---------- | AdsFix | g3n-h@ckm@n | 3_03.03.2016.1 ----- Vista | 7 | 8 | 8.1 | 10 - 32/64 bits ----- Start 20:47:02 - 13/03/2016 Mis a jour le : 03/03/2016 | 09.40 par g3n-h@ckm@n Contact : http://www.sosvirus.net Assistance : http://www.sosvirus.net/forum-virus-securite.html Feedbacks : http://www.sosvirus.net/feedbacks-t75915.html Facebook : https://www.facebook.com/AdsFixAntiAdware C:\Users\sirene\Desktop\AdsFix.exe Boot: Normal boot [sirene (Administrator)] - [SIRENE] - (FRANCE [040C]) SID = S-1-5-21-289331833-3879695167-2920210345 || [736972656e65205e5e] PC : ASUSTeK COMPUTER INC. - ET2013I-W8 - SKU Processor : X64 - 2893 - Intel(R) Pentium(R) CPU G645 @ 2.90GHz Bios : American Megatrends Inc. - 12/17/2012 - V.0401 CoreTemp : 29.8° C - Max : 103° C Système : Windows 10 Home (64 bits) Core Memoire RAM = Total (MB) : 4144 | Libre (MB) : 2332 Pagefile = Total (MB) : 7683 | Libre (MB) : 5251 Virtuelle = Total (MB) : 4194 | Libre (MB) : 3964 C:\ -> [Fixed] | [Windows] | Total : 149.56 Go | Free : 92.89 Go -> NTFS [SATA] D:\ -> [Fixed] | [Data] | Total : 763.43 Go | Free : 763.07 Go -> NTFS [SATA] Registre sauvegardé , pour restaurer : Cliquer sur Options & Restaurer le registre (C:\AdsFix\Save\Registry [13.03.2016 @ 20_47_00]) ou un element Restauration de fichiers ou dossiers supprimes par erreur : Cliquer sur Options & Restaurer Fichiers ou dossiers, Selectionner un element >> "Restaurer" ---------- | Mises a jour Windows Aucune mise a jour détectée !!! Microsoft : + ---------- | Navigateurs IE : 11.0.10586.20 (© Microsoft Corporation. Tous droits réservés.) MS-Edge : 11.0.10586.122 (© Microsoft Corporation. All rights reserved.) ---------- | Security (atcav : 0) AM : Malwarebytes' Anti-Malware (2.3.125.0) [Update : 15/06/2015 21:45:08] FW : WMI : OK WU: Windows Update Service [Manual(3)] = en cours AS: Windows Defender [Auto(2)] = en cours FW: Windows FireWall Service [Auto(2)] = en cours WMI: Windows Management Instrumentation (System Information) [Auto(2)] = en cours ---------- | FlashPlayer ActiveX : 21.0.0.182 ---------- | Processes closed 844 | [Owner : |Parent : 740(services.exe)] - (.AMD - AMD External Events Service Module.) - (6.14.11.1199) = C:\Windows\System32\atiesrxx.exe 1268 | [Owner : |Parent : 844()] - (.AMD - AMD External Events Client Module.) - (6.14.11.1199) = C:\Windows\System32\atieclxx.exe 1620 | [Owner : |Parent : 740(services.exe)] - (.Microsoft Corporation - Application sous-système spouleur.) - (10.0.10586.122) = C:\Windows\System32\spoolsv.exe 1828 | [Owner : Système |Parent : 740(services.exe)] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - (1.824.15.7129) = C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 1912 | [Owner : Système |Parent : 740(services.exe)] - (.- Asus WebStorage Windows Service.) - (1.0.0.0) = C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe 1944 | [Owner : Système |Parent : 740(services.exe)] - (.Microsoft Corporation - Microsoft Office Click-to-Run.) - (15.0.4797.1001) = C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe 1968 | [Owner : Système |Parent : 740(services.exe)] - (.ASUSTeK Computer Inc. - AsSysCtr Application.) - (1.0.0.1) = C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe 2044 | [Owner : SERVICE LOCAL |Parent : 1008(svchost.exe)] - (.Microsoft Corporation - Device Association Framework Provider Host.) - (10.0.10586.0) = C:\Windows\System32\dasHost.exe 1360 | [Owner : Système |Parent : 740(services.exe)] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host Interface.) - (8.1.0.1252) = C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe 2124 | [Owner : Système |Parent : 740(services.exe)] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Interface.) - (1.24.388.1) = C:\Program Files\Intel\iCLS Client\HeciServer.exe 2144 | [Owner : |Parent : 740(services.exe)] - (.Microsoft Corporation - Antimalware Service Executable.) - (4.9.10586.0) = C:\Program Files\Windows Defender\MsMpEng.exe 3800 | [Owner : sirene |Parent : 504(svchost.exe)] - (.Microsoft Corporation - Processus hôte pour Tâches Windows.) - (10.0.10586.0) = C:\Windows\System32\taskhostw.exe 3928 | [Owner : sirene |Parent : 504(svchost.exe)] - (.ASUSTeK Computer Inc. - ASUS Routine Controller.) - (1.0.0.1) = C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe 3948 | [Owner : sirene |Parent : 504(svchost.exe)] - (.ASUSTeK Computer Inc. - ALU MFC Application.) - (1.0.0.1) = C:\Program Files (x86)\ASUS\ASUS Easy Update\ALU.exe 3996 | [Owner : sirene |Parent : 828(svchost.exe)] - (.Microsoft Corporation - Runtime Broker.) - (10.0.10586.0) = C:\Windows\System32\RuntimeBroker.exe 1500 | [Owner : sirene |Parent : 828(svchost.exe)] - (.-.) - (10.1.2123.10) = C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe 4808 | [Owner : sirene |Parent : 828(svchost.exe)] - (.Microsoft Corporation - Host Process for Setting Synchronization.) - (10.0.10586.0) = C:\Windows\System32\SettingSyncHost.exe 4880 | [Owner : sirene |Parent : 828(svchost.exe)] - (.Microsoft Corporation - System Settings Broker.) - (10.0.10586.0) = C:\Windows\System32\SystemSettingsBroker.exe 5064 | [Owner : sirene |Parent : 3416(explorer.exe)] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) - (1.0.0.791) = C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe 4612 | [Owner : sirene |Parent : 4536()] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) - (4.5.0.0) = C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe 948 | [Owner : sirene |Parent : 3728()] - (.ASUSTek Computer Inc. - AiChargerPlus Application.) - (2.0.0.0) = C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe 4664 | [Owner : sirene |Parent : 4612(MOM.exe)] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Host application.) - (4.5.0.0) = C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe 4652 | [Owner : sirene |Parent : 3728()] - (.CyberLink Corp. - PowerDVD RC Service.) - (7.0.2314.0) = C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe 5040 | [Owner : sirene |Parent : 3728()] - (.Hewlett-Packard - hpwuSchd Application.) - (80.1.1.0) = C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe 3520 | [Owner : sirene |Parent : 3840()] - (.ASUSTeK Computer Inc. - Handle ASUS All-In-One any event.) - (1.0.0.7) = C:\Program Files (x86)\ASUS\ASUS Key Suite\AsKeySuite.exe 3592 | [Owner : sirene |Parent : 3928()] - (.ASUSTeK Computer Inc. - AI Suite II.) - (2.0.0.0) = C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe 1932 | [Owner : sirene |Parent : 828(svchost.exe)] - (.Microsoft Corporation - Application Frame Host.) - (10.0.10586.0) = C:\Windows\System32\ApplicationFrameHost.exe 5468 | [Owner : sirene |Parent : 2872()] - (.Intel Corporation - IAStorIcon.) - (11.6.0.1030) = C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe 5540 | [Owner : Système |Parent : 740(services.exe)] - (.Intel Corporation - IAStorDataSvc.) - (11.6.0.1030) = C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe 6228 | [Owner : Système |Parent : 740(services.exe)] - (.Intel Corporation - Local Manageability Service.) - (8.1.0.1252) = C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe 6424 | [Owner : sirene |Parent : 740(services.exe)] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.10586.0) = C:\Windows\System32\svchost.exe 6580 | [Owner : Système |Parent : 740(services.exe)] - (.Intel Corporation - User Notification Service.) - (8.1.0.1252) = C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe 3756 | [Owner : sirene |Parent : 828(svchost.exe)] - (.Microsoft Corporation - Serveur de personnalisation d’entrée.) - (10.0.10586.0) = C:\Program Files\Common Files\microsoft shared\ink\InputPersonalization.exe 5616 | [Owner : sirene |Parent : 828(svchost.exe)] - (.- Microsoft Photos.) - (16.302.8200.0) = C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.302.8200.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe 1660 | [Owner : SERVICE RÉSEAU |Parent : 4500()] - (.Microsoft Corporation - Microsoft Malware Protection Command Line Utility.) - (4.9.10586.0) = C:\Program Files\Windows Defender\MpCmdRun.exe 1240 | [Owner : sirene |Parent : 828(svchost.exe)] - (.Microsoft Corporation - Microsoft Edge.) - (11.0.10586.122) = C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe 5800 | [Owner : sirene |Parent : 828(svchost.exe)] - (.Microsoft Corporation - Browser_Broker.) - (11.0.10586.0) = C:\Windows\System32\browser_broker.exe 2712 | [Owner : sirene |Parent : 3996()] - (.Microsoft Corporation - Microsoft Edge Content Process.) - (11.0.10586.20) = C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe 7020 | [Owner : sirene |Parent : 828(svchost.exe)] - (.Adobe Systems Incorporated - Adobe® Flash® Player Utility.) - (21.0.0.182) = C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe 7492 | [Owner : sirene |Parent : 3416(explorer.exe)] - (.Microsoft Corporation - Windows Defender User Interface.) - (4.9.10586.0) = C:\Program Files\Windows Defender\MSASCui.exe ---------- | Tasks Suppression : HPCustParticipation HP ENVY 4520 series Suppression : C:\WINDOWS\Tasks\0215pitUpdateInfo.job (.-.) (->) ---------- | Services ---------- | AppCertDlls | AppInit_DLLs ---------- | DNSapi.dll C:\WINDOWS\System32\dnsapi.dll : \drivers\etc\hosts C:\WINDOWS\SysWOW64\dnsapi.dll : \drivers\etc\hosts ---------- | Hosts ---------- | SafeBoot ---------- | Winsock ---------- | DNS ---------- | Registre Suppression : HKU\S-1-5-21-289331833-3879695167-2920210345-1001\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\01net.com Suppression : HKU\S-1-5-21-289331833-3879695167-2920210345-1001\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\121\Internet Explorer\DOMStorage\akamaihd.net Suppression : HKU\S-1-5-21-289331833-3879695167-2920210345-1001\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\bouyguestelecom.fr-enqueteofficielle.online Suppression : HKU\S-1-5-21-289331833-3879695167-2920210345-1001\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\121\Internet Explorer\EdpDomStorage\zynga.com Suppression : [HKU\S-1-5-21-289331833-3879695167-2920210345-1001\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]~[C:\Program Files (x86)\Movies Toolbar\SafetyNut\SRTOOL~1\uninstall.exe] Suppression : [HKU\S-1-5-21-289331833-3879695167-2920210345-1001\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]~[C:\Users\sirene\AppData\Local\Bundled software uninstaller\biclient.exe] Suppression : [HKU\S-1-5-21-289331833-3879695167-2920210345-1001\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]~[C:\Program Files (x86)\Groovorio\uninstall.exe] Suppression : HKU\S-1-5-21-289331833-3879695167-2920210345-1001\SOFTWARE\Zylom Suppression : HKLM\SOFTWARE\Wow6432Node\SuppHelpDir Suppression : HKU\S-1-5-21-289331833-3879695167-2920210345-1001\SOFTWARE\com.runningpillow.ttt : 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 Suppression : [HKU\S-1-5-21-289331833-3879695167-2920210345-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]~[DefaultScope] : {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Suppression : [HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]~[DefaultScope] Suppression : [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes]~[DefaultScope] Suppression : HKU\S-1-5-21-289331833-3879695167-2920210345-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} : C:\Users\sirene\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{0633EE93-D776-472f-A0FF-E1416B8B2E3A}.ico Suppression : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Suppression : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Users\sirene\AppData\Local\Smartbar\Common\] Suppression : [HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\Folders]~[C:\Users\sirene\AppData\Local\Smartbar\Application\] ---------- | Dossiers | Fichiers Suppression : C:\Users\sirene\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{0633EE93-D776-472f-A0FF-E1416B8B2E3A}.ico (.-.) ---------- | .LNK ---------- | Ouverture extension inconnue ---------- | Proxy ---------- | Internet Explorer Reparation : [HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main]~[Local Page] : %11%\blank.htm -> C:\WINDOWS\System32\blank.htm Reparation : [HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main]~[Local Page] : %11%\blank.htm -> C:\WINDOWS\System32\blank.htm Reparation : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main]~[Local Page] : C:\Windows\SysWOW64\blank.htm -> C:\WINDOWS\System32\blank.htm Reparation : [HKU\S-1-5-21-289331833-3879695167-2920210345-1001\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter]~[Enabled] : -> 2 Reparation : [HKU\S-1-5-21-289331833-3879695167-2920210345-1001\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter]~[EnabledV8] : -> 1 Reparation : [HKU\S-1-5-21-289331833-3879695167-2920210345-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet settings]~[WarNonBadCertReceving] : -> 1 Reparation : [HKU\S-1-5-21-289331833-3879695167-2920210345-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet settings]~[WarNonHTTPSToHTTPRedirect] : -> 1 Reparation : [HKU\S-1-5-21-289331833-3879695167-2920210345-1001\SOFTWARE\Microsoft\Internet Explorer\Toolbar]~[Locked] : 1 -> 0 ---------- | Yandex ---------- | Google Chrome ---------- | Chromium ---------- | Comodo Dragon ---------- | Firefox ---------- | SeaMonkey ---------- | Pale moon ---------- | Opera ---------- | Spark ---------- | StartMenuInternet ---------- | Javascript ---------- | Firewall ---------- | ADS ---------- | Fichiers temporaires [All Users] Fichiers temporaires Suppression : 0 Ko [Default] Fichiers temporaires Suppression : 0 Ko [Default User] Fichiers temporaires Suppression : 0 Ko [Default.migrated] Fichiers temporaires Suppression : 0 Ko [Public] Fichiers temporaires Suppression : 0 Ko [sirene] Fichiers temporaires Suppression : 214 Ko [C:\WINDOWS\Temp] Fichiers temporaires Suppression : 6 Ko [C:\Temp] Fichiers temporaires Suppression : 0 Ko Autre rapport ---------- | Listing ---------- | C:\Program Files (x86) [30/04/2013 10:46:15] - |D| - [468674.61 Ko] - C:\Program Files (x86)\Adobe [10/07/2013 22:53:43] - |AD| - [2196.53 Ko] - C:\Program Files (x86)\AMD APP [10/07/2013 22:53:44] - |D| - [377.34 Ko] - C:\Program Files (x86)\AMD AVT [10/07/2013 22:56:13] - |AD| - [1057.75 Ko] - C:\Program Files (x86)\AmIcoSingLun [30/04/2013 10:43:38] - |AD| - [2439.36 Ko] - C:\Program Files (x86)\ASM104xUSB3 [30/04/2013 10:43:59] - |D| - [136766.75 Ko] - C:\Program Files (x86)\ASUS [13/01/2016 18:28:23] - |AD| - [109639.47 Ko] - C:\Program Files (x86)\ATI Technologies [30/10/2015 07:28:30] - |D| - [560336.09 Ko] - C:\Program Files (x86)\Common Files [10/07/2013 23:00:57] - |D| - [178316.81 Ko] - C:\Program Files (x86)\CyberLink [30/10/2015 08:24:28] - |ASH| - [0.17 Ko] - C:\Program Files (x86)\desktop.ini [21/02/2014 17:26:02] - |D| - [0 Ko] - C:\Program Files (x86)\Heaven and Hell [12/01/2016 22:14:35] - |AD| - [25640.14 Ko] - C:\Program Files (x86)\HP [12/01/2016 22:15:06] - |D| - [341.86 Ko] - C:\Program Files (x86)\HP Photo Creations [30/04/2013 10:37:04] - |HD| - [99572.22 Ko] - C:\Program Files (x86)\InstallShield Installation Information [30/04/2013 10:37:04] - |D| - [39004 Ko] - C:\Program Files (x86)\Intel [30/10/2015 08:24:24] - |D| - [2104.51 Ko] - C:\Program Files (x86)\Internet Explorer [15/06/2015 21:45:06] - |AD| - [57342.9 Ko] - C:\Program Files (x86)\Malwarebytes Anti-Malware [30/04/2013 10:51:40] - |D| - [22.8 Ko] - C:\Program Files (x86)\McAfee [30/04/2013 11:05:48] - |D| - [0 Ko] - C:\Program Files (x86)\Microsoft [19/06/2015 22:11:54] - |D| - [100730.72 Ko] - C:\Program Files (x86)\Microsoft Analysis Services [30/04/2013 10:56:37] - |AD| - [1291219.53 Ko] - C:\Program Files (x86)\Microsoft Office [30/04/2013 11:02:37] - |D| - [5526.46 Ko] - C:\Program Files (x86)\Microsoft SkyDrive [19/06/2015 22:12:55] - |D| - [29.45 Ko] - C:\Program Files (x86)\Microsoft SQL Server [30/04/2013 11:03:35] - |AD| - [1786.99 Ko] - C:\Program Files (x86)\Microsoft SQL Server Compact Edition [30/10/2015 08:24:24] - |AD| - [8648.06 Ko] - C:\Program Files (x86)\Microsoft.NET [11/12/2015 05:02:27] - |D| - [33.27 Ko] - C:\Program Files (x86)\Mozilla Firefox [13/01/2016 18:17:58] - |D| - [25.15 Ko] - C:\Program Files (x86)\MSBuild [30/04/2013 11:00:50] - |AD| - [150.42 Ko] - C:\Program Files (x86)\MSXML 4.0 [04/01/2016 16:46:47] - |D| - [0 Ko] - C:\Program Files (x86)\MyHeritage [10/07/2013 22:56:53] - |D| - [1734.72 Ko] - C:\Program Files (x86)\Nuvoton Technology Corp [10/07/2013 22:56:38] - |AD| - [36.52 Ko] - C:\Program Files (x86)\Qualcomm Atheros [30/04/2013 10:38:33] - |D| - [6065.36 Ko] - C:\Program Files (x86)\Realtek [13/01/2016 18:17:58] - |D| - [40000.25 Ko] - C:\Program Files (x86)\Reference Assemblies [08/10/2013 10:45:11] - |D| - [0 Ko] - C:\Program Files (x86)\Rush for Gold - Alaska [30/04/2013 10:38:32] - |HD| - [0 Ko] - C:\Program Files (x86)\Temp [13/01/2016 18:40:11] - |HD| - [0 Ko] - C:\Program Files (x86)\Uninstall Information [30/10/2015 08:24:24] - |D| - [1431.5 Ko] - C:\Program Files (x86)\Windows Defender [30/04/2013 11:03:23] - |AD| - [138191.26 Ko] - C:\Program Files (x86)\Windows Live [30/10/2015 08:24:24] - |D| - [5822 Ko] - C:\Program Files (x86)\Windows Mail [30/10/2015 08:24:24] - |D| - [3264.58 Ko] - C:\Program Files (x86)\Windows Media Player [30/10/2015 08:24:24] - |D| - [214.91 Ko] - C:\Program Files (x86)\Windows Multimedia Platform [30/10/2015 08:24:24] - |D| - [7398.06 Ko] - C:\Program Files (x86)\Windows NT [30/10/2015 08:24:24] - |D| - [5355.69 Ko] - C:\Program Files (x86)\Windows Photo Viewer [30/10/2015 08:24:24] - |D| - [214.91 Ko] - C:\Program Files (x86)\Windows Portable Devices [30/10/2015 08:24:24] - |SHD| - [0 Ko] - C:\Program Files (x86)\Windows Sidebar [30/10/2015 08:24:24] - |SD| - [2622.3 Ko] - C:\Program Files (x86)\WindowsPowerShell ---------- | C:\Program Files [13/01/2016 18:27:47] - |D| - [94603.77 Ko] - C:\Program Files\AMD [10/07/2013 22:53:21] - |D| - [26827.68 Ko] - C:\Program Files\ATI [13/01/2016 18:28:38] - |AD| - [5472.41 Ko] - C:\Program Files\ATI Technologies [30/10/2015 07:28:30] - |D| - [117624.88 Ko] - C:\Program Files\Common Files [30/10/2015 08:24:28] - |ASH| - [0.17 Ko] - C:\Program Files\desktop.ini [08/11/2013 17:10:23] - |SHD| - [117624.88 Ko] - C:\Program Files\Fichiers communs [12/01/2016 22:14:34] - |D| - [147173.86 Ko] - C:\Program Files\HP [10/07/2013 22:54:01] - |D| - [12656.78 Ko] - C:\Program Files\Intel [30/10/2015 08:24:24] - |D| - [2709.74 Ko] - C:\Program Files\Internet Explorer [19/06/2015 22:11:28] - |D| - [21182.9 Ko] - C:\Program Files\Microsoft Office [27/09/2013 12:57:18] - |AD| - [3863807.3 Ko] - C:\Program Files\Microsoft Office 15 [13/01/2016 18:17:58] - |D| - [25.15 Ko] - C:\Program Files\MSBuild [13/01/2016 18:27:25] - |D| - [33026.18 Ko] - C:\Program Files\Realtek [13/01/2016 18:17:58] - |D| - [38437.17 Ko] - C:\Program Files\Reference Assemblies [26/07/2012 08:22:18] - |HD| - [0 Ko] - C:\Program Files\Uninstall Information [30/10/2015 08:24:24] - |D| - [11132.96 Ko] - C:\Program Files\Windows Defender [30/10/2015 20:03:03] - |D| - [8764.12 Ko] - C:\Program Files\Windows Journal [30/10/2015 08:24:24] - |D| - [6174 Ko] - C:\Program Files\Windows Mail [30/10/2015 08:24:24] - |D| - [5268.11 Ko] - C:\Program Files\Windows Media Player [30/10/2015 08:24:24] - |D| - [252.23 Ko] - C:\Program Files\Windows Multimedia Platform [30/10/2015 08:24:24] - |D| - [7678.06 Ko] - C:\Program Files\Windows NT [30/10/2015 08:24:24] - |D| - [6231.69 Ko] - C:\Program Files\Windows Photo Viewer [30/10/2015 08:24:24] - |D| - [252.23 Ko] - C:\Program Files\Windows Portable Devices [30/10/2015 08:24:24] - |SHD| - [0 Ko] - C:\Program Files\Windows Sidebar [30/10/2015 08:24:24] - |HD| - [2510859.68 Ko] - C:\Program Files\WindowsApps [30/10/2015 08:24:24] - |SD| - [2789.19 Ko] - C:\Program Files\WindowsPowerShell ---------- | C:\Program Files (x86)\Common Files [30/04/2013 10:46:15] - |AD| - [19838.18 Ko] - C:\Program Files (x86)\Common Files\Adobe [10/07/2013 22:53:44] - |D| - [2292 Ko] - C:\Program Files (x86)\Common Files\ATI Technologies [27/07/2015 10:56:33] - |AD| - [13.71 Ko] - C:\Program Files (x86)\Common Files\DESIGNER [30/04/2013 10:38:30] - |D| - [4898.27 Ko] - C:\Program Files (x86)\Common Files\InstallShield [30/04/2013 10:51:35] - |D| - [176.3 Ko] - C:\Program Files (x86)\Common Files\Intel Corporation [30/10/2015 08:24:24] - |AD| - [405709.69 Ko] - C:\Program Files (x86)\Common Files\Microsoft Shared [10/07/2013 22:53:46] - |D| - [189.06 Ko] - C:\Program Files (x86)\Common Files\postureAgent [30/10/2015 08:24:24] - |D| - [2.64 Ko] - C:\Program Files (x86)\Common Files\Services [30/10/2015 08:24:24] - |D| - [10114.09 Ko] - C:\Program Files (x86)\Common Files\System [30/04/2013 11:02:24] - |D| - [117102.15 Ko] - C:\Program Files (x86)\Common Files\Windows Live ---------- | C:\Program Files\Common Files [13/01/2016 18:27:51] - |D| - [3518.47 Ko] - C:\Program Files\Common Files\ATI Technologies [19/06/2015 20:51:13] - |D| - [0 Ko] - C:\Program Files\Common Files\AV [30/10/2015 08:24:24] - |AD| - [103844.39 Ko] - C:\Program Files\Common Files\microsoft shared [30/10/2015 08:24:24] - |D| - [2.64 Ko] - C:\Program Files\Common Files\Services [30/10/2015 08:24:24] - |D| - [10259.39 Ko] - C:\Program Files\Common Files\System ---------- | C:\Users\sirene [13/01/2016 18:30:08] - |HD| - [17770346.03 Ko] - C:\Users\sirene\AppData [13/01/2016 18:30:08] - |SHD| - [359100.49 Ko] - C:\Users\sirene\Application Data [25/09/2013 19:42:31] - |RD| - [13.27 Ko] - C:\Users\sirene\Contacts [13/01/2016 18:30:08] - |SHD| - [109.02 Ko] - C:\Users\sirene\Cookies [08/11/2013 16:54:12] - |RD| - [5558 Ko] - C:\Users\sirene\Desktop [08/11/2013 16:54:12] - |RD| - [3677552.51 Ko] - C:\Users\sirene\Documents [25/09/2013 19:40:17] - |RD| - [1169148.33 Ko] - C:\Users\sirene\Downloads [08/11/2013 16:54:12] - |RD| - [77.3 Ko] - C:\Users\sirene\Favorites [25/09/2013 19:40:17] - |RD| - [2.44 Ko] - C:\Users\sirene\Links [13/01/2016 18:30:08] - |SHD| - [17349942.33 Ko] - C:\Users\sirene\Local Settings [13/01/2016 18:30:08] - |SHD| - [48.57 Ko] - C:\Users\sirene\Menu Démarrer [13/01/2016 18:30:08] - |SHD| - [3677552.51 Ko] - C:\Users\sirene\Mes documents [13/01/2016 18:30:08] - |SHD| - [0 Ko] - C:\Users\sirene\Modèles [25/09/2013 19:40:17] - |RD| - [68.58 Ko] - C:\Users\sirene\Music [13/01/2016 18:30:07] - |ASH| - [3584 Ko] - C:\Users\sirene\NTUSER.DAT [13/01/2016 18:30:08] - |ASH| - [916 Ko] - C:\Users\sirene\ntuser.dat.LOG1 [13/01/2016 18:30:08] - |ASH| - [104 Ko] - C:\Users\sirene\ntuser.dat.LOG2 [13/01/2016 18:30:08] - |ASH| - [64 Ko] - C:\Users\sirene\NTUSER.DAT{94e97d7d-ba1a-11e5-9883-932ca593cb0f}.TM.blf [13/01/2016 18:30:08] - |ASH| - [512 Ko] - C:\Users\sirene\NTUSER.DAT{94e97d7d-ba1a-11e5-9883-932ca593cb0f}.TMContainer00000000000000000001.regtrans-ms [13/01/2016 18:30:08] - |ASH| - [512 Ko] - C:\Users\sirene\NTUSER.DAT{94e97d7d-ba1a-11e5-9883-932ca593cb0f}.TMContainer00000000000000000002.regtrans-ms [13/01/2016 18:51:06] - |ASH| - [0.02 Ko] - C:\Users\sirene\ntuser.ini [14/05/2015 08:28:32] - |RD| - [0.09 Ko] - C:\Users\sirene\OneDrive [25/09/2013 19:40:17] - |RD| - [3672027.62 Ko] - C:\Users\sirene\Pictures [13/01/2016 18:30:08] - |SHD| - [59.66 Ko] - C:\Users\sirene\Recent [25/09/2013 19:40:17] - |RD| - [0.28 Ko] - C:\Users\sirene\Saved Games [25/09/2013 19:42:47] - |RD| - [2.75 Ko] - C:\Users\sirene\Searches [13/01/2016 18:30:08] - |SHD| - [5.39 Ko] - C:\Users\sirene\SendTo [08/11/2013 19:17:17] - |RADO| - [172224.54 Ko] - C:\Users\sirene\SkyDrive [28/09/2013 08:21:38] - |RD| - [0.09 Ko] - C:\Users\sirene\SkyDrive.old [25/09/2013 19:40:17] - |RD| - [198.49 Ko] - C:\Users\sirene\Videos [13/01/2016 18:30:08] - |SHD| - [0 Ko] - C:\Users\sirene\Voisinage d'impression [13/01/2016 18:30:08] - |SHD| - [0 Ko] - C:\Users\sirene\Voisinage réseau ---------- | C:\Users\sirene\AppData\Roaming [24/10/2013 20:09:44] - |D| - [329.08 Ko] - C:\Users\sirene\AppData\Roaming\4 Friends Games [17/10/2013 19:19:02] - |D| - [1468.82 Ko] - C:\Users\sirene\AppData\Roaming\8floor [25/09/2013 19:42:09] - |D| - [1865.38 Ko] - C:\Users\sirene\AppData\Roaming\Adobe [30/09/2013 07:27:53] - |D| - [1665.25 Ko] - C:\Users\sirene\AppData\Roaming\AlawarEntertainment [28/09/2013 19:47:19] - |D| - [0.73 Ko] - C:\Users\sirene\AppData\Roaming\Anuman [07/01/2014 19:44:56] - |D| - [20081.86 Ko] - C:\Users\sirene\AppData\Roaming\Apple Computer [14/10/2013 20:04:14] - |D| - [9515.85 Ko] - C:\Users\sirene\AppData\Roaming\Artifex Mundi [25/09/2013 19:43:13] - |D| - [0 Ko] - C:\Users\sirene\AppData\Roaming\ASUS WebStorage [25/09/2013 19:44:15] - |D| - [0 Ko] - C:\Users\sirene\AppData\Roaming\ATI [20/12/2013 17:31:11] - |D| - [3.53 Ko] - C:\Users\sirene\AppData\Roaming\BlooBuzz [13/10/2013 20:55:58] - |D| - [1.71 Ko] - C:\Users\sirene\AppData\Roaming\Blue Tea Games [15/10/2013 17:18:00] - |D| - [59.37 Ko] - C:\Users\sirene\AppData\Roaming\CaribbeanJewel [24/10/2013 21:12:37] - |D| - [193.85 Ko] - C:\Users\sirene\AppData\Roaming\casualArts [07/12/2013 17:14:36] - |D| - [1906.69 Ko] - C:\Users\sirene\AppData\Roaming\cerasus.media [29/09/2013 10:52:12] - |D| - [31.1 Ko] - C:\Users\sirene\AppData\Roaming\Chayowo Games [21/02/2014 17:47:51] - |D| - [5.5 Ko] - C:\Users\sirene\AppData\Roaming\Clockwork Pixels [16/10/2013 19:28:57] - |D| - [2.27 Ko] - C:\Users\sirene\AppData\Roaming\CyberLink [03/10/2013 18:18:37] - |D| - [7399.61 Ko] - C:\Users\sirene\AppData\Roaming\DailyMagic [23/11/2013 21:41:31] - |D| - [7.39 Ko] - C:\Users\sirene\AppData\Roaming\Dereza [13/09/2014 18:12:02] - |D| - [16714.74 Ko] - C:\Users\sirene\AppData\Roaming\DikobrazGames [16/10/2013 19:56:37] - |D| - [327.11 Ko] - C:\Users\sirene\AppData\Roaming\DominiGames [05/10/2013 15:06:14] - |D| - [4264.09 Ko] - C:\Users\sirene\AppData\Roaming\Eipix [15/10/2013 16:12:49] - |D| - [322.38 Ko] - C:\Users\sirene\AppData\Roaming\EleFun Games [20/11/2013 20:41:27] - |D| - [77.3 Ko] - C:\Users\sirene\AppData\Roaming\Elephant Games [27/09/2013 17:39:16] - |D| - [2240.96 Ko] - C:\Users\sirene\AppData\Roaming\ERS Game Studios [27/09/2013 11:50:41] - |D| - [92.42 Ko] - C:\Users\sirene\AppData\Roaming\FarmMystery [15/12/2013 18:40:33] - |D| - [14007.84 Ko] - C:\Users\sirene\AppData\Roaming\Fugazo [04/10/2013 12:44:48] - |D| - [483.29 Ko] - C:\Users\sirene\AppData\Roaming\GestaltGames [23/11/2013 14:37:14] - |D| - [1.11 Ko] - C:\Users\sirene\AppData\Roaming\Grey Alien Games [23/02/2014 18:24:51] - |D| - [2.26 Ko] - C:\Users\sirene\AppData\Roaming\Heaven&Hell [10/10/2013 19:42:06] - |D| - [28.57 Ko] - C:\Users\sirene\AppData\Roaming\HotLava [12/01/2016 22:14:51] - |D| - [2.74 Ko] - C:\Users\sirene\AppData\Roaming\HpUpdate [08/11/2013 19:13:52] - |D| - [0 Ko] - C:\Users\sirene\AppData\Roaming\Identities [25/09/2013 19:44:10] - |D| - [0.67 Ko] - C:\Users\sirene\AppData\Roaming\Intel Corporation [13/09/2014 18:19:41] - |D| - [2.74 Ko] - C:\Users\sirene\AppData\Roaming\Islands5_realore_bigfishgames_fr [07/11/2013 13:39:21] - |D| - [2.97 Ko] - C:\Users\sirene\AppData\Roaming\Laruaville [29/09/2013 11:28:53] - |D| - [0.43 Ko] - C:\Users\sirene\AppData\Roaming\Liam games [25/09/2013 19:42:10] - |D| - [1.52 Ko] - C:\Users\sirene\AppData\Roaming\Macromedia [04/10/2013 10:13:42] - |D| - [1560.71 Ko] - C:\Users\sirene\AppData\Roaming\Mad Head Games [07/11/2013 09:24:55] - |D| - [308.12 Ko] - C:\Users\sirene\AppData\Roaming\Mariaglorum [09/10/2013 19:40:32] - |D| - [261.96 Ko] - C:\Users\sirene\AppData\Roaming\MediaArt [07/11/2013 09:59:51] - |D| - [33.29 Ko] - C:\Users\sirene\AppData\Roaming\Melesta [13/01/2016 18:30:08] - |SD| - [49568.49 Ko] - C:\Users\sirene\AppData\Roaming\Microsoft [05/12/2013 19:23:40] - |D| - [2346.6 Ko] - C:\Users\sirene\AppData\Roaming\Mind Elevator Games [16/11/2013 13:14:34] - |D| - [3689.46 Ko] - C:\Users\sirene\AppData\Roaming\MoonriseInteractive [27/09/2013 17:48:03] - |D| - [60.77 Ko] - C:\Users\sirene\AppData\Roaming\My Games [04/01/2016 16:47:53] - |D| - [176163.7 Ko] - C:\Users\sirene\AppData\Roaming\MyHeritage [27/11/2013 15:22:44] - |D| - [4.41 Ko] - C:\Users\sirene\AppData\Roaming\Nevosoft [08/10/2013 11:43:45] - |D| - [77.66 Ko] - C:\Users\sirene\AppData\Roaming\NevoSoft Games [14/10/2013 19:47:33] - |D| - [6.89 Ko] - C:\Users\sirene\AppData\Roaming\Nordcurrent [01/10/2013 10:46:23] - |D| - [4.2 Ko] - C:\Users\sirene\AppData\Roaming\Orneon [15/12/2013 17:40:14] - |D| - [11.53 Ko] - C:\Users\sirene\AppData\Roaming\Pizza Pizza [23/11/2013 15:38:51] - |D| - [8.41 Ko] - C:\Users\sirene\AppData\Roaming\Playrix Entertainment [13/10/2013 21:13:19] - |D| - [5.63 Ko] - C:\Users\sirene\AppData\Roaming\Rainbow [07/03/2014 20:57:55] - |D| - [0.83 Ko] - C:\Users\sirene\AppData\Roaming\Realore [20/11/2013 21:44:11] - |D| - [102.99 Ko] - C:\Users\sirene\AppData\Roaming\rokapublish [28/09/2013 20:47:39] - |D| - [35.9 Ko] - C:\Users\sirene\AppData\Roaming\Rumbic Studio [16/10/2013 20:58:22] - |D| - [184.86 Ko] - C:\Users\sirene\AppData\Roaming\ShamanGS [27/09/2013 12:37:24] - |D| - [20.36 Ko] - C:\Users\sirene\AppData\Roaming\SMIGames [14/12/2013 20:06:40] - |D| - [38.2 Ko] - C:\Users\sirene\AppData\Roaming\Solitaire Egypt [27/09/2013 16:09:46] - |D| - [2988.07 Ko] - C:\Users\sirene\AppData\Roaming\SulusGames [15/10/2013 16:14:42] - |D| - [369.76 Ko] - C:\Users\sirene\AppData\Roaming\tabagames [21/11/2013 20:56:53] - |D| - [3382 Ko] - C:\Users\sirene\AppData\Roaming\Tap It Games [28/09/2013 18:45:28] - |D| - [705.27 Ko] - C:\Users\sirene\AppData\Roaming\The Curse of the Werewolves [19/06/2015 20:51:07] - |D| - [0 Ko] - C:\Users\sirene\AppData\Roaming\TuneUp Software [25/09/2013 22:29:25] - |D| - [31694.39 Ko] - C:\Users\sirene\AppData\Roaming\uTorrent [30/09/2013 17:44:17] - |D| - [60.8 Ko] - C:\Users\sirene\AppData\Roaming\Vast Studios [17/10/2013 20:15:28] - |D| - [4.82 Ko] - C:\Users\sirene\AppData\Roaming\VendelGAMES [17/10/2013 20:17:44] - |D| - [47.77 Ko] - C:\Users\sirene\AppData\Roaming\YoudaGames [11/03/2016 18:14:30] - |D| - [2233.35 Ko] - C:\Users\sirene\AppData\Roaming\ZHP [15/01/2014 22:08:29] - |D| - [8.17 Ko] - C:\Users\sirene\AppData\Roaming\ZOG ---------- | C:\Users\sirene\AppData\Local [13/01/2016 18:53:51] - |D| - [0 Ko] - C:\Users\sirene\AppData\Local\ActiveSync [02/11/2013 19:08:04] - |D| - [9633.38 Ko] - C:\Users\sirene\AppData\Local\Adobe [07/01/2014 19:43:55] - |D| - [0 Ko] - C:\Users\sirene\AppData\Local\Apple [07/01/2014 19:44:56] - |D| - [33926.82 Ko] - C:\Users\sirene\AppData\Local\Apple Computer [07/11/2014 15:10:26] - |D| - [0 Ko] - C:\Users\sirene\AppData\Local\Apple Inc [13/01/2016 18:30:08] - |SHD| - [15535236.63 Ko] - C:\Users\sirene\AppData\Local\Application Data [25/09/2013 19:44:15] - |D| - [67.16 Ko] - C:\Users\sirene\AppData\Local\ATI [29/06/2015 14:08:54] - |D| - [3.29 Ko] - C:\Users\sirene\AppData\Local\Avg [25/09/2013 22:32:53] - |D| - [20.57 Ko] - C:\Users\sirene\AppData\Local\Big Fish [13/01/2016 18:52:13] - |D| - [27709.49 Ko] - C:\Users\sirene\AppData\Local\Comms [27/09/2013 20:45:21] - |D| - [1021.13 Ko] - C:\Users\sirene\AppData\Local\Diagnostics [05/11/2013 12:47:31] - |D| - [858.38 Ko] - C:\Users\sirene\AppData\Local\ElevatedDiagnostics [22/11/2014 15:46:39] - |SHD| - [0 Ko] - C:\Users\sirene\AppData\Local\EmieBrowserModeList [17/09/2014 22:08:18] - |SHD| - [0 Ko] - C:\Users\sirene\AppData\Local\EmieSiteList [17/09/2014 22:08:18] - |SHD| - [0 Ko] - C:\Users\sirene\AppData\Local\EmieUserList [29/12/2013 20:41:33] - |D| - [3.5 Ko] - C:\Users\sirene\AppData\Local\EMU [03/06/2015 12:56:53] - |D| - [0.07 Ko] - C:\Users\sirene\AppData\Local\GWX [13/01/2016 18:30:08] - |SHD| - [0.13 Ko] - C:\Users\sirene\AppData\Local\Historique [12/01/2016 22:11:08] - |D| - [76.87 Ko] - C:\Users\sirene\AppData\Local\HP [13/01/2016 20:56:51] - |AH| - [45.57 Ko] - C:\Users\sirene\AppData\Local\IconCache.db [19/06/2015 20:42:25] - |D| - [12499.04 Ko] - C:\Users\sirene\AppData\Local\MFAData [13/01/2016 18:30:08] - |D| - [430691.12 Ko] - C:\Users\sirene\AppData\Local\Microsoft [24/01/2014 19:00:08] - |D| - [63.81 Ko] - C:\Users\sirene\AppData\Local\Microsoft Help [13/01/2016 19:04:08] - |D| - [88.22 Ko] - C:\Users\sirene\AppData\Local\MicrosoftEdge [13/01/2016 19:07:12] - |D| - [0 Ko] - C:\Users\sirene\AppData\Local\NetworkTiles [25/09/2013 19:41:31] - |D| - [1221189.32 Ko] - C:\Users\sirene\AppData\Local\Packages [29/12/2013 20:39:53] - |D| - [0 Ko] - C:\Users\sirene\AppData\Local\Programs [13/01/2016 18:53:15] - |D| - [128.56 Ko] - C:\Users\sirene\AppData\Local\Publishers [13/01/2016 18:30:08] - |D| - [0.5 Ko] - C:\Users\sirene\AppData\Local\Temp [13/01/2016 18:30:08] - |SHD| - [6319.6 Ko] - C:\Users\sirene\AppData\Local\Temporary Internet Files [13/01/2016 18:51:51] - |D| - [11336 Ko] - C:\Users\sirene\AppData\Local\TileDataLayer [25/09/2013 19:41:42] - |D| - [21230.37 Ko] - C:\Users\sirene\AppData\Local\VirtualStore [15/11/2013 16:26:48] - |D| - [98093.44 Ko] - C:\Users\sirene\AppData\Local\Windows Live ---------- | C:\Users\sirene\AppData\Roaming\Microsoft\Windows\Start Menu [25/09/2013 19:42:47] - |ASH| - [0.17 Ko] - C:\Users\sirene\AppData\Roaming\Microsoft\Windows\Start Menu\desktop.ini [13/01/2016 18:30:08] - |SHD| - [24.2 Ko] - C:\Users\sirene\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes [13/01/2016 18:30:08] - |RD| - [24.2 Ko] - C:\Users\sirene\AppData\Roaming\Microsoft\Windows\Start Menu\Programs ---------- | C:\Users\sirene\AppData\Roaming\Microsoft\Windows\Start Menu\Programs [13/01/2016 18:30:08] - |RD| - [3.8 Ko] - C:\Users\sirene\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility [13/01/2016 18:30:08] - |RD| - [2.86 Ko] - C:\Users\sirene\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories [25/09/2013 19:42:47] - |RD| - [0.17 Ko] - C:\Users\sirene\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools [13/01/2016 18:52:01] - |ASH| - [0.17 Ko] - C:\Users\sirene\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\desktop.ini [27/09/2013 18:46:10] - |D| - [0 Ko] - C:\Users\sirene\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games [13/01/2016 18:30:08] - |D| - [0.17 Ko] - C:\Users\sirene\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance [13/01/2016 18:55:56] - |A| - [2.4 Ko] - C:\Users\sirene\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk [25/09/2013 19:42:47] - |RD| - [1.34 Ko] - C:\Users\sirene\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup [13/01/2016 18:30:08] - |RD| - [6.23 Ko] - C:\Users\sirene\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools [13/01/2016 18:30:08] - |RSD| - [7.07 Ko] - C:\Users\sirene\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell ---------- | C:\Users\sirene\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup [25/09/2013 19:42:47] - |ASH| - [0.17 Ko] - C:\Users\sirene\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini [01/07/2015 22:05:13] - |A| - [1.17 Ko] - C:\Users\sirene\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Envoyer à OneNote.lnk ---------- | C:\ProgramData [13/09/2014 15:10:01] - |D| - [5.72 Ko] - C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 [30/04/2013 10:46:23] - |D| - [32486.32 Ko] - C:\ProgramData\Adobe [02/03/2014 16:05:17] - |D| - [0 Ko] - C:\ProgramData\AlawarEntertainment [10/07/2013 22:53:44] - |D| - [854.53 Ko] - C:\ProgramData\AMD [12/01/2016 22:13:40] - |A| - [0.06 Ko] - C:\ProgramData\Ament.ini [10/07/2013 22:56:13] - |D| - [2568.47 Ko] - C:\ProgramData\AmUStor [07/01/2014 19:43:33] - |D| - [270712.83 Ko] - C:\ProgramData\Apple [07/01/2014 19:44:23] - |D| - [346.12 Ko] - C:\ProgramData\Apple Computer [13/01/2016 18:46:26] - |SHD| - [19472055.27 Ko] - C:\ProgramData\Application Data [30/04/2013 10:44:02] - |D| - [13118.14 Ko] - C:\ProgramData\ASUS [30/04/2013 10:51:02] - |D| - [2.23 Ko] - C:\ProgramData\ASUS WebStorage [13/01/2016 18:54:47] - |D| - [0.18 Ko] - C:\ProgramData\ATI [19/06/2015 21:04:17] - |D| - [2729.02 Ko] - C:\ProgramData\Avg_Update_0215pit [25/09/2013 22:36:02] - |D| - [70942.54 Ko] - C:\ProgramData\Big Fish [08/11/2013 17:10:23] - |SHD| - [1.26 Ko] - C:\ProgramData\Bureau [24/10/2013 21:12:37] - |D| - [0 Ko] - C:\ProgramData\casualArts [22/12/2013 20:52:22] - |D| - [1097 Ko] - C:\ProgramData\Cateia Games [19/06/2015 20:42:25] - |HD| - [0.09 Ko] - C:\ProgramData\Common Files [30/10/2015 08:24:24] - |D| - [0 Ko] - C:\ProgramData\Comms [16/10/2013 19:28:57] - |D| - [54.6 Ko] - C:\ProgramData\CyberLink [03/10/2013 18:18:37] - |D| - [0 Ko] - C:\ProgramData\DailyMagic [13/01/2016 18:46:26] - |SHD| - [14.68 Ko] - C:\ProgramData\Documents [07/11/2014 14:36:11] - |D| - [8.32 Ko] - C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 [03/01/2014 22:38:24] - |D| - [9618.86 Ko] - C:\ProgramData\Fugazo [21/10/2013 21:36:03] - |D| - [5.99 Ko] - C:\ProgramData\GameHouse [04/10/2013 12:44:48] - |D| - [0 Ko] - C:\ProgramData\GestaltGames [14/03/2015 12:41:56] - |AD| - [10373.93 Ko] - C:\ProgramData\HP [12/01/2016 22:15:06] - |AD| - [2702.19 Ko] - C:\ProgramData\HP Photo Creations [10/07/2013 22:54:02] - |D| - [153.28 Ko] - C:\ProgramData\Intel [15/06/2015 21:45:06] - |D| - [84913.41 Ko] - C:\ProgramData\Malwarebytes [30/04/2013 10:51:33] - |D| - [0.17 Ko] - C:\ProgramData\McAfee [09/10/2013 19:40:32] - |D| - [0 Ko] - C:\ProgramData\MediaArt [25/12/2013 22:58:29] - |D| - [364.33 Ko] - C:\ProgramData\Melesta [08/11/2013 17:10:23] - |SHD| - [311.18 Ko] - C:\ProgramData\Menu Démarrer [19/06/2015 20:42:25] - |D| - [3.88 Ko] - C:\ProgramData\MFAData [30/10/2015 08:24:24] - |SD| - [1217424.65 Ko] - C:\ProgramData\Microsoft [06/05/2015 11:50:54] - |D| - [15.37 Ko] - C:\ProgramData\Microsoft Help [30/04/2013 11:02:37] - |D| - [0.02 Ko] - C:\ProgramData\Microsoft OneDrive [08/11/2013 17:10:23] - |SHD| - [0 Ko] - C:\ProgramData\Modèles [04/01/2016 16:47:53] - |D| - [0 Ko] - C:\ProgramData\MyHeritage [13/01/2016 18:28:13] - |D| - [13730.79 Ko] - C:\ProgramData\Package Cache [23/11/2013 18:29:05] - |D| - [316.36 Ko] - C:\ProgramData\Playrix Entertainment [30/04/2013 10:52:01] - |D| - [43.5 Ko] - C:\ProgramData\PRICache [10/07/2013 22:56:16] - |D| - [23.39 Ko] - C:\ProgramData\Qualcomm Atheros [30/10/2015 08:24:24] - |AD| - [5.15 Ko] - C:\ProgramData\regid.1991-06.com.microsoft [14/04/2014 21:16:58] - |D| - [125.16 Ko] - C:\ProgramData\rokapublish [30/10/2015 08:24:24] - |D| - [0 Ko] - C:\ProgramData\SoftwareDistribution [27/09/2013 16:09:46] - |D| - [0 Ko] - C:\ProgramData\SulusGames [15/06/2015 22:13:26] - |D| - [21 Ko] - C:\ProgramData\SUPERSetup [10/07/2013 23:00:56] - |AD| - [364.57 Ko] - C:\ProgramData\Temp [30/10/2015 08:24:24] - |D| - [11.53 Ko] - C:\ProgramData\USOPrivate [13/01/2016 18:47:00] - |D| - [2524 Ko] - C:\ProgramData\USOShared [12/01/2016 22:15:06] - |D| - [43.83 Ko] - C:\ProgramData\Visan ---------- | C:\WINDOWS\Tasks [13/01/2016 18:42:54] - |AH| - [0.01 Ko] - C:\WINDOWS\Tasks\SA.DAT ---------- | C:\WINDOWS\System32\Tasks [30/10/2015 08:24:25] - |D| - [0 Ko] - C:\WINDOWS\System32\Tasks\Microsoft Analyse : 728074 | Modification : 8 | Suppression : 21 ---------- |EOF| ---------- | 00:29:23 | [45 Ko]