--------------- QuickScript | g3n-h@ckm@n | V5_29.10.19.1 --------------- ----- XP | Vista | 7 | 8 | 8.1 | 10 - 32/64 bits ----- - Start 26/07/2023 08:30:10 Updated 29/10/2019 | 06:45 (GMT) by g3n-h@ckm@n Contact : http://www.sosvirus.net/ Time Zone : (UTC+01:00) Brussels, Copenhagen, Madrid, Paris Registry saved : C:\QuickDiag\Save\Registry [26.07.2023 @ 08_30_14] 1652 | [Owner : SYSTEM |Parent : 68(services.exe)] - (.Microsoft Corporation - Spooler SubSystem App.) - (6.3.9600.17415) = C:\Windows\System32\spoolsv.exe 2644 | [Owner : SYSTEM |Parent : 68(services.exe)] - (. - .) - (2.4.6.0) = C:\Program Files\Grand Explorer\Grand Explorer.exe 3316 | [Owner : 4rem été 2023 vexe s |Parent : 2644()] - (. - ClientNetApp.) - (2.4.6.0) = C:\Program Files\Grand Explorer\Grand Explorer App.exe 4316 | [Owner : LOCAL SERVICE |Parent : 1272(svchost.exe)] - (.Microsoft Corporation - Windows Driver Foundation - User-mode Driver Framework Host Process.) - (6.3.9600.17415) = C:\Windows\System32\WUDFHost.exe 4372 | [Owner : LOCAL SERVICE |Parent : 1272(svchost.exe)] - (.Microsoft Corporation - Device Association Framework Provider Host.) - (6.3.9600.17415) = C:\Windows\System32\dasHost.exe 6524 | [Owner : SYSTEM |Parent : 2644()] - (. - .) - (2.4.6.0) = C:\Program Files\Grand Explorer\Grand Explorer.exe 6856 | [Owner : 4rem été 2023 vexe s |Parent : 2412(explorer.exe)] - (.Microsoft Corporation - Notepad.) - (6.3.9600.17415) = C:\Windows\System32\notepad.exe 5232 | [Owner : 4rem été 2023 vexe s |Parent : 2280()] - (.Malwarebytes - AdwCleaner.) - (8.4.0.0) = C:\Users\4rem été 2023 vexe s\Downloads\adwcleaner.exe 4476 | [Owner : SYSTEM |Parent : 68(services.exe)] - (. - BlindnessPulseTool.) - (9.5.8.6) = C:\Program Files (x86)\AmonDoveY\AmonDoveY.EXE 2304 | [Owner : NETWORK SERVICE |Parent : 68(services.exe)] - (.Microsoft Corporation - Windows Media Player Network Sharing Service.) - (12.0.9600.17415) = C:\Program Files\Windows Media Player\wmpnetwk.exe 4660 | [Owner : 4rem été 2023 vexe s |Parent : 2412(explorer.exe)] - (. - .) - (0.0.0.0) = C:\Users\4rem été 2023 vexe s\Music\Ludi\Demos\1944 La campagne des Ardennes\demo.exe 5744 | [Owner : 4rem été 2023 vexe s |Parent : 4660()] - (.Microsoft Corporation - Notepad.) - (6.3.9600.17415) = C:\Windows\notepad.exe 7072 | [Owner : SYSTEM |Parent : 68(services.exe)] - (.IObit - Advanced SystemCare Service.) - (16.0.0.201) = C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe 5928 | [Owner : 4rem été 2023 vexe s |Parent : 1564()] - (.IObit - Advanced SystemCare.) - (16.5.0.237) = C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe 1144 | [Owner : SYSTEM |Parent : 1272(svchost.exe)] - (.Microsoft Corporation - Windows host process (Rundll32).) - (6.3.9600.17415) = C:\Windows\System32\rundll32.exe 6632 | [Owner : 4rem été 2023 vexe s |Parent : 1564()] - (.IObit - Performance Monitor.) - (16.2.0.112) = C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe 3748 | [Owner : 4rem été 2023 vexe s |Parent : 5928()] - (.IObit - Advanced SystemCare Tray.) - (16.0.0.977) = C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe 6444 | [Owner : 4rem été 2023 vexe s |Parent : 84()] - (.iTop Inc. - iTop VPN.) - (4.7.0.4299) = C:\Program Files (x86)\iTop VPN\iTopVPN.exe 3176 | [Owner : 4rem été 2023 vexe s |Parent : 7064()] - (.iTop Inc. - iTop Data Recovery.) - (3.6.0.112) = C:\Program Files (x86)\iTop Data Recovery\iTopDataRecovery.exe 5008 | [Owner : 4rem été 2023 vexe s |Parent : 6444(iTopVPN.exe)] - (.iTop Inc. - iTop VPN Mini.) - (4.0.0.4183) = C:\Program Files (x86)\iTop VPN\iTopVPNMini.exe 1328 | [Owner : SYSTEM |Parent : 68(services.exe)] - (.iTop Inc. - iTop Data Recovery Service.) - (3.2.0.146) = C:\Program Files (x86)\iTop Data Recovery\IDRService.exe 7652 | [Owner : 4rem été 2023 vexe s |Parent : 1172(svchost.exe)] - (.Microsoft Corporation - Host Process for Windows Tasks.) - (6.3.9600.17415) = C:\Windows\System32\taskhost.exe 6868 | [Owner : 4rem été 2023 vexe s |Parent : 2496()] - (.iTop Inc. - iTop Screen Recorder.) - (4.0.0.643) = C:\Program Files\iTop Screen Recorder\iScrRec.exe 7180 | [Owner : SYSTEM |Parent : 1172(svchost.exe)] - (.Microsoft Corporation - Windows SQM Consolidator.) - (6.3.9600.17415) = C:\Windows\System32\wsqmcons.exe 6668 | [Owner : 4rem été 2023 vexe s |Parent : 2412(explorer.exe)] - (.Disc Soft Ltd - DAEMON Tools Shell Extensions Helper.) - (8.3.1.811) = C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe 7220 | [Owner : SYSTEM |Parent : 68(services.exe)] - (.Disc Soft Ltd - Disc Soft Bus Service Pro.) - (8.3.1.811) = C:\Program Files\DAEMON Tools Pro\DiscSoftBusServicePro.exe 5000 | [Owner : 4rem été 2023 vexe s |Parent : 4576()] - (.Disc Soft Ltd - DAEMON Tools Pro.) - (8.3.1.811) = C:\Program Files\DAEMON Tools Pro\DTPro.exe 496 | [Owner : 4rem été 2023 vexe s |Parent : 5000(DTPro.exe)] - (.Disc Soft Ltd - DAEMON Tools Pro Agent.) - (8.3.1.811) = C:\Program Files\DAEMON Tools Pro\DTAgent.exe 1320 | [Owner : SYSTEM |Parent : 1172(svchost.exe)] - (.Microsoft Corporation - Windows Update.) - (7.9.9600.17415) = C:\Windows\System32\wuauclt.exe 7384 | [Owner : SYSTEM |Parent : 1172(svchost.exe)] - (.Microsoft Corporation - Task Scheduler Engine.) - (6.3.9600.17415) = C:\Windows\System32\taskeng.exe 304 | [Owner : 4rem été 2023 vexe s |Parent : 1172(svchost.exe)] - (.Microsoft Corporation - Microsoft Feeds Synchronization.) - (11.0.9600.17416) = C:\Windows\System32\msfeedssync.exe 4528 | [Owner : LOCAL SERVICE |Parent : 1172(svchost.exe)] - (.Microsoft Corporation - Host Process for Windows Tasks.) - (6.3.9600.17415) = C:\Windows\System32\taskhost.exe 7932 | [Owner : SYSTEM |Parent : 68(services.exe)] - (.Microsoft Corporation - Windows Modules Installer.) - (6.3.9600.17415) = C:\Windows\servicing\TrustedInstaller.exe 2020 | [Owner : SYSTEM |Parent : 512(svchost.exe)] - (.Microsoft Corporation - Windows Modules Installer Worker.) - (6.3.9600.17031) = C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17246_none_fa4ae8e99b1f603c\TiWorker.exe 7264 | [Owner : 4rem été 2023 vexe s |Parent : 1172(svchost.exe)] - (.Microsoft Corporation - Task Scheduler Engine.) - (6.3.9600.17415) = C:\Windows\System32\taskeng.exe 8040 | [Owner : 4rem été 2023 vexe s |Parent : 7264(taskeng.exe)] - (.Microsoft Corporation - Microsoft Edge Update.) - (1.3.171.39) = C:\Users\4rem été 2023 vexe s\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe 8292 | [Owner : SYSTEM |Parent : 68(services.exe)] - (.Corel Corporation - ReviverSoft Smart Monitor Service.) - (2.12.1.8) = C:\Program Files\ReviverSoft\Smart Monitor\ReviverSoft Smart Monitor Service.exe 7236 | [Owner : 4rem été 2023 vexe s |Parent : 8292(ReviverSoft Smart Monitor Service.exe)] - (.Corel Corporation - Smart Monitor.) - (2.12.1.8) = C:\Program Files\ReviverSoft\Smart Monitor\ReviverSoftSmartMonitor.exe 9612 | [Owner : 4rem été 2023 vexe s |Parent : 8304()] - (.Corel Corporation - Driver Reviver.) - (5.42.2.10) = C:\Program Files\ReviverSoft\Driver Reviver\DriverReviver.exe 6432 | [Owner : 4rem été 2023 vexe s |Parent : 2412(explorer.exe)] - (.Microsoft Corporation - Internet Explorer.) - (11.0.9600.17416) = C:\Program Files\Internet Explorer\iexplore.exe 9076 | [Owner : SYSTEM |Parent : 68(services.exe)] - (.Microsoft Corporation - Microsoft® Volume Shadow Copy Service.) - (6.3.9600.17415) = C:\Windows\System32\VSSVC.exe 9428 | [Owner : 4rem été 2023 vexe s |Parent : 1172(svchost.exe)] - (.Microsoft Corporation - Device Setup Manager User Task Handler.) - (6.3.9600.17415) = C:\Windows\System32\DsmUserTask.exe 8236 | [Owner : LOCAL SERVICE |Parent : 1272(svchost.exe)] - (.Microsoft Corporation - Windows Driver Foundation - User-mode Driver Framework Host Process.) - (6.3.9600.17415) = C:\Windows\System32\WUDFHost.exe 8980 | [Owner : NETWORK SERVICE |Parent : 68(services.exe)] - (.Microsoft Corporation - Microsoft Software Protection Platform Service.) - (6.3.9600.16497) = C:\Windows\System32\sppsvc.exe Process explorer.exe : Killed Successfully -------------- | Listing : A:/ -------------- | Listing : B:/ -------------- | Listing : C:/ -------------- | Listing : D:/ -------------- | Listing : E:/ -------------- | Listing : F:/ -------------- | Listing : G:/ -------------- | Listing : U:/ -------------- | Listing : V:/ -------------- | Listing : W:/ -------------- | Listing : X:/ -------------- | Listing : Y:/ -------------- | Listing : Z:/ -------------- | Recurse Listing : A:/ -------------- | Recurse Listing : A:/ -------------- | Recurse Listing : B:/ -------------- | Recurse Listing : C:/ -------------- | Recurse Listing : D:/ -------------- | Recurse Listing : E:/ -------------- | Recurse Listing : F:/ -------------- | Recurse Listing : W:/ -------------- | Recurse Listing : X:/ -------------- | Recurse Listing : Y:/ -------------- | Recurse Listing : Z:/ -------------- | FileSearch : Galaxy [MD5.60D27942CB506D40B0332ACE9855F3F1] - [20/07/2023 08:08:24] - (. - .) - [3.14 Ko] - C:\QuickDiag\Quarantine\R\.QuickScript\Clean_DNS galaxy book 15 10 2019.txt -> (0.0.0.0) [MD5.77C98B93D89F36B439C6A33769B40E1F] - [20/07/2023 08:10:02] - (. - .) - [53.14 Ko] - C:\QuickDiag\Quarantine\R\.QuickScript\Look_my_hardware usb win 7 starter multiboot galaxy book 9 10 2019.txt -> (0.0.0.0) [MD5.197DDAF0C490C047AB1720E9E11ACA8A] - [20/07/2023 08:10:17] - (. - .) - [2.8 Ko] - C:\QuickDiag\Quarantine\R\.QuickScript\TOPIC PRELIMINAIRE ENTRAIDE GALAXY BOOK DISQUES EXTERNES P2DT 4REM 15_10_2019.rtf -> (0.0.0.0) [MD5.0CF6D282A0C14658D85C67BFBB6F5EC5] - [20/07/2023 08:10:17] - (. - .) - [8.74 Ko] - C:\QuickDiag\Quarantine\R\.QuickScript\topics 4 pc et disques externes part 11 - total GALAXY BOOK supports externes, CADEAU REC WIDEN 4 FINALIS.txt -> (0.0.0.0) [MD5.FD2A4302DC13BFB6E66B00FBB4687209] - [20/07/2023 08:10:17] - (. - .) - [3.53 Ko] - C:\QuickDiag\Quarantine\R\.QuickScript\topics 4 pc et disques externes part 8 - GALAXY BOOK, CADEAU REC WIDEN 4 FINALIS.txt -> (0.0.0.0) -------------- | FileSearch : Epson [MD5.48697DB77E79836D09E81BCEA9E7153B] - [20/07/2023 07:51:35] - (. - .) - [0.3 Ko] - C:\QuickDiag\Quarantine\C\Program Files (x86)\CyberLink.QuickScript\LabelPrint\Papers\Epson Direct CD-DVD Printing.lpt -> (0.0.0.0) [MD5.48697DB77E79836D09E81BCEA9E7153B] - [20/07/2023 09:01:51] - (. - .) - [0.3 Ko] - C:\Users\2024antiasarl2023vex\Documents\sauvetage quickdiag en cas de restau usine windows\QuickDiag\Quarantine\C\Program Files (x86)\CyberLink.QuickScript\LabelPrint\Papers\Epson Direct CD-DVD Printing.lpt -> (0.0.0.0) -------------- | FileSearch : Android