cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 26-10-2017
Exécuté par maya (administrateur) sur MAYA-PC (31-10-2017 09:48:06)
Exécuté depuis C:\Users\maya\Desktop
Profils chargés: maya (Profils disponibles: maya & DefaultAppPool)
Platform: Windows 10 Home Version 1709 16299.19 (X64) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: Chrome)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)


==================== Registre (Avec liste blanche) ===========================


==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{a2058eb6-d028-44a3-8c79-8ecefb66e8b0}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{b2326a6f-1634-4cfb-98f5-f46a86c3e992}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.fr/
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.fr/?q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.fr/
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.fr/
HKU\S-1-5-21-236052768-2235680396-1591271425-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.fr/
SearchScopes: HKLM-x32 -> DefaultScope la valeur est absente
DPF: HKLM-x32 {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} hxxp://content.systemrequirementslab.com/bin/srldetect_intel_4.5.15.0.cab

FireFox:
========
FF DefaultProfile: y3mo6gh5.default
FF ProfilePath: C:\Users\maya\AppData\Roaming\Mozilla\Firefox\Profiles\y3mo6gh5.default [2017-10-30]
FF Extension: (Avira Browser Safety) - C:\Users\maya\AppData\Roaming\Mozilla\Firefox\Profiles\y3mo6gh5.default\Extensions\abs@avira.com [2017-08-30]
FF Extension: (Avira Password Manager) - C:\Users\maya\AppData\Roaming\Mozilla\Firefox\Profiles\y3mo6gh5.default\Extensions\passwordmanager@avira.com [2017-08-30]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_27_0_0_183.dll [2017-10-25] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_183.dll [2017-10-25] ()
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin-x32: @nitropdf.com/NitroPDF -> C:\Program Files (x86)\Nitro\Reader 3\npnitromozilla.dll [2013-03-26] (Nitro PDF)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-02-05] (VideoLAN)

Chrome:
=======
CHR DefaultProfile: Profile 1
CHR HomePage: Profile 1 -> qwant.com
CHR StartupUrls: Profile 1 -> "hxxps://www.google.fr/","hxxp://fr.msn.com/?pc=UP97&ocid=UP97DHP","hxxp://www.mystartsearch.com/?type=hp&ts=1425229772&from=wpc&uid=VBOXXHARDDISK_VB8d1dc340-de84bc26","hxxp://www.mysites123.com/?type=hp&ts=1453937113&z=b7cb58ef1befd4245593e68g6zcwecbtdc7mfg1gcc&from=amt&uid=samsungxssdx850xevox120gb_s21unsag466288r"
CHR NewTab: Profile 1 -> Not-active:"chrome-extension://ipmkfpcnmccejididiaagpgchgjfajgp/html/newtab.html"
CHR DefaultSearchURL: Profile 1 -> hxxps://www.facebook.com/search/top/?q={searchTerms}&opensearch=1
CHR DefaultSearchKeyword: Profile 1 -> facebook.com
CHR DefaultSuggestURL: Profile 1 -> hxxps://www.facebook.com/search/opensearch/suggestions/?q={searchTerms}
CHR Profile: C:\Users\maya\AppData\Local\Google\Chrome\User Data\Default [2017-10-31]
CHR Extension: (Slides) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Docs) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Google Drive) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-08-28]
CHR Extension: (YouTube) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-08-28]
CHR Extension: (Sheets) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Protection Web Avira) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2017-08-30]
CHR Extension: (Google Docs hors connexion) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-08-28]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-28]
CHR Extension: (Gmail) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-08-28]
CHR Extension: (Chrome Media Router) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-10-27]
CHR Profile: C:\Users\maya\AppData\Local\Google\Chrome\User Data\Guest Profile [2017-10-30]
CHR Profile: C:\Users\maya\AppData\Local\Google\Chrome\User Data\Profile 1 [2017-10-31]
CHR Extension: (Slides) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Docs) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Google Drive) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-08-28]
CHR Extension: (DuckDuckGo Search) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bkdgflcldnnnapblkhphbgpggdiikppg [2017-10-29]
CHR Extension: (YouTube) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-08-28]
CHR Extension: (uBlock Origin) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2017-10-16]
CHR Extension: (Sheets) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Google Docs hors connexion) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-08-29]
CHR Extension: (Qwant.com) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hnlkiofnhhoahaiimdicppgemmmomijo [2017-09-10]
CHR Extension: (Dropbox) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ioekoebejdcmnlefjiknokhhafglcjdl [2017-08-28]
CHR Extension: (Avira SafeSearch Plus) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ipmkfpcnmccejididiaagpgchgjfajgp [2017-08-30]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-28]
CHR Extension: (Gmail) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-08-28]
CHR Extension: (Chrome Media Router) - C:\Users\maya\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-10-27]
CHR Profile: C:\Users\maya\AppData\Local\Google\Chrome\User Data\System Profile [2017-10-30]
CHR HKLM\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [ipmkfpcnmccejididiaagpgchgjfajgp] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [ipmkfpcnmccejididiaagpgchgjfajgp] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Avec liste blanche) ====================


===================== Pilotes (Avec liste blanche) ======================

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2017-10-31 09:48 - 2017-10-31 09:48 - 000009409 _____ C:\Users\maya\Desktop\FRST.txt
2017-10-31 09:47 - 2017-10-31 09:48 - 000000000 ____D C:\FRST
2017-10-31 09:45 - 2017-10-31 09:45 - 002403328 _____ (Farbar) C:\Users\maya\Desktop\FRST64.exe
2017-10-31 09:39 - 2017-10-31 09:39 - 000006286 _____ C:\Users\maya\Desktop\rapport ZHPFix[R1].txt
2017-10-31 09:36 - 2017-10-31 09:36 - 000006286 _____ C:\Users\maya\Desktop\ZHPFixReport.txt
2017-10-31 09:35 - 2017-10-31 09:35 - 000000000 ____D C:\Users\maya\Desktop\Quarantine
2017-10-31 09:34 - 2017-10-31 09:34 - 003061760 _____ (Nicolas Coolman) C:\Users\maya\Desktop\ZHPFix.exe
2017-10-30 22:40 - 2017-10-30 22:40 - 000135073 _____ C:\Users\maya\Desktop\ZHPDiag rapport.txt
2017-10-30 22:38 - 2017-10-30 22:38 - 000135070 _____ C:\Users\maya\Desktop\ZHPDiag.txt
2017-10-30 22:35 - 2017-10-30 22:35 - 000000913 _____ C:\Users\maya\Desktop\ZHPDiag.lnk
2017-10-30 22:00 - 2017-10-30 22:00 - 007986864 _____ ( ) C:\Users\maya\Desktop\AVG_Remover.exe
2017-10-30 21:56 - 2017-10-30 21:56 - 002924416 _____ C:\Users\maya\Desktop\ZHPDiag3.exe
2017-10-29 13:24 - 2017-10-29 13:24 - 000310732 _____ C:\Users\maya\Downloads\pc.pdf
2017-10-28 14:18 - 2017-10-28 14:18 - 000000000 ____D C:\Users\maya\Downloads\AVG Internet Security License key
2017-10-28 13:57 - 2017-10-30 22:07 - 000000000 ____D C:\Program Files (x86)\AVG
2017-10-28 13:42 - 2017-10-30 22:13 - 000000000 ____D C:\AVG_Remover
2017-10-28 13:41 - 2017-10-28 13:41 - 007986864 _____ ( ) C:\Users\maya\Downloads\AVG_Remover.exe
2017-10-28 13:40 - 2017-10-28 13:41 - 003634880 _____ (AVG Technologies CZ, s.r.o.) C:\Users\maya\Downloads\AVG_Protection_755.exe
2017-10-28 09:42 - 2017-10-30 22:13 - 000000000 ____D C:\ProgramData\Avg
2017-10-28 09:42 - 2017-10-30 22:07 - 000000000 ____D C:\Users\maya\AppData\Local\Avg
2017-10-28 09:20 - 2017-10-28 09:23 - 000000000 ___HD C:\$WINDOWS.~BT
2017-10-26 12:36 - 2017-10-28 09:23 - 000000000 ____D C:\WINDOWS\Panther
2017-10-25 13:02 - 2017-10-25 13:02 - 000194329 _____ C:\Users\maya\Desktop\Planning novembre.pdf
2017-10-23 12:35 - 2017-10-23 12:35 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2017-10-22 20:04 - 2017-10-22 20:04 - 000000000 ____D C:\Users\maya\Documents\FeedbackHub
2017-10-22 19:40 - 2017-10-22 19:40 - 000000000 ___HD C:\$SysReset
2017-10-19 09:30 - 2017-10-13 19:08 - 000835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2017-10-19 09:30 - 2017-10-13 19:08 - 000177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2017-10-19 01:53 - 2017-10-19 01:59 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2017-10-19 01:53 - 2017-10-19 01:53 - 000000000 ___DL C:\Users\Public\Recorded TV (1)
2017-10-19 01:53 - 2017-10-19 01:53 - 000000000 ____D C:\Program Files\Common Files\SpeechEngines
2017-10-19 01:51 - 2017-10-19 01:53 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2017-10-19 01:51 - 2017-10-19 01:51 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2017-10-19 01:48 - 2017-10-19 01:48 - 025246208 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 023664128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 021752832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 019343360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 018913792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 017080832 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 008592280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2017-10-19 01:48 - 2017-10-19 01:48 - 008097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 006032896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 005906264 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 004744192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 003681280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 003672064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2017-10-19 01:48 - 2017-10-19 01:48 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 003312432 _____ C:\WINDOWS\system32\Windows.Mirage.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 002905600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2017-10-19 01:48 - 2017-10-19 01:48 - 002869248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 002573208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2017-10-19 01:48 - 2017-10-19 01:48 - 002474080 _____ C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 002400664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2017-10-19 01:48 - 2017-10-19 01:48 - 002106880 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2017-10-19 01:48 - 2017-10-19 01:48 - 001856000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 001822208 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 001664000 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 001641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 001633744 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 001587200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 001559552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 001554216 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 001547264 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 001528912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 001470976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 001463856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 001436432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 001323840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 001261864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 001200024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2017-10-19 01:48 - 2017-10-19 01:48 - 001165824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 001053592 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2017-10-19 01:48 - 2017-10-19 01:48 - 000925184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000812032 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000778936 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2017-10-19 01:48 - 2017-10-19 01:48 - 000769024 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPKsp.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000739696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000726016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2017-10-19 01:48 - 2017-10-19 01:48 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000677280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2017-10-19 01:48 - 2017-10-19 01:48 - 000665088 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000649304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2017-10-19 01:48 - 2017-10-19 01:48 - 000640512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswstr10.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000597160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000591872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPKsp.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000566272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000559000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2017-10-19 01:48 - 2017-10-19 01:48 - 000542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2017-10-19 01:48 - 2017-10-19 01:48 - 000478208 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000464416 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000442880 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2017-10-19 01:48 - 2017-10-19 01:48 - 000418712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000373656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2017-10-19 01:48 - 2017-10-19 01:48 - 000353688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000345088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicRuntimes.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2017-10-19 01:48 - 2017-10-19 01:48 - 000246168 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000232344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2017-10-19 01:48 - 2017-10-19 01:48 - 000184984 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000139672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2017-10-19 01:48 - 2017-10-19 01:48 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000123520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthTokenBrokerExt.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000060824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\urscx01000.sys
2017-10-19 01:48 - 2017-10-19 01:48 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys
2017-10-19 01:48 - 2017-10-19 01:48 - 000045976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2017-10-19 01:48 - 2017-10-19 01:48 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys
2017-10-19 01:48 - 2017-10-19 01:48 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjint40.dll
2017-10-19 01:48 - 2017-10-19 01:48 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2017-10-19 01:48 - 2017-10-19 01:48 - 000000000 ____D C:\ProgramData\ATI
2017-10-19 01:47 - 2017-10-19 01:47 - 000000000 ___HD C:\Users\maya\MicrosoftEdgeBackups
2017-10-19 01:44 - 2017-10-19 01:59 - 000000000 ____D C:\Program Files (x86)\MSBuild
2017-10-19 01:44 - 2017-10-19 01:44 - 000000020 ___SH C:\Users\maya\ntuser.ini
2017-10-19 01:44 - 2017-10-19 01:44 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2017-10-19 01:44 - 2017-10-19 01:44 - 000000000 ____D C:\WINDOWS\SysWOW64\BestPractices
2017-10-19 01:44 - 2017-10-19 01:44 - 000000000 ____D C:\WINDOWS\system32\msmq
2017-10-19 01:44 - 2017-10-19 01:44 - 000000000 ____D C:\WINDOWS\system32\BestPractices
2017-10-19 01:44 - 2017-10-19 01:44 - 000000000 ____D C:\Program Files\Reference Assemblies
2017-10-19 01:44 - 2017-10-19 01:44 - 000000000 ____D C:\Program Files\MSBuild
2017-10-19 01:44 - 2017-10-19 01:44 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2017-10-19 01:44 - 2017-10-19 01:44 - 000000000 ____D C:\inetpub
2017-10-19 01:43 - 2017-09-28 15:50 - 001166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2017-10-19 01:43 - 2017-09-28 15:50 - 000124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2017-10-19 01:43 - 2017-09-28 15:50 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2017-10-19 01:43 - 2017-09-22 18:19 - 000778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2017-10-19 01:43 - 2017-09-22 18:19 - 000103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2017-10-19 01:43 - 2017-09-22 18:19 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2017-10-19 01:42 - 2017-09-28 19:05 - 005739008 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll
2017-10-19 01:42 - 2017-09-28 19:05 - 002629120 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll
2017-10-19 01:42 - 2017-09-28 18:56 - 006347776 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll
2017-10-19 01:42 - 2017-09-28 18:44 - 002629120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons0009.dll
2017-10-19 01:42 - 2017-09-28 18:38 - 005484032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll
2017-10-19 01:39 - 2017-10-28 09:23 - 000001908 _____ C:\WINDOWS\diagwrn.xml
2017-10-19 01:39 - 2017-10-28 09:23 - 000001908 _____ C:\WINDOWS\diagerr.xml
2017-10-19 01:37 - 2017-10-31 09:34 - 000004158 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{A94AE594-8AC7-49F8-8E9C-AB31796D96C0}
2017-10-19 01:37 - 2017-10-30 22:14 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-10-19 01:37 - 2017-10-25 16:07 - 000004706 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
2017-10-19 01:37 - 2017-10-25 16:07 - 000004558 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2017-10-19 01:37 - 2017-10-19 01:38 - 000003606 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d09222e83bb5b2
2017-10-19 01:37 - 2017-10-19 01:38 - 000003606 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2017-10-19 01:37 - 2017-10-19 01:38 - 000003544 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d0c1414145fd40
2017-10-19 01:37 - 2017-10-19 01:38 - 000003378 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore1d09222e703a0bd
2017-10-19 01:37 - 2017-10-19 01:38 - 000003378 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2017-10-19 01:37 - 2017-10-19 01:38 - 000003320 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore1d0c1414062c5dc
2017-10-19 01:37 - 2017-10-19 01:38 - 000003034 _____ C:\WINDOWS\System32\Tasks\update-S-1-5-21-236052768-2235680396-1591271425-1000
2017-10-19 01:37 - 2017-10-19 01:38 - 000002782 _____ C:\WINDOWS\System32\Tasks\update-sys
2017-10-19 01:37 - 2017-10-19 01:38 - 000002608 _____ C:\WINDOWS\System32\Tasks\SmartDefrag_Update
2017-10-19 01:37 - 2017-10-19 01:38 - 000002588 _____ C:\WINDOWS\System32\Tasks\CreateExplorerShellUnelevatedTask
2017-10-19 01:37 - 2017-10-19 01:38 - 000002524 _____ C:\WINDOWS\System32\Tasks\MirageAgent
2017-10-19 01:37 - 2017-10-19 01:38 - 000002340 _____ C:\WINDOWS\System32\Tasks\{454FD8F7-C398-45D3-A71D-1C53FD047EE5}
2017-10-19 01:37 - 2017-10-19 01:38 - 000002266 _____ C:\WINDOWS\System32\Tasks\{E92D2445-D850-4A23-A208-C1984FFAA7DB}
2017-10-19 01:37 - 2017-10-19 01:38 - 000002218 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2017-10-19 01:37 - 2017-10-19 01:37 - 000000000 ____D C:\WINDOWS\System32\Tasks\WPD
2017-10-19 01:37 - 2017-10-19 01:37 - 000000000 ____D C:\WINDOWS\System32\Tasks\Avira
2017-10-19 01:22 - 2017-10-19 01:22 - 000001519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2017-10-19 01:19 - 2017-10-19 02:03 - 000000000 ____D C:\Users\maya\AppData\Local\Packages
2017-10-19 01:19 - 2017-10-19 01:19 - 000000000 ____D C:\ProgramData\USOShared
2017-10-19 01:18 - 2017-10-28 16:08 - 000000000 ____D C:\Users\maya
2017-10-19 01:18 - 2017-10-19 01:34 - 000000000 ____D C:\Users\DefaultAppPool
2017-10-19 01:18 - 2017-10-19 01:18 - 000000000 _SHDL C:\Users\maya\Voisinage réseau
2017-10-19 01:18 - 2017-10-19 01:18 - 000000000 _SHDL C:\Users\maya\Voisinage d'impression
2017-10-19 01:18 - 2017-10-19 01:18 - 000000000 _SHDL C:\Users\maya\Modèles
2017-10-19 01:18 - 2017-10-19 01:18 - 000000000 _SHDL C:\Users\maya\Mes documents
2017-10-19 01:18 - 2017-10-19 01:18 - 000000000 _SHDL C:\Users\maya\Menu Démarrer
2017-10-19 01:18 - 2017-10-19 01:18 - 000000000 _SHDL C:\Users\maya\Documents\Mes vidéos
2017-10-19 01:18 - 2017-10-19 01:18 - 000000000 _SHDL C:\Users\maya\Documents\Mes images
2017-10-19 01:18 - 2017-10-19 01:18 - 000000000 _SHDL C:\Users\maya\Documents\Ma musique
2017-10-19 01:18 - 2017-10-19 01:18 - 000000000 _SHDL C:\Users\maya\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2017-10-19 01:18 - 2017-10-19 01:18 - 000000000 _SHDL C:\Users\maya\AppData\Local\Historique
2017-10-19 01:18 - 2017-10-19 01:18 - 000000000 _SHDL C:\Users\DefaultAppPool\Voisinage réseau
2017-10-19 01:18 - 2017-10-19 01:18 - 000000000 _SHDL C:\Users\DefaultAppPool\Voisinage d'impression
2017-10-19 01:18 - 2017-10-19 01:18 - 000000000 _SHDL C:\Users\DefaultAppPool\Modèles
2017-10-19 01:18 - 2017-10-19 01:18 - 000000000 _SHDL C:\Users\DefaultAppPool\Mes documents
2017-10-19 01:18 - 2017-10-19 01:18 - 000000000 _SHDL C:\Users\DefaultAppPool\Menu Démarrer
2017-10-19 01:18 - 2017-10-19 01:18 - 000000000 _SHDL C:\Users\DefaultAppPool\Documents\Mes vidéos
2017-10-19 01:18 - 2017-10-19 01:18 - 000000000 _SHDL C:\Users\DefaultAppPool\Documents\Mes images
2017-10-19 01:18 - 2017-10-19 01:18 - 000000000 _SHDL C:\Users\DefaultAppPool\Documents\Ma musique
2017-10-19 01:18 - 2017-10-19 01:18 - 000000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2017-10-19 01:18 - 2017-10-19 01:18 - 000000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Historique
2017-10-19 01:18 - 2017-10-19 01:12 - 000000000 ____D C:\Users\maya\AppData\Roaming\ATI
2017-10-19 01:18 - 2017-10-19 01:12 - 000000000 ____D C:\Users\maya\AppData\Local\ATI
2017-10-19 01:18 - 2017-10-19 01:12 - 000000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\ATI
2017-10-19 01:18 - 2017-10-19 01:12 - 000000000 ____D C:\Users\DefaultAppPool\AppData\Local\ATI
2017-10-19 01:14 - 2017-10-19 01:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2017-10-19 01:13 - 2017-10-30 22:19 - 002666986 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-10-19 01:12 - 2017-10-19 01:12 - 000000000 ____D C:\Users\Default\AppData\Roaming\ATI
2017-10-19 01:12 - 2017-10-19 01:12 - 000000000 ____D C:\Users\Default\AppData\Local\ATI
2017-10-19 01:12 - 2017-10-19 01:12 - 000000000 ____D C:\Users\Default User\AppData\Roaming\ATI
2017-10-19 01:12 - 2017-10-19 01:12 - 000000000 ____D C:\Users\Default User\AppData\Local\ATI
2017-10-19 01:11 - 2017-09-29 14:41 - 002241024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2017-10-19 01:07 - 2017-10-30 16:13 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2017-10-19 01:07 - 2017-10-19 01:29 - 000403624 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-10-18 21:43 - 2017-10-18 21:43 - 000000000 ____D C:\ProgramData\Oracle
2017-10-18 21:26 - 2017-10-18 21:27 - 018617536 _____ (Microsoft Corporation) C:\Users\maya\Downloads\MediaCreationTool.exe
2017-10-18 20:55 - 2017-10-19 01:44 - 000000000 ____D C:\Windows10Upgrade
2017-10-18 20:55 - 2017-10-18 20:55 - 006541184 _____ (Microsoft Corporation) C:\Users\maya\Downloads\Windows10Upgrade9252.exe
2017-10-18 20:55 - 2017-10-18 20:55 - 000000761 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Assistant Mise à jour de Windows 10.lnk
2017-10-18 09:09 - 2017-10-18 09:10 - 001626624 _____ () C:\Users\maya\Downloads\Windows ISO Downloader.exe
2017-10-17 21:31 - 2017-10-17 21:31 - 000043549 _____ C:\Users\maya\Downloads\AttestationDroits (4).pdf
2017-10-12 09:27 - 2017-10-12 09:27 - 126925120 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe
2017-10-10 19:36 - 2017-10-19 01:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2017-10-10 19:36 - 2017-10-10 19:36 - 000000875 _____ C:\Users\Public\Desktop\CCleaner.lnk
2017-10-10 19:36 - 2017-10-10 19:36 - 000000000 ____D C:\Program Files\CCleaner
2017-10-10 09:45 - 2017-10-10 09:45 - 005999792 _____ (Enigma Software Group USA, LLC.) C:\Users\maya\Downloads\SpyHunter-Installer.exe
2017-10-10 09:44 - 2017-10-10 09:44 - 009809688 _____ (Piriform Ltd) C:\Users\maya\Downloads\ccsetup535.exe
2017-10-06 14:39 - 2017-10-06 14:39 - 000320365 _____ C:\Users\maya\Downloads\oximetry_pocket_guide_french.pdf
2017-10-06 14:39 - 2017-10-06 14:39 - 000320365 _____ C:\Users\maya\Downloads\oximetry_pocket_guide_french (1).pdf

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2017-10-31 09:37 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\DeliveryOptimization
2017-10-31 09:36 - 2017-09-29 14:46 - 000000000 ___HD C:\Program Files\WindowsApps
2017-10-31 09:36 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\AppReadiness
2017-10-31 09:36 - 2016-07-10 16:51 - 000000000 ____D C:\Users\maya\AppData\Roaming\ZHP
2017-10-30 22:35 - 2017-04-27 18:32 - 000000000 ____D C:\Users\maya\AppData\Local\ZHP
2017-10-30 22:19 - 2017-09-30 15:40 - 001218968 _____ C:\WINDOWS\system32\perfh00C.dat
2017-10-30 22:19 - 2017-09-30 15:40 - 000282218 _____ C:\WINDOWS\system32\perfc00C.dat
2017-10-30 22:14 - 2017-09-29 09:45 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2017-10-30 13:17 - 2017-09-29 14:44 - 000000000 ____D C:\WINDOWS\INF
2017-10-27 12:12 - 2015-11-06 20:16 - 000000000 ____D C:\Users\maya\Documents\Lightshot
2017-10-27 05:20 - 2014-03-26 10:02 - 000000000 ____D C:\Users\maya\AppData\Roaming\vlc
2017-10-26 20:52 - 2017-08-28 18:14 - 000002282 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-10-26 20:52 - 2017-08-28 18:14 - 000002270 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-10-26 00:07 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\NDF
2017-10-25 16:07 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2017-10-25 16:07 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\Macromed
2017-10-23 13:15 - 2014-01-08 12:28 - 000000000 ____D C:\WINDOWS\pss
2017-10-22 10:08 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\rescache
2017-10-19 09:30 - 2017-09-29 14:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2017-10-19 09:10 - 2017-09-29 09:45 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2017-10-19 09:09 - 2017-08-30 18:32 - 000000000 ____D C:\Users\maya\AppData\Local\Avira
2017-10-19 09:08 - 2017-04-08 11:28 - 000000000 ____D C:\ProgramData\Package Cache
2017-10-19 03:53 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\appcompat
2017-10-19 02:06 - 2017-09-29 14:46 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2017-10-19 01:59 - 2017-09-30 15:40 - 000000000 ____D C:\WINDOWS\SysWOW64\sysprep
2017-10-19 01:59 - 2017-09-29 14:46 - 000000000 __SHD C:\Program Files\Windows Sidebar
2017-10-19 01:59 - 2017-09-29 14:46 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar
2017-10-19 01:59 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\IME
2017-10-19 01:59 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2017-10-19 01:59 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\spool
2017-10-19 01:59 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\IME
2017-10-19 01:59 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\schemas
2017-10-19 01:59 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2017-10-19 01:59 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2017-10-19 01:59 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2017-10-19 01:59 - 2017-09-29 09:45 - 000000000 ____D C:\WINDOWS\system32\Dism
2017-10-19 01:59 - 2017-05-27 15:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZapWallPaper
2017-10-19 01:59 - 2017-05-06 11:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lightshot
2017-10-19 01:59 - 2017-03-18 22:03 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2017-10-19 01:59 - 2016-11-13 09:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro
2017-10-19 01:59 - 2016-09-15 10:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MGI PhotoSuite III SE
2017-10-19 01:59 - 2016-05-22 12:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake
2017-10-19 01:59 - 2015-12-13 11:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2017-10-19 01:59 - 2015-10-30 20:03 - 000000000 ____D C:\WINDOWS\ShellNew
2017-10-19 01:59 - 2014-05-20 10:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone
2017-10-19 01:59 - 2014-03-21 18:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2017-10-19 01:59 - 2014-03-21 15:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2017-10-19 01:59 - 2014-01-07 20:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2017-10-19 01:59 - 2013-11-26 12:52 - 000000000 ___HD C:\WINDOWS\system32\CanonIJ Uninstaller Information
2017-10-19 01:59 - 2013-11-26 12:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG2100 series
2017-10-19 01:59 - 2013-11-24 13:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2017-10-19 01:59 - 2013-11-23 11:34 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat
2017-10-19 01:59 - 2013-11-21 20:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RocketDock
2017-10-19 01:59 - 2013-11-21 20:40 - 000000000 ____D C:\WINDOWS\system32\SPReview
2017-10-19 01:59 - 2013-11-21 20:40 - 000000000 ____D C:\WINDOWS\system32\EventProviders
2017-10-19 01:58 - 2017-09-29 14:49 - 000000000 ____D C:\WINDOWS\Setup
2017-10-19 01:58 - 2017-09-29 14:46 - 000000000 __RHD C:\Users\Public\Libraries
2017-10-19 01:54 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\oobe
2017-10-19 01:54 - 2013-11-22 21:34 - 000000000 ____D C:\WINDOWS\SysWOW64\Spool
2017-10-19 01:53 - 2017-09-08 10:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EasyAppSoft
2017-10-19 01:53 - 2017-06-26 11:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2017-10-19 01:53 - 2017-05-03 14:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2017-10-19 01:53 - 2017-04-08 11:27 - 000000000 ____D C:\Program Files\Common Files\ATI Technologies
2017-10-19 01:53 - 2017-04-08 11:27 - 000000000 ____D C:\Program Files\AMD
2017-10-19 01:53 - 2017-04-08 11:25 - 000000000 ____D C:\Program Files\Synaptics
2017-10-19 01:53 - 2015-08-14 12:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\zu-ZA
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\yo-NG
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\xh-ZA
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\wo-SN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\uz-Latn-UZ
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\tn-ZA
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\tk-TM
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\ti-ET
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\tg-Cyrl-TJ
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\sw-KE
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-RS
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-BA
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\si-LK
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\sd-Arab-PK
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\rw-RW
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\quc-Latn-GT
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\prs-AF
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-Arab-PK
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\nso-ZA
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\mn-MN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\ky-KG
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\ku-Arab-IQ
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\ig-NG
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\ha-Latn-NG
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\chr-CHER-US
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES-valencia
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\bs-Latn-BA
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-BD
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\az-Latn-AZ
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\zu-ZA
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\yo-NG
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\xh-ZA
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\wo-SN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\vi-VN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\uz-Latn-UZ
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\ur-PK
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\ug-CN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\tt-RU
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\tn-ZA
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\tk-TM
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\ti-ET
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\tg-Cyrl-TJ
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\te-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\ta-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\sw-KE
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-RS
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-BA
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\sq-AL
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\si-LK
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\sd-Arab-PK
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\rw-RW
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\quz-PE
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\quc-Latn-GT
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\prs-AF
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\pa-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\pa-Arab-PK
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\or-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\nso-ZA
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\nn-NO
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\ne-NP
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\mr-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\mn-MN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\ml-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\lo-LA
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\lb-LU
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\ky-KG
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\ku-Arab-IQ
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\kok-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\kn-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\km-KH
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\kk-KZ
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\ka-GE
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\is-IS
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\ig-NG
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\id-ID
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\hy-AM
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\ha-Latn-NG
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\gu-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\gd-GB
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\ga-IE
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\fil-PH
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\fa-IR
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\cy-GB
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\chr-CHER-US
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\ca-ES-valencia
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\bs-Latn-BA
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\bn-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\bn-BD
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\be-BY
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\az-Latn-AZ
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\as-IN
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\am-ET
2017-10-19 01:49 - 2017-09-30 15:41 - 000000000 ____D C:\WINDOWS\system32\af-ZA
2017-10-19 01:49 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\appraiser
2017-10-19 01:47 - 2016-08-06 19:40 - 000000000 ____D C:\Users\maya\AppData\Local\ConnectedDevicesPlatform
2017-10-19 01:45 - 2015-07-29 16:03 - 000000000 __RHD C:\Users\Public\AccountPictures
2017-10-19 01:45 - 2015-07-29 16:02 - 000000000 ____D C:\Users\maya\AppData\Local\TileDataLayer
2017-10-19 01:44 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2017-10-19 01:44 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\MUI
2017-10-19 01:44 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\inetsrv
2017-10-19 01:44 - 2017-09-29 14:43 - 000613376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll
2017-10-19 01:44 - 2017-09-29 14:43 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqutil.dll
2017-10-19 01:44 - 2017-09-29 14:43 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.dll
2017-10-19 01:44 - 2017-09-29 14:43 - 000204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll
2017-10-19 01:44 - 2017-09-29 14:43 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll
2017-10-19 01:44 - 2017-09-29 14:43 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqrt.dll
2017-10-19 01:44 - 2017-09-29 14:43 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.tlb
2017-10-19 01:44 - 2017-09-29 14:43 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa30.tlb
2017-10-19 01:44 - 2017-09-29 14:43 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa20.tlb
2017-10-19 01:44 - 2017-09-29 14:43 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll
2017-10-19 01:44 - 2017-09-29 14:43 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll
2017-10-19 01:44 - 2017-09-29 14:43 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa10.tlb
2017-10-19 01:44 - 2017-09-29 14:43 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll
2017-10-19 01:44 - 2017-09-29 14:43 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe
2017-10-19 01:44 - 2017-09-29 14:43 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll
2017-10-19 01:44 - 2017-09-29 14:43 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\cngkeyhelper.dll
2017-10-19 01:44 - 2017-09-29 14:43 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll
2017-10-19 01:44 - 2017-09-29 14:43 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cngkeyhelper.dll
2017-10-19 01:44 - 2017-09-29 14:43 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll
2017-10-19 01:44 - 2017-09-29 14:43 - 000009096 _____ C:\WINDOWS\SysWOW64\msmqtrc.mof
2017-10-19 01:44 - 2017-09-29 14:42 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll
2017-10-19 01:44 - 2017-09-29 14:42 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe
2017-10-19 01:44 - 2017-09-29 14:42 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll
2017-10-19 01:44 - 2017-09-29 14:42 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll
2017-10-19 01:44 - 2017-09-29 14:41 - 001381888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll
2017-10-19 01:44 - 2017-09-29 14:41 - 000776192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll
2017-10-19 01:44 - 2017-09-29 14:41 - 000564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll
2017-10-19 01:44 - 2017-09-29 14:41 - 000306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll
2017-10-19 01:44 - 2017-09-29 14:41 - 000222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll
2017-10-19 01:44 - 2017-09-29 14:41 - 000176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys
2017-10-19 01:44 - 2017-09-29 14:41 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll
2017-10-19 01:44 - 2017-09-29 14:41 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb
2017-10-19 01:44 - 2017-09-29 14:41 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb
2017-10-19 01:44 - 2017-09-29 14:41 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb
2017-10-19 01:44 - 2017-09-29 14:41 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe
2017-10-19 01:44 - 2017-09-29 14:41 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb
2017-10-19 01:44 - 2017-09-29 14:41 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe
2017-10-19 01:44 - 2017-09-29 14:41 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll
2017-10-19 01:44 - 2017-09-29 14:41 - 000009096 _____ C:\WINDOWS\system32\msmqtrc.mof
2017-10-19 01:43 - 2016-08-06 16:08 - 000000000 ___HD C:\$GetCurrent
2017-10-19 01:42 - 2017-09-30 15:40 - 000000000 ____D C:\WINDOWS\OCR
2017-10-19 01:41 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\Registration
2017-10-19 01:41 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files\windows nt
2017-10-19 01:38 - 2015-07-29 15:57 - 000023208 _____ C:\WINDOWS\system32\emptyregdb.dat
2017-10-19 01:37 - 2017-09-29 14:46 - 000000000 __RSD C:\WINDOWS\media
2017-10-19 01:28 - 2013-11-24 13:15 - 000000000 ____D C:\Users\maya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2017-10-19 01:22 - 2017-09-29 14:46 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2017-10-19 01:21 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2017-10-19 01:20 - 2017-07-16 09:04 - 000000000 ___HD C:\Users\maya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup-Disabled
2017-10-19 01:20 - 2016-12-20 10:38 - 000000000 ____D C:\Users\maya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2017-10-19 01:20 - 2016-09-29 11:16 - 000000000 ____D C:\Users\maya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Facebook
2017-10-19 01:20 - 2016-06-11 11:06 - 000000000 ____D C:\Users\maya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X
2017-10-19 01:20 - 2016-05-22 12:22 - 000000000 ____D C:\Users\maya\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake
2017-10-19 01:19 - 2017-09-29 14:46 - 000000000 ____D C:\ProgramData\USOPrivate
2017-10-19 01:14 - 2017-04-08 11:28 - 000000000 ____D C:\Program Files\ATI Technologies
2017-10-19 01:13 - 2017-04-08 11:28 - 002049916 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2017-10-19 01:13 - 2017-04-08 11:28 - 000000000 ____D C:\Program Files (x86)\ATI Technologies
2017-10-19 01:12 - 2017-09-29 09:45 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2017-10-19 01:12 - 2017-04-08 11:26 - 000000000 ____D C:\WINDOWS\SysWOW64\sda
2017-10-19 01:12 - 2014-01-08 13:58 - 000000000 ____D C:\AMD
2017-10-18 22:22 - 2016-08-06 17:19 - 000000036 _____ C:\WINDOWS\progress.ini
2017-10-18 21:43 - 2016-08-20 14:05 - 000000000 ____D C:\ProgramData\Sony Mobile
2017-10-18 21:43 - 2016-08-20 14:05 - 000000000 ____D C:\Program Files (x86)\Sony Mobile
2017-10-12 09:31 - 2013-11-21 17:58 - 000000000 ____D C:\WINDOWS\system32\MRT
2017-10-12 09:27 - 2013-11-21 17:58 - 126925120 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-10-04 13:43 - 2016-07-27 22:28 - 000000000 ____D C:\Users\maya\Desktop\Heures sup

==================== Fichiers à la racine de certains dossiers =======

2017-09-16 16:00 - 2017-09-16 16:00 - 000000017 _____ () C:\Users\maya\AppData\Local\resmon.resmoncfg
2015-01-25 23:33 - 2015-01-25 23:33 - 000000003 _____ () C:\Users\maya\AppData\Local\updater.log
2015-01-25 23:33 - 2017-05-06 11:06 - 000000425 _____ () C:\Users\maya\AppData\Local\UserProducts.xml

==================== Bamital & volsnap ======================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement
C:\WINDOWS\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement


ATTENTION: ==> Impossible d'accéder au BCD.

LastRegBack: 2017-10-29 06:36

==================== Fin de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité