start::
CreateRestorePoint:
CloseProcesses:
Hosts:
RemoveProxy:
EmptyTemp:
HKLM\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe
IFEO\Acrobat.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\acrodist.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\adobe extension manager cs6.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\dropbox.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\eprojmanager.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\express.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\extendscript toolkit.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\e_yubrie.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\formscentralforacrobat.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\mep.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\onedrive.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\pdapp.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\photoshop.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
IFEO\switchboard.exe: [Debugger] "C:\Program Files (x86)\AVG\AVG PC TuneUp\TUAutoReactivator64.exe"
ShortcutTarget: e-Backup 1.42 Scheduler.lnk -> C:\Users\ANNE\AppData\Roaming\Microsoft\Installer\{CA217BDD-D941-454C-AA7E-C3ADA1648FE3}\_3e121a49.exe
SearchScopes: HKU\S-1-5-21-1092948737-3414130772-1456779041-1000 -> DefaultScope {3B301B31-96DC-472A-A6B7-0D355756A293} URL = hxxps://www.google.com/search?q=
SearchScopes: HKU\S-1-5-21-1092948737-3414130772-1456779041-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1092948737-3414130772-1456779041-1000 -> {3B301B31-96DC-472A-A6B7-0D355756A293} URL = hxxps://www.google.com/search?q=
CHR StartupUrls: Default -> "hxxp://portail.free.fr/","hxxp://www.hohosearch.com/?mode=
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [6598496 2018-10-10] (AVG Technologies CZ, s.r.o.)
R2 UxTuneUp; C:\Windows\System32\uxtuneup.dll [45920 2018-10-10] (AVG Technologies CZ, s.r.o.)
R2 UxTuneUp; C:\Windows\SysWOW64\uxtuneup.dll [38752 2018-10-10] (AVG Technologies CZ, s.r.o.)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [32304 2017-11-15] (AVG Netherlands B.V.)
S3 gdrv; \??\C:\Windows\gdrv.sys [X]
2018-12-15 09:44 - 2018-12-15 09:44 - 000000000 ____D C:\Users\Default\AppData\Local\AVG
2018-12-15 09:44 - 2018-12-15 09:44 - 000000000 ____D C:\Users\Default User\AppData\Local\AVG
2018-12-15 09:44 - 2018-10-10 08:53 - 000045920 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\uxtuneup.dll
2018-12-15 09:44 - 2018-10-10 08:53 - 000038752 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\SysWOW64\uxtuneup.dll
2018-12-13 19:03 - 2018-10-10 08:57 - 000042848 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\TURegOpt.exe
2018-12-13 19:03 - 2018-10-10 08:53 - 000034144 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\authuitu.dll
2018-12-13 19:03 - 2018-10-10 08:53 - 000032096 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\SysWOW64\authuitu.dll
2018-12-13 19:02 - 2018-12-18 12:59 - 000003600 _____ C:\Windows\System32\Tasks\AVG EUpdate Task
2018-12-13 19:02 - 2018-12-13 19:03 - 000000000 ____D C:\Program Files (x86)\AVG
2018-12-13 19:01 - 2018-12-13 19:04 - 000000000 ____D C:\ProgramData\Avg
2018-12-13 19:01 - 2018-12-13 19:03 - 000000000 ____D C:\Users\ANNE\AppData\Local\AvgSetupLog
2018-12-13 19:01 - 2018-12-13 19:03 - 000000000 ____D C:\Users\ANNE\AppData\Local\Avg
2018-12-11 11:39 - 2018-12-11 11:39 - 000000012 ___SH C:\Windows\357EE291616B
2018-12-10 23:44 - 2018-12-10 23:44 - 000000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2018-12-11 18:26 - 2018-12-11 18:26 - 330931270 _____ () C:\Users\ANNE\AppData\Local\ACCCx4_7_0_400.zip.aamdownload
2018-12-11 18:26 - 2018-12-11 18:26 - 000003587 _____ () C:\Users\ANNE\AppData\Local\ACCCx4_7_0_400.zip.aamdownload.aamd
ContextMenuHandlers1: [AVG Shredder Shell Extension] -> {4858E7D9-8E12-45a3-B6A3-1CD128C9D403} => C:\Program Files (x86)\AVG\AVG PC TuneUp\SDShelEx-x64.dll
ContextMenuHandlers4: [AVG Disk Space Explorer Shell Extension] -> {4838CD50-7E5D-4811-9B17-C47A85539F28} => C:\Program Files (x86)\AVG\AVG PC TuneUp\DseShExt-x64.dll
ContextMenuHandlers4: [AVG Shredder Shell Extension] -> {4858E7D9-8E12-45a3-B6A3-1CD128C9D403} => C:\Program Files (x86)\AVG\AVG PC TuneUp\SDShelEx-x64.dll
2018-12-13 19:02 - 2016-06-23 20:07 - 048920064 _____ () C:\Program Files (x86)\AVG\UiDll\2623\libcef.dll
Task: {8AF9891C-F11B-4D95-A070-9EF1FAB99FB4} - System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance => C:\Program Files (x86)\AVG\AVG PC TuneUp\tuscanx.exe
Task: {D67A889E-77FE-4F8C-A376-983FCD97857E} - System32\Tasks\AVG EUpdate Task => avgsetupx.exe
cmd: ipconfig /flushdns
end::