Guest User

mm

a guest
Jun 8th, 2020
49
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. SHAS2 mode started at 2020-06-09 01:35:54 for Generic Game on x64
  2. ping:172ms
  3. update 6
  4. DirectX version is 12.0( )
  5. OS is 10.0 64 bit
  6. Real OS Microsoft Windows 10 Pro
  7. memory: 16315 MB
  8. version: MOSS 5,3,3,0
  9. Physical: Gigabyte Technology Co., Ltd.B360M GAMING HDB360M GAMING HDDefault string
  10. Sign ID1: 992412379 ID2: 2076960583
  11. User: Matheus@DESKTOP-NEJCCJH
  12. drives: TOSHIBA HDWD110 serial:
  13. Net: E0D55E8B9481 /192.168.1.2 Public:
  14. 179.251.177.xxx
  15. Video: NVIDIA GeForce RTX 2070 driver : 26.21.14.4614
  16.  
  17. (Tipos de monitor padrão) AOC 2460G4 serial: 00000021
  18.  
  19. processor BIOS details 3192 MHz by 31.92*100. Intel(R) Core(TM) i7-8700 CPU @ 3.20GHz
  20. Directx11
  21. SHAS2: aa52b2d3dd4b9b47ff4496c0460bdedda791354018cf0782b899ef28acee8d21 process: C:\Windows\System32\lsass.exe
  22. SHAS2: 8d4d87697b4761194e8cd6dd028660501bc89e6aef1da9e23d231d5d8868edf1 process: C:\Windows\System32\fontdrvhost.exe
  23. SHAS2: 8fe1e68d6ea8c270e81ee2ac71fcae54be037875977995d6793629b175d9cb8d process: C:\Windows\System32\WUDFHost.exe
  24. SHAS2: ea59c5d2009b910918737d89e572f163612aab2cbd9a9ba8ba741134baa1bd47 process: C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_2eaf9d620160f138\Display.NvContainer\NVDisplay.Container.exe
  25. SHAS2: 13b3e4725f07a2371b7b45bb3e53ed14438abc38ced045d50bff3dc840680c59 process: C:\Windows\System32\spoolsv.exe
  26. SHAS2: 91a4876d731d42b2b1c8d43ed14ea5f8707f29eff77e920333c0608330bd94c7 process: C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
  27. SHAS2: 2865adcea44acf133f4b7027a08ad80d9c808a91a90a227c6177232dadaea5d4 process: C:\Program Files\EslWire\service\WireHelperSvc.exe
  28. SHAS2: e1cd0f189e77beaa7d18834d2ede59aa10fbb97465daebe32de2dc347494149b process: C:\Windows\System32\RtkAudUService64.exe
  29. SHAS2: 33fcd56991642b483c435c3a3c1b15bc06402cb19fde2031a4935bf255ff3697 process: C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe
  30. Monitor Started at 2020-06-09 01:36:01
  31. SHAS2: 3c216eadae1d0785fa029e5736a9b6bf982b17a50e02a6a2ca7d6d43843fc1ae process: C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
  32. Windows Defender: enabled
  33. SHAS2: 3e306c0ae168c57228b681c979ec1cdc2956c582b82ed77bc738603edb27306f process: C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe
  34. Windows Defender: enabled
  35. SHAS2: f07e5ba7feeb9a18810d72e6a3a9b769c5a3d88064d71f92784fc8ea0f22491a process: C:\Windows\System32\dasHost.exe
  36. SHAS2: 6a8f00c4bf7ce696edeba9e6c401ff9dd7eb59f34af25d7eee591b4837d67c7c process: C:\Windows\System32\dllhost.exe
  37. SHAS2: 8adf07e9a1511872e185fbe22914c2130c77ae7b2def2fe33da5de319470df0e process: C:\Windows\System32\SearchIndexer.exe
  38. SHAS2: f4dac9e23d58879a2f5dd909f417c1f7b2b7e6c836f9ffb88fed78d5ec0cb70c process: C:\Windows\System32\audiodg.exe
  39. SHAS2: a75c85f3b089993e9c042fb82ecb7757e8f460ed8065fc7991caa38a6de0f50c process: C:\Windows\System32\wbem\WmiPrvSE.exe
  40. SHAS2: 6cf2dd482973ac4cf05a784b7bbc08de07fb4a55a8e2a6390250019a800d5b72 process: C:\Windows\System32\winlogon.exe
  41. SHAS2: 8d4d87697b4761194e8cd6dd028660501bc89e6aef1da9e23d231d5d8868edf1 process: C:\Windows\System32\fontdrvhost.exe
  42. SHAS2: b39d76814ba92435f5dd5bcccd7faabcc814e1c51d92cdaff4fc011f0415812b process: C:\Windows\System32\dwm.exe
  43. SHAS2: ea59c5d2009b910918737d89e572f163612aab2cbd9a9ba8ba741134baa1bd47 process: C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_2eaf9d620160f138\Display.NvContainer\NVDisplay.Container.exe
  44. SHAS2: 91a4876d731d42b2b1c8d43ed14ea5f8707f29eff77e920333c0608330bd94c7 process: C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
  45. SHAS2: 91a4876d731d42b2b1c8d43ed14ea5f8707f29eff77e920333c0608330bd94c7 process: C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
  46. SHAS2: 0bec3128b241fa533dc5a9d3f62aa41323d205defc30dcde228c5ecc2d1e50a9 process: C:\Windows\System32\taskhostw.exe
  47. SHAS2: 40a86a19ef9afa0021ca59d08454034e6a6c37d620be583c26e05e1d55d11ca0 process: C:\Windows\System32\sihost.exe
  48.  
  49. ping:167ms
  50. SHAS2: 3f00013865e06a7d402e8565c6c553ed6099bc8e3d73c85e34292596c5a82d4d process: C:\Windows\explorer.exe
  51. SHAS2: 72e2ad44449c98165ef6797864733cd0cfb76509debc1dd0d8c766032449b4fc process: C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
  52. SHAS2: a0df21d82daa60f8181589f4ce96441891b6e13716f353e9d71c8b303cf398d2 process: C:\Windows\System32\ctfmon.exe
  53. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  54. SHAS2: b687ff6085945c547ca780875b72caab418c890eb77c7035d3be609e778e0514 process: C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
  55. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  56. SHAS2: 4ae6cf543dec962051468d8888bbf595bb1cd4d0b702ced903e0b32ca35fd23c process: C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c\SkypeApp.exe
  57. SHAS2: a988465cf785aad5cbe924f6dfb0c9696ac2fea04587b5aedbf243b7df6dabee process: C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
  58. SHAS2: c6485b0b88d2b6dcc568f2e6af697fe7a516bc4eb45811d774bf49520d9100b9 process: C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
  59. SHAS2: 71a1ca978834c0ddbab05e3987cb4bd6cc2783f9e05b3d00c8fcd333349528ac process: C:\Windows\System32\ApplicationFrameHost.exe
  60. SHAS2: 6a8f00c4bf7ce696edeba9e6c401ff9dd7eb59f34af25d7eee591b4837d67c7c process: C:\Windows\System32\dllhost.exe
  61. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  62. SHAS2: 55a7313dbee536185207fb38d23bd080908ad1f6709a3e1af196a1c1f8bf46b3 process: C:\Windows\System32\SettingSyncHost.exe
  63. SHAS2: 6a8f00c4bf7ce696edeba9e6c401ff9dd7eb59f34af25d7eee591b4837d67c7c process: C:\Windows\System32\dllhost.exe
  64. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  65. SHAS2: 7f2fe5ed8fa26f044dbbb0db6b633c8feaa2c683880d5c3842a5927f85a2d3be process: C:\Windows\System32\SecurityHealthSystray.exe
  66. SHAS2: e1cd0f189e77beaa7d18834d2ede59aa10fbb97465daebe32de2dc347494149b process: C:\Windows\System32\RtkAudUService64.exe
  67. SHAS2: 6ed62d78b9f6ace24d452f91233de6fd832aa6af5079eba114c3ad8131088ae5 process: C:\Users\Matheus\AppData\Local\Microsoft\OneDrive\OneDrive.exe
  68. SHAS2: 6120239fa0c4940b9b0873153e227b08f23f400ef24e5affb074dd2483e0c3ab process: C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
  69. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  70. SHAS2: bea4b258cff088718b0c247ce7a7352faed102fe09d29b5dfd9d5f3c817245e7 process: C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
  71. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  72. *SHAS2: b03e14dcd76bb7f7c7651a69cfdedcfe558c30475e8cc63c591c4f919aae3151 process: C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
  73. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  74. SHAS2: ec570ada7faa83b979bfa416459e2e1f952422c29b4976e10ee2cbb6c6d6fad6 process: C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
  75. SHAS2: bd8006a0693833b5271a94af5ba3226ea1433d642a9c9faed5e7b8ae907654ba process: C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
  76. SHAS2: bd8006a0693833b5271a94af5ba3226ea1433d642a9c9faed5e7b8ae907654ba process: C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
  77. SHAS2: bd8006a0693833b5271a94af5ba3226ea1433d642a9c9faed5e7b8ae907654ba process: C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
  78. SHAS2: 5c19a20e2fe398ba739ad0c5d613d21e8923c8d1725bb915196a5bbd7392ad1b process: C:\Windows\SystemApps\InputApp_cw5n1h2txyewy\WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe
  79. SHAS2: b23ab495211a5c33d0953b13490472bc53b6e4d0ee5e885c4d6d6fda9d901120 process: C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20051.93.0_x64__8wekyb3d8bbwe\YourPhone.exe
  80. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  81. SHAS2: 46f8fc0ba95a019914fb78c5aafa7e13531e27a220dcb016dcc70dc55d310b2f process: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.19111.24110.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
  82. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  83. SHAS2: 533a950b1b8a63226573e93604c11c241ab1ae34e1be47d9919882a1681acb42 process: C:\Windows\System32\smartscreen.exe
  84. SHAS2: efd17df1e3995963bfa87f89648ea184b09960c318134f2cdd13786b25edddba process: C:\Windows\System32\SecurityHealthHost.exe
  85. SHAS2: c564623181aecfeeffb79bb6158eb5723a44831e390437dae04e7419b37a7ab6 process: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
  86. SHAS2: 1d9585ac850b5554739877ffe2a644b5406a54ac05aa7b37e1df8264555ab7a7 process: C:\Windows\System32\browser_broker.exe
  87. SHAS2: 9e8a6c23cd45651027a74e154eb52901409b1f2916c02176accdbc722a26dd36 process: C:\Windows\System32\MicrosoftEdgeSH.exe
  88. SHAS2: ee7174ee353e7d29ce17d29d66411b3623c39d9dec3f439e35af47a7e7a7c895 process: C:\Windows\System32\MicrosoftEdgeCP.exe
  89. SHAS2: 5e42deba2b15b9f017cfdcaf378948321834b8f138f3c1a04b9c57f3d92ed919 process: C:\Program Files (x86)\Steam\steam.exe
  90. SHAS2: 1dace56cc6d2b22ba23aecba2f7e1bacfb931dc1919cebc8c9f95d11737198ee process: C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
  91. SHAS2: 6bd8bdb9d6269fbb2ed729b894cb3c269e18cea3dd57eaaf06bacd3512fc71c5 process: C:\Program Files (x86)\Common Files\Steam\SteamService.exe
  92. SHAS2: 1dace56cc6d2b22ba23aecba2f7e1bacfb931dc1919cebc8c9f95d11737198ee process: C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
  93. SHAS2: 1dace56cc6d2b22ba23aecba2f7e1bacfb931dc1919cebc8c9f95d11737198ee process: C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
  94. SHAS2: 1dace56cc6d2b22ba23aecba2f7e1bacfb931dc1919cebc8c9f95d11737198ee process: C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
  95. SHAS2: 1dace56cc6d2b22ba23aecba2f7e1bacfb931dc1919cebc8c9f95d11737198ee process: C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
  96. SHAS2: 1dace56cc6d2b22ba23aecba2f7e1bacfb931dc1919cebc8c9f95d11737198ee process: C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
  97. SHAS2: 1dace56cc6d2b22ba23aecba2f7e1bacfb931dc1919cebc8c9f95d11737198ee process: C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
  98. SHAS2: 87c2892df8f1f0503763855e4972cd4b85036ae50f1d6f1b910b3aec47372b07 process: C:\Windows\System32\CompPkgSrv.exe
  99. SHAS2: 3f4ea111157107354091643468927ed050226b0f29e5120b08e62dc3de73530f process: C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe
  100. SHAS2: e690bd90a81130e4bdbddab34b4be8cce745ef9757213d223039b0c0e4712753 process: C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\upc.exe
  101. SHAS2: 6ef608d72103472d522c5372996eaf08c889d2419666f51b6185f3f6f543e569 process: C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UplayWebCore.exe
  102. SHAS2: 1f80374d8d478a4f7054b86adf0a3b473b29871ae59ba8b124e2b222c3bd6ca3 process: C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe
  103. SHAS2: 199cae8fcaf11dd553bd0b10dccb483f673f4c2ead2c92504df9f1998f6ce899 process: C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win 64\EpicGamesLauncher.exe
  104. SHAS2: 17a2ff59f4b77b0a4b515fdea6929eb95f2c1e390eeacc2b99008b8d985f62a9 process: C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_Vulkan.exe
  105. SHAS2: fbb51abbf43e33010d5458129615574f09b081719f63e575391efa140ab27fd8 process: C:\Program Files (x86)\Steam\GameOverlayUI.exe
  106. SHAS2: 6ef608d72103472d522c5372996eaf08c889d2419666f51b6185f3f6f543e569 process: C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UplayWebCore.exe
  107. SHAS2: 1dace56cc6d2b22ba23aecba2f7e1bacfb931dc1919cebc8c9f95d11737198ee process: C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
  108. (Mon 1) DX11(520) : Each 60 at 2020-06-09 01:36:04 file: 001.JPG- Zip CRC: 28ad5145d029e675a330c4bfceb4550d02ba3559c548aa6fae9dfeeb23d2f5a0
  109. SHAS2: 6d18a82d86024244df8389715ac7bee33ec433ced7837a0170989c273bdd8b48 process: C:\Users\Matheus\AppData\Local\Discord\app-0.0.306\Discord.exe
  110. ping:165ms
  111. SHAS2: 6d18a82d86024244df8389715ac7bee33ec433ced7837a0170989c273bdd8b48 process: C:\Users\Matheus\AppData\Local\Discord\app-0.0.306\Discord.exe
  112. SHAS2: 6d18a82d86024244df8389715ac7bee33ec433ced7837a0170989c273bdd8b48 process: C:\Users\Matheus\AppData\Local\Discord\app-0.0.306\Discord.exe
  113. SHAS2: 6d18a82d86024244df8389715ac7bee33ec433ced7837a0170989c273bdd8b48 process: C:\Users\Matheus\AppData\Local\Discord\app-0.0.306\Discord.exe
  114. SHAS2: 6d18a82d86024244df8389715ac7bee33ec433ced7837a0170989c273bdd8b48 process: C:\Users\Matheus\AppData\Local\Discord\app-0.0.306\Discord.exe
  115. SHAS2: 6d18a82d86024244df8389715ac7bee33ec433ced7837a0170989c273bdd8b48 process: C:\Users\Matheus\AppData\Local\Discord\app-0.0.306\Discord.exe
  116. SHAS2: d1e0f2087176d632df6c4c0edab5b822b44f87fa4fc771b5e4265b24cabc73c0 process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  117. SHAS2: d1e0f2087176d632df6c4c0edab5b822b44f87fa4fc771b5e4265b24cabc73c0 process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  118. SHAS2: d1e0f2087176d632df6c4c0edab5b822b44f87fa4fc771b5e4265b24cabc73c0 process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  119. SHAS2: d1e0f2087176d632df6c4c0edab5b822b44f87fa4fc771b5e4265b24cabc73c0 process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  120. SHAS2: d1e0f2087176d632df6c4c0edab5b822b44f87fa4fc771b5e4265b24cabc73c0 process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  121. SHAS2: d1e0f2087176d632df6c4c0edab5b822b44f87fa4fc771b5e4265b24cabc73c0 process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  122. SHAS2: d1e0f2087176d632df6c4c0edab5b822b44f87fa4fc771b5e4265b24cabc73c0 process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  123. SHAS2: d1e0f2087176d632df6c4c0edab5b822b44f87fa4fc771b5e4265b24cabc73c0 process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  124. SHAS2: 6d18a82d86024244df8389715ac7bee33ec433ced7837a0170989c273bdd8b48 process: C:\Users\Matheus\AppData\Local\Discord\app-0.0.306\Discord.exe
  125. SHAS2: d1e0f2087176d632df6c4c0edab5b822b44f87fa4fc771b5e4265b24cabc73c0 process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  126. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  127. SHAS2: 2fdab064712896d06d5c97204e8984bf8ea964322950c4735c8adf1cbe2d373d process: C:\Users\Matheus\Downloads\MossX64.exe
  128. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  129. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  130. (Mon 1) DX11(496) : Each 60 at 2020-06-09 01:36:10 file: 002.JPG- Zip CRC: c42b6eab646fc0a9e4ddb1f96b86e3ab42eea1966ccddc595203a7020b376550
  131. ping:174ms
  132. FF*(Mon 1) DX11(477) : Each 60 at 2020-06-09 01:36:59 file: 003.JPG- Zip CRC: 6f69e78aa2671ba1d3a1e26d57208938920f6751f320b868b92c67d270e4bbe8
  133. ping:162ms
  134. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  135. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  136. FF*(Mon 1) DX11(488) : Each 60 at 2020-06-09 01:37:51 file: 004.JPG- Zip CRC: d61dd3c2721827ad7dea6806596c02b9011286a5131adee374b1907387e8752d
  137. ping:164ms
  138. (Mon 1) DX11(484) : Each 60 at 2020-06-09 01:37:57 file: 005.JPG- Zip CRC: 86002dcebcd2381b6583fea3ad94c692198aa03fca5edb0b9ba52694eaa1c5b7
  139. ping:159ms
  140. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  141. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  142. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  143. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  144. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  145. SHAS2: d1e0f2087176d632df6c4c0edab5b822b44f87fa4fc771b5e4265b24cabc73c0 process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  146. SHAS2: d1e0f2087176d632df6c4c0edab5b822b44f87fa4fc771b5e4265b24cabc73c0 process: C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  147. FSHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  148. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  149. F*(Mon 1) DX11(490) : Each 60 at 2020-06-09 01:40:05 file: 006.JPG- Zip CRC: b14f67d5c3efcd1f6b379533ba17144530568b097ec19559ff382cfb744af546
  150. ping:156ms
  151. FSHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  152. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  153. SHAS2: 0bec3128b241fa533dc5a9d3f62aa41323d205defc30dcde228c5ecc2d1e50a9 process: C:\Windows\System32\taskhostw.exe
  154. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  155. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  156. F*(Mon 1) DX11(474) : Each 60 at 2020-06-09 01:41:28 file: 007.JPG- Zip CRC: 6f69e78aa2671ba1d3a1e26d57208938920f6751f320b868b92c67d270e4bbe8
  157. ping:169ms
  158. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  159. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  160. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  161. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  162. (Mon 1) DX11(492) : Each 60 at 2020-06-09 01:43:56 file: 008.JPG- Zip CRC: cc43ecee3e9fd9913060f932a6e61e57d671893b92d9a719d90353f5197b6205
  163. ping:168ms
  164. FSHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  165. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  166. -
  167. (Mon 1) DX11(502) : Each 60 at 2020-06-09 01:44:16 file: 009.JPG- Zip CRC: 6d7affc44dd78f1ab1ba98324cf41fda43a7977457ba33e8c4b5337e933f60fe
  168. ping:155ms
  169. (Mon 1) DX11(2581) : Each 60 at 2020-06-09 01:44:44 file: 010.JPG- Zip CRC: dd95c9ffad8b794e4ba912efc5d01f431ca479abbff4024c54700459581e6aa0
  170. ping:159ms
  171. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  172. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  173. (Mon 1) DX11(478) : Each 60 at 2020-06-09 01:45:14 file: 011.JPG- Zip CRC: a8676f3072c4ccd3f63f987d623471da2d492dd5f9a9a5128438d34cca28fefb
  174. ping:161ms
  175. F-
  176. (Mon 1) DX11(487) : Each 60 at 2020-06-09 01:45:31 file: 012.JPG- Zip CRC: af97bce66d5c9456b5d22586e5a9d08aaf3ce8771f288a3e7142d2235885ef78
  177. ping:158ms
  178. FF*(Mon 1) DX11(478) : Each 60 at 2020-06-09 01:45:42 file: 013.JPG- Zip CRC: f2f642a24c59fded12b1b4e58c491fff83e151a85204c7983bd41cd606bed95e
  179. ping:185ms
  180. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  181. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  182. (Mon 1) DX11(483) : Each 60 at 2020-06-09 01:46:27 file: 014.JPG- Zip CRC: 4932a12a3b36db0facbf63087428b99d2126cffe2ef1f80081fc91963389625e
  183. ping:171ms
  184. (Mon 1) DX11(490) : Each 60 at 2020-06-09 01:47:01 file: 015.JPG- Zip CRC: dab59fb4a664895e1244e345ac502fd16d2a267df08d561f7d4a8cacaf9a1d2e
  185. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  186. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  187. ping:319ms
  188. FFSHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  189. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  190. *(Mon 1) DX11(486) : Each 60 at 2020-06-09 01:48:04 file: 016.JPG- Zip CRC: e4071abd35a918bdf750c6d527a871493a4c4d9723c990a6ea5198f4132cc595
  191. ping:163ms
  192. F-
  193. (Mon 1) DX11(474) : Each 60 at 2020-06-09 01:48:57 file: 017.JPG- Zip CRC: e7ba2199dacba09afb28072aa048d1a35615621d14cf057720eb60a32c49c4bb
  194. ping:326ms
  195. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  196. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  197. (Mon 1) DX11(500) : Each 60 at 2020-06-09 01:49:27 file: 018.JPG- Zip CRC: 2215750a53cfb9360e1d41614be590bb828fdb6acca8f524601777d51819eab5
  198. ping:158ms
  199. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  200. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  201. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  202. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  203. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  204. SHAS2: d552be7a8ad94a8958fca6687ca8af3b72786745ea4840b97c3410453d00f3cd process: C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_18.2004.1162.0_x64__8wekyb3d8bbwe\LocalBridge.exe
  205. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  206. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  207. (Mon 1) DX11(491) : Each 60 at 2020-06-09 01:50:56 file: 019.JPG- Zip CRC: 1669ec8bee1e1ae08e6b66f0e98383e020ab63fe36e816fbce373bdd8634ca60
  208. ping:153ms
  209. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  210. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  211. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  212. (Mon 1) DX11(491) : Each 60 at 2020-06-09 01:51:28 file: 020.JPG- Zip CRC: 6b1d2dd6474e6d3e9dab4ac77b4ccea772c8c696ee1e9a38004055fdfcabd34e
  213. ping:159ms
  214. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  215. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  216. (Mon 1) DX11(569) : Each 60 at 2020-06-09 01:52:20 file: 021.JPG- Zip CRC: 2aafaf557eeafb9d7077941c009f4539288e9064f51b11841ebcdf8cea755fa6
  217. ping:162ms
  218. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  219. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  220. SHAS2: 369a8ee5d40558ef2570eac942fd218d035e47c5101d1731c5ac4c97ca7e8d95 process: C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe
  221. (Mon 1) DX11(515) : Each 60 at 2020-06-09 01:53:11 file: 022.JPG- Zip CRC: e74ddd26fa8ca48595208300bc15381cdd67d479afcf1f7a7d5011e98df1e7f5
  222. ping:169ms
  223. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  224. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  225. (Mon 1) DX11(499) : Each 60 at 2020-06-09 01:54:52 file: 023.JPG- Zip CRC: ac0303303bb0e9a6bcf589320e8fbdd9ca2176e82ff34b20326bff3f4b177b05
  226. ping:167ms
  227. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  228. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  229. SHAS2: 52fc3aa9f704300041e486e57fe863218e4cdf4c8eee05ca6b99a296efee5737 process: C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
  230. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  231. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  232. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  233. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  234. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  235. (Mon 1) DX11(501) : Each 60 at 2020-06-09 01:57:10 file: 024.JPG- Zip CRC: e5a8c1347d9c90af4e725481b620f43dac5d85addadc0ca7bd624a1bd70c43c2
  236. ping:161ms
  237. (Mon 1) DX11(490) : Each 60 at 2020-06-09 01:58:00 file: 025.JPG- Zip CRC: 930a9f380d02b594afec4c30267cbe84fd2e81fcc3fefe4abf4df5db642cfaa2
  238. ping:176ms
  239. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  240. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  241. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  242. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  243. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  244. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  245. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  246. SHAS2: 0bec3128b241fa533dc5a9d3f62aa41323d205defc30dcde228c5ecc2d1e50a9 process: C:\Windows\System32\taskhostw.exe
  247. SHAS2: 336701ccb71b703003dd5eb01c69b7cf37aae33ad19ffe7f9483a5c12d18f41a process: C:\Windows\servicing\TrustedInstaller.exe
  248. SHAS2: 844600a6a19c2fdcc2e8e3d0c1eb5dc5b9dd929e61bab163f3ea55ec0a32338c process: C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.772_none_5f13f94c58ff41d3\TiWorker.exe
  249. SHAS2: 844600a6a19c2fdcc2e8e3d0c1eb5dc5b9dd929e61bab163f3ea55ec0a32338c process: C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.772_none_5f13f94c58ff41d3\TiWorker.exe
  250. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  251. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  252. (Mon 1) DX11(584) : Each 60 at 2020-06-09 02:00:13 file: 026.JPG- Zip CRC: fb47fe67390678ecc2b5513ba137913204ab1303acda1b9168738d78d8db0f79
  253. ping:177ms
  254. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  255. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  256. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  257. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  258. FSHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  259. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  260. -
  261. (Mon 1) DX11(498) : Each 60 at 2020-06-09 02:03:18 file: 027.JPG- Zip CRC: bd50894f82eaf12636b2ba3b2dc494a59da5102bad6327e49a019dfbd4ffeebc
  262. ping:161ms
  263. (Mon 1) DX11(495) : Each 60 at 2020-06-09 02:03:43 file: 028.JPG- Zip CRC: 40b3237bcfc30b2d1b81f6b4584ab42047c26bc30675e718d7993be5d0ef3e09
  264. ping:159ms
  265. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  266. (Mon 1) DX11(502) : Each 60 at 2020-06-09 02:04:09 file: 029.JPG- Zip CRC: 2b22b5553496415ce7e663a0edf1c5db95cf7f280e7e5a7e994402de06d2357e
  267. ping:161ms
  268. (Mon 1) DX11(503) : Each 60 at 2020-06-09 02:04:22 file: 030.JPG- Zip CRC: 2b9945d5727014d011aaf9eb79e758baed134ab8cee480776506ba90f268bcb3
  269. ping:157ms
  270. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  271. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  272. (Mon 1) DX11(491) : Each 60 at 2020-06-09 02:05:37 file: 031.JPG- Zip CRC: 09e0f032b1978788f634bd9bb495d8b6fd5635b5eb156be7fd0689c90b8f50bb
  273. ping:155ms
  274. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  275. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  276. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  277. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  278. (Mon 1) DX11(523) : Each 60 at 2020-06-09 02:07:44 file: 032.JPG- Zip CRC: dc9164ea2dcc953d7da063b2ac872655d392bb0146eed3ea471b6619d3f67ebc
  279. ping:165ms
  280. SHAS2: 33eaf93e81b8b3f26f9251b3e35b19148b6bb7d61623a298375d35bb76ec7cc3 process: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12827.20290.0_x64__8wekyb3d8bbwe\HxTsr.exe
  281. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  282. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  283. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  284. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  285. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  286. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  287. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  288. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  289. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  290. (Mon 1) DX11(495) : Each 60 at 2020-06-09 02:10:40 file: 033.JPG- Zip CRC: 310b2d2d39c5a86598d23970d190b69562f63774494e4e07b3630d8334a96d8a
  291. ping:162ms
  292. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  293. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  294. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  295. (Mon 1) DX11(486) : Each 60 at 2020-06-09 02:11:54 file: 034.JPG- Zip CRC: a4dcb9f4ed37cbb5e45fc427ad962461114e43913df65af015e1bb1c61c0b265
  296. ping:162ms
  297. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  298. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  299. (Mon 1) DX11(477) : Each 60 at 2020-06-09 02:12:03 file: 035.JPG- Zip CRC: 50d6933d2cebe51a36c8e52cd9748034d9b06a9a6356e4cd107542ab16072f9c
  300. ping:157ms
  301. (Mon 1) DX11(516) : Each 60 at 2020-06-09 02:12:37 file: 036.JPG- Zip CRC: 8266286c90af281feb14117882465def136b02b0fb4e0ab4cab141598bc2293e
  302. ping:159ms
  303. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  304. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  305. (Mon 1) DX11(510) : Each 60 at 2020-06-09 02:13:06 file: 037.JPG- Zip CRC: 8adfc7108554554946ef5152c246aea05cf51500ca81a5054229f12ab235e259
  306. ping:159ms
  307. (Mon 1) DX11(500) : Each 60 at 2020-06-09 02:13:34 file: 038.JPG- Zip CRC: 10d86cb0d3771d48af8fdabbf251fcc7d0291776b61e3ae274711658121dcd1c
  308. ping:157ms
  309. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  310. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  311. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  312. (Mon 1) DX11(491) : Each 60 at 2020-06-09 02:15:32 file: 039.JPG- Zip CRC: 9c63e12f621c732b20ab7896b212d412b2d7a3d3e06587bedd8ffc7f5b60ea40
  313. ping:155ms
  314. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  315. (Mon 1) DX11(503) : Each 60 at 2020-06-09 02:16:29 file: 040.JPG- Zip CRC: 95a846b818757ad5e288aa1f395989772921ee6729d9e0d68b444501ebd9e89d
  316. ping:159ms
  317. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  318. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  319. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  320. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  321. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  322. SHAS2: d552be7a8ad94a8958fca6687ca8af3b72786745ea4840b97c3410453d00f3cd process: C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_18.2004.1162.0_x64__8wekyb3d8bbwe\LocalBridge.exe
  323. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  324. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  325. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  326. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  327. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  328. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  329. (Mon 1) DX11(503) : Each 60 at 2020-06-09 02:19:33 file: 041.JPG- Zip CRC: 5abc90566920da30f9bda2930a7cf1a82e51ffbc75c81da30d94ce1004fa3294
  330. ping:176ms
  331. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  332. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  333. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  334. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  335. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  336. FF*SHAS2: 0bec3128b241fa533dc5a9d3f62aa41323d205defc30dcde228c5ecc2d1e50a9 process: C:\Windows\System32\taskhostw.exe
  337. SHAS2: 6a8f00c4bf7ce696edeba9e6c401ff9dd7eb59f34af25d7eee591b4837d67c7c process: C:\Windows\System32\dllhost.exe
  338. SHAS2: 6a8f00c4bf7ce696edeba9e6c401ff9dd7eb59f34af25d7eee591b4837d67c7c process: C:\Windows\System32\dllhost.exe
  339. (Mon 1) DX11(494) : Each 60 at 2020-06-09 02:21:58 file: 042.JPG- Zip CRC: 51faa4aee731ef00969d97af12c5c8d844c45ed12e35c4881851a33058d81303
  340. ping:176ms
  341. FSHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  342. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  343. F*(Mon 1) DX11(487) : Each 60 at 2020-06-09 02:22:20 file: 043.JPG- Zip CRC: aadc6801f7a6d3e19270e48d48e3f7bb17ba041fce1287bd80c9da257049b9be
  344. ping:167ms
  345. FF*(Mon 1) DX11(469) : Each 60 at 2020-06-09 02:22:42 file: 044.JPG- Zip CRC: 8fe31b840cdb7e539660268cef53ff304f3377317e73885bf46686b9067f6ab4
  346. ping:176ms
  347. (Mon 1) DX11(1200) : Each 60 at 2020-06-09 02:22:47 file: 045.JPG- Zip CRC: 2f13663903ceb0c92ffa7942e23c34527e25c685664c8e82daaac7bd48858c8a
  348. ping:168ms
  349. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  350. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  351. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  352. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  353. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  354. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  355. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  356. (Mon 1) DX11(506) : Each 60 at 2020-06-09 02:24:18 file: 046.JPG- Zip CRC: 62a47e86571a95db23da033cdc9230f7d24e1f73958b4b0ca17489fdd71b5c1a
  357. ping:165ms
  358. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  359. (Mon 1) DX11(494) : Each 60 at 2020-06-09 02:25:26 file: 047.JPG- Zip CRC: 3936c76489d51bc99f85942a8e285b71b56715ff8e489303f677913ce65f4ade
  360. ping:178ms
  361. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  362. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  363. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  364. (Mon 1) DX11(484) : Each 60 at 2020-06-09 02:26:07 file: 048.JPG- Zip CRC: 4a8d7636a3f6c95c815acb6a20a2132ea4beea00ed9d1de068ddb3eb0b4bd498
  365. ping:158ms
  366. F-
  367. (Mon 1) DX11(476) : Each 60 at 2020-06-09 02:26:45 file: 049.JPG- Zip CRC: 31e56af56110dacfdf60c4acafb25f794ebb394e516e1b11ad57f80b5da96391
  368. ping:166ms
  369. F-
  370. (Mon 1) DX11(506) : Each 60 at 2020-06-09 02:26:56 file: 050.JPG- Zip CRC: 6f13f4dcab34e0e3eb7dbb3081e6d0d0067f82de584e496e3815b6eb9212ed85
  371. ping:177ms
  372. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  373. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  374. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  375. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  376. (Mon 1) DX11(520) : Each 60 at 2020-06-09 02:28:42 file: 051.JPG- Zip CRC: 98e3aead0037364e0990acf18d4b06ff0037372c9a4890eeaa112e5aa3842a96
  377. ping:164ms
  378. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  379. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  380. (Mon 1) DX11(490) : Each 60 at 2020-06-09 02:29:49 file: 052.JPG- Zip CRC: f40194a06b82e05115989954823422f271aac1a38177ee5b00f68b9b3f45dd11
  381. ping:173ms
  382. (Mon 1) DX11(494) : Each 60 at 2020-06-09 02:30:06 file: 053.JPG- Zip CRC: c0fdfd36ef904725b553e460f386c04614fbb0667f8a422e84a33d00979aff43
  383. ping:168ms
  384. (Mon 1) DX11(485) : Each 60 at 2020-06-09 02:30:47 file: 054.JPG- Zip CRC: b97ed9703ad7fddac2fb7117fbfa50bb6bf2b8c9e514e8b8226429c7b5b5a10e
  385. ping:160ms
  386. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  387. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  388. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  389. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  390. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  391. (Mon 1) DX11(583) : Each 60 at 2020-06-09 02:32:09 file: 055.JPG- Zip CRC: 82cde0236fb1e684dce3693c44f807ed0129409c1fac1a654feaee49b7a87d15
  392. ping:174ms
  393. FSHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  394. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  395. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  396. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  397. F*(Mon 1) DX11(527) : Each 60 at 2020-06-09 02:34:40 file: 056.JPG- Zip CRC: edc8dd487bec55188144963e5ea5beeddd037282c1b133c539f38242ba558073
  398. ping:165ms
  399. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  400. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  401. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  402. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  403. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  404. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  405. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  406. FSHAS2: 6d18a82d86024244df8389715ac7bee33ec433ced7837a0170989c273bdd8b48 process: C:\Users\Matheus\AppData\Local\Discord\app-0.0.306\Discord.exe
  407. SHAS2: 6d18a82d86024244df8389715ac7bee33ec433ced7837a0170989c273bdd8b48 process: C:\Users\Matheus\AppData\Local\Discord\app-0.0.306\Discord.exe
  408. -
  409. (Mon 1) DX11(487) : Each 60 at 2020-06-09 02:35:43 file: 057.JPG- Zip CRC: 3850bb59b7a71da90371b34926db38092034a0e49d711af19fc6639481d87933
  410. ping:162ms
  411. FSHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  412. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  413. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  414. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  415. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  416. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  417. -
  418. (Mon 1) DX11(547) : Each 60 at 2020-06-09 02:38:48 file: 058.JPG- Zip CRC: 6047f203cfdcca938a81ff4481b193a182deddf82a7552fa2f1c9f39b77e5448
  419. ping:161ms
  420. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  421. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  422. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  423. (Mon 1) DX11(501) : Each 60 at 2020-06-09 02:39:36 file: 059.JPG- Zip CRC: ccd3d176865cf00cbc7aa541b64a90533ad6a8062204f0b3e64ae34a819c7978
  424. ping:164ms
  425. FSHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  426. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  427. F*(Mon 1) DX11(492) : Each 60 at 2020-06-09 02:40:15 file: 060.JPG- Zip CRC: dd1e5e05dcc106fea1dffb0f00e271dec74994a7468b30f355d7903c906cbd66
  428. ping:179ms
  429. F-
  430. (Mon 1) DX11(486) : Each 60 at 2020-06-09 02:40:28 file: 061.JPG- Zip CRC: 2075f55540d9383caa50f6bca43bf04aae2f92d418bb81cca9c6077742aa1af0
  431. ping:179ms
  432. FSHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  433. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  434. -
  435. (Mon 1) DX11(504) : Each 60 at 2020-06-09 02:41:32 file: 062.JPG- Zip CRC: 8242ad217c906828aac074751ca458ffd195cdc824685682f4c59be12445364e
  436. ping:163ms
  437. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  438. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  439. (Mon 1) DX11(497) : Each 60 at 2020-06-09 02:42:44 file: 063.JPG- Zip CRC: 2c4a5ed769072842226a83c780e36d4cc3c24a10b0611ef0c388ad2f40129235
  440. ping:161ms
  441. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  442. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  443. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  444. (Mon 1) DX11(544) : Each 60 at 2020-06-09 02:43:11 file: 064.JPG- Zip CRC: eb46278889e1ed14455134370a02092c488a1fa3b9a07a93db8aaf54f081a7bf
  445. ping:161ms
  446. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  447. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  448. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  449. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  450. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  451. FF*(Mon 1) DX11(503) : Each 60 at 2020-06-09 02:44:38 file: 065.JPG- Zip CRC: fdc84495dab260a8f02ff9b5540e2692e2a23d992be7dc0884bc99141eb2a568
  452. ping:163ms
  453. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  454. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  455. FSHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  456. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  457. F*(Mon 1) DX11(516) : Each 60 at 2020-06-09 02:46:06 file: 066.JPG- Zip CRC: 09f68042f98e63297e068fa74b251d44efff67aeec92b0bf997d22a1160dc113
  458. ping:162ms
  459. F-
  460. (Mon 1) DX11(498) : Each 60 at 2020-06-09 02:46:48 file: 067.JPG- Zip CRC: 2e1a546811622734bc9fbe1e0079ee496fa88fda7582b9daebbdbebc491eee59
  461. ping:167ms
  462. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  463. (Mon 1) DX11(506) : Each 60 at 2020-06-09 02:47:05 file: 068.JPG- Zip CRC: e303409e003c607891a8d5489adc1e87c1e039c5f001c0bc9c4205b8d6a55ad0
  464. ping:161ms
  465. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  466. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  467. (Mon 1) DX11(485) : Each 60 at 2020-06-09 02:48:29 file: 069.JPG- Zip CRC: 2a63d897f5d87404cbbceb0c38ced9e2808e4caa6a9abc1e1be03c30de09377b
  468. ping:168ms
  469. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  470. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  471. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  472. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  473. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  474. (Mon 1) DX11(487) : Each 60 at 2020-06-09 02:51:33 file: 070.JPG- Zip CRC: 0080483db9dc31afebbfd1d96edda267ad4aff62428ecb3c83c718b857c6d052
  475. ping:169ms
  476. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  477. (Mon 1) DX11(500) : Each 60 at 2020-06-09 02:52:32 file: 071.JPG- Zip CRC: 8ea2ff301b75d6f49ad9a48c4d9abdb51dc5a28e5a94b8f2a430c53ebb4d9e59
  478. ping:158ms
  479. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  480. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  481. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  482. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  483. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  484. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  485. (Mon 1) DX11(545) : Each 60 at 2020-06-09 02:54:04 file: 072.JPG- Zip CRC: b52fcc40dd5c77a213f99361efc4e4f737ee108d7e06d097a652ff6ffdea38e3
  486. ping:154ms
  487. (Mon 1) DX11(508) : Each 60 at 2020-06-09 02:54:10 file: 073.JPG- Zip CRC: c3a145fb1a0e154a720aaad77f8e0ab766f7e7511971c4ab2faac3c14bd74406
  488. ping:161ms
  489. (Mon 1) DX11(506) : Each 60 at 2020-06-09 02:54:24 file: 074.JPG- Zip CRC: 9f04395ba058174b6549b30ba5834f2fb4914b06ca6047254cf55e0580b6f771
  490. ping:168ms
  491. (Mon 1) DX11(501) : Each 60 at 2020-06-09 02:54:27 file: 075.JPG- Zip CRC: b09815ad27b73e9001bb6f694242449a3f3a397e67461c9ae4800d3d193cc613
  492. ping:159ms
  493. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  494. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  495. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  496. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  497. (Mon 1) DX11(487) : Each 60 at 2020-06-09 02:55:42 file: 076.JPG- Zip CRC: 82703e2f2aafb83c24da38ae1e1c5bb9a91b74d050b581409e888c3161be7294
  498. ping:164ms
  499. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  500. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  501. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  502. (Mon 1) DX11(494) : Each 60 at 2020-06-09 02:56:39 file: 077.JPG- Zip CRC: 2a2589fdc9973488c98f97d172d86967f437737e4a1d6f18877c518a4ccf330c
  503. ping:165ms
  504. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  505. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  506. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  507. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  508. (Mon 1) DX11(495) : Each 60 at 2020-06-09 02:58:39 file: 078.JPG- Zip CRC: e0f7f5f325a0c9a4db4ee265d90a256204e9dc539e3676fa4be0b30406f35a5c
  509. ping:172ms
  510. SHAS2: 96bec668680152df51ec1de1d5362c64c2aba1eda86f9121f517646f5dec2b72 process: C:\Windows\System32\wbem\WMIC.exe
  511. SHAS2: baf97b2a629723947539cff84e896cd29565ab4bb68b0cec515eb5c5d6637b69 process: C:\Windows\System32\conhost.exe
  512. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  513. SHAS2: 74b3323405cdfb85cfc9d5c1cd29c816c80361df154801e44f14863c9058906e process: C:\Windows\System32\backgroundTaskHost.exe
  514. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  515. SHAS2: 5e979c34a5feb14ed18f36e956b0614ff305c8596dd01571a2ebabdc8131ce77 process: C:\Windows\System32\RuntimeBroker.exe
  516. SHAS2: d552be7a8ad94a8958fca6687ca8af3b72786745ea4840b97c3410453d00f3cd process: C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_18.2004.1162.0_x64__8wekyb3d8bbwe\LocalBridge.exe
  517. FF*(Mon 1) DX11(480) : Each 60 at 2020-06-09 02:59:55 file: 079.JPG- Zip CRC: bb06c7994e5da0bfba5baa2229542260598d20cb397ed8d0e9aca7f6cca62760
  518. ping:162ms
  519. (Mon 1) DX11(1181) : Each 60 at 2020-06-09 02:59:59 file: 080.JPG- Zip CRC: 40c2291b45c9cf1094cd7ae5a48701b75d22976fe2b5d14e226e0e98b0151b0b
  520. ping:170ms
  521.  
  522. Monitor stoppped at 2020-06-09 02:59:57
  523. ping:164ms
  524.  
  525. Processes statistics ping:164
  526. PID Running Time Kernel Time User Time Name
  527. 860 03:06:25:40 00:00:20 00:00:19 lsass.exe
  528. 648 03:06:25:40 00:00:00 00:00:00 fontdrvhost.exe
  529. 1048 03:06:25:39 00:00:00 00:00:00 WUDFHost.exe
  530. 1748 03:06:25:38 00:00:00 00:00:00 NVDisplay.Container.exe
  531. 3500 03:06:25:36 00:00:00 00:00:00 spoolsv.exe
  532. 3652 03:06:25:36 00:00:04 00:00:05 nvcontainer.exe
  533. 3660 03:06:25:36 00:00:00 00:00:00 WireHelperSvc.exe
  534. 3680 03:06:25:36 00:00:00 00:00:00 RtkAudUService64.exe
  535. 3688 03:06:25:36 00:04:07 00:00:35 RzSDKService.exe
  536. 3704 03:06:25:36 00:00:01 00:00:01 OfficeClickToRun.exe
  537. 4300 03:06:25:35 00:00:00 00:00:04 RzSDKServer.exe
  538. 4892 03:06:25:32 00:00:00 00:00:01 dashost.exe
  539. 4884 03:06:25:25 00:00:00 00:00:00 DllHost.exe
  540. 8144 03:06:25:10 00:00:26 00:00:32 SearchIndexer.exe
  541. 6940 03:06:23:44 01:01:13 00:22:23 AUDIODG.EXE
  542. 1976 02:02:20:49 00:02:19 00:01:13 wmiprvse.exe
  543. 12384 00:21:58:19 00:00:00 00:00:00 WinLogon.exe
  544. 2772 00:21:58:19 00:00:00 00:00:00 fontdrvhost.exe
  545. 9748 00:21:58:19 00:03:16 00:05:21 dwm.exe
  546. 6376 00:21:58:10 00:00:01 00:00:02 NVDisplay.Container.exe
  547. 1376 00:09:06:54 00:04:52 00:08:39 nvcontainer.exe
  548. 4216 00:09:06:54 00:00:03 00:00:51 nvcontainer.exe
  549. 8480 00:09:06:54 00:00:00 00:00:00 taskhostw.exe
  550. 12548 00:09:06:54 00:00:03 00:00:02 sihost.exe
  551. 15432 00:09:06:53 00:00:45 00:00:25 Explorer.EXE
  552. 15824 00:09:06:52 00:00:00 00:00:00 StartMenuExperienceHost.exe
  553. 15688 00:09:06:50 00:00:04 00:00:01 ctfmon.exe
  554. 7880 00:09:06:50 00:00:00 00:00:00 RuntimeBroker.exe
  555. 4044 00:09:06:47 00:00:01 00:00:02 SearchUI.exe
  556. 14480 00:09:06:46 00:00:03 00:00:03 RuntimeBroker.exe
  557. 5312 00:09:06:44 00:00:01 00:00:03 SkypeApp.exe
  558. 12808 00:09:06:44 00:00:00 00:00:00 SkypeBackgroundHost.exe
  559. 13992 00:09:06:44 00:00:00 00:00:00 RemindersServer.exe
  560. 5336 00:09:06:43 00:00:00 00:00:00 ApplicationFrameHost.exe
  561. 3516 00:09:06:40 00:00:00 00:00:00 DllHost.exe
  562. 12192 00:09:06:39 00:00:00 00:00:00 RuntimeBroker.exe
  563. 11280 00:09:06:35 00:00:06 00:00:03 SettingSyncHost.exe
  564. 13756 00:09:06:32 00:00:00 00:00:00 DllHost.exe
  565. 9732 00:09:06:30 00:00:01 00:00:01 RuntimeBroker.exe
  566. 14304 00:09:06:22 00:00:00 00:00:00 SecurityHealthSystray.exe
  567. 8924 00:09:06:22 00:00:00 00:00:00 RtkAudUService64.exe
  568. 14116 00:09:06:21 00:00:03 00:00:03 OneDrive.exe
  569. 4664 00:09:06:19 00:00:01 00:00:01 RzSynapse.exe
  570. 5408 00:09:06:10 00:00:00 00:00:00 RuntimeBroker.exe
  571. 16336 00:09:05:51 00:00:00 00:00:01 ShellExperienceHost.exe
  572. 1680 00:09:05:50 00:00:00 00:00:00 RuntimeBroker.exe
  573. 8716 00:09:05:26 00:00:00 00:00:02 NVIDIA Web Helper.exe
  574. 10648 00:09:05:25 00:00:00 00:00:00 conhost.exe
  575. 14408 00:09:04:29 00:00:00 00:00:00 nvsphelper64.exe
  576. 12380 00:09:04:29 00:00:05 00:00:04 NVIDIA Share.exe
  577. 2628 00:09:04:24 00:00:00 00:00:00 NVIDIA Share.exe
  578. 3100 00:09:04:19 00:00:00 00:00:01 NVIDIA Share.exe
  579. 8344 00:09:04:02 00:00:00 00:00:00 WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe
  580. 13920 00:09:02:18 00:00:00 00:00:00 YourPhone.exe
  581. 10412 00:09:02:18 00:00:00 00:00:00 RuntimeBroker.exe
  582. 8944 00:08:57:39 00:00:00 00:00:01 Microsoft.Photos.exe
  583. 12008 00:08:57:38 00:00:01 00:00:00 RuntimeBroker.exe
  584. 10980 00:08:45:07 00:00:00 00:00:00 smartscreen.exe
  585. 10688 00:08:40:46 00:00:00 00:00:00 SecurityHealthHost.exe
  586. 4660 00:08:35:11 00:00:00 00:00:00 MicrosoftEdge.exe
  587. 7840 00:08:35:11 00:00:00 00:00:00 browser_broker.exe
  588. 15584 00:08:35:11 00:00:00 00:00:00 MicrosoftEdgeSH.exe
  589. 11396 00:08:35:11 00:00:00 00:00:01 MicrosoftEdgeCP.exe
  590. 10964 00:05:52:33 00:02:12 00:00:16 Steam.exe
  591. 14048 00:05:52:32 00:00:01 00:00:00 steamwebhelper.exe
  592. 13592 00:05:52:32 00:00:00 00:00:00 SteamService.exe
  593. 4812 00:05:52:31 00:00:00 00:00:00 steamwebhelper.exe
  594. 6408 00:05:52:31 00:00:02 00:00:06 steamwebhelper.exe
  595. 6524 00:05:52:31 00:00:00 00:00:00 steamwebhelper.exe
  596. 8876 00:05:52:23 00:00:00 00:00:05 steamwebhelper.exe
  597. 1532 00:05:52:23 00:00:00 00:00:05 steamwebhelper.exe
  598. 14328 00:05:52:23 00:00:00 00:00:06 steamwebhelper.exe
  599. 10732 00:05:52:18 00:00:00 00:00:00 CompPkgSrv.exe
  600. 13936 00:05:50:51 00:00:02 00:00:01 UbisoftGameLauncher.exe
  601. 16356 00:05:50:49 00:02:25 00:02:19 upc.exe
  602. 14172 00:05:50:44 00:00:00 00:00:03 UplayWebCore.exe
  603. 14824 00:05:50:34 00:00:00 00:00:00 RainbowSix_BE.exe
  604. 9388 00:05:50:32 00:00:36 00:00:08 EpicGamesLauncher.exe
  605. 15760 00:05:50:05 00:02:19 00:00:35 GameOverlayUI.exe
  606. 10352 00:05:50:05 00:00:03 00:01:58 UplayWebCore.exe
  607. 13940 00:05:50:04 00:00:00 00:00:00 steamwebhelper.exe
  608. 3512 00:05:45:54 00:00:25 00:00:54 Discord.exe
  609. 12412 00:05:45:52 00:00:29 00:02:00 Discord.exe
  610. 4856 00:05:45:52 00:00:07 00:00:13 Discord.exe
  611. 10704 00:05:45:47 00:00:00 00:00:00 Discord.exe
  612. 8852 00:05:45:47 00:04:55 00:54:17 Discord.exe
  613. 12460 00:05:45:38 00:00:01 00:00:03 Discord.exe
  614. 6092 00:01:24:40 00:00:33 00:00:10 MossX64.exe
  615. 9752 00:00:24:26 00:00:06 00:01:03 Discord.exe
  616. 8632 00:00:00:56 00:00:00 00:00:00 backgroundTaskHost.exe
  617. 5552 00:00:00:56 00:00:00 00:00:00 backgroundTaskHost.exe
  618. 8 00:00:00:56 00:00:00 00:00:00 RuntimeBroker.exe
  619. 7716 00:00:00:56 00:00:00 00:00:00 RuntimeBroker.exe
  620. 6226 keystroke, 159 Patterns found
  621.  
  622. Mouse moves
  623. ^ 188 events 0 over
  624. 10 |
  625. 9 |
  626. 8 |
  627. 7 | X X
  628. 6 | X X
  629. 5 | XXXX X X X
  630. 4 | XX XXXX X X XX X
  631. 3 | XX XXXXX XXXXXX X X X XX XX X
  632. 2 | XXX XXXXX XXXXXXX XXXXX XX X XX X X X X XX X X X X X
  633. 1 | XXXXXXXXXXXXXXXXXXXXXXXXXXXX XXXXXXXXXXX XX XXX X XX X X XX X X XXX X X X XX X X X X X
  634. X XX
  635. ----------------------------------------------------------------------------------------------------------------------------------------------> 140 px move
  636. 0000000000111111111122222222223333333333444444444455555555556666666666777777777788888888889999999999111111111111111111111111111111111111111111
  637. 0123456789012345678901234567890123456789012345678901234567890123456789012345678901234567890123456789000000000011111111112222222222333333333334
  638. 012345678901234567890123456789012345678900
  639. Global log CRC: 808df5b3d7a7749752c32cedc1c1b33f0299f33cb5e4d1e2539c77c1f1a6a887
RAW Paste Data