¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Pre_Scan | g3n-h@ckm@n | V7_16.10.17.1 ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ ¤¤¤¤¤ XP | Vista | 7 | 8 - 32/64 bits ¤¤¤¤¤ - Start 17:30:44 02/05/2023 Updated 16/10/2017 | 14.45 by g3n-h@ckm@n Contact : http://www.sosvirus.net/ Pre_scan Feedbacks : http://www.sosvirus.net/feedback-t74962.html [EFM LFS Hyper UEFM (Administrator)] - [DESKTOP-H7BEC55] SID = S-1-5-21-662962405-169162653-1899843541-1001 Boot: Normal boot System : Windows 10 Enterprise (64 bits) Enterprise ProcessorNameString : AMD E1-1200 APU with Radeon(tm) HD Graphics Identifier : AMD64 Family 20 Model 2 Stepping 0 CoreTemp : -1 Celsius - Max : Celsius Memory RAM = Total (MB) : 3748 | Free (MB) : 2388 Pagefile = Total (MB) : 4662 | Free (MB) : 3513 Virtual = Total (MB) : 4194 | Free (MB) : 3945 ¤¤¤¤¤¤¤¤¤¤ # Components of starting up ¤¤¤¤¤¤¤¤¤¤¤ # Drives I:\-> [CDROM] | [WINDOWS 11] | Total : 4.18 Go | Free : 0 Go -> UDF [SATA] E:\-> [Removable] | [] | Total : 59.5 Go | Free : 59.5 Go -> FAT32 [USB] C:\-> [Fixed] | [windows2go workspace] | Total : 57.6 Go | Free : 0.34 Go -> NTFS (SSD) [USB] ¤¤¤¤¤¤¤¤¤¤ # Windows updates Possible Fixed Windows ¤¤¤¤¤¤¤¤¤¤ # Sessions C:\Windows\system32\config\systemprofile C:\Windows\ServiceProfiles\LocalService C:\Windows\ServiceProfiles\NetworkService C:\Users\EFM LFS Hyper UEFM C:\Users\_ashbackup_ Registry saved , to restore : Shortcut on the desktop 'Pre_Scan_Restore' Restore the register (C:\Pre_Scan\Save\Registry [05.02.2023 @ 17_20_44]) To restore File or Folder : Shortcut on the desktop 'Pre_Scan_Restore' , select 'restore File - Folder' , select an Item and click on Restore ¤¤¤¤¤¤¤¤¤¤ # Browsers IE : 11.0.17134.1 (© Microsoft Corporation.) GC : 76.0.3809.100 (Copyright 2019 Google LLC.) ¤¤¤¤¤¤¤¤¤¤ # FlashPlayer ActiveX : 32.0.0.207 ���������� # Security AV : Windows Defender Enabled AS : Windows Defender Enabled FW : WMI : OK WU: Windows Update Service [Auto(2)] = stopped AS: Windows Defender [Auto(2)] = Running FW: Windows FireWall Service [Auto(2)] = stopped ¤¤¤¤¤¤¤¤¤¤ # Stopped processes 2696 | [Owner : |Parent : 692] - (.Microsoft Corporation - Windows Security Health Service.) - (4.13.17134.191) = C:\Windows\System32\SecurityHealthService.exe 2912 | [Owner : |Parent : 692] - (.Microsoft Corporation - Antimalware Service Executable.) - (4.18.1907.4) = C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1907.4-0\MsMpEng.exe 3424 | [Owner : |Parent : 692] - (.Microsoft Corporation - Microsoft Network Realtime Inspection Service.) - (4.18.1907.4) = C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1907.4-0\NisSrv.exe 4584 | [Owner : |Parent : 692] - (.Microsoft Corporation - Service Broker du moniteur d'exécution System Guard.) - (10.0.17134.1) = C:\Windows\System32\SgrmBroker.exe 1032 | [Owner : SERVICE LOCAL |Parent : 2488] - (.Microsoft Corporation - Device Association Framework Provider Host.) - (10.0.17134.1) = C:\Windows\System32\dasHost.exe 5180 | [Owner : EFM LFS Hyper UEFM |Parent : 2816] - (.Microsoft Corporation - Chargeur CTF.) - (10.0.17134.1) = C:\Windows\System32\ctfmon.exe 2216 | [Owner : EFM LFS Hyper UEFM |Parent : 1392] - (.Microsoft Corporation - Shell Infrastructure Host.) - (10.0.17134.1) = C:\Windows\System32\sihost.exe 6416 | [Owner : EFM LFS Hyper UEFM |Parent : 2216] - (.Microsoft Corporation - Explorateur Windows.) - (10.0.17134.858) = C:\Windows\explorer.exe 1132 | [Owner : SERVICE LOCAL |Parent : 2488] - (.Microsoft Corporation - Device Association Framework Provider Host.) - (10.0.17134.1) = C:\Windows\System32\dasHost.exe 4808 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 728 | [Owner : EFM LFS Hyper UEFM |Parent : 692] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17134.556) = C:\Windows\System32\svchost.exe 3872 | [Owner : EFM LFS Hyper UEFM |Parent : 692] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17134.556) = C:\Windows\System32\svchost.exe 1936 | [Owner : EFM LFS Hyper UEFM |Parent : 692] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.17134.556) = C:\Windows\System32\svchost.exe 2584 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 3808 | [Owner : EFM LFS Hyper UEFM |Parent : 864] - (.Microsoft Corporation - Host Process for Setting Synchronization.) - (10.0.17134.885) = C:\Windows\System32\SettingSyncHost.exe 4528 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6236 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 1728 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 2296 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 60 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 3824 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 4368 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 4848 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5392 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 1840 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5428 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6020 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5696 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6644 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 2132 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 1928 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5224 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5240 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5664 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6392 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 1496 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 2684 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6972 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6696 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5520 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 3880 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 3648 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6720 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 4144 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6164 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 1364 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 4040 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6204 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5000 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 1724 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5360 | [Owner : Système |Parent : 1168] - (.Microsoft Corporation - UsoClient.) - (10.0.17134.915) = C:\Windows\System32\UsoClient.exe 2080 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 4560 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6348 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5440 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 4780 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5488 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 3252 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5312 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5060 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 188 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 3596 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6040 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5328 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 2032 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6332 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 1844 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 1020 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6608 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 3104 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6172 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 3212 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 1256 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 2344 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6936 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5068 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5720 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 3692 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 3740 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 3136 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 664 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 2956 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5604 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5172 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5108 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5424 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 1056 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 3532 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6768 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5420 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 4124 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5572 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 3364 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 7056 | [Owner : Aucun |Parent : 6572] - (.Microsoft Corporation - Bloc-notes.) - (10.0.17134.1) = C:\Windows\SysWOW64\notepad.exe 1980 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6420 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 2988 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 1164 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 3952 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 4108 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 4676 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6068 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6280 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5648 | [Owner : EFM LFS Hyper UEFM |Parent : 1168] - (.Microsoft Corporation - Processus hôte pour Tâches Windows.) - (10.0.17134.619) = C:\Windows\System32\taskhostw.exe 2740 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 7084 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 4748 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6524 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 2424 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 812 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6216 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 464 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 3972 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 3088 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 1196 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 456 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5904 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6448 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 1940 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6240 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 3668 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6292 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 4228 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 4496 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5984 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 5292 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 6808 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 3204 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 3064 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe 4468 | [Owner : Système |Parent : 692] - (.Microsoft Corporation - Windows Problem Reporting.) - (10.0.17134.885) = C:\Windows\System32\wermgr.exe ¤¤¤¤¤¤¤¤¤¤ # Winlogon user ¤¤¤¤¤¤¤¤¤¤ # Winlogon machine ¤¤¤¤¤¤¤¤¤¤ # SafeBoot Safeboot Keys are O.K Alternate shell is OK ! � ¤¤¤¤¤¤¤¤¤¤ # IFEO ¤¤¤¤¤¤¤¤¤¤ # Mountpoints2 ¤¤¤¤¤¤¤¤¤¤ # Windows [HKLM\Software\Microsoft\Windows NT\CurrentVersion\IniFileMapping\system.ini\Boot]~[Shell] : SYS:Microsoft\Windows NT\CurrentVersion\Winlogon [HKLM\Software\Microsoft\Windows NT\CurrentVersion\IniFileMapping\win.ini]~[winlogon] : SYS:Microsoft\Windows NT\CurrentVersion\Winlogon [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\IniFileMapping\system.ini\Boot]~[Shell] : SYS:Microsoft\Windows NT\CurrentVersion\Winlogon ¤¤¤¤¤¤¤¤¤¤ # Security center ¤¤¤¤¤¤¤¤¤¤ # Services Repaired : [HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess]~[Start] : 1 -> 2 ¤¤¤¤¤¤¤¤¤¤ # Internet Explorer ¤¤¤¤¤¤¤¤¤¤ # reparsepoint ¤¤¤¤¤¤¤¤¤¤ # Offsets ¤¤¤¤¤¤¤¤¤¤ # Files | Folders | Registry Will be moved in quarantine at reboot : C:\$Recycle.bin\S-1-5-21-662962405-169162653-1899843541-1001\desktop.ini ¤¤¤¤¤¤¤¤¤¤ # ADS Prefetch -> cleaned ¤¤¤¤¤¤¤¤¤¤ | Hidden files End : 18:57:51 ¤¤¤¤¤¤¤¤¤¤( EOF )¤¤¤¤¤¤¤¤¤¤ - 264