Start:: CloseProcesses: CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] AlternateDataStreams: C:\ProgramData:B31246EAB3F41121 [217] AlternateDataStreams: C:\ProgramData:EEF49EE5D3688B03 [1] AlternateDataStreams: C:\Users\All Users:B31246EAB3F41121 [217] AlternateDataStreams: C:\Users\All Users:EEF49EE5D3688B03 [1] AlternateDataStreams: C:\ProgramData\Application Data:B31246EAB3F41121 [217] AlternateDataStreams: C:\ProgramData\Application Data:EEF49EE5D3688B03 [1] AlternateDataStreams: C:\ProgramData\PACE:FEAE9A79F3A942F9 [217] FirewallRules: [{6DEDBE00-3CA3-4038-82F9-6DDAD2756EEC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Yume Nikki\yumenikki\RPG_RT.exe => No File FirewallRules: [{49D142F6-DEBF-4D20-8CB3-B9013BB1344A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Yume Nikki\yumenikki\RPG_RT.exe => No File FirewallRules: [{3018451D-FDDB-48DE-A209-7C5EF9A65327}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Beneath a Steel Sky\ScummVM\scummvm.exe => No File FirewallRules: [{1485CC67-3DBF-437A-BEAC-34A10A99E3A4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Beneath a Steel Sky\ScummVM\scummvm.exe => No File FirewallRules: [TCP Query User{64B83F9C-539D-47B3-8042-B1B07213DAD3}C:\program files (x86)\steam\steamapps\common\warhammer 40000 gladius - relics of war\binaries\windows-x86_64\gladius.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\warhammer 40000 gladius - relics of war\binaries\windows-x86_64\gladius.exe => No File FirewallRules: [UDP Query User{D243539E-EDA7-4D61-AF28-0D6F1156FD2E}C:\program files (x86)\steam\steamapps\common\warhammer 40000 gladius - relics of war\binaries\windows-x86_64\gladius.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\warhammer 40000 gladius - relics of war\binaries\windows-x86_64\gladius.exe => No File CMD: netsh int ip reset CMD: netsh int ipv6 reset CMD: ipconfig /flushDNS CMD: netsh winsock reset catalog C:\Users\CurrentUserName\AppData\Local\Temp\* C:\Windows\Temp\* C:\Windows\SystemTemp\* EmptyTemp: End::