FF HKLM\\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi 2022-08-22 04:13 - 2022-08-22 04:14 - 000000000 ____D C:\ProgramData\Corsair Learn how to play the secret snake game on Discord!Visit my website:https://riverside.rocksSubscribe to Riverside Rocks!https://bit.ly/RiversideRocksDiscord:. GamerTweak is where passionate gamers like you will find everything they need to know about video games - new and old. Realtek Ethernet Controller Driver (HKLM-x32\\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 11.7.0318.2022 - Realtek) AAAA 2001:8003:3A5B:C700:0000:0000:0000:0F40 2022-08-23 13:40 - 2022-01-04 13:42 - 000003536 _____ C:\windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-09-18 23:28 - 2022-01-04 13:42 - 000000006 ____H C:\windows\Tasks\SA.DAT 2022-01-10 20:28 - 2022-04-07 19:15 - 000693888 _____ (Stanislav Zinukhov -> www.startisback.com) [File not signed] C:\Program Files\StartAllBack\StartAllBackX64.dll Tcpip\..\Interfaces\{203ebb61-a8f5-49d4-9bc1-32351b715ebe}: [NameServer] 8.8.8.8,8.8.4.4 And thats pretty much it. 2022-08-24 16:24 - 2022-08-24 17:24 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\Battlestate Games 2022-09-07 02:09 - 2022-09-07 02:09 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\IGCS Task: {0F8F6243-BFA8-49C8-80F9-252B656FCEA0} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-05-05] (Nvidia Corporation -> NVIDIA Corporation) ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Tyson\AppData\Local\MEGAsync\ShellExtX64.dll [2022-06-11] (Mega Limited -> ) BIOS: American Megatrends International, LLC. 2022-09-21 08:32 - 2021-06-05 22:10 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft If you want to know how to find and play the Discord snek game, heres a hint its connected to Discords 404 error page. Happened while starting this command: AlternateDataStreams: C:\ProgramData\Application Data:err [1670] 2022-08-27 00:56 - 2022-05-13 18:58 - 000000000 ____D C:\windows\system32\appmgmt R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8765464 2022-09-07] (Malwarebytes Inc. -> Malwarebytes) 2022-08-27 01:04 - 2022-08-27 01:04 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\Paradox Interactive (services.exe ->) (Code Sector -> ) C:\Program Files\TeraCopy\TeraCopyService.exe 2022-09-18 10:29 - 2022-05-25 01:10 - 000002212 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2022-09-13 07:02 - 2022-09-13 07:02 - 000001136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Pro 2022.lnk HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION 2022-08-22 04:13 - 2022-08-22 04:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Corsair C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeraCopy.lnk => ":F37336C997" ADS removed successfully Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation) HKLM-x32\\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [1067528 2022-08-02] (Adobe Inc. -> Adobe Inc.) 2022-06-27 00:22 - 2022-06-27 00:22 - 000184832 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Xml.dll FirewallRules: [UDP Query User{914C4A18-5B84-4DE9-8364-1C2976ABD489}D:\epic games\fortnite\engine\binaries\win64\epicwebhelper.exe] => (Allow) D:\epic games\fortnite\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.) Can you beat it? Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.32.31332 (HKLM\\{3407B900-37F5-4CC2-B612-5CD5D580A163}) (Version: 14.32.31332 - Microsoft Corporation) Hidden Ok. FirewallRules: [{B6E257CC-AF55-45B4-AD9D-7193915F34CB}] => (Block) D:\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.) 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\system32\appraiser S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8885112 2022-07-15] (BattlEye Innovations e.K. Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Symantec\Symantec Endpoint Protection\14.3.7393.4000.105\Bin\WSCSAvNotifier.exe because file hash could not be found on the system. HKLM\System\CurrentControlSet\Services\dmwappushservice => removed successfully Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden 2022-09-20 23:50 - 2022-05-13 20:40 - 000000000 ____D C:\Users\Tyson\AppData\Local\Discord FirewallRules: [{CC108489-5B49-420B-A9CB-CDF3F6140B5F}] => (Allow) D:\Steam\SteamApps\common\Half-Life 2\hl2.exe (Valve Corp. -> ) FirewallRules: [{442B4837-E2A8-4ED1-99A9-45C330A45F3C}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\JLCooperPanelDaemon.exe => No File ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2022-07-28] (Malwarebytes Inc. -> Malwarebytes) IFEO\upfc.exe: [Debugger] / 2022-09-07 02:09 - 2022-09-07 02:09 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\IGCS AlternateDataStreams: C:\Users\All Users:err [1670] Date: 2022-09-18 23:41:17 FF Extension: (LocalCDN) - C:\Users\Tyson\AppData\Roaming\Mozilla\Firefox\Profiles\xnc3cpuf.default-release\Extensions\{b86e4813-687a-43e6-ab65-0bde4ab75758}.xpi [2022-09-20] Chrome: HKLM-x32\\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [1067528 2022-08-02] (Adobe Inc. -> Adobe Inc.) R3 iCUEDevicePluginHost; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUEDevicePluginHost.exe [456752 2022-08-05] (Corsair Memory, Inc. -> Corsair) FirewallRules: [{1412F75F-1473-49FA-97D0-605B814B5951}] => (Allow) D:\Steam\SteamApps\common\SteamVR\bin\win32\vrstartup.exe (Valve Corp. -> Valve Corporation) 2022-09-19 00:27 - 2022-09-19 00:28 - 000000000 ____D C:\Program Files\Oculus Date: 2022-09-21 08:35:55 Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.32.31326 (HKLM-x32\\{46E11E7F-01E1-44D0-BB86-C67342D253DD}) (Version: 14.32.31326 - Microsoft Corporation) Hidden 2022-08-31 01:24 - 2022-05-25 01:10 - 000003496 _____ C:\windows\system32\Tasks\GoogleUpdateTaskMachineUA{52819A4A-6F97-4F51-A9DF-F8722C17E431} 2022-09-13 06:35 - 2022-01-10 22:19 - 000004562 _____ C:\windows\system32\Tasks\Adobe Acrobat Update Task CloseProcesses: 2022-08-31 20:07 - 2022-09-01 05:48 - 000001256 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects 2022.lnk There is no need to paste the information anywhere. S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [10450928 2022-08-18] (Riot Games, Inc. -> Riot Games, Inc.) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) FirewallRules: [{81322ABC-5F78-49D7-99DF-F779ADEE847A}] => (Allow) D:\Steam\SteamApps\common\Phasmophobia\Phasmophobia.exe () [File not signed] WinRAR 6.11 (64-bit) (HKLM\\WinRAR archiver) (Version: 6.11.0 - win.rar GmbH) 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\ShellExperiences The "AlternateShell" will be restored.) FirewallRules: [TCP Query User{9A24F9FB-9043-4592-A156-345C3448A69E}C:\users\tyson\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_b2372_gtaprocess.exe] => (Allow) C:\users\tyson\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_b2372_gtaprocess.exe (TASKS ME - IT DEVELOPMENT (AILENE BULALACAO TAGOLGOL) -> Cfx.re) Raw. Task: {BFA77813-7905-4415-9C63-4ED3A2A5BBE4} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8338896 2022-04-05] (Microsoft Corporation -> Microsoft Corporation) Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION I've also included screenshots with each step to help you pinpoint how to access the game, so these should help you out! Use the arrow keys to control your snake and spacebar to pause. 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\SysWOW64\WinMetadata FirewallRules: [{4AE96DAB-A7FC-4F77-8B61-5404C0996C4A}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) (If an entry is included in the fixlist, it will be removed from the registry. Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation) ==================== Custom CLSID (Whitelisted): ============== Tcpip\..\Interfaces\{219cb33e-0f8a-4084-a685-e83afae8e96c}: [NameServer] 8.8.8.8,8.8.4.4 Resetting , OK! AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom.lnk:BCD3E320D4 [3442] The file will not be moved unless listed separately.) AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeraCopy.lnk:F37336C997 [3314] Their snake game is one of their more interactive Easter eggs and is definitely one of my favourites! R2 CorsairLLAccessC2D033F14715AA7325305EA42FBFC65BF867CC1D; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CorsairLLAccess64.sys [21752 2022-06-21] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) FirewallRules: [TCP Query User{65A5D759-7D8F-4229-A534-FBAB9BC34F1F}C:\users\tyson\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_b2612_gtaprocess.exe] => (Allow) C:\users\tyson\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_b2612_gtaprocess.exe => No File (If an entry is included in the fixlist, it will be removed.) CodeIntegrity: FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION R1 IDSVia64; C:\ProgramData\Symantec\Symantec Endpoint Protection\14.3.7393.4000.105\Data\Definitions\IPSDefs\20220916.081\IDSvia64.sys [1515512 2022-05-13] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R1 SRTSPX; C:\windows\System32\Drivers\SEP\0E031CE1\0FA0.105\x64\SRTSPX64.SYS [42448 2022-02-25] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) 2022-09-08 19:59 - 2022-05-25 02:06 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\qBittorrent The next screen will show you how to play the Snek Game. Task: {8B25E595-94B3-455C-A6D1-4938F6A5B6E4} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-05-05] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Adobe After Effects 2022 (HKLM-x32\\AEFT_22_6) (Version: 22.6 - Adobe Inc.) CORSAIR iCUE 4 Software (HKLM\\{B1071BDE-E9F2-4F8C-8A0F-0FB8BA5835CD}) (Version: 4.27.168 - Corsair) Follow the instructions. FirewallRules: [{3EB112F3-D1E8-45BA-B0F2-0DAF7DD6538B}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) S2 uhssvc; "C:\Program Files\Microsoft Update Health Tools\uhssvc.exe" [X] ============= HKU\S-1-5-21-479614032-2295716511-2174497491-1002\\StartupApproved\Run: => "Voicemod" 2022-09-13 06:56 - 2021-06-06 00:30 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer Faulting package full name: ContextMenuHandlers2: [TeraCopy] -> {2386CB87-96FF-473D-A009-957E3BFE6F88} => C:\Program Files\TeraCopy\Context.dll [2021-04-22] (Code Sector -> Code Sector) from curses import KEY_RIGHT, KEY_LEFT, KEY_UP, KEY_DOWN. Fix result of Farbar Recovery Scan Tool (x64) Version: 30-08-2022 FirewallRules: [UDP Query User{27885C92-4863-44D7-BF02-EB0025C5435B}C:\users\tyson\appdata\local\medal\app-4.1000.0\medal.exe] => (Allow) C:\users\tyson\appdata\local\medal\app-4.1000.0\medal.exe (Ferox Games B.V. -> Medal B.V.) Can you beat it? FirewallRules: [TCP Query User{1FD45ABC-304E-41F9-9B11-A0FFC2FD4B4D}D:\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) D:\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation) IFEO\EOSnotify.exe: [Debugger] / FirewallRules: [{E73436CE-7963-4E98-A7AE-B620A32AEA57}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) 2022-09-13 06:56 - 2021-06-06 00:30 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2022-08-22 04:13 - 2022-07-08 17:37 - 001847296 _____ (Corsair Memory, Inc.) C:\windows\system32\CorsairGamingAudioPO64.dll FirewallRules: [{D277040A-9DC0-48D5-8A94-1BD52E0B4800}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\Resolve.exe => No File FirewallRules: [{D4532A44-809F-48B5-A848-01634FE92722}] => (Allow) D:\Steam\SteamApps\common\Saints Row IV\SaintsRowIV.exe (Koch Media GmbH) [File not signed] #80. High Score Modes. The system cannot find the file specified. 2022-09-07 20:43 - 2022-09-07 20:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID High scores are saved, with global leaderboards making it possible for servers to compete for records. 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\SysWOW64\ca-ES 2022-08-22 04:13 - 2022-07-08 17:37 - 000063032 _____ (Corsair Memory, Inc.) C:\windows\system32\Drivers\CorsairGamingAudio64.sys HKLM\\StartupApproved\Run32: => "Adobe Creative Cloud" ==================== MBR & Partition Table ==================== HKLM\SOFTWARE\Policies\Microsoft\Edge => removed successfully FF Extension: (vidIQ Vision for YouTube) - C:\Users\Tyson\AppData\Roaming\Mozilla\Firefox\Profiles\xnc3cpuf.default-release\Extensions\firefox@vid.io.xpi [2022-09-13] FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2022-08-02] (Adobe Inc. -> Adobe Systems) IFEO\InstallAgent.exe: [Debugger] / On his right, theres a. 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\system32\DDFs 2022-08-24 16:24 - 2022-08-24 16:24 - 000000000 ____D C:\ProgramData\Battlestate Games Resetting , OK! FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation) I've since wiped my PC clean twice but I'm still paranoid that there's a rootkit or something else still present. Description: mDNSCoreReceiveResponse: ProbeCount 2; will deregister 4 InWin809.local. FirewallRules: [UDP Query User{3F71C761-DD03-4569-BF52-8F36FD7E0076}D:\steam\steamapps\common\battlefield 2042\bf2042.exe] => (Allow) D:\steam\steamapps\common\battlefield 2042\bf2042.exe => No File Make sure to take a look at these if you're not familiar with the game. CHR Extension: (Google Docs Offline) - C:\Users\Tyson\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-09-04] Epic Games Launcher Prerequisites (x64) (HKLM\\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Death Battles! FF Extension: (Adobe Acrobat) - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2021-02-01] FirewallRules: [{3CDE2819-7F84-4B7C-87EC-69A6E8D260DB}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe () [File not signed] 2022-08-27 01:05 - 2022-08-27 01:05 - 000000000 ____D C:\Users\Tyson\ansel "C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe" -ServerName:MicrosoftEdge.AppXdnhjhccw3zf0j06tkg3jtqr00qdm0khc.mca Compete with other servers for high scores! Apple Software Update (HKLM-x32\\{B292D163-23D2-4523-A699-1ABEC1875609}) (Version: 2.7.0.3 - Apple Inc.) ==================== Scheduled Tasks (Whitelisted) ============ Resetting Wakeup Pattern, OK! Partition: GPT. 2022-09-18 23:19 - 2022-09-18 23:21 - 000000000 ____D C:\AdwCleaner 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\SysWOW64\lt-LT 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\system32\appraiser Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.13.5310.0_x64__8wekyb3d8bbwe [2022-06-13] (Microsoft Studios) [MS Ad] Task: {092D9788-E407-4A00-A515-286EF326D9C9} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\windows\explorer.exe /NoUACCheck Microsoft .NET Host FX Resolver - 6.0.6 (x64) (HKLM\\{089493D9-430B-4210-8A47-8F611288F461}) (Version: 48.27.42327 - Microsoft Corporation) Hidden S3 rtcx21; C:\windows\System32\DriverStore\FileRepository\rtcx21x64.inf_amd64_d2a498d51a4f7bec\rtcx21x64.sys [409000 2021-06-02] (Realtek Semiconductor Corp. -> Realtek) Error: (09/18/2022 11:21:01 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Running from D:\Tyson\Desktop\FRST 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\system32\Dism Here are the spawning limitations: 1. 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\SysWOW64\id-ID HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\105.0.5195.127\Installer\chrmstp.exe [2022-09-18] (Google LLC -> Google LLC) Task: {43785E39-08DC-4168-BDFD-88AD2F19FFB2} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [61336 2022-04-05] (Microsoft Corporation -> Microsoft Corporation) Blackmagic RAW (HKLM\\{0B9CFA81-58A2-473A-8F95-56EB6DA18FCE}) (Version: 2.5 - Blackmagic Design) HKU\S-1-5-21-479614032-2295716511-2174497491-1002\\Run: [Steam] => D:\Steam\steam.exe [4234600 2022-08-20] (Valve Corp. -> Valve Corporation) ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Tyson\AppData\Local\MEGAsync\ShellExtX64.dll [2022-06-11] (Mega Limited -> ) Tyson (S-1-5-21-479614032-2295716511-2174497491-1002 - Administrator - Enabled) => C:\Users\Tyson HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ccSettings_{BEC9211B-09AC-4B5B-9D31-561ADFF81A33}.sys => ""="Driver" In other words, this is javascript coding game. Task: {8B25E595-94B3-455C-A6D1-4938F6A5B6E4} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-05-05] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log HKU\S-1-5-21-479614032-2295716511-2174497491-1002\SOFTWARE\Policies\Microsoft\Edge => removed successfully
Volunteer Firefighter Light Laws By State,
Articles D