start:: closeprocesses: createrestorepoint: HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - Pas de fichier Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - Pas de fichier StartRegedit: Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] "ConsentPromptBehaviorAdmin"=dword:00000005 EndRegedit: FirewallRules: [{9DC6A0A8-B975-47D3-8EB0-AF207BD0DC51}] => (Allow) C:\Windows\system32\ezSharedSvcHost.exe => Pas de fichier FirewallRules: [{01B3E10F-2380-4721-B63F-1A0A4A8C5976}] => (Allow) E:\setup\hpznui40.exe => Pas de fichier FirewallRules: [{2C8CC221-C0D8-45B2-AFD1-2B2180C61B46}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe => Pas de fichier FirewallRules: [TCP Query User{AF675E46-FE3C-4F77-B31F-ACC0E0B5C6A1}C:\program files\snap inc\lens studio\apps\lens-studio-sync\lens-studio-sync.exe] => (Allow) C:\program files\snap inc\lens studio\apps\lens-studio-sync\lens-studio-sync.exe => Pas de fichier FirewallRules: [UDP Query User{C5955267-7EBD-44C7-B8E5-709CC29C428B}C:\program files\snap inc\lens studio\apps\lens-studio-sync\lens-studio-sync.exe] => (Allow) C:\program files\snap inc\lens studio\apps\lens-studio-sync\lens-studio-sync.exe => Pas de fichier FirewallRules: [TCP Query User{6FDC6F32-D4D5-4F61-A80D-A8D4D637307D}C:\program files\snap inc\lens studio\apps\lens-studio-sync\lens-studio-sync.exe] => (Allow) C:\program files\snap inc\lens studio\apps\lens-studio-sync\lens-studio-sync.exe => Pas de fichier FirewallRules: [UDP Query User{603BC2B0-B089-4884-9D57-1C995CC0EA64}C:\program files\snap inc\lens studio\apps\lens-studio-sync\lens-studio-sync.exe] => (Allow) C:\program files\snap inc\lens studio\apps\lens-studio-sync\lens-studio-sync.exe => Pas de fichier S3 Andbus; system32\DRIVERS\lgandbus64.sys [X] S3 AndDiag; system32\DRIVERS\lganddiag64.sys [X] S3 AndGps; system32\DRIVERS\lgandgps64.sys [X] S3 ANDModem; system32\DRIVERS\lgandmodem64.sys [X] S3 LgBttPort; system32\DRIVERS\lgbtpt64.sys [X] S3 lgbusenum; system32\DRIVERS\lgbtbs64.sys [X] S3 LGVMODEM; system32\DRIVERS\lgvmdm64.sys [X] HKU\S-1-5-21-2593764227-2234820216-1390050582-1000\...\Policies\system: [DisableLockWorkstation] 0 HKU\S-1-5-21-2593764227-2234820216-1390050582-1000\...\Policies\system: [DisableChangePassword] 0 HKU\S-1-5-21-2593764227-2234820216-1390050582-1000\...\Policies\Explorer: [TaskbarNoNotification] 1 HKU\S-1-5-21-2593764227-2234820216-1390050582-1000\...\Policies\Explorer: [HideSCAHealth] 1 HKU\S-1-5-21-2593764227-2234820216-1390050582-1000\...\MountPoints2: {02486023-e5b3-11e8-9471-2c27d7a727bc} - G:\HiSuiteDownLoader.exe HKU\S-1-5-21-2593764227-2234820216-1390050582-1000\...\MountPoints2: {153571dc-8973-11eb-bb64-2c27d7a727bc} - G:\HiSuiteDownLoader.exe HKU\S-1-5-21-2593764227-2234820216-1390050582-1000\...\MountPoints2: {2c7d30dd-7995-11e9-8c54-806e6f6e6963} - G:\HiSuiteDownLoader.exe HKU\S-1-5-21-2593764227-2234820216-1390050582-1000\...\MountPoints2: {71ccae29-0c8c-11e6-baec-2c27d7a727bc} - G:\.\Driver\DriverInstaller.exe -eject HKU\S-1-5-18\...\Policies\Explorer: [TaskbarNoNotification] 1 HKU\S-1-5-18\...\Policies\Explorer: [HideSCAHealth] 1 cmd: sfc /scannow emptytemp: end::