cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

ÿþOTL logfile created on: 26/08/2015 18:36:56 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Doudou\Downloads
Starter Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17959)
Locale: 0000040c | Country: France | Language: FRA | Date Format: dd/MM/yyyy

1014,18 Mb Total Physical Memory | 219,79 Mb Available Physical Memory | 21,67% Memory free
2,55 Gb Paging File | 1,23 Gb Available in Paging File | 47,97% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 100,00 Gb Total Space | 53,52 Gb Free Space | 53,52% Space Free | Partition Type: NTFS
Drive D: | 183,07 Gb Total Space | 152,35 Gb Free Space | 83,22% Space Free | Partition Type: NTFS

Computer Name: DOUDOU-PC | User Name: Doudou | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2015/08/25 18:23:36 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Doudou\Downloads\OTL.exe
PRC - [2015/08/21 15:21:50 | 000,377,000 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2015/07/17 18:33:20 | 006,453,528 | ---- | M] (Piriform Ltd) -- C:\Program Files\CCleaner\CCleaner.exe
PRC - [2015/07/04 17:47:39 | 000,438,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\GWX\GWX.exe
PRC - [2015/05/29 15:46:42 | 000,060,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\SyncServer.exe
PRC - [2015/05/09 03:12:59 | 000,271,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe
PRC - [2015/04/30 01:04:12 | 000,284,504 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\NisSrv.exe
PRC - [2015/04/30 01:04:12 | 000,022,216 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\MsMpEng.exe
PRC - [2015/04/30 00:18:28 | 000,981,688 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Security Client\msseces.exe
PRC - [2012/11/23 02:48:41 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
PRC - [2011/02/25 05:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2010/12/07 16:19:54 | 000,224,680 | ---- | M] () -- C:\Windows\System32\AsusService.exe
PRC - [2009/11/11 08:21:38 | 000,583,640 | ---- | M] (PC Tools) -- C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2015/07/17 17:34:42 | 000,065,536 | ---- | M] () -- C:\Program Files\CCleaner\Lang\lang-1036.dll
MOD - [2015/05/15 14:27:10 | 000,073,544 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2015/05/15 14:27:04 | 001,044,776 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2015/05/14 12:08:01 | 012,438,016 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\6949c4470a81970ec3de0a575d93babc\System.Windows.Forms.ni.dll
MOD - [2015/05/14 12:06:46 | 000,978,432 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\007fc007edc388d9806dff94ee04f129\System.Configuration.ni.dll
MOD - [2015/05/13 19:28:26 | 001,593,344 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\5a401fd2a7689ff13fb54182953f9c40\System.Drawing.ni.dll
MOD - [2014/11/05 14:09:16 | 005,467,648 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml\d49908aa93a23c84847b1f8b1b667860\System.Xml.ni.dll
MOD - [2014/11/05 13:59:33 | 007,991,808 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\System\908ba9e296e92b4e14bdc2437edac603\System.ni.dll
MOD - [2014/09/11 08:43:08 | 011,497,984 | ---- | M] () -- C:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dll
MOD - [2014/03/20 22:49:17 | 000,610,304 | ---- | M] () -- C:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
MOD - [2011/01/23 22:50:42 | 000,140,288 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll
MOD - [2010/09/02 11:08:00 | 000,118,784 | ---- | M] () -- C:\Program Files\Asus\ASUS WebStorage\3.0.84.161\AsusWSShellExt.dll


[color=#E56717]========== Services (SafeList) ==========[/color]

SRV - [2015/08/21 15:21:49 | 000,149,160 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2015/07/16 19:39:29 | 000,102,912 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\System32\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV - [2015/06/18 08:39:50 | 001,133,880 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2015/06/12 07:25:00 | 000,082,112 | ---- | M] (Adobe Systems Incorporated) [Disabled | Stopped] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2015/05/25 18:01:45 | 000,853,504 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\diagtrack.dll -- (DiagTrack)
SRV - [2015/04/30 01:04:12 | 000,284,504 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV - [2015/04/30 01:04:12 | 000,022,216 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV - [2014/12/11 08:30:48 | 000,315,496 | R--- | M] (Skype Technologies) [Disabled | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013/05/27 04:57:27 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2010/12/07 16:19:54 | 000,224,680 | ---- | M] () [Auto | Running] -- C:\Windows\System32\AsusService.exe -- (AsusService)
SRV - [2009/11/11 08:21:38 | 000,583,640 | ---- | M] (PC Tools) [Auto | Running] -- C:\Program Files\Common Files\PC Tools\sMonitor\StartManSvc.exe -- (PCToolsSSDMonitorSvc)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - File not found [Kernel | Auto | Stopped] -- C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys -- (VBoxAswDrv)
DRV - File not found [Kernel | System | Stopped] -- C:\windows\system32\drivers\kofrsbxh.sys -- (kofrsbxh)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ew_juwwanecm.sys -- (huawei_wwanecm)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ew_juextctrl.sys -- (huawei_ext_ctrl)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ew_jubusenum.sys -- (huawei_enumerator)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ew_jucdcacm.sys -- (huawei_cdcacm)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\windows\system32\drivers\flpydisk.sys -- (flpydisk)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ew_usbenumfilter.sys -- (ew_usbenumfilter)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\ew_hwusbdev.sys -- (ew_hwusbdev)
DRV - File not found [Kernel | System | Stopped] -- C:\windows\system32\drivers\evrlexki.sys -- (evrlexki)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Users\Doudou\AppData\Local\Temp\ehdrv.sys -- (eapihdrv)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Users\Doudou\AppData\Local\Temp\catchme.sys -- (catchme)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\windows\system32\drivers\btwrchid.sys -- (btwrchid)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\btwl2cap.sys -- (btwl2cap)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\windows\system32\drivers\btwavdt.sys -- (btwavdt)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\drivers\btwaudio.sys -- (btwaudio)
DRV - [2015/08/26 01:11:23 | 000,039,168 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{371806EE-550A-4C04-A376-7D32C8371472}\MpKsl1fc99af1.sys -- (MpKsl1fc99af1)
DRV - [2015/06/18 08:41:54 | 000,051,928 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\mwac.sys -- (MBAMWebAccessControl)
DRV - [2015/06/18 08:41:36 | 000,023,256 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2015/03/04 19:34:52 | 000,095,408 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\NisDrvWFP.sys -- (NisDrv)
DRV - [2010/11/20 10:24:42 | 000,052,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV - [2010/11/20 10:24:42 | 000,027,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV - [2010/11/20 09:59:46 | 000,035,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb)
DRV - [2010/08/24 09:55:51 | 000,068,208 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\L1C62x86.sys -- (L1C)
DRV - [2010/08/03 05:20:56 | 000,011,832 | ---- | M] () [Kernel | System | Running] -- C:\Windows\System32\drivers\AsUpIO.sys -- (AsUpIO)
DRV - [2010/06/28 05:24:00 | 000,011,456 | ---- | M] () [Kernel | System | Running] -- C:\Windows\System32\drivers\AsIO.sys -- (AsIO)
DRV - [2009/10/05 16:31:50 | 001,221,632 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\athr.sys -- (athr)
DRV - [2009/07/20 09:29:40 | 000,013,880 | ---- | M] ( ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\kbfiltr.sys -- (kbfiltr)
DRV - [2009/07/01 04:46:20 | 000,043,944 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\btusbflt.sys -- (btusbflt)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP07&src=IE-SearchBox
IE - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-21-1441733930-2375351263-901615299-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus.msn.com
IE - HKU\S-1-5-21-1441733930-2375351263-901615299-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://eeepc.asus.com [binary data]
IE - HKU\S-1-5-21-1441733930-2375351263-901615299-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = http://eeepc.asus.com [binary data]
IE - HKU\S-1-5-21-1441733930-2375351263-901615299-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.fr
IE - HKU\S-1-5-21-1441733930-2375351263-901615299-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-1441733930-2375351263-901615299-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP07&src=IE-SearchBox
IE - HKU\S-1-5-21-1441733930-2375351263-901615299-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.search.countryCode: "ML"
FF - prefs.js..browser.search.region: "ML"
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:40.0.2
FF - user.js - File not found

FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Doudou\AppData\Local\Google\Update\1.3.27.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Doudou\AppData\Local\Google\Update\1.3.27.5\npGoogleUpdate3.dll (Google Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 40.0.2\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2015/06/05 09:30:57 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 40.0.2\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2015/08/16 02:07:21 | 000,000,000 | ---D | M]

[2013/01/09 18:43:36 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Doudou\AppData\Roaming\Mozilla\Extensions
[2015/08/24 13:48:11 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Doudou\AppData\Roaming\Mozilla\Firefox\Profiles\sg8gzgny.default-1439690643042\extensions
[2015/06/05 09:30:53 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions
[2015/08/21 15:21:51 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

[color=#E56717]========== Chrome ==========[/color]

CHR - default_search_provider: (Enabled)
CHR - default_search_provider: search_url =
CHR - default_search_provider: suggest_url =
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Doudou\AppData\Local\Google\Chrome\Application\21.0.1180.89\PepperFlash\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Doudou\AppData\Local\Google\Chrome\Application\43.0.2357.130\gcswf32.dll
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Users\Doudou\AppData\Local\Google\Chrome\Application\43.0.2357.130\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Doudou\AppData\Local\Google\Chrome\Application\43.0.2357.130\pdf.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Windows LiveÂ"! Photo Gallery (Enabled) = C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: Google Update (Enabled) = C:\Users\Doudou\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\4.0.50401.0\npctrl.dll
CHR - Extension: No name found = C:\Users\Doudou\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.5_0\
CHR - Extension: No name found = C:\Users\Doudou\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.2.0_0\

O1 HOSTS File: ([2009/06/10 21:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4 - HKLM..\Run: [MSC] C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1441733930-2375351263-901615299-1000..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner.exe (Piriform Ltd)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\sdate: sdate = 33
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SoftwareSASGeneration = 1
O7 - HKU\S-1-5-21-1441733930-2375351263-901615299-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.43.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{47F397F0-FFF3-407B-9A4D-B472B33BC158}: DhcpNameServer = 192.168.43.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A5A2EA28-9FA6-4463-BB30-DA084490A760}: DhcpNameServer = 192.168.1.1 0.0.0.0
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/06/10 21:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2015/08/23 00:49:40 | 000,000,000 | RHSD | M] - C:\Autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2015/08/23 00:49:40 | 000,000,000 | RHSD | M] - D:\Autorun.inf -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (aswBoot.exe /M:24bc93ea /dir:"C:\Program Files\AVAST Software\Avast")
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

NetSvcs: FastUserSwitchingCompatibility - File not found
NetSvcs: Ias - C:\windows\System32\ias.dll (Microsoft Corporation)
NetSvcs: Nla - File not found
NetSvcs: Ntmssvc - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: SRService - File not found
NetSvcs: WmdmPmSp - File not found
NetSvcs: LogonHours - File not found
NetSvcs: PCAudit - File not found
NetSvcs: helpsvc - File not found
NetSvcs: uploadmgr - File not found

MsConfig - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk - - File not found
MsConfig - StartUpFolder: C:^Users^Doudou^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk - - File not found
MsConfig - StartUpReg: [b]APSDaemon[/b] - hkey= - key= - C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
MsConfig - StartUpReg: [b]DesktopMaestro[/b] - hkey= - key= - C:\Program Files\Desktop Maestro\RMTray.exe (PC Tools)
MsConfig - StartUpReg: [b]Google Update[/b] - hkey= - key= - C:\Users\Doudou\AppData\Local\Google\Update\GoogleUpdate.exe (Google Inc.)
MsConfig - StartUpReg: [b]iTunesHelper[/b] - hkey= - key= - C:\Program Files\iTunes\iTunesHelper.exe (Apple Inc.)
MsConfig - StartUpReg: [b]MSC[/b] - hkey= - key= - C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
MsConfig - StartUpReg: [b]msnmsgr[/b] - hkey= - key= - C:\Program Files\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation)
MsConfig - StartUpReg: [b]QuickTime Task[/b] - hkey= - key= - C:\Program Files\QuickTime\QTTask.exe (Apple Inc.)
MsConfig - StartUpReg: [b]SSDMonitor[/b] - hkey= - key= - C:\Program Files\Common Files\PC Tools\sMonitor\SSDMonitor.exe (PC Tools)
MsConfig - State: "bootini" - 0
MsConfig - State: "services" - 2
MsConfig - State: "startup" - 2

SafeBootMin: AppMgmt - Service
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: HelpSvc - Service
SafeBootMin: MsMpSvc - C:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation)
SafeBootMin: NTDS - File not found
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: sacsvr - Service
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vmms - Service
SafeBootMin: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

SafeBootNet: AppMgmt - Service
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: HelpSvc - Service
SafeBootNet: Messenger - Service
SafeBootNet: MsMpSvc - C:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation)
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: NTDS - File not found
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: rdsessmgr - Service
SafeBootNet: sacsvr - Service
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vmms - Service
SafeBootNet: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootNet: WudfUsbccidDriver - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices

ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX: {2D46B6DC-2207-486B-B523-A557E6D54B47} - C:\windows\system32\cmd.exe /D /C start C:\windows\system32\ie4uinit.exe -ClearIconCache
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX: {3C3901C5-3455-3E0A-A214-0B093A5070A6} - .NET Framework
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX: {4903D172-DCCB-392F-93A3-34CA9D47FE3D} - .NET Framework
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
ActiveX: {7C028AF8-F614-47B3-82DA-BA94E41B1089} - .NET Framework
ActiveX: {7D715857-A67C-4C2F-A929-038448584D63} - C:\windows\System32\ie4uinit.exe -DisableSSL3
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\windows\System32\ie4uinit.exe -UserConfig
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\system32\Rundll32.exe C:\Windows\system32\mscories.dll,Install
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX: {C6BAF60B-6E91-453F-BFF9-D3789CFEFCDD} - .NET Framework
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP

Drivers32: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: MSVideo8 - C:\windows\System32\vfwwdm32.dll (Microsoft Corporation)
Drivers32: vidc.cvid - C:\windows\System32\iccvid.dll (Radius Inc.)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2015/08/26 10:48:18 | 000,000,000 | ---D | C] -- C:\KVRT_Data
[2015/08/25 21:22:04 | 000,000,000 | ---D | C] -- C:\Users\Doudou\Documents\des raccourcis impossible de supprimer_fichiers
[2015/08/25 21:21:38 | 000,000,000 | ---D | C] -- C:\Users\Doudou\Documents\Kaspersky Virus Removal Tool_fichiers
[2015/08/25 13:39:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2015/08/25 13:30:19 | 000,000,000 | ---D | C] -- C:\Users\Doudou\AppData\Local\pangu
[2015/08/24 15:51:30 | 000,000,000 | ---D | C] -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MP Manager
[2015/08/24 15:18:23 | 000,000,000 | ---D | C] -- C:\Users\Doudou\Documents\ihelper
[2015/08/24 15:18:23 | 000,000,000 | ---D | C] -- C:\Users\Doudou\AppData\Roaming\ihelper
[2015/08/24 14:53:07 | 000,000,000 | ---D | C] -- C:\Users\Doudou\Documents\MP-Manager
[2015/08/24 14:53:07 | 000,000,000 | ---D | C] -- C:\Users\Doudou\AppData\Roaming\MP-Manager
[2015/08/24 14:49:29 | 000,000,000 | ---D | C] -- C:\Users\Doudou\AppData\Roaming\MPMAN
[2015/08/24 14:19:26 | 000,000,000 | ---D | C] -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CopyTrans Control Center
[2015/08/24 14:16:25 | 000,000,000 | ---D | C] -- C:\Users\Doudou\AppData\Roaming\WindSolutions
[2015/08/24 14:16:23 | 000,000,000 | ---D | C] -- C:\ProgramData\WindSolutions
[2015/08/24 13:41:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2015/08/23 16:34:40 | 002,724,864 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\mshtml.tlb
[2015/08/23 00:49:40 | 000,000,000 | RHSD | C] -- C:\Autorun.inf
[2015/08/23 00:47:15 | 000,000,000 | ---D | C] -- C:\Users\Doudou\AppData\Local\{92F6C5D3-3F86-4561-A5DC-FEC699D811E6}
[2015/08/22 17:15:07 | 000,098,520 | ---- | C] (Malwarebytes Corporation) -- C:\windows\System32\drivers\MBAMSwissArmy.sys
[2015/08/22 17:14:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
[2015/08/22 17:14:40 | 000,094,936 | ---- | C] (Malwarebytes Corporation) -- C:\windows\System32\drivers\mbamchameleon.sys
[2015/08/22 17:14:40 | 000,051,928 | ---- | C] (Malwarebytes Corporation) -- C:\windows\System32\drivers\mwac.sys
[2015/08/22 17:14:40 | 000,023,256 | ---- | C] (Malwarebytes Corporation) -- C:\windows\System32\drivers\mbam.sys
[2015/08/22 17:14:40 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes Anti-Malware
[2015/08/22 17:14:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2015/08/21 16:24:02 | 000,000,000 | ---D | C] -- C:\Users\Doudou\AppData\Local\Diagnostics
[2015/08/21 15:29:11 | 000,000,000 | ---D | C] -- C:\_OTM
[2015/08/21 14:32:55 | 000,000,000 | ---D | C] -- C:\Program Files\ZHPFix
[2015/08/21 14:16:03 | 000,000,000 | ---D | C] -- C:\Users\Doudou\AppData\Local\CrashDumps
[2015/08/21 13:03:31 | 000,000,000 | ---D | C] -- C:\windows\System\Nouveau dossier
[2015/08/21 11:22:52 | 000,103,120 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\PresentationCFFRasterizerNative_v0300.dll
[2015/08/20 16:02:05 | 000,685,568 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ie4uinit.exe
[2015/08/20 16:02:05 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieetwcollector.exe
[2015/08/20 16:02:05 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\JavaScriptCollectionAgent.dll
[2015/08/20 16:02:05 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieetwproxystub.dll
[2015/08/20 16:02:04 | 000,667,648 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\MsSpellCheckingFacility.exe
[2015/08/20 16:02:04 | 000,342,736 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\iedkcs32.dll
[2015/08/20 16:02:04 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\iernonce.dll
[2015/08/20 16:02:02 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieapfltr.dll
[2015/08/20 16:02:02 | 000,620,032 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\jscript9diag.dll
[2015/08/20 16:02:02 | 000,418,304 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dxtmsft.dll
[2015/08/20 16:02:02 | 000,115,712 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieUnatt.exe
[2015/08/20 16:02:02 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\jsproxy.dll
[2015/08/20 16:02:01 | 000,689,152 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msfeeds.dll
[2015/08/20 16:01:59 | 002,052,608 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\inetcpl.cpl
[2015/08/20 16:01:58 | 000,168,960 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msrating.dll
[2015/08/20 16:01:58 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\iesetup.dll
[2015/08/20 16:01:57 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieetwcollectorres.dll
[2015/08/20 16:01:54 | 000,285,696 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dxtrans.dll
[2015/08/20 16:01:53 | 000,479,232 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieui.dll
[2015/08/20 16:01:49 | 000,341,504 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\html.iec
[2015/08/20 16:01:47 | 001,155,072 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\mshtmlmedia.dll
[2015/08/20 16:01:46 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\MshtmlDac.dll
[2015/08/20 16:01:44 | 004,520,448 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\jscript9.dll
[2015/08/20 12:42:33 | 000,000,000 | ---D | C] -- C:\$Windows.~BT
[2015/08/19 15:59:52 | 003,934,656 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ntoskrnl.exe
[2015/08/19 15:59:51 | 000,686,080 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\adtschema.dll
[2015/08/19 15:59:48 | 003,989,952 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ntkrnlpa.exe
[2015/08/19 15:59:47 | 000,400,896 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\srcore.dll
[2015/08/19 15:59:47 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ncrypt.dll
[2015/08/19 15:59:46 | 000,262,656 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\rstrui.exe
[2015/08/19 15:59:46 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\auditpol.exe
[2015/08/19 15:59:46 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\csrsrv.dll
[2015/08/19 15:59:45 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msaudite.dll
[2015/08/19 15:59:45 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\sspisrv.dll
[2015/08/19 15:59:45 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msmmsp.dll
[2015/08/19 15:59:44 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msobjs.dll
[2015/08/19 15:59:44 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\apisetschema.dll
[2015/08/19 15:58:26 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\basesrv.dll
[2015/08/19 15:51:33 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\aaclient.dll
[2015/08/19 15:51:33 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\tsgqec.dll
[2015/08/19 15:39:08 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msxml6r.dll
[2015/08/19 15:39:08 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msxml3r.dll
[2015/08/19 15:20:03 | 001,251,328 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\DWrite.dll
[2015/08/19 15:20:03 | 000,299,520 | ---- | C] (Adobe Systems Incorporated) -- C:\windows\System32\atmfd.dll
[2015/08/19 15:20:01 | 002,384,384 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\win32k.sys
[2015/08/19 15:19:58 | 001,987,584 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\d3d10warp.dll
[2015/08/19 15:19:58 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\windows\System32\atmlib.dll
[2015/08/19 15:19:57 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\fontsub.dll
[2015/08/19 15:19:57 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dciman32.dll
[2015/08/19 15:15:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PPÖúÊÖ
[2015/08/19 15:15:12 | 000,000,000 | ---D | C] -- C:\Program Files\PPÖúÊÖ
[2015/08/19 15:03:50 | 001,805,824 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\authui.dll
[2015/08/19 15:03:49 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msihnd.dll
[2015/08/19 15:03:49 | 000,101,824 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\consent.exe
[2015/08/19 15:03:48 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msimsg.dll
[2015/08/19 14:02:18 | 000,210,432 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\cewmdm.dll
[2015/08/19 12:46:28 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2015/08/18 16:34:54 | 000,000,000 | ---D | C] -- C:\ProgramData\RogueKiller
[2015/08/18 01:17:45 | 000,000,000 | ---D | C] -- C:\Microsoft
[2015/08/17 16:18:33 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\wuapp.exe
[2015/08/17 16:18:33 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\wu.upgrade.ps.dll
[2015/08/17 16:18:32 | 002,943,488 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\wucltux.dll
[2015/08/17 16:18:32 | 000,566,784 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\wuapi.dll
[2015/08/17 16:18:32 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\wuwebv.dll
[2015/08/17 16:18:32 | 000,093,184 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\wudriver.dll
[2015/08/17 16:18:32 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\WinSetupUI.dll
[2015/08/17 16:18:32 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\wups2.dll
[2015/08/17 16:18:32 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\wups.dll
[2015/08/17 16:14:46 | 000,598,528 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\generaltel.dll
[2015/08/17 16:14:46 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\acmigration.dll
[2015/08/17 16:14:45 | 000,952,832 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\appraiser.dll
[2015/08/17 16:14:45 | 000,934,400 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\aeinv.dll
[2015/08/17 16:14:45 | 000,635,904 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\invagent.dll
[2015/08/17 16:14:45 | 000,346,112 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\devinv.dll
[2015/08/17 16:14:43 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\aepdu.dll
[2015/08/17 16:14:43 | 000,015,808 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\CompatTelRunner.exe
[2015/08/17 16:08:06 | 000,715,200 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\mcupdate_GenuineIntel.dll
[2015/08/17 15:58:15 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Security Client
[2015/08/16 14:25:13 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Security Essentials
[2015/08/16 02:13:03 | 000,000,000 | ---D | C] -- C:\Users\Doudou\Documents\E-Cam
[2015/08/16 02:04:09 | 000,000,000 | ---D | C] -- C:\Users\Doudou\Desktop\Anciennes données de Firefox
[2015/08/13 17:44:04 | 000,000,000 | ---D | C] -- C:\Users\Doudou\AppData\Roaming\ZHP
[2015/07/29 13:41:35 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2015/07/29 13:33:08 | 110,737,712 | ---- | C] (Apple Inc.) -- C:\Users\Doudou\Desktop\itunessetup.exe
[2015/07/29 12:11:04 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2015/08/26 18:41:42 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2015/08/26 14:18:25 | 000,016,160 | -H-- | M] () -- C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2015/08/26 14:18:25 | 000,016,160 | -H-- | M] () -- C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2015/08/26 10:32:35 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2015/08/26 10:32:32 | 797,581,312 | -HS- | M] () -- C:\hiberfil.sys
[2015/08/25 21:22:09 | 000,084,647 | ---- | M] () -- C:\Users\Doudou\Documents\des raccourcis impossible de supprimer.htm
[2015/08/25 21:21:59 | 000,047,165 | ---- | M] () -- C:\Users\Doudou\Documents\Kaspersky Virus Removal Tool.htm
[2015/08/25 19:35:42 | 000,758,982 | ---- | M] () -- C:\windows\System32\perfh00C.dat
[2015/08/25 19:35:42 | 000,665,552 | ---- | M] () -- C:\windows\System32\perfh009.dat
[2015/08/25 19:35:42 | 000,153,814 | ---- | M] () -- C:\windows\System32\perfc00C.dat
[2015/08/25 19:35:42 | 000,125,764 | ---- | M] () -- C:\windows\System32\perfc009.dat
[2015/08/25 13:39:09 | 000,001,713 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2015/08/25 12:24:05 | 000,001,912 | ---- | M] () -- C:\windows\epplauncher.mif
[2015/08/24 15:51:50 | 000,001,089 | ---- | M] () -- C:\Users\Doudou\Desktop\MP Manager.lnk
[2015/08/24 15:51:50 | 000,001,069 | ---- | M] () -- C:\Users\Doudou\Application Data\Microsoft\Internet Explorer\Quick Launch\MP Manager.lnk
[2015/08/24 14:19:27 | 000,001,414 | ---- | M] () -- C:\Users\Doudou\Desktop\CopyTrans Control Center.lnk
[2015/08/24 13:41:05 | 000,000,925 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2015/08/23 12:52:56 | 000,433,528 | ---- | M] () -- C:\windows\System32\FNTCACHE.DAT
[2015/08/23 00:39:56 | 000,098,520 | ---- | M] (Malwarebytes Corporation) -- C:\windows\System32\drivers\MBAMSwissArmy.sys
[2015/08/22 17:14:48 | 000,001,020 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2015/08/21 15:21:56 | 000,001,950 | ---- | M] () -- C:\Users\Doudou\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2015/08/21 12:01:01 | 000,000,000 | ---- | M] () -- C:\windows\System32\Serv60d.dll
[2015/08/19 15:15:23 | 000,000,904 | ---- | M] () -- C:\Users\Public\Desktop\PPÖúÊÖ.lnk
[2015/08/18 16:35:05 | 000,035,064 | ---- | M] () -- C:\windows\System32\drivers\TrueSight.sys
[2015/08/16 07:38:17 | 000,000,902 | ---- | M] () -- C:\Users\Doudou\Documents\cc_20150816_093749.reg
[2015/08/13 18:09:33 | 000,040,234 | ---- | M] () -- C:\Users\Doudou\Documents\cc_20150813_200845.reg
[2015/08/13 17:22:46 | 000,003,072 | ---- | M] () -- C:\windows\System32\Cache.db
[2015/08/11 00:33:19 | 002,724,864 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\mshtml.tlb
[2015/08/05 14:29:02 | 021,830,356 | ---- | M] () -- C:\Users\Doudou\Desktop\Balaumba remix Dance by Ibra Buwembo (Bebi Philip Ft Eddy Kenzo).mp4
[2015/08/05 14:28:48 | 006,578,110 | ---- | M] () -- C:\Users\Doudou\Desktop\BALAUMBA REMIX BEBI PHILLIP ft EDDY KENZO[Promo]_low.mp4
[2015/08/05 14:28:18 | 009,819,291 | ---- | M] () -- C:\Users\Doudou\Desktop\tubidy_h264_6118.mp4
[2015/08/05 14:26:16 | 037,947,377 | ---- | M] () -- C:\Users\Doudou\Desktop\Toofan _ _GWETA_ _OFFICIAL HD__HIGH.mp4
[2015/08/05 14:25:45 | 013,622,979 | ---- | M] () -- C:\Users\Doudou\Desktop\D3DANCERS (DAVIDO - SKELEWU).mp4
[2015/07/30 17:57:30 | 001,987,584 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\d3d10warp.dll
[2015/07/30 17:57:30 | 001,251,328 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\DWrite.dll
[2015/07/30 17:57:08 | 000,070,656 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\fontsub.dll
[2015/07/30 17:57:05 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\dciman32.dll
[2015/07/30 17:57:02 | 000,034,304 | ---- | M] (Adobe Systems) -- C:\windows\System32\atmlib.dll
[2015/07/30 16:52:25 | 002,384,384 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\win32k.sys
[2015/07/30 16:49:55 | 000,299,520 | ---- | M] (Adobe Systems Incorporated) -- C:\windows\System32\atmfd.dll
[2015/07/30 13:13:38 | 000,103,120 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\PresentationCFFRasterizerNative_v0300.dll
[2015/07/29 10:00:20 | 1204,958,925 | ---- | M] () -- C:\Users\Doudou\Documents\iPhone31_7.1.2_11D257_Restore.ipsw
[2015/07/28 20:04:44 | 000,015,808 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\CompatTelRunner.exe
[2015/07/28 20:00:18 | 000,635,904 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\invagent.dll
[2015/07/28 20:00:16 | 000,598,528 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\generaltel.dll
[2015/07/28 20:00:12 | 000,346,112 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\devinv.dll
[2015/07/28 20:00:09 | 000,952,832 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\appraiser.dll
[2015/07/28 20:00:08 | 000,202,752 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\aepdu.dll
[2015/07/28 20:00:08 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\acmigration.dll
[2015/07/28 19:54:01 | 000,934,400 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\aeinv.dll

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2015/08/26 14:06:07 | 1204,958,925 | ---- | C] () -- C:\Users\Doudou\Documents\iPhone31_7.1.2_11D257_Restore.ipsw
[2015/08/25 21:22:04 | 000,084,647 | ---- | C] () -- C:\Users\Doudou\Documents\des raccourcis impossible de supprimer.htm
[2015/08/25 21:21:56 | 000,047,165 | ---- | C] () -- C:\Users\Doudou\Documents\Kaspersky Virus Removal Tool.htm
[2015/08/25 13:39:09 | 000,001,713 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk
[2015/08/25 12:23:28 | 000,002,077 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
[2015/08/24 15:51:50 | 000,001,089 | ---- | C] () -- C:\Users\Doudou\Desktop\MP Manager.lnk
[2015/08/24 15:51:50 | 000,001,069 | ---- | C] () -- C:\Users\Doudou\Application Data\Microsoft\Internet Explorer\Quick Launch\MP Manager.lnk
[2015/08/24 14:19:27 | 000,001,414 | ---- | C] () -- C:\Users\Doudou\Desktop\CopyTrans Control Center.lnk
[2015/08/24 13:41:05 | 000,000,925 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2015/08/23 12:52:42 | 000,433,528 | ---- | C] () -- C:\windows\System32\FNTCACHE.DAT
[2015/08/22 17:14:48 | 000,001,020 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2015/08/21 18:00:32 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2015/08/19 15:15:23 | 000,000,904 | ---- | C] () -- C:\Users\Public\Desktop\PPÖúÊÖ.lnk
[2015/08/18 16:35:05 | 000,035,064 | ---- | C] () -- C:\windows\System32\drivers\TrueSight.sys
[2015/08/17 15:58:49 | 000,001,912 | ---- | C] () -- C:\windows\epplauncher.mif
[2015/08/16 11:08:24 | 037,947,377 | ---- | C] () -- C:\Users\Doudou\Desktop\Toofan _ _GWETA_ _OFFICIAL HD__HIGH.mp4
[2015/08/16 11:08:09 | 013,622,979 | ---- | C] () -- C:\Users\Doudou\Desktop\D3DANCERS (DAVIDO - SKELEWU).mp4
[2015/08/16 11:07:51 | 021,830,356 | ---- | C] () -- C:\Users\Doudou\Desktop\Balaumba remix Dance by Ibra Buwembo (Bebi Philip Ft Eddy Kenzo).mp4
[2015/08/16 11:07:43 | 006,578,110 | ---- | C] () -- C:\Users\Doudou\Desktop\BALAUMBA REMIX BEBI PHILLIP ft EDDY KENZO[Promo]_low.mp4
[2015/08/16 11:07:34 | 009,819,291 | ---- | C] () -- C:\Users\Doudou\Desktop\tubidy_h264_6118.mp4
[2015/08/16 07:38:11 | 000,000,902 | ---- | C] () -- C:\Users\Doudou\Documents\cc_20150816_093749.reg
[2015/08/13 18:09:08 | 000,040,234 | ---- | C] () -- C:\Users\Doudou\Documents\cc_20150813_200845.reg
[2015/08/11 11:29:06 | 000,000,000 | ---- | C] () -- C:\windows\System32\Serv60d.dll
[2013/09/04 22:18:37 | 000,000,017 | ---- | C] () -- C:\Users\Doudou\AppData\Local\resmon.resmoncfg
[2013/01/07 23:54:53 | 000,116,030 | ---- | C] () -- C:\Program Files\uninst.exe
[2012/11/15 21:22:09 | 000,000,580 | ---- | C] () -- C:\Users\Doudou\AppData\Local\cookies.ini
[2011/04/02 02:49:57 | 000,131,984 | ---- | C] () -- C:\ProgramData\FullRemove.exe

[color=#E56717]========== ZeroAccess Check ==========[/color]

[2009/07/14 04:42:31 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2015/07/10 17:34:07 | 012,875,776 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 12:19:04 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2009/07/14 01:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[color=#E56717]========== Custom Scans ==========[/color]

[color=#E56717]========== Base Services ==========[/color]
SRV - [2015/03/04 04:10:52 | 000,062,464 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\aelupsvc.dll -- (AeLookupSvc)
SRV - [2015/06/15 21:43:23 | 000,047,104 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\appinfo.dll -- (Appinfo)
SRV - [2009/07/14 01:14:11 | 000,059,392 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\alg.exe -- (ALG)
SRV - [2010/11/20 12:21:00 | 000,585,728 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\qmgr.dll -- (BITS)
SRV - [2010/11/20 12:18:08 | 000,494,592 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\BFE.DLL -- (BFE)
SRV - [2015/07/15 17:54:08 | 000,022,528 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\lsass.exe -- (KeyIso)
SRV - [2009/07/14 01:15:19 | 000,271,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\es.dll -- (EventSystem)
SRV - [2012/07/04 21:14:34 | 000,102,912 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\browser.dll -- (Browser)
SRV - [2015/04/27 19:04:37 | 000,143,872 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\cryptsvc.dll -- (CryptSvc)
SRV - [2010/11/20 12:21:04 | 000,376,832 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\rpcss.dll -- (DcomLaunch)
SRV - [2010/11/20 12:18:32 | 000,254,464 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\dhcpcore.dll -- (Dhcp)
SRV - [2011/03/03 05:38:01 | 000,132,608 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\dnsrslvr.dll -- (Dnscache)
SRV - [2009/07/14 01:15:13 | 000,098,304 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\eapsvc.dll -- (EapHost)
SRV - [2009/07/14 01:15:24 | 000,049,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\hidserv.dll -- (hidserv)
SRV - [2009/07/14 01:15:33 | 000,300,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\ipnathlp.dll -- (SharedAccess)
SRV - [2010/11/20 12:19:24 | 000,350,208 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\IPSECSVC.DLL -- (PolicyAgent)
SRV - [2015/04/30 01:04:12 | 000,022,216 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV - [2015/04/30 01:04:12 | 000,284,504 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV - [2009/07/14 01:16:15 | 000,313,856 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\swprv.dll -- (swprv)
SRV - [2009/07/14 01:15:41 | 000,049,664 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\mmcss.dll -- (MMCSS)
SRV - [2009/07/14 01:16:03 | 000,280,576 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\netman.dll -- (Netman)
SRV - [2009/07/14 01:16:03 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\netprofm.dll -- (netprofm)
SRV - [2014/12/06 03:50:19 | 000,242,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\nlasvc.dll -- (NlaSvc)
SRV - [2009/07/14 01:16:11 | 000,019,456 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\nsisvc.dll -- (nsi)
SRV - [2011/05/24 10:44:59 | 000,293,376 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\umpnpmgr.dll -- (PlugPlay)
SRV - [2012/02/11 05:37:49 | 000,317,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\spoolsv.exe -- (Spooler)
SRV - [2015/07/15 17:54:08 | 000,022,528 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\lsass.exe -- (ProtectedStorage)
No service found with a name of EMDMgmt
SRV - [2009/07/14 01:16:12 | 000,090,624 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\rasauto.dll -- (RasAuto)
SRV - [2010/11/20 12:21:02 | 000,286,208 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\rasmans.dll -- (RasMan)
SRV - [2010/11/20 12:21:04 | 000,376,832 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\rpcss.dll -- (RpcSs)
SRV - [2009/07/14 01:16:13 | 000,021,504 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\seclogon.dll -- (seclogon)
SRV - [2015/07/15 17:54:08 | 000,022,528 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\lsass.exe -- (SamSs)
SRV - [2009/07/14 01:16:20 | 000,073,728 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wscsvc.dll -- (wscsvc)
SRV - [2010/11/20 12:21:28 | 000,168,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\srvsvc.dll -- (LanmanServer)
SRV - [2010/11/20 12:21:20 | 000,328,192 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\shsvcs.dll -- (ShellHWDetection)
No service found with a name of slsvc
SRV - [2010/11/20 12:21:06 | 000,750,592 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\schedsvc.dll -- (Schedule)
SRV - [2010/11/20 12:21:30 | 000,242,176 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\tapisrv.dll -- (TapiSrv)
SRV - [2009/07/14 01:16:16 | 000,037,376 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\themeservice.dll -- (Themes)
SRV - [2014/12/19 02:43:00 | 000,164,864 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\profsvc.dll -- (ProfSvc)
SRV - [2010/11/20 12:17:52 | 001,025,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\VSSVC.exe -- (VSS)
SRV - [2015/02/03 03:12:12 | 000,475,136 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\audiosrv.dll -- (Audiosrv)
SRV - [2015/02/03 03:12:12 | 000,475,136 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\audiosrv.dll -- (AudioEndpointBuilder)
SRV - [2010/11/20 12:21:08 | 000,125,952 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sdrsvc.dll -- (SDRSVC)
SRV - [2013/05/27 04:57:27 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2010/11/20 12:21:36 | 001,086,976 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wevtsvc.dll -- (eventlog)
SRV - [2010/11/20 12:19:42 | 000,566,272 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\MPSSVC.dll -- (MpsSvc)
SRV - [2010/11/20 12:21:36 | 000,463,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wiaservc.dll -- (StiSvc)
SRV - [2015/06/15 21:42:49 | 000,073,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\System32\msiexec.exe -- (msiserver)
SRV - [2009/07/14 01:16:19 | 000,168,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wbem\WMIsvc.dll -- (Winmgmt)
SRV - [2015/07/20 17:56:49 | 002,061,312 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wuaueng.dll -- (wuauserv)
SRV - [2010/11/20 12:18:36 | 000,214,016 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\dot3svc.dll -- (dot3svc)
SRV - [2009/07/14 01:16:19 | 000,829,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wlansvc.dll -- (Wlansvc)
SRV - [2010/11/20 12:21:38 | 000,084,480 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wkssvc.dll -- (LanmanWorkstation)

[color=#A23BEC]< C:\*.lnk /s >[/color]
[2015/08/19 16:43:57 | 000,000,744 | ---- | M] () -- C:\$RECYCLE.BIN\Aplikasi.lnk
[2015/08/21 13:33:01 | 000,000,746 | ---- | M] () -- C:\$RECYCLE.BIN\Microsoft.lnk
[2015/08/20 17:57:36 | 000,000,738 | ---- | M] () -- C:\$RECYCLE.BIN\Music.lnk
[2015/08/21 13:33:01 | 000,000,744 | ---- | M] () -- C:\$RECYCLE.BIN\S-1-5-18.lnk
[2015/08/21 13:33:01 | 000,000,818 | ---- | M] () -- C:\$RECYCLE.BIN\S-1-5-21-1441733930-2375351263-901615299-1000.lnk
[2015/08/14 10:46:12 | 000,000,776 | ---- | M] () -- C:\$RECYCLE.BIN\S-1-5-21-1441733930-2375351263-901615299-1000\$RGGKD5W\2009 Encarta Contents.lnk
[2015/08/19 16:45:00 | 000,000,750 | ---- | M] () -- C:\$RECYCLE.BIN\S-1-5-21-1441733930-2375351263-901615299-1000\$RGGKD5W\Aplikasi.lnk
[2015/08/14 10:46:12 | 000,000,812 | ---- | M] () -- C:\$RECYCLE.BIN\S-1-5-21-1441733930-2375351263-901615299-1000\$RGGKD5W\Microsoft Encarta 2009 - Collection DVD.lnk
[2015/08/14 10:46:13 | 000,000,792 | ---- | M] () -- C:\$RECYCLE.BIN\S-1-5-21-1441733930-2375351263-901615299-1000\$RGGKD5W\Microsoft Encarta Junior 2009.lnk
[2015/08/21 13:33:52 | 000,000,752 | ---- | M] () -- C:\$RECYCLE.BIN\S-1-5-21-1441733930-2375351263-901615299-1000\$RGGKD5W\Microsoft.lnk
[2015/08/20 17:58:19 | 000,000,744 | ---- | M] () -- C:\$RECYCLE.BIN\S-1-5-21-1441733930-2375351263-901615299-1000\$RGGKD5W\Music.lnk
[2015/08/19 16:44:41 | 000,000,750 | ---- | M] () -- C:\$RECYCLE.BIN\S-1-5-21-1441733930-2375351263-901615299-1000\$RSDO227\Aplikasi.lnk
[2015/08/13 10:15:21 | 000,000,744 | ---- | M] () -- C:\$RECYCLE.BIN\S-1-5-21-1441733930-2375351263-901615299-1000\$RSDO227\Avast.lnk
[2015/08/21 13:33:37 | 000,000,752 | ---- | M] () -- C:\$RECYCLE.BIN\S-1-5-21-1441733930-2375351263-901615299-1000\$RSDO227\Microsoft.lnk
[2015/08/20 17:58:06 | 000,000,744 | ---- | M] () -- C:\$RECYCLE.BIN\S-1-5-21-1441733930-2375351263-901615299-1000\$RSDO227\Music.lnk
[2015/08/19 16:44:21 | 000,000,744 | ---- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_\found.000\Aplikasi.lnk
[2015/08/21 13:33:21 | 000,000,746 | ---- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_\found.000\Microsoft.lnk
[2015/08/20 17:57:53 | 000,000,738 | ---- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_\found.000\Music.lnk
[1 C:\_OTM\MovedFiles\08212015_152911\C_\found.000\*.tmp files -> C:\_OTM\MovedFiles\08212015_152911\C_\found.000\*.tmp -> ]
[2015/08/19 16:44:22 | 000,000,744 | ---- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_\found.001\Aplikasi.lnk
[2015/08/21 13:33:22 | 000,000,750 | ---- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_\found.001\dir0000.chk.lnk
[2015/08/21 13:33:22 | 000,000,746 | ---- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_\found.001\Microsoft.lnk
[2015/08/20 17:57:54 | 000,000,738 | ---- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_\found.001\Music.lnk
[1 C:\_OTM\MovedFiles\08212015_152911\C_\found.001\*.tmp files -> C:\_OTM\MovedFiles\08212015_152911\C_\found.001\*.tmp -> ]
[2015/08/19 16:44:24 | 000,000,744 | ---- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_\found.002\Aplikasi.lnk
[2015/08/21 13:33:23 | 000,000,746 | ---- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_\found.002\Microsoft.lnk
[2015/08/20 17:57:55 | 000,000,738 | ---- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_\found.002\Music.lnk
[2015/08/19 16:44:23 | 000,000,750 | ---- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_found.001\dir0000.chk\Aplikasi.lnk
[2015/08/21 13:33:22 | 000,000,752 | ---- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_found.001\dir0000.chk\Microsoft.lnk
[2015/08/20 17:57:54 | 000,000,744 | ---- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_found.001\dir0000.chk\Music.lnk
[2013/04/18 22:38:58 | 000,000,916 | R--- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Users\Doudou\Desktop\AITA\LOL TOP 5.lnk
[2011/04/02 03:05:35 | 000,001,115 | ---- | M] () -- C:\Program Files\Asus\ASUS WebStorage\ASUS WebStorage.lnk
[2010/09/21 03:48:28 | 000,000,254 | ---- | M] () -- C:\Program Files\Asus\ASUS WebStorage\3.0.84.161\ASUS WebStorage Drive.lnk
[2011/04/02 03:05:45 | 000,001,932 | ---- | M] () -- C:\Program Files\Asus\ASUS WebStorage\3.0.84.161\ASUS WebStorage.lnk
[2011/04/02 03:05:45 | 000,001,157 | ---- | M] () -- C:\Program Files\Asus\ASUS WebStorage\3.0.84.161\BackupService.lnk
[2011/04/02 03:05:34 | 000,001,237 | ---- | M] () -- C:\Program Files\Asus\ASUS WebStorage\3.0.84.161\panel\AsusWSService.lnk
[2011/04/02 03:05:34 | 000,001,211 | ---- | M] () -- C:\Program Files\Asus\ASUS WebStorage\3.0.84.161\panel\AsusWSUpdater.lnk
[2011/04/02 03:05:34 | 000,001,206 | ---- | M] () -- C:\Program Files\Asus\ASUS WebStorage\3.0.84.161\panel\backup.lnk
[2011/04/02 03:05:34 | 000,001,246 | ---- | M] () -- C:\Program Files\Asus\ASUS WebStorage\3.0.84.161\panel\bookmarksyncer.lnk
[2011/04/02 03:05:34 | 000,001,216 | ---- | M] () -- C:\Program Files\Asus\ASUS WebStorage\3.0.84.161\panel\Calendar.lnk
[2011/04/02 03:05:34 | 000,001,201 | ---- | M] () -- C:\Program Files\Asus\ASUS WebStorage\3.0.84.161\panel\drive.lnk
[2011/04/02 03:05:34 | 000,001,211 | ---- | M] () -- C:\Program Files\Asus\ASUS WebStorage\3.0.84.161\panel\go to web.lnk
[2011/04/02 03:05:34 | 000,001,221 | ---- | M] () -- C:\Program Files\Asus\ASUS WebStorage\3.0.84.161\panel\mobileApp.lnk
[2011/04/02 03:05:34 | 000,001,236 | ---- | M] () -- C:\Program Files\Asus\ASUS WebStorage\3.0.84.161\panel\MySyncFolder.lnk
[2011/04/02 03:05:34 | 000,001,221 | ---- | M] () -- C:\Program Files\Asus\ASUS WebStorage\3.0.84.161\panel\RestartExplorer.lnk
[2013/04/18 21:22:21 | 000,001,974 | ---- | M] () -- C:\Program Files\Bonjour\À propos de Bonjour.lnk
[2009/07/14 04:42:26 | 000,001,268 | ---- | M] () -- C:\Program Files\Microsoft Games\FreeCell\FreeCellMCE.lnk
[2009/07/14 04:42:31 | 000,001,248 | ---- | M] () -- C:\Program Files\Microsoft Games\Hearts\HeartsMCE.lnk
[2009/07/14 04:42:31 | 000,001,302 | ---- | M] () -- C:\Program Files\Microsoft Games\Purble Place\PurblePlaceMCE.lnk
[2009/07/14 04:42:26 | 000,001,278 | ---- | M] () -- C:\Program Files\Microsoft Games\Solitaire\SolitaireMCE.lnk
[2009/07/14 04:42:31 | 000,001,338 | ---- | M] () -- C:\Program Files\Microsoft Games\SpiderSolitaire\SpiderSolitaireMCE.lnk
[2009/07/14 04:46:35 | 000,001,282 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk
[2011/04/02 02:53:47 | 000,002,036 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\LiveUpdate.lnk
[2009/07/14 04:37:43 | 000,001,266 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk
[2011/04/02 02:53:03 | 000,000,979 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat.com.lnk
[2013/04/18 21:27:29 | 000,002,519 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
[2015/08/25 12:23:28 | 000,002,077 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
[2015/02/26 13:36:41 | 000,001,077 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2009/07/14 04:42:29 | 000,001,330 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk
[2009/07/14 04:42:30 | 000,001,352 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Anytime Upgrade.lnk
[2009/07/14 04:42:24 | 000,001,210 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk
[2011/04/02 02:57:25 | 000,001,404 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
[2011/04/02 02:56:30 | 000,002,432 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk
[2011/04/02 02:58:29 | 000,001,251 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Movie Maker.lnk
[2011/04/02 02:58:19 | 000,001,320 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Photo Gallery.lnk
[2015/06/29 07:58:34 | 000,001,515 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
[2009/07/14 04:42:30 | 000,001,246 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk
[2009/07/14 04:42:26 | 000,001,230 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Calculator.lnk
[2009/07/14 04:41:56 | 000,001,266 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\displayswitch.lnk
[2009/07/14 04:42:04 | 000,001,242 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk
[2009/07/14 04:41:37 | 000,001,367 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk
[2009/07/14 04:42:29 | 000,001,330 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sound Recorder.lnk
[2009/07/14 04:42:23 | 000,001,254 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sync Center.lnk
[2009/07/14 04:42:29 | 000,001,579 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Welcome Center.lnk
[2009/07/14 04:42:23 | 000,001,322 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk
[2009/07/14 04:42:30 | 000,001,388 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Speech Recognition.lnk
[2009/07/14 04:42:26 | 000,001,248 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk
[2009/07/14 04:41:58 | 000,001,290 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\dfrgui.lnk
[2009/07/14 04:42:24 | 000,001,252 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Disk Cleanup.lnk
[2009/07/14 04:41:33 | 000,001,242 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Resource Monitor.lnk
[2009/07/14 04:41:20 | 000,001,250 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Information.lnk
[2009/07/14 04:42:23 | 000,001,246 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Restore.lnk
[2009/07/14 04:42:01 | 000,001,268 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Task Scheduler.lnk
[2009/07/14 04:42:29 | 000,001,320 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer Reports.lnk
[2009/07/14 04:42:29 | 000,001,316 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer.lnk
[2009/07/14 04:46:36 | 000,001,468 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell ISE.lnk
[2009/07/14 04:52:25 | 000,001,899 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell.lnk
[2009/07/14 04:46:36 | 000,001,242 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk
[2009/07/14 04:41:55 | 000,001,294 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk
[2009/07/14 04:41:35 | 000,001,270 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Data Sources (ODBC).lnk
[2009/07/14 04:42:01 | 000,001,298 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk
[2009/07/14 04:41:55 | 000,001,274 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk
[2009/07/14 04:41:20 | 000,001,268 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk
[2009/07/14 04:41:33 | 000,001,232 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk
[2009/07/14 04:41:45 | 000,001,288 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/14 04:41:20 | 000,001,246 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk
[2009/07/14 04:42:01 | 000,001,262 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk
[2009/07/14 04:41:40 | 000,001,274 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk
[2009/07/14 04:52:25 | 000,002,741 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell Modules.lnk
[2011/04/02 03:05:45 | 000,002,191 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\ASUS WebStorage\ASUS WebStorage.lnk
[2011/04/02 03:05:45 | 000,000,904 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\ASUS WebStorage\Uninstall.lnk
[2011/04/02 02:48:14 | 000,002,065 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\ASUSUpdate for Eee PC\ASUSUpdate.lnk
[2011/04/02 02:48:14 | 000,002,106 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\ASUSUpdate for Eee PC\Uninstall ASUSUpdate.lnk
[2012/09/15 13:18:49 | 000,001,926 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\AsusVibe\ASUS Vibe Fun Center.lnk
[2011/04/02 02:54:00 | 000,000,868 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\CapsHook\CapsHook.lnk
[2011/04/02 03:05:25 | 000,001,124 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\Eee Docking\Eee Docking.lnk
[2011/04/02 03:05:25 | 000,001,109 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\Eee Docking\Uninstall Eee Docking.lnk
[2011/04/02 02:48:18 | 000,001,788 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\Eee Splendid\Eee Splendid.lnk
[2011/04/02 02:48:18 | 000,001,355 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\Eee Splendid\Uninstall.lnk
[2011/04/02 02:49:34 | 000,002,068 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\FontResizer\FontResizer.lnk
[2011/04/02 02:49:34 | 000,002,106 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\FontResizer\Uninstall FontResizer.lnk
[2011/04/02 02:53:47 | 000,002,008 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\LiveUpdate\Readme.lnk
[2011/04/02 02:49:12 | 000,002,026 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\LocaleMe\LocaleMe.lnk
[2011/04/02 02:53:24 | 000,000,876 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS\Super Hybrid Engine\SuperHybridEngine.lnk
[2015/08/24 13:41:05 | 000,000,943 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk
[2013/09/04 21:06:01 | 000,001,038 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desktop Maestro\Desktop Maestro.lnk
[2013/09/04 21:06:01 | 000,000,994 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desktop Maestro\Désinstaller Desktop Maestro.lnk
[2013/09/04 21:06:01 | 000,001,090 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desktop Maestro\Guide de démarrage rapide de Desktop Maestro.lnk
[2013/09/04 21:06:01 | 000,001,894 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desktop Maestro\Page d'accueil.lnk
[2011/04/02 02:50:05 | 000,002,170 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game Park\Game Park Console.lnk
[2011/04/02 02:49:57 | 000,001,166 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game Park\Game Park.lnk
[2009/07/14 04:42:26 | 000,000,364 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\FreeCell.lnk
[2009/07/14 04:42:25 | 000,000,258 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\GameExplorer.lnk
[2009/07/14 04:42:31 | 000,000,356 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Hearts.lnk
[2009/07/14 04:42:31 | 000,000,376 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Minesweeper.lnk
[2009/07/14 04:42:31 | 000,000,370 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\More Games from Microsoft.lnk
[2009/07/14 04:42:31 | 000,000,378 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Purble Place.lnk
[2009/07/14 04:42:26 | 000,000,368 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Solitaire.lnk
[2009/07/14 04:42:31 | 000,000,392 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Spider Solitaire.lnk
[2015/08/25 13:39:09 | 000,001,731 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\iTunes.lnk
[2015/08/25 13:39:09 | 000,002,035 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\À propos d iTunes.lnk
[2009/07/14 04:42:28 | 000,001,304 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Backup and Restore Center.lnk
[2009/07/14 04:42:30 | 000,001,248 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Create Recovery Disc.lnk
[2009/07/14 04:42:29 | 000,001,212 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Remote Assistance.lnk
[2015/08/22 17:14:48 | 000,001,062 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Désinstaller Malwarebytes Anti-Malware.lnk
[2015/08/22 17:14:48 | 000,001,038 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware.lnk
[2015/08/22 17:14:48 | 000,001,333 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Tools\Malwarebytes Anti-Malware Chameleon.lnk
[2013/08/31 16:43:58 | 000,002,711 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Access 2007.lnk
[2013/08/31 16:43:58 | 000,002,711 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Excel 2007.lnk
[2013/08/31 16:43:58 | 000,002,757 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office InfoPath 2007.lnk
[2013/08/31 16:43:58 | 000,002,795 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Outlook 2007.lnk
[2013/08/31 16:43:58 | 000,002,667 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office PowerPoint 2007.lnk
[2013/08/31 16:43:59 | 000,002,683 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Publisher 2007.lnk
[2013/08/31 16:43:59 | 000,002,753 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Word 2007.lnk
[2013/08/31 16:43:59 | 000,002,711 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Outils Microsoft Office\Bibliothèque multimédia Microsoft.lnk
[2013/08/31 16:43:59 | 000,002,711 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Outils Microsoft Office\Certificat numérique pour les projets VBA.lnk
[2013/08/31 16:43:59 | 000,002,545 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Outils Microsoft Office\Microsoft Office 2007 Paramètres de langue.lnk
[2013/08/31 16:43:59 | 000,002,641 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Outils Microsoft Office\Microsoft Office Diagnostics.lnk
[2013/08/31 16:43:59 | 000,002,635 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Outils Microsoft Office\Microsoft Office Picture Manager.lnk
[2015/08/21 11:39:30 | 000,002,183 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight\Microsoft Silverlight.lnk
[2013/01/09 18:43:12 | 000,001,885 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox\Mozilla Firefox (Mode sans échec).lnk
[2013/01/09 18:43:12 | 000,001,863 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox\Mozilla Firefox.lnk
[2015/08/19 15:15:23 | 000,000,942 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PPÖúÊÖ\PPÖúÊÖ ÍøÕ¾.lnk
[2015/08/19 15:15:23 | 000,000,922 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PPÖúÊÖ\PPÖúÊÖ.lnk
[2015/08/19 15:15:23 | 000,000,748 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PPÖúÊÖ\жÔØ PPÖúÊÖ.lnk
[2013/04/18 21:37:59 | 000,001,816 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime\Désinstaller QuickTime.lnk
[2013/04/18 21:37:58 | 000,002,471 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime\PictureViewer.lnk
[2013/04/18 21:37:58 | 000,002,441 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime\QuickTime Player.lnk
[2013/04/18 21:37:58 | 000,002,441 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime\À propos de QuickTime.lnk
[2011/04/02 02:43:14 | 000,002,373 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ralink Wireless\Uninstall - RT2860.lnk
[2015/04/27 18:04:44 | 000,002,055 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype\Skype.lnk
[2013/01/09 18:47:56 | 000,001,058 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Documentation.lnk
[2013/01/09 18:47:56 | 000,001,009 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Release Notes.lnk
[2013/01/09 18:47:56 | 000,001,098 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Reset VLC media player preferences and cache files.lnk
[2013/01/09 18:47:56 | 000,001,073 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VideoLAN Website.lnk
[2013/01/09 18:47:56 | 000,001,018 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player skinned.lnk
[2013/01/09 18:47:56 | 000,001,002 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player.lnk
[2011/04/02 02:59:36 | 000,002,645 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Family Safety.lnk
[2011/04/02 02:59:13 | 000,002,024 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Mesh.lnk
[2011/04/02 02:58:55 | 000,002,296 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Writer.lnk
[2013/09/04 21:05:00 | 000,000,969 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Aide de WinRAR.lnk
[2013/09/04 21:05:00 | 000,000,950 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Manuel de la console RAR.lnk
[2013/09/04 21:05:00 | 000,000,969 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk
[2009/07/14 04:46:35 | 000,001,282 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Default Programs.lnk
[2011/04/02 02:53:47 | 000,002,036 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\LiveUpdate.lnk
[2009/07/14 04:37:43 | 000,001,266 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Windows Update.lnk
[2011/04/02 02:53:03 | 000,000,979 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Acrobat.com.lnk
[2013/04/18 21:27:29 | 000,002,519 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
[2015/08/25 12:23:28 | 000,002,077 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
[2015/02/26 13:36:41 | 000,001,077 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2009/07/14 04:42:29 | 000,001,330 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk
[2009/07/14 04:42:30 | 000,001,352 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Windows Anytime Upgrade.lnk
[2009/07/14 04:42:24 | 000,001,210 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk
[2011/04/02 02:57:25 | 000,001,404 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
[2011/04/02 02:56:30 | 000,002,432 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk
[2011/04/02 02:58:29 | 000,001,251 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Windows Live Movie Maker.lnk
[2011/04/02 02:58:19 | 000,001,320 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Windows Live Photo Gallery.lnk
[2015/06/29 07:58:34 | 000,001,515 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
[2009/07/14 04:42:30 | 000,001,246 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk
[2009/07/14 04:42:26 | 000,001,230 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Accessories\Calculator.lnk
[2009/07/14 04:41:56 | 000,001,266 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Accessories\displayswitch.lnk
[2009/07/14 04:42:04 | 000,001,242 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk
[2009/07/14 04:41:37 | 000,001,367 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk
[2009/07/14 04:42:29 | 000,001,330 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Accessories\Sound Recorder.lnk
[2009/07/14 04:42:23 | 000,001,254 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Accessories\Sync Center.lnk
[2009/07/14 04:42:29 | 000,001,579 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Accessories\Welcome Center.lnk
[2009/07/14 04:42:23 | 000,001,322 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk
[2009/07/14 04:42:30 | 000,001,388 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Speech Recognition.lnk
[2009/07/14 04:42:26 | 000,001,248 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk
[2009/07/14 04:41:58 | 000,001,290 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\dfrgui.lnk
[2009/07/14 04:42:24 | 000,001,252 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Disk Cleanup.lnk
[2009/07/14 04:41:33 | 000,001,242 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Resource Monitor.lnk
[2009/07/14 04:41:20 | 000,001,250 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Information.lnk
[2009/07/14 04:42:23 | 000,001,246 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Restore.lnk
[2009/07/14 04:42:01 | 000,001,268 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Task Scheduler.lnk
[2009/07/14 04:42:29 | 000,001,320 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer Reports.lnk
[2009/07/14 04:42:29 | 000,001,316 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer.lnk
[2009/07/14 04:46:36 | 000,001,468 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell ISE.lnk
[2009/07/14 04:52:25 | 000,001,899 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell.lnk
[2009/07/14 04:46:36 | 000,001,242 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk
[2009/07/14 04:41:55 | 000,001,294 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk
[2009/07/14 04:41:35 | 000,001,270 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Data Sources (ODBC).lnk
[2009/07/14 04:42:01 | 000,001,298 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk
[2009/07/14 04:41:55 | 000,001,274 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk
[2009/07/14 04:41:20 | 000,001,268 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk
[2009/07/14 04:41:33 | 000,001,232 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk
[2009/07/14 04:41:45 | 000,001,288 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
[2009/07/14 04:41:20 | 000,001,246 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk
[2009/07/14 04:42:01 | 000,001,262 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk
[2009/07/14 04:41:40 | 000,001,274 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk
[2009/07/14 04:52:25 | 000,002,741 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell Modules.lnk
[2011/04/02 03:05:45 | 000,002,191 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\ASUS\ASUS WebStorage\ASUS WebStorage.lnk
[2011/04/02 03:05:45 | 000,000,904 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\ASUS\ASUS WebStorage\Uninstall.lnk
[2011/04/02 02:48:14 | 000,002,065 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\ASUS\ASUSUpdate for Eee PC\ASUSUpdate.lnk
[2011/04/02 02:48:14 | 000,002,106 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\ASUS\ASUSUpdate for Eee PC\Uninstall ASUSUpdate.lnk
[2012/09/15 13:18:49 | 000,001,926 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\ASUS\AsusVibe\ASUS Vibe Fun Center.lnk
[2011/04/02 02:54:00 | 000,000,868 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\ASUS\CapsHook\CapsHook.lnk
[2011/04/02 03:05:25 | 000,001,124 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\ASUS\Eee Docking\Eee Docking.lnk
[2011/04/02 03:05:25 | 000,001,109 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\ASUS\Eee Docking\Uninstall Eee Docking.lnk
[2011/04/02 02:48:18 | 000,001,788 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\ASUS\Eee Splendid\Eee Splendid.lnk
[2011/04/02 02:48:18 | 000,001,355 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\ASUS\Eee Splendid\Uninstall.lnk
[2011/04/02 02:49:34 | 000,002,068 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\ASUS\FontResizer\FontResizer.lnk
[2011/04/02 02:49:34 | 000,002,106 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\ASUS\FontResizer\Uninstall FontResizer.lnk
[2011/04/02 02:53:47 | 000,002,008 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\ASUS\LiveUpdate\Readme.lnk
[2011/04/02 02:49:12 | 000,002,026 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\ASUS\LocaleMe\LocaleMe.lnk
[2011/04/02 02:53:24 | 000,000,876 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\ASUS\Super Hybrid Engine\SuperHybridEngine.lnk
[2015/08/24 13:41:05 | 000,000,943 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk
[2013/09/04 21:06:01 | 000,001,038 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Desktop Maestro\Desktop Maestro.lnk
[2013/09/04 21:06:01 | 000,000,994 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Desktop Maestro\Désinstaller Desktop Maestro.lnk
[2013/09/04 21:06:01 | 000,001,090 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Desktop Maestro\Guide de démarrage rapide de Desktop Maestro.lnk
[2013/09/04 21:06:01 | 000,001,894 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Desktop Maestro\Page d'accueil.lnk
[2011/04/02 02:50:05 | 000,002,170 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Game Park\Game Park Console.lnk
[2011/04/02 02:49:57 | 000,001,166 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Game Park\Game Park.lnk
[2009/07/14 04:42:26 | 000,000,364 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Games\FreeCell.lnk
[2009/07/14 04:42:25 | 000,000,258 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Games\GameExplorer.lnk
[2009/07/14 04:42:31 | 000,000,356 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Games\Hearts.lnk
[2009/07/14 04:42:31 | 000,000,376 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Games\Minesweeper.lnk
[2009/07/14 04:42:31 | 000,000,370 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Games\More Games from Microsoft.lnk
[2009/07/14 04:42:31 | 000,000,378 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Games\Purble Place.lnk
[2009/07/14 04:42:26 | 000,000,368 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Games\Solitaire.lnk
[2009/07/14 04:42:31 | 000,000,392 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Games\Spider Solitaire.lnk
[2015/08/25 13:39:09 | 000,001,731 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\iTunes\iTunes.lnk
[2015/08/25 13:39:09 | 000,002,035 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\iTunes\À propos d iTunes.lnk
[2009/07/14 04:42:28 | 000,001,304 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Maintenance\Backup and Restore Center.lnk
[2009/07/14 04:42:30 | 000,001,248 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Maintenance\Create Recovery Disc.lnk
[2009/07/14 04:42:29 | 000,001,212 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Maintenance\Remote Assistance.lnk
[2015/08/22 17:14:48 | 000,001,062 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Désinstaller Malwarebytes Anti-Malware.lnk
[2015/08/22 17:14:48 | 000,001,038 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware.lnk
[2015/08/22 17:14:48 | 000,001,333 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Tools\Malwarebytes Anti-Malware Chameleon.lnk
[2013/08/31 16:43:58 | 000,002,711 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Access 2007.lnk
[2013/08/31 16:43:58 | 000,002,711 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Excel 2007.lnk
[2013/08/31 16:43:58 | 000,002,757 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office InfoPath 2007.lnk
[2013/08/31 16:43:58 | 000,002,795 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Outlook 2007.lnk
[2013/08/31 16:43:58 | 000,002,667 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office PowerPoint 2007.lnk
[2013/08/31 16:43:59 | 000,002,683 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Publisher 2007.lnk
[2013/08/31 16:43:59 | 000,002,753 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Word 2007.lnk
[2013/08/31 16:43:59 | 000,002,711 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Outils Microsoft Office\Bibliothèque multimédia Microsoft.lnk
[2013/08/31 16:43:59 | 000,002,711 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Outils Microsoft Office\Certificat numérique pour les projets VBA.lnk
[2013/08/31 16:43:59 | 000,002,545 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Outils Microsoft Office\Microsoft Office 2007 Paramètres de langue.lnk
[2013/08/31 16:43:59 | 000,002,641 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Outils Microsoft Office\Microsoft Office Diagnostics.lnk
[2013/08/31 16:43:59 | 000,002,635 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Outils Microsoft Office\Microsoft Office Picture Manager.lnk
[2015/08/21 11:39:30 | 000,002,183 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight\Microsoft Silverlight.lnk
[2013/01/09 18:43:12 | 000,001,885 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox\Mozilla Firefox (Mode sans échec).lnk
[2013/01/09 18:43:12 | 000,001,863 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox\Mozilla Firefox.lnk
[2015/08/19 15:15:23 | 000,000,942 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\PPÖúÊÖ\PPÖúÊÖ ÍøÕ¾.lnk
[2015/08/19 15:15:23 | 000,000,922 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\PPÖúÊÖ\PPÖúÊÖ.lnk
[2015/08/19 15:15:23 | 000,000,748 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\PPÖúÊÖ\жÔØ PPÖúÊÖ.lnk
[2013/04/18 21:37:59 | 000,001,816 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\QuickTime\Désinstaller QuickTime.lnk
[2013/04/18 21:37:58 | 000,002,471 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\QuickTime\PictureViewer.lnk
[2013/04/18 21:37:58 | 000,002,441 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\QuickTime\QuickTime Player.lnk
[2013/04/18 21:37:58 | 000,002,441 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\QuickTime\À propos de QuickTime.lnk
[2011/04/02 02:43:14 | 000,002,373 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Ralink Wireless\Uninstall - RT2860.lnk
[2015/04/27 18:04:44 | 000,002,055 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Skype\Skype.lnk
[2013/01/09 18:47:56 | 000,001,058 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\VideoLAN\Documentation.lnk
[2013/01/09 18:47:56 | 000,001,009 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\VideoLAN\Release Notes.lnk
[2013/01/09 18:47:56 | 000,001,098 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\VideoLAN\Reset VLC media player preferences and cache files.lnk
[2013/01/09 18:47:56 | 000,001,073 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\VideoLAN\VideoLAN Website.lnk
[2013/01/09 18:47:56 | 000,001,018 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player skinned.lnk
[2013/01/09 18:47:56 | 000,001,002 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player.lnk
[2011/04/02 02:59:36 | 000,002,645 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Family Safety.lnk
[2011/04/02 02:59:13 | 000,002,024 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Mesh.lnk
[2011/04/02 02:58:55 | 000,002,296 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Windows Live\Windows Live Writer.lnk
[2013/09/04 21:05:00 | 000,000,969 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\WinRAR\Aide de WinRAR.lnk
[2013/09/04 21:05:00 | 000,000,950 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\WinRAR\Manuel de la console RAR.lnk
[2013/09/04 21:05:00 | 000,000,969 | ---- | M] () -- C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk
[2009/07/14 04:37:42 | 000,000,290 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk
[2009/07/14 04:37:42 | 000,000,272 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk
[2009/07/14 04:54:24 | 000,001,419 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer (2).lnk
[2009/07/14 04:54:24 | 000,001,419 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer (3).lnk
[2009/07/14 04:54:24 | 000,001,419 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer (4).lnk
[2009/07/14 04:54:24 | 000,001,419 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk
[2009/07/14 04:37:42 | 000,001,228 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer (2).lnk
[2009/07/14 04:37:42 | 000,001,228 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer (3).lnk
[2009/07/14 04:37:42 | 000,001,228 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer (4).lnk
[2009/07/14 04:37:42 | 000,001,228 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk
[2009/07/14 04:54:22 | 000,001,515 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player (2).lnk
[2009/07/14 04:54:22 | 000,001,515 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player (3).lnk
[2011/02/11 11:16:46 | 000,001,515 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player (4).lnk
[2009/07/14 04:54:22 | 000,001,515 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk
[2011/04/02 03:08:26 | 000,001,668 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\Trend Micro\Trend Micro Titanium.lnk
[2009/07/14 04:42:24 | 000,001,238 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk
[2011/04/02 03:16:26 | 000,001,413 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2009/07/14 04:41:59 | 000,001,280 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk
[2009/07/14 04:42:04 | 000,001,304 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk
[2009/07/14 04:37:42 | 000,000,262 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk
[2009/07/14 04:37:42 | 000,001,228 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk
[2009/07/14 04:41:42 | 000,001,358 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk
[2009/07/14 04:41:42 | 000,001,258 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk
[2009/07/14 04:41:43 | 000,001,262 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk
[2009/07/14 04:41:42 | 000,001,250 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk
[2009/07/14 04:37:42 | 000,000,262 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk
[2009/07/14 04:37:42 | 000,000,262 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk
[2011/04/02 03:16:26 | 000,001,463 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
[2009/07/14 04:42:24 | 000,001,306 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk
[2009/07/14 04:37:42 | 000,000,262 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk
[2011/04/02 03:08:36 | 000,002,274 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Trend Micro Titanium\Online Help.lnk
[2011/04/02 03:08:36 | 000,002,424 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Trend Micro Titanium\ReadMe.lnk
[2011/04/02 03:08:36 | 000,002,274 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Trend Micro Titanium\Trend Micro Account.lnk
[2011/04/02 03:08:36 | 000,002,332 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Trend Micro Titanium\Trend Micro Diagnostic Toolkit.lnk
[2011/04/02 03:08:36 | 000,001,477 | ---- | M] () -- C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Trend Micro Titanium\Trend Micro Titanium.lnk
[2011/04/02 03:08:35 | 000,001,441 | ---- | M] () -- C:\Users\Default\Desktop\Trend Micro Titanium.lnk
[2011/02/11 11:16:47 | 000,000,461 | ---- | M] () -- C:\Users\Default\Links\Desktop.lnk
[2011/02/11 11:16:47 | 000,000,872 | ---- | M] () -- C:\Users\Default\Links\Downloads.lnk
[2011/02/11 11:16:47 | 000,000,363 | ---- | M] () -- C:\Users\Default\Links\RecentPlaces.lnk
[2012/09/15 13:11:08 | 000,001,423 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2015/08/21 15:21:56 | 000,001,950 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2015/08/24 15:51:50 | 000,001,069 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\MP Manager.lnk
[2009/07/14 04:37:42 | 000,000,290 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk
[2009/07/14 04:37:42 | 000,000,272 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk
[2015/07/29 11:49:17 | 000,002,671 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk
[2015/08/22 17:51:26 | 000,001,003 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Firefox.lnk
[2013/01/09 18:54:41 | 000,001,051 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\GOM Player.lnk
[2012/09/15 14:17:13 | 000,002,379 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk
[2009/07/14 04:54:24 | 000,001,419 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer (2).lnk
[2009/07/14 04:54:24 | 000,001,419 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer (3).lnk
[2009/07/14 04:54:24 | 000,001,419 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer (4).lnk
[2009/07/14 04:54:24 | 000,001,419 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk
[2015/08/21 15:21:56 | 000,001,077 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk
[2009/07/14 04:37:42 | 000,001,228 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer (2).lnk
[2009/07/14 04:37:42 | 000,001,228 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer (3).lnk
[2009/07/14 04:37:42 | 000,001,228 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer (4).lnk
[2009/07/14 04:37:42 | 000,001,228 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer (5).lnk
[2009/07/14 04:37:42 | 000,001,228 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk
[2009/07/14 04:54:22 | 000,001,515 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player (2).lnk
[2009/07/14 04:54:22 | 000,001,515 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player (3).lnk
[2011/02/11 11:16:46 | 000,001,515 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player (4).lnk
[2009/07/14 04:54:22 | 000,001,515 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk
[2015/08/24 20:15:37 | 000,000,179 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Office\Recent\Disque amovible (E).LNK
[2015/08/24 20:15:37 | 000,000,304 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Office\Recent\Jkghhhcfgkhj.docx.LNK
[2015/08/26 00:12:04 | 000,002,417 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\08252015_114710.log.lnk
[2015/08/26 11:33:23 | 000,000,548 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\DelFix.txt.lnk
[2015/08/25 21:22:04 | 000,001,767 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\des raccourcis impossible de supprimer.htm.lnk
[2015/08/24 20:15:37 | 000,000,219 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\Disque amovible (E).lnk
[2015/08/25 21:22:04 | 000,000,590 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\Documents.lnk
[2015/08/24 15:56:59 | 000,000,751 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\ESET Online Scanner.lnk
[2015/08/24 17:05:22 | 000,002,392 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\eset scan.txt.lnk
[2015/08/26 15:57:06 | 000,002,590 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\iPhone31_7.1.2_11D257_Restore.ipsw.lnk
[2015/08/24 20:15:37 | 000,000,352 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\Jkghhhcfgkhj.docx.lnk
[2015/08/26 10:11:54 | 000,002,609 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\Kaspersky Virus Removal Tool.htm.lnk
[2015/08/26 10:42:48 | 000,000,612 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\Legal notices.lnk
[2015/08/26 10:42:47 | 000,000,828 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\legal_notices.txt.lnk
[2015/08/24 15:56:59 | 000,000,941 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\log.txt.lnk
[2015/08/24 14:30:53 | 000,000,156 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\Matériel et audio.lnk
[2015/08/24 14:59:56 | 000,000,871 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\Menu Démarrer.lnk
[2015/08/24 17:06:40 | 000,001,438 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\OTL.Txt.lnk
[2015/08/25 12:17:31 | 000,000,156 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\Programmes.lnk
[2015/08/26 10:21:38 | 000,000,580 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\Reports.lnk
[2015/08/26 00:09:58 | 000,000,854 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\report_20150825_183056.klr.enc1.lnk
[2015/08/26 00:36:18 | 000,000,854 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\report_20150826_002212.klr.enc1.lnk
[2015/08/26 10:21:38 | 000,000,854 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\report_20150826_011330.klr.enc1.lnk
[2015/08/25 12:25:10 | 000,000,575 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\system32.lnk
[2015/08/26 18:36:15 | 000,000,156 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\Système et sécurité.lnk
[2015/08/26 18:31:32 | 000,000,508 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\User Pinned.lnk
[2015/08/25 11:45:28 | 000,000,575 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Recent\ZHPCleaner-.txt.lnk
[2009/07/14 04:42:24 | 000,001,238 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk
[2014/08/13 11:11:32 | 000,001,909 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk
[2012/09/15 13:10:17 | 000,001,249 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\SendTo\Transfert de fichiers Bluetooth.LNK
[2012/11/02 08:30:33 | 000,002,337 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CIC.lnk
[2012/09/15 13:11:08 | 000,001,429 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2009/07/14 04:41:59 | 000,001,280 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk
[2009/07/14 04:42:04 | 000,001,304 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk
[2009/07/14 04:37:42 | 000,000,262 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk
[2009/07/14 04:37:42 | 000,001,228 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk
[2009/07/14 04:41:42 | 000,001,358 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk
[2009/07/14 04:41:42 | 000,001,258 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk
[2009/07/14 04:41:43 | 000,001,262 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk
[2009/07/14 04:41:42 | 000,001,250 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk
[2009/07/14 04:37:42 | 000,000,262 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk
[2009/07/14 04:37:42 | 000,000,262 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk
[2012/09/15 13:11:08 | 000,001,487 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
[2009/07/14 04:42:24 | 000,001,306 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk
[2015/08/24 14:19:27 | 000,001,414 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CopyTrans Control Center\CopyTrans Control Center.lnk
[2015/08/24 14:19:27 | 000,001,276 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CopyTrans Control Center\Désinstaller.lnk
[2015/06/24 09:21:05 | 000,002,399 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk
[2009/07/14 04:37:42 | 000,000,262 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk
[2015/08/24 15:51:49 | 000,001,081 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MP Manager\MP Manager.lnk
[2015/08/24 15:51:50 | 000,001,974 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MP Manager\Uninstall MP Manager.lnk
[2013/09/04 21:05:00 | 000,000,987 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Aide de WinRAR.lnk
[2013/09/04 21:05:00 | 000,000,968 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Manuel de la console RAR.lnk
[2013/09/04 21:05:00 | 000,000,987 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk
[2015/08/20 17:58:04 | 000,000,744 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\ZHP\Quarantine\Assets Manager.DIR\Music.lnk
[2015/08/21 13:33:35 | 000,000,744 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\ZHP\Quarantine\Assets Manager.DIR\smdmf.lnk
[1 C:\Users\Doudou\AppData\Roaming\ZHP\Quarantine\Assets Manager.DIR\*.tmp files -> C:\Users\Doudou\AppData\Roaming\ZHP\Quarantine\Assets Manager.DIR\*.tmp -> ]
[2015/08/19 16:45:44 | 000,000,750 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\ZHP\Quarantine\smdmf.DIR\Aplikasi.lnk
[2015/08/21 13:34:33 | 000,000,752 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\ZHP\Quarantine\smdmf.DIR\Microsoft.lnk
[2015/08/20 17:58:55 | 000,000,744 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\ZHP\Quarantine\smdmf.DIR\Music.lnk
[2011/04/02 03:08:36 | 000,002,274 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\ZHP\Quarantine\Trend Micro Titanium.DIR\Online Help.lnk
[2011/04/02 03:08:36 | 000,002,424 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\ZHP\Quarantine\Trend Micro Titanium.DIR\ReadMe.lnk
[2011/04/02 03:08:36 | 000,002,274 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\ZHP\Quarantine\Trend Micro Titanium.DIR\Trend Micro Account.lnk
[2015/05/20 12:51:38 | 000,000,669 | ---- | M] () -- C:\Users\Doudou\Desktop\AT BTS - Raccourci.lnk
[2015/08/24 14:19:27 | 000,001,414 | ---- | M] () -- C:\Users\Doudou\Desktop\CopyTrans Control Center.lnk
[2015/05/20 12:51:09 | 000,000,649 | ---- | M] () -- C:\Users\Doudou\Desktop\film - Raccourci.lnk
[2015/05/20 12:52:44 | 000,000,788 | ---- | M] () -- C:\Users\Doudou\Desktop\Identité Judiciaire - Raccourci.lnk
[2013/09/01 19:03:45 | 000,002,711 | ---- | M] () -- C:\Users\Doudou\Desktop\Microsoft Office Excel 2007.lnk
[2013/09/01 19:00:29 | 000,002,753 | ---- | M] () -- C:\Users\Doudou\Desktop\Microsoft Office Word 2007.lnk
[2015/08/24 15:51:50 | 000,001,089 | ---- | M] () -- C:\Users\Doudou\Desktop\MP Manager.lnk
[2015/08/19 12:36:46 | 000,000,762 | ---- | M] () -- C:\Users\Doudou\Documents\Asus WebStorage\Aplikasi.lnk
[2015/08/21 12:07:55 | 000,000,764 | ---- | M] () -- C:\Users\Doudou\Documents\Asus WebStorage\Microsoft.lnk
[2015/08/20 12:29:54 | 000,000,756 | ---- | M] () -- C:\Users\Doudou\Documents\Asus WebStorage\Music.lnk
[2015/08/21 12:07:56 | 000,000,770 | ---- | M] () -- C:\Users\Doudou\Documents\Asus WebStorage\MySyncFolder.lnk
[2015/08/19 12:36:47 | 000,000,762 | ---- | M] () -- C:\Users\Doudou\Documents\Bluetooth Exchange Folder\Aplikasi.lnk
[2015/08/21 12:07:56 | 000,000,764 | ---- | M] () -- C:\Users\Doudou\Documents\Bluetooth Exchange Folder\Microsoft.lnk
[2015/08/20 12:29:55 | 000,000,756 | ---- | M] () -- C:\Users\Doudou\Documents\Bluetooth Exchange Folder\Music.lnk
[2015/08/19 12:36:48 | 000,000,762 | ---- | M] () -- C:\Users\Doudou\Documents\E-Cam\Aplikasi.lnk
[2015/08/21 12:07:57 | 000,000,760 | ---- | M] () -- C:\Users\Doudou\Documents\E-Cam\Capture.lnk
[2015/08/21 12:07:57 | 000,000,764 | ---- | M] () -- C:\Users\Doudou\Documents\E-Cam\Microsoft.lnk
[2015/08/20 12:29:55 | 000,000,756 | ---- | M] () -- C:\Users\Doudou\Documents\E-Cam\Music.lnk
[2015/08/21 12:07:57 | 000,000,758 | ---- | M] () -- C:\Users\Doudou\Documents\E-Cam\Record.lnk
[2015/08/19 12:36:49 | 000,000,762 | ---- | M] () -- C:\Users\Doudou\Documents\Fax\Aplikasi.lnk
[2015/08/21 12:07:58 | 000,000,758 | ---- | M] () -- C:\Users\Doudou\Documents\Fax\Drafts.lnk
[2015/08/21 12:07:58 | 000,000,756 | ---- | M] () -- C:\Users\Doudou\Documents\Fax\Inbox.lnk
[2015/08/21 12:07:57 | 000,000,764 | ---- | M] () -- C:\Users\Doudou\Documents\Fax\Microsoft.lnk
[2015/08/20 12:29:56 | 000,000,756 | ---- | M] () -- C:\Users\Doudou\Documents\Fax\Music.lnk
[2015/08/19 12:36:50 | 000,000,762 | ---- | M] () -- C:\Users\Doudou\Documents\Mes fichiers reçus\Aplikasi.lnk
[2015/08/21 12:08:00 | 000,000,764 | ---- | M] () -- C:\Users\Doudou\Documents\Mes fichiers reçus\Microsoft.lnk
[2015/08/20 12:29:58 | 000,000,756 | ---- | M] () -- C:\Users\Doudou\Documents\Mes fichiers reçus\Music.lnk
[2015/08/19 12:36:53 | 000,000,762 | ---- | M] () -- C:\Users\Doudou\Documents\My photos\Aplikasi.lnk
[2015/08/21 12:08:02 | 000,000,764 | ---- | M] () -- C:\Users\Doudou\Documents\My photos\Microsoft.lnk
[2015/08/20 12:30:00 | 000,000,756 | ---- | M] () -- C:\Users\Doudou\Documents\My photos\Music.lnk
[2015/08/19 12:36:53 | 000,000,762 | ---- | M] () -- C:\Users\Doudou\Documents\Scanned Documents\Aplikasi.lnk
[2015/08/21 12:08:03 | 000,000,764 | ---- | M] () -- C:\Users\Doudou\Documents\Scanned Documents\Documents.lnk
[2015/08/21 12:08:02 | 000,000,764 | ---- | M] () -- C:\Users\Doudou\Documents\Scanned Documents\Microsoft.lnk
[2015/08/20 12:30:01 | 000,000,756 | ---- | M] () -- C:\Users\Doudou\Documents\Scanned Documents\Music.lnk
[2015/08/21 12:00:49 | 000,000,477 | ---- | M] () -- C:\Users\Doudou\Links\Desktop.lnk
[2015/08/21 12:00:49 | 000,000,900 | ---- | M] () -- C:\Users\Doudou\Links\Downloads.lnk
[2015/08/21 12:00:49 | 000,000,383 | ---- | M] () -- C:\Users\Doudou\Links\RecentPlaces.lnk
[2015/08/19 12:36:50 | 000,000,762 | ---- | M] () -- C:\Users\Doudou\Music\Aplikasi.lnk
[2015/08/21 12:07:59 | 000,000,764 | ---- | M] () -- C:\Users\Doudou\Music\Microsoft.lnk
[2015/08/20 12:29:58 | 000,000,756 | ---- | M] () -- C:\Users\Doudou\Music\Music.lnk
[2015/08/19 12:36:51 | 000,000,762 | ---- | M] () -- C:\Users\Doudou\Pictures\Aplikasi.lnk
[2013/01/08 02:38:36 | 000,000,466 | ---- | M] () -- C:\Users\Doudou\Pictures\Disque local (D) - Raccourci.lnk
[2015/08/21 12:08:00 | 000,000,764 | ---- | M] () -- C:\Users\Doudou\Pictures\Microsoft.lnk
[2015/08/20 12:29:59 | 000,000,756 | ---- | M] () -- C:\Users\Doudou\Pictures\Music.lnk
[2015/08/19 12:36:52 | 000,000,762 | ---- | M] () -- C:\Users\Doudou\Videos\Aplikasi.lnk
[2015/08/21 12:08:01 | 000,000,764 | ---- | M] () -- C:\Users\Doudou\Videos\Microsoft.lnk
[2015/08/20 12:30:00 | 000,000,756 | ---- | M] () -- C:\Users\Doudou\Videos\Music.lnk
[1 C:\Users\Doudou\Videos\*.tmp files -> C:\Users\Doudou\Videos\*.tmp -> ]
[2015/08/24 13:41:05 | 000,000,925 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2013/09/04 21:06:01 | 000,000,974 | ---- | M] () -- C:\Users\Public\Desktop\Desktop Maestro.lnk
[2015/08/25 13:39:09 | 000,001,713 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2015/08/22 17:14:48 | 000,001,020 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2015/08/19 15:15:23 | 000,000,904 | ---- | M] () -- C:\Users\Public\Desktop\PPÖúÊÖ.lnk
[2013/04/18 21:37:58 | 000,001,775 | ---- | M] () -- C:\Users\Public\Desktop\QuickTime Player.lnk
[2015/04/27 18:04:43 | 000,002,685 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2013/01/09 18:47:56 | 000,000,984 | ---- | M] () -- C:\Users\Public\Desktop\VLC media player.lnk
[2015/08/19 16:45:34 | 000,000,750 | ---- | M] () -- C:\Users\Public\Favorites\Aplikasi.lnk
[2015/08/21 13:34:25 | 000,000,752 | ---- | M] () -- C:\Users\Public\Favorites\Microsoft.lnk
[2015/08/20 17:58:47 | 000,000,744 | ---- | M] () -- C:\Users\Public\Favorites\Music.lnk
[1 C:\Users\Public\Favorites\*.tmp files -> C:\Users\Public\Favorites\*.tmp -> ]
[2015/08/19 16:46:01 | 000,000,728 | ---- | M] () -- C:\Windows\assembly\Aplikasi.lnk
[2015/08/21 13:34:53 | 000,000,718 | ---- | M] () -- C:\Windows\assembly\GAC.lnk
[2015/08/21 13:34:53 | 000,000,724 | ---- | M] () -- C:\Windows\assembly\GAC_32.lnk
[2015/08/21 13:34:54 | 000,000,728 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL.lnk
[2015/08/21 13:34:53 | 000,000,581 | ---- | M] () -- C:\Windows\assembly\Microsoft.lnk
[2015/08/20 17:59:09 | 000,000,722 | ---- | M] () -- C:\Windows\assembly\Music.lnk
[2015/08/21 13:34:54 | 000,000,764 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32.lnk
[2015/08/21 13:34:54 | 000,000,764 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32.lnk
[1 C:\Windows\assembly\*.tmp files -> C:\Windows\assembly\*.tmp -> ]
[2015/08/19 16:46:05 | 000,000,728 | ---- | M] () -- C:\Windows\Cursors\Aplikasi.lnk
[2015/08/21 13:34:56 | 000,000,730 | ---- | M] () -- C:\Windows\Cursors\Microsoft.lnk
[2015/08/20 17:59:12 | 000,000,722 | ---- | M] () -- C:\Windows\Cursors\Music.lnk
[2015/08/19 16:46:08 | 000,000,728 | ---- | M] () -- C:\Windows\Downloaded Program Files\Aplikasi.lnk
[2015/08/21 13:34:59 | 000,000,730 | ---- | M] () -- C:\Windows\Downloaded Program Files\Microsoft.lnk
[2015/08/20 17:59:14 | 000,000,722 | ---- | M] () -- C:\Windows\Downloaded Program Files\Music.lnk
[2015/08/19 16:46:08 | 000,000,728 | ---- | M] () -- C:\Windows\en\Aplikasi.lnk
[2015/08/21 13:35:00 | 000,000,730 | ---- | M] () -- C:\Windows\en\Microsoft.lnk
[2015/08/20 17:59:15 | 000,000,722 | ---- | M] () -- C:\Windows\en\Music.lnk
[1 C:\Windows\en\*.tmp files -> C:\Windows\en\*.tmp -> ]
[2015/08/19 16:46:09 | 000,000,728 | ---- | M] () -- C:\Windows\Fonts\Aplikasi.lnk
[2015/08/21 13:35:00 | 000,000,730 | ---- | M] () -- C:\Windows\Fonts\Microsoft.lnk
[2015/08/20 17:59:15 | 000,000,722 | ---- | M] () -- C:\Windows\Fonts\Music.lnk
[2015/08/19 16:46:10 | 000,000,728 | ---- | M] () -- C:\Windows\fr-FR\Aplikasi.lnk
[2015/08/21 13:35:01 | 000,000,730 | ---- | M] () -- C:\Windows\fr-FR\Microsoft.lnk
[2015/08/20 17:59:16 | 000,000,722 | ---- | M] () -- C:\Windows\fr-FR\Music.lnk
[2015/08/19 16:46:11 | 000,000,728 | ---- | M] () -- C:\Windows\Globalization\Aplikasi.lnk
[2015/08/21 13:35:02 | 000,000,718 | ---- | M] () -- C:\Windows\Globalization\ELS.lnk
[2015/08/21 13:35:02 | 000,000,730 | ---- | M] () -- C:\Windows\Globalization\Microsoft.lnk
[2015/08/20 17:59:17 | 000,000,722 | ---- | M] () -- C:\Windows\Globalization\Music.lnk
[2015/08/21 13:35:02 | 000,000,726 | ---- | M] () -- C:\Windows\Globalization\Sorting.lnk
[2015/08/19 16:46:12 | 000,000,728 | ---- | M] () -- C:\Windows\Help\Aplikasi.lnk
[2015/08/21 13:35:03 | 000,000,730 | ---- | M] () -- C:\Windows\Help\Corporate.lnk
[2015/08/21 13:35:03 | 000,000,720 | ---- | M] () -- C:\Windows\Help\Help.lnk
[2015/08/21 13:35:03 | 000,000,730 | ---- | M] () -- C:\Windows\Help\Microsoft.lnk
[2015/08/21 13:35:03 | 000,000,718 | ---- | M] () -- C:\Windows\Help\mui.lnk
[2015/08/20 17:59:18 | 000,000,722 | ---- | M] () -- C:\Windows\Help\Music.lnk
[2015/08/21 13:35:03 | 000,000,718 | ---- | M] () -- C:\Windows\Help\OEM.lnk
[2015/08/21 13:35:03 | 000,000,726 | ---- | M] () -- C:\Windows\Help\Windows.lnk
[2015/08/19 16:46:13 | 000,000,728 | ---- | M] () -- C:\Windows\IME\Aplikasi.lnk
[2015/08/21 13:35:04 | 000,000,722 | ---- | M] () -- C:\Windows\IME\fr-FR.lnk
[2015/08/21 13:35:04 | 000,000,726 | ---- | M] () -- C:\Windows\IME\IMEJP10.lnk
[2015/08/21 13:35:04 | 000,000,724 | ---- | M] () -- C:\Windows\IME\imekr8.lnk
[2015/08/21 13:35:04 | 000,000,724 | ---- | M] () -- C:\Windows\IME\IMESC5.lnk
[2015/08/21 13:35:04 | 000,000,726 | ---- | M] () -- C:\Windows\IME\IMETC10.lnk
[2015/08/21 13:35:04 | 000,000,730 | ---- | M] () -- C:\Windows\IME\Microsoft.lnk
[2015/08/20 17:59:18 | 000,000,722 | ---- | M] () -- C:\Windows\IME\Music.lnk
[2015/08/21 13:35:05 | 000,000,738 | ---- | M] () -- C:\Windows\inf\.NET CLR Data.lnk
[2015/08/21 13:35:05 | 000,000,766 | ---- | M] () -- C:\Windows\inf\.NET CLR Networking 4.0.0.0.lnk
[2015/08/21 13:35:05 | 000,000,750 | ---- | M] () -- C:\Windows\inf\.NET CLR Networking.lnk
[2015/08/21 13:35:05 | 000,000,770 | ---- | M] () -- C:\Windows\inf\.NET Data Provider for Oracle.lnk
[2015/08/21 13:35:05 | 000,000,776 | ---- | M] () -- C:\Windows\inf\.NET Data Provider for SqlServer.lnk
[2015/08/19 16:46:14 | 000,000,728 | ---- | M] () -- C:\Windows\inf\Aplikasi.lnk
[2015/08/21 13:35:05 | 000,000,730 | ---- | M] () -- C:\Windows\inf\Microsoft.lnk
[2015/08/20 17:59:19 | 000,000,722 | ---- | M] () -- C:\Windows\inf\Music.lnk
[1 C:\Windows\inf\*.tmp files -> C:\Windows\inf\*.tmp -> ]
[2015/08/21 13:35:06 | 000,000,736 | ---- | M] () -- C:\Windows\Installer\$PatchCache$.lnk
[2015/08/19 16:46:15 | 000,000,728 | ---- | M] () -- C:\Windows\Installer\Aplikasi.lnk
[2015/08/21 13:35:06 | 000,000,730 | ---- | M] () -- C:\Windows\Installer\Microsoft.lnk
[2015/08/20 17:59:20 | 000,000,722 | ---- | M] () -- C:\Windows\Installer\Music.lnk
[2015/08/21 13:35:06 | 000,000,788 | ---- | M] () -- C:\Windows\Installer\{01FB4998-33C4-4431-85ED-079E3EEFE75D}.lnk
[2015/08/14 10:47:32 | 000,000,788 | ---- | M] () -- C:\Windows\Installer\{09180081-2C94-4A67-8E55-8483C019C7D2}.lnk
[2015/08/21 13:35:06 | 000,000,788 | ---- | M] () -- C:\Windows\Installer\{17780F99-A9DF-450B-81B3-6781B20A17A8}.lnk
[2015/08/21 13:35:06 | 000,000,788 | ---- | M] () -- C:\Windows\Installer\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}.lnk
[2015/08/21 13:35:07 | 000,000,788 | ---- | M] () -- C:\Windows\Installer\{38E5A3B1-ADF1-47E0-8024-76310A30EB36}.lnk
[10 C:\Windows\Installer\*.tmp files -> C:\Windows\Installer\*.tmp -> ]
[2015/08/19 16:46:16 | 000,000,728 | ---- | M] () -- C:\Windows\it\Aplikasi.lnk
[2015/08/21 13:35:07 | 000,000,730 | ---- | M] () -- C:\Windows\it\Microsoft.lnk
[2015/08/20 17:59:21 | 000,000,722 | ---- | M] () -- C:\Windows\it\Music.lnk
[2015/08/19 16:46:16 | 000,000,728 | ---- | M] () -- C:\Windows\L2Schemas\Aplikasi.lnk
[2015/08/21 13:35:07 | 000,000,730 | ---- | M] () -- C:\Windows\L2Schemas\Microsoft.lnk
[2015/08/20 17:59:21 | 000,000,722 | ---- | M] () -- C:\Windows\L2Schemas\Music.lnk
[2015/08/19 16:46:17 | 000,000,728 | ---- | M] () -- C:\Windows\LiveKernelReports\Aplikasi.lnk
[2015/08/21 13:35:08 | 000,000,730 | ---- | M] () -- C:\Windows\LiveKernelReports\Microsoft.lnk
[2015/08/20 17:59:22 | 000,000,722 | ---- | M] () -- C:\Windows\LiveKernelReports\Music.lnk
[2015/08/19 16:46:18 | 000,000,728 | ---- | M] () -- C:\Windows\Logs\Aplikasi.lnk
[2015/08/21 13:35:09 | 000,000,718 | ---- | M] () -- C:\Windows\Logs\CBS.lnk
[2015/08/21 13:35:09 | 000,000,720 | ---- | M] () -- C:\Windows\Logs\DISM.lnk
[2015/08/21 13:35:09 | 000,000,718 | ---- | M] () -- C:\Windows\Logs\DPX.lnk
[2015/08/21 13:35:09 | 000,000,718 | ---- | M] () -- C:\Windows\Logs\Gwx.lnk
[2015/08/21 13:35:09 | 000,000,730 | ---- | M] () -- C:\Windows\Logs\HomeGroup.lnk
[2015/08/21 13:35:08 | 000,000,730 | ---- | M] () -- C:\Windows\Logs\Microsoft.lnk
[2015/08/20 17:59:22 | 000,000,722 | ---- | M] () -- C:\Windows\Logs\Music.lnk
[2015/08/21 13:35:10 | 000,000,730 | ---- | M] () -- C:\Windows\Media\Afternoon.lnk
[2015/08/19 16:46:19 | 000,000,728 | ---- | M] () -- C:\Windows\Media\Aplikasi.lnk
[2015/08/21 13:35:10 | 000,000,734 | ---- | M] () -- C:\Windows\Media\Calligraphy.lnk
[2015/08/21 13:35:10 | 000,000,732 | ---- | M] () -- C:\Windows\Media\Characters.lnk
[2015/08/21 13:35:10 | 000,000,730 | ---- | M] () -- C:\Windows\Media\Cityscape.lnk
[2015/08/21 13:35:10 | 000,000,722 | ---- | M] () -- C:\Windows\Media\Delta.lnk
[2015/08/21 13:35:09 | 000,000,730 | ---- | M] () -- C:\Windows\Media\Microsoft.lnk
[2015/08/20 17:59:23 | 000,000,722 | ---- | M] () -- C:\Windows\Media\Music.lnk
[2015/08/19 16:46:20 | 000,000,728 | ---- | M] () -- C:\Windows\Microsoft.NET\Aplikasi.lnk
[2015/08/21 13:35:11 | 000,000,728 | ---- | M] () -- C:\Windows\Microsoft.NET\assembly.lnk
[2015/08/21 13:35:11 | 000,000,726 | ---- | M] () -- C:\Windows\Microsoft.NET\authman.lnk
[2015/08/21 13:35:11 | 000,000,730 | ---- | M] () -- C:\Windows\Microsoft.NET\Framework.lnk
[2015/08/21 13:35:10 | 000,000,730 | ---- | M] () -- C:\Windows\Microsoft.NET\Microsoft.lnk
[2015/08/20 17:59:24 | 000,000,722 | ---- | M] () -- C:\Windows\Microsoft.NET\Music.lnk
[2015/08/19 16:46:22 | 000,000,728 | ---- | M] () -- C:\Windows\ModemLogs\Aplikasi.lnk
[2015/08/21 13:35:12 | 000,000,730 | ---- | M] () -- C:\Windows\ModemLogs\Microsoft.lnk
[2015/08/20 17:59:25 | 000,000,722 | ---- | M] () -- C:\Windows\ModemLogs\Music.lnk
[2015/08/19 16:46:22 | 000,000,728 | ---- | M] () -- C:\Windows\nl\Aplikasi.lnk
[2015/08/21 13:35:13 | 000,000,730 | ---- | M] () -- C:\Windows\nl\Microsoft.lnk
[2015/08/20 17:59:26 | 000,000,722 | ---- | M] () -- C:\Windows\nl\Music.lnk
[2015/08/19 16:46:23 | 000,000,728 | ---- | M] () -- C:\Windows\Offline Web Pages\Aplikasi.lnk
[2015/08/21 13:35:13 | 000,000,730 | ---- | M] () -- C:\Windows\Offline Web Pages\Microsoft.lnk
[2015/08/20 17:59:26 | 000,000,722 | ---- | M] () -- C:\Windows\Offline Web Pages\Music.lnk
[2015/08/21 13:35:14 | 000,000,734 | ---- | M] () -- C:\Windows\panther\actionqueue.lnk
[2015/08/19 16:46:24 | 000,000,728 | ---- | M] () -- C:\Windows\panther\Aplikasi.lnk
[2015/08/21 13:35:14 | 000,000,730 | ---- | M] () -- C:\Windows\panther\Microsoft.lnk
[2015/08/20 17:59:27 | 000,000,722 | ---- | M] () -- C:\Windows\panther\Music.lnk
[2015/08/21 13:35:14 | 000,000,730 | ---- | M] () -- C:\Windows\panther\setup.exe.lnk
[2015/08/21 13:35:14 | 000,000,732 | ---- | M] () -- C:\Windows\panther\UnattendGC.lnk
[1 C:\Windows\panther\*.tmp files -> C:\Windows\panther\*.tmp -> ]
[2015/08/19 16:46:25 | 000,000,728 | ---- | M] () -- C:\Windows\PCHEALTH\Aplikasi.lnk
[2015/08/21 13:35:15 | 000,000,728 | ---- | M] () -- C:\Windows\PCHEALTH\ERRORREP.lnk
[2015/08/21 13:35:14 | 000,000,730 | ---- | M] () -- C:\Windows\PCHEALTH\Microsoft.lnk
[2015/08/20 17:59:27 | 000,000,722 | ---- | M] () -- C:\Windows\PCHEALTH\Music.lnk
[2015/08/19 16:46:25 | 000,000,728 | ---- | M] () -- C:\Windows\Performance\Aplikasi.lnk
[2015/08/21 13:35:15 | 000,000,730 | ---- | M] () -- C:\Windows\Performance\Microsoft.lnk
[2015/08/20 17:59:28 | 000,000,722 | ---- | M] () -- C:\Windows\Performance\Music.lnk
[2015/08/21 13:35:16 | 000,000,724 | ---- | M] () -- C:\Windows\Performance\WinSAT.lnk
[2015/08/19 16:46:26 | 000,000,728 | ---- | M] () -- C:\Windows\PLA\Aplikasi.lnk
[2015/08/21 13:35:16 | 000,000,730 | ---- | M] () -- C:\Windows\PLA\Microsoft.lnk
[2015/08/20 17:59:29 | 000,000,722 | ---- | M] () -- C:\Windows\PLA\Music.lnk
[2015/08/21 13:35:16 | 000,000,726 | ---- | M] () -- C:\Windows\PLA\Reports.lnk
[2015/08/21 13:35:16 | 000,000,722 | ---- | M] () -- C:\Windows\PLA\Rules.lnk
[2015/08/21 13:35:17 | 000,000,724 | ---- | M] () -- C:\Windows\PLA\System.lnk
[2015/08/21 13:35:17 | 000,000,730 | ---- | M] () -- C:\Windows\PLA\Templates.lnk
[2015/08/19 16:46:27 | 000,000,728 | ---- | M] () -- C:\Windows\PolicyDefinitions\Aplikasi.lnk
[2015/08/21 13:35:17 | 000,000,722 | ---- | M] () -- C:\Windows\PolicyDefinitions\en-US.lnk
[2015/08/21 13:35:17 | 000,000,722 | ---- | M] () -- C:\Windows\PolicyDefinitions\fr-FR.lnk
[2015/08/21 13:35:17 | 000,000,730 | ---- | M] () -- C:\Windows\PolicyDefinitions\Microsoft.lnk
[2015/08/20 17:59:29 | 000,000,722 | ---- | M] () -- C:\Windows\PolicyDefinitions\Music.lnk
[2015/08/19 16:46:28 | 000,000,728 | ---- | M] () -- C:\Windows\Prefetch\Aplikasi.lnk
[2015/08/21 13:35:17 | 000,000,730 | ---- | M] () -- C:\Windows\Prefetch\Microsoft.lnk
[2015/08/20 17:59:30 | 000,000,722 | ---- | M] () -- C:\Windows\Prefetch\Music.lnk
[2015/08/21 13:35:18 | 000,000,730 | ---- | M] () -- C:\Windows\Prefetch\ReadyBoot.lnk
[2015/08/19 16:46:28 | 000,000,728 | ---- | M] () -- C:\Windows\pss\Aplikasi.lnk
[2015/08/21 13:35:18 | 000,000,730 | ---- | M] () -- C:\Windows\pss\Microsoft.lnk
[2015/08/20 17:59:30 | 000,000,722 | ---- | M] () -- C:\Windows\pss\Music.lnk
[2015/08/19 16:46:29 | 000,000,728 | ---- | M] () -- C:\Windows\registration\Aplikasi.lnk
[2015/08/21 13:35:19 | 000,000,724 | ---- | M] () -- C:\Windows\registration\CRMLog.lnk
[2015/08/21 13:35:19 | 000,000,730 | ---- | M] () -- C:\Windows\registration\Microsoft.lnk
[2015/08/20 17:59:31 | 000,000,722 | ---- | M] () -- C:\Windows\registration\Music.lnk
[2015/08/19 16:46:31 | 000,000,728 | ---- | M] () -- C:\Windows\Resources\Aplikasi.lnk
[2015/08/21 13:35:21 | 000,000,754 | ---- | M] () -- C:\Windows\Resources\Ease of Access Themes.lnk
[2015/08/21 13:35:21 | 000,000,730 | ---- | M] () -- C:\Windows\Resources\Microsoft.lnk
[2015/08/20 17:59:33 | 000,000,722 | ---- | M] () -- C:\Windows\Resources\Music.lnk
[2015/08/21 13:35:21 | 000,000,724 | ---- | M] () -- C:\Windows\Resources\Themes.lnk
[2015/08/19 16:46:32 | 000,000,728 | ---- | M] () -- C:\Windows\SchCache\Aplikasi.lnk
[2015/08/19 16:46:32 | 000,000,728 | ---- | M] () -- C:\Windows\schemas\Aplikasi.lnk
[2015/08/21 13:35:23 | 000,000,744 | ---- | M] () -- C:\Windows\schemas\AvailableNetwork.lnk
[2015/08/21 13:35:23 | 000,000,726 | ---- | M] () -- C:\Windows\schemas\EAPHost.lnk
[2015/08/21 13:35:23 | 000,000,732 | ---- | M] () -- C:\Windows\schemas\EAPMethods.lnk
[2015/08/21 13:35:22 | 000,000,730 | ---- | M] () -- C:\Windows\schemas\Microsoft.lnk
[2015/08/20 17:59:34 | 000,000,722 | ---- | M] () -- C:\Windows\schemas\Music.lnk
[2015/08/21 13:35:23 | 000,000,734 | ---- | M] () -- C:\Windows\schemas\TSWorkSpace.lnk
[2015/08/21 13:35:23 | 000,000,718 | ---- | M] () -- C:\Windows\schemas\WCN.lnk
[2015/08/19 16:46:34 | 000,000,728 | ---- | M] () -- C:\Windows\security\Aplikasi.lnk
[2015/08/21 13:35:24 | 000,000,722 | ---- | M] () -- C:\Windows\security\audit.lnk
[2015/08/21 13:35:24 | 000,000,728 | ---- | M] () -- C:\Windows\security\database.lnk
[2015/08/21 13:35:24 | 000,000,720 | ---- | M] () -- C:\Windows\security\logs.lnk
[2015/08/21 13:35:23 | 000,000,730 | ---- | M] () -- C:\Windows\security\Microsoft.lnk
[2015/08/20 17:59:35 | 000,000,722 | ---- | M] () -- C:\Windows\security\Music.lnk
[2015/08/21 13:35:24 | 000,000,730 | ---- | M] () -- C:\Windows\security\templates.lnk
[2015/08/19 16:46:36 | 000,000,728 | ---- | M] () -- C:\Windows\ServiceProfiles\Aplikasi.lnk
[2015/08/21 13:35:25 | 000,000,736 | ---- | M] () -- C:\Windows\ServiceProfiles\LocalService.lnk
[2015/08/21 13:35:24 | 000,000,730 | ---- | M] () -- C:\Windows\ServiceProfiles\Microsoft.lnk
[2015/08/20 17:59:35 | 000,000,722 | ---- | M] () -- C:\Windows\ServiceProfiles\Music.lnk
[2015/08/21 13:35:25 | 000,000,740 | ---- | M] () -- C:\Windows\ServiceProfiles\NetworkService.lnk
[1 C:\Windows\ServiceProfiles\*.tmp files -> C:\Windows\ServiceProfiles\*.tmp -> ]
[2009/07/14 04:42:25 | 000,001,706 | ---- | M] () -- C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\SendTo\Fax recipient.lnk
[2009/07/14 04:42:25 | 000,001,706 | ---- | M] () -- C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\SendTo\Fax recipient.lnk
[2015/08/19 16:46:38 | 000,000,728 | ---- | M] () -- C:\Windows\Setup\Aplikasi.lnk
[2015/08/21 13:35:26 | 000,000,730 | ---- | M] () -- C:\Windows\Setup\Microsoft.lnk
[2015/08/20 17:59:37 | 000,000,722 | ---- | M] () -- C:\Windows\Setup\Music.lnk
[2015/08/21 13:35:27 | 000,000,726 | ---- | M] () -- C:\Windows\Setup\Scripts.lnk
[2015/08/21 13:35:27 | 000,000,722 | ---- | M] () -- C:\Windows\Setup\State.lnk
[2015/08/19 16:46:40 | 000,000,728 | ---- | M] () -- C:\Windows\SHELLNEW\Aplikasi.lnk
[2015/08/21 13:35:27 | 000,000,730 | ---- | M] () -- C:\Windows\SHELLNEW\Microsoft.lnk
[2015/08/20 17:59:37 | 000,000,722 | ---- | M] () -- C:\Windows\SHELLNEW\Music.lnk
[2015/08/19 16:46:41 | 000,000,728 | ---- | M] () -- C:\Windows\SoftwareDistribution\Aplikasi.lnk
[2015/08/21 13:35:29 | 000,000,728 | ---- | M] () -- C:\Windows\SoftwareDistribution\AuthCabs.lnk
[2015/08/21 13:35:29 | 000,000,730 | ---- | M] () -- C:\Windows\SoftwareDistribution\DataStore.lnk
[2015/08/21 13:35:29 | 000,000,728 | ---- | M] () -- C:\Windows\SoftwareDistribution\Download.lnk
[2015/08/21 13:35:29 | 000,000,732 | ---- | M] () -- C:\Windows\SoftwareDistribution\EventCache.lnk
[2015/08/21 13:35:28 | 000,000,730 | ---- | M] () -- C:\Windows\SoftwareDistribution\Microsoft.lnk
[2015/08/20 17:59:38 | 000,000,722 | ---- | M] () -- C:\Windows\SoftwareDistribution\Music.lnk
[2015/08/21 13:35:29 | 000,000,752 | ---- | M] () -- C:\Windows\SoftwareDistribution\PostRebootEventCache.lnk
[2015/08/17 16:52:44 | 000,000,732 | ---- | M] () -- C:\Windows\SoftwareDistribution\SelfUpdate.lnk
[2015/08/19 16:46:42 | 000,000,728 | ---- | M] () -- C:\Windows\Speech\Aplikasi.lnk
[2015/08/21 13:35:30 | 000,000,724 | ---- | M] () -- C:\Windows\Speech\Common.lnk
[2015/08/21 13:35:30 | 000,000,726 | ---- | M] () -- C:\Windows\Speech\Engines.lnk
[2015/08/21 13:35:29 | 000,000,730 | ---- | M] () -- C:\Windows\Speech\Microsoft.lnk
[2015/08/20 17:59:39 | 000,000,722 | ---- | M] () -- C:\Windows\Speech\Music.lnk
[2009/07/14 04:42:29 | 000,001,244 | ---- | M] () -- C:\Windows\System32\migwiz.lnk
[2015/04/27 18:04:44 | 000,001,921 | ---- | M] () -- C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk
[2015/08/19 16:40:02 | 000,000,728 | ---- | M] () -- C:\Windows\TAPI\Aplikasi.lnk
[2015/08/21 13:35:32 | 000,000,730 | ---- | M] () -- C:\Windows\TAPI\Microsoft.lnk
[2015/08/20 17:59:41 | 000,000,722 | ---- | M] () -- C:\Windows\TAPI\Music.lnk
[2015/08/19 16:40:04 | 000,000,728 | ---- | M] () -- C:\Windows\tracing\Aplikasi.lnk
[2015/08/21 13:35:34 | 000,000,730 | ---- | M] () -- C:\Windows\tracing\Microsoft.lnk
[2015/08/20 17:59:42 | 000,000,722 | ---- | M] () -- C:\Windows\tracing\Music.lnk
[2015/08/21 13:35:35 | 000,000,736 | ---- | M] () -- C:\Windows\tracing\PowerTracker.lnk
[2015/08/19 16:40:04 | 000,000,728 | ---- | M] () -- C:\Windows\twain_32\Aplikasi.lnk
[2015/08/21 13:35:35 | 000,000,581 | ---- | M] () -- C:\Windows\twain_32\Microsoft.lnk
[2015/08/20 17:59:43 | 000,000,722 | ---- | M] () -- C:\Windows\twain_32\Music.lnk
[1 C:\Windows\twain_32\*.tmp files -> C:\Windows\twain_32\*.tmp -> ]
[2015/08/19 16:40:05 | 000,000,728 | ---- | M] () -- C:\Windows\Vss\Aplikasi.lnk
[2015/08/21 13:35:36 | 000,000,730 | ---- | M] () -- C:\Windows\Vss\Microsoft.lnk
[2015/08/20 17:59:43 | 000,000,722 | ---- | M] () -- C:\Windows\Vss\Music.lnk
[2015/08/21 13:35:36 | 000,000,726 | ---- | M] () -- C:\Windows\Vss\Writers.lnk
[2015/08/19 16:40:06 | 000,000,728 | ---- | M] () -- C:\Windows\Web\Aplikasi.lnk
[2015/08/20 17:59:44 | 000,000,722 | ---- | M] () -- C:\Windows\Web\Music.lnk
[2009/06/10 21:24:29 | 000,002,741 | ---- | M] () -- C:\Windows\winsxs\x86_microsoft-windows-powershell_31bf3856ad364e35_6.1.7600.16385_none_fd070908080eea80\Windows PowerShell Modules.lnk
[2009/06/10 21:24:29 | 000,001,899 | ---- | M] () -- C:\Windows\winsxs\x86_microsoft-windows-powershell_31bf3856ad364e35_6.1.7600.16385_none_fd070908080eea80\Windows PowerShell.lnk
[2009/06/10 21:24:29 | 000,002,741 | ---- | M] () -- C:\Windows\winsxs\x86_microsoft-windows-powershell_31bf3856ad364e35_6.1.7601.17514_none_ff381cd004fd6e1a\Windows PowerShell Modules.lnk
[2009/06/10 21:24:29 | 000,001,899 | ---- | M] () -- C:\Windows\winsxs\x86_microsoft-windows-powershell_31bf3856ad364e35_6.1.7601.17514_none_ff381cd004fd6e1a\Windows PowerShell.lnk

[color=#A23BEC]< D:\*.lnk /s >[/color]
[2015/08/19 16:40:08 | 000,000,680 | ---- | M] () -- D:\$RECYCLE.BIN\Aplikasi.lnk
[2015/08/21 13:35:39 | 000,000,682 | ---- | M] () -- D:\$RECYCLE.BIN\Microsoft.lnk
[2015/08/20 17:59:46 | 000,000,674 | ---- | M] () -- D:\$RECYCLE.BIN\Music.lnk
[2015/08/21 13:35:40 | 000,000,680 | ---- | M] () -- D:\$RECYCLE.BIN\S-1-5-18.lnk
[2015/08/21 13:35:40 | 000,000,754 | ---- | M] () -- D:\$RECYCLE.BIN\S-1-5-21-1441733930-2375351263-901615299-1000.lnk
[2015/08/19 16:40:09 | 000,000,680 | ---- | M] () -- D:\$RECYCLE.BIN\S-1-5-18\Aplikasi.lnk
[2015/08/21 13:35:40 | 000,000,682 | ---- | M] () -- D:\$RECYCLE.BIN\S-1-5-18\Microsoft.lnk
[2015/08/20 17:59:47 | 000,000,674 | ---- | M] () -- D:\$RECYCLE.BIN\S-1-5-18\Music.lnk
[1 D:\$RECYCLE.BIN\S-1-5-18\*.tmp files -> D:\$RECYCLE.BIN\S-1-5-18\*.tmp -> ]
[2015/08/19 16:40:10 | 000,000,680 | ---- | M] () -- D:\1cd58a4146573035dba1c2a400\Aplikasi.lnk
[2015/08/21 13:35:41 | 000,000,682 | ---- | M] () -- D:\1cd58a4146573035dba1c2a400\Microsoft.lnk
[2015/08/20 17:59:48 | 000,000,674 | ---- | M] () -- D:\1cd58a4146573035dba1c2a400\Music.lnk
[2015/08/19 16:40:11 | 000,000,680 | ---- | M] () -- D:\2e00f316deb1f8fb4400f759d03c0c\Aplikasi.lnk
[2015/08/21 13:35:42 | 000,000,682 | ---- | M] () -- D:\2e00f316deb1f8fb4400f759d03c0c\Microsoft.lnk
[2015/08/20 17:59:48 | 000,000,674 | ---- | M] () -- D:\2e00f316deb1f8fb4400f759d03c0c\Music.lnk
[2015/08/21 13:35:43 | 000,000,672 | ---- | M] () -- D:\40090c06e1a6b98568\1025.lnk
[2015/08/21 13:35:43 | 000,000,672 | ---- | M] () -- D:\40090c06e1a6b98568\1028.lnk
[2015/08/21 13:35:43 | 000,000,672 | ---- | M] () -- D:\40090c06e1a6b98568\1029.lnk
[2015/08/21 13:35:43 | 000,000,672 | ---- | M] () -- D:\40090c06e1a6b98568\1030.lnk
[2015/08/21 13:35:43 | 000,000,672 | ---- | M] () -- D:\40090c06e1a6b98568\1031.lnk
[2015/08/19 16:40:11 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\Aplikasi.lnk
[2015/08/21 13:35:42 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\Microsoft.lnk
[2015/08/20 17:59:49 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\Music.lnk
[2015/08/19 16:40:12 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\1025\Aplikasi.lnk
[2015/08/21 13:35:43 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\1025\Microsoft.lnk
[2015/08/20 17:59:50 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\1025\Music.lnk
[2015/08/19 16:40:13 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\1028\Aplikasi.lnk
[2015/08/21 13:35:44 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\1028\Microsoft.lnk
[2015/08/20 17:59:50 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\1028\Music.lnk
[1 D:\40090c06e1a6b98568\1028\*.tmp files -> D:\40090c06e1a6b98568\1028\*.tmp -> ]
[2015/08/19 16:40:14 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\1029\Aplikasi.lnk
[2015/08/21 13:35:45 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\1029\Microsoft.lnk
[2015/08/20 17:59:51 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\1029\Music.lnk
[2015/08/19 16:40:14 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\1030\Aplikasi.lnk
[2015/08/21 13:35:45 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\1030\Microsoft.lnk
[2015/08/20 17:59:51 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\1030\Music.lnk
[2015/08/19 16:40:15 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\1031\Aplikasi.lnk
[2015/08/21 13:35:46 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\1031\Microsoft.lnk
[2015/08/20 17:59:52 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\1031\Music.lnk
[2015/08/19 16:40:15 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\1032\Aplikasi.lnk
[2015/08/21 13:35:46 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\1032\Microsoft.lnk
[2015/08/20 17:59:52 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\1032\Music.lnk
[2015/08/19 16:40:16 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\1033\Aplikasi.lnk
[2015/08/21 13:35:47 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\1033\Microsoft.lnk
[2015/08/20 17:59:53 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\1033\Music.lnk
[2015/08/19 16:40:16 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\1035\Aplikasi.lnk
[2015/08/21 13:35:48 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\1035\Microsoft.lnk
[2015/08/20 17:59:53 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\1035\Music.lnk
[2015/08/19 16:40:17 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\1036\Aplikasi.lnk
[2015/08/21 13:35:48 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\1036\Microsoft.lnk
[2015/08/20 17:59:54 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\1036\Music.lnk
[2015/08/19 16:40:18 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\1037\Aplikasi.lnk
[2015/08/21 13:35:49 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\1037\Microsoft.lnk
[2015/08/20 17:59:54 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\1037\Music.lnk
[2015/08/19 16:40:18 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\1038\Aplikasi.lnk
[2015/08/21 13:35:49 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\1038\Microsoft.lnk
[2015/08/20 17:59:55 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\1038\Music.lnk
[2015/08/19 16:40:19 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\1040\Aplikasi.lnk
[2015/08/21 13:35:50 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\1040\Microsoft.lnk
[2015/08/20 17:59:55 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\1040\Music.lnk
[2015/08/19 16:40:19 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\1041\Aplikasi.lnk
[2015/08/21 13:35:51 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\1041\Microsoft.lnk
[2015/08/20 17:59:56 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\1041\Music.lnk
[1 D:\40090c06e1a6b98568\1041\*.tmp files -> D:\40090c06e1a6b98568\1041\*.tmp -> ]
[2015/08/19 16:40:20 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\1042\Aplikasi.lnk
[2015/08/21 13:35:51 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\1042\Microsoft.lnk
[2015/08/20 17:59:56 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\1042\Music.lnk
[2015/08/19 16:40:20 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\1043\Aplikasi.lnk
[2015/08/21 13:35:52 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\1043\Microsoft.lnk
[2015/08/20 17:59:57 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\1043\Music.lnk
[2015/08/19 16:40:21 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\1044\Aplikasi.lnk
[2015/08/21 13:35:52 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\1044\Microsoft.lnk
[2015/08/20 17:59:57 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\1044\Music.lnk
[2015/08/19 16:40:22 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\1045\Aplikasi.lnk
[2015/08/21 13:35:53 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\1045\Microsoft.lnk
[2015/08/20 17:59:58 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\1045\Music.lnk
[2015/08/19 16:40:22 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\1046\Aplikasi.lnk
[2015/08/21 13:35:54 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\1046\Microsoft.lnk
[2015/08/20 17:59:58 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\1046\Music.lnk
[2015/08/19 16:40:23 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\1049\Aplikasi.lnk
[2015/08/21 13:35:54 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\1049\Microsoft.lnk
[2015/08/20 17:59:59 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\1049\Music.lnk
[2015/08/19 16:40:23 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\1053\Aplikasi.lnk
[2015/08/21 13:35:55 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\1053\Microsoft.lnk
[2015/08/20 17:59:59 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\1053\Music.lnk
[2015/08/19 16:40:24 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\1055\Aplikasi.lnk
[2015/08/21 13:35:55 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\1055\Microsoft.lnk
[2015/08/20 18:00:00 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\1055\Music.lnk
[2015/08/19 16:40:24 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\2052\Aplikasi.lnk
[2015/08/21 13:35:56 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\2052\Microsoft.lnk
[2015/08/20 18:00:00 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\2052\Music.lnk
[2015/08/19 16:40:25 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\2070\Aplikasi.lnk
[2015/08/21 13:35:56 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\2070\Microsoft.lnk
[2015/08/20 18:00:01 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\2070\Music.lnk
[2015/08/19 16:40:25 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\3082\Aplikasi.lnk
[2015/08/21 13:35:57 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\3082\Microsoft.lnk
[2015/08/20 18:00:01 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\3082\Music.lnk
[2015/08/19 16:40:26 | 000,000,680 | ---- | M] () -- D:\40090c06e1a6b98568\Graphics\Aplikasi.lnk
[2015/08/21 13:35:57 | 000,000,682 | ---- | M] () -- D:\40090c06e1a6b98568\Graphics\Microsoft.lnk
[2015/08/20 18:00:02 | 000,000,674 | ---- | M] () -- D:\40090c06e1a6b98568\Graphics\Music.lnk
[2015/08/19 16:40:27 | 000,000,680 | ---- | M] () -- D:\AT BTS\Aplikasi.lnk
[2015/08/21 13:35:58 | 000,000,682 | ---- | M] () -- D:\AT BTS\Microsoft.lnk
[2015/08/20 18:00:02 | 000,000,674 | ---- | M] () -- D:\AT BTS\Music.lnk
[2015/08/21 13:35:59 | 000,000,682 | ---- | M] () -- D:\ce2be657f2ead65e7ee5896dcfb0ce\Microsoft.lnk
[2015/08/19 16:40:28 | 000,000,680 | ---- | M] () -- D:\chris deux\Aplikasi.lnk
[2015/08/21 13:36:00 | 000,000,682 | ---- | M] () -- D:\chris deux\Microsoft.lnk
[2015/08/20 18:00:03 | 000,000,674 | ---- | M] () -- D:\chris deux\Music.lnk
[2015/08/19 16:40:28 | 000,000,680 | ---- | M] () -- D:\chris trois\Aplikasi.lnk
[2015/08/21 13:36:01 | 000,000,682 | ---- | M] () -- D:\chris trois\Microsoft.lnk
[2015/08/20 18:00:04 | 000,000,674 | ---- | M] () -- D:\chris trois\Music.lnk
[2015/08/21 13:35:59 | 000,000,682 | ---- | M] () -- D:\chris\Microsoft.lnk
[2015/08/20 18:00:03 | 000,000,674 | ---- | M] () -- D:\chris\Music.lnk
[2015/08/19 16:40:29 | 000,000,680 | ---- | M] () -- D:\christ qatre\Aplikasi.lnk
[2015/08/21 13:36:01 | 000,000,682 | ---- | M] () -- D:\christ qatre\Microsoft.lnk
[2015/08/20 18:00:04 | 000,000,674 | ---- | M] () -- D:\christ qatre\Music.lnk
[2015/08/19 16:40:30 | 000,000,680 | ---- | M] () -- D:\downloads\Aplikasi.lnk
[2015/08/21 13:36:03 | 000,000,672 | ---- | M] () -- D:\downloads\apps.lnk
[2015/08/21 13:36:02 | 000,000,682 | ---- | M] () -- D:\downloads\Microsoft.lnk
[2015/08/20 18:00:05 | 000,000,674 | ---- | M] () -- D:\downloads\Music.lnk
[2015/08/19 16:40:30 | 000,000,680 | ---- | M] () -- D:\downloads\apps\Aplikasi.lnk
[2015/08/21 13:36:03 | 000,000,682 | ---- | M] () -- D:\downloads\apps\Microsoft.lnk
[2015/08/20 18:00:05 | 000,000,674 | ---- | M] () -- D:\downloads\apps\Music.lnk
[2015/08/21 13:36:04 | 000,000,672 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1025.lnk
[2015/08/21 13:36:04 | 000,000,672 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1028.lnk
[2015/08/21 13:36:04 | 000,000,672 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1029.lnk
[2015/08/21 13:36:04 | 000,000,672 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1030.lnk
[2015/08/21 13:36:04 | 000,000,672 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1031.lnk
[2015/08/19 16:40:31 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\Aplikasi.lnk
[2015/08/21 13:36:03 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\Microsoft.lnk
[2015/08/20 18:00:06 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\Music.lnk
[2015/08/19 16:40:32 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1025\Aplikasi.lnk
[2015/08/21 13:36:04 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1025\Microsoft.lnk
[2015/08/20 18:00:07 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1025\Music.lnk
[2015/08/19 16:40:32 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1028\Aplikasi.lnk
[2015/08/21 13:36:05 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1028\Microsoft.lnk
[2015/08/20 18:00:07 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1028\Music.lnk
[2015/08/19 16:40:33 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1029\Aplikasi.lnk
[2015/08/21 13:36:06 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1029\Microsoft.lnk
[2015/08/20 18:00:08 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1029\Music.lnk
[2015/08/19 16:40:33 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1030\Aplikasi.lnk
[2015/08/21 13:36:06 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1030\Microsoft.lnk
[2015/08/20 18:00:08 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1030\Music.lnk
[2015/08/19 16:40:34 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1031\Aplikasi.lnk
[2015/08/21 13:36:07 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1031\Microsoft.lnk
[2015/08/20 18:00:09 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1031\Music.lnk
[1 D:\f229e45e3c7ac264ba2b3d\1031\*.tmp files -> D:\f229e45e3c7ac264ba2b3d\1031\*.tmp -> ]
[2015/08/19 16:40:34 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1032\Aplikasi.lnk
[2015/08/21 13:36:07 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1032\Microsoft.lnk
[2015/08/20 18:00:09 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1032\Music.lnk
[1 D:\f229e45e3c7ac264ba2b3d\1032\*.tmp files -> D:\f229e45e3c7ac264ba2b3d\1032\*.tmp -> ]
[2015/08/19 16:40:35 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1033\Aplikasi.lnk
[2015/08/21 13:36:08 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1033\Microsoft.lnk
[2015/08/20 18:00:10 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1033\Music.lnk
[2015/08/19 16:40:37 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1035\Aplikasi.lnk
[2015/08/21 13:36:08 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1035\Microsoft.lnk
[2015/08/20 18:00:10 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1035\Music.lnk
[2015/08/19 16:40:38 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1036\Aplikasi.lnk
[2015/08/21 13:36:09 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1036\Microsoft.lnk
[2015/08/20 18:00:11 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1036\Music.lnk
[2015/08/19 16:40:38 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1037\Aplikasi.lnk
[2015/08/21 13:36:10 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1037\Microsoft.lnk
[2015/08/20 18:00:11 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1037\Music.lnk
[2015/08/19 16:40:39 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1038\Aplikasi.lnk
[2015/08/21 13:36:11 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1038\Microsoft.lnk
[2015/08/20 18:00:12 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1038\Music.lnk
[2015/08/19 16:40:40 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1040\Aplikasi.lnk
[2015/08/21 13:36:11 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1040\Microsoft.lnk
[2015/08/20 18:00:12 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1040\Music.lnk
[2015/08/19 16:40:40 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1041\Aplikasi.lnk
[2015/08/21 13:36:12 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1041\Microsoft.lnk
[2015/08/20 18:00:13 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1041\Music.lnk
[2015/08/19 16:40:41 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1042\Aplikasi.lnk
[2015/08/21 13:36:12 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1042\Microsoft.lnk
[2015/08/20 18:00:13 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1042\Music.lnk
[2015/08/19 16:40:41 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1043\Aplikasi.lnk
[2015/08/21 13:36:13 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1043\Microsoft.lnk
[2015/08/20 18:00:14 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1043\Music.lnk
[2015/08/19 16:40:42 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1044\Aplikasi.lnk
[2015/08/21 13:36:14 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1044\Microsoft.lnk
[2015/08/20 18:00:14 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1044\Music.lnk
[2015/08/19 16:40:42 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1045\Aplikasi.lnk
[2015/08/21 13:36:14 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1045\Microsoft.lnk
[2015/08/20 18:00:15 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1045\Music.lnk
[2015/08/19 16:40:43 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1046\Aplikasi.lnk
[2015/08/21 13:36:15 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1046\Microsoft.lnk
[2015/08/20 18:00:16 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1046\Music.lnk
[2015/08/19 16:40:43 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1049\Aplikasi.lnk
[2015/08/21 13:36:15 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1049\Microsoft.lnk
[2015/08/20 18:00:16 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1049\Music.lnk
[1 D:\f229e45e3c7ac264ba2b3d\1049\*.tmp files -> D:\f229e45e3c7ac264ba2b3d\1049\*.tmp -> ]
[2015/08/19 16:40:44 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1053\Aplikasi.lnk
[2015/08/21 13:36:16 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1053\Microsoft.lnk
[2015/08/20 18:00:17 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1053\Music.lnk
[2015/08/19 16:40:45 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1055\Aplikasi.lnk
[2015/08/21 13:36:16 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1055\Microsoft.lnk
[2015/08/20 18:00:17 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\1055\Music.lnk
[2015/08/19 16:40:45 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\2052\Aplikasi.lnk
[2015/08/21 13:36:17 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\2052\Microsoft.lnk
[2015/08/20 18:00:18 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\2052\Music.lnk
[2015/08/19 16:40:46 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\2070\Aplikasi.lnk
[2015/08/21 13:36:17 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\2070\Microsoft.lnk
[2015/08/20 18:00:18 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\2070\Music.lnk
[2015/08/19 16:40:46 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\3082\Aplikasi.lnk
[2015/08/21 13:36:18 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\3082\Microsoft.lnk
[2015/08/20 18:00:19 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\3082\Music.lnk
[2015/08/19 16:40:47 | 000,000,680 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\Graphics\Aplikasi.lnk
[2015/08/21 13:36:19 | 000,000,682 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\Graphics\Microsoft.lnk
[2015/08/20 18:00:19 | 000,000,674 | ---- | M] () -- D:\f229e45e3c7ac264ba2b3d\Graphics\Music.lnk
[2015/08/19 16:40:47 | 000,000,680 | ---- | M] () -- D:\film\Aplikasi.lnk
[2015/08/21 13:36:19 | 000,000,682 | ---- | M] () -- D:\film\Microsoft.lnk
[2015/08/20 18:00:20 | 000,000,674 | ---- | M] () -- D:\film\Music.lnk
[2015/08/19 16:40:48 | 000,000,680 | ---- | M] () -- D:\Freemake\Aplikasi.lnk
[2015/08/21 13:36:20 | 000,000,708 | ---- | M] () -- D:\Freemake\FreemakeVideoConverter.lnk
[2015/08/21 13:36:20 | 000,000,682 | ---- | M] () -- D:\Freemake\Microsoft.lnk
[2015/08/20 18:00:20 | 000,000,674 | ---- | M] () -- D:\Freemake\Music.lnk
[1 D:\Freemake\*.tmp files -> D:\Freemake\*.tmp -> ]
[2015/08/19 16:40:49 | 000,000,680 | ---- | M] () -- D:\Freemake\FreemakeVideoConverter\Aplikasi.lnk
[2015/08/21 13:36:20 | 000,000,682 | ---- | M] () -- D:\Freemake\FreemakeVideoConverter\Microsoft.lnk
[2015/08/20 18:00:21 | 000,000,674 | ---- | M] () -- D:\Freemake\FreemakeVideoConverter\Music.lnk
[2015/08/21 13:36:21 | 000,000,680 | ---- | M] () -- D:\Freemake\FreemakeVideoConverter\Profiles.lnk
[2015/08/21 13:36:21 | 000,000,680 | ---- | M] () -- D:\Freemake\FreemakeVideoConverter\Projects.lnk
[2015/08/19 16:40:49 | 000,000,680 | ---- | M] () -- D:\Identité Judiciaire\Aplikasi.lnk
[2015/08/21 13:36:21 | 000,000,668 | ---- | M] () -- D:\Identité Judiciaire\IJ.lnk
[2015/08/21 13:36:21 | 000,000,682 | ---- | M] () -- D:\Identité Judiciaire\Microsoft.lnk
[2015/08/20 18:00:21 | 000,000,674 | ---- | M] () -- D:\Identité Judiciaire\Music.lnk
[2015/08/21 13:36:22 | 000,000,692 | ---- | M] () -- D:\Identité Judiciaire\scène de crime.lnk
[2015/08/19 16:40:50 | 000,000,680 | ---- | M] () -- D:\Identité Judiciaire\IJ\Aplikasi.lnk
[2015/08/21 13:36:22 | 000,000,682 | ---- | M] () -- D:\Identité Judiciaire\IJ\Microsoft.lnk
[2015/08/20 18:00:22 | 000,000,674 | ---- | M] () -- D:\Identité Judiciaire\IJ\Music.lnk
[2015/08/19 16:40:51 | 000,000,680 | ---- | M] () -- D:\Identité Judiciaire\scène de crime\Aplikasi.lnk
[2015/08/21 13:36:22 | 000,000,682 | ---- | M] () -- D:\Identité Judiciaire\scène de crime\Microsoft.lnk
[2015/08/20 18:00:22 | 000,000,674 | ---- | M] () -- D:\Identité Judiciaire\scène de crime\Music.lnk
[2015/08/19 16:40:51 | 000,000,680 | ---- | M] () -- D:\Images\Aplikasi.lnk
[2015/08/21 13:36:23 | 000,000,682 | ---- | M] () -- D:\Images\Microsoft.lnk
[2015/08/20 18:00:23 | 000,000,674 | ---- | M] () -- D:\Images\Music.lnk
[2015/08/21 13:36:23 | 000,000,682 | ---- | M] () -- D:\Images\My photos.lnk
[2015/08/19 16:40:52 | 000,000,680 | ---- | M] () -- D:\Images\My photos\Aplikasi.lnk
[2013/04/18 11:45:24 | 000,000,778 | ---- | M] () -- D:\Images\My photos\D'AMOUR - Raccourci.lnk
[2013/04/18 11:45:24 | 000,000,821 | ---- | M] () -- D:\Images\My photos\Daddy_Yankee - Raccourci.lnk
[2013/04/18 11:45:24 | 000,000,803 | ---- | M] () -- D:\Images\My photos\descriptor - Raccourci.lnk
[2013/04/18 11:45:24 | 000,000,796 | ---- | M] () -- D:\Images\My photos\GASPI_001 - Raccourci.lnk
[2013/04/18 11:45:24 | 000,000,927 | ---- | M] () -- D:\Images\My photos\Ghetto K fry - Raccourci.lnk
[2013/04/18 11:45:24 | 000,000,948 | ---- | M] () -- D:\Images\My photos\Ghetto-k-002 - Raccourci.lnk
[2013/04/18 11:45:28 | 000,000,773 | ---- | M] () -- D:\Images\My photos\I love - Raccourci.lnk
[2013/04/18 11:45:28 | 000,000,779 | ---- | M] () -- D:\Images\My photos\Jamais - Raccourci.lnk
[2013/04/18 11:45:28 | 000,000,821 | ---- | M] () -- D:\Images\My photos\JayZ_preview - Raccourci.lnk
[2013/04/18 11:45:28 | 000,000,974 | ---- | M] () -- D:\Images\My photos\JE TAIME BB DE LA PART DE ta reine - Raccourci.lnk
[2013/04/18 11:45:28 | 000,000,789 | ---- | M] () -- D:\Images\My photos\je_taime - Raccourci.lnk
[2013/04/18 11:45:28 | 000,000,810 | ---- | M] () -- D:\Images\My photos\jtm mn ange - Raccourci.lnk
[2013/04/18 11:45:28 | 000,001,413 | ---- | M] () -- D:\Images\My photos\Justin Bieber jtm jtm jtm j - Raccourci.lnk
[2013/04/18 11:45:30 | 000,000,919 | ---- | M] () -- D:\Images\My photos\Justin_Bieber_performing_f - Raccourci.lnk
[2013/04/18 11:45:30 | 000,000,810 | ---- | M] () -- D:\Images\My photos\Keri Hilson - Raccourci.lnk
[2013/04/18 11:45:30 | 000,001,229 | ---- | M] () -- D:\Images\My photos\KERI HILSON1wb1[1] - Raccourci.lnk
[2015/08/21 13:36:24 | 000,000,682 | ---- | M] () -- D:\Images\My photos\Microsoft.lnk
[2015/08/20 18:00:23 | 000,000,674 | ---- | M] () -- D:\Images\My photos\Music.lnk
[2013/04/18 11:45:46 | 000,000,778 | ---- | M] () -- D:\Images\My photos\RIHANNA - Raccourci.lnk
[2013/04/18 11:45:48 | 000,000,821 | ---- | M] () -- D:\Images\My photos\rihanna1 (1) - Raccourci.lnk
[2013/04/18 11:45:50 | 000,000,891 | ---- | M] () -- D:\Images\My photos\rihannaø - Raccourci.lnk
[2013/04/18 11:45:52 | 000,000,782 | ---- | M] () -- D:\Images\My photos\Riyanna - Raccourci.lnk
[2013/04/18 11:45:52 | 000,000,835 | ---- | M] () -- D:\Images\My photos\Rokia et chine - Raccourci.lnk
[2013/04/18 11:45:56 | 000,000,810 | ---- | M] () -- D:\Images\My photos\Tana ciarra - Raccourci.lnk
[2013/04/18 11:45:58 | 000,000,779 | ---- | M] () -- D:\Images\My photos\Tim-fa - Raccourci.lnk
[2013/04/18 11:45:58 | 000,000,766 | ---- | M] () -- D:\Images\My photos\Wassa - Raccourci.lnk
[2015/08/21 13:36:24 | 000,000,682 | ---- | M] () -- D:\Nouveau dossier\Microsoft.lnk
[2015/08/20 18:00:24 | 000,000,674 | ---- | M] () -- D:\Nouveau dossier\Music.lnk
[2015/08/19 16:40:54 | 000,000,680 | ---- | M] () -- D:\videos\Aplikasi.lnk
[2015/08/21 13:36:25 | 000,000,682 | ---- | M] () -- D:\videos\Microsoft.lnk
[2015/08/20 18:00:25 | 000,000,674 | ---- | M] () -- D:\videos\Music.lnk
[2015/08/21 13:36:26 | 000,000,690 | ---- | M] () -- D:\videos\Sample Videos.lnk
[2015/08/19 16:40:54 | 000,000,680 | ---- | M] () -- D:\videos\Sample Videos\Aplikasi.lnk
[2015/08/21 13:36:26 | 000,000,682 | ---- | M] () -- D:\videos\Sample Videos\Microsoft.lnk
[2015/08/20 18:00:26 | 000,000,674 | ---- | M] () -- D:\videos\Sample Videos\Music.lnk

[color=#A23BEC]< C:\autorun.inf /s >[/color]
[2015/08/11 11:29:06 | 000,000,246 | ---- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_$RECYCLE.BIN\autorun.inf
[2015/08/12 15:03:22 | 000,000,246 | ---- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_$RECYCLE.BIN\S-1-5-18\autorun.inf
[2015/08/20 12:23:07 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_$Windows.~BT\autorun.inf
[2015/08/20 12:23:07 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_$Windows.~BT\Sources\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_\found.000\autorun.inf
[1 C:\_OTM\MovedFiles\08212015_152911\C_\found.000\*.tmp files -> C:\_OTM\MovedFiles\08212015_152911\C_\found.000\*.tmp -> ]
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_\found.001\autorun.inf
[1 C:\_OTM\MovedFiles\08212015_152911\C_\found.001\*.tmp files -> C:\_OTM\MovedFiles\08212015_152911\C_\found.001\*.tmp -> ]
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_\found.002\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_AsusVibeData\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_AsusVibeData\skin\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\cs-CZ\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\da-DK\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\de-DE\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\el-GR\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\en-US\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\es-ES\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\fi-FI\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\Fonts\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\fr-FR\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\hu-HU\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\it-IT\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\ja-JP\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\ko-KR\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\nb-NO\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\nl-NL\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\pl-PL\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\pt-BR\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\pt-PT\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\ru-RU\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\sv-SE\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\tr-TR\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\zh-CN\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\zh-HK\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Boot\zh-TW\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Config.Msi\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_found.001\dir0000.chk\autorun.inf
[2015/08/18 17:55:08 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_FRST\autorun.inf
[2015/08/18 17:55:08 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_FRST\Hives\autorun.inf
[2015/08/18 17:55:08 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_FRST\Logs\autorun.inf
[2015/08/18 17:55:08 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_FRST\Quarantine\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Intel\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Intel\Logs\autorun.inf
[2015/08/18 01:17:48 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Microsoft\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_MSOCache\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_MSOCache\All Users\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_PerfLogs\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_PerfLogs\Admin\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Adobe\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Apple Software Update\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Asus\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Atheros\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\AVAST Software\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Boingo\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Bonjour\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\CCleaner\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Cisco\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Common Files\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Desktop Maestro\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\DIFX\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\DVD Maker\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\E-Cam\autorun.inf
[2015/08/11 11:29:53 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Elantech\autorun.inf
[2015/08/19 12:30:02 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\ESET\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Freemake\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Google\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\GRETECH\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\InstallShield Installation Information\autorun.inf
[2015/08/11 11:30:03 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Intel\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Internet Explorer\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\iPod\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\iTunes\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Microsoft Encarta\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Microsoft Games\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Microsoft Office\autorun.inf
[2015/08/17 16:00:54 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Microsoft Security Essentials\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Microsoft Silverlight\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Microsoft SQL Server Compact Edition\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Microsoft Visual Studio 8\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Microsoft Visual Studio\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Microsoft Works\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Microsoft.NET\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Microsoft\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Mozilla Firefox\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Mozilla Maintenance Service\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\MSBuild\autorun.inf
[2015/08/19 12:30:02 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\PPÖúÊÖ\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\QuickTime\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Ralink\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\REALTEK PCIE Wireless LAN Driver\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Realtek\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Reference Assemblies\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Skype\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\StarterBackgroundChanger\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Temp\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Times Reader\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Uninstall Information\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\VideoLAN\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Windows Defender\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Windows Live\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Windows Mail\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Windows Media Player\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Windows NT\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Windows Photo Viewer\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Windows Portable Devices\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\Windows Sidebar\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Program Files\WinRAR\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521}\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\Adobe\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\Apple Computer\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\Apple\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\Atheros\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\AVAST Software\autorun.inf
[2015/08/16 02:17:09 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\DatacardService\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\Freemake\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\GoBoingo\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\Internet 3G+\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\McAfee\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\Microsoft Help\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\Microsoft\autorun.inf
[2015/08/13 10:27:13 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\Microsoft\Windows\Start Menu\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\Microsoft\Windows\Templates\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\Mozilla\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\OberonGameConsole\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\Ralink Driver\autorun.inf
[2015/08/18 01:57:21 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\RogueKiller\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\Skype\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\Temp\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\Trend Micro\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\userdata\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_ProgramData\VTech\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Recovery\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Recovery\2e537d9a-ffb9-11e1-b884-a0d691d28c86\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_system32\autorun.inf
[2015/08/13 10:27:13 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Users\autorun.inf
[2015/08/13 10:27:13 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Users\Default\autorun.inf
[2015/08/13 10:27:13 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Users\Doudou\Documents\autorun.inf
[2015/08/13 10:27:13 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Users\Doudou\Documents\Asus WebStorage\autorun.inf
[2015/08/13 10:27:13 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Users\Doudou\Documents\Bluetooth Exchange Folder\autorun.inf
[2015/08/16 02:19:23 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Users\Doudou\Documents\E-Cam\autorun.inf
[2015/08/13 10:27:13 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Users\Doudou\Documents\Fax\autorun.inf
[2015/08/20 12:23:07 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Users\Doudou\Documents\ihelper\autorun.inf
[2015/08/13 10:27:13 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Users\Doudou\Documents\Mes fichiers reçus\autorun.inf
[2015/08/13 10:34:27 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Users\Doudou\Documents\My photos\autorun.inf
[2015/08/13 10:34:27 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Users\Doudou\Documents\Scanned Documents\autorun.inf
[2015/08/13 10:27:13 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Users\Doudou\Music\autorun.inf
[2015/08/13 10:27:13 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Users\Doudou\Pictures\autorun.inf
[2015/08/13 10:34:27 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Users\Doudou\Videos\autorun.inf
[2015/08/13 10:27:13 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Users\Public\autorun.inf
[2015/08/13 10:27:13 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Users\Public\Desktop\autorun.inf
[2015/08/13 10:27:13 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Users\Public\Documents\autorun.inf
[2015/08/13 10:27:13 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Users\Public\Favorites\autorun.inf
[1 C:\_OTM\MovedFiles\08212015_152911\C_Users\Public\Favorites\*.tmp files -> C:\_OTM\MovedFiles\08212015_152911\C_Users\Public\Favorites\*.tmp -> ]
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\addins\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\AppCompat\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\AppPatch\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\assembly\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\Branding\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\ConfigSetRoot\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\Cursors\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\de\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\debug\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\DigitalLocker\autorun.inf
[2015/08/13 16:56:43 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\Downloaded Program Files\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\en\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\Fonts\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\fr\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\fr-FR\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\Globalization\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\Help\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\IME\autorun.inf
[2015/08/13 10:27:13 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\inf\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\Installer\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\it\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\L2Schemas\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\LiveKernelReports\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\Logs\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\Media\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\Microsoft.NET\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\Migration\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\ModemLogs\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\nl\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\Offline Web Pages\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\panther\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\PCHEALTH\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\Performance\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\PLA\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\PolicyDefinitions\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\Prefetch\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\pss\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\registration.tmp\autorun.inf
[2015/08/13 10:27:13 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\registration\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\Resources\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\SchCache\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\schemas\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\security\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\ServiceProfiles\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\Setup\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\SHELLNEW\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\SoftwareDistribution\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\Speech\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\system\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\System32\autorun.inf
[101 C:\_OTM\MovedFiles\08212015_152911\C_Windows\System32\*.tmp files -> C:\_OTM\MovedFiles\08212015_152911\C_Windows\System32\*.tmp -> ]
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\TAPI\autorun.inf
[2015/08/13 10:27:13 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\Tasks\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\tracing\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\twain_32\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\Vss\autorun.inf
[2015/08/11 14:53:24 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08212015_152911\C_Windows\Web\autorun.inf
[2015/08/21 12:55:28 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08252015_114710\C_Microsoft\Microsoft\autorun.inf
[2015/08/21 11:15:39 | 000,000,246 | RHS- | M] () -- C:\_OTM\MovedFiles\08252015_114710\D_ce2be657f2ead65e7ee5896dcfb0ce\autorun.inf
[2015/08/11 11:29:06 | 000,000,246 | RHS- | M] () -- C:\Users\Doudou\AppData\Roaming\ZHP\Quarantine\Assets Manager.DIR\autorun.inf
[1 C:\Users\Doudou\AppData\Roaming\ZHP\Quarantine\Assets Manager.DIR\*.tmp files -> C:\Users\Doudou\AppData\Roaming\ZHP\Quarantine\Assets Manager.DIR\*.tmp -> ]
[2015/08/14 09:35:32 | 000,000,246 | RHS- | M] () -- C:\Users\Doudou\AppData\Roaming\ZHP\Quarantine\smdmf.DIR\autorun.inf
[2009/06/10 21:43:11 | 000,000,116 | ---- | M] () -- C:\Windows\winsxs\x86_microsoft-windows-s..ccessagent-binaries_31bf3856ad364e35_6.1.7600.16385_none_de06b4fbd5b45f78\autorun.inf

[color=#A23BEC]< D:\autorun.inf /s >[/color]
Invalid Environment Variable: ALLUSERSPROFILE\

[color=#A23BEC]< %ALLUSERSPROFILE%\Application Data\*.exe /s >[/color]

[color=#A23BEC]< %APPDATA%\*. >[/color]
[2014/08/14 12:26:37 | 000,000,000 | ---D | M] -- C:\Users\Doudou\AppData\Roaming\Adobe
[2015/07/29 13:53:29 | 000,000,000 | ---D | M] -- C:\Users\Doudou\AppData\Roaming\Apple Computer
[2011/04/02 03:05:40 | 000,000,000 | ---D | M] -- C:\Users\Doudou\AppData\Roaming\ASUS WebStorage
[2015/07/29 13:54:11 | 000,000,000 | ---D | M] -- C:\Users\Doudou\AppData\Roaming\Desktop Maestro
[2014/01/23 14:52:37 | 000,000,000 | ---D | M] -- C:\Users\Doudou\AppData\Roaming\dvdcss
[2015/08/16 02:13:48 | 000,000,000 | ---D | M] -- C:\Users\Doudou\AppData\Roaming\E-Cam
[2009/07/14 04:54:12 | 000,000,000 | ---D | M] -- C:\Users\Doudou\AppData\Roaming\Identities
[2015/08/25 15:27:11 | 000,000,000 | ---D | M] -- C:\Users\Doudou\AppData\Roaming\ihelper
[2011/04/02 02:41:24 | 000,000,000 | ---D | M] -- C:\Users\Doudou\AppData\Roaming\InstallShield
[2011/04/02 02:52:54 | 000,000,000 | ---D | M] -- C:\Users\Doudou\AppData\Roaming\Macromedia
[2015/08/24 14:52:40 | 000,000,000 | --SD | M] -- C:\Users\Doudou\AppData\Roaming\Microsoft
[2013/01/09 18:43:36 | 000,000,000 | ---D | M] -- C:\Users\Doudou\AppData\Roaming\Mozilla
[2015/08/24 14:54:26 | 000,000,000 | ---D | M] -- C:\Users\Doudou\AppData\Roaming\MP-Manager
[2015/08/24 14:49:29 | 000,000,000 | ---D | M] -- C:\Users\Doudou\AppData\Roaming\MPMAN
[2013/01/25 22:26:10 | 000,000,000 | ---D | M] -- C:\Users\Doudou\AppData\Roaming\RGE
[2014/08/13 16:14:24 | 000,000,000 | ---D | M] -- C:\Users\Doudou\AppData\Roaming\Skype
[2013/03/27 21:55:50 | 000,000,000 | ---D | M] -- C:\Users\Doudou\AppData\Roaming\skypePM
[2015/08/23 18:54:41 | 000,000,000 | ---D | M] -- C:\Users\Doudou\AppData\Roaming\vlc
[2013/04/17 22:11:22 | 000,000,000 | ---D | M] -- C:\Users\Doudou\AppData\Roaming\Windows Live Writer
[2015/08/24 14:58:29 | 000,000,000 | ---D | M] -- C:\Users\Doudou\AppData\Roaming\WindSolutions
[2013/09/04 21:05:30 | 000,000,000 | ---D | M] -- C:\Users\Doudou\AppData\Roaming\WinRAR
[2015/08/22 12:43:09 | 000,000,000 | ---D | M] -- C:\Users\Doudou\AppData\Roaming\ZHP

[color=#A23BEC]< %APPDATA%\*.exe /s >[/color]
[2015/08/24 15:51:49 | 000,037,345 | R--- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Installer\{8AD3EE0C-C69F-47B0-86EA-8026E7DAE558}\controlPanelIcon.exe
[2015/08/24 15:51:49 | 000,010,134 | R--- | M] () -- C:\Users\Doudou\AppData\Roaming\Microsoft\Installer\{8AD3EE0C-C69F-47B0-86EA-8026E7DAE558}\SystemFolder_msiexec.exe
[2014/12/18 11:28:30 | 006,761,998 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\encoder.exe
[2014/12/18 11:28:28 | 014,350,336 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\mencoder.exe
[2014/12/18 11:32:18 | 000,556,128 | ---- | M] (MPMAN) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\MP Manager.exe
[2009/07/25 04:23:06 | 000,033,056 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\java-rmi.exe
[2009/07/25 04:23:06 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\java.exe
[2009/07/25 04:23:06 | 000,059,168 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\javacpl.exe
[2009/07/25 04:23:08 | 000,145,184 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\javaw.exe
[2009/07/25 04:23:08 | 000,149,280 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\javaws.exe
[2009/07/25 04:23:08 | 000,079,648 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\jbroker.exe
[2009/07/25 04:23:10 | 000,022,816 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\jp2launcher.exe
[2009/07/25 04:23:10 | 000,153,376 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\jqs.exe
[2009/07/25 04:23:10 | 000,055,072 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\jqsnotify.exe
[2009/07/25 04:23:22 | 000,386,872 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\jucheck.exe
[2009/07/25 04:23:12 | 000,055,072 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\jureg.exe
[2009/07/25 04:23:12 | 000,149,280 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\jusched.exe
[2009/07/25 04:23:14 | 000,033,568 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\keytool.exe
[2009/07/25 04:23:14 | 000,033,568 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\kinit.exe
[2009/07/25 04:23:14 | 000,033,568 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\klist.exe
[2009/07/25 04:23:16 | 000,033,568 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\ktab.exe
[2009/07/25 04:23:16 | 000,033,568 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\orbd.exe
[2009/07/25 04:23:16 | 000,033,568 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\pack200.exe
[2009/07/25 04:23:18 | 000,033,568 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\policytool.exe
[2009/07/25 04:23:18 | 000,033,568 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\rmid.exe
[2009/07/25 04:23:18 | 000,033,568 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\rmiregistry.exe
[2009/07/25 04:23:20 | 000,033,568 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\servertool.exe
[2009/07/25 04:23:20 | 000,018,208 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\ssvagent.exe
[2009/07/25 04:23:20 | 000,033,568 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\tnameserv.exe
[2009/07/25 04:23:22 | 000,132,896 | ---- | M] (Sun Microsystems, Inc.) -- C:\Users\Doudou\AppData\Roaming\MPMAN\MP Manager\jre\bin\unpack200.exe
[2015/08/24 14:29:56 | 014,572,776 | ---- | M] (WindSolutions) -- C:\Users\Doudou\AppData\Roaming\WindSolutions\CopyTransControlCenter\Applications\CopyTransContacts.exe
[2015/08/24 14:19:26 | 005,668,032 | ---- | M] (WindSolutions) -- C:\Users\Doudou\AppData\Roaming\WindSolutions\CopyTransControlCenter\Applications\CopyTransControlCenter.exe
[2015/08/21 15:28:15 | 001,920,000 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\ZHP\ZHPCleaner.exe
[2015/08/18 18:17:30 | 001,902,592 | ---- | M] () -- C:\Users\Doudou\AppData\Roaming\ZHP\ZHPDiag3.exe
[2014/08/13 11:09:40 | 026,474,088 | ---- | M] (Skype Technologies S.A.) -- C:\Users\Doudou\AppData\Roaming\ZHP\Quarantine\OpenCandy.DIR\8C593FB981384ECE8F0DC9904FA5F5D7\SkypeSetupFullUpgrade-6.18.0.106.exe

[color=#A23BEC]< %temp%\.exe /s >[/color]

[color=#A23BEC]< %SYSTEMDRIVE%\*.exe >[/color]

[color=#A23BEC]< %systemroot%\*. /mp /s >[/color]

[color=#A23BEC]< %systemroot%\system32\*.dll /lockedfiles >[/color]

[color=#A23BEC]< %systemroot%\Tasks\*.job /lockedfiles >[/color]

[color=#A23BEC]< %systemroot%\system32\drivers\*.sys /lockedfiles >[/color]

[color=#A23BEC]< %systemroot%\System32\config\*.sav >[/color]

[color=#A23BEC]< MD5 for: AGP440.SYS >[/color]
[2009/07/14 01:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\System32\drivers\AGP440.sys
[2009/07/14 01:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\System32\DriverStore\FileRepository\machine.inf_x86_neutral_a97a2a0d0fbc6696\AGP440.sys
[2009/07/14 01:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_b9e9435f20046eeb\AGP440.sys
[2009/07/14 01:26:15 | 000,053,312 | ---- | M] (Microsoft Corporation) MD5=507812C3054C21CEF746B6EE3D04DD6E -- C:\Windows\winsxs\x86_machine.inf_31bf3856ad364e35_6.1.7601.17514_none_bc1a57271cf2f285\AGP440.sys

[color=#A23BEC]< MD5 for: ATAPI.SYS >[/color]
[2009/07/14 01:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\drivers\atapi.sys
[2009/07/14 01:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_a5025d31bee4647c\atapi.sys
[2009/07/14 01:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\System32\DriverStore\FileRepository\mshdc.inf_x86_neutral_fab873f3e8a3315c\atapi.sys
[2009/07/14 01:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_dd0e7e3d82dd640d\atapi.sys
[2009/07/14 01:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7601.17514_none_df3f92057fcbe7a7\atapi.sys
[2009/07/14 01:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7601.18231_none_df26d4d57fdef5b0\atapi.sys
[2009/07/14 01:26:15 | 000,021,584 | ---- | M] (Microsoft Corporation) MD5=338C86357871C167A96AB976519BF59E -- C:\Windows\winsxs\x86_mshdc.inf_31bf3856ad364e35_6.1.7601.22414_none_dfc9143c98e9a6c4\atapi.sys

[color=#A23BEC]< MD5 for: CNGAUDIT.DLL >[/color]
[2009/07/14 01:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\System32\cngaudit.dll
[2009/07/14 01:15:06 | 000,012,288 | ---- | M] (Microsoft Corporation) MD5=50BA656134F78AF64E4DD3C8B6FEFD7E -- C:\Windows\winsxs\x86_microsoft-windows-cngaudit-dll_31bf3856ad364e35_6.1.7600.16385_none_e83a414890e8132b\cngaudit.dll

[color=#A23BEC]< MD5 for: EXPLORER.EXE >[/color]
[2011/02/26 05:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_54149f9ef14031fc\explorer.exe
[2009/07/14 01:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_518afd35db100430\explorer.exe
[2011/02/26 05:51:13 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=255CF508D7CFB10E0794D6AC93280BD8 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_525b5180f3f95373\explorer.exe
[2011/02/26 05:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_51a3a583dafd0cef\explorer.exe
[2010/11/20 12:17:10 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_53bc10fdd7fe87ca\explorer.exe
[2011/02/25 05:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\explorer.exe
[2011/02/25 05:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_5389023fd8245f84\explorer.exe

[color=#A23BEC]< MD5 for: IASTOR.SYS >[/color]
[2010/06/08 17:23:34 | 000,435,736 | ---- | M] (Intel Corporation) MD5=D80AA0907748D7CC8EFAB3773F32629B -- C:\Windows\System32\drivers\iaStor.sys
[2010/06/08 17:23:34 | 000,435,736 | ---- | M] (Intel Corporation) MD5=D80AA0907748D7CC8EFAB3773F32629B -- C:\Windows\System32\DriverStore\FileRepository\iaahci.inf_x86_neutral_20f8d1b2e876a71d\iaStor.sys

[color=#A23BEC]< MD5 for: IASTORV.SYS >[/color]
[2011/03/11 05:38:51 | 000,332,160 | ---- | M] (Intel Corporation) MD5=5CD5F9A5444E6CDCB0AC89BD62D8B76E -- C:\Windows\System32\drivers\iaStorV.sys
[2011/03/11 05:38:51 | 000,332,160 | ---- | M] (Intel Corporation) MD5=5CD5F9A5444E6CDCB0AC89BD62D8B76E -- C:\Windows\System32\DriverStore\FileRepository\iastorv.inf_x86_neutral_0bcee2057afcc090\iaStorV.sys
[2011/03/11 05:38:51 | 000,332,160 | ---- | M] (Intel Corporation) MD5=5CD5F9A5444E6CDCB0AC89BD62D8B76E -- C:\Windows\winsxs\x86_iastorv.inf_31bf3856ad364e35_6.1.7601.17577_none_b0daddb9e6380745\iaStorV.sys
[2011/03/11 05:43:55 | 000,332,160 | ---- | M] (Intel Corporation) MD5=71F1A494FEDF4B33C02C4A6A28D6D9E9 -- C:\Windows\winsxs\x86_iastorv.inf_31bf3856ad364e35_6.1.7600.16778_none_aef580fde910b4b0\iaStorV.sys
[2011/03/11 05:28:00 | 000,332,160 | ---- | M] (Intel Corporation) MD5=778D0E6D7D9EBA0C403BADBAAD41DB20 -- C:\Windows\winsxs\x86_iastorv.inf_31bf3856ad364e35_6.1.7601.21680_none_b152a892ff64119f\iaStorV.sys
[2009/07/14 01:20:36 | 000,332,352 | ---- | M] (Intel Corporation) MD5=934AF4D7C5F457B9F0743F4299B77B67 -- C:\Windows\winsxs\x86_iastorv.inf_31bf3856ad364e35_6.1.7600.16385_none_aee7a89be91b9000\iaStorV.sys
[2010/11/20 12:29:56 | 000,332,160 | ---- | M] (Intel Corporation) MD5=A3CAE5D281DB4CFF7CFF8233507EE5AD -- C:\Windows\System32\DriverStore\FileRepository\iastorv.inf_x86_neutral_668286aa35d55928\iaStorV.sys
[2010/11/20 12:29:56 | 000,332,160 | ---- | M] (Intel Corporation) MD5=A3CAE5D281DB4CFF7CFF8233507EE5AD -- C:\Windows\winsxs\x86_iastorv.inf_31bf3856ad364e35_6.1.7601.17514_none_b118bc63e60a139a\iaStorV.sys
[2011/03/11 05:52:21 | 000,332,160 | ---- | M] (Intel Corporation) MD5=B9039A34C2F8769490DCC494E2402445 -- C:\Windows\winsxs\x86_iastorv.inf_31bf3856ad364e35_6.1.7600.20921_none_afae2d45020c148b\iaStorV.sys

[color=#A23BEC]< MD5 for: NETLOGON.DLL >[/color]
[2010/11/20 12:20:30 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\System32\netlogon.dll
[2010/11/20 12:20:30 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=C1809B9907ADEDAF16F50C894100883B -- C:\Windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7601.17514_none_ffbf212e963c0162\netlogon.dll
[2009/07/14 01:16:02 | 000,563,712 | ---- | M] (Microsoft Corporation) MD5=EAA75D9000B71F10EEC04D2AE6C60E81 -- C:\Windows\winsxs\x86_microsoft-windows-security-netlogon_31bf3856ad364e35_6.1.7600.16385_none_fd8e0d66994d7dc8\netlogon.dll

[color=#A23BEC]< MD5 for: NVSTOR.SYS >[/color]
[2011/03/11 05:39:00 | 000,143,744 | ---- | M] (NVIDIA Corporation) MD5=4380E59A170D88C4F1022EFF6719A8A4 -- C:\Windows\System32\drivers\nvstor.sys
[2011/03/11 05:39:00 | 000,143,744 | ---- | M] (NVIDIA Corporation) MD5=4380E59A170D88C4F1022EFF6719A8A4 -- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_x86_neutral_0276fc3b3ea60d41\nvstor.sys
[2011/03/11 05:39:00 | 000,143,744 | ---- | M] (NVIDIA Corporation) MD5=4380E59A170D88C4F1022EFF6719A8A4 -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7601.17577_none_3ba44e691d6eb11d\nvstor.sys
[2011/03/11 05:44:01 | 000,143,744 | ---- | M] (NVIDIA Corporation) MD5=4520B63899E867F354EE012D34E11536 -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7600.16778_none_39bef1ad20475e88\nvstor.sys
[2011/03/11 05:28:10 | 000,143,744 | ---- | M] (NVIDIA Corporation) MD5=66D468654A58594F5F3BA63D5AD5B1AF -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7601.21680_none_3c1c1942369abb77\nvstor.sys
[2011/03/11 05:52:25 | 000,143,744 | ---- | M] (NVIDIA Corporation) MD5=8A7583A3B58D3EEB28BB26626526BC91 -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7600.20921_none_3a779df43942be63\nvstor.sys
[2010/11/20 12:30:08 | 000,143,744 | ---- | M] (NVIDIA Corporation) MD5=9283C58EBAA2618F93482EB5DABCEC82 -- C:\Windows\System32\DriverStore\FileRepository\nvraid.inf_x86_neutral_dd659ed032d28a14\nvstor.sys
[2010/11/20 12:30:08 | 000,143,744 | ---- | M] (NVIDIA Corporation) MD5=9283C58EBAA2618F93482EB5DABCEC82 -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7601.17514_none_3be22d131d40bd72\nvstor.sys
[2009/07/14 01:20:44 | 000,142,416 | ---- | M] (NVIDIA Corporation) MD5=C99F251A5DE63C6F129CF71933ACED0F -- C:\Windows\winsxs\x86_nvraid.inf_31bf3856ad364e35_6.1.7600.16385_none_39b1194b205239d8\nvstor.sys

[color=#A23BEC]< MD5 for: SCECLI.DLL >[/color]
[2009/07/14 01:16:13 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=26073302DAEA83CC5B944C546D6B47D2 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7600.16385_none_37e4387f3a6f0483\scecli.dll
[2010/11/20 12:21:06 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\System32\scecli.dll
[2010/11/20 12:21:06 | 000,175,616 | ---- | M] (Microsoft Corporation) MD5=8124944EC89D6A1815E4E53F5B96AAF4 -- C:\Windows\winsxs\x86_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.1.7601.17514_none_3a154c47375d881d\scecli.dll

[color=#A23BEC]< MD5 for: SERVICES.EXE >[/color]
[2015/04/13 03:19:24 | 000,259,072 | ---- | M] (Microsoft Corporation) MD5=0780A42DBD7D9969F9BF4A19AA4285B5 -- C:\Windows\System32\services.exe
[2015/04/13 03:19:24 | 000,259,072 | ---- | M] (Microsoft Corporation) MD5=0780A42DBD7D9969F9BF4A19AA4285B5 -- C:\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7601.18829_none_d1614ac32b8ec5cf\services.exe
[2009/07/14 01:14:36 | 000,259,072 | ---- | M] (Microsoft Corporation) MD5=5F1B6A9C35D3D5CA72D6D6FDEF9747D6 -- C:\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_cf36168b2e9c967b\services.exe
[2015/04/11 03:53:55 | 000,259,072 | ---- | M] (Microsoft Corporation) MD5=97981140500E86E5BBAD7B76BA890146 -- C:\Windows\winsxs\x86_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7601.23033_none_d1d9ee0844ba1cc2\services.exe

[color=#A23BEC]< MD5 for: WININIT.EXE >[/color]
[2009/07/14 01:14:45 | 000,096,256 | ---- | M] (Microsoft Corporation) MD5=B5C5DCAD3899512020D135600129D665 -- C:\Windows\System32\wininit.exe
[2009/07/14 01:14:45 | 000,096,256 | ---- | M] (Microsoft Corporation) MD5=B5C5DCAD3899512020D135600129D665 -- C:\Windows\winsxs\x86_microsoft-windows-wininit_31bf3856ad364e35_6.1.7600.16385_none_30c90ef265a43c13\wininit.exe

[color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color]
[2015/06/18 08:39:28 | 000,893,752 | ---- | M] (MalwareBytes) MD5=0692C8163852AB5674E2EB3B36131EF3 -- C:\Program Files\Malwarebytes Anti-Malware\Chameleon\Windows\winlogon.exe
[2014/07/16 02:56:14 | 000,304,640 | ---- | M] (Microsoft Corporation) MD5=4F37B93C14AEE313BEC52A23AFB15C2E -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.22750_none_7224b2134c7555fa\winlogon.exe
[2014/07/17 01:39:27 | 000,304,128 | ---- | M] (Microsoft Corporation) MD5=52449FD429D6053B78AE564DEF303870 -- C:\Windows\System32\winlogon.exe
[2014/07/17 01:39:27 | 000,304,128 | ---- | M] (Microsoft Corporation) MD5=52449FD429D6053B78AE564DEF303870 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.18540_none_71a5e34e334f9d18\winlogon.exe
[2010/11/20 12:17:56 | 000,286,720 | ---- | M] (Microsoft Corporation) MD5=6D13E1406F50C66E2A95D97F22C47560 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.17514_none_71ca6b0233339500\winlogon.exe
[2009/07/14 01:14:45 | 000,285,696 | ---- | M] (Microsoft Corporation) MD5=8EC6A4AB12B8F3759E21F8E3A388F2CF -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_6f99573a36451166\winlogon.exe
[2014/03/04 09:17:02 | 000,304,128 | ---- | M] (Microsoft Corporation) MD5=998507B046BA314CE8245364C686FA67 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.18409_none_71da23b23327143c\winlogon.exe
[2014/03/04 10:39:02 | 000,304,640 | ---- | M] (Microsoft Corporation) MD5=D53972F87D850CD2EB4B29B60CAFDD77 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7601.22616_none_7255f1994c4f8119\winlogon.exe

[color=#A23BEC]< hklm\software\clients\startmenuinternet|command /rs hklm\software\clients\startmenuinternet|command /64 /rs >[/color]
Invalid Switch: rs

< End of report >

Publicité


Signaler le contenu de ce document

Publicité