---------- | AdsFix | g3n-h@ckm@n | 3_28.05.2016.3 ----- Vista | 7 | 8 | 8.1 | 10 - 32/64 bits ----- Start 16:14:35 - 28/05/2016 Mis a jour le : 28/05/2016 | 14.20 par g3n-h@ckm@n Contact : http://www.sosvirus.net Assistance : http://www.sosvirus.net/forum-virus-securite.html Feedbacks : http://www.sosvirus.net/feedbacks-t75915.html Facebook : https://www.facebook.com/AdsFixAntiAdware C:\Users\Guy\Desktop\AdsFix(1).exe Boot: Normal boot [Guy (Administrator)] - [GUY-PC] - (France [040C]) SID = S-1-5-21-3116178586-95006136-302349951-1000 || [477579205e5e] PC : PEGATRON CORPORATION - Narra6 - WC954AA#ABF Processor : X64 - 2712 - AMD Athlon(tm) II X2 215 Processor Bios : American Megatrends Inc. - 11/06/2009 - V.5.15 CoreTemp : -1� C - Max : � C Syst�me : Windows 10 Home (64 bits) Core Memoire RAM = Total (MB) : 3145 | Libre (MB) : 892 Pagefile = Total (MB) : 7383 | Libre (MB) : 3702 Virtuelle = Total (MB) : 4194 | Libre (MB) : 3921 C:\ -> [Fixed] | [COMPAQ] | Total : 453.65 Go | Free : 401.39 Go -> NTFS [ATA] D:\ -> [Fixed] | [FACTORY_IMAGE] | Total : 11.58 Go | Free : 1.56 Go -> NTFS [ATA] E:\ -> [CDROM] | [DGN1000v3] | Total : 0.06 Go | Free : 0 Go -> CDFS [ATA] F:\ -> [Removable] | [] | Total : 1.87 Go | Free : 1 Go -> FAT [USB] Registre sauvegard� , pour restaurer : Cliquer sur Options & Restaurer le registre (C:\AdsFix\Save\Registry [28.05.2016 @ 16_14_26]) ou un element Restauration de fichiers ou dossiers supprimes par erreur : Cliquer sur Options & Restaurer Fichiers ou dossiers, Selectionner un element >> "Restaurer" ---------- | Mises a jour Windows Aucune mise a jour d�tect�e !!! Microsoft : + ---------- | Navigateurs IE : 11.0.10586.20 (© Microsoft Corporation. Tous droits réservés.) FF : 46.0.1.5966 (©Firefox and Mozilla Developers; available under the MPL 2 license.) MS-Edge : 11.0.10586.306 (© Microsoft Corporation. All rights reserved.) ---------- | Security (atcav : 3) FW : Suite de Sécurité Orange Disabled WMI : OK WU: Windows Update Service [Manual(3)] = en cours AS: Windows Defender [Auto(2)] = en cours FW: Windows FireWall Service [Auto(2)] = en cours WMI: Windows Management Instrumentation (System Information) [Auto(2)] = en cours ---------- | FlashPlayer ActiveX : 21.0.0.242 Plugin : 21.0.0.242 ---------- | Processes closed 1104 | [Owner : Système |Parent : 800(services.exe)] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 353.82.) - (8.17.13.5382) = C:\Windows\System32\nvvsvc.exe 1148 | [Owner : Système |Parent : 800(services.exe)] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - (7.17.13.5382) = C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe 1300 | [Owner : SERVICE LOCAL |Parent : 480(svchost.exe)] - (.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes en mode utilisateur.) - (10.0.10586.0) = C:\Windows\System32\WUDFHost.exe 1468 | [Owner : Système |Parent : 1104()] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) - (8.17.13.5382) = C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe 1476 | [Owner : Système |Parent : 1104()] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 353.82.) - (8.17.13.5382) = C:\Windows\System32\nvvsvc.exe 1892 | [Owner : Système |Parent : 800(services.exe)] - (.Hewlett-Packard Company - LightScribe Service.) - (1.18.8.1) = C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe 2168 | [Owner : Système |Parent : 800(services.exe)] - (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) - (2.5.14.5) = C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe 2180 | [Owner : SERVICE LOCAL |Parent : 480(svchost.exe)] - (.Microsoft Corporation - Device Association Framework Provider Host.) - (10.0.10586.0) = C:\Windows\System32\dasHost.exe 2248 | [Owner : SERVICE RÉSEAU |Parent : 800(services.exe)] - (.Microsoft Corporation - Message Queuing Service.) - (10.0.10586.0) = C:\Windows\System32\mqsvc.exe 2592 | [Owner : Système |Parent : 800(services.exe)] - (.NVIDIA Corporation - NVIDIA Network Service.) - (2.4.13.69) = C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe 2600 | [Owner : Système |Parent : 800(services.exe)] - (.pdfforge GmbH - PDF Architect 3.) - (3.1.1.24851) = C:\Program Files (x86)\PDF Architect 3\creator-ws.exe 2632 | [Owner : Système |Parent : 800(services.exe)] - (.NVIDIA Corporation - NVIDIA Streamer Service.) - (4.1.1988.8932) = C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe 2648 | [Owner : Système |Parent : 800(services.exe)] - (.Microsoft Corp. - Microsoft SeaPort Search Enhancement Broker.) - (1.2.123.0) = C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe 3120 | [Owner : Guy |Parent : 588(svchost.exe)] - (.Microsoft Corporation - Processus hôte pour Tâches Windows.) - (10.0.10586.0) = C:\Windows\System32\taskhostw.exe 3904 | [Owner : Guy |Parent : 912(svchost.exe)] - (.Microsoft Corporation - Runtime Broker.) - (10.0.10586.0) = C:\Windows\System32\RuntimeBroker.exe 4320 | [Owner : Guy |Parent : 912(svchost.exe)] - (.-.) - (10.1.2123.36) = C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe 5716 | [Owner : Guy |Parent : 1468()] - (.NVIDIA Corporation - NVIDIA Settings.) - (7.17.13.5382) = C:\Program Files\NVIDIA Corporation\Display\nvtray.exe 5868 | [Owner : Guy |Parent : 4284(explorer.exe)] - (.NVIDIA Corporation - NVIDIA Backend.) - (20.0.14.0) = C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe 5976 | [Owner : Guy |Parent : 4284(explorer.exe)] - (.Hewlett-Packard - HP Advisor.) - (3.3.9512.3162) = C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe 1800 | [Owner : Guy |Parent : 6036()] - (.Hewlett-Packard - HP Remote Solution.) - (1.0.1.0) = C:\Program Files (x86)\Hewlett-Packard\HP Remote Solution\HP_Remote_Solution.exe 484 | [Owner : Guy |Parent : 6036()] - (.Oracle Corporation - Java Update Scheduler.) - (2.8.65.17) = C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe 2204 | [Owner : Guy |Parent : 4284(explorer.exe)] - (.Mozilla Corporation - Firefox.) - (46.0.1.5966) = C:\Program Files (x86)\Mozilla Firefox\firefox.exe 2528 | [Owner : SERVICE LOCAL |Parent : 800(services.exe)] - (.Microsoft Corporation - PresentationFontCache.exe.) - (3.0.6920.8693) = C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe 6572 | [Owner : Guy |Parent : 800(services.exe)] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.10586.0) = C:\Windows\System32\svchost.exe 7148 | [Owner : Système |Parent : 800(services.exe)] - (.WildTangent - WildTangent Games App Integration Service.) - (4.3.0.11) = C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe 6252 | [Owner : Système |Parent : 800(services.exe)] - (.Hewlett-Packard - HP Health Check Service.) - (3.1.7.1) = C:\Program Files (x86)\Hewlett-Packard\HP Health Check\HPHC_Service.exe 6300 | [Owner : Guy |Parent : 912(svchost.exe)] - (.Microsoft Corporation - Application Frame Host.) - (10.0.10586.0) = C:\Windows\System32\ApplicationFrameHost.exe 3264 | [Owner : Système |Parent : 800(services.exe)] - (.Microsoft Corporation - Application sous-système spouleur.) - (10.0.10586.122) = C:\Windows\System32\spoolsv.exe 7796 | [Owner : Guy |Parent : 912(svchost.exe)] - (.Microsoft Corporation - InstallAgent.) - (10.0.10586.212) = C:\Windows\System32\InstallAgent.exe 6332 | [Owner : Guy |Parent : 484()] - (.Oracle Corporation - Java Update Checker.) - (2.8.65.17) = C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe 3812 | [Owner : Guy |Parent : 588(svchost.exe)] - (.Microsoft Corporation - Processus hôte pour Tâches Windows.) - (10.0.10586.0) = C:\Windows\System32\taskhostw.exe 7068 | [Owner : Guy |Parent : 4284(explorer.exe)] - (.Microsoft Corporation - Outil Capture d’écran.) - (10.0.10586.0) = C:\Windows\System32\SnippingTool.exe 1320 | [Owner : Guy |Parent : 912(svchost.exe)] - (.Microsoft Corporation - LockAppHost.) - (10.0.10586.306) = C:\Windows\System32\LockAppHost.exe 6532 | [Owner : Guy |Parent : 912(svchost.exe)] - (.-.) - (0.0.0.0) = C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe 6832 | [Owner : Système |Parent : 800(services.exe)] - (.Microsoft Corporation - Antimalware Service Executable.) - (4.9.10586.0) = C:\Program Files\Windows Defender\MsMpEng.exe 3708 | [Owner : SERVICE RÉSEAU |Parent : 956()] - (.Microsoft Corporation - Microsoft Malware Protection Command Line Utility.) - (4.9.10586.0) = C:\Program Files\Windows Defender\MpCmdRun.exe 3704 | [Owner : SERVICE RÉSEAU |Parent : 3108()] - (.Microsoft Corporation - Microsoft Malware Protection Command Line Utility.) - (4.9.10586.0) = C:\Program Files\Windows Defender\MpCmdRun.exe ---------- | Tasks Suppression : PCDRScheduledMaintenance Suppression : ExtendedServicePlan Suppression : ServicePlan ---------- | Services ---------- | AppCertDlls | AppInit_DLLs ---------- | DNSapi.dll C:\WINDOWS\System32\dnsapi.dll : \drivers\etc\hosts C:\WINDOWS\SysWOW64\dnsapi.dll : \drivers\etc\hosts ---------- | Hosts ---------- | SafeBoot ---------- | Winsock ---------- | DNS ---------- | Registre Suppression : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{5B19E2FF-0D56-4504-9795-2F3A4074CCE4} : C:\PROGRA~2\WIC4A1~1\MESSEN~1\vvpltfrm.dll # Suppression : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{79D2A12A-1AEC-4124-9733-F4E0DE751578} : C:\PROGRA~2\WIC4A1~1\MESSEN~1\vvpltfrm.dll # ---------- | AdsFix | g3n-h@ckm@n | 3_28.05.2016.3 ----- Vista | 7 | 8 | 8.1 | 10 - 32/64 bits ----- Start 23:26:48 - 28/05/2016 Mis a jour le : 28/05/2016 | 14.20 par g3n-h@ckm@n Contact : http://www.sosvirus.net Assistance : http://www.sosvirus.net/forum-virus-securite.html Feedbacks : http://www.sosvirus.net/feedbacks-t75915.html Facebook : https://www.facebook.com/AdsFixAntiAdware C:\Users\Guy\Desktop\AdsFix(1).exe Boot: Normal boot [Guy (Administrator)] - [GUY-PC] - (France [040C]) SID = S-1-5-21-3116178586-95006136-302349951-1000 || [477579205e5e] PC : PEGATRON CORPORATION - Narra6 - WC954AA#ABF Processor : X64 - 2712 - AMD Athlon(tm) II X2 215 Processor Bios : American Megatrends Inc. - 11/06/2009 - V.5.15 CoreTemp : -1� C - Max : � C Syst�me : Windows 10 Home (64 bits) Core Memoire RAM = Total (MB) : 3145 | Libre (MB) : 1715 Pagefile = Total (MB) : 7382 | Libre (MB) : 5540 Virtuelle = Total (MB) : 4194 | Libre (MB) : 3909 C:\ -> [Fixed] | [COMPAQ] | Total : 453.65 Go | Free : 403.39 Go -> NTFS [ATA] D:\ -> [Fixed] | [FACTORY_IMAGE] | Total : 11.58 Go | Free : 1.56 Go -> NTFS [ATA] E:\ -> [CDROM] | [DGN1000v3] | Total : 0.06 Go | Free : 0 Go -> CDFS [ATA] F:\ -> [Removable] | [] | Total : 1.87 Go | Free : 1 Go -> FAT [USB] Registre sauvegard� , pour restaurer : Cliquer sur Options & Restaurer le registre (C:\AdsFix\Save\Registry [28.05.2016 @ 23_26_46]) ou un element Restauration de fichiers ou dossiers supprimes par erreur : Cliquer sur Options & Restaurer Fichiers ou dossiers, Selectionner un element >> "Restaurer" ---------- | Mises a jour Windows Aucune mise a jour d�tect�e !!! Microsoft : + ---------- | Navigateurs IE : 11.0.10586.20 (© Microsoft Corporation. Tous droits réservés.) FF : 46.0.1.5966 (©Firefox and Mozilla Developers; available under the MPL 2 license.) MS-Edge : 11.0.10586.306 (© Microsoft Corporation. All rights reserved.) ---------- | Security (atcav : 0) FW : Suite de Sécurité Orange Disabled WMI : OK WU: Windows Update Service [Manual(3)] = non en cours AS: Windows Defender [Auto(2)] = en cours FW: Windows FireWall Service [Auto(2)] = en cours WMI: Windows Management Instrumentation (System Information) [Auto(2)] = en cours ---------- | FlashPlayer ActiveX : 21.0.0.242 Plugin : 21.0.0.242 ---------- | Processes closed 6832 | [Owner : Système |Parent : 800(services.exe)] - (.Microsoft Corporation - Antimalware Service Executable.) - (4.9.10586.0) = C:\Program Files\Windows Defender\MsMpEng.exe 4768 | [Owner : SERVICE LOCAL |Parent : 480(svchost.exe)] - (.Microsoft Corporation - Device Association Framework Provider Host.) - (10.0.10586.0) = C:\Windows\System32\dasHost.exe 2452 | [Owner : SERVICE LOCAL |Parent : 480(svchost.exe)] - (.Microsoft Corporation - Windows Driver Foundation - Processus hôte de l’infrastructure de pilotes en mode utilisateur.) - (10.0.10586.0) = C:\Windows\System32\WUDFHost.exe 6836 | [Owner : SERVICE LOCAL |Parent : 800(services.exe)] - (.Microsoft Corporation - PresentationFontCache.exe.) - (3.0.6920.8693) = C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe 4468 | [Owner : Système |Parent : 800(services.exe)] - (.Microsoft Corporation - Application sous-système spouleur.) - (10.0.10586.122) = C:\Windows\System32\spoolsv.exe 2508 | [Owner : Guy |Parent : 800(services.exe)] - (.Microsoft Corporation - Processus hôte pour les services Windows.) - (10.0.10586.0) = C:\Windows\System32\svchost.exe 3456 | [Owner : Système |Parent : 800(services.exe)] - (.Hewlett-Packard - HP Health Check Service.) - (3.1.7.1) = C:\Program Files (x86)\Hewlett-Packard\HP Health Check\HPHC_Service.exe 3080 | [Owner : SERVICE RÉSEAU |Parent : 800(services.exe)] - (.Microsoft Corporation - Message Queuing Service.) - (10.0.10586.0) = C:\Windows\System32\mqsvc.exe 11692 | [Owner : Guy |Parent : 588(svchost.exe)] - (.Microsoft Corporation - Processus hôte pour Tâches Windows.) - (10.0.10586.0) = C:\Windows\System32\taskhostw.exe 3540 | [Owner : Guy |Parent : 912(svchost.exe)] - (.-.) - (10.1.2123.36) = C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe 5104 | [Owner : Système |Parent : 800(services.exe)] - (.Microsoft Corporation - Installateur Windows®.) - (5.0.10586.0) = C:\Windows\System32\msiexec.exe 2908 | [Owner : SERVICE RÉSEAU |Parent : 800(services.exe)] - (.Microsoft Corporation - Service Partage réseau du Lecteur Windows Media.) - (12.0.10586.162) = C:\Program Files\Windows Media Player\wmpnetwk.exe 8560 | [Owner : SERVICE LOCAL |Parent : 800(services.exe)] - (.Microsoft Corporation - Microsoft Network Realtime Inspection Service.) - (4.9.10586.0) = C:\Program Files\Windows Defender\NisSrv.exe ---------- | Tasks ---------- | Services ---------- | AppCertDlls | AppInit_DLLs ---------- | DNSapi.dll C:\WINDOWS\System32\dnsapi.dll : \drivers\etc\hosts C:\WINDOWS\SysWOW64\dnsapi.dll : \drivers\etc\hosts ---------- | Hosts ---------- | SafeBoot ---------- | Winsock ---------- | DNS ---------- | Registre Suppression : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\pcdrcui.exe Suppression : HKU\S-1-5-21-3116178586-95006136-302349951-1000\SOFTWARE\ICSW1.14 Suppression : HKU\S-1-5-21-3116178586-95006136-302349951-1000\SOFTWARE\PC-Doctor Suppression : HKU\S-1-5-21-3116178586-95006136-302349951-1000\SOFTWARE\ProductSetup Suppression : HKLM\SOFTWARE\PC-Doctor Suppression : HKLM\SOFTWARE\Wow6432Node\PC-Doctor Suppression : HKU\S-1-5-21-3116178586-95006136-302349951-1000\SOFTWARE\Telecharger Suppression : HKU\S-1-5-21-3116178586-95006136-302349951-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} : C:\Users\Guy\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{0633EE93-D776-472f-A0FF-E1416B8B2E3A}.ico Suppression : HKU\S-1-5-21-3116178586-95006136-302349951-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{8CDE19E6-71C2-4B46-89B7-35F6A18C571A} : 1 Suppression : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Suppression : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{8CDE19E6-71C2-4B46-89B7-35F6A18C571A} Suppression : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} ---------- | Dossiers | Fichiers Suppression : C:\Users\Public\Desktop\eBay.lnk (.-.) Suppression : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eBay.lnk (.-.) Suppression : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Jewel Quest Solitaire 2.lnk (.-.) Suppression : C:\Users\Guy\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{0633EE93-D776-472f-A0FF-E1416B8B2E3A}.ico (.-.) Suppression : C:\Users\Guy\AppData\LocalLow\Microsoft\Internet Explorer\Services\WinYahoo.ico (.-.) ---------- | .LNK ---------- | Ouverture extension inconnue ---------- | Proxy ---------- | Internet Explorer Reparation : [HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main]~[Local Page] : %11%\blank.htm -> C:\WINDOWS\System32\blank.htm Reparation : [HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main]~[Local Page] : %11%\blank.htm -> C:\WINDOWS\System32\blank.htm Reparation : [HKLM\SOFTWARE\WOW6432Node\Microsoft\Internet Explorer\Main]~[Local Page] : C:\Windows\SysWOW64\blank.htm -> C:\WINDOWS\System32\blank.htm Reparation : [HKU\S-1-5-21-3116178586-95006136-302349951-1000\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter]~[Enabled] : -> 2 Reparation : [HKU\S-1-5-21-3116178586-95006136-302349951-1000\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter]~[EnabledV8] : -> 1 Reparation : [HKU\S-1-5-21-3116178586-95006136-302349951-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet settings]~[WarNonBadCertReceving] : -> 1 Reparation : [HKU\S-1-5-21-3116178586-95006136-302349951-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet settings]~[WarNonHTTPSToHTTPRedirect] : -> 1 Reparation : [HKU\S-1-5-21-3116178586-95006136-302349951-1000\SOFTWARE\Microsoft\Internet Explorer\Toolbar]~[Locked] : 1 -> 0 ---------- | Yandex ---------- | Google Chrome ---------- | Chromium ---------- | Comodo Dragon ---------- | Firefox Suppression : C:\Users\Guy\AppData\Roaming\Mozilla\Firefox\Profiles\ofqnayan.default-1443711750370\user.js (.-.) Suppression : C:\Users\Guy\AppData\Roaming\Mozilla\Firefox\Profiles\ofqnayan.default-1443711750370\extensions\foebot@foebot.fr = ---------- | SeaMonkey ---------- | Pale moon ---------- | Opera ---------- | Spark ---------- | StartMenuInternet ---------- | Javascript ---------- | Firewall ---------- | ADS ---------- | Fichiers temporaires [All Users] Fichiers temporaires Suppression : 0 Ko [Default] Fichiers temporaires Suppression : 0 Ko [Default.migrated] Fichiers temporaires Suppression : 0 Ko [DefaultAppPool] Fichiers temporaires Suppression : 0 Ko [Guy] Fichiers temporaires Suppression : 72750 Ko [Public] Fichiers temporaires Suppression : 0 Ko [C:\WINDOWS\Temp] Fichiers temporaires Suppression : 14396 Ko [C:\Temp] Fichiers temporaires Suppression : 13 Ko Autre rapport ---------- | Listing ---------- | C:\Program Files (x86) [30/10/2015 08:28:30] - |D| - [603867.61 Ko] - C:\Program Files (x86)\Common Files [06/01/2010 04:39:02] - |D| - [911170.14 Ko] - C:\Program Files (x86)\Cyberlink [30/10/2015 09:24:28] - |ASH| - [0.17 Ko] - C:\Program Files (x86)\desktop.ini [06/01/2010 04:58:51] - |AD| - [92164.63 Ko] - C:\Program Files (x86)\EasyBits For Kids [21/09/2015 17:18:28] - |D| - [8072.22 Ko] - C:\Program Files (x86)\epson [06/01/2010 04:33:14] - |AD| - [248280.37 Ko] - C:\Program Files (x86)\Hewlett-Packard [06/01/2010 04:34:18] - |AD| - [3044.84 Ko] - C:\Program Files (x86)\hp [06/01/2010 04:55:25] - |AD| - [322951.34 Ko] - C:\Program Files (x86)\HP Games [06/01/2010 04:36:52] - |HD| - [63491 Ko] - C:\Program Files (x86)\InstallShield Installation Information [30/10/2015 09:24:24] - |D| - [2105.48 Ko] - C:\Program Files (x86)\Internet Explorer [06/09/2015 17:46:51] - |D| - [172609.73 Ko] - C:\Program Files (x86)\Java [08/09/2015 16:34:33] - |D| - [15652.4 Ko] - C:\Program Files (x86)\Lexmark P910 Series [06/01/2010 05:01:00] - |D| - [834.49 Ko] - C:\Program Files (x86)\Microsoft [08/09/2015 16:18:29] - |D| - [38914.43 Ko] - C:\Program Files (x86)\Microsoft Analysis Services [10/09/2015 18:46:30] - |D| - [1631.37 Ko] - C:\Program Files (x86)\Microsoft ASP.NET [06/09/2015 13:27:00] - |AD| - [1028851.23 Ko] - C:\Program Files (x86)\Microsoft Office [06/01/2010 05:01:42] - |AD| - [3550.43 Ko] - C:\Program Files (x86)\Microsoft SQL Server Compact Edition [06/01/2010 05:02:20] - |D| - [2250.33 Ko] - C:\Program Files (x86)\Microsoft Sync Framework [08/09/2015 16:21:31] - |D| - [319.14 Ko] - C:\Program Files (x86)\Microsoft Synchronization Services [08/09/2015 16:19:29] - |AD| - [1345.74 Ko] - C:\Program Files (x86)\Microsoft Visual Studio 8 [06/09/2015 13:26:37] - |AD| - [141286.19 Ko] - C:\Program Files (x86)\Microsoft Works [30/10/2015 09:24:24] - |D| - [7984.37 Ko] - C:\Program Files (x86)\Microsoft.NET [06/05/2016 00:16:35] - |AD| - [94596.91 Ko] - C:\Program Files (x86)\Mozilla Firefox [06/09/2015 17:36:01] - |D| - [268.08 Ko] - C:\Program Files (x86)\Mozilla Maintenance Service [25/12/2015 04:50:11] - |AD| - [25.9 Ko] - C:\Program Files (x86)\MSBuild [25/12/2015 05:03:55] - |D| - [243374.62 Ko] - C:\Program Files (x86)\NVIDIA Corporation [06/01/2010 04:55:25] - |RD| - [1321.27 Ko] - C:\Program Files (x86)\Online Services [29/09/2015 17:43:16] - |D| - [0.85 Ko] - C:\Program Files (x86)\Opera [08/09/2015 15:19:09] - |D| - [179826.8 Ko] - C:\Program Files (x86)\Orange [29/09/2015 18:08:53] - |AD| - [267442.79 Ko] - C:\Program Files (x86)\PDF Architect 3 [06/01/2010 04:36:53] - |D| - [47300.76 Ko] - C:\Program Files (x86)\Realtek [25/12/2015 04:50:11] - |D| - [37549.25 Ko] - C:\Program Files (x86)\Reference Assemblies [06/01/2010 04:51:17] - |D| - [1803.26 Ko] - C:\Program Files (x86)\Symantec [06/01/2010 04:36:52] - |HD| - [0 Ko] - C:\Program Files (x86)\Temp [25/12/2015 05:04:17] - |HD| - [0 Ko] - C:\Program Files (x86)\Uninstall Information [10/09/2015 18:21:30] - |D| - [16995.87 Ko] - C:\Program Files (x86)\WildTangent Games [30/10/2015 09:24:24] - |D| - [1431.5 Ko] - C:\Program Files (x86)\Windows Defender [06/01/2010 04:59:27] - |AD| - [288509.96 Ko] - C:\Program Files (x86)\Windows Live [06/01/2010 05:00:45] - |AD| - [239.37 Ko] - C:\Program Files (x86)\Windows Live SkyDrive [30/10/2015 09:24:24] - |D| - [5822 Ko] - C:\Program Files (x86)\Windows Mail [30/10/2015 09:24:24] - |D| - [3264.58 Ko] - C:\Program Files (x86)\Windows Media Player [30/10/2015 09:24:24] - |D| - [214.91 Ko] - C:\Program Files (x86)\Windows Multimedia Platform [30/10/2015 09:24:24] - |D| - [7398.06 Ko] - C:\Program Files (x86)\Windows NT [30/10/2015 09:24:24] - |D| - [5355.69 Ko] - C:\Program Files (x86)\Windows Photo Viewer [30/10/2015 09:24:24] - |D| - [214.91 Ko] - C:\Program Files (x86)\Windows Portable Devices [30/10/2015 09:24:24] - |SHD| - [0 Ko] - C:\Program Files (x86)\Windows Sidebar [30/10/2015 09:24:24] - |SD| - [3507.36 Ko] - C:\Program Files (x86)\WindowsPowerShell ---------- | C:\Program Files [30/10/2015 08:28:30] - |D| - [84874.48 Ko] - C:\Program Files\Common Files [30/10/2015 09:24:28] - |ASH| - [0.17 Ko] - C:\Program Files\desktop.ini [14/07/2009 07:32:38] - |D| - [0 Ko] - C:\Program Files\DVD Maker [06/09/2015 13:23:57] - |SHD| - [84874.48 Ko] - C:\Program Files\Fichiers communs [06/01/2010 04:34:10] - |D| - [356.26 Ko] - C:\Program Files\Hewlett-Packard [30/10/2015 09:24:24] - |D| - [2711.71 Ko] - C:\Program Files\Internet Explorer [14/07/2009 07:32:38] - |D| - [0.18 Ko] - C:\Program Files\Microsoft Games [08/09/2015 16:19:07] - |D| - [22311.26 Ko] - C:\Program Files\Microsoft Office [25/12/2015 04:50:10] - |D| - [25.15 Ko] - C:\Program Files\MSBuild [25/12/2015 05:03:55] - |D| - [1240797.42 Ko] - C:\Program Files\NVIDIA Corporation [06/01/2010 04:45:44] - |AD| - [150387.79 Ko] - C:\Program Files\PC-Doctor for Windows [06/01/2010 04:38:23] - |AD| - [2127.38 Ko] - C:\Program Files\PlayReady [25/12/2015 05:03:35] - |D| - [30879.41 Ko] - C:\Program Files\Realtek [25/12/2015 04:50:10] - |D| - [35987.17 Ko] - C:\Program Files\Reference Assemblies [10/07/2015 14:21:54] - |HD| - [0 Ko] - C:\Program Files\Uninstall Information [30/10/2015 09:24:24] - |D| - [11132.96 Ko] - C:\Program Files\Windows Defender [30/10/2015 21:03:03] - |D| - [8764.12 Ko] - C:\Program Files\Windows Journal [30/10/2015 09:24:24] - |D| - [6174 Ko] - C:\Program Files\Windows Mail [30/10/2015 09:24:24] - |D| - [5268.11 Ko] - C:\Program Files\Windows Media Player [30/10/2015 09:24:24] - |D| - [252.23 Ko] - C:\Program Files\Windows Multimedia Platform [30/10/2015 09:24:24] - |D| - [7678.06 Ko] - C:\Program Files\Windows NT [30/10/2015 09:24:24] - |D| - [6231.69 Ko] - C:\Program Files\Windows Photo Viewer [30/10/2015 09:24:24] - |D| - [252.23 Ko] - C:\Program Files\Windows Portable Devices [30/10/2015 09:24:24] - |SHD| - [2778.5 Ko] - C:\Program Files\Windows Sidebar [30/10/2015 09:24:24] - |HD| - [1158066.55 Ko] - C:\Program Files\WindowsApps [30/10/2015 09:24:24] - |SD| - [3675.81 Ko] - C:\Program Files\WindowsPowerShell ---------- | C:\Program Files (x86)\Common Files [11/09/2015 07:32:08] - |AD| - [97.65 Ko] - C:\Program Files (x86)\Common Files\DESIGNER [06/01/2010 04:36:50] - |D| - [3896.41 Ko] - C:\Program Files (x86)\Common Files\InstallShield [16/11/2015 12:55:47] - |D| - [1910.64 Ko] - C:\Program Files (x86)\Common Files\Java [06/01/2010 04:43:41] - |AD| - [36951.85 Ko] - C:\Program Files (x86)\Common Files\LightScribe [06/01/2010 04:43:41] - |AD| - [55.33 Ko] - C:\Program Files (x86)\Common Files\LS Getting Started [30/10/2015 09:24:24] - |AD| - [272660.71 Ko] - C:\Program Files (x86)\Common Files\Microsoft Shared [30/10/2015 09:24:24] - |D| - [2.64 Ko] - C:\Program Files (x86)\Common Files\Services [25/12/2015 05:10:54] - |D| - [40131.91 Ko] - C:\Program Files (x86)\Common Files\SpeechEngines [30/10/2015 09:24:24] - |D| - [10051.75 Ko] - C:\Program Files (x86)\Common Files\System [06/01/2010 04:59:41] - |D| - [238108.72 Ko] - C:\Program Files (x86)\Common Files\Windows Live ---------- | C:\Program Files\Common Files [25/12/2015 05:04:37] - |D| - [133.38 Ko] - C:\Program Files\Common Files\EPSON [30/10/2015 09:24:24] - |AD| - [73894.08 Ko] - C:\Program Files\Common Files\microsoft shared [30/10/2015 09:24:24] - |D| - [2.64 Ko] - C:\Program Files\Common Files\Services [25/12/2015 05:10:47] - |D| - [585 Ko] - C:\Program Files\Common Files\SpeechEngines [30/10/2015 09:24:24] - |D| - [10259.39 Ko] - C:\Program Files\Common Files\System ---------- | C:\Users\Guy [06/09/2015 17:47:26] - |D| - [0.11 Ko] - C:\Users\Guy\.oracle_jre_usage [25/12/2015 05:07:54] - |HD| - [12347992.5 Ko] - C:\Users\Guy\AppData [25/12/2015 05:07:54] - |SHD| - [341264.65 Ko] - C:\Users\Guy\Application Data [07/10/2015 18:36:46] - |D| - [1008633 Ko] - C:\Users\Guy\backup outlook [06/09/2015 13:44:59] - |RD| - [67.17 Ko] - C:\Users\Guy\Contacts [25/12/2015 05:07:54] - |SHD| - [1.28 Ko] - C:\Users\Guy\Cookies [06/09/2015 13:24:05] - |RD| - [72351.82 Ko] - C:\Users\Guy\Desktop [06/09/2015 13:24:05] - |RD| - [11566.19 Ko] - C:\Users\Guy\Documents [06/09/2015 13:24:05] - |RD| - [648740.25 Ko] - C:\Users\Guy\Downloads [06/09/2015 13:24:05] - |RD| - [3.51 Ko] - C:\Users\Guy\Favorites [06/09/2015 13:24:05] - |RD| - [2.42 Ko] - C:\Users\Guy\Links [25/12/2015 05:07:54] - |SHD| - [11919382.09 Ko] - C:\Users\Guy\Local Settings [23/10/2015 15:56:36] - |D| - [1304.63 Ko] - C:\Users\Guy\Lyon [25/12/2015 05:07:54] - |SHD| - [48.72 Ko] - C:\Users\Guy\Menu Démarrer [25/12/2015 05:07:54] - |SHD| - [11566.19 Ko] - C:\Users\Guy\Mes documents [25/12/2015 05:07:54] - |SHD| - [0 Ko] - C:\Users\Guy\Modèles [06/09/2015 13:24:05] - |RD| - [0.49 Ko] - C:\Users\Guy\Music [25/12/2015 05:07:53] - |ASH| - [2816 Ko] - C:\Users\Guy\NTUSER.DAT [25/12/2015 05:07:54] - |ASH| - [64 Ko] - C:\Users\Guy\ntuser.dat.LOG1 [25/12/2015 05:07:54] - |ASH| - [748 Ko] - C:\Users\Guy\ntuser.dat.LOG2 [22/05/2016 15:12:30] - |ASH| - [1024 Ko] - C:\Users\Guy\NTUSER.DAT{8d8662e2-aab3-11e5-b66f-f1e437d90ec2}.TxR.0.regtrans-ms [22/05/2016 15:12:30] - |ASH| - [1024 Ko] - C:\Users\Guy\NTUSER.DAT{8d8662e2-aab3-11e5-b66f-f1e437d90ec2}.TxR.1.regtrans-ms [22/05/2016 15:12:30] - |ASH| - [1024 Ko] - C:\Users\Guy\NTUSER.DAT{8d8662e2-aab3-11e5-b66f-f1e437d90ec2}.TxR.2.regtrans-ms [22/05/2016 15:12:30] - |ASH| - [64 Ko] - C:\Users\Guy\NTUSER.DAT{8d8662e2-aab3-11e5-b66f-f1e437d90ec2}.TxR.blf [25/12/2015 05:07:54] - |ASH| - [64 Ko] - C:\Users\Guy\NTUSER.DAT{8d8662e3-aab3-11e5-b66f-f1e437d90ec2}.TM.blf [25/12/2015 05:07:54] - |ASH| - [512 Ko] - C:\Users\Guy\NTUSER.DAT{8d8662e3-aab3-11e5-b66f-f1e437d90ec2}.TMContainer00000000000000000001.regtrans-ms [25/12/2015 05:07:54] - |ASH| - [512 Ko] - C:\Users\Guy\NTUSER.DAT{8d8662e3-aab3-11e5-b66f-f1e437d90ec2}.TMContainer00000000000000000002.regtrans-ms [25/12/2015 13:20:06] - |ASH| - [0.02 Ko] - C:\Users\Guy\ntuser.ini [08/09/2015 14:36:55] - |RD| - [0.09 Ko] - C:\Users\Guy\OneDrive [06/09/2015 13:24:05] - |RD| - [0.86 Ko] - C:\Users\Guy\Pictures [12/09/2015 17:11:20] - |A| - [0.32 Ko] - C:\Users\Guy\Raccourci.bat [25/12/2015 05:07:54] - |SHD| - [364.97 Ko] - C:\Users\Guy\Recent [06/09/2015 13:24:05] - |RD| - [0.28 Ko] - C:\Users\Guy\Saved Games [06/09/2015 13:45:07] - |RD| - [2.97 Ko] - C:\Users\Guy\Searches [25/12/2015 05:07:54] - |SHD| - [5.39 Ko] - C:\Users\Guy\SendTo [29/09/2015 18:11:50] - |A| - [0 Ko] - C:\Users\Guy\Sti_Trace.log [06/09/2015 13:24:05] - |RD| - [0.68 Ko] - C:\Users\Guy\Videos [25/12/2015 05:07:54] - |SHD| - [0 Ko] - C:\Users\Guy\Voisinage d'impression [25/12/2015 05:07:54] - |SHD| - [0 Ko] - C:\Users\Guy\Voisinage réseau ---------- | C:\Users\Guy\AppData\Roaming [06/09/2015 17:28:52] - |D| - [0 Ko] - C:\Users\Guy\AppData\Roaming\Adobe [29/09/2015 17:20:33] - |D| - [255784 Ko] - C:\Users\Guy\AppData\Roaming\Downloaded Installations [29/09/2015 17:27:18] - |D| - [0.06 Ko] - C:\Users\Guy\AppData\Roaming\FileOpen [06/09/2015 13:24:35] - |D| - [91.27 Ko] - C:\Users\Guy\AppData\Roaming\Hewlett-Packard [14/09/2015 10:02:11] - |D| - [0 Ko] - C:\Users\Guy\AppData\Roaming\HP Support Assistant [14/09/2015 10:02:07] - |D| - [15.3 Ko] - C:\Users\Guy\AppData\Roaming\HpUpdate [06/09/2015 13:45:00] - |D| - [0 Ko] - C:\Users\Guy\AppData\Roaming\Identities [09/09/2015 09:01:42] - |D| - [62.34 Ko] - C:\Users\Guy\AppData\Roaming\Macromedia [06/09/2015 13:24:05] - |D| - [0 Ko] - C:\Users\Guy\AppData\Roaming\Media Center Programs [25/12/2015 05:07:54] - |SD| - [9095.36 Ko] - C:\Users\Guy\AppData\Roaming\Microsoft [06/09/2015 17:36:10] - |D| - [64007.76 Ko] - C:\Users\Guy\AppData\Roaming\Mozilla [29/09/2015 17:27:18] - |D| - [0.35 Ko] - C:\Users\Guy\AppData\Roaming\Nitro [29/09/2015 17:30:17] - |D| - [0 Ko] - C:\Users\Guy\AppData\Roaming\Nitro PDF [10/09/2015 18:22:57] - |D| - [0.79 Ko] - C:\Users\Guy\AppData\Roaming\NVIDIA [29/09/2015 17:57:03] - |D| - [589.06 Ko] - C:\Users\Guy\AppData\Roaming\Opera Software [08/09/2015 14:45:33] - |D| - [2725.46 Ko] - C:\Users\Guy\AppData\Roaming\Orange [29/09/2015 18:09:02] - |D| - [580.36 Ko] - C:\Users\Guy\AppData\Roaming\PDF Architect 3 [22/10/2015 18:23:21] - |D| - [0 Ko] - C:\Users\Guy\AppData\Roaming\PDF Producer [29/09/2015 17:53:03] - |D| - [27.47 Ko] - C:\Users\Guy\AppData\Roaming\Shortcut [06/09/2015 17:47:27] - |D| - [0 Ko] - C:\Users\Guy\AppData\Roaming\Sun [09/09/2015 09:24:58] - |D| - [8280.99 Ko] - C:\Users\Guy\AppData\Roaming\WildTangent [09/09/2015 09:01:35] - |D| - [4.08 Ko] - C:\Users\Guy\AppData\Roaming\_MDLogs ---------- | C:\Users\Guy\AppData\Local [25/12/2015 13:22:18] - |D| - [0 Ko] - C:\Users\Guy\AppData\Local\ActiveSync [11/09/2015 10:15:28] - |D| - [0 Ko] - C:\Users\Guy\AppData\Local\Adobe [25/12/2015 05:07:54] - |SHD| - [10958594.28 Ko] - C:\Users\Guy\AppData\Local\Application Data [09/09/2015 09:08:16] - |D| - [19464.02 Ko] - C:\Users\Guy\AppData\Local\Comms [06/09/2015 13:47:50] - |D| - [0 Ko] - C:\Users\Guy\AppData\Local\Diagnostics [07/09/2015 08:17:48] - |D| - [0 Ko] - C:\Users\Guy\AppData\Local\ElevatedDiagnostics [06/09/2015 13:44:28] - |A| - [78.44 Ko] - C:\Users\Guy\AppData\Local\GDIPFONTCACHEV1.DAT [07/09/2015 09:39:37] - |D| - [0.07 Ko] - C:\Users\Guy\AppData\Local\GWX [06/09/2015 13:44:48] - |D| - [403.84 Ko] - C:\Users\Guy\AppData\Local\Hewlett-Packard [25/12/2015 05:07:54] - |SHD| - [0.57 Ko] - C:\Users\Guy\AppData\Local\Historique [26/12/2015 11:19:14] - |AH| - [40.75 Ko] - C:\Users\Guy\AppData\Local\IconCache.db [11/09/2015 10:17:45] - |D| - [0 Ko] - C:\Users\Guy\AppData\Local\Macromedia [25/12/2015 05:07:54] - |D| - [625717.29 Ko] - C:\Users\Guy\AppData\Local\Microsoft [08/09/2015 16:18:14] - |D| - [213.6 Ko] - C:\Users\Guy\AppData\Local\Microsoft Help [09/09/2015 15:14:37] - |D| - [87.41 Ko] - C:\Users\Guy\AppData\Local\MicrosoftEdge [06/09/2015 17:36:10] - |D| - [22.88 Ko] - C:\Users\Guy\AppData\Local\Mozilla [08/09/2015 14:34:45] - |D| - [0 Ko] - C:\Users\Guy\AppData\Local\NetworkTiles [07/09/2015 15:48:33] - |D| - [63531.91 Ko] - C:\Users\Guy\AppData\Local\NVIDIA [07/09/2015 16:40:03] - |D| - [0 Ko] - C:\Users\Guy\AppData\Local\NVIDIA Corporation [29/09/2015 17:57:05] - |D| - [0 Ko] - C:\Users\Guy\AppData\Local\Opera Software [08/09/2015 14:31:39] - |D| - [143693.49 Ko] - C:\Users\Guy\AppData\Local\Packages [08/09/2015 14:33:03] - |D| - [0 Ko] - C:\Users\Guy\AppData\Local\Publishers [25/12/2015 05:07:54] - |D| - [85763.23 Ko] - C:\Users\Guy\AppData\Local\Temp [25/12/2015 05:07:54] - |SHD| - [6636.28 Ko] - C:\Users\Guy\AppData\Local\Temporary Internet Files [08/09/2015 14:31:36] - |D| - [13960 Ko] - C:\Users\Guy\AppData\Local\TileDataLayer [06/09/2015 13:44:58] - |D| - [16236.08 Ko] - C:\Users\Guy\AppData\Local\VirtualStore ---------- | C:\Users\Guy\AppData\Roaming\Microsoft\Windows\Start Menu [06/09/2015 13:45:07] - |ASH| - [0.17 Ko] - C:\Users\Guy\AppData\Roaming\Microsoft\Windows\Start Menu\desktop.ini [25/12/2015 05:07:54] - |SHD| - [24.28 Ko] - C:\Users\Guy\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes [25/12/2015 05:07:54] - |RD| - [24.28 Ko] - C:\Users\Guy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs ---------- | C:\Users\Guy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs [25/12/2015 05:07:54] - |RD| - [3.8 Ko] - C:\Users\Guy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility [25/12/2015 05:07:54] - |RD| - [4.13 Ko] - C:\Users\Guy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories [06/09/2015 13:45:07] - |RD| - [0.17 Ko] - C:\Users\Guy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools [25/12/2015 13:20:35] - |ASH| - [0.17 Ko] - C:\Users\Guy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\desktop.ini [01/10/2015 17:10:33] - |A| - [1.02 Ko] - C:\Users\Guy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fonctionnalités optionnelles.lnk [25/12/2015 05:07:54] - |D| - [0.17 Ko] - C:\Users\Guy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance [08/09/2015 14:45:35] - |D| - [0 Ko] - C:\Users\Guy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My Application [08/09/2015 14:36:55] - |A| - [2.38 Ko] - C:\Users\Guy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk [06/09/2015 13:45:07] - |RD| - [0.17 Ko] - C:\Users\Guy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup [25/12/2015 05:07:54] - |RD| - [5.19 Ko] - C:\Users\Guy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools [25/12/2015 05:07:54] - |RSD| - [7.07 Ko] - C:\Users\Guy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell ---------- | C:\Users\Guy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup [06/09/2015 13:45:07] - |ASH| - [0.17 Ko] - C:\Users\Guy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\desktop.ini ---------- | C:\ProgramData [25/12/2015 05:28:56] - |SHD| - [42397690.2 Ko] - C:\ProgramData\Application Data [10/09/2015 18:23:03] - |D| - [0.75 Ko] - C:\ProgramData\BlueStacks [06/09/2015 13:23:57] - |SHD| - [14.82 Ko] - C:\ProgramData\Bureau [30/10/2015 09:24:24] - |D| - [0 Ko] - C:\ProgramData\Comms [06/01/2010 04:39:24] - |D| - [33.29 Ko] - C:\ProgramData\CyberLink [25/12/2015 05:28:56] - |SHD| - [71946.36 Ko] - C:\ProgramData\Documents [25/12/2015 05:04:36] - |D| - [5267.88 Ko] - C:\ProgramData\EPSON [06/09/2015 13:23:57] - |SHD| - [0 Ko] - C:\ProgramData\Favoris [29/09/2015 17:27:18] - |D| - [0 Ko] - C:\ProgramData\FileOpen [06/01/2010 04:48:14] - |D| - [43371.17 Ko] - C:\ProgramData\Hewlett-Packard [08/09/2015 15:19:09] - |D| - [732503.55 Ko] - C:\ProgramData\Kaspersky Lab [06/09/2015 13:23:57] - |SHD| - [595.2 Ko] - C:\ProgramData\Menu Démarrer [30/10/2015 09:24:24] - |SD| - [977615.27 Ko] - C:\ProgramData\Microsoft [08/09/2015 16:18:03] - |D| - [63.38 Ko] - C:\ProgramData\Microsoft Help [08/09/2015 14:34:26] - |D| - [0 Ko] - C:\ProgramData\Microsoft OneDrive [06/09/2015 13:23:57] - |SHD| - [0 Ko] - C:\ProgramData\Modèles [29/09/2015 17:26:24] - |D| - [0 Ko] - C:\ProgramData\Nitro [06/01/2010 05:04:00] - |D| - [0.32 Ko] - C:\ProgramData\Norton [25/12/2015 05:04:25] - |D| - [2574.56 Ko] - C:\ProgramData\NVIDIA [25/12/2015 05:04:05] - |D| - [298333.57 Ko] - C:\ProgramData\NVIDIA Corporation [06/09/2015 17:46:54] - |D| - [0 Ko] - C:\ProgramData\Oracle [06/01/2010 04:45:57] - |D| - [3171.81 Ko] - C:\ProgramData\PC-Doctor for Windows [29/09/2015 18:06:31] - |D| - [144947.78 Ko] - C:\ProgramData\PDF Architect 3 [29/09/2015 18:11:04] - |D| - [4184.32 Ko] - C:\ProgramData\pdfforge [06/09/2015 21:34:51] - |D| - [18685.56 Ko] - C:\ProgramData\Recovery [30/10/2015 09:24:24] - |D| - [0.98 Ko] - C:\ProgramData\regid.1991-06.com.microsoft [30/10/2015 09:24:24] - |D| - [0 Ko] - C:\ProgramData\SoftwareDistribution [06/01/2010 04:38:45] - |D| - [212.14 Ko] - C:\ProgramData\Temp [30/10/2015 09:24:24] - |D| - [5.17 Ko] - C:\ProgramData\USOPrivate [10/07/2015 14:22:45] - |D| - [2732 Ko] - C:\ProgramData\USOShared [06/01/2010 04:55:25] - |D| - [1248166.65 Ko] - C:\ProgramData\WildTangent [06/01/2010 04:47:41] - |D| - [20895.84 Ko] - C:\ProgramData\{44AFD825-9603-4521-9447-A6E1C5CA2F3D} [06/01/2010 04:35:32] - |DC| - [5599.34 Ko] - C:\ProgramData\{B12D13C3-76FD-479D-AD99-8C6F18156BC9} ---------- | C:\WINDOWS\Tasks [11/09/2015 10:17:06] - |A| - [0.98 Ko] - C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [25/12/2015 05:24:37] - |AH| - [0.01 Ko] - C:\WINDOWS\Tasks\SA.DAT ---------- | C:\WINDOWS\System32\Tasks [30/10/2015 09:24:25] - |D| - [0 Ko] - C:\WINDOWS\System32\Tasks\Microsoft Analyse : 2277401 | Modification : 8 | Suppression : 19 ---------- |EOF| ---------- | 20:29:05 | [39 Ko]