Format du document : text/plain
Prévisualisation
--------------- QuickScript | g3n-h@ckm@n | V5_29.10.19.1 ---------------
----- XP | Vista | 7 | 8 | 8.1 | 10 - 32/64 bits ----- - Start 26/07/2023 08:30:10
Updated 29/10/2019 | 06:45 (GMT) by g3n-h@ckm@n
Contact : http://www.sosvirus.net/
Time Zone : (UTC+01:00) Brussels, Copenhagen, Madrid, Paris
Registry saved : C:\QuickDiag\Save\Registry [26.07.2023 @ 08_30_14]
1652 | [Owner : SYSTEM |Parent : 68(services.exe)] - (.Microsoft Corporation - Spooler SubSystem App.) - (6.3.9600.17415) = C:\Windows\System32\spoolsv.exe
2644 | [Owner : SYSTEM |Parent : 68(services.exe)] - (. - .) - (2.4.6.0) = C:\Program Files\Grand Explorer\Grand Explorer.exe
3316 | [Owner : 4rem été 2023 vexe s |Parent : 2644()] - (. - ClientNetApp.) - (2.4.6.0) = C:\Program Files\Grand Explorer\Grand Explorer App.exe
4316 | [Owner : LOCAL SERVICE |Parent : 1272(svchost.exe)] - (.Microsoft Corporation - Windows Driver Foundation - User-mode Driver Framework Host Process.) - (6.3.9600.17415) = C:\Windows\System32\WUDFHost.exe
4372 | [Owner : LOCAL SERVICE |Parent : 1272(svchost.exe)] - (.Microsoft Corporation - Device Association Framework Provider Host.) - (6.3.9600.17415) = C:\Windows\System32\dasHost.exe
6524 | [Owner : SYSTEM |Parent : 2644()] - (. - .) - (2.4.6.0) = C:\Program Files\Grand Explorer\Grand Explorer.exe
6856 | [Owner : 4rem été 2023 vexe s |Parent : 2412(explorer.exe)] - (.Microsoft Corporation - Notepad.) - (6.3.9600.17415) = C:\Windows\System32\notepad.exe
5232 | [Owner : 4rem été 2023 vexe s |Parent : 2280()] - (.Malwarebytes - AdwCleaner.) - (8.4.0.0) = C:\Users\4rem été 2023 vexe s\Downloads\adwcleaner.exe
4476 | [Owner : SYSTEM |Parent : 68(services.exe)] - (. - BlindnessPulseTool.) - (9.5.8.6) = C:\Program Files (x86)\AmonDoveY\AmonDoveY.EXE
2304 | [Owner : NETWORK SERVICE |Parent : 68(services.exe)] - (.Microsoft Corporation - Windows Media Player Network Sharing Service.) - (12.0.9600.17415) = C:\Program Files\Windows Media Player\wmpnetwk.exe
4660 | [Owner : 4rem été 2023 vexe s |Parent : 2412(explorer.exe)] - (. - .) - (0.0.0.0) = C:\Users\4rem été 2023 vexe s\Music\Ludi\Demos\1944 La campagne des Ardennes\demo.exe
5744 | [Owner : 4rem été 2023 vexe s |Parent : 4660()] - (.Microsoft Corporation - Notepad.) - (6.3.9600.17415) = C:\Windows\notepad.exe
7072 | [Owner : SYSTEM |Parent : 68(services.exe)] - (.IObit - Advanced SystemCare Service.) - (16.0.0.201) = C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe
5928 | [Owner : 4rem été 2023 vexe s |Parent : 1564()] - (.IObit - Advanced SystemCare.) - (16.5.0.237) = C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe
1144 | [Owner : SYSTEM |Parent : 1272(svchost.exe)] - (.Microsoft Corporation - Windows host process (Rundll32).) - (6.3.9600.17415) = C:\Windows\System32\rundll32.exe
6632 | [Owner : 4rem été 2023 vexe s |Parent : 1564()] - (.IObit - Performance Monitor.) - (16.2.0.112) = C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe
3748 | [Owner : 4rem été 2023 vexe s |Parent : 5928()] - (.IObit - Advanced SystemCare Tray.) - (16.0.0.977) = C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe
6444 | [Owner : 4rem été 2023 vexe s |Parent : 84()] - (.iTop Inc. - iTop VPN.) - (4.7.0.4299) = C:\Program Files (x86)\iTop VPN\iTopVPN.exe
3176 | [Owner : 4rem été 2023 vexe s |Parent : 7064()] - (.iTop Inc. - iTop Data Recovery.) - (3.6.0.112) = C:\Program Files (x86)\iTop Data Recovery\iTopDataRecovery.exe
5008 | [Owner : 4rem été 2023 vexe s |Parent : 6444(iTopVPN.exe)] - (.iTop Inc. - iTop VPN Mini.) - (4.0.0.4183) = C:\Program Files (x86)\iTop VPN\iTopVPNMini.exe
1328 | [Owner : SYSTEM |Parent : 68(services.exe)] - (.iTop Inc. - iTop Data Recovery Service.) - (3.2.0.146) = C:\Program Files (x86)\iTop Data Recovery\IDRService.exe
7652 | [Owner : 4rem été 2023 vexe s |Parent : 1172(svchost.exe)] - (.Microsoft Corporation - Host Process for Windows Tasks.) - (6.3.9600.17415) = C:\Windows\System32\taskhost.exe
6868 | [Owner : 4rem été 2023 vexe s |Parent : 2496()] - (.iTop Inc. - iTop Screen Recorder.) - (4.0.0.643) = C:\Program Files\iTop Screen Recorder\iScrRec.exe
7180 | [Owner : SYSTEM |Parent : 1172(svchost.exe)] - (.Microsoft Corporation - Windows SQM Consolidator.) - (6.3.9600.17415) = C:\Windows\System32\wsqmcons.exe
6668 | [Owner : 4rem été 2023 vexe s |Parent : 2412(explorer.exe)] - (.Disc Soft Ltd - DAEMON Tools Shell Extensions Helper.) - (8.3.1.811) = C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe
7220 | [Owner : SYSTEM |Parent : 68(services.exe)] - (.Disc Soft Ltd - Disc Soft Bus Service Pro.) - (8.3.1.811) = C:\Program Files\DAEMON Tools Pro\DiscSoftBusServicePro.exe
5000 | [Owner : 4rem été 2023 vexe s |Parent : 4576()] - (.Disc Soft Ltd - DAEMON Tools Pro.) - (8.3.1.811) = C:\Program Files\DAEMON Tools Pro\DTPro.exe
496 | [Owner : 4rem été 2023 vexe s |Parent : 5000(DTPro.exe)] - (.Disc Soft Ltd - DAEMON Tools Pro Agent.) - (8.3.1.811) = C:\Program Files\DAEMON Tools Pro\DTAgent.exe
1320 | [Owner : SYSTEM |Parent : 1172(svchost.exe)] - (.Microsoft Corporation - Windows Update.) - (7.9.9600.17415) = C:\Windows\System32\wuauclt.exe
7384 | [Owner : SYSTEM |Parent : 1172(svchost.exe)] - (.Microsoft Corporation - Task Scheduler Engine.) - (6.3.9600.17415) = C:\Windows\System32\taskeng.exe
304 | [Owner : 4rem été 2023 vexe s |Parent : 1172(svchost.exe)] - (.Microsoft Corporation - Microsoft Feeds Synchronization.) - (11.0.9600.17416) = C:\Windows\System32\msfeedssync.exe
4528 | [Owner : LOCAL SERVICE |Parent : 1172(svchost.exe)] - (.Microsoft Corporation - Host Process for Windows Tasks.) - (6.3.9600.17415) = C:\Windows\System32\taskhost.exe
7932 | [Owner : SYSTEM |Parent : 68(services.exe)] - (.Microsoft Corporation - Windows Modules Installer.) - (6.3.9600.17415) = C:\Windows\servicing\TrustedInstaller.exe
2020 | [Owner : SYSTEM |Parent : 512(svchost.exe)] - (.Microsoft Corporation - Windows Modules Installer Worker.) - (6.3.9600.17031) = C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17246_none_fa4ae8e99b1f603c\TiWorker.exe
7264 | [Owner : 4rem été 2023 vexe s |Parent : 1172(svchost.exe)] - (.Microsoft Corporation - Task Scheduler Engine.) - (6.3.9600.17415) = C:\Windows\System32\taskeng.exe
8040 | [Owner : 4rem été 2023 vexe s |Parent : 7264(taskeng.exe)] - (.Microsoft Corporation - Microsoft Edge Update.) - (1.3.171.39) = C:\Users\4rem été 2023 vexe s\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
8292 | [Owner : SYSTEM |Parent : 68(services.exe)] - (.Corel Corporation - ReviverSoft Smart Monitor Service.) - (2.12.1.8) = C:\Program Files\ReviverSoft\Smart Monitor\ReviverSoft Smart Monitor Service.exe
7236 | [Owner : 4rem été 2023 vexe s |Parent : 8292(ReviverSoft Smart Monitor Service.exe)] - (.Corel Corporation - Smart Monitor.) - (2.12.1.8) = C:\Program Files\ReviverSoft\Smart Monitor\ReviverSoftSmartMonitor.exe
9612 | [Owner : 4rem été 2023 vexe s |Parent : 8304()] - (.Corel Corporation - Driver Reviver.) - (5.42.2.10) = C:\Program Files\ReviverSoft\Driver Reviver\DriverReviver.exe
6432 | [Owner : 4rem été 2023 vexe s |Parent : 2412(explorer.exe)] - (.Microsoft Corporation - Internet Explorer.) - (11.0.9600.17416) = C:\Program Files\Internet Explorer\iexplore.exe
9076 | [Owner : SYSTEM |Parent : 68(services.exe)] - (.Microsoft Corporation - Microsoft® Volume Shadow Copy Service.) - (6.3.9600.17415) = C:\Windows\System32\VSSVC.exe
9428 | [Owner : 4rem été 2023 vexe s |Parent : 1172(svchost.exe)] - (.Microsoft Corporation - Device Setup Manager User Task Handler.) - (6.3.9600.17415) = C:\Windows\System32\DsmUserTask.exe
8236 | [Owner : LOCAL SERVICE |Parent : 1272(svchost.exe)] - (.Microsoft Corporation - Windows Driver Foundation - User-mode Driver Framework Host Process.) - (6.3.9600.17415) = C:\Windows\System32\WUDFHost.exe
8980 | [Owner : NETWORK SERVICE |Parent : 68(services.exe)] - (.Microsoft Corporation - Microsoft Software Protection Platform Service.) - (6.3.9600.16497) = C:\Windows\System32\sppsvc.exe
Process explorer.exe : Killed Successfully
-------------- | Listing : A:/
-------------- | Listing : B:/
-------------- | Listing : C:/
-------------- | Listing : D:/
-------------- | Listing : E:/
-------------- | Listing : F:/
-------------- | Listing : G:/
-------------- | Listing : U:/
-------------- | Listing : V:/
-------------- | Listing : W:/
-------------- | Listing : X:/
-------------- | Listing : Y:/
-------------- | Listing : Z:/
-------------- | Recurse Listing : A:/
-------------- | Recurse Listing : A:/
-------------- | Recurse Listing : B:/
-------------- | Recurse Listing : C:/
-------------- | Recurse Listing : D:/
-------------- | Recurse Listing : E:/
-------------- | Recurse Listing : F:/
-------------- | Recurse Listing : W:/
-------------- | Recurse Listing : X:/
-------------- | Recurse Listing : Y:/
-------------- | Recurse Listing : Z:/
-------------- | FileSearch : Galaxy
[MD5.60D27942CB506D40B0332ACE9855F3F1] - [20/07/2023 08:08:24] - (. - .) - [3.14 Ko] - C:\QuickDiag\Quarantine\R\.QuickScript\Clean_DNS galaxy book 15 10 2019.txt -> (0.0.0.0)
[MD5.77C98B93D89F36B439C6A33769B40E1F] - [20/07/2023 08:10:02] - (. - .) - [53.14 Ko] - C:\QuickDiag\Quarantine\R\.QuickScript\Look_my_hardware usb win 7 starter multiboot galaxy book 9 10 2019.txt -> (0.0.0.0)
[MD5.197DDAF0C490C047AB1720E9E11ACA8A] - [20/07/2023 08:10:17] - (. - .) - [2.8 Ko] - C:\QuickDiag\Quarantine\R\.QuickScript\TOPIC PRELIMINAIRE ENTRAIDE GALAXY BOOK DISQUES EXTERNES P2DT 4REM 15_10_2019.rtf -> (0.0.0.0)
[MD5.0CF6D282A0C14658D85C67BFBB6F5EC5] - [20/07/2023 08:10:17] - (. - .) - [8.74 Ko] - C:\QuickDiag\Quarantine\R\.QuickScript\topics 4 pc et disques externes part 11 - total GALAXY BOOK supports externes, CADEAU REC WIDEN 4 FINALIS.txt -> (0.0.0.0)
[MD5.FD2A4302DC13BFB6E66B00FBB4687209] - [20/07/2023 08:10:17] - (. - .) - [3.53 Ko] - C:\QuickDiag\Quarantine\R\.QuickScript\topics 4 pc et disques externes part 8 - GALAXY BOOK, CADEAU REC WIDEN 4 FINALIS.txt -> (0.0.0.0)
-------------- | FileSearch : Epson
[MD5.48697DB77E79836D09E81BCEA9E7153B] - [20/07/2023 07:51:35] - (. - .) - [0.3 Ko] - C:\QuickDiag\Quarantine\C\Program Files (x86)\CyberLink.QuickScript\LabelPrint\Papers\Epson Direct CD-DVD Printing.lpt -> (0.0.0.0)
[MD5.48697DB77E79836D09E81BCEA9E7153B] - [20/07/2023 09:01:51] - (. - .) - [0.3 Ko] - C:\Users\2024antiasarl2023vex\Documents\sauvetage quickdiag en cas de restau usine windows\QuickDiag\Quarantine\C\Program Files (x86)\CyberLink.QuickScript\LabelPrint\Papers\Epson Direct CD-DVD Printing.lpt -> (0.0.0.0)
-------------- | FileSearch : Android