Jim Carrey Speech At Golden Globes, When Your Boyfriend Buys You Cheap Jewelry, Kornegay Funeral Home Obituaries, Articles D

CHR Extension: (Grammarly: Grammar Checker and Writing App) - C:\Users\Tyson\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2022-09-19] R1 BHDrvx64; C:\ProgramData\Symantec\Symantec Endpoint Protection\14.3.7393.4000.105\Data\Definitions\BASHDefs\20220915.011\BHDrvx64.sys [1672672 2022-08-11] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) Startup: C:\Users\Tyson\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2022-06-11] Symantec Endpoint Protection (HKLM\\{64CA0BA2-BED7-404B-B895-40B4F766A306}) (Version: 14.3.7393.4000 - Broadcom) 2022-09-21 08:33 - 2022-05-13 18:02 - 000000000 ____D C:\Users\Tyson\AppData\LocalLow\Mozilla ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2022-07-28] (Malwarebytes Inc. -> Malwarebytes) Available physical RAM: 26540.93 MB Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.) Addr 192.168.0.238 C:\ProgramData\Microsoft\Windows\Start Menu\Programs\desktop.ini => ":41964AA945" ADS removed successfully CHR Extension: (Privacy Badger) - C:\Users\Tyson\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkehgijcmpdhfbdbbnkijodmdjhbjlgp [2022-05-13] Print both variables during the game, where self.score += 1 when the snake eats a snack, and self.high_score stays constant throughout the game. When you eat an apple, your tail grows by four blocks instead of the usual one. 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\bcastdvr GameStop Moderna Pfizer Johnson & Johnson AstraZeneca Walgreens Best Buy Novavax SpaceX Tesla. 2022-08-24 16:24 - 2022-08-24 16:24 - 000000000 ____D C:\ProgramData\Battlestate Games CloseProcesses: The following corrective action will be taken in 60000 milliseconds: Restart the service. 2022-09-01 05:11 - 2022-08-02 02:04 - 000001388 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk AAAA 2001:8003:3A5B:C700:B862:7491:F907:2846 Description: mDNSCoreReceiveResponse: ProbeCount 2; will deregister 4 InWin809.local. 2022-09-18 23:07 - 2022-05-24 21:45 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\discord HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\SihClient.exe => removed successfully 2022-09-01 05:48 - 2022-05-13 20:35 - 000000000 ____D C:\ProgramData\Riot Games Can you beat it? Error: (09/21/2022 08:31:49 AM) (Source: DCOM) (EventID: 10010) (User: INWIN809) Resetting , OK! 2022-06-10 13:06 - 2022-06-09 19:06 - 000151040 _____ () [File not signed] \\?\C:\Program Files\LGHUB\resources\app.asar.unpacked\node_modules\keytar\build\Release\keytar.node Resetting Control Protocol, OK! ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe (Firebit OU -> Rainmeter) Task: {952FAF34-704C-433F-92B5-79B6E5925C8A} - System32\Tasks\Symantec Endpoint Protection\Symantec Endpoint Protection Error Analyzer => C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\14.3.7393.4000.105\Bin\SymErr.exe [91048 2022-02-25] (Symantec Corporation -> Broadcom) Faulting package-relative application ID: Intel Chipset Device Software (HKLM\\{C6A1126A-6ED6-4231-BA48-4DA77986FA1C}) (Version: 10.1.18950.8298 - Intel Corporation) Hidden Apple Software Update (HKLM-x32\\{B292D163-23D2-4523-A699-1ABEC1875609}) (Version: 2.7.0.3 - Apple Inc.) To start a game of snake on discord, first make sure you have the app installed on your device. Epic Games Launcher Prerequisites (x64) (HKLM\\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden #80. (services.exe ->) (Code Sector -> ) C:\Program Files\TeraCopy\TeraCopyService.exe ======== FirewallRules: [UDP Query User{3048D8FC-3DA6-46C2-AE95-151E29479D0E}C:\users\tyson\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_b2372_gtaprocess.exe] => (Allow) C:\users\tyson\appdata\local\fivem\fivem.app\data\cache\subprocess\fivem_b2372_gtaprocess.exe (TASKS ME - IT DEVELOPMENT (AILENE BULALACAO TAGOLGOL) -> Cfx.re) 2022-09-12 09:31 - 2022-05-13 18:02 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\Adobe CHR Extension: (Google Docs Offline) - C:\Users\Tyson\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-09-04] 2022-09-18 23:40 - 2022-09-21 08:37 - 000000000 ____D C:\FRST 2022-09-04 01:01 - 2022-09-04 01:01 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\slobs-plugins Description: The server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} did not register with DCOM within the required timeout. (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bc81681eb27bc1ae\RtkAudUService64.exe <2> CPUID HWMonitor 1.46 (HKLM\\CPUID HWMonitor_is1) (Version: 1.46 - CPUID, Inc.) (If an entry is included in the fixlist, the registry item will be restored to default or removed. CHR Extension: (AdBlock best ad blocker) - C:\Users\Tyson\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2022-09-04] ContextMenuHandlers2: [TeraCopy] -> {2386CB87-96FF-473D-A009-957E3BFE6F88} => C:\Program Files\TeraCopy\Context.dll [2021-04-22] (Code Sector -> Code Sector) FirewallRules: [TCP Query User{B29CB122-F27F-4DFE-B63F-BB985EDAA1B3}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.) CHR Profile: C:\Users\Tyson\AppData\Local\Google\Chrome\User Data\Default [2022-09-13] HKLM-x32\\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [1067528 2022-08-02] (Adobe Inc. -> Adobe Inc.) 2022-08-22 04:13 - 2022-07-08 17:37 - 000486552 _____ (Sonarworks) C:\windows\system32\soundidsdkdsp.dll FF ProfilePath: C:\Users\Tyson\AppData\Roaming\Mozilla\Firefox\Profiles\9c4tsxuk.default [2022-01-10] 2022-09-18 23:38 - 2022-05-13 20:36 - 000000000 ____D C:\Users\Tyson\AppData\Local\LGHUB HKU\S-1-5-21-479614032-2295716511-2174497491-1002\\StartupApproved\Run: => "Spotify" FirewallRules: [TCP Query User{55220E27-0456-4932-B4B9-3AE3BAFBFC01}C:\users\tyson\appdata\local\medal\app-4.1000.0\medal.exe] => (Block) C:\users\tyson\appdata\local\medal\app-4.1000.0\medal.exe (Ferox Games B.V. -> Medal B.V.) Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.22.240.0_x64__dt26b99r8h8gj [2022-06-13] (Realtek Semiconductor Corp) S0 iaStorVD; C:\windows\System32\drivers\iaStorVD.sys [1544912 2021-08-30] (Intel Corporation -> Intel Corporation) 2022-09-07 01:40 - 2022-05-14 13:49 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\audacity FirewallRules: [{6963AFB9-CE2B-4575-A5B8-D30EF635698F}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Home2\Binaries\Win64\Home2-Win64-Shipping.exe (Oculus VR, LLC -> Epic Games, Inc.) 2022-09-07 20:36 - 2022-09-07 20:36 - 000000000 ____D C:\Users\Tyson\AppData\Local\Apps\2.0 Task: {8B5D0AB1-09DB-4A6C-B739-540592774668} - System32\Tasks\Symantec Endpoint Protection\Symantec Endpoint Protection Error Processor => C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\14.3.7393.4000.105\Bin\SymErr.exe [91048 2022-02-25] (Symantec Corporation -> Broadcom) 2022-09-03 23:15 - 2022-09-04 01:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio 2022-09-19 00:27 - 2022-09-19 00:27 - 000000000 ____D C:\Program Files (x86)\VulkanRT Create fun and interactive games with Discord bots.. Latest version: 1.0.9, last published: a year ago. S0 SymELAM; C:\windows\System32\Drivers\SEP\0E031CE1\0FA0.105\x64\SymELAM.sys [25576 2022-02-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Broadcom) Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.) 2022-09-13 06:48 - 2022-09-13 06:48 - 000069632 _____ (Adobe Systems) C:\windows\system32\atmlib.dll ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Tyson\AppData\Local\MEGAsync\ShellExtX64.dll [2022-06-11] (Mega Limited -> ) 2022-09-07 20:43 - 2022-09-07 20:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID R2 CorsairLLAccessC2D033F14715AA7325305EA42FBFC65BF867CC1D; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CorsairLLAccess64.sys [21752 2022-06-21] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) Description: A timeout was reached (45000 milliseconds) while waiting for the Intel TPM Provisioning Service service to connect. (svchost.exe ->) (Adobe Systems Incorporated) C:\Program Files\WindowsApps\AdobeNotificationClient_3.0.1.1_x86__enpm4xejd91yc\AdobeNotificationClient.exe Windows Firewall is enabled. FiveM (HKU\S-1-5-21-479614032-2295716511-2174497491-1002\\CitizenFX_FiveM) (Version: - Cfx.re) About Play a pixelated version of snake with your friends on Discord on this ~~very hacky~~ implementation of the Snake game R3 logi_joy_bus_enum; C:\windows\system32\drivers\logi_joy_bus_enum.sys [33528 2022-05-13] (WDKTestCert builder,132743893872553407 -> Logitech) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2022-08-02] (Adobe Inc. -> Adobe Systems) Google Snake. (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe 2022-09-01 05:11 - 2022-08-02 02:04 - 000001388 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk (services.exe ->) (Symantec Corporation -> Broadcom) C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\14.3.7393.4000.105\Bin64\ccSvcHst.exe 2022-08-22 04:13 - 2022-08-22 04:13 - 000000000 ____D C:\Program Files\Corsair FF Extension: (uBlock Origin) - C:\Users\Tyson\AppData\Roaming\Mozilla\Firefox\Profiles\xnc3cpuf.default-release\Extensions\uBlock0@raymondhill.net.xpi [2022-09-20] IFEO\MusNotificationUx.exe: [Debugger] / 2022-08-22 04:13 - 2022-08-22 04:14 - 000000000 ____D C:\Users\Tyson\AppData\Local\Corsair The current highest score on Google Snake is held by Florian Wehner, with a score of533,360. 2022-09-09 23:18 - 2022-05-16 15:19 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\Rainmeter A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. 2022-09-13 06:35 - 2022-08-18 23:47 - 000002079 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk:7661CCE9BF [3442] (explorer.exe ->) (Abbingdon Global Limited -> ) C:\Program Files\iFi\USB_HD_Audio_Driver\iFiHDUSBAudio_cpl.exe Microsoft Visual C++ 2005 Redistributable (HKLM-x32\\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) 2022-09-13 06:55 - 2021-06-05 22:10 - 000000000 ____D C:\windows\system32\SecurityHealth This starts the Enable Device wizard. 2022-09-18 23:28 - 2022-08-02 16:26 - 000882856 _____ C:\windows\system32\wpbbin.exe 2022-09-13 06:48 - 2022-09-13 06:48 - 000299008 _____ C:\windows\system32\EsclScan.dll (If an entry is included in the fixlist, it will be removed from the registry. HubPages is a registered trademark of The Arena Platform, Inc. Other product and company names shown may be trademarks of their respective owners. ==================== Custom CLSID (Whitelisted): ============== FirewallRules: [{9A3159B4-BEFF-47DD-A487-9E42084C2713}] => (Allow) D:\Steam\SteamApps\common\Phasmophobia\Phasmophobia.exe () [File not signed] Magic Bullet Suite (HKLM\\Magic Bullet Suite v15.1.0) (Version: - Maxon Computer GmbH) Start:: FirewallRules: [UDP Query User{6017881F-7825-4433-A4F1-35A1F47857F0}C:\users\tyson\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\tyson\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd) 2022-08-25 16:41 - 2021-06-05 22:10 - 000000000 ____D C:\windows\system32\NDF IFEO\SppExtComObj.exe: [VerifierDlls] SppExtComObjHook.dll 2022-09-14 05:51 - 2022-05-13 20:45 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\TeraCopy 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\SysWOW64\lt-LT 2022-09-15 02:39 - 2022-04-05 14:01 - 000000000 ____D C:\windows\system32\Tasks\Mozilla HKLM-x32\\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> ) Username: Fancy1. Paradox Launcher v2 (HKLM\\{8C5CF4CE-D589-40B4-A77F-01FD64602C50}) (Version: 2.4.0 - Paradox Interactive) Description: Event-ID 0 HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" Team Snake is a Discord bot written with JDA that allows users to play Snake with one another, using reactions to vote on the next move. Task: {82D0DA1B-4BFD-4384-A5F2-C2C9C999A086} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646344 2022-05-05] (Nvidia Corporation -> NVIDIA Corporation) ==================== Memory info =========================== ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe (Firebit OU -> Rainmeter) Practice makes perfect! FirewallRules: [{E2EB56F8-5EDB-4A17-A5DC-64F3D20DCD5D}] => (Allow) D:\Steam\SteamApps\common\wallpaper_engine\bin\ui32.exe (Skutta, Kristjan -> ) DNS Servers: 8.8.8.8 - 8.8.4.4 R3 CorsairVBusDriver; C:\windows\System32\drivers\CorsairVBusDriver.sys [47032 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> Corsair) The highest score that has been achieved in Pac-Man is level 256, which was done by Billy Mitchell. ContextMenuHandlers6: [TeraCopy] -> {2386CB87-96FF-473D-A009-957E3BFE6F88} => C:\Program Files\TeraCopy\Context.dll [2021-04-22] (Code Sector -> Code Sector) BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2022-08-03] (Adobe Inc. -> Adobe Systems Incorporated) A few months ago my friend and I fell for a common Discord virus ploy, a user would message you on your friends account after they've been compromised themselves and asks you to test a game out. I've since wiped my PC clean twice but I'm still paranoid that there's a rootkit or something else still present. ==================== MSCONFIG/TASK MANAGER disabled items == Task: {965F133B-785C-4EF1-BD79-0764AE779AC5} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [617096 2022-02-25] (Apple Inc. -> Apple Inc.) 2022-09-20 15:48 - 2022-01-04 13:42 - 000000000 ____D C:\windows\system32\SleepStudy CHR Profile: C:\Users\Tyson\AppData\Local\Google\Chrome\User Data\Default [2022-09-19] Drive d: (Data) (Fixed) (Total:3725.9 GB) (Free:538.87 GB) (Model: ST4000DM005-2DP166) NTFS ==================== Other Areas =========================== Task: {01DAB107-1220-4031-BC4E-96D0E9EA813B} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1555696 2022-08-03] (Adobe Inc. -> Adobe Inc.) 2022-08-22 04:14 - 2022-08-22 04:14 - 000000000 ____D C:\Users\Tyson\AppData\Roaming\Corsair Description: Intel Wi-Fi 6 AX201 160MHz 2022-09-04 17:30 - 2022-09-04 17:30 - 000000000 ____D C:\ProgramData\Google FirewallRules: [UDP Query User{ABD0FEC5-FD03-416C-8BE7-242C0CB68220}D:\steam\steamapps\common\naruto to boruto\naruto\binaries\win64\naruto-win64-shipping.exe] => (Allow) D:\steam\steamapps\common\naruto to boruto\naruto\binaries\win64\naruto-win64-shipping.exe => No File 2022-09-19 00:36 - 2022-09-19 00:36 - 000000000 ____D C:\Users\Tyson\AppData\LocalLow\Oculus Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Available Virtual: 120796.96 MB 2022-09-13 06:48 - 2022-09-13 06:48 - 000335872 _____ C:\windows\system32\Windows.Management.InprocObjects.dll 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\system32\et-EE "HKU\S-1-5-21-479614032-2295716511-2174497491-1002\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\HideSCAMeetNow" => removed successfully 2022-09-13 06:56 - 2021-06-05 22:10 - 000000000 ____D C:\windows\Provisioning Description: Local Hostname InWin809.local already in use; will try InWin809-2.local instead FirewallRules: [{3CDE2819-7F84-4B7C-87EC-69A6E8D260DB}] => (Allow) D:\Steam\SteamApps\common\GarrysMod\hl2.exe () [File not signed] Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) (If an entry is included in the fixlist, it will be removed from the registry. Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-04-05] (Microsoft Corporation -> Microsoft Corporation) S3 CorsairGamingAudioService; C:\Windows\System32\drivers\CorsairGamingAudio64.sys [63032 2022-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) U4 dmwappushservice; no ImagePath AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Media Encoder 2022.lnk:E84E23EE24 [3442]