

after extensive repairs and removing the players access to trustedinstaller I think I have this contained, but I do plan on finding a new player, or a reverse engineered version of one of the popular ones(which all have some form of spyware/crypto miner at this point) without the bs. I'm no cyber security specialist, but I know a miner when I see one, and I am certain the further additions are not for my benefit given manual removal only improved the function of the emulator itself(Less crashes, and dramatically lower resource usage).

I installed it to reroll a few accounts and even through a sandbox it managed to rewrite multiple windows system files along with plenty pg shady work within the box like additional unrelated DLLs being run under svchost and multiple randomly generated name exes with no relation to the players function. For those using this emulator I recommend a full pc reinstall due to the extensive system modification including multiple crypto miners being injected into system processes, and likely even more damage done.
