\Steam1\bin\cef\cef.win7\swiftshader\libglesv2.dll 2017-07-12 14:28 - 2018-05-14 21:39 - 000109856 _____ () E:\Steam1\bin\cef\cef.win7\swiftshader\libegl.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 04:34 - 2009-06-10 23:00 - 000000824 _____ C:\Windows\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-3033322874-683822815-1906121015-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\marvin\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{CBD2EFAF-1CDF-4602-A285-1DF6DD0C2084}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{9FF18BCB-6E7F-451D-9947-73A1C44F92CE}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{104D4245-E1AF-42D6-B473-E71878076081}] => (Allow) E:\Steam\Steam.exe FirewallRules: [{C832DEF9-AB0E-4C9A-864A-21222AD94298}] => (Allow) E:\Steam\Steam.exe FirewallRules: [{EE5BFB8C-CC34-437D-9071-78CEF2B1D55E}] => (Allow) E:\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{CEE656B3-48F5-4730-B235-BF452D52865F}] => (Allow) E:\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{C5F64EE1-4763-4BEA-BF56-F6E6D9B2082A}] => (Allow) E:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{C8782527-54E3-4ABC-8B37-0E12C6A083C0}] => (Allow) E:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{2F0E80C1-A189-4F8E-9A5D-5B159D3E68F1}] => (Allow) E:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe FirewallRules: [{40424E8A-23F6-4917-B3F3-034941E2CBE6}] => (Allow) E:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe FirewallRules: [{E17AA9EE-7B80-490A-8DCE-D5856B2B4113}] => (Allow) E:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{71C9FD6F-A8D5-492F-9BB8-EB902FB8F3ED}] => (Allow) E:\SteamLibrary\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{197BE37B-8476-4250-B786-38D6CA3CBB07}] => (Allow) E:\SteamLibrary\steamapps\common\HeroSiege\bin\Hero_Siege.exe FirewallRules: [{61470A7C-256C-484A-8CA3-51AB5F2420C4}] => (Allow) E:\SteamLibrary\steamapps\common\HeroSiege\bin\Hero_Siege.exe FirewallRules: [TCP Query User{D96F719C-D9F7-4E94-9C8B-5325FD3044D5}C:\users\marvin\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\marvin\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{1087D2CE-17F4-4E8E-8731-EF17E76F76AA}C:\users\marvin\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\marvin\appdata\roaming\spotify\spotify.exe FirewallRules: [{2FEAA866-3E46-4CC4-9445-0C8A74DC1FE3}] => (Allow) E:\Steam1\Steam.exe FirewallRules: [{C5FF3299-1D40-4916-8144-331AA92C4185}] => (Allow) E:\Steam1\Steam.exe FirewallRules: [{CC69483F-1FF4-4D9E-ACDB-0D5B1A091E42}] => (Allow) E:\Steam1\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{055D6369-EAC7-4488-A670-6E25DFF4FB42}] => (Allow) E:\Steam1\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{AF3AF3C7-AE9F-4644-BF33-45960B819FBB}] => (Allow) E:\Steam1\steamapps\common\Age of Mythology\Launcher.exe FirewallRules: [{F758569E-B6A2-4D0A-8A8F-E8629E45F866}] => (Allow) E:\Steam1\steamapps\common\Age of Mythology\Launcher.exe FirewallRules: [{5848C9C8-D007-4AA2-B0B3-AEB164E5D453}] => (Allow) E:\Steam1\steamapps\common\Age of Mythology\aomx.exe FirewallRules: [{35E5AD86-2E7D-46DC-816D-2579AAA1019A}] => (Allow) E:\Steam1\steamapps\common\Age of Mythology\aomx.exe FirewallRules: [{AC986F7A-75D9-48C7-AFC5-0CDEE83D3F02}] => (Allow) E:\Steam1\steamapps\common\Antichamber\Binaries\Win32\UDK.exe FirewallRules: [{A8BD06F3-7E29-45A3-9C92-D75885A6603F}] => (Allow) E:\Steam1\steamapps\common\Antichamber\Binaries\Win32\UDK.exe FirewallRules: [{52A3E8B2-00E0-4E32-B48F-825DE4AAEB7A}] => (Allow) E:\Steam1\steamapps\common\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe FirewallRules: [{B6454159-12ED-4276-8237-400123803363}] => (Allow) E:\Steam1\steamapps\common\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe FirewallRules: [{33167FA6-A866-47D3-B47C-A848819D1AE9}] => (Allow) E:\Steam1\steamapps\common\Besiege\Besiege.exe FirewallRules: [{32B4CE86-D440-4F1B-BDB5-873B50367B8B}] => (Allow) E:\Steam1\steamapps\common\Besiege\Besiege.exe FirewallRules: [{178E7A63-B20D-4FBB-AD13-51A8A3886466}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{8E5670CB-A736-4ED3-9274-CB432940871F}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{2437ECA8-2FBF-4CFF-AA34-8365203E5926}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe FirewallRules: [{E9A27CF0-81E7-4D21-82AC-81DB32169073}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe FirewallRules: [{E5739733-62B0-4EC7-B045-71CE5880BF76}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{9E38B2DB-B276-47A2-A5E6-3C537688D770}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{23D01E8B-4BAE-4667-B319-A371D33A5E35}] => (Allow) E:\Steam1\steamapps\common\Borderlands 2\Binaries\Win32\Launcher.exe FirewallRules: [{B3FC1C27-5B6D-4235-9B26-66415D979232}] => (Allow) E:\Steam1\steamapps\common\Borderlands 2\Binaries\Win32\Launcher.exe FirewallRules: [{D17C603A-02E4-4071-872D-DB38AF53AC60}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{AD275015-7A0B-407A-85B8-C37BB8FAA5A0}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{B55997E0-377F-4059-AEC0-708700330C4E}] => (Allow) E:\Steam1\steamapps\common\devildaggers\dd.exe FirewallRules: [{E46D1F75-9E98-4F7B-9039-9DFF477C73FC}] => (Allow) E:\Steam1\steamapps\common\devildaggers\dd.exe FirewallRules: [{38FC238E-21BE-49E0-99FF-0E016261D849}] => (Allow) E:\Steam1\steamapps\common\Bit Blaster XL\BitBlasterXL.exe FirewallRules: [{C578745E-E878-4D7C-9967-95AB94BC6AD9}] => (Allow) E:\Steam1\steamapps\common\Bit Blaster XL\BitBlasterXL.exe FirewallRules: [{9504B504-70C5-4991-93D1-27CA0E01567C}] => (Allow) E:\Steam1\steamapps\common\Broforce\Broforce_beta.exe FirewallRules: [{C96A5E36-3682-407F-8A59-7BDB29E6A23D}] => (Allow) E:\Steam1\steamapps\common\Broforce\Broforce_beta.exe FirewallRules: [{BE4B25B2-3772-415E-BA25-9B36EB601377}] => (Allow) E:\Steam1\steamapps\common\FTL Faster Than Light\FTLGame.exe FirewallRules: [{43817D26-AB33-418C-AA31-82023FBF8B92}] => (Allow) E:\Steam1\steamapps\common\FTL Faster Than Light\FTLGame.exe FirewallRules: [{725DB884-60CB-4C39-98CE-2581EB55D077}] => (Allow) E:\Steam1\steamapps\common\Half-Life 2\hl2.exe FirewallRules: [{947A86D2-DCA9-48F7-959A-78FA8B85ECED}] => (Allow) E:\Steam1\steamapps\common\Half-Life 2\hl2.exe FirewallRules: [{52757CA9-49A0-4CCC-8B52-D139700BFD3B}] => (Allow) E:\Steam1\steamapps\common\Prison Architect\Prison Architect.exe FirewallRules: [{5AE5FB42-3ECB-4C72-9940-A06EE2E3FF5E}] => (Allow) E:\Steam1\steamapps\common\Prison Architect\Prison Architect.exe FirewallRules: [{87387681-FAEC-45A4-8F45-35C575350E1C}] => (Allow) E:\Steam1\steamapps\common\Prison Architect\Prison Architect Safe Mode.exe FirewallRules: [{853DBA54-82D8-4A03-8D77-889BEAD367C5}] => (Allow) E:\Steam1\steamapps\common\Prison Architect\Prison Architect Safe Mode.exe FirewallRules: [{7FF2C8FC-9876-4897-AB21-7600F659E77A}] => (Allow) E:\Steam1\steamapps\common\Super Meat Boy\SuperMeatBoy.exe FirewallRules: [{BE09505E-E278-408B-BA42-9AD644700C0D}] => (Allow) E:\Steam1\steamapps\common\Super Meat Boy\SuperMeatBoy.exe FirewallRules: [{A5587017-29C6-4E06-8E5D-C96AD726A940}] => (Allow) E:\Steam1\steamapps\common\Titan Souls\TITAN.exe FirewallRules: [{0B0A25BA-7D06-44E6-ACF1-2C5123F5002A}] => (Allow) E:\Steam1\steamapps\common\Titan Souls\TITAN.exe FirewallRules: [{AA5C8420-85AE-4DF4-B0B9-A8B9962D5A3E}] => (Allow) E:\Steam1\steamapps\common\Stronghold Crusader 2\bin\win32_release\Crusader2.exe FirewallRules: [{681595DB-4102-48B7-9534-6C5F3A8C4D9F}] => (Allow) E:\Steam1\steamapps\common\Stronghold Crusader 2\bin\win32_release\Crusader2.exe FirewallRules: [{05480A3E-CC2B-4C7D-A448-BB279FC1E448}] => (Allow) E:\Steam1\steamapps\common\South Park - The Stick of Truth\South Park - The Stick of Truth.exe FirewallRules: [{9797BDA5-928E-4EA0-8577-2B7D2ACE9953}] => (Allow) E:\Steam1\steamapps\common\South Park - The Stick of Truth\South Park - The Stick of Truth.exe FirewallRules: [{A11FACD0-C76E-4320-A39E-BC7CEA115A0E}] => (Allow) E:\Steam1\steamapps\common\Victor Vran\VictorVranSteam.exe FirewallRules: [{65B9CB9D-A5D2-400E-82D6-B3D8F6108F80}] => (Allow) E:\Steam1\steamapps\common\Victor Vran\VictorVranSteam.exe FirewallRules: [{2F6A95FD-0C1C-4350-8A96-6FDA9E846322}] => (Allow) E:\Steam1\steamapps\common\DrinkBox_Game4\Game.exe FirewallRules: [{2F9F138A-FA65-4767-96F9-29A653F70413}] => (Allow) E:\Steam1\steamapps\common\DrinkBox_Game4\Game.exe FirewallRules: [{20A63A34-F29F-4BC3-B096-8E1395DDC15E}] => (Allow) E:\Steam1\steamapps\common\chivalrymedievalwarfare\Binaries\Win64\CMW.exe FirewallRules: [{57A4F263-2D49-4860-8D30-69422BA8DFF5}] => (Allow) E:\Steam1\steamapps\common\chivalrymedievalwarfare\Binaries\Win64\CMW.exe FirewallRules: [{E8CC4D2D-6430-47A0-8343-6046596DA379}] => (Allow) E:\Steam1\steamapps\common\chivalrymedievalwarfare\Binaries\Win32\CMW.exe FirewallRules: [{5FC05927-B376-4747-A663-286BC0864569}] => (Allow) E:\Steam1\steamapps\common\chivalrymedievalwarfare\Binaries\Win32\CMW.exe FirewallRules: [{36AD6773-8B4C-4238-96F8-B420744962FB}] => (Allow) E:\Steam1\steamapps\common\chivalrymedievalwarfare\ChivLauncher.exe FirewallRules: [{0DDBB646-5BE7-4017-B14C-454D94FF4329}] => (Allow) E:\Steam1\steamapps\common\chivalrymedievalwarfare\ChivLauncher.exe FirewallRules: [{DF2CB571-0427-4B81-AE5B-A59CCB6C1C01}] => (Allow) E:\Steam1\steamapps\common\Portal\hl2.exe FirewallRules: [{5260E4B4-96ED-4DE7-9AA2-B30C8F344157}] => (Allow) E:\Steam1\steamapps\common\Portal\hl2.exe FirewallRules: [{BD5D03EF-0EB2-46AC-9F0D-FFCD5DD97328}] => (Allow) E:\Steam1\steamapps\common\PapersPlease\PapersPlease.exe FirewallRules: [{C184781A-0A7C-4C10-8E2A-0AA40657C874}] => (Allow) E:\Steam1\steamapps\common\PapersPlease\PapersPlease.exe FirewallRules: [{100E770A-2851-4F99-8938-2AC5E3FF7397}] => (Allow) E:\Steam1\steamapps\common\Ori\ori.exe FirewallRules: [{A15395C9-95B2-4BF8-BE0A-8538200D8360}] => (Allow) E:\Steam1\steamapps\common\Ori\ori.exe FirewallRules: [{A88D052F-834D-434C-B970-6FE9E7F467E1}] => (Allow) E:\Steam1\steamapps\common\Risk of Rain\Risk of Rain.exe FirewallRules: [{0053B6CB-FDDA-485F-B4F9-0B42131951EF}] => (Allow) E:\Steam1\steamapps\common\Risk of Rain\Risk of Rain.exe FirewallRules: [{786E96B9-5FC7-459A-8C7E-DD839C8D27ED}] => (Allow) E:\Steam1\steamapps\common\Hexcells\Hexcells.exe FirewallRules: [{2071251E-7163-411D-960F-3F579E3C5BDA}] => (Allow) E:\Steam1\steamapps\common\Hexcells\Hexcells.exe FirewallRules: [{C7EFF855-792F-4AA8-8A27-D2AB6223C4FC}] => (Allow) E:\Steam1\steamapps\common\hotline_miami\HotlineMiami.exe FirewallRules: [{0BBC1844-6F75-4EB2-BE84-2577BA76142E}] => (Allow) E:\Steam1\steamapps\common\hotline_miami\HotlineMiami.exe FirewallRules: [{6BC76C62-B890-4D45-B209-DDA7BD8D52C7}] => (Allow) E:\Steam1\steamapps\common\Nuclear Throne\nuclearthrone.exe FirewallRules: [{99C19F0E-6154-4FEC-BFAC-BAAEB1E70C33}] => (Allow) E:\Steam1\steamapps\common\Nuclear Throne\nuclearthrone.exe FirewallRules: [{DCCC77B8-83FE-442A-AB66-AC454D601E3E}] => (Allow) E:\Steam1\steamapps\common\Lovers in a Dangerous Spacetime\LoversInADangerousSpacetime.exe FirewallRules: [{D8E4CA51-F5C7-4026-B74F-81D73B749C11}] => (Allow) E:\Steam1\steamapps\common\Lovers in a Dangerous Spacetime\LoversInADangerousSpacetime.exe FirewallRules: [{724CFD7C-5C12-4120-97E4-CFCB173BF6CD}] => (Allow) E:\Steam1\steamapps\common\Limbo\limbo.exe FirewallRules: [{603B2343-ED6F-4D3B-A027-7CD3CD90893F}] => (Allow) E:\Steam1\steamapps\common\Limbo\limbo.exe FirewallRules: [{B7D04E05-31C4-4175-A23E-C74B72DEC6C4}] => (Allow) E:\Steam1\steamapps\common\GrowHome\GrowHome.exe FirewallRules: [{2FD8406A-C019-4EB1-A641-A93A81F99333}] => (Allow) E:\Steam1\steamapps\common\GrowHome\GrowHome.exe FirewallRules: [{EC0FB354-561B-498E-A0B5-5FAE7A399004}] => (Allow) E:\Steam1\steamapps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{D5C74821-0D7C-43B7-B49A-AFCCCB3B0D6C}] => (Allow) E:\Steam1\steamapps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{917C7F53-C551-4382-BED9-6A26646DBD7C}] => (Allow) E:\Steam1\steamapps\common\CoJ Gunslinger\CoJGunslinger.exe FirewallRules: [{DEA90575-9F0E-41FE-8A18-B690B40B9631}] => (Allow) E:\Steam1\steamapps\common\CoJ Gunslinger\CoJGunslinger.exe FirewallRules: [{2FB86E1C-68F5-4212-9319-C5444923CD24}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{B31FFAF0-193C-427E-A9E3-939FA12F0718}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{0B1D2A9B-8432-4D16-B2CA-8D3F43DF79DC}] => (Allow) E:\Steam1\steamapps\common\Dead Space\Dead Space.exe FirewallRules: [{7D90F6D3-54DA-46C9-977A-7E3C63C39122}] => (Allow) E:\Steam1\steamapps\common\Dead Space\Dead Space.exe FirewallRules: [{95CE2607-AB5C-438A-B28C-9BAA446B62E9}] => (Allow) E:\Steam1\steamapps\common\Magicka\Magicka.exe FirewallRules: [{52D1B02D-C324-4224-848B-3A1750410521}] => (Allow) E:\Steam1\steamapps\common\Magicka\Magicka.exe FirewallRules: [{A66CDF14-9E4B-4F83-87FC-AC320F16ACB8}] => (Allow) E:\Steam1\steamapps\common\Sonic & All-Stars Racing Transformed\ASN_App_PcDx9_Final.exe FirewallRules: [{0461D9B0-F756-4F93-A94B-417E951800BB}] => (Allow) E:\Steam1\steamapps\common\Sonic & All-Stars Racing Transformed\ASN_App_PcDx9_Final.exe FirewallRules: [{46FB7C63-311E-403A-B737-9EBDD35B6372}] => (Allow) E:\Steam1\steamapps\common\Sonic & All-Stars Racing Transformed\Launcher.exe FirewallRules: [{B891636F-EF3C-4E5A-AF9A-E3136DE679E1}] => (Allow) E:\Steam1\steamapps\common\Sonic & All-Stars Racing Transformed\Launcher.exe FirewallRules: [{C26BB16A-06F0-4D3F-8B30-50DC2F4E8CC0}] => (Allow) E:\Steam1\steamapps\common\mark_of_the_ninja\bin\game.exe FirewallRules: [{240D1647-D511-4C5B-99C5-BB7CEB69DF07}] => (Allow) E:\Steam1\steamapps\common\mark_of_the_ninja\bin\game.exe FirewallRules: [{A5363984-D827-42F7-A617-3AE6F300A4D4}] => (Allow) E:\Steam1\steamapps\common\Crypt of the NecroDancer\NecroDancer.exe FirewallRules: [{1951D322-7D78-452D-9283-ABE5B907592B}] => (Allow) E:\Steam1\steamapps\common\Crypt of the NecroDancer\NecroDancer.exe FirewallRules: [{8778D16C-6D8F-4D10-A3EA-853A680CB282}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{AB615E36-FE34-449F-8B8B-C15D390C89C7}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{35D4D755-5EFF-4AB1-9380-9AE1B9791908}] => (Allow) E:\Steam1\steamapps\common\Brothers - A Tale of Two Sons\Binaries\Win32\Brothers.exe FirewallRules: [{34F588CB-6B05-48B6-BB0C-F9F4EE2C2F80}] => (Allow) E:\Steam1\steamapps\common\Brothers - A Tale of Two Sons\Binaries\Win32\Brothers.exe FirewallRules: [{69D33DB2-1EE0-42E6-9446-549EF9E33008}] => (Allow) E:\Steam1\steamapps\common\Brothers - A Tale of Two Sons\Binaries\Win32\BrothersLauncher.exe FirewallRules: [{BD6C475B-77FD-46F4-8D34-E763AB74BB88}] => (Allow) E:\Steam1\steamapps\common\Brothers - A Tale of Two Sons\Binaries\Win32\BrothersLauncher.exe FirewallRules: [{2BFC5097-9D9D-4769-BA0B-4A0D27351E90}] => (Allow) E:\Steam1\steamapps\common\TheBugButcher\TheBugButcher.exe FirewallRules: [{14753288-2294-4F10-9621-7817805B0099}] => (Allow) E:\Steam1\steamapps\common\TheBugButcher\TheBugButcher.exe FirewallRules: [{E4D1713C-A490-41FD-BEBC-3CE084CE546C}] => (Allow) E:\Steam1\steamapps\common\The Escapists\TheEscapists.exe FirewallRules: [{D2A6D4B4-2811-4A76-8DD5-62522C148373}] => (Allow) E:\Steam1\steamapps\common\The Escapists\TheEscapists.exe FirewallRules: [{9ED9F6C5-B399-49E4-863A-289F4223E12F}] => (Allow) E:\Steam1\steamapps\common\Expand\expand.exe FirewallRules: [{D4AD6391-4DE1-4249-AD35-55DFEC0D9710}] => (Allow) E:\Steam1\steamapps\common\Expand\expand.exe FirewallRules: [{5DF444AC-79BE-44ED-B993-AF4AE3F4965A}] => (Allow) E:\Steam1\steamapps\common\Please, Don’t Touch Anything\DontTouchAnything.exe FirewallRules: [{AEF2B31E-889F-4533-9BF9-7E8D5E5C211B}] => (Allow) E:\Steam1\steamapps\common\Please, Don’t Touch Anything\DontTouchAnything.exe FirewallRules: [{554FD783-EA9B-4721-B85C-B946990E23C6}] => (Allow) E:\Steam1\steamapps\common\Skyrim\SkyrimLauncher.exe FirewallRules: [{64373261-308D-4122-986D-346C3EE99B95}] => (Allow) E:\Steam1\steamapps\common\Skyrim\SkyrimLauncher.exe FirewallRules: [{01E123DE-B96C-4B89-8945-A96A0F733AA5}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{A19441EA-07B8-4F43-BD14-AB0F5CB1D1B5}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{0A6DCE83-936C-4CDA-872E-60139E259E39}] => (Allow) E:\Steam1\steamapps\common\Octodad Dadliest Catch\OctodadDadliestCatch.exe FirewallRules: [{DE1DF175-41CD-4305-BB0F-7D06E7FC054B}] => (Allow) E:\Steam1\steamapps\common\Octodad Dadliest Catch\OctodadDadliestCatch.exe FirewallRules: [{16702538-4EB8-47D4-9B0E-C6D2139474D0}] => (Allow) E:\Steam1\steamapps\common\Punch Club\Punch Club.exe FirewallRules: [{BA50DEA4-8755-42E3-B602-BE2C99488CD8}] => (Allow) E:\Steam1\steamapps\common\Punch Club\Punch Club.exe FirewallRules: [{A61F42BB-4084-4BE3-9D29-8ECE7FE49BC6}] => (Allow) E:\Steam1\steamapps\common\SuperTimeForceUltra\STF_win32.exe FirewallRules: [{9FF4FCFF-D799-41C1-8A6C-C24F8F891C6A}] => (Allow) E:\Steam1\steamapps\common\SuperTimeForceUltra\STF_win32.exe FirewallRules: [{1F9E8FB4-F4AE-494B-902D-10E17C3D1383}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{BEAEE1FE-A29D-4E82-A250-EE3E388C694E}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{8B982863-80A7-41A3-B1F1-E66D886E629F}] => (Allow) E:\Steam1\steamapps\common\Call of Duty Modern Warfare 3\iw5mp.exe FirewallRules: [{6D43A8E0-983A-49C0-8748-6C1537684AD4}] => (Allow) E:\Steam1\steamapps\common\Call of Duty Modern Warfare 3\iw5mp.exe FirewallRules: [{5F59AA72-A665-4046-9F9B-6FF17AE141DC}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{1B3D1B32-9ED4-421C-BFB6-DAB6A6DD52B9}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{90B44828-B5D3-43F3-9A2E-0F21598815BE}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{44A73D7D-8A94-4D08-BE78-7CC90073E1BD}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [TCP Query User{7BF3C1DB-4AA7-4D38-8D98-F7D4A92B1290}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [UDP Query User{2E0D7805-B655-4968-A182-3D3C145EF8C6}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [{907F24BC-A376-4529-BFD9-9C9FA68D6C95}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{4C9CE7BC-486E-486C-B2D3-A135FBB42DF8}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{7B4636F5-79CB-4DAF-911E-8D923D0504F1}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{7B4EFB9E-E242-4BEF-AC52-E860DF4A6FDC}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{1BC9E81A-B591-4554-A465-29B60BEEBC4D}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{03C10766-B4C3-4B63-B860-01B4B0F9A196}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{BB6A100D-AB66-453B-8235-22408C420D6A}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{4A2B3219-5209-47E6-A083-E7567BA0F04A}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{268BF80D-6F1A-4C34-8F0C-5094D5504C74}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{8E6EC770-CBFA-472A-9623-53D7AE023F84}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{45C738DE-2CFB-4255-9299-288649275F63}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{C697D388-D683-409B-B401-3D7A00D1ECBF}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{6E47FD05-8108-482A-810E-7F841C36A8D5}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{DC97E436-8AB3-4B76-8B5C-8835F9B3864E}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{A46CB348-6156-46BD-8857-4ED7CDAED151}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{75D84790-F33F-44AF-87D8-488DDE70E147}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{1043D3BE-8C58-462E-8064-824FBEC11F43}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{1490A0D6-CBB7-4817-ACC8-1CE2E00D724C}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{2D896278-E0BE-487F-B3F2-D97834A4F419}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{3BE3C6ED-DF54-4E65-B66E-24F3C9D4E8BB}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{C7D7DF31-EC14-4F48-B022-7CFE8B175019}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{16A801F2-3005-4F90-906E-2BF71F7D56EE}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{D8FA645B-4A25-4594-BABE-5D8A8234E5F6}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{482EEC3C-DD9B-4794-99C1-8838FBACF0F5}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{A18F6E96-6C80-4986-B635-C7FEC80F1D00}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{4E255C23-8BFF-45B5-B88D-E0E84B044845}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{41CDAAB8-EC63-4C15-95F7-E4121FD2D3A9}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{4B9A9B23-85E9-421A-8519-3E8B9AE8AAF8}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{F9758D1B-85BE-41B7-9324-B3119AD5B65C}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{6A50D82E-E723-4805-94CD-BAEE46C1482F}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{90083819-F817-4B0B-B49F-1326E381CF10}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{5D70522E-FEBF-4CAF-ACE9-930FFF8418CA}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{6AD907CB-B24F-4A43-8CB3-C7A93C0F5DAC}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{E1F258AF-D2E7-448B-B6CF-DC9F9180EBDD}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{A1A4BD5C-77C9-4839-BA47-A15A1A55963A}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{DD0C562F-19AB-4EDC-AA39-37FAF93D782C}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{E711BD5A-C7AA-422D-8E36-5CE5AA25C931}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{ED9428FD-EEE0-4635-972A-FC3EDE8181D6}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{64FA93A8-5675-4A27-8D0E-F043EF344619}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{1DA5C414-07C0-4894-8ED4-840CB678A286}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{00296D9D-1FCC-40C6-94DC-CD679A14FA0C}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{9911EA7D-10A7-40CF-BBAA-5BB0F6F6D079}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{35A4A8A7-D910-4CE9-A2D4-1E050751FF5B}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{8F6188E0-9995-40FF-BBED-AE9CC154B697}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{8A6E1DE0-BBE7-45A4-87B7-5173F3EECDB7}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{ECF74642-7CB0-4DBD-A585-33353A758CA7}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{50EA8145-B806-4EBA-851A-615BA4B99FFE}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{A58FE491-B080-4110-9290-7DFD20BC9234}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{89E15549-715C-48AC-AE8C-D93867098213}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{D1C7DDC2-9F59-4A0A-8EA5-A778D3B666D4}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{C4FC2F09-6C52-42FB-A5F7-22212C42DF1D}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{BB7407EE-4925-45AA-8B52-6182B5708CD3}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{A1B8223D-25E4-4079-9E46-8B06969618E7}] => (Allow) E:\Steam1\steamapps\common\Westerado\WesteradoDB.exe FirewallRules: [{601A14F3-D4D4-4EDF-8313-7238ADA3ACDD}] => (Allow) E:\Steam1\steamapps\common\Westerado\WesteradoDB.exe FirewallRules: [{A88F3168-107D-4738-A17A-271CD88C4BAD}] => (Allow) E:\Steam1\steamapps\common\Broken Age\BrokenAge.exe FirewallRules: [{9E9D5CA5-9769-4C56-9817-2A48033726D2}] => (Allow) E:\Steam1\steamapps\common\Broken Age\BrokenAge.exe FirewallRules: [{5FF6E14D-06DA-4104-B5B6-140B55F6EE99}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{8A505452-1850-4277-BB4D-149946B25F4A}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [TCP Query User{140D621E-1777-4CBB-87CB-E61E32550C0A}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe FirewallRules: [UDP Query User{08A08947-0894-45D6-9DEC-C378C2BAB8C6}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe FirewallRules: [{EBB1CE79-53FF-4507-8FDC-03D4B19C3EB0}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{5A3509C3-C580-4C91-BE80-E017D86BBAD7}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [TCP Query User{21436193-2D00-4772-A11B-27EF83CA0EFF}C:\users\marvin\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\marvin\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{19AACE7C-64BF-4AC5-A866-1367179AB0E8}C:\users\marvin\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\marvin\appdata\roaming\spotify\spotify.exe FirewallRules: [{AD87484F-6497-4308-8AC8-B63697A25E7B}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{26390280-AA3E-410F-9A2A-EA11235C65CE}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{20DCA166-05E4-49B8-86B6-33B3E7413DD3}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{0D530C79-8788-4CB0-B2AB-B09F1A50C571}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{4A88E623-1551-4EF9-AD9B-6992B7BE27A6}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{79267148-1B2A-479A-B924-2A80909E32B6}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{C600996F-36B2-4A62-8603-873E58BAD7B2}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{EBF4534D-6FC9-4FCD-83D2-67B8DBB37504}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{0A0E4D38-74FA-44DC-A0F4-2D66233FC0F1}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{2E7FE0A1-D167-46C0-B886-10475E7C3230}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{DBBB2AAC-3660-4466-8978-8B4F8B4F852B}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{8579F4F5-8963-4333-836A-709FABB9203C}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{F5F4F6B1-77DE-4F23-BAA9-870BB2135BE8}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{D52AFB87-F376-4B98-944E-9C6EF55B39A1}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{0A817F55-2779-4AA9-90F8-3BB73E08D08E}] => (Allow) E:\Steam1\steamapps\common\Darksiders Warmastered Edition\darksiders1.exe FirewallRules: [{58F82A59-AD1B-4CBD-88D5-371EB129D2FE}] => (Allow) E:\Steam1\steamapps\common\Darksiders Warmastered Edition\darksiders1.exe FirewallRules: [{79761DB8-5032-472C-8610-AF6F9DC6DEBE}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{20756428-3ABC-4C3B-B868-4573946BAA5B}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{035E257C-E4B3-4560-84C0-5BA945AD917C}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{5D8F1731-006E-4680-90BF-73C7A335184B}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{1241850A-0D73-4870-84E8-8FB0BF5CFB4F}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{C618780B-BBEA-48DD-A0DF-16C582161174}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{7A43EC64-5215-4194-B67D-8E06CE8D18F5}] => (Allow) E:\Steam1\steamapps\common\LuminoCity\Lumino City.exe FirewallRules: [{DFA34825-64F5-4C34-9035-6F2E3B05F548}] => (Allow) E:\Steam1\steamapps\common\LuminoCity\Lumino City.exe FirewallRules: [{324ABD6A-3282-4300-947A-3DC2AA3F0F07}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{2B1EA958-5EC0-4CE3-8CB8-71B8F03D9CC7}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{B2211B5A-AAC7-4795-8BF3-A330DFCB2A88}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{B3D54DC3-B557-4C98-8711-DEE42DEB2E23}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{BAC2EFA0-D0D8-44B6-ADDD-76D45930ADE4}] => (Allow) E:\Steam1\steamapps\common\Road to Ballhalla\Game\RoadToBallhallaUE4.exe FirewallRules: [{DA00C6A5-C344-49FB-B158-AD24DA42BEEB}] => (Allow) E:\Steam1\steamapps\common\Road to Ballhalla\Game\RoadToBallhallaUE4.exe FirewallRules: [{BBA78A60-7BB1-4823-BF08-3AAFD4083F32}] => (Allow) E:\Steam1\steamapps\common\Road to Ballhalla\Editor\rtbtiled.exe FirewallRules: [{10D40418-3C6E-4ABD-851A-8DEEEAD65B74}] => (Allow) E:\Steam1\steamapps\common\Road to Ballhalla\Editor\rtbtiled.exe FirewallRules: [{D48B07CF-580D-4449-8803-AD41F18AE3F0}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{02A09B1F-90CE-4048-BF36-690DA877C4A1}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{066CDAFC-FDE9-4E80-B72F-37BC86A07A2A}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{3F71CC8F-5CE3-4408-B437-7BC273D68A7C}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{F25C500A-60A5-4E4C-B9A8-87FD2FEC1791}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{AE4E0982-547A-4DBE-8015-00528B2FD688}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{AC5CC330-D085-4728-9F19-0412C0201426}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{2ADBCC09-4401-4D3C-8047-575581B133A0}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{52125646-4467-4D5D-9D31-7441F5FD3944}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{1786DB17-0C5F-45EF-B51D-544EE1854037}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{DB43F976-6BF3-4F67-9574-7E2DB8F82147}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{DCC994B2-EC47-4DBF-82FF-0B91CAF3E533}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{BC19956B-ACC5-4158-9912-BCCAAE220291}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{7BAB2B1B-C182-4ED7-99B1-0125BE204888}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{0F225EE6-F3E3-4343-BAC8-EDD8D9B83619}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{092B2065-DF20-4E2F-9D7D-4A7BE403BCA9}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{64459E4D-A1B5-4503-89F3-05A275204463}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{826D1225-7E29-40C5-B964-E9F91D61E510}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{0CBED79E-48FB-417F-B87C-B01900CB226F}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{651CA3C1-94D6-4C37-AC79-ACED4AC354BE}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{F105BC19-9C43-4EE8-B366-F28B6B0C1767}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{150F769F-BD7E-4BB1-85B4-E5DC838978F9}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{DB3FAEA9-EB7A-454A-9673-65D8DA06D4F9}] => (Allow) E:\Steam1\steamapps\common\ShadowOfMordor\x64\ShadowOfMordor.exe FirewallRules: [{C10122C8-5312-43FF-B38E-4403F7B344E6}] => (Allow) E:\Steam1\steamapps\common\ShadowOfMordor\x64\ShadowOfMordor.exe FirewallRules: [{2A43AB41-7A3A-47D5-B9E0-5855BCEB65D7}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{F8055FE7-A349-4AD0-8596-2220476A85EF}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{EA2F53FC-7DE3-4563-9837-1A7527C41F63}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{295F22A4-91B2-4B5A-8D9E-C8CEDFACC23E}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{A9D8113B-FD9E-4C12-BFC4-488BAA744A53}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{B60852AF-7754-44C7-87F4-39C947C81E63}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{F4405448-0D19-49B2-B11A-D4E3B9017932}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{2B1EF04B-C757-487E-9F9A-AE1366A74848}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{3317D6B1-4568-4901-9B23-EE2F3EE4FBA2}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{1888D066-8347-4301-94F3-E311A116954B}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{0695F467-F352-45C5-80FC-FE08C2F73011}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{76D69F79-DF0D-437E-9558-B50A45665150}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{7D464749-A3AA-47C2-AFBB-E815B22D7859}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{E911A3F1-3314-4FDB-997C-1A9FC41B899C}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{5668D39E-6567-42E3-9CBE-853DF8C3F82E}] => (Allow) E:\Steam1\steamapps\common\vvvvvv\VVVVVV.exe FirewallRules: [{D5FD08B5-A4A0-45D5-AA31-8A640BCD948C}] => (Allow) E:\Steam1\steamapps\common\vvvvvv\VVVVVV.exe FirewallRules: [{282CA39E-53D4-4C07-B4ED-D2A59D082180}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{C461F1C2-E73F-40D2-AC2D-1A09634C5406}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{C0400828-F4E8-43F8-A5C9-861AA2A89880}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{DBEF5E3B-88BA-4014-A886-DE767A0ECE12}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{A60BE95F-FBB2-4423-8C0B-CF31194553AE}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{BA8EFB20-05FE-4703-9A12-CC75C8BC5113}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [TCP Query User{12C41AA9-4912-45D4-BFD3-36124B947D3C}E:\steam1\steamapps\common\outlast\binaries\win64\olgame.exe] => (Allow) E:\steam1\steamapps\common\outlast\binaries\win64\olgame.exe FirewallRules: [UDP Query User{E2E4341C-F25C-431C-9ED9-CE744719D842}E:\steam1\steamapps\common\outlast\binaries\win64\olgame.exe] => (Allow) E:\steam1\steamapps\common\outlast\binaries\win64\olgame.exe FirewallRules: [{CB1BB0B2-D5EA-43CF-8619-4DD5B278409A}] => (Allow) E:\Steam1\steamapps\common\Outlast\OutlastLauncher.exe FirewallRules: [{F441B140-54A0-4EE1-8368-BE90027A6C4F}] => (Allow) E:\Steam1\steamapps\common\Outlast\OutlastLauncher.exe FirewallRules: [{4CED88EC-9CDD-4E5F-B13D-D481EA325B3A}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{5A525CD1-0D6A-486F-9BBA-84CE41DE3DFF}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{B16310D6-654F-44BB-BCB7-81CAFF42EAC1}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{F0BD6FC4-8FCC-4539-98AF-F6BF1D92EF5B}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{7593C99C-39FC-4E6F-9352-1B8D6C917987}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{93274D5A-D094-4442-84BB-89CD6CB615A3}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{252E30B7-17BB-44AE-A86B-CA5EEBA687A5}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{B1C8AA65-750B-49AF-8270-242FABED95D2}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{D18AD4AE-5E7C-4E1A-ADE3-E0E2769093E6}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{CAC23977-798D-48A2-B3AE-D5C31B621B41}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{93B3A0D9-48B5-4AB6-9E3E-BAD41C34F6C7}] => (Allow) E:\Ubisoft Game Launcher\games\Assassin's Creed IV Black Flag\AC4BFSP.exe FirewallRules: [{29B43683-EA97-41A8-B37D-4FAF47A50D5E}] => (Allow) E:\Ubisoft Game Launcher\games\Assassin's Creed IV Black Flag\AC4BFSP.exe FirewallRules: [{90F3DA98-0230-4F69-9E2E-9A320CA85934}] => (Allow) E:\Ubisoft Game Launcher\games\Assassin's Creed IV Black Flag\AC4BFMP.exe FirewallRules: [{6890D84C-8EBA-4195-B221-CF8F54C5D879}] => (Allow) E:\Ubisoft Game Launcher\games\Assassin's Creed IV Black Flag\AC4BFMP.exe FirewallRules: [{8C882900-9DB2-4BA7-B5E7-32DDDA343D19}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{57A3A9DC-4759-43EC-BC64-19FCBA584B97}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{F6CBF425-DEBD-4962-9E02-5719D83D3727}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{26A893F8-0417-45D9-839C-EFD0746A3B50}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{4E153091-A86C-4056-A5CE-EBA39B5624D1}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{16A68BC4-D87B-44C1-AFBE-E557569CBBDF}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{C8FB3164-5714-4BB5-B6DC-750DD1BBF514}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{5D99A57B-A78A-4852-BC46-F00FE76A0934}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{B2527B11-4A77-4777-944B-383264A16EDD}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{3C06544F-ADF1-4948-A38A-EF638A8FFBF8}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{C34BCC0E-EE9A-44FD-AD53-EB39AC0F2D52}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{7412E261-EB84-4E7A-A98D-CCB77309EE00}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{50AAF69A-26DF-4389-B697-A7647E62FB7D}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{06E4A7F3-DD1C-4E45-807C-AB62975EB791}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{9C929800-FFA5-4043-9E18-EA086F4C1984}] => (Allow) E:\Steam1\steamapps\common\Jotun\Jotun.exe FirewallRules: [{646F3EE3-D26F-4643-A9FC-DA9CD6BDBCDD}] => (Allow) E:\Steam1\steamapps\common\Jotun\Jotun.exe FirewallRules: [{4FE3C28A-F4B2-4BE6-95DD-4DC2CCBB498D}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{30EA301A-9E55-45E0-8433-46D1971693A5}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{131353AD-E34E-4131-BB82-8061AFD1CDF6}] => (Allow) E:\Steam1\steamapps\common\Nidhogg\Nidhogg.exe FirewallRules: [{CEC958A2-4055-4E4F-967B-D005FCB3CFBC}] => (Allow) E:\Steam1\steamapps\common\Nidhogg\Nidhogg.exe FirewallRules: [{D3DAE8BF-7F03-4D19-934D-89B35B6D571B}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{66D67D12-8AD0-40AD-B1C3-A7D712CD125D}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{8704789D-502E-4C3C-B280-ECB7744C44EE}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{8367F8E5-EE7C-40C1-9651-3CE77FE3AA33}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{7C792EF4-6877-4FD7-981F-309EF45667C2}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{09E50758-7C0D-41F3-9AA9-D86F212A88DC}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{06A794E4-F004-476A-AF96-B6D625420166}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{2D39429D-B8E3-4889-9FE2-45B074F1DD8B}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{056D6DA2-FC43-4596-80C5-DC34F7D586AB}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{AE7BCA1C-3ED5-4945-92B1-CB259A4B3E41}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{B955ACF7-A7F6-4CDD-B679-3B04C049611E}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{1DD3CF10-1390-4CE7-9FD8-32AA005C0F6C}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{D2D26EA2-5C8F-4250-A28D-313ABC16F95F}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{94105BCC-0043-47D4-9FDA-EA13F30AB851}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{080919FE-BE7A-4D2C-BCE2-D808F101F56C}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{8696448E-9718-421F-87BD-F995AAFA0F76}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{43E9ABD4-5EFD-499C-9B98-6377303F5510}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{41E92D19-6807-4A3D-830B-34999EC30BEF}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{3CFD180D-0B1C-48B6-903C-D9DF7DF2BD92}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{95B5E133-5E99-41C2-A2AA-19AECE1A4FB9}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{1F1CD7E7-4A06-4460-8831-52BE5FBEF63B}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{C1B00277-8A4A-4D97-B701-5515B8318A3C}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{E2D2AB94-1ECD-4194-A517-5AB2836C6613}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{E87E30C2-6FE5-42CC-A1A4-D39EA23C5756}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{AAE245C7-06E1-4194-88E4-450E3FC069E7}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{E10CB68F-9931-485F-BF75-D486D4F890C7}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{A90DEEC8-A7E2-4796-B30E-E1EA34F17D43}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{77983A9C-AF2A-4E97-AA88-4BDBD975ACCA}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{3F20F43F-77A3-4F22-AA65-368733E15839}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{28FD75CD-542F-4BC4-BFEB-C1674E282482}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{8B428377-0029-47D7-A27A-6F5CC37830F9}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{16D51AD1-A2F4-4223-988E-C352A2DA7055}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{656681E6-0158-4376-AE82-ECF1D6836053}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{BDCBE66C-1162-4CB5-A1C8-ED99857935B0}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{405F7670-D02D-4ABD-8FFB-474263F5EC14}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{ACF26A74-C8EA-4DA2-B573-9B8C1B0BDCA1}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{CC6505A3-6C1D-4C9C-8548-9EF9FE83E572}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{D654259D-5F0C-42DE-8572-60473B8B34DE}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{D66D0A61-DB3B-43E4-945E-E839B1A5890E}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{BA8B0C19-ABB6-403C-93C8-06740D0319F7}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{3C3059C6-2F12-4B6F-82EE-A24E741BBCF4}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{19331082-F050-4EEF-8EC7-642879C94389}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{712B5A8D-751B-45D3-A5BD-F128B16C3CEE}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{8B6586F5-27D0-416A-B3F4-E280F8465716}] => (Allow) E:\Steam1\steamapps\common\Dead by Daylight\DeadByDaylight.exe FirewallRules: [{F2720686-42AC-45D4-89F5-CDE739E83DD9}] => (Allow) E:\Steam1\steamapps\common\Dead by Daylight\DeadByDaylight.exe FirewallRules: [{5C618EDA-A49B-4A61-9346-F251351E10D1}] => (Allow) E:\Steam1\steamapps\common\Layers of Fear\Layers of Fear.exe FirewallRules: [{3712BA43-4FA6-4CF7-A204-A4901D7AE8DD}] => (Allow) E:\Steam1\steamapps\common\Layers of Fear\Layers of Fear.exe FirewallRules: [{266BDC48-8A82-4B9F-8C08-595B1D815BCC}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{BA60146C-58CD-4D5B-A881-59192093789F}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{2C01BAEF-B6DA-4256-AAD4-8130AA1E7C90}] => (Allow) E:\Steam1\steamapps\common\Alien Isolation\AI.exe FirewallRules: [{B0FBF3D1-8712-4CDE-826F-05F4BCCDBA2C}] => (Allow) E:\Steam1\steamapps\common\Alien Isolation\AI.exe FirewallRules: [{B1B49298-52AB-46D6-97D2-9CAAF76D9DD8}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{84437F00-B3C5-4D56-8336-0434EEED3988}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{E65DACFF-48C9-4C4F-8191-138A05FBE42D}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{AB82E04C-27DE-431E-81B3-5464357428FA}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{8B34B2F5-F59A-4845-8576-2E8B91F3E414}] => (Allow) E:\Steam1\steamapps\common\Verdun\Verdun.exe FirewallRules: [{CFB134BB-968F-486A-8651-F21A5A0A6EE4}] => (Allow) E:\Steam1\steamapps\common\Verdun\Verdun.exe FirewallRules: [{7A02D1B9-E0C8-49E6-9E07-82AC08614C54}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{A6DE3FB0-05F3-40AD-AFEA-3F4E2AD4E4B9}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{D4503CEF-E7CD-41FC-8DC7-817B8727002A}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{A2DA5455-368D-43AC-8FF1-ABBAD276DD4B}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{71BB738F-CC20-4892-B64A-C87F17A5ED64}] => (Allow) E:\Steam1\steamapps\common\Verdun\1914-1918 Series.exe FirewallRules: [{0CA4C312-5DBE-4030-8244-077E7DEE058B}] => (Allow) E:\Steam1\steamapps\common\Verdun\1914-1918 Series.exe FirewallRules: [{310431A5-A9B9-4D92-9EF0-650F51A29AB0}] => (Allow) E:\Steam1\steamapps\common\Monaco\MONACO.exe FirewallRules: [{1FFBA49F-3AF7-45B5-AE78-96F0CAA8AE85}] => (Allow) E:\Steam1\steamapps\common\Monaco\MONACO.exe FirewallRules: [{80BCBFA5-FF40-4D34-B0A3-79CCD53CCCA3}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{9B7E5639-E888-45DC-8484-C324ACE01493}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{3C2B1D9C-668C-47AA-8509-947D5A8D9D42}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{9B58A60A-1D06-4AE2-8E4D-6FBBEAFB5DEF}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{E0604D98-DDF7-478D-B5B2-734D9E5EFE63}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{971ED68C-40FB-4939-A10E-E2C6B56CFBED}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{D324713A-428B-4761-A2EC-4892CFF32037}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{554F2833-E313-4852-910A-7FE6815476E8}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{8C088171-CBE2-4F2B-82DB-DF8A65ECA7AA}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{AC59B703-004E-452F-AF0F-D9D8E0383EFD}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{B92F286C-DD9B-4063-B46D-829248F6B438}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{1BDC941C-1AD6-4DC2-93F6-C86EFCD479DE}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{224E8C77-3894-45C5-8202-100EE84753A5}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{428520FD-824C-4B96-8B76-439933F1F890}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{F61CBD63-9FB9-41C7-A82E-7B1B2108A9B8}] => (Allow) E:\Steam1\steamapps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe FirewallRules: [{3F1839FE-F5E8-494C-8A12-D272F44AA190}] => (Allow) E:\Steam1\steamapps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe FirewallRules: [{23DF8A44-7956-4D30-8B77-C2227CEDA112}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{6DF09575-3F95-4D73-A7E5-A686C6CF76BF}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{0623F1BF-ED62-4902-A87C-F3E350E3B31F}] => (Allow) E:\Steam1\steamapps\common\dont_starve\bin\dontstarve_steam.exe FirewallRules: [{D37A735A-5F53-44D7-AFCF-3AC422B370E1}] => (Allow) E:\Steam1\steamapps\common\dont_starve\bin\dontstarve_steam.exe FirewallRules: [{44E676FA-A664-4682-857B-9DE9E6BF6283}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{EABFE970-542A-4CFD-87FA-F5F3E4E9AD44}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{A02FBE7C-2119-417F-ACED-87D0B71170FE}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{A407C0C8-0B26-44B3-B30E-63C59C011A68}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{5671772C-7C70-4FF9-A879-387074BD08B8}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{2439FFB8-D02B-4119-9828-C9A6EAB51969}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{CD3CE20D-FC3C-40F4-8209-B742AA80C67B}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{A7D9D7C0-A60F-4070-9AF5-5D8783225392}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{DA91F913-DBF5-4D0B-85DE-81A63AA77E7C}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{60F5D13D-83B2-4BF2-A15E-74C340EAA952}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{22A12E8C-B300-4DBD-B014-CD2A5912EE18}] => (Allow) E:\Steam1\steamapps\common\Infested Planet\InfestedPlanet.exe FirewallRules: [{25DB2884-7DB5-4E1F-817C-E5250E828B84}] => (Allow) E:\Steam1\steamapps\common\Infested Planet\InfestedPlanet.exe FirewallRules: [{DB67EB1F-6079-49DF-8D8D-E986D932E7B6}] => (Allow) E:\Steam1\steamapps\common\Human Fall Flat\Human.exe FirewallRules: [{48F936F1-0047-4824-AA90-817092692419}] => (Allow) E:\Steam1\steamapps\common\Human Fall Flat\Human.exe FirewallRules: [{D2148A42-1DCB-41A9-AD49-F8006BC21702}] => (Allow) E:\Steam1\steamapps\common\Samorost 3\Samorost3.exe FirewallRules: [{B14565E2-B034-4B5E-A0D0-F53B18F1BA7C}] => (Allow) E:\Steam1\steamapps\common\Samorost 3\Samorost3.exe FirewallRules: [{810E9283-C404-4D8C-A456-6B9CA52D8C1E}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{11F4A5EB-7737-4048-B44D-B7991B18C85C}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{8765CE16-52AA-4463-B87A-50AC6FC5D782}] => (Allow) E:\Steam1\steamapps\common\HeroSiege\bin\Hero_Siege.exe FirewallRules: [{B38E2094-91BD-4ABD-A911-053FEA3B85E2}] => (Allow) E:\Steam1\steamapps\common\HeroSiege\bin\Hero_Siege.exe FirewallRules: [{8C614E6E-CB1F-4343-9422-08A5F44B60A5}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{99496517-FA97-46E0-BD81-AFB10DA34DB3}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{54935059-5633-4C3E-BF1B-504E171CE272}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{E3674AB3-70A2-4667-9F5B-0B9282015A55}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{DD09BD67-160D-4A82-BC45-A940A52362FD}] => (Allow) E:\Steam1\steamapps\common\ShadowOfMordor\x64\ShadowOfMordor.exe FirewallRules: [{BCABFED2-1B8D-49F3-9AE4-4F350FBBBE3D}] => (Allow) E:\Steam1\steamapps\common\ShadowOfMordor\x64\ShadowOfMordor.exe FirewallRules: [{4EBC4167-5B97-4716-A1A5-EEE098CDCC30}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{29241742-1411-4BA3-9073-216DB409D8CF}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{415FA918-DC7E-4AE9-9C97-42334B8B3845}] => (Allow) E:\Steam1\steamapps\common\HeroSiege\bin\Hero_Siege.exe FirewallRules: [{351DB617-BC3A-4C04-92B1-6F487345C962}] => (Allow) E:\Steam1\steamapps\common\HeroSiege\bin\Hero_Siege.exe FirewallRules: [{F849F880-3DF3-4579-A086-F7628A31B1BB}] => (Allow) E:\Steam1\steamapps\common\Prison Architect\Prison Architect64.exe FirewallRules: [{D95F9729-5AD6-4010-B92E-D8860681EE1E}] => (Allow) E:\Steam1\steamapps\common\Prison Architect\Prison Architect64.exe FirewallRules: [{905EEABB-630B-4939-8CC2-1DF527116FD5}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{ED9756E1-44C2-430D-B59A-CBE5F33D1BBA}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{F26FB7F7-94EB-4F21-94A1-DD1251FF7046}] => (Allow) E:\Steam1\steamapps\common\Suzy\Proteus.exe FirewallRules: [{4D15DB10-103B-4834-B59D-189A1E5B7449}] => (Allow) E:\Steam1\steamapps\common\Suzy\Proteus.exe FirewallRules: [{12FE2504-5235-4F78-8453-6280CD0EDF6A}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{3003C84F-9E57-4763-8C29-9EB818603EBC}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{FFD45BFD-B596-4A2F-BF11-778474EF2F56}] => (Allow) E:\Steam1\steamapps\common\Company of Heroes Relaunch\RelicCOH.exe FirewallRules: [{65AC598F-CE97-4F94-A84F-84A70F6A1E19}] => (Allow) E:\Steam1\steamapps\common\Company of Heroes Relaunch\RelicCOH.exe FirewallRules: [{5D37A4CC-6BBC-4C7F-836B-89DCDA864323}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{E63CBB0A-CCD0-4ED0-9BCA-F7E7CD49A79B}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{EE903A62-6B1D-4F94-953A-0DAADEFA0786}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{5F4C0272-7718-472D-B9E6-FC0E548A17BF}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{DA5A7852-DBC8-484A-9AE2-12CBAFA78F40}] => (Allow) E:\Steam1\steamapps\common\Age2HD\Launcher.exe FirewallRules: [{E741F2A1-A95C-4690-B6F9-C33DAC27D589}] => (Allow) E:\Steam1\steamapps\common\Age2HD\Launcher.exe FirewallRules: [{A486E008-9FF4-4500-B022-E91B7C421AC5}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{D651B0C7-C7BB-47EF-B27D-7DE1F47DF134}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{11D1DC79-65C1-4803-9DA5-E3A3754AFD7A}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{37169F3E-E484-4AEF-8C96-A5AF25B4FF3E}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{FDCC00DA-1E9E-4D16-ACBE-7C6D7A2FBB40}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{532B5DB6-3B28-4E74-84E8-9A7D1CCD6894}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{D086AD95-E5B9-472A-B11F-4560644E097E}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{6604AED9-AFBD-4135-ADFA-AAB247A09146}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{A8F0B03F-6571-4075-AE24-4E58CD3E04C9}] => (Allow) E:\Steam1\steamapps\common\Dark Souls II Scholar of the First Sin\Game\DarkSoulsII.exe FirewallRules: [{E317BD67-0DC1-4878-BF6C-BC082901B35A}] => (Allow) E:\Steam1\steamapps\common\Dark Souls II Scholar of the First Sin\Game\DarkSoulsII.exe FirewallRules: [{570D9B7E-786F-433A-AFDB-3A3FCE207324}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{13D0202C-08AF-4732-A216-CB55D6BDB3A6}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{0A0E2EB1-540A-4CDD-A66B-BDD7C6091D39}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{4DD3E2ED-136A-486A-A37A-8966F86818FD}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{8E4E49B3-40B7-4598-A56F-60AA70352852}] => (Allow) E:\Steam1\steamapps\common\Verdun\WW1 Game Series.exe FirewallRules: [{8C316C1B-29FB-46FE-AA48-58A7DC3974DA}] => (Allow) E:\Steam1\steamapps\common\Verdun\WW1 Game Series.exe FirewallRules: [{5E97F4F5-1E61-4607-8B5D-61BB8F484B6E}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{C16518E8-4E2D-4B6F-B649-C0C06CE96B88}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{E324959B-1D7B-421C-B5B2-86E031193F2E}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{8936D527-A97D-401F-AA62-552F34733F96}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{39532EA8-627E-4FE6-A19A-67439DD6A7C4}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{F0161FAB-59D8-4261-B8B1-9EDF17E488AF}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{645C0BAC-8B8E-44D8-AA5C-E4913CC746C9}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{35147ED8-203D-4B6D-A484-ACF24F242E4B}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{5F317CFD-7A2A-45A7-B060-139BF4BF9678}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{E78F032D-B2FF-480A-80E7-B098D1EC4875}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{9F0AE132-DD9E-4263-992B-B28352C28971}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{892BDE11-701F-43E6-A422-ED25671927ED}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{19D7E268-0FD1-45A5-A2A4-41BC20EDF9BC}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{8EBCF1CE-3275-4209-AD5C-1FB4F7B24415}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{D38F91A3-F239-4AE8-9346-88D1402B7570}] => (Allow) E:\Steam1\steamapps\common\dont_starve\bin\dontstarve_steam.exe FirewallRules: [{56C54455-6DE7-45ED-B1E1-B6E58FDFCF45}] => (Allow) E:\Steam1\steamapps\common\dont_starve\bin\dontstarve_steam.exe FirewallRules: [{D7196074-8CD9-4562-9892-8A596AD67A9B}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{B810E5CA-8CA0-409D-9B38-2E9CEB82C37D}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{4EB1AC7F-EB19-4B29-AEAE-914F1B4BB14B}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{12627C4E-7145-4D74-8950-1AC4C11F43CC}] => (Allow) E:\Steam1\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe ==================== Wiederherstellungspunkte ========================= 23-04-2018 13:00:56 Geplanter Prüfpunkt 02-05-2018 14:17:26 Geplanter Prüfpunkt 09-05-2018 15:20:24 Geplanter Prüfpunkt 16-05-2018 21:53:36 Geplanter Prüfpunkt 24-05-2018 15:14:49 Geplanter Prüfpunkt ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Teredo Tunneling Pseudo-Interface Description: Microsoft-Teredo-Tunneling-Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Name: USB (Universal Serial Bus)-Controller Description: USB (Universal Serial Bus)-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (05/30/2018 09:44:30 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist. Error: (05/30/2018 09:42:54 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: rundll32.exe, Version: 6.1.7601.23755, Zeitstempel: 0x58dd1d09 Name des fehlerhaften Moduls: msvcrt.dll, Version: 7.0.7601.17744, Zeitstempel: 0x4eeaf722 Ausnahmecode: 0x40000015 Fehleroffset: 0x0005620a ID des fehlerhaften Prozesses: 0xcb0 Startzeit der fehlerhaften Anwendung: 0x01d3f84e6233fd62 Pfad der fehlerhaften Anwendung: C:\Windows\SysWOW64\rundll32.exe Pfad des fehlerhaften Moduls: C:\Windows\syswow64\msvcrt.dll Berichtskennung: a4a9347f-6441-11e8-bc42-1cb72caf161f Error: (05/30/2018 08:57:41 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist. Error: (05/30/2018 09:30:52 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist. Error: (05/30/2018 09:10:12 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist. Error: (05/30/2018 09:07:33 AM) (Source: Wininit) (EventID: 3005) (User: ) Description: Der Windows-Startprozess konnte Systemprozesse nicht beenden. Error: (05/30/2018 09:07:32 AM) (Source: Winlogon) (EventID: 4004) (User: ) Description: Fehler beim Beenden der Prozesse des aktuell angemeldeten Benutzers durch den Windows-Anmeldeprozess. Error: (05/30/2018 09:03:47 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist. Systemfehler: ============= Error: (05/30/2018 09:43:10 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (05/30/2018 09:43:10 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 Error: (05/30/2018 09:43:10 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (05/30/2018 09:43:10 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 Error: (05/30/2018 09:43:10 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: Die Peer Name Resolution-Protokoll-Cloud wurde nicht gestartet. Fehler bei Standardidentität. Fehlercode: 0x80630801. Error: (05/30/2018 09:43:10 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: Die Peer Name Resolution-Protokoll-Cloud wurde nicht gestartet. Fehler bei Standardidentität. Fehlercode: 0x80630801. Error: (05/30/2018 09:42:59 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (05/30/2018 09:42:59 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 CodeIntegrity: =================================== Date: 2017-01-22 12:52:08.613 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-01-22 12:52:08.613 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-01-22 12:52:08.613 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-01-22 12:52:08.613 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-01-22 12:52:05.727 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-01-22 12:52:05.727 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 17.0.0\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-01-22 12:52:05.727 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2017-01-22 12:52:05.727 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i5-4460 CPU @ 3.20GHz Prozentuale Nutzung des RAM: 52% Installierter physikalischer RAM: 8133.36 MB Verfügbarer physikalischer RAM: 3841.61 MB Summe virtueller Speicher: 16264.89 MB Verfügbarer virtueller Speicher: 11508.04 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:232.79 GB) (Free:126.34 GB) NTFS Drive e: (Volume) (Fixed) (Total:931.51 GB) (Free:17.28 GB) NTFS Drive f: (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)] ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 232.9 GB) (Disk ID: 9A9A176A) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=232.8 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 48C51CE3) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) |
31.05.2018, 06:55 | #3 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | wahrscheinlicher Trojaner nach öffnen zweifelhafter zip. dateiZitat:
__________________ |
Themen zu wahrscheinlicher Trojaner nach öffnen zweifelhafter zip. datei |
angst, aufsetzen, bereinigung, datei, daten, daten sichern, gestern, hänge, kaspersky, neu aufsetzen, neue, neustart, not, scan, schlecht, sichern, system, troja, trojaner, öffnen |