start::
CreateRestorePoint:
CloseProcesses:
Hosts:
RemoveProxy:
HKU\S-1-5-21-12261856-4043461819-183179937-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe
Task: {02801410-3A2E-441D-B88E-ABECA311BE2F} - \Nahimic2Svc32Run -> Pas de fichier
Task: {317107BF-13F6-48B4-AA5A-BA0B03A02F4B} - \Microsoft\Windows\ErrorDetails\EnableErrorDetailsUpdate -> Pas de fichier
Task: {43A121A3-1CF8-4849-871B-8E47103897F7} - \Microsoft\Windows\UpdateOrchestrator\Maintenance Install -> Pas de fichier
Task: {48A98229-5C8E-4DDD-8139-CF35F7262A95} - \Microsoft\Windows\Plug and Play\Plug and Play Cleanup -> Pas de fichier
Task: {5587F1DC-15D0-4331-A673-6EF75E5CD9C0} - \Microsoft\Windows\AppID\SmartScreenSpecific -> Pas de fichier
Task: {5E40A617-944C-4BA9-BB60-6C4231965B1B} - \Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display -> Pas de fichier
Task: {61A932E0-6613-43DF-8D45-C7B4A6176EAE} - \Microsoft\Windows\UpdateOrchestrator\Policy Install -> Pas de fichier
Task: {71E53243-3A2D-47EE-9DAB-6D71B2366657} - \Microsoft\Windows\ErrorDetails\ErrorDetailsUpdate -> Pas de fichier
Task: {8430A438-7D3C-4187-A3FA-3D6209408A0E} - \MSISCMTsk -> Pas de fichier
Task: {C349BB67-3672-4975-AE02-517BAD9318EE} - \Microsoft\Windows\WindowsUpdate\sih -> Pas de fichier
Task: {C6BC0198-C112-40AB-ABBB-5FB923516B21} - \Intel\Intel Telemetry 2 (x86) -> Pas de fichier
Task: {C7F53ECA-CE81-4FE4-824E-1547B06DCCF0} - \Nahimic2UILauncherRun -> Pas de fichier
Task: {CD5CCC45-00F3-4416-ADCF-1D2B47A49887} - \PDVDServ12 Task -> Pas de fichier
Task: {D1DCBFAF-51A5-4CE5-BCDC-03346DA4A4B6} - \MSI_Help_Desk_Agent -> Pas de fichier
Task: {E2E24FBC-E26F-4736-827D-B5D2E45CB3E6} - \Nvbackend_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} -> Pas de fichier
Task: {FA625267-66E0-464A-AE95-8754007E78AD} - \Microsoft\Windows\UpdateOrchestrator\Reboot -> Pas de fichier
Task: {FE7C6987-BEC4-4A6F-B28A-AE2B01B29D40} - \Nahimic2Svc64Run -> Pas de fichier
Task: {FEF3835A-690B-4399-B139-FD3F8F88B422} - \Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot -> Pas de fichier
S3 cpuz149; C:\Users\thomas\AppData\Local\Temp\cpuz149\cpuz149_x64.sys
S3 NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [X]
S3 WINIO; \??\C:\Program Files (x86)\MSI\Dragon Center\winio64.sys [X]
2021-05-31 21:53 - 2021-05-31 22:05 - 021058888 _____ (Piriform Software Ltd) C:\Users\thomas\Downloads\Non confirmé 259600.crdownload
2021-05-31 21:51 - 2021-05-31 21:51 - 000000000 ____D C:\Program Files\Common Files\AV
2021-05-30 23:09 - 2021-05-30 23:11 - 003038248 _____ (crosire) C:\Users\thomas\Downloads\ReShade_Setup_4.9.1.exe
2021-06-11 23:50 - 2016-04-09 04:23 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2021-05-31 22:06 - 2016-09-22 08:22 - 000000000 ____D C:\ProgramData\Norton
2021-05-31 21:16 - 2015-10-29 21:24 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2021-05-31 21:15 - 2016-09-22 08:23 - 000000000 ____D C:\Users\Public\Symantec
2021-05-31 21:15 - 2015-10-29 21:24 - 000000000 ____D C:\WINDOWS\system32\Macromed
2021-05-31 21:13 - 2016-09-22 08:22 - 000000000 ____D C:\ProgramData\NortonInstaller
2021-05-31 10:02 - 2018-06-14 04:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2021-05-31 10:02 - 2017-08-01 05:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
HKU\S-1-5-21-12261856-4043461819-183179937-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://oem17win10.msn.com/?pc=NMTE
HKLM\...\StartupApproved\Run: => "ShadowPlay"
HKU\S-1-5-21-12261856-4043461819-183179937-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
FirewallRules: [{5D4558D8-B291-41F2-AF6B-55BB48BCC94F}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent, Inc.)
FirewallRules: [{0B5FDB5E-B7F7-4F87-9317-4C4B6A461D23}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent, Inc.)
EmptyTemp:
cmd: sfc /scannow
end::