Posté le 27 mars 2020
Télécharger | Reposter | Largeur fixe

start::
CreateRestorePoint:
CloseProcesses:
Hosts:
RemoveProxy:
AlternateDataStreams: C:\Windows\SysWOW64\MSIHANDLE:3697 [0]
AlternateDataStreams: C:\Windows\SysWOW64\MSIHANDLE:3745 [0]
AlternateDataStreams: C:\Windows\SysWOW64\MSIHANDLE:3843 [0]
AlternateDataStreams: C:\Users\Maestro\Application Data:6699d3ee8dd9cf775caae782c8f44f03 [394]
AlternateDataStreams: C:\Users\Maestro\AppData\Roaming:6699d3ee8dd9cf775caae782c8f44f03 [394]
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe Pas de fichier
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe Pas de fichier
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-2858336318-4213939137-219214929-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://dell13.msn.com/?pc=DCJB
HKU\S-1-5-21-2858336318-4213939137-219214929-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell13.msn.com/?pc=DCJB
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2858336318-4213939137-219214929-1000 -> DefaultScope {2DDD573E-2E70-423B-BD79-88B3848DBFA1} URL =
FF Extension: (Avira Password Manager) - C:\Users\Maestro\AppData\Roaming\Mozilla\Firefox\Profiles\8xlonbbg.default-1540822646421\Extensions\passwordmanager@avira.com [2020-03-26]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK => non trouvé(e)
CHR HKLM\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll]
CHR HKLM\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll]
CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]
CHR HKLM-x32\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn]
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]
2020-03-26 12:54 - 2020-03-26 12:54 - 000000000 ____D C:\Windows\system32\Tasks\Avira
2020-03-26 12:50 - 2020-03-26 12:50 - 000000000 ____D C:\Users\Maestro\AppData\Local\AviraSpeedup
2020-03-26 12:50 - 2020-03-26 12:50 - 000000000 ____D C:\Users\Maestro\AppData\Local\Avira
2020-03-26 12:08 - 2020-03-26 20:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2020-03-26 12:07 - 2020-03-26 20:59 - 000000000 ____D C:\ProgramData\Avira
2020-03-26 12:07 - 2020-03-26 20:58 - 000000000 ____D C:\Program Files (x86)\Avira
2020-03-26 12:05 - 2020-03-26 12:06 - 006353520 _____ (Avira Operations GmbH & Co. KG) C:\Users\Maestro\Downloads\avira_fr_froe3_5e7c8c70bf137__pavwws.exe
cmd: ipconfig /flushdns
emptytemp:
end::





x
Éditer le texte

Merci d'entrer le mot de passe que vous avez indiqué à la création du texte.

x
Télécharger le texte

Merci de choisir le format du fichier à télécharger.