start::
closeprocesses:
createrestorepoint:
CustomCLSID: HKU\S-1-5-21-4226280941-3553443133-1090231811-1001_Classes\CLSID\{C269839C-7A4D-48C3-92B0-377DF8E23E2B}\localserver32 -> "C:\Users\USER\AppData\Local\Vivaldi\Application\5.7.2921.63\notification_helper.exe" => Pas de fichier
HKU\S-1-5-21-4226280941-3553443133-1090231811-1001\...\Run: [AceStream] => C:\Users\USER\AppData\Roaming\ACEStream\engine\ace_engine.exe (Pas de fichier)
HKU\S-1-5-21-4226280941-3553443133-1090231811-1001\...\Run: [YandexBrowserAutoLaunch_E4D8721153ED16418D06EAD2B4492D9A] => "C:\Users\USER\AppData\Local\Yandex\YandexBrowser\Application\browser.exe" --shutdown-if-not-closed-by-system-restart (Pas de fichier)
HKU\S-1-5-21-4226280941-3553443133-1090231811-1001\...\Run: [MicrosoftEdgeAutoLaunch_28CC4C91291F97998E40A29656715B1C] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3788736 2023-12-07] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-4226280941-3553443133-1090231811-1001\...\Run: [Boxoft Tools] => "C:\ProgramData\Boxtools\Boxofttoolbox.exe" -autorun (Pas de fichier)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
Task: {497BC408-8E6F-46D1-A06B-B9B280B02B30} - System32\Tasks\Mise à jour du navigateur Yandex => C:\Users\USER\AppData\Local\Yandex\YandexBrowser\Application\browser.exe --background-update --noerrdialogs (Pas de fichier)
Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)]
Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)]
Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)]
Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)]
FF Plugin HKU\S-1-5-21-4226280941-3553443133-1090231811-1001: @acestream.net/acestreamplugin,version=3.1.11 -> C:\Users\USER\AppData\Roaming\ACEStream\player\npace_plugin.dll [Pas de fichier]
cmd: netsh advfirewall reset
cmd: DISM /Online /Cleanup-image /Restorehealth
cmd: sfc /scannow
emptytemp:
end::