start::
closeprocesses:
createrestorepoint:
HKU\S-1-5-21-3318818346-181379214-1313390173-1001\...\Run: [Windows Updates Service] => C:\Users\Ronan\AppData\Roaming\Windows Updates Files\Windows Updates Service.vbe [1000 2021-02-11] () [Fichier non signé] <==== ATTENTION
C:\Users\Ronan\AppData\Roaming\Windows Updates Files
HKU\S-1-5-21-3318818346-181379214-1313390173-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32721976 2021-02-16] (Piriform Software Ltd -> Piriform Software Ltd)
CHR HomePage: Default -> hxxp://www.delta-search.com/?affID=119816&babsrc=HP_ss&mntrId=AC06E8393546CAC7
S3 HnGEpicService; D:\Games\Epic Games\Jeux\HeroesGeneralsWWII\hngservice.exe [X]
S3 GVCIDrv; \??\C:\Users\Ronan\Desktop\FLASH_R56XTGO.F61\GVCIDrv64.sys [X]
S3 AMDKMDAP; \SystemRoot\System32\DriverStore\FileRepository\c0355311.inf_amd64_815d26f2163260da\B355199\atikmpag.sys [X]
AlternateDataStreams: C:\Users\Ronan:Heroes & Generals [38]
cmd: netsh advfirewall reset
emptytemp:
end::