Format du document : text/plain
Prévisualisation
start
CloseProcesses:
CreateRestorePoint:
HKU\S-1-5-21-957238617-2692493425-4021047399-1000\...\MountPoints2: {50e9f2f3-fc40-11e5-bd4c-806e6f6e6963} - E:\SETUP.EXE
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => -> Pas de fichier
Toolbar: HKU\S-1-5-21-957238617-2692493425-4021047399-1000 -> Pas de nom - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Pas de fichier
CHR StartupUrls: Default -> "hxxp://search.conduit.com/?ctid=CT3312375&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SPEE380344-2CDC-4F2B-B8AF-4FD362D0FF3C","hxxp://www.google.fr/webhp?source=search_app","hxxp://home.sweetim.com/?crg=3.1010000.10025&barid={ED110C7D-251B-11E2-87C6-90FBA6E126F1}","hxxp://home.sweetim.com/?crg=3.1010000.10025&barid={44D91D3B-AAA0-4AB2-A77D-E63FF657909A}","hxxp://searchfunmoods.com/?f=1&a=ironpub12&ir=ironpub12&cd=2XzuyEtN2Y1L1QzuyC0CyCtByC0D0EyByE0E0E0EtC0F0BzytN0D0Tzu0CtAyCyBtN1L2XzutBtFtBtFtCtFyEtDyB&cr=1156699987","hxxp://home.sweetim.com/?st=2&barid={44D91D3B-AAA0-4AB2-A77D-E63FF657909A}","hxxp://www1.delta-search.com/?affID=119654&babsrc=HP_ss&mntrId=04F290FBA6E126F1","hxxp://www.google.com/","hxxp://search.conduit.com/?ctid=CT3312375&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SPEE380344-2CDC-4F2B-B8AF-4FD362D0FF3C","hxxp://www.google.com","","hxxp://fr.msn.com/?pc=UP97&ocid=UP97DHP","hxxp://www.mystartsearch.com/?type=hp&ts=1420116393&from=wpc&uid=ADATAXSP900_7E4920005496","hxxp://fr.yhs4.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wny_ggfc_15_15¶m1=1¶m2=f%3D7%26b%3DChrome%26cc%3Dfr%26pa%3DWinYahoo%26cd%3D2XzuyEtN2Y1L1QzuzztD0CtCyC0EyDyEtCzytD0F0F0A0DtCtN0D0Tzu0StCtCzyyCtN1L2XzutAtFzytFzztFtDtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StAyE0C0EyD0CyByEtG0E0E0A0EtG0B0DtByBtGyD0DyE0EtGtA0EyDtCtD0C0B0AyByB0FtB2QtN1M1F1B2Z1V1N2Y1L1Qzu2StCtBzy0DyCtAyDtAtG0FzzyDtDtGyE0B0D0AtGzz0D0EyDtG0CtDyEzzzyyB0ByE0A0A0FyB2QtN0A0LzuyE%26cr%3D1472015307%26a%3Dwny_ggfc_15_15%26os%3DWindows 7 Home Premium"
CHR DefaultSearchKeyword: Default -> lp
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fhoibnponjcgjgcnfacekaijdbbplhib] - hxxps://chrome.google.com/webstore/detail/fhoibnponjcgjgcnfacekaijdbbplhib
S3 gdrv; \??\C:\Windows\gdrv.sys [X]
S2 MBAMChameleon; \SystemRoot\system32\drivers\MBAMChameleon.sys [X]
S3 GPCIDrv; \??\C:\Program Files (x86)\GIGABYTE\GIGABYTE OC_GURU II\GPCIDrv64.sys [X]
U2 NIHardwareService; pas de ImagePath
U2 Parvdm; pas de ImagePath
U2 srService; pas de ImagePath
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
EmptyTemp:
end