Posté le 4 février
Télécharger | Reposter | Largeur fixe

start::
CreateRestorePoint:
CloseProcesses:
Hosts:
C:\Program Files\WindowsApps\6F71D7A7.HotspotShieldFreeVPN_2.9.0.0_x64__nsbqstbb9qxb6
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier
BHO: Pas de nom -> {1E314857-7FE3-48D7-BC34-DB2FACB15CC6}' -> Pas de fichier
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2019-08-24] (McAfee, LLC -> McAfee, Inc.)
BHO-x32: Pas de nom -> {1E314857-7FE3-48D7-BC34-DB2FACB15CC6}' -> Pas de fichier
HKLM\...\StartupApproved\StartupFolder: => "Avast SecureLine.lnk"
HKLM\...\StartupApproved\Run: => "SecurityHealth"
HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0"
HKLM\...\StartupApproved\Run32: => "HP Software Update"
HKLM\...\StartupApproved\Run32: => "WDDiscovery"
HKU\S-1-5-21-3344998011-113253623-2746853109-1001\...\StartupApproved\StartupFolder: => "Alertes de surveillance de l'encre - HP Photosmart 5520 series (réseau).lnk"
HKU\S-1-5-21-3344998011-113253623-2746853109-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-3344998011-113253623-2746853109-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-3344998011-113253623-2746853109-1001\...\StartupApproved\Run: => "uTorrent"
HKU\S-1-5-21-3344998011-113253623-2746853109-1001\...\StartupApproved\Run: => "Adobe Reader Synchronizer"
HKU\S-1-5-21-3344998011-113253623-2746853109-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-3344998011-113253623-2746853109-1001\...\StartupApproved\Run: => "HP Photosmart 5520 series (NET)"
HKU\S-1-5-21-3344998011-113253623-2746853109-1001\...\StartupApproved\Run: => "Windscribe"
HKU\S-1-5-21-3344998011-113253623-2746853109-1001\...\StartupApproved\Run: => "DAEMON Tools Ultra Automount"
FirewallRules: [UDP Query User{FC4EBC4B-FAA0-4F02-B66A-38B1BA58AA76}C:\program files\dnplayerext2\ldboxheadless.exe] => (Block) C:\program files\dnplayerext2\ldboxheadless.exe => Pas de fichier
FirewallRules: [TCP Query User{B7C3990F-6172-49B5-8CA6-A757B672F05D}C:\program files\dnplayerext2\ldboxheadless.exe] => (Block) C:\program files\dnplayerext2\ldboxheadless.exe => Pas de fichier
FirewallRules: [UDP Query User{3845C2F3-EB16-4D7E-87D9-5A40E76C8582}C:\program files (x86)\zoogvpn\ike-scan\ike-scan.exe] => (Block) C:\program files (x86)\zoogvpn\ike-scan\ike-scan.exe => Pas de fichier
FirewallRules: [TCP Query User{B5B695AD-40A4-4EB6-9887-83754468E14A}C:\program files (x86)\zoogvpn\ike-scan\ike-scan.exe] => (Block) C:\program files (x86)\zoogvpn\ike-scan\ike-scan.exe => Pas de fichier
FirewallRules: [{2C40440E-33D1-4610-8F89-1347430E4F5B}] => (Allow) C:\Program Files\AVAST Software\SecureLine\VpnUpdate.exe => Pas de fichier
FirewallRules: [{BBE3A479-C7B8-469D-921B-2E3F2F9A29D0}] => (Allow) C:\Program Files\AVAST Software\SecureLine\VpnUpdate.exe => Pas de fichier
FirewallRules: [TCP Query User{A9137583-961B-4B65-AF82-312F30488682}C:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe => Pas de fichier
FirewallRules: [UDP Query User{61D2DAC2-C35E-4B61-B0F9-39B330405B2D}C:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe => Pas de fichier
FirewallRules: [{34459F4D-D1DC-4B7E-A4A0-20DE2D91AD03}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\World of Warships\bin\clientrunner\clientrunner.exe => Pas de fichier
FirewallRules: [{CE57E224-5188-46D7-AE36-B14F4B7F2CCF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\World of Warships\bin\clientrunner\clientrunner.exe => Pas de fichier
FirewallRules: [{CE6DE819-9A20-4141-847D-97A5BF488CA8}] => (Allow) C:\Users\noemi\AppData\Roaming\uTorrent\uTorrent.exe => Pas de fichier
FirewallRules: [{7BC89430-B47E-406E-A5F6-A89DC47ABFC6}] => (Allow) C:\Users\noemi\AppData\Roaming\uTorrent\uTorrent.exe => Pas de fichier
FirewallRules: [TCP Query User{232875E4-0463-40F7-8B1F-D7B2AC62C9F5}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Allow) C:\program files (x86)\windscribe\wsappcontrol.exe => Pas de fichier
FirewallRules: [UDP Query User{04BB475A-79AD-4B2E-A585-97C78F0ABFC9}C:\program files (x86)\windscribe\wsappcontrol.exe] => (Allow) C:\program files (x86)\windscribe\wsappcontrol.exe => Pas de fichier
FirewallRules: [{C0B73AB9-C297-40C4-AAF5-68472B7DCFEC}] => (Block) C:\program files (x86)\windscribe\wsappcontrol.exe => Pas de fichier
FirewallRules: [{2E8A3E0F-53B7-42BA-8294-33A1BEE90702}] => (Block) C:\program files (x86)\windscribe\wsappcontrol.exe => Pas de fichier
C:\Program Files\EnigmaSoft\
C:\Program Files\mcafee
HKU\S-1-5-21-3344998011-113253623-2746853109-1001\...\Run: [BatteryCare] => C:\Users\noemi\AppData\Local\Temp\Rar$EXa10992.26829\BatteryCare.exe <==== ATTENTION
HKU\S-1-5-21-3344998011-113253623-2746853109-1001\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\88.0.4324.146\Installer\chrmstp.exe [2021-02-02] (Google LLC -> Google LLC)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {66C8F8BD-5300-4379-92F9-71211C6C9A1E} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK
Tcpip\..\Interfaces\{6e651cc0-5f44-431b-bc7c-7bab7003817a}: [DhcpNameServer] 8.8.8.8
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
Edge Extension: (Avast Passwords) - C:\Users\noemi\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\emhginjpijfggbofeediiojmdlmlkoik [2020-05-06]
Edge Extension: (Avast Online Security) - C:\Users\noemi\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdgpikaaheckgdijjmepmdjjkbceakif [2020-10-03]
Edge Extension: (McAfee® WebAdvisor) - C:\Users\noemi\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdhgeoginicibhagdmblfikbgbkahibd [2020-12-23]
FF user.js: detected! => C:\Users\noemi\AppData\Roaming\Mozilla\Firefox\Profiles\ciuyttlx.default\user.js [2020-05-01]
FF user.js: detected! => C:\Users\noemi\AppData\Roaming\Mozilla\Firefox\Profiles\z56rs2i6.default-release\user.js [2020-05-01]
FF Extension: (Avast SafePrice | Comparaison, offres, coupons) - C:\Users\noemi\AppData\Roaming\Mozilla\Firefox\Profiles\z56rs2i6.default-release\Extensions\sp@avast.com.xpi [2019-02-20]
FF Extension: (Avast Online Security) - C:\Users\noemi\AppData\Roaming\Mozilla\Firefox\Profiles\z56rs2i6.default-release\Extensions\wrc@avast.com.xpi [2018-09-01]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2019-08-24]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
CHR Extension: (Safe Torrent Scanner) - C:\Users\noemi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2021-01-22]
CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb]
CHR HKLM-x32\...\Chrome\Extension: [jlhmfgmfgeifomenelglieieghnjghma]
CHR HKLM-x32\...\Chrome\Extension: [mfhcmdonhekjhfbjmeacdjbhlfgpjabp]
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [905472 2019-08-24] (McAfee, LLC -> McAfee, Inc.)
2021-02-04 15:28 - 2019-01-21 16:36 - 000069432 _____ (EnigmaSoft Limited) C:\WINDOWS\system32\Drivers\EnigmaFileMonDriver.sys
EmptyTemp:
cmd: ipconfig /flushdns
cmd: netsh advfirewall reset
cmd: netsh winsock reset
end::

x
Éditer le texte

Merci d'entrer le mot de passe que vous avez indiqué à la création du texte.

x
Télécharger le texte

Merci de choisir le format du fichier à télécharger.