start::
closeprocesses:
createrestorepoint:
defaultuser0 (S-1-5-21-1518231923-1862033858-1697646291-1000 - Limited - Disabled) => C:\Users\defaultuser0
CustomCLSID: HKU\S-1-5-21-1518231923-1862033858-1697646291-1001_Classes\CLSID\{E6A90DBA-0ABC-4B57-924C-E1EA2ECA7648}\InprocServer32 -> C:\Program Files\Mozilla Firefox\notificationserver.dll => Pas de fichier
FirewallRules: [UDP Query User{46506AB1-90BA-420F-9E6F-36E14F519448}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe => Pas de fichier
FirewallRules: [TCP Query User{9EC1095F-8975-4E5A-8B34-75CD75C4033B}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe => Pas de fichier
FirewallRules: [{94B5504D-3C2E-474F-A61B-6B1BFB6A2783}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe => Pas de fichier
FirewallRules: [{C5578037-0EBA-423E-89E6-3F896869132B}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe => Pas de fichier
HKLM\Software\Policies\...\system: [EnableSmartScreen] 0
Task: {00A2FA57-FA1A-4272-BB67-A548DDAB636F} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION
Task: {36E833E3-8629-4102-B93C-E66EB5CD5675} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" (Pas de fichier)
HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings: [ProxySettingsPerUser] 0 <==== ATTENTION (Restriction - ProxySettings)
ProxyEnable: [HKLM] => Proxy est activé.
ProxyEnable: [HKLM-x32] => Proxy est activé.
ProxyServer: [HKLM] => http=127.0.0.1:8080;https=127.0.0.1:8080
ProxyServer: [HKLM-x32] => http=127.0.0.1:8080;https=127.0.0.1:8080
ProxyEnable: [S-1-5-21-1518231923-1862033858-1697646291-1001] => Proxy est activé.
ProxyServer: [S-1-5-21-1518231923-1862033858-1697646291-1001] => http=127.0.0.1:8080;https=127.0.0.1:8080
ManualProxies: 1http=127.0.0.1:8080;https=127.0.0.1:8080 <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
DnsPolicyConfig: [DNS_RESILIENCY_fe3cr.delivery.mp.microsoft.com] => GenericDNSServers=162.159.36.2
DnsPolicyConfig: [DNS_RESILIENCY_slscr.update.microsoft.com] => GenericDNSServers=162.159.36.2
S3 cpuz149; \??\C:\WINDOWS\temp\cpuz149\cpuz149_x64.sys [X] <==== ATTENTION
S3 dg_ssudbus; \SystemRoot\system32\DRIVERS\ssudbus2.sys [X]
2024-03-05 21:11 - 2020-08-22 12:39 - 000000000 ____D C:\Users\defaultuser0
2024-03-05 21:11 - 2017-12-06 00:39 - 000000000 ____D C:\Users\Mathieu\AppData\Roaming\vlc
2024-03-05 21:11 - 2017-12-03 21:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico
2024-03-05 21:11 - 2017-12-03 21:47 - 000000000 ____D C:\Program Files\KMSpico
cmd: cscript %windir%\System32\slmgr.vbs /dli
removeproxy:
emptytemp:
end::