Start:: CreateRestorePoint: CloseProcesses: FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction CHR HKLM\SOFTWARE\Policies\Google: Restriction SearchScopes: HKU\S-1-5-21-183507585-908337979-2261879982-1001 -> {A9CE3247-5DBC-464B-AB1E-94E3B50F4F7A} URL = hxxp://www.nav-fr.com/search?q={searchTerms} Edge HomeButtonPage: HKU\S-1-5-21-183507585-908337979-2261879982-1001 -> hxxp://www.nav-fr.com/ CHR HomePage: Default -> hxxp://www.nav-fr.com/ CHR StartupUrls: Default -> "hxxp://www.nav-fr.com/" CHR HKLM\...\Chrome\Extension: [bnbbhgcfmdnamgfgjfgjdkcjbofkjihb] CHR HKLM\...\Chrome\Extension: [jbjgkhmocaaicjdbafhgoncfbopkfcng] CHR HKLM\...\Chrome\Extension: [jgfblpnggnjhmdbidfmoidoglbcbnfoi] CHR HKLM\...\Chrome\Extension: [ojfilbbecboffgonioffpjjhcobjahoe] CHR HKU\S-1-5-21-183507585-908337979-2261879982-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bnbbhgcfmdnamgfgjfgjdkcjbofkjihb] CHR HKU\S-1-5-21-183507585-908337979-2261879982-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [jbjgkhmocaaicjdbafhgoncfbopkfcng] CHR HKU\S-1-5-21-183507585-908337979-2261879982-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [jgfblpnggnjhmdbidfmoidoglbcbnfoi] CHR HKU\S-1-5-21-183507585-908337979-2261879982-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [kphondbfkocnmbigbmfbkeefeoacnlad] CHR HKU\S-1-5-21-183507585-908337979-2261879982-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ojfilbbecboffgonioffpjjhcobjahoe] R2 SAntivirusIC; C:\Program Files\Digital Communications\SAntivirus\SAntivirusIC.exe [1482440 2020-06-22] (Digital Communications Inc -> Incorp DigCom) R2 SAntivirusSvc; C:\Program Files\Digital Communications\SAntivirus\SAntivirusService.exe [305864 2020-06-22] (Digital Communications Inc -> Digital Com. Inc) R1 SANTIVIRUSKD; C:\Program Files\Digital Communications\SAntivirus\SAntivirusKD.sys [81184 2020-06-22] (Digital Communications Inc. -> Digital Comm. Inc) 2020-06-25 15:12 - 2020-06-25 15:13 - 000000000 ____D C:\Users\coton\AppData\Roaming\santivirusclient 2020-06-22 23:12 - 2020-06-22 23:12 - 000002371 _____ C:\Users\coton\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chromium.lnk 2020-06-22 23:09 - 2020-06-22 23:12 - 000000000 ____D C:\Users\coton\AppData\Local\Chromium 2020-06-22 23:07 - 2020-06-22 23:13 - 000000000 ____D C:\Users\coton\AppData\Local\{D4E6E2BA-F04E-8E02-9DD6-ABEAB9BE5772} 2020-06-22 23:07 - 2020-06-22 23:08 - 000000000 ____D C:\ProgramData\SAntivirus 2020-06-22 23:07 - 2020-06-22 23:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SAntivirus 2020-06-22 23:07 - 2020-06-22 23:07 - 000000000 ____D C:\Program Files\Digital Communications HKU\S-1-5-21-183507585-908337979-2261879982-1001\...\StartupApproved\Run: => "SAntivirusRun" EmptyTemp: End::