cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version:21-02-2016 01
Exécuté par pacome.kamara (administrateur) sur AGNES (23-02-2016 11:04:55)
Exécuté depuis C:\Users\pacome.kamara\Desktop
Profils chargés: pacome.kamara (Profils disponibles: germain.kouadio & pacome.kamara & marina.kouassi & Administrateur & THAIBA)
Platform: Windows 8.1 Enterprise (X64) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: IE)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Beemo Technologie) C:\Program Files (x86)\EBS\EBS Client.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Beemo Technologie) C:\Program Files (x86)\EBS\EBS Client.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Power Software Ltd) C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\HpqSRmon.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe


==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [312376 2011-11-15] (Power Software Ltd)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [34672 2008-06-12] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150016 2008-08-20] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [HPUsageTrackingLEDM] => C:\Program Files (x86)\HP\HP UT LEDM\bin\hppusg.exe [30264 2009-08-04] (Hewlett-Packard Company)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\EBS Client.exe.lnk [2015-09-29]
ShortcutTarget: EBS Client.exe.lnk -> C:\Program Files (x86)\EBS\EBS Client.exe (Beemo Technologie)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Recovery+frlnn.html [2016-02-23] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Recovery+frlnn.png [2016-02-23] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Recovery+frlnn.txt [2016-02-23] ()
Startup: C:\Users\marina.kouassi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Recovery+frlnn.html [2016-02-23] ()
Startup: C:\Users\marina.kouassi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Recovery+frlnn.png [2016-02-23] ()
Startup: C:\Users\marina.kouassi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Recovery+frlnn.txt [2016-02-23] ()
Startup: C:\Users\pacome.kamara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Recovery+frlnn.html [2016-02-23] ()
Startup: C:\Users\pacome.kamara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Recovery+frlnn.png [2016-02-23] ()
Startup: C:\Users\pacome.kamara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Recovery+frlnn.txt [2016-02-23] ()
Startup: C:\Users\THAIBA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Recovery+frlnn.html [2016-02-23] ()
Startup: C:\Users\THAIBA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Recovery+frlnn.png [2016-02-23] ()
Startup: C:\Users\THAIBA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Recovery+frlnn.txt [2016-02-23] ()

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Tcpip\Parameters: [DhcpNameServer] 10.0.5.1
Tcpip\..\Interfaces\{FAAA231B-3096-4AD0-86F5-EBB9886A441C}: [DhcpNameServer] 10.0.5.1

Internet Explorer:
==================
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11] (Adobe Systems Incorporated)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\pacome.kamara\AppData\Roaming\Mozilla\Firefox\Profiles\tt6qt8y4.default
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.2.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2012-10-01] (Microsoft Corporation)

==================== Services (Avec liste blanche) ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 dsr; C:\Program Files (x86)\EBS\EBS Client.exe [1820928 2015-02-23] (Beemo Technologie)
S3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [248832 2009-05-18] (Hewlett-Packard Co.) [Fichier non signé]
R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [50688 2012-07-31] (Hewlett-Packard) [Fichier non signé]
R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [66048 2012-07-31] (Hewlett-Packard) [Fichier non signé]
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [290520 2014-01-08] (Realtek Semiconductor)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation)

===================== Pilotes (Avec liste blanche) ==========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [34760 2013-08-22] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [265056 2013-08-22] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation)

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2016-02-23 11:04 - 2016-02-23 11:05 - 00008748 _____ C:\Users\pacome.kamara\Desktop\FRST.txt
2016-02-23 11:04 - 2016-02-23 11:04 - 00000000 ____D C:\FRST
2016-02-23 11:03 - 2016-02-23 11:02 - 02371072 _____ (Farbar) C:\Users\pacome.kamara\Desktop\FRST64.exe
2016-02-23 10:15 - 2016-02-23 10:15 - 00000000 ____D C:\Users\pacome.kamara\AppData\Roaming\Macromedia
2016-02-23 10:15 - 2016-02-23 10:15 - 00000000 ____D C:\Users\pacome.kamara\AppData\Roaming\HP
2016-02-23 09:15 - 2016-02-23 09:15 - 00000000 ____D C:\Users\pacome.kamara\AppData\Roaming\Mozilla
2016-02-23 09:15 - 2016-02-23 09:15 - 00000000 ____D C:\Users\pacome.kamara\AppData\Local\Mozilla
2016-02-23 09:14 - 2016-02-23 09:14 - 00003964 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{0AFC0690-2CA9-4047-A2D1-8F7154B0F9B9}
2016-02-23 09:14 - 2016-02-23 09:14 - 00000000 ____D C:\Users\pacome.kamara\AppData\Local\GroupPolicy
2016-02-23 08:49 - 2016-02-23 08:49 - 00009949 _____ C:\Users\THAIBA\Recovery+frlnn.html
2016-02-23 08:49 - 2016-02-23 08:49 - 00009949 _____ C:\Users\THAIBA\Downloads\Recovery+frlnn.html
2016-02-23 08:49 - 2016-02-23 08:49 - 00009949 _____ C:\Users\THAIBA\Documents\Recovery+frlnn.html
2016-02-23 08:49 - 2016-02-23 08:49 - 00009949 _____ C:\Users\THAIBA\Desktop\Recovery+frlnn.html
2016-02-23 08:49 - 2016-02-23 08:49 - 00009949 _____ C:\Users\THAIBA\AppData\Roaming\Recovery+frlnn.html
2016-02-23 08:49 - 2016-02-23 08:49 - 00009949 _____ C:\Users\THAIBA\AppData\Roaming\Microsoft\Windows\Start Menu\Recovery+frlnn.html
2016-02-23 08:49 - 2016-02-23 08:49 - 00009949 _____ C:\Users\THAIBA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery+frlnn.html
2016-02-23 08:49 - 2016-02-23 08:49 - 00009949 _____ C:\Users\THAIBA\AppData\Recovery+frlnn.html
2016-02-23 08:49 - 2016-02-23 08:49 - 00002195 _____ C:\Users\THAIBA\Recovery+frlnn.txt
2016-02-23 08:49 - 2016-02-23 08:49 - 00002195 _____ C:\Users\THAIBA\Downloads\Recovery+frlnn.txt
2016-02-23 08:49 - 2016-02-23 08:49 - 00002195 _____ C:\Users\THAIBA\Documents\Recovery+frlnn.txt
2016-02-23 08:49 - 2016-02-23 08:49 - 00002195 _____ C:\Users\THAIBA\Desktop\Recovery+frlnn.txt
2016-02-23 08:49 - 2016-02-23 08:49 - 00002195 _____ C:\Users\THAIBA\AppData\Roaming\Recovery+frlnn.txt
2016-02-23 08:49 - 2016-02-23 08:49 - 00002195 _____ C:\Users\THAIBA\AppData\Roaming\Microsoft\Windows\Start Menu\Recovery+frlnn.txt
2016-02-23 08:49 - 2016-02-23 08:49 - 00002195 _____ C:\Users\THAIBA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery+frlnn.txt
2016-02-23 08:49 - 2016-02-23 08:49 - 00002195 _____ C:\Users\THAIBA\AppData\Recovery+frlnn.txt
2016-02-23 08:48 - 2016-02-23 08:49 - 00009949 _____ C:\Users\THAIBA\AppData\Local\Recovery+frlnn.html
2016-02-23 08:48 - 2016-02-23 08:49 - 00002195 _____ C:\Users\THAIBA\AppData\Local\Recovery+frlnn.txt
2016-02-23 08:48 - 2016-02-23 08:48 - 00009949 _____ C:\Users\THAIBA\AppData\LocalLow\Recovery+frlnn.html
2016-02-23 08:48 - 2016-02-23 08:48 - 00009949 _____ C:\Users\Public\Recovery+frlnn.html
2016-02-23 08:48 - 2016-02-23 08:48 - 00009949 _____ C:\Users\Public\Downloads\Recovery+frlnn.html
2016-02-23 08:48 - 2016-02-23 08:48 - 00002195 _____ C:\Users\THAIBA\AppData\LocalLow\Recovery+frlnn.txt
2016-02-23 08:48 - 2016-02-23 08:48 - 00002195 _____ C:\Users\Public\Recovery+frlnn.txt
2016-02-23 08:48 - 2016-02-23 08:48 - 00002195 _____ C:\Users\Public\Downloads\Recovery+frlnn.txt
2016-02-23 08:47 - 2016-02-23 08:47 - 00009949 _____ C:\Users\pacome.kamara\Recovery+frlnn.html
2016-02-23 08:47 - 2016-02-23 08:47 - 00009949 _____ C:\Users\pacome.kamara\Downloads\Recovery+frlnn.html
2016-02-23 08:47 - 2016-02-23 08:47 - 00009949 _____ C:\Users\pacome.kamara\Documents\Recovery+frlnn.html
2016-02-23 08:47 - 2016-02-23 08:47 - 00009949 _____ C:\Users\pacome.kamara\Desktop\Recovery+frlnn.html
2016-02-23 08:47 - 2016-02-23 08:47 - 00009949 _____ C:\Users\pacome.kamara\AppData\Roaming\Recovery+frlnn.html
2016-02-23 08:47 - 2016-02-23 08:47 - 00009949 _____ C:\Users\pacome.kamara\AppData\Roaming\Microsoft\Windows\Start Menu\Recovery+frlnn.html
2016-02-23 08:47 - 2016-02-23 08:47 - 00009949 _____ C:\Users\pacome.kamara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery+frlnn.html
2016-02-23 08:47 - 2016-02-23 08:47 - 00009949 _____ C:\Users\pacome.kamara\AppData\Recovery+frlnn.html
2016-02-23 08:47 - 2016-02-23 08:47 - 00009949 _____ C:\Users\pacome.kamara\AppData\LocalLow\Recovery+frlnn.html
2016-02-23 08:47 - 2016-02-23 08:47 - 00009949 _____ C:\Users\pacome.kamara\AppData\Local\Recovery+frlnn.html
2016-02-23 08:47 - 2016-02-23 08:47 - 00009949 _____ C:\Users\marina.kouassi\Recovery+frlnn.html
2016-02-23 08:47 - 2016-02-23 08:47 - 00002195 _____ C:\Users\pacome.kamara\Recovery+frlnn.txt
2016-02-23 08:47 - 2016-02-23 08:47 - 00002195 _____ C:\Users\pacome.kamara\Downloads\Recovery+frlnn.txt
2016-02-23 08:47 - 2016-02-23 08:47 - 00002195 _____ C:\Users\pacome.kamara\Documents\Recovery+frlnn.txt
2016-02-23 08:47 - 2016-02-23 08:47 - 00002195 _____ C:\Users\pacome.kamara\Desktop\Recovery+frlnn.txt
2016-02-23 08:47 - 2016-02-23 08:47 - 00002195 _____ C:\Users\pacome.kamara\AppData\Roaming\Recovery+frlnn.txt
2016-02-23 08:47 - 2016-02-23 08:47 - 00002195 _____ C:\Users\pacome.kamara\AppData\Roaming\Microsoft\Windows\Start Menu\Recovery+frlnn.txt
2016-02-23 08:47 - 2016-02-23 08:47 - 00002195 _____ C:\Users\pacome.kamara\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery+frlnn.txt
2016-02-23 08:47 - 2016-02-23 08:47 - 00002195 _____ C:\Users\pacome.kamara\AppData\Recovery+frlnn.txt
2016-02-23 08:47 - 2016-02-23 08:47 - 00002195 _____ C:\Users\pacome.kamara\AppData\LocalLow\Recovery+frlnn.txt
2016-02-23 08:47 - 2016-02-23 08:47 - 00002195 _____ C:\Users\pacome.kamara\AppData\Local\Recovery+frlnn.txt
2016-02-23 08:47 - 2016-02-23 08:47 - 00002195 _____ C:\Users\marina.kouassi\Recovery+frlnn.txt
2016-02-23 08:46 - 2016-02-23 08:46 - 00009949 _____ C:\Users\marina.kouassi\Downloads\Recovery+frlnn.html
2016-02-23 08:46 - 2016-02-23 08:46 - 00009949 _____ C:\Users\marina.kouassi\Documents\Recovery+frlnn.html
2016-02-23 08:46 - 2016-02-23 08:46 - 00002195 _____ C:\Users\marina.kouassi\Downloads\Recovery+frlnn.txt
2016-02-23 08:46 - 2016-02-23 08:46 - 00002195 _____ C:\Users\marina.kouassi\Documents\Recovery+frlnn.txt
2016-02-23 08:38 - 2016-02-23 08:46 - 00009949 _____ C:\Users\marina.kouassi\AppData\Roaming\Microsoft\Windows\Start Menu\Recovery+frlnn.html
2016-02-23 08:38 - 2016-02-23 08:46 - 00002195 _____ C:\Users\marina.kouassi\AppData\Roaming\Microsoft\Windows\Start Menu\Recovery+frlnn.txt
2016-02-23 08:38 - 2016-02-23 08:38 - 00009949 _____ C:\Users\marina.kouassi\AppData\Roaming\Recovery+frlnn.html
2016-02-23 08:38 - 2016-02-23 08:38 - 00009949 _____ C:\Users\marina.kouassi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery+frlnn.html
2016-02-23 08:38 - 2016-02-23 08:38 - 00009949 _____ C:\Users\marina.kouassi\AppData\Recovery+frlnn.html
2016-02-23 08:38 - 2016-02-23 08:38 - 00009949 _____ C:\Users\marina.kouassi\AppData\LocalLow\Recovery+frlnn.html
2016-02-23 08:38 - 2016-02-23 08:38 - 00002195 _____ C:\Users\marina.kouassi\AppData\Roaming\Recovery+frlnn.txt
2016-02-23 08:38 - 2016-02-23 08:38 - 00002195 _____ C:\Users\marina.kouassi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery+frlnn.txt
2016-02-23 08:38 - 2016-02-23 08:38 - 00002195 _____ C:\Users\marina.kouassi\AppData\Recovery+frlnn.txt
2016-02-23 08:38 - 2016-02-23 08:38 - 00002195 _____ C:\Users\marina.kouassi\AppData\LocalLow\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:46 - 00009949 _____ C:\Users\marina.kouassi\AppData\Local\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:46 - 00002195 _____ C:\Users\marina.kouassi\AppData\Local\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\germain.kouadio\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\germain.kouadio\Downloads\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\germain.kouadio\Documents\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\germain.kouadio\Desktop\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\germain.kouadio\AppData\Roaming\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\germain.kouadio\AppData\Roaming\Microsoft\Windows\Start Menu\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\germain.kouadio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\germain.kouadio\AppData\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\germain.kouadio\AppData\LocalLow\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\germain.kouadio\AppData\Local\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\Default\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\Default\Downloads\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\Default\Documents\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\Default\Desktop\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\Default\AppData\Roaming\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\Default\AppData\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\Default\AppData\Local\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\Default User\Downloads\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\Default User\Documents\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\Default User\Desktop\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\Default User\AppData\Roaming\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\Default User\AppData\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\Users\Default User\AppData\Local\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00009949 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recovery+frlnn.html
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\germain.kouadio\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\germain.kouadio\Downloads\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\germain.kouadio\Documents\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\germain.kouadio\Desktop\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\germain.kouadio\AppData\Roaming\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\germain.kouadio\AppData\Roaming\Microsoft\Windows\Start Menu\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\germain.kouadio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\germain.kouadio\AppData\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\germain.kouadio\AppData\LocalLow\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\germain.kouadio\AppData\Local\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\Default\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\Default\Downloads\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\Default\Documents\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\Default\Desktop\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\Default\AppData\Roaming\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\Default\AppData\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\Default\AppData\Local\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\Default User\Downloads\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\Default User\Documents\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\Default User\Desktop\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\Default User\AppData\Roaming\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\Default User\AppData\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\Users\Default User\AppData\Local\Recovery+frlnn.txt
2016-02-23 08:31 - 2016-02-23 08:31 - 00002195 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recovery+frlnn.txt
2016-02-23 08:30 - 2016-02-23 08:31 - 00009949 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Recovery+frlnn.html
2016-02-23 08:30 - 2016-02-23 08:31 - 00002195 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Recovery+frlnn.txt
2016-02-23 08:29 - 2016-02-23 08:48 - 00009949 _____ C:\Users\Public\Documents\Recovery+frlnn.html
2016-02-23 08:29 - 2016-02-23 08:48 - 00002195 _____ C:\Users\Public\Documents\Recovery+frlnn.txt
2016-02-23 08:29 - 2016-02-23 08:31 - 00009949 _____ C:\ProgramData\Recovery+frlnn.html
2016-02-23 08:29 - 2016-02-23 08:31 - 00002195 _____ C:\ProgramData\Recovery+frlnn.txt
2016-02-23 08:29 - 2016-02-23 08:29 - 00009949 _____ C:\Users\administrateur\Recovery+frlnn.html
2016-02-23 08:29 - 2016-02-23 08:29 - 00009949 _____ C:\Users\administrateur\Downloads\Recovery+frlnn.html
2016-02-23 08:29 - 2016-02-23 08:29 - 00009949 _____ C:\Users\administrateur\Documents\Recovery+frlnn.html
2016-02-23 08:29 - 2016-02-23 08:29 - 00009949 _____ C:\Users\administrateur\AppData\Roaming\Recovery+frlnn.html
2016-02-23 08:29 - 2016-02-23 08:29 - 00009949 _____ C:\Users\administrateur\AppData\Roaming\Microsoft\Windows\Start Menu\Recovery+frlnn.html
2016-02-23 08:29 - 2016-02-23 08:29 - 00009949 _____ C:\Users\administrateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery+frlnn.html
2016-02-23 08:29 - 2016-02-23 08:29 - 00009949 _____ C:\Users\administrateur\AppData\Recovery+frlnn.html
2016-02-23 08:29 - 2016-02-23 08:29 - 00009949 _____ C:\Users\administrateur\AppData\LocalLow\Recovery+frlnn.html
2016-02-23 08:29 - 2016-02-23 08:29 - 00009949 _____ C:\Users\administrateur\AppData\Local\Recovery+frlnn.html
2016-02-23 08:29 - 2016-02-23 08:29 - 00009949 _____ C:\Program Files\Recovery+frlnn.html
2016-02-23 08:29 - 2016-02-23 08:29 - 00002195 _____ C:\Users\administrateur\Recovery+frlnn.txt
2016-02-23 08:29 - 2016-02-23 08:29 - 00002195 _____ C:\Users\administrateur\Downloads\Recovery+frlnn.txt
2016-02-23 08:29 - 2016-02-23 08:29 - 00002195 _____ C:\Users\administrateur\Documents\Recovery+frlnn.txt
2016-02-23 08:29 - 2016-02-23 08:29 - 00002195 _____ C:\Users\administrateur\AppData\Roaming\Recovery+frlnn.txt
2016-02-23 08:29 - 2016-02-23 08:29 - 00002195 _____ C:\Users\administrateur\AppData\Roaming\Microsoft\Windows\Start Menu\Recovery+frlnn.txt
2016-02-23 08:29 - 2016-02-23 08:29 - 00002195 _____ C:\Users\administrateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery+frlnn.txt
2016-02-23 08:29 - 2016-02-23 08:29 - 00002195 _____ C:\Users\administrateur\AppData\Recovery+frlnn.txt
2016-02-23 08:29 - 2016-02-23 08:29 - 00002195 _____ C:\Users\administrateur\AppData\LocalLow\Recovery+frlnn.txt
2016-02-23 08:29 - 2016-02-23 08:29 - 00002195 _____ C:\Users\administrateur\AppData\Local\Recovery+frlnn.txt
2016-02-23 08:29 - 2016-02-23 08:29 - 00002195 _____ C:\Program Files\Recovery+frlnn.txt
2016-02-23 08:27 - 2016-02-23 08:27 - 00009949 _____ C:\Program Files\Common Files\Recovery+frlnn.html
2016-02-23 08:27 - 2016-02-23 08:27 - 00002195 _____ C:\Program Files\Common Files\Recovery+frlnn.txt
2016-02-23 08:26 - 2016-02-23 08:49 - 00009949 _____ C:\Users\Recovery+frlnn.html
2016-02-23 08:26 - 2016-02-23 08:49 - 00002195 _____ C:\Users\Recovery+frlnn.txt
2016-02-23 08:24 - 2016-02-23 08:24 - 00000254 _____ C:\Users\administrateur\Documents\recover_file_gaqqcficl.txt
2016-02-23 08:21 - 2016-02-23 08:08 - 00363008 ____H C:\Windows\urbkgwtxvcdm.exe
2016-02-09 15:11 - 2016-02-23 07:32 - 00002487 _____ C:\Users\marina.kouassi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-02-09 15:11 - 2016-02-23 07:32 - 00002462 _____ C:\Users\marina.kouassi\Desktop\Google Chrome.lnk
2016-02-09 15:02 - 2016-02-23 10:07 - 00001130 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3066347899-2153084027-3841207454-1277UA.job
2016-02-09 15:02 - 2016-02-22 15:07 - 00001078 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3066347899-2153084027-3841207454-1277Core.job
2016-02-09 15:02 - 2016-02-10 13:35 - 00000000 ____D C:\Users\marina.kouassi\AppData\Local\Google
2016-02-09 15:02 - 2016-02-09 15:02 - 00004094 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3066347899-2153084027-3841207454-1277UA
2016-02-09 15:02 - 2016-02-09 15:02 - 00003714 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3066347899-2153084027-3841207454-1277Core
2016-02-08 07:54 - 2016-02-08 07:54 - 00005088 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for CHIMTEC-marina.kouassi AGNES.chimtec.local
2016-02-01 11:47 - 2016-02-01 11:47 - 00000957 _____ C:\Users\marina.kouassi\Downloads\Nouveau dossier (2) - Raccourci.lnk
2016-01-27 16:36 - 2016-02-23 10:17 - 00005088 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for {b6032b99-d51d-4a38-9ef5-6569427a3ccb} AGNES.chimtec.local

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2016-02-23 10:45 - 2015-09-29 16:01 - 00000128 _____ C:\Windows\system32\config\netlogon.ftl
2016-02-23 10:44 - 2013-08-22 14:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-02-23 10:44 - 2013-08-22 13:25 - 00262144 ___SH C:\Windows\system32\config\BBI
2016-02-23 10:39 - 2015-09-29 17:13 - 00000000 ____D C:\Users\marina.kouassi\Documents\Mes numérisations
2016-02-23 10:32 - 2015-09-29 16:44 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3066347899-2153084027-3841207454-1277
2016-02-23 10:25 - 2015-09-29 16:43 - 00000000 ____D C:\Users\marina.kouassi\Desktop\ENVELLOPES
2016-02-23 10:20 - 2016-01-04 11:59 - 00000000 ____D C:\Users\marina.kouassi\Desktop\NOTE DE CREDIT 2016-Copie
2016-02-23 10:20 - 2016-01-04 10:25 - 00000000 ____D C:\Users\marina.kouassi\Desktop\DAI 2016 - Copie
2016-02-23 10:19 - 2015-09-30 08:14 - 00000000 ____D C:\Users\marina.kouassi\Desktop\ESTHER SMITH
2016-02-23 09:25 - 2015-11-24 09:51 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3066347899-2153084027-3841207454-1260
2016-02-23 08:49 - 2015-09-29 15:44 - 00000000 ____D C:\Users\THAIBA
2016-02-23 08:48 - 2015-09-29 16:06 - 00000000 ____D C:\Users\THAIBA\AppData\Local\Microsoft Help
2016-02-23 08:48 - 2015-09-29 15:44 - 00000000 ____D C:\Users\THAIBA\AppData\Local\VirtualStore
2016-02-23 08:48 - 2013-08-22 15:36 - 00000000 __RHD C:\Users\Public\Libraries
2016-02-23 08:47 - 2015-12-30 14:30 - 00000000 ____D C:\Users\Public\Documents\ccsetup512-5.12.5431
2016-02-23 08:47 - 2015-12-30 14:22 - 00000000 ____D C:\Users\Public\Documents\PROJET
2016-02-23 08:47 - 2015-12-30 14:22 - 00000000 ____D C:\Users\Public\Documents\doc adam
2016-02-23 08:47 - 2015-11-24 09:55 - 00000000 ____D C:\Users\pacome.kamara\AppData\Roaming\HpUpdate
2016-02-23 08:47 - 2015-11-24 09:45 - 00000000 ____D C:\Users\pacome.kamara\AppData\Local\VirtualStore
2016-02-23 08:47 - 2015-11-24 09:45 - 00000000 ____D C:\Users\pacome.kamara
2016-02-23 08:47 - 2015-09-29 16:38 - 00000000 ____D C:\Users\marina.kouassi
2016-02-23 08:46 - 2015-09-30 09:33 - 00000000 ____D C:\Users\marina.kouassi\Documents\Modèles Office personnalisés
2016-02-23 08:46 - 2015-09-29 17:14 - 00000000 ____D C:\Users\marina.kouassi\Documents\TRAITE 2014
2016-02-23 08:46 - 2015-09-29 17:14 - 00000000 ____D C:\Users\marina.kouassi\Documents\TD ECOBANK 2014
2016-02-23 08:46 - 2015-09-29 17:14 - 00000000 ____D C:\Users\marina.kouassi\Documents\Organo Gold
2016-02-23 08:46 - 2015-09-29 17:14 - 00000000 ____D C:\Users\marina.kouassi\Documents\Online Bible
2016-02-23 08:46 - 2015-09-29 17:14 - 00000000 ____D C:\Users\marina.kouassi\Documents\NOTE D'HONORAIRE
2016-02-23 08:46 - 2015-09-29 17:14 - 00000000 ____D C:\Users\marina.kouassi\Documents\NOTE DEBIT
2016-02-23 08:46 - 2015-09-29 17:14 - 00000000 ____D C:\Users\marina.kouassi\Documents\NOTE DE CREDIT 2014
2016-02-23 08:46 - 2015-09-29 17:13 - 00000000 ___RD C:\Users\marina.kouassi\Documents\Scanned Documents
2016-02-23 08:43 - 2015-09-29 17:13 - 00000000 ____D C:\Users\marina.kouassi\Documents\MAI
2016-02-23 08:43 - 2015-09-29 17:13 - 00000000 ____D C:\Users\marina.kouassi\Documents\HP Photosmart Projects
2016-02-23 08:43 - 2015-09-29 17:13 - 00000000 ____D C:\Users\marina.kouassi\Documents\Fichiers Outlook
2016-02-23 08:43 - 2015-09-29 17:13 - 00000000 ____D C:\Users\marina.kouassi\Documents\Fax
2016-02-23 08:43 - 2015-09-29 17:13 - 00000000 ____D C:\Users\marina.kouassi\Documents\ENVELLOPES
2016-02-23 08:43 - 2015-09-29 17:13 - 00000000 ____D C:\Users\marina.kouassi\Documents\COURIER 2014
2016-02-23 08:43 - 2015-09-29 17:13 - 00000000 ____D C:\Users\marina.kouassi\Documents\code ethique leader
2016-02-23 08:43 - 2015-09-29 17:13 - 00000000 ____D C:\Users\marina.kouassi\Documents\BURO PERPETUE
2016-02-23 08:43 - 2015-09-29 17:13 - 00000000 ____D C:\Users\marina.kouassi\Documents\BURO AYEKOUE
2016-02-23 08:42 - 2016-01-04 10:27 - 00000000 ____D C:\Users\marina.kouassi\Desktop\TRAITE 2016 - Copie
2016-02-23 08:42 - 2016-01-04 10:27 - 00000000 ____D C:\Users\marina.kouassi\Desktop\TD ECOBANK 2016 - Copie
2016-02-23 08:42 - 2016-01-04 10:21 - 00000000 ____D C:\Users\marina.kouassi\Desktop\COURRIER 2016 - Copie
2016-02-23 08:42 - 2016-01-04 10:20 - 00000000 ____D C:\Users\marina.kouassi\Desktop\NOTE HONORAIRE 2016 - Copie
2016-02-23 08:42 - 2016-01-04 10:20 - 00000000 ____D C:\Users\marina.kouassi\Desktop\NOTE DE DEBIT 2016 - Copie
2016-02-23 08:42 - 2015-09-29 17:13 - 00000000 ____D C:\Users\marina.kouassi\Documents\bureau
2016-02-23 08:42 - 2015-09-29 17:13 - 00000000 ____D C:\Users\marina.kouassi\Documents\Bible
2016-02-23 08:42 - 2015-09-29 17:13 - 00000000 ____D C:\Users\marina.kouassi\Documents\ADRESSE FOUR
2016-02-23 08:42 - 2015-09-29 16:43 - 00000000 ____D C:\Users\marina.kouassi\Desktop\CANTINE
2016-02-23 08:41 - 2015-09-29 16:43 - 00000000 ____D C:\Users\marina.kouassi\Desktop\bureau
2016-02-23 08:38 - 2015-11-25 12:28 - 00000000 ____D C:\Users\marina.kouassi\AppData\Roaming\HpUpdate
2016-02-23 08:38 - 2015-10-28 11:23 - 00000000 ____D C:\Users\marina.kouassi\AppData\Roaming\Downloaded Installations
2016-02-23 08:38 - 2015-10-01 14:16 - 00000000 ____D C:\Users\marina.kouassi\AppData\Roaming\vlc
2016-02-23 08:38 - 2015-09-29 16:38 - 00000000 ____D C:\Users\marina.kouassi\AppData\Local\VirtualStore
2016-02-23 08:31 - 2015-10-14 08:44 - 00000000 ____D C:\Users\germain.kouadio
2016-02-23 08:31 - 2015-09-30 08:01 - 00000000 ____D C:\ProgramData\WEBREG
2016-02-23 08:31 - 2015-09-30 07:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2016-02-23 08:31 - 2015-09-29 17:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EBS
2016-02-23 08:31 - 2015-09-29 16:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2016-02-23 08:31 - 2015-09-29 16:00 - 00000000 ____D C:\ProgramData\Skype
2016-02-23 08:31 - 2015-09-29 16:00 - 00000000 ____D C:\ProgramData\Mozilla
2016-02-23 08:31 - 2015-09-29 15:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2016-02-23 08:31 - 2015-09-29 15:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO
2016-02-23 08:31 - 2013-08-22 15:36 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-02-23 08:30 - 2015-11-23 16:09 - 00000000 ____D C:\ProgramData\HPSSUPPLY
2016-02-23 08:30 - 2015-09-30 08:00 - 00000000 ____D C:\ProgramData\HP Product Assistant
2016-02-23 08:29 - 2015-09-30 08:02 - 00000000 ____D C:\Users\administrateur\AppData\Roaming\Macromedia
2016-02-23 08:29 - 2015-09-30 08:02 - 00000000 ____D C:\Users\administrateur\AppData\Roaming\Adobe
2016-02-23 08:29 - 2015-09-30 08:02 - 00000000 ____D C:\Users\administrateur\AppData\Local\HP
2016-02-23 08:29 - 2015-09-30 08:01 - 00000000 ____D C:\Users\administrateur\AppData\Roaming\HP
2016-02-23 08:29 - 2015-09-30 07:55 - 00000000 ____D C:\Users\administrateur\AppData\Local\ElevatedDiagnostics
2016-02-23 08:29 - 2015-09-29 17:32 - 00000000 ____D C:\ProgramData\Hewlett-Packard
2016-02-23 08:29 - 2015-09-29 17:18 - 00000000 ____D C:\Users\administrateur
2016-02-23 08:28 - 2015-09-29 16:18 - 00000000 ____D C:\Program Files\Realtek
2016-02-23 08:28 - 2015-09-29 16:10 - 00000000 ____D C:\Program Files\Synaptics
2016-02-23 08:28 - 2015-09-29 16:10 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2016-02-23 08:28 - 2015-09-29 16:06 - 00000000 ____D C:\Program Files\Microsoft Office
2016-02-23 08:28 - 2013-09-30 04:03 - 00000000 ____D C:\Program Files\Windows Journal
2016-02-23 08:28 - 2013-08-22 15:36 - 00000000 __SHD C:\Program Files\Windows Sidebar
2016-02-23 08:28 - 2013-08-22 15:36 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-02-23 08:28 - 2013-08-22 15:36 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-02-23 08:28 - 2013-08-22 15:36 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-02-23 08:28 - 2013-08-22 15:36 - 00000000 ____D C:\Program Files\Windows Defender
2016-02-23 08:27 - 2015-09-30 08:04 - 00000000 ____D C:\Program Files\HP
2016-02-23 08:27 - 2015-09-30 07:57 - 00000000 ____D C:\Program Files\DIFX
2016-02-23 08:27 - 2015-09-29 16:06 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2016-02-23 08:27 - 2013-08-22 15:36 - 00000000 ____D C:\Program Files\Common Files\Services
2016-02-23 08:27 - 2013-08-22 15:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-02-23 08:26 - 2016-01-13 09:10 - 00000000 ____D C:\Mozilla
2016-02-23 08:26 - 2015-09-30 08:03 - 00000000 ____D C:\hp_lj1020_Full_Solution
2016-02-23 08:26 - 2015-09-29 16:12 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2016-02-23 08:26 - 2013-08-22 15:36 - 00000000 ____D C:\PerfLogs
2016-02-23 06:54 - 2015-10-09 16:52 - 00003968 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{8A56064E-5E15-448F-BD6F-804D2F190270}
2016-02-18 13:39 - 2015-09-29 16:38 - 00000000 ____D C:\Users\marina.kouassi\AppData\Local\Packages
2016-02-17 11:44 - 2013-08-22 13:36 - 00000000 ____D C:\Windows\Inf
2016-02-17 08:49 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\AppReadiness
2016-02-08 15:29 - 2013-09-30 04:24 - 01734474 _____ C:\Windows\system32\PerfStringBackup.INI
2016-02-08 15:29 - 2013-09-30 03:59 - 00774688 _____ C:\Windows\system32\perfh00C.dat
2016-02-08 15:29 - 2013-09-30 03:59 - 00151426 _____ C:\Windows\system32\perfc00C.dat
2016-02-04 10:43 - 2016-01-07 10:48 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-02-04 10:43 - 2015-09-29 16:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-02-02 08:59 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\system32\FxsTmp

==================== Fichiers à la racine de certains dossiers =======

2016-02-23 08:29 - 2016-02-23 08:29 - 0009949 _____ () C:\Program Files\Recovery+frlnn.html
2016-02-23 08:29 - 2016-02-23 08:29 - 0070437 _____ () C:\Program Files\Recovery+frlnn.png
2016-02-23 08:29 - 2016-02-23 08:29 - 0002195 _____ () C:\Program Files\Recovery+frlnn.txt
2016-02-23 08:27 - 2016-02-23 08:27 - 0009949 _____ () C:\Program Files\Common Files\Recovery+frlnn.html
2016-02-23 08:27 - 2016-02-23 08:27 - 0070437 _____ () C:\Program Files\Common Files\Recovery+frlnn.png
2016-02-23 08:27 - 2016-02-23 08:27 - 0002195 _____ () C:\Program Files\Common Files\Recovery+frlnn.txt
2016-02-23 08:47 - 2016-02-23 08:47 - 0009949 _____ () C:\Users\pacome.kamara\AppData\Roaming\Recovery+frlnn.html
2016-02-23 08:47 - 2016-02-23 08:47 - 0070437 _____ () C:\Users\pacome.kamara\AppData\Roaming\Recovery+frlnn.png
2016-02-23 08:47 - 2016-02-23 08:47 - 0002195 _____ () C:\Users\pacome.kamara\AppData\Roaming\Recovery+frlnn.txt
2016-02-23 08:47 - 2016-02-23 08:47 - 0009949 _____ () C:\Users\pacome.kamara\AppData\Roaming\Microsoft\Recovery+frlnn.html
2016-02-23 08:47 - 2016-02-23 08:47 - 0070437 _____ () C:\Users\pacome.kamara\AppData\Roaming\Microsoft\Recovery+frlnn.png
2016-02-23 08:47 - 2016-02-23 08:47 - 0002195 _____ () C:\Users\pacome.kamara\AppData\Roaming\Microsoft\Recovery+frlnn.txt
2016-02-23 08:47 - 2016-02-23 08:47 - 0009949 _____ () C:\Users\pacome.kamara\AppData\Local\Recovery+frlnn.html
2016-02-23 08:47 - 2016-02-23 08:47 - 0070437 _____ () C:\Users\pacome.kamara\AppData\Local\Recovery+frlnn.png
2016-02-23 08:47 - 2016-02-23 08:47 - 0002195 _____ () C:\Users\pacome.kamara\AppData\Local\Recovery+frlnn.txt
2015-09-30 07:58 - 2015-09-30 08:02 - 0000353 _____ () C:\ProgramData\hpzinstall.log
2016-02-23 08:29 - 2016-02-23 08:31 - 0009949 _____ () C:\ProgramData\Recovery+frlnn.html
2016-02-23 08:29 - 2016-02-23 08:31 - 0070437 _____ () C:\ProgramData\Recovery+frlnn.png
2016-02-23 08:29 - 2016-02-23 08:31 - 0002195 _____ () C:\ProgramData\Recovery+frlnn.txt

Certains fichiers dans TEMP:
====================
C:\Users\pacome.kamara\AppData\Local\Temp\hpusetup.exe
C:\Users\THAIBA\AppData\Local\Temp\ose00000.exe


==================== Bamital & volsnap =================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement
C:\Windows\system32\wininit.exe => Le fichier est signé numériquement
C:\Windows\explorer.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\Windows\system32\svchost.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\Windows\system32\services.exe => Le fichier est signé numériquement
C:\Windows\system32\User32.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\Windows\system32\userinit.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement
C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement


LastRegBack: 2016-02-16 08:27

==================== Fin de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité