start::
closeprocesses:
createrestorepoint:
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier
HKLM\...\StartupApproved\Run: => "AvastUI.exe"
HKLM\...\StartupApproved\Run: => "Wondershare Helper Compact.exe"
HKLM\...\StartupApproved\Run32: => "Wondershare Helper Compact.exe"
HKU\S-1-5-21-1883268691-2438642877-3707191222-1001\...\StartupApproved\Run: => "DAEMON Tools Ultra Automount"
HKU\S-1-5-21-1883268691-2438642877-3707191222-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-1883268691-2438642877-3707191222-1001\...\StartupApproved\Run: => "YoutubeDownloader"
HKU\S-1-5-21-1883268691-2438642877-3707191222-1001\...\StartupApproved\Run: => "Toolkit"
HKLM\...\Run: [AvastUI.exe] => "C:\Program Files\Avast Software\Avast\AvLaunch.exe" /gui
C:\Program Files\Avast Software
HKLM\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
HKU\S-1-5-21-1883268691-2438642877-3707191222-1001\...\MountPoints2: {77686df7-eddb-11ea-9c51-4ccc6af6b46d} - "H:\setup.exe"
HKU\S-1-5-21-1883268691-2438642877-3707191222-1001\...\MountPoints2: {e383e848-e7bc-11ea-9c45-4ccc6af6b46d} - "K:\setup.exe"
Startup: C:\Users\Nicolas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled [2020-04-13] <==== ATTENTION (zéro octet Fichier/Dossier)
BootExecute:
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKU\.DEFAULT\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKU\S-1-5-21-1883268691-2438642877-3707191222-1001\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {70AEB66A-6ED8-4FD2-8602-36FA53D094FB} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe
Task: {97028C11-236D-4A03-92C9-6EE793143FFE} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe
Task: {BC608C06-6F17-4E61-B791-47912F281A28} - System32\Tasks\Microsoft\Windows\Windows Error Reporting\SysInfo => C:\Users\Nicolas\AppData\Roaming\\toolsyshost\\sihost.exe <==== ATTENTION
ProxyServer: [S-1-5-21-1883268691-2438642877-3707191222-1001] => 127.0.0.1:8003
Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)]
Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)]
Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)]
Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)]
S3 dg_ssudbus; \SystemRoot\system32\DRIVERS\ssudbus2.sys [X]
S3 PdiPorts; \SystemRoot\System32\drivers\PdiPorts.sys [X]
2021-09-19 15:13 - 2021-09-19 15:14 - 006673184 _____ (EnigmaSoft Limited) C:\Users\Nicolas\Downloads\SpyHunter-Installer.exe
2021-09-19 17:13 - 2018-02-25 04:41 - 000000000 ____D C:\Users\Nicolas\AppData\LocalLow\IObit
2021-09-05 20:00 - 2020-09-29 13:25 - 000000000 ____D C:\Users\Nicolas\AppData\Local\MSfree Inc
cmd: netsh advfirewall reset
emptytemp:
end::