echo Fait par copin le 18/02/2020 à 17:23:41,51 ===================================== Caption Version ServicePackMajorVersion OSArchitecture ------- ------- ----------------------- -------------- Microsoft Windows 10 Famille 10.0.18363 0 64 bits ==============licence==================== Microsoft (R) Windows Script Host Version 5.812 Copyright (C) Microsoft Corporation. Tous droits r‚serv‚s. Nomÿ: Windows(R), Core edition Description : Windows(R) Operating System, OEM_DM channel Cl‚ de produit partielleÿ: WB6PY tat de la licenceÿ: avec licence ===============memoire==================== TotalVisibleMemorySize : 4073412 TotalVirtualMemorySize : 9578436 FreePhysicalMemory : 454824 FreeVirtualMemory : 3953144 ======tri WS====== Handles NPM(K) PM(K) WS(K) CPU(s) Id SI ProcessName ------- ------ ----- ----- ------ -- -- ----------- 6239 491 1495756 812104 992,58 9500 1 MicrosoftEdgeCP 2244 192 407156 383272 912,36 6768 1 MicrosoftEdgeCP 880 210 307636 275352 109,69 8152 1 MicrosoftEdgeCP 0 0 924 179324 135,55 2284 0 Memory Compression 2259 124 141724 162980 197,67 1392 1 MicrosoftEdgeCP 1132 69 205948 139460 85,16 3796 0 MsMpEng 1951 104 56316 108256 77,33 7052 1 MicrosoftEdge 1102 72 81640 98564 12,03 7648 1 MicrosoftEdgeCP 1515 85 89740 92852 20,61 4872 1 MicrosoftEdgeCP 2972 92 66860 85148 63,55 5744 1 explorer ======tri CPU====== Handles NPM(K) PM(K) WS(K) CPU(s) Id SI ProcessName ------- ------ ----- ----- ------ -- -- ----------- 6239 491 1495764 812112 992,58 9500 1 MicrosoftEdgeCP 2244 192 407156 383272 912,36 6768 1 MicrosoftEdgeCP 1389 48 100292 56896 555,41 1216 1 dwm 4331 0 200 1112 363,72 4 0 System 2261 124 142012 163024 197,67 1392 1 MicrosoftEdgeCP 543 21 11424 28976 146,38 5124 1 svchost 0 0 924 179388 135,55 2284 0 Memory Compression 880 210 307636 275352 109,69 8152 1 MicrosoftEdgeCP 1133 69 205948 139856 85,39 3796 0 MsMpEng 404 32 8404 13884 79,55 7692 1 MicrosoftEdgeSH ================================== ============tous process actifs======== Handles NPM(K) PM(K) WS(K) CPU(s) Id SI ProcessName ------- ------ ----- ----- ------ -- -- ----------- 520 27 14344 20504 4,02 7060 1 ApplicationFrameHost 251 12 2476 9736 7,41 2116 1 atieclxx 174 8 1356 5280 0,14 1984 0 atiesrxx 2290 27 54492 35252 21,14 6840 0 audiodg 445 19 4656 19776 1,33 7268 1 browser_broker 97 7 4960 5152 0,17 9004 1 cmd 118 7 6408 5044 0,06 3232 0 conhost 200 12 8028 16512 0,34 10132 1 conhost 591 21 1712 4444 1,59 572 0 csrss 505 18 2160 4764 17,81 716 1 csrss 481 18 22736 16832 15,66 5560 1 ctfmon 196 16 3008 9520 0,03 832 0 dllhost 140 8 1748 7292 0,33 5900 1 dllhost 473 255 64148 71960 18,64 7424 1 dllhost 1389 48 100292 56896 555,41 1216 1 dwm 395 13 7308 12216 0,52 2844 1 ETDCtrl 135 7 1408 5168 0,20 3516 0 ETDService 2964 91 66592 85088 63,55 5744 1 explorer 32 7 2240 3732 0,42 948 1 fontdrvhost 32 5 1540 2072 0,05 952 0 fontdrvhost 0 0 60 8 0 0 Idle 520 28 26004 21888 1,91 1568 1 LockApp 1976 26 9536 18564 12,59 804 0 lsass 939 34 18488 32360 50,03 3752 0 MBAMService 497 26 16676 18228 4,63 5016 1 mbamtray 0 0 924 179412 135,55 2284 0 Memory Compression 938 53 62012 3392 3,63 9804 1 Microsoft.Photos 1951 104 56316 108256 77,33 7052 1 MicrosoftEdge 2261 124 141868 163148 197,70 1392 1 MicrosoftEdgeCP 1514 85 89740 92852 20,61 4872 1 MicrosoftEdgeCP 574 34 5776 12748 0,72 6372 1 MicrosoftEdgeCP 2244 192 407156 383272 912,36 6768 1 MicrosoftEdgeCP 1102 72 81640 98564 12,03 7648 1 MicrosoftEdgeCP 880 210 307636 275352 109,69 8152 1 MicrosoftEdgeCP 1030 90 87736 28100 7,72 9372 1 MicrosoftEdgeCP 6239 491 1496128 812396 993,30 9500 1 MicrosoftEdgeCP 579 33 6008 27940 0,36 11212 1 MicrosoftEdgeCP 725 42 27072 25260 2,44 2772 1 MicrosoftEdgeSH 404 32 8432 13912 79,55 7692 1 MicrosoftEdgeSH 1134 69 206984 140256 85,59 3796 0 MsMpEng 198 12 4736 8772 0,31 1084 0 NisSrv 719 27 34156 35884 4,39 3508 0 OfficeClickToRun 841 52 29340 37724 20,95 8292 1 OneDrive 550 29 52504 56064 1,19 2832 1 powershell 80 7 12584 15588 0,11 9840 1 Process 0 11 7252 32072 1,42 88 0 Registry 298 12 2160 8856 0,23 3632 0 RtkAudUService64 306 12 2336 9472 0,30 8276 1 RtkAudUService64 147 8 1868 6288 0,61 3648 0 RtkBtManServ 236 13 2700 13172 0,86 1508 1 RuntimeBroker 126 9 1808 6864 0,08 1520 1 RuntimeBroker 375 20 7904 21852 5,00 1704 1 RuntimeBroker 337 17 4712 8012 0,80 3468 1 RuntimeBroker 375 23 56316 64384 36,08 5720 1 RuntimeBroker 324 18 6124 9268 4,59 6500 1 RuntimeBroker 459 20 6632 20476 1,66 6792 1 RuntimeBroker 127 8 1544 7224 0,11 7120 1 RuntimeBroker 694 30 13312 40644 8,75 7584 1 RuntimeBroker 311 17 4452 11908 1,05 8868 1 RuntimeBroker 128 8 1420 6180 0,05 1308 0 SearchFilterHost 802 73 32600 43336 60,36 6416 0 SearchIndexer 267 10 1880 7940 0,25 7364 1 SearchProtocolHost 375 13 2468 12816 0,08 7592 0 SearchProtocolHost 1065 69 86172 8680 4,80 9068 1 SearchUI 178 10 2652 9244 0,20 3660 0 SECOMN64 375 15 3368 13068 0,94 8736 0 SecurityHealthService 152 9 1688 8144 0,13 8260 1 SecurityHealthSystray 662 11 4852 8584 7,78 776 0 services 516 33 8728 19236 14,58 7372 1 SettingSyncHost 89 6 2784 5648 0,36 2220 0 SgrmBroker 870 20 7432 28028 14,72 4836 1 sihost 1099 101 209012 39944 19,84 7256 1 SkypeApp 151 8 1944 6284 0,22 6156 1 SkypeBackgroundHost 707 30 38636 25564 18,28 8360 1 SkypeBridge 581 40 21816 41972 5,05 8068 1 smartscreen 53 3 1144 944 0,59 376 0 smss 430 21 5224 11712 0,31 2996 0 spoolsv 228 10 5860 14396 1,08 8228 0 sppsvc 758 40 41724 48384 6,17 6332 1 StartMenuExperienceHost 1367 23 12636 29884 39,97 344 0 svchost 1336 20 9732 16340 33,94 576 0 svchost 223 12 2300 9796 0,14 624 0 svchost 256 10 2236 7424 0,91 764 0 svchost 139 8 2852 8304 0,11 840 0 svchost 190 10 1988 8784 2,69 944 0 svchost 86 5 888 3524 0,02 968 0 svchost 180 13 1716 6728 0,11 1088 0 svchost 157 9 1592 10048 0,11 1096 0 svchost 268 13 2748 8952 0,34 1108 0 svchost 255 13 2500 10000 0,61 1156 0 svchost 157 9 1936 11332 0,50 1176 0 svchost 396 10 2648 8404 0,75 1456 0 svchost 256 14 2824 11832 0,19 1480 1 svchost 193 7 1592 5532 0,64 1488 0 svchost 402 14 14660 14752 1,02 1600 0 svchost 381 17 5736 13780 2,27 1636 0 svchost 189 11 2204 8868 0,16 1684 0 svchost 230 13 2852 10944 0,22 1688 0 svchost 212 10 7620 15316 18,84 1724 0 svchost 125 8 1388 6328 0,05 1732 0 svchost 151 33 5980 9468 0,69 1768 0 svchost 147 9 1968 8276 2,50 1888 0 svchost 283 12 2928 9756 5,03 1948 0 svchost 122 7 1224 5136 0,03 1968 0 svchost 222 10 2088 6904 1,42 2012 0 svchost 218 12 2464 8584 22,95 2148 0 svchost 391 16 4592 11748 3,78 2156 0 svchost 165 9 1820 6852 0,16 2168 0 svchost 193 7 1292 5340 0,09 2180 0 svchost 183 10 2072 8204 0,70 2244 0 svchost 178 11 1872 7812 0,31 2356 0 svchost 190 12 2044 11380 0,20 2388 0 svchost 188 9 1732 7148 0,58 2396 0 svchost 274 13 3136 7844 5,02 2452 0 svchost 147 9 1640 7128 0,11 2568 0 svchost 541 12 2884 8468 5,34 2624 0 svchost 176 10 1908 8372 0,92 2652 0 svchost 439 14 3664 12632 2,84 2744 0 svchost 436 19 3936 17156 1,69 2760 0 svchost 141 12 1712 6044 0,72 2792 0 svchost 373 16 2456 8584 0,66 2812 0 svchost 187 9 1908 6668 4,58 2956 0 svchost 502 22 5720 15408 1,66 3044 0 svchost 378 18 4340 15172 3,97 3080 0 svchost 415 32 10420 16760 6,52 3092 0 svchost 189 10 1964 6948 0,16 3128 0 svchost 268 14 3552 17324 0,81 3292 0 svchost 396 30 4876 13456 3,86 3488 0 svchost 376 19 15296 20292 14,69 3496 0 svchost 396 15 7148 13760 2,55 3528 0 svchost 206 12 2308 7516 0,22 3604 0 svchost 135 9 1564 5552 0,02 3624 0 svchost 128 7 1264 4904 0,05 3724 0 svchost 412 19 4836 20636 1,20 3780 0 svchost 477 17 3496 11716 2,05 3788 0 svchost 109 7 1252 2952 0,16 3864 0 svchost 378 24 3312 9844 0,33 3908 0 svchost 543 21 11424 28976 146,38 5124 1 svchost 163 9 1632 7368 0,34 5132 1 svchost 480 23 7664 23336 3,11 5228 1 svchost 221 12 3696 9984 0,13 5304 0 svchost 260 13 3472 14200 8,02 5432 0 svchost 167 9 1732 7112 0,11 5472 0 svchost 433 26 5440 17996 1,36 5928 0 svchost 283 13 3380 18480 0,34 5940 1 svchost 118 7 1272 5512 0,05 6240 0 svchost 304 13 3016 9840 0,58 6432 0 svchost 212 15 1956 6996 0,55 6528 0 svchost 189 11 2792 13472 0,13 8104 0 svchost 235 13 2852 11148 4,69 9092 0 svchost 251 13 3048 12300 0,16 10716 0 svchost 4328 0 200 1112 363,75 4 0 System 356 69 16480 26828 17,69 5312 1 taskhostw 515 24 23880 18224 1,77 3912 1 WindowsInternal.ComposableShell.Experiences.TextInput.Inpu... 156 11 1328 5488 0,14 700 0 wininit 285 14 3140 9836 0,73 816 1 winlogon 997 73 57956 560 2,78 2972 1 WinStore.App 184 10 2116 6784 0,30 3224 0 wlanext 211 13 3680 10208 0,20 2636 0 WmiPrvSE 227 16 3980 10324 0,33 11124 0 WmiPrvSE 483 23 26200 13456 0,59 7316 1 YourPhone Nom de l’image PID Services ========================= ======== ============================================ svchost.exe 968 PlugPlay svchost.exe 344 BrokerInfrastructure, DcomLaunch, Power, SystemEventsBroker svchost.exe 576 RpcEptMapper, RpcSs svchost.exe 764 LSM svchost.exe 1088 BTAGService svchost.exe 1096 BthAvctpSvc svchost.exe 1108 bthserv svchost.exe 1156 NcbService svchost.exe 1176 TimeBrokerSvc svchost.exe 1456 DisplayEnhancementService svchost.exe 1488 CoreMessagingRegistrar svchost.exe 1600 EventLog svchost.exe 1636 Schedule svchost.exe 1688 ProfSvc svchost.exe 1724 StateRepository svchost.exe 1732 DispBrokerDesktopSvc svchost.exe 1768 nsi svchost.exe 1888 camsvc svchost.exe 1948 UserManager svchost.exe 1968 DeviceAssociationService svchost.exe 2012 Dhcp svchost.exe 624 SEMgrSvc svchost.exe 2148 SysMain svchost.exe 2156 NlaSvc svchost.exe 2168 EventSystem svchost.exe 2180 Themes svchost.exe 2244 FontCache svchost.exe 2356 SENS svchost.exe 2396 AudioEndpointBuilder svchost.exe 2452 Dnscache svchost.exe 2568 NgcSvc svchost.exe 2624 netprofm svchost.exe 2652 NgcCtnrSvc svchost.exe 2744 Audiosrv svchost.exe 2792 DusmSvc svchost.exe 2812 Wcmsvc svchost.exe 2956 WinHttpAutoProxySvc svchost.exe 3044 WlanSvc svchost.exe 2388 ShellHWDetection svchost.exe 3092 BFE, mpssvc svchost.exe 3128 LanmanWorkstation svchost.exe 3488 CryptSvc svchost.exe 3496 DPS svchost.exe 3528 Winmgmt svchost.exe 3604 LanmanServer svchost.exe 3624 SstpSvc svchost.exe 3724 TrkWks svchost.exe 3780 WpnService svchost.exe 3788 iphlpsvc svchost.exe 3864 WdiServiceHost svchost.exe 3908 RasMan svchost.exe 944 Appinfo svchost.exe 5124 CDPUserSvc_568ca svchost.exe 5132 BluetoothUserService_568ca svchost.exe 5228 WpnUserService_568ca svchost.exe 5432 TokenBroker svchost.exe 5472 TabletInputService svchost.exe 5928 CDPSvc svchost.exe 5940 cbdhsvc_568ca svchost.exe 2760 lfsvc svchost.exe 8104 InstallService svchost.exe 3292 LicenseManager svchost.exe 3080 DoSvc svchost.exe 9092 StorSvc svchost.exe 1684 UsoSvc svchost.exe 6432 wscsvc svchost.exe 1480 OneSyncSvc_568ca svchost.exe 6528 SSDPSRV svchost.exe 6240 lmhosts svchost.exe 840 ClipSVC svchost.exe 10716 wlidsvc svchost.exe 5304 PcaSvc ================reseau================== Name InterfaceDescription ifIndex Status MacAddress LinkSpeed ---- -------------------- ------- ------ ---------- --------- Ethernet Realtek PCIe GbE Family Controller 13 Disconnected 04-0E-3C-CD-F6-BA 0 bps Wi-Fi Realtek RTL8723DE 802.11b/g/n PCIe A... 5 Up 80-91-33-F2-5C-03 72.2 Mbps Connexion réseau Bluet... Bluetooth Device (Personal Area Netw... 3 Disconnected 80-91-33-F2-5C-02 3 Mbps Connexions actives Proto Adresse locale Adresse distante tat TCP 192.168.1.45:49734 a2-22-78-2:https CLOSE_WAIT [System] TCP 192.168.1.45:49736 a2-22-78-2:https CLOSE_WAIT [System] TCP 192.168.1.45:49737 a2-22-78-2:https CLOSE_WAIT [System] TCP 192.168.1.45:49741 a23-56-177-31:http CLOSE_WAIT [System] TCP 192.168.1.45:49742 a23-56-177-31:http CLOSE_WAIT [System] TCP 192.168.1.45:49743 a23-56-177-31:http CLOSE_WAIT [System] TCP 192.168.1.45:49746 a23-56-177-31:http CLOSE_WAIT [System] TCP 192.168.1.45:49747 a23-56-177-31:http CLOSE_WAIT [System] TCP 192.168.1.45:49748 a23-56-177-31:http CLOSE_WAIT [System] TCP 192.168.1.45:49749 a92-123-111-38:http CLOSE_WAIT [System] TCP 192.168.1.45:49756 a92-123-108-253:https CLOSE_WAIT [System] TCP 192.168.1.45:51204 40.67.254.36:https ESTABLISHED [OneDrive.exe] TCP 192.168.1.45:51215 40.67.254.36:https ESTABLISHED WpnService [System] TCP 192.168.1.45:51226 edge-star-shv-01-mrs2:https ESTABLISHED [System] TCP 192.168.1.45:51230 edge-star-shv-02-mrs2:https ESTABLISHED [System] TCP 192.168.1.45:51499 52.157.234.37:https ESTABLISHED CDPUserSvc_568ca [System] TCP 192.168.1.45:51523 c-host-c1:https CLOSE_WAIT [System] TCP 192.168.1.45:51524 c-host-c1:https CLOSE_WAIT [System] TCP 192.168.1.45:51533 40.115.119.185:https ESTABLISHED Impossible d'obtenir les informations de propri‚taire TCP 192.168.1.45:51534 13.107.43.12:https ESTABLISHED [OneDrive.exe] TCP 192.168.1.45:51535 52.114.132.74:https ESTABLISHED [OneDrive.exe] TCP 192.168.1.45:51536 52.114.132.74:https ESTABLISHED [OneDrive.exe] TCP 192.168.1.45:51542 edge-star-mini-shv-01-mrs2:https ESTABLISHED [System] TCP 192.168.1.45:51544 c-host-c1:https CLOSE_WAIT [System] Envoi d'une requˆte 'ping' sur google.fr [172.217.19.35] avec 32 octets de donn‚esÿ: R‚ponse de 172.217.19.35ÿ: octets=32 temps=32 ms TTL=54 R‚ponse de 172.217.19.35ÿ: octets=32 temps=25 ms TTL=54 R‚ponse de 172.217.19.35ÿ: octets=32 temps=24 ms TTL=54 R‚ponse de 172.217.19.35ÿ: octets=32 temps=57 ms TTL=54 Statistiques Ping pour 172.217.19.35: Paquetsÿ: envoy‚s = 4, re‡us = 4, perdus = 0 (perte 0%), Dur‚e approximative des boucles en millisecondes : Minimum = 24ms, Maximum = 57ms, Moyenne = 34ms Envoi d'une requˆte 'Ping' 127.0.0.1 avec 32 octets de donn‚esÿ: R‚ponse de 127.0.0.1ÿ: octets=32 temps<1ms TTL=128 R‚ponse de 127.0.0.1ÿ: octets=32 temps<1ms TTL=128 R‚ponse de 127.0.0.1ÿ: octets=32 temps<1ms TTL=128 R‚ponse de 127.0.0.1ÿ: octets=32 temps<1ms TTL=128 Statistiques Ping pour 127.0.0.1: Paquetsÿ: envoy‚s = 4, re‡us = 4, perdus = 0 (perte 0%), Dur‚e approximative des boucles en millisecondes : Minimum = 0ms, Maximum = 0ms, Moyenne = 0ms ================================== =================fin=================