start:: CreateRestorePoint: CloseProcesses: Hosts: RemoveProxy: EmptyTemp: HKU\S-1-5-18\...\Winlogon: [Shell] C:\WINDOWS\Explorer.exe [4245280 2018-10-29] (Microsoft Windows -> Microsoft Corporation) <==== ATTENTION HKLM\Software\...\Authentication\Credential Providers: [{B7724AE5-1135-4889-8A5F-CA98BE6CA1ED}] -> C:\Program Files\TrueKey\McAfee.TrueKey.CredentialProvider.dll Lsa: [Notification Packages] scecli C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter "C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter" GroupPolicy: Restriction ? <==== ATTENTION URLSearchHook: HKU\S-1-5-21-4210535694-3972493108-31657176-1000 - (Pas de nom) - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - Pas de fichier SearchScopes: HKU\S-1-5-21-4210535694-3972493108-31657176-1000 -> {74C81CAD-9BAE-461d-9F19-3C50C578CEB2} URL = hxxp://www.google.com/custom?client=pub-3794288947762788&forid=1&channel= SearchScopes: HKU\S-1-5-21-4210535694-3972493108-31657176-1000 -> {CA5A317F-9BF7-4594-BD56-452493121DF2} URL = hxxp://fr.search.yahoo.com/search?p= BHO: True Key Helper -> {0F4B8786-5502-4803-8EBC-F652A1153BB6} -> C:\Program Files\Intel Security\True Key\MSIE\truekey_ie64.dll [2017-06-26] BHO-x32: True Key Helper -> {0F4B8786-5502-4803-8EBC-F652A1153BB6} -> C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2017-06-26] Toolbar: HKLM - True Key - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - C:\Program Files\Intel Security\True Key\MSIE\truekey_ie64.dll [2017-06-26] Toolbar: HKLM-x32 - True Key - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx S4 TrueKey; C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe [1001920 2017-06-26] S4 TrueKeyScheduler; C:\Program Files\TrueKey\McTkSchedulerService.exe [16928 2017-06-26] S4 TrueKeyServiceHelper; C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe [87760 2017-06-26] 2019-02-08 21:43 - 2019-02-08 21:43 - 000000000 ____D C:\WINDOWS\System32\Tasks\Avast Software 2019-02-03 17:37 - 2019-02-03 17:37 - 000000000 __HDC C:\ProgramData\{140CE139-D0F4-4EF9-9A3D-86818D04297A} 2019-02-03 17:37 - 2019-02-03 17:37 - 000000000 __HDC C:\ProgramData\{0E8F6469-0642-4696-A158-49CB976C1AAA} 2019-01-26 20:50 - 2019-01-26 20:50 - 000000000 __HDC C:\ProgramData\{92919916-8ED1-4FD4-ACE4-04FDC01ADD64} 2019-01-21 21:13 - 2019-01-21 21:13 - 000000000 __HDC C:\ProgramData\{377A9FAC-101B-4BBA-AB72-B393A22E15A1} 2019-01-16 21:15 - 2019-01-16 21:15 - 000000000 ____D C:\Users\monpc\AppData\Roaming\AVAST Software 2019-01-16 21:11 - 2019-01-16 21:11 - 000000000 ____D C:\Program Files\Common Files\AVAST Software 2019-01-16 21:11 - 2019-01-16 21:11 - 000000000 ____D C:\Program Files\AVAST Software 2019-01-16 21:10 - 2019-01-16 21:11 - 000000000 ____D C:\ProgramData\AVAST Software 2019-01-15 23:58 - 2019-01-15 23:58 - 000000000 ____D C:\Users\monpc\AppData\LocalLow\IObit 2019-01-15 23:58 - 2019-01-15 23:58 - 000000000 ____D C:\ProgramData\ProductData 2019-01-15 23:58 - 2019-01-15 23:58 - 000000000 ____D C:\ProgramData\{F86B0233-9A85-4589-8AAF-524CC4F8211B} 2019-01-15 23:57 - 2019-01-15 23:58 - 000000000 ____D C:\Users\monpc\AppData\Roaming\IObit 2019-01-15 23:57 - 2019-01-15 23:57 - 000000000 ____D C:\Program Files (x86)\IObit 2019-01-15 23:55 - 2019-01-15 23:58 - 000000000 ____D C:\ProgramData\IObit 2019-02-11 08:49 - 2016-01-08 15:53 - 000000000 ____D C:\Program Files (x86)\QuickTime 2019-02-11 08:47 - 2016-01-03 17:52 - 000000000 ____D C:\ProgramData\Norton 2019-01-12 16:51 - 2016-03-24 19:54 - 000000000 ____D C:\Program Files\Common Files\AV ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier ContextMenuHandlers1: [AccExt] -> [CC]{2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => -> Pas de fichier ContextMenuHandlers1: [Advanced SystemCare] -> [CC]{2803063F-4B8D-4dc6-8874-D1802487FE2D} => -> Pas de fichier ContextMenuHandlers1: [IZArcCM] -> [CC]{BC593DF5-466F-44EC-8FFD-C4DBC603B917} => -> Pas de fichier ContextMenuHandlers3: [MEGA (Context menu)] -> [CC]{0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> Pas de fichier ContextMenuHandlers4: [IZArcCM] -> [CC]{BC593DF5-466F-44EC-8FFD-C4DBC603B917} => -> Pas de fichier ContextMenuHandlers4: [MEGA (Context menu)] -> [CC]{0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> Pas de fichier Task: {3D74DB69-EA56-47E6-9FF6-A3F8A72CF9CB} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe (AVAST Software s.r.o. -> AVAST Software) Task: {41DB45A7-5C29-4F34-BE82-F7E1D48DF7E2} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe ShortcutWithArgument: C:\Users\mon_pcperso\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Games.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) -> /c "start hxxp://socialgames.splashtop.com/gbsp/mb/?p=w" HKLM\...\StartupApproved\Run32: => "QuickTime Task" MSCONFIG\Services: gramblrclient => 2 cmd: ipconfig /flushdns end::