start::
closeprocesses:
createrestorepoint:
FW: McAfee (Enabled) {33DABA11-0345-2098-851C-6841DCAA8BCD}
AV: Malwarebytes (Enabled - Up to date) {0D452135-A081-B000-D6B6-132E52638543}
CustomCLSID: HKU\S-1-5-21-95471385-312251383-2276678515-1001_Classes\CLSID\{89b2b650-c4dd-d68b-46e7-3176f1973c8b}\localserver32 -> "C:\Program Files\Voicemod Desktop\VoicemodDesktop.exe" -ToastActivated => Pas de fichier
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2024-02-12] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2024-02-12] (Malwarebytes Inc. -> Malwarebytes)
AlternateDataStreams: C:\Users\louis\Downloads\FRST64.exe:MBAM.Zone.Identifier [240]
AlternateDataStreams: C:\Users\louis\Downloads\McAfee_Installer_serial_rpt6CO0Jh-PcBkHgQlv5JA2_key_affid_0_akey.exe:MBAM.Zone.Identifier [233]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [4374]
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
Task: {EA374ADE-45DC-4D46-8777-4B064DEFDC9E} - System32\Tasks\McAfee\WPS\amwebapitriggertask => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D
Task: {31641028-2011-495E-BA32-AB87BE9D1258} - System32\Tasks\McAfee\WPS\AntiTrackerTask => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D
Task: {3B1E7354-68A9-4384-9FEC-DE1F9EB24390} - System32\Tasks\McAfee\WPS\datupdatetask => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D
Task: {C97209EE-EF75-47E6-A8B2-FCFFA945E1AB} - System32\Tasks\McAfee\WPS\mcpcoscanner => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D
Task: {7C2D5C8B-6718-49D8-A2A0-146D05A80EC7} - System32\Tasks\McAfee\WPS\NGMCadence => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D
Task: {452F3CC5-2660-488E-B5EE-D9E9CF508E08} - System32\Tasks\McAfee\WPS\odsscheduledtask => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D
Task: {6D063954-30D6-4497-ACC2-58CA1E60542B} - System32\Tasks\McAfee\WPS\systemrebootedtask => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D
Task: {1089727D-0207-4EE1-A8C6-1F46071DDEAD} - System32\Tasks\McAfee\WPS\tracker_remover => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9410296 2024-02-12] (Malwarebytes Inc. -> Malwarebytes)
C:\Program Files\Malwarebytes
R2 mbamchameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [223296 2024-02-12] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [21480 2024-02-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [200104 2024-02-12] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [78400 2024-02-12] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [239576 2024-02-12] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMWebProtection; C:\Windows\system32\DRIVERS\mwac.sys [188784 2024-02-12] (Malwarebytes Inc. -> Malwarebytes)
S3 SIUSBXP; \??\C:\Windows\system32\drivers\SiUSBXp.sys [X]
2024-02-12 15:12 - 2024-02-12 15:12 - 008791352 ____X (Malwarebytes) C:\Users\louis\Downloads\AdwCleaner.exe
2024-02-12 15:02 - 2024-02-12 15:02 - 000000584 __RSH C:\ProgramData\ntuser.pol
2024-02-12 14:58 - 2024-02-12 14:58 - 000000000 ____D C:\Windows\system32\Tasks\McAfee
2024-02-12 14:57 - 2024-02-12 15:01 - 000000000 ____D C:\ProgramData\McAfee
2024-02-12 14:57 - 2024-02-12 14:58 - 000000000 ____D C:\ProgramData\WPSInstallerTemp1
2024-02-12 14:57 - 2024-02-12 14:57 - 004642496 ____X (McAfee, LLC) C:\Users\louis\Downloads\McAfee_Installer_serial_rpt6CO0Jh-PcBkHgQlv5JA2_key_affid_0_akey.exe
2024-02-12 14:57 - 2024-02-12 14:57 - 000000000 ____D C:\Program Files\McAfee
2024-02-12 14:47 - 2024-02-12 14:47 - 000000000 ___HD C:\$WinREAgent
2024-02-12 14:25 - 2024-02-12 14:27 - 000000000 ____D C:\Users\louis\AppData\Local\Malwarebytes
2024-02-12 14:25 - 2024-02-12 14:25 - 000188784 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2024-02-12 14:25 - 2024-02-12 14:25 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2024-02-12 14:24 - 2024-02-12 14:24 - 002582384 ____X (Malwarebytes) C:\Users\louis\Downloads\MBSetup.exe
2024-02-12 14:24 - 2024-02-12 14:24 - 000000000 ____D C:\ProgramData\Malwarebytes
2024-02-12 14:24 - 2024-02-12 14:24 - 000000000 ____D C:\Program Files\Malwarebytes
cmd: netsh advfirewall reset
cmd: sfc /scannow
emptytemp:
end::