You are on page 1of 10

***********************************************

* ____ _____ ____ _ ___ _ _ _____ *


* | _ | ____| _ | | |_ _| | | ____| *
* | |_) | _| | | | | | | || | | _| *
* | _ <| |___| |_| | |___ | || | | |___ *
* |_| _|_____|____/|_____|___|_| _|_____| *
* *
* Telegram : https://t.me/BananaLogs *
***********************************************

ID: 11896, Name: csrss.exe, CommandLine:


===============
ID: 12044, Name: winlogon.exe, CommandLine:
===============
ID: 6224, Name: fontdrvhost.exe, CommandLine:
===============
ID: 10576, Name: dwm.exe, CommandLine:
===============
ID: 6752, Name: gameinputsvc.exe, CommandLine:
===============
ID: 11040, Name: nvcontainer.exe, CommandLine:
===============
ID: 13284, Name: NVDisplay.Container.exe, CommandLine:
===============
ID: 1484, Name: nvcontainer.exe, CommandLine: "C:\Program Files\NVIDIA Corporation\
NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%dSPUser.log"
-d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\SPUser" -r -l 3 -p
30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\
NvContainerTelemetryApi.dll" -c
===============
ID: 4348, Name: nvcontainer.exe, CommandLine: "C:\Program Files\NVIDIA Corporation\
NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d
"C:\Program Files\NVIDIA Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -st
"C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -c
===============
ID: 7248, Name: sihost.exe, CommandLine: sihost.exe
===============
ID: 11912, Name: svchost.exe, CommandLine: C:\WINDOWS\system32\svchost.exe -k
UnistackSvcGroup -s CDPUserSvc
===============
ID: 1740, Name: svchost.exe, CommandLine: C:\WINDOWS\system32\svchost.exe -k
UnistackSvcGroup -s WpnUserService
===============
ID: 3432, Name: taskhostw.exe, CommandLine: taskhostw.exe {222A245B-E637-4AE9-A93F-
A59CA119A75E}
===============
ID: 5348, Name: explorer.exe, CommandLine: C:\WINDOWS\Explorer.EXE
===============
ID: 860, Name: svchost.exe, CommandLine: C:\WINDOWS\system32\svchost.exe -k
ClipboardSvcGroup -p -s cbdhsvc
===============
ID: 11592, Name: ctfmon.exe, CommandLine:
===============
ID: 11508, Name: StartMenuExperienceHost.exe, CommandLine: "C:\Windows\SystemApps\
Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\
StartMenuExperienceHost.exe" -
ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
===============
ID: 9328, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 2452, Name: SearchApp.exe, CommandLine: "C:\WINDOWS\SystemApps\
Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe" -
ServerName:CortanaUI.AppX8z9r6jm96hw4bsbneegw0kyxx296wr9t.mca
===============
ID: 12212, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 8544, Name: LockApp.exe, CommandLine: "C:\Windows\SystemApps\
Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe" -
ServerName:WindowsDefaultLockScreen.AppX7y4nbzq37zn4ks9k7amqjywdat7d3j2z.mca
===============
ID: 8016, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 13756, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 7048, Name: NVIDIA Web Helper.exe, CommandLine: "C:\Program Files (x86)\NVIDIA
Corporation\NvNode\NVIDIA Web Helper.exe" index.js
===============
ID: 13320, Name: conhost.exe, CommandLine: \??\C:\WINDOWS\system32\conhost.exe 0x4
===============
ID: 10636, Name: PhoneExperienceHost.exe, CommandLine: "C:\Program Files\
WindowsApps\Microsoft.YourPhone_1.22112.142.0_x64__8wekyb3d8bbwe\
PhoneExperienceHost.exe" -ComServer:Background -Embedding
===============
ID: 12784, Name: TextInputHost.exe, CommandLine: "C:\WINDOWS\SystemApps\
MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe" -
ServerName:InputApp.AppXjd5de1g66v206tj52m9d0dtpppx4cgpn.mca
===============
ID: 3576, Name: SecurityHealthSystray.exe, CommandLine: "C:\Windows\System32\
SecurityHealthSystray.exe"
===============
ID: 3856, Name: RtkNGUI64.exe, CommandLine: "C:\Program Files\Realtek\Audio\HDA\
RtkNGUI64.exe" -s
===============
ID: 13848, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 12064, Name: lghub.exe, CommandLine: "C:\Program Files\LGHUB\lghub.exe" --
background
===============
ID: 976, Name: lghub_system_tray.exe, CommandLine: "C:\Program Files\LGHUB\
system_tray\lghub_system_tray.exe" --background
===============
ID: 12732, Name: lghub_agent.exe, CommandLine: "C:\Program Files\LGHUB\
lghub_agent.exe"
===============
ID: 9772, Name: lghub.exe, CommandLine: "C:\Program Files\LGHUB\lghub.exe" --
type=gpu-process --user-data-dir="C:\Users\Casa\AppData\Roaming\LGHUB" --gpu-
preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAA
AOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-
handle=1840 --field-trial-
handle=1924,i,3394057292442505293,1258025887843622839,131072 --disable-
features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand
/prefetch:2
===============
ID: 2992, Name: lghub.exe, CommandLine: "C:\Program Files\LGHUB\lghub.exe" --
type=utility --utility-sub-type=network.mojom.NetworkService --lang=pt-BR --
service-sandbox-type=none --user-data-dir="C:\Users\Casa\AppData\Roaming\LGHUB" --
mojo-platform-channel-handle=2140 --field-trial-
handle=1924,i,3394057292442505293,1258025887843622839,131072 --disable-
features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand
/prefetch:8
===============
ID: 11988, Name: Teclado Gamer Blizzard.exe, CommandLine: "C:\Program Files (x86)\
Husky\Teclado Gamer Blizzard\Teclado Gamer Blizzard.exe" --AutoUp
===============
ID: 6924, Name: taskhostw.exe, CommandLine: taskhostw.exe
===============
ID: 13448, Name: unsecapp.exe, CommandLine: C:\WINDOWS\system32\wbem\unsecapp.exe -
Embedding
===============
ID: 12276, Name: jusched.exe, CommandLine: "C:\Program Files (x86)\Common Files\
Java\Java Update\jusched.exe"
===============
ID: 14116, Name: nvsphelper64.exe, CommandLine:
===============
ID: 11324, Name: NVIDIA Share.exe, CommandLine: "C:\Program Files\NVIDIA
Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe"
===============
ID: 8780, Name: NVIDIA Share.exe, CommandLine: "C:\Program Files\NVIDIA
Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=gpu-process --field-
trial-handle=2060,10930829880875829233,10764229056940689620,131072 --disable-
features=VizDisplayCompositor --no-sandbox --log-file="C:\Users\Casa\AppData\Local\
NVIDIA Corporation\NVIDIA Share\debug.log" --lang=en-US --gpu-
preferences=KAAAAAAAAACACwAAAQAAAAAAAAAAAGAAAAAAAAEAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAA
AAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAA
AAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --log-file="C:\Users\Casa\AppData\Local\
NVIDIA Corporation\NVIDIA Share\debug.log" --service-request-channel-
token=11792844508612101183 --mojo-platform-channel-handle=2080 /prefetch:2
===============
ID: 9316, Name: NVIDIA Share.exe, CommandLine: "C:\Program Files\NVIDIA
Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=renderer --no-
sandbox --autoplay-policy=no-user-gesture-required --log-file="C:\Users\Casa\
AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --field-trial-
handle=2060,10930829880875829233,10764229056940689620,131072 --disable-
features=VizDisplayCompositor --service-pipe-token=17052230204638021497 --lang=en-
US --log-file="C:\Users\Casa\AppData\Local\NVIDIA Corporation\NVIDIA Share\
debug.log" --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-
before-activation --service-request-channel-token=17052230204638021497 --renderer-
client-id=3 --mojo-platform-channel-handle=2676 /prefetch:1
===============
ID: 9536, Name: ApplicationFrameHost.exe, CommandLine: C:\WINDOWS\system32\
ApplicationFrameHost.exe -Embedding
===============
ID: 12136, Name: svchost.exe, CommandLine: C:\WINDOWS\System32\svchost.exe -k
UnistackSvcGroup
===============
ID: 9596, Name: dllhost.exe, CommandLine: C:\WINDOWS\system32\DllHost.exe
/Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
===============
ID: 8840, Name: Discord.exe, CommandLine: "C:\Users\Casa\AppData\Local\Discord\app-
1.0.9010\Discord.exe"
===============
ID: 13644, Name: Discord.exe, CommandLine: C:\Users\Casa\AppData\Local\Discord\app-
1.0.9010\Discord.exe --type=crashpad-handler --user-data-dir=C:\Users\Casa\AppData\
Roaming\discord /prefetch:7 --no-rate-limit --monitor-self-
annotation=ptype=crashpad-handler --database=C:\Users\Casa\AppData\Roaming\discord\
Crashpad --url=https://sentry.io/api/146342/minidump/?
sentry_key=384ce4413de74fe0be270abe03b2b35a "--annotation=_companyName=Discord
Inc." --annotation=_productName=Discord --annotation=_version=1.0.9010 --
annotation=prod=Electron --annotation=ver=13.6.6 --initial-client-
data=0x484,0x488,0x48c,0x480,0x47c,0x7c53850,0x7c53860,0x7c5386c
===============
ID: 13940, Name: Discord.exe, CommandLine: "C:\Users\Casa\AppData\Local\Discord\
app-1.0.9010\Discord.exe" --type=gpu-process --field-trial-
handle=1736,16285509629010715851,6746329848945952864,131072 --disable-
features=CookiesWithoutSameSiteMustBeSecure,HardwareMediaKeyHandling,MediaSessionSe
rvice,SameSiteByDefaultCookies,SpareRendererForSitePerProcess,WinRetrieveSuggestion
sOnlyOnDemand --gpu-
preferences=SAAAAAAAAADgAAAwAAAAAAAAAAAAAAAAAABgAAAAAAAoAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAB4AAAAAAAAAHgAAAAAAAAAKAAAAAQAAAAgAAAAAAAAACgAAAAAAAAAMAAAAAAAAAA4AAAAAAAAABAAAA
AAAAAAAAAAAAUAAAAQAAAAAAAAAAAAAAAGAAAAEAAAAAAAAAABAAAABQAAABAAAAAAAAAAAQAAAAYAAAAIA
AAAAAAAAAgAAAAAAAAA --use-gl=swiftshader-webgl --mojo-platform-channel-
handle=1744 /prefetch:2
===============
ID: 8916, Name: Discord.exe, CommandLine: "C:\Users\Casa\AppData\Local\Discord\app-
1.0.9010\Discord.exe" --type=utility --utility-sub-
type=network.mojom.NetworkService --field-trial-
handle=1736,16285509629010715851,6746329848945952864,131072 --disable-
features=CookiesWithoutSameSiteMustBeSecure,HardwareMediaKeyHandling,MediaSessionSe
rvice,SameSiteByDefaultCookies,SpareRendererForSitePerProcess,WinRetrieveSuggestion
sOnlyOnDemand --lang=pt-BR --service-sandbox-type=none --mojo-platform-channel-
handle=2156 /prefetch:8
===============
ID: 13128, Name: Discord.exe, CommandLine: "C:\Users\Casa\AppData\Local\Discord\
app-1.0.9010\Discord.exe" --type=renderer --autoplay-policy=no-user-gesture-
required --field-trial-handle=1736,16285509629010715851,6746329848945952864,131072
--disable-
features=CookiesWithoutSameSiteMustBeSecure,HardwareMediaKeyHandling,MediaSessionSe
rvice,SameSiteByDefaultCookies,SpareRendererForSitePerProcess,WinRetrieveSuggestion
sOnlyOnDemand --disable-gpu-compositing --lang=pt-BR --app-user-model-
id=com.squirrel.Discord.Discord --app-path="C:\Users\Casa\AppData\Local\Discord\
app-1.0.9010\resources\app.asar" --no-sandbox --no-zygote --device-scale-factor=1
--num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5
--no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=3136 /prefetch:1
--enable-node-leakage-in-renderers
===============
ID: 9808, Name: Discord.exe, CommandLine: "C:\Users\Casa\AppData\Local\Discord\app-
1.0.9010\Discord.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --
field-trial-handle=1736,16285509629010715851,6746329848945952864,131072 --disable-
features=CookiesWithoutSameSiteMustBeSecure,HardwareMediaKeyHandling,MediaSessionSe
rvice,SameSiteByDefaultCookies,SpareRendererForSitePerProcess,WinRetrieveSuggestion
sOnlyOnDemand --lang=pt-BR --service-sandbox-type=audio --mojo-platform-channel-
handle=3116 /prefetch:8
===============
ID: 6900, Name: UserOOBEBroker.exe, CommandLine: C:\Windows\System32\oobe\
UserOOBEBroker.exe -Embedding
===============
ID: 3116, Name: SystemSettings.exe, CommandLine: "C:\Windows\ImmersiveControlPanel\
SystemSettings.exe" -ServerName:microsoft.windows.immersivecontrolpanel
===============
ID: 12160, Name: HxOutlook.exe, CommandLine: "C:\Program Files\WindowsApps\
microsoft.windowscommunicationsapps_16005.14326.21256.0_x64__8wekyb3d8bbwe\
HxOutlook.exe" -
ServerName:microsoft.windowslive.mail.AppXfbjsbkxvprcgqg6q4c9jfr0pn3kv9x5s.mca
===============
ID: 4892, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 14844, Name: HxTsr.exe, CommandLine: "C:\Program Files\WindowsApps\
microsoft.windowscommunicationsapps_16005.14326.21256.0_x64__8wekyb3d8bbwe\
HxTsr.exe" -ServerName:Hx.IPC.Server
===============
ID: 10952, Name: smartscreen.exe, CommandLine: C:\Windows\System32\smartscreen.exe
-Embedding
===============
ID: 14480, Name: ShellExperienceHost.exe, CommandLine: "C:\WINDOWS\SystemApps\
ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -
ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
===============
ID: 4276, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 9828, Name: svchost.exe, CommandLine: C:\WINDOWS\system32\svchost.exe -k
UdkSvcGroup -s UdkUserSvc
===============
ID: 1216, Name: SystemSettingsBroker.exe, CommandLine: C:\Windows\System32\
SystemSettingsBroker.exe -Embedding
===============
ID: 11144, Name: SearchProtocolHost.exe, CommandLine: "C:\WINDOWS\system32\
SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-620667306-
3631484168-3870038372-100115_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-
620667306-3631484168-3870038372-100115 1 -2147483646 "Software\Microsoft\Windows
Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\
ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
===============
ID: 7396, Name: mO7rjVJheO3VrX_VX8ZpLNLt.exe, CommandLine:
===============
ID: 8392, Name: 48FC.exe, CommandLine: C:\Users\Casa\AppData\Local\Temp\48FC.exe
===============
ID: 14940, Name: DpEditor.exe, CommandLine:
===============
ID: 15352, Name: explorer.exe, CommandLine: C:\WINDOWS\explorer.exe /factory,
{5BD95610-9434-43C2-886C-57852CC8A120} -Embedding
===============
ID: 13328, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --flag-switches-begin --flag-switches-end --do-not-de-
elevate microsoft-edge:https://support.google.com/chrome?
p=chrome_uninstall_survey&crversion=109.0.5414.120&os=10.0.19044
===============
ID: 10628, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=crashpad-handler "--user-data-dir=C:\Users\Casa\
AppData\Local\Microsoft\Edge\User Data" /prefetch:7 --monitor-self-
annotation=ptype=crashpad-handler "--database=C:\Users\Casa\AppData\Local\
Microsoft\Edge\User Data\Crashpad" --annotation=IsOfficialBuild=1 --
annotation=channel= --annotation=chromium-version=109.0.5414.120 "--
annotation=exe=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --
annotation=plat=Win64 "--annotation=prod=Microsoft Edge" --
annotation=ver=109.0.1518.70 --initial-client-
data=0xd0,0x110,0x114,0x10c,0x17c,0x7ff8033affa8,0x7ff8033affb8,0x7ff8033affc8
===============
ID: 816, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=gpu-process --gpu-
preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAQAAAAAAAAAAA
AAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAA
AOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-
handle=1948 --field-trial-
handle=2140,i,12381946827115502442,13366872399650962434,131072 /prefetch:2
===============
ID: 9404, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=utility --utility-sub-
type=network.mojom.NetworkService --lang=pt-BR --service-sandbox-type=none --mojo-
platform-channel-handle=2044 --field-trial-
handle=2140,i,12381946827115502442,13366872399650962434,131072 /prefetch:3
===============
ID: 13932, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=utility --utility-sub-
type=storage.mojom.StorageService --lang=pt-BR --service-sandbox-type=service --
mojo-platform-channel-handle=2424 --field-trial-
handle=2140,i,12381946827115502442,13366872399650962434,131072 /prefetch:8
===============
ID: 11456, Name: ntlhost.exe, CommandLine:
===============
ID: 736, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=renderer --lang=pt-BR --js-flags=--ms-user-locale=
--device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-
activation --renderer-client-id=5 --time-ticks-at-unix-epoch=-1674859604041956 --
launch-time-ticks=155314489782 --mojo-platform-channel-handle=3452 --field-trial-
handle=2140,i,12381946827115502442,13366872399650962434,131072 /prefetch:1
===============
ID: 15252, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=renderer --lang=pt-BR --js-flags=--ms-user-locale=
--device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-
activation --renderer-client-id=7 --time-ticks-at-unix-epoch=-1674859604041956 --
launch-time-ticks=155314592543 --mojo-platform-channel-handle=3908 --field-trial-
handle=2140,i,12381946827115502442,13366872399650962434,131072 /prefetch:1
===============
ID: 10364, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=renderer --lang=pt-BR --js-flags=--ms-user-locale=
--device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-
activation --renderer-client-id=8 --time-ticks-at-unix-epoch=-1674859604041956 --
launch-time-ticks=155314599665 --mojo-platform-channel-handle=4020 --field-trial-
handle=2140,i,12381946827115502442,13366872399650962434,131072 /prefetch:1
===============
ID: 9844, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=renderer --lang=pt-BR --js-flags=--ms-user-locale=
--device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-
activation --renderer-client-id=21 --time-ticks-at-unix-epoch=-1674859604041956 --
launch-time-ticks=155332360229 --mojo-platform-channel-handle=4248 --field-trial-
handle=2140,i,12381946827115502442,13366872399650962434,131072 /prefetch:1
===============
ID: 6136, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=renderer --lang=pt-BR --js-flags=--ms-user-locale=
--device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-
activation --renderer-client-id=23 --time-ticks-at-unix-epoch=-1674859604041956 --
launch-time-ticks=155333045121 --mojo-platform-channel-handle=8956 --field-trial-
handle=2140,i,12381946827115502442,13366872399650962434,131072 /prefetch:1
===============
ID: 3684, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=utility --utility-sub-type=audio.mojom.AudioService
--lang=pt-BR --service-sandbox-type=audio --mojo-platform-channel-handle=8728 --
field-trial-handle=2140,i,12381946827115502442,13366872399650962434,131072
/prefetch:8
===============
ID: 7260, Name: CompPkgSrv.exe, CommandLine: C:\Windows\System32\CompPkgSrv.exe -
Embedding
===============
ID: 1580, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=renderer --lang=pt-BR --js-flags=--ms-user-locale=
--device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-
activation --renderer-client-id=41 --time-ticks-at-unix-epoch=-1674859604041956 --
launch-time-ticks=155344972945 --mojo-platform-channel-handle=9268 --field-trial-
handle=2140,i,12381946827115502442,13366872399650962434,131072 /prefetch:1
===============
ID: 13172, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=renderer --lang=pt-BR --js-flags=--ms-user-locale=
--device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-
activation --renderer-client-id=42 --time-ticks-at-unix-epoch=-1674859604041956 --
launch-time-ticks=155345447234 --mojo-platform-channel-handle=8256 --field-trial-
handle=2140,i,12381946827115502442,13366872399650962434,131072 /prefetch:1
===============
ID: 11712, Name: 5437.exe, CommandLine: C:\Users\Casa\AppData\Local\Temp\5437.exe
===============
ID: 5416, Name: mstsca.exe, CommandLine: "C:\Users\Casa\AppData\Roaming\Microsoft\
Network\mstsca.exe"
===============
ID: 14772, Name: SecHealthUI.exe, CommandLine: "C:\Windows\SystemApps\
Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe" -
ServerName:SecHealthUI.AppXep4x2tbtjws1v9qqs0rmb3hxykvkpqtn.mca
===============
ID: 1464, Name: SecurityHealthHost.exe, CommandLine: C:\Windows\System32\
SecurityHealthHost.exe {E041C90B-68BA-42C9-991E-477B73A75C90} -Embedding
===============
ID: 832, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=utility --utility-sub-
type=edge_search_indexer.mojom.SearchIndexerInterfaceBroker --lang=pt-BR --service-
sandbox-type=search_indexer --message-loop-type-ui --mojo-platform-channel-
handle=5044 --field-trial-
handle=2140,i,12381946827115502442,13366872399650962434,131072 /prefetch:8
===============
ID: 10092, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --from-installer
===============
ID: 9960, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\Casa\
AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-
annotation=ptype=crashpad-handler "--database=C:\Users\Casa\AppData\Local\Google\
Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\Casa\AppData\Local\Google\
Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel=
--annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=109.0.5414.120 --
initial-client-
data=0x108,0x10c,0x110,0xe8,0x114,0x7fffe2606b58,0x7fffe2606b68,0x7fffe2606b78
===============
ID: 2848, Name: ADD2.exe, CommandLine: C:\Users\Casa\AppData\Local\Temp\ADD2.exe
===============
ID: 11092, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=gpu-process --gpu-
preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAQAAAAAAAAAAA
AAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAA
AOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-
handle=1788 --field-trial-
handle=1676,i,10549699524427794351,10414099096545381118,131072 /prefetch:2
===============
ID: 12904, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=utility --utility-sub-
type=network.mojom.NetworkService --lang=pt-PT --service-sandbox-type=none --mojo-
platform-channel-handle=1952 --field-trial-
handle=1676,i,10549699524427794351,10414099096545381118,131072 /prefetch:8
===============
ID: 9568, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=utility --utility-sub-
type=storage.mojom.StorageService --lang=pt-PT --service-sandbox-type=service --
mojo-platform-channel-handle=2260 --field-trial-
handle=1676,i,10549699524427794351,10414099096545381118,131072 /prefetch:8
===============
ID: 3832, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=renderer --extension-process --video-capture-use-
gpu-memory-buffer --lang=pt-PT --device-scale-factor=1 --num-raster-threads=2 --
enable-main-frame-before-activation --renderer-client-id=5 --time-ticks-at-unix-
epoch=-1674859604042234 --launch-time-ticks=155379473814 --mojo-platform-channel-
handle=3076 --field-trial-
handle=1676,i,10549699524427794351,10414099096545381118,131072 /prefetch:1
===============
ID: 12356, Name: nbveek.exe, CommandLine: "C:\Users\Casa\AppData\Local\Temp\
5eb6b96734\nbveek.exe"
===============
ID: 13404, Name: cmd.exe, CommandLine: "C:\Windows\System32\cmd.exe" /k echo Y|
CACLS "nbveek.exe" /P "! ??????????:N"&&CACLS "nbveek.exe" /P "! ??????????:R"
/E&&echo Y|CACLS "..\5eb6b96734" /P "! ??????????:N"&&CACLS "..\5eb6b96734" /P
"! ??????????:R" /E&&Exit
===============
ID: 4252, Name: conhost.exe, CommandLine: \??\C:\WINDOWS\system32\conhost.exe 0x4
===============
ID: 7948, Name: E89E.exe, CommandLine: C:\Users\Casa\AppData\Local\Temp\E89E.exe
===============
ID: 8856, Name: F39C.exe, CommandLine: C:\Users\Casa\AppData\Local\Temp\F39C.exe
===============
ID: 3896, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 3216, Name: vina.exe, CommandLine: "C:\Users\Casa\AppData\Local\Temp\
1000005001\vina.exe"
===============
ID: 2344, Name: SecurityHealthHost.exe, CommandLine:
===============
ID: 14888, Name: lamka.exe, CommandLine: "C:\Users\Casa\AppData\Local\Temp\
1000007001\lamka.exe"
===============
ID: 15140, Name: NvOAWrapperCache.exe, CommandLine: "C:\Users\Casa\AppData\Local\
NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe"
===============
ID: 15652, Name: nbveek.exe, CommandLine: "C:\Users\Casa\AppData\Local\Temp\
9e0894bcc4\nbveek.exe"
===============
ID: 15720, Name: cmd.exe, CommandLine: "C:\Windows\System32\cmd.exe" /k echo Y|
CACLS "nbveek.exe" /P "! ??????????:N"&&CACLS "nbveek.exe" /P "! ??????????:R"
/E&&echo Y|CACLS "..\9e0894bcc4" /P "! ??????????:N"&&CACLS "..\9e0894bcc4" /P
"! ??????????:R" /E&&Exit
===============
ID: 15732, Name: conhost.exe, CommandLine: \??\C:\WINDOWS\system32\conhost.exe 0x4
===============
ID: 15908, Name: fular.exe, CommandLine: "C:\Users\Casa\AppData\Local\Temp\
1000010001\fular.exe"
===============
ID: 15952, Name: lamka.exe, CommandLine: "C:\Users\Casa\AppData\Roaming\1000001050\
lamka.exe"
===============
ID: 16064, Name: fular1.exe, CommandLine: "C:\Users\Casa\AppData\Local\Temp\
1000011001\fular1.exe"
===============
ID: 16092, Name: nitka1.exe, CommandLine: "C:\Users\Casa\AppData\Roaming\
1000002050\nitka1.exe"
===============
ID: 16124, Name: vina1.exe, CommandLine: "C:\Users\Casa\AppData\Roaming\1000012000\
vina1.exe"
===============
ID: 16164, Name: 700K.exe, CommandLine: "C:\Users\Casa\AppData\Local\Temp\
1000003001\700K.exe"
===============
ID: 16284, Name: nbveek.exe, CommandLine: "C:\Users\Casa\AppData\Local\Temp\
9e0894bcc4\nbveek.exe"
===============
ID: 9836, Name: nbveek.exe, CommandLine: "C:\Users\Casa\AppData\Local\Temp\
16de06bfb4\nbveek.exe"
===============
ID: 7508, Name: cmd.exe, CommandLine: "C:\Windows\System32\cmd.exe" /c timeout /t 6
& del /f /q "C:\Users\Casa\AppData\Local\7b525d34-1ef4-4213-bc96-fba48e527dec\
build2.exe" & exit
===============
ID: 8080, Name: conhost.exe, CommandLine: \??\C:\WINDOWS\system32\conhost.exe 0x4
===============
ID: 6180, Name: cmd.exe, CommandLine: "C:\Windows\System32\cmd.exe" /k echo Y|CACLS
"nbveek.exe" /P "! ??????????:N"&&CACLS "nbveek.exe" /P "! ??????????:R" /E&&echo
Y|CACLS "..\16de06bfb4" /P "! ??????????:N"&&CACLS "..\16de06bfb4" /P
"! ??????????:R" /E&&Exit
===============
ID: 15428, Name: conhost.exe, CommandLine: \??\C:\WINDOWS\system32\conhost.exe 0x4
===============
ID: 15500, Name: timeout.exe, CommandLine: timeout /t 6
===============
ID: 15564, Name: cacls.exe, CommandLine: CACLS "nbveek.exe" /P "! ??????????:N"
===============
ID: 13492, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe"
===============
ID: 15624, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\Casa\
AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-
annotation=ptype=crashpad-handler "--database=C:\Users\Casa\AppData\Local\Google\
Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\Casa\AppData\Local\Google\
Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel=
--annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=109.0.5414.120 --
initial-client-
data=0x110,0x114,0x118,0xec,0x11c,0x7fffe2606b58,0x7fffe2606b68,0x7fffe2606b78
===============
ID: 15600, Name: OwvtknErB0Wl.exe, CommandLine: "C:\Users\Casa\AppData\Local\Temp\
1000043001\OwvtknErB0Wl.exe"
===============
ID: 15708, Name: 838B.exe, CommandLine: C:\Users\Casa\AppData\Local\Temp\838B.exe
===============
ID: 15996, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=gpu-process --gpu-
preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAQAAAAAAAAAAA
AAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAA
AOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-
handle=1756 --field-trial-
handle=2004,i,11457913073933552472,530088717424113064,131072 /prefetch:2
===============
ID: 14948, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=utility --utility-sub-
type=network.mojom.NetworkService --lang=pt-PT --service-sandbox-type=none --mojo-
platform-channel-handle=1964 --field-trial-
handle=2004,i,11457913073933552472,530088717424113064,131072 /prefetch:8

You might also like