cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Start::
CloseProcesses: ou reboot:
EmptyTemp:
HKLM-x32\...\RunOnce: [360safeuninst_1f0fb7c2d13cc0c07ff2ca40747bc03e] => C:\Users\Ludo\AppData\Local\Temp\1f0fb7c2d13cc0c07ff2ca40747bc03e_remove360.bat [587 2018-07-24] () <==== ATTENTION
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
HKU\S-1-5-21-4186651010-2609984901-3553490014-1000\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
HKU\S-1-5-21-4186651010-2609984901-3553490014-1001\...\Run: [8470556] => C:\Users\Ludo\AppData\Roaming\n3srd3kmdxj\w1hr40hvcaf.exe [713206 2018-07-24] ( )
HKU\S-1-5-21-4186651010-2609984901-3553490014-1001\...\Run: [5615522] => C:\Users\Ludo\AppData\Roaming\lslsvmxhqld\qwtalhkuzhy.exe [713206 2018-07-24] ( )
HKU\S-1-5-80-3474501146-2690987104-1058319931-3814775573-4026506562\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
C:\Users\Ludo\AppData\Local\Temp\1f0fb7c2d13cc0c07ff2ca40747bc03e_remove360.bat
C:\Users\Ludo\AppData\Roaming\lslsvmxhqld\qwtalhkuzhy.exe
C:\Users\Ludo\AppData\Roaming\n3srd3kmdxj\w1hr40hvcaf.exe
C:\Program Files\WCK7DHJ6M8
C:\Program Files\OTH8EVTZHY
C:\Program Files\NFPH1C808O
C:\Program Files (x86)\4iw3wt11pfx
C:\Users\Ludo\AppData\Roaming\WidModule
C:\Users\Ludo\AppData\Roaming\n3srd3kmdxj
C:\Users\Ludo\AppData\Roaming\lslsvmxhqld
BHO-x32: Pas de nom -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> Pas de fichier
FF user.js: detected! => C:\Users\Ludo\AppData\Roaming\Mozilla\Firefox\Profiles\0kit4euy.default\user.js [2017-06-30]
FF Extension: (System Table) - C:\Users\Ludo\AppData\Roaming\Mozilla\Firefox\Profiles\0kit4euy.default\Extensions\383882@modext.tech.xpi [2018-06-20]
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\secure_cert.js [2018-07-24] <==== ATTENTION
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\browser\defaults\preferences\firefox.js [2018-07-24]
CHR Extension: (Pas de nom) - C:\Users\Ludo\AppData\Local\Google\Chrome\User Data\Default\SystemTable\1.2_0 [2018-07-24]
S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
R2 NDFjMzdjZ; rundll32.exe C:\WINDOWS\kuspbujsasczkvbi.kwsp QxnVVXlRJoZpEbPopnV [X]
R2 NWVjZTZhMT; C:\Program Files\NWVjZTZhMT\MGY5N.exe [1485184 2018-07-22] ()
S4 QHActiveDefense; "C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe" [X]
C:\Program Files\NWVjZTZhMT\MGY5N.exe
C:\Program Files\NWVjZTZhMT
HKLM\SYSTEM\CurrentControlSet\Services\360FsFlt
R1 MWQ2MT; C:\WINDOWS\System32\drivers\MWQ2MT.sys [201816 2018-07-22] ()
C:\WINDOWS\System32\drivers\MWQ2MT.sys
CustomCLSID: HKU\S-1-5-21-4186651010-2609984901-3553490014-1001_Classes\CLSID\{23066764-9BDD-4FBD-8B1F-F4547CF2684F}\InprocServer32 -> C:\Users\Ludo\AppData\Local\Microsoft\OneDrive\18.070.0405.0002\amd64\FileSyncShell64.dll => Pas de fichier
CustomCLSID: HKU\S-1-5-21-4186651010-2609984901-3553490014-1001_Classes\CLSID\{cece6816-6107-4dc7-bdbc-20cd5ae1ffed}\localserver32 -> C:\ProgramData\Lenovo\ImController\Plugins\LenovoAppPromotionPlugin\x64\DesktopToastsHelper.exe => Pas de fichier
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Ludo\AppData\Local\MEGAsync\ShellExtX64.dll -> Pas de fichier
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Ludo\AppData\Local\MEGAsync\ShellExtX64.dll -> Pas de fichier
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Ludo\AppData\Local\MEGAsync\ShellExtX64.dll -> Pas de fichier
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Ludo\AppData\Local\MEGAsync\ShellExtX64.dll -> Pas de fichier
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Ludo\AppData\Local\MEGAsync\ShellExtX64.dll -> Pas de fichier
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Ludo\AppData\Local\MEGAsync\ShellExtX64.dll -> Pas de fichier
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Ludo\AppData\Local\MEGAsync\ShellExtX64.dll -> Pas de fichier
ContextMenuHandlers1: [PDFCreator.ShellContextMenu] -> {d9cea52e-100d-4159-89ea-76e845bc13e1} => C:\Windows\system32\mscoree.dll [2018-04-12] (Microsoft Corporation)
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Ludo\AppData\Local\MEGAsync\ShellExtX64.dll -> Pas de fichier
ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Ludo\AppData\Local\MEGAsync\ShellExtX64.dll -> Pas de fichier
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier
Task: {31C07343-BD67-4A6D-BA9C-76789000FD6C} - System32\Tasks\App Explorer => C:\Users\Ludo\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe [2018-05-29] (SweetLabs, Inc) <==== ATTENTION
C:\Users\Ludo\AppData\Local\Host App Service
Task: {B5531182-C602-4AE8-AE3C-490BC8CE7A6E} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION
Task: {FFD4EA5B-03F4-479E-A57A-78F5BE45B072} - System32\Tasks\Microsoft\Windows\Setup\Notifier => C:\WINDOWS\system32\Notifier.exe
End::

Publicité


Signaler le contenu de ce document

Publicité