start:: CreateRestorePoint: CloseProcesses: Hosts: RemoveProxy: EmptyTemp: ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier GroupPolicy: Restriction <==== ATTENTION HKU\S-1-5-21-532942862-2534814523-349157211-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://fr.search.yahoo.com/yhs/web?hspart=arh&hsimp=yhs-001&type=zxy_f5135846605f5bccba¶m1=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%3D¶m2=MWB9LGB4MGRc SearchScopes: HKU\S-1-5-21-532942862-2534814523-349157211-1001 -> DefaultScope {E0CFC9BD-7D0B-4D09-8715-5E018AA285AC} URL = hxxps://fr.search.yahoo.com/yhs/search?hspart=arh&hsimp=yhs-001&type=zxy_f5135846605f5bccba¶m1=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%3D¶m2=NatcMqJdMqR8&p={searchTerms} SearchScopes: HKU\S-1-5-21-532942862-2534814523-349157211-1001 -> {2211d4a5-48d0-47f5-a7cd-81e861470f7f} URL = SearchScopes: HKU\S-1-5-21-532942862-2534814523-349157211-1001 -> {26080cad-4adc-49ac-8c63-eda16e595cbd} URL = hxxp://www.surf-live.com/web?q={searchTerms} SearchScopes: HKU\S-1-5-21-532942862-2534814523-349157211-1001 -> {E0CFC9BD-7D0B-4D09-8715-5E018AA285AC} URL = hxxps://fr.search.yahoo.com/yhs/search?hspart=arh&hsimp=yhs-001&type=zxy_f5135846605f5bccba¶m1=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%3D¶m2=NatcMqJdMqR8&p={searchTerms} CHR HomePage: Default -> hxxp://www.surf-live.com/ CHR StartupUrls: Default -> "hxxps://www.google.fr/" CHR NewTab: Default -> Not-active:"chrome-extension://fimgpamnkpcmmgggkmaalpdiclnpbhge/index.html", Not-active:"chrome-extension://fdbdnchjdanofcaopioombeodahfbeha/stubby.html", Not-active:"chrome-extension://nbobgfgfellfiebieoemggdbdkjlbice/stubby.html", Not-active:"chrome-extension://fecaedcikolnfbljlgnjfbdiahdflijc/stubby.html" CHR HKLM\...\Chrome\Extension: [bpmmandcadflhnnaiclipadomfmdbjbp] - hxxps://clients2.google.com/service/update2/crx CHR HKLM\...\Chrome\Extension: [pbofdmdkmmhmgmiecoaofbgfdahcdflp] - hxxps://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-532942862-2534814523-349157211-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bpmmandcadflhnnaiclipadomfmdbjbp] - hxxps://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-532942862-2534814523-349157211-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-532942862-2534814523-349157211-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pbofdmdkmmhmgmiecoaofbgfdahcdflp] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [bpmmandcadflhnnaiclipadomfmdbjbp] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [ibbfklbaljofpaanmpaeadejijfdddco] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [jkfpchpiljkaemlpmpebnglgkomamfeo] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [pbofdmdkmmhmgmiecoaofbgfdahcdflp] - hxxps://clients2.google.com/service/update2/crx CHR Extension: (Yahoo Partner) - C:\Users\Maire Becquante\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ibbfklbaljofpaanmpaeadejijfdddco [2017-05-28] cmd: ipconfig /flushdns end::