kooki.exe "C:\Users\test22\AppData\Local\Temp\kooki.exe"
cmd.exe "cmd.exe" /c attrib +h +s +r "C:\ProgramData\Microsoft\Windows\SystemData\svchost.exe"
attrib.exe attrib +h +s +r "C:\ProgramData\Microsoft\Windows\SystemData\svchost.exe"
svchost.exe "C:\ProgramData\Microsoft\Windows\SystemData\svchost.exe"
No process loaded Click on a process in the tree above to load its data.