start:: CreateRestorePoint: CloseProcesses: Hosts: RemoveProxy: SearchScopes: HKU\S-1-5-21-1068855662-3320445361-1472318693-1001 -> DefaultScope {94553F5B-FF49-4C24-B450-547C7A69C488} URL = hxxp://www.accueil-nav.com/search?q= SearchScopes: HKU\S-1-5-21-1068855662-3320445361-1472318693-1001 -> {94553F5B-FF49-4C24-B450-547C7A69C488} URL = hxxp://www.accueil-nav.com/search?q= SearchScopes: HKU\S-1-5-21-1068855662-3320445361-1472318693-1001 -> {CCE020BB-F105-4440-B676-FBAF613D2448} URL = BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll => Pas de fichier BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2019-08-22] BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2019-08-22] Toolbar: HKU\S-1-5-21-1068855662-3320445361-1472318693-1001 -> Pas de nom - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Pas de fichier Edge HomeButtonPage: HKU\S-1-5-21-1068855662-3320445361-1472318693-1001 -> hxxp://www.accueil-nav.com/ BootExecute: autocheck autochk * sdnclean64.exe Task: {17D8024B-8BCE-40A7-A325-88256EC49F16} - \WPD\SqmUpload_S-1-5-21-1068855662-3320445361-1472318693-1001 -> Pas de fichier Task: {28062BD1-06D5-4C1B-9612-636F5226ADDD} - \Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance -> Pas de fichier Task: {3D93EF92-E95D-4884-BC46-82849CB38729} - \Lenovo\ImController\TimeBasedEvents\8ea78323-2a4b-47a5-83ec-185892d67bf1 -> Pas de fichier Task: {6A1111F0-6EC1-4595-ACE2-E150569A5CF3} - \Lenovo\ImController\TimeBasedEvents\23bb3322-3157-492f-9450-dbb238006a1a -> Pas de fichier Task: {71FEE79A-FC7B-4C91-AF17-ECE18147C6C1} - \Lenovo\ImController\TimeBasedEvents\134a23b9-553e-4bfe-86dc-2b2fc671d1b6 -> Pas de fichier Task: {826691E9-F6F1-4196-8B6E-F09E0C53537C} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [4829904 2017-05-23] (Safer-Networking Ltd. -> Safer-Networking Ltd.) Task: {82CAD938-749A-4A2C-BD6D-ACCF8DF756D0} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [6191000 2017-05-23] (Safer-Networking Ltd. -> Safer-Networking Ltd.) Task: {A380C7C6-5192-46D3-AD5C-FC7E625139EA} - \Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask -> Pas de fichier Task: {D881E8F1-840D-4FFB-B4D0-1CD941B1A385} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2045832 2019-08-19] Task: {D94D8034-F073-4F06-B15D-771ED9D4E92C} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [5751664 2017-05-23] Task: {E1FD62D4-580F-4378-BD83-4CCC73FEA6EA} - \Lenovo\ImController\Lenovo iM Controller Monitor -> Pas de fichier FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js [2019-05-21] <==== ATTENTION (Pointe vers un fichier *.cfg) FF ExtraCheck: C:\Program Files\mozilla firefox\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg [2019-05-21] FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi FF Extension: (McAfeeŽ WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2019-08-22] FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi CHR StartupUrls: Default -> "hxxp://www.accueil-nav.com/" CHR HKLM\...\Chrome\Extension: [apdjlcjphpkfmnfnflpokbbemclohbmc] - hxxps://chrome.google.com/webstore/detail/apdjlcjphpkfmnfnflpokbbemclohbmc CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx CHR HKLM\...\Chrome\Extension: [kgleflkdamakpmckkidkcmnmdikbbmok] - hxxps://chrome.google.com/webstore/detail/kgleflkdamakpmckkidkcmnmdikbbmok CHR HKLM-x32\...\Chrome\Extension: [apdjlcjphpkfmnfnflpokbbemclohbmc] - hxxps://chrome.google.com/webstore/detail/apdjlcjphpkfmnfnflpokbbemclohbmc CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [kgleflkdamakpmckkidkcmnmdikbbmok] - hxxps://chrome.google.com/webstore/detail/kgleflkdamakpmckkidkcmnmdikbbmok CHR HKLM-x32\...\Chrome\Extension: [onghofjobpgcdeeifjfbcfepkchnenoh] - hxxps://clients2.google.com/service/update2/crx R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [905472 2019-08-22] R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1776864 2017-05-23] R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2131760 2017-05-23] R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [233936 2017-05-23] U3 aswbdisk; pas de ImagePath U3 aswblog; pas de ImagePath ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier ContextMenuHandlers1: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2017-05-23] ContextMenuHandlers1: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2017-05-23] ContextMenuHandlers6: [SDECon32] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2017-05-23] ContextMenuHandlers6: [SDECon64] -> {44176360-2BBF-4EC1-93CE-384B8681A0BC} => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll [2017-05-23] EmptyTemp: cmd: ipconfig /flushdns end::