start::
SystemRestore: on
CreateRestorePoint:
CloseProcesses:
Hosts:
RemoveProxy:
HKLM\Software\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\91.1.10672.124\Installer\chrmstp.exe"
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\87.0.7478.88\Installer\chrmstp.exe"
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
Task: {01E95717-DF5E-4A00-ADD0-4556C8602EEA} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton Internet Security\Engine\22.5.2.15\WSCStub.exe
Task: {285F4491-377D-46B7-B20D-C8D3BD4445BA} - System32\Tasks\Norton Internet Security\Norton Error Analyzer => C:\Program Files (x86)\Norton Internet Security\Engine\22.5.2.15\SymErr.exe
Task: {29D91A23-2EF8-4492-9F89-AB269E59886D} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_122_Plugin.exe
Task: {2E65CB69-6F77-4235-B696-B1C85BB1B3F4} - System32\Tasks\Norton Internet Security\Norton Error Processor => C:\Program Files (x86)\Norton Internet Security\Engine\22.5.2.15\SymErr.exe
Task: {A0B78769-7945-485B-BA33-CF3C213541DE} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {B659BB88-DF41-492F-A6A1-31EFE98631FB} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
FF Extension: (Avast SafePrice | Comparaison, offres, coupons) - C:\Users\LAURENT\AppData\Roaming\Mozilla\Firefox\Profiles\uzm4ikyw.default\Extensions\sp@avast.com.xpi
FF Extension: (Avast Online Security & Privacy) - C:\Users\LAURENT\AppData\Roaming\Mozilla\Firefox\Profiles\uzm4ikyw.default\Extensions\wrc@avast.com.xpi
FF SearchPlugin: C:\Users\LAURENT\AppData\Roaming\Mozilla\Firefox\Profiles\uzm4ikyw.default\searchplugins\google-avast.xml
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_31_0_0_122.dll
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_31_0_0_122.dll
CHR HKLM\...\Chrome\Extension: [hkhkiakolggnnicallabhkobalpeplpi] - <pas de Path/update_url>
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx <non trouvé(e)>
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx <non trouvé(e)>
CHR HKLM-x32\...\Chrome\Extension: [hkhkiakolggnnicallabhkobalpeplpi] - <pas de Path/update_url>
CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif]
S3 OATool; \??\C:\Users\Administrator\AppData\Local\Temp\OAToolx64.sys [X]
S3 TDKLIB; \??\C:\Users\Administrator\AppData\Local\Temp\TdkLib64.sys [X]
2021-10-28 19:08 - 2021-10-28 19:08 - 000000000 _____ C:\Users\LAURENT\AppData\Local\{B677A22A-0CB4-4397-8A21-B71E037BE7E0}
2021-10-28 19:08 - 2021-10-28 19:08 - 000000000 _____ C:\Users\LAURENT\AppData\Local\{7D5DA8E4-5B22-4EEF-B939-8D9C99CD93E0}
2021-11-02 20:06 - 2015-09-21 12:28 - 000000000 ____D C:\ProgramData\AVAST Software
2021-10-29 07:31 - 2018-04-16 09:20 - 000000000 ____D C:\Users\LAURENT\AppData\Local\AVAST Software
2021-10-29 07:26 - 2015-12-07 15:52 - 000000000 ____D C:\Windows\system32\Tasks\AVAST Software
2021-10-28 19:31 - 2013-11-07 02:47 - 000000000 ___HD C:\Program Files (x86)\NortonInstaller
2019-02-14 17:26 - 2019-02-14 17:26 - 000000000 _____ () C:\Users\LAURENT\AppData\Local\{0B9921F1-EA0C-4365-BC2D-9DA4F64FA723}
2019-02-14 17:26 - 2019-02-14 17:26 - 000000000 _____ () C:\Users\LAURENT\AppData\Local\{608B4944-87B6-4417-B771-F645BB91D494}
2021-10-28 19:08 - 2021-10-28 19:08 - 000000000 _____ () C:\Users\LAURENT\AppData\Local\{7D5DA8E4-5B22-4EEF-B939-8D9C99CD93E0}
2021-10-28 19:08 - 2021-10-28 19:08 - 000000000 _____ () C:\Users\LAURENT\AppData\Local\{B677A22A-0CB4-4397-8A21-B71E037BE7E0}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3891418573-139829250-2324300726-1001 -> DefaultScope {B2BAB1C7-78CA-4712-98DD-2608832FB446} URL =
SearchScopes: HKU\S-1-5-21-3891418573-139829250-2324300726-1001 -> {B2BAB1C7-78CA-4712-98DD-2608832FB446} URL =
ShellIconOverlayIdentifiers: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => -> Pas de fichier
EmptyTemp:
cmd: ipconfig /flushdns
cmd: sfc /scannow
cmd: DISM /Online /Cleanup-image /Restorehealth
end::