Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation) Resetting Interface, OK! (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_0797c0ea8580ae89\IntelCpHDCPSvc.exe FirewallRules: [{9B5CEBA8-1347-4E31-8952-26A06236C3EA}] => (Allow) C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\14.3.7393.4000.105\Bin\ccSvcHst.exe (Symantec Corporation -> Broadcom) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe 2022-06-27 00:22 - 2022-06-27 00:22 - 005841920 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Gui.dll Highlight the below information then hit the. 2022-09-19 00:36 - 2022-09-19 00:36 - 000000000 ____D C:\Users\Tyson\AppData\LocalLow\Oculus FirewallRules: [TCP Query User{05590699-DA42-460B-91B9-EE6B37369FBC}C:\program files\qbittorrent\qbittorrent.exe] => (Block) C:\program files\qbittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed] FirewallRules: [TCP Query User{7760C38C-8433-4D9C-B2E6-B32483C25619}D:\steam\steamapps\common\naruto to boruto\naruto\binaries\win64\naruto-win64-shipping.exe] => (Allow) D:\steam\steamapps\common\naruto to boruto\naruto\binaries\win64\naruto-win64-shipping.exe => No File (C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe ->) (Oculus VR, LLC -> Facebook Technologies, LLC) C:\Program Files\Oculus\Support\oculus-runtime\OVRServer_x64.exe Task: {43785E39-08DC-4168-BDFD-88AD2F19FFB2} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [61336 2022-04-05] (Microsoft Corporation -> Microsoft Corporation) Error: (09/21/2022 08:34:55 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Task: {82D0DA1B-4BFD-4384-A5F2-C2C9C999A086} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646344 2022-05-05] (Nvidia Corporation -> NVIDIA Corporation) High Score Modes. Discord (HKU\S-1-5-21-479614032-2295716511-2174497491-1002\\Discord) (Version: 1.0.9004 - Discord Inc.) 2022-09-13 06:48 - 2022-09-13 06:48 - 000335872 _____ C:\windows\system32\Windows.Management.InprocObjects.dll (C:\Program Files\LGHUB\lghub.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION System errors: R1 BHDrvx64; C:\ProgramData\Symantec\Symantec Endpoint Protection\14.3.7393.4000.105\Data\Definitions\BASHDefs\20220915.011\BHDrvx64.sys [1672672 2022-08-11] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe FirewallRules: [UDP Query User{313F875B-D761-488A-B13D-512DA5FE278F}C:\users\tyson\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_b2545_gtaprocess.exe] => (Allow) C:\users\tyson\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_b2545_gtaprocess.exe (TASKS ME - IT DEVELOPMENT (AILENE BULALACAO TAGOLGOL) -> Cfx.re) 2022-09-21 08:32 - 2022-08-02 16:26 - 000882856 _____ C:\windows\system32\wpbbin.exe ============================================== FirewallRules: [{23115A22-A5D5-47AF-BD5B-2C4EBFD39A56}] => (Allow) D:\Steam\SteamApps\common\ELDEN RING\Game\start_protected_game.exe (EasyAntiCheat Oy -> Epic Games, Inc.) FirewallRules: [TCP Query User{B74EA116-49AA-4ADE-A880-3B544A114EDE}C:\users\tyson\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_fxdk_b2545_gameruntime.exe] => (Allow) C:\users\tyson\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_fxdk_b2545_gameruntime.exe => No File cmd: netsh advfirewall set allprofiles state ON HKLM\\Policies\Explorer: [HideSCAMeetNow] 1 The file will not be moved unless listed separately.) 2022-09-13 06:48 - 2022-09-13 06:48 - 000041472 _____ (Adobe Systems) C:\windows\SysWOW64\atmlib.dll WARNING: By using the bot, a score will be submitted to the leaderboard. 2022-08-22 04:13 - 2022-07-08 17:37 - 001847296 _____ (Corsair Memory, Inc.) C:\windows\system32\CorsairGamingAudioPO64.dll DNS Servers: 8.8.8.8 - 8.8.4.4 R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [100424 2022-05-02] (Apple Inc. -> Apple Inc.) ==================== Services (Whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" ContextMenuHandlers1: [LDVPMenu] -> {8BEEE74D-455E-4616-A97A-F6E86C317F32} => C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\14.3.7393.4000.105\Bin64\vpshell2.dll [2022-02-25] (Symantec Corporation -> Broadcom) Type HH->NK (-> is the right arrow key on your keyboard). R2 MBAMChameleon; C:\windows\System32\Drivers\MbamChameleon.sys [223176 2022-09-21] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) 2022-09-13 06:48 - 2022-09-13 06:48 - 000335872 _____ C:\windows\system32\Windows.Management.InprocObjects.dll The Teton (Driggs, ID) varsity basketball team has a neutral playoff game vs. Snake River (Blackfoot, ID) today @ 12p.This game is a part of the 2023 IDHSAA . Paradox Launcher v2 (HKLM\\{8C5CF4CE-D589-40B4-A77F-01FD64602C50}) (Version: 2.4.0 - Paradox Interactive) CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\Tyson\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-09-04] Intel C++ Redistributables on Intel 64 (HKLM-x32\\{F70BCE36-25F2-4475-A918-6209B3D85BF3}) (Version: 15.0.179 - Intel Corporation) ==================== Restore Points ========================= IFEO\remsh.exe: [Debugger] / HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\MusNotificationUx.exe => removed successfully S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MsMpEng.exe [128360 2022-01-03] (Microsoft Windows Publisher -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation) IFEO\Windows10Upgrade.exe: [Debugger] / It's easy to learn but difficult to master, and it can be quite addictive. 2022-09-14 23:23 - 2022-05-13 18:02 - 000000000 ____D C:\Users\Tyson\AppData\Local\D3DSCache (If an entry is included in the fixlist, it will be removed.) HKU\S-1-5-21-479614032-2295716511-2174497491-1002\\StartupApproved\StartupFolder: => "MEGAsync.lnk" 2022-09-21 08:27 - 2021-06-05 22:10 - 000000000 ____D C:\windows\SystemTemp FirewallRules: [{1412F75F-1473-49FA-97D0-605B814B5951}] => (Allow) D:\Steam\SteamApps\common\SteamVR\bin\win32\vrstartup.exe (Valve Corp. -> Valve Corporation) AAAA 2001:8003:3A5B:C700:B862:7491:F907:2846 FirewallRules: [UDP Query User{F4445250-D355-4355-A588-D55164D910FD}D:\riot games\valorant\riot client\riotclientservices.exe] => (Allow) D:\riot games\valorant\riot client\riotclientservices.exe (Riot Games, Inc. -> Riot Games, Inc.) "HKU\S-1-5-21-479614032-2295716511-2174497491-1002\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\HideSCAMeetNow" => removed successfully CustomCLSID: HKU\S-1-5-21-479614032-2295716511-2174497491-1002_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Inc. -> Adobe Systems) 2022-09-13 06:48 - 2022-09-13 06:48 - 000167936 _____ C:\windows\system32\DeviceUpdateCenterCsp.dll (services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_4.66.2001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe Addr 192.168.0.238 2022-09-21 08:32 - 2022-04-05 13:55 - 000012288 ___SH C:\DumpStack.log.tmp R0 SymEFASI; C:\windows\System32\drivers\symefasi\0704030.013\symefasi64.sys [2080248 2022-04-05] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) FirewallRules: [UDP Query User{27885C92-4863-44D7-BF02-EB0025C5435B}C:\users\tyson\appdata\local\medal\app-4.1000.0\medal.exe] => (Allow) C:\users\tyson\appdata\local\medal\app-4.1000.0\medal.exe (Ferox Games B.V. -> Medal B.V.) AlternateDataStreams: C:\windows\system32\9EarsSurroundSound.dll:0763E8C13F [3442] All reviews are moderated by Top.gg moderators. Task: {952FAF34-704C-433F-92B5-79B6E5925C8A} - System32\Tasks\Symantec Endpoint Protection\Symantec Endpoint Protection Error Analyzer => C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\14.3.7393.4000.105\Bin\SymErr.exe [91048 2022-02-25] (Symantec Corporation -> Broadcom) (If an entry is included in the fixlist, it will be removed from the registry. R3 rt25cx21; C:\windows\System32\DriverStore\FileRepository\rt25cx21x64.inf_amd64_447a9570dbb12464\rt25cx21x64.sys [620456 2022-03-25] (Realtek Semiconductor Corp. -> Realtek) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172264 2022-08-03] (Adobe Inc. -> Adobe Inc.) ==================== Other Areas =========================== 2022-09-21 08:33 - 2022-05-13 20:36 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\LGHUB R3 nvvad_WaveExtensible; C:\windows\system32\drivers\nvvad64v.sys [48552 2022-05-05] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation) (If an entry is included in the fixlist, it will be removed.) 2022-09-19 00:31 - 2022-09-19 01:57 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\OculusClient Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) FirewallRules: [{14EE7504-6765-4301-935F-3222337EE46B}] => (Allow) D:\Steam\SteamApps\common\DRAGON BALL FighterZ\DBFighterZ.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) ==================== Processes (Whitelisted) ================= FirewallRules: [{C6676C52-746C-44AC-990F-65214880D8BE}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\bmdpaneld.exe => No File ContextMenuHandlers4: [TeraCopy] -> {2386CB87-96FF-473D-A009-957E3BFE6F88} => C:\Program Files\TeraCopy\Context.dll [2021-04-22] (Code Sector -> Code Sector) (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe HKLM\\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [362056 2022-05-05] (Apple Inc. -> Apple Inc.) IFEO\SppExtComObj.exe: [VerifierDlls] SppExtComObjHook.dll 2022-09-21 08:31 - 2022-05-13 18:02 - 000000000 ____D C:\Users\Tyson Error: (09/18/2022 11:22:11 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) (If an entry is included in the fixlist, it will be removed from the registry. Google has the iconic dinosaur game that you can play when theres no internet connection, but did you know that theres a secret Discord snake game too? AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom.lnk:BCD3E320D4 [3442] Error: (09/21/2022 08:32:49 AM) (Source: OVRServiceLauncher) (EventID: 0) (User: ) 2022-09-01 05:48 - 2022-05-13 20:35 - 000000000 ____D C:\ProgramData\Riot Games FirewallRules: [{F43DA5C1-2526-4139-860C-C0510F062FCA}] => (Block) %SystemRoot%\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe => No File High scores are saved, with global leaderboards making it possible for servers to compete for records. IFEO\MusNotification.exe: [Debugger] / Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2022-08-03] (Adobe Inc. -> Adobe Systems Incorporated) Task: {8B5D0AB1-09DB-4A6C-B739-540592774668} - System32\Tasks\Symantec Endpoint Protection\Symantec Endpoint Protection Error Processor => C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\14.3.7393.4000.105\Bin\SymErr.exe [91048 2022-02-25] (Symantec Corporation -> Broadcom) Startup: C:\Users\Tyson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk [2022-09-09] AAAA 2001:8003:3A5B:C700:0000:0000:0000:0F40 IFEO\EOSnotify.exe: [Debugger] / Discordo. (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_cad1db73e8c782a6\WMIRegistrationService.exe 2022-09-08 19:59 - 2022-05-25 02:06 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\qBittorrent In order to start the game, simply click on the welcome screen to get started. FirewallRules: [{B28C9DF2-2843-45E8-8FD4-2116E511CEF6}] => (Allow) D:\Steam\SteamApps\common\Crusader Kings III\launcher\dowser.exe (Paradox Interactive AB (publ) -> ) (services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe 2022-09-15 21:59 - 2022-09-15 21:59 - 000001070 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop 2022.lnk U4 dmwappushservice; no ImagePath R3 MBAMSwissArmy; C:\windows\System32\Drivers\mbamswissarmy.sys [239544 2022-08-02] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) (services.exe ->) (DTS, Inc. -> DTS Inc.) C:\Windows\System32\DTS\PC\APO4x\DtsApo4Service.exe R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [923656 2022-08-02] (Adobe Inc. -> Adobe Inc.) ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2022-09-07] (Adobe Inc. -> ) 2022-09-13 06:48 - 2022-09-13 06:48 - 000530944 _____ (curl, hxxps://curl.se/) C:\windows\system32\curl.exe FirewallRules: [UDP Query User{1E34ABBF-D91B-4498-919D-9B94BF0430D0}C:\users\tyson\appdata\local\medal\app-4.1000.0\medal.exe] => (Block) C:\users\tyson\appdata\local\medal\app-4.1000.0\medal.exe (Ferox Games B.V. -> Medal B.V.) NVIDIA GeForce Experience 3.25.1.27 (HKLM\\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.25.1.27 - NVIDIA Corporation) This isn't the only Easter egg available; there are plenty out there to discover, including Discord's secret ringtone, their Discordo sound effect that plays when the app opens, and so much more. If you try to add something after Gamertweak.com/ (like 123-4), such a URL does not exist, hence, you will see the 404 error. 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\SysWOW64\et-EE FirewallRules: [{B16335B7-1027-4EFC-88D0-277ADCD2D0A1}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)