* Telegram: @luntancloud *
***********************************************
ID: 6980, Name: csrss.exe, CommandLine:
===============
ID: 9044, Name: winlogon.exe, CommandLine: winlogon.exe
===============
ID: 14064, Name: fontdrvhost.exe, CommandLine: "fontdrvhost.exe"
===============
ID: 6976, Name: dwm.exe, CommandLine: "dwm.exe"
===============
ID: 12528, Name: NVDisplay.Container.exe, CommandLine: "C:\Windows\System32\
DriverStore\FileRepository\nvacig.inf_amd64_a87281c4bd1a1369\Display.NvContainer\
NVDisplay.Container.exe" -f %ProgramData%\NVIDIA\DisplaySessionContainer%d.log -d
C:\Windows\System32\DriverStore\FileRepository\nvacig.inf_amd64_a87281c4bd1a1369\
Display.NvContainer\plugins\Session -r -l 3 -p 30000 -cfg
NVDisplay.ContainerLocalSystem\Session -c
===============
ID: 7696, Name: sihost.exe, CommandLine: sihost.exe
===============
ID: 2492, Name: svchost.exe, CommandLine: C:\Windows\system32\svchost.exe -k
UnistackSvcGroup -s CDPUserSvc
===============
ID: 11016, Name: svchost.exe, CommandLine: C:\Windows\system32\svchost.exe -k
UnistackSvcGroup -s WpnUserService
===============
ID: 10956, Name: taskhostw.exe, CommandLine: taskhostw.exe {222A245B-E637-4AE9-
A93F-A59CA119A75E}
===============
ID: 7040, Name: explorer.exe, CommandLine: C:\Windows\Explorer.EXE
===============
ID: 1184, Name: igfxEM.exe, CommandLine: "C:\Windows\System32\DriverStore\
FileRepository\igdlh64.inf_amd64_d44295a98a21a376\igfxEM.exe"
===============
ID: 7164, Name: svchost.exe, CommandLine: C:\Windows\system32\svchost.exe -k
ClipboardSvcGroup -p -s cbdhsvc
===============
ID: 4204, Name: Widgets.exe, CommandLine: "C:\Program Files\WindowsApps\
MicrosoftWindows.Client.WebExperience_424.400.20.0_x64__cw5n1h2txyewy\Dashboard\
Widgets.exe" -ServerName:Microsoft.Windows.DashboardServer
===============
ID: 3100, Name: SearchHost.exe, CommandLine: "C:\Windows\SystemApps\
MicrosoftWindows.Client.CBS_cw5n1h2txyewy\SearchHost.exe" -
ServerName:CortanaUI.AppXstmwaab17q5s3y22tp6apqz7a45vwv65.mca
===============
ID: 5328, Name: StartMenuExperienceHost.exe, CommandLine: "C:\Windows\SystemApps\
Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\
StartMenuExperienceHost.exe" -
ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
===============
ID: 7308, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 1332, Name: svchost.exe, CommandLine: C:\Windows\system32\svchost.exe -k
UdkSvcGroup -s UdkUserSvc
===============
ID: 12376, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 8972, Name: dllhost.exe, CommandLine: C:\Windows\system32\DllHost.exe
/Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
===============
ID: 7536, Name: ShellExperienceHost.exe, CommandLine: "C:\Windows\SystemApps\
ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -
ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
===============
ID: 1464, Name: ctfmon.exe, CommandLine: "ctfmon.exe"
===============
ID: 13420, Name: TextInputHost.exe, CommandLine: "C:\Windows\SystemApps\
MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe" -
ServerName:InputApp.AppXjd5de1g66v206tj52m9d0dtpppx4cgpn.mca
===============
ID: 11076, Name: SecurityHealthSystray.exe, CommandLine: "C:\Windows\System32\
SecurityHealthSystray.exe"
===============
ID: 13176, Name: egui.exe, CommandLine: "C:\Program Files\ESET\ESET NOD32
Antivirus\egui.exe" /hide /waitservice
===============
ID: 9544, Name: ApplicationFrameHost.exe, CommandLine: C:\Windows\system32\
ApplicationFrameHost.exe -Embedding
===============
ID: 5808, Name: SystemSettings.exe, CommandLine: "C:\Windows\
ImmersiveControlPanel\SystemSettings.exe" -
ServerName:microsoft.windows.immersivecontrolpanel
===============
ID: 9316, Name: RAVCpl64.exe, CommandLine: "C:\Program Files\Realtek\Audio\HDA\
RAVCpl64.exe" -s
===============
ID: 11332, Name: UserOOBEBroker.exe, CommandLine: C:\Windows\System32\oobe\
UserOOBEBroker.exe -Embedding
===============
ID: 11860, Name: RAVBg64.exe, CommandLine: "C:\Program Files\Realtek\Audio\HDA\
RAVBg64.exe" /ASC
===============
ID: 4768, Name: OneDrive.exe, CommandLine: "C:\Users\pedro\AppData\Local\
Microsoft\OneDrive\OneDrive.exe" /background
===============
ID: 13316, Name: SuperCopier.exe, CommandLine: "C:\Program Files (x86)\
Supercopier\SuperCopier.exe"
===============
ID: 2764, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --no-startup-window --win-session-start
===============
ID: 8672, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=gpu-process --no-appcompat-clear --gpu-
preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA==
--mojo-platform-channel-handle=1948 --field-trial-
handle=1944,i,9445726942884115263,10598092993865149263,262144 --variations-seed-
version /prefetch:2
===============
ID: 10164, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=utility --utility-sub-
type=network.mojom.NetworkService --lang=es --service-sandbox-type=none --no-
appcompat-clear --mojo-platform-channel-handle=2288 --field-trial-
handle=1944,i,9445726942884115263,10598092993865149263,262144 --variations-seed-
version /prefetch:3
===============
ID: 11884, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=utility --utility-sub-
type=storage.mojom.StorageService --lang=es --service-sandbox-type=service --no-
appcompat-clear --mojo-platform-channel-handle=2412 --field-trial-
handle=1944,i,9445726942884115263,10598092993865149263,262144 --variations-seed-
version /prefetch:8
===============
ID: 8364, Name: steam.exe, CommandLine: "C:\Program Files (x86)\Steam\steam.exe" -
silent
===============
ID: 1764, Name: steamwebhelper.exe, CommandLine: "C:\Program Files (x86)\Steam\
bin\cef\cef.win7x64\steamwebhelper.exe" "-lang=es_ES" "-cachedir=C:\Users\pedro\
AppData\Local\Steam\htmlcache" "-steampid=8364" "-buildid=1705108172" "-steamid=0"
"-logdir=C:\Program Files (x86)\Steam\logs" "-uimode=7" "-startcount=0" "-
steamuniverse=Public" "-realm=Global" "-clientui=C:\Program Files (x86)\Steam\
clientui" "-steampath=C:\Program Files (x86)\Steam\steam.exe" "-launcher=0" --
enable-media-stream --enable-smooth-scrolling --enable-direct-write "--log-file=C:\
Program Files (x86)\Steam\logs\cef_log.txt" --disable-quick-menu "--disable-
features=SameSiteByDefaultCookies" "--enable-blink-
features=ResizeObserver,Worklet,AudioWorklet" "--disable-blink-features=Badging"
===============
ID: 11996, Name: usb-av.exe, CommandLine: "C:\Program Files (x86)\USB-AV
Antivirus\usb-av.exe"
===============
ID: 13564, Name: steamwebhelper.exe, CommandLine: "C:\Program Files (x86)\Steam\
bin\cef\cef.win7x64\steamwebhelper.exe" --type=crashpad-handler /prefetch:7 --max-
uploads=5 --max-db-size=20 --max-db-age=5 --monitor-self-annotation=ptype=crashpad-
handler "--database=C:\Program Files (x86)\Steam\dumps" "--metrics-dir=C:\Users\
pedro\AppData\Local\CEF\User Data" --url=https://crash.steampowered.com/submit --
annotation=platform=win64 --annotation=product=cefwebhelper --
annotation=version=1705108172 --initial-client-
data=0x394,0x398,0x39c,0x370,0x3a0,0x7ffed9c6f070,0x7ffed9c6f080,0x7ffed9c6f090
===============
ID: 12852, Name: steamwebhelper.exe, CommandLine: "C:\Program Files (x86)\Steam\
bin\cef\cef.win7x64\steamwebhelper.exe" --type=gpu-process --field-trial-
handle=1716,5792079188473169359,7815576551874107708,131072 --enable-
features=CastMediaRouteProvider --disable-features=SameSiteByDefaultCookies --log-
file="C:\Program Files (x86)\Steam\logs\cef_log.txt" --product-version="Valve Steam
Client" --lang=es-ES --buildid=1705108172 --steamid=0 --gpu-
preferences=MAAAAAAAAADgAAAwAAAAAAAAAAAAAAAAAABgAAAAAAAQAAAAAAAAAAAAAAAAAAAAKAAAAAQ
AAAAgAAAAAAAAACgAAAAAAAAAMAAAAAAAAAA4AAAAAAAAABAAAAAAAAAAAAAAAAUAAAAQAAAAAAAAAAAAAA
AGAAAAEAAAAAAAAAABAAAABQAAABAAAAAAAAAAAQAAAAYAAAA= --log-file="C:\Program Files
(x86)\Steam\logs\cef_log.txt" --mojo-platform-channel-handle=1736 /prefetch:2
===============
ID: 1328, Name: steamwebhelper.exe, CommandLine: "C:\Program Files (x86)\Steam\
bin\cef\cef.win7x64\steamwebhelper.exe" --type=utility --utility-sub-
type=network.mojom.NetworkService --field-trial-
handle=1716,5792079188473169359,7815576551874107708,131072 --enable-
features=CastMediaRouteProvider --disable-features=SameSiteByDefaultCookies --
lang=es --service-sandbox-type=network --log-file="C:\Program Files (x86)\Steam\
logs\cef_log.txt" --product-version="Valve Steam Client" --lang=es-ES --
buildid=1705108172 --steamid=0 --log-file="C:\Program Files (x86)\Steam\logs\
cef_log.txt" --mojo-platform-channel-handle=72 /prefetch:8
===============
ID: 12108, Name: susbav.exe, CommandLine: "C:\Program Files (x86)\USB-AV
Antivirus\susbav.exe" @*2&#)_&9$!_7a=-^%#@}P{n$3t 197712 1
===============
ID: 696, Name: steamwebhelper.exe, CommandLine: "C:\Program Files (x86)\Steam\bin\
cef\cef.win7x64\steamwebhelper.exe" --type=renderer --log-file="C:\Program Files
(x86)\Steam\logs\cef_log.txt" --field-trial-
handle=1716,5792079188473169359,7815576551874107708,131072 --enable-
features=CastMediaRouteProvider --disable-features=SameSiteByDefaultCookies --
enable-blink-features=ResizeObserver,Worklet,AudioWorklet --disable-blink-
features=Badging --lang=es --log-file="C:\Program Files (x86)\Steam\logs\
cef_log.txt" --product-version="Valve Steam Client" --buildid=1705108172 --
steamid=0 --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-
before-activation --renderer-client-id=4 --mojo-platform-channel-handle=2524
/prefetch:1
===============
ID: 4020, Name: steamwebhelper.exe, CommandLine: "C:\Program Files (x86)\Steam\
bin\cef\cef.win7x64\steamwebhelper.exe" --type=renderer --log-file="C:\Program
Files (x86)\Steam\logs\cef_log.txt" --field-trial-
handle=1716,5792079188473169359,7815576551874107708,131072 --enable-
features=CastMediaRouteProvider --disable-features=SameSiteByDefaultCookies --
enable-blink-features=ResizeObserver,Worklet,AudioWorklet --disable-blink-
features=Badging --lang=es --log-file="C:\Program Files (x86)\Steam\logs\
cef_log.txt" --product-version="Valve Steam Client" --buildid=1705108172 --
steamid=0 --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-
before-activation --renderer-client-id=8 --mojo-platform-channel-handle=3356
/prefetch:1
===============
ID: 5692, Name: svchost.exe, CommandLine: C:\Windows\system32\svchost.exe -k
UnistackSvcGroup
===============
ID: 6160, Name: WidgetService.exe, CommandLine: "C:\Program Files\WindowsApps\
MicrosoftWindows.Client.WebExperience_424.400.20.0_x64__cw5n1h2txyewy\Dashboard\
widgetservice.exe" -RegisterProcessAsComServer -Embedding
===============
ID: 8484, Name: msedgewebview2.exe, CommandLine: "C:\Program Files (x86)\
Microsoft\EdgeWebView\Application\120.0.2210.144\msedgewebview2.exe" --embedded-
browser-webview=1 --webview-exe-name=Widgets.exe --webview-exe-
version=421.20070.2390.0 --user-data-dir="C:\Users\pedro\AppData\Local\Packages\
MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebView" --
noerrdialogs --disk-cache-size=52428800 --edge-webview-is-background --enable-
features=MojoIpcz,msWebView2TreatAppSuspendAsDeviceSuspend,UseNativeThreadPool,UseB
ackgroundNativeThreadPool --lang=es-ES --accept-lang=es-ES --mojo-named-platform-
channel-pipe=4204.8016.6153352918473798999
===============
ID: 628, Name: msedgewebview2.exe, CommandLine: "C:\Program Files (x86)\Microsoft\
EdgeWebView\Application\120.0.2210.144\msedgewebview2.exe" --type=crashpad-handler
--user-data-dir=C:\Users\pedro\AppData\Local\Packages\
MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebView
/prefetch:4 --monitor-self-annotation=ptype=crashpad-handler --database=C:\Users\
pedro\AppData\Local\Packages\MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\
LocalState\EBWebView\Crashpad --annotation=IsOfficialBuild=1 --annotation=channel=
--annotation=chromium-version=120.0.6099.234 "--annotation=exe=C:\Program Files
(x86)\Microsoft\EdgeWebView\Application\120.0.2210.144\msedgewebview2.exe" --
annotation=plat=Win64 "--annotation=prod=Edge WebView2" --
annotation=ver=120.0.2210.144 --initial-client-
data=0x174,0x178,0x17c,0x150,0x184,0x7ffed3da2b38,0x7ffed3da2b44,0x7ffed3da2b50
===============
ID: 11276, Name: msedgewebview2.exe, CommandLine: "C:\Program Files (x86)\
Microsoft\EdgeWebView\Application\120.0.2210.144\msedgewebview2.exe" --type=gpu-
process --noerrdialogs --user-data-dir="C:\Users\pedro\AppData\Local\Packages\
MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebView" --
webview-exe-name=Widgets.exe --webview-exe-version=421.20070.2390.0 --embedded-
browser-webview=1 --gpu-
preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA==
--mojo-platform-channel-handle=1732 --field-trial-
handle=1728,i,16830358961635696718,18231565939246698985,262144 --enable-
features=MojoIpcz,UseBackgroundNativeThreadPool,UseNativeThreadPool,msWebView2Treat
AppSuspendAsDeviceSuspend --variations-seed-version /prefetch:2
===============
ID: 9468, Name: msedgewebview2.exe, CommandLine: "C:\Program Files (x86)\
Microsoft\EdgeWebView\Application\120.0.2210.144\msedgewebview2.exe" --type=utility
--utility-sub-type=network.mojom.NetworkService --lang=es --service-sandbox-
type=none --noerrdialogs --user-data-dir="C:\Users\pedro\AppData\Local\Packages\
MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebView" --
webview-exe-name=Widgets.exe --webview-exe-version=421.20070.2390.0 --embedded-
browser-webview=1 --mojo-platform-channel-handle=1900 --field-trial-
handle=1728,i,16830358961635696718,18231565939246698985,262144 --enable-
features=MojoIpcz,UseBackgroundNativeThreadPool,UseNativeThreadPool,msWebView2Treat
AppSuspendAsDeviceSuspend --variations-seed-version /prefetch:3
===============
ID: 3388, Name: msedgewebview2.exe, CommandLine: "C:\Program Files (x86)\
Microsoft\EdgeWebView\Application\120.0.2210.144\msedgewebview2.exe" --type=utility
--utility-sub-type=storage.mojom.StorageService --lang=es --service-sandbox-
type=service --noerrdialogs --user-data-dir="C:\Users\pedro\AppData\Local\Packages\
MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebView" --
webview-exe-name=Widgets.exe --webview-exe-version=421.20070.2390.0 --embedded-
browser-webview=1 --mojo-platform-channel-handle=2256 --field-trial-
handle=1728,i,16830358961635696718,18231565939246698985,262144 --enable-
features=MojoIpcz,UseBackgroundNativeThreadPool,UseNativeThreadPool,msWebView2Treat
AppSuspendAsDeviceSuspend --variations-seed-version /prefetch:8
===============
ID: 512, Name: msedgewebview2.exe, CommandLine: "C:\Program Files (x86)\Microsoft\
EdgeWebView\Application\120.0.2210.144\msedgewebview2.exe" --type=renderer --
noerrdialogs --user-data-dir="C:\Users\pedro\AppData\Local\Packages\
MicrosoftWindows.Client.WebExperience_cw5n1h2txyewy\LocalState\EBWebView" --
webview-exe-name=Widgets.exe --webview-exe-version=421.20070.2390.0 --embedded-
browser-webview=1 --first-renderer-process --lang=es --device-scale-factor=1 --num-
raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --js-
flags="--harmony-weak-refs-with-cleanup-some --expose-gc --ms-user-locale=" --time-
ticks-at-unix-epoch=-1706088634461279 --launch-time-ticks=417238596659 --mojo-
platform-channel-handle=2112 --field-trial-
handle=1728,i,16830358961635696718,18231565939246698985,262144 --enable-
features=MojoIpcz,UseBackgroundNativeThreadPool,UseNativeThreadPool,msWebView2Treat
AppSuspendAsDeviceSuspend --variations-seed-version /prefetch:1
===============
ID: 5348, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 8700, Name: RuntimeBroker.exe, CommandLine: C:\Windows\System32\
RuntimeBroker.exe -Embedding
===============
ID: 808, Name: SearchProtocolHost.exe, CommandLine: "C:\Windows\System32\
SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-1793502538-
3452428593-4043836068-100125_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-
1793502538-3452428593-4043836068-100125 1 -2147483646 "Software\Microsoft\Windows
Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\
ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
===============
ID: 5216, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=renderer --no-appcompat-clear --lang=es --js-
flags=--ms-user-locale= --device-scale-factor=1 --num-raster-threads=2 --enable-
main-frame-before-activation --renderer-client-id=27 --time-ticks-at-unix-epoch=-
1706088634460784 --launch-time-ticks=417524120823 --mojo-platform-channel-
handle=6124 --field-trial-
handle=1944,i,9445726942884115263,10598092993865149263,262144 --variations-seed-
version /prefetch:1
===============
ID: 472, Name: svchost.exe, CommandLine: C:\Windows\system32\svchost.exe -k
LocalService -p -s NPSMSvc
===============
ID: 6284, Name: SystemSettingsBroker.exe, CommandLine: C:\Windows\System32\
SystemSettingsBroker.exe -Embedding
===============
ID: 6084, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=utility --utility-sub-type=audio.mojom.AudioService
--lang=es --service-sandbox-type=audio --no-appcompat-clear --mojo-platform-
channel-handle=6520 --field-trial-
handle=1944,i,9445726942884115263,10598092993865149263,262144 --variations-seed-
version /prefetch:8
===============
ID: 5224, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=renderer --no-appcompat-clear --lang=es --js-
flags=--ms-user-locale= --device-scale-factor=1 --num-raster-threads=2 --enable-
main-frame-before-activation --renderer-client-id=46 --time-ticks-at-unix-epoch=-
1706088634460784 --launch-time-ticks=417639625625 --mojo-platform-channel-
handle=4672 --field-trial-
handle=1944,i,9445726942884115263,10598092993865149263,262144 --variations-seed-
version /prefetch:1
===============
ID: 14056, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=renderer --no-appcompat-clear --lang=es --js-
flags=--ms-user-locale= --device-scale-factor=1 --num-raster-threads=2 --enable-
main-frame-before-activation --renderer-client-id=47 --time-ticks-at-unix-epoch=-
1706088634460784 --launch-time-ticks=417640055110 --mojo-platform-channel-
handle=7120 --field-trial-
handle=1944,i,9445726942884115263,10598092993865149263,262144 --variations-seed-
version /prefetch:1
===============
ID: 9820, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=renderer --no-appcompat-clear --lang=es --js-
flags=--ms-user-locale= --device-scale-factor=1 --num-raster-threads=2 --enable-
main-frame-before-activation --renderer-client-id=48 --time-ticks-at-unix-epoch=-
1706088634460784 --launch-time-ticks=417640269830 --mojo-platform-channel-
handle=7084 --field-trial-
handle=1944,i,9445726942884115263,10598092993865149263,262144 --variations-seed-
version /prefetch:1
===============
ID: 3384, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=renderer --no-appcompat-clear --lang=es --js-
flags=--ms-user-locale= --device-scale-factor=1 --num-raster-threads=2 --enable-
main-frame-before-activation --renderer-client-id=52 --time-ticks-at-unix-epoch=-
1706088634460784 --launch-time-ticks=417645417205 --mojo-platform-channel-
handle=3984 --field-trial-
handle=1944,i,9445726942884115263,10598092993865149263,262144 --variations-seed-
version /prefetch:1
===============
ID: 7244, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=renderer --no-appcompat-clear --lang=es --js-
flags=--ms-user-locale= --device-scale-factor=1 --num-raster-threads=2 --enable-
main-frame-before-activation --renderer-client-id=67 --time-ticks-at-unix-epoch=-
1706088634460784 --launch-time-ticks=417675117580 --mojo-platform-channel-
handle=8512 --field-trial-
handle=1944,i,9445726942884115263,10598092993865149263,262144 --variations-seed-
version /prefetch:1
===============
ID: 10328, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=renderer --no-appcompat-clear --lang=es --js-
flags=--ms-user-locale= --device-scale-factor=1 --num-raster-threads=2 --enable-
main-frame-before-activation --renderer-client-id=91 --time-ticks-at-unix-epoch=-
1706088634460784 --launch-time-ticks=417753006532 --mojo-platform-channel-
handle=9020 --field-trial-
handle=1944,i,9445726942884115263,10598092993865149263,262144 --variations-seed-
version /prefetch:1
===============
ID: 4580, Name: WinRAR.exe, CommandLine: "C:\Program Files\WinRAR\WinRAR.exe" "D:\
Empire_Earth_Gold_Edition_PC_[Full]_Español_[MEGA].7z"
===============
ID: 9748, Name: smartscreen.exe, CommandLine: C:\Windows\System32\smartscreen.exe
-Embedding
===============
ID: 7340, Name: osk.exe, CommandLine: "C:\Windows\system32\osk.exe"
===============
ID: 3176, Name: 6xTueFgYoHlKFJvB0fnpkBsA.exe, CommandLine: "C:\Users\pedro\
Documents\GuardFox\6xTueFgYoHlKFJvB0fnpkBsA.exe"
===============
ID: 9564, Name: HX5iTBRFJiDzaWbdKABYbbzz.exe, CommandLine: "C:\Users\pedro\
Documents\GuardFox\HX5iTBRFJiDzaWbdKABYbbzz.exe"
===============
ID: 1408, Name: LtIYbiG0ZIV2fIKdNKeGDPXj.exe, CommandLine: "C:\Users\pedro\
Documents\GuardFox\LtIYbiG0ZIV2fIKdNKeGDPXj.exe"
===============
ID: 144, Name: alfM6xs4CcJvjBW8O2kecD_k.exe, CommandLine: "C:\Users\pedro\
Documents\GuardFox\alfM6xs4CcJvjBW8O2kecD_k.exe"
===============
ID: 8704, Name: mkVrkBExWJBwy7gTuqYXMH8A.exe, CommandLine: "C:\Users\pedro\
Documents\GuardFox\mkVrkBExWJBwy7gTuqYXMH8A.exe"
===============
ID: 10724, Name: na52RROwifQGpW8QajVePhBU.exe, CommandLine: "C:\Users\pedro\
Documents\GuardFox\na52RROwifQGpW8QajVePhBU.exe"
===============
ID: 7492, Name: control.exe, CommandLine: "C:\Windows\System32\control.exe" "C:\
Users\pedro\AppData\Local\Temp\1CVtWb.cPL",
===============
ID: 8688, Name: rundll32.exe, CommandLine: "C:\Windows\system32\rundll32.exe"
Shell32.dll,Control_RunDLL "C:\Users\pedro\AppData\Local\Temp\1CVtWb.cPL",
===============
ID: 11040, Name: RegAsm.exe, CommandLine: "C:\Windows\Microsoft.NET\Framework\
v4.0.30319\RegAsm.exe"
===============
ID: 11824, Name: RegAsm.exe, CommandLine: "C:\Windows\Microsoft.NET\Framework\
v4.0.30319\RegAsm.exe"
===============
ID: 11900, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe"
===============
ID: 13996, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=crashpad-handler "--user-data-dir=C:\Users\pedro\
AppData\Local\Microsoft\Edge\User Data" /prefetch:4 --monitor-self-
annotation=ptype=crashpad-handler "--database=C:\Users\pedro\AppData\Local\
Microsoft\Edge\User Data\Crashpad" --annotation=IsOfficialBuild=1 --
annotation=channel= --annotation=chromium-version=121.0.6167.85 "--
annotation=exe=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --
annotation=plat=Win64 "--annotation=prod=Microsoft Edge" --
annotation=ver=121.0.2277.83 --initial-client-
data=0x2f0,0x2f4,0x2f8,0x2bc,0x344,0x7ffedf93bf58,0x7ffedf93bf64,0x7ffedf93bf70
===============
ID: 7612, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=gpu-process --no-appcompat-clear --gpu-
preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAEAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA==
--mojo-platform-channel-handle=2024 --field-trial-
handle=2028,i,2987297358874369051,15607105860783115391,262144 --variations-seed-
version /prefetch:2
===============
ID: 5972, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --type=utility --utility-sub-
type=network.mojom.NetworkService --lang=es --service-sandbox-type=none --no-
appcompat-clear --mojo-platform-channel-handle=1756 --field-trial-
handle=2028,i,2987297358874369051,15607105860783115391,262144 --variations-seed-
version /prefetch:3
===============
ID: 4968, Name: msedge.exe, CommandLine: "C:\Program Files (x86)\Microsoft\Edge\
Application\msedge.exe" --flag-switches-begin --flag-switches-end --do-not-de-
elevate
===============
ID: 10244, Name: MSBuild.exe, CommandLine: C:\Windows\Microsoft.NET\Framework\
v4.0.30319\MsBuild.exe