CHR Extension: (Google Docs Offline) - C:\Users\Tyson\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-09-04] Discord's snake game is available on the website's 404 page. Task: {658C5A85-0FD8-4A07-B8D2-05DD4D62B7DA} - System32\Tasks\GoogleUpdateTaskMachineUA{52819A4A-6F97-4F51-A9DF-F8722C17E431} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-05-25] (Google LLC -> Google LLC) Adobe Notification Client -> C:\Program Files\WindowsApps\AdobeNotificationClient_3.0.1.1_x86__enpm4xejd91yc [2022-06-13] (Adobe Systems Incorporated) 2022-08-19 00:58 - 2022-01-04 13:44 - 000000000 ____D C:\ProgramData\Packages S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [584680 2022-09-13] (EasyAntiCheat Oy -> Epic Games, Inc.) HKU\S-1-5-21-479614032-2295716511-2174497491-1002\Control Panel\Desktop\\Wallpaper -> C:\windows\web\wallpaper\Windows\img19.jpg R1 IDSVia64; C:\ProgramData\Symantec\Symantec Endpoint Protection\14.3.7393.4000.105\Data\Definitions\IPSDefs\20220920.081\IDSvia64.sys [1515512 2022-05-13] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) 2022-09-13 06:48 - 2022-09-13 06:48 - 000299008 _____ C:\windows\system32\EsclScan.dll IFEO\UsoClient.exe: [Debugger] / 2022-09-18 23:35 - 2021-06-05 22:09 - 000000000 ____D C:\windows\INF 2022-08-24 16:24 - 2022-08-24 16:24 - 000000000 ____D C:\ProgramData\Battlestate Games 2022-09-21 08:32 - 2021-06-05 22:10 - 000000000 ____D C:\windows\ServiceState CustomCLSID: HKU\S-1-5-21-479614032-2295716511-2174497491-1002_Classes\CLSID\{2F81B25E-7507-4844-BFF2-77D2CC24CED4}\localserver32 -> C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Adobe Inc. -> Adobe Inc.) FirewallRules: [{11A00E91-47C5-4AA1-996B-84D350C92300}] => (Allow) D:\Steam\steam.exe (Valve Corp. -> Valve Corporation) (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bc81681eb27bc1ae\RtkAudUService64.exe <2> 2022-09-19 00:28 - 2022-09-19 00:28 - 000032856 _____ (Facebook Inc.) C:\windows\system32\Drivers\Oculus_ViGEmBus.sys R3 VOICEMOD_Driver; C:\windows\system32\drivers\vmdrv.sys [48136 2022-03-08] (Voicemod Sociedad Limitada -> Windows Win 7 DDK provider) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) 2022-09-19 00:37 - 2022-05-13 20:46 - 000000000 ____D C:\Users\Tyson\AppData\Local\UnrealEngine Then, an instructions screen will pop up which showcases the various controls required to play the game. FirewallRules: [UDP Query User{F7DA3A6A-4737-4B06-BEF9-F0890F692E0A}D:\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) D:\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.) Application errors: Do you remember playing Snake on your Nokia phone? 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\system32\WinMetadata (Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe Error: (09/18/2022 11:28:17 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Steam (HKLM-x32\\Steam) (Version: 2.10.91.91 - Valve Corporation) With simple setup and lots of customizations you can bring your discord bot to another level. 2022-09-15 21:55 - 2022-05-24 21:19 - 000000000 ____D C:\Program Files\Common Files\Adobe 2022-09-13 06:55 - 2021-06-05 22:10 - 000000000 ____D C:\windows\system32\SecurityHealth FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation) 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\SysWOW64\WinMetadata 2022-09-21 08:35 - 2022-05-13 21:11 - 000000001 _____ C:\windows\vgkbootstatus.dat S3 BthA2dp; C:\windows\System32\drivers\BthA2dp.sys [507904 2021-10-08] (Microsoft Corporation) [File not signed] (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6215960 2022-09-13] (Microsoft Windows Publisher -> Microsoft Corporation) Tcpip\..\Interfaces\{219cb33e-0f8a-4084-a685-e83afae8e96c}: [DhcpNameServer] 192.168.0.1 FirewallRules: [TCP Query User{FFCC5226-1F60-4EE6-AAA8-261FB17C0A09}C:\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) C:\steam\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games) \\?\Volume{09976990-bd0c-4faf-ab2a-3c627bbd063a}\ (SYSTEM) (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 R3 CorsairVBusDriver; C:\windows\System32\drivers\CorsairVBusDriver.sys [47032 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> Corsair) Enjoy this game let the snake grow as long as you can. Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) FirewallRules: [{21080E56-A2B6-4554-9FF2-AEA1CE04EDEF}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\WaaSMedic.exe => removed successfully FirewallRules: [{EE09FBDD-CD86-422F-9B0D-6DD8CE253055}] => (Allow) D:\Steam\steam.exe (Valve Corp. -> Valve Corporation) S3 SymEvnt; C:\ProgramData\Symantec\Symantec Endpoint Protection\14.3.7393.4000.105\Data\SymPlatform\SymEvnt.sys [957928 2022-09-08] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) FirewallRules: [{E73436CE-7963-4E98-A7AE-B620A32AEA57}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) 2022-08-31 20:09 - 2022-09-01 04:04 - 000001148 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Media Encoder 2022.lnk Logitech G HUB (HKLM\\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: 2022.6.271036 - Logitech) 2022-09-19 00:50 - 2022-05-13 23:32 - 000000000 ____D C:\Users\Tyson\AppData\Local\log 7,308 Online. (services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CueLLAccessService.exe 2022-09-03 23:31 - 2022-09-04 01:01 - 000000000 ____D C:\ProgramData\obs-studio-hook 2022-09-13 06:33 - 2022-05-13 18:58 - 000000000 ____D C:\Users\Tyson\AppData\Local\CrashDumps (services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe 2022-09-19 00:27 - 2022-09-19 00:27 - 000000000 ____D C:\Program Files (x86)\VulkanRT FirewallRules: [TCP Query User{648940F9-C15C-4C43-9D0A-9811D09E9D84}C:\users\tyson\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_gtaprocess.exe] => (Allow) C:\users\tyson\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_gtaprocess.exe => No File ==================== FirewallRules (Whitelisted) ================ Total Virtual: 128541.47 MB CHR Extension: (AdBlock best ad blocker) - C:\Users\Tyson\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2022-09-04] Resetting Neighbor, OK! SearchScopes: HKU\S-1-5-21-479614032-2295716511-2174497491-1002 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = Malwarebytes version 4.5.14.210 (HKLM\\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.5.14.210 - Malwarebytes) 2022-09-01 05:48 - 2022-05-14 13:48 - 000000871 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk FirewallRules: [TCP Query User{9A24F9FB-9043-4592-A156-345C3448A69E}C:\users\tyson\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_b2372_gtaprocess.exe] => (Allow) C:\users\tyson\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_b2372_gtaprocess.exe (TASKS ME - IT DEVELOPMENT (AILENE BULALACAO TAGOLGOL) -> Cfx.re) FirewallRules: [{A474C1FF-3BBA-4D1D-85A5-8C82DCB9BEAF}] => (Allow) D:\Steam\SteamApps\common\Devour\DEVOUR.exe () [File not signed] Task: {56640CC7-1B14-4DE5-A992-AEE87C843206} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1654272 2022-05-05] (Nvidia Corporation -> NVIDIA Corporation) Windows Firewall is enabled. CHR Extension: (Privacy Badger) - C:\Users\Tyson\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkehgijcmpdhfbdbbnkijodmdjhbjlgp [2022-05-13] 2022-08-27 00:56 - 2022-08-08 00:16 - 000000000 ____D C:\Program Files\Blackmagic Design 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\system32\et-EE This is the instruction screen which showcases the controls required to play the game. Intel Serial IO (HKLM\\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.2131.26 - Intel Corporation) 2022-06-27 00:22 - 2022-06-27 00:22 - 001282048 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\LIBEAY32.dll I've also included screenshots with each step to help you pinpoint how to access the game, so these should help you out! IFEO\UpdateAssistant.exe: [Debugger] / R2 GigabyteUpdateService; C:\windows\system32\GigabyteUpdateService.exe [869032 2022-09-21] (GIGA-BYTE Technology Co., Ltd. -> GIGA-BYTE TECHNOLOGY CO., LTD.) ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2022-09-07] (Adobe Inc. -> ) Description: mDNSCoreReceiveResponse: Received from 192.168.0.238:5353 16 InWin809.local. Can you beat it? ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Tyson\AppData\Local\MEGAsync\ShellExtX64.dll [2022-06-11] (Mega Limited -> ) Task: {EBB94CF2-C9D4-41C0-A9B1-E47647F2DE6B} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-479614032-2295716511-2174497491-500 => C:\Users\Tyson\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting (No File) FirewallRules: [{E1EB7CDD-847E-4728-907A-6C4498176403}] => (Allow) C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\14.3.7393.4000.105\Bin64\snac64.exe (Symantec Corporation -> Broadcom) ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe (Firebit OU -> Rainmeter) ***************** 2021-06-05 22:08 - 2021-06-05 22:08 - 000000824 _____ C:\windows\system32\drivers\etc\hosts Fix result of Farbar Recovery Scan Tool (x64) Version: 30-08-2022 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\system32\id-ID CHR HKLM-x32\\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] S3 logi_generic_hid_filter; C:\windows\system32\drivers\logi_generic_hid_filter.sys [51544 2022-05-13] (WDKTestCert builder,132743893872553407 -> Logitech) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2022-07-28] (Malwarebytes Inc. -> Malwarebytes) AlternateDataStreams: C:\windows\system32\9EarsSurroundSound.dll:0763E8C13F [3442] CustomCLSID: HKU\S-1-5-21-479614032-2295716511-2174497491-1002_Classes\CLSID\{20894375-46AE-46E2-BAFD-CB38975CDCE6}\InprocServer32 -> C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\21.220.1024.0005\FileSyncShell64.dll => No File Faulting package full name: S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\NisSrv.exe [2876152 2022-01-03] (Microsoft Windows Publisher -> Microsoft Corporation) Peace (HKLM\\Peace) (Version: 1.6.1.2 - P.E. (If an entry is included in the fixlist, the task (.job) file will be moved. Error: (09/18/2022 11:28:16 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) R2 TeraCopyService.exe; C:\Program Files\TeraCopy\TeraCopyService.exe [114384 2021-04-22] (Code Sector -> ) CHR Extension: (Chrome Web Store Payments) - C:\Users\Tyson\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-05-13] (services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\SysWOW64\oobe R2 CorsairService; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe [84016 2022-08-05] (Corsair Memory, Inc. -> Corsair Memory, Inc.) . 2022-09-21 08:33 - 2022-05-13 20:36 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\LGHUB (If an entry is included in the fixlist, the process will be closed. ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2022-07-28] (Malwarebytes Inc. -> Malwarebytes) 2022-08-22 04:14 - 2022-08-22 04:14 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\Corsair (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe R2 CorsairGamingAudioConfig; C:\Windows\System32\CorsairGamingAudioCfgService64.exe [610352 2022-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) R3 logi_joy_xlcore; C:\windows\system32\drivers\logi_joy_xlcore.sys [62904 2022-05-13] (WDKTestCert builder,132743893872553407 -> Logitech) R3 SymEvent; C:\windows\system32\Drivers\SYMEVENT64x86.SYS [100344 2022-04-05] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) ========================================================== 2022-08-22 04:13 - 2022-08-22 04:14 - 000000000 ____D C:\Users\Tyson\AppData\Local\Corsair 2022-08-28 00:46 - 2022-08-28 00:46 - 000000000 ____D C:\Users\Tyson\.ms-ad ==================== Registry (Whitelisted) =================== FF Extension: (Dark space - The best dynamic theme) - C:\Users\Tyson\AppData\Roaming\Mozilla\Firefox\Profiles\xnc3cpuf.default-release\Extensions\{22b0eca1-8c02-4c0d-a5d7-6604ddd9836e}.xpi [2022-09-13] (services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_4.66.2001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe GroupPolicy\User: Restriction ? It's easy to learn but difficult to master, and it can be quite addictive. AAAA 2001:8003:3A5B:C700:0000:0000:0000:0F40 -> ) The file which is running by the task will not be moved.) Microsoft Visual C++ 2022 X64 Additional Runtime - 14.32.31332 (HKLM\\{F4499EE3-A166-496C-81BB-51D1BCDC70A9}) (Version: 14.32.31332 - Microsoft Corporation) Hidden (services.exe ->) (Oculus VR, LLC -> Facebook Technologies, LLC) C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe FirewallRules: [TCP Query User{EB9AD1E8-E15C-4B8A-BA2B-1C2C204C5EF5}D:\riot games\valorant\riot client\riotclientservices.exe] => (Allow) D:\riot games\valorant\riot client\riotclientservices.exe (Riot Games, Inc. -> Riot Games, Inc.) Task: {0F8F6243-BFA8-49C8-80F9-252B656FCEA0} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-05-05] (Nvidia Corporation -> NVIDIA Corporation) window.__mirage2 = {petok:"IWw0apYLnp8QXihy_VE.WonRt7er52GCV8mDXMrEjl0-1800-0"}; 2022-09-13 06:51 - 2022-01-03 20:17 - 144534560 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\Windows10Upgrade.exe => removed successfully essential oils for idiopathic guttate hypomelanosis, havanese breeders san antonio tx, bonanno crime family boss,