cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Start::
SystemRestore: on
CreateRestorePoint:
CloseProcesses:
HKU\S-1-5-21-482706919-1025286552-3942478099-1001\...\MountPoints2: {bf8f6e57-b136-11e8-a48e-409f38ec1620} - "G:\Lenovo_Suite.exe"
SearchScopes: HKU\S-1-5-21-482706919-1025286552-3942478099-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-482706919-1025286552-3942478099-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
FF ProfilePath: C:\Users\raymo\AppData\Roaming\Old Thunderbird\Profiles\5ahnicmu.default [non trouvé(e)] <==== ATTENTION
FF Extension: (Pas de nom) - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com [non trouvé(e)]
FF DownloadDir: D:\FENETRE REPETITIVE
CHR Notifications: Default -> hxxps://assiste.com; hxxps://www.forumipad.fr
CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxp://www.searchnu.com/406","hxxp://www.delta-search.com/?affID=119370&babsrc=HP_ss&mntrId=BC059A9FFA3D6D6F","hxxps://www.google.com/intl/fr/chrome/browser/welcome.html","hxxp://www1.delta-search.com/?babsrc=HP_ss&mntrId=BC059A9FFA3D6D6F&affID=119556&tl=gcn18169&tsp=4957","hxxp://start.mysearchdial.com/?f=1&a=tele0103&cd=2XzuyEtN2Y1L1Qzu0EzztCtCtAtBzzzzyC0EyCtCyEyCyE0DtN0D0Tzu0SyByDzztN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=701955323&ir=","hxxp://orange.fr/","hxxp://orange.fr/","hxxp://portail%20orange.fr/","hxxps://www.google.com/"
S4 mccspsvc; "C:\Program Files\Common Files\McAfee\CSP\3.1.233.0\\McCSPServiceHost.exe" [X]
C:\Program Files\Common Files\McAfee
AS: McAfee VirusScan (Enabled - Up to date) {30AC4D1E-F45E-3AA6-6448-D23DAB3B5501}
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"
HKU\S-1-5-21-482706919-1025286552-3942478099-1001\...\StartupApproved\Run: => "CCleanerBrowserAutoLaunch_49D57485B8995F51889F096EDE65661A"
FirewallRules: [{4C231D4B-8158-4908-9C1E-24C6E2092140}] => (Allow) C:\Users\raymo\Downloads\IperiusRemote(1).exe Pas de fichier
FirewallRules: [{5B899E1B-4E9C-4197-830F-8A5EFA6EC180}] => (Allow) C:\Users\raymo\Downloads\IperiusRemote(1).exe Pas de fichier
FirewallRules: [{705FD9F1-71A9-458F-A214-5FC404ACF799}] => (Allow) C:\Program Files (x86)\Iperius Backup\Iperius.exe Pas de fichier
FirewallRules: [{76938CFE-8A37-42CB-BDA9-9E73F0C248E3}] => (Allow) C:\Program Files (x86)\Iperius Backup\Iperius.exe Pas de fichier
FirewallRules: [{DED7FBA1-8ECB-4A7D-8822-117CBA8538C0}] => (Allow) C:\Program Files (x86)\Iperius Backup\IperiusService.exe Pas de fichier
FirewallRules: [{51C8B01C-2C26-4103-B388-F66E6CFFD268}] => (Allow) C:\Program Files (x86)\Iperius Backup\IperiusService.exe Pas de fichier
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\PDF Creator\PDF Creator.lnk -> C:\Program Files (x86)\PDF Creator\PDF Creator.exe (Pas de fichier)
Shortcut: C:\Users\raymo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IperiusRemote.lnk -> C:\Users\raymo\Downloads\IperiusRemote.exe (Pas de fichier)
Shortcut: C:\Users\raymo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Support (2).lnk -> C:\Users\raymo\AppData\Local\LogMeIn Rescue Applet\LMIR1047C001.tmp\LMI_Rescue.exe (Pas de fichier)
Shortcut: C:\Users\raymo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Support.lnk -> C:\Users\raymo\AppData\Local\LogMeIn Rescue Applet\LMIR0AA79001.tmp\LMI_Rescue.exe (Pas de fichier)
Shortcut: C:\Users\raymo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\CCleaner Browser.lnk -> C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe (Pas de fichier)
Shortcut: C:\Users\VIVIANE\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\CCleaner Browser.lnk -> C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe (Pas de fichier)
cmd: powershell "Get-AppxPackage -AllUsers *ReaderNotificationClient_1.0.4.0_x86* | Remove-AppxPackage"
removeproxy:
c:\windows\temp\*.*
C:\Users\CurrentUserName\AppData\Local\Temp\*.*
emptytemp:
End::

Publicité


Signaler le contenu de ce document

Publicité