(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\msiexec.exe 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ___RD C:\windows\ImmersiveControlPanel FirewallRules: [{949A8321-7DB7-48B0-BB10-6EE3CCD9F232}] => (Allow) D:\BsgLauncher\BsgLauncher.exe (BATTLESTATE GAMES LIMITED -> Battlestate Games) Task: {EBB94CF2-C9D4-41C0-A9B1-E47647F2DE6B} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-479614032-2295716511-2174497491-500 => C:\Users\Tyson\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting (No File) 2022-09-19 03:05 - 2022-05-13 18:58 - 000000000 ____D C:\Users\Tyson\AppData\Local\CrashDumps Task: {AD08948F-02D4-47E5-AF41-BB31D4F341AD} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-05-05] (Nvidia Corporation -> NVIDIA Corporation) 2022-09-16 04:26 - 2022-08-17 23:25 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\EasyAntiCheat Games are server-wide: The most popular option is picked! Why Is My Check Engine Light Flashing And Car Shaking. 2022-09-13 06:55 - 2021-06-05 22:01 - 000000000 ____D C:\windows\CbsTemp Practice makes perfect! R2 SepScanService; C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\14.3.7393.4000.105\bin64\ccSvcHst.exe [191912 2022-02-25] (Symantec Corporation -> Broadcom) GroupPolicy\User: Restriction ? HKU\S-1-5-21-479614032-2295716511-2174497491-1002\\Policies\Explorer: [HideSCAMeetNow] 1 2022-09-21 08:38 - 2022-04-05 15:06 - 000000000 ____D C:\windows\system32\Tasks\Symantec Endpoint Protection HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ccSettings_{BEC9211B-09AC-4B5B-9D31-561ADFF81A33}.sys => ""="Driver" ======= 2022-09-12 09:31 - 2022-05-13 18:02 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\Adobe 2022-08-22 04:13 - 2022-08-22 04:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Corsair HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\UsoClient.exe => removed successfully AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom.lnk:BCD3E320D4 [3442] Task: {8B25E595-94B3-455C-A6D1-4938F6A5B6E4} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-05-05] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log R2 CorsairLLAService; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CueLLAccessService.exe [237104 2022-08-05] (Corsair Memory, Inc. -> Corsair Memory, Inc.) ScoreSaber. Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) HKLM\\Run: [RtkAudUService] => C:\windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bc81681eb27bc1ae\RtkAudUService64.exe [1231864 2021-02-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Covering popular subjects like HTML, CSS, JavaScript, Python, SQL, Java, and many, many more. (services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CueLLAccessService.exe 2022-08-27 01:05 - 2022-08-27 01:05 - 000000000 ____D C:\Users\Tyson\ansel 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\SysWOW64\es-MX But note some of the fix may adversely affect your system if either Windows or Office is not properly activated. CPUID HWMonitor 1.46 (HKLM\\CPUID HWMonitor_is1) (Version: 1.46 - CPUID, Inc.) HKLM-x32\\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [1067528 2022-08-02] (Adobe Inc. -> Adobe Inc.) (If an entry is included in the fixlist, the registry item will be restored to default or removed. FF Extension: (vidIQ Vision for YouTube) - C:\Users\Tyson\AppData\Roaming\Mozilla\Firefox\Profiles\xnc3cpuf.default-release\Extensions\firefox@vid.io.xpi [2022-09-13] "C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe" -ServerName:MicrosoftEdge.AppXdnhjhccw3zf0j06tkg3jtqr00qdm0khc.mca 2022-08-24 16:24 - 2022-08-24 17:24 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\Battlestate Games Restore point was successfully created. FirewallRules: [{BA49AD7D-9BA0-447E-B5CF-78D7EA91231D}] => (Allow) D:\BsgLauncher\BsgLauncher.exe (BATTLESTATE GAMES LIMITED -> Battlestate Games) 2022-09-01 05:21 - 2022-08-03 03:25 - 000000000 ____D C:\Users\Tyson\AppData\Local\FiveM ==================== End of Addition.txt =======================, =================== Processes (Whitelisted) ================= 2022-09-07 20:08 - 2022-09-07 20:08 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\Insomniac Games 2022-08-27 01:04 - 2022-08-27 01:06 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\paradox-launcher-v2 FirewallRules: [{3CDE2819-7F84-4B7C-87EC-69A6E8D260DB}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe () [File not signed] ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2022-07-28] (Malwarebytes Inc. -> Malwarebytes) This isn't the only Easter egg available; there are plenty out there to discover, including Discord's secret ringtone, their Discordo sound effect that plays when the app opens, and so much more. FirewallRules: [TCP Query User{B5E65EFE-5A2C-4ED9-B286-57FEF2B6E48B}C:\users\tyson\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\tyson\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) snake.py. Team Snake. The file will not be moved unless listed separately.) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION 2022-09-18 23:40 - 2022-09-21 08:37 - 000000000 ____D C:\FRST ***************** Description: The iCUE device plugin host service service terminated unexpectedly. The rules are exactly the same as the original snake game. 2022-09-18 23:35 - 2022-01-03 19:51 - 000848788 _____ C:\windows\system32\PerfStringBackup.INI R1 ccSettings_{BEC9211B-09AC-4B5B-9D31-561ADFF81A33}; C:\windows\System32\Drivers\SEP\0E031CE1\0FA0.105\x64\ccSetx64.sys [189392 2022-02-25] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) The next screen will show you how to play the Snek Game. Eat as many apples as you can to grow as long as possible. FirewallRules: [TCP Query User{65A5D759-7D8F-4229-A534-FBAB9BC34F1F}C:\users\tyson\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_b2612_gtaprocess.exe] => (Allow) C:\users\tyson\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_b2612_gtaprocess.exe => No File 2022-09-14 05:51 - 2022-05-13 20:45 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\TeraCopy ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe (Firebit OU -> Rainmeter) W3Schools offers free online tutorials, references and exercises in all the major languages of the web. ==================== Other Areas =========================== IFEO\upfc.exe: [Debugger] / 2022-09-18 23:20 - 2021-06-05 22:01 - 000524288 _____ C:\windows\system32\config\BBI VALORANT (HKU\S-1-5-21-479614032-2295716511-2174497491-1002\\Riot Game valorant.live) (Version: - Riot Games, Inc) 2022-09-04 17:30 - 2022-09-04 17:30 - 000000000 ____D C:\ProgramData\Google 2022-09-09 23:18 - 2022-05-16 15:19 - 000000000 ____D C:\Program Files\Rainmeter =============== FF Extension: (uBlock Origin) - C:\Users\Tyson\AppData\Roaming\Mozilla\Firefox\Profiles\xnc3cpuf.default-release\Extensions\uBlock0@raymondhill.net.xpi [2022-09-13] R3 oculusvad_oculusvad; C:\windows\System32\drivers\oculusvad.sys [75280 2022-09-19] (Microsoft Windows Hardware Compatibility Publisher -> Windows Win 7 DDK provider) 2022-09-21 08:33 - 2022-05-13 20:36 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\LGHUB (C:\Program Files\LGHUB\lghub.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe Clicking on the sign with a snake in the bottom right of the image will launch the game. Imagine a Place where you can belong to a school club, a gaming group, or a worldwide art community. 2022-06-10 13:06 - 2022-06-09 19:06 - 000151040 _____ () [File not signed] \\?\C:\Program Files\LGHUB\resources\app.asar.unpacked\node_modules\keytar\build\Release\keytar.node IFEO\Windows10Upgrade.exe: [Debugger] / 2022-08-24 16:24 - 2022-08-24 16:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlestate Games But what is the highest score that someone has achieved? Resetting Compartment Forwarding, OK! Scores only last a few hours, and you can keep spinning to try to get on top! 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ___SD C:\windows\system32\F12 2022-09-13 06:48 - 2022-09-13 06:48 - 000614400 _____ C:\windows\system32\TextInputMethodFormatter.dll (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2> R3 CorsairVHidDriver; C:\windows\System32\drivers\CorsairVHidDriver.sys [22968 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> Corsair) (C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe ->) (Oculus VR, LLC -> Facebook Technologies, LLC) C:\Program Files\Oculus\Support\oculus-runtime\OVRRedir.exe FirewallRules: [{CC108489-5B49-420B-A9CB-CDF3F6140B5F}] => (Allow) D:\Steam\SteamApps\common\Half-Life 2\hl2.exe (Valve Corp. -> ) AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects 2022.lnk:F7B133A22A [3442] 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\SysWOW64\Dism HKLM-x32\\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> ) Disk: 1 (MBR Code: Windows 7/8/10) (Size: 476.9 GB) (Disk ID: 2435D796) FirewallRules: [{B16335B7-1027-4EFC-88D0-277ADCD2D0A1}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) 2022-09-11 09:43 - 2022-05-15 21:36 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\Spotify R3 logi_joy_xlcore; C:\windows\system32\drivers\logi_joy_xlcore.sys [62904 2022-05-13] (WDKTestCert builder,132743893872553407 -> Logitech) ==================== Restore Points ========================= (explorer.exe ->) (Firebit OU -> Rainmeter) C:\Program Files\Rainmeter\Rainmeter.exe VLC media player (HKLM\\VLC media player) (Version: 3.0.16 - VideoLAN) (explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe <3> As soon as you start moving the snake and collect items, your score will increase. Description: Local Hostname InWin809.local already in use; will try InWin809-2.local instead Chrome: BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-08-03] (Adobe Inc. -> Adobe Systems Incorporated) 2022-09-19 00:28 - 2022-09-19 00:28 - 000032856 _____ (Facebook Inc.) C:\windows\system32\Drivers\Oculus_ViGEmBus.sys (Currently there is no automatic fix for this section.) Tcpip\..\Interfaces\{219cb33e-0f8a-4084-a685-e83afae8e96c}: [NameServer] 8.8.8.8,8.8.4.4 HKLM\\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [3071192 2022-08-18] (Riot Games, Inc. -> Riot Games, Inc.) AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom.lnk:BCD3E320D4 [3442] 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\SysWOW64\oobe 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\system32\SecureBootUpdates Microsoft Windows Desktop Runtime - 6.0.6 (x64) (HKLM\\{B9E46F95-AC34-4943-AFE2-B72EFD56C6C0}) (Version: 48.27.42342 - Microsoft Corporation) Hidden 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\system32\eu-ES 2022-09-13 06:48 - 2022-09-13 06:48 - 000524288 _____ C:\windows\system32\AssignedAccessCsp.dll Application errors: HKU\S-1-5-21-479614032-2295716511-2174497491-1002\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION 2022-09-18 23:28 - 2022-08-02 16:26 - 000882856 _____ C:\windows\system32\wpbbin.exe 2022-09-04 17:30 - 2022-09-04 17:30 - 000000000 ____D C:\ProgramData\Google 2022-09-19 00:28 - 2022-01-04 13:42 - 000000000 ____D C:\windows\ServiceProfiles 2022-09-03 23:15 - 2022-09-04 01:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\system32\et-EE Loaded Profiles: Tyson Task: {380A4401-4038-4AE0-9262-4840BDAE4377} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22865832 2022-03-30] (Microsoft Corporation -> Microsoft Corporation) ==================== Event log errors: ======================== Adobe Media Encoder 2022 (HKLM-x32\\AME_22_6) (Version: 22.6 - Adobe Inc.) 2022-09-01 05:48 - 2022-05-14 13:48 - 000000871 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk (explorer.exe ->) (Adobe Inc. -> Adobe Systems Inc.) C:\Program Files\Adobe\Acrobat DC\Acrobat\acrotray.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe Do you have other Discord Easter eggs you'd like to share in the comments section? IFEO\InstallAgent.exe: [Debugger] / 2022-08-24 17:24 - 2022-08-24 17:24 - 000000000 ____D C:\Users\Tyson\AppData\LocalLow\Battlestate Games ================== Description: The Microsoft Update Health Service service failed to start due to the following error: 2022-09-19 00:37 - 2022-05-13 20:46 - 000000000 ____D C:\Users\Tyson\AppData\Local\UnrealEngine ==================== Alternate Data Streams (Whitelisted) ======== ==================== Processes (Whitelisted) ================= The Arena Media Brands, LLC and respective content providers to this website may receive compensation for some links to products and services on this website. Resetting Resolve Neighbor, OK! (services.exe ->) (Broadcom Inc -> Broadcom) C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\14.3.7393.4000.105\Bin64\sepWscSvc64.exe Task: {01DAB107-1220-4031-BC4E-96D0E9EA813B} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1555696 2022-08-03] (Adobe Inc. -> Adobe Inc.) If you try to add something after Gamertweak.com/ (like 123-4), such a URL does not exist, hence, you will see the 404 error. ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Tyson\AppData\Local\MEGAsync\ShellExtX64.dll [2022-06-11] (Mega Limited -> ) 2022-09-13 06:48 - 2022-09-13 06:48 - 000015026 _____ C:\windows\system32\DrtmAuthTxt.wim ==================== Registry (Whitelisted) =================== 2022-08-27 00:56 - 2022-06-24 16:22 - 000000000 ____D C:\Program Files (x86)\Blackmagic Design 2022-09-18 23:28 - 2022-05-13 18:22 - 000000000 ____D C:\ProgramData\NVIDIA Medal (HKU\S-1-5-21-479614032-2295716511-2174497491-1002\\Medal) (Version: 4.1712.0 - Medal B.V.) League of Legends (HKU\S-1-5-21-479614032-2295716511-2174497491-1002\\Riot Game league_of_legends.live) (Version: - Riot Games, Inc) Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.32.31326 (HKLM-x32\\{46E11E7F-01E1-44D0-BB86-C67342D253DD}) (Version: 14.32.31326 - Microsoft Corporation) Hidden HKLM\\StartupApproved\Run32: => "Adobe Creative Cloud" FirewallRules: [{DCCFA4F6-308C-45D8-92AC-923EC8386837}] => (Allow) C:\Program Files\Oculus\Support\oculus-client\OculusClient.exe (Oculus VR, LLC) [File not signed] The file will not be moved unless listed separately.) FirewallRules: [UDP Query User{5E3E280D-8AD0-455B-AFC4-5E5203BC6B36}C:\users\tyson\appdata\local\discord\app-1.0.9006\discord.exe] => (Allow) C:\users\tyson\appdata\local\discord\app-1.0.9006\discord.exe (Discord Inc. -> Discord Inc.)