start CloseProcesses: Hosts: CreateRestorePoint: HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION GroupPolicy: Restriction <==== ATTENTION HKU\S-1-5-21-917510121-3704970822-1225396918-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://fr.yahoo.com/?fr=yset_ie_syc_oracle&type=orcl_hpset SearchScopes: HKU\S-1-5-21-917510121-3704970822-1225396918-1001 -> {54801E05-E390-4066-9EBE-C479BF7F8C0E} URL = hxxps://fr.search.yahoo.com/search?p={searchTerms}&intl=fr&fr=yset_ie_syc_oracle&type=orcl_default&partnerexternal-oracle=external-oracle FF Extension: (MSN-Smileys) - C:\Program Files (x86)\Celtx\extensions\emoticons-msn-smileys@m513901.de [2016-08-04] [non signé] CHR DefaultSearchURL: Default -> hxxps://fr.search.yahoo.com/search?p={searchTerms}&fr=yset_chr_syc_oracle&type=default CHR DefaultSearchKeyword: Default -> Yahoo CHR DefaultSuggestURL: Default -> hxxps://fr.search.yahoo.com/sugg/ie?output=fxjson&command={searchTerms}&nResults=10 CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [ibbfklbaljofpaanmpaeadejijfdddco] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx 2017-08-09 23:50 - 2016-11-13 03:24 - 000000000 ____D C:\WINDOWS\system32\ÿÿÿÿÿÿÿÿ8 2017-07-30 20:47 - 2017-07-30 20:47 - 000000060 _____ () C:\ProgramData\SoftwareUpdateTemp.xml AlternateDataStreams: C:\Users\Sacha\Desktop\IMG_20170808_105716.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\Sacha\Desktop\IMG_20170808_105838.jpg:com.dropbox.attributes [168] EmptyTemp: end