start::
closeprocesses:
createrestorepoint:
CustomCLSID: HKU\S-1-5-21-3090706496-2916821209-3959622935-1001_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> C:\ProgramData\{1D7BD5EC-1EA9-44E8-9114-08DDFBD26AB9}\33A2E4F0.exe \system32\oleaut32.dll => Pas de fichier
CustomCLSID: HKU\S-1-5-21-3090706496-2916821209-3959622935-1001_Classes\CLSID\{00020421-0000-0000-C000-000000000046}\InprocServer32 -> C:\ProgramData\{1D7BD5EC-1EA9-44E8-9114-08DDFBD26AB9}\33A2E4F0.exe \system32\oleaut32.dll => Pas de fichier
CustomCLSID: HKU\S-1-5-21-3090706496-2916821209-3959622935-1001_Classes\CLSID\{00020422-0000-0000-C000-000000000046}\InprocServer32 -> C:\ProgramData\{1D7BD5EC-1EA9-44E8-9114-08DDFBD26AB9}\33A2E4F0.exe \system32\oleaut32.dll => Pas de fichier
CustomCLSID: HKU\S-1-5-21-3090706496-2916821209-3959622935-1001_Classes\CLSID\{00020423-0000-0000-C000-000000000046}\InprocServer32 -> C:\ProgramData\{1D7BD5EC-1EA9-44E8-9114-08DDFBD26AB9}\33A2E4F0.exe \system32\oleaut32.dll => Pas de fichier
CustomCLSID: HKU\S-1-5-21-3090706496-2916821209-3959622935-1001_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> C:\ProgramData\{1D7BD5EC-1EA9-44E8-9114-08DDFBD26AB9}\33A2E4F0.exe \system32\oleaut32.dll => Pas de fichier
CustomCLSID: HKU\S-1-5-21-3090706496-2916821209-3959622935-1001_Classes\CLSID\{00020425-0000-0000-C000-000000000046}\InprocServer32 -> C:\ProgramData\{1D7BD5EC-1EA9-44E8-9114-08DDFBD26AB9}\33A2E4F0.exe \system32\oleaut32.dll => Pas de fichier
ContextMenuHandlers6: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => c:\PROGRA~1\mcafee\msc\MCCTXM~1.DLL -> Pas de fichier
AlternateDataStreams: C:\Users\antoi:Heroes & Generals [38]
AlternateDataStreams: C:\Users\antoi\Application Data:a71eda622791298bf432424e2ed8fdad [394]
AlternateDataStreams: C:\Users\antoi\Local Settings:03-08-2021 [1563]
AlternateDataStreams: C:\Users\antoi\Local Settings:04-08-2021 [480219]
AlternateDataStreams: C:\Users\antoi\Local Settings:05-08-2021 [47858]
AlternateDataStreams: C:\Users\antoi\Local Settings:06-08-2021 [11253]
AlternateDataStreams: C:\Users\antoi\AppData\Local:03-08-2021 [1563]
AlternateDataStreams: C:\Users\antoi\AppData\Local:04-08-2021 [480219]
AlternateDataStreams: C:\Users\antoi\AppData\Local:05-08-2021 [47858]
AlternateDataStreams: C:\Users\antoi\AppData\Local:06-08-2021 [11253]
AlternateDataStreams: C:\Users\antoi\AppData\Roaming:a71eda622791298bf432424e2ed8fdad [394]
AlternateDataStreams: C:\Users\antoi\AppData\Local\Application Data:03-08-2021 [1563]
AlternateDataStreams: C:\Users\antoi\AppData\Local\Application Data:04-08-2021 [480219]
AlternateDataStreams: C:\Users\antoi\AppData\Local\Application Data:05-08-2021 [47858]
AlternateDataStreams: C:\Users\antoi\AppData\Local\Application Data:06-08-2021 [11253]
AlternateDataStreams: C:\Users\Public\AppData:CSM [488]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [482]
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\.DEFAULT -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3090706496-2916821209-3959622935-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3090706496-2916821209-3959622935-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Pas de nom -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> Pas de fichier
BHO-x32: Pas de nom -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> Pas de fichier
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - Pas de fichier
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\mcafee\msc\mcsniepl.dll Pas de fichier
HKLM\...\Run: [DriverUpdUI.exe] => C:\Program Files\Avast Software\Driver Updater\DriverUpdUI.exe [4573048 2022-10-18] (Avast Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [Genshin Impact_launcher_mihoyo_1_0] => [X]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [711328 2022-06-16] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
HKU\S-1-5-21-3090706496-2916821209-3959622935-1001\...\Run: [PlariumPlay] => C:\Users\antoi\AppData\Local\Plarium\PlariumPlay\PlariumPlay --args -run-with-os (Pas de fichier)
HKU\S-1-5-21-3090706496-2916821209-3959622935-1001\...\Run: [WinFlow] => "C:\ProgramData\WinFlow.exe" (Pas de fichier) <==== ATTENTION
HKU\S-1-5-21-3090706496-2916821209-3959622935-1001\...\Run: [Bloom] => C:\Users\antoi\AppData\Roaming\Bloom\Bloom.exe [134308562 2022-03-09] (Bloom Software) [Fichier non signé] <==== ATTENTION
C:\Users\antoi\AppData\Roaming\Bloom
HKU\S-1-5-21-3090706496-2916821209-3959622935-1001\...\Run: [GalaxyClient] => [X]
HKU\S-1-5-21-3090706496-2916821209-3959622935-1001\...\MountPoints2: {430b1639-0a70-11ec-bbcd-b06ebfcbda99} - "Z:\setup.exe"
HKU\S-1-5-21-3090706496-2916821209-3959622935-1001\...\MountPoints2: {96226b50-5279-11ec-bbe0-b06ebfcbda99} - "E:\setup.exe"
Startup: C:\Users\antoi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\exe.lnk [2021-09-05] <==== ATTENTION
ShortcutTarget: exe.lnk -> C:\ProgramData\Microsoft Network\System.exe (Pas de fichier)
Startup: C:\Users\antoi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\xaml_dispatcher.lnk [2021-08-03]
ShortcutTarget: xaml_dispatcher.lnk -> C:\Users\antoi\AppData\Roaming\Northglide\XAML Dispatcher\xamldispatcher.exe (Pas de fichier)
Task: {0A46F54C-3729-4CA9-A06F-99B29558B8F4} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent => {ABCECA3B-EA5A-496B-A021-5C6BAB365E5C} "C:\Program Files\Common Files\McAfee\Platform\McAMTaskAgent.exe" (Pas de fichier)
C:\Program Files\Common Files\McAfee
Task: {1C72EDCE-DA46-4DF3-A35B-C3BEC0D7DEA7} - System32\Tasks\McAfeeLogon => C:\Program Files\Common Files\mcafee\platform\McUICnt.exe [747384 2016-12-09] (McAfee, Inc. -> McAfee, Inc.)
Task: {3424FB4A-875E-455A-8447-910C542FAF84} - \Opera GX scheduled assistant Autoupdate 1617006430 -> Pas de fichier <==== ATTENTION
Task: {40AE1E40-51AC-4EF1-8714-9710E240AD60} - System32\Tasks\Firefox Default Browser Agent FC8DDB3C92CC0286 => C:\Users\antoi\AppData\Roaming\iugcavv.exe (Pas de fichier) <==== ATTENTION
Task: {40C83BB2-A077-4031-AD4E-FDC7C45AED30} - System32\Tasks\McAfee\McAfee Idle Detection Task => {ABCDCA3B-DE6B-5A7C-B132-6D7CBA63E5C5} "C:\Program Files\Common Files\McAfee\Platform\McAMTaskAgent.exe" (Pas de fichier)
Task: {483CE38C-0F0B-4272-AB83-41D0DF97BDA8} - \chrome nav -> Pas de fichier <==== ATTENTION
Task: {59F7020A-9FB0-43B0-902D-C032B6CC16C6} - \chrome panel -> Pas de fichier <==== ATTENTION
Task: {97DD4CDA-E951-4C87-BEE0-70707D86BD49} - \chrome tab -> Pas de fichier <==== ATTENTION
Task: {A62E6052-76FE-4C04-85F4-EC9277B0D53F} - System32\Tasks\chrome about => cmd /c powershell -WindowStyle Hidden -E "CgAKAAoAJAB2AGEAcgBfAEoATgA9ACQAbgB1AGwAbAA7AAoACgAkAFAAQQBSAE0AXwB2AEEAUgAxACAAPQAgACIAVwB5AEkAMgBPAEQASQAyAE0ARABnADUATQBqAFEAMABOAGoAZwA0AE4ARABFADQATQBpAEkAcwBNAFQAWQAwAE4AagBnADIATgB6AGcAegBNAGkAdwBpAEkAbAAwAD0AIgA7AAoAJABvAGsAPQAkAHQAcgB1AGUACgAKACQAdgBkAE (l'élément de données a 5267 caractères en plus). <==== ATTENTION
Task: {CC1C513F-D415-4B69-956B-160FD33280CA} - \chrome glass -> Pas de fichier <==== ATTENTION
Task: {D3EF884E-9C4F-4688-94FC-A586F7A8D340} - \McAfee Cleanup -> Pas de fichier <==== ATTENTION
Task: {F854C8FD-C71A-4D91-8295-8197E4E66F43} - \chrome support -> Pas de fichier <==== ATTENTION
Task: C:\WINDOWS\Tasks\McAfee Cleanup.job => C:\Users\antoi\AppData\Local\Temp\MCPR.tmp\mccleanup.exeĈ-p mpfpcu,mpfp,mps,shred,mpscu,mskcu,msk,emproxy,mas,fwdriver,hw,mbk,mcproxy,mhn,mqccu,mqc,shrd,nmc,redir,mna,mwl,msad,vs,msc,mcpr -log C:\Users\antoi\AppData\Local\Temp -w C:\Users\antoi\AppData\Local\Temp\MCPR.tmp <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3: <==== ATTENTION (Restriction - Zones)
Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)]
Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)]
Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)]
Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)]
Edge HKLM-x32\...\Edge\Extension: [caiblelclndcckfafdaggpephhgfpoip]
Edge HKLM-x32\...\Edge\Extension: [emgfgdclgfeldebanedpihppahgngnle]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\e10ssaffplg.xpi => non trouvé(e)
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\e10ssaffplg.xpi => non trouvé(e)
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [Pas de fichier]
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [Pas de fichier]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif]
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll]
CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]
CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif]
C:\Users\antoi\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fheoggkfdfchfphceeifdbepaooicaho
C:\Users\antoi\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfjcbphnafmhbiddkciabfmlcgjpibdi
S2 AppServicea; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicea; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServiceb; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServiceb; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicec; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicec; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServiced; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServiced; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicee; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicee; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicef; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicef; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServiceg; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServiceg; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServiceh; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServiceh; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicei; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicei; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicej; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicej; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicek; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicek; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicel; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicel; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicem; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicem; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicen; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicen; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServiceo; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServiceo; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicep; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicep; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServiceq; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServiceq; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicer; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicer; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServices; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServices; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicet; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicet; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServiceu; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServiceu; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicev; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicev; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicew; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicew; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicex; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicex; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicey; C:\WINDOWS\System32\svchost.exe [55320 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 AppServicey; C:\WINDOWS\SysWOW64\svchost.exe [46504 2022-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION <==== ATTENTION (pas de ServiceDLL)
S2 McAPExe; C:\Program Files\Common Files\McAfee\VSCore_15_6\McApExe.exe [989632 2017-01-23] (McAfee, Inc. -> McAfee, Inc.)
S3 McAWFwk; C:\Program Files\Common Files\mcafee\actwiz\McAWFwk.exe [454560 2016-11-15] (McAfee, Inc. -> McAfee, Inc.)
S2 McBootDelayStartSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [641520 2016-12-09] (McAfee, Inc. -> McAfee, Inc.)
S2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\2.3.322.0\\McCSPServiceHost.exe [2054080 2017-02-28] (McAfee, Inc. -> McAfee, Inc.)
S2 McNaiAnn; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [641520 2016-12-09] (McAfee, Inc. -> McAfee, Inc.)
S2 mcpltsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [641520 2016-12-09] (McAfee, Inc. -> McAfee, Inc.)
S3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [241040 2016-11-14] (McAfee, Inc. -> McAfee, Inc.)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [383032 2016-11-14] (McAfee, Inc. -> McAfee, Inc.)
S3 mfevtp; C:\Windows\system32\mfevtps.exe [342768 2016-11-14] (McAfee, Inc. -> McAfee, Inc.)
S2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1465840 2016-12-22] (McAfee, Inc. -> McAfee, Inc.)
S3 mracsvc; C:\WINDOWS\System32\mracsvc.exe [23954152 2022-04-23] (My.Com B.V. -> My.com B.V.)
S2 pubgame-updater; C:\WINDOWS\PublicGaming\appsetup.exe [X] <==== ATTENTION
S3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [484576 2016-11-18] (McAfee, Inc. -> McAfee, Inc.)
S0 mfeelamk; C:\WINDOWS\System32\drivers\mfeelamk.sys [85048 2016-11-18] (Microsoft Windows Early Launch Anti-malware Publisher -> McAfee, Inc.)
S3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [518184 2016-11-18] (McAfee, Inc. -> McAfee, Inc.)
S3 mfencbdc; C:\WINDOWS\System32\DRIVERS\mfencbdc.sys [498152 2016-10-24] (McAfee, Inc. -> McAfee, Inc.)
S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [109336 2016-10-24] (McAfee, Inc. -> McAfee, Inc.)
S3 mfeplk; C:\WINDOWS\System32\drivers\mfeplk.sys [110248 2016-11-18] (McAfee, Inc. -> McAfee, Inc.)
S3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [111608 2017-02-14] (McAfee, Inc. -> McAfee, Inc.)
R0 mfewfpk; C:\WINDOWS\System32\drivers\mfewfpk.sys [254800 2016-11-18] (McAfee, Inc. -> McAfee, Inc.)
S3 mracdrv; C:\WINDOWS\System32\drivers\mracdrv1.sys [23190616 2022-04-23] (My.Com B.V. -> My.com B.V.)
S1 anujlaou; \??\C:\WINDOWS\system32\drivers\anujlaou.sys [X]
2022-11-10 23:25 - 2022-11-10 23:25 - 000014618 _____ C:\WINDOWS\system32\Tasks\chrome about
cmd: netsh advfirewall reset
emptytemp:
end::