1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41
| Start
CreateRestorePoint:
Closeprocesses:
Emptytemp:
CHR DefaultSearchURL: Default -> hxxp://srch.bar/{searchTerms}
CHR DefaultSuggestURL: Default -> hxxp://srch.bar/?s={searchTerms}
BHO-x32: Pas de nom -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> Pas de fichier
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [Pas de fichier]
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [Pas de fichier]
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [Pas de fichier]
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\.DEFAULT -> {2211d4a5-48d0-47f5-a7cd-81e861470f7f} URL =
GroupPolicy: Restriction ? <==== ATTENTION
DPF: HKLM-x32 {8FEFF364-6A5F-4966-A917-A3AC28411659} hxxp://download.sopcast.com/download/SOPCORE.CAB
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Search the Web (Yahoo) (HKLM-x32\...\{793391F3-29B3-4073-9833-30F348B3E373}) (Version: - ) <==== ATTENTION
Task: {D50F46B4-4AEC-4635-A623-C4ED31335434} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION
Task: {E4DC3E86-2717-451D-8739-E0986BE2C808} - System32\Tasks\{6DF20934-C842-3000-66B5-7086B6B2ECDA} => C:\Users\maril\AppData\Roaming\Dulapa\updtask.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\Secured Yahoo Powered todic.job => Wscript.exe C:\ProgramData\{B40A7169-3E48-FBAF-B88E-65ED22CCEE23}\fota.txt <==== ATTENTION
Task: C:\WINDOWS\Tasks\Yahoo! Powered todic.job => Wscript.exe C:\ProgramData\{B7E57286-3DA7-F840-BB61-66022123EDCC}\fota.txt <==== ATTENTION
Task: C:\WINDOWS\Tasks\{6DF20934-C842-3000-66B5-7086B6B2ECDA}.job => C:\Users\maril\AppData\Roaming\Dulapa\updtask.exe <==== ATTENTION
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier
ContextMenuHandlers1: [ASZip] -> {d03d3e68-0f44-3d45-b15f-bcfd8a8b4c7e} => -> Pas de fichier
ContextMenuHandlers1: [ASZip64] -> {d03d3e78-0f44-3d45-b15f-bcfd8a8b4c7e} => -> Pas de fichier
ContextMenuHandlers3: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier
ContextMenuHandlers6: [ASZip] -> {d03d3e68-0f44-3d45-b15f-bcfd8a8b4c7e} => -> Pas de fichier
ContextMenuHandlers6: [ASZip64] -> {d03d3e78-0f44-3d45-b15f-bcfd8a8b4c7e} => -> Pas de fichier
Task: {D50F46B4-4AEC-4635-A623-C4ED31335434} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION
RemoveProxy:
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state ON
CMD: ipconfig /flushdns
CMD: netsh winsock reset catalog
CMD: netsh int ip reset c:\resetlog.txt
CMD: ipconfig /release
CMD: ipconfig /renew
CMD: netsh int ipv4 reset
CMD: netsh int ipv6 reset
CMD: bitsadmin /reset /allusers
End |
Partager