Posté le 26 janvier 2020
Télécharger | Reposter | Largeur fixe

start::
CreateRestorePoint:
CloseProcesses:
Hosts:
RemoveProxy:
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier
ContextMenuHandlers1: [_Movavivc11] -> {1C604495-4D32-476e-8D7E-FBF50F6C80BF} => -> Pas de fichier
ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> Pas de fichier
WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]
ShortcutWithArgument: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> no-sandbox
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
HKU\S-1-5-21-764302420-506695439-3023253843-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {4C9311E3-C1BC-4BFA-9210-945EF02960E4} - \Microsoft\Windows\Setup\EOONotify -> Pas de fichier <==== ATTENTION
Task: {C5C9B483-E06E-4393-9D7D-865493462500} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 135.19.0.18 70.80.0.66
Tcpip\..\Interfaces\{78ad21ea-629e-4d7d-b3b6-b3a940a468c1}: [DhcpNameServer] 192.168.0.1 96.22.246.145 24.200.228.113
Tcpip\..\Interfaces\{c4fbcf93-51f6-4c3e-b615-3569da123698}: [DhcpNameServer] 192.168.0.1 96.22.246.145 24.200.228.113
Tcpip\..\Interfaces\{e7e4f4a2-4c09-4f14-931e-3535baacd95f}: [DhcpNameServer] 192.168.0.1 135.19.0.18 70.80.0.66
FF Plugin HKU\S-1-5-21-764302420-506695439-3023253843-1000: @tools.coowon.com/Coowon Update;version=3 -> C:\Users\User\AppData\Local\Coowon\Update\1.3.33.0\npCoowonUpdate3.dll [2015-08-15] (Google Inc (TEST) -> Coowon.) [Fichier non signé]
FF Plugin HKU\S-1-5-21-764302420-506695439-3023253843-1000: @tools.coowon.com/Coowon Update;version=9 -> C:\Users\User\AppData\Local\Coowon\Update\1.3.33.0\npCoowonUpdate3.dll [2015-08-15] (Google Inc (TEST) -> Coowon.) [Fichier non signé]
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-05-12] (AVAST Software s.r.o. -> AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-05-12] (AVAST Software s.r.o. -> AVAST Software)
U3 idsvc; pas de ImagePath
2020-01-24 18:55 - 2020-01-24 18:55 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2020-01-24 18:50 - 2020-01-24 18:50 - 010823512 _____ (AVAST Software) C:\Users\User\Downloads\avastclear (1).exe
2020-01-24 18:47 - 2020-01-24 18:47 - 010823512 _____ (AVAST Software) C:\Users\User\Downloads\avastclear.exe
2020-01-03 20:59 - 2020-01-24 18:55 - 000000000 ____D C:\Users\User\AppData\Roaming\AVAST Software
2020-01-03 20:55 - 2020-01-03 20:55 - 000230080 _____ (AVAST Software) C:\Users\User\Downloads\avast_free_antivirus_setup_online.exe
2020-01-03 20:49 - 2020-01-03 20:49 - 000004010 _____ C:\WINDOWS\system32\Tasks\Avast TUNEUP Update
2020-01-25 16:35 - 2019-03-29 22:11 - 000000000 ____D C:\ProgramData\IObit
2020-01-24 18:59 - 2014-11-07 02:18 - 000000000 ____D C:\ProgramData\AVAST Software
2020-01-24 18:45 - 2018-02-06 09:12 - 000000000 ____D C:\Program Files (x86)\AVAST Software
2020-01-24 18:37 - 2018-05-12 19:09 - 000000000 ____D C:\Users\User\AppData\Local\AVAST Software
2015-07-18 22:55 - 2015-07-18 22:56 - 000000000 _____ () C:\Users\User\AppData\Local\{C08FC681-034F-428E-A8DA-C002B804FB3C}
EmptyTemp:
cmd: ipconfig /flushdns
end::





x
Éditer le texte

Merci d'entrer le mot de passe que vous avez indiqué à la création du texte.

x
Télécharger le texte

Merci de choisir le format du fichier à télécharger.