start::
CreateRestorePoint:
CloseProcesses:
Hosts:
RemoveProxy:
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction
Task: {2BB692C1-F60F-479E-ADC2-1CAF9422A2AC} - \Microsoft\Windows\Shell\FamilySafetyMonitorToastTask -> Pas de fichier
Task: {38B24C4F-9B2F-40DE-A427-E8A5CCC2B3AA} - System32\Tasks\Opera scheduled Autoupdate 1608302250 => C:\Users\eliza\AppData\Local\Programs\Opera\launcher.exe
Task: {839DE774-9080-4940-B3B0-0C9A8D910BA4} - System32\Tasks\Opera scheduled assistant Autoupdate 1608302262 => C:\Users\eliza\AppData\Local\Programs\Opera\launcher.exe
Task: {97E8D66D-0085-423C-BA11-DD777A1258AB} - \Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask -> Pas de fichier
Task: {B6E67297-4E2A-4BAB-9C4A-63B62EDBF591} - \Microsoft\Windows\Management\Provisioning\PostResetBoot -> Pas de fichier
Task: {C1EF45A1-44D2-48F3-862D-DCB5FA3AA96A} - \Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display -> Pas de fichier
Task: {C2098BE2-A29A-4EB1-97F6-F0C57E086D4F} - \Microsoft\Windows\Speech\HeadsetButtonPress -> Pas de fichier
Task: {C4143BD1-BDD8-4AA6-83E1-57F4C83800BA} - \Microsoft\Windows\Setup\SetupCleanupTask -> Pas de fichier
Task: {C48D50E5-71A9-48D8-B7C1-3DA9AECBDEC3} - \Microsoft\Windows\WindowsUpdate\sih -> Pas de fichier
Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)]
Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)]
Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)]
Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)]
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll]
CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]
S1 amsdk; \??\C:\WINDOWS\system32\drivers\amsdk.sys [X]
2021-08-05 18:44 - 2021-08-05 18:44 - 000000000 ____D C:\ProgramData\NCH Software
2021-08-04 20:48 - 2021-08-07 16:11 - 000000000 ____D C:\Program Files (x86)\Watchdog Anti-Malware
2021-08-04 20:48 - 2021-08-07 15:57 - 002222098 _____ C:\WINDOWS\ZAM.krnl.trace
2021-08-04 20:48 - 2021-08-07 15:57 - 000000000 ____D C:\Users\eliza\AppData\Local\AMSDK
2021-08-04 20:48 - 2021-08-07 15:34 - 000000000 ____D C:\Users\eliza\AppData\Local\Watchdog Anti-Malware
2021-08-04 20:42 - 2021-08-04 20:42 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avira
2021-08-04 19:49 - 2021-08-07 16:11 - 000000000 ____D C:\Program Files (x86)\supportdotcom
2021-08-04 19:49 - 2021-08-04 19:49 - 000000000 ____D C:\Users\eliza\AppData\Roaming\supportdotcom
2021-08-04 20:45 - 2020-12-18 16:33 - 000000000 ____D C:\Program Files (x86)\Avira
2021-08-04 20:43 - 2020-12-18 16:33 - 000000000 ____D C:\ProgramData\Avira
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\amsdk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\amsdk.sys => ""="Driver"
ContextMenuHandlers1: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} => -> Pas de fichier
ContextMenuHandlers6: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} => -> Pas de fichier
SearchScopes: HKU\S-1-5-21-1608751776-275842462-1098899909-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1608751776-275842462-1098899909-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
HKU\S-1-5-21-1608751776-275842462-1098899909-1001\...\StartupApproved\Run: => "Opera Browser Assistant"
EmptyTemp:
cmd: ipconfig /flushdns
cmd: sfc /scannow
end::