CloseProcesses: CreateRestorePoint: EmptyTemp: GroupPolicy: Restriction Edge HomeButtonPage: HKU\S-1-5-21-347313316-3756737253-4142799880-1008 -> about:start FF SelectedSearchEngine: Mozilla\Firefox\Profiles\tvowkavh.default -> Yahoo! Powered FF DefaultSearchEngine: Mozilla\Firefox\Profiles\tvowkavh.default -> Yahoo! Powered FF NewTab: Mozilla\Firefox\Profiles\tvowkavh.default -> about:newtab FF Homepage: Mozilla\Firefox\Profiles\tvowkavh.default -> hxxps://fr.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_secureddownload_16_45_ssg02¶m1=1¶m2=f%3D1%26b%3DFirefox%26cc%3Dfr%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1QzuzytD0F0B0AyC0EtC0BtAyDtA0D0DtCyEtN0D0Tzu0StCyByBtBtN1L2XzutAtFtByEtFtAtDtFyDtDtN1L1Czu1ByEtN1L1G1B1V1N2Y1L1Qzu2StByEtC0AtD0F0A0AtGtD0FyCyCtGzyyC0DzytGyBzz0A0FtG0C0FtD0CyCtBzyzy0B0FyEtD2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0A0A0EzzyByD0D0AtG0CyD0A0AtGyEtDtD0BtG0B0EtDtBtG0FzztD0EtBzz0DzzyDtD0C0D2QtN0A0LzuyEtN1B2Z1V1T1S1NzutCtDyCyByD%26cr%3D659402905%26a%3Dwncy_secureddownload_16_45_ssg02%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome FF Keyword.URL: Mozilla\Firefox\Profiles\tvowkavh.default -> user_pref("keyword.URL", true); FF Extension: (Pas de nom) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [non trouvé(e)] FF SearchPlugin: C:\Users\Veronique\AppData\Roaming\Mozilla\Firefox\Profiles\tvowkavh.default\searchplugins\mylucky123.xml [2016-10-19] FF SearchPlugin: C:\Users\Veronique\AppData\Roaming\Mozilla\Firefox\Profiles\tvowkavh.default\searchplugins\yahoo! powered.xml [2016-11-07] FF SearchPlugin: C:\Users\Veronique\AppData\Roaming\Firefox\Firefox\Profiles\tvowkavh.default\searchplugins\yahoo! powered.xml [2016-09-03] FF Plugin HKU\S-1-5-21-347313316-3756737253-4142799880-1008: @talk.google.com/O1DPlugin -> C:\Users\Veronique\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-12-08] (Google) CHR HomePage: Default -> hxxp://www.nuesearch.com/?type=hp&ts=1473242736&z=9b82a88307052d11ae6f77egbz9m4cbo4z4o2mac8m&from=che0812&uid=WDCXWD6400AAKS-22A7B2_WD-WCASYD21358913589 CHR StartupUrls: Default -> "hxxp://www.nuesearch.com/?type=hp&ts=1473242736&z=9b82a88307052d11ae6f77egbz9m4cbo4z4o2mac8m&from=che0812&uid=WDCXWD6400AAKS-22A7B2_WD-WCASYD21358913589" CHR Extension: (McAfee® WebAdvisor) - C:\Users\Veronique\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2016-11-07] 2016-09-27 09:28 - 2016-09-27 09:28 - 0005085 _____ () C:\ProgramData\oqztiqep.adk Task: {3CEE569D-A899-4B8D-A6F8-85A314E19972} - System32\Tasks\{7173D3FC-F8FA-84ED-C740-58F232329872} => C:\Users\emmanuel\AppData\Roaming\PRICEF~1\SyncTask.exe   C:\Users\emmanuel\AppData\Roaming\PRICEF~1 Task: {8B77B1C9-620E-4D9C-B20F-FC54891C1585} - System32\Tasks\emmanuelGummiestInterjectionalV2 => Rundll32.exe PtomainPretzels.dll,main 7 1   Task: {F4AB0C2D-6A71-4FA8-8D1B-C24E1D7DC34A} - System32\Tasks\Prervasghonert Reports => C:\Program Files (x86)\Shedoght\peruther.exe C:\Program Files (x86)\Shedoght Task: {FA843350-B3CF-426D-8E3D-082E542246DD} - System32\Tasks\{24D39061-79D3-48C2-B65B-7623D11A06FC} => pcalua.exe -a C:\Users\Veronique\AppData\Local\{83BEB5E2-A716-D95A-CA8E-FCB2EEE6002A}\uninst.exe -c -FN="C:\Users\Veronique\AppData\Roaming\{83E3B558-A6B1-D82E-CD87-FFFC115502C2}\helperupdate.exe"-P=/Uninstall /s /noun /DelSelfDir Task: C:\WINDOWS\Tasks\{7173D3FC-F8FA-84ED-C740-58F232329872}.job => C:\Users\emmanuel\AppData\Roaming\PRICEF~1\SyncTask.exe C:\Users\emmanuel\AppData\Roaming\PRICEF~1 Shortcut: C:\Users\Veronique\Favorites\NCH Software Download Site.lnk -> hxxp://www.nch.com.au/index.html Shortcut: C:\Users\Veronique\Favorites\Windows Utility Software.lnk -> hxxp:? FirewallRules: [{28D1FB08-8763-4687-8B65-8F7BBDA37DCC}] => C:\ProgramData\Fishlose\Fishlose.exe FirewallRules: [{5B25EBBD-F921-4786-8A43-B86E5B567CE9}] => C:\Program Files (x86)\Fishlose\Update\FishloseUpdate.exe C:\ProgramData\Fishlose FirewallRules: [{CF4541F7-7826-4A61-9B0B-E13345B07C41}] => C:\Users\Veronique\AppData\Local\Chromium\Application\chrome.exe Â