***********************************************
* ____ _____ ____ _ ___ _ _ _____ *
* | _ | ____| _ | | |_ _| | | ____| *
* | |_) | _| | | | | | | || | | _| *
* | _ <| |___| |_| | |___ | || | | |___ *
* |_| _|_____|____/|_____|___|_| _|_____| *
* *
* Telegram : https://t.me/BananaLogs *
***********************************************
ID: 24176, Name: csrss.exe, CommandLine:
===============
ID: 2684, Name: winlogon.exe, CommandLine: C:\WINDOWS\System32\WinLogon.exe -
SpecialSession
===============
ID: 14672, Name: fontdrvhost.exe, CommandLine: "fontdrvhost.exe"
===============
ID: 2796, Name: dwm.exe, CommandLine: "dwm.exe"
===============
ID: 1940, Name: atieclxx.exe, CommandLine: atieclxx
===============
ID: 18008, Name: uihost.exe, CommandLine: "C:\Program Files\McAfee\WebAdvisor\
UIHost.exe"
===============
ID: 14972, Name: sihost.exe, CommandLine: sihost.exe
===============
ID: 1464, Name: svchost.exe, CommandLine: C:\WINDOWS\system32\svchost.exe -k
UnistackSvcGroup -s CDPUserSvc
===============
ID: 13996, Name: svchost.exe, CommandLine: C:\WINDOWS\system32\svchost.exe -k
UnistackSvcGroup -s WpnUserService
===============
ID: 22400, Name: ArmourySocketServer.exe, CommandLine: "C:\Program Files (x86)\
ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe"
===============
ID: 16632, Name: AcPowerNotification.exe, CommandLine: "C:\Program Files (x86)\
ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe"
===============
ID: 23520, Name: asus_framework.exe, CommandLine: "C:\Program Files (x86)\ASUS\
ArmouryDevice\asus_framework.exe"
===============
ID: 14024, Name: explorer.exe, CommandLine: C:\WINDOWS\Explorer.EXE
===============
ID: 19540, Name: taskhostw.exe, CommandLine: taskhostw.exe {222A245B-E637-4AE9-
A93F-A59CA119A75E}
===============
ID: 23828, Name: svchost.exe, CommandLine: C:\WINDOWS\system32\svchost.exe -k
ClipboardSvcGroup -p -s cbdhsvc
===============
ID: 17632, Name: StartMenuExperienceHost.exe, CommandLine: "C:\Windows\SystemApps\
Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\
StartMenuExperienceHost.exe" -
ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
===============
ID: 2544, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 24548, Name: SearchApp.exe, CommandLine: "C:\WINDOWS\SystemApps\
Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe" -
ServerName:CortanaUI.AppX8z9r6jm96hw4bsbneegw0kyxx296wr9t.mca
===============
ID: 21344, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 7920, Name: ctfmon.exe, CommandLine: "ctfmon.exe"
===============
ID: 14232, Name: LockApp.exe, CommandLine: "C:\Windows\SystemApps\
Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe" -
ServerName:WindowsDefaultLockScreen.AppX7y4nbzq37zn4ks9k7amqjywdat7d3j2z.mca
===============
ID: 4396, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 17268, Name: taskhostw.exe, CommandLine: taskhostw.exe
===============
ID: 1816, Name: PhoneExperienceHost.exe, CommandLine: "C:\Program Files\
WindowsApps\Microsoft.YourPhone_1.23032.186.0_x64__8wekyb3d8bbwe\
PhoneExperienceHost.exe" -ComServer:Background -Embedding
===============
ID: 22512, Name: asus_framework.exe, CommandLine: "C:\Program Files (x86)\ASUS\
ArmouryDevice\asus_framework.exe" D:\snapshot\AsusFramework\build\src\main\sdk
===============
ID: 7556, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 9056, Name: ArmourySwAgent.exe, CommandLine: "C:\Program Files (x86)\ASUS\
ArmouryDevice\dll\SwAgent\ArmourySwAgent.exe" -s
===============
ID: 11524, Name: asus_framework.exe, CommandLine: "C:\Program Files (x86)\ASUS\
ArmouryDevice\asus_framework.exe" D:\snapshot\AsusFramework\build\src\main\sdk
===============
ID: 19392, Name: asus_framework.exe, CommandLine: "C:\Program Files (x86)\ASUS\
ArmouryDevice\asus_framework.exe" D:\snapshot\AsusFramework\build\src\main\sdk
===============
ID: 23532, Name: Aac3572MbHal_x86.exe, CommandLine: "C:\Program Files\ASUS\AacMB\
Aac3572MbHal_x86.exe" -Embedding
===============
ID: 13824, Name: asus_framework.exe, CommandLine: "C:\Program Files (x86)\ASUS\
ArmouryDevice\asus_framework.exe" "C:\Program Files (x86)\ASUS\ArmouryDevice\view\
E7C8DA76-C9B9-4297-8681-DD878330AFE7\service.js"
===============
ID: 12380, Name: ArmouryCrate.UserSessionHelper.exe, CommandLine: "C:\Program
Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.UserSessionHelper.exe"
0000000000000DC0
===============
ID: 12388, Name: conhost.exe, CommandLine: \??\C:\WINDOWS\system32\conhost.exe 0x4
===============
ID: 23672, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 5460, Name: SecurityHealthSystray.exe, CommandLine: "C:\WINDOWS\System32\
SecurityHealthSystray.exe"
===============
ID: 20876, Name: vgtray.exe, CommandLine: "C:\Program Files\Riot Vanguard\
vgtray.exe"
===============
ID: 11876, Name: OneDrive.exe, CommandLine: "C:\Program Files\Microsoft OneDrive\
OneDrive.exe" /background
===============
ID: 10056, Name: ShellExperienceHost.exe, CommandLine: "C:\Windows\SystemApps\
ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -
ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
===============
ID: 10908, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 23656, Name: RadeonSoftware.exe, CommandLine: "C:\Program Files\AMD\CNext\
CNext\Radeonsoftware.exe" atlogon
===============
ID: 11372, Name: NZXT CAM.exe, CommandLine: "C:\Program Files\NZXT CAM\NZXT
CAM.exe" --startup
===============
ID: 6804, Name: NZXT CAM.exe, CommandLine: "C:\Program Files\NZXT CAM\NZXT CAM.exe"
--type=crashpad-handler "--user-data-dir=C:\Users\reyes\AppData\Roaming\NZXT
CAM" /prefetch:7 --no-rate-limit --monitor-self-annotation=ptype=crashpad-handler
"--database=C:\Users\reyes\AppData\Roaming\NZXT CAM\Crashpad" --url=https://f.a.k/e
"--annotation=_productName=NZXT CAM" --annotation=_version=4.49.4 --
annotation=prod=Electron --annotation=ver=17.4.0 --initial-client-
data=0x508,0x50c,0x510,0x504,0x514,0x7ff78d949540,0x7ff78d949550,0x7ff78d949560
===============
ID: 10432, Name: NZXT CAM.exe, CommandLine: "C:\Program Files\NZXT CAM\NZXT
CAM.exe" --type=gpu-process --enable-logging=file --log-level=2 --user-data-
dir="C:\Users\reyes\AppData\Roaming\NZXT CAM" --gpu-
preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAA
AOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --enable-logging=file --log-
file="C:\Users\reyes\AppData\Roaming\NZXT CAM\logs\chromium.log" --log-level=2 --
mojo-platform-channel-handle=1780 --field-trial-
handle=1816,11556205439231917828,3651751548689948600,131072 --disable-
features=PlzServiceWorker,SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnly
OnDemand /prefetch:2
===============
ID: 14936, Name: NZXT CAM.exe, CommandLine: "C:\Program Files\NZXT CAM\NZXT
CAM.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=es-
419 --service-sandbox-type=none --enable-logging=file --log-level=2 --user-data-
dir="C:\Users\reyes\AppData\Roaming\NZXT CAM" --standard-schemes --secure-schemes
--bypasscsp-schemes=sentry-ipc --cors-schemes=sentry-ipc --fetch-schemes=sentry-ipc
--service-worker-schemes --streaming-schemes --enable-logging=file --log-file="C:\
Users\reyes\AppData\Roaming\NZXT CAM\logs\chromium.log" --log-level=2 --mojo-
platform-channel-handle=2172 --field-trial-
handle=1816,11556205439231917828,3651751548689948600,131072 --disable-
features=PlzServiceWorker,SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnly
OnDemand /prefetch:8
===============
ID: 10184, Name: EEventManager.exe, CommandLine: "C:\Program Files (x86)\EPSON
Software\Event Manager\EEventManager.exe"
===============
ID: 19372, Name: NZXT CAM.exe, CommandLine: "C:\Program Files\NZXT CAM\NZXT
CAM.exe" --type=renderer --user-data-dir="C:\Users\reyes\AppData\Roaming\NZXT CAM"
--standard-schemes --secure-schemes --bypasscsp-schemes=sentry-ipc --cors-
schemes=sentry-ipc --fetch-schemes=sentry-ipc --service-worker-schemes --streaming-
schemes --app-user-model-id=NZXT.CAM --app-path="C:\Program Files\NZXT CAM\
resources\app.asar" --no-sandbox --no-zygote --enable-logging=file --log-file="C:\
Users\reyes\AppData\Roaming\NZXT CAM\logs\chromium.log" --log-level=2 --js-flags=--
expose-gc --lang=es-419 --device-scale-factor=1 --num-raster-threads=4 --enable-
main-frame-before-activation --renderer-client-id=5 --launch-time-ticks=7637486037
--mojo-platform-channel-handle=3292 --field-trial-
handle=1816,11556205439231917828,3651751548689948600,131072 --disable-
features=PlzServiceWorker,SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnly
OnDemand /prefetch:1
===============
ID: 17116, Name: cam_helper.exe, CommandLine: "--elevation=af900863-5283-4044-
8e24-098d30cb1ab1" "--run-id=21f679f877454805a466e2540fdd71bb" "--app-version=NZXT
CAM@4.49.4" "--env=production" "--log-dir=C:\Users\reyes\AppData\Roaming\NZXT CAM\
logs" "--disable-sentry" "--monitor-cpuid-disable-cpu-speed-on-amd=true" "--log-
level=INFO"
===============
ID: 23252, Name: conhost.exe, CommandLine: \??\C:\WINDOWS\system32\conhost.exe 0x4
===============
ID: 13380, Name: cam_helper.exe, CommandLine: "\\?\C:\Program Files\NZXT CAM\
resources\app.asar.unpacked\node_modules\@nzxt\cam-core\dist\target\x86_64-pc-
windows-msvc\release\cam_helper.exe" --volatile_helper=7eb4547c-ddc6-426a-80b7-
4948c4ccf4d0 --run-id=21f679f877454805a466e2540fdd71bb "--app-version=NZXT
CAM@4.49.4" --env=production "--log-dir=C:\Users\reyes\AppData\Roaming\NZXT CAM\
logs" --disable-sentry --monitor-cpuid-disable-cpu-speed-on-amd=true --log-
level=INFO
===============
ID: 16952, Name: cam_helper.exe, CommandLine: "\\?\C:\Program Files\NZXT CAM\
resources\app.asar.unpacked\node_modules\@nzxt\cam-core\dist\target\x86_64-pc-
windows-msvc\release\cam_helper.exe" --transfer=7b7b994f-fb4c-47f1-bd42-
ad0313f75d00 --refresh=0eaa3b06-558d-483c-830e-e688e4e905c5 --run-
id=21f679f877454805a466e2540fdd71bb "--app-version=NZXT CAM@4.49.4" --
env=production "--log-dir=C:\Users\reyes\AppData\Roaming\NZXT CAM\logs" --disable-
sentry --monitor-cpuid-disable-cpu-speed-on-amd=true --log-level=INFO
===============
ID: 19492, Name: FUFAXRCV.exe, CommandLine: "C:\Program Files (x86)\EPSON Software\
FAX Utility\FUFAXRCV.exe"
===============
ID: 16012, Name: FUFAXSTM.exe, CommandLine: "C:\Program Files (x86)\EPSON Software\
FAX Utility\FUFAXSTM.exe"
===============
ID: 22556, Name: xgTrayIcon.exe, CommandLine: "C:\Program Files (x86)\IncrediBuild\
xgTrayIcon.exe"
===============
ID: 1528, Name: cncmd.exe, CommandLine: "C:\Program Files\AMD\CNext\CNext\
cncmd.exe" watch 23656
===============
ID: 21128, Name: cmd.exe, CommandLine: "C:\WINDOWS\system32\cmd.exe" /C "C:\Program
Files\AMD\CNext\CNext\AMDRSServ.exe"
===============
ID: 18492, Name: conhost.exe, CommandLine: \??\C:\WINDOWS\system32\conhost.exe 0x4
===============
ID: 15240, Name: AMDRSServ.exe, CommandLine: "C:\Program Files\AMD\CNext\CNext\
AMDRSServ.exe"
===============
ID: 18812, Name: amdow.exe, CommandLine: "C:\Program Files\AMD\CNext\CNext\
amdow.exe" 15240
===============
ID: 15836, Name: ApplicationFrameHost.exe, CommandLine: C:\WINDOWS\system32\
ApplicationFrameHost.exe -Embedding
===============
ID: 18776, Name: CalculatorApp.exe, CommandLine: "C:\Program Files\WindowsApps\
Microsoft.WindowsCalculator_11.2210.0.0_x64__8wekyb3d8bbwe\CalculatorApp.exe" -
ServerName:App.AppXjvs2nbwryyqjz1h8d8v70f70g3rgdcyb.mca
===============
ID: 24344, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 12404, Name: SystemSettings.exe, CommandLine: "C:\Windows\
ImmersiveControlPanel\SystemSettings.exe" -
ServerName:microsoft.windows.immersivecontrolpanel
===============
ID: 12708, Name: UserOOBEBroker.exe, CommandLine: C:\Windows\System32\oobe\
UserOOBEBroker.exe -Embedding
===============
ID: 10560, Name: svchost.exe, CommandLine: C:\WINDOWS\System32\svchost.exe -k
UnistackSvcGroup
===============
ID: 23160, Name: Microsoft.Photos.exe, CommandLine: "C:\Program Files\WindowsApps\
Microsoft.Windows.Photos_2023.10030.27002.0_x64__8wekyb3d8bbwe\
Microsoft.Photos.exe" -ServerName:App.AppXzst44mncqdg84v7sv6p7yznqwssy6f7f.mca
===============
ID: 9644, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 12096, Name: WhatsApp.exe, CommandLine: "C:\Program Files\WindowsApps\
5319275A.WhatsAppDesktop_2.2316.3.0_x64__cv1g1gvanyjgm\WhatsApp.exe" -
ServerName:App.AppXkf4yh0averk473g9chjmra34tgccdh3d.mca
===============
ID: 22348, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 21872, Name: AMDRSSrcExt.exe, CommandLine: "C:\Program Files\AMD\CNext\CNext\
AMDRSSrcExt.exe" fb28e830-7c29-4591-b2df-4e16275fa0d9 SOFTWARE\AMD\DVR\Overlays
===============
ID: 21816, Name: TextInputHost.exe, CommandLine: "C:\Windows\SystemApps\
MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe" -
ServerName:InputApp.AppXjd5de1g66v206tj52m9d0dtpppx4cgpn.mca
===============
ID: 15664, Name: dllhost.exe, CommandLine: C:\WINDOWS\system32\DllHost.exe
/Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
===============
ID: 9816, Name: CompPkgSrv.exe, CommandLine: C:\Windows\System32\CompPkgSrv.exe -
Embedding
===============
ID: 20452, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --no-startup-window /prefetch:5
===============
ID: 24140, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=crashpad-handler "--user-data-dir=C:\Users\reyes\
AppData\Local\Microsoft\Edge\User Data" /prefetch:7 --monitor-self-
annotation=ptype=crashpad-handler "--database=C:\Users\reyes\AppData\Local\
Microsoft\Edge\User Data\Crashpad" --annotation=IsOfficialBuild=1 --
annotation=channel= --annotation=chromium-version=112.0.5615.138 "--
annotation=exe=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --
annotation=plat=Win64 "--annotation=prod=Microsoft Edge" --
annotation=ver=112.0.1722.68 --initial-client-
data=0x110,0x114,0x118,0xec,0x124,0x7ff84f1935f0,0x7ff84f193600,0x7ff84f193610
===============
ID: 10408, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=gpu-process --gpu-
preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAQAAAAAAAAAAA
AAAAAAAAAAAAAABgAAAAAAAAAGAAAAAAAAAAIAAAAAAAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-
platform-channel-handle=2064 --field-trial-
handle=2044,i,13098549730028620549,11279167311809607003,131072 /prefetch:2
===============
ID: 24160, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=utility --utility-sub-
type=network.mojom.NetworkService --lang=es-419 --service-sandbox-type=none --mojo-
platform-channel-handle=2372 --field-trial-
handle=2044,i,13098549730028620549,11279167311809607003,131072 /prefetch:3
===============
ID: 22136, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=utility --utility-sub-
type=storage.mojom.StorageService --lang=es-419 --service-sandbox-type=service --
mojo-platform-channel-handle=2476 --field-trial-
handle=2044,i,13098549730028620549,11279167311809607003,131072 /prefetch:8
===============
ID: 8564, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe"
===============
ID: 1100, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\reyes\
AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-
annotation=ptype=crashpad-handler "--database=C:\Users\reyes\AppData\Local\Google\
Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\reyes\AppData\Local\Google\
Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel=
--annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=112.0.5615.138 --
initial-client-
data=0x198,0x19c,0x1a0,0x174,0x1a4,0x7ff833219a60,0x7ff833219a70,0x7ff833219a80
===============
ID: 23940, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=gpu-process --gpu-
preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAQAAAAAAAAAAA
AAAAAAAAAAAAAABgAAAAAAAAAGAAAAAAAAAAIAAAAAAAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-
platform-channel-handle=1976 --field-trial-
handle=1984,i,10507123908485495619,13693611018133537986,131072 /prefetch:2
===============
ID: 15680, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=utility --utility-sub-
type=network.mojom.NetworkService --lang=es-419 --service-sandbox-type=none --mojo-
platform-channel-handle=2168 --field-trial-
handle=1984,i,10507123908485495619,13693611018133537986,131072 /prefetch:8
===============
ID: 15752, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=utility --utility-sub-
type=storage.mojom.StorageService --lang=es-419 --service-sandbox-type=service --
mojo-platform-channel-handle=2344 --field-trial-
handle=1984,i,10507123908485495619,13693611018133537986,131072 /prefetch:8
===============
ID: 12780, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=renderer --extension-process --lang=es-419 --device-
scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --
renderer-client-id=7 --time-ticks-at-unix-epoch=-1683295952351911 --launch-time-
ticks=8004490730 --mojo-platform-channel-handle=4364 --field-trial-
handle=1984,i,10507123908485495619,13693611018133537986,131072 /prefetch:1
===============
ID: 22100, Name: cmd.exe, CommandLine: C:\WINDOWS\system32\cmd.exe /d /c "C:\
Program Files\McAfee\WebAdvisor\BrowserHost.exe"
chrome-extension://fheoggkfdfchfphceeifdbepaooicaho/ --parent-window=0 < \\.\pipe\
chrome.nativeMessaging.in.c72cf3ece07e3ea4 > \\.\pipe\
chrome.nativeMessaging.out.c72cf3ece07e3ea4
===============
ID: 10188, Name: conhost.exe, CommandLine: \??\C:\WINDOWS\system32\conhost.exe 0x4
===============
ID: 17072, Name: browserhost.exe, CommandLine: "C:\Program Files\McAfee\WebAdvisor\
BrowserHost.exe" chrome-extension://fheoggkfdfchfphceeifdbepaooicaho/ --parent-
window=0
===============
ID: 24064, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=renderer --instant-process --first-renderer-process
--lang=es-419 --js-flags=--ms-user-locale= --device-scale-factor=1 --num-raster-
threads=4 --enable-main-frame-before-activation --renderer-client-id=14 --time-
ticks-at-unix-epoch=-1683295952351841 --launch-time-ticks=8008058883 --mojo-
platform-channel-handle=5344 --field-trial-
handle=2044,i,13098549730028620549,11279167311809607003,131072 /prefetch:1
===============
ID: 20512, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=renderer --lang=es-419 --js-flags=--ms-user-locale=
--device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-
activation --renderer-client-id=15 --time-ticks-at-unix-epoch=-1683295952351841 --
launch-time-ticks=8008351247 --mojo-platform-channel-handle=5416 --field-trial-
handle=2044,i,13098549730028620549,11279167311809607003,131072 /prefetch:1
===============
ID: 16004, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=utility --utility-sub-type=audio.mojom.AudioService
--lang=es-419 --service-sandbox-type=audio --mojo-platform-channel-handle=6252 --
field-trial-handle=1984,i,10507123908485495619,13693611018133537986,131072
/prefetch:8
===============
ID: 23500, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=renderer --lang=es-419 --device-scale-factor=1 --
num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=27
--time-ticks-at-unix-epoch=-1683295952351911 --launch-time-ticks=8052639081 --mojo-
platform-channel-handle=5072 --field-trial-
handle=1984,i,10507123908485495619,13693611018133537986,131072 /prefetch:1
===============
ID: 12904, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=renderer --lang=es-419 --device-scale-factor=1 --
num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=28
--time-ticks-at-unix-epoch=-1683295952351911 --launch-time-ticks=8053115143 --mojo-
platform-channel-handle=5592 --field-trial-
handle=1984,i,10507123908485495619,13693611018133537986,131072 /prefetch:1
===============
ID: 18884, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=renderer --lang=es-419 --device-scale-factor=1 --
num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=31
--time-ticks-at-unix-epoch=-1683295952351911 --launch-time-ticks=8054253147 --mojo-
platform-channel-handle=7064 --field-trial-
handle=1984,i,10507123908485495619,13693611018133537986,131072 /prefetch:1
===============
ID: 14780, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=renderer --lang=es-419 --device-scale-factor=1 --
num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=36
--time-ticks-at-unix-epoch=-1683295952351911 --launch-time-ticks=8124192741 --mojo-
platform-channel-handle=5604 --field-trial-
handle=1984,i,10507123908485495619,13693611018133537986,131072 /prefetch:1
===============
ID: 15064, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=renderer --lang=es-419 --device-scale-factor=1 --
num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=40
--time-ticks-at-unix-epoch=-1683295952351911 --launch-time-ticks=8125566851 --mojo-
platform-channel-handle=5976 --field-trial-
handle=1984,i,10507123908485495619,13693611018133537986,131072 /prefetch:1
===============
ID: 15020, Name: Ryujinx.exe, CommandLine: "C:\Users\reyes\OneDrive\Escritorio\ryu\
ryujinx-1.1.755-win_x64\publish\Ryujinx.exe"
===============
ID: 18568, Name: conhost.exe, CommandLine: \??\C:\WINDOWS\system32\conhost.exe 0x4
===============
ID: 6024, Name: EpicGamesLauncher.exe, CommandLine: "C:/Program Files (x86)/Epic
Games/Launcher/Portal/Binaries/Win64/EpicGamesLauncher.exe" -silent -SaveToUserDir
-Messaging -enablehighdpi -silent -selfupdate -ForcedRestart -ForcedRestart
===============
ID: 14468, Name: EpicWebHelper.exe, CommandLine: "C:/Program Files (x86)/Epic
Games/Launcher/Engine/Binaries/Win64/EpicWebHelper.exe" --type=gpu-process --field-
trial-handle=2224,9855509780656484046,4638171939859240381,131072 --disable-
features=CalculateNativeWinOcclusion --no-sandbox --locales-dir-path="C:/Program
Files (x86)/Epic
Games/Launcher/Engine/Binaries/ThirdParty/CEF3/Win64/Resources/locales" --log-
file=C:/Users/reyes/AppData/Local/EpicGamesLauncher/Saved/Logs/cef3.log --log-
severity=warning --resources-dir-path="C:/Program Files (x86)/Epic
Games/Launcher/Engine/Binaries/ThirdParty/CEF3/Win64/Resources" --user-agent-
product="EpicGamesLauncher/15.1.1-25325306+++Portal+Release-Live
UnrealEngine/4.27.0-25325306+++Portal+Release-Live Chrome/90.0.4430.212" --lang=es-
MX --gpu-
preferences=SAAAAAAAAADgACAwAAAAAAAAAAAAAAAAAABgAAAAAAAoAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAB4AAAAAAAAAHgAAAAAAAAAKAAAAAQAAAAgAAAAAAAAACgAAAAAAAAAMAAAAAAAAAA4AAAAAAAAABAAAA
AAAAAAAAAAAAUAAAAQAAAAAAAAAAAAAAAGAAAAEAAAAAAAAAABAAAABQAAABAAAAAAAAAAAQAAAAYAAAAIA
AAAAAAAAAgAAAAAAAAA
--log-file=C:/Users/reyes/AppData/Local/EpicGamesLauncher/Saved/Logs/cef3.log --
mojo-platform-channel-handle=2156 /prefetch:2
===============
ID: 22324, Name: EpicWebHelper.exe, CommandLine: "C:/Program Files (x86)/Epic
Games/Launcher/Engine/Binaries/Win64/EpicWebHelper.exe" --type=utility --utility-
sub-type=network.mojom.NetworkService --field-trial-
handle=2224,9855509780656484046,4638171939859240381,131072 --disable-
features=CalculateNativeWinOcclusion --lang=es-419 --service-sandbox-type=none --
no-sandbox --locales-dir-path="C:/Program Files (x86)/Epic
Games/Launcher/Engine/Binaries/ThirdParty/CEF3/Win64/Resources/locales" --log-
file=C:/Users/reyes/AppData/Local/EpicGamesLauncher/Saved/Logs/cef3.log --log-
severity=warning --resources-dir-path="C:/Program Files (x86)/Epic
Games/Launcher/Engine/Binaries/ThirdParty/CEF3/Win64/Resources" --user-agent-
product="EpicGamesLauncher/15.1.1-25325306+++Portal+Release-Live
UnrealEngine/4.27.0-25325306+++Portal+Release-Live Chrome/90.0.4430.212" --lang=es-
MX --log-file=C:/Users/reyes/AppData/Local/EpicGamesLauncher/Saved/Logs/cef3.log --
mojo-platform-channel-handle=2812 /prefetch:8
===============
ID: 13460, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=renderer --lang=es-419 --device-scale-factor=1 --
num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=176
--time-ticks-at-unix-epoch=-1683295952351911 --launch-time-ticks=9509654476 --mojo-
platform-channel-handle=11488 --field-trial-
handle=1984,i,10507123908485495619,13693611018133537986,131072 /prefetch:1
===============
ID: 14260, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=renderer --lang=es-419 --device-scale-factor=1 --
num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=206
--time-ticks-at-unix-epoch=-1683295952351911 --launch-time-ticks=9586924994 --mojo-
platform-channel-handle=11896 --field-trial-
handle=1984,i,10507123908485495619,13693611018133537986,131072 /prefetch:1
===============
ID: 13016, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=renderer --lang=es-419 --device-scale-factor=1 --
num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=411
--time-ticks-at-unix-epoch=-1683295952351911 --launch-time-ticks=10408040452 --
mojo-platform-channel-handle=10000 --field-trial-
handle=1984,i,10507123908485495619,13693611018133537986,131072 /prefetch:1
===============
ID: 11204, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=renderer --lang=es-419 --device-scale-factor=1 --
num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=412
--time-ticks-at-unix-epoch=-1683295952351911 --launch-time-ticks=10431606596 --
mojo-platform-channel-handle=1364 --field-trial-
handle=1984,i,10507123908485495619,13693611018133537986,131072 /prefetch:1
===============
ID: 5736, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=renderer --lang=es-419 --device-scale-factor=1 --
num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=531
--time-ticks-at-unix-epoch=-1683295952351911 --launch-time-ticks=10759687840 --
mojo-platform-channel-handle=10824 --field-trial-
handle=1984,i,10507123908485495619,13693611018133537986,131072 /prefetch:1
===============
ID: 20428, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=renderer --lang=es-419 --device-scale-factor=1 --
num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=542
--time-ticks-at-unix-epoch=-1683295952351911 --launch-time-ticks=10791099751 --
mojo-platform-channel-handle=9712 --field-trial-
handle=1984,i,10507123908485495619,13693611018133537986,131072 /prefetch:1
===============
ID: 16848, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=renderer --lang=es-419 --device-scale-factor=1 --
num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=543
--time-ticks-at-unix-epoch=-1683295952351911 --launch-time-ticks=10791307189 --
mojo-platform-channel-handle=7384 --field-trial-
handle=1984,i,10507123908485495619,13693611018133537986,131072 /prefetch:1
===============
ID: 16624, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=renderer --lang=es-419 --device-scale-factor=1 --
num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=544
--time-ticks-at-unix-epoch=-1683295952351911 --launch-time-ticks=10804082816 --
mojo-platform-channel-handle=8228 --field-trial-
handle=1984,i,10507123908485495619,13693611018133537986,131072 /prefetch:1
===============
ID: 4836, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=renderer --lang=es-419 --device-scale-factor=1 --
num-raster-threads=4 --enable-main-frame-before-activation --renderer-client-id=548
--time-ticks-at-unix-epoch=-1683295952351911 --launch-time-ticks=10806840427 --
mojo-platform-channel-handle=15208 --field-trial-
handle=1984,i,10507123908485495619,13693611018133537986,131072 /prefetch:1
===============
ID: 5828, Name: BreeZip.exe, CommandLine: "C:\Program Files\WindowsApps\
3138AweZip.AweZip_1.4.28.0_x64__ffd303wmbhcjt\AweZip\BreeZip.exe" "C:\Users\reyes\
Downloads\Install.zip"
===============
ID: 20864, Name: smartscreen.exe, CommandLine: C:\Windows\System32\smartscreen.exe
-Embedding
===============
ID: 24184, Name: IZyb7V932iZr86Nw2_ErHxZX.exe, CommandLine: "C:\Users\reyes\
OneDrive\Im??genes\Minor Policy\IZyb7V932iZr86Nw2_ErHxZX.exe"
===============
ID: 24260, Name: VczbnwMQClQ3HRXga_VZljxJ.exe, CommandLine: "C:\Users\reyes\
OneDrive\Im??genes\Minor Policy\VczbnwMQClQ3HRXga_VZljxJ.exe"
===============
ID: 21956, Name: v6207378.exe, CommandLine: C:\Users\reyes\AppData\Local\Temp\
IXP000.TMP\v6207378.exe
===============
ID: 19084, Name: Xd2Q3mziSVKfkbgFTEsyIRsz.exe, CommandLine: "C:\Users\reyes\
OneDrive\Im??genes\Minor Policy\Xd2Q3mziSVKfkbgFTEsyIRsz.exe"
===============
ID: 6376, Name: is-DBEKN.tmp, CommandLine: "C:\Users\reyes\AppData\Local\Temp\is-
2CCKN.tmp\is-DBEKN.tmp" /SL4 $F06F0 "C:\Users\reyes\OneDrive\Im??genes\Minor
Policy\VczbnwMQClQ3HRXga_VZljxJ.exe" 1787001 51712
===============
ID: 8932, Name: AppLaunch.exe, CommandLine: "C:\\Windows\\Microsoft.NET\\
Framework\\v4.0.30319\\AppLaunch.exe"
===============
ID: 11540, Name: AppLaunch.exe, CommandLine: "C:\\Windows\\Microsoft.NET\\
Framework\\v4.0.30319\\AppLaunch.exe"
===============
ID: 8224, Name: 11.exe, CommandLine: "C:\Windows\Temp\11.exe"
===============
ID: 8076, Name: 321.exe, CommandLine: "C:\Windows\Temp\321.exe"
===============
ID: 20620, Name: Rec55.exe, CommandLine: "C:\Program Files (x86)\FKVCover\Rec55\
Rec55.exe"
===============
ID: 19408, Name: RegSvcs.exe, CommandLine: "C:\Windows\Microsoft.NET\Framework\
v4.0.30319\RegSvcs.exe"
===============
ID: 3776, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --remote-debugging-port=10523 --headless --user-data-
dir="C:\Users\reyes\AppData\Local\Google\Chrome\User DataDHCBG" --profile-
directory="Default"
===============
ID: 17396, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\reyes\
AppData\Local\Google\Chrome\User DataDHCBG" /prefetch:7 --monitor-self-
annotation=ptype=crashpad-handler "--database=C:\Users\reyes\AppData\Local\Google\
Chrome\User DataDHCBG\Crashpad" "--metrics-dir=C:\Users\reyes\AppData\Local\Google\
Chrome\User DataDHCBG" --url=https://clients2.google.com/cr/report --
annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --
annotation=ver=112.0.5615.138 --initial-client-
data=0x1a0,0x1a4,0x1a8,0x17c,0x1ac,0x7ff833219a60,0x7ff833219a70,0x7ff833219a80
===============
ID: 7832, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=gpu-process --headless --use-angle=swiftshader-webgl
--headless --gpu-
preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAQAAAAAAAAAAA
AAAAAAAAAAAAAABgAAAAAAAAAGAAAAAAAAAAIAAAAAAAAAAgAAAAAAAAACAAAAAAAAAA= --use-
gl=angle --mojo-platform-channel-handle=1384 --field-trial-
handle=1388,i,46694734443217226,2592625528148906181,131072 --disable-
features=PaintHolding /prefetch:2
===============
ID: 15320, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=utility --utility-sub-
type=network.mojom.NetworkService --lang=es-CR --service-sandbox-type=none --use-
angle=swiftshader-webgl --use-gl=angle --headless --mojo-platform-channel-
handle=1696 --field-trial-
handle=1388,i,46694734443217226,2592625528148906181,131072 --disable-
features=PaintHolding /prefetch:8
===============
ID: 10360, Name: eBTtTzYpuSQzTHcPh6qir_VH.exe, CommandLine: "C:\Users\reyes\
OneDrive\Documentos\eBTtTzYpuSQzTHcPh6qir_VH.exe"
===============
ID: 11316, Name: 2SKqL.exe, CommandLine: "C:\Users\reyes\AppData\Roaming\
M8INusJASa\2SKqL.exe"
===============
ID: 15028, Name: b5057097.exe, CommandLine: C:\Users\reyes\AppData\Local\Temp\
IXP001.TMP\b5057097.exe
===============
ID: 10984, Name: kHcmOl.exe, CommandLine: "C:\Users\reyes\AppData\Roaming\
9TMMVAO8i\kHcmOl.exe"
===============
ID: 20500, Name: RegSvcs.exe, CommandLine: "C:\Windows\Microsoft.NET\Framework\
v4.0.30319\RegSvcs.exe"
===============
ID: 81292, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=renderer --headless --lang=es-CR --remote-debugging-
port=10523 --allow-pre-commit-input --disable-gpu-compositing --lang=es-CR --
device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation
--renderer-client-id=6 --time-ticks-at-unix-epoch=-1683295952351342 --launch-time-
ticks=10876528777 --mojo-platform-channel-handle=2392 --field-trial-
handle=1388,i,46694734443217226,2592625528148906181,131072 --disable-
features=PaintHolding /prefetch:1
===============
ID: 115892, Name: AppLaunch.exe, CommandLine: "C:\Windows\Microsoft.NET\Framework\
v4.0.30319\AppLaunch.exe"
===============
ID: 115992, Name: chrome.exe, CommandLine: "C:\Program Files\Google\Chrome\
Application\chrome.exe" --type=renderer --headless --lang=es-CR --remote-debugging-
port=10523 --allow-pre-commit-input --disable-gpu-compositing --lang=es-CR --
device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation
--renderer-client-id=8 --time-ticks-at-unix-epoch=-1683295952351342 --launch-time-
ticks=10876963654 --mojo-platform-channel-handle=3040 --field-trial-
handle=1388,i,46694734443217226,2592625528148906181,131072 --disable-
features=PaintHolding /prefetch:1
===============
ID: 116424, Name: cmd.exe, CommandLine: "cmd.exe" /C powershell -EncodedCommand
"PAAjAGEAOAAjAD4AIABBAGQAZAAtAE0AcABQAHIAZQBmAGUAcgBlAG4AYwBlACAAPAAjADMAaAB3ADgAMA
B0ACMAPgAgAC0ARQB4AGMAbAB1AHMAaQBvAG4AUABhAHQAaAAgAEAAKAAkAGUAbgB2ADoAVQBzAGUAcgBQA
HIAbwBmAGkAbABlACwAJABlAG4AdgA6AFMAeQBzAHQAZQBtAEQAcgBpAHYAZQApACAAPAAjAHEAdgBCAFkA
cwB3AFYAVgB5ACMAPgAgAC0ARgBvAHIAYwBlACAAPAAjADAAVwBuAHEATwA2ADcATwAjAD4A" &
powercfg /x -hibernate-timeout-ac 0 & powercfg /x -hibernate-timeout-dc 0 &
powercfg /x -standby-timeout-ac 0 & powercfg /x -standby-timeout-dc 0 & powercfg
/hibernate off
===============
ID: 116432, Name: conhost.exe, CommandLine: \??\C:\WINDOWS\system32\conhost.exe 0x4
===============
ID: 116484, Name: powershell.exe, CommandLine: powershell -EncodedCommand
"PAAjAGEAOAAjAD4AIABBAGQAZAAtAE0AcABQAHIAZQBmAGUAcgBlAG4AYwBlACAAPAAjADMAaAB3ADgAMA
B0ACMAPgAgAC0ARQB4AGMAbAB1AHMAaQBvAG4AUABhAHQAaAAgAEAAKAAkAGUAbgB2ADoAVQBzAGUAcgBQA
HIAbwBmAGkAbABlACwAJABlAG4AdgA6AFMAeQBzAHQAZQBtAEQAcgBpAHYAZQApACAAPAAjAHEAdgBCAFkA
cwB3AFYAVgB5ACMAPgAgAC0ARgBvAHIAYwBlACAAPAAjADAAVwBuAHEATwA2ADcATwAjAD4A"