start::
CreateRestorePoint:
CloseProcesses:
Hosts:
RemoveProxy:
SearchScopes: HKU\S-1-5-21-1068855662-3320445361-1472318693-1001 -> DefaultScope {94553F5B-FF49-4C24-B450-547C7A69C488} URL = hxxp://www.accueil-nav.com/search?q=
SearchScopes: HKU\S-1-5-21-1068855662-3320445361-1472318693-1001 -> {94553F5B-FF49-4C24-B450-547C7A69C488} URL = hxxp://www.accueil-nav.com/search?q=
SearchScopes: HKU\S-1-5-21-1068855662-3320445361-1472318693-1001 -> {CCE020BB-F105-4440-B676-FBAF613D2448} URL =
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll => Pas de fichier
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2019-08-22]
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2019-08-22]
Toolbar: HKU\S-1-5-21-1068855662-3320445361-1472318693-1001 -> Pas de nom - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Pas de fichier
Edge HomeButtonPage: HKU\S-1-5-21-1068855662-3320445361-1472318693-1001 -> hxxp://www.accueil-nav.com/
BootExecute: autocheck autochk * sdnclean64.exe
Task: {17D8024B-8BCE-40A7-A325-88256EC49F16} - \WPD\SqmUpload_S-1-5-21-1068855662-3320445361-1472318693-1001 -> Pas de fichier
Task: {28062BD1-06D5-4C1B-9612-636F5226ADDD} - \Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance -> Pas de fichier
Task: {3D93EF92-E95D-4884-BC46-82849CB38729} - \Lenovo\ImController\TimeBasedEvents\8ea78323-2a4b-47a5-83ec-185892d67bf1 -> Pas de fichier
Task: {6A1111F0-6EC1-4595-ACE2-E150569A5CF3} - \Lenovo\ImController\TimeBasedEvents\23bb3322-3157-492f-9450-dbb238006a1a -> Pas de fichier
Task: {71FEE79A-FC7B-4C91-AF17-ECE18147C6C1} - \Lenovo\ImController\TimeBasedEvents\134a23b9-553e-4bfe-86dc-2b2fc671d1b6 -> Pas de fichier
Task: {826691E9-F6F1-4196-8B6E-F09E0C53537C} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [4829904 2017-05-23] (Safer-Networking Ltd. -> Safer-Networking Ltd.)
Task: {82CAD938-749A-4A2C-BD6D-ACCF8DF756D0} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [6191000 2017-05-23] (Safer-Networking Ltd. -> Safer-Networking Ltd.)
Task: {A380C7C6-5192-46D3-AD5C-FC7E625139EA} - \Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask -> Pas de fichier
Task: {D881E8F1-840D-4FFB-B4D0-1CD941B1A385} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2045832 2019-08-19]
Task: {D94D8034-F073-4F06-B15D-771ED9D4E92C} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [5751664 2017-05-23]
Task: {E1FD62D4-580F-4378-BD83-4CCC73FEA6EA} - \Lenovo\ImController\Lenovo iM Controller Monitor -> Pas de fichier
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js [2019-05-21] <==== ATTENTION (Pointe vers un fichier *.cfg)
FF ExtraCheck: C:\Program Files\mozilla firefox\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg [2019-05-21]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2019-08-22]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
CHR StartupUrls: Default -> "hxxp://www.accueil-nav.com/"
CHR HKLM\...\Chrome\Extension: [apdjlcjphpkfmnfnflpokbbemclohbmc] - hxxps://chrome.google.com/webstore/detail/apdjlcjphpkfmnfnflpokbbemclohbmc
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [kgleflkdamakpmckkidkcmnmdikbbmok] - hxxps://chrome.google.com/webstore/detail/kgleflkdamakpmckkidkcmnmdikbbmok
CHR HKLM-x32\...\Chrome\Extension: [apdjlcjphpkfmnfnflpokbbemclohbmc] - hxxps://chrome.google.com/webstore/detail/apdjlcjphpkfmnfnflpokbbemclohbmc
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [kgleflkdamakpmckkidkcmnmdikbbmok] - hxxps://chrome.google.com/webstore/detail/kgleflkdamakpmckkidkcmnmdikbbmok
CHR HKLM-x32\...\Chrome\Extension: [onghofjobpgcdeeifjfbcfepkchnenoh] - hxxps://clients2.google.com/service/update2/crx
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [905472 2019-08-22]
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1776864 2017-05-23]
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2131760 2017-05-23]
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [233936 2017-05-23]
U3 aswbdisk; pas de ImagePath
U3 aswblog; pas de ImagePath
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier
ContextMenuHandlers1: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2017-05-23]
ContextMenuHandlers1: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2017-05-23]
ContextMenuHandlers6: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2017-05-23]
ContextMenuHandlers6: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2017-05-23]
EmptyTemp:
cmd: ipconfig /flushdns
end::