content copied
content
Start::
SystemRestore: On
CreateRestorePoint:
CloseProcesses:
FF Extension: (Tampermonkey) - C:\Users\GHWolf\AppData\Roaming\Mozilla\Firefox\Profiles\oxnvaxq1.default-release\Extensions\[email protected] [2025-03-30]
FF Extension: (SandVPN) - C:\Users\GHWolf\AppData\Roaming\Mozilla\Firefox\Profiles\oxnvaxq1.default-release\Extensions\[email protected] [2025-07-08]
CHR Extension: (Volume Booster) - C:\Users\GHWolf\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejkiikneibegknkgimmihdpcbcedgmpo [2025-08-09]
HKU\S-1-5-21-3161155979-2815143452-708233098-1001\...\Run: [PlariumPlay] => C:\Users\GHWolf\AppData\Local\PlariumPlay\PlariumPlay --args -run-with-os (No File)
HKU\S-1-5-21-3161155979-2815143452-708233098-1001\...\Run: [GalaxyClient] => [X]
HKU\S-1-5-21-3161155979-2815143452-708233098-1001\...\Run: [Battle.net] => "E:\Battle.net\Battle.net.exe" --autostarted (No File)
HKU\S-1-5-21-3161155979-2815143452-708233098-1001\...\Run: [AB Download Manager] => "C:\Users\GHWolf\AppData\Local\ABDownloadManager\ABDownloadManager.exe" --background (No File)
HKU\S-1-5-21-3161155979-2815143452-708233098-1001\...\Run: [Windscribe] => "C:\Program Files\Windscribe\Windscribe.exe" --autostart (No File)
HKU\S-1-5-21-3161155979-2815143452-708233098-1001\...\Run: [Tuxler] => "C:\Program Files (x86)\tuxlerVPN\tuxlerVPN.exe" --auto-start (No File)
HKU\S-1-5-21-3161155979-2815143452-708233098-1001\...\MountPoints2: G - "G:\Autoplay.exe" -auto
HKU\S-1-5-21-3161155979-2815143452-708233098-1001\...\MountPoints2: {3471a769-9f36-11ed-89e4-4c3488c0ec06} - "E:\windows\AutoRun.exe"
Task: {DFC035D4-E810-45E6-9EB6-2CB8E0854956} - System32\Tasks\AMDInstallUEP => C:\Program Files\AMD\InstallUEP\AMDInstallUEP.exe (No File)
Task: {E5B003C8-6F5D-45F4-9590-13758AE98FBC} - System32\Tasks\Meta\Messenger-WSP-Helper-S-1-5-21-3161155979-2815143452-708233098-1001 => MessengerHelper.exe --lassie (No File)
Task: {0247BD6C-E7BC-40D5-B9A1-C7580CBC2F51} - System32\Tasks\Microsoft\Windows\WindowsUpdate\RUXIM\PLUGScheduler => "%ProgramFiles%\RUXIM\PLUGscheduler.exe" (No File)
Task: {EDE3E4E5-F09B-4310-AF99-618606074E43} - System32\Tasks\RuntimeBrokerService => C:\Users\GHWolf\AppData\Local\Packages\Microsoft.Windows.PeopleExperienceHost_gw1n1c2fhyeqy\AC\Temp\RuntimeBroker.exe -Embedding (No File) <==== ATTENTION
S2 Plarium Play Client Service; "C:\Users\GHWolf\AppData\Local\PlariumPlay\8.2.0-0.0.0\PlariumPlayClientService\PlariumPlayClientService.exe" -displayname "Plarium Play Client Service" -servicename "Plarium Play Client Service" (No File)
S3 ace-game-0; \SystemRoot\System32\drivers\ace-game-0.sys (No File)
S3 atvi-randgrid_msstore; \??\D:\beep\Call of Duty\Content\Randgrid.sys (No File)
U3 HtAntiCheatDriver; \??\C:\Program Files\Neverness To Everness\NTEGlobal\driver\gamedriverX64.sys (No File)
S3 MpKsl2c72916a; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5555CF75-3D7A-4D28-A880-1DD6A1D725B1}\MpKslDrv.sys (No File)
2025-01-08 11:43 - 2025-01-08 11:43 - 000000048 ____R () C:\Users\GHWolf\AppData\Local\901F5A7B50D4DC838D6C99678CA763FF
2025-05-20 19:13 - 2025-05-20 19:13 - 000005279 _____ () C:\Users\GHWolf\AppData\Local\91128626013
2025-01-20 19:48 - 2025-01-20 19:48 - 000004926 _____ () C:\Users\GHWolf\AppData\Local\9190607984
2024-11-04 19:20 - 2024-11-04 19:20 - 000004926 _____ () C:\Users\GHWolf\AppData\Local\91998984475
2025-05-23 10:31 - 2025-05-23 10:31 - 000005279 _____ () C:\Users\GHWolf\AppData\Local\93308978272
2024-12-13 02:57 - 2024-12-13 02:57 - 000000048 ____R () C:\Users\GHWolf\AppData\Local\E6532C9CA32DFAE6AE7506DAEF75E821
CustomCLSID: HKU\S-1-5-21-3161155979-2815143452-708233098-1001_Classes\CLSID\{318cc681-4136-d2bd-6204-14d67a05b724}\localserver32 -> "C:\Program Files\Proton\VPN\v3.2.1\ProtonVPN.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-3161155979-2815143452-708233098-1001_Classes\CLSID\{a04f95c0-6183-7419-2316-954e331d0cbc}\localserver32 -> "C:\Program Files\Proton\VPN\v3.2.2\ProtonVPN.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-3161155979-2815143452-708233098-1001_Classes\CLSID\{a126d52d-7bdc-c01a-fb69-c574657b2498}\localserver32 -> "C:\Program Files\Proton\VPN\v3.1.1\ProtonVPN.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-3161155979-2815143452-708233098-1001_Classes\CLSID\{d936918b-9c4b-555e-074a-c79314be04e1}\localserver32 -> "C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-3161155979-2815143452-708233098-1001_Classes\CLSID\{ef332f57-6128-39af-c6ef-8a8c89b3c2b7}\localserver32 -> "C:\Program Files\Proton\VPN\v3.1.0\ProtonVPN.exe" -ToastActivated => No File
AlternateDataStreams: C:\WINDOWS\tracing:? [16]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [9096]
FirewallRules: [{17CFA478-79C8-410E-897F-B5FB2BB5E24C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ratten Reich\RR.exe => No File
FirewallRules: [{AEF07487-60EF-4647-BA87-FDF94695B154}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ratten Reich\RR.exe => No File
FirewallRules: [TCP Query User{1455148F-5E17-4BD9-A659-17CC7EC2A072}C:\xboxgames\call of duty\content\cod.exe] => (Allow) C:\xboxgames\call of duty\content\cod.exe => No File
FirewallRules: [UDP Query User{761E0ABD-A212-4E4E-BCB3-BCD9A8F23C19}C:\xboxgames\call of duty\content\cod.exe] => (Allow) C:\xboxgames\call of duty\content\cod.exe => No File
FirewallRules: [{83D03B03-38ED-4B94-A0FC-782D652C68BE}] => (Block) C:\xboxgames\call of duty\content\cod.exe => No File
FirewallRules: [{635008C3-7A23-4FE5-B89B-FA8A764303F5}] => (Block) C:\xboxgames\call of duty\content\cod.exe => No File
FirewallRules: [TCP Query User{C4546C0B-F57D-4E29-A0D1-3BFD44A58510}C:\program files\oculus\support\oculus-runtime\ovrserver_x64.exe] => (Allow) C:\program files\oculus\support\oculus-runtime\ovrserver_x64.exe => No File
FirewallRules: [UDP Query User{55F3F048-7FD4-40AD-BE6F-3F20753E5C95}C:\program files\oculus\support\oculus-runtime\ovrserver_x64.exe] => (Allow) C:\program files\oculus\support\oculus-runtime\ovrserver_x64.exe => No File
FirewallRules: [{6E330D4D-DD07-4A24-88B1-BC98B8F21407}] => (Allow) C:\Program Files\TxGameAssistant\AppMarket\DL\syzs_dl_svr.exe => No File
FirewallRules: [{48688AA9-7389-4932-8CEA-1164125681BA}] => (Allow) C:\Program Files\TxGameAssistant\AppMarket\DL\syzs_dl_svr.exe => No File
FirewallRules: [{92ED2D97-6339-4AC5-99EE-FAD66887FD33}] => (Allow) C:\Program Files\TxGameAssistant\AppMarket\DL\syzs_dl_svr.exe => No File
FirewallRules: [{062D14D8-8C8D-447C-BD6C-EE319B544FF6}] => (Allow) C:\Program Files\TxGameAssistant\AppMarket\DL\syzs_dl_svr.exe => No File
FirewallRules: [{CF4CD027-9451-44DC-A4A1-CC017544D06E}] => (Allow) C:\Program Files\TxGameAssistant\AppMarket\DL\syzs_dl_svr.exe => No File
FirewallRules: [{788274FC-A015-4343-B143-AFAE024083F6}] => (Allow) C:\Program Files\TxGameAssistant\AppMarket\DL\syzs_dl_svr.exe => No File
FirewallRules: [{9BDE3E26-DCF3-47ED-974D-882852758F35}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{7D1BCD68-B11D-493B-B3D4-EAEB83E4FE65}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{D4958877-E7FB-4328-B838-336DA7A848E1}] => (Block) C:\program files\oculus\support\oculus-runtime\ovrserver_x64.exe => No File
FirewallRules: [{578C25DE-9B0D-4C9A-8F72-8FAE84856294}] => (Block) C:\program files\oculus\support\oculus-runtime\ovrserver_x64.exe => No File
FirewallRules: [TCP Query User{3178FCDA-B09B-469E-8EA1-014335C52BEE}C:\program files (x86)\steam\steamapps\common\dawn of war soulstorm\soulstorm.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dawn of war soulstorm\soulstorm.exe => No File
FirewallRules: [UDP Query User{0812C1E8-0491-4212-8469-B946EECC97B9}C:\program files (x86)\steam\steamapps\common\dawn of war soulstorm\soulstorm.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dawn of war soulstorm\soulstorm.exe => No File
FirewallRules: [{6C6D7F0A-9872-4888-AF72-3F56B76B8679}] => (Block) C:\program files (x86)\steam\steamapps\common\dawn of war soulstorm\soulstorm.exe => No File
FirewallRules: [{591EDCED-F609-4E60-A6B5-92B927AA9654}] => (Block) C:\program files (x86)\steam\steamapps\common\dawn of war soulstorm\soulstorm.exe => No File
FirewallRules: [TCP Query User{3B971429-FA7B-49AC-B2B1-15B7EA7ED899}D:\steamlibrary\steamapps\common\steamvr\bin\win64\vrserver.exe] => (Allow) D:\steamlibrary\steamapps\common\steamvr\bin\win64\vrserver.exe => No File
FirewallRules: [UDP Query User{EE541A26-E312-4AC5-8C0D-58BFD76832E4}D:\steamlibrary\steamapps\common\steamvr\bin\win64\vrserver.exe] => (Allow) D:\steamlibrary\steamapps\common\steamvr\bin\win64\vrserver.exe => No File
FirewallRules: [{FA2A7C49-DDC7-4208-B14A-907820D4C007}] => (Block) D:\steamlibrary\steamapps\common\steamvr\bin\win64\vrserver.exe => No File
FirewallRules: [{20256091-0663-42D2-8E79-D5189E60D264}] => (Block) D:\steamlibrary\steamapps\common\steamvr\bin\win64\vrserver.exe => No File
FirewallRules: [TCP Query User{515759E0-B15E-431C-BC6C-4C9C3362AA92}D:\steamlibrary\steamapps\common\vrchat\vrchat.exe] => (Allow) D:\steamlibrary\steamapps\common\vrchat\vrchat.exe => No File
FirewallRules: [UDP Query User{C06C23F5-9BFE-4EBE-B89F-27C0C3ED7B37}D:\steamlibrary\steamapps\common\vrchat\vrchat.exe] => (Allow) D:\steamlibrary\steamapps\common\vrchat\vrchat.exe => No File
FirewallRules: [TCP Query User{EC71C91F-376B-426B-A8DB-B3CFF46C1AC3}C:\users\ghwolf\appdata\local\wemod\app-9.9.1\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-9.9.1\wemod.exe => No File
FirewallRules: [UDP Query User{F66C390C-10ED-45F8-AC3D-90B255E8E271}C:\users\ghwolf\appdata\local\wemod\app-9.9.1\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-9.9.1\wemod.exe => No File
FirewallRules: [{29CFFE1F-375D-4E45-84FC-3108CE4E339F}] => (Block) C:\users\ghwolf\appdata\local\wemod\app-9.9.1\wemod.exe => No File
FirewallRules: [{A9B33E54-0353-4D85-BDA1-80628EF7D2D4}] => (Block) C:\users\ghwolf\appdata\local\wemod\app-9.9.1\wemod.exe => No File
FirewallRules: [TCP Query User{0684813C-3611-47FC-9316-0B92FE744CB1}C:\program files (x86)\steam\steamapps\common\projectzomboid\projectzomboid64.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\projectzomboid\projectzomboid64.exe => No File
FirewallRules: [UDP Query User{24AEEC7F-26D6-4F1B-811A-BAB3CBC8A8C8}C:\program files (x86)\steam\steamapps\common\projectzomboid\projectzomboid64.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\projectzomboid\projectzomboid64.exe => No File
FirewallRules: [{1FFDBF89-B97C-4DFC-AE89-ADE633568472}] => (Block) C:\program files (x86)\steam\steamapps\common\projectzomboid\projectzomboid64.exe => No File
FirewallRules: [{EBA24F3E-7DE1-4CF8-885F-B1CB2E9E7E15}] => (Block) C:\program files (x86)\steam\steamapps\common\projectzomboid\projectzomboid64.exe => No File
FirewallRules: [TCP Query User{C15BB20C-B6C1-400E-85C7-ECD22CFAEE4F}C:\program files (x86)\steam\steamapps\common\escapethebackrooms\escapethebackrooms\binaries\win64\backrooms-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\escapethebackrooms\escapethebackrooms\binaries\win64\backrooms-win64-shipping.exe => No File
FirewallRules: [UDP Query User{FCC79802-0E87-4F56-8224-87F30EB86828}C:\program files (x86)\steam\steamapps\common\escapethebackrooms\escapethebackrooms\binaries\win64\backrooms-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\escapethebackrooms\escapethebackrooms\binaries\win64\backrooms-win64-shipping.exe => No File
FirewallRules: [{F8597021-0EBC-4B2B-B140-31E2C65D33C0}] => (Block) C:\program files (x86)\steam\steamapps\common\escapethebackrooms\escapethebackrooms\binaries\win64\backrooms-win64-shipping.exe => No File
FirewallRules: [{14EE4423-1FDF-457A-B92C-0EEF7DAD687E}] => (Block) C:\program files (x86)\steam\steamapps\common\escapethebackrooms\escapethebackrooms\binaries\win64\backrooms-win64-shipping.exe => No File
FirewallRules: [TCP Query User{8F45143C-2282-4C5B-B736-6CC5C7C06E53}C:\program files (x86)\gog galaxy\games\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Allow) C:\program files (x86)\gog galaxy\games\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File
FirewallRules: [UDP Query User{1E31E5D8-FF20-4DB9-915D-5992433F91E7}C:\program files (x86)\gog galaxy\games\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Allow) C:\program files (x86)\gog galaxy\games\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File
FirewallRules: [{0CCB826F-E1EF-40B7-BDE4-08EDEF25A837}] => (Block) C:\program files (x86)\gog galaxy\games\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File
FirewallRules: [{5FC19B31-BA1D-4EF7-885F-4676A3FD1436}] => (Block) C:\program files (x86)\gog galaxy\games\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File
FirewallRules: [TCP Query User{DD770651-04B6-4CB0-B0C2-72CFCD34A8C4}D:\satisfactoryearlyaccess\engine\binaries\win64\factorygame-win64-shipping.exe] => (Allow) D:\satisfactoryearlyaccess\engine\binaries\win64\factorygame-win64-shipping.exe => No File
FirewallRules: [UDP Query User{7F9F5908-E9A6-488A-82AE-3645A8D67900}D:\satisfactoryearlyaccess\engine\binaries\win64\factorygame-win64-shipping.exe] => (Allow) D:\satisfactoryearlyaccess\engine\binaries\win64\factorygame-win64-shipping.exe => No File
FirewallRules: [{A860EBEE-DD76-46AF-992E-20BFDE1E1D4C}] => (Block) D:\satisfactoryearlyaccess\engine\binaries\win64\factorygame-win64-shipping.exe => No File
FirewallRules: [{4A32E1A3-1DDE-4EE2-9C43-0E992A5ED07E}] => (Block) D:\satisfactoryearlyaccess\engine\binaries\win64\factorygame-win64-shipping.exe => No File
FirewallRules: [TCP Query User{9C8E13C4-5BE4-4850-9C56-350A8EA9063B}C:\xboxgames\call of duty_1\content\cod.exe] => (Allow) C:\xboxgames\call of duty_1\content\cod.exe => No File
FirewallRules: [UDP Query User{C04A44E6-AD09-4533-AC65-28255213E86F}C:\xboxgames\call of duty_1\content\cod.exe] => (Allow) C:\xboxgames\call of duty_1\content\cod.exe => No File
FirewallRules: [{B21E8592-4224-41EC-BCA9-BA99525D57B1}] => (Block) C:\xboxgames\call of duty_1\content\cod.exe => No File
FirewallRules: [{03941DF4-B67A-488D-A79E-3AAD1F870E39}] => (Block) C:\xboxgames\call of duty_1\content\cod.exe => No File
FirewallRules: [TCP Query User{15F55CC0-6327-4395-8C55-698A2038884C}C:\xboxgames\call of duty_1\content\mp24\mp24-cod.exe] => (Allow) C:\xboxgames\call of duty_1\content\mp24\mp24-cod.exe => No File
FirewallRules: [UDP Query User{08A9BDBE-8856-439E-ADDF-7CD470CE87F2}C:\xboxgames\call of duty_1\content\mp24\mp24-cod.exe] => (Allow) C:\xboxgames\call of duty_1\content\mp24\mp24-cod.exe => No File
FirewallRules: [{4572F4C5-8C54-4797-83CD-5A1D32A9FF2A}] => (Block) C:\xboxgames\call of duty_1\content\mp24\mp24-cod.exe => No File
FirewallRules: [{63F9C110-1573-4EEB-84AE-1D768A93D1C2}] => (Block) C:\xboxgames\call of duty_1\content\mp24\mp24-cod.exe => No File
FirewallRules: [TCP Query User{4B92A0DC-CEBB-4352-91B7-43DCD153DCD3}D:\xbox\valheim\content\valheim.exe] => (Allow) D:\xbox\valheim\content\valheim.exe => No File
FirewallRules: [UDP Query User{8B5F0615-CB9A-4BA1-BCD0-229FBA4D2EE1}D:\xbox\valheim\content\valheim.exe] => (Allow) D:\xbox\valheim\content\valheim.exe => No File
FirewallRules: [{3BB72B29-49A4-461B-A3D1-37CFF07346F2}] => (Block) D:\xbox\valheim\content\valheim.exe => No File
FirewallRules: [{6888DD0D-D761-49A8-896B-42398FFA9E60}] => (Block) D:\xbox\valheim\content\valheim.exe => No File
FirewallRules: [TCP Query User{18A081C1-3AF8-4D72-A37A-8CAE65734441}E:\steamlibrary\steamapps\common\7 days to die\7daystodie.exe] => (Allow) E:\steamlibrary\steamapps\common\7 days to die\7daystodie.exe => No File
FirewallRules: [UDP Query User{31D0B96E-3FEB-4F47-992F-19E919D4716A}E:\steamlibrary\steamapps\common\7 days to die\7daystodie.exe] => (Allow) E:\steamlibrary\steamapps\common\7 days to die\7daystodie.exe => No File
FirewallRules: [TCP Query User{150AE0F6-B3BE-4D87-9445-D4846B7F6F87}E:\grand theft auto v\gta5.exe] => (Allow) E:\grand theft auto v\gta5.exe => No File
FirewallRules: [UDP Query User{BFE5B4B7-AA26-452D-BB63-62B38DEB8EBB}E:\grand theft auto v\gta5.exe] => (Allow) E:\grand theft auto v\gta5.exe => No File
FirewallRules: [{5762C82E-5469-4BB8-93E9-EE5D91EB1D86}] => (Block) E:\grand theft auto v\gta5.exe => No File
FirewallRules: [{05029913-BCE3-4725-A2F7-A829EA905255}] => (Block) E:\grand theft auto v\gta5.exe => No File
FirewallRules: [{806FF9B8-711C-4E0A-9ACE-B31EC0416EEE}] => (Allow) D:\SteamLibrary\steamapps\common\House Builder\HouseBuilder.exe => No File
FirewallRules: [{C05FF919-1C7A-41FD-847F-13170DF6F97F}] => (Allow) D:\SteamLibrary\steamapps\common\House Builder\HouseBuilder.exe => No File
FirewallRules: [TCP Query User{440C95E6-C290-4D2F-B124-5E9A40601921}C:\users\ghwolf\appdata\local\wemod\app-9.10.2\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-9.10.2\wemod.exe => No File
FirewallRules: [UDP Query User{5E8198AC-8F52-4EB9-86D6-A11CF1104410}C:\users\ghwolf\appdata\local\wemod\app-9.10.2\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-9.10.2\wemod.exe => No File
FirewallRules: [{BC0DC408-CEE9-4C4E-8D1F-23D635D68FE1}] => (Block) C:\users\ghwolf\appdata\local\wemod\app-9.10.2\wemod.exe => No File
FirewallRules: [{ED17E367-F259-4DB3-89E2-A4062705EFC9}] => (Block) C:\users\ghwolf\appdata\local\wemod\app-9.10.2\wemod.exe => No File
FirewallRules: [TCP Query User{0AAC5566-7BF8-4057-B264-F0160E53E29D}C:\xboxgames\ark- survival ascended\content\shootergame\binaries\wingdk\arkascended.exe] => (Allow) C:\xboxgames\ark- survival ascended\content\shootergame\binaries\wingdk\arkascended.exe => No File
FirewallRules: [UDP Query User{106AC91F-3246-4330-A95F-AF68779F017F}C:\xboxgames\ark- survival ascended\content\shootergame\binaries\wingdk\arkascended.exe] => (Allow) C:\xboxgames\ark- survival ascended\content\shootergame\binaries\wingdk\arkascended.exe => No File
FirewallRules: [{D5F417BB-AF2A-4705-9928-FFFC01FA1BD9}] => (Block) C:\xboxgames\ark- survival ascended\content\shootergame\binaries\wingdk\arkascended.exe => No File
FirewallRules: [{8E0ED189-46FF-479D-8E34-F563A4034279}] => (Block) C:\xboxgames\ark- survival ascended\content\shootergame\binaries\wingdk\arkascended.exe => No File
FirewallRules: [TCP Query User{46EB850F-8BF6-4136-B5A3-1DDF3AAA855E}C:\users\ghwolf\appdata\local\wemod\app-9.10.5\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-9.10.5\wemod.exe => No File
FirewallRules: [UDP Query User{143423F5-2745-4CD2-893E-1B66FEB56B8A}C:\users\ghwolf\appdata\local\wemod\app-9.10.5\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-9.10.5\wemod.exe => No File
FirewallRules: [{B4F36653-E44E-449E-8583-586091EF6EA0}] => (Block) C:\users\ghwolf\appdata\local\wemod\app-9.10.5\wemod.exe => No File
FirewallRules: [{CF603115-E5AC-4E25-8051-CB894113BB4B}] => (Block) C:\users\ghwolf\appdata\local\wemod\app-9.10.5\wemod.exe => No File
FirewallRules: [TCP Query User{82EDABE1-EA5A-4141-8BA7-07D214E43974}E:\xbox\snowrunner - windows10\content\snowrunner.exe] => (Allow) E:\xbox\snowrunner - windows10\content\snowrunner.exe => No File
FirewallRules: [UDP Query User{849A0EC2-1CB8-44A9-9F34-3D4B674B979B}E:\xbox\snowrunner - windows10\content\snowrunner.exe] => (Allow) E:\xbox\snowrunner - windows10\content\snowrunner.exe => No File
FirewallRules: [{0546FBF3-CAA1-4878-B6ED-287ACB7DCBBE}] => (Block) E:\xbox\snowrunner - windows10\content\snowrunner.exe => No File
FirewallRules: [{AAAD51FE-EC99-4741-B161-1DDDD2B79250}] => (Block) E:\xbox\snowrunner - windows10\content\snowrunner.exe => No File
FirewallRules: [TCP Query User{93DC7D6B-19F0-43AD-863C-B7B4745B1065}C:\users\ghwolf\appdata\local\wemod\app-9.10.6\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-9.10.6\wemod.exe => No File
FirewallRules: [UDP Query User{0DF561AC-746E-4BFC-B28D-7CD25AADEF84}C:\users\ghwolf\appdata\local\wemod\app-9.10.6\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-9.10.6\wemod.exe => No File
FirewallRules: [{A4B4B99B-AE5E-4710-9ADD-01512DE91CD3}] => (Allow) D:\SteamLibrary\steamapps\common\The Finals\Discovery.exe => No File
FirewallRules: [{B0550B7B-414B-4D9D-819F-0793AFFAA0E8}] => (Allow) D:\SteamLibrary\steamapps\common\The Finals\Discovery.exe => No File
FirewallRules: [TCP Query User{D4E0FE7F-AC5E-4F36-888E-FC001C4A3923}C:\program files (x86)\steam\steamapps\common\the finals\discovery\binaries\win64\discovery.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\the finals\discovery\binaries\win64\discovery.exe => No File
FirewallRules: [UDP Query User{5B0CD290-0E4B-4349-B976-9EDBFD219B41}C:\program files (x86)\steam\steamapps\common\the finals\discovery\binaries\win64\discovery.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\the finals\discovery\binaries\win64\discovery.exe => No File
FirewallRules: [TCP Query User{48D235EA-96D2-45D9-A56E-586819712A4E}D:\beep\call of duty\content\cod.exe] => (Allow) D:\beep\call of duty\content\cod.exe => No File
FirewallRules: [UDP Query User{E212BDA7-B322-45B9-9B51-44D9799B6718}D:\beep\call of duty\content\cod.exe] => (Allow) D:\beep\call of duty\content\cod.exe => No File
FirewallRules: [TCP Query User{4B961333-BFC6-4612-B9A9-152CFD661CF2}C:\7d2d\alpha20\undead_legacy\undead_legacy_experimental\7daystodie.exe] => (Allow) C:\7d2d\alpha20\undead_legacy\undead_legacy_experimental\7daystodie.exe => No File
FirewallRules: [UDP Query User{908DAF30-E7AA-4E3F-A77D-60BBEDB91CB6}C:\7d2d\alpha20\undead_legacy\undead_legacy_experimental\7daystodie.exe] => (Allow) C:\7d2d\alpha20\undead_legacy\undead_legacy_experimental\7daystodie.exe => No File
FirewallRules: [TCP Query User{6CCF38AD-38E6-4FAE-A2F1-BC119B4E819D}D:\beep\call of duty\content\sp24\sp24-cod.exe] => (Allow) D:\beep\call of duty\content\sp24\sp24-cod.exe => No File
FirewallRules: [UDP Query User{C018A8CC-051F-4E90-8652-7248E2B88805}D:\beep\call of duty\content\sp24\sp24-cod.exe] => (Allow) D:\beep\call of duty\content\sp24\sp24-cod.exe => No File
FirewallRules: [TCP Query User{97182830-A507-47F4-B55D-487D456E3235}F:\steamlibrary\steamapps\common\garrysmod\hl2.exe] => (Allow) F:\steamlibrary\steamapps\common\garrysmod\hl2.exe => No File
FirewallRules: [UDP Query User{64E7A642-44C5-4A1D-8174-DB9575446478}F:\steamlibrary\steamapps\common\garrysmod\hl2.exe] => (Allow) F:\steamlibrary\steamapps\common\garrysmod\hl2.exe => No File
FirewallRules: [TCP Query User{8D055B51-5A57-4C11-94C4-C89C4D40CDD6}C:\program files\roberts space industries\starcitizen\live\bin64\starcitizen.exe] => (Allow) C:\program files\roberts space industries\starcitizen\live\bin64\starcitizen.exe => No File
FirewallRules: [UDP Query User{A815261E-7390-49BF-A1F0-6D41DFC4CD62}C:\program files\roberts space industries\starcitizen\live\bin64\starcitizen.exe] => (Allow) C:\program files\roberts space industries\starcitizen\live\bin64\starcitizen.exe => No File
FirewallRules: [TCP Query User{35798E85-8608-43D7-8996-C73E8FD65A74}F:\steamlibrary\steamapps\common\vrchat\vrchat.exe] => (Allow) F:\steamlibrary\steamapps\common\vrchat\vrchat.exe => No File
FirewallRules: [UDP Query User{DDD909A4-6959-48EF-939F-04576700CD13}F:\steamlibrary\steamapps\common\vrchat\vrchat.exe] => (Allow) F:\steamlibrary\steamapps\common\vrchat\vrchat.exe => No File
FirewallRules: [TCP Query User{9700C5E6-2C7E-42F5-9663-235D424EC73F}D:\beep\dead island 2\content\deadisland\binaries\wingdk\deadisland-wingdk-shipping.exe] => (Allow) D:\beep\dead island 2\content\deadisland\binaries\wingdk\deadisland-wingdk-shipping.exe => No File
FirewallRules: [UDP Query User{2796F88E-AFE3-43AE-A93A-2854CCDA955D}D:\beep\dead island 2\content\deadisland\binaries\wingdk\deadisland-wingdk-shipping.exe] => (Allow) D:\beep\dead island 2\content\deadisland\binaries\wingdk\deadisland-wingdk-shipping.exe => No File
FirewallRules: [TCP Query User{8F7B79C3-5E19-44BD-9EE2-F7E1FEBB0700}C:\users\ghwolf\appdata\local\wemod\app-9.12.0\wemod.exe] => (Block) C:\users\ghwolf\appdata\local\wemod\app-9.12.0\wemod.exe => No File
FirewallRules: [UDP Query User{067117B4-6C74-4F19-A8CA-C47459BA6F54}C:\users\ghwolf\appdata\local\wemod\app-9.12.0\wemod.exe] => (Block) C:\users\ghwolf\appdata\local\wemod\app-9.12.0\wemod.exe => No File
FirewallRules: [TCP Query User{EA214AC2-40A2-4D8C-8698-AAB42AF8425F}F:\xbox\s.t.a.l.k.e.r. 2\content\stalker2\binaries\wingdk\stalker2-wingdk-shipping.exe] => (Allow) F:\xbox\s.t.a.l.k.e.r. 2\content\stalker2\binaries\wingdk\stalker2-wingdk-shipping.exe => No File
FirewallRules: [UDP Query User{64E8A479-A8A2-45A8-A68B-7F920AD81B32}F:\xbox\s.t.a.l.k.e.r. 2\content\stalker2\binaries\wingdk\stalker2-wingdk-shipping.exe] => (Allow) F:\xbox\s.t.a.l.k.e.r. 2\content\stalker2\binaries\wingdk\stalker2-wingdk-shipping.exe => No File
FirewallRules: [TCP Query User{43778048-3903-4692-82CF-2A85B2DDC9B0}C:\users\ghwolf\appdata\local\wemod\app-9.14.0\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-9.14.0\wemod.exe => No File
FirewallRules: [UDP Query User{8E9D8DB2-7F1D-4060-BCB8-E2F2E552CF41}C:\users\ghwolf\appdata\local\wemod\app-9.14.0\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-9.14.0\wemod.exe => No File
FirewallRules: [TCP Query User{334C34DE-93C0-4AAF-A78E-F66C3AF00854}F:\steamlibrary\steamapps\common\backrooms_escape_together\bet\binaries\win64\betgame-win64-shipping.exe] => (Allow) F:\steamlibrary\steamapps\common\backrooms_escape_together\bet\binaries\win64\betgame-win64-shipping.exe => No File
FirewallRules: [UDP Query User{4BAA5CE5-9F88-48CC-83D7-1E30271DD5A9}F:\steamlibrary\steamapps\common\backrooms_escape_together\bet\binaries\win64\betgame-win64-shipping.exe] => (Allow) F:\steamlibrary\steamapps\common\backrooms_escape_together\bet\binaries\win64\betgame-win64-shipping.exe => No File
FirewallRules: [TCP Query User{1CFE328E-F4EF-42B7-8580-A137A65AFF95}E:\xbox\aliens- dark descent - windows\content\asf\binaries\wingdk\aliensdarkdescentgame-wingdk-shipping.exe] => (Allow) E:\xbox\aliens- dark descent - windows\content\asf\binaries\wingdk\aliensdarkdescentgame-wingdk-shipping.exe => No File
FirewallRules: [UDP Query User{FA8B2386-4140-4875-9D74-A2D5861F5429}E:\xbox\aliens- dark descent - windows\content\asf\binaries\wingdk\aliensdarkdescentgame-wingdk-shipping.exe] => (Allow) E:\xbox\aliens- dark descent - windows\content\asf\binaries\wingdk\aliensdarkdescentgame-wingdk-shipping.exe => No File
FirewallRules: [{59FBD55F-9C0A-4742-B211-41C5386C341C}] => (Block) E:\xbox\aliens- dark descent - windows\content\asf\binaries\wingdk\aliensdarkdescentgame-wingdk-shipping.exe => No File
FirewallRules: [{AFD21C61-D514-44A0-BA7D-D21EB2250B45}] => (Block) E:\xbox\aliens- dark descent - windows\content\asf\binaries\wingdk\aliensdarkdescentgame-wingdk-shipping.exe => No File
FirewallRules: [TCP Query User{22880FF6-BF69-4359-A345-09F7D82E32F3}C:\xboxgames\aliens- dark descent - windows\content\asf\binaries\wingdk\aliensdarkdescentgame-wingdk-shipping.exe] => (Allow) C:\xboxgames\aliens- dark descent - windows\content\asf\binaries\wingdk\aliensdarkdescentgame-wingdk-shipping.exe => No File
FirewallRules: [UDP Query User{E17D6632-A76F-4495-8CA5-1620020EFA1B}C:\xboxgames\aliens- dark descent - windows\content\asf\binaries\wingdk\aliensdarkdescentgame-wingdk-shipping.exe] => (Allow) C:\xboxgames\aliens- dark descent - windows\content\asf\binaries\wingdk\aliensdarkdescentgame-wingdk-shipping.exe => No File
FirewallRules: [{49FACD69-9C2C-49C8-BA1A-E9A5BEA2EBCD}] => (Block) C:\xboxgames\aliens- dark descent - windows\content\asf\binaries\wingdk\aliensdarkdescentgame-wingdk-shipping.exe => No File
FirewallRules: [{77D5BC2E-D9CC-484B-923C-A1F2ED665566}] => (Block) C:\xboxgames\aliens- dark descent - windows\content\asf\binaries\wingdk\aliensdarkdescentgame-wingdk-shipping.exe => No File
FirewallRules: [TCP Query User{042A0AED-26B3-4EEB-8CAB-18AA83E90581}C:\users\ghwolf\appdata\local\wemod\app-9.15.0\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-9.15.0\wemod.exe => No File
FirewallRules: [UDP Query User{46BEB39B-48F3-4520-87E2-232B28B8EF7B}C:\users\ghwolf\appdata\local\wemod\app-9.15.0\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-9.15.0\wemod.exe => No File
FirewallRules: [TCP Query User{F48585F1-7963-44E1-9FA1-C902033D9D23}C:\xboxgames\s.t.a.l.k.e.r. 2\content\stalker2\binaries\wingdk\stalker2-wingdk-shipping.exe] => (Allow) C:\xboxgames\s.t.a.l.k.e.r. 2\content\stalker2\binaries\wingdk\stalker2-wingdk-shipping.exe => No File
FirewallRules: [UDP Query User{3C46AD8C-E35B-404F-80B9-B2B2D6FF5D59}C:\xboxgames\s.t.a.l.k.e.r. 2\content\stalker2\binaries\wingdk\stalker2-wingdk-shipping.exe] => (Allow) C:\xboxgames\s.t.a.l.k.e.r. 2\content\stalker2\binaries\wingdk\stalker2-wingdk-shipping.exe => No File
FirewallRules: [{4A432BB3-E7D7-4DBC-AFAF-A7C9BDB15B27}] => (Block) C:\xboxgames\s.t.a.l.k.e.r. 2\content\stalker2\binaries\wingdk\stalker2-wingdk-shipping.exe => No File
FirewallRules: [{1F6E12CA-25E2-497A-891B-A2D968592233}] => (Block) C:\xboxgames\s.t.a.l.k.e.r. 2\content\stalker2\binaries\wingdk\stalker2-wingdk-shipping.exe => No File
FirewallRules: [TCP Query User{5C8CE6F3-55EE-4FA0-9B5E-7EF0A0C21E81}C:\xboxgames\sea of thieves\content\athena\binaries\wingdk\sotgame.exe] => (Allow) C:\xboxgames\sea of thieves\content\athena\binaries\wingdk\sotgame.exe => No File
FirewallRules: [UDP Query User{09E4D904-C03D-4F2D-8834-F457E0D040D6}C:\xboxgames\sea of thieves\content\athena\binaries\wingdk\sotgame.exe] => (Allow) C:\xboxgames\sea of thieves\content\athena\binaries\wingdk\sotgame.exe => No File
FirewallRules: [TCP Query User{0878506D-9864-4E94-BDAD-D9CD877C03E3}C:\users\ghwolf\desktop\nitrox_1.7.1.0\nitroxserver-subnautica.exe] => (Allow) C:\users\ghwolf\desktop\nitrox_1.7.1.0\nitroxserver-subnautica.exe => No File
FirewallRules: [UDP Query User{1A59F9D0-5384-49D2-967B-EC17233A68EA}C:\users\ghwolf\desktop\nitrox_1.7.1.0\nitroxserver-subnautica.exe] => (Allow) C:\users\ghwolf\desktop\nitrox_1.7.1.0\nitroxserver-subnautica.exe => No File
FirewallRules: [{64CA68BC-FD8F-4898-A9D3-E008C1688C24}] => (Block) C:\users\ghwolf\desktop\nitrox_1.7.1.0\nitroxserver-subnautica.exe => No File
FirewallRules: [{7CE3DC6D-4DE4-447D-A7E4-A2AF69433C6E}] => (Block) C:\users\ghwolf\desktop\nitrox_1.7.1.0\nitroxserver-subnautica.exe => No File
FirewallRules: [{ED998558-F6B5-4708-8AE4-2D219FDF9D2C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Fallout 4\Fallout4Launcher.exe => No File
FirewallRules: [{58F4DBC5-3E15-46A2-BC95-AE63D1DA4B16}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Fallout 4\Fallout4Launcher.exe => No File
FirewallRules: [{7F72A1FF-02AB-4DAE-8EB9-22BD8105C619}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Chivalry 2\Chivalry2Launcher.exe => No File
FirewallRules: [{5431F800-DE60-4193-ADDA-23D2C5AEDB0B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Chivalry 2\Chivalry2Launcher.exe => No File
FirewallRules: [TCP Query User{73B677F0-D1D6-4872-B7EB-D0A0F5F539B9}E:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) E:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe => No File
FirewallRules: [UDP Query User{E1C946BF-BD65-4A4F-BDB3-F8892CE6C809}E:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) E:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe => No File
FirewallRules: [TCP Query User{18198C59-3938-4F15-A42F-97A019E5FFEE}F:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) F:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [UDP Query User{09222742-FB29-4A36-AF46-DCD1C50C0ACB}F:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) F:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [{EF2CE0C9-D214-4007-907F-3B2A937715C5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stellaris\dowser.exe => No File
FirewallRules: [{FE38218E-6D98-4DD2-8DD5-F83E08BB4A30}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stellaris\dowser.exe => No File
FirewallRules: [TCP Query User{2664FBDF-F488-4C3E-AE54-B7D590E2AAFC}E:\xbox\palworld\content\pal\binaries\wingdk\palworld-wingdk-shipping.exe] => (Allow) E:\xbox\palworld\content\pal\binaries\wingdk\palworld-wingdk-shipping.exe => No File
FirewallRules: [UDP Query User{AEA76DC6-1398-4ED5-BB22-719E1F1C7077}E:\xbox\palworld\content\pal\binaries\wingdk\palworld-wingdk-shipping.exe] => (Allow) E:\xbox\palworld\content\pal\binaries\wingdk\palworld-wingdk-shipping.exe => No File
FirewallRules: [{C6CF312A-BF0F-4AE8-A70D-3AE558791847}] => (Allow) C:\Users\GHWolf\Pictures\Tom Clancy's Ghost Recon Wildlands\GRW.exe => No File
FirewallRules: [{F2E0EE85-4975-4131-B4F8-1B7221FA6304}] => (Allow) C:\Users\GHWolf\Pictures\Tom Clancy's Ghost Recon Wildlands\GRW_Upp.exe => No File
FirewallRules: [{7B9BE4F4-1502-401C-93A4-2EFF6E7D0BC6}] => (Allow) E:\SteamLibrary\steamapps\common\House Flipper\HouseFlipper.exe => No File
FirewallRules: [{E868DCD0-1DFA-4B9E-B0DE-ECEE8BD11F8E}] => (Allow) E:\SteamLibrary\steamapps\common\House Flipper\HouseFlipper.exe => No File
FirewallRules: [TCP Query User{D23B3E47-E6EB-411F-AC7F-27B9CF074B3B}F:\steamlibrary\steamapps\common\men of war ii\mow2_cli_local.exe] => (Allow) F:\steamlibrary\steamapps\common\men of war ii\mow2_cli_local.exe => No File
FirewallRules: [UDP Query User{1E1E4576-C47D-4C40-AFF3-CE4BDAD39106}F:\steamlibrary\steamapps\common\men of war ii\mow2_cli_local.exe] => (Allow) F:\steamlibrary\steamapps\common\men of war ii\mow2_cli_local.exe => No File
FirewallRules: [TCP Query User{646C557D-02E7-455E-93DD-63E120BE923E}C:\users\ghwolf\appdata\local\wemod\app-9.22.0\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-9.22.0\wemod.exe => No File
FirewallRules: [UDP Query User{3F2F58C4-F579-480D-A1C3-FA6D69BF0AC7}C:\users\ghwolf\appdata\local\wemod\app-9.22.0\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-9.22.0\wemod.exe => No File
FirewallRules: [TCP Query User{946C60A3-CF3F-4FD4-8FF6-13610AB77A43}E:\steamlibrary\steamapps\common\baldurs gate 3\bin\bg3_dx11.exe] => (Allow) E:\steamlibrary\steamapps\common\baldurs gate 3\bin\bg3_dx11.exe => No File
FirewallRules: [UDP Query User{57F9959E-27E9-44A8-816B-F29A7E4CB4AB}E:\steamlibrary\steamapps\common\baldurs gate 3\bin\bg3_dx11.exe] => (Allow) E:\steamlibrary\steamapps\common\baldurs gate 3\bin\bg3_dx11.exe => No File
FirewallRules: [{A74B75D6-88F4-4CBE-BD5E-04B22061DFDC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SpaceEngineers2\Game2\SpaceEngineers2.exe => No File
FirewallRules: [{47EB1214-DBD7-4871-A657-395CFB53B029}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SpaceEngineers2\Game2\SpaceEngineers2.exe => No File
FirewallRules: [TCP Query User{C6DE0C41-9AAD-4BE6-8987-66D22B54B258}D:\beep\minecraft legends - windows\content\minecraftlegends.windows.exe] => (Allow) D:\beep\minecraft legends - windows\content\minecraftlegends.windows.exe => No File
FirewallRules: [UDP Query User{ADA59A8D-795E-4E0D-990B-EF5AC33E3502}D:\beep\minecraft legends - windows\content\minecraftlegends.windows.exe] => (Allow) D:\beep\minecraft legends - windows\content\minecraftlegends.windows.exe => No File
FirewallRules: [{C2F1147C-2F22-4570-8FED-CE03686F5C14}] => (Allow) F:\SteamLibrary\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe => No File
FirewallRules: [{56C767C5-6474-4C61-AC8F-5549283E7776}] => (Allow) F:\SteamLibrary\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe => No File
FirewallRules: [{6DEB6063-678E-4886-BA4C-2A0E9CFD427E}] => (Allow) F:\SteamLibrary\steamapps\common\Command and Conquer 3 - Kane's Wrath\WorldBuilder.exe => No File
FirewallRules: [{D23851C2-65C3-4679-A331-40AE50A9AAF7}] => (Allow) F:\SteamLibrary\steamapps\common\Command and Conquer 3 - Kane's Wrath\WorldBuilder.exe => No File
FirewallRules: [{95722750-ECD0-41AD-BAD4-EDE54BB55727}] => (Allow) F:\SteamLibrary\steamapps\common\Command and Conquer 3 Tiberium Wars\WorldBuilder.exe => No File
FirewallRules: [{CA90C196-D04A-4AE1-8DD9-0BCD022A4FDB}] => (Allow) F:\SteamLibrary\steamapps\common\Command and Conquer 3 Tiberium Wars\WorldBuilder.exe => No File
FirewallRules: [TCP Query User{C63EEF9D-68F5-42F1-A323-989EE51C5A7C}F:\rocketleague\binaries\win64\rocketleague.exe] => (Allow) F:\rocketleague\binaries\win64\rocketleague.exe => No File
FirewallRules: [UDP Query User{258953F7-F965-4FBB-9935-EDFD07D798A3}F:\rocketleague\binaries\win64\rocketleague.exe] => (Allow) F:\rocketleague\binaries\win64\rocketleague.exe => No File
FirewallRules: [TCP Query User{FA080723-1564-42C8-A7F9-32EE10A774B8}F:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) F:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe => No File
FirewallRules: [UDP Query User{99CCDEDF-529D-4703-8A45-6EC7495AD7FD}F:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) F:\steamlibrary\steamapps\common\total war warhammer iii\warhammer3.exe => No File
FirewallRules: [TCP Query User{C222E70E-9099-42E1-B4F5-37FCADC17D7C}C:\program files\oculus\support\oculus-remote-desktop\remotedesktopcompanion.exe] => (Allow) C:\program files\oculus\support\oculus-remote-desktop\remotedesktopcompanion.exe => No File
FirewallRules: [UDP Query User{18421858-1DBA-4873-96B5-5A905223D8A9}C:\program files\oculus\support\oculus-remote-desktop\remotedesktopcompanion.exe] => (Allow) C:\program files\oculus\support\oculus-remote-desktop\remotedesktopcompanion.exe => No File
FirewallRules: [{26FEB48A-9BF4-4CD7-A6D4-0ACCBB508313}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Medieval Blacksmith\Medieval Blacksmith.exe => No File
FirewallRules: [{ADC7CD0E-FA75-47F5-AB06-DBD473CB9845}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Medieval Blacksmith\Medieval Blacksmith.exe => No File
FirewallRules: [TCP Query User{9857F374-1000-4809-B4E7-042FDA1C4923}C:\users\ghwolf\downloads\alphafurry\alphafurry.exe] => (Allow) C:\users\ghwolf\downloads\alphafurry\alphafurry.exe => No File
FirewallRules: [UDP Query User{CC8C865F-1624-4E91-AA81-4B438E0E2E4C}C:\users\ghwolf\downloads\alphafurry\alphafurry.exe] => (Allow) C:\users\ghwolf\downloads\alphafurry\alphafurry.exe => No File
FirewallRules: [TCP Query User{4CD3EB63-8E0D-4C7C-A814-36C9E3B40EE4}C:\program files\cyberpunk 2077\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Allow) C:\program files\cyberpunk 2077\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File
FirewallRules: [UDP Query User{2BB30B95-9943-45CF-8348-68B22C0659F0}C:\program files\cyberpunk 2077\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Allow) C:\program files\cyberpunk 2077\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File
FirewallRules: [TCP Query User{483AAAE9-1A23-4ECA-99C9-2231D3DCA9C5}C:\users\ghwolf\appdata\local\wemod\app-10.7.0\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-10.7.0\wemod.exe => No File
FirewallRules: [UDP Query User{B1EED169-C524-4CBF-9258-FFB70C324519}C:\users\ghwolf\appdata\local\wemod\app-10.7.0\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-10.7.0\wemod.exe => No File
FirewallRules: [TCP Query User{55CE32D6-D199-4FFA-9ED5-41905092FA87}E:\grand theft auto v enhanced\gta5_enhanced.exe] => (Allow) E:\grand theft auto v enhanced\gta5_enhanced.exe => No File
FirewallRules: [UDP Query User{52205868-769B-4F6F-90B4-0619652A040F}E:\grand theft auto v enhanced\gta5_enhanced.exe] => (Allow) E:\grand theft auto v enhanced\gta5_enhanced.exe => No File
FirewallRules: [TCP Query User{3E00707E-92D3-4E38-B542-3386EBCAD10D}C:\users\ghwolf\downloads\nitrox_1.7.1.0\nitroxserver-subnautica.exe] => (Allow) C:\users\ghwolf\downloads\nitrox_1.7.1.0\nitroxserver-subnautica.exe => No File
FirewallRules: [UDP Query User{C6D4C3FD-F6C5-4F94-8B6A-4FF6E5BF8E40}C:\users\ghwolf\downloads\nitrox_1.7.1.0\nitroxserver-subnautica.exe] => (Allow) C:\users\ghwolf\downloads\nitrox_1.7.1.0\nitroxserver-subnautica.exe => No File
FirewallRules: [TCP Query User{9E2CF000-2D8C-4374-B63B-E8C6E24D4DF3}F:\steamlibrary\steamapps\common\war thunder\win64\aces.exe] => (Allow) F:\steamlibrary\steamapps\common\war thunder\win64\aces.exe => No File
FirewallRules: [UDP Query User{334B6D1A-823B-47A3-A13B-EF02CF97911E}F:\steamlibrary\steamapps\common\war thunder\win64\aces.exe] => (Allow) F:\steamlibrary\steamapps\common\war thunder\win64\aces.exe => No File
FirewallRules: [{10D45DE7-4061-47D8-9BC4-0A745C4F727D}] => (Allow) E:\SteamLibrary\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [{5E80BCA9-636F-4A29-AEE7-24CB3F86BFB7}] => (Allow) E:\SteamLibrary\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [TCP Query User{24DAB458-2EBB-4BDC-BA88-2E76C6B77C3C}E:\fortnite\engine\binaries\win64\epicwebhelper.exe] => (Allow) E:\fortnite\engine\binaries\win64\epicwebhelper.exe => No File
FirewallRules: [UDP Query User{45B6FF2C-BBB8-4F19-9303-A65A01712DC1}E:\fortnite\engine\binaries\win64\epicwebhelper.exe] => (Allow) E:\fortnite\engine\binaries\win64\epicwebhelper.exe => No File
FirewallRules: [TCP Query User{9E46E5F5-10A7-4404-A447-A9BC63BC3255}C:\users\ghwolf\appdata\local\wemod\app-10.12.0\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-10.12.0\wemod.exe => No File
FirewallRules: [UDP Query User{6D590210-2D23-475A-B74A-B9CA05657BC4}C:\users\ghwolf\appdata\local\wemod\app-10.12.0\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-10.12.0\wemod.exe => No File
FirewallRules: [TCP Query User{5A209603-BA72-414F-B9AA-B46C0EFF8C60}D:\beep\the elder scrolls iv- oblivion remastered\content\oblivionremastered\binaries\wingdk\oblivionremastered-wingdk-shipping.exe] => (Allow) D:\beep\the elder scrolls iv- oblivion remastered\content\oblivionremastered\binaries\wingdk\oblivionremastered-wingdk-shipping.exe => No File
FirewallRules: [UDP Query User{4D88743C-15E0-45EA-82F2-7DE170015D55}D:\beep\the elder scrolls iv- oblivion remastered\content\oblivionremastered\binaries\wingdk\oblivionremastered-wingdk-shipping.exe] => (Allow) D:\beep\the elder scrolls iv- oblivion remastered\content\oblivionremastered\binaries\wingdk\oblivionremastered-wingdk-shipping.exe => No File
FirewallRules: [TCP Query User{B99FE47C-EFB9-4BFF-895D-146EAB0EDE5F}C:\users\ghwolf\appdata\local\wemod\app-10.13.0\wemod.exe] => (Block) C:\users\ghwolf\appdata\local\wemod\app-10.13.0\wemod.exe => No File
FirewallRules: [UDP Query User{4884C923-BF19-45AE-B84B-FB4C91EEF113}C:\users\ghwolf\appdata\local\wemod\app-10.13.0\wemod.exe] => (Block) C:\users\ghwolf\appdata\local\wemod\app-10.13.0\wemod.exe => No File
FirewallRules: [{15E46200-64A8-4E75-B2D7-3D002155CE31}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cult of the Lamb\Cult Of The Lamb.exe => No File
FirewallRules: [{12BBB4D2-D772-487B-ACDF-D59B027707B1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cult of the Lamb\Cult Of The Lamb.exe => No File
FirewallRules: [{9325DA37-E5C0-4C35-8D14-ABE31ED5893D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Splitgate 2\PortalWars2\Binaries\Win64\PortalWars2Client-Win64-Shipping.exe => No File
FirewallRules: [{46C25B79-F217-4948-B909-E384DB9C556D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Splitgate 2\PortalWars2\Binaries\Win64\PortalWars2Client-Win64-Shipping.exe => No File
FirewallRules: [{38872C9C-AFF8-4672-9DAE-F97C80A9D589}] => (Allow) E:\SteamLibrary\steamapps\common\Project Werewulf\Project_Werewulf.exe => No File
FirewallRules: [{D05CF27B-D326-4570-B92E-1C8B3CACE267}] => (Allow) E:\SteamLibrary\steamapps\common\Project Werewulf\Project_Werewulf.exe => No File
FirewallRules: [TCP Query User{F3C9107C-8AAD-4520-92AD-D325AE6D7945}C:\users\ghwolf\appdata\local\wemod\app-10.15.0\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-10.15.0\wemod.exe => No File
FirewallRules: [UDP Query User{8538780F-905A-4059-B598-96A91A2CE420}C:\users\ghwolf\appdata\local\wemod\app-10.15.0\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-10.15.0\wemod.exe => No File
FirewallRules: [TCP Query User{9FD0DEAD-0B71-44D0-B7FA-F9E8EFE7CF7D}E:\steamlibrary\steamapps\common\project werewulf\project_werewulf\binaries\win64\project_werewulf-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\project werewulf\project_werewulf\binaries\win64\project_werewulf-win64-shipping.exe => No File
FirewallRules: [UDP Query User{513809ED-2190-44D6-8EEA-1E1491B139E9}E:\steamlibrary\steamapps\common\project werewulf\project_werewulf\binaries\win64\project_werewulf-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\project werewulf\project_werewulf\binaries\win64\project_werewulf-win64-shipping.exe => No File
FirewallRules: [TCP Query User{85CA93E4-9875-4142-A303-5ECA3C5AE4BD}C:\users\ghwolf\appdata\local\wemod\app-10.20.1\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-10.20.1\wemod.exe => No File
FirewallRules: [UDP Query User{331FAAA6-963D-4728-BBFA-F439FA84CD58}C:\users\ghwolf\appdata\local\wemod\app-10.20.1\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-10.20.1\wemod.exe => No File
FirewallRules: [{A8AD9C7B-50F8-4E83-81E6-619861800360}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\5K\WindowsNoEditor\Pandemic.exe => No File
FirewallRules: [{C88E7DBC-2A2D-42E3-B4F5-553DD7DB83AC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\5K\WindowsNoEditor\Pandemic.exe => No File
FirewallRules: [TCP Query User{F9312BBE-FFAE-475E-842F-D3048414015C}C:\program files (x86)\steam\steamapps\common\5k\windowsnoeditor\pandemic\binaries\win64\pandemic.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\5k\windowsnoeditor\pandemic\binaries\win64\pandemic.exe => No File
FirewallRules: [UDP Query User{A402656D-0029-482E-8BF6-44DD41D660CD}C:\program files (x86)\steam\steamapps\common\5k\windowsnoeditor\pandemic\binaries\win64\pandemic.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\5k\windowsnoeditor\pandemic\binaries\win64\pandemic.exe => No File
FirewallRules: [TCP Query User{F531BE19-1AFE-48D8-A0DE-2E143BBCEA62}C:\program files (x86)\steam\steamapps\common\nuclear nightmare\nuclearnightmare\binaries\win64\nuclearnightmare-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\nuclear nightmare\nuclearnightmare\binaries\win64\nuclearnightmare-win64-shipping.exe => No File
FirewallRules: [UDP Query User{2E5F9B1E-6AD5-45BA-B99F-99282407B726}C:\program files (x86)\steam\steamapps\common\nuclear nightmare\nuclearnightmare\binaries\win64\nuclearnightmare-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\nuclear nightmare\nuclearnightmare\binaries\win64\nuclearnightmare-win64-shipping.exe => No File
FirewallRules: [{F476AFB5-67FA-4757-A8B6-B1A3768B31B5}] => (Block) C:\program files (x86)\steam\steamapps\common\nuclear nightmare\nuclearnightmare\binaries\win64\nuclearnightmare-win64-shipping.exe => No File
FirewallRules: [{A1617D80-A044-4AB0-AA41-DD23D6F166B1}] => (Block) C:\program files (x86)\steam\steamapps\common\nuclear nightmare\nuclearnightmare\binaries\win64\nuclearnightmare-win64-shipping.exe => No File
FirewallRules: [{C43F9FF2-B418-441B-BE51-2454A79CA39D}] => (Allow) E:\SteamLibrary\steamapps\common\Changed\Game.exe => No File
FirewallRules: [{5A10D248-EC53-44BC-A9C8-D4C4692A762C}] => (Allow) E:\SteamLibrary\steamapps\common\Changed\Game.exe => No File
FirewallRules: [TCP Query User{6713F085-91A8-458B-A981-D716533A4FED}E:\steamlibrary\steamapps\common\projectzomboid\projectzomboid64.exe] => (Allow) E:\steamlibrary\steamapps\common\projectzomboid\projectzomboid64.exe => No File
FirewallRules: [UDP Query User{6AA66FBB-32C3-49AE-9A57-86AD27EA1B1D}E:\steamlibrary\steamapps\common\projectzomboid\projectzomboid64.exe] => (Allow) E:\steamlibrary\steamapps\common\projectzomboid\projectzomboid64.exe => No File
FirewallRules: [TCP Query User{7EC776E2-5B31-444E-AC87-CE46F98AE310}E:\steamlibrary\steamapps\common\cepheus protocol experimental branch\cepheusprotocol\binaries\win64\cepheusprotocol.exe] => (Allow) E:\steamlibrary\steamapps\common\cepheus protocol experimental branch\cepheusprotocol\binaries\win64\cepheusprotocol.exe => No File
FirewallRules: [UDP Query User{9AF9C5B2-4965-43E7-8F5D-A4A05AF9299D}E:\steamlibrary\steamapps\common\cepheus protocol experimental branch\cepheusprotocol\binaries\win64\cepheusprotocol.exe] => (Allow) E:\steamlibrary\steamapps\common\cepheus protocol experimental branch\cepheusprotocol\binaries\win64\cepheusprotocol.exe => No File
FirewallRules: [TCP Query User{04A950AD-0E0A-464E-9BB7-A65E5C0F6940}C:\users\ghwolf\appdata\local\wemod\app-10.21.0\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-10.21.0\wemod.exe => No File
FirewallRules: [UDP Query User{E846C59F-D98E-476A-94AE-1CACBF9D999D}C:\users\ghwolf\appdata\local\wemod\app-10.21.0\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-10.21.0\wemod.exe => No File
FirewallRules: [TCP Query User{F353B8AF-9898-4928-94D2-C7BED17C3FB0}C:\users\ghwolf\appdata\local\wemod\app-10.22.1\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-10.22.1\wemod.exe => No File
FirewallRules: [UDP Query User{EB230FEC-5627-487D-B3CF-443A9A4732E2}C:\users\ghwolf\appdata\local\wemod\app-10.22.1\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-10.22.1\wemod.exe => No File
FirewallRules: [TCP Query User{883D7412-CECD-45CD-A48C-8BA2B6C5DFE4}C:\users\ghwolf\appdata\local\wemod\app-10.23.0\wemod.exe] => (Block) C:\users\ghwolf\appdata\local\wemod\app-10.23.0\wemod.exe => No File
FirewallRules: [UDP Query User{10D07B8A-7DA1-4981-AEDE-EF364BF56DA1}C:\users\ghwolf\appdata\local\wemod\app-10.23.0\wemod.exe] => (Block) C:\users\ghwolf\appdata\local\wemod\app-10.23.0\wemod.exe => No File
FirewallRules: [TCP Query User{4725462D-5AC1-4A5C-97CA-B3C3EE6B1C55}C:\program files (x86)\steam\steamapps\common\palworld\pal\binaries\win64\palworld-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\palworld\pal\binaries\win64\palworld-win64-shipping.exe => No File
FirewallRules: [UDP Query User{07E87A71-2A3F-4773-A17B-2206F6627F77}C:\program files (x86)\steam\steamapps\common\palworld\pal\binaries\win64\palworld-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\palworld\pal\binaries\win64\palworld-win64-shipping.exe => No File
FirewallRules: [TCP Query User{B9829A9F-BB22-4EAF-A014-1DBC9C9C38EB}C:\users\ghwolf\appdata\local\wemod\app-10.24.1\wemod.exe] => (Block) C:\users\ghwolf\appdata\local\wemod\app-10.24.1\wemod.exe => No File
FirewallRules: [UDP Query User{63A849DB-89BC-47E5-8759-CA677BAC401C}C:\users\ghwolf\appdata\local\wemod\app-10.24.1\wemod.exe] => (Block) C:\users\ghwolf\appdata\local\wemod\app-10.24.1\wemod.exe => No File
FirewallRules: [TCP Query User{DEF09328-BDDC-4A58-8D90-E9C03EFEFE77}C:\xboxgames\robocop- rogue city\content\game\binaries\wingdk\robocop-wingdk-shipping.exe] => (Allow) C:\xboxgames\robocop- rogue city\content\game\binaries\wingdk\robocop-wingdk-shipping.exe => No File
FirewallRules: [UDP Query User{3ABC0052-7666-4F6A-9CEE-14A5C6850C9F}C:\xboxgames\robocop- rogue city\content\game\binaries\wingdk\robocop-wingdk-shipping.exe] => (Allow) C:\xboxgames\robocop- rogue city\content\game\binaries\wingdk\robocop-wingdk-shipping.exe => No File
FirewallRules: [TCP Query User{473778A5-F2CD-4655-8112-50A0A4C145B3}C:\xboxgames\grounded 2\content\augusta\binaries\wingdk\grounded2-wingdk-shipping.exe] => (Allow) C:\xboxgames\grounded 2\content\augusta\binaries\wingdk\grounded2-wingdk-shipping.exe => No File
FirewallRules: [UDP Query User{6129024E-5F4C-4891-93F7-6656C8452E8B}C:\xboxgames\grounded 2\content\augusta\binaries\wingdk\grounded2-wingdk-shipping.exe] => (Allow) C:\xboxgames\grounded 2\content\augusta\binaries\wingdk\grounded2-wingdk-shipping.exe => No File
FirewallRules: [TCP Query User{43D84719-A75A-4790-8C46-394C0B7EBA78}C:\xboxgames\abiotic factor\content\abioticfactor\binaries\wingdk\abioticfactor-wingdk-shipping.exe] => (Allow) C:\xboxgames\abiotic factor\content\abioticfactor\binaries\wingdk\abioticfactor-wingdk-shipping.exe => No File
FirewallRules: [UDP Query User{460D55A1-3754-4C12-A703-B2AC8B366885}C:\xboxgames\abiotic factor\content\abioticfactor\binaries\wingdk\abioticfactor-wingdk-shipping.exe] => (Allow) C:\xboxgames\abiotic factor\content\abioticfactor\binaries\wingdk\abioticfactor-wingdk-shipping.exe => No File
FirewallRules: [TCP Query User{210C6B1C-5794-4194-A346-E18627265015}F:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) F:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe => No File
FirewallRules: [UDP Query User{AB84D8C6-B8B6-47C0-BEDE-5A88E9255657}F:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) F:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe => No File
FirewallRules: [TCP Query User{C2BD2010-B5CA-4301-8908-B733676F51D4}D:\beep\forza horizon 5\content\forzahorizon5.exe] => (Allow) D:\beep\forza horizon 5\content\forzahorizon5.exe => No File
FirewallRules: [UDP Query User{8F997906-F845-4F57-B72D-E45B8A8E6A7F}D:\beep\forza horizon 5\content\forzahorizon5.exe] => (Allow) D:\beep\forza horizon 5\content\forzahorizon5.exe => No File
FirewallRules: [TCP Query User{A92F0716-23CB-4DA5-8DF9-177406F8B76A}C:\xboxgames\deep rock galactic\content\fsd\binaries\wingdk\fsd-wingdk-shipping.exe] => (Allow) C:\xboxgames\deep rock galactic\content\fsd\binaries\wingdk\fsd-wingdk-shipping.exe => No File
FirewallRules: [UDP Query User{3A6A559E-1BDE-4FFA-9655-D2323147CC67}C:\xboxgames\deep rock galactic\content\fsd\binaries\wingdk\fsd-wingdk-shipping.exe] => (Allow) C:\xboxgames\deep rock galactic\content\fsd\binaries\wingdk\fsd-wingdk-shipping.exe => No File
FirewallRules: [TCP Query User{F96477EC-4DAA-45B9-AFAD-856B6FFC982E}F:\fortnite\engine\binaries\win64\epicwebhelper.exe] => (Allow) F:\fortnite\engine\binaries\win64\epicwebhelper.exe => No File
FirewallRules: [UDP Query User{7A69746B-BDAA-46C5-9D3A-0B51E650D596}F:\fortnite\engine\binaries\win64\epicwebhelper.exe] => (Allow) F:\fortnite\engine\binaries\win64\epicwebhelper.exe => No File
FirewallRules: [TCP Query User{3DFC212C-1B95-4090-8089-F2DE446317BF}C:\users\ghwolf\appdata\local\wemod\app-11.1.1\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-11.1.1\wemod.exe => No File
FirewallRules: [UDP Query User{2D6C026F-090E-4AE5-AC18-33A533B79453}C:\users\ghwolf\appdata\local\wemod\app-11.1.1\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-11.1.1\wemod.exe => No File
FirewallRules: [TCP Query User{E8A19230-1B36-4118-8CEF-BA4433B70DA8}C:\users\ghwolf\downloads\server_win.exe] => (Allow) C:\users\ghwolf\downloads\server_win.exe => No File
FirewallRules: [UDP Query User{244FA58F-F72F-43B5-BF5E-84C9AF891808}C:\users\ghwolf\downloads\server_win.exe] => (Allow) C:\users\ghwolf\downloads\server_win.exe => No File
FirewallRules: [TCP Query User{C0A37AF7-E80A-42DF-9EF4-01FCFAAEBD1A}C:\users\ghwolf\appdata\local\wemod\app-11.2.0\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-11.2.0\wemod.exe => No File
FirewallRules: [UDP Query User{76350C50-3921-42E8-97EF-A00BF230A7BB}C:\users\ghwolf\appdata\local\wemod\app-11.2.0\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-11.2.0\wemod.exe => No File
FirewallRules: [{A9DBE3B3-159E-45DC-A4FD-E48E65CED148}] => (Allow) E:\SteamLibrary\steamapps\common\5K\WindowsNoEditor\Pandemic.exe => No File
FirewallRules: [{87AEF0B1-19B9-45FE-83C4-7877E35CC12D}] => (Allow) E:\SteamLibrary\steamapps\common\5K\WindowsNoEditor\Pandemic.exe => No File
FirewallRules: [TCP Query User{0C90FCAA-F454-4D69-901D-935005156D22}E:\steamlibrary\steamapps\common\5k\windowsnoeditor\pandemic\binaries\win64\pandemic.exe] => (Allow) E:\steamlibrary\steamapps\common\5k\windowsnoeditor\pandemic\binaries\win64\pandemic.exe => No File
FirewallRules: [UDP Query User{CF6E2DB1-E0ED-4190-B558-F6465673B46C}E:\steamlibrary\steamapps\common\5k\windowsnoeditor\pandemic\binaries\win64\pandemic.exe] => (Allow) E:\steamlibrary\steamapps\common\5k\windowsnoeditor\pandemic\binaries\win64\pandemic.exe => No File
FirewallRules: [{6A55BAE6-D7CB-4BE0-B010-B437142B4DED}] => (Allow) F:\SteamLibrary\steamapps\common\sbox\sbox-dev.exe => No File
FirewallRules: [{2FA86D7B-8204-4A9C-B187-5199C5D95617}] => (Allow) F:\SteamLibrary\steamapps\common\sbox\sbox-dev.exe => No File
FirewallRules: [TCP Query User{6B35786C-72AA-442E-AA6D-9D842AB596EC}C:\users\ghwolf\downloads\horny.haunts\horny haunts.exe] => (Allow) C:\users\ghwolf\downloads\horny.haunts\horny haunts.exe => No File
FirewallRules: [UDP Query User{45FF503C-98A0-427D-A79E-CCB15200A773}C:\users\ghwolf\downloads\horny.haunts\horny haunts.exe] => (Allow) C:\users\ghwolf\downloads\horny.haunts\horny haunts.exe => No File
FirewallRules: [{D00371B3-CE7A-42AB-8CA2-3462E6922C80}] => (Allow) E:\SteamLibrary\steamapps\common\Gunsmith Simulator\Gunsmith Simulator.exe => No File
FirewallRules: [{7BD6AF3C-E121-404B-927D-0E05FEBC5415}] => (Allow) E:\SteamLibrary\steamapps\common\Gunsmith Simulator\Gunsmith Simulator.exe => No File
FirewallRules: [{0B980FBA-1BE7-4E91-85D5-C40BE32FC06F}] => (Allow) E:\SteamLibrary\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe => No File
FirewallRules: [{690B45E9-5E4E-4F88-B720-9C1620F52A6C}] => (Allow) E:\SteamLibrary\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe => No File
FirewallRules: [TCP Query User{960222DA-BDBE-4D55-A256-9233E2D25842}F:\grand theft auto v legacy\gta5.exe] => (Allow) F:\grand theft auto v legacy\gta5.exe => No File
FirewallRules: [UDP Query User{A6FD1EC4-35E4-4103-8705-636E3B33498D}F:\grand theft auto v legacy\gta5.exe] => (Allow) F:\grand theft auto v legacy\gta5.exe => No File
FirewallRules: [{971E43F9-94F7-4E7E-9D34-42C39828F13C}] => (Block) F:\grand theft auto v legacy\gta5.exe => No File
FirewallRules: [{947C53E6-5979-4F42-9523-7786F4446F4D}] => (Block) F:\grand theft auto v legacy\gta5.exe => No File
FirewallRules: [TCP Query User{1E6284C1-85B4-484E-AF62-6331BA58CE52}C:\users\ghwolf\appdata\local\wemod\app-11.4.2\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-11.4.2\wemod.exe => No File
FirewallRules: [UDP Query User{69B79A85-BC1B-4B14-839F-9A8F449F58D0}C:\users\ghwolf\appdata\local\wemod\app-11.4.2\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-11.4.2\wemod.exe => No File
FirewallRules: [{94AD9BC4-E9F1-4FA5-9F86-50547F3BDC71}] => (Block) C:\users\ghwolf\appdata\local\wemod\app-11.4.2\wemod.exe => No File
FirewallRules: [{A26110EA-C799-436F-B395-815D513FFECB}] => (Block) C:\users\ghwolf\appdata\local\wemod\app-11.4.2\wemod.exe => No File
FirewallRules: [TCP Query User{5478F42A-9809-43E7-96E8-6572A9D11686}C:\program files (x86)\steam\steamapps\common\8bitarmies\clientg.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\8bitarmies\clientg.exe => No File
FirewallRules: [UDP Query User{73659D65-E511-4E3C-B777-674C7EFAC0B2}C:\program files (x86)\steam\steamapps\common\8bitarmies\clientg.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\8bitarmies\clientg.exe => No File
FirewallRules: [{839EC80B-269D-454E-8B82-6C30FF54330A}] => (Block) C:\program files (x86)\steam\steamapps\common\8bitarmies\clientg.exe => No File
FirewallRules: [{E0BF02C3-A8A9-4766-BE97-13AF65C2DEEB}] => (Block) C:\program files (x86)\steam\steamapps\common\8bitarmies\clientg.exe => No File
FirewallRules: [TCP Query User{C6221941-B8D3-4496-88C6-FF79E27D1306}C:\program files (x86)\steam\steamapps\common\8bitarmies\instanceserverg.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\8bitarmies\instanceserverg.exe => No File
FirewallRules: [UDP Query User{4F73ECAF-AF28-49B8-BEEE-FD912B5CF452}C:\program files (x86)\steam\steamapps\common\8bitarmies\instanceserverg.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\8bitarmies\instanceserverg.exe => No File
FirewallRules: [{2259ACC5-32CB-4A25-BF62-3D7F4FA53130}] => (Block) C:\program files (x86)\steam\steamapps\common\8bitarmies\instanceserverg.exe => No File
FirewallRules: [{A0DB7821-0D15-4686-A6AF-98F24165818F}] => (Block) C:\program files (x86)\steam\steamapps\common\8bitarmies\instanceserverg.exe => No File
FirewallRules: [TCP Query User{A5ED2908-7D94-41F5-889A-34D82B9A84A0}F:\steamlibrary\steamapps\common\xcom 2\xcom2-warofthechosen\binaries\win64\xcom2.exe] => (Allow) F:\steamlibrary\steamapps\common\xcom 2\xcom2-warofthechosen\binaries\win64\xcom2.exe => No File
FirewallRules: [UDP Query User{83F676C5-C286-4A12-A970-858CF4F843B2}F:\steamlibrary\steamapps\common\xcom 2\xcom2-warofthechosen\binaries\win64\xcom2.exe] => (Allow) F:\steamlibrary\steamapps\common\xcom 2\xcom2-warofthechosen\binaries\win64\xcom2.exe => No File
FirewallRules: [{82200CA9-D86B-4C5B-BCAC-668BFA34D4AD}] => (Block) F:\steamlibrary\steamapps\common\xcom 2\xcom2-warofthechosen\binaries\win64\xcom2.exe => No File
FirewallRules: [{A5692ABB-EBED-4373-8B26-7D70044E9877}] => (Block) F:\steamlibrary\steamapps\common\xcom 2\xcom2-warofthechosen\binaries\win64\xcom2.exe => No File
FirewallRules: [{3D6A50D9-DBE0-45D3-8CBD-52306961E902}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cepheus Protocol\CepheusProtocol.exe => No File
FirewallRules: [{5F08BBC3-A5BC-41A1-9CF0-1A9CD0241AF8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cepheus Protocol\CepheusProtocol.exe => No File
FirewallRules: [TCP Query User{880F3BCA-90D7-440E-8207-AB0F5C6B2ECC}C:\users\ghwolf\appdata\local\wemod\app-11.5.0\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-11.5.0\wemod.exe => No File
FirewallRules: [UDP Query User{CF2089D1-50F6-44BE-BE58-03079B453C03}C:\users\ghwolf\appdata\local\wemod\app-11.5.0\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-11.5.0\wemod.exe => No File
FirewallRules: [{F6698269-C3EF-4D01-9EF2-27D6CD9A3C1F}] => (Block) C:\users\ghwolf\appdata\local\wemod\app-11.5.0\wemod.exe => No File
FirewallRules: [{973FF65D-79E8-4304-B422-2254BD7F9768}] => (Block) C:\users\ghwolf\appdata\local\wemod\app-11.5.0\wemod.exe => No File
FirewallRules: [{B5191903-34FC-4A18-A29A-67857B94728E}] => (Allow) E:\SteamLibrary\steamapps\common\ABInfinite\Launcher\arena_breakout_infinite_launcher.exe => No File
FirewallRules: [{A55081C1-C37E-460D-882F-06ABE74E2EB9}] => (Allow) E:\SteamLibrary\steamapps\common\ABInfinite\Launcher\arena_breakout_infinite_launcher.exe => No File
FirewallRules: [TCP Query User{657B60A1-90FF-4578-A482-57985FBD7697}F:\deadisland2\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe] => (Allow) F:\deadisland2\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe => No File
FirewallRules: [UDP Query User{B9829294-46CA-4731-9353-DEE6C3324028}F:\deadisland2\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe] => (Allow) F:\deadisland2\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe => No File
FirewallRules: [{3473FDB7-0A1D-4388-BCAF-36C7E08D1633}] => (Block) F:\deadisland2\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe => No File
FirewallRules: [{604DCA8F-FDB2-4D6E-ABF2-1D970F431291}] => (Block) F:\deadisland2\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe => No File
FirewallRules: [{282E77D2-73D2-4717-ACE6-1A76A4439CEE}] => (Allow) E:\SteamLibrary\steamapps\common\ABInfinite\Launcher\service\INTLWebViewHelper.exe => No File
FirewallRules: [TCP Query User{73087A78-D31F-4F4F-9EAE-08B0ACBFCEF2}E:\steamlibrary\steamapps\common\arma 3\arma3_x64.exe] => (Allow) E:\steamlibrary\steamapps\common\arma 3\arma3_x64.exe => No File
FirewallRules: [UDP Query User{BCE9EA60-664D-44AE-BAF2-647F083BC7F0}E:\steamlibrary\steamapps\common\arma 3\arma3_x64.exe] => (Allow) E:\steamlibrary\steamapps\common\arma 3\arma3_x64.exe => No File
FirewallRules: [{9E9CE9EE-95F6-475B-ABF4-963D9F662BE2}] => (Block) E:\steamlibrary\steamapps\common\arma 3\arma3_x64.exe => No File
FirewallRules: [{35EA510B-6711-4881-AE49-0F3AE0ED5F6C}] => (Block) E:\steamlibrary\steamapps\common\arma 3\arma3_x64.exe => No File
FirewallRules: [TCP Query User{04B58191-D88C-4559-9B11-0C96F74C11CF}C:\users\ghwolf\appdata\local\wemod\app-11.6.0\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-11.6.0\wemod.exe => No File
FirewallRules: [UDP Query User{8662D163-4D63-47EF-A610-1C03E2FEA76D}C:\users\ghwolf\appdata\local\wemod\app-11.6.0\wemod.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-11.6.0\wemod.exe => No File
FirewallRules: [TCP Query User{D0BC8B88-F228-4E83-8E45-A1F4F8EEAF4F}F:\grand theft auto v enhanced\gta5_enhanced.exe] => (Allow) F:\grand theft auto v enhanced\gta5_enhanced.exe => No File
FirewallRules: [UDP Query User{0D9E4F19-6A1F-400A-9DB7-F096C22B7FE4}F:\grand theft auto v enhanced\gta5_enhanced.exe] => (Allow) F:\grand theft auto v enhanced\gta5_enhanced.exe => No File
FirewallRules: [{B5947F3F-F98F-4F46-BC5B-3AA2E7C528ED}] => (Allow) F:\Mass Effect Legendary Edition\Game\Launcher\MassEffectLauncher.exe => No File
FirewallRules: [{BF5B6058-134B-476A-B5E0-F8456D78B2BA}] => (Allow) F:\Mass Effect Legendary Edition\Game\Launcher\MassEffectLauncher.exe => No File
FirewallRules: [{A6B120DF-3AF7-49C3-B5D6-73DAD240185F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\IntoTheRadius2\IntoTheRadius2.exe => No File
FirewallRules: [{D3B63B79-6BEE-45F0-8F1B-BFEA8F72DE91}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\IntoTheRadius2\IntoTheRadius2.exe => No File
FirewallRules: [{0A0632E1-C985-48AD-8E0A-01C0B1DED371}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\JumpSpace\Jump Space.exe => No File
FirewallRules: [{2FD886D6-E727-4235-827D-7BABD7CC57D0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\JumpSpace\Jump Space.exe => No File
FirewallRules: [{C5606A4D-E6E4-46F9-8C46-A872EC95FC39}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ship Graveyard Simulator 2\ShipGraveyard2.exe => No File
FirewallRules: [{4FE650B2-22ED-4473-A249-23ED29C90629}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ship Graveyard Simulator 2\ShipGraveyard2.exe => No File
FirewallRules: [TCP Query User{D6574DF2-7E4B-45A1-BF34-C259D467D26A}C:\program files (x86)\steam\steamapps\common\ship graveyard simulator 2\shipgraveyard2\binaries\win64\shipgraveyard2-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\ship graveyard simulator 2\shipgraveyard2\binaries\win64\shipgraveyard2-win64-shipping.exe => No File
FirewallRules: [UDP Query User{4BBF8E49-8338-491D-9CFB-B461CD53EA5A}C:\program files (x86)\steam\steamapps\common\ship graveyard simulator 2\shipgraveyard2\binaries\win64\shipgraveyard2-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\ship graveyard simulator 2\shipgraveyard2\binaries\win64\shipgraveyard2-win64-shipping.exe => No File
FirewallRules: [{DE2E847A-37FE-48A4-92BC-43131715FA20}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI_DX12.exe => No File
FirewallRules: [{E4D81B07-9C02-4B69-97FA-93619DEFBBFE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI_DX12.exe => No File
FirewallRules: [{4B65C7AB-A4C3-4D08-BEF1-8F751A587425}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI.exe => No File
FirewallRules: [{1FF4AF32-1DDE-4ACE-B244-A132052E2C6A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\Base\Binaries\Win64Steam\CivilizationVI.exe => No File
FirewallRules: [{4244DC11-D7E6-423D-A028-9B8E23053C1F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 25\FarmingSimulator2025.exe => No File
FirewallRules: [{CF2170BE-4A5F-4A44-8E9A-D2381798A410}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 25\FarmingSimulator2025.exe => No File
FirewallRules: [TCP Query User{B936D999-7185-4B39-B09C-BF3FE8129BBB}C:\program files (x86)\steam\steamapps\common\farming simulator 25\x64\farmingsimulator2025game.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\farming simulator 25\x64\farmingsimulator2025game.exe => No File
FirewallRules: [UDP Query User{B4465918-7B66-4C98-8A79-134F4F7E818E}C:\program files (x86)\steam\steamapps\common\farming simulator 25\x64\farmingsimulator2025game.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\farming simulator 25\x64\farmingsimulator2025game.exe => No File
FirewallRules: [TCP Query User{EDFB10A3-F555-4DAC-BE43-3F0FF5E28BD7}E:\steamlibrary\steamapps\common\farming simulator 25\x64\farmingsimulator2025game.exe] => (Allow) E:\steamlibrary\steamapps\common\farming simulator 25\x64\farmingsimulator2025game.exe => No File
FirewallRules: [UDP Query User{4C57977F-DACF-403E-B2B3-AB247EEFE2D2}E:\steamlibrary\steamapps\common\farming simulator 25\x64\farmingsimulator2025game.exe] => (Allow) E:\steamlibrary\steamapps\common\farming simulator 25\x64\farmingsimulator2025game.exe => No File
FirewallRules: [TCP Query User{6E465D51-EC9D-4953-8C68-FCFB7B0232EA}C:\users\ghwolf\appdata\local\wemod\app-12.0.3\wand.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-12.0.3\wand.exe => No File
FirewallRules: [UDP Query User{F13C6347-5ADC-42B0-8555-3931F5EBCD02}C:\users\ghwolf\appdata\local\wemod\app-12.0.3\wand.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-12.0.3\wand.exe => No File
FirewallRules: [TCP Query User{10B1029D-51C4-4BE3-980A-95D21205FDFB}C:\users\ghwolf\appdata\local\wemod\app-12.3.0\wand.exe] => (Block) C:\users\ghwolf\appdata\local\wemod\app-12.3.0\wand.exe => No File
FirewallRules: [UDP Query User{017DCF8B-3AD8-495B-83DC-8A68F6F1FB63}C:\users\ghwolf\appdata\local\wemod\app-12.3.0\wand.exe] => (Block) C:\users\ghwolf\appdata\local\wemod\app-12.3.0\wand.exe => No File
FirewallRules: [{E9AE367E-801F-422C-8428-CCAE19FD29C1}] => (Allow) E:\Ghost Recon Breakpoint\GRB.exe => No File
FirewallRules: [{03C20397-9B6C-4435-B55F-50B079F7D8DE}] => (Allow) E:\Ghost Recon Breakpoint\GRB.exe => No File
FirewallRules: [TCP Query User{5D91350B-9E31-4CD0-A3B2-893CE370C545}C:\program files (x86)\steam\steamapps\common\garrysmod\bin\win64\gmod.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\garrysmod\bin\win64\gmod.exe => No File
FirewallRules: [UDP Query User{3105CBFF-08C0-48A9-A71F-3B13621AA109}C:\program files (x86)\steam\steamapps\common\garrysmod\bin\win64\gmod.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\garrysmod\bin\win64\gmod.exe => No File
FirewallRules: [{3655FAD6-33E7-480A-A99C-575D560BF6D6}] => (Allow) E:\SteamLibrary\steamapps\common\Helldivers 2\bin\helldivers2.exe => No File
FirewallRules: [{0F05CDCD-940B-45FC-8170-E78AF4073672}] => (Allow) E:\SteamLibrary\steamapps\common\Helldivers 2\bin\helldivers2.exe => No File
FirewallRules: [{D147C276-8194-4920-A990-314A9EAF6ED3}] => (Allow) D:\Steam Library\steamapps\common\Call to Arms - Gates of Hell\binaries\x64\call_to_arms.exe => No File
FirewallRules: [{4193586A-5C0A-432A-9955-C0535B8D1E1F}] => (Allow) D:\Steam Library\steamapps\common\Call to Arms - Gates of Hell\binaries\x64\call_to_arms.exe => No File
FirewallRules: [{8BDEFB11-2C76-4905-9E2E-BAD3170620CC}] => (Allow) D:\Steam Library\steamapps\common\Call to Arms - Gates of Hell\binaries\x64\call_to_arms_ed.exe => No File
FirewallRules: [{D850E8E6-E4F8-47AB-95C7-CE8E174B4CED}] => (Allow) D:\Steam Library\steamapps\common\Call to Arms - Gates of Hell\binaries\x64\call_to_arms_ed.exe => No File
FirewallRules: [TCP Query User{C740D7E0-4D04-4B14-8214-04DB74F337C1}C:\users\ghwolf\appdata\local\wemod\app-12.6.0\wand.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-12.6.0\wand.exe => No File
FirewallRules: [UDP Query User{4B044D12-2AEA-4182-BD00-0715C685E2BE}C:\users\ghwolf\appdata\local\wemod\app-12.6.0\wand.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-12.6.0\wand.exe => No File
FirewallRules: [{3E0E1188-FC42-41F0-9886-C3E8598582F5}] => (Allow) F:\SteamLibrary\steamapps\common\ELDEN RING\Game\start_protected_game.exe => No File
FirewallRules: [{3206DD12-33BE-40A4-8AB6-B7DBABC17F99}] => (Allow) F:\SteamLibrary\steamapps\common\ELDEN RING\Game\start_protected_game.exe => No File
FirewallRules: [{B4957BAA-3D95-4864-A6EB-8F3A51CED92A}] => (Allow) E:\SteamLibrary\steamapps\common\Nuclear Nightmare\NuclearNightmare.exe => No File
FirewallRules: [{A955BDC2-BC71-4830-A696-78677BCEC291}] => (Allow) E:\SteamLibrary\steamapps\common\Nuclear Nightmare\NuclearNightmare.exe => No File
FirewallRules: [TCP Query User{597CFA6A-48AB-4207-ADB3-C5CF2A020F8B}C:\users\ghwolf\appdata\local\wemod\app-12.7.0\wand.exe] => (Block) C:\users\ghwolf\appdata\local\wemod\app-12.7.0\wand.exe => No File
FirewallRules: [UDP Query User{3DFC1C3F-BB60-43A4-A885-A34326DDAE36}C:\users\ghwolf\appdata\local\wemod\app-12.7.0\wand.exe] => (Block) C:\users\ghwolf\appdata\local\wemod\app-12.7.0\wand.exe => No File
FirewallRules: [{9FF96EB8-28F7-43F3-9878-D92876410CDA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enlisted\bpreport.exe => No File
FirewallRules: [{0E854E76-BDEB-4090-ACB6-3752EA4127EC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enlisted\bpreport.exe => No File
FirewallRules: [{7650D111-9EC0-46BB-B6F3-539C4CE3DFF6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enlisted\gaijin_downloader.exe => No File
FirewallRules: [{0AC6FC6E-F836-4E95-A4FB-6F51E291E2E8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enlisted\gaijin_downloader.exe => No File
FirewallRules: [{8A74C03B-BAC6-4F11-9AC2-7548967FEDCB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enlisted\win64\enlisted.exe => No File
FirewallRules: [{FD7F0540-6CBE-47DC-9840-6832CDD7714F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enlisted\win64\enlisted.exe => No File
FirewallRules: [{FF6B1295-C94A-4529-AC7B-38B6F34389AE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enlisted\win64\enlisted-min-cpu.exe => No File
FirewallRules: [{C9383ECC-532C-4538-9DE9-E239D138C5B8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enlisted\win64\enlisted-min-cpu.exe => No File
FirewallRules: [{178FB517-7196-42BC-98F2-70451C2ACB1F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enlisted\win64\mods_packer.exe => No File
FirewallRules: [{1D367CF4-F298-422F-BBAC-D346EFFC5171}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enlisted\win64\mods_packer.exe => No File
FirewallRules: [{3CD56CB4-537E-4D1A-86D6-8D480640AA05}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enlisted\win64\crashpad_handler.exe => No File
FirewallRules: [{F1B5C156-38EF-42A7-9F88-C898EC409846}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enlisted\win64\crashpad_handler.exe => No File
FirewallRules: [{3464F412-326C-4DEC-81D0-0D40D139C492}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enlisted\BattlEye\BEService_x64.exe => No File
FirewallRules: [{ABF9D2B8-CA67-46C5-8D0D-E271055905BB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Enlisted\BattlEye\BEService_x64.exe => No File
FirewallRules: [TCP Query User{34A623C3-1426-4032-AE4B-6BBD5A8C06C5}C:\program files (x86)\steam\steamapps\common\arc raiders\pioneergame\binaries\win64\pioneergame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\arc raiders\pioneergame\binaries\win64\pioneergame.exe => No File
FirewallRules: [UDP Query User{6439DF0D-0C8D-4567-A919-980A6A98728F}C:\program files (x86)\steam\steamapps\common\arc raiders\pioneergame\binaries\win64\pioneergame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\arc raiders\pioneergame\binaries\win64\pioneergame.exe => No File
FirewallRules: [TCP Query User{5A0EFA01-3A7F-4A80-869E-A698D9F75678}C:\users\ghwolf\downloads\steambuild1.5\flipwitch.exe] => (Allow) C:\users\ghwolf\downloads\steambuild1.5\flipwitch.exe => No File
FirewallRules: [UDP Query User{51B91DBB-49F9-4925-B091-0157D027C77D}C:\users\ghwolf\downloads\steambuild1.5\flipwitch.exe] => (Allow) C:\users\ghwolf\downloads\steambuild1.5\flipwitch.exe => No File
FirewallRules: [{97C6D250-5361-4F3A-8906-B62C0B94A776}] => (Allow) F:\SteamLibrary\steamapps\common\Space Marine 2\Warhammer 40000 Space Marine 2.exe => No File
FirewallRules: [{4CE4BFFA-9E8F-4C6D-9F12-425A20D039CB}] => (Allow) F:\SteamLibrary\steamapps\common\Space Marine 2\Warhammer 40000 Space Marine 2.exe => No File
FirewallRules: [TCP Query User{DB36170A-267A-40D4-BD63-2D75AD6484F6}C:\users\ghwolf\appdata\local\wemod\app-12.8.0\wand.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-12.8.0\wand.exe => No File
FirewallRules: [UDP Query User{784293D7-98FD-44AE-9B49-A9199F97CEFA}C:\users\ghwolf\appdata\local\wemod\app-12.8.0\wand.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-12.8.0\wand.exe => No File
FirewallRules: [TCP Query User{84C60DA3-CFE4-4C22-8F6D-61767E4FB336}F:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery-d.exe] => (Allow) F:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery-d.exe => No File
FirewallRules: [UDP Query User{2939E676-7AC4-44C9-A41E-4F4B89456EFA}F:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery-d.exe] => (Allow) F:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery-d.exe => No File
FirewallRules: [TCP Query User{5CC7F064-EDF3-4CA7-8F26-55AD6A6C5650}C:\users\ghwolf\appdata\local\wemod\app-12.9.0\wand.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-12.9.0\wand.exe => No File
FirewallRules: [UDP Query User{D917C152-2757-4E2B-9F13-7FA56A5221DA}C:\users\ghwolf\appdata\local\wemod\app-12.9.0\wand.exe] => (Allow) C:\users\ghwolf\appdata\local\wemod\app-12.9.0\wand.exe => No File
FirewallRules: [TCP Query User{7192FC9F-B8EC-46E3-AD6F-0C7CD62C796C}C:\users\ghwolf\appdata\local\wemod\app-12.9.1\wand.exe] => (Block) C:\users\ghwolf\appdata\local\wemod\app-12.9.1\wand.exe => No File
FirewallRules: [UDP Query User{89903DA6-797C-4AE9-9E3C-E13996892851}C:\users\ghwolf\appdata\local\wemod\app-12.9.1\wand.exe] => (Block) C:\users\ghwolf\appdata\local\wemod\app-12.9.1\wand.exe => No File
FirewallRules: [{E3CD2F9F-6D9A-4F0F-B511-ACAFC0BEA30D}] => (Allow) E:\SteamLibrary\steamapps\common\Deadlock\game\bin\win64\deadlock.exe => No File
FirewallRules: [{07724424-3859-4F69-9BB1-CD9ACC89761F}] => (Allow) E:\SteamLibrary\steamapps\common\Deadlock\game\bin\win64\deadlock.exe => No File
FirewallRules: [{BBD2B393-0753-4EED-BBE1-98D4136EB93F}] => (Allow) E:\SteamLibrary\steamapps\common\Call of Duty Black Ops III\BlackOps3.exe => No File
FirewallRules: [{5DB49FCB-B339-4C34-B6AD-7B1CC23D71DB}] => (Allow) E:\SteamLibrary\steamapps\common\Call of Duty Black Ops III\BlackOps3.exe => No File
FirewallRules: [TCP Query User{8EB82B85-220F-4DBA-ADD5-9D75C6430B97}E:\downloads\nitrox_1.8.1.0_win_x64\nitrox.server.subnautica.exe] => (Allow) E:\downloads\nitrox_1.8.1.0_win_x64\nitrox.server.subnautica.exe => No File
FirewallRules: [UDP Query User{AB6BA613-DB54-47A1-9451-EF7E3B18589B}E:\downloads\nitrox_1.8.1.0_win_x64\nitrox.server.subnautica.exe] => (Allow) E:\downloads\nitrox_1.8.1.0_win_x64\nitrox.server.subnautica.exe => No File
FirewallRules: [TCP Query User{47AC8141-1151-4680-A6C0-3A13A5C6A36F}E:\xbox\back 4 blood\content\gobi\binaries\wingdk\back4blood.exe] => (Allow) E:\xbox\back 4 blood\content\gobi\binaries\wingdk\back4blood.exe => No File
FirewallRules: [UDP Query User{F783B2ED-B748-47A3-A87C-FE76A82893E8}E:\xbox\back 4 blood\content\gobi\binaries\wingdk\back4blood.exe] => (Allow) E:\xbox\back 4 blood\content\gobi\binaries\wingdk\back4blood.exe => No File
FirewallRules: [{84F1468E-C03A-49E6-ADC3-5DE33A0AF1AF}] => (Allow) E:\SteamLibrary\steamapps\common\inZOI\inZOI.exe => No File
FirewallRules: [{FC945A96-D817-4ACF-9DA1-EA5483528A71}] => (Allow) E:\SteamLibrary\steamapps\common\inZOI\inZOI.exe => No File
FirewallRules: [TCP Query User{63AF8385-E837-4382-8C25-FD071BAB5382}E:\steamlibrary\steamapps\common\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe => No File
FirewallRules: [UDP Query User{9BA69134-E243-413B-B1CE-A1861EAC8CE9}E:\steamlibrary\steamapps\common\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe => No File
FirewallRules: [{651E24BA-0B55-4D0B-B6FC-5BDB53548A2E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Feed and Grow Fish\net48\FeedAndGrowFishLauncher.exe => No File
FirewallRules: [{8D775670-619F-4EEB-A68F-BD9CE9CD1350}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Feed and Grow Fish\net48\FeedAndGrowFishLauncher.exe => No File
FirewallRules: [{CE565208-6361-42DF-BA2D-CD6DC5E38DA4}] => (Allow) F:\SteamLibrary\steamapps\common\5K\WindowsNoEditor\Pandemic.exe => No File
FirewallRules: [{A8AE8983-A6F3-43DE-B708-56A9EFEC6E93}] => (Allow) F:\SteamLibrary\steamapps\common\5K\WindowsNoEditor\Pandemic.exe => No File
FirewallRules: [TCP Query User{3539F420-AC9D-49CE-AD4A-4F730178D2D4}F:\steamlibrary\steamapps\common\5k\windowsnoeditor\pandemic\binaries\win64\pandemic.exe] => (Allow) F:\steamlibrary\steamapps\common\5k\windowsnoeditor\pandemic\binaries\win64\pandemic.exe => No File
FirewallRules: [UDP Query User{D77EEE85-6289-421F-8BEC-649477DE20F9}F:\steamlibrary\steamapps\common\5k\windowsnoeditor\pandemic\binaries\win64\pandemic.exe] => (Allow) F:\steamlibrary\steamapps\common\5k\windowsnoeditor\pandemic\binaries\win64\pandemic.exe => No File
FirewallRules: [TCP Query User{0D76D7C9-E24E-4901-98D7-809EE3A4B79C}F:\steamlibrary\steamapps\common\arma 3\arma3_x64.exe] => (Allow) F:\steamlibrary\steamapps\common\arma 3\arma3_x64.exe => No File
FirewallRules: [UDP Query User{A239D230-953B-4455-9E35-A9D9A5013E03}F:\steamlibrary\steamapps\common\arma 3\arma3_x64.exe] => (Allow) F:\steamlibrary\steamapps\common\arma 3\arma3_x64.exe => No File
FirewallRules: [{685DDFC2-FA47-4452-99F9-36A8D6C3D2E0}] => (Allow) C:\Program Files\Neverness To Everness\NTEGlobal\NTEGlobalGame.exe => No File
FirewallRules: [{7F797B2E-C883-4D10-86C8-766E1E6936D1}] => (Allow) C:\Program Files\Neverness To Everness\NTEGlobal\NTEGlobalGame.exe => No File
FirewallRules: [{21847377-5C24-4423-BA47-D3AA268E0625}] => (Allow) C:\Program Files\Neverness To Everness\NTEGlobal\NTEGlobalUpdate.exe => No File
FirewallRules: [{97A8D098-64AB-4054-A380-19C2F0AAADBC}] => (Allow) C:\Program Files\Neverness To Everness\NTEGlobal\NTEGlobalUpdate.exe => No File
FirewallRules: [{5462A46E-55E6-4AE6-AB65-0DA085F05190}] => (Allow) C:\Program Files\Neverness To Everness\NTEGlobal\NTEGlobalBrowser.exe => No File
FirewallRules: [{878C9C49-DD90-4F8B-84AA-016EE4C58DB7}] => (Allow) C:\Program Files\Neverness To Everness\NTEGlobal\NTEGlobalBrowser.exe => No File
FirewallRules: [{12903238-86D1-408A-9F69-A325657BDF79}] => (Allow) C:\Program Files\Neverness To Everness\NTEGlobal\NTEGlobalWebBooster.exe => No File
FirewallRules: [{2FD40F6C-2D5A-4E80-AB4B-C21A00ECFB6F}] => (Allow) C:\Program Files\Neverness To Everness\NTEGlobal\NTEGlobalWebBooster.exe => No File
FirewallRules: [{D16580E2-5D7B-4740-AD9F-3530F3A08A6E}] => (Allow) C:\Program Files\Neverness To Everness\Client\WindowsNoEditor\HT\Binaries\Win64\HTGame.exe => No File
FirewallRules: [{A3F15F35-D758-4C6B-A2CD-C5FBDE1F423A}] => (Allow) C:\Program Files\Neverness To Everness\Client\WindowsNoEditor\HT\Binaries\Win64\HTGame.exe => No File
FirewallRules: [{6146BEA4-B81C-4AE1-98FC-8F4DD4FCF909}] => (Block) C:\Program Files (x86)\Overwolf\0.300.0.11\OverwolfBrowser.exe => No File
FirewallRules: [{9ED60491-471F-4CA9-AF7F-8034F801C57A}] => (Block) C:\Program Files (x86)\Overwolf\0.300.0.11\OverwolfBrowser.exe => No File
FirewallRules: [{D46774EC-0285-4C47-ABFE-F918EF6C50B4}] => (Allow) C:\Program Files (x86)\Overwolf\0.300.0.11\OverwolfBrowser.exe => No File
FirewallRules: [{625C00A4-5A89-46B9-A4F8-56543C1C5778}] => (Allow) C:\Program Files (x86)\Overwolf\0.300.0.11\OverwolfBrowser.exe => No File
FirewallRules: [{2E1A982E-7E39-44ED-9527-8134C8E576C9}] => (Block) C:\Program Files (x86)\Overwolf\0.300.0.11\OverwolfBrowser.exe => No File
FirewallRules: [{A96D375E-C6B6-4946-B6FF-2613D1D906DF}] => (Block) C:\Program Files (x86)\Overwolf\0.300.0.11\OverwolfBrowser.exe => No File
FirewallRules: [{039BB036-2C45-4049-9041-7A58F1F0DE10}] => (Block) C:\Program Files (x86)\Overwolf\0.300.0.11\OverwolfBrowser.exe => No File
FirewallRules: [{5BAB17C4-0464-48C0-B58E-6B3D36AE9E94}] => (Block) C:\Program Files (x86)\Overwolf\0.300.0.11\OverwolfBrowser.exe => No File
FirewallRules: [TCP Query User{37CD24DE-C0E3-4AFA-9F46-94C0D03BC1F9}D:\grand theft auto v legacy\gta5.exe] => (Allow) D:\grand theft auto v legacy\gta5.exe => No File
FirewallRules: [UDP Query User{B42445A4-B354-475D-A6DC-9C7514760E00}D:\grand theft auto v legacy\gta5.exe] => (Allow) D:\grand theft auto v legacy\gta5.exe => No File
FirewallRules: [TCP Query User{B3E2EDFE-BBB8-42B1-834A-FF3576F7FA78}C:\users\ghwolf\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_chromebrowser] => (Allow) C:\users\ghwolf\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_chromebrowser => No File
FirewallRules: [UDP Query User{67B12CBC-5D1B-45BD-AB5C-1208B1D16165}C:\users\ghwolf\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_chromebrowser] => (Allow) C:\users\ghwolf\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_chromebrowser => No File
FirewallRules: [TCP Query User{B9C3091F-A48F-4474-97C4-F80385640C34}D:\fivem\fivem.app\data\cache\subprocess\fivem_chromebrowser] => (Allow) D:\fivem\fivem.app\data\cache\subprocess\fivem_chromebrowser => No File
FirewallRules: [UDP Query User{4E32DAFB-F9B3-4FBE-B533-43B976B7E50B}D:\fivem\fivem.app\data\cache\subprocess\fivem_chromebrowser] => (Allow) D:\fivem\fivem.app\data\cache\subprocess\fivem_chromebrowser => No File
FirewallRules: [TCP Query User{2155FC70-0A90-42A7-A57D-71DE895B4016}C:\program files\neverness to everness\nteglobal\nteglobalbrowser.exe] => (Block) C:\program files\neverness to everness\nteglobal\nteglobalbrowser.exe => No File
FirewallRules: [UDP Query User{01FF5E01-024F-47A7-9629-F987DB06850F}C:\program files\neverness to everness\nteglobal\nteglobalbrowser.exe] => (Block) C:\program files\neverness to everness\nteglobal\nteglobalbrowser.exe => No File
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
S3 cpuz158; C:\WINDOWS\temp\cpuz158\cpuz158_x64.sys [44592 2024-11-19] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
S3 cpuz159; C:\WINDOWS\temp\cpuz159\cpuz159_x64.sys [44680 2024-12-23] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
2026-06-20 07:35 - 2026-06-20 07:35 - 000115144 _____ C:\Users\GHWolf\ECluster128.exe
2026-06-20 07:35 - 2026-06-20 07:35 - 000000000 ____D C:\ProgramData\poolcheck
File: C:\WINDOWS\system32\nmscrub.exe
File: C:\Program Files (x86)\Steam\steamapps\common\BongoCat\BongoCat.exe
File: C:\Users\GHWolf\AppData\Local\Stoat\update.exe
File: C:\Users\GHWolf\AppData\Roaming\0install.net\desktop-integration\stubs\1eae01f3cdb5ff0ecf683b15a60a1489573c1188cb34abc205fcf7a924b4e54d\auto-start.exe
StartPowerShell:
# This snippet re-enables Windows Defender and applies optimized settings to ensure high protection against malware
# Enable real-time protection
Set-MpPreference -DisableRealtimeMonitoring $false
# Enable behavioural protection
Set-MpPreference -DisableBehaviorMonitoring $false
# Enable PUP detection
Set-MpPreference -PUAProtection Enabled
# Enable cloud protection to level 4 - aggressively block unknowns and apply additional protection measures, alternatively use 2 for lower protection or 0 for default
Set-MpPreference -CloudBlockLevel 4
# Send advanced information about malicious/unwanted software present on your device
Set-MpPreference -MAPSReporting 2
# Send safe samples automatically to Microsoft
Set-MpPreference -SubmitSamplesConsent 1
# Enables inspection of HTTP traffic to detect malicious websites
Set-MpPreference -EnableNetworkProtection Enabled
# Enables block at first seen
Set-MpPreference -DisableBlockAtFirstSeen $false
# Allows scanning of archive files, such as .zip and .cab files for malware/PUP
Set-MpPreference -DisableArchiveScanning $false
# Enables automatic scanning of USB & removal drives
Set-MpPreference -DisableRemovableDriveScanning $false
# Enables scanning of network files
Set-MpPreference -DisableScanningNetworkFiles $false
# Forces signature check before running a scan
Set-MpPreference -CheckForSignaturesBeforeRunningScan $true
# Extends cloud check timer from default 10 to 30 seconds
Set-MpPreference -CloudExtendedTimeout 30
# Enables automatic scanning of all downloaded files and attachments
Set-MpPreference -DisableIOAVProtection $false
# Enables script detection
Set-MpPreference -DisableScriptScanning $false
# Disables automatic exclusions from scanning
Set-MpPreference -DisableAutoExclusions 1
# Enables scanning of mapped network drives
Set-MpPreference -DisableScanningMappedNetworkDrivesForFullScan 0
# Enables scanning of email files
Set-MpPreference -DisableEmailScanning 0
# Enables blocking of malicious domains and IP's on DNS level
Set-MpPreference -EnableDnsSinkhole $true
# Enables signature updates every 12 hours
Set-MpPreference -SignatureUpdateInterval 12
# Enables automatic quarantine for threats labelled as high and severe
Set-MpPreference -HighThreatDefaultAction Quarantine
Set-MpPreference -SevereThreatDefaultAction Quarantine
# Updates signatures
Update-MpSignature
EndPowerShell:
StartPowershell:
# Replace /scanonly with /clean if you also want to delete items -- however, this will activate a trial license on the system, I do not recommend it
$hmpExe = "$env:TEMP\HitmanPro_x64.exe"
$logFile = "$env:TEMP\HitmanPro_ScanLog.txt"
Invoke-WebRequest -Uri "https://dl.surfright.nl/HitmanPro_x64.exe" -OutFile $hmpExe -UseBasicParsing
$proc = Start-Process $hmpExe -ArgumentList "/ews","/scanonly","/noinstall","/log=`"$logFile`"","/logtype=txt" -Wait -PassThru
if (!(Test-Path $logFile)) { Write-Host "Scan failed (exit $($proc.ExitCode))"; exit 1 }
Get-Content $logFile -Encoding Unicode
EndPowershell:
StartPowerShell:
# Downloads newest AdwCleaner version directly from Malwarebytes, performs an update, scans, cleans and writes the log in console
# Does not clean preinstalled objects, only PUP/Adware
# If you would like to delete preinstalled objects, add an argument /preinstalled to the /clean argument
# If you would like to only scan with it, change the argument from /clean to /scan
# NOTE: For the sake of users from Asia (primarily China), do not use the clean option. It will very likely remove a lot of their important software.
New-Item -ItemType Directory -Force -Path "$env:SystemDrive\AdwCleaner" | Out-Null
Invoke-WebRequest -Uri "https://adwcleaner.malwarebytes.com/adwcleaner?channel=release" -OutFile "$env:SystemDrive\AdwCleaner\AdwCleanerFRST.exe"
Start-Process -FilePath "$env:SystemDrive\AdwCleaner\AdwCleanerFRST.exe" -ArgumentList "/eula" -Wait -WindowStyle Hidden
$logFile = "$env:SystemDrive\AdwCleaner\AdwCleanerOutputFRST.txt"
Start-Process -FilePath "$env:SystemDrive\AdwCleaner\AdwCleanerFRST.exe" -ArgumentList "/noreboot /clean" -Wait -WindowStyle Hidden -RedirectStandardOutput $logFile
Get-Content $logFile -Encoding Unicode
Remove-Item -Path $logFile -Force -ErrorAction SilentlyContinue
EndPowerShell:
Comment: Verify that Discord does not have any injected code to intercept personal data. If anything is prompted here, it needs to be checked that it isn't malicious code.
Powershell: @("$env:APPDATA","$env:LOCALAPPDATA") | ForEach-Object { Get-ChildItem $_ -Recurse -Filter "index.js" -ErrorAction SilentlyContinue } | Where-Object { $_.FullName -match "discord_desktop_core" } | ForEach-Object { Write-Host "--- $($_.FullName) ---"; (Get-Content $_.FullName -Raw).Substring(0,[Math]::Min(2000,(Get-Content $_.FullName -Raw).Length)) }
Comment: Remove unwanted files from common folders using native removal power of Farbar to include remove on reboot if needed. Please double check the user does not have any applications incorrectly installed in the directories listed below.
C:\ProgramData\*.a3x
C:\ProgramData\*.ahk
C:\ProgramData\*.au3
C:\ProgramData\*.bat
C:\ProgramData\*.cab
C:\ProgramData\*.cmd
C:\ProgramData\*.com
C:\ProgramData\*.dll
C:\ProgramData\*.exe
C:\ProgramData\*.hta
C:\ProgramData\*.jar
C:\ProgramData\*.js
C:\ProgramData\*.jse
C:\ProgramData\*.lnk
C:\ProgramData\*.pif
C:\ProgramData\*.ps1
C:\ProgramData\*.py
C:\ProgramData\*.pyc
C:\ProgramData\*.pyd
C:\ProgramData\*.scr
C:\ProgramData\*.tmp
C:\ProgramData\*.vbe
C:\ProgramData\*.vbs
C:\ProgramData\*.wsf
C:\ProgramData\*.wsh
C:\ProgramData\*.zip
C:\ProgramData\*.rar
C:\ProgramData\*.7z
C:\Users\*\AppData\Roaming\*.au3
C:\Users\*\AppData\Roaming\*.bat
C:\Users\*\AppData\Roaming\*.cab
C:\Users\*\AppData\Roaming\*.cmd
C:\Users\*\AppData\Roaming\*.com
C:\Users\*\AppData\Roaming\*.dll
C:\Users\*\AppData\Roaming\*.exe
C:\Users\*\AppData\Roaming\*.hta
C:\Users\*\AppData\Roaming\*.jar
C:\Users\*\AppData\Roaming\*.js
C:\Users\*\AppData\Roaming\*.jse
C:\Users\*\AppData\Roaming\*.lnk
C:\Users\*\AppData\Roaming\*.pif
C:\Users\*\AppData\Roaming\*.ps1
C:\Users\*\AppData\Roaming\*.py
C:\Users\*\AppData\Roaming\*.pyc
C:\Users\*\AppData\Roaming\*.pyd
C:\Users\*\AppData\Roaming\*.scr
C:\Users\*\AppData\Roaming\*.tmp
C:\Users\*\AppData\Roaming\*.vbe
C:\Users\*\AppData\Roaming\*.vbs
C:\Users\*\AppData\Roaming\*.wsf
C:\Users\*\AppData\Roaming\*.wsh
C:\Users\*\AppData\Roaming\*.zip
C:\Users\*\AppData\Roaming\*.rar
C:\Users\*\AppData\Roaming\*.7z
C:\Users\CurrentUserName\AppData\Local\*.a3x
C:\Users\CurrentUserName\AppData\Local\*.ahk
C:\Users\CurrentUserName\AppData\Local\*.au3
C:\Users\CurrentUserName\AppData\Local\*.bat
C:\Users\CurrentUserName\AppData\Local\*.cab
C:\Users\CurrentUserName\AppData\Local\*.cmd
C:\Users\CurrentUserName\AppData\Local\*.com
C:\Users\CurrentUserName\AppData\Local\*.dll
C:\Users\CurrentUserName\AppData\Local\*.exe
C:\Users\CurrentUserName\AppData\Local\*.hta
C:\Users\CurrentUserName\AppData\Local\*.jar
C:\Users\CurrentUserName\AppData\Local\*.js
C:\Users\CurrentUserName\AppData\Local\*.jse
C:\Users\CurrentUserName\AppData\Local\*.lnk
C:\Users\CurrentUserName\AppData\Local\*.pif
C:\Users\CurrentUserName\AppData\Local\*.ps1
C:\Users\CurrentUserName\AppData\Local\*.py
C:\Users\CurrentUserName\AppData\Local\*.pyc
C:\Users\CurrentUserName\AppData\Local\*.pyd
C:\Users\CurrentUserName\AppData\Local\*.scr
C:\Users\CurrentUserName\AppData\Local\*.tmp
C:\Users\CurrentUserName\AppData\Local\*.vbe
C:\Users\CurrentUserName\AppData\Local\*.vbs
C:\Users\CurrentUserName\AppData\Local\*.wsf
C:\Users\CurrentUserName\AppData\Local\*.wsh
C:\Users\CurrentUserName\AppData\Local\*.zip
C:\Users\CurrentUserName\AppData\Local\*.rar
C:\Users\CurrentUserName\AppData\Local\*.7z
C:\Users\CurrentUserName\AppData\Roaming\*.a3x
C:\Users\CurrentUserName\AppData\Roaming\*.ahk
C:\Users\CurrentUserName\AppData\Roaming\*.au3
C:\Users\CurrentUserName\AppData\Roaming\*.bat
C:\Users\CurrentUserName\AppData\Roaming\*.cab
C:\Users\CurrentUserName\AppData\Roaming\*.cmd
C:\Users\CurrentUserName\AppData\Roaming\*.com
C:\Users\CurrentUserName\AppData\Roaming\*.dll
C:\Users\CurrentUserName\AppData\Roaming\*.exe
C:\Users\CurrentUserName\AppData\Roaming\*.hta
C:\Users\CurrentUserName\AppData\Roaming\*.jar
C:\Users\CurrentUserName\AppData\Roaming\*.js
C:\Users\CurrentUserName\AppData\Roaming\*.jse
C:\Users\CurrentUserName\AppData\Roaming\*.lnk
C:\Users\CurrentUserName\AppData\Roaming\*.pif
C:\Users\CurrentUserName\AppData\Roaming\*.ps1
C:\Users\CurrentUserName\AppData\Roaming\*.py
C:\Users\CurrentUserName\AppData\Roaming\*.pyc
C:\Users\CurrentUserName\AppData\Roaming\*.pyd
C:\Users\CurrentUserName\AppData\Roaming\*.scr
C:\Users\CurrentUserName\AppData\Roaming\*.tmp
C:\Users\CurrentUserName\AppData\Roaming\*.vbe
C:\Users\CurrentUserName\AppData\Roaming\*.vbs
C:\Users\CurrentUserName\AppData\Roaming\*.wsf
C:\Users\CurrentUserName\AppData\Roaming\*.wsh
C:\Users\CurrentUserName\AppData\Roaming\*.zip
C:\Users\CurrentUserName\AppData\Roaming\*.rar
C:\Users\CurrentUserName\AppData\Roaming\*.7z
Comment: Force policy removal
C:\Windows\System32\GroupPolicyUsers
C:\Windows\System32\GroupPolicy
Comment: System repair commands
CMD: DISM.exe /Online /Cleanup-image /Restorehealth
CMD: SFC.exe /scannow
Comment: Network reset commands
CMD: netsh int ip reset
CMD: netsh int ipv6 reset
CMD: ipconfig /flushDNS
CMD: netsh winsock reset catalog
Comment: Additional temp file removal
C:\Windows\System32\config\systemprofile\AppData\Local\*.tmp
C:\WINDOWS\system32\*.tmp
C:\WINDOWS\syswow64\*.tmp
C:\Users\CurrentUserName\AppData\Local\Temp\*
C:\Windows\Temp\*
C:\Windows\SystemTemp\*
EmptyTemp:
End::
Warning
Executing a Fixlist on the wrong system may permanently damage it. Continue only if this link was meant for you.
To view the content, acknowledge this warning.