start CloseProcesses: Hosts: CreateRestorePoint: HKLM-x32\...\Run: [] => [X] HKU\S-1-5-18\...\Run: [] => [X] SearchScopes: HKU\S-1-5-21-2092465835-998468644-2159141961-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = CHR Extension: (YouTurn) - C:\Users\Sébastien\AppData\Local\Google\Chrome\User Data\Guest Profile\Extensions\icphmmimmfdlgaaglejeokffekamhplg [2015-11-12] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION CHR Extension: (Mavenlink Project Manager) - C:\Users\Sébastien\AppData\Local\Google\Chrome\User Data\Guest Profile\Extensions\nkpcjfgdlfelfjldoebklcimbekfeami [2015-11-12] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION CHR Profile: C:\Users\Sébastien\AppData\Local\Google\Chrome\User Data\Save Default [2016-07-08] <==== ATTENTION CHR Extension: (Google Drive) - C:\Users\Sébastien\AppData\Local\Google\Chrome\User Data\Save Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-04-15] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION CHR Extension: (Adblock Plus) - C:\Users\Sébastien\AppData\Local\Google\Chrome\User Data\Save Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-11-12] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION CHR Extension: (Google Wallet) - C:\Users\Sébastien\AppData\Local\Google\Chrome\User Data\Save Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-11-12] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION CHR HKU\S-1-5-21-2092465835-998468644-2159141961-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\SBASTI~1\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx CHR HKU\S-1-5-21-2092465835-998468644-2159141961-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fkkcgfbgohboipdhliafmacjnhjbhmim] - hxxps://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-2092465835-998468644-2159141961-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [hpacaholihkepnhgeeiipghhgonbhdfb] - hxxps://clients2.google.com/service/update2/crx Task: {EE077CE4-BE7E-4ADE-A988-9EF955E56C44} - System32\Tasks\Norton Product InstallerIdle => C:\Users\Sébastien\AppData\Local\Temp\SymInstallStub.exe <==== ATTENTION Task: C:\Windows\Tasks\Norton Product InstallerIdle.job => C:\Users\Sébastien\AppData\Local\Temp\SymInstallStub.exe <==== ATTENTION HKU\S-1-5-21-2092465835-998468644-2159141961-1000\Software\Classes\.scr: => <==== ATTENTION HKU\S-1-5-21-2092465835-998468644-2159141961-1000\Software\Classes\.bat: => <==== ATTENTION HKU\S-1-5-21-2092465835-998468644-2159141961-1000\Software\Classes\.com: => <==== ATTENTION HKU\S-1-5-21-2092465835-998468644-2159141961-1000\Software\Classes\.cmd: => <==== ATTENTION HKU\S-1-5-21-2092465835-998468644-2159141961-1000\Software\Classes\.reg: => <==== ATTENTION EmptyTemp: end