start::
CreateRestorePoint:
CloseProcesses:
HKU\S-1-5-21-1979029969-934809048-2809835052-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [36705520 2022-04-07] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-1979029969-934809048-2809835052-1001\...\Run: [f.lux] => C:\Users\Julie\AppData\Local\FluxSoftware\Flux\flux.exe [1515848 2021-06-18] (F.lux Software LLC -> f.lux Software LLC)
HKU\S-1-5-21-1979029969-934809048-2809835052-1001\...\MountPoints2: {ec48e135-21bb-11e7-82d6-2c600c39d2f3} - "D:\setup.exe"
HKU\S-1-5-21-1979029969-934809048-2809835052-1001\...\MountPoints2: {ec48e1f1-21bb-11e7-82d6-2c600c39d2f3} - "E:\setup.exe"
HKU\S-1-5-18\...\RunOnce: [Application Restart #0] => C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe [372424 2015-12-17] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\100.0.4896.127\Installer\chrmstp.exe [2022-04-20] (Google LLC -> Google LLC)
Files (x86)\AVAST Software\Browser\Application\86.1.6960.198\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction
HKLM\SOFTWARE\Policies\Google: Restriction
DeleteKey: HKLM\SOFTWARE\POLICIES\Mozilla\Firefox
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{F546FACC-AFC7-4828-9224-19E6607ECC95}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{9FAFAEC4-30E2-4B0C-9EF8-A7811864CEF6}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{A1F2DE38-0424-4DC0-ADA2-3892370C5C74}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{8F5C24E6-1954-4A9A-82F9-5179A8B26E84}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{7028F54C-0899-4804-ACD7-9B6B8C029B97}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{16DCA799-C0A8-4C92-B2D5-30F1BF178A51}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{273E9608-477E-4C47-8CD8-3A1E26BC92DB}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{08422ACA-DC97-4307-9EAD-40D1849F5B5C}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{2814C1FC-3400-4667-A0DE-A899B076537A}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{AE9DB217-73C1-45DF-9D68-AA6B6F18D655}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{1E63DAD7-E300-4354-812D-847E999A21F5}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{B99CA439-84DC-44F7-9C53-981D0E1AFDEE}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{995738A9-3B94-40B5-8088-56264B21AA84}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{C93345CA-F601-4ABC-BE65-D61AE3B7A34D}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{6AF9D857-E739-4654-A366-6FE06FB417EF}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{CDCA335D-954C-4B64-9A06-8BE86EAF8ECD}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{EFA069F9-5224-4040-A2F2-142809EE3870}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{296893FC-00B3-48EC-8B5E-1589417094E5}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{09930CBC-5DC3-4899-AB30-C823A5205B0A}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{8C51FDAE-9062-4953-967B-05CD2F9E68EC}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{CC885320-C72C-4841-980E-1B38D0DAC19E}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{86C9FE3B-3AFC-45BB-AC83-C59342035677}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{C664B557-4549-43BC-B9DD-86425EE694EB}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{CB6C6EED-0028-463E-BA37-C49BE052FCA4}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{924276C7-F8C4-4933-A190-DF6DB21BA641}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{0E669929-3DFA-4609-8C1E-2EBF963EBF26}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{3B84ED64-4080-4E80-B0D2-F8B808FC1FA8}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{3DA6A733-B0F0-461E-A68E-76AF42C29615}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{114FA786-8BEF-4F75-8553-302362A4006B}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{C6C5126A-CDD4-4D13-96FA-8CCF3C767C0F}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{EEB53C72-2776-472D-9685-7F8CF4C16C77}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{DCA90257-6C22-408A-8E81-B2C597E6DF90}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{19F7218C-D2BB-4C03-AB49-FEE7491E9748}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{97B399FB-F290-4126-9437-B5ECBB6C1C1A}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{E9BD3193-5B33-42F8-8B2E-36B303B5FE62}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{3F71B61F-2F5F-472F-8F53-DB4A70B912DF}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{329AA763-0460-4234-90A5-8555218EF6D2}C:\users\julie\documents\prototype quartet en crise\quartet.exe"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{5CDC0A64-4B32-4391-BC2C-7CA27369591C}C:\users\julie\documents\prototype quartet en crise\quartet.exe"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{E84374D5-6963-4571-8CE4-0E56F8C91BB9}C:\program files (x86)\stellaris utopia\stellaris.exe"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{322BFCA4-4605-4D67-AFA6-5D57562370B7}C:\program files (x86)\stellaris utopia\stellaris.exe"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{175B82A6-1093-4CD4-8710-7ED34C05F0D4}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{9E37B948-463C-4D23-96BB-29E52295C435}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{A331EFE0-F045-489C-9E3F-4709C167A059}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{E5A3D267-52C2-44C5-8AFD-90D25DA1E5F1}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{6C7E9523-9FF7-41E2-8B8A-539A90094722}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{31483D09-72E7-4E9B-9B74-E7D49AC2FC73}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{339DD176-0B5C-4182-B26A-7A81BC5536F7}"
DeleteValue: HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{D98EE4BD-D245-4B57-AF95-BA64C06E645D}"
DeleteKey: HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32
DeleteKey: HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA}
DeleteKey: HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\WinRAR32
DeleteKey: HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32
C:\Users\Julie\AppData\Local\Temp\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi
DeleteKey: HKLM\SOFTWARE\Wow6432Node\Classes\TypeLib\{ADF1FA2A-6EAA-4A97-A55F-3C8B92843EF5}
DeleteKey: HKLM\SOFTWARE\Classes\TypeLib\{ADF1FA2A-6EAA-4A97-A55F-3C8B92843EF5}
Task: {12796665-0398-4E42-A515-EDA4B77647F8} - System32\Tasks\DropBox => C:\Users\Julie\Conf.Comm (Pas de fichier)
AlternateDataStreams: C:\Users\Julie\Desktop\~WRL0001.tmp:com.dropbox.attributes [346]
AlternateDataStreams: C:\Users\Julie\Documents\10-Révision pour l'intro.doc:com.dropbox.attributes [168]
AlternateDataStreams: C:\Users\Julie\Documents\1_fiche_simplifier.doc:com.dropbox.attributes [346]
AlternateDataStreams: C:\Users\Julie\Documents\2_fiche_enrichir.doc:com.dropbox.attributes [344]
AlternateDataStreams: C:\Users\Julie\Documents\2_fiche_enrichir.doc:com.dropbox.attrs [14]
AlternateDataStreams: C:\Users\Julie\Documents\6_fiche_ponctuation.doc:com.dropbox.attributes [346]
AlternateDataStreams: C:\Users\Julie\Documents\8_Condenser des informations.docx:com.dropbox.attributes [168]
AlternateDataStreams: C:\Users\Julie\Documents\er et é - seconde 6.odt:com.dropbox.attributes [168]
AlternateDataStreams: C:\Users\Julie\Documents\Leçon 2nd6 version finale.doc:com.dropbox.attributes [168]
AlternateDataStreams: C:\Users\Julie\Documents\Maîtriser la langue - é et er.odt:com.dropbox.attributes [168]
AlternateDataStreams: C:\Users\Julie\Documents\Nouveau dictionnaire.doc:com.dropbox.attributes [168]
AlternateDataStreams: C:\Users\Julie\Documents\Phrases nominales et phrases verbales.doc:com.dropbox.attributes [85]
AlternateDataStreams: C:\Users\Julie\Documents\Quelques astuces pour éviter les fautes.docx:com.dropbox.attributes [168]
AlternateDataStreams: C:\Users\Julie\Documents\éviter les répétitions - reprises nominales.docx:com.dropbox.attributes [168]
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://fr.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://fr.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
SearchScopes: HKU\S-1-5-21-1979029969-934809048-2809835052-1001 -> DefaultScope {2B814F30-F534-419D-9DBF-E76ACE1DCF7C} URL =
SearchScopes: HKU\S-1-5-21-1979029969-934809048-2809835052-1001 -> {2B814F30-F534-419D-9DBF-E76ACE1DCF7C} URL =
SearchScopes: HKU\S-1-5-21-1979029969-934809048-2809835052-1001 -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://fr.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
FirewallRules: [{9FAFAEC4-30E2-4B0C-9EF8-A7811864CEF6}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => Pas de fichier
FirewallRules: [{A1F2DE38-0424-4DC0-ADA2-3892370C5C74}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => Pas de fichier
FirewallRules: [{8F5C24E6-1954-4A9A-82F9-5179A8B26E84}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => Pas de fichier
FirewallRules: [{7028F54C-0899-4804-ACD7-9B6B8C029B97}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => Pas de fichier
FirewallRules: [{16DCA799-C0A8-4C92-B2D5-30F1BF178A51}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => Pas de fichier
FirewallRules: [{273E9608-477E-4C47-8CD8-3A1E26BC92DB}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => Pas de fichier
FirewallRules: [{08422ACA-DC97-4307-9EAD-40D1849F5B5C}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => Pas de fichier
FirewallRules: [{2814C1FC-3400-4667-A0DE-A899B076537A}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => Pas de fichier
FirewallRules: [{2D0F08EB-85D9-481A-8689-CC8DF42571BF}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe (Acer Incorporated -> Acer Cloud Technology)
FirewallRules: [{6DCB7189-A337-4560-A193-F98F52F31CC1}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe (Acer Incorporated -> Acer Cloud Technology)
FirewallRules: [{AE9DB217-73C1-45DF-9D68-AA6B6F18D655}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => Pas de fichier
FirewallRules: [{1E63DAD7-E300-4354-812D-847E999A21F5}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => Pas de fichier
FirewallRules: [{B99CA439-84DC-44F7-9C53-981D0E1AFDEE}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => Pas de fichier
FirewallRules: [{995738A9-3B94-40B5-8088-56264B21AA84}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => Pas de fichier
FirewallRules: [{C93345CA-F601-4ABC-BE65-D61AE3B7A34D}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => Pas de fichier
FirewallRules: [{6AF9D857-E739-4654-A366-6FE06FB417EF}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => Pas de fichier
FirewallRules: [{CDCA335D-954C-4B64-9A06-8BE86EAF8ECD}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => Pas de fichier
FirewallRules: [{EFA069F9-5224-4040-A2F2-142809EE3870}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => Pas de fichier
FirewallRules: [{01216CE1-9201-4FEB-A30A-C95BBC714A03}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{8951016C-373F-40D5-AC8E-494C3133171A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{296893FC-00B3-48EC-8B5E-1589417094E5}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => Pas de fichier
FirewallRules: [{09930CBC-5DC3-4899-AB30-C823A5205B0A}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => Pas de fichier
FirewallRules: [{8C51FDAE-9062-4953-967B-05CD2F9E68EC}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => Pas de fichier
FirewallRules: [{CC885320-C72C-4841-980E-1B38D0DAC19E}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => Pas de fichier
FirewallRules: [{86C9FE3B-3AFC-45BB-AC83-C59342035677}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => Pas de fichier
FirewallRules: [{C664B557-4549-43BC-B9DD-86425EE694EB}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => Pas de fichier
FirewallRules: [{CB6C6EED-0028-463E-BA37-C49BE052FCA4}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => Pas de fichier
FirewallRules: [{924276C7-F8C4-4933-A190-DF6DB21BA641}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => Pas de fichier
FirewallRules: [{0E669929-3DFA-4609-8C1E-2EBF963EBF26}] => (Allow) C:\Users\Julie\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe => Pas de fichier
FirewallRules: [{3B84ED64-4080-4E80-B0D2-F8B808FC1FA8}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => Pas de fichier
FirewallRules: [{3DA6A733-B0F0-461E-A68E-76AF42C29615}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe => Pas de fichier
FirewallRules: [{114FA786-8BEF-4F75-8553-302362A4006B}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => Pas de fichier
FirewallRules: [{C6C5126A-CDD4-4D13-96FA-8CCF3C767C0F}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe => Pas de fichier
EmptyTemp:
end::