Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 29-07-2020
Exécuté par SAPKEN (administrateur) sur SAPKEN-PC (Hewlett-Packard HP Compaq nc6320 (RH569ET#ABH)) (31-07-2020 14:23:46)
Exécuté depuis C:\Users\SAPKEN\Desktop
Profils chargés: SAPKEN
Platform: Windows 7 Ultimate N (X64) Langue: Français (France)
Internet Explorer Version 8 (Navigateur par défaut: Chrome)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

() [Fichier non signé] C:\Users\SAPKEN\AppData\Local\Temp\is-OJ93M.tmp\lsnd5sdro03.tmp
(BF_Soft) [Fichier non signé] C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Code Sector -> Code Sector) C:\Program Files\TeraCopy\TeraCopyService.exe
(CT27IZC7R) [Fichier non signé] C:\Program Files\6ZTCTSFK85\6ZTCTSFK8.exe
(CT27IZC7R) [Fichier non signé] C:\Program Files\W3S7PWW51E\W3S7PWW51.exe
(FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReaderUpdateService.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxtray.exe
(McAfee, LLC -> McAfee, LLC.) C:\Program Files (x86)\McAfee Security Scan\3.11.1664\SSScheduler.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Power Software Limited -> Power Software Ltd) C:\Program Files\PowerISO\PWRISOVM.EXE
(SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Projector\Epson USB Display V1.7\EMP_UDSA.exe
(Smadsoft) [Fichier non signé] C:\Program Files (x86)\SMADAV\SMΔRTP.exe
(Tonec Inc.) [Fichier non signé] C:\Program Files (x86)\Internet Download Manager\IDMan.exe
(Zainuddin Nafarin -> Smadav Software) C:\Program Files (x86)\SMADAV\SmadavProtect64.exe

==================== Registre (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM-x32\...\Run: [SMΔRT-Protection] => C:\Program Files (x86)\Smadav\SMΔRTP.exe [1915984 2020-01-22] (Smadsoft) [Fichier non signé]
HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files\PowerISO\PWRISOVM.EXE [455872 2020-06-22] (Power Software Limited -> Power Software Ltd)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [EPSON_UD_START] => C:\Program Files (x86)\EPSON Projector\Epson USB Display V1.7\EMP_UD.exe [538728 2014-04-23] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKLM\...\RunOnce: [1jenknllg0f] => C:\Program Files (x86)\AIUs\406054345.exe [299008 2020-07-30] (Cristalinta) [Fichier non signé]
HKU\S-1-5-21-2518017881-2114692188-1518358547-1000\...\Run: [6399005] => C:\Users\SAPKEN\AppData\Roaming\eadmf1svapf\lsnd5sdro03.exe [537056 2020-07-31] () [Fichier non signé] [Fichier en cours d'utilisation]
HKU\S-1-5-21-2518017881-2114692188-1518358547-1000\...\Run: [VDBTWF86LI9E2EL] => C:\Program Files\W3S7PWW51E\W3S7PWW51.exe [5181952 2020-07-31] (CT27IZC7R) [Fichier non signé]
HKU\S-1-5-21-2518017881-2114692188-1518358547-1000\...\Run: [IDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [4034616 2020-07-31] (Tonec Inc.) [Fichier non signé]
HKU\S-1-5-21-2518017881-2114692188-1518358547-1000\...\Run: [LLKBZEUMHLWEVKO] => C:\Program Files\6ZTCTSFK85\6ZTCTSFK8.exe [5181952 2020-07-31] (CT27IZC7R) [Fichier non signé]
HKU\S-1-5-21-2518017881-2114692188-1518358547-1000\...\Policies\Explorer: [DisallowRun] 1
HKU\S-1-5-21-2518017881-2114692188-1518358547-1000\...\Policies\Explorer\DisallowRun: [1] Mshta.exe
HKU\S-1-5-21-2518017881-2114692188-1518358547-1000\...\Policies\Explorer\DisallowRun: [2] powershell.exe
HKU\S-1-5-21-2518017881-2114692188-1518358547-1000\...\Policies\Explorer\DisallowRun: [3] bitsadmin.exe
HKU\S-1-5-21-2518017881-2114692188-1518358547-1000\...\MountPoints2: {467c8e28-55e6-11bd-8797-001708411a9d} - G:\EMP_UDSe.exe /autorun
HKU\S-1-5-21-2518017881-2114692188-1518358547-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [11264 2009-07-14] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Print\Monitors\rica8Elm: C:\Windows\system32\rica8Elm.dll [28160 2013-12-26] (RICOH CO.,Ltd.) [Fichier non signé]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\84.0.4147.105\Installer\chrmstp.exe [2020-07-29] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2020-07-08]
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files (x86)\McAfee Security Scan\3.11.1664\SSScheduler.exe (McAfee, LLC -> McAfee, LLC.)
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Tâches planifiées (Avec liste blanche) ============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {1497C0FA-E27D-484D-B723-CABB5EBBBD6F} - System32\Tasks\smadav => C:\Program Files (x86)\Smadav\SMΔRTP.exe [1915984 2020-01-22] (Smadsoft) [Fichier non signé]
Task: {376A1E00-0C05-4370-B636-14F81E7257C1} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [3206144 2020-07-31] (BF_Soft) [Fichier non signé]
Task: {C56EC3FF-4149-4757-830B-8B3284ED56F2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [3206144 2020-07-31] (BF_Soft) [Fichier non signé]

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)


==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{97F4E472-CFFC-4E42-8481-5670202293F3}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2018-11-21] (Tonec Inc. -> Internet Download Manager, Tonec Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2018-11-21] (Tonec Inc. -> Internet Download Manager, Tonec Inc.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-14] (Microsoft Windows -> Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-14] (Microsoft Windows -> Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2009-07-14] (Microsoft Windows -> Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2009-07-14] (Microsoft Windows -> Microsoft Corporation)

FireFox:
========
FF HKU\S-1-5-21-2518017881-2114692188-1518358547-1000\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\SAPKEN\AppData\Roaming\IDM\idmmzcc5
FF Extension: (IDM CC) - C:\Users\SAPKEN\AppData\Roaming\IDM\idmmzcc5 [2020-07-31] [] [non signé]
FF HKU\S-1-5-21-2518017881-2114692188-1518358547-1000\...\SeaMonkey\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi
FF Extension: (IDM integration) - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi [2017-12-20] []
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-04-29] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.cpdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-04-29] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-04-29] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-04-29] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-04-29] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)

Chrome:
=======
CHR Profile: C:\Users\SAPKEN\AppData\Local\Google\Chrome\User Data\Default [2020-07-31]
CHR StartupUrls: Default -> "hxxps://www.google.fr/"
CHR Extension: (Slides) - C:\Users\SAPKEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-07-07]
CHR Extension: (Docs) - C:\Users\SAPKEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-07-07]
CHR Extension: (Google Drive) - C:\Users\SAPKEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-07-07]
CHR Extension: (YouTube) - C:\Users\SAPKEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-07-07]
CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\SAPKEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2020-07-27]
CHR Extension: (d8yI+Hf7rX) - C:\Users\SAPKEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\cklblgnepfnphlmjpenbefkifphiaocb [2020-07-31]
CHR Extension: (Sheets) - C:\Users\SAPKEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-07-07]
CHR Extension: (Google Docs hors connexion) - C:\Users\SAPKEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-07-07]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\SAPKEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-07-07]
CHR Extension: (Scopus Document Download Manager) - C:\Users\SAPKEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\ojplelelocihfchkdaebocpankipadmp [2020-07-08]
CHR Extension: (Gmail) - C:\Users\SAPKEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-07-07]
CHR Extension: (Chrome Media Router) - C:\Users\SAPKEN\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-07-26]
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2019-02-11]
CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2019-02-11]

==================== Services (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 EMP_UDSA; C:\Program Files (x86)\EPSON Projector\Epson USB Display V1.7\EMP_UDSA.exe [166504 2014-04-23] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
S2 FlexGridService; C:\ProgramData\FlexGridService\FlexGridService.exe [3206144 2020-07-31] (BF_Soft) [Fichier non signé] <==== ATTENTION
R2 FoxitReaderUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReaderUpdateService.exe [1995184 2020-04-29] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
S2 gupdate; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [3206144 2020-07-31] (BF_Soft) [Fichier non signé]
S3 gupdatem; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [3206144 2020-07-31] (BF_Soft) [Fichier non signé]
S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\3.11.1664\McCHSvc.exe [326952 2020-02-05] (McAfee, LLC -> McAfee, LLC.)
S3 OracleClientCache80; C:\orant\BIN\ONRSD80.EXE [101136 1999-11-23] () [Fichier non signé]
R2 TeraCopyService; C:\Program Files\TeraCopy\TeraCopyService.exe [110416 2017-01-31] (Code Sector -> Code Sector)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Windows -> Microsoft Corporation)

===================== Pilotes (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R1 292ADC7426B1; C:\Windows\292ADC7426B1.sys [25368 2020-07-31] (大连纵梦网络科技有限公司 -> FsFilter Network) [Fichier non signé]
R3 AgereSoftModem; C:\Windows\System32\DRIVERS\agrsm64.sys [1146880 2009-06-10] (Microsoft Windows -> LSI Corp)
R3 EMP_MIRRUD; C:\Windows\System32\DRIVERS\EMP_MirrUD.sys [5632 2014-04-23] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
R3 eppvad_simple; C:\Windows\System32\drivers\EMP_UDAU.sys [23040 2014-04-23] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION)
R1 ndisrd; C:\Windows\System32\DRIVERS\ndisrd.sys [43088 2014-08-14] (Mainline Net Holdings Limited -> NT Kernel Resources)
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois (créés) ===================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2020-07-31 14:23 - 2020-07-31 14:25 - 000015656 _____ C:\Users\SAPKEN\Desktop\FRST.txt
2020-07-31 14:23 - 2020-07-31 14:24 - 000000000 ____D C:\FRST
2020-07-31 14:21 - 2020-07-31 14:21 - 002296832 _____ (Farbar) C:\Users\SAPKEN\Desktop\FRST64.exe
2020-07-31 14:08 - 2020-07-31 14:24 - 000000004 _____ C:\ProgramData\rc.dat
2020-07-31 14:06 - 2020-07-31 14:07 - 000000004 _____ C:\ProgramData\lock.dat
2020-07-31 14:06 - 2020-07-31 14:06 - 000000008 _____ C:\ProgramData\ts.dat
2020-07-31 14:06 - 2020-07-31 14:06 - 000000004 _____ C:\ProgramData\irw.atsd
2020-07-31 13:50 - 2020-07-31 13:56 - 000000000 ____D C:\Program Files\6ZTCTSFK85
2020-07-31 13:50 - 2020-07-31 13:51 - 011375555 _____ C:\Users\SAPKEN\Downloads\JoshSommersBeaches.themepack
2020-07-31 13:48 - 2020-07-31 13:48 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\3zrdldqv4gd
2020-07-31 13:43 - 2020-07-31 13:43 - 000000000 ____D C:\ProgramData\FlexGridService
2020-07-31 13:32 - 2020-07-31 13:32 - 000001013 _____ C:\Users\SAPKEN\Desktop\Internet Download Manager.lnk
2020-07-31 13:32 - 2020-07-31 13:32 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
2020-07-31 13:32 - 2020-07-31 13:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
2020-07-31 13:20 - 2020-07-31 13:24 - 000000000 ____D C:\Program Files\W3S7PWW51E
2020-07-31 13:19 - 2020-07-31 13:19 - 000025368 _____ (FsFilter Network) C:\Windows\292ADC7426B1.sys
2020-07-31 13:19 - 2020-07-31 13:19 - 000000000 _RSHD C:\Users\SAPKEN\Desktop\ScrSnap.lnk
2020-07-31 13:18 - 2020-07-31 14:00 - 000000000 ____D C:\Users\SAPKEN\AppData\Local\ScrSnap
2020-07-31 13:18 - 2020-07-31 13:19 - 000000000 ____D C:\ProgramData\B7HNFDW24ASWMJ1WZAYTKMFA1
2020-07-31 13:18 - 2020-07-31 13:18 - 000141312 _____ C:\Users\SAPKEN\AppData\Local\installer.dat
2020-07-31 13:18 - 2020-07-31 13:18 - 000011856 _____ C:\Users\SAPKEN\AppData\Local\InstallationConfiguration.xml
2020-07-31 13:18 - 2020-07-31 13:18 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\eadmf1svapf
2020-07-31 13:18 - 2020-07-31 13:18 - 000000000 ____D C:\Program Files (x86)\wotsuper
2020-07-31 13:17 - 2020-07-31 13:18 - 000000000 ____D C:\Program Files (x86)\AIUs
2020-07-29 13:05 - 2020-07-29 13:05 - 008420130 _____ C:\Users\SAPKEN\Downloads\ilovepdf_merged.pdf
2020-07-29 12:59 - 2020-07-29 12:59 - 004066435 _____ C:\Users\SAPKEN\Downloads\ilovepdf_split-range.zip
2020-07-29 00:14 - 2020-07-29 00:14 - 000000000 ____D C:\Windows\system32\SPReview
2020-07-28 18:33 - 2020-07-28 18:33 - 000020192 _____ C:\Users\SAPKEN\Downloads\quitus (1).pdf
2020-07-27 16:00 - 2020-07-27 16:00 - 000344745 _____ C:\Users\SAPKEN\Downloads\SESSION NORMALE DE PHYSIQUE GENERALE.pdf
2020-07-27 15:52 - 2020-07-27 15:52 - 000415482 _____ C:\Users\SAPKEN\Desktop\exelec1_20089.pdf
2020-07-25 20:28 - 2020-07-25 20:28 - 000329277 _____ C:\Users\SAPKEN\Downloads\flowchart.pdf
2020-07-25 16:37 - 2020-07-25 16:37 - 000370864 _____ C:\Users\SAPKEN\Downloads\Energy Economics Volume 29 issue 6 2007 [doi 10.1016_j.eneco.2007.05.001] Theodoros Zachariadis -- Exploring the relationship between energy use and economic growth with bivariate models- New eviden.pdf
2020-07-25 16:27 - 2020-07-25 16:27 - 001144626 _____ C:\Users\SAPKEN\Downloads\Energies Volume 11 issue 4 2018 [doi 10.3390_en11040784] Gómez, Mario; Ciarreta, Aitor; Zarraga, Ainhoa -- Linear and Nonlinear Causality between Energy Consumption and Economic Growth- The Case of .pdf
2020-07-25 16:17 - 2020-07-25 16:17 - 000201260 _____ C:\Users\SAPKEN\Downloads\Energy Policy Volume 38 issue 1 2010 [doi 10.1016_j.enpol.2009.09.024] Ilhan Ozturk -- A literature survey on energy–growth nexus.pdf
2020-07-17 14:08 - 2020-07-17 14:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Projector
2020-07-17 14:08 - 2020-07-17 14:08 - 000000000 ____D C:\Program Files (x86)\EPSON Projector
2020-07-17 14:08 - 2014-04-23 14:21 - 000023040 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\Drivers\EMP_UDAU.sys
2020-07-17 14:08 - 2014-04-23 14:21 - 000015360 _____ (Windows (R) Codename Longhorn DDK provider) C:\Windows\system32\EMP_MirrUD.dll
2020-07-17 14:08 - 2014-04-23 14:21 - 000005632 _____ (Windows (R) Codename Longhorn DDK provider) C:\Windows\system32\Drivers\EMP_MirrUD.sys
2020-07-14 19:13 - 2020-07-14 19:13 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\Baidu
2020-07-14 19:13 - 2020-07-14 19:13 - 000000000 ____D C:\Users\Public\Documents\PC Faster
2020-07-14 19:13 - 2020-07-14 19:13 - 000000000 ____D C:\Users\Public\Documents\Baidu
2020-07-14 19:13 - 2020-07-14 19:13 - 000000000 ____D C:\ProgramData\PC Faster
2020-07-14 19:13 - 2020-07-14 19:13 - 000000000 ____D C:\ProgramData\Documents\PC Faster
2020-07-14 19:13 - 2020-07-14 19:13 - 000000000 ____D C:\ProgramData\Documents\Baidu
2020-07-14 19:13 - 2014-08-14 11:18 - 000043088 _____ (NT Kernel Resources) C:\Windows\system32\Drivers\ndisrd.sys
2020-07-14 18:54 - 2020-07-14 18:55 - 000387376 _____ C:\Users\SAPKEN\Downloads\WiFiHotspot_inst.exe
2020-07-13 20:41 - 2020-07-13 20:43 - 016078827 _____ C:\Users\SAPKEN\Documents\D1_admission_pp_1-5_EDOSFA.pdf
2020-07-13 20:38 - 2020-07-13 20:41 - 023900714 _____ C:\Users\SAPKEN\Documents\D1_admission_pp_16-20_EDOSFA.pdf
2020-07-13 20:38 - 2020-07-13 20:38 - 002586441 _____ C:\Users\SAPKEN\Documents\EDOSFA_doctoriales_2018_2019 (2).pdf
2020-07-13 19:51 - 2020-07-13 19:59 - 024443053 _____ C:\Users\SAPKEN\Documents\D1_admission_pp_11-15_EDOSFA.pdf
2020-07-13 16:29 - 2020-07-13 16:29 - 000063440 _____ C:\Users\SAPKEN\Downloads\CORRECTION EXAMEN DE FIN DE SEMESTRE.pdf
2020-07-13 16:26 - 2020-07-13 16:26 - 000125803 _____ C:\Users\SAPKEN\Downloads\Exam_2020Gestion_des_stock_et_appr_Correction.pdf
2020-07-12 15:46 - 2020-07-12 15:46 - 000342668 _____ C:\Users\SAPKEN\Downloads\Doc1.pdf
2020-07-12 09:01 - 2020-07-12 09:01 - 000000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2020-07-12 08:44 - 2020-07-12 09:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2020-07-12 08:43 - 2020-07-12 08:43 - 000000000 ____D C:\Windows\PCHEALTH
2020-07-12 08:43 - 2020-07-12 08:43 - 000000000 ____D C:\Program Files (x86)\Microsoft Synchronization Services
2020-07-12 08:43 - 2020-07-12 08:43 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2020-07-12 08:42 - 2020-07-12 08:42 - 000000000 ____D C:\Program Files\Microsoft Office
2020-07-12 08:39 - 2020-07-12 08:39 - 000000000 __RHD C:\MSOCache
2020-07-11 18:17 - 2020-07-11 18:17 - 000000000 ____D C:\Windows\system32\EventProviders
2020-07-10 22:31 - 2020-07-10 22:33 - 616662906 _____ C:\Users\SAPKEN\Downloads\Microsoft Word 2010 - www.MySoftwareFree.com.7z
2020-07-10 18:49 - 2020-07-10 19:03 - 000000598 _____ C:\Windows\system32\ricdb.ini
2020-07-10 18:49 - 2020-07-10 18:49 - 000000000 ____D C:\ProgramData\RICOH
2020-07-10 18:48 - 2020-07-10 18:48 - 000000000 ____D C:\Users\SAPKEN\Desktop\z69572Lf
2020-07-10 13:32 - 2020-07-10 13:32 - 000000000 ____D C:\Users\SAPKEN\AppData\Local\Foxit Reader
2020-07-10 13:26 - 2020-07-10 13:26 - 002586441 _____ C:\Users\SAPKEN\Downloads\EDOSFA_doctoriales_2018_2019 (2).pdf
2020-07-09 22:26 - 2020-07-09 22:26 - 000000000 ____D C:\Users\SAPKEN\AppData\LocalLow\Foxit
2020-07-09 21:37 - 2020-07-09 21:37 - 000000000 ____D C:\Users\Public\Foxit Software
2020-07-09 21:36 - 2020-07-13 19:10 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\Foxit Software
2020-07-09 21:36 - 2020-07-09 21:36 - 000001355 _____ C:\Users\Public\Desktop\Foxit Reader.lnk
2020-07-09 21:36 - 2020-07-09 21:36 - 000001355 _____ C:\ProgramData\Desktop\Foxit Reader.lnk
2020-07-09 21:36 - 2020-07-09 21:36 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\Foxit AgentInformation
2020-07-09 21:36 - 2020-07-09 21:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2020-07-09 21:36 - 2020-07-09 21:36 - 000000000 ____D C:\ProgramData\Foxit Software
2020-07-09 21:36 - 2020-07-09 21:36 - 000000000 ____D C:\ProgramData\Foxit ContentPlatform
2020-07-09 21:36 - 2020-07-09 21:36 - 000000000 ____D C:\Program Files (x86)\Foxit Software
2020-07-09 16:22 - 2020-07-09 16:23 - 000000000 ____D C:\Users\SAPKEN\Desktop\Adobe Acrobat
2020-07-09 03:00 - 2009-11-25 12:47 - 001942856 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2020-07-09 03:00 - 2009-11-25 12:47 - 001130824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2020-07-09 03:00 - 2009-11-25 12:47 - 000444752 _____ (Microsoft Corporation) C:\Windows\system32\mscoree.dll
2020-07-09 03:00 - 2009-11-25 12:47 - 000320352 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHost.exe
2020-07-09 03:00 - 2009-11-25 12:47 - 000297808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscoree.dll
2020-07-09 03:00 - 2009-11-25 12:47 - 000295264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHost.exe
2020-07-09 03:00 - 2009-11-25 12:47 - 000109912 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHostProxy.dll
2020-07-09 03:00 - 2009-11-25 12:47 - 000099176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHostProxy.dll
2020-07-09 03:00 - 2009-11-25 12:47 - 000049472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netfxperf.dll
2020-07-09 03:00 - 2009-11-25 12:47 - 000048960 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll
2020-07-08 22:08 - 2020-07-08 22:08 - 000000000 _RSHD C:\Windows\SysWOW64\taskshostservices.exe
2020-07-08 22:08 - 2020-07-08 22:08 - 000000000 _RSHD C:\Windows\SysWOW64\Drivers\WinmonProcessMonitor.sys
2020-07-08 22:08 - 2020-07-08 22:08 - 000000000 _RSHD C:\Windows\SysWOW64\Drivers\winmonfs.sys
2020-07-08 22:08 - 2020-07-08 22:08 - 000000000 _RSHD C:\Windows\SysWOW64\Drivers\winmon.sys
2020-07-08 22:08 - 2020-07-08 22:08 - 000000000 _RSHD C:\Windows\system32\taskshostservices.exe
2020-07-08 22:08 - 2020-07-08 22:08 - 000000000 _RSHD C:\Windows\system32\Drivers\WinmonProcessMonitor.sys
2020-07-08 22:08 - 2020-07-08 22:08 - 000000000 _RSHD C:\Windows\system32\Drivers\winmonfs.sys
2020-07-08 22:08 - 2020-07-08 22:08 - 000000000 _RSHD C:\Windows\system32\Drivers\winmon.sys
2020-07-08 22:08 - 2020-07-08 22:08 - 000000000 _RSHD C:\Windows\mssecsvc.exe
2020-07-08 22:08 - 2020-07-08 22:08 - 000000000 ____D C:\Windows\SysWOW64\SecureBootThemes
2020-07-08 22:08 - 2020-07-08 22:08 - 000000000 ____D C:\Windows\system32\SecureBootThemes
2020-07-08 22:08 - 2020-07-08 22:08 - 000000000 ____D C:\Windows\SpeechsTracing
2020-07-08 22:08 - 2020-07-08 22:08 - 000000000 ____D C:\Windows\SecureBootThemes
2020-07-08 22:08 - 2020-07-08 22:08 - 000000000 ____D C:\Windows\rss
2020-07-08 22:08 - 2020-07-08 22:08 - 000000000 ____D C:\Windows\AppDiagnostics
2020-07-08 22:08 - 2020-07-08 22:08 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\EpicNet Inc
2020-07-08 22:08 - 2020-07-08 22:08 - 000000000 ____D C:\Users\SAPKEN\AppData\Local\EpicNet Inc
2020-07-08 22:05 - 2020-07-08 22:05 - 000000000 ____D C:\Windows\SysWOW64\x64
2020-07-08 22:05 - 2009-09-23 19:30 - 001002008 _____ (Intel Corporation) C:\Windows\SysWOW64\igxpun.exe
2020-07-08 22:03 - 2020-07-08 22:03 - 000000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2020-07-08 22:03 - 2020-07-08 22:03 - 000000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2020-07-08 21:42 - 2020-07-08 21:42 - 000003176 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2518017881-2114692188-1518358547-1000
2020-07-08 21:42 - 2020-07-08 21:42 - 000002169 _____ C:\Users\SAPKEN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2020-07-08 21:42 - 2020-07-08 21:42 - 000000000 ___RD C:\Users\SAPKEN\OneDrive
2020-07-08 21:39 - 2020-07-08 21:39 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2020-07-08 21:38 - 2020-07-08 21:52 - 033341422 _____ (Foxit Software Inc. ) C:\Users\SAPKEN\Downloads\Non confirmé 233970.crdownload
2020-07-08 21:35 - 2020-07-08 21:32 - 001804512 _____ C:\Windows\GABRIOLA.tt2
2020-07-08 21:14 - 2020-07-08 21:14 - 000300463 _____ C:\Users\SAPKEN\Downloads\PIECES DÉPÔT THESE_1 (1).pdf
2020-07-08 21:01 - 2020-07-08 21:01 - 000000000 ____D C:\Windows\system32\Tasks\OfficeSoftwareProtectionPlatform
2020-07-08 20:43 - 2020-07-31 14:02 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\DMCache
2020-07-08 20:43 - 2020-07-31 13:47 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\IDM
2020-07-08 20:43 - 2020-07-31 13:45 - 000000000 ____D C:\Program Files (x86)\Internet Download Manager
2020-07-08 20:43 - 2020-07-08 20:43 - 000000000 ____D C:\Users\SAPKEN\Downloads\Video
2020-07-08 20:43 - 2020-07-08 20:43 - 000000000 ____D C:\Users\SAPKEN\Downloads\Compressed
2020-07-08 20:43 - 2020-07-08 20:43 - 000000000 ____D C:\ProgramData\IDM
2020-07-08 20:36 - 2020-07-09 02:20 - 000000000 ____D C:\ProgramData\McAfee
2020-07-08 20:36 - 2020-07-08 20:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2020-07-08 20:36 - 2020-07-08 20:36 - 000000000 ____D C:\Program Files (x86)\McAfee Security Scan
2020-07-08 20:35 - 2020-07-08 20:35 - 000000000 ____D C:\ProgramData\McAfee Security Scan
2020-07-08 20:23 - 2020-07-08 20:23 - 000000000 ____D C:\ProgramData\Adobe
2020-07-08 20:18 - 2020-07-09 21:15 - 000000000 ____D C:\Users\SAPKEN\AppData\Local\Adobe
2020-07-08 20:13 - 2020-07-08 20:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO
2020-07-08 20:13 - 2020-07-08 20:13 - 000000000 ____D C:\Program Files\PowerISO
2020-07-08 20:10 - 2020-07-12 08:51 - 000000000 ____D C:\Users\SAPKEN\AppData\Local\Microsoft Help
2020-07-08 20:10 - 2020-07-12 08:43 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2020-07-08 20:08 - 2020-07-08 20:08 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\PowerISO
2020-07-08 20:06 - 2020-07-08 22:07 - 000000000 ____D C:\Program Files (x86)\PowerISO
2020-07-08 20:06 - 2020-07-08 20:13 - 000000812 _____ C:\Users\Public\Desktop\PowerISO.lnk
2020-07-08 20:06 - 2020-07-08 20:13 - 000000812 _____ C:\ProgramData\Desktop\PowerISO.lnk
2020-07-08 20:06 - 2017-06-07 02:36 - 000138296 _____ (Power Software Ltd) C:\Windows\system32\Drivers\scdemu.sys
2020-07-08 19:57 - 2020-07-29 13:09 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\TeraCopy
2020-07-08 19:57 - 2020-07-08 19:57 - 000001684 _____ C:\ProgramData\Microsoft\Windows\Start Menu\TeraCopy.lnk
2020-07-08 19:57 - 2020-07-08 19:57 - 000000000 ___HD C:\Users\SAPKEN\AppData\Roaming\Obsidium
2020-07-08 19:57 - 2020-07-08 19:57 - 000000000 ___HD C:\Users\SAPKEN\.obs32
2020-07-08 19:57 - 2020-07-08 19:57 - 000000000 ____D C:\Program Files\TeraCopy
2020-07-08 19:29 - 2019-09-19 06:04 - 000000000 ____D C:\Users\SAPKEN\Desktop\WORD
2020-07-08 19:28 - 2020-07-31 14:05 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\Smadav
2020-07-08 19:28 - 2020-07-31 14:00 - 000000000 __SHD C:\[Smad-Cage]
2020-07-08 19:28 - 2020-07-08 19:28 - 000003154 _____ C:\Windows\system32\Tasks\smadav
2020-07-08 19:28 - 2020-07-08 19:28 - 000001076 _____ C:\Users\Public\Desktop\SMADΔV.lnk
2020-07-08 19:28 - 2020-07-08 19:28 - 000001076 _____ C:\ProgramData\Desktop\SMADΔV.lnk
2020-07-08 19:28 - 2020-07-08 19:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SMADAV Antivirus
2020-07-08 19:28 - 2020-07-08 19:28 - 000000000 ____D C:\Program Files (x86)\SMADAV
2020-07-08 19:27 - 2020-07-08 19:27 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\WinRAR
2020-07-08 19:11 - 2011-04-09 08:58 - 000142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2020-07-08 19:11 - 2011-04-09 07:56 - 000123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2020-07-08 19:06 - 2020-07-08 19:12 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2020-07-08 19:06 - 2020-07-08 19:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2020-07-08 19:06 - 2020-07-08 19:12 - 000000000 ____D C:\Program Files (x86)\WinRAR
2020-07-08 18:48 - 2016-06-25 18:03 - 000304128 _____ (Microsoft Corporation) C:\Windows\system32\EOSNotify.exe
2020-07-08 18:48 - 2015-03-19 05:07 - 005503416 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2020-07-08 18:48 - 2015-03-19 04:57 - 003963320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2020-07-08 18:48 - 2015-03-19 04:57 - 003908024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2020-07-08 18:48 - 2014-09-15 02:44 - 003195392 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2020-07-08 18:48 - 2013-03-19 07:54 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2020-07-08 18:48 - 2013-03-19 06:53 - 000006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2020-07-08 18:48 - 2013-03-19 05:19 - 000112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2020-07-08 18:23 - 2012-06-03 00:19 - 002428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2020-07-08 18:23 - 2012-06-03 00:19 - 000701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2020-07-08 18:23 - 2012-06-03 00:19 - 000057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2020-07-08 18:23 - 2012-06-03 00:19 - 000044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2020-07-08 18:23 - 2012-06-03 00:19 - 000038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2020-07-08 18:23 - 2012-06-03 00:15 - 002622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2020-07-08 18:23 - 2012-06-03 00:15 - 000099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2020-07-08 18:22 - 2012-06-02 15:19 - 000186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2020-07-08 18:22 - 2012-06-02 15:15 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2020-07-08 13:33 - 2020-07-08 13:33 - 000300463 _____ C:\Users\SAPKEN\Downloads\PIECES DÉPÔT THESE_1.pdf
2020-07-07 21:39 - 2020-07-29 12:44 - 000002222 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-07-07 21:39 - 2020-07-29 12:44 - 000002181 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-07-07 21:39 - 2020-07-29 12:44 - 000002181 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2020-07-07 21:37 - 2020-07-07 21:44 - 000000000 ____D C:\Users\SAPKEN\AppData\Local\Google
2020-07-07 21:37 - 2020-07-07 21:38 - 000000000 ____D C:\Program Files (x86)\Google
2020-07-07 21:37 - 2020-07-07 21:37 - 000003504 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-07-07 21:37 - 2020-07-07 21:37 - 000003376 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2020-07-07 19:16 - 2020-07-07 18:23 - 000000000 ____D C:\Windows\Panther
2020-07-07 19:15 - 2020-07-07 19:15 - 000000000 ____D C:\Users\Public\Desktop\Extra
2020-07-07 19:15 - 2020-07-07 19:15 - 000000000 ____D C:\ProgramData\Desktop\Extra
2020-07-07 18:40 - 2020-07-07 18:40 - 000000000 ____D C:\Users\SAPKEN\AppData\LocalLow\Temp
2020-07-07 18:34 - 2020-07-07 18:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle - OraClient11g_home1
2020-07-07 18:33 - 2020-07-07 18:33 - 000000000 ____D C:\Program Files\Oracle
2020-07-07 18:33 - 2016-07-27 22:15 - 000000775 _____ C:\Users\SAPKEN\Desktop\Gesacadapp.lnk
2020-07-07 18:31 - 2020-07-07 18:32 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Oracle Reports 6i
2020-07-07 18:31 - 2020-07-07 18:31 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Oracle Reports 6i Admin
2020-07-07 18:31 - 2020-07-07 18:31 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Oracle Olap Client 2.2
2020-07-07 18:30 - 2020-07-07 18:32 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Oracle Forms & Reports 6i Doc
2020-07-07 18:30 - 2020-07-07 18:32 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Oracle Forms & Reports 6i
2020-07-07 18:30 - 2020-07-07 18:31 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Oracle pour Windows NT
2020-07-07 18:30 - 2020-07-07 18:30 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Oracle Forms 6i Admin
2020-07-07 18:30 - 2020-07-07 18:30 - 000000000 ____D C:\Users\SAPKEN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Oracle Forms 6i
2020-07-07 18:29 - 2020-07-07 18:31 - 000000000 ____D C:\orant
2020-07-07 18:28 - 2020-07-07 18:29 - 000000000 ____D C:\gesacadapp
2020-07-07 18:25 - 2020-07-28 10:17 - 000112712 _____ C:\Users\SAPKEN\AppData\Local\GDIPFONTCACHEV1.DAT
2020-07-07 18:24 - 2020-07-07 18:24 - 000001463 _____ C:\Users\SAPKEN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2020-07-07 18:24 - 2020-07-07 18:24 - 000001429 _____ C:\Users\SAPKEN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2020-07-07 18:24 - 2020-07-07 18:24 - 000000000 ____D C:\Users\SAPKEN\AppData\Local\VirtualStore
2020-07-07 18:23 - 2020-07-08 21:42 - 000000000 ____D C:\Users\SAPKEN
2020-07-07 18:23 - 2020-07-07 18:23 - 000000020 ___SH C:\Users\SAPKEN\ntuser.ini
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\SAPKEN\Voisinage réseau
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\SAPKEN\Voisinage d'impression
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\SAPKEN\Modèles
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\SAPKEN\Mes documents
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\SAPKEN\Menu Démarrer
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\SAPKEN\Documents\Mes vidéos
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\SAPKEN\Documents\Mes images
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\SAPKEN\Documents\Ma musique
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\SAPKEN\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\SAPKEN\AppData\Local\Historique
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Public\Documents\Mes vidéos
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Public\Documents\Mes images
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Public\Documents\Ma musique
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Default\Voisinage réseau
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Default\Voisinage d'impression
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Default\Modèles
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Default\Mes documents
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Default\Menu Démarrer
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Default\Documents\Mes vidéos
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Default\Documents\Mes images
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Default\Documents\Ma musique
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historique
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Default User\Voisinage réseau
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Default User\Voisinage d'impression
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Default User\Modèles
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Default User\Mes documents
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Default User\Menu Démarrer
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Default User\Documents\Mes vidéos
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Default User\Documents\Mes images
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Default User\Documents\Ma musique
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Historique
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\ProgramData\Modèles
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programmes
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\ProgramData\Menu Démarrer
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\ProgramData\Favoris
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\ProgramData\Documents\Mes vidéos
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\ProgramData\Documents\Mes images
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\ProgramData\Documents\Ma musique
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\ProgramData\Bureau
2020-07-07 18:23 - 2020-07-07 18:23 - 000000000 _SHDL C:\Program Files\Fichiers communs
2020-07-07 16:33 - 1998-06-05 22:39 - 001347344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVBVM50.DLL
2020-07-07 16:33 - 1998-06-05 22:38 - 000940304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFC42.NEW
2020-07-07 16:33 - 1998-02-18 17:09 - 000085504 _____ (Blue Sky Software Corporation) C:\Windows\SysWOW64\HTMLWH.DLL
2020-07-07 16:33 - 1997-05-01 09:30 - 000026401 _____ C:\Windows\SysWOW64\ODBCINST.HLP
2020-07-07 16:33 - 1997-05-01 09:30 - 000026224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ODBC16GT.DLL
2020-07-07 16:33 - 1997-05-01 09:30 - 000011536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ODBCCP32.CPL
2020-07-07 16:33 - 1997-05-01 09:30 - 000004656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DS16GT.DLL
2020-07-07 16:33 - 1997-05-01 09:30 - 000000244 _____ C:\Windows\SysWOW64\ODBCINST.CNT
2020-07-07 16:33 - 1996-01-31 02:13 - 000254464 _____ C:\Windows\SysWOW64\MSVCRT2X.DLL
2020-07-07 16:33 - 1995-11-28 03:05 - 000640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OC30.DLL
2020-07-07 16:33 - 1995-09-30 09:55 - 000439296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVCR40D.DLL
2020-07-07 16:33 - 1995-01-14 02:40 - 000149504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCANS32.DLL

==================== Un mois (modifiés) ==================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2020-07-31 14:11 - 2009-09-01 02:54 - 000704480 _____ C:\Windows\system32\perfh00C.dat
2020-07-31 14:11 - 2009-09-01 02:54 - 000130754 _____ C:\Windows\system32\perfc00C.dat
2020-07-31 14:11 - 2009-07-14 07:12 - 001549700 _____ C:\Windows\system32\PerfStringBackup.INI
2020-07-31 14:11 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
2020-07-31 14:10 - 2009-07-14 06:50 - 000017872 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2020-07-31 14:10 - 2009-07-14 06:50 - 000017872 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2020-07-31 14:04 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-07-29 13:49 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\rescache
2020-07-29 11:59 - 2009-07-14 06:50 - 000443208 _____ C:\Windows\system32\FNTCACHE.DAT
2020-07-29 11:57 - 2009-09-01 03:32 - 000000000 __SHD C:\Windows\BitLockerDiscoveryVolumeContents
2020-07-29 11:57 - 2009-09-01 03:32 - 000000000 ____D C:\Program Files\Windows Journal
2020-07-29 11:57 - 2009-07-14 07:38 - 000000000 ____D C:\Program Files\Windows Sidebar
2020-07-29 11:57 - 2009-07-14 07:38 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2020-07-29 11:57 - 2009-07-14 07:38 - 000000000 ____D C:\Program Files\Windows Defender
2020-07-29 11:57 - 2009-07-14 07:38 - 000000000 ____D C:\Program Files (x86)\Windows Sidebar
2020-07-29 11:57 - 2009-07-14 07:38 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2020-07-29 11:57 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\SysWOW64\Setup
2020-07-29 11:57 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\SysWOW64\oobe
2020-07-29 11:57 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\SysWOW64\migwiz
2020-07-29 11:57 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\SysWOW64\manifeststore
2020-07-29 11:57 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\SysWOW64\Dism
2020-07-29 11:57 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\SysWOW64\AdvancedInstallers
2020-07-29 11:57 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\Setup
2020-07-29 11:57 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\oobe
2020-07-29 11:57 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\migwiz
2020-07-29 11:57 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\manifeststore
2020-07-29 11:57 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\Dism
2020-07-29 11:57 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\AdvancedInstallers
2020-07-29 11:57 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\servicing
2020-07-29 11:57 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\PolicyDefinitions
2020-07-29 11:54 - 2009-07-14 04:36 - 000175104 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll
2020-07-29 11:54 - 2009-07-14 04:36 - 000152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll
2020-07-12 19:13 - 2009-07-14 05:20 - 000000000 ____D C:\Program Files\Common Files\Microsoft Shared
2020-07-12 09:01 - 2009-09-01 03:32 - 000000000 ____D C:\Windows\ShellNew
2020-07-07 19:15 - 2009-07-14 07:38 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2020-07-07 19:15 - 2009-07-14 06:50 - 000000000 ____D C:\Windows\Setup
2020-07-07 18:35 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF
2020-07-07 18:23 - 2009-07-14 05:20 - 000000000 ____D C:\Program Files\Windows NT
2020-07-07 18:21 - 2009-07-14 07:38 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2020-07-07 18:20 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\sysprep
2020-07-07 18:18 - 2009-09-01 03:32 - 000000000 ____D C:\Windows\CSC
2020-07-03 12:35 - 2020-01-17 15:05 - 000000000 ____D C:\Users\SAPKEN\Desktop\Projets tuto et Rapports de stage

==================== Fichiers à la racine de certains dossiers ========

2020-07-31 14:06 - 2020-07-31 14:07 - 000000004 _____ () C:\ProgramData\lock.dat
2020-07-31 14:08 - 2020-07-31 14:24 - 000000004 _____ () C:\ProgramData\rc.dat
2020-07-31 14:06 - 2020-07-31 14:06 - 000000008 _____ () C:\ProgramData\ts.dat
2020-07-31 13:18 - 2020-07-31 13:18 - 000011856 _____ () C:\Users\SAPKEN\AppData\Local\InstallationConfiguration.xml
2020-07-31 13:18 - 2020-07-31 13:18 - 000141312 _____ () C:\Users\SAPKEN\AppData\Local\installer.dat

==================== SigCheck ============================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)


LastRegBack: 2020-07-26 09:53
==================== Fin de FRST.txt ========================