start::
closeprocesses:
createrestorepoint:
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> Pas de fichier
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> Pas de fichier
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> Pas de fichier
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Pas de fichier
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> Pas de fichier
ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> Pas de fichier
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> Pas de fichier
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Pas de fichier
ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> Pas de fichier
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Pas de fichier
HKLM-x32\...\Run: [Genshin Impact_launcher_pcseaepic_1_3] => [X]
HKLM\...\Policies\Explorer: [NoInternetOpenWith] 1
HKLM\...\Policies\Explorer: [NoPublishingWizard] 1
HKU\S-1-5-21-746888981-3114354517-946918332-1001\...\Run: [Discord] => C:\Users\carva\AppData\Local\Discord\Update.exe [4608 2023-12-30] () [Fichier non signé]
HKU\S-1-5-21-746888981-3114354517-946918332-1001\...\Run: [Opera GX Browser Assistant] => C:\Users\carva\AppData\Local\Programs\Opera GX\assistant\browser_assistant.exe [4608 2023-12-30] () [Fichier non signé] <==== ATTENTION
HKU\S-1-5-21-746888981-3114354517-946918332-1001\...\RunOnce: [Application Restart #2] => C:\Program Files\Google\Chrome\Application\chrome.exe --app-id=bflhgbnagapbmldflbbjhlmgoikgefin --origin-trial-disabled-features=WebGPU --profile-directory=Default --source-shortcut="C:\Users\carva\A (l'élément de données a 128 caractères en plus). [2693920 2023-12-20] (Google LLC -> Google LLC)
HKU\S-1-5-21-746888981-3114354517-946918332-1001\...\Policies\system: [DisableTaskMgr] 1
HKU\S-1-5-21-746888981-3114354517-946918332-1001\...\Policies\Explorer: [NoInstrumentation] 1
HKU\S-1-5-21-746888981-3114354517-946918332-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKU\S-1-5-21-746888981-3114354517-946918332-1001\...\MountPoints2: F - "F:\autorun.exe"
HKU\S-1-5-21-746888981-3114354517-946918332-1001\...\MountPoints2: G - "G:\autorun.exe"
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
Edge Notifications: Default -> hxxps://web.snapchat.com; hxxps://www.facebook.com; hxxps://www.instagram.com; hxxps://www.youtube.com; hxxps://www38.davisonbarker.pro; hxxps://www5.davisonbarker.pro; hxxps://www97.davisonbarker.pro
Edge HKU\S-1-5-21-746888981-3114354517-946918332-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [llbjbkhnmlidjebalopleeepgdfgcpec] - C:\Program Files (x86)\Internet Download Manager\IDMEdgeExt.crx <non trouvé(e)>
Edge HKLM-x32\...\Edge\Extension: [jcpgbnbdnakoblgfkbgggankeidkfcdl]
CHR Notifications: Default -> hxxps://advertizmenttoyou.com; hxxps://chaeffulace.com; hxxps://rencontre-ados.net; hxxps://sunwheather.biz; hxxps://web.snapchat.com
U3 aswbdisk; pas de ImagePath
S3 cpuz150; \??\C:\WINDOWS\temp\cpuz150\cpuz150_x64.sys [X]
U4 HomeGroupProvider; pas de ImagePath
S3 HWiNFO_180; \??\C:\Users\carva\AppData\Local\Temp\HWiNFO64A_180.SYS [X] <==== ATTENTION
cmd: netsh advfirewall reset
emptytemp:
end::