It's an incredibly entertaining game to play overall, and I love the artwork throughout also! Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\SysWOW64\et-EE ==================== Other Areas =========================== By the time I had realised that the whole thing was suspicious I had already downloaded and ran the installer exe. HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\MusNotificationUx.exe => removed successfully 2022-09-13 06:48 - 2022-01-04 13:46 - 003103744 _____ (Microsoft Corporation) C:\windows\SysWOW64\PrintConfig.dll Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\iFi (by AMR) HD USB Audio Control Panel.lnk [2022-05-13] 2022-09-21 08:33 - 2022-05-13 18:02 - 000000000 ____D C:\Users\Tyson\AppData\LocalLow\Mozilla Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\iFi (by AMR) HD USB Audio Control Panel.lnk [2022-05-13] Loaded Profiles: Tyson ==================== Drives ================================ (If an entry is included in the fixlist, the file/folder will be moved.) S2 uhssvc; "C:\Program Files\Microsoft Update Health Tools\uhssvc.exe" [X] 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\SysWOW64\gl-ES 2022-09-12 09:31 - 2022-09-12 09:31 - 000001088 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Audition 2022.lnk (If an entry is included in the fixlist, it will be removed from the registry. . R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172264 2022-08-03] (Adobe Inc. -> Adobe Inc.) ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2022-09-07] (Adobe Inc. -> ) 2022-09-21 08:28 - 2022-09-21 08:35 - 000000000 ___RD C:\Users\Tyson\OneDrive AV: Symantec Endpoint Protection (Enabled - Up to date) {FC90FA28-5CE6-9068-FC99-1C67339C0047} Start using snakecord in your project by running `npm i snakecord`. 2022-09-19 00:28 - 2022-09-19 00:28 - 000948056 _____ (Windows Win 7 DDK provider) C:\windows\system32\oculusvadapo.dll Description: Local Hostname InWin809.local already in use; will try InWin809-2.local instead 2022-09-07 02:09 - 2022-09-07 02:09 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\IGCS DiagTrack => service removed successfully (If an entry is included in the fixlist, it will be removed from the registry. Adobe Premiere Pro 2022 (HKLM-x32\\PPRO_22_6_2) (Version: 22.6.2 - Adobe Inc.) R2 CorsairService; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe [84016 2022-08-05] (Corsair Memory, Inc. -> Corsair Memory, Inc.) 2022-08-31 20:02 - 2022-09-01 05:48 - 000001056 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom.lnk Resetting , OK! The welcome screen then shows up, including some super cute and amazing artwork! Description: A timeout was reached (45000 milliseconds) while waiting for the Intel TPM Provisioning Service service to connect. 2022-09-01 05:11 - 2022-08-02 02:04 - 000001388 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk 2022-08-25 16:41 - 2021-06-05 22:10 - 000000000 ____D C:\windows\system32\NDF Removeproxy: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeraCopy.lnk => ":F37336C997" ADS removed successfully 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\system32\setup 2022-08-30 07:22 - 2022-08-30 07:23 - 000000000 ____D C:\Program Files (x86)\Microsoft DirectX SDK (June 2010) HKLM\\Run: [CORSAIR iCUE 4 Software] => C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUE Launcher.exe [185392 2022-08-05] (Corsair Memory, Inc. -> Corsair Memory, Inc.) FirewallRules: [{A0FA9184-5645-463C-B4E7-F76F75DAF8F4}] => (Allow) D:\Steam\SteamApps\common\Devour\DEVOUR.exe () [File not signed] Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation) IFEO\EOSnotify.exe: [Debugger] / (C:\Program Files\LGHUB\lghub.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe 2022-06-27 00:22 - 2022-06-27 00:22 - 000184832 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Xml.dll The game is quite appreciative too I mean, who doesnt want to see the YOU HECKIN WON! message despite getting only a few points. FirewallRules: [{EF488EFC-6792-4BC0-811E-535FD1B638AE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation) ======= Escape from Tarkov (HKLM-x32\\EscapeFromTarkov) (Version: - Battlestate Games) TeraCopy (HKLM\\{F8B0BB18-B1E6-4821-8C5B-883AA5DE3EEA}) (Version: 3.9.0 - Code Sector) ========= End of CMD: ========= FirewallRules: [{21080E56-A2B6-4554-9FF2-AEA1CE04EDEF}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) R2 GigabyteUpdateService; C:\windows\system32\GigabyteUpdateService.exe [869032 2022-09-18] (GIGA-BYTE Technology Co., Ltd. -> GIGA-BYTE TECHNOLOGY CO., LTD.) Once you've clicked on it, you'll then be ready to proceed to the next step. The file will not be moved unless listed separately.) Eat as many items as possible without crashing, and try to grow your snake to be as long as possible. 2022-09-01 05:21 - 2022-08-03 03:25 - 000000000 ____D C:\Users\Tyson\AppData\Local\FiveM 2022-09-03 23:15 - 2022-09-04 01:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio 2022-08-24 16:24 - 2022-08-24 16:24 - 000000000 ____D C:\Users\Tyson\AppData\Local\Battlestate Games But note some of the fix may adversely affect your system if either Windows or Office is not properly activated. R3 iFiHDUSBAudio; C:\windows\System32\drivers\iFiHDUSBAudio_x64.sys [286456 2016-02-04] (Abbingdon Global Limited -> ) 2021-06-05 22:08 - 2021-06-05 22:08 - 000000824 _____ C:\windows\system32\drivers\etc\hosts 2022-09-18 23:19 - 2022-09-18 23:21 - 000000000 ____D C:\AdwCleaner R3 logi_joy_vir_hid; C:\windows\system32\drivers\logi_joy_vir_hid.sys [21704 2022-05-13] (WDKTestCert builder,132743893872553407 -> Logitech) The number of points you'll get per item will also be displayed along with the instructions, so make sure to keep note of these also, as you'll then know which items accrue the most points within the game. FirewallRules: [{E1EB7CDD-847E-4728-907A-6C4498176403}] => (Allow) C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\14.3.7393.4000.105\Bin64\snac64.exe (Symantec Corporation -> Broadcom) AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk:09A0A90EF3 [3442] 2022-09-15 21:55 - 2022-05-24 21:19 - 000000000 ____D C:\Program Files\Common Files\Adobe HKU\S-1-5-21-479614032-2295716511-2174497491-1002\\StartupApproved\Run: => "Discord" FirewallRules: [{E73436CE-7963-4E98-A7AE-B620A32AEA57}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) (C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe ->) (Adobe Inc. -> Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\system32\vi-VN ==================== Scheduled Tasks (Whitelisted) ============ Coolmath's snake game is different from most. Resetting Anycast Address, OK! AAAA 2001:8003:3A5B:C700:0000:0000:0000:0F40 S3 SymEvnt; C:\ProgramData\Symantec\Symantec Endpoint Protection\14.3.7393.4000.105\Data\SymPlatform\SymEvnt.sys [957928 2022-09-08] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\ShellComponents NOTE: /r/discordapp is unofficial & community-run. FirewallRules: [UDP Query User{4AE5D077-AE9D-4420-B528-E7E985BBD11D}C:\users\tyson\appdata\local\fivem\\data\cache\subprocess\fivem_gtaprocess.exe] => (Allow) C:\users\tyson\appdata\local\fivem\\data\cache\subprocess\fivem_gtaprocess.exe => No File Adobe Notification Client -> C:\Program Files\WindowsApps\AdobeNotificationClient_3.0.1.1_x86__enpm4xejd91yc [2022-06-13] (Adobe Systems Incorporated) Start:: RealNacho1! 2022-09-21 08:33 - 2022-05-13 20:36 - 000000000 ____D C:\Users\Tyson\AppData\Local\LGHUB 2022-08-22 04:13 - 2022-07-08 17:37 - 001847296 _____ (Corsair Memory, Inc.) C:\windows\system32\CorsairGamingAudioPO64.dll FirewallRules: [{AEDEA38F-D316-4885-83E5-DC6351F555FD}] => (Allow) D:\Steam\SteamApps\common\Half-Life\hl.exe (Valve -> Valve) ShortcutTarget: MEGAsync.lnk -> C:\Users\Tyson\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited -> Mega Limited) 2022-09-13 06:48 - 2022-09-13 06:48 - 000530944 _____ (curl, hxxps:// C:\windows\system32\curl.exe Task: {0F8F6243-BFA8-49C8-80F9-252B656FCEA0} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-05-05] (Nvidia Corporation -> NVIDIA Corporation) Manufacturer: Intel Corporation Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Error: (09/18/2022 11:23:03 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) R3 logi_joy_xlcore; C:\windows\system32\drivers\logi_joy_xlcore.sys [62904 2022-05-13] (WDKTestCert builder,132743893872553407 -> Logitech) 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\SysWOW64\lv-LV ==================== Event log errors: ======================== 2022-08-27 00:56 - 2022-05-13 18:58 - 000000000 ____D C:\windows\system32\appmgmt HKLM\\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [362056 2022-05-05] (Apple Inc. -> Apple Inc.) FirewallRules: [{BF7B5D38-83F1-406F-A470-CEEDC8D793B2}] => (Allow) D:\Steam\SteamApps\common\FPSAimTrainer\FPSAimTrainer.exe (Int3 Software AB -> Int3 Software AB) FirewallRules: [{3C873ABC-D1ED-41A9-B424-644DB100D92C}] => (Allow) D:\Steam\SteamApps\common\Crusader Kings III\launcher\dowser.exe (Paradox Interactive AB (publ) -> ) Task: {8B5D0AB1-09DB-4A6C-B739-540592774668} - System32\Tasks\Symantec Endpoint Protection\Symantec Endpoint Protection Error Processor => C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\14.3.7393.4000.105\Bin\SymErr.exe [91048 2022-02-25] (Symantec Corporation -> Broadcom) R1 BHDrvx64; C:\ProgramData\Symantec\Symantec Endpoint Protection\14.3.7393.4000.105\Data\Definitions\BASHDefs\20220919.011\BHDrvx64.sys [1672672 2022-08-11] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) 2022-09-18 23:28 - 2022-08-02 16:26 - 000882856 _____ C:\windows\system32\wpbbin.exe Task: {3E63459F-454B-4380-9128-A078BD56ABF3} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1654272 2022-05-05] (Nvidia Corporation -> NVIDIA Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden 2022-08-23 13:40 - 2022-01-04 13:42 - 000003536 _____ C:\windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA The objective of the game is to guide the snake around the screen, eating as many items as possible without crashing into the walls or your own tail. BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2022-04-05] (Microsoft Corporation -> Microsoft Corporation) how to find support id on ps4 jabsco diaphragm pump parts Tech 10 ft galvanized fence post menards old tranny. 2022-09-13 06:48 - 2022-01-04 13:46 - 003103744 _____ (Microsoft Corporation) C:\windows\SysWOW64\PrintConfig.dll FF Plugin:,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation) (C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe ->) (Oculus VR, LLC -> Facebook Technologies, LLC) C:\Program Files\Oculus\Support\oculus-runtime\OVRRedir.exe Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden 2022-09-21 08:31 - 2022-05-13 18:02 - 000000000 ____D C:\Users\Tyson R2 TeraCopyService.exe; C:\Program Files\TeraCopy\TeraCopyService.exe [114384 2021-04-22] (Code Sector -> ) S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [2133968 2022-05-18] (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [UDP Query User{27885C92-4863-44D7-BF02-EB0025C5435B}C:\users\tyson\appdata\local\medal\app-4.1000.0\medal.exe] => (Allow) C:\users\tyson\appdata\local\medal\app-4.1000.0\medal.exe (Ferox Games B.V. -> Medal B.V.) FirewallRules: [{D1CB192D-76D5-4997-A65D-7C9246999244}] => (Allow) D:\Steam\SteamApps\common\Blade & Sorcery\BladeAndSorcery.exe () [File not signed] (If an entry is included in the fixlist, the registry item will be restored to default or removed. FirewallRules: [{B09B8918-1B83-489C-9B80-C729379A199A}] => (Allow) D:\Steam\SteamApps\common\wallpaper_engine\bin\diagnostics32.exe (Skutta, Kristjan -> ) FireFox: (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe Task: {01DAB107-1220-4031-BC4E-96D0E9EA813B} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1555696 2022-08-03] (Adobe Inc. -> Adobe Inc.) AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk:B026C77744 [3442] 2022-08-24 15:03 - 2022-08-24 15:03 - 000000000 ____D C:\Users\Tyson\AppData\Local\GameAnalytics 2022-08-27 00:56 - 2022-08-08 00:16 - 000000000 ____D C:\Program Files\Blackmagic Design <==== ATTENTION Drive c: (System) (Fixed) (Total:476.84 GB) (Free:138.29 GB) (Model: Samsung SSD 960 PRO 512GB) NTFS S3 WdBoot; C:\windows\system32\drivers\wd\WdBoot.sys [48536 2022-01-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) You've been invited to join. (services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CueLLAccessService.exe (If an entry is included in the fixlist, the file/folder will be moved.) HKLM\\Print\Monitors\Adobe PDF Port Monitor: C:\windows\system32\AdobePDF.dll [203936 2022-08-03] (Adobe Inc. -> Adobe Systems Inc) This will activate the Discord Snek game. Partition: GPT. (C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.DisplayAdapter.exe FirewallRules: [{D9AD2616-687D-4831-809B-DADF4BDF4447}] => (Allow) D:\Steam\SteamApps\common\Half-Life 2\hl2.exe (Valve Corp. -> ) 2022-06-27 00:22 - 2022-06-27 00:22 - 000184832 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Xml.dll FirewallRules: [UDP Query User{5D70848B-E249-43E2-B2CB-5B94F3189EE9}C:\users\tyson\appdata\local\medal\app-4.1712.0\medal.exe] => (Allow) C:\users\tyson\appdata\local\medal\app-4.1712.0\medal.exe (Ferox Games B.V. -> Medal B.V.) HKU\S-1-5-21-479614032-2295716511-2174497491-1002\Control Panel\Desktop\\Wallpaper -> C:\windows\web\wallpaper\Windows\img19.jpg FF ProfilePath: C:\Users\Tyson\AppData\Roaming\Mozilla\Firefox\Profiles\xnc3cpuf.default-release [2022-09-21] FirewallRules: [{4AE96DAB-A7FC-4F77-8B61-5404C0996C4A}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) (services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3494672 2022-06-27] (Electronic Arts, Inc. -> Electronic Arts) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION 2022-09-07 20:08 - 2022-09-07 20:08 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\Insomniac Games =============== Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden ================== 2022-09-13 06:48 - 2022-09-13 06:48 - 000530944 _____ (curl, hxxps:// C:\windows\system32\curl.exe 2022-09-01 05:21 - 2022-08-03 03:25 - 000000000 ____D C:\Users\Tyson\AppData\Local\FiveM AlternateDataStreams: C:\ProgramData\Application Data:err [1670] 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\system32\gl-ES 2022-08-22 04:13 - 2022-07-08 17:37 - 000486552 _____ (Sonarworks) C:\windows\system32\soundidsdkdsp.dll FirewallRules: [{8138C9F8-52B0-4B43-BF6D-4D36DF0DF15D}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed] R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [8746536 2022-08-17] (Riot Games, Inc. -> Riot Games, Inc.) (services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe Faulting application path: D:\Steam\steamapps\common\SteamVR\bin\win64\vrserver.exe Task: {952FAF34-704C-433F-92B5-79B6E5925C8A} - System32\Tasks\Symantec Endpoint Protection\Symantec Endpoint Protection Error Analyzer => C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\14.3.7393.4000.105\Bin\SymErr.exe [91048 2022-02-25] (Symantec Corporation -> Broadcom) (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe IFEO\SihClient.exe: [Debugger] / 2022-08-22 04:13 - 2022-09-01 05:48 - 002439112 _____ (A-Volute) C:\windows\system32\9EarsSurroundSound.dll FirewallRules: [{87B5C6F1-FF42-4487-89E7-75F21A994C91}] => (Allow) D:\Steam\SteamApps\common\assettocorsa\AssettoCorsa.exe (Kunos Simulazioni) [File not signed] Tcpip\..\Interfaces\{203ebb61-a8f5-49d4-9bc1-32351b715ebe}: [DhcpNameServer] Snake server | Discord Me Snake server Join Server About Server Here, if you're into the Snake game, you can talk about tactics, share high scores, and much more. // (Allow) D:\Steam\SteamApps\common\Crusader Kings III\launcher\dowser.exe (Paradox Interactive AB (publ) -> ) 2022-09-13 06:48 - 2022-09-13 06:48 - 000167936 _____ C:\windows\system32\DeviceUpdateCenterCsp.dll (C:\Program Files\LGHUB\lghub.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\desktop.ini => ":41964AA945" ADS removed successfully #80. 2022-09-15 21:55 - 2022-05-24 21:19 - 000000000 ____D C:\Program Files\Common Files\Adobe but other than that great bot. (explorer.exe ->) (Brio) [File not signed] C:\Program Files\FolderSize\FolderSize.exe NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.962.0_x64__56jybvy8sckqj [2022-09-12] (NVIDIA Corp.) FirewallRules: [UDP Query User{27885C92-4863-44D7-BF02-EB0025C5435B}C:\users\tyson\appdata\local\medal\app-4.1000.0\medal.exe] => (Allow) C:\users\tyson\appdata\local\medal\app-4.1000.0\medal.exe (Ferox Games B.V. -> Medal B.V.) You'll see a cool animation on the right-hand side, which includes Discord's Wumpus character. (explorer.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2> FirewallRules: [{B8C9D01F-F60F-4FAE-AB6F-04F962EF71DD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation) BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-08-03] (Adobe Inc. -> Adobe Systems Incorporated) Task: {82D0DA1B-4BFD-4384-A5F2-C2C9C999A086} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646344 2022-05-05] (Nvidia Corporation -> NVIDIA Corporation) Ran by Tyson (administrator) on INWIN809 (Gigabyte Technology Co., Ltd. Z690 AORUS ELITE AX DDR4) (21-09-2022 08:37:37) With simple setup and lots of customizations you can bring your discord bot to another level. Good luck! 2022-09-13 06:48 - 2022-09-13 06:48 - 000327680 _____ C:\windows\system32\pnpdiag.dll FirewallRules: [{1EA475BC-9129-4FC2-8A84-C98BC300FE72}] => (Allow) C:\Program Files\Oculus\Support\oculus-runtime\OVRRedir.exe (Oculus VR, LLC -> Facebook Technologies, LLC) 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ___SD C:\windows\SysWOW64\F12 WARNING: By using the bot, a score will be submitted to the leaderboard. S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MsMpEng.exe [128360 2022-01-03] (Microsoft Windows Publisher -> Microsoft Corporation) FirewallRules: [{92D133E3-264D-4913-8372-6EC5F55B7186}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\105.0.1343.42\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) Can you beat it? Can you beat it? Description: The server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} did not register with DCOM within the required timeout. 2022-09-13 06:48 - 2022-09-13 06:48 - 000614400 _____ C:\windows\system32\TextInputMethodFormatter.dll 2022-06-27 00:22 - 2022-06-27 00:22 - 001611264 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\platforms\qwindows.dll R2 TeraCopyService.exe; C:\Program Files\TeraCopy\TeraCopyService.exe [114384 2021-04-22] (Code Sector -> ) 2022-08-24 14:34 - 2022-05-13 18:02 - 000000000 ____D C:\Users\Tyson\AppData\Local\Packages Tcpip\..\Interfaces\{203ebb61-a8f5-49d4-9bc1-32351b715ebe}: [NameServer], "C:\ProgramData\Application Data" => ":err" ADS not found. FirewallRules: [{9A674005-76ED-49FE-B5D9-BD89D27E7EAA}] => (Allow) D:\Steam\SteamApps\common\Aim Lab\AimLab_tb.exe () [File not signed] Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) S3 iaLPSS2_GPIO2_TGL; C:\windows\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_cb8dd04b85ac9a58\iaLPSS2_GPIO2_TGL.sys [128680 2020-12-23] (Intel Corporation -> Intel Corporation) Then, open the app and log in with your account information. "HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\HideSCAMeetNow" => removed successfully ContextMenuHandlers2: [TeraCopy] -> {2386CB87-96FF-473D-A009-957E3BFE6F88} => C:\Program Files\TeraCopy\Context.dll [2021-04-22] (Code Sector -> Code Sector) 2022-09-13 06:35 - 2022-01-10 22:19 - 000004562 _____ C:\windows\system32\Tasks\Adobe Acrobat Update Task ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2022-09-08] (Adobe Inc. -> Adobe Systems Inc.) ======= Tyson (S-1-5-21-479614032-2295716511-2174497491-1002 - Administrator - Enabled) => C:\Users\Tyson (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) C:\Windows\System32\CorsairGamingAudioCfgService64.exe (services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom.lnk => ":BCD3E320D4" ADS removed successfully Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-08-03] (Adobe Inc. -> Adobe Systems Incorporated) FirewallRules: [{4CE0FA1C-A1B9-430A-BCAF-73F1A08961F7}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Home2.exe (Epic Games, Inc.) [File not signed] DNS Servers: - R3 CorsairVHidDriver; C:\windows\System32\drivers\CorsairVHidDriver.sys [22968 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> Corsair) IFEO\MusNotification.exe: [Debugger] / FirewallRules: [UDP Query User{3048D8FC-3DA6-46C2-AE95-151E29479D0E}C:\users\tyson\appdata\local\fivem\\data\cache\subprocess\fivem_b2372_gtaprocess.exe] => (Allow) C:\users\tyson\appdata\local\fivem\\data\cache\subprocess\fivem_b2372_gtaprocess.exe (TASKS ME - IT DEVELOPMENT (AILENE BULALACAO TAGOLGOL) -> Logitech G HUB (HKLM\\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: 2022.6.271036 - Logitech) (explorer.exe ->) (Riot Games, Inc. -> Riot Games, Inc.) C:\Program Files\Riot Vanguard\vgtray.exe Description: mDNSCoreReceiveResponse: ProbeCount 0; will deregister 4 InWin809.local. The record is 15k pings in an hour. R2 CorsairLLAccessC2D033F14715AA7325305EA42FBFC65BF867CC1D; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CorsairLLAccess64.sys [21752 2022-06-21] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\system32\SecureBootUpdates Task: {3E63459F-454B-4380-9128-A078BD56ABF3} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1654272 2022-05-05] (Nvidia Corporation -> NVIDIA Corporation) Lighting is amazing in game . 2022-09-12 09:31 - 2022-05-13 18:02 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\Adobe FF Extension: (vidIQ Vision for YouTube) - C:\Users\Tyson\AppData\Roaming\Mozilla\Firefox\Profiles\xnc3cpuf.default-release\Extensions\ [2022-09-13] 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ___SD C:\windows\system32\F12 2022-09-13 06:37 - 2022-09-13 06:37 - 000000000 ___HD C:\$WinREAgent This is just one of many, so be sure to take a look at their other Easter eggs too! R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [100424 2022-05-02] (Apple Inc. -> Apple Inc.) Directly in front of the snake - the entire straight line is "safe" - This rule has been removed in a later update and no longer applies. Fully custom design, with high quality models included to enhance realism and customer satisfaction. FolderExtensions: [] -> {117E3954-5034-453A-A18B-7B79493646E6} => C:\Program Files\StartAllBack\StartAllBackLoaderX64.dll [2022-04-07] (Stanislav Zinukhov -> ) FirewallRules: [{C6676C52-746C-44AC-990F-65214880D8BE}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\bmdpaneld.exe => No File 2022-08-27 01:04 - 2022-08-27 01:06 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\paradox-launcher-v2 SearchScopes: HKU\S-1-5-21-479614032-2295716511-2174497491-1002 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = ContextMenuHandlers6: [TeraCopy] -> {2386CB87-96FF-473D-A009-957E3BFE6F88} => C:\Program Files\TeraCopy\Context.dll [2021-04-22] (Code Sector -> Code Sector) FirewallRules: [{442B4837-E2A8-4ED1-99A9-45C330A45F3C}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\JLCooperPanelDaemon.exe => No File HKU\S-1-5-21-479614032-2295716511-2174497491-1002\\Policies\Explorer: [HideSCAMeetNow] 1 S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1135648 2022-09-03] (EasyAntiCheat Oy -> Epic Games, Inc) ========= ipconfig /flushdns ========= FirewallRules: [{B6E257CC-AF55-45B4-AD9D-7193915F34CB}] => (Block) D:\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.) AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeraCopy.lnk:F37336C997 [3314] FirewallRules: [TCP Query User{B5E65EFE-5A2C-4ED9-B286-57FEF2B6E48B}C:\users\tyson\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\tyson\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) AV: Symantec Endpoint Protection (Enabled - Up to date) {FC90FA28-5CE6-9068-FC99-1C67339C0047} Adobe Photoshop 2022 (HKLM-x32\\PHSP_23_5_1) (Version: - Adobe Inc.) Disk: 0 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000) Microsoft Windows Desktop Runtime - 6.0.6 (x64) (HKLM-x32\\{aad3b888-fde2-48c0-95c2-2f7a729283fb}) (Version: - Microsoft Corporation) 2022-09-21 08:06 - 2022-05-13 20:49 - 000000000 ____D C:\Steam HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Intel\Shared Libraries\redist\intel64\compiler;C:\windows\system32;C:\windows;C:\windows\System32\Wbem;C:\windows\System32\WindowsPowerShell\v1.0\;C:\windows\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files\dotnet\