1. ========================= SEAF 1.0.1.0 - C_XX 2. 3. Commencé à: 20:39:27 le 02/12/2016 4. 5. Valeur(s) recherchée(s): 6. mun.exe 7. 8. Légende: TC => Date de création, TM => Date de modification, DA => Dernier accès 9. 10. (!) --- Recherche registre 11. 12. ====== Fichier(s) ====== 13. 14. 15. "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp\mun.exe" [ ARCHIVE | 16 Ko ] 16. TC: 20/01/2016,17:09:49 | TM: 04/09/2015,18:46:09 | DA: 20/01/2016,17:09:49 17. 18. 19. ========================= 20. 21. 22. "C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\StartUp\mun.exe" [ ARCHIVE | 16 Ko ] 23. TC: 20/01/2016,17:09:49 | TM: 04/09/2015,18:46:09 | DA: 20/01/2016,17:09:49 24. 25. 26. ========================= 27. 28. 29. "C:\Users\johan\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\mun.exe.log" [ ARCHIVE | 1 Ko ] 30. TC: 18/10/2016,00:53:19 | TM: 28/11/2016,18:16:40 | DA: 18/10/2016,00:53:19 31. 32. 33. ========================= 34. 35. 36. "C:\Windows\Prefetch\MUN.EXE-A28817B3.pf" [ NOT_CONTENT_INDEXED|ARCHIVE | 21 Ko ] 37. TC: 29/11/2016,23:07:38 | TM: 01/12/2016,20:05:17 | DA: 29/11/2016,23:07:38 38. 39. 40. ========================= 41. 42. 43. 44. ====== Entrée(s) du registre ====== 45. 46. 47. [HKU\S-1-5-21-693929822-1038836664-4125084160-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Search\RecentApps\{14865094-0497-4306-876F-3AAB045086D9}] 48. "AppId"="C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp\mun.exe" (REG_SZ) 49. 50. [HKU\S-1-5-21-693929822-1038836664-4125084160-1000\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store] 51. "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp\mun.exe"="SACP" (REG_BINARY) 52. 53. ========================= 54. 55. Fin à: 20:43:26 le 02/12/2016 56. 811339 Éléments analysés 57. 58. ========================= 59. E.O.F