You are on page 1of 8

***********************************************

* *
* ____ _____ ____ _ ___ _ _ _____ *
* | _ \| ____| _ \| | |_ _| \ | | ____| *
* | |_) | _| | | | | | | || \| | _| *
* | _ <| |___| |_| | |___ | || |\ | |___ *
* |_| \_|_____|____/|_____|___|_| \_|_____| *
* *
* https://PLUG.SU/ *
***********************************************

ID: 2300, Name: csrss.exe, CommandLine:


===============
ID: 5064, Name: winlogon.exe, CommandLine: C:\Windows\System32\WinLogon.exe -
SpecialSession
===============
ID: 7804, Name: fontdrvhost.exe, CommandLine: "fontdrvhost.exe"
===============
ID: 4808, Name: dwm.exe, CommandLine: "dwm.exe"
===============
ID: 11964, Name: atieclxx.exe, CommandLine: atieclxx
===============
ID: 3172, Name: sihost.exe, CommandLine: sihost.exe
===============
ID: 4524, Name: svchost.exe, CommandLine: C:\Windows\system32\svchost.exe -k
UnistackSvcGroup -s CDPUserSvc
===============
ID: 11824, Name: svchost.exe, CommandLine: C:\Windows\system32\svchost.exe -k
UnistackSvcGroup -s WpnUserService
===============
ID: 4876, Name: taskhostw.exe, CommandLine: taskhostw.exe {222A245B-E637-4AE9-A93F-
A59CA119A75E}
===============
ID: 7092, Name: igfxHK.exe, CommandLine: igfxHK.exe
===============
ID: 5292, Name: igfxTray.exe, CommandLine: igfxTray.exe
===============
ID: 8084, Name: explorer.exe, CommandLine: C:\Windows\Explorer.EXE
===============
ID: 7784, Name: ctfmon.exe, CommandLine: "ctfmon.exe"
===============
ID: 3840, Name: taskhostw.exe, CommandLine: taskhostw.exe
===============
ID: 4312, Name: svchost.exe, CommandLine: C:\Windows\system32\svchost.exe -k
ClipboardSvcGroup -p -s cbdhsvc
===============
ID: 9948, Name: StartMenuExperienceHost.exe, CommandLine: "C:\Windows\SystemApps\
Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\
StartMenuExperienceHost.exe" -
ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
===============
ID: 1144, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 9204, Name: SearchApp.exe, CommandLine: "C:\Windows\SystemApps\
Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe" -
ServerName:CortanaUI.AppX8z9r6jm96hw4bsbneegw0kyxx296wr9t.mca
===============
ID: 3344, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 2472, Name: SkypeBackgroundHost.exe, CommandLine: "C:\Program Files\
WindowsApps\Microsoft.SkypeApp_14.53.77.0_x64__kzf8qxf38zg5c\
SkypeBackgroundHost.exe" -ServerName:SkypeBackgroundHost
===============
ID: 2016, Name: SkypeApp.exe, CommandLine: "C:\Program Files\WindowsApps\
Microsoft.SkypeApp_14.53.77.0_x64__kzf8qxf38zg5c\SkypeApp.exe" -
ServerName:App.AppXffn3yxqvgawq9fpmnhy90fr3y01d1t5b.mca
===============
ID: 8700, Name: LockApp.exe, CommandLine: "C:\Windows\SystemApps\
Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe" -
ServerName:WindowsDefaultLockScreen.AppX7y4nbzq37zn4ks9k7amqjywdat7d3j2z.mca
===============
ID: 2584, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 9532, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 3536, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 12152, Name: SecurityHealthSystray.exe, CommandLine: "C:\Windows\System32\
SecurityHealthSystray.exe"
===============
ID: 1256, Name: RtsCM64.exe, CommandLine: "C:\Windows\RtsCM64.exe"
===============
ID: 2752, Name: sttray64.exe, CommandLine: "C:\Program Files\IDT\WDM\sttray64.exe"
===============
ID: 12024, Name: TextInputHost.exe, CommandLine: "C:\Windows\SystemApps\
MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe" -
ServerName:InputApp.AppXjd5de1g66v206tj52m9d0dtpppx4cgpn.mca
===============
ID: 11780, Name: dllhost.exe, CommandLine: C:\Windows\system32\DllHost.exe
/Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
===============
ID: 4340, Name: Messenger.exe, CommandLine: "C:\Users\alsarh\AppData\Local\
Programs\Messenger\Messenger.exe" messenger://openAtLogin
===============
ID: 9164, Name: CrashpadHandlerWindows.exe, CommandLine: C:\Users\alsarh\AppData\
Local\Programs\Messenger\CrashpadHandlerWindows.exe --no-rate-limit --no-upload-
gzip --database=C:\Users\alsarh\AppData\Local\Messenger\crashpad --metrics-dir=C:\
Users\alsarh\AppData\Local\Messenger\crashpad
--url=https://www.facebook.com/messenger/desktop/crash_upload --
annotation=crash_type=breakpad --initial-client-
data=0x4e0,0x4e4,0x4e8,0x4c0,0x4f0,0x7ff6c96ee960,0x7ff6c96ee970,0x7ff6c96ee980
===============
ID: 10576, Name: RadeonSoftware.exe, CommandLine: "C:\Program Files\AMD\CNext\
CNext\Radeonsoftware.exe" atlogon
===============
ID: 6524, Name: AppMarket.exe, CommandLine: "D:\Program Files\TxGameAssistant\
AppMarket\AppMarket.exe" -launchtray
===============
ID: 716, Name: syzs_dl_svr.exe, CommandLine: "D:\Program Files\TxGameAssistant\
AppMarket\DL\syzs_dl_svr.exe" --conf-path="D:\Program Files\TxGameAssistant\
AppMarket\DL\syzs_dl_svr.cfg" --daemon --log="D:\Program Files\TxGameAssistant\
AppMarket\DL\syzs_dl_svr.log" --rpc-secret=fc9a44ac560d1354a458c7a9bae8c9f8
===============
ID: 11744, Name: conhost.exe, CommandLine: \??\C:\Windows\system32\conhost.exe 0x4
===============
ID: 6972, Name: IDMan.exe, CommandLine: "C:\Program Files (x86)\Internet Download
Manager\IDMan.exe" /onboot
===============
ID: 10956, Name: IDMIntegrator64.exe, CommandLine: "C:\Program Files (x86)\Internet
Download Manager\IDMIntegrator64.exe" -runcm
===============
ID: 10900, Name: cef_frame_render.exe, CommandLine: "D:\Program Files\
TxGameAssistant\AppMarket\cef_frame_render.exe" --type=gpu-process --field-trial-
handle=2804,8792586868498484751,17424960901955986877,131072 --disable-
features=OutOfBlinkCors --no-sandbox --log-file="D:\Program Files\TxGameAssistant\
AppMarket\debug.log" --log-severity=disable --user-agent="Mozilla/5.0 (Windows NT
6.2; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/77.0.3865.120
Safari/537.36 Tencent AppMarket/3.71.2845.81" --lang=ar --gpu-
preferences=KAAAAAAAAADgAAAgAAAAAAAAYAAAAAAAEAAAAAAAAAAAAAAAAAAAACgAAAAEAAAAIAAAAAA
AAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAA
AAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --log-file="D:\Program Files\
TxGameAssistant\AppMarket\debug.log" --service-request-channel-
token=1113657689731094566 --mojo-platform-channel-handle=2784 /prefetch:2
===============
ID: 9060, Name: dllhost.exe, CommandLine: C:\Windows\system32\DllHost.exe
/Processid:{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
===============
ID: 5728, Name: EpicGamesLauncher.exe, CommandLine: "C:\Program Files (x86)\Epic
Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe" -silent -
launchcontext=boot
===============
ID: 1760, Name: cef_frame_render.exe, CommandLine: "D:\Program Files\
TxGameAssistant\AppMarket\cef_frame_render.exe" --type=utility --field-trial-
handle=2804,8792586868498484751,17424960901955986877,131072 --disable-
features=OutOfBlinkCors --lang=en-US --service-sandbox-type=network --no-sandbox --
log-file="D:\Program Files\TxGameAssistant\AppMarket\debug.log" --log-
severity=disable --user-agent="Mozilla/5.0 (Windows NT 6.2; WOW64)
AppleWebKit/537.36 (KHTML, like Gecko) Chrome/77.0.3865.120 Safari/537.36 Tencent
AppMarket/3.71.2845.81" --lang=ar --log-file="D:\Program Files\TxGameAssistant\
AppMarket\debug.log" --service-request-channel-token=5203161120925348575 --mojo-
platform-channel-handle=3204 /prefetch:8
===============
ID: 248, Name: IEMonitor.exe, CommandLine: "C:\Program Files (x86)\Internet
Download Manager\IEMonitor.exe"
===============
ID: 8744, Name: cef_frame_render.exe, CommandLine: "D:\Program Files\
TxGameAssistant\AppMarket\cef_frame_render.exe" --type=renderer --no-sandbox --
autoplay-policy=no-user-gesture-required --force-device-scale-factor=1.00 --log-
file="D:\Program Files\TxGameAssistant\AppMarket\debug.log" --field-trial-
handle=2804,8792586868498484751,17424960901955986877,131072 --disable-
features=OutOfBlinkCors --lang=en-US --log-file="D:\Program Files\TxGameAssistant\
AppMarket\debug.log" --log-severity=disable --user-agent="Mozilla/5.0 (Windows NT
6.2; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/77.0.3865.120
Safari/537.36 Tencent AppMarket/3.71.2845.81" --disable-pdf-extension=1 --ppapi-
flash-path="PepperFlash\pepflashplayer.dll" --ppapi-flash-version=18.0.0.209 --
device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation
--service-request-channel-token=11451258631839466002 --renderer-client-id=3 --mojo-
platform-channel-handle=3660 /prefetch:1
===============
ID: 7872, Name: EpicWebHelper.exe, CommandLine: "C:/Program Files (x86)/Epic
Games/Launcher/Engine/Binaries/Win64/EpicWebHelper.exe" --type=gpu-process --field-
trial-handle=2056,2003520496158093331,10310226824243897351,131072 --disable-
features=CalculateNativeWinOcclusion --no-sandbox --locales-dir-path="C:/Program
Files (x86)/Epic
Games/Launcher/Engine/Binaries/ThirdParty/CEF3/Win64/Resources/locales" --log-
file=C:/Users/alsarh/AppData/Local/EpicGamesLauncher/Saved/Logs/cef3.log --log-
severity=warning --resources-dir-path="C:/Program Files (x86)/Epic
Games/Launcher/Engine/Binaries/ThirdParty/CEF3/Win64/Resources" --user-agent-
product="EpicGamesLauncher/15.8.0-26257023+++Portal+Release-Live
UnrealEngine/4.27.0-26257023+++Portal+Release-Live Chrome/90.0.4430.212" --lang=en
--gpu-
preferences=SAAAAAAAAADgACAwAAAAAAAAAAAAAAAAAABgAAAAAAAoAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAB4AAAAAAAAAHgAAAAAAAAAKAAAAAQAAAAgAAAAAAAAACgAAAAAAAAAMAAAAAAAAAA4AAAAAAAAABAAAA
AAAAAAAAAAAAUAAAAQAAAAAAAAAAAAAAAGAAAAEAAAAAAAAAABAAAABQAAABAAAAAAAAAAAQAAAAYAAAAIA
AAAAAAAAAgAAAAAAAAA
--log-file=C:/Users/alsarh/AppData/Local/EpicGamesLauncher/Saved/Logs/cef3.log --
mojo-platform-channel-handle=2192 /prefetch:2
===============
ID: 3796, Name: AMDRSServ.exe, CommandLine: "C:\Program Files\AMD\CNext\CNext\
AMDRSServ.exe"
===============
ID: 11416, Name: EpicWebHelper.exe, CommandLine: "C:/Program Files (x86)/Epic
Games/Launcher/Engine/Binaries/Win64/EpicWebHelper.exe" --type=utility --utility-
sub-type=network.mojom.NetworkService --field-trial-
handle=2056,2003520496158093331,10310226824243897351,131072 --disable-
features=CalculateNativeWinOcclusion --lang=en-US --service-sandbox-type=none --no-
sandbox --locales-dir-path="C:/Program Files (x86)/Epic
Games/Launcher/Engine/Binaries/ThirdParty/CEF3/Win64/Resources/locales" --log-
file=C:/Users/alsarh/AppData/Local/EpicGamesLauncher/Saved/Logs/cef3.log --log-
severity=warning --resources-dir-path="C:/Program Files (x86)/Epic
Games/Launcher/Engine/Binaries/ThirdParty/CEF3/Win64/Resources" --user-agent-
product="EpicGamesLauncher/15.8.0-26257023+++Portal+Release-Live
UnrealEngine/4.27.0-26257023+++Portal+Release-Live Chrome/90.0.4430.212" --lang=en
--log-file=C:/Users/alsarh/AppData/Local/EpicGamesLauncher/Saved/Logs/cef3.log --
mojo-platform-channel-handle=2788 /prefetch:8
===============
ID: 7180, Name: amdow.exe, CommandLine: "C:\Program Files\AMD\CNext\CNext\
amdow.exe" 3796
===============
ID: 11844, Name: CompPkgSrv.exe, CommandLine: C:\Windows\System32\CompPkgSrv.exe -
Embedding
===============
ID: 7164, Name: svchost.exe, CommandLine: C:\Windows\system32\svchost.exe -k
UnistackSvcGroup
===============
ID: 11704, Name: ApplicationFrameHost.exe, CommandLine: C:\Windows\system32\
ApplicationFrameHost.exe -Embedding
===============
ID: 11300, Name: WinStore.App.exe, CommandLine: "C:\Program Files\WindowsApps\
Microsoft.WindowsStore_11910.1002.5.0_x64__8wekyb3d8bbwe\WinStore.App.exe" -
ServerName:App.AppXc75wvwned5vhz4xyxxecvgdjhdkgsdza.mca
===============
ID: 8780, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 10568, Name: SystemSettings.exe, CommandLine: "C:\Windows\
ImmersiveControlPanel\SystemSettings.exe" -
ServerName:microsoft.windows.immersivecontrolpanel
===============
ID: 6476, Name: ShellExperienceHost.exe, CommandLine: "C:\Windows\SystemApps\
ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -
ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
===============
ID: 712, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 11056, Name: UserOOBEBroker.exe, CommandLine: C:\Windows\System32\oobe\
UserOOBEBroker.exe -Embedding
===============
ID: 9688, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --no-startup-window /prefetch:5
===============
ID: 2324, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=crashpad-handler "--user-data-dir=C:\Users\alsarh\
AppData\Local\Microsoft\Edge\User Data" /prefetch:7 --monitor-self-
annotation=ptype=crashpad-handler "--database=C:\Users\alsarh\AppData\Local\
Microsoft\Edge\User Data\Crashpad" --annotation=IsOfficialBuild=1 --
annotation=channel= --annotation=chromium-version=114.0.5735.201 "--
annotation=exe=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --
annotation=plat=Win64 "--annotation=prod=Microsoft Edge" --
annotation=ver=114.0.1823.67 --initial-client-
data=0x164,0x168,0x16c,0xec,0x178,0x7ff8b9d94210,0x7ff8b9d94220,0x7ff8b9d94230
===============
ID: 2632, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=gpu-process --gpu-
preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA==
--mojo-platform-channel-handle=2068 --field-trial-
handle=2056,i,7399665357846215910,10852362570240590098,262144 /prefetch:2
===============
ID: 8416, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=utility --utility-sub-
type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-
platform-channel-handle=2476 --field-trial-
handle=2056,i,7399665357846215910,10852362570240590098,262144 /prefetch:3
===============
ID: 5416, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=utility --utility-sub-
type=storage.mojom.StorageService --lang=en-US --service-sandbox-type=service --
mojo-platform-channel-handle=2188 --field-trial-
handle=2056,i,7399665357846215910,10852362570240590098,262144 /prefetch:8
===============
ID: 440, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=renderer --lang=en-US --js-flags=--ms-user-locale=
--device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-
activation --renderer-client-id=19 --time-ticks-at-unix-epoch=-1688808246032220 --
launch-time-ticks=75314926223 --mojo-platform-channel-handle=5168 --field-trial-
handle=2056,i,7399665357846215910,10852362570240590098,262144 /prefetch:1
===============
ID: 792, Name: SecHealthUI.exe, CommandLine: "C:\Windows\SystemApps\
Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe" -
ServerName:SecHealthUI.AppXep4x2tbtjws1v9qqs0rmb3hxykvkpqtn.mca
===============
ID: 1896, Name: SecurityHealthHost.exe, CommandLine: C:\Windows\System32\
SecurityHealthHost.exe {E041C90B-68BA-42C9-991E-477B73A75C90} -Embedding
===============
ID: 9484, Name: smartscreen.exe, CommandLine: C:\Windows\System32\smartscreen.exe -
Embedding
===============
ID: 9044, Name: SecurityHealthHost.exe, CommandLine: C:\Windows\System32\
SecurityHealthHost.exe {6CED0DAA-4CDE-49C9-BA3A-AE163DC3D7AF} -Embedding
===============
ID: 3296, Name: WinRAR.exe, CommandLine: "C:\Program Files\WinRAR\WinRAR.exe" "C:\
Users\alsarh\Downloads\File.7z"
===============
ID: 10056, Name: SearchProtocolHost.exe, CommandLine: "C:\Windows\system32\
SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-712908666-
2575065912-1006719796-100115_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-
712908666-2575065912-1006719796-100115 1 -2147483646 "Software\Microsoft\Windows
Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\
ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
===============
ID: 1600, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=renderer --instant-process --lang=en-US --js-
flags=--ms-user-locale= --device-scale-factor=1 --num-raster-threads=2 --enable-
main-frame-before-activation --renderer-client-id=27 --time-ticks-at-unix-epoch=-
1688808246032220 --launch-time-ticks=75550009043 --mojo-platform-channel-
handle=5680 --field-trial-
handle=2056,i,7399665357846215910,10852362570240590098,262144 /prefetch:1
===============
ID: 8076, Name: mvue5C7FyNQJozWDI3NPTaow.exe, CommandLine: "C:\Users\alsarh\
Pictures\Minor Policy\mvue5C7FyNQJozWDI3NPTaow.exe"
===============
ID: 4388, Name: MJgdrzviDjgE_7HCIZuQDXIF.exe, CommandLine: "C:\Users\alsarh\
Pictures\Minor Policy\MJgdrzviDjgE_7HCIZuQDXIF.exe"
===============
ID: 11468, Name: yL5NEEQozir_0PsNFTFZH1LR.exe, CommandLine: "C:\Users\alsarh\
Pictures\Minor Policy\yL5NEEQozir_0PsNFTFZH1LR.exe"
===============
ID: 1588, Name: xHuxk9eGA_Qxh7AkBOZT7eta.exe, CommandLine: "C:\Users\alsarh\
Pictures\Minor Policy\xHuxk9eGA_Qxh7AkBOZT7eta.exe"
===============
ID: 8104, Name: AXEYrqpP4zvT5mpv3fAb5RHP.exe, CommandLine: "C:\Users\alsarh\
Pictures\Minor Policy\AXEYrqpP4zvT5mpv3fAb5RHP.exe"
===============
ID: 10524, Name: is-NR29C.tmp, CommandLine: "C:\Users\alsarh\AppData\Local\Temp\is-
IAVOC.tmp\is-NR29C.tmp" /SL4 $1505AE "C:\Users\alsarh\Pictures\Minor Policy\
xHuxk9eGA_Qxh7AkBOZT7eta.exe" 1058222 171520
===============
ID: 8432, Name: kORtqurIrYawYT70xjVygtjV.exe, CommandLine: "C:\Users\alsarh\
Pictures\Minor Policy\kORtqurIrYawYT70xjVygtjV.exe"
===============
ID: 4572, Name: msiexec.exe, CommandLine: "C:\Windows\System32\msiexec.exe" -y
.\YAWPW8.MJ0
===============
ID: 7268, Name: AppLaunch.exe, CommandLine: "C:\Windows\Microsoft.NET\Framework\
v4.0.30319\AppLaunch.exe"
===============
ID: 10212, Name: AppLaunch.exe, CommandLine: "C:\Windows\Microsoft.NET\Framework\
v4.0.30319\AppLaunch.exe"
===============
ID: 11708, Name: AppLaunch.exe, CommandLine: "C:\Windows\Microsoft.NET\Framework\
v4.0.30319\AppLaunch.exe"
===============
ID: 1692, Name: net.exe, CommandLine: "C:\Windows\system32\net.exe" helpmsg 9
===============
ID: 7832, Name: ReqSpacer79.exe, CommandLine: "C:\Program Files (x86)\ReqSpacer79\
ReqSpacer79.exe"
===============
ID: 11448, Name: v0555805.exe, CommandLine: C:\Users\alsarh\AppData\Local\Temp\
IXP000.TMP\v0555805.exe
===============
ID: 11548, Name: conhost.exe, CommandLine: \??\C:\Windows\system32\conhost.exe 0x4
===============
ID: 5196, Name: consent.exe, CommandLine: consent.exe 9792 360 000002A44763F380
===============
ID: 7932, Name: v0745918.exe, CommandLine: C:\Users\alsarh\AppData\Local\Temp\
IXP001.TMP\v0745918.exe
===============
ID: 1136, Name: v8893789.exe, CommandLine: C:\Users\alsarh\AppData\Local\Temp\
IXP002.TMP\v8893789.exe
===============
ID: 10936, Name: net1.exe, CommandLine: C:\Windows\system32\net1 helpmsg 9
===============
ID: 10404, Name: ApuW6m.exe, CommandLine:
===============
ID: 9176, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe"
===============
ID: 6952, Name: certreq.exe, CommandLine: "C:\Windows\system32\certreq.exe"
===============
ID: 7700, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\alsarh\
AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-
annotation=ptype=crashpad-handler "--database=C:\Users\alsarh\AppData\Local\Google\
Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\alsarh\AppData\Local\Google\
Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel=
--annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=114.0.5735.199 --
initial-client-
data=0x118,0x11c,0x120,0xf4,0x124,0x7ff8b9f0d9e0,0x7ff8b9f0d9f0,0x7ff8b9f0da00
===============
ID: 1952, Name: conhost.exe, CommandLine: \??\C:\Windows\system32\conhost.exe 0x4
===============
ID: 9468, Name: YdOO.exe, CommandLine: "C:\Users\alsarh\AppData\Roaming\pwyLv\
YdOO.exe"
===============
ID: 6856, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=gpu-process --gpu-
preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA==
--mojo-platform-channel-handle=1968 --field-trial-
handle=1972,i,18057386588589627298,3221322743047997902,262144 /prefetch:2
===============
ID: 2944, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=utility --utility-sub-
type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-
platform-channel-handle=2440 --field-trial-
handle=1972,i,18057386588589627298,3221322743047997902,262144 /prefetch:8
===============
ID: 1484, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=utility --utility-sub-
type=storage.mojom.StorageService --lang=en-US --service-sandbox-type=service --
mojo-platform-channel-handle=2712 --field-trial-
handle=1972,i,18057386588589627298,3221322743047997902,262144 /prefetch:8
===============
ID: 7908, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=renderer --first-renderer-process --lang=en-US --
device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation
--renderer-client-id=6 --time-ticks-at-unix-epoch=-1688808246032121 --launch-time-
ticks=75588803558 --mojo-platform-channel-handle=3080 --field-trial-
handle=1972,i,18057386588589627298,3221322743047997902,262144 /prefetch:1
===============
ID: 11472, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=renderer --extension-process --lang=en-US --device-
scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --
renderer-client-id=5 --time-ticks-at-unix-epoch=-1688808246032121 --launch-time-
ticks=75588905892 --mojo-platform-channel-handle=3260 --field-trial-
handle=1972,i,18057386588589627298,3221322743047997902,262144 /prefetch:1
===============
ID: 9276, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=utility --utility-sub-
type=data_decoder.mojom.DataDecoderService --lang=en-US --service-sandbox-
type=service --mojo-platform-channel-handle=3912 --field-trial-
handle=1972,i,18057386588589627298,3221322743047997902,262144 /prefetch:8
===============
ID: 11016, Name: t19vvNCh.exe, CommandLine: "C:\Users\alsarh\AppData\Roaming\
TIImxKa3\t19vvNCh.exe"
===============
ID: 528, Name: b6291871.exe, CommandLine: C:\Users\alsarh\AppData\Local\Temp\
IXP003.TMP\b6291871.exe

You might also like