Posté le 17 janvier 2020
Télécharger | Reposter | Largeur fixe

start::
CreateRestorePoint:
CloseProcesses:
Hosts:
RemoveProxy:
C:\Program Files\TrueKey
Lsa: [Notification Packages] scecli C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter
Task: {71CC5099-CE83-4FDB-85E8-52A18E14A639} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION
Task: {F2714ED6-FD69-4C1E-9C32-F10149E721D3} - System32\Tasks\MSFT_TaskSettings3\CaesarsSlots => Powershell.exe -NoProfile -WindowStyle Hidden -command cmd.exe /c if exist C:\Users\jonat\AppData\Local\Packages\Playtika.CaesarsSlotsFreeCasino_7vjeg68vnncd2 start explorer.exe shell:appsFolder\Playtika.CaesarsSlotsFreeCasino_7vjeg68vnncd2!App
HKU\S-1-5-21-2545923648-1217210872-3307591962-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.trovi.com/?gd=&ctid=CT3333673&octid=EB_ORIGINAL_CTID&ISID=7496AE77-21FC-448F-85A8-32815C5D9AF6&SearchSource=55&CUI=&UM=8&UP=SPDE9269C0-E9E9-4103-9397-4F497E4FC3E1&D=061316&SSPV=
SearchScopes: HKU\S-1-5-21-2545923648-1217210872-3307591962-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE00
SearchScopes: HKU\S-1-5-21-2545923648-1217210872-3307591962-1001 -> {015DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3333673&octid=EB_ORIGINAL_CTID&ISID=7496AE77-21FC-448F-85A8-32815C5D9AF6&SearchSource=58&CUI=&UM=8&UP=SPDE9269C0-E9E9-4103-9397-4F497E4FC3E1&D=061316&q={searchTerms}&SSPV=
BHO-x32: True Key Helper -> {0F4B8786-5502-4803-8EBC-F652A1153BB6} -> C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2016-08-09] (Intel(R) Security True Key -> Intel Security)
Toolbar: HKLM-x32 - True Key - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2016-08-09] (Intel(R) Security True Key -> Intel Security)
FF Notifications: Mozilla\Firefox\Profiles\nhnctbcu.default-1538119008727 -> hxxps://decathlonuk.api.useinsider.com
FF Extension: (Enhancer for YouTube™) - C:\Users\jonat\AppData\Roaming\Mozilla\Firefox\Profiles\nhnctbcu.default-1538119008727\Extensions\enhancerforyoutube@maximerf.addons.mozilla.org.xpi [2019-12-13]
FF Extension: (FLVCD Helper) - C:\Users\jonat\AppData\Roaming\Mozilla\Firefox\Profiles\nhnctbcu.default-1538119008727\Extensions\{c7a5c4a2-6b20-43dd-89a3-630ac4acaafa}.xpi [2019-11-23]
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\bd_js_config.js [2020-01-11] <==== ATTENTION (Pointe vers un fichier *.cfg)
FF ExtraCheck: C:\Program Files\mozilla firefox\bd_config.cfg [2020-01-11] <==== ATTENTION
CHR HKLM-x32\...\Chrome\Extension: [gannpgaobkkhmpomoijebaigcapoeebl]
CHR HKLM-x32\...\Chrome\Extension: [khndhdhbebhaddchcgnalcjlaekbbeof]
2019-01-11 03:10 - 2019-01-11 08:28 - 000005632 _____ () C:\Users\jonat\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\TrueKey\McTkSchedulerService.exe
HKLM\Software\...\Authentication\Credential Providers: [{B7724AE5-1135-4889-8A5F-CA98BE6CA1ED}] -> C:\Program Files\TrueKey\McAfee.TrueKey.CredentialProvider.dll [2016-08-08] (McAfee, Inc. -> McAfee, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier
ContextMenuHandlers3: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier
2016-08-14 14:32 - 2014-07-08 06:07 - 001148928 _____ (Robert Simpson, et al.) [Fichier non signé] C:\Program Files\TrueKey\SQLite.Interop.dll
AlternateDataStreams: C:\Users\jonat\Downloads\DriverSupport.exe:BDU [0]
AlternateDataStreams: C:\Users\jonat\Downloads\DriverToolkitInstaller.exe:BDU [0]
AlternateDataStreams: C:\Users\jonat\Downloads\GrammarlySetup.exe:BDU [0]
AlternateDataStreams: C:\Users\jonat\Downloads\InstallMyDriveConnect.exe:BDU [0]
AlternateDataStreams: C:\Users\jonat\Downloads\iTunes6464Setup (1).exe:BDU [0]
AlternateDataStreams: C:\Users\jonat\Downloads\reset_password(1).exe:BDU [0]
EmptyTemp:
cmd: ipconfig /flushdns
end::





x
Éditer le texte

Merci d'entrer le mot de passe que vous avez indiqué à la création du texte.

x
Télécharger le texte

Merci de choisir le format du fichier à télécharger.