Start:: CloseProcesses: CreateRestorePoint: Removeproxy: Hosts: ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Pas de fichier ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Pas de fichier SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-54281091-483069812-3344716872-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> E:\Program Files (x86)\Java\jre1.8.0_161\bin\ssv.dll [2018-01-25] (Oracle America, Inc. -> Oracle Corporation) IE trusted site: HKU\.DEFAULT\...\localhost -> localhost IE trusted site: HKU\.DEFAULT\...\webcompanion.com -> hxxp://webcompanion.com IE trusted site: HKU\S-1-5-21-54281091-483069812-3344716872-1001\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-54281091-483069812-3344716872-1001\...\webcompanion.com -> hxxp://webcompanion.com MSCONFIG\Services: LavasoftAdAwareService11 => 2 MSCONFIG\startupreg: AdAwareTray => "E:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.10.767.8917\AdAwareTray.exe" MSCONFIG\startupreg: Web Companion => E:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize E:\Program Files\Lavasoft E:\Program Files (x86)\Lavasoft HKLM\...\Run: [] => [X] HKLM-x32\...\Run: [] => [X] HKU\S-1-5-21-54281091-483069812-3344716872-1001\...\Run: [] => [X] HKU\S-1-5-21-54281091-483069812-3344716872-1001\...\MountPoints2: {30f0be6b-f756-11e5-b45e-002243c48132} - F:\Startme.exe HKU\S-1-5-21-54281091-483069812-3344716872-1001\...\Winlogon: [Shell] E:\Windows\explorer.exe [3229696 2016-08-29] (Microsoft Windows -> Microsoft Corporation) <==== ATTENTION GroupPolicy: Restriction ? <==== ATTENTION Task: E:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => E:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: E:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => E:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] S3 avchv; system32\DRIVERS\avchv.sys [X] S3 dbx; system32\DRIVERS\dbx.sys [X] S3 NETw5s64; system32\DRIVERS\NETw5s64.sys [X] 2017-09-19 17:06 - 2017-09-19 17:06 - 000000624 ___SH () E:\Users\Guillaume\AppData\Local\7d1997db57d9a4ee768d19.68008180 2019-09-10 16:00 - 2019-09-10 16:00 - 000000630 ___SH () E:\Users\Guillaume\AppData\Local\q4qcwzamp4aeptcgfpxjxjpj6crjbsa 2020-07-02 14:58 - 2020-07-02 14:58 - 000004809 _____ () E:\Users\Guillaume\AppData\Local\recently-used.xbel 2016-11-13 09:32 - 2016-11-13 09:32 - 000000000 _____ () E:\Users\Guillaume\AppData\Local\{8F0FA7BF-0836-49F8-ABB7-6B0CCC3FADC8} 2018-07-27 08:38 - 2018-07-27 08:38 - 000000000 _____ () E:\Users\Guillaume\AppData\Local\{B9899C7B-D3D5-4B7B-A190-933BABC9EA14} cmd: ipconfig /flushdns cmd: netsh advfirewall reset cmd: netsh advfirewall set allprofiles state on cmd: netsh winsock reset Emptytemp: End::