Posté le 28 janvier 2021
Télécharger | Reposter | Largeur fixe

start::
CreateRestorePoint:
CloseProcesses:
RemoveProxy:
S2 McAfee WebAdvisor; "C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe" [X]
S2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.3.0.5\WsAppService.exe [X]
S3 WsDrvInst; "C:\Program Files (x86)\Wondershare\Dr.Fone pour Android\DriverInstall.exe" [X]
CHR DefaultSearchURL: Profile 3 -> hxxps://search.yahoo.com/search?fr=mcafee_uninternational&type=C210BE1377D20170606&p={searchTerms}
CHR DefaultSearchKeyword: Profile 3 -> mcafee
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]
S0 uagp35; C:\WINDOWS\System32\drivers\uagp35.sys [0 2013-08-22]
2021-01-24 15:34 - 2013-08-28 11:25 - 000427760 _____ C:\WINDOWS\system32\perfh013.dat
2021-01-24 15:34 - 2013-08-28 11:25 - 000003894 _____ C:\WINDOWS\system32\perfc013.dat
2021-01-24 15:34 - 2013-08-28 11:16 - 000421534 _____ C:\WINDOWS\system32\perfh010.dat
2021-01-24 15:34 - 2013-08-28 11:16 - 000056872 _____ C:\WINDOWS\system32\perfc010.dat
2021-01-24 15:34 - 2013-08-28 11:08 - 000805600 _____ C:\WINDOWS\system32\perfh00C.dat
2021-01-24 15:34 - 2013-08-28 11:08 - 000156456 _____ C:\WINDOWS\system32\perfc00C.dat
2021-01-24 15:34 - 2013-08-28 10:59 - 000382024 _____ C:\WINDOWS\system32\perfh007.dat
2021-01-24 15:34 - 2013-08-28 10:59 - 000058388 _____ C:\WINDOWS\system32\perfc007.dat
FCheck: C:\WINDOWS\SysWOW64\BROSNMP.DLL [2014-09-29]
FCheck: C:\WINDOWS\SysWOW64\cca.dll [2014-10-29]
FCheck: C:\WINDOWS\SysWOW64\efscore.dll [2014-10-29]
FCheck: C:\WINDOWS\SysWOW64\msra.exe [2014-10-29]
FCheck: C:\WINDOWS\SysWOW64\NlsData004e.dll [2014-10-29]
FCheck: C:\WINDOWS\SysWOW64\TpmInit.exe [2014-10-29]
FCheck: C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll [2014-10-29]
FCheck: C:\WINDOWS\system32\bitsperf.dll [2014-10-29]
FCheck: C:\WINDOWS\system32\DaOtpCredentialProvider.dll [2014-10-29]
FCheck: C:\WINDOWS\system32\drprov.dll [2014-10-29]
FCheck: C:\WINDOWS\system32\efswrt.dll [2014-10-29]
FCheck: C:\WINDOWS\system32\MaxxVoiceAPO2064.dll [2014-01-31]
FCheck: C:\WINDOWS\system32\NcaApi.dll [2014-10-29]
FCheck: C:\WINDOWS\system32\NlsLexicons0003.dll [2013-08-22]
FCheck: C:\WINDOWS\system32\NlsLexicons0047.dll [2013-08-22]
FCheck: C:\WINDOWS\system32\ntlanman.dll [2014-10-29]
FCheck: C:\WINDOWS\system32\rshx32.dll [2014-10-29]
FCheck: C:\WINDOWS\system32\sdiagschd.dll [2014-10-29]
FCheck: C:\WINDOWS\system32\setupugc.exe [2014-10-29]
FCheck: C:\WINDOWS\system32\SystemSettingsDatabase.dll [2014-11-14]
FCheck: C:\WINDOWS\system32\usbui.dll [2014-10-29]
FCheck: C:\WINDOWS\system32\winipsec.dll [2014-10-29]
FCheck: C:\WINDOWS\system32\xactengine3_5.dll [2009-09-04]
FCheck: C:\WINDOWS\system32\Drivers\sisraid4.sys [2013-08-22]
FCheck: C:\WINDOWS\system32\Drivers\UAGP35.SYS [2013-08-22]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\BackupRemind.lnk [2016-10-03]
ShortcutTarget: BackupRemind.lnk -> C:\Program Files (x86)\Wondershare\Dr.Fone pour Android\BackupRemind.exe (Pas de fichier)
FF Plugin HKU\S-1-5-21-146080111-690057411-2808020090-1001: vasco.com/VascoCardReaderPlugin -> C:\Users\demetrio\AppData\Roaming\VASCO\VascoCardReaderPlugin\3.2.3.4\npVascoCardReaderPlugin.dll [2014-10-27]
FF Plugin HKU\S-1-5-21-146080111-690057411-2808020090-1001: vasco.com/VascoCardReaderPlugin64 -> C:\Users\demetrio\AppData\Roaming\VASCO\VascoCardReaderPlugin\3.2.3.4\npVascoCardReaderPlugin64.dll [2014-10-27]
CustomCLSID: HKU\S-1-5-21-146080111-690057411-2808020090-1001_Classes\CLSID\{9E436272-69C3-5FBA-9C1D-15694337F4AC}\InprocServer32 -> C:\Users\demetrio\AppData\Roaming\VASCO\VascoCardReaderPlugin\3.2.3.4\npVascoCardReaderPlugin64.dll
CustomCLSID: HKU\S-1-5-21-146080111-690057411-2808020090-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\demetrio\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll => Pas de fichier
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-146080111-690057411-2808020090-1001 -> DefaultScope {8CF731FE-3F81-4007-82CE-80094162E64E} URL =
SearchScopes: HKU\S-1-5-21-146080111-690057411-2808020090-1001 -> {8CF731FE-3F81-4007-82CE-80094162E64E} URL =
DPF: HKLM-x32 {166B1BCA-3F9C-11CF-8075-444553540000} hxxps://fpdownload.macromedia.com/pub/shockwave/cabs/director/sw.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL Pas de fichier
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll Pas de fichier
EmptyTemp:
cmd: ipconfig /flushdns
cmd: netsh winsock reset
cmd: sfc /scannow
end::

x
Éditer le texte

Merci d'entrer le mot de passe que vous avez indiqué à la création du texte.

x
Télécharger le texte

Merci de choisir le format du fichier à télécharger.