schtasks.exe schtasks /create /f /RU "test22" /tr "C:\ProgramData\MPGPH131\MPGPH131.exe" /tn "MPGPH131 HR" /sc HOURLY /rl HIGHEST
2764schtasks.exe schtasks /create /f /RU "test22" /tr "C:\ProgramData\MPGPH131\MPGPH131.exe" /tn "MPGPH131 LG" /sc ONLOGON /rl HIGHEST
284827Jq3pCQAGfjWkgZSAJ0.exe "C:\Users\test22\AppData\Local\Temp\heidinwBI5Bnh48LP\27Jq3pCQAGfjWkgZSAJ0.exe"
3028iexplore.exe "C:\Program Files (x86)\Internet Explorer\iexplore.exe" SCODEF:1216 CREDAT:145409
2104chrome.exe "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" https://www.youtube.com
2876chrome.exe "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\test22\AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\test22\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\test22\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=65.0.3325.181 --initial-client-data=0x88,0x8c,0x90,0x84,0x94,0x7fef3eef1e8,0x7fef3eef1f8,0x7fef3eef208
2140chrome.exe "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=2904 --on-initialized-event-handle=316 --parent-handle=320 /prefetch:6
3344chrome.exe "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" https://www.facebook.com/video
2128chrome.exe "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\test22\AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\test22\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\test22\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=65.0.3325.181 --initial-client-data=0x88,0x8c,0x90,0x84,0x94,0x7fef3eef1e8,0x7fef3eef1f8,0x7fef3eef208
3144chrome.exe "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=2144 --on-initialized-event-handle=316 --parent-handle=320 /prefetch:6
3540chrome.exe "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" https://accounts.google.com
2832chrome.exe "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\test22\AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\test22\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\test22\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=65.0.3325.181 --initial-client-data=0x88,0x8c,0x90,0x84,0x94,0x7fef3eef1e8,0x7fef3eef1f8,0x7fef3eef208
3412chrome.exe "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=2132 --on-initialized-event-handle=316 --parent-handle=320 /prefetch:6
3680crashreporter.exe "C:\Program Files\Mozilla Firefox\crashreporter.exe" "C:\Users\test22\AppData\Local\Temp\\66ba93ae-8a2e-46a0-ac05-4d8dabe04d62.dmp"
4064minidump-analyzer.exe "C:\Program Files\Mozilla Firefox\minidump-analyzer.exe" "C:\Users\test22\AppData\Local\Temp\\66ba93ae-8a2e-46a0-ac05-4d8dabe04d62.dmp"
3252firefox.exe "C:\Program Files\Mozilla Firefox\firefox.exe" https://www.facebook.com/video
3784crashreporter.exe "C:\Program Files\Mozilla Firefox\crashreporter.exe" "C:\Users\test22\AppData\Roaming\Mozilla\Firefox\Profiles\qxo5wa6x.default-release\minidumps\539f6f4a-a0c7-4ede-b970-099eaf599984.dmp"
3120minidump-analyzer.exe "C:\Program Files\Mozilla Firefox\minidump-analyzer.exe" "C:\Users\test22\AppData\Roaming\Mozilla\Firefox\Profiles\qxo5wa6x.default-release\minidumps\539f6f4a-a0c7-4ede-b970-099eaf599984.dmp"
4192schtasks.exe schtasks /create /f /RU "test22" /tr "C:\ProgramData\MSIUpdaterV131\MSIUpdaterV131.exe" /tn "MSIUpdaterV131 HR" /sc HOURLY /rl HIGHEST
2596schtasks.exe schtasks /create /f /RU "test22" /tr "C:\ProgramData\MSIUpdaterV131\MSIUpdaterV131.exe" /tn "MSIUpdaterV131 LG" /sc ONLOGON /rl HIGHEST
2820H86W_nRG_QiDnpacl1Q7.exe "C:\Users\test22\AppData\Local\Temp\heidinwBI5Bnh48LP\H86W_nRG_QiDnpacl1Q7.exe"
50448GAGLpHe8SfQaAeuUjD.exe "C:\Users\test22\AppData\Local\Temp\heidinwBI5Bnh48LP\48GAGLpHe8SfQaAeuUjD.exe"
2296Ji6eSDaqEh9J_LBdm7Gg.exe "C:\Users\test22\AppData\Local\Temp\heidinwBI5Bnh48LP\Ji6eSDaqEh9J_LBdm7Gg.exe"
1320bBd0YznJ45TDQR7kIkRA.exe "C:\Users\test22\AppData\Local\Temp\heidinwBI5Bnh48LP\bBd0YznJ45TDQR7kIkRA.exe"
2744zdsQt76OWN37K50HOTgL.exe "C:\Users\test22\AppData\Local\Temp\heidinwBI5Bnh48LP\zdsQt76OWN37K50HOTgL.exe"
1512chrome.exe "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" https://accounts.google.com
1864chrome.exe "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\test22\AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\test22\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\test22\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win64 --annotation=prod=Chrome --annotation=ver=65.0.3325.181 --initial-client-data=0x88,0x8c,0x90,0x84,0x94,0x7fef3eef1e8,0x7fef3eef1f8,0x7fef3eef208
2436chrome.exe "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=1976 --on-initialized-event-handle=316 --parent-handle=320 /prefetch:6
2776explorer.exe C:\Windows\Explorer.EXE
1452