Format du document : text/plain
Prévisualisation
Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version:31-12-2015
Exécuté par GROLLEMUND (administrateur) sur PEPITA (03-01-2016 23:38:15)
Exécuté depuis C:\Users\GROLLEMUND\Desktop
Profils chargés: GROLLEMUND (Profils disponibles: GROLLEMUND & DefaultAppPool)
Platform: Windows 10 Home (X64) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: FF)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processus (Avec liste blanche) =================
(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(McAfee, Inc.) C:\Program Files\McAfee\MSC\McAPExe.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe
(www.shadowexplorer.com) C:\Program Files (x86)\ShadowExplorer\sesvc.exe
(Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Sony Corporation) C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
(Sony Corporation) C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint\Apoint.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint\ApMsgFwd.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint\ApntEx.exe
(ALPS) C:\Program Files\Apoint\Apvfb.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Sony Corporation) C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe
(Inventel) C:\Program Files (x86)\Inventel\Add-on\wlancfg.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNService.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\CSP\1.5.450.0\McCSPServiceHost.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCPerfService.exe
(Sony of America Corporation) C:\Program Files\Sony\VAIO Care\listener.exe
(ArcSoft, Inc.) C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCsystray.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe
(Microsoft Corporation) C:\Windows\System32\vds.exe
(McAfee, Inc.) C:\Program Files\McAfee\VirusScan\mcods.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registre (Avec liste blanche) ===========================
(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)
HKLM\...\Run: [Apoint] => C:\Program Files\Apoint\Apoint.exe [226672 2011-02-17] (Alps Electric Co., Ltd.)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [518784 2011-03-29] (Conexant Systems, Inc.)
HKLM\...\Run: [AtherosBtStack] => "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [657568 2011-04-29] (Atheros Commnucations)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2010-09-13] (Intel Corporation)
HKLM-x32\...\Run: [ISBMgr.exe] => C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [2757312 2011-02-15] (Sony Corporation)
HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe [648032 2010-11-26] (Sony Corporation)
HKLM-x32\...\Run: [wlancfg] => C:\Program Files (x86)\Inventel\Add-on\wlancfg.exe [1466368 2011-12-26] (Inventel)
HKLM-x32\...\Run: [SpeedTouch USB Diagnostics] => C:\Program Files (x86)\Thomson\SpeedTouch USB\Dragdiag.exe [866816 2004-01-26] (THOMSON Telecom Belgium)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe [719272 2015-04-02] (McAfee, Inc.)
HKU\S-1-5-21-121357244-1201759410-4020727064-1000\...\Run: [GoogleChromeAutoLaunch_BB74F698C430360061D31D2467F6A728] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [741704 2015-12-11] (Google Inc.)
HKU\S-1-5-21-121357244-1201759410-4020727064-1000\...\Run: [santa_svc] => C:\Users\GROLLEMUND\AppData\Roaming\rjvnaacroic.exe
HKU\S-1-5-21-121357244-1201759410-4020727064-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8590760 2015-12-08] (Piriform Ltd)
HKU\S-1-5-21-121357244-1201759410-4020727064-1000\...\RunOnce: [Uninstall C:\Users\GROLLEMUND\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\GROLLEMUND\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
HKU\S-1-5-21-121357244-1201759410-4020727064-1000\...\RunOnce: [Uninstall C:\Users\GROLLEMUND\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\GROLLEMUND\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64"
HKU\S-1-5-21-121357244-1201759410-4020727064-1000\...\RunOnce: [Uninstall C:\Users\GROLLEMUND\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\GROLLEMUND\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64"
HKU\S-1-5-21-121357244-1201759410-4020727064-1000\...\RunOnce: [Uninstall C:\Users\GROLLEMUND\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\GROLLEMUND\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\amd64"
HKU\S-1-5-21-121357244-1201759410-4020727064-1000\...\RunOnce: [Uninstall C:\Users\GROLLEMUND\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\GROLLEMUND\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\amd64"
GroupPolicy: Restriction - Chrome <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
==================== Internet (Avec liste blanche) ====================
(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{0b595c2c-939b-44df-8734-dba2f3bf70f0}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKU\S-1-5-21-121357244-1201759410-4020727064-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://fr.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_ggbg_15_53¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuzyyEtAzy0EyD0AtBtDzzyB0AyBtD0CtCtN0D0Tzu0StCyEyCtAtN1L2XzutAtFtCyCtFtCtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StDyCyDtDyC0BtC0BtGyByDyD0CtG0Fzy0B0EtGtByDzy0FtGtCyC0F0DyC0B0EyCyC0A0FyD2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0CtD0CyEtAzy0B0EtGyEzz0CzytGyEtBtDyBtG0AyCzyyBtGtD0F0FyEtBzz0D0DyB0FyEtC2QtN0A0LzuyE%26cr%3D183084093%26a%3Dwncy_ggbg_15_53%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome
HKU\S-1-5-21-121357244-1201759410-4020727064-1000\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://sony.msn.com
HKU\S-1-5-21-121357244-1201759410-4020727064-1000\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.google.com/ie
HKU\S-1-5-21-121357244-1201759410-4020727064-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie
HKU\S-1-5-21-121357244-1201759410-4020727064-1000\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://sony.msn.com/
SearchScopes: HKLM -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL =
SearchScopes: HKLM-x32 -> Backup.Old.DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
SearchScopes: HKLM-x32 -> {6F820B33-69E1-69F6-792A-32B9C64113D5} URL = hxxp://www.bing.com/search?q={searchTerms}&form=SNYEDF&pc=MASE&src=IE-SearchBox
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-121357244-1201759410-4020727064-1000 -> Backup.Old.DefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
SearchScopes: HKU\S-1-5-21-121357244-1201759410-4020727064-1000 -> {60794C9D-A71E-4D1F-B83A-29E150AB1A41} URL = hxxps://fr.search.yahoo.com/search?fr=mcafee&type=C011FR0D19700101&p={searchTerms}
SearchScopes: HKU\S-1-5-21-121357244-1201759410-4020727064-1000 -> {89529AA8-6861-4609-882C-8A23F67440CC} URL = hxxp://rover.ebay.com/rover/1/709-42536-16445-33/4?mpre=hxxp://shop.ebay.fr/?oemInLn=ieSrch-Q311&_nkw={searchTerms}
SearchScopes: HKU\S-1-5-21-121357244-1201759410-4020727064-1000 -> {F1637823-4D6E-449C-852E-1EF11FC3FEFB} URL = hxxp://services.zinio.com/search?s={searchTerms}&rf=sonyslices
BHO: McAfee Phishing Filter -> {27B4851A-3207-45A2-B947-BE8AFE6163AB} -> c:\PROGRA~1\mcafee\msk\MSKAPB~1.DLL => Pas de fichier
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-08-27] (Sun Microsystems, Inc.)
BHO-x32: Toolbar BHO -> {1e91a655-bb4b-4693-a05e-2edebc4c9d89} -> C:\PROGRA~2\MAPSGA~2\bar\2.bin\39bar.dll => Pas de fichier
BHO-x32: McAfee Phishing Filter -> {27B4851A-3207-45A2-B947-BE8AFE6163AB} -> c:\progra~1\mcafee\msk\mskapbho.dll => Pas de fichier
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-04-29] (Atheros Commnucations)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-08-27] (Sun Microsystems, Inc.)
Toolbar: HKU\S-1-5-21-121357244-1201759410-4020727064-1000 -> Pas de nom - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Pas de fichier
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\mcieplg.dll [2015-12-02] (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\mcieplg.dll [2015-12-02] (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\mcieplg.dll [2015-12-02] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\mcieplg.dll [2015-12-02] (McAfee, Inc.)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl64.dll [2015-04-07] (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll [2015-04-07] (McAfee, Inc.)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
FireFox:
========
FF ProfilePath: C:\Users\GROLLEMUND\AppData\Roaming\Mozilla\Firefox\Profiles\k606n210.default
FF SearchEngineOrder.1: Recherche sécurisée
FF SelectedSearchEngine: Recherche sécurisée
FF Homepage: hxxps://www.google.fr/?gws_rd=ssl
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_267.dll [2015-12-30] ()
FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll [2011-08-27] (Sun Microsystems, Inc.)
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2015-04-07] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-04] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_267.dll [2015-12-30] ()
FF Plugin-x32: @ei.FromDocToPDF_65.com/Plugin -> C:\Program Files (x86)\FromDocToPDF_65EI\Installr\1.bin\NP65EISB.dll [Pas de fichier]
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Users\GROLLEMUND\Picasa3\npPicasa3.dll [2014-01-06] (Google, Inc.)
FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll [2011-08-27] (Sun Microsystems, Inc.)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2015-04-07] ()
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-04] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2011-02-18] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2011-02-18] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-05] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-05] (Google Inc.)
FF Plugin HKU\S-1-5-21-121357244-1201759410-4020727064-1000: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\GROLLEMUND\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-11-18] (RocketLife, LLP)
FF SearchPlugin: C:\Users\GROLLEMUND\AppData\Roaming\Mozilla\Firefox\Profiles\k606n210.default\searchplugins\how_recover+mbr.html [2015-12-25]
FF SearchPlugin: C:\Users\GROLLEMUND\AppData\Roaming\Mozilla\Firefox\Profiles\k606n210.default\searchplugins\how_recover+mbr.txt [2015-12-25]
FF SearchPlugin: C:\Users\GROLLEMUND\AppData\Roaming\Mozilla\Firefox\Profiles\k606n210.default\searchplugins\McSiteAdvisor.xml [2016-01-03]
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml [2015-08-18]
FF Extension: Discovery App - C:\Users\GROLLEMUND\AppData\Roaming\Mozilla\Firefox\Profiles\k606n210.default\Extensions\{5f8e8061-d0a3-415d-960a-b7d06c45d15d}.xpi [2016-01-02] [non signé]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF Extension: McAfee WebAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2015-11-23]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2015-05-22] [non signé]
Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxps://fr.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_ggbg_15_53¶m1=1¶m2=f%3D7%26b%3DChrome%26cc%3Dfr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuzyyEtAzy0EyD0AtBtDzzyB0AyBtD0CtCtN0D0Tzu0StCyEyCtAtN1L2XzutAtFtCyCtFtCtFtDtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StDyCyDtDyC0BtC0BtGyByDyD0CtG0Fzy0B0EtGtByDzy0FtGtCyC0F0DyC0B0EyCyC0A0FyD2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0CtD0CyEtAzy0B0EtGyEzz0CzytGyEtBtDyBtG0AyCzyyBtGtD0F0FyEtBzz0D0DyB0FyEtC2QtN0A0LzuyE%26cr%3D183084093%26a%3Dwncy_ggbg_15_53%26os_ver%3D10.0%26os%3DWindows%2B10%2BHome"
CHR DefaultSearchURL: Default -> hxxps://fr.search.yahoo.com/search?fr=mcafee&type=C211FR649D20111224&p={searchTerms}
CHR DefaultSearchKeyword: Default -> mcafee
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.106\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.106\ppGoogleNaClPluginChrome.dll => Pas de fichier
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\47.0.2526.106\pdf.dll => Pas de fichier
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll => Pas de fichier
CHR Plugin: (Java Deployment Toolkit 6.0.220.4) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll (Sun Microsystems, Inc.)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL => Pas de fichier
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (FromDocToPDF Installer Plugin Stub) - C:\Program Files (x86)\FromDocToPDF_65EI\Installr\1.bin\NP65EISB.dll => Pas de fichier
CHR Plugin: (Picasa) - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll => Pas de fichier
CHR Plugin: (Java(TM) Platform SE 6 U22) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.)
CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
CHR Plugin: (MetaStream 3 Plugin) - C:\Program Files (x86)\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll => Pas de fichier
CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll => Pas de fichier
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll => Pas de fichier
CHR Profile: C:\Users\GROLLEMUND\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\GROLLEMUND\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-25] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
CHR Extension: (Google Drive) - C:\Users\GROLLEMUND\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-25]
CHR Extension: (YouTube) - C:\Users\GROLLEMUND\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-25]
CHR Extension: (Recherche Google) - C:\Users\GROLLEMUND\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-25]
CHR Extension: (SiteAdvisor) - C:\Users\GROLLEMUND\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2015-12-25]
CHR Extension: (Google Docs hors connexion) - C:\Users\GROLLEMUND\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-12-25]
CHR Extension: (Discovery App) - C:\Users\GROLLEMUND\AppData\Local\Google\Chrome\User Data\Default\Extensions\naffjbcbbljnklaiemeoeoboikffhhcm [2016-01-03] [UpdateUrl: hxxp://cdn.ratediscoverymarket.com/update] <==== ATTENTION
CHR Extension: (Google Wallet) - C:\Users\GROLLEMUND\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-12-25] [UpdateUrl: hxxps://epicunitscan.info/00service/update2/crx] <==== ATTENTION
CHR Extension: (Gmail) - C:\Users\GROLLEMUND\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-25]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-12-21]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-12-21]
StartMenuInternet: Google Chrome - chrome.exe
==================== Services (Avec liste blanche) ========================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.)
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [146592 2011-04-29] (Atheros) [Fichier non signé]
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2361344 2011-03-29] (Realsil Microelectronics Inc.) [Fichier non signé]
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [157928 2015-12-02] (McAfee, Inc.)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [753768 2015-04-07] (McAfee, Inc.)
R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.5.450.0\McCSPServiceHost.exe [207344 2015-04-08] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
R3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [612688 2015-04-09] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
S2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [232656 2015-02-17] (McAfee, Inc.)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [372144 2015-04-06] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [250672 2015-02-17] (McAfee, Inc.)
R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [340744 2015-04-02] (McAfee, Inc.)
R2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [259192 2011-01-29] (Sony Corporation)
R2 sesvc; C:\Program Files (x86)\ShadowExplorer\sesvc.exe [9216 2013-01-02] (www.shadowexplorer.com) [Fichier non signé]
R2 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [105024 2011-02-23] (ArcSoft, Inc.)
R2 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [887000 2011-01-20] (Sony Corporation)
R3 VUAgent; C:\Program Files\Sony\VAIO Update\vuagent.exe [1653272 2015-07-31] (Sony Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
===================== Pilotes (Avec liste blanche) ==========================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
R3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.)
R3 athr; C:\Windows\System32\drivers\athwnx.sys [4207104 2015-07-10] (Qualcomm Atheros Communications, Inc.)
R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [68784 2015-02-17] (McAfee, Inc.)
S3 EsgScanner; C:\Windows\System32\DRIVERS\EsgScanner.sys [22704 2015-04-16] ()
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation)
R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [401736 2015-02-17] (McAfee, Inc.)
S3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [180272 2014-05-02] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [337888 2015-02-17] (McAfee, Inc.)
R0 mfedisk; C:\Windows\System32\DRIVERS\mfedisk.sys [101872 2015-02-17] (McAfee, Inc.)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [80160 2015-02-13] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [488000 2015-02-17] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [864072 2015-02-17] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [482600 2015-01-15] (McAfee, Inc.)
S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [100720 2015-01-15] (McAfee, Inc.)
R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [37960 2015-12-02] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [340448 2015-02-17] (McAfee, Inc.)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [587264 2015-07-10] (Realtek )
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
U3 idsvc; pas de ImagePath
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
U3 wpcsvc; pas de ImagePath
==================== NetSvcs (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
==================== Un mois - Créés - fichiers et dossiers ========
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2016-01-03 23:01 - 2016-01-03 23:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2016-01-03 22:56 - 2016-01-03 22:56 - 00016148 _____ C:\WINDOWS\system32\PEPITA_GROLLEMUND_HistoryPrediction.bin
2016-01-03 22:00 - 2016-01-03 22:01 - 01745920 _____ C:\Users\GROLLEMUND\Downloads\adwcleaner_5.027(1).exe
2016-01-03 21:31 - 2016-01-03 21:31 - 00996870 _____ C:\Users\GROLLEMUND\Downloads\pycrypto-2.6.win-amd64-py2.7(1).exe
2016-01-03 21:30 - 2016-01-03 21:31 - 00000836 _____ C:\Users\GROLLEMUND\Downloads\pycrypto-2.6.win-amd64-py2.7.exe(1).asc
2016-01-03 21:30 - 2016-01-03 21:30 - 00000836 _____ C:\Users\GROLLEMUND\Downloads\pycrypto-2.6.win-amd64-py2.7.exe.asc
2016-01-03 21:24 - 2016-01-03 21:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 2.7
2016-01-03 21:23 - 2016-01-03 21:24 - 00000000 ____D C:\Python27
2016-01-03 21:14 - 2016-01-03 21:16 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\TeslaCrack-master
2016-01-03 21:14 - 2016-01-03 21:14 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\yafu-1.34
2016-01-03 21:12 - 2016-01-03 21:12 - 04061336 _____ C:\Users\GROLLEMUND\Downloads\yafu-1.34.zip
2016-01-03 21:11 - 2016-01-03 21:22 - 00996870 _____ C:\Users\GROLLEMUND\Downloads\pycrypto-2.6.win-amd64-py2.7.exe
2016-01-03 21:11 - 2016-01-03 21:11 - 00020619 _____ C:\Users\GROLLEMUND\Downloads\TeslaCrack-master.zip
2016-01-03 21:07 - 2016-01-03 21:23 - 18636800 _____ C:\Users\GROLLEMUND\Downloads\python-2.7.11.msi
2016-01-03 20:56 - 2016-01-03 20:58 - 00051884 _____ C:\Users\GROLLEMUND\Desktop\Addition.txt
2016-01-03 20:54 - 2016-01-03 23:38 - 00029945 _____ C:\Users\GROLLEMUND\Desktop\FRST.txt
2016-01-03 20:52 - 2016-01-03 23:38 - 00000000 ____D C:\FRST
2016-01-03 20:51 - 2016-01-03 20:51 - 02370560 _____ (Farbar) C:\Users\GROLLEMUND\Desktop\FRST64.exe
2016-01-03 20:22 - 2016-01-03 20:22 - 00001954 _____ C:\Users\GROLLEMUND\Desktop\ShadowExplorer.lnk
2016-01-03 20:22 - 2016-01-03 20:22 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\www.shadowexplorer.com
2016-01-03 20:22 - 2016-01-03 20:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ShadowExplorer
2016-01-03 20:22 - 2016-01-03 20:22 - 00000000 ____D C:\Program Files (x86)\ShadowExplorer
2016-01-03 20:20 - 2016-01-03 20:21 - 00969845 _____ (ShadowExplorer.com ) C:\Users\GROLLEMUND\Downloads\ShadowExplorer-0.9-setup.exe
2016-01-03 18:57 - 2016-01-03 18:57 - 00002862 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2016-01-03 18:57 - 2016-01-03 18:57 - 00000863 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-01-03 18:57 - 2016-01-03 18:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-01-03 18:57 - 2016-01-03 18:57 - 00000000 ____D C:\Program Files\CCleaner
2016-01-03 18:51 - 2016-01-03 18:56 - 06805440 _____ (Piriform Ltd) C:\Users\GROLLEMUND\Downloads\ccsetup_513.exe
2016-01-03 17:36 - 2016-01-03 18:46 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-01-03 17:36 - 2016-01-03 17:36 - 00001171 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-01-03 17:36 - 2016-01-03 17:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-01-03 17:36 - 2016-01-03 17:36 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-01-03 17:36 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-01-03 17:36 - 2015-10-05 09:50 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2016-01-03 17:36 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2016-01-03 17:34 - 2016-01-03 17:35 - 22908888 _____ (Malwarebytes ) C:\Users\GROLLEMUND\Downloads\mbam-setup-org-2.2.0.1024.exe
2016-01-03 17:30 - 2016-01-03 17:30 - 01745920 _____ C:\Users\GROLLEMUND\Downloads\adwcleaner_5.027.exe
2016-01-03 12:31 - 2016-01-03 12:31 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\CEF
2016-01-03 12:24 - 2016-01-03 12:24 - 00000952 _____ C:\Users\Public\Desktop\Picasa 3.lnk
2016-01-03 12:20 - 2016-01-03 12:20 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\1H1Q1V0B1L1G1N1V0M1P1Q1L1T0D1P1E2Z
2016-01-03 12:18 - 2016-01-03 12:18 - 17660184 _____ (Google Inc.) C:\Users\GROLLEMUND\Downloads\PicasaSetup [1].exe
2016-01-03 12:18 - 2016-01-03 12:18 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\Nico Mak Computing
2016-01-03 12:18 - 2016-01-03 12:18 - 00000000 ____D C:\ProgramData\Nico Mak Computing
2016-01-03 10:00 - 2016-01-03 10:01 - 00002410 _____ C:\Users\GROLLEMUND\Desktop\Lanceur d'applications Google Chrome.lnk
2016-01-03 10:00 - 2016-01-03 10:00 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2016-01-02 18:32 - 2016-01-03 12:19 - 00000022 _____ C:\Users\GROLLEMUND\Downloads\PicasaSetup.zip
2016-01-02 18:28 - 2016-01-02 18:28 - 00000000 ____D C:\Users\GROLLEMUND\Downloads\Nouveau dossier (2)
2016-01-02 17:47 - 2016-01-02 17:47 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini
2016-01-02 17:47 - 2016-01-02 17:47 - 00000000 _SHDL C:\Users\DefaultAppPool\Voisinage réseau
2016-01-02 17:47 - 2016-01-02 17:47 - 00000000 _SHDL C:\Users\DefaultAppPool\Voisinage d'impression
2016-01-02 17:47 - 2016-01-02 17:47 - 00000000 _SHDL C:\Users\DefaultAppPool\Modèles
2016-01-02 17:47 - 2016-01-02 17:47 - 00000000 _SHDL C:\Users\DefaultAppPool\Mes documents
2016-01-02 17:47 - 2016-01-02 17:47 - 00000000 _SHDL C:\Users\DefaultAppPool\Menu Démarrer
2016-01-02 17:47 - 2016-01-02 17:47 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2016-01-02 17:47 - 2016-01-02 17:47 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Historique
2016-01-02 17:46 - 2016-01-02 17:47 - 00000000 ____D C:\Users\DefaultAppPool
2016-01-02 17:46 - 2015-08-07 11:14 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Media Center Programs
2016-01-02 17:46 - 2015-08-07 11:14 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Macromedia
2016-01-02 17:46 - 2015-08-07 11:14 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Local\Sony Corporation
2016-01-02 17:46 - 2015-08-07 11:14 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Local\Microsoft Help
2016-01-01 16:48 - 2016-01-01 16:48 - 00000000 ____D C:\Users\GROLLEMUND\Downloads\Nouveau dossier
2015-12-31 21:13 - 2015-12-31 21:13 - 00000101 ____H C:\Users\GROLLEMUND\Downloads\.~lock.grocubas 1112 du 31.12.2015 - naissance (2).doc#
2015-12-25 18:59 - 2015-12-25 18:59 - 00020480 ___SH C:\Users\GROLLEMUND\Desktop\Thumbs.db
2015-12-25 17:35 - 2015-12-25 17:35 - 00010654 _____ C:\Users\GROLLEMUND\AppData\Roaming\how_recover+mbr.html
2015-12-25 17:35 - 2015-12-25 17:35 - 00002411 _____ C:\Users\GROLLEMUND\AppData\Roaming\how_recover+mbr.txt
2015-12-25 17:34 - 2015-12-25 17:44 - 00010654 _____ C:\Users\GROLLEMUND\AppData\Roaming\Microsoft\Windows\Start Menu\how_recover+mbr.html
2015-12-25 17:34 - 2015-12-25 17:34 - 00010654 _____ C:\Users\GROLLEMUND\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\how_recover+mbr.html
2015-12-25 17:34 - 2015-12-25 17:34 - 00010654 _____ C:\Users\GROLLEMUND\AppData\LocalLow\how_recover+mbr.html
2015-12-25 17:34 - 2015-12-25 17:34 - 00002411 _____ C:\Users\GROLLEMUND\AppData\LocalLow\how_recover+mbr.txt
2015-12-25 17:06 - 2015-12-25 17:44 - 00010654 _____ C:\Users\GROLLEMUND\AppData\Local\how_recover+mbr.html
2015-12-25 17:06 - 2015-12-25 17:44 - 00002411 _____ C:\Users\GROLLEMUND\AppData\Local\how_recover+mbr.txt
2015-12-25 17:06 - 2015-12-25 17:06 - 00010654 _____ C:\Users\GROLLEMUND\AppData\Local\Apps\how_recover+mbr.html
2015-12-25 17:06 - 2015-12-25 17:06 - 00002411 _____ C:\Users\GROLLEMUND\AppData\Local\Apps\how_recover+mbr.txt
2015-12-25 17:04 - 2015-12-25 17:06 - 00010654 _____ C:\ProgramData\how_recover+mbr.html
2015-12-25 17:04 - 2015-12-25 17:06 - 00002411 _____ C:\ProgramData\how_recover+mbr.txt
2015-12-21 13:09 - 2015-12-21 13:09 - 00010654 _____ C:\Users\GROLLEMUND\AppData\Local\how_recover+ken.html
2015-12-21 13:09 - 2015-12-21 13:09 - 00010654 _____ C:\Users\GROLLEMUND\AppData\Local\Apps\how_recover+ken.html
2015-12-21 13:09 - 2015-12-21 13:09 - 00002411 _____ C:\Users\GROLLEMUND\AppData\Local\how_recover+ken.txt
2015-12-21 13:09 - 2015-12-21 13:09 - 00002411 _____ C:\Users\GROLLEMUND\AppData\Local\Apps\how_recover+ken.txt
2015-12-21 13:08 - 2015-12-21 13:09 - 00010654 _____ C:\ProgramData\how_recover+ken.html
2015-12-21 13:08 - 2015-12-21 13:09 - 00002411 _____ C:\ProgramData\how_recover+ken.txt
2015-12-21 13:04 - 2015-12-21 13:04 - 00000254 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\recover_file_aeuniguml.txt
2015-12-20 17:23 - 2015-12-20 17:23 - 00010654 _____ C:\Users\GROLLEMUND\AppData\Local\how_recover+ogt.html
2015-12-20 17:23 - 2015-12-20 17:23 - 00010654 _____ C:\Users\GROLLEMUND\AppData\Local\Apps\how_recover+ogt.html
2015-12-20 17:23 - 2015-12-20 17:23 - 00002411 _____ C:\Users\GROLLEMUND\AppData\Local\how_recover+ogt.txt
2015-12-20 17:23 - 2015-12-20 17:23 - 00002411 _____ C:\Users\GROLLEMUND\AppData\Local\Apps\how_recover+ogt.txt
2015-12-20 17:18 - 2015-12-20 17:23 - 00010654 _____ C:\ProgramData\how_recover+ogt.html
2015-12-20 17:18 - 2015-12-20 17:23 - 00002411 _____ C:\ProgramData\how_recover+ogt.txt
2015-12-20 17:12 - 2015-12-20 17:12 - 00000254 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\recover_file_xyoteidpi.txt
2015-12-20 14:26 - 2016-01-03 19:40 - 00000000 ___RD C:\Users\GROLLEMUND\Desktop\photos venise\Documents\RocketLifeNetwork
2015-12-20 14:25 - 2016-01-03 23:06 - 00000446 _____ C:\WINDOWS\Tasks\HP Photo Creations Communicator.job
2015-12-20 14:25 - 2015-12-25 17:35 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\Visan
2015-12-20 14:25 - 2015-12-25 17:34 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HP
2015-12-20 14:25 - 2015-12-25 17:34 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\HP Photo Creations
2015-12-20 14:25 - 2015-12-20 14:25 - 00003532 _____ C:\WINDOWS\System32\Tasks\HP Photo Creations Communicator
2015-12-11 16:16 - 2015-12-28 11:29 - 00000000 ____D C:\Users\GROLLEMUND\Downloads\Bangkok
2015-12-09 18:25 - 2015-11-25 06:27 - 01366680 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2015-12-09 18:25 - 2015-11-25 06:09 - 01310880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2015-12-09 18:25 - 2015-11-25 05:49 - 01569280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2015-12-09 18:25 - 2015-11-25 05:44 - 21872640 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-12-09 18:25 - 2015-11-25 05:42 - 24592384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-12-09 18:25 - 2015-11-25 05:36 - 01710592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2015-12-09 18:25 - 2015-11-25 05:35 - 00929792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2015-12-09 18:25 - 2015-11-25 05:35 - 00845824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Magnify.exe
2015-12-09 18:25 - 2015-11-25 05:34 - 12504576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-12-09 18:25 - 2015-11-25 05:29 - 01649152 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2015-12-09 18:25 - 2015-11-25 05:23 - 19323392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-12-09 18:25 - 2015-11-25 05:22 - 01717248 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2015-12-09 18:25 - 2015-11-25 05:18 - 01233920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2015-12-09 18:25 - 2015-11-25 05:17 - 00774656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2015-12-09 18:25 - 2015-11-25 05:16 - 01442816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
2015-12-09 18:25 - 2015-11-25 05:16 - 00786432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Magnify.exe
2015-12-09 18:25 - 2015-11-25 05:10 - 18801664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2015-12-09 18:25 - 2015-11-25 05:10 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2015-12-09 18:25 - 2015-11-25 05:05 - 11263488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-12-09 18:25 - 2015-11-25 05:04 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2015-12-09 18:24 - 2015-12-01 08:01 - 02115936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2015-12-09 18:24 - 2015-12-01 07:03 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\gpuenergydrv.sys
2015-12-09 18:24 - 2015-12-01 06:54 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2015-12-09 18:24 - 2015-12-01 06:51 - 07523840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2015-12-09 18:24 - 2015-12-01 06:49 - 04792320 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-12-09 18:24 - 2015-12-01 06:02 - 03580416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-12-09 18:24 - 2015-12-01 05:59 - 05455360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2015-12-09 18:24 - 2015-11-25 06:42 - 04532304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-12-09 18:24 - 2015-11-25 06:42 - 00168288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.exe
2015-12-09 18:24 - 2015-11-25 06:41 - 01822280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-12-09 18:24 - 2015-11-25 06:40 - 00516448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2015-12-09 18:24 - 2015-11-25 06:33 - 03622272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-12-09 18:24 - 2015-11-25 06:32 - 00113184 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2015-12-09 18:24 - 2015-11-25 06:12 - 04047288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2015-12-09 18:24 - 2015-11-25 06:11 - 01532984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2015-12-09 18:24 - 2015-11-25 06:01 - 02879024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-12-09 18:24 - 2015-11-25 05:59 - 00092992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2015-12-09 18:24 - 2015-11-25 05:49 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
2015-12-09 18:24 - 2015-11-25 05:49 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2015-12-09 18:24 - 2015-11-25 05:49 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\RasMediaManager.dll
2015-12-09 18:24 - 2015-11-25 05:48 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\EthernetMediaManager.dll
2015-12-09 18:24 - 2015-11-25 05:48 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAMediaManager.dll
2015-12-09 18:24 - 2015-11-25 05:37 - 02350592 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-12-09 18:24 - 2015-11-25 05:36 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usb8023.sys
2015-12-09 18:24 - 2015-11-25 05:31 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAMM.dll
2015-12-09 18:24 - 2015-11-25 05:30 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3mm.dll
2015-12-09 18:24 - 2015-11-25 05:30 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rmcast.sys
2015-12-09 18:24 - 2015-11-25 05:30 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys
2015-12-09 18:24 - 2015-11-25 05:29 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ninput.dll
2015-12-09 18:24 - 2015-11-25 05:28 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-12-09 18:24 - 2015-11-25 05:28 - 00523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvut.dll
2015-12-09 18:24 - 2015-11-25 05:27 - 02180608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-12-09 18:24 - 2015-11-25 05:26 - 00849408 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2015-12-09 18:24 - 2015-11-25 05:26 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2015-12-09 18:24 - 2015-11-25 05:25 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2015-12-09 18:24 - 2015-11-25 05:25 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2015-12-09 18:24 - 2015-11-25 05:23 - 03588096 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-12-09 18:24 - 2015-11-25 05:23 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2015-12-09 18:24 - 2015-11-25 05:22 - 01383424 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-12-09 18:24 - 2015-11-25 05:22 - 00603648 _____ (Microsoft Corporation) C:\WINDOWS\system32\duser.dll
2015-12-09 18:24 - 2015-11-25 05:22 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\kbdgeoqw.dll
2015-12-09 18:24 - 2015-11-25 05:22 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDAZST.DLL
2015-12-09 18:24 - 2015-11-25 05:22 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDAZEL.DLL
2015-12-09 18:24 - 2015-11-25 05:22 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\KBDAZE.DLL
2015-12-09 18:24 - 2015-11-25 05:19 - 01795584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-12-09 18:24 - 2015-11-25 05:19 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2015-12-09 18:24 - 2015-11-25 05:13 - 02153984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2015-12-09 18:24 - 2015-11-25 05:11 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ninput.dll
2015-12-09 18:24 - 2015-11-25 05:10 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-12-09 18:24 - 2015-11-25 05:10 - 00415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrvut.dll
2015-12-09 18:24 - 2015-11-25 05:08 - 00749568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2015-12-09 18:24 - 2015-11-25 05:07 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2015-12-09 18:24 - 2015-11-25 05:04 - 00480768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\duser.dll
2015-12-09 18:24 - 2015-11-25 05:04 - 00474624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll
2015-12-09 18:24 - 2015-11-25 05:04 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbdgeoqw.dll
2015-12-09 18:24 - 2015-11-25 05:04 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDAZST.DLL
2015-12-09 18:24 - 2015-11-25 05:04 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDAZEL.DLL
2015-12-09 18:24 - 2015-11-25 05:04 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDAZE.DLL
2015-12-09 18:24 - 2015-11-25 03:52 - 00775312 _____ C:\WINDOWS\SysWOW64\locale.nls
2015-12-09 18:24 - 2015-11-25 03:52 - 00775312 _____ C:\WINDOWS\system32\locale.nls
2015-12-05 20:33 - 2015-12-05 20:33 - 02627584 _____ (Python Software Foundation) C:\WINDOWS\SysWOW64\python27.dll
==================== Un mois - Modifiés - fichiers et dossiers ========
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2016-01-03 23:35 - 2014-03-15 14:22 - 00001002 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-01-03 23:16 - 2014-05-15 16:47 - 00001090 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1cf7054f75a4e7e.job
2016-01-03 23:11 - 2015-08-07 11:03 - 02132166 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-01-03 23:11 - 2015-07-10 17:24 - 00932404 _____ C:\WINDOWS\system32\perfh00C.dat
2016-01-03 23:11 - 2015-07-10 17:24 - 00198250 _____ C:\WINDOWS\system32\perfc00C.dat
2016-01-03 23:11 - 2015-07-10 12:02 - 00000000 ____D C:\WINDOWS\INF
2016-01-03 23:01 - 2015-07-10 10:05 - 00000000 ____D C:\Windows
2016-01-03 22:57 - 2013-09-12 14:18 - 00001086 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-01-03 22:56 - 2015-08-07 11:00 - 00000000 ____D C:\ProgramData\NVIDIA
2016-01-03 22:55 - 2015-07-10 13:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-01-03 22:55 - 2015-07-10 10:05 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-01-03 22:52 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\tracing
2016-01-03 22:52 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\SysWOW64\FxsTmp
2016-01-03 22:18 - 2015-11-01 17:30 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-01-03 22:18 - 2012-05-06 17:58 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-01-03 22:16 - 2015-01-29 16:51 - 00000000 ____D C:\AdwCleaner
2016-01-03 20:44 - 2015-08-07 15:21 - 00000000 ___RD C:\Users\GROLLEMUND\OneDrive
2016-01-03 20:44 - 2013-12-31 17:25 - 00000000 ____D C:\Users\GROLLEMUND\Picasa3
2016-01-03 20:44 - 2013-09-09 14:13 - 00000000 ____D C:\Users\GROLLEMUND\2013-09-09
2016-01-03 20:44 - 2013-09-09 14:12 - 00000000 ____D C:\Users\GROLLEMUND\maison 2013
2016-01-03 20:44 - 2012-09-06 16:48 - 00000000 ____D C:\Users\GROLLEMUND\.jordan
2016-01-03 19:44 - 2015-09-06 10:19 - 00000000 ____D C:\Users\GROLLEMUND\Downloads\_06Sep20151048
2016-01-03 19:44 - 2014-07-29 19:13 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\Teogat 2014
2016-01-03 19:40 - 2015-09-30 09:46 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Nouveau dossier (2)
2016-01-03 19:40 - 2015-09-30 09:46 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Nouveau dossier
2016-01-03 19:40 - 2015-05-23 14:02 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Sony PMB
2016-01-03 19:40 - 2015-03-19 18:08 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise\Documents\GotoBridge
2016-01-03 19:40 - 2015-03-18 10:15 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise\Documents\My Kindle Content
2016-01-03 19:40 - 2015-01-22 15:21 - 00000000 ___SD C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Mes sources de données
2016-01-03 19:40 - 2015-01-22 14:26 - 00000000 ___RD C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Scanned Documents
2016-01-03 19:40 - 2014-11-02 10:02 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise
2016-01-03 19:40 - 2013-01-07 18:36 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Fichiers photos
2016-01-03 19:40 - 2011-12-26 22:42 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Grocubas
2016-01-03 19:40 - 2011-12-26 22:28 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Sucession Bonne Maman
2016-01-03 19:40 - 2011-12-26 22:20 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise\Documents\mariageJeanLoustalotMarieLafougueyre19juillet1756
2016-01-03 19:39 - 2015-07-27 13:06 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\Photo Bretagne 2015
2016-01-03 19:39 - 2015-01-30 15:03 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\grece 2011
2016-01-03 19:39 - 2015-01-22 14:26 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Fax
2016-01-03 19:39 - 2015-01-17 14:45 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Exportations HTML Picasa
2016-01-03 19:39 - 2014-10-23 17:50 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Fichiers Outlook
2016-01-03 19:39 - 2014-07-28 13:44 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise\Documents\50 ans de mariage
2016-01-03 19:39 - 2013-04-08 16:56 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Fichiers cambodge
2016-01-03 19:39 - 2012-06-15 11:33 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Fichiers livrephoto
2016-01-03 19:39 - 2011-12-26 22:23 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise\Documents\1853mariageEmileForestPaulineLaffore
2016-01-03 19:39 - 2011-12-26 22:19 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise\Documents\confitured'oignons
2016-01-03 19:39 - 2011-12-26 22:18 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise\Documents\ANCIEN ORDINATEUR
2016-01-03 19:39 - 2011-12-26 22:18 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise\Documents\ActebaptêmeAntoineForest1770
2016-01-03 19:39 - 2011-12-26 22:18 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise\Documents\acceptationd'activité
2016-01-03 19:39 - 2011-12-26 22:18 - 00000000 ____D C:\Users\GROLLEMUND\Desktop\photos venise\Documents\1854actenaissanceJAHillon1
2016-01-03 19:18 - 2015-08-07 11:54 - 00000000 ___DC C:\WINDOWS\Panther
2016-01-03 19:17 - 2015-08-23 09:31 - 00000000 ____D C:\WINDOWS\Minidump
2016-01-03 19:00 - 2013-06-19 09:38 - 00000000 ____D C:\Users\GROLLEMUND\SyncFolder
2016-01-03 18:59 - 2015-08-07 15:17 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-01-03 18:59 - 2015-08-07 11:04 - 00000000 ____D C:\Users\GROLLEMUND
2016-01-03 18:59 - 2015-07-10 12:04 - 00000000 __RHD C:\Users\Public\Libraries
2016-01-03 18:59 - 2011-07-13 03:58 - 00000000 ___RD C:\Users\Public\Recorded TV
2016-01-03 18:33 - 2014-03-15 14:22 - 00000000 ____D C:\Program Files\Google
2016-01-03 18:33 - 2013-09-10 16:19 - 00000000 ____D C:\Program Files (x86)\Google
2016-01-03 17:52 - 2012-07-24 15:59 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\Google
2016-01-03 17:49 - 2011-08-27 03:27 - 00000000 ____D C:\Program Files (x86)\Adobe
2016-01-03 17:28 - 2011-12-24 10:22 - 00004168 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{344BBF0C-675E-4C95-821D-8C36ECAB9D5D}
2016-01-03 12:35 - 2011-12-24 11:18 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\Adobe
2016-01-03 12:31 - 2011-12-27 22:56 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\Adobe
2016-01-03 12:19 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2016-01-03 12:19 - 2015-01-06 09:33 - 00000290 __RSH C:\ProgramData\ntuser.pol
2016-01-03 12:19 - 2009-07-14 04:20 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy
2016-01-03 10:39 - 2015-07-10 10:05 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-01-03 10:36 - 2015-07-10 13:20 - 00427768 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-01-03 10:08 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-01-02 15:33 - 2015-03-18 10:15 - 00001954 _____ C:\Users\GROLLEMUND\Desktop\Kindle.lnk
2016-01-02 15:33 - 2015-01-30 14:14 - 00001146 _____ C:\Users\GROLLEMUND\Desktop\CrystalDiskInfo.lnk
2016-01-02 11:13 - 2015-05-26 16:28 - 02015232 ___SH C:\Users\GROLLEMUND\Downloads\Thumbs.db
2016-01-01 15:42 - 2015-10-30 20:24 - 00000000 ___HD C:\$WINDOWS.~BT
2016-01-01 11:17 - 2015-07-10 12:04 - 00000000 ___HD C:\Program Files\WindowsApps
2015-12-30 20:50 - 2015-07-10 11:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-12-30 11:13 - 2013-07-06 14:59 - 00000023 _____ C:\test.xml
2015-12-30 10:35 - 2014-03-15 14:22 - 00003992 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-12-26 21:46 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\oobe
2015-12-26 21:42 - 2012-05-18 17:51 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-12-26 21:42 - 2011-08-27 03:17 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-12-26 17:17 - 2012-05-18 17:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-12-26 17:15 - 2013-08-12 20:41 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-12-26 17:00 - 2012-03-09 17:33 - 140158008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-12-26 09:58 - 2015-07-10 12:06 - 00826872 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-12-26 09:58 - 2015-07-10 12:06 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-12-25 18:58 - 2015-08-07 11:51 - 00000000 ____D C:\Windows.old
2015-12-25 18:58 - 2011-08-27 03:15 - 00000000 ____D C:\_FS_SWRINFO
2015-12-25 18:55 - 2011-08-27 03:59 - 00000000 ____D C:\VAIO Sample Contents
2015-12-25 18:54 - 2012-05-17 20:40 - 00000000 ____D C:\VAIO Entertainment
2015-12-25 17:40 - 2015-09-30 09:45 - 00020398 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\lettre de relance Becquet - Copie.doc.vvv
2015-12-25 17:40 - 2014-03-10 16:48 - 00013262 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Histoire de Malte.docx.vvv
2015-12-25 17:40 - 2014-03-07 16:36 - 00015310 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Michel accident.docx.vvv
2015-12-25 17:40 - 2014-02-22 14:27 - 00625582 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\grocubas 828 du 22.02.2014.doc.vvv
2015-12-25 17:40 - 2014-01-12 17:42 - 07525294 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\grocubas 7xx du xx -01- 2014 - balade du 12 Janvier 2014.doc.vvv
2015-12-25 17:40 - 2013-11-21 16:05 - 00020686 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\La Bataille de Saint Pierre d'irube.docx.vvv
2015-12-25 17:40 - 2013-10-03 16:15 - 00023246 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\SCI Villa Les Roses.docx.vvv
2015-12-25 17:40 - 2013-08-21 17:06 - 00045678 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\lac d'yrieu.docx.vvv
2015-12-25 17:40 - 2012-07-30 18:35 - 03000750 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\P1090832.JPG.vvv
2015-12-25 17:40 - 2012-07-30 18:35 - 02982318 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\P1090833.JPG.vvv
2015-12-25 17:40 - 2012-07-30 18:35 - 02928046 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\P1090831.JPG.vvv
2015-12-25 17:40 - 2012-07-30 18:34 - 03219886 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\P1090821.JPG.vvv
2015-12-25 17:40 - 2012-07-30 18:34 - 03186606 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\P1090822.JPG.vvv
2015-12-25 17:40 - 2012-07-30 18:34 - 03103150 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\P1090815.JPG.vvv
2015-12-25 17:40 - 2012-07-30 18:34 - 03066798 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\P1090826.JPG.vvv
2015-12-25 17:40 - 2012-07-30 18:34 - 03053486 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\P1090827.JPG.vvv
2015-12-25 17:40 - 2012-07-30 18:34 - 03029422 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\P1090817.JPG.vvv
2015-12-25 17:40 - 2012-07-30 18:34 - 03026862 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\P1090820.JPG.vvv
2015-12-25 17:40 - 2012-07-30 18:34 - 03008942 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\P1090819.JPG.vvv
2015-12-25 17:40 - 2012-07-30 18:34 - 02996142 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\P1090823.JPG.vvv
2015-12-25 17:40 - 2012-07-30 18:34 - 02988462 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\P1090825.JPG.vvv
2015-12-25 17:40 - 2012-07-30 18:34 - 02955694 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\P1090818.JPG.vvv
2015-12-25 17:40 - 2012-07-30 18:34 - 02954718 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\P1090812.JPG.vvv
2015-12-25 17:40 - 2012-07-30 18:34 - 02941358 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\P1090824.JPG.vvv
2015-12-25 17:40 - 2012-07-30 18:34 - 02939822 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\P1090814.JPG.vvv
2015-12-25 17:40 - 2012-07-30 18:34 - 02936238 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\P1090813.JPG.vvv
2015-12-25 17:40 - 2012-07-30 18:34 - 02918830 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\P1090816.JPG.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 05956798 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\nos ancêtres à Lyon.pdf.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 03660302 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\mariageJeanLoustalotMarieLafougueyre19juillet1756.zip.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 02190462 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\leMalrangetlesfermessuisses.pdf.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 01927022 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\mariageJeanLoustalotMarieLafougueyre19juillet1756.pdf.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 01273774 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\RecettedelaCaponataSicilienne.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 01222110 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\pauunionforestcasaubon1806.zip.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 01195950 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\tarteaupotimarron.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 01102286 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\généalogie L.F. Hillon.rtf.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 01032110 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Voeux2010.ppt.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00610510 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\turquie.zip.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00184238 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Vallee d'ossau.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00178078 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\TrajetAbbayeBellocversBordeLamarque.zip.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00113070 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\voeux 2015.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00112046 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\L'Impératrice.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00100782 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Le BEARN au XIVe.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00063918 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\La civilisation islamique en Occident.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00062382 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Henry IV marguerite de Valois.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00059310 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\OLORON-MEUBLES&OBJETSsept07.xls.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00051118 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Marie de Médicis.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00042926 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\GROLLEMUND&CO.xls.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00037806 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Le Vert galant.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00034734 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Introduction henry IV.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00031150 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\vente de Luz.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00026542 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Laviecommenceà60ans.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00026030 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\RésuméactemariageJHillonSFilhon1853.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00026030 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\GENEALOGIEDELAFAMILLELOUSTALOTORIGINAIRED.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00026030 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\GENEALOGIEDELAFAMILLEHILLON.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00025518 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Plan de la causerie sur Gaston Fébus.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00024494 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\lettre becquet 12 mai 2010.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00021422 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Lechâteaud'Olibé.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00020910 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\LUz.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:23 - 00020398 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\lettre de relance Becquet.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:19 - 00039342 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\VOYAGE EN Italie DU NORD.doc.vvv
2015-12-25 17:40 - 2011-12-26 22:19 - 00030638 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\livre OLoron.xls.vvv
2015-12-25 17:38 - 2014-12-02 15:37 - 00609198 _____ C:\Users\GROLLEMUND\Desktop\modele Grocubas.doc.vvv
2015-12-25 17:38 - 2014-08-10 15:05 - 03123182 _____ C:\Users\GROLLEMUND\Desktop\P1010379.JPG.vvv
2015-12-25 17:38 - 2014-01-13 22:32 - 00169422 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\14.01 Balade Ainoha - Zugarramurdi 02 fevrier 2014.docx.vvv
2015-12-25 17:38 - 2013-12-24 17:16 - 07524270 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Balade du 12 janvier 2014.doc.vvv
2015-12-25 17:38 - 2013-11-25 11:38 - 00180686 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Compte rendu balade du 24 novembre 2013.docx.vvv
2015-12-25 17:38 - 2013-01-01 15:22 - 00063054 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Balade du 20 Janvier 2013.docx.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 09376174 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\1854actenaissanceJAHillon1.zip.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 01108398 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Commission balades du 15 mai 2011.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00670126 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Balade du 27 novembre 2011.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00623534 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Baladejanvier2010.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00617390 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\balade du 12 décembre 2010.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00589534 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\acceptationd'activité.zip.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00551934 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\CG_Assurance_Multirisque.pdf.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00332206 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Balade du 9 janvier 2011.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00314798 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Compte rendu balade 28 mars.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00311390 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\1853mariageEmileForestPaulineLaffore.zip.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00305582 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\baladefévrier2010.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00305582 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\balade février 2010.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00288174 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Commission balade1février 2011.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00269742 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\balade marais d'orx.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00244142 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\de lapin aux deux olive s.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00186798 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\CommissionBaladeseptembre2010.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00186798 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Commission Balade septembre 2010.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00152686 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\1829ActenaissanceEmileForest.zip.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00137134 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Eugénie de Montijo.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00120238 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Commission Balade 28 mars 2010.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00115118 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\balade123juillet2011PaysToy.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00115118 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\balade 1 2 3 juillet 2011 Pays Toy.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00107486 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\denjean.rtf.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00101918 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\ActebaptêmeAntoineForest1770.zip.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00092590 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Commission Balade du 20 mars 2011.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00075182 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Compte rendu balade du 2 octobre 2011.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00074670 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Commission Balade 30 mai 2010 cpte rendu.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00062894 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\BAILGROLLEMUNDBECQUET.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00059822 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\CommissionBalade.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00059822 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Commission Balade.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00041390 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Compte rendu balade du 15 mai 2011.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00040878 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Bizkayluze 2011.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00036270 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\EUGENIE.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00033198 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Commission Balade janvier 2010.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00028590 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Catherine de Bourbon.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00027054 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\BIBLIOGRAPHIE Eugénie.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00027054 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Art Mudéjar.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00026030 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\balade du 8 janvier 2012.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00023470 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\becquet.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00022446 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\CIRCUIT EN BEARN.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00022446 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\BIBLIOGRAPHIE.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00021934 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\déclaration à l'assureur pour Luz.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00021934 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Compte rendu Balade du 27 novembre 2011.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00021934 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\avenant bail Becquet.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00021422 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Compte rendu balade 6 février 2011.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00020398 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Canelés.doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00020398 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\Acte de naissance E.L.F..doc.vvv
2015-12-25 17:38 - 2011-12-26 22:23 - 00005518 _____ C:\Users\GROLLEMUND\Desktop\photos venise\Documents\confitured'oignons.zip.vvv
2015-12-25 17:35 - 2015-04-17 09:22 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\ZHP
2015-12-25 17:35 - 2015-04-04 17:20 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\Windows Live Writer
2015-12-25 17:35 - 2011-12-27 22:47 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\SoftGrid Client
2015-12-25 17:35 - 2011-12-27 22:46 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\TP
2015-12-25 17:35 - 2011-12-24 10:20 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\Sony Corporation
2015-12-25 17:34 - 2015-10-16 17:36 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\LibreOffice
2015-12-25 17:34 - 2015-10-11 13:28 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{7EBF94D9-D3DD-42C9-B22D-D7937B868D9A}
2015-12-25 17:34 - 2015-10-09 13:46 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{E08C4F0B-D404-4840-BFD3-834EC5668098}
2015-12-25 17:34 - 2015-08-07 15:34 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\Publishers
2015-12-25 17:34 - 2015-08-07 15:17 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\TileDataLayer
2015-12-25 17:34 - 2015-08-07 15:17 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\Packages
2015-12-25 17:34 - 2015-07-27 12:46 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{D389C1F8-48F7-4285-8771-F0F3D2C3DF78}
2015-12-25 17:34 - 2015-07-26 15:24 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{827C83D9-39F1-4C68-B4C2-3638A6EE8B45}
2015-12-25 17:34 - 2015-06-22 15:53 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{445C349C-8312-448D-A4E5-65A5B3F74062}
2015-12-25 17:34 - 2015-05-26 16:26 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{F6C7C639-927A-4C0E-B901-F9C0E0E132DB}
2015-12-25 17:34 - 2015-05-25 10:40 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{3047FB5E-9A79-4992-9A58-BA5C510FBF2A}
2015-12-25 17:34 - 2015-05-23 14:48 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{19D20962-B25B-411A-B257-73C6E82B95ED}
2015-12-25 17:34 - 2015-05-04 13:49 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{27785D77-05CA-44AE-98FB-2C53221988AC}
2015-12-25 17:34 - 2015-04-19 10:49 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{89C23F13-5470-498D-A61A-F9E5C81D59F8}
2015-12-25 17:34 - 2015-04-17 14:42 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{818CB294-323A-451E-8B98-82CA0B5F728E}
2015-12-25 17:34 - 2015-04-16 16:20 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{2356EAA2-88F2-45D5-8BF2-5377851C9732}
2015-12-25 17:34 - 2015-04-16 15:45 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\Enigma Software Group
2015-12-25 17:34 - 2015-04-04 17:20 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\Windows Live Writer
2015-12-25 17:34 - 2015-04-04 17:02 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{103FF065-6812-41E6-9816-275CD1DBE9B8}
2015-12-25 17:34 - 2015-03-18 10:15 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon
2015-12-25 17:34 - 2015-02-12 14:55 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Goto.Games
2015-12-25 17:34 - 2015-02-08 16:20 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\Goto.Games
2015-12-25 17:34 - 2015-01-29 12:10 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{45C7FF1E-38A6-4DE4-B854-AC3A1CB71760}
2015-12-25 17:34 - 2015-01-10 09:17 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\BRT
2015-12-25 17:34 - 2015-01-04 15:09 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\hps-install
2015-12-25 17:34 - 2015-01-04 15:04 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{F9BF0A9D-A96A-49A6-AC7D-C97A338454B7}
2015-12-25 17:34 - 2015-01-01 14:17 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{30FD4F39-3EB7-4342-931C-5DD0A1398EC6}
2015-12-25 17:34 - 2014-12-24 11:22 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{93415AD1-FAF6-422D-B3B4-A6ABC5B00AC5}
2015-12-25 17:34 - 2014-11-12 14:28 - 00000000 __SHD C:\Users\GROLLEMUND\AppData\LocalLow\EmieBrowserModeList
2015-12-25 17:34 - 2014-09-06 16:21 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{DCF88E62-7C33-4C64-8935-7083BD39C0B7}
2015-12-25 17:34 - 2014-08-14 16:52 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{AFAF5E4D-0B8E-4243-9E16-76B543E403EA}
2015-12-25 17:34 - 2014-08-12 17:44 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{7F56065B-2ABD-4136-96F9-938AF3E9FD98}
2015-12-25 17:34 - 2014-08-11 10:45 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\Pro Cycling Manager 2013
2015-12-25 17:34 - 2014-06-09 14:18 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{80C13409-AACA-47DC-8A82-EC8448E3DE92}
2015-12-25 17:34 - 2014-05-07 15:44 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{54E6A44C-5847-4EE9-B0BC-7FA534E54874}
2015-12-25 17:34 - 2014-04-19 16:41 - 00000000 __SHD C:\Users\GROLLEMUND\AppData\LocalLow\EmieUserList
2015-12-25 17:34 - 2014-04-19 16:24 - 00000000 __SHD C:\Users\GROLLEMUND\AppData\LocalLow\EmieSiteList
2015-12-25 17:34 - 2014-03-17 11:36 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{EB97D208-4665-41E6-B48C-AD3FF26FCC19}
2015-12-25 17:34 - 2014-03-17 11:28 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{B4F5937B-7AB8-4BCA-97F6-4594B1EFBE9C}
2015-12-25 17:34 - 2014-03-16 12:35 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{DC0FE1C1-0BEB-4B35-B150-367C7B0C09FB}
2015-12-25 17:34 - 2014-03-15 14:23 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\Google
2015-12-25 17:34 - 2014-02-23 17:25 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{C1AE35A0-B79C-48A2-B181-426F2F940711}
2015-12-25 17:34 - 2014-02-22 18:48 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\Windows Live
2015-12-25 17:34 - 2014-02-22 18:47 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{A9481D25-FD56-407A-85AF-C6B57A3108EF}
2015-12-25 17:34 - 2014-01-16 14:28 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{91C30EB3-AEB6-4ABA-930B-E920D7854855}
2015-12-25 17:34 - 2014-01-07 18:05 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google+ Auto Backup
2015-12-25 17:34 - 2014-01-04 15:34 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\Dropbox
2015-12-25 17:34 - 2013-12-10 17:06 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{76A4AC1E-7C5B-4D86-982C-D1BAA36348DE}
2015-12-25 17:34 - 2013-12-09 16:35 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{568159C9-4051-4999-88BD-DE38672604C3}
2015-12-25 17:34 - 2013-10-23 16:06 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{E82398E6-CF81-405A-9979-F2144D674391}
2015-12-25 17:34 - 2013-09-19 16:47 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{6FB0B1F3-C33D-49CF-8DEB-28BA68805775}
2015-12-25 17:34 - 2013-09-12 14:30 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{F8399B8D-6BA8-4BA5-AB11-9A689F843EB9}
2015-12-25 17:34 - 2013-07-29 19:59 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{A5AAEC0A-FCED-463B-8253-DF06CA72A852}
2015-12-25 17:34 - 2013-07-04 16:03 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{543E03EB-DBE3-4153-BF76-93A72A0906BE}
2015-12-25 17:34 - 2013-05-27 13:31 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{C2A224CD-85CF-4C08-8DE7-0B08F22EF9A2}
2015-12-25 17:34 - 2013-05-12 12:35 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{8081869E-EE04-49F8-A10C-4CA81E195A73}
2015-12-25 17:34 - 2013-03-01 14:04 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{C71D09F5-BE28-425E-80B1-12E280EFD955}
2015-12-25 17:34 - 2013-02-10 09:26 - 00000000 ____D C:\Users\GROLLEMUND\AppData\LocalLow\Temp
2015-12-25 17:34 - 2013-01-18 13:33 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{F7548C23-D311-4647-B2A5-AA08694FD310}
2015-12-25 17:34 - 2013-01-18 13:33 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\{99D23DC3-548F-40FE-AF54-A49139C3D611}
2015-12-25 17:34 - 2013-01-02 21:16 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\HpUpdate
2015-12-25 17:34 - 2012-05-17 20:42 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\ArcSoft
2015-12-25 17:34 - 2012-05-06 17:58 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\Mozilla
2015-12-25 17:34 - 2012-05-03 18:30 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\Icones
2015-12-25 17:34 - 2012-01-07 18:15 - 00000000 ____D C:\Users\GROLLEMUND\AppData\LocalLow\Sun
2015-12-25 17:34 - 2012-01-02 18:41 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\Sony Corporation
2015-12-25 17:34 - 2011-12-27 22:56 - 00000000 ____D C:\Users\GROLLEMUND\AppData\LocalLow\Adobe
2015-12-25 17:34 - 2011-12-27 22:47 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\SoftGrid Client
2015-12-25 17:34 - 2011-12-24 11:21 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\AOL
2015-12-25 17:34 - 2011-12-24 10:43 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\NVIDIA
2015-12-25 17:34 - 2011-12-24 10:22 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\Intel Corporation
2015-12-25 17:34 - 2011-12-24 10:22 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\Atheros
2015-12-25 17:34 - 2011-12-24 10:21 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\VirtualStore
2015-12-25 17:34 - 2011-12-24 10:20 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\Media Center Programs
2015-12-25 17:34 - 2011-12-24 10:20 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Roaming\Macromedia
2015-12-25 17:32 - 2015-08-07 16:02 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\NetworkTiles
2015-12-25 17:32 - 2012-06-15 10:19 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\MyFujifilm
2015-12-25 17:32 - 2012-05-06 17:58 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\Mozilla
2015-12-25 17:31 - 2015-08-08 13:21 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\MicrosoftEdge
2015-12-25 17:31 - 2012-09-07 18:44 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\Microsoft Help
2015-12-25 17:06 - 2015-10-28 17:27 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\Apple
2015-12-25 17:06 - 2015-08-09 18:16 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\Comms
2015-12-25 17:06 - 2015-08-07 11:00 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2015-12-25 17:06 - 2015-07-10 13:22 - 00000000 ____D C:\ProgramData\USOShared
2015-12-25 17:06 - 2015-07-10 12:04 - 00000000 ____D C:\ProgramData\USOPrivate
2015-12-25 17:06 - 2015-06-04 09:56 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\GWX
2015-12-25 17:06 - 2015-03-18 10:15 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\Amazon
2015-12-25 17:06 - 2015-01-18 11:19 - 00000000 ____D C:\ProgramData\{B4965C55-E414-8DD3-5592-FD5185102EDF}
2015-12-25 17:06 - 2014-11-12 18:36 - 00000000 __SHD C:\Users\GROLLEMUND\AppData\Local\EmieBrowserModeList
2015-12-25 17:06 - 2014-05-31 16:26 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\Macromedia
2015-12-25 17:06 - 2014-04-19 16:41 - 00000000 __SHD C:\Users\GROLLEMUND\AppData\Local\EmieUserList
2015-12-25 17:06 - 2014-04-19 16:41 - 00000000 __SHD C:\Users\GROLLEMUND\AppData\Local\EmieSiteList
2015-12-25 17:06 - 2013-09-12 14:18 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\Apps\2.0
2015-12-25 17:06 - 2013-08-02 20:50 - 00000000 ____D C:\ProgramData\tmp
2015-12-25 17:06 - 2013-01-02 21:14 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\HP
2015-12-25 17:06 - 2012-06-15 10:18 - 00000000 ____D C:\ProgramData\MyFujifilm
2015-12-25 17:06 - 2012-05-17 20:42 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\ArcSoft
2015-12-25 17:06 - 2012-04-07 13:15 - 00000000 ____D C:\ProgramData\VirtualizedApplications
2015-12-25 17:06 - 2011-12-28 15:58 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\GotoBride2010
2015-12-25 17:06 - 2011-12-26 20:38 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\CrashDumps
2015-12-25 17:06 - 2011-12-24 11:19 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\AOL
2015-12-25 17:06 - 2011-12-24 10:22 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\BMExplorer
2015-12-25 17:06 - 2011-08-27 03:49 - 00000000 ____D C:\ProgramData\Skype
2015-12-25 17:06 - 2011-08-27 03:14 - 00000000 ____D C:\ProgramData\Sony Corporation
2015-12-25 17:06 - 2011-08-27 03:12 - 00000000 ____D C:\ProgramData\Sun
2015-12-25 17:05 - 2015-08-07 15:20 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2015-12-25 17:05 - 2012-05-06 17:58 - 00000000 ____D C:\ProgramData\Mozilla
2015-12-25 17:05 - 2011-08-27 03:12 - 00000000 ____D C:\ProgramData\McAfee
2015-12-25 17:04 - 2015-10-28 17:26 - 00000000 ____D C:\ProgramData\Apple
2015-12-25 17:04 - 2015-07-10 12:04 - 00000000 ____D C:\ProgramData\Comms
2015-12-25 17:04 - 2015-04-16 15:45 - 00000000 ____D C:\sh4ldr
2015-12-25 17:04 - 2015-01-30 10:40 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-12-25 17:04 - 2015-01-20 17:11 - 00000000 ____D C:\ProgramData\1333ca800004ea4
2015-12-25 17:04 - 2014-03-15 14:22 - 00000000 ____D C:\ProgramData\Google
2015-12-25 17:04 - 2013-08-02 20:50 - 00000000 ____D C:\ProgramData\hps
2015-12-25 17:04 - 2013-01-02 21:16 - 00000000 ____D C:\ProgramData\HP
2015-12-25 17:04 - 2012-01-07 17:46 - 00000000 ____D C:\Update
2015-12-25 17:04 - 2012-01-01 17:25 - 00000000 ____D C:\ProgramData\AOL OCP
2015-12-25 17:04 - 2011-12-24 11:21 - 00000000 ____D C:\ProgramData\Macromedia
2015-12-25 17:04 - 2011-12-24 11:18 - 00000000 ____D C:\ProgramData\AOL
2015-12-25 17:04 - 2011-12-24 10:28 - 00000000 ____D C:\My Music
2015-12-25 17:04 - 2011-12-24 10:28 - 00000000 ____D C:\Install AIM
2015-12-25 17:04 - 2011-08-27 04:03 - 00000000 ____D C:\ProgramData\Atheros
2015-12-25 17:04 - 2011-08-27 03:46 - 00000000 ___HD C:\SPLASH.SYS
2015-12-25 17:04 - 2011-08-27 03:46 - 00000000 ___HD C:\SPLASH.000
2015-12-25 17:04 - 2011-08-27 03:29 - 00000000 ____D C:\ProgramData\ArcSoft
2015-12-25 17:04 - 2011-08-27 03:27 - 00000000 ____D C:\ProgramData\Adobe
2015-12-25 17:04 - 2011-08-27 03:15 - 00000000 ____D C:\temp
2015-12-25 17:04 - 2011-08-27 03:15 - 00000000 ____D C:\Documentation
2015-12-25 17:04 - 2011-08-27 02:59 - 00000000 ____D C:\Intel
2015-12-25 16:54 - 2011-12-24 10:28 - 00000000 ____D C:\aolextras
2015-12-21 13:02 - 2011-08-27 03:13 - 00000000 ____D C:\Program Files (x86)\McAfee
2015-12-21 12:59 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-12-17 15:18 - 2015-08-07 11:27 - 00002258 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-12-12 17:03 - 2015-08-07 15:21 - 00002458 _____ C:\Users\GROLLEMUND\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-12-09 04:39 - 2010-11-21 04:27 - 00301728 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2015-12-08 15:20 - 2012-04-07 13:17 - 00000000 ____D C:\Users\GROLLEMUND\AppData\Local\ElevatedDiagnostics
2015-12-05 15:11 - 2014-05-15 16:47 - 00004178 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1cf7054f75a4e7e
2015-12-05 15:11 - 2013-09-12 14:18 - 00003916 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
==================== Fichiers à la racine de certains dossiers =======
2014-02-20 16:34 - 2014-02-20 16:34 - 49940480 _____ () C:\Program Files (x86)\GUTE9F2.tmp
2011-12-26 18:23 - 2011-12-26 18:23 - 0278528 _____ () C:\Program Files (x86)\Common Files\FDEUnInstaller.exe
2015-02-07 17:35 - 2015-02-10 10:01 - 0000020 _____ () C:\Users\GROLLEMUND\AppData\Roaming\appdataFr3.bin
2015-12-25 17:35 - 2015-12-25 17:35 - 0010654 _____ () C:\Users\GROLLEMUND\AppData\Roaming\how_recover+mbr.html
2015-12-25 17:35 - 2015-12-25 17:35 - 0002411 _____ () C:\Users\GROLLEMUND\AppData\Roaming\how_recover+mbr.txt
2013-09-24 20:17 - 2014-12-08 15:55 - 0000260 _____ () C:\Users\GROLLEMUND\AppData\Roaming\WB.CFG
2015-12-25 17:34 - 2015-12-25 17:34 - 0010654 _____ () C:\Users\GROLLEMUND\AppData\Roaming\Microsoft\how_recover+mbr.html
2015-12-25 17:34 - 2015-12-25 17:34 - 0002411 _____ () C:\Users\GROLLEMUND\AppData\Roaming\Microsoft\how_recover+mbr.txt
2015-12-21 13:09 - 2015-12-21 13:09 - 0010654 _____ () C:\Users\GROLLEMUND\AppData\Local\how_recover+ken.html
2015-12-21 13:09 - 2015-12-21 13:09 - 0002411 _____ () C:\Users\GROLLEMUND\AppData\Local\how_recover+ken.txt
2015-12-25 17:06 - 2015-12-25 17:44 - 0010654 _____ () C:\Users\GROLLEMUND\AppData\Local\how_recover+mbr.html
2015-12-25 17:06 - 2015-12-25 17:44 - 0002411 _____ () C:\Users\GROLLEMUND\AppData\Local\how_recover+mbr.txt
2015-12-20 17:23 - 2015-12-20 17:23 - 0010654 _____ () C:\Users\GROLLEMUND\AppData\Local\how_recover+ogt.html
2015-12-20 17:23 - 2015-12-20 17:23 - 0002411 _____ () C:\Users\GROLLEMUND\AppData\Local\how_recover+ogt.txt
2014-12-22 12:17 - 2014-12-22 12:17 - 0000000 _____ () C:\Users\GROLLEMUND\AppData\Local\{7CB7F887-2E56-48C0-91F5-0235049FB333}
2015-12-21 13:08 - 2015-12-21 13:09 - 0010654 _____ () C:\ProgramData\how_recover+ken.html
2015-12-21 13:08 - 2015-12-21 13:09 - 0002411 _____ () C:\ProgramData\how_recover+ken.txt
2015-12-25 17:04 - 2015-12-25 17:06 - 0010654 _____ () C:\ProgramData\how_recover+mbr.html
2015-12-25 17:04 - 2015-12-25 17:06 - 0002411 _____ () C:\ProgramData\how_recover+mbr.txt
2015-12-20 17:18 - 2015-12-20 17:23 - 0010654 _____ () C:\ProgramData\how_recover+ogt.html
2015-12-20 17:18 - 2015-12-20 17:23 - 0002411 _____ () C:\ProgramData\how_recover+ogt.txt
Fichiers à déplacer ou supprimer:
====================
C:\Users\Public\AlexaNSISPlugin.5656.dll
Certains fichiers dans TEMP:
====================
C:\Users\GROLLEMUND\AppData\Local\Temp\Quarantine.exe
C:\Users\GROLLEMUND\AppData\Local\Temp\sqlite3.dll
C:\Users\GROLLEMUND\AppData\Local\Temp\{913A6FED-0352-4D9F-8BAA-65DC2B452383}.dll
C:\Users\GROLLEMUND\AppData\Local\Temp\{A3C46BD9-1844-4A56-BAB8-597D5B58016E}.dll
C:\Users\GROLLEMUND\AppData\Local\Temp\{BB6AB160-3974-4F5E-8F1C-58EF9909238A}.dll
C:\Users\GROLLEMUND\AppData\Local\Temp\{E368B8A8-4108-47E1-AB0B-CE802CC3F18C}.dll
==================== Bamital & volsnap =================
(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)
C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement
C:\WINDOWS\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement
LastRegBack: 2015-12-30 11:01
==================== Fin de FRST.txt ============================