Start::
CreateRestorePoint:
CloseProcesses:
GroupPolicy: Restriction
BHO: Pas de nom -> {13D67BB7-DB5F-48AA-884D-7A5D94168509} -> Pas de fichier
BHO-x32: Pas de nom -> {13D67BB7-DB5F-48AA-884D-7A5D94168509} -> Pas de fichier
FF Extension: (Video Downloader professional) - C:\Users\roland\AppData\Roaming\Mozilla\Firefox\Profiles\2zc2vpnp.default-1470829052815\Extensions\
ffext_basicvideoext@startpage24.xpi [2018-01-05]
FF Extension: (Flash Video Downloader) - C:\Users\roland\AppData\Roaming\Mozilla\Firefox\Profiles\2zc2vpnp.default-1470829052815\Extensions\
artur.dubovoy@gmail.com.xpi [2018-01-06]
C:\Users\roland\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\pbdpajcdgknpendpmecafmopknefafha [2017-09-12]
R2 17664cb2c0ff802368a8aa6cabddc412; C:\WINDOWS\17664cb2c0ff802368a8aa6cabddc412.dll [957952 2018-01-20] () [Fichier non signé]
R1 1ee00d8fec8ec1a00666a46f149e2f86; C:\WINDOWS\system32\drivers\1ee00d8fec8ec1a00666a46f149e2f86.sys [97776 2018-01-20] ()
R1 37c94ae739eef7a401ad95b6c3921afe; C:\WINDOWS\system32\drivers\37c94ae739eef7a401ad95b6c3921afe.sys [97256 2018-01-09] ()
R1 50152603ed5007648a460c41dab3d1d5; C:\WINDOWS\system32\drivers\50152603ed5007648a460c41dab3d1d5.sys [97272 2018-01-03] ()
R1 8a61b2c61dd807906ca7759b5abe4424; C:\WINDOWS\system32\drivers\8a61b2c61dd807906ca7759b5abe4424.sys [97272 2018-01-08] ()
R1 b6a8f77c278ce0055f80a78d189a2355; C:\WINDOWS\system32\drivers\b6a8f77c278ce0055f80a78d189a2355.sys [101408 2017-12-08] ()
R1 cce4cb2dceed2c4a453ea98ed1b1eb1f; C:\WINDOWS\system32\drivers\cce4cb2dceed2c4a453ea98ed1b1eb1f.sys [97272 2018-01-16] ()
R1 fbcc7b730c7bf844560f6768926e9700; C:\WINDOWS\system32\drivers\fbcc7b730c7bf844560f6768926e9700.sys [106520 2017-12-19] ()
2018-01-20 10:59 - 2018-01-20 10:59 - 000906240 _____ C:\WINDOWS\e7d0a2b1b5c601fece22e9d7da466f25.exe
2018-01-20 10:59 - 2018-01-20 10:59 - 000097776 _____ C:\WINDOWS\system32\Drivers\1ee00d8fec8ec1a00666a46f149e2f86.sys
2018-01-20 10:59 - 2018-01-20 10:59 - 000037165 _____ C:\WINDOWS\uninstaller.dat
2018-01-17 20:24 - 2018-01-20 20:32 - 000957952 _____ C:\WINDOWS\17664cb2c0ff802368a8aa6cabddc412.dll
2018-01-16 16:28 - 2018-01-16 16:28 - 000097272 _____ C:\WINDOWS\system32\Drivers\cce4cb2dceed2c4a453ea98ed1b1eb1f.sys
2018-01-09 17:51 - 2018-01-09 17:51 - 000097256 _____ C:\WINDOWS\system32\Drivers\37c94ae739eef7a401ad95b6c3921afe.sys
2018-01-08 13:54 - 2018-01-08 13:54 - 000097272 _____ C:\WINDOWS\system32\Drivers\8a61b2c61dd807906ca7759b5abe4424.sys
2018-01-05 11:17 - 2018-01-24 13:03 - 000000000 ____D C:\Program Files\0c24e463d34d7012a3d797890a6011e9
2018-01-03 11:38 - 2018-01-03 11:38 - 000097272 _____ C:\WINDOWS\system32\Drivers\50152603ed5007648a460c41dab3d1d5.sys
C:\Program Files\Advanced-PC-Care
C:\PROGRA~2\FASTDA~1
C:\WINDOWS\17664cb2c0ff802368a8aa6cabddc412.ps1
C:\WINDOWS\17664cb2c0ff802368a8aa6cabddc412.dll
C:\WINDOWS\system32\drivers\b6a8f77c278ce0055f80a78d189a2355.sys
C:\WINDOWS\system32\drivers\fbcc7b730c7bf844560f6768926e9700.sys
HKU\S-1-5-21-1113307766-930362309-2852264658-1001\...\ChromeHTML: ->
Task: {181EE515-366F-4132-8429-50589DD9CA2A} - System32\Tasks\Advanced-PC-Care_Logon => C:\Program Files\Advanced-PC-Care\apc.exe
Task: {3514FEF6-6EBF-42FA-B8DD-618C56105A63} - System32\Tasks\FastDataX Task => C:\PROGRA~2\FASTDA~1\FASTDA~1.EXE
Task: {9C405CD9-3A05-4D2B-99AF-BA5661C8A569} - System32\Tasks\0c24e463d34d7012a3d797890a6011e9 => sc start 0c24e463d34d7012a3d797890a6011e9
Task: {E0DC5E30-4991-46B0-B50E-4424A7C2AB8C} - System32\Tasks\Launch 4478 => msiexec /q /x "{33BABF46-8430-47a8-A98C-88B1E9DA5DE6}"
Task: {E43A1558-468C-4CCB-AA4E-C2E14E97CE17} - System32\Tasks\17664cb2c0ff802368a8aa6cabddc412 => powershell.exe -NoProfile -NoLogo -NonInteractive -ExecutionPolicy Bypass -File "C:\WINDOWS\17664cb2c0ff802368a8aa6cabddc412.ps1"
Hosts:
EmptyTemp:
End::