Start:: CreateRestorePoint: CloseProcesses: Task: {4139E7CE-4E8F-41A1-93AC-AAC26BEF8325} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1873288 2019-09-19] (AVAST Software s.r.o. -> AVAST Software) Tcpip\..\Interfaces\{a6c737c2-8ddd-48e2-83cc-2ebfcd5731c0}: [DhcpNameServer] 128.16.1.5 URLSearchHook: [S-1-5-21-4064703217-1424446291-2480818947-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01292020153809815] URLSearchHook: [S-1-5-21-4064703217-1424446291-2480818947-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01292020153810222] SearchScopes: HKU\S-1-5-21-4064703217-1424446291-2480818947-1001 -> {BF70045C-0690-4727-81A2-43B5B2A3FB8E} URL = hxxps://fr.search.yahoo.com/search?p={searchTerms}&intl=fr&fr=yset_ie_syc_oracle&type=orcl_default&partnerexternal-oracle=external-oracle CHR DefaultSearchURL: Default -> hxxps://fr.search.yahoo.com/search?p={searchTerms}&fr=yset_chr_syc_oracle&type=default CHR DefaultSearchKeyword: Default -> Yahoo CHR DefaultSuggestURL: Default -> hxxps://fr.search.yahoo.com/sugg/ie?output=fxjson&command={searchTerms}&nResults=10 CHR HKLM-x32\...\Chrome\Extension: [abndlhhhlcnachadcobmognfogljceem] CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] CHR HKLM-x32\...\Chrome\Extension: [ibbfklbaljofpaanmpaeadejijfdddco] U3 aswbdisk; pas de ImagePath U3 aswblog; pas de ImagePath C:\Program Files\Common Files\Avast Software D:\Users\stephane\Downloads\virus ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier EmptyTemp: End::