cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 19-11-2017
Exécuté par PTAH (administrateur) sur LAPTOP-KFN4ESO6 (22-11-2017 05:42:24)
Exécuté depuis C:\Users\PTAH\Desktop
Profils chargés: PTAH & (Profils disponibles: PTAH & Administrateur)
Platform: Windows 10 Home Version 1703 15063.674 (X64) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: Chrome)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Advanced Micro Devices, Inc.) C:\Windows\syswow64\tbaseprovisioning.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe
(Realtek Semiconductor Corporation) C:\Program Files (x86)\Realtek\Realtek Bluetooth\AvrcpService.exe
() C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTDevMgr.exe
(Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(Sony) C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
() C:\Program Files (x86)\Lenovo\System Update\SUService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(Sony) C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Realtek Semiconductor Corporation) C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTServer.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8700.40675.0_x64__8wekyb3d8bbwe\HxCalendarAppImm.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8700.40675.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11710.1001.27.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Tracker Software Products (Canada) Ltd.) C:\Program Files\Tracker Software\PDF Viewer\PDFXCview.exe
(VideoLAN) C:\Program Files\VideoLAN\VLC\vlc.exe
(MPC-HC Team) C:\Program Files (x86)\K-Lite Codec Pack\MPC-HC64\mpc-hc64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Goversoft LLC) C:\Program Files (x86)\PrivaZer\PrivaZer.exe

==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation)
HKLM\...\Run: [BtServer] => C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe [229080 2015-06-02] (Realtek Semiconductor Corporation)
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [919768 2014-11-20] (Conexant Systems, Inc.)
HKLM\...\Run: [ForteConfig] => C:\Program Files\Conexant\ForteConfig\fmapp.exe [49056 2010-10-26] ()
HKLM\...\Run: [LenovoUtility] => C:\Program Files\Lenovo\LenovoUtility\utility.exe [791848 2015-08-27] ()
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 2014-04-10] (Conexant Systems, Inc.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [4231264 2017-04-16] (Synaptics Incorporated)
HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [8029064 2016-12-16] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [CLMLServer_For_P2G8] => C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc_P2G8.exe [190744 2017-10-18] (CyberLink)
HKLM-x32\...\Run: [CLVirtualDrive] => C:\Program Files (x86)\Lenovo\Power2Go\VirtualDrive.exe [593688 2017-10-18] (CyberLink Corp.)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKU\S-1-5-21-1458328095-2359782627-2683845391-1002\...\Run: [ChronosXP] => C:\Program Files (x86)\ChronosXP\ChronosXP.exe [599040 2009-04-12] (Robert Misiak)
HKU\S-1-5-21-1458328095-2359782627-2683845391-1002\...\Run: [XperiaCompanionAgent] => C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe [2105728 2017-05-31] (Sony)
HKU\S-1-5-21-1458328095-2359782627-2683845391-1002\...\Run: [Horloger] => C:\Program Files (x86)\Amine Dries\Horloger\Horloger.exe [574464 2010-05-28] (Dries Amine)
HKU\S-1-5-21-1458328095-2359782627-2683845391-1002\...\Run: [Power2GoExpress8] => C:\Program Files (x86)\Lenovo\Power2Go\Power2GoExpress8.exe [1900312 2017-10-18] (CyberLink Corp.)
HKU\S-1-5-21-1458328095-2359782627-2683845391-1002\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-21-1458328095-2359782627-2683845391-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11222017023846960\...\Run: [ChronosXP] => C:\Program Files (x86)\ChronosXP\ChronosXP.exe [599040 2009-04-12] (Robert Misiak)
HKU\S-1-5-21-1458328095-2359782627-2683845391-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11222017023846960\...\Run: [XperiaCompanionAgent] => C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe [2105728 2017-05-31] (Sony)
HKU\S-1-5-21-1458328095-2359782627-2683845391-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11222017023846960\...\Run: [Horloger] => C:\Program Files (x86)\Amine Dries\Horloger\Horloger.exe [574464 2010-05-28] (Dries Amine)
HKU\S-1-5-21-1458328095-2359782627-2683845391-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11222017023846960\...\Run: [Power2GoExpress8] => C:\Program Files (x86)\Lenovo\Power2Go\Power2GoExpress8.exe [1900312 2017-10-18] (CyberLink Corp.)
HKU\S-1-5-21-1458328095-2359782627-2683845391-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11222017023846960\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
Startup: C:\Users\PTAH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EvernoteClipper.lnk [2017-10-11]
ShortcutTarget: EvernoteClipper.lnk -> C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll => Pas de fichier
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll => Pas de fichier
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{9e9002e5-c60e-4fd6-96aa-7c58965d8b07}: [DhcpNameServer] 212.27.40.241 212.27.40.240
Tcpip\..\Interfaces\{d563b2e2-1554-4d54-ad10-7ee0f246339b}: [DhcpNameServer] 192.168.1.254

Internet Explorer:
==================
HKU\S-1-5-21-1458328095-2359782627-2683845391-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11222017023855212\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
HKU\S-1-5-21-1458328095-2359782627-2683845391-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo15.msn.com/?pc=LCTE
HKU\S-1-5-21-1458328095-2359782627-2683845391-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11222017023846960\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo15.msn.com/?pc=LCTE
HKU\S-1-5-21-1458328095-2359782627-2683845391-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11222017023855212\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo15.msn.com/?pc=LCTE
HKU\S-1-5-21-1458328095-2359782627-2683845391-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11222017023855212\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo15.msn.com/?pc=LCTE
HKU\S-1-5-21-1458328095-2359782627-2683845391-500-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11222017023855212\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com
SearchScopes: HKU\S-1-5-21-1458328095-2359782627-2683845391-1002 -> DefaultScope {F4FD18AF-2719-4355-B8DC-BBD6AADC21F7} URL =
SearchScopes: HKU\S-1-5-21-1458328095-2359782627-2683845391-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11222017023846960 -> DefaultScope {F4FD18AF-2719-4355-B8DC-BBD6AADC21F7} URL =
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-18] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-18] (Microsoft Corporation)
BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2017-09-20] (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\PTAH\AppData\Roaming\Mozilla\Firefox\Profiles\0HIyW0tm.default [2017-11-20]
FF Extension: (Avira Browser Safety) - C:\Users\PTAH\AppData\Roaming\Mozilla\Firefox\Profiles\0HIyW0tm.default\Extensions\abs@avira.com [2017-11-20]
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2017-08-10] (Tracker Software Products (Canada) Ltd.)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2017-08-10] (Tracker Software Products (Canada) Ltd.)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2017-08-10] (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2017-08-10] (Tracker Software Products (Canada) Ltd.)
FF Plugin HKU\S-1-5-21-1458328095-2359782627-2683845391-1002: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2017-08-10] (Tracker Software Products (Canada) Ltd.)
FF Plugin HKU\S-1-5-21-1458328095-2359782627-2683845391-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11222017023846960: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2017-08-10] (Tracker Software Products (Canada) Ltd.)

Chrome:
=======
CHR DefaultSearchURL: Default -> hxxps://search.avira.com/#web/result?source=omnibar&q={searchTerms}
CHR DefaultSearchKeyword: Default -> Avira
CHR DefaultSuggestURL: Default -> hxxps://search.avira.com/suggestions?q={searchTerms}&li=ff&hl=en
CHR Session Restore: Default -> est activé.
CHR Profile: C:\Users\PTAH\AppData\Local\Google\Chrome\User Data\Default [2017-11-22]
CHR Extension: (Slides) - C:\Users\PTAH\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-11-07]
CHR Extension: (Docs) - C:\Users\PTAH\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-11-07]
CHR Extension: (Google Drive) - C:\Users\PTAH\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-11-07]
CHR Extension: (Space Lagoon) - C:\Users\PTAH\AppData\Local\Google\Chrome\User Data\Default\Extensions\balmhbonohcljflhinodkindpfmcdlie [2017-11-07]
CHR Extension: (YouTube) - C:\Users\PTAH\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-11-07]
CHR Extension: (Avira Password Manager) - C:\Users\PTAH\AppData\Local\Google\Chrome\User Data\Default\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2017-11-20]
CHR Extension: (Adblock Plus) - C:\Users\PTAH\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2017-11-07]
CHR Extension: (Contraste élevé) - C:\Users\PTAH\AppData\Local\Google\Chrome\User Data\Default\Extensions\djcfdncoelnlbldjfhinnjlhdjlikmph [2017-11-07]
CHR Extension: (Sheets) - C:\Users\PTAH\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-11-07]
CHR Extension: (Protection Web Avira) - C:\Users\PTAH\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2017-11-20]
CHR Extension: (Google Docs hors connexion) - C:\Users\PTAH\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-11-08]
CHR Extension: (Avira SafeSearch Plus) - C:\Users\PTAH\AppData\Local\Google\Chrome\User Data\Default\Extensions\ipmkfpcnmccejididiaagpgchgjfajgp [2017-11-20]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\PTAH\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-11-07]
CHR Extension: (Gmail) - C:\Users\PTAH\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-11-07]
CHR Extension: (Chrome Media Router) - C:\Users\PTAH\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-11-19]
CHR HKLM\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [ipmkfpcnmccejididiaagpgchgjfajgp] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [ipmkfpcnmccejididiaagpgchgjfajgp] - hxxps://clients2.google.com/service/update2/crx

Opera:
=======
OPR Extension: (WhatsApp™ Messenger) - C:\Users\PTAH\AppData\Roaming\Opera Software\Opera Stable\Extensions\dldmjnlgpemdnceadnpcfenlhhnlbbnl [2017-11-14]
OPR Extension: (Page Shadow) - C:\Users\PTAH\AppData\Roaming\Opera Software\Opera Stable\Extensions\inkcpenknnmbcjdjngdccmmbbklcnbbk [2017-11-14]
OPR Extension: (TinEye Reverse Image Search (Context menu)) - C:\Users\PTAH\AppData\Roaming\Opera Software\Opera Stable\Extensions\kgdmjihcfdjkcgodohgofgcdfiaekdkk [2017-11-13]
OPR Extension: (Adblock Plus) - C:\Users\PTAH\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2017-11-13]
StartMenuInternet: (HKLM) OperaStable - C:\Program Files\Opera\Launcher.exe

==================== Services (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [1128944 2017-11-10] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [490968 2017-11-10] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [490968 2017-11-10] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1526832 2017-11-10] (Avira Operations GmbH & Co. KG)
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [434248 2017-11-06] (Avira Operations GmbH & Co. KG)
R2 AviraUpdaterService; C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe [101792 2017-11-08] (Avira Operations GmbH & Co. KG)
R2 AvrcpService; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\AvrcpService.exe [41176 2015-03-02] (Realtek Semiconductor Corporation)
R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [117976 2015-06-02] ()
R2 ImControllerService; C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [68416 2017-09-08] (Lenovo Group Limited)
S3 ksu; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Software Updater\kl_platf.exe [1565000 2016-11-26] (AO Kaspersky Lab)
S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [271296 2015-07-01] (Lenovo)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6234056 2017-11-01] (Malwarebytes)
S4 PDF24; C:\Program Files (x86)\PDF24\pdf24.exe [413832 2017-11-01] (Geek Software GmbH)
R2 RtkBtManServ; C:\WINDOWS\RtkBtManServ.exe [189048 2016-05-16] (Realtek Semiconductor Corp.)
R2 SUService; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [23928 2017-08-16] ()
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [268896 2017-04-16] (Synaptics Incorporated)
R2 tbaseprovisioning; C:\WINDOWS\SysWOW64\tbaseprovisioning.exe [51224 2017-01-16] (Advanced Micro Devices, Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-18] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-06-20] (Microsoft Corporation)
R2 XperiaCompanionService; C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe [2205568 2017-05-31] (Sony)
S4 Bonjour Service; "C:\Program Files\Bonjour\mDNSResponder.exe" [X]
S4 cvhsvc; "C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE" [X]

===================== Pilotes (Avec liste blanche) ======================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S3 amdkmcsp; C:\WINDOWS\System32\drivers\amdkmcsp.sys [100752 2017-01-16] (Advanced Micro Devices, Inc. )
R3 amdkmdag; C:\WINDOWS\System32\DriverStore\FileRepository\c0309839.inf_amd64_168acb088d48fafb\atikmdag.sys [26587656 2017-01-16] (Advanced Micro Devices, Inc.)
R3 AMDKMDAP; C:\WINDOWS\System32\DriverStore\FileRepository\c0309839.inf_amd64_168acb088d48fafb\atikmpag.sys [527256 2017-01-16] (Advanced Micro Devices, Inc.)
R0 amdkmpfd; C:\WINDOWS\System32\drivers\amdkmpfd.sys [82704 2015-07-30] (Advanced Micro Devices, Inc.)
R0 amdpsp; C:\WINDOWS\System32\drivers\amdpsp.sys [254864 2017-01-16] (Advanced Micro Devices, Inc. )
R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT6.sys [110104 2017-01-16] (Advanced Micro Devices)
R0 avdevprot; C:\WINDOWS\System32\DRIVERS\avdevprot.sys [60920 2017-11-10] (Avira Operations GmbH & Co. KG)
R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [176224 2017-11-10] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [167464 2017-11-10] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [44488 2017-11-10] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\WINDOWS\system32\DRIVERS\avnetflt.sys [88488 2017-11-10] (Avira Operations GmbH & Co. KG)
R0 avusbflt; C:\WINDOWS\System32\Drivers\avusbflt.sys [38048 2017-11-10] (Avira Operations GmbH & Co. KG)
S3 BthAudioHF; C:\WINDOWS\system32\drivers\RtkHfp.sys [95248 2015-05-12] (Realtek Semiconductor Corporation)
R1 CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [100624 2015-06-08] (CyberLink)
R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [77432 2017-11-01] ()
R0 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [193464 2017-11-20] (Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\system32\DRIVERS\farflt.sys [110016 2017-11-21] (Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [46008 2017-11-21] (Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [253880 2017-11-21] (Malwarebytes)
R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [94144 2017-11-22] (Malwarebytes)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [943104 2017-04-19] (Realtek )
S3 RtkA2dp; C:\WINDOWS\system32\drivers\RtkA2dp.sys [182288 2015-05-21] (Realtek Semiconductor Corporation)
S3 RtkAvrcp; C:\WINDOWS\System32\drivers\RtkAvrcp.sys [60944 2015-05-12] (Realtek Semiconductor Corporation)
S3 RtkAvrcpCtrlr; C:\WINDOWS\System32\drivers\RtkAvrcpCtrlr.sys [70672 2015-05-12] (Realtek Semiconductor Corporation)
R3 RtkBtFilter; C:\WINDOWS\system32\DRIVERS\RtkBtfilter.sys [735552 2016-05-16] (Realtek Semiconductor Corporation)
R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [410880 2015-07-03] (Realsil Semiconductor Corporation)
R3 RTWlanE; C:\WINDOWS\system32\DRIVERS\rtwlane.sys [6382080 2016-11-11] (Realtek Semiconductor Corporation )
S3 SDFRd; C:\WINDOWS\System32\drivers\SDFRd.sys [31128 2017-03-18] ()
R3 Sftfs; C:\WINDOWS\system32\DRIVERS\Sftfswin7.sys [767648 2014-10-08] (Microsoft Corporation)
R3 Sftplay; C:\WINDOWS\system32\DRIVERS\Sftplaywin7.sys [273576 2014-10-08] (Microsoft Corporation)
R3 Sftredir; C:\WINDOWS\System32\DRIVERS\Sftredirwin7.sys [29864 2014-10-08] (Microsoft Corporation)
R3 Sftvol; C:\WINDOWS\system32\DRIVERS\Sftvolwin7.sys [23208 2014-10-08] (Microsoft Corporation)
R3 SNP2UVC; C:\WINDOWS\system32\DRIVERS\snp2uvc.sys [1772008 2016-06-08] (Sonix Tech. Co., Ltd.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Corporation)
S3 wsvd; C:\WINDOWS\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink)

========================== MD5 Pilotes =======================

C:\WINDOWS\System32\drivers\1394ohci.sys AAB860A5E606B9621E130D8C29D3F305
C:\WINDOWS\System32\drivers\3ware.sys 4140B14929C555E9513D59A2EEB5C471
C:\WINDOWS\System32\drivers\ACPI.sys AC251B31370C1E00F577928260B8939F
C:\WINDOWS\System32\drivers\AcpiDev.sys 3E5E5DAE5CAEC0209C93D3AD8128D8A0
C:\WINDOWS\System32\Drivers\acpiex.sys F72D7CC7E7A97A09757313F3B4C7E17A
C:\WINDOWS\System32\drivers\acpipagr.sys F04B6F53FBDB2B6B0451AE53DE19F0C9
C:\WINDOWS\System32\drivers\acpipmi.sys C347A6095F3BE417D24F1E1349F4AF0F
C:\WINDOWS\System32\drivers\acpitime.sys 686BFFC47454DD2F58795C2EE891CA9F
C:\WINDOWS\System32\drivers\AcpiVpc.sys E13DE7CD2B62254DD4FF658B7798A37D
C:\WINDOWS\System32\drivers\ADP80XX.SYS FBDA59118E59B3722248C66BAD89CAA9
C:\WINDOWS\system32\drivers\afd.sys 5A6D591D56791BA63CE73FCAD60D89A1
C:\WINDOWS\System32\DRIVERS\ahcache.sys 1D914C996F2C3134E2344BB74F79BCF6
C:\WINDOWS\System32\drivers\amdk8.sys 9C39FBA94FFEF04561D13ED0D1B50DD0
C:\WINDOWS\System32\drivers\amdkmcsp.sys A9D2C2A44C21B108503A2145BCE87575
C:\WINDOWS\System32\DriverStore\FileRepository\c0309839.inf_amd64_168acb088d48fafb\atikmdag.sys F9D8BC89D2492380BC49D9C7C8BBD609
C:\WINDOWS\System32\DriverStore\FileRepository\c0309839.inf_amd64_168acb088d48fafb\atikmpag.sys 58A7FF6DAEB6EB43991B908750664FCC
C:\WINDOWS\System32\drivers\amdkmpfd.sys 122697D0FE760D4F3E0EA46A5719E428
C:\WINDOWS\System32\drivers\amdppm.sys 395D56FA2E22A10AE4774440D086F559
C:\WINDOWS\System32\drivers\amdpsp.sys EBC04213FAE44B03F84C3F89E1E781CD
C:\WINDOWS\System32\drivers\amdsata.sys EB729A9ADCB9F9C406B533F95E2F67D4
C:\WINDOWS\System32\drivers\amdsbs.sys 3B5C5C696F33FE61F1922533B03B9316
C:\WINDOWS\System32\drivers\amdxata.sys A7D45A303FF8A9493C96C4B804051E6E
C:\WINDOWS\System32\drivers\amd_sata.sys 09BBDB268AB0F69D87CD31982BD2E0D8
C:\WINDOWS\System32\drivers\amd_xata.sys C32506BB3F206B852B52A0229F5F13F1
C:\WINDOWS\System32\drivers\appid.sys 2A5A93CAFF4320172897E9A366313962
C:\WINDOWS\System32\drivers\applockerfltr.sys EAF36A714E16A69B8B4ED7591CBA77B6
C:\WINDOWS\System32\drivers\arcsas.sys 6E456A94B9BD7F6B4758729BCEDE40C3
C:\WINDOWS\System32\drivers\asyncmac.sys 766F3A7E42AFCF74265FAC78987D1665
C:\WINDOWS\System32\drivers\atapi.sys 01733BEEE02E51F712330D5909BD701C
C:\WINDOWS\system32\drivers\AtihdWT6.sys 5903F7756DE3D71DF5094262B4FAAB3C
C:\WINDOWS\System32\DRIVERS\avdevprot.sys 4621EA3385170B087A03F3C90E276B4A
C:\WINDOWS\System32\DRIVERS\avgntflt.sys 9C3F66BBFD2AFF843E54CC5E5A5D16BF
C:\WINDOWS\system32\DRIVERS\avipbb.sys DBF479B12BDAF969745D6A7132465D9E
C:\WINDOWS\system32\DRIVERS\avkmgr.sys 2CBA09A7983B1D39531B768BCED08C20
C:\WINDOWS\system32\DRIVERS\avnetflt.sys 8D18C6406FF8DC39028177E1E5675182
C:\WINDOWS\System32\Drivers\avusbflt.sys 9C71227D9D0A6F929C97294842A988B1
C:\WINDOWS\System32\drivers\bxvbda.sys 0914A5E66C0775CE11960452A6434FEC
C:\WINDOWS\System32\drivers\BasicDisplay.sys F8129321B1874D4386F7FEB754BC3380
C:\WINDOWS\System32\drivers\BasicRender.sys 21C85485F7675F74BC6212052033D553
C:\WINDOWS\System32\drivers\bcmfn2.sys 739D089777D2B66DBE7201E5EA4BA2D7
C:\Windows\System32\Drivers\Beep.sys ED03D2ACE378C9EB8BB957ABBD85B951
C:\WINDOWS\System32\DRIVERS\bowser.sys 2342B8619193B0D9FAC0D02C69DCE74A
C:\WINDOWS\system32\drivers\RtkHfp.sys E1F1A2E544A9A5E74F1FF2770F7462B8
C:\WINDOWS\System32\drivers\BthAvrcpTg.sys AF57F0B0E284BE06860A7B701341324D
C:\WINDOWS\System32\drivers\BthEnum.sys CE5210E1DFD49B2F02507C30B9B26CB4
C:\WINDOWS\System32\drivers\bthhfenum.sys E1E55BA45510B2B0309E2C77ABEB1BFE
C:\WINDOWS\System32\drivers\BthHFHid.sys 336A9C0254A0178ED50281B6EDF5B836
C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys 2175D891ABDC407699FFDBC4C3B131FA
C:\WINDOWS\System32\drivers\bthmodem.sys 24D4534EAE6D222EBEF9729E67F37ADD
C:\WINDOWS\System32\drivers\bthpan.sys D8044E77B06BAE2F8B5C48F3C7E1FF98
C:\WINDOWS\System32\drivers\BTHport.sys 27B7348B88DE2F93C4FB4D53EC469AB0
C:\WINDOWS\System32\drivers\BTHUSB.sys FA5CE6301192DD6ED4AA747B2C88FD42
C:\WINDOWS\System32\drivers\buttonconverter.sys FF4F46CEF5ED7FDE650CA1D73D9FB663
C:\WINDOWS\System32\drivers\CAD.sys 029434AC0A3935F9125ABBD08BF7C30B
C:\WINDOWS\System32\drivers\capimg.sys 307AE8BC9B45772DA02FB952A1D86C35
C:\WINDOWS\System32\DRIVERS\cdfs.sys B6E5AD7C83A5254DEE9D86023C0E5A81
C:\WINDOWS\System32\drivers\cdrom.sys ABE77AD954BC3D72F559CF0C381E50BC
C:\WINDOWS\System32\drivers\cht4sx64.sys 05EA22CFC40EDE05BF6E3BC782E5204C
C:\WINDOWS\System32\drivers\cht4vx64.sys 863E1C9F6750446DFB9EDCAEC3531367
C:\WINDOWS\System32\drivers\circlass.sys 3E416539352B007AD0610BF34AC15D31
C:\WINDOWS\System32\drivers\cldflt.sys 616E1ED94FA7F96D429D985FDB203D2E
C:\WINDOWS\System32\drivers\CLFS.sys AF0BF03C8574DD026FAF9A82A64C2D04
C:\WINDOWS\System32\drivers\registry.sys 5118CFC33BBB51C7E3ED441B7085AD26
C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys 424F3A5D9AAC65B50DBEB4B1CA91F051
C:\WINDOWS\System32\drivers\CmBatt.sys 232F3A3AC3A2FB32C5C46503A6517073
C:\WINDOWS\System32\Drivers\cng.sys 1AB617F49EC6AC6CC45FD13E82F4A579
C:\WINDOWS\System32\DRIVERS\cnghwassist.sys E1BFF774FF67CA951A5DFF0E104FB132
C:\WINDOWS\system32\drivers\CHDRT64.sys BCA7EE36F65EC902D035FF76E863E24A
C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_de4c68ea4fb1be53\CompositeBus.sys DFDAEDB857BC18764F0D8ECDCC3C1499
C:\WINDOWS\System32\drivers\condrv.sys 04532711732BE9DBC364E88E4A9EC18A
C:\WINDOWS\System32\drivers\dam.sys F51953EC4B9AACD92A3B3CE66E05CEF4
C:\WINDOWS\System32\Drivers\dfsc.sys 185A4519B7764F4DEF714D890A7A9FD2
C:\WINDOWS\System32\drivers\disk.sys 1203EA16F36C5BEB2509FB7CC03DC178
C:\WINDOWS\System32\drivers\dmvsc.sys 038B8B76284BC291EC75B005BB3EB13F
C:\WINDOWS\System32\drivers\drmkaud.sys 3D934A1C02EB6979CF45C70A71F580EC
C:\WINDOWS\System32\drivers\dxgkrnl.sys 0D459B3B6BC1318699992DCAA4BD76C6
C:\WINDOWS\System32\drivers\evbda.sys D64CD3AE93125EDA383190C2AF607E70
C:\WINDOWS\System32\drivers\EhStorClass.sys FFBB37982E6D24AEC7A2E5459098EAC9
C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys ABF38D02E01D6ED87AE1DF65FC5DF62D
C:\WINDOWS\System32\drivers\errdev.sys B9A59B4AD516E38C39FA416398B96CCB
C:\WINDOWS\system32\drivers\mbae64.sys 7D0520A12B31E6858B3BB7E675AFA34E
C:\Windows\System32\Drivers\exfat.sys 9C4D88E8614487AD85A6F18A71A7298F
C:\Windows\System32\Drivers\fastfat.sys C61014A176ECAAF97589E6FC979CE786
C:\WINDOWS\System32\drivers\fdc.sys 853081957BA148F38FD8DE4390CFCF4A
C:\WINDOWS\System32\drivers\filecrypt.sys 27E764D6460504B7271AFECE7A59FB76
C:\WINDOWS\System32\drivers\fileinfo.sys 3D6087F51110F3CC0DA89385354F8C5E
C:\WINDOWS\System32\drivers\filetrace.sys 057E95E53C38260C4EF49B3A077770CD
C:\WINDOWS\System32\drivers\flpydisk.sys 90B2983D8495C26345A1DC5F0C3BB07B
C:\WINDOWS\System32\drivers\fltmgr.sys A84261F75F490E45CFEDBA77EFE4F67E
C:\WINDOWS\System32\drivers\FsDepends.sys D2814848206DFC18EB8D3D069FAE703E
C:\Windows\System32\Drivers\Fs_Rec.sys AE7EDF845F41ACA3B74567C3CE20E987
C:\WINDOWS\System32\DRIVERS\fvevol.sys 7C14404ADEF7D6F1D4D5346CF1849DDC
C:\WINDOWS\System32\drivers\vmgencounter.sys 4616F61E24B3AEA6E0E4EA7D69531EF4
C:\WINDOWS\System32\drivers\genericusbfn.sys 23174BB6937459B924BB8EF667FB28EF
C:\WINDOWS\System32\Drivers\msgpioclx.sys 4B11CFBE1D9B73A9D865F6AB26F800BA
C:\WINDOWS\System32\drivers\gpuenergydrv.sys 3FC3FCF557D0BE3D724EA10642E1F6FF
C:\WINDOWS\System32\drivers\HDAudBus.sys 02B9639D9997E95CDF2F4C4F3BDCC73D
C:\WINDOWS\System32\drivers\HidBatt.sys 9F90819E301C70A3A042FC05D3E41B5F
C:\WINDOWS\System32\drivers\hidbth.sys 1FE8E2676CD512181F84B27EE86CE29C
C:\WINDOWS\System32\drivers\hidi2c.sys 55DAF856F9633DD2519BA4E942870F02
C:\WINDOWS\System32\drivers\hidinterrupt.sys E34216A190D9BF8EAA666F6903BCD0EF
C:\WINDOWS\System32\drivers\hidir.sys 852DBB5185996AD8C73872A43A453729
C:\WINDOWS\System32\drivers\hidusb.sys C1A608120DE0DF52E51B8BAF86AF19F9
C:\WINDOWS\System32\drivers\HpSAMD.sys 8ADD9CA3E0F18CEA11EA6FAED794A228
C:\WINDOWS\System32\drivers\HTTP.sys BB1AE72906564A6E81B79D73A05AE21F
C:\WINDOWS\System32\drivers\hvservice.sys F60F8390B635156593F7493AE898AFB0
C:\WINDOWS\System32\drivers\hwpolicy.sys 563F5FC3B46A70A91AB6C8822AC8BF25
C:\WINDOWS\System32\drivers\hyperkbd.sys C082249BC3E972C8A132D9EC6AD9EAD5
C:\WINDOWS\System32\drivers\i8042prt.sys C6C8315E3262FAE460529C6DA2951682
C:\WINDOWS\System32\drivers\iagpio.sys C6B8743B213F06AA60943D8366FE968F
C:\WINDOWS\System32\drivers\iai2c.sys 9A2A2F3C69B9A30B6E78536F6D258BAD
C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys 42962355A7911407026E920E7252E3E5
C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys BD47B2FEABFA48C6224D43EE9EA9BC06
C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys 2184CB3A65888F446FCD6DBA9F073F4C
C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys 4126F8DA08CE7924A3AE6F7235F85D5F
C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys 16A10CCEDCF5AC4CAAE43DC9FC40392F
C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys EB82A11613326691508D9ED9A4FE29E7
C:\WINDOWS\System32\drivers\iaStorAV.sys D820075D3395BED28FC57AEF8FBA666F
C:\WINDOWS\System32\drivers\iaStorV.sys A243E0CE8644378C9A9D015ABC3EDA27
C:\WINDOWS\System32\drivers\ibbus.sys E16E4FC9F250E48CB2CAD93E59D010E2
C:\WINDOWS\System32\drivers\IndirectKmd.sys 0E33BC018502E7FDE77C343055D9C626
C:\WINDOWS\System32\drivers\intelide.sys 4B7F8A1AAC7172DB6918A0E10E1D78A3
C:\WINDOWS\System32\drivers\intelpep.sys 0A3DBE89C965FFB7C0D0E38834E77B90
C:\WINDOWS\System32\drivers\intelppm.sys 64EC687A811DC4F69DF3816F073352AA
C:\WINDOWS\System32\drivers\iorate.sys 549C278119FF539C3B219C55B98B0E87
C:\WINDOWS\System32\DRIVERS\ipfltdrv.sys A0F9F2E87F0C751FE164D90EB44A9B63
C:\WINDOWS\System32\drivers\IPMIDrv.sys 656DDB34996A96539BA6E2843B5F2A77
C:\WINDOWS\System32\drivers\ipnat.sys DCC05E5EAA580C97F13B434FAFACED85
C:\WINDOWS\system32\drivers\irda.sys 9035C10C7EB8CF7C87CEA82A62EBB43A
C:\WINDOWS\System32\drivers\irenum.sys E7FD479E3298F3C8852A0D2F092BDB35
C:\WINDOWS\System32\drivers\isapnp.sys 7FE3B3A30FA20F27AF7022A01C2266BA
C:\WINDOWS\System32\drivers\msiscsi.sys 618707F3F742BF67AB578808171F60EB
C:\WINDOWS\System32\drivers\kbdclass.sys D36B404BF979297C6572AEF98B2594F2
C:\WINDOWS\System32\drivers\kbdhid.sys 7E2036A846789D6D6A2EE21915017EE1
C:\WINDOWS\System32\drivers\kdnic.sys 4C054B8E901F41F5743DADE8A29FF256
C:\WINDOWS\System32\Drivers\ksecdd.sys 2B9F287EF4AAB936D1B92DCE46626631
C:\WINDOWS\System32\Drivers\ksecpkg.sys 6629CAA1F157088B9EDD1EAD24C6D753
C:\WINDOWS\system32\drivers\ksthunk.sys 9778205F28DC4F2EFFCC146647FE5CF0
C:\WINDOWS\System32\drivers\lltdio.sys FC37745959DFA4871759E4DCC836227A
C:\WINDOWS\System32\drivers\lsi_sas.sys 16C9D4D822CCA795A72DC88B25A577CC
C:\WINDOWS\System32\drivers\lsi_sas2i.sys 920F0CFCED5F28A31B79F1C470649D11
C:\WINDOWS\System32\drivers\lsi_sas3i.sys 0FE63316F1C70A0F759A449FAC64C24B
C:\WINDOWS\System32\drivers\lsi_sss.sys 80E82C46B27A923A3744531069B63857
C:\WINDOWS\system32\drivers\luafv.sys 88F5570C04766EE561FF129B2F93030C
C:\WINDOWS\System32\drivers\mausbhost.sys C3EED732789052C98A2613A7E1C37CDA
C:\WINDOWS\System32\drivers\mausbip.sys 4DCE65116A28488593FF5A6A18B03DB0
C:\WINDOWS\System32\Drivers\MbamChameleon.sys C3C2C7E2EEFECD88A76FF626E72BF123
C:\WINDOWS\system32\DRIVERS\farflt.sys 20046A5DB1466EBD0DCAEB84D00C5432
C:\WINDOWS\system32\DRIVERS\mbam.sys 29BD0BB2CD7E37B8C248CFA933FBD1F4
C:\WINDOWS\System32\Drivers\mbamswissarmy.sys B047B9CE5A0D800E6D713B43D0405221
C:\WINDOWS\system32\DRIVERS\mwac.sys 482F6D603BDCC825768D86D8228BD65F
C:\WINDOWS\System32\drivers\megasas.sys 0609BF877A2F4DEECC62EEE220AB6242
C:\WINDOWS\System32\drivers\MegaSas2i.sys EEC64C8D498D121607C7615FDFBEE4D0
C:\WINDOWS\System32\drivers\megasr.sys 2B7D3B206833D769218A1F4BE2D73B97
C:\WINDOWS\System32\drivers\mlx4_bus.sys 89257B8D3826B5629CF7F73F97DA44F9
C:\WINDOWS\system32\drivers\mmcss.sys 9AE3C0CC0865B1618A3C97744A6A9E9B
C:\WINDOWS\System32\drivers\modem.sys 0CD29540C32C2E2E0E3D7E9832752AF3
C:\WINDOWS\System32\drivers\monitor.sys 534477FCAFDFCA6B841BFA06BD26BCC5
C:\WINDOWS\System32\drivers\mouclass.sys F5D4E18A70BA069D479154442CDEB60D
C:\WINDOWS\System32\drivers\mouhid.sys 5C09868963B0C076AC3BC7759A46B7B1
C:\WINDOWS\System32\drivers\mountmgr.sys 8BF7039787036529B98E50AE86A0E46B
C:\WINDOWS\System32\drivers\mpsdrv.sys AD118EC95E9EF4D5223D681D8F183567
C:\WINDOWS\system32\drivers\mrxdav.sys D14C297933C82B8CB0B5CBBA4DDC830B
C:\WINDOWS\System32\DRIVERS\mrxsmb.sys F2AD1B72C5A6475FB5FF332E1980DF88
C:\WINDOWS\System32\DRIVERS\mrxsmb10.sys 3E76F1B33FDB39C524086CA6774CA2C6
C:\WINDOWS\System32\DRIVERS\mrxsmb20.sys 7EFDF47AA174D8CD8F6BAB40CC5D6D51
C:\WINDOWS\System32\drivers\bridge.sys 44A8A52763381E5DCAE122330191493C
C:\Windows\System32\Drivers\Msfs.sys 92C00BD9616F353CA59A755C33269757
C:\WINDOWS\System32\drivers\msgpiowin32.sys F27EC8F7A0A779276E5DA2E70C2B01EE
C:\WINDOWS\System32\drivers\mshidkmdf.sys CBA955A54C9446CAAD28C76789D3B071
C:\WINDOWS\System32\drivers\mshidumdf.sys E8E568EF60677E4534F387C53EE1B35F
C:\WINDOWS\System32\drivers\msisadrv.sys 16376B7B0730C04DD1A2C0CC8E09E420
C:\WINDOWS\system32\DRIVERS\MSKSSRV.sys C2939119A17E52D74191EFC1E4CDEE09
C:\WINDOWS\System32\drivers\mslldp.sys E40B960078A15D4901265D32E071C42D
C:\WINDOWS\system32\DRIVERS\MSPCLOCK.sys B4860AB91DC4E73936F0FF504D6B4B07
C:\WINDOWS\system32\DRIVERS\MSPQM.sys 8EDC45C3F7F64A51C98B59E24648F74B
C:\Windows\System32\Drivers\MsRPC.sys 7DA5FAC2A49D30CA5B7B96B8B26281AC
C:\WINDOWS\System32\drivers\mssmbios.sys 7E3365C8BC83DCE88D6226BB5C7170C4
C:\WINDOWS\system32\DRIVERS\MSTEE.sys 09D51564E49181E9928910D6B91C920E
C:\WINDOWS\System32\drivers\MTConfig.sys 793AE56A3946EAD5F906C28D294FEFE6
C:\WINDOWS\System32\Drivers\mup.sys E35F51C7474A26680627477462715206
C:\WINDOWS\System32\drivers\mvumis.sys 74BD1149BF50F1E24934042A3BD17C90
C:\WINDOWS\System32\DRIVERS\nwifi.sys 83397BCE9D176B74E80975647A295748
C:\WINDOWS\System32\drivers\ndfltr.sys 0FFE8AF1B94C5FD54E6ACC6DAE990D31
C:\WINDOWS\System32\drivers\ndis.sys 64BB1D5A6A8711C980D2ABAB0ADFFF8E
C:\WINDOWS\System32\drivers\ndiscap.sys 4EA73CFDEE4A628D387D95464A131F29
C:\WINDOWS\System32\drivers\NdisImPlatform.sys EB127689AF6F24091AB73538A556257F
C:\WINDOWS\System32\DRIVERS\ndistapi.sys 73B4C72FB6170A08C64BDA92DE93ECF7
C:\WINDOWS\System32\drivers\ndisuio.sys 6704F27EB15A5B30AA7FA5A4F4D1FD47
C:\WINDOWS\System32\drivers\NdisVirtualBus.sys FE87CCAA89433FC306A80F15E848F4B2
C:\WINDOWS\System32\drivers\ndiswan.sys 94517BC9F29A1B73D377F1BF1C3DCA34
C:\WINDOWS\System32\DRIVERS\ndiswan.sys 94517BC9F29A1B73D377F1BF1C3DCA34
C:\WINDOWS\System32\DRIVERS\NDProxy.sys AC6AC99075732F5C29DB0004DD5B1AC6
C:\WINDOWS\System32\drivers\Ndu.sys 9AC090451D92E6081EB89CDA83D74189
C:\WINDOWS\System32\drivers\NetAdapterCx.sys A115DDB2C7805C41EEC9A5276FF5764E
C:\WINDOWS\System32\drivers\netbios.sys F420B6CAB5151A38E4DBBFFB500C11DA
C:\WINDOWS\System32\DRIVERS\netbt.sys BAD3C424788BC071C3EC82CFCDA954D2
C:\WINDOWS\System32\drivers\netvsc.sys 8C03F2F5A9E93AEB08B3AEE51552394A
C:\Windows\System32\Drivers\Npfs.sys 6D8F6A9C53CFB0C49E8251A442B7283F
C:\WINDOWS\System32\drivers\npsvctrig.sys BABF7E1757D6908941C9F9CBD66A5EF0
C:\WINDOWS\System32\drivers\nsiproxy.sys 244C3E541E741C9D8F67E05D9D9AFBE7
C:\Windows\System32\Drivers\NTFS.sys CDB804F3EA333459FE3C21D61767CBB1
C:\Windows\System32\Drivers\Null.sys 4FFB2D5655D10700D5B8E205C4DB86BD
C:\WINDOWS\System32\drivers\nvdimmn.sys 99EB6376EC2C03CE5F668577651E3454
C:\WINDOWS\System32\drivers\nvraid.sys 3DB2E9E207358BFBD09B77B5119ECA5B
C:\WINDOWS\System32\drivers\nvstor.sys 4C04BFBD4DB2EECCC47F5FA39D65BB6E
C:\WINDOWS\System32\drivers\parport.sys 2CC6C325B271C7CA60F374F8F868CB45
C:\WINDOWS\System32\drivers\partmgr.sys ABE0711474C0518FD914F62AB4FB83E8
C:\WINDOWS\System32\drivers\pci.sys C5B74C6D87E77BC64DEBD1BF57DEB375
C:\WINDOWS\System32\drivers\pciide.sys CFB85CB7A6F6926EA0EB96EDFB3C8A91
C:\WINDOWS\System32\drivers\pcmcia.sys 13B7D84B397A90E82682C47A15C3A98D
C:\WINDOWS\System32\drivers\pcw.sys 76EA512FD9D4673CF7A57775EE8922E2
C:\WINDOWS\System32\drivers\pdc.sys 10E48E45A03A7F4C2B7C11738BE87816
C:\WINDOWS\System32\drivers\peauth.sys 4F190BA3C9BD2F0277BCBF480F396091
C:\WINDOWS\System32\drivers\percsas2i.sys FE52FF97A094609429FEF098EDC6FB08
C:\WINDOWS\System32\drivers\percsas3i.sys FCA143274792F12383C35902E801E83A
C:\WINDOWS\System32\drivers\pmem.sys 414CA4DCC31D795882B25ADC1DACE779
C:\WINDOWS\System32\drivers\raspptp.sys D292D7FADCEE481CC64A9DE8FE9C3347
C:\WINDOWS\System32\drivers\processr.sys D57CF871B3977731A91FE9611A54C7C1
C:\WINDOWS\System32\drivers\pacer.sys B60431D2A046AD97F8427F6E568370F5
C:\WINDOWS\system32\drivers\qwavedrv.sys A2B0F46FBA2521E7E732BDBDB1238515
C:\WINDOWS\System32\DRIVERS\rasacd.sys EA9EB06EFC325CD2ACF5DF2F26A4894E
C:\WINDOWS\System32\drivers\AgileVpn.sys 4E9379389D0A851DD19D130C8FAEFBD0
C:\WINDOWS\System32\drivers\rasl2tp.sys 5279EC98F6218D29EADDFECCC0D80E9A
C:\WINDOWS\System32\DRIVERS\raspppoe.sys D7FF75ED7A48FD60A573C9E959CF4DB5
C:\WINDOWS\System32\drivers\rassstp.sys 6A4E45A7F17FA0B4B1B48C550E311944
C:\WINDOWS\System32\DRIVERS\rdbss.sys F2C575A9657F7B2E027C6CE7BC8F1A2D
C:\WINDOWS\System32\drivers\rdpbus.sys 9414B22E093243636D362BF8C8C12A67
C:\WINDOWS\System32\drivers\rdpdr.sys 53A01D3FDB701AC5D9DDE4140227E3D9
C:\WINDOWS\System32\drivers\rdpvideominiport.sys DF32ED51DC0C3F6F3B1C4CEF71B8B426
C:\WINDOWS\System32\drivers\rdyboost.sys 2369A5B651308E0C3458143976E9B03B
C:\Windows\System32\Drivers\ReFS.sys 3581FB9529035F8EC6DB681664CA70B1
C:\Windows\System32\Drivers\ReFSv1.sys 79E1ADE19D8B7C56EF29D098EAF57AD0
C:\WINDOWS\System32\DRIVERS\revoflt.sys 498C3D4D44382A96812A0E0FF28D575B
C:\WINDOWS\System32\drivers\rfcomm.sys 9179005CD2702635CF12DB5E0A9D1B0E
C:\WINDOWS\System32\drivers\rspndr.sys E87EECED9287C275B6CF30EB598B1D77
C:\WINDOWS\System32\drivers\rt640x64.sys 4DEE02442CF964856ECAC8A25FD27435
C:\WINDOWS\system32\drivers\RtkA2dp.sys ADE60A46729DAD7FDFCAF07906B7AB44
C:\WINDOWS\System32\drivers\RtkAvrcp.sys 7558756B0A29104D8BE9A2D1A4989E41
C:\WINDOWS\System32\drivers\RtkAvrcpCtrlr.sys 5714B93326B428F08798168D46576B6C
C:\WINDOWS\system32\DRIVERS\RtkBtfilter.sys 6B1AF9B326DE1A0D20230B3F9EF63263
C:\WINDOWS\system32\Drivers\RtsUer.sys 87CCF37EC2858FCF7689F8FC0B72F39A
C:\WINDOWS\system32\DRIVERS\rtwlane.sys E230CF4C93C96B6FAF56DED4489C0AF0
C:\WINDOWS\System32\drivers\vms3cap.sys 6308366D3CDEA5F427CFF4BCF0081B4E
C:\WINDOWS\System32\drivers\sbp2port.sys 33B2DC5C2F19DA89F862484E23D9833D
C:\WINDOWS\System32\DRIVERS\scfilter.sys 5CFEEFCC6FAD1FD09ACCFBD652DDD85B
C:\WINDOWS\System32\drivers\scmbus.sys 5C8620FAC0E3C1658C8EF7AD7BB7EA5F
C:\WINDOWS\System32\drivers\sdbus.sys 134FB9DCA9244455917D80D33CA31ACA
C:\WINDOWS\System32\drivers\SDFRd.sys 464B615872981015AC4FEEBDEA83A063
C:\WINDOWS\System32\drivers\sdstor.sys 6BC219F1D9CDE08CEB9084ADB41FBA01
C:\WINDOWS\System32\drivers\SerCx.sys 585329F62195A4B7AAD0A95F6EC89751
C:\WINDOWS\System32\drivers\SerCx2.sys C8F4FDA8B3D039D7947344614FF5BFB2
C:\WINDOWS\System32\drivers\serenum.sys E5B450E4E0DC1591254BF9CCF6C57B40
C:\WINDOWS\System32\drivers\serial.sys 628D8DD136F92316BFEB58FA005338B7
C:\WINDOWS\System32\drivers\sermouse.sys E5BA0B7353ADC5C95AB466D2E4DC89B1
C:\WINDOWS\System32\drivers\sfloppy.sys 15CFCC4692DA8887B977CE5FC5181084
C:\WINDOWS\system32\DRIVERS\Sftfswin7.sys 9242988D74674C2819D454F001457BAD
C:\WINDOWS\system32\DRIVERS\Sftplaywin7.sys 44391FA910901E2B8A2F831340FD707A
C:\WINDOWS\System32\DRIVERS\Sftredirwin7.sys 8654DBDC8ED8ED7257618D11B6C590BE
C:\WINDOWS\system32\DRIVERS\Sftvolwin7.sys 648F0152A7BAE175905C22E8BD839760
C:\WINDOWS\System32\drivers\SiSRaid2.sys 2339F6B45E1D863B1D327F3AFD75A675
C:\WINDOWS\System32\drivers\sisraid4.sys F520D50AD7266ED31D25DF4C8EA6BC2D
C:\WINDOWS\system32\DRIVERS\snp2uvc.sys 78EBB77F0E3D584C34006B9B1956D622
C:\WINDOWS\System32\drivers\spaceport.sys 2334ED0B61CAE7E7B1B454674206CDAC
C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys F3F0B8CAC1F3E6C3382EAFCE762475AD
C:\WINDOWS\System32\drivers\SpbCx.sys 83E82B0E292DCDE4C75B9241BF0FB300
C:\WINDOWS\System32\DRIVERS\srv.sys 897A3A77543369BC4D97EB71A40E6111
C:\WINDOWS\System32\DRIVERS\srv2.sys F729DC11C591228D474C0F4D6BC1F0F4
C:\WINDOWS\System32\DRIVERS\srvnet.sys 62E6CF587C037E99F7450F5BAAF0CB87
C:\WINDOWS\System32\drivers\stexstor.sys D40C589F80EB1C511263D0547C0259AE
C:\WINDOWS\System32\drivers\storahci.sys 576A818562069B1E091CC719C143AED2
C:\WINDOWS\System32\drivers\vmstorfl.sys E5F703788DFA05411F1469E96838F438
C:\WINDOWS\System32\drivers\stornvme.sys 0D0128244FF55EAD3F878D3FE542DBA5
C:\WINDOWS\System32\drivers\storqosflt.sys 3A62FF78619258E6126C5C4B4CC82C8E
C:\WINDOWS\System32\drivers\storufs.sys C6097966F8EA3B288070CDF7C3C8C3E8
C:\WINDOWS\System32\drivers\storvsc.sys 3DC3B17E92DA02E36B4138733DF6C1AC
C:\WINDOWS\System32\drivers\swenum.sys 2BC4D0EBC2467FE90302AE0AFAF23768
C:\WINDOWS\System32\drivers\Synth3dVsc.sys 572F81CF08972D53BAFFC2A110A2A586
C:\WINDOWS\System32\drivers\SynTP.sys 21C4F69873944CF8AB1C53E11051CF3D
C:\WINDOWS\System32\drivers\tcpip.sys 9360DA9E370C1E1483967351C0CB7245
C:\WINDOWS\System32\drivers\tcpip.sys 9360DA9E370C1E1483967351C0CB7245
C:\WINDOWS\System32\drivers\tcpipreg.sys 1C35A5C62D110346379C55E39A3D547C
C:\WINDOWS\system32\DRIVERS\tdx.sys D74756DD1518D28A09CDA99696273FA4
C:\WINDOWS\System32\drivers\terminpt.sys 96A35CDBA661D41C5A3914257CA1D200
C:\WINDOWS\System32\drivers\tpm.sys F76A92975340DAA99939DA297D677EA8
C:\WINDOWS\System32\drivers\tsusbflt.sys 9856BCCD1CD5DE4D17E8DBBA7CEFC688
C:\WINDOWS\System32\drivers\TsUsbGD.sys 837AD2B941E721BCCEB7EF137E2DEE18
C:\WINDOWS\System32\drivers\tunnel.sys B3142C6118703E98EB0510CF7B43D0F2
C:\WINDOWS\System32\drivers\uaspstor.sys B4C846ABD462558D45CA578C855759C3
C:\WINDOWS\System32\Drivers\UcmCx.sys 7B2B767C4DB23F87C698C139BEBEA400
C:\WINDOWS\System32\Drivers\UcmTcpciCx.sys 8BB64E04CD97AD8C68543181D93E2AFC
C:\WINDOWS\System32\drivers\UcmUcsi.sys F083A400FB9CB8ADD1783848CB1C76F0
C:\WINDOWS\System32\drivers\ucx01000.sys 5D4EAF3D0911338CB8FDB088386D6DCA
C:\WINDOWS\System32\drivers\udecx.sys 384E1F0D84B465820416338E52FE7C2B
C:\WINDOWS\System32\DRIVERS\udfs.sys C82BE75239D412057C9E3DB1785680C6
C:\WINDOWS\System32\drivers\UEFI.sys CCDF6EFF952BF3BF34DC17600F479397
C:\WINDOWS\System32\drivers\ufx01000.sys 00BEF71C45FD6B06E7525E7B31EFA88C
C:\WINDOWS\System32\drivers\UfxChipidea.sys 9450AB15C30CF7D1F23C8A42E778C3A2
C:\WINDOWS\System32\drivers\ufxsynopsys.sys CEE12C7A689BDF448715024A7E0EB9C3
C:\WINDOWS\System32\drivers\umbus.sys F39ED750EDF5948FA8CD99D1F4EC9372
C:\WINDOWS\System32\drivers\umpass.sys 55984D4E64C2F8E4223542CBCC15EDEB
C:\WINDOWS\System32\drivers\urschipidea.sys 4D23214CB8B1C36B82061280EB8FDAB3
C:\WINDOWS\System32\drivers\urscx01000.sys 4329D880DB96B504F0DDC991A7374CCD
C:\WINDOWS\System32\drivers\urssynopsys.sys 93FAD0AC5879F274FA248A49E3F3EA33
C:\WINDOWS\System32\drivers\usbccgp.sys D3FE21B96DDFE97F50E8563FCF21C546
C:\WINDOWS\System32\drivers\usbcir.sys ECE3AD18B4C22ED0C4AB1A2AD9AC32C8
C:\WINDOWS\System32\drivers\usbehci.sys F8BCB536866474C6D8008F4C69B778A1
C:\WINDOWS\System32\drivers\usbhub.sys E9039631072644E0EF5488885F3925F9
C:\WINDOWS\System32\drivers\UsbHub3.sys 62F77D1A95EC9CCF40648695FA910729
C:\WINDOWS\System32\drivers\usbohci.sys BE6ED98FD0D3FE5FB11762AD7CCD6C96
C:\WINDOWS\System32\drivers\usbprint.sys CEE43CD5357DB8786CE6E2C430841AE4
C:\WINDOWS\System32\drivers\usbser.sys 8E6AE06A1CA4055340A49D73C9E0C21B
C:\WINDOWS\System32\drivers\USBSTOR.SYS 67E26F56CF7EACCBD9C9F75343A3D7C2
C:\WINDOWS\System32\drivers\usbuhci.sys 7BA802C9F73A84B75BB22538ADA495BE
C:\WINDOWS\System32\drivers\USBXHCI.SYS 50E70B3A95138AA4A30B095270EE0DE6
C:\WINDOWS\System32\drivers\vdrvroot.sys C1EC9211C7759D2487FD30934AA3EE96
C:\WINDOWS\System32\drivers\VerifierExt.sys C83F3BC00651448DB127D497CF955089
C:\WINDOWS\System32\drivers\vhdmp.sys 0E12F5F6B1C813D17AFDA197C4394423
C:\WINDOWS\System32\drivers\vhf.sys 1AD096A5C00E522398D0092D875A8CB6
C:\WINDOWS\System32\drivers\vmbus.sys EE9A22CFD9AEDD7B52F98B0272494609
C:\WINDOWS\System32\drivers\VMBusHID.sys BFBD0895926FD98A03AD6BB845B569B7
C:\WINDOWS\System32\drivers\vmgid.sys C123C97D351C56C75FE5335AB18255EE
C:\WINDOWS\System32\drivers\volmgr.sys 0AB9C264F13E2A070A8CF10EDD099ED2
C:\WINDOWS\System32\drivers\volmgrx.sys 6EE608257C1137A25B402EF8FC77E83A
C:\WINDOWS\System32\drivers\volsnap.sys E3429DBBEA3965BB96E24B16EF4A2551
C:\WINDOWS\System32\drivers\volume.sys 86E790B503C771E674C7DF8FFCBFEFDB
C:\WINDOWS\System32\drivers\vpci.sys B25589A0892E6DF8CC07E5CB48BFC954
C:\WINDOWS\System32\drivers\vsmraid.sys AA4466A47D2CA7ECE3DCF5256017DCC3
C:\WINDOWS\System32\drivers\vstxraid.sys 98BB6C9AD39D8F2E883093F28282FAEC
C:\WINDOWS\System32\drivers\vwifibus.sys B47026E109828102266CBE2F5F9AD113
C:\WINDOWS\System32\drivers\vwififlt.sys 799ECD541A9B2764B36A22A095885365
C:\WINDOWS\System32\drivers\vwifimp.sys 82CA088A33517D1C8571D6850CC13D7E
C:\WINDOWS\System32\drivers\wacompen.sys F0F477541F7AF67CC05DA1CF4921A500
C:\WINDOWS\System32\DRIVERS\wanarp.sys FDD16EF9177A8A2EF08A7FA3D3EFAA13
C:\WINDOWS\System32\DRIVERS\wanarp.sys FDD16EF9177A8A2EF08A7FA3D3EFAA13
C:\WINDOWS\system32\drivers\wcifs.sys 923200B78F5284D674A3712204D0FEFA
C:\WINDOWS\system32\drivers\wcnfs.sys 1737BEF60CA384423CE4B32AF1C2BFFC
C:\WINDOWS\system32\drivers\WdBoot.sys 38130C1C5FE0E08820EE57E1B087B659
C:\WINDOWS\System32\drivers\Wdf01000.sys 0C6CBF3490EE5F0D62B5820568CA30B8
C:\WINDOWS\system32\drivers\WdFilter.sys F7B6CB0F9ECD28848E2BDACEAB0D9204
C:\WINDOWS\System32\DRIVERS\wdiwifi.sys BF45B43BA47D0FA769CE5AFBF7104F01
C:\WINDOWS\System32\Drivers\WdNisDrv.sys 82A4F22C884B4BAE8B531640859F9871
C:\WINDOWS\System32\drivers\wfplwfs.sys 3C8F0ABD00E197101DCF43FEF8FB0D76
C:\WINDOWS\System32\drivers\wimmount.sys 75014BF6510D4C6C69EEE5B7743A52AF
C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys C8EBCFED8FD2CDF725E44AF93016621E
C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys D318557F9D7CA3836104F0B8ECB1F32E
C:\WINDOWS\System32\drivers\winmad.sys 31DDF1D001336B2DCE7DF24E99EF1D04
C:\WINDOWS\System32\drivers\winnat.sys 2E1A614EFB0523E20860AE7978DDA0A4
C:\WINDOWS\System32\drivers\WinUSB.SYS 03858B18BB6DF6A400D9FC5153FD28A8
C:\WINDOWS\System32\drivers\winverbs.sys 0BF4A43CF1F3A4D50AFA4561C3B4628D
C:\WINDOWS\System32\drivers\wmiacpi.sys 0D6E1347A891607759340B1E55BA2A77
C:\Windows\System32\Drivers\Wof.sys 1AE1076034392218EE89D2744EC2A071
C:\WINDOWS\System32\drivers\WpdUpFltr.sys 1FD80CBB192A20375F3664639DEB57B5
C:\WINDOWS\system32\drivers\ws2ifsl.sys DAF4451760B46CB383D287C4FAFFE97D
C:\WINDOWS\system32\DRIVERS\wsvd.sys 72B4E9DF6456C43C42A1419B09486045
C:\WINDOWS\System32\drivers\WudfPf.sys 455609BF60DA3B57EEAB863DEFCCF14D
C:\WINDOWS\System32\drivers\WUDFRd.sys 5068DAA8F67A62E964C9C9F88B159EA9
C:\WINDOWS\System32\drivers\xboxgip.sys B10655A4C2EFDC25483D670EF52A4854
C:\WINDOWS\System32\drivers\xinputhid.sys 2E50A379A8E4F6C5D85E87C26C08D329

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Trois mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2017-11-22 05:42 - 2017-11-22 05:44 - 000052067 _____ C:\Users\PTAH\Desktop\FRST.txt
2017-11-22 05:41 - 2017-11-22 05:42 - 000000000 ___DC C:\FRST
2017-11-22 05:22 - 2017-11-22 05:32 - 000172291 _____ C:\Users\PTAH\Desktop\ZHPDiag.txt
2017-11-22 05:05 - 2017-11-22 05:05 - 000000811 ____C C:\WinChk.txt
2017-11-22 05:04 - 2017-11-22 05:04 - 000000330 _____ C:\Users\PTAH\Downloads\ckfiles.txt
2017-11-22 03:32 - 2017-11-22 03:33 - 002391552 _____ (Farbar) C:\Users\PTAH\Desktop\FRST64.exe
2017-11-21 21:23 - 2017-11-22 02:00 - 000094144 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2017-11-21 20:20 - 2017-11-21 20:20 - 001780224 _____ (Bleeping Computer, LLC) C:\Users\PTAH\Downloads\rkill-unsigned.exe
2017-11-21 19:53 - 2017-11-22 05:09 - 000000871 _____ C:\Users\PTAH\Desktop\ZHPDiag.lnk
2017-11-21 19:25 - 2017-11-21 19:25 - 001790024 _____ (Malwarebytes) C:\Users\PTAH\Downloads\JRT.exe
2017-11-21 19:15 - 2017-11-21 19:16 - 001540480 _____ C:\Users\PTAH\Downloads\ZHPlite.exe
2017-11-21 19:06 - 2017-11-21 19:06 - 002929536 _____ C:\Users\PTAH\Downloads\ZHPDiag3.exe
2017-11-21 18:54 - 2017-11-21 18:54 - 003061760 _____ (Nicolas Coolman) C:\Users\PTAH\Downloads\ZHPFix.exe
2017-11-21 17:30 - 2017-11-21 17:30 - 000000000 ____D C:\Users\PTAH\Downloads\cintrepair
2017-11-21 17:22 - 2017-11-21 17:22 - 000515858 _____ C:\Users\PTAH\Downloads\cintrepair.zip
2017-11-20 10:26 - 2017-11-20 10:26 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\Mozilla
2017-11-20 10:25 - 2017-11-20 10:25 - 000003208 _____ C:\WINDOWS\System32\Tasks\Avira SystrayStartTrigger
2017-11-20 10:25 - 2017-11-20 10:25 - 000001272 _____ C:\Users\Public\Desktop\Avira.lnk
2017-11-20 10:21 - 2017-11-20 10:21 - 005348656 _____ (Avira Operations GmbH & Co. KG) C:\Users\PTAH\Downloads\avira_en_fass0_5a129d93b6b46__ws4.exe
2017-11-20 08:30 - 2017-11-20 08:30 - 000000000 ____D C:\Users\Administrateur\AppData\Local\ZHP
2017-11-20 07:35 - 2017-11-20 07:35 - 000000000 ____D C:\Users\Administrateur\AppData\Roaming\WinRAR
2017-11-20 07:01 - 2017-11-20 07:01 - 000000000 ____D C:\Users\Administrateur\AppData\Local\NetworkTiles
2017-11-20 04:07 - 2017-11-20 04:07 - 000000000 ____D C:\Users\Administrateur\AppData\Roaming\Google
2017-11-20 03:27 - 2017-11-20 10:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2017-11-20 03:27 - 2017-11-20 03:27 - 000003374 _____ C:\WINDOWS\System32\Tasks\Avira_Antivirus_Systray
2017-11-20 03:26 - 2017-11-10 15:18 - 000176224 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2017-11-20 03:26 - 2017-11-10 15:18 - 000167464 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2017-11-20 03:26 - 2017-11-10 15:18 - 000088488 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys
2017-11-20 03:26 - 2017-11-10 15:18 - 000060920 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avdevprot.sys
2017-11-20 03:26 - 2017-11-10 15:18 - 000044488 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys
2017-11-20 03:26 - 2017-11-10 15:18 - 000038048 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avusbflt.sys
2017-11-20 03:25 - 2017-11-20 10:27 - 000000000 ____D C:\ProgramData\Avira
2017-11-20 03:25 - 2017-11-20 10:27 - 000000000 ____D C:\Program Files (x86)\Avira
2017-11-20 01:27 - 2017-11-20 01:27 - 000000000 ____D C:\Users\Administrateur\AppData\Local\VS Revo Group
2017-11-20 00:50 - 2017-11-21 17:48 - 000110016 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2017-11-20 00:50 - 2017-11-20 00:50 - 000193464 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2017-11-20 00:49 - 2017-11-21 17:48 - 000046008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2017-11-20 00:48 - 2017-11-20 00:48 - 000000000 ____D C:\Users\Administrateur\AppData\Local\ElevatedDiagnostics
2017-11-20 00:40 - 2017-11-20 00:40 - 000000000 ____D C:\Users\Administrateur\AppData\Roaming\Skype
2017-11-19 02:39 - 2017-11-21 17:48 - 000253880 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2017-11-19 02:39 - 2017-11-20 03:10 - 000002100 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2017-11-19 02:39 - 2017-11-19 02:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-11-19 02:38 - 2017-11-19 02:38 - 000000000 ____D C:\ProgramData\Malwarebytes
2017-11-19 02:38 - 2017-11-19 02:38 - 000000000 ____D C:\Program Files\Malwarebytes
2017-11-19 02:38 - 2017-11-01 08:54 - 000077432 _____ C:\WINDOWS\system32\Drivers\mbae64.sys
2017-11-19 02:28 - 2017-11-19 02:28 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_avusbflt_01011.Wdf
2017-11-18 21:54 - 2017-11-20 08:01 - 000000000 ___DC C:\KVRT_Data
2017-11-18 21:49 - 2017-11-18 21:49 - 000000512 _____ C:\Users\PTAH\Downloads\Avira Antivirus Pro 22.09.2099.key
2017-11-18 21:44 - 2017-11-18 21:47 - 273025864 _____ C:\Users\PTAH\Downloads\avira_antivirus_fr-fr.exe
2017-11-18 21:36 - 2017-11-18 21:39 - 132023080 _____ (Kaspersky Lab ZAO) C:\Users\PTAH\Desktop\KVRT.exe
2017-11-16 23:35 - 2017-11-16 23:35 - 000001965 _____ C:\Users\Public\Desktop\PrivaZer.lnk
2017-11-16 02:06 - 2017-11-16 02:06 - 000003228 _____ C:\WINDOWS\System32\Tasks\CLVDLauncher
2017-11-16 02:06 - 2017-11-16 02:06 - 000003228 _____ C:\WINDOWS\System32\Tasks\CLMLSvc_P2G8
2017-11-16 02:06 - 2017-11-16 02:06 - 000000000 ____D C:\Users\Public\Documents\CyberLink
2017-11-16 00:01 - 2017-11-16 00:02 - 000418944 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-11-15 03:49 - 2017-11-15 03:49 - 000002240 _____ C:\Users\PTAH\Desktop\WhatsApp.lnk
2017-11-15 03:49 - 2017-11-15 03:49 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp
2017-11-15 03:48 - 2017-11-15 03:51 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\WhatsApp
2017-11-15 03:45 - 2017-11-15 03:49 - 000000000 ____D C:\Users\PTAH\AppData\Local\SquirrelTemp
2017-11-15 03:45 - 2017-11-15 03:48 - 000000000 ____D C:\Users\PTAH\AppData\Local\WhatsApp
2017-11-14 12:57 - 2017-11-14 12:57 - 000268587 _____ C:\Users\PTAH\Desktop\salon-europeen-de-leducation-aventure-des-metiers.pdf
2017-11-14 04:10 - 2017-11-16 17:38 - 000004770 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
2017-11-14 04:10 - 2017-11-16 17:38 - 000004594 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2017-11-14 04:09 - 2017-11-14 04:11 - 000000000 ____D C:\Users\PTAH\AppData\Local\Adobe
2017-11-14 02:54 - 2017-11-14 02:54 - 000001164 _____ C:\Users\Public\Desktop\PDF24.lnk
2017-11-14 02:54 - 2017-11-14 02:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF24
2017-11-14 02:54 - 2017-11-14 02:54 - 000000000 ____D C:\Program Files (x86)\PDF24
2017-11-13 21:19 - 2017-11-13 21:26 - 000000168 _____ C:\Users\PTAH\Desktop\Dépenses.txt
2017-11-13 19:14 - 2017-11-19 19:23 - 000003984 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1510596865
2017-11-13 19:14 - 2017-11-19 19:23 - 000001085 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk
2017-11-13 19:14 - 2017-11-13 19:14 - 000001173 _____ C:\Users\Public\Desktop\Navigateur Opera.lnk
2017-11-13 19:14 - 2017-11-13 19:14 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\Opera Software
2017-11-13 19:14 - 2017-11-13 19:14 - 000000000 ____D C:\Users\PTAH\AppData\Local\Opera Software
2017-11-13 18:52 - 2017-11-19 19:23 - 000000000 ____D C:\Program Files\Opera
2017-11-12 09:09 - 2017-11-12 09:09 - 000000000 ____D C:\WINDOWS\System32\Tasks\cFos
2017-11-12 09:06 - 2017-11-12 09:06 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\CrystalIdea Software
2017-11-12 09:05 - 2017-02-06 12:35 - 001683368 _____ (SpeedyFox) C:\Users\PTAH\Desktop\speedyfox.exe
2017-11-12 08:39 - 2017-11-12 09:23 - 000032627 _____ C:\WINDOWS\cFosSpeed_Setup_Log.txt
2017-11-11 21:30 - 2017-11-11 21:30 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\4kdownload.com
2017-11-11 21:04 - 2017-11-11 21:04 - 000000112 _____ C:\WINDOWS\system32\AUTOEXEC.NT
2017-11-11 21:04 - 2017-11-11 21:04 - 000000058 ____C C:\SCRIPT.CLN
2017-11-11 20:50 - 2017-11-11 20:50 - 000000000 ____D C:\WINDOWS\Panther
2017-11-10 16:59 - 2017-11-10 17:00 - 001753400 _____ (Goversoft LLC) C:\Users\PTAH\Desktop\shellbag_analyzer_cleaner.exe
2017-11-08 08:11 - 2017-11-08 08:16 - 000001277 _____ C:\Users\PTAH\Desktop\SriVidya Mantram Maitreya.txt
2017-11-07 17:50 - 2017-11-18 21:09 - 000000316 _____ C:\Users\PTAH\Desktop\shellbag_analyzer_cleaner.ini
2017-11-07 17:39 - 2017-11-07 17:39 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\Amine_Dries
2017-11-07 17:39 - 2017-11-07 17:39 - 000000000 ____D C:\Program Files (x86)\Amine Dries
2017-11-07 17:37 - 2010-05-28 11:03 - 001217251 _____ (Amine Dries ) C:\Users\PTAH\Downloads\Horloger_V1.0-Final(x64)_setup.exe
2017-11-07 15:12 - 2017-11-07 15:12 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\Google
2017-11-07 15:10 - 2017-11-15 23:31 - 000002277 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-11-07 15:10 - 2017-11-15 23:31 - 000002265 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-11-07 15:10 - 2017-11-14 23:24 - 000003586 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2017-11-07 15:10 - 2017-11-14 23:24 - 000003462 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2017-11-06 13:50 - 2017-11-06 13:50 - 000000000 ____D C:\WINDOWS\pss
2017-11-06 13:26 - 2017-11-15 23:59 - 000000008 __RSH C:\Users\PTAH\ntuser.pol
2017-11-06 07:57 - 2017-11-06 07:57 - 000000000 ____D C:\Users\PTAH\AppData\Local\VS Revo Group
2017-11-06 07:56 - 2017-11-20 01:27 - 000001310 _____ C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk
2017-11-06 07:56 - 2017-11-06 07:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro
2017-11-06 07:56 - 2017-11-06 07:56 - 000000000 ____D C:\Program Files\VS Revo Group
2017-11-06 07:56 - 2016-12-21 14:52 - 000040240 _____ (VS Revo Group) C:\WINDOWS\system32\Drivers\revoflt.sys
2017-11-06 01:07 - 2017-11-06 01:07 - 000000000 ____D C:\Users\PTAH\Tracing
2017-11-05 20:57 - 2017-11-15 00:56 - 000000000 ____D C:\Users\PTAH\Desktop\HYPNÔSE
2017-10-27 16:17 - 2017-11-20 08:05 - 000000000 ____D C:\Users\Administrateur\AppData\Local\privazer
2017-10-27 16:16 - 2017-10-27 16:18 - 001216000 _____ C:\Users\Administrateur\Downloads\EJjplDh7z8h_CTR.exe
2017-10-27 13:31 - 2017-10-27 13:31 - 000000017 _____ C:\Users\PTAH\AppData\Local\resmon.resmoncfg
2017-10-26 18:43 - 2017-10-26 18:43 - 000000000 ____D C:\Users\PTAH\AppData\Local\Tvsukernel
2017-10-25 06:23 - 2017-10-26 18:36 - 000000000 ____D C:\WINDOWS\System32\Tasks\TVT
2017-10-25 06:20 - 2017-10-25 06:20 - 000000000 ____D C:\Users\PTAH\AppData\Local\LenovoServiceBridge
2017-10-23 18:43 - 2017-03-17 21:00 - 005739008 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll
2017-10-23 18:43 - 2017-03-17 20:59 - 002629120 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll
2017-10-23 18:43 - 2017-03-17 20:48 - 006348288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll
2017-10-23 18:43 - 2017-03-17 20:43 - 002629120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons0009.dll
2017-10-23 18:43 - 2017-03-17 20:35 - 005484544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll
2017-10-22 10:41 - 2017-10-23 04:17 - 000000000 ____D C:\Program Files\Common Files\AV
2017-10-22 08:40 - 2017-10-23 09:11 - 000000000 ____D C:\ProgramData\Kaspersky Lab
2017-10-22 08:40 - 2017-10-23 04:19 - 000000000 ____D C:\Program Files (x86)\Kaspersky Lab
2017-10-22 08:40 - 2017-10-22 08:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Software Updater
2017-10-22 08:30 - 2017-10-22 11:03 - 000000000 ____D C:\ProgramData\Kaspersky Lab Setup Files
2017-10-22 05:22 - 2017-11-19 05:10 - 000000000 ____D C:\Users\PTAH\AppData\Local\ElevatedDiagnostics
2017-10-22 03:02 - 2017-10-22 03:02 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\WinRAR
2017-10-22 03:02 - 2017-10-22 03:02 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2017-10-22 03:02 - 2017-10-22 03:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2017-10-22 03:02 - 2017-10-16 14:53 - 000000000 ____D C:\Users\PTAH\Downloads\Revo Uninstaller Pro 3.2.0 Trial 4000 days - Majax31
2017-10-22 03:01 - 2017-10-22 03:02 - 000000000 ____D C:\Program Files\WinRAR
2017-10-18 01:33 - 2017-10-18 01:33 - 000000000 ____D C:\Users\PTAH\AppData\Local\4kdownload.com
2017-10-17 09:59 - 2017-10-26 18:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2017-10-14 00:32 - 2017-10-14 00:32 - 000000000 ____D C:\Users\PTAH\AppData\Local\NetworkTiles
2017-10-13 19:53 - 2017-11-20 08:54 - 000000744 _____ C:\Users\PTAH\Desktop\ZHPCleaner.lnk
2017-10-11 15:45 - 2017-10-11 15:45 - 000375542 _____ C:\Users\PTAH\Documents\AlvinBoydKuhn-TheEsotericStructureOfTheAlphabet.pdf
2017-10-11 12:32 - 2017-10-11 12:32 - 000000000 ____D C:\Users\PTAH\Documents\Sony
2017-10-11 12:32 - 2017-10-11 12:32 - 000000000 ____D C:\Users\PTAH\AppData\Local\CEF
2017-10-11 12:32 - 2017-10-11 12:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
2017-10-11 12:32 - 2017-10-11 12:32 - 000000000 ____D C:\Program Files\Sony
2017-10-11 12:32 - 2017-10-11 12:32 - 000000000 ____D C:\Program Files (x86)\Sony
2017-10-11 12:17 - 2017-10-11 12:21 - 014574681 _____ C:\Users\PTAH\Desktop\Xperia_Z5_Compact_driver.zip
2017-10-11 00:40 - 2017-10-11 00:40 - 126925120 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe
2017-10-10 23:35 - 2017-09-30 06:45 - 000511896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys
2017-10-10 23:35 - 2017-09-30 03:29 - 001408536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2017-10-10 23:35 - 2017-09-30 03:29 - 000804784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2017-10-10 23:35 - 2017-09-30 03:26 - 001333136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2017-10-10 23:35 - 2017-09-30 03:26 - 001292872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2017-10-10 23:35 - 2017-09-30 03:10 - 001839872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2017-10-10 23:35 - 2017-09-30 03:10 - 000606072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2017-10-10 23:35 - 2017-09-30 03:09 - 002259760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2017-10-10 23:35 - 2017-09-30 03:06 - 004471368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2017-10-10 23:35 - 2017-09-30 03:05 - 005827744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2017-10-10 23:35 - 2017-09-30 03:05 - 002603744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2017-10-10 23:35 - 2017-09-30 03:05 - 001266544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2017-10-10 23:35 - 2017-09-30 03:04 - 004215184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2017-10-10 23:35 - 2017-09-30 03:04 - 000438096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2017-10-10 23:35 - 2017-09-30 03:03 - 020373408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2017-10-10 23:35 - 2017-09-30 03:03 - 006768288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2017-10-10 23:35 - 2017-09-30 03:03 - 001439032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2017-10-10 23:35 - 2017-09-30 03:02 - 000175512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\basecsp.dll
2017-10-10 23:35 - 2017-09-29 08:45 - 002953216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2017-10-10 23:35 - 2017-09-29 08:41 - 013844992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2017-10-10 23:35 - 2017-09-29 08:40 - 006728192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2017-10-10 23:35 - 2017-09-29 08:40 - 000371200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2017-10-10 23:35 - 2017-09-29 08:38 - 005721600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2017-10-10 23:35 - 2017-09-29 08:38 - 002671616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2017-10-10 23:35 - 2017-09-29 08:38 - 000229376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scksp.dll
2017-10-10 23:35 - 2017-09-29 08:36 - 000590336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPKsp.dll
2017-10-10 23:35 - 2017-09-29 08:34 - 002859520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2017-10-10 23:35 - 2017-09-29 08:34 - 000798720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2017-10-10 23:35 - 2017-09-29 08:33 - 007598080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2017-10-10 23:35 - 2017-09-29 08:32 - 002340864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2017-10-10 23:35 - 2017-09-29 08:32 - 001627136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2017-10-10 23:35 - 2017-09-29 08:32 - 001244160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Phone.dll
2017-10-10 23:35 - 2017-09-29 08:24 - 003377664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2017-10-10 23:35 - 2017-09-20 16:08 - 000640512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswstr10.dll
2017-10-10 23:35 - 2017-09-20 16:08 - 000345088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2017-10-10 23:35 - 2017-09-20 16:08 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjint40.dll
2017-10-10 23:34 - 2017-09-30 06:49 - 001004136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2017-10-10 23:34 - 2017-09-30 06:42 - 000820120 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2017-10-10 23:34 - 2017-09-30 06:41 - 000259400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2017-10-10 23:34 - 2017-09-30 06:40 - 000336320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2017-10-10 23:34 - 2017-09-30 06:40 - 000173976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys
2017-10-10 23:34 - 2017-09-30 06:36 - 002672024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2017-10-10 23:34 - 2017-09-30 03:10 - 000508344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2017-10-10 23:34 - 2017-09-30 03:10 - 000480920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2017-10-10 23:34 - 2017-09-30 03:09 - 000787712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2017-10-10 23:34 - 2017-09-30 03:05 - 000750488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2017-10-10 23:34 - 2017-09-30 03:05 - 000559000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2017-10-10 23:34 - 2017-09-30 03:04 - 000612120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2017-10-10 23:34 - 2017-09-30 03:04 - 000519680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2017-10-10 23:34 - 2017-09-30 03:04 - 000347544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2017-10-10 23:34 - 2017-09-30 03:04 - 000182680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2017-10-10 23:34 - 2017-09-30 03:01 - 000124544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2017-10-10 23:34 - 2017-09-29 08:46 - 023678976 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2017-10-10 23:34 - 2017-09-29 08:44 - 000133120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2017-10-10 23:34 - 2017-09-29 08:43 - 002199552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2017-10-10 23:34 - 2017-09-29 08:43 - 000142336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smartscreenps.dll
2017-10-10 23:34 - 2017-09-29 08:43 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2017-10-10 23:34 - 2017-09-29 08:42 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mgmtapi.dll
2017-10-10 23:34 - 2017-09-29 08:41 - 000110080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BitLockerCsp.dll
2017-10-10 23:34 - 2017-09-29 08:40 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2017-10-10 23:34 - 2017-09-29 08:39 - 020511232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2017-10-10 23:34 - 2017-09-29 08:39 - 000364032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2017-10-10 23:34 - 2017-09-29 08:38 - 001135616 ____R (The ICU Project) C:\WINDOWS\SysWOW64\icuuc.dll
2017-10-10 23:34 - 2017-09-29 08:38 - 000471040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2017-10-10 23:34 - 2017-09-29 08:38 - 000463360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2017-10-10 23:34 - 2017-09-29 08:38 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2017-10-10 23:34 - 2017-09-29 08:38 - 000308224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2017-10-10 23:34 - 2017-09-29 08:37 - 000306688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2017-10-10 23:34 - 2017-09-29 08:37 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerUI.dll
2017-10-10 23:34 - 2017-09-29 08:36 - 019337216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2017-10-10 23:34 - 2017-09-29 08:34 - 000787456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2017-10-10 23:34 - 2017-09-29 08:34 - 000434176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2017-10-10 23:34 - 2017-09-29 08:33 - 004559360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2017-10-10 23:34 - 2017-09-29 08:33 - 001506816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll
2017-10-10 23:34 - 2017-09-29 08:32 - 002782720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2017-10-10 23:34 - 2017-09-29 08:32 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2017-10-10 23:34 - 2017-09-29 08:32 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys
2017-10-10 23:34 - 2017-09-29 08:31 - 003107328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2017-10-10 23:34 - 2017-09-29 08:31 - 000306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2017-10-10 23:34 - 2017-09-29 08:31 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2017-10-10 23:34 - 2017-09-29 08:31 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2017-10-10 23:34 - 2017-09-29 08:30 - 023686144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2017-10-10 23:34 - 2017-09-29 08:29 - 001460736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2017-10-10 23:34 - 2017-09-29 08:29 - 001318912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2017-10-10 23:34 - 2017-09-29 08:29 - 000724992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2017-10-10 23:34 - 2017-09-29 08:29 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll
2017-10-10 23:34 - 2017-09-29 08:29 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2017-10-10 23:34 - 2017-09-29 08:29 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2017-10-10 23:34 - 2017-09-29 08:28 - 000681472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2017-10-10 23:34 - 2017-09-29 08:28 - 000473088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2017-10-10 23:34 - 2017-09-29 08:28 - 000458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2017-10-10 23:34 - 2017-09-29 08:28 - 000297984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcbuilder.exe
2017-10-10 23:34 - 2017-09-29 08:28 - 000104448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Robocopy.exe
2017-10-10 23:34 - 2017-09-29 08:28 - 000040448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cipher.exe
2017-10-10 23:34 - 2017-09-29 08:27 - 000409600 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2017-10-10 23:34 - 2017-09-29 08:27 - 000350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2017-10-10 23:34 - 2017-09-29 08:26 - 008213504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2017-10-10 23:34 - 2017-09-29 08:25 - 008199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2017-10-10 23:34 - 2017-09-29 08:24 - 001628672 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2017-10-10 23:34 - 2017-09-29 08:21 - 003304448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2017-10-10 23:34 - 2017-09-29 08:21 - 000414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2017-10-10 23:34 - 2017-09-29 08:20 - 000385536 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2017-10-10 23:34 - 2017-09-29 08:20 - 000286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2017-10-10 23:34 - 2017-09-29 08:19 - 000306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2017-10-10 23:34 - 2017-09-29 08:18 - 000215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\manage-bde.exe
2017-10-10 23:34 - 2017-09-29 08:18 - 000141312 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2017-10-10 23:34 - 2017-09-29 06:40 - 000804312 _____ C:\WINDOWS\SysWOW64\locale.nls
2017-10-10 23:34 - 2017-09-29 06:40 - 000804312 _____ C:\WINDOWS\system32\locale.nls
2017-10-10 23:33 - 2017-09-30 06:51 - 000661224 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2017-10-10 23:33 - 2017-09-30 06:49 - 000777400 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2017-10-10 23:33 - 2017-09-30 06:49 - 000135576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2017-10-10 23:33 - 2017-09-30 06:48 - 008319384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2017-10-10 23:33 - 2017-09-30 06:48 - 002399728 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2017-10-10 23:33 - 2017-09-30 06:48 - 002327448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2017-10-10 23:33 - 2017-09-30 06:47 - 002969880 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll
2017-10-10 23:33 - 2017-09-30 06:47 - 001194792 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2017-10-10 23:33 - 2017-09-30 06:44 - 000181912 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2017-10-10 23:33 - 2017-09-30 06:43 - 007318888 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2017-10-10 23:33 - 2017-09-30 06:41 - 005304496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2017-10-10 23:33 - 2017-09-30 06:41 - 000654976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2017-10-10 23:33 - 2017-09-30 06:40 - 000724704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2017-10-10 23:33 - 2017-09-30 06:39 - 021351760 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2017-10-10 23:33 - 2017-09-30 06:38 - 007910072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2017-10-10 23:33 - 2017-09-30 06:38 - 002239136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2017-10-10 23:33 - 2017-09-30 06:36 - 000057976 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2017-10-10 23:33 - 2017-09-30 03:10 - 001150776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2017-10-10 23:33 - 2017-09-29 08:39 - 011888640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2017-10-10 23:33 - 2017-09-29 08:35 - 003654656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2017-10-10 23:33 - 2017-09-29 08:34 - 017370624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-10-10 23:33 - 2017-09-29 08:34 - 006255616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2017-10-10 23:33 - 2017-09-29 08:34 - 003669504 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2017-10-10 23:33 - 2017-09-29 08:33 - 000658944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2017-10-10 23:33 - 2017-09-29 08:32 - 000029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2017-10-10 23:33 - 2017-09-29 08:32 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mgmtapi.dll
2017-10-10 23:33 - 2017-09-29 08:30 - 007931392 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2017-10-10 23:33 - 2017-09-29 08:29 - 008333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2017-10-10 23:33 - 2017-09-29 08:28 - 000699904 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2017-10-10 23:33 - 2017-09-29 08:27 - 012803072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2017-10-10 23:33 - 2017-09-29 08:26 - 002809344 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2017-10-10 23:33 - 2017-09-29 08:25 - 004175872 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2017-10-10 23:33 - 2017-09-29 08:25 - 002760704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.UnifiedTile.CuratedTileCollections.dll
2017-10-10 23:33 - 2017-09-29 08:25 - 000586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2017-10-10 23:33 - 2017-09-29 08:23 - 005557760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2017-10-10 23:33 - 2017-09-29 08:23 - 004730368 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2017-10-10 23:33 - 2017-09-29 08:23 - 001887744 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2017-10-10 23:33 - 2017-09-29 08:23 - 000756224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2017-10-10 23:33 - 2017-09-29 08:22 - 002829824 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2017-10-10 23:33 - 2017-09-29 08:21 - 000476160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2017-10-10 23:33 - 2017-09-29 08:21 - 000124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2017-10-10 23:33 - 2017-09-29 08:20 - 000804864 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2017-10-10 23:33 - 2017-09-29 08:20 - 000194560 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll
2017-10-10 23:33 - 2017-09-29 08:19 - 000325120 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2017-10-10 23:33 - 2017-09-29 08:19 - 000208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2017-10-10 23:32 - 2017-09-30 06:52 - 001595152 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2017-10-10 23:32 - 2017-09-30 06:51 - 001458320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2017-10-10 23:32 - 2017-09-30 06:51 - 001147288 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2017-10-10 23:32 - 2017-09-30 06:50 - 001346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2017-10-10 23:32 - 2017-09-30 06:50 - 001068208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2017-10-10 23:32 - 2017-09-30 06:50 - 001024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2017-10-10 23:32 - 2017-09-30 06:48 - 000644696 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2017-10-10 23:32 - 2017-09-30 06:44 - 000712600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2017-10-10 23:32 - 2017-09-30 06:43 - 002442136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2017-10-10 23:32 - 2017-09-30 06:42 - 004848952 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2017-10-10 23:32 - 2017-09-30 06:42 - 001506712 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2017-10-10 23:32 - 2017-09-30 06:41 - 005477600 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2017-10-10 23:32 - 2017-09-30 06:41 - 002086808 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2017-10-10 23:32 - 2017-09-30 06:41 - 000961944 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2017-10-10 23:32 - 2017-09-30 06:41 - 000651672 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2017-10-10 23:32 - 2017-09-30 06:41 - 000257432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2017-10-10 23:32 - 2017-09-30 06:41 - 000228248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2017-10-10 23:32 - 2017-09-30 06:40 - 000642680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2017-10-10 23:32 - 2017-09-30 06:40 - 000558912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2017-10-10 23:32 - 2017-09-30 06:40 - 000408984 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2017-10-10 23:32 - 2017-09-30 06:40 - 000184728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2017-10-10 23:32 - 2017-09-30 06:40 - 000072944 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2017-10-10 23:32 - 2017-09-30 06:39 - 000203672 _____ (Microsoft Corporation) C:\WINDOWS\system32\basecsp.dll
2017-10-10 23:32 - 2017-09-29 08:33 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2017-10-10 23:32 - 2017-09-29 08:32 - 002199552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2017-10-10 23:32 - 2017-09-29 08:32 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll
2017-10-10 23:32 - 2017-09-29 08:32 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2017-10-10 23:32 - 2017-09-29 08:32 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2017-10-10 23:32 - 2017-09-29 08:31 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2017-10-10 23:32 - 2017-09-29 08:31 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\efssvc.dll
2017-10-10 23:32 - 2017-09-29 08:30 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2017-10-10 23:32 - 2017-09-29 08:30 - 000495104 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshSession.exe
2017-10-10 23:32 - 2017-09-29 08:30 - 000436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshSftp.exe
2017-10-10 23:32 - 2017-09-29 08:30 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshProxy.dll
2017-10-10 23:32 - 2017-09-29 08:30 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2017-10-10 23:32 - 2017-09-29 08:30 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2017-10-10 23:32 - 2017-09-29 08:30 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2017-10-10 23:32 - 2017-09-29 08:29 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2017-10-10 23:32 - 2017-09-29 08:29 - 000461824 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2017-10-10 23:32 - 2017-09-29 08:29 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2017-10-10 23:32 - 2017-09-29 08:29 - 000304640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll
2017-10-10 23:32 - 2017-09-29 08:29 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\ServiceWorkerHost.exe
2017-10-10 23:32 - 2017-09-29 08:28 - 000556032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2017-10-10 23:32 - 2017-09-29 08:28 - 000527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2017-10-10 23:32 - 2017-09-29 08:28 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2017-10-10 23:32 - 2017-09-29 08:28 - 000254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\scksp.dll
2017-10-10 23:32 - 2017-09-29 08:27 - 001321984 ____R (The ICU Project) C:\WINDOWS\system32\icuuc.dll
2017-10-10 23:32 - 2017-09-29 08:27 - 000616960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2017-10-10 23:32 - 2017-09-29 08:27 - 000565760 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2017-10-10 23:32 - 2017-09-29 08:27 - 000538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2017-10-10 23:32 - 2017-09-29 08:27 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2017-10-10 23:32 - 2017-09-29 08:27 - 000412160 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2017-10-10 23:32 - 2017-09-29 08:27 - 000373760 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshBroker.dll
2017-10-10 23:32 - 2017-09-29 08:26 - 001468928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2017-10-10 23:32 - 2017-09-29 08:26 - 001269760 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2017-10-10 23:32 - 2017-09-29 08:26 - 000772096 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPKsp.dll
2017-10-10 23:32 - 2017-09-29 08:26 - 000356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2017-10-10 23:32 - 2017-09-29 08:26 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerUI.dll
2017-10-10 23:32 - 2017-09-29 08:24 - 003307008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2017-10-10 23:32 - 2017-09-29 08:24 - 002503680 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2017-10-10 23:32 - 2017-09-29 08:24 - 001886208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2017-10-10 23:32 - 2017-09-29 08:24 - 001307648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2017-10-10 23:32 - 2017-09-29 08:24 - 000684032 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2017-10-10 23:32 - 2017-09-29 08:23 - 003140096 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2017-10-10 23:32 - 2017-09-29 08:23 - 002730496 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2017-10-10 23:32 - 2017-09-29 08:23 - 002446336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2017-10-10 23:32 - 2017-09-29 08:23 - 002055680 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2017-10-10 23:32 - 2017-09-29 08:23 - 001605632 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2017-10-10 23:32 - 2017-09-29 08:23 - 001460224 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2017-10-10 23:32 - 2017-09-29 08:23 - 001398784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2017-10-10 23:32 - 2017-09-29 08:23 - 001052672 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2017-10-10 23:32 - 2017-09-29 08:23 - 000986624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2017-10-10 23:32 - 2017-09-29 08:23 - 000972288 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2017-10-10 23:32 - 2017-09-29 08:23 - 000841216 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2017-10-10 23:32 - 2017-09-29 08:23 - 000647168 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2017-10-10 23:32 - 2017-09-29 08:23 - 000512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2017-10-10 23:32 - 2017-09-29 08:22 - 001802240 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2017-10-10 23:32 - 2017-09-29 08:22 - 001438208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2017-10-10 23:32 - 2017-09-29 08:22 - 000407040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2017-10-10 23:32 - 2017-09-29 08:21 - 000722944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2017-10-10 23:32 - 2017-09-29 08:21 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2017-10-10 23:32 - 2017-09-29 08:21 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\regsvc.dll
2017-10-10 23:32 - 2017-09-29 08:21 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll
2017-10-10 23:32 - 2017-09-29 08:20 - 001811456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2017-10-10 23:32 - 2017-09-29 08:20 - 000150016 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsiexe.dll
2017-10-10 23:32 - 2017-09-29 08:19 - 002088448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2017-10-10 23:32 - 2017-09-29 08:18 - 002438656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2017-10-10 23:32 - 2017-09-29 08:18 - 001527296 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2017-10-10 23:32 - 2017-09-29 08:18 - 000893440 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2017-10-10 23:32 - 2017-09-29 08:18 - 000603136 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2017-10-10 23:32 - 2017-09-29 08:18 - 000347648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2017-10-10 23:32 - 2017-09-29 08:18 - 000130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Robocopy.exe
2017-10-10 23:32 - 2017-09-29 08:18 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\cipher.exe
2017-10-10 21:13 - 2017-10-10 21:13 - 000000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2017-10-10 21:13 - 2017-10-10 21:13 - 000000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2017-10-10 10:46 - 2017-10-10 10:46 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\My Bluetooth
2017-10-10 09:42 - 2017-11-06 09:18 - 000000000 ____D C:\WINDOWS\Minidump
2017-10-10 07:35 - 2017-10-10 11:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2017-10-10 07:35 - 2017-10-10 11:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2017-10-10 07:31 - 2017-10-10 07:31 - 000000000 ____D C:\Program Files (x86)\Microsoft Synchronization Services
2017-10-10 07:29 - 2017-10-10 07:29 - 000000000 ____D C:\Program Files (x86)\Microsoft Sync Framework
2017-10-10 07:29 - 2017-10-10 07:29 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2017-10-10 07:19 - 2017-10-10 07:19 - 000000000 ____D C:\IDE
2017-10-10 07:18 - 2017-10-10 11:23 - 000000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8
2017-10-10 07:14 - 2017-10-10 07:14 - 000000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2017-10-10 07:13 - 2017-10-10 07:13 - 000000000 ____D C:\Users\PTAH\AppData\Local\Microsoft Help
2017-10-09 23:48 - 2017-10-09 23:48 - 000000000 ____D C:\Program Files (x86)\ChronosXP
2017-10-09 21:50 - 2017-11-21 17:53 - 000079776 _____ C:\WINDOWS\system32\InstallUtil.InstallLog
2017-10-09 20:42 - 2017-10-09 20:42 - 000000000 ____D C:\ProgramData\VirtualizedApplications
2017-10-08 21:41 - 2017-10-10 08:44 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\SoftGrid Client
2017-10-08 21:41 - 2017-10-08 21:41 - 000000000 ____D C:\Users\PTAH\AppData\Local\SoftGrid Client
2017-10-08 21:36 - 2017-09-08 02:57 - 002365296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WudfUpdate_01011.dll
2017-10-08 21:09 - 2017-10-23 13:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (Français)
2017-10-08 21:06 - 2017-11-19 02:32 - 002821828 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2017-10-08 21:06 - 2017-10-10 07:29 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2017-10-08 21:06 - 2017-10-08 22:12 - 000000000 ____D C:\Program Files (x86)\Microsoft Application Virtualization Client
2017-10-08 21:06 - 2017-10-08 21:06 - 000000000 ____D C:\WINDOWS\System32\Tasks\OfficeSoftwareProtectionPlatform
2017-10-08 21:06 - 2017-10-08 21:06 - 000000000 ____D C:\WINDOWS\PCHEALTH
2017-10-08 21:06 - 2017-10-08 21:06 - 000000000 ____D C:\Program Files\Microsoft Office
2017-10-08 20:33 - 2017-10-08 21:22 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\TP
2017-10-08 19:14 - 2017-10-08 19:14 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\CyberLink
2017-10-08 12:43 - 2017-10-08 18:17 - 000000000 ____D C:\Users\PTAH\fet-results
2017-10-08 11:19 - 2017-10-08 11:19 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_iMDriver_01_11_00.Wdf
2017-10-08 11:18 - 2017-09-08 02:57 - 000103744 _____ (Lenovo Group Limited.) C:\WINDOWS\system32\ImController.CoInstaller.dll
2017-10-08 11:18 - 2017-09-08 02:57 - 000039744 _____ (Lenovo Group Limited) C:\WINDOWS\system32\ImController.InfInstaller.exe
2017-10-08 11:15 - 2017-09-08 02:57 - 000266560 _____ (Lenovo Group Limited) C:\WINDOWS\system32\iMDriverHelper.dll
2017-10-06 21:48 - 2017-11-21 17:27 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\vlc
2017-10-06 17:19 - 2017-10-06 17:19 - 000000000 ____D C:\Program Files (x86)\KIT
2017-10-06 17:18 - 2017-10-06 17:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Anti-Copy
2017-10-06 17:18 - 2017-10-06 17:18 - 000000000 ____D C:\Program Files (x86)\PDFAntiCopy
2017-10-06 17:18 - 2017-09-16 07:08 - 000000004 _____ C:\Users\PTAH\AppData\Roaming\pacsound.dll
2017-10-06 17:18 - 2017-05-09 17:02 - 000000002 _____ C:\Users\PTAH\AppData\Roaming\paclan.ini
2017-10-06 16:29 - 2017-10-06 16:29 - 000003226 _____ C:\WINDOWS\System32\Tasks\klcp_update
2017-10-06 16:27 - 2017-10-06 16:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2017-10-06 16:27 - 2017-07-30 11:50 - 003799552 _____ (x264vfw project) C:\WINDOWS\system32\x264vfw64.dll
2017-10-06 16:27 - 2015-12-18 10:00 - 000755200 _____ C:\WINDOWS\system32\xvidcore.dll
2017-10-06 16:27 - 2015-12-18 10:00 - 000309248 _____ C:\WINDOWS\system32\xvidvfw.dll
2017-10-06 16:27 - 2012-07-21 11:55 - 000180736 _____ (fccHandler) C:\WINDOWS\system32\ac3acm.acm
2017-10-06 16:27 - 2011-12-07 18:37 - 000148992 _____ ( ) C:\WINDOWS\system32\lagarith.dll
2017-10-06 16:27 - 2005-01-22 00:53 - 000055296 _____ C:\WINDOWS\system32\huffyuv.dll
2017-10-06 16:26 - 2017-10-06 16:27 - 000000000 ____D C:\Program Files (x86)\K-Lite Codec Pack
2017-10-06 08:58 - 2017-10-06 08:58 - 000166771 _____ C:\Users\PTAH\Desktop\Aide Pole Emplii cours_de_langues.pdf
2017-10-06 08:20 - 2017-10-06 08:20 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_ldiagio_uefi_01009.Wdf
2017-10-06 08:19 - 2017-10-06 08:19 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\Lenovo
2017-10-06 08:09 - 2017-10-06 08:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2017-10-06 08:08 - 2017-10-06 08:08 - 000000000 ____D C:\Program Files\VideoLAN
2017-10-06 07:44 - 2017-11-16 23:35 - 000001977 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PrivaZer.lnk
2017-10-06 07:44 - 2017-10-06 07:44 - 000003186 _____ C:\WINDOWS\System32\Tasks\PrivaZer_SkipUAC
2017-10-06 07:43 - 2017-11-22 04:25 - 000000000 ____D C:\Users\PTAH\AppData\Local\PrivaZer
2017-10-06 07:43 - 2017-11-16 23:35 - 000000000 ____D C:\Program Files (x86)\PrivaZer
2017-10-06 07:43 - 2017-10-27 16:17 - 000000000 ____D C:\ProgramData\privazer
2017-10-06 07:42 - 2017-10-11 16:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote
2017-10-06 07:42 - 2017-10-06 07:42 - 000000000 ____D C:\Program Files (x86)\Evernote
2017-10-06 05:58 - 2017-10-06 05:58 - 000544424 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2017-10-06 05:44 - 2017-10-06 05:44 - 000030392 _____ C:\ProgramData\agent.uninstall.1507265049.bdinstall.bin
2017-10-06 05:39 - 2017-10-06 05:39 - 000000000 ____D C:\Users\PTAH\AppData\Local\DBG
2017-10-06 05:29 - 2017-10-06 05:29 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\4K Video Downloader
2017-10-06 05:29 - 2017-10-06 05:29 - 000000000 ____D C:\Program Files (x86)\4KDownload
2017-10-06 05:22 - 2017-10-06 05:22 - 000048937 _____ C:\ProgramData\agent.1507263718.bdinstall.bin
2017-10-06 05:20 - 2017-10-06 05:20 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\Macromedia
2017-10-06 05:06 - 2017-10-06 05:06 - 000000000 ____D C:\ProgramData\VS Revo Group
2017-10-06 04:47 - 2017-10-06 08:12 - 000000638 _____ C:\WINDOWS\Tasks\TrackerAutoUpdate.job
2017-10-06 04:47 - 2017-10-06 04:47 - 000003214 _____ C:\WINDOWS\System32\Tasks\TrackerAutoUpdate
2017-10-06 04:46 - 2017-10-06 04:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF-XChange PDF Viewer
2017-10-06 04:46 - 2017-10-06 04:46 - 000000000 ____D C:\ProgramData\Tracker Software
2017-10-06 04:46 - 2017-10-06 04:46 - 000000000 ____D C:\Program Files\Tracker Software
2017-10-06 01:13 - 2017-11-22 05:31 - 000000000 ____D C:\Users\PTAH\AppData\Local\ZHP
2017-10-06 01:13 - 2017-11-22 05:28 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\ZHP
2017-10-06 01:12 - 2017-10-06 01:12 - 002946944 _____ C:\Users\PTAH\Desktop\ZHPCleaner.exe
2017-10-05 23:50 - 2017-11-04 02:06 - 000003376 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1458328095-2359782627-2683845391-1002
2017-10-05 23:46 - 2017-11-21 19:44 - 000000000 ___RD C:\Users\PTAH\OneDrive
2017-10-05 23:46 - 2017-11-04 02:06 - 000002415 _____ C:\Users\PTAH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-10-05 22:44 - 2017-11-07 14:45 - 000000000 ____D C:\Users\PTAH\AppData\Local\Lenovo
2017-10-05 22:43 - 2017-10-05 22:43 - 000000000 ____D C:\Users\Administrateur\AppData\Roaming\LSC
2017-10-05 22:41 - 2017-11-20 00:56 - 000003394 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1458328095-2359782627-2683845391-500
2017-10-05 22:40 - 2017-10-05 22:40 - 000000000 ____D C:\Users\Administrateur\AppData\Local\DBG
2017-10-05 22:32 - 2017-10-05 22:32 - 000000000 ____D C:\Users\Administrateur\AppData\Roaming\Macromedia
2017-10-05 22:31 - 2017-11-20 02:10 - 000000000 ____D C:\Users\Administrateur\AppData\Local\Google
2017-10-04 18:56 - 2017-10-04 18:56 - 000000000 ____D C:\WINDOWS\system32\ÿÿÿÿÿÿÿÿerStore
2017-10-04 17:34 - 2017-10-11 01:17 - 000000000 ____D C:\WINDOWS\system32\MRT
2017-10-04 17:33 - 2017-10-11 00:40 - 126925120 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-10-04 15:06 - 2017-11-20 00:56 - 000002441 _____ C:\Users\Administrateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-10-04 15:01 - 2017-11-07 15:10 - 000000000 ____D C:\Program Files (x86)\Google
2017-10-04 14:59 - 2017-11-07 15:17 - 000000000 ____D C:\Users\PTAH\AppData\Local\Google
2017-10-04 14:56 - 2017-11-14 21:53 - 000000000 ____D C:\Users\PTAH\AppData\Local\Comms
2017-10-04 14:54 - 2017-10-04 14:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Settings
2017-10-04 14:53 - 2017-10-11 20:15 - 000000000 ____D C:\Users\PTAH\Documents\My Bluetooth
2017-10-04 14:53 - 2017-10-04 14:56 - 000000000 ____D C:\Users\PTAH\AppData\Local\MicrosoftEdge
2017-10-04 14:53 - 2017-10-04 14:53 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\LSC
2017-10-04 14:53 - 2017-10-04 14:53 - 000000000 ____D C:\Users\PTAH\AppData\Local\Power2Go8
2017-10-04 14:52 - 2017-10-27 16:10 - 000000000 ____D C:\Users\Administrateur\AppData\Local\Lenovo
2017-10-04 14:52 - 2017-10-05 23:18 - 000000000 ____D C:\Users\PTAH\AppData\Local\Publishers
2017-10-04 14:51 - 2017-10-04 14:51 - 000000000 ____D C:\Users\Administrateur\REACHit
2017-10-04 14:50 - 2017-11-19 08:38 - 000000000 ____D C:\Users\PTAH\AppData\Local\Packages
2017-10-04 14:50 - 2017-11-15 16:44 - 000000000 ____D C:\Users\PTAH\AppData\Local\VirtualStore
2017-10-04 14:50 - 2017-10-08 16:25 - 000000000 ____D C:\Users\PTAH\AppData\Local\CyberLink
2017-10-04 14:50 - 2017-10-05 22:45 - 000000000 ____D C:\Users\PTAH\AppData\Local\AMD
2017-10-04 14:50 - 2017-10-05 22:43 - 000000000 ____D C:\Users\PTAH\AppData\Local\ConnectedDevicesPlatform
2017-10-04 14:50 - 2017-10-04 14:50 - 000000020 ___SH C:\Users\PTAH\ntuser.ini
2017-10-04 14:50 - 2017-10-04 14:50 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\Adobe
2017-10-04 14:50 - 2017-10-04 14:50 - 000000000 ____D C:\Users\PTAH\AppData\Local\TileDataLayer
2017-10-04 14:48 - 2017-10-04 14:48 - 000000000 ____D C:\Users\Administrateur\AppData\Local\Comms
2017-10-04 14:44 - 2017-10-04 14:44 - 000000000 ____D C:\Users\Administrateur\AppData\Local\Power2Go8
2017-10-04 14:43 - 2017-10-04 14:43 - 000000000 ____D C:\Users\Administrateur\AppData\Roaming\ATI
2017-10-04 14:43 - 2017-10-04 14:43 - 000000000 ____D C:\Users\Administrateur\AppData\Local\CyberLink
2017-10-04 14:43 - 2017-10-04 14:43 - 000000000 ____D C:\Users\Administrateur\AppData\Local\ATI
2017-10-04 14:42 - 2017-10-04 14:42 - 000000000 ____D C:\Users\Administrateur\AppData\Local\Publishers
2017-10-04 14:41 - 2017-11-20 00:45 - 000000000 ____D C:\Users\Administrateur\AppData\Local\Packages
2017-10-04 14:41 - 2017-10-04 14:44 - 000000000 ____D C:\Users\Administrateur\AppData\Local\AMD
2017-10-04 14:41 - 2017-10-04 14:41 - 000000000 ____D C:\Users\Administrateur\Documents\My Bluetooth
2017-10-04 14:41 - 2017-10-04 14:41 - 000000000 ____D C:\Users\Administrateur\AppData\Roaming\Adobe
2017-10-04 14:41 - 2017-10-04 14:41 - 000000000 ____D C:\Users\Administrateur\AppData\Local\TileDataLayer
2017-10-04 14:41 - 2017-10-04 14:41 - 000000000 ____D C:\Users\Administrateur\AppData\Local\ConnectedDevicesPlatform
2017-10-04 14:40 - 2017-10-04 14:40 - 000000020 ___SH C:\Users\Administrateur\ntuser.ini
2017-10-04 14:39 - 2017-10-04 14:39 - 000000000 ____D C:\WINDOWS\InfusedApps
2017-10-04 14:39 - 2017-10-04 14:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby
2017-10-04 14:39 - 2017-10-04 14:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Conexant
2017-10-04 14:39 - 2017-10-04 14:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Power2Go 8
2017-10-04 14:39 - 2015-04-28 19:06 - 000043256 _____ C:\WINDOWS\system32\oemlogo.bmp
2017-10-04 14:36 - 2017-10-04 14:36 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2017-10-04 14:36 - 2017-10-04 13:41 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2017-10-04 14:32 - 2017-10-04 14:32 - 000000000 ____D C:\WINDOWS\SysWOW64\sda
2017-10-04 14:32 - 2017-10-04 14:32 - 000000000 ____D C:\Program Files\Synaptics
2017-10-04 14:27 - 2017-10-04 14:27 - 000000000 ____D C:\WINDOWS\system32\ÿÿo
2017-10-04 14:27 - 2017-10-04 14:27 - 000000000 ____D C:\WINDOWS\system32\07f0aabc56947f60..bin
2017-10-04 14:27 - 2017-10-04 14:27 - 000000000 ____D C:\WINDOWS\system32\
2017-10-04 14:25 - 2017-10-04 14:25 - 000000000 _SHDL C:\Users\Public\Documents\Mes vidéos
2017-10-04 14:25 - 2017-10-04 14:25 - 000000000 _SHDL C:\Users\Public\Documents\Mes images
2017-10-04 14:25 - 2017-10-04 14:25 - 000000000 _SHDL C:\Users\Public\Documents\Ma musique
2017-10-04 14:25 - 2017-10-04 14:25 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historique
2017-10-04 14:25 - 2017-10-04 14:25 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Historique
2017-10-04 14:25 - 2017-10-04 14:25 - 000000000 _SHDL C:\Users\Default User
2017-10-04 14:25 - 2017-10-04 14:25 - 000000000 _SHDL C:\Users\All Users
2017-10-04 14:25 - 2017-10-04 14:25 - 000000000 _SHDL C:\ProgramData\Modèles
2017-10-04 14:25 - 2017-10-04 14:25 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programmes
2017-10-04 14:25 - 2017-10-04 14:25 - 000000000 _SHDL C:\ProgramData\Menu Démarrer
2017-10-04 14:25 - 2017-10-04 14:25 - 000000000 _SHDL C:\ProgramData\Bureau
2017-10-04 14:25 - 2017-10-04 14:25 - 000000000 ____D C:\WINDOWS\Setup
2017-10-04 14:21 - 2017-10-04 14:21 - 000045384 _____ C:\Users\MSSQL$ADK\Desktop\Applications supprimées.html
2017-10-04 14:21 - 2017-10-04 14:21 - 000045384 _____ C:\Users\Classic .NET AppPool\Desktop\Applications supprimées.html
2017-10-04 14:21 - 2017-10-04 14:21 - 000045384 _____ C:\Users\.NET v4.5\Desktop\Applications supprimées.html
2017-10-04 14:21 - 2017-10-04 14:21 - 000045384 _____ C:\Users\.NET v4.5 Classic\Desktop\Applications supprimées.html
2017-10-04 14:21 - 2017-10-04 14:21 - 000045384 _____ C:\Users\.NET v2.0\Desktop\Applications supprimées.html
2017-10-04 14:21 - 2017-10-04 14:21 - 000045384 _____ C:\Users\.NET v2.0 Classic\Desktop\Applications supprimées.html
2017-10-04 14:20 - 2017-10-10 11:42 - 000000000 ____D C:\Program Files (x86)\MSBuild
2017-10-04 14:20 - 2017-10-04 14:20 - 000000000 __RSD C:\WINDOWS\system32\WindowsDevicePortal
2017-10-04 14:20 - 2017-10-04 14:20 - 000000000 ___RD C:\WINDOWS\WebManagement
2017-10-04 14:20 - 2017-10-04 14:20 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2017-10-04 14:20 - 2017-10-04 14:20 - 000000000 ____D C:\Program Files\Reference Assemblies
2017-10-04 14:20 - 2017-10-04 14:20 - 000000000 ____D C:\Program Files\MSBuild
2017-10-04 14:20 - 2017-10-04 14:20 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2017-10-04 14:20 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\OCR
2017-10-04 14:18 - 2017-11-19 02:32 - 001332826 _____ C:\WINDOWS\system32\perfh00C.dat
2017-10-04 14:18 - 2017-11-19 02:32 - 000303104 _____ C:\WINDOWS\system32\perfc00C.dat
2017-10-04 14:18 - 2017-10-04 14:18 - 000000000 ____D C:\WINDOWS\SysWOW64\sysprep
2017-10-04 14:18 - 2017-10-04 14:17 - 000351124 _____ C:\WINDOWS\system32\perfi00C.dat
2017-10-04 14:18 - 2017-10-04 14:17 - 000040694 _____ C:\WINDOWS\system32\perfd00C.dat
2017-10-04 14:18 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2017-10-04 14:18 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2017-10-04 14:18 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2017-10-04 14:18 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2017-10-04 14:17 - 2017-11-21 17:47 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-10-04 14:17 - 2017-10-04 19:26 - 000000000 ____D C:\WINDOWS\system32\fr
2017-10-04 14:17 - 2017-10-04 14:17 - 000023108 _____ C:\WINDOWS\system32\emptyregdb.dat
2017-10-04 14:17 - 2017-10-04 14:17 - 000002212 _____ C:\WINDOWS\System32\Tasks\PDVDServ12 Task
2017-10-04 14:17 - 2017-10-04 14:17 - 000000000 ____D C:\WINDOWS\SysWOW64\fr
2017-10-04 14:17 - 2017-10-04 14:17 - 000000000 ____D C:\WINDOWS\SysWOW64\0409
2017-10-04 14:17 - 2017-10-04 14:17 - 000000000 ____D C:\WINDOWS\system32\0409
2017-10-04 14:17 - 2017-10-04 14:17 - 000000000 ____D C:\WINDOWS\DigitalLocker
2017-10-04 14:17 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\winrm
2017-10-04 14:17 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\WCN
2017-10-04 14:17 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\slmgr
2017-10-04 14:17 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2017-10-04 14:16 - 2017-11-07 14:44 - 000000000 ____D C:\WINDOWS\System32\Tasks\Lenovo
2017-10-04 14:16 - 2017-10-08 16:25 - 000000000 ____D C:\WINDOWS\System32\Tasks\CyberLink
2017-10-04 14:10 - 2017-11-05 02:40 - 000835568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2017-10-04 14:10 - 2017-11-05 02:40 - 000177648 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2017-10-04 14:09 - 2017-11-21 17:45 - 000000000 ____D C:\Users\Administrateur
2017-10-04 14:09 - 2017-11-20 08:54 - 000000000 ____D C:\Users\PTAH
2017-10-04 14:09 - 2017-10-04 14:20 - 000000000 ____D C:\Users\Classic .NET AppPool
2017-10-04 14:09 - 2017-10-04 14:19 - 000000000 ____D C:\Users\.NET v4.5 Classic
2017-10-04 14:09 - 2017-10-04 14:19 - 000000000 ____D C:\Users\.NET v4.5
2017-10-04 14:09 - 2017-10-04 14:19 - 000000000 ____D C:\Users\.NET v2.0 Classic
2017-10-04 14:09 - 2017-10-04 14:19 - 000000000 ____D C:\Users\.NET v2.0
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\PTAH\Voisinage réseau
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\PTAH\Voisinage d'impression
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\PTAH\Modèles
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\PTAH\Mes documents
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\PTAH\Menu Démarrer
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\PTAH\Documents\Mes vidéos
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\PTAH\Documents\Mes images
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\PTAH\Documents\Ma musique
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\PTAH\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\PTAH\AppData\Local\Historique
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\MSSQL$ADK\Voisinage réseau
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\MSSQL$ADK\Voisinage d'impression
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\MSSQL$ADK\Modèles
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\MSSQL$ADK\Mes documents
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\MSSQL$ADK\Menu Démarrer
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\MSSQL$ADK\Documents\Mes vidéos
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\MSSQL$ADK\Documents\Mes images
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\MSSQL$ADK\Documents\Ma musique
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\MSSQL$ADK\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\MSSQL$ADK\AppData\Local\Historique
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\Classic .NET AppPool\Voisinage réseau
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\Classic .NET AppPool\Voisinage d'impression
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\Classic .NET AppPool\Modèles
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\Classic .NET AppPool\Mes documents
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\Classic .NET AppPool\Menu Démarrer
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\Classic .NET AppPool\Documents\Mes vidéos
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\Classic .NET AppPool\Documents\Mes images
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\Classic .NET AppPool\Documents\Ma musique
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\Classic .NET AppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\Classic .NET AppPool\AppData\Local\Historique
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\Administrateur\Voisinage réseau
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\Administrateur\Voisinage d'impression
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\Administrateur\Modèles
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\Administrateur\Mes documents
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\Administrateur\Menu Démarrer
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\Administrateur\Documents\Mes vidéos
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\Administrateur\Documents\Mes images
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\Administrateur\Documents\Ma musique
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\Administrateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\Administrateur\AppData\Local\Historique
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v4.5\Voisinage réseau
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v4.5\Voisinage d'impression
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v4.5\Modèles
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v4.5\Mes documents
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v4.5\Menu Démarrer
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v4.5\Documents\Mes vidéos
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v4.5\Documents\Mes images
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v4.5\Documents\Ma musique
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v4.5\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v4.5\AppData\Local\Historique
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Voisinage réseau
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Voisinage d'impression
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Modèles
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Mes documents
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Menu Démarrer
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Documents\Mes vidéos
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Documents\Mes images
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Documents\Ma musique
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\AppData\Local\Historique
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v2.0\Voisinage réseau
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v2.0\Voisinage d'impression
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v2.0\Modèles
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v2.0\Mes documents
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v2.0\Menu Démarrer
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v2.0\Documents\Mes vidéos
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v2.0\Documents\Mes images
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v2.0\Documents\Ma musique
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v2.0\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v2.0\AppData\Local\Historique
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\Voisinage réseau
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\Voisinage d'impression
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\Modèles
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\Mes documents
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\Menu Démarrer
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\Documents\Mes vidéos
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\Documents\Mes images
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\Documents\Ma musique
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 _SHDL C:\Users\.NET v2.0 Classic\AppData\Local\Historique
2017-10-04 14:09 - 2017-10-04 14:09 - 000000000 ____D C:\Users\MSSQL$ADK
2017-10-04 14:07 - 2017-10-06 16:27 - 000001544 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2017-10-04 14:05 - 2017-10-11 19:29 - 000207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2017-10-04 14:05 - 2017-10-04 13:57 - 000215943 _____ C:\WINDOWS\SysWOW64\dssec.dat
2017-10-04 14:05 - 2017-10-04 13:57 - 000000741 _____ C:\WINDOWS\SysWOW64\NOISE.DAT
2017-10-04 14:04 - 2017-11-21 17:35 - 000000000 ___RD C:\Program Files (x86)
2017-10-04 14:04 - 2017-11-21 12:06 - 000000000 ____D C:\WINDOWS\AppReadiness
2017-10-04 14:04 - 2017-11-20 01:55 - 000000000 ___HD C:\Program Files\WindowsApps
2017-10-04 14:04 - 2017-11-17 22:01 - 000000000 ____D C:\WINDOWS\system32\NDF
2017-10-04 14:04 - 2017-11-17 21:45 - 000000000 ____D C:\WINDOWS\rescache
2017-10-04 14:04 - 2017-11-17 21:14 - 000000000 ____D C:\WINDOWS\system32\config\RegBack
2017-10-04 14:04 - 2017-11-16 17:37 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2017-10-04 14:04 - 2017-11-16 17:37 - 000000000 ____D C:\WINDOWS\system32\Macromed
2017-10-04 14:04 - 2017-11-07 20:25 - 000000000 ____D C:\WINDOWS\system32\config\TxR
2017-10-04 14:04 - 2017-11-04 10:36 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2017-10-04 14:04 - 2017-10-23 04:19 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2017-10-04 14:04 - 2017-10-11 19:31 - 000000000 ____D C:\WINDOWS\ShellExperiences
2017-10-04 14:04 - 2017-10-11 19:31 - 000000000 ____D C:\WINDOWS\Provisioning
2017-10-04 14:04 - 2017-10-11 19:29 - 000230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2017-10-04 14:04 - 2017-10-10 07:21 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2017-10-04 14:04 - 2017-10-08 14:56 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-10-04 14:04 - 2017-10-06 02:43 - 000000000 ____D C:\WINDOWS\appcompat
2017-10-04 14:04 - 2017-10-04 19:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2017-10-04 14:04 - 2017-10-04 19:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2017-10-04 14:04 - 2017-10-04 19:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2017-10-04 14:04 - 2017-10-04 19:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2017-10-04 14:04 - 2017-10-04 19:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2017-10-04 14:04 - 2017-10-04 19:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2017-10-04 14:04 - 2017-10-04 19:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2017-10-04 14:04 - 2017-10-04 19:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2017-10-04 14:04 - 2017-10-04 19:26 - 000000000 ____D C:\WINDOWS\system32\setup
2017-10-04 14:04 - 2017-10-04 19:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2017-10-04 14:04 - 2017-10-04 19:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2017-10-04 14:04 - 2017-10-04 19:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2017-10-04 14:04 - 2017-10-04 19:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2017-10-04 14:04 - 2017-10-04 19:25 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2017-10-04 14:04 - 2017-10-04 19:25 - 000000000 ____D C:\Program Files\Windows Defender
2017-10-04 14:04 - 2017-10-04 19:25 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2017-10-04 14:04 - 2017-10-04 19:25 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2017-10-04 14:04 - 2017-10-04 14:38 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2017-10-04 14:04 - 2017-10-04 14:25 - 000000000 ____D C:\Program Files\Windows NT
2017-10-04 14:04 - 2017-10-04 14:20 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2017-10-04 14:04 - 2017-10-04 14:20 - 000000000 ____D C:\WINDOWS\SystemApps
2017-10-04 14:04 - 2017-10-04 14:20 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2017-10-04 14:04 - 2017-10-04 14:20 - 000000000 ____D C:\WINDOWS\system32\MUI
2017-10-04 14:04 - 2017-10-04 14:20 - 000000000 ____D C:\WINDOWS\Registration
2017-10-04 14:04 - 2017-10-04 14:20 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2017-10-04 14:04 - 2017-10-04 14:18 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2017-10-04 14:04 - 2017-10-04 14:17 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2017-10-04 14:04 - 2017-10-04 14:17 - 000000000 ____D C:\WINDOWS\system32\Com
2017-10-04 14:04 - 2017-10-04 14:17 - 000000000 ____D C:\WINDOWS\IME
2017-10-04 14:04 - 2017-10-04 14:17 - 000000000 ____D C:\WINDOWS\Help
2017-10-04 14:04 - 2017-10-04 14:17 - 000000000 ____D C:\Program Files\Common Files\System
2017-10-04 14:04 - 2017-10-04 14:16 - 000000000 __RHD C:\Users\Public\Libraries
2017-10-04 14:04 - 2017-10-04 14:05 - 000000000 ___SD C:\WINDOWS\SysWOW64\Nui
2017-10-04 14:04 - 2017-10-04 14:05 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2017-10-04 14:04 - 2017-10-04 14:05 - 000000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync
2017-10-04 14:04 - 2017-10-04 14:05 - 000000000 ____D C:\WINDOWS\SysWOW64\icsxml
2017-10-04 14:04 - 2017-10-04 14:05 - 000000000 ____D C:\WINDOWS\SysWOW64\downlevel
2017-10-04 14:04 - 2017-10-04 14:05 - 000000000 ____D C:\WINDOWS\SysWOW64\Bthprops
2017-10-04 14:04 - 2017-10-04 14:05 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 __RSD C:\WINDOWS\Media
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ___SD C:\WINDOWS\SysWOW64\Configuration
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ___SD C:\WINDOWS\system32\Nui
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ___SD C:\WINDOWS\system32\dsc
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ___SD C:\WINDOWS\system32\Configuration
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ___RD C:\WINDOWS\Offline Web Pages
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\Web
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\Vss
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\tracing
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\TAPI
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\SysWOW64\SMI
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\SysWOW64\ras
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\SysWOW64\NDF
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\SysWOW64\MsDtc
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\SysWOW64\Ipmi
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\SysWOW64\InputMethod
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\SysWOW64\IME
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicyUsers
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\SysWOW64\FxsTmp
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\SysWOW64\AppLocker
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\SystemResources
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\winevt
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\spool
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\ras
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\ProximityToast
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\PointOfService
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\Ipmi
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\InputMethod
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\inetsrv
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\IME
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\icsxml
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\ias
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\Hydrogen
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\FxsTmp
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\downlevel
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\DDFs
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\config\systemprofile
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\config\Journal
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\Bthprops
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\AppLocker
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\System
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\SKB
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\security
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\schemas
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\SchCache
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\Resources
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\PLA
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\Performance
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\ModemLogs
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\L2Schemas
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\InputMethod
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\Globalization
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\GameBarPresenceWriter
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\Cursors
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\Branding
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\bcastdvr
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\addins
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\ProgramData\WindowsHolographicDevices
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\Program Files\Windows Security
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\Program Files\Windows Portable Devices
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\Program Files\Windows Multimedia Platform
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\Program Files\Common Files\Services
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\Program Files (x86)\Windows Portable Devices
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\Program Files (x86)\Windows NT
2017-10-04 14:04 - 2017-10-04 14:04 - 000000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2017-10-04 14:04 - 2017-10-04 13:57 - 000215943 _____ C:\WINDOWS\system32\dssec.dat
2017-10-04 14:04 - 2017-10-04 13:57 - 000015940 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2017-10-04 14:04 - 2017-10-04 13:57 - 000004096 _____ C:\WINDOWS\system32\config\VSMIDK
2017-10-04 14:04 - 2017-10-04 13:57 - 000003683 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts.sam
2017-10-04 14:04 - 2017-10-04 13:57 - 000000858 _____ C:\WINDOWS\system32\DefaultQuestions.json
2017-10-04 14:04 - 2017-10-04 13:57 - 000000741 _____ C:\WINDOWS\system32\NOISE.DAT
2017-10-04 14:04 - 2017-10-04 13:54 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2017-10-04 14:04 - 2017-10-04 13:53 - 000000000 ____D C:\ProgramData\USOPrivate
2017-10-04 14:04 - 2017-10-04 13:51 - 000000000 ___RD C:\WINDOWS\PrintDialog
2017-10-04 14:04 - 2017-10-04 13:51 - 000000000 ___RD C:\WINDOWS\MiracastView
2017-10-04 14:04 - 2017-10-04 13:50 - 000000000 ____D C:\WINDOWS\HoloShell
2017-10-04 13:59 - 2017-11-21 17:43 - 000000000 ____D C:\WINDOWS\INF
2017-10-04 13:57 - 2017-10-04 13:57 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2017-10-04 13:53 - 2017-10-04 13:53 - 000000000 ____D C:\ProgramData\USOShared
2017-10-04 13:50 - 2017-10-04 13:50 - 000000000 ____D C:\Program Files (x86)\AMD
2017-10-04 13:49 - 2017-11-20 10:24 - 000000000 ____D C:\ProgramData\Package Cache
2017-10-04 13:49 - 2017-10-04 13:49 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2017-10-04 13:48 - 2017-11-21 17:45 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2017-10-04 13:48 - 2017-10-04 14:50 - 000000000 ____D C:\Program Files\AMD
2017-10-04 13:48 - 2017-10-04 13:48 - 000000000 ____D C:\Program Files\Common Files\ATI Technologies
2017-10-04 13:47 - 2017-11-20 00:46 - 001701376 _____ (TODO: ) C:\WINDOWS\SysWOW64\RebootPrompt.exe
2017-10-04 13:47 - 2017-10-04 14:02 - 000000000 ____D C:\ProgramData\Conexant
2017-10-04 13:47 - 2017-10-04 13:47 - 000000000 ____H C:\ProgramData\DP45977C.lfl
2017-10-04 13:47 - 2017-10-04 13:47 - 000000000 ____D C:\WINDOWS\Cnxt
2017-10-04 13:46 - 2017-10-04 14:03 - 000000000 ____D C:\ProgramData\Realtek
2017-10-04 13:46 - 2017-10-04 13:58 - 000000000 ____D C:\Program Files\CONEXANT
2017-10-04 13:46 - 2017-10-04 13:46 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_amdpsp_01011.Wdf
2017-10-04 13:45 - 2017-03-18 21:56 - 002233344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2017-10-04 13:43 - 2017-10-04 13:43 - 000000000 ____D C:\WINDOWS\tbaseregistry
2017-10-04 13:43 - 2017-03-18 21:56 - 000407552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IEShims.dll
2017-10-04 13:41 - 2017-11-22 00:01 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2017-10-04 13:41 - 2017-11-21 17:39 - 000000000 ____D C:\WINDOWS\CbsTemp
2017-10-04 13:38 - 2017-11-21 17:45 - 091750400 _____ C:\WINDOWS\system32\config\SOFTWARE
2017-10-04 13:38 - 2017-11-21 17:45 - 047448064 _____ C:\WINDOWS\system32\config\SYSTEM
2017-10-04 13:38 - 2017-11-21 17:45 - 001048576 _____ C:\WINDOWS\system32\config\BBI
2017-10-04 13:38 - 2017-11-21 17:45 - 000524288 _____ C:\WINDOWS\system32\config\DEFAULT
2017-10-04 13:38 - 2017-11-21 17:45 - 000073728 _____ C:\WINDOWS\system32\config\SECURITY
2017-10-04 13:38 - 2017-10-06 06:02 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2017-10-04 13:38 - 2017-10-04 14:39 - 000122880 _____ C:\WINDOWS\system32\config\SAM
2017-10-04 13:38 - 2017-10-04 14:17 - 000000000 ____D C:\WINDOWS\servicing
2017-10-04 13:38 - 2017-10-04 14:04 - 000000000 ____D C:\WINDOWS\system32\SMI
2017-10-04 10:28 - 2017-11-21 17:51 - 000000000 ___HD C:\OneDriveTemp
2017-10-04 08:14 - 2017-10-04 08:14 - 000000022 _____ C:\Users\PTAH\Desktop\MEGA-RECOVERYKEY.txt
2017-09-28 21:43 - 2017-09-19 00:20 - 001065104 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2017-09-28 21:43 - 2017-09-19 00:20 - 000900376 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2017-09-28 21:43 - 2017-09-19 00:18 - 000965024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi
2017-09-28 21:43 - 2017-09-19 00:17 - 001395664 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2017-09-28 21:43 - 2017-09-19 00:17 - 001186464 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2017-09-28 21:43 - 2017-09-19 00:17 - 000821664 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe
2017-09-28 21:43 - 2017-09-19 00:11 - 001018272 ____N (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2017-09-28 21:43 - 2017-09-19 00:09 - 000554400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2017-09-28 21:43 - 2017-09-18 23:26 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2017-09-28 21:43 - 2017-09-18 23:25 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\eShims.dll
2017-09-28 21:43 - 2017-09-18 23:23 - 000210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2017-09-28 21:43 - 2017-09-18 23:20 - 000831488 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2017-09-28 21:43 - 2017-09-18 23:20 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tetheringclient.dll
2017-09-28 21:43 - 2017-09-18 23:15 - 000648704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2017-09-14 01:14 - 2017-09-05 05:25 - 001448960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2017-09-14 01:14 - 2017-09-05 05:16 - 000563200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2017-09-14 01:13 - 2017-09-05 05:45 - 002166808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2017-09-14 01:13 - 2017-09-05 05:42 - 000291904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll
2017-09-14 01:13 - 2017-09-05 05:26 - 000404480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2017-09-14 01:13 - 2017-09-05 05:25 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2017-09-14 01:13 - 2017-09-05 05:21 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2017-09-14 01:13 - 2017-09-05 05:21 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntprint.exe
2017-09-14 01:13 - 2017-09-05 05:19 - 000311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntprint.dll
2017-09-14 01:13 - 2017-09-05 05:19 - 000134656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dinput.dll
2017-09-14 01:13 - 2017-09-05 05:18 - 000452608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasplap.dll
2017-09-14 01:13 - 2017-09-05 05:18 - 000339968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2017-09-14 01:13 - 2017-09-05 05:18 - 000175104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dinput8.dll
2017-09-14 01:13 - 2017-09-05 05:18 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasman.dll
2017-09-14 01:13 - 2017-09-05 05:17 - 000852480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasgcw.dll
2017-09-14 01:13 - 2017-09-05 05:16 - 000844288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll
2017-09-14 01:13 - 2017-09-05 05:16 - 000358400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2017-09-14 01:13 - 2017-09-05 05:15 - 000430592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2017-09-14 01:13 - 2017-09-05 05:15 - 000223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shdocvw.dll
2017-09-14 01:13 - 2017-09-05 05:14 - 004544000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsDesktopEngine.exe
2017-09-14 01:13 - 2017-09-05 05:13 - 002009600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2017-09-14 01:13 - 2017-09-05 05:13 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cldapi.dll
2017-09-14 01:13 - 2017-09-05 05:11 - 001463296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2017-09-14 01:13 - 2017-09-05 05:11 - 001355264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
2017-09-14 01:13 - 2017-09-05 05:11 - 001060352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
2017-09-14 01:13 - 2017-09-05 05:06 - 000221696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wisp.dll
2017-09-14 01:13 - 2017-09-05 05:06 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2017-09-14 01:13 - 2017-09-05 05:04 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RstrtMgr.dll
2017-09-14 01:13 - 2017-09-05 05:04 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll
2017-09-14 01:12 - 2017-09-05 06:12 - 000081176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2017-09-14 01:12 - 2017-09-05 05:50 - 004330920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
2017-09-14 01:12 - 2017-09-05 05:44 - 000569264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2017-09-14 01:12 - 2017-09-05 05:43 - 000042456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbs.dll
2017-09-14 01:12 - 2017-09-05 05:42 - 000703056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2017-09-14 01:12 - 2017-09-05 05:41 - 001013912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2017-09-14 01:12 - 2017-09-05 05:25 - 000584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
2017-09-14 01:12 - 2017-09-05 05:25 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2017-09-14 01:12 - 2017-09-05 05:22 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2017-09-14 01:12 - 2017-09-05 05:19 - 000181760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authz.dll
2017-09-14 01:12 - 2017-09-05 05:18 - 000524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2017-09-14 01:12 - 2017-09-05 05:17 - 000918528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Vpn.dll
2017-09-14 01:12 - 2017-09-05 05:17 - 000586240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2017-09-14 01:12 - 2017-09-05 05:16 - 000257024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Phoneutil.dll
2017-09-14 01:12 - 2017-09-05 05:15 - 001248768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2017-09-14 01:12 - 2017-09-05 05:15 - 000657408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2017-09-14 01:12 - 2017-09-05 05:14 - 000754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2017-09-14 01:12 - 2017-09-05 05:14 - 000476160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll
2017-09-14 01:12 - 2017-09-05 05:12 - 000899584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2017-09-14 01:12 - 2017-09-05 05:11 - 001019904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2017-09-14 01:11 - 2017-09-05 06:12 - 000627080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2017-09-14 01:11 - 2017-09-05 05:53 - 001620880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2017-09-14 01:11 - 2017-09-05 05:43 - 000359560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2017-09-14 01:11 - 2017-09-05 05:43 - 000280480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2017-09-14 01:11 - 2017-09-05 05:43 - 000169376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2017-09-14 01:11 - 2017-09-05 05:41 - 004671832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2017-09-14 01:11 - 2017-09-05 05:41 - 001106904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2017-09-14 01:11 - 2017-09-05 05:23 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
2017-09-14 01:11 - 2017-09-05 05:19 - 000124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2017-09-14 01:11 - 2017-09-05 05:19 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2017-09-14 01:11 - 2017-09-05 05:18 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2017-09-14 01:11 - 2017-09-05 05:15 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2017-09-14 01:11 - 2017-09-05 05:15 - 000636416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2017-09-14 01:11 - 2017-09-05 05:15 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2017-09-14 01:11 - 2017-09-05 05:10 - 000761344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2017-09-14 01:10 - 2017-09-05 05:45 - 002476712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2017-09-14 01:10 - 2017-09-05 05:45 - 000085784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialUIBroker.exe
2017-09-14 01:10 - 2017-09-05 05:42 - 002330520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2017-09-14 01:10 - 2017-09-05 05:40 - 000052768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appidapi.dll
2017-09-14 01:10 - 2017-09-05 05:37 - 000583160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2017-09-14 01:10 - 2017-09-05 05:21 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srpapi.dll
2017-09-14 01:10 - 2017-09-05 05:16 - 005961728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2017-09-14 01:10 - 2017-09-05 05:16 - 000357888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2017-09-14 01:10 - 2017-09-05 05:12 - 005225984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2017-09-14 01:10 - 2017-09-05 05:11 - 003667456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2017-09-14 00:58 - 2017-09-05 05:28 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2017-09-14 00:58 - 2017-09-05 05:21 - 001178624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2017-09-14 00:58 - 2017-09-05 05:20 - 000229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe
2017-09-14 00:58 - 2017-09-05 05:12 - 002153984 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2017-09-14 00:57 - 2017-09-05 05:22 - 000742912 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2017-09-14 00:56 - 2017-09-05 06:15 - 000871448 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2017-09-14 00:56 - 2017-09-05 05:30 - 001639936 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2017-09-14 00:56 - 2017-09-05 05:30 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrvext.dll
2017-09-14 00:56 - 2017-09-05 05:27 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\CfgSPCellular.dll
2017-09-14 00:56 - 2017-09-05 05:27 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAPNCsp.dll
2017-09-14 00:56 - 2017-09-05 05:26 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\csplte.dll
2017-09-14 00:56 - 2017-09-05 05:19 - 001260544 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2017-09-14 00:55 - 2017-09-05 06:31 - 000115792 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2017-09-14 00:55 - 2017-09-05 06:14 - 000958664 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2017-09-14 00:55 - 2017-09-05 06:11 - 000610720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2017-09-14 00:55 - 2017-09-05 05:30 - 000584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2017-09-14 00:55 - 2017-09-05 05:30 - 000447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2017-09-14 00:55 - 2017-09-05 05:27 - 000104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys
2017-09-14 00:55 - 2017-09-05 05:27 - 000095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2017-09-14 00:55 - 2017-09-05 05:25 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nsiproxy.sys
2017-09-14 00:55 - 2017-09-05 05:22 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2017-09-14 00:55 - 2017-09-05 05:18 - 000803328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2017-09-14 00:55 - 2017-09-05 05:18 - 000564736 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll
2017-09-14 00:55 - 2017-09-05 05:15 - 000706560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2017-09-14 00:55 - 2017-09-05 05:07 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll
2017-09-14 00:55 - 2017-09-01 06:55 - 000031932 ____N C:\WINDOWS\system32\edgehtmlpluginpolicy.bin
2017-09-14 00:54 - 2017-09-05 06:16 - 000546208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2017-09-14 00:54 - 2017-09-05 06:16 - 000049720 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbs.dll
2017-09-14 00:54 - 2017-09-05 05:30 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2017-09-14 00:54 - 2017-09-05 05:23 - 000739840 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2017-09-14 00:54 - 2017-09-05 05:21 - 000773120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2017-09-14 00:54 - 2017-09-05 05:21 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2017-09-14 00:54 - 2017-09-05 05:21 - 000312320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Phoneutil.dll
2017-09-14 00:54 - 2017-09-05 05:15 - 001077248 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2017-09-14 00:54 - 2017-09-05 05:14 - 002516480 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2017-09-14 00:54 - 2017-09-05 05:09 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wisp.dll
2017-09-14 00:53 - 2017-09-05 06:23 - 004462120 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2017-09-14 00:53 - 2017-09-05 06:18 - 000685512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2017-09-14 00:53 - 2017-09-05 06:16 - 000715168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2017-09-14 00:53 - 2017-09-05 06:13 - 001619816 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2017-09-14 00:53 - 2017-09-05 05:26 - 000499712 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2017-09-14 00:53 - 2017-09-05 05:24 - 000385536 _____ (Microsoft Corporation) C:\WINDOWS\system32\tpmvsc.dll
2017-09-14 00:53 - 2017-09-05 05:24 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\authz.dll
2017-09-14 00:53 - 2017-09-05 05:24 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcrecovery.dll
2017-09-14 00:53 - 2017-09-05 05:23 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2017-09-14 00:53 - 2017-09-05 05:22 - 000640512 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2017-09-14 00:53 - 2017-09-05 05:22 - 000165888 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2017-09-14 00:53 - 2017-09-05 05:20 - 001878016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2017-09-14 00:53 - 2017-09-05 05:19 - 000772096 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2017-09-14 00:53 - 2017-09-05 05:19 - 000243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\shdocvw.dll
2017-09-14 00:53 - 2017-09-05 05:18 - 000922112 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2017-09-14 00:53 - 2017-09-05 05:18 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2017-09-14 00:53 - 2017-09-05 05:15 - 003059200 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2017-09-14 00:53 - 2017-09-05 05:15 - 001293824 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2017-09-14 00:53 - 2017-09-05 05:14 - 001046016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2017-09-14 00:53 - 2017-09-05 05:11 - 000254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2017-09-14 00:52 - 2017-09-05 06:25 - 000159648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2017-09-14 00:52 - 2017-09-05 06:18 - 001668344 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2017-09-14 00:52 - 2017-09-05 06:16 - 001320344 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll
2017-09-14 00:52 - 2017-09-05 06:14 - 000094624 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2017-09-14 00:52 - 2017-09-05 05:26 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntprint.exe
2017-09-14 00:52 - 2017-09-05 05:26 - 000022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnpinst.exe
2017-09-14 00:52 - 2017-09-05 05:24 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntprint.dll
2017-09-14 00:52 - 2017-09-05 05:23 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasman.dll
2017-09-14 00:52 - 2017-09-05 05:22 - 000477696 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasplap.dll
2017-09-14 00:52 - 2017-09-05 05:22 - 000413184 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2017-09-14 00:52 - 2017-09-05 05:22 - 000173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetpp.dll
2017-09-14 00:52 - 2017-09-05 05:21 - 000946688 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll
2017-09-14 00:52 - 2017-09-05 05:20 - 000925696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2017-09-14 00:52 - 2017-09-05 05:20 - 000546816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2017-09-14 00:52 - 2017-09-05 05:18 - 000921600 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdlg.dll
2017-09-14 00:52 - 2017-09-05 05:18 - 000874496 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2017-09-14 00:52 - 2017-09-05 05:18 - 000832000 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
2017-09-14 00:52 - 2017-09-05 05:17 - 000757760 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2017-09-14 00:52 - 2017-09-05 05:16 - 000397312 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2017-09-14 00:52 - 2017-09-05 05:15 - 001143296 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2017-09-14 00:52 - 2017-09-05 05:14 - 001657344 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2017-09-14 00:52 - 2017-09-05 05:14 - 000827904 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2017-09-14 00:52 - 2017-09-05 05:07 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\RstrtMgr.dll
2017-09-14 00:51 - 2017-09-05 06:26 - 001930840 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2017-09-14 00:51 - 2017-09-05 05:21 - 001051136 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2017-09-14 00:51 - 2017-09-05 05:06 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2017-09-14 00:50 - 2017-09-05 06:24 - 000519584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2017-09-14 00:50 - 2017-09-05 06:23 - 001242528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2017-09-14 00:50 - 2017-09-05 06:14 - 004708504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2017-09-14 00:50 - 2017-09-05 06:14 - 001146176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2017-09-14 00:50 - 2017-09-05 06:14 - 000254176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2017-09-14 00:50 - 2017-09-05 06:11 - 000387936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2017-09-14 00:50 - 2017-09-05 05:29 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SEMgrPS.dll
2017-09-14 00:50 - 2017-09-05 05:27 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2017-09-14 00:50 - 2017-09-05 05:23 - 000305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2017-09-14 00:50 - 2017-09-05 05:23 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2017-09-14 00:50 - 2017-09-05 05:22 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\RasMediaManager.dll
2017-09-14 00:50 - 2017-09-05 05:19 - 001028608 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2017-09-14 00:50 - 2017-09-05 05:14 - 000810496 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2017-09-14 00:49 - 2017-09-05 06:18 - 002647224 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2017-09-14 00:49 - 2017-09-05 05:26 - 000124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll
2017-09-14 00:49 - 2017-09-05 05:26 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2017-09-14 00:49 - 2017-09-05 05:24 - 000457728 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2017-09-14 00:49 - 2017-09-05 05:24 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2017-09-14 00:49 - 2017-09-05 05:23 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2017-09-14 00:49 - 2017-09-05 05:22 - 000388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2017-09-14 00:49 - 2017-09-05 05:22 - 000274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2017-09-14 00:49 - 2017-09-05 05:22 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2017-09-14 00:49 - 2017-09-05 05:20 - 000805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2017-09-14 00:49 - 2017-09-05 05:19 - 000996864 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2017-09-14 00:49 - 2017-09-05 05:18 - 002078720 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2017-09-14 00:49 - 2017-09-05 05:18 - 000752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2017-09-14 00:49 - 2017-09-05 05:18 - 000257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2017-09-14 00:49 - 2017-09-05 05:16 - 000440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2017-09-14 00:49 - 2017-09-05 05:14 - 001583616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2017-09-14 00:48 - 2017-09-05 06:31 - 000750560 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2017-09-14 00:48 - 2017-09-05 06:18 - 002972552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2017-09-14 00:48 - 2017-09-05 06:17 - 000316320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2017-09-14 00:48 - 2017-09-05 06:16 - 000410168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2017-09-14 00:48 - 2017-09-05 06:16 - 000182688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2017-09-14 00:48 - 2017-09-05 06:15 - 000381824 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2017-09-14 00:48 - 2017-09-05 05:30 - 001275904 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2017-09-14 00:48 - 2017-09-05 05:30 - 000463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2017-09-14 00:48 - 2017-09-05 05:30 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2017-09-14 00:48 - 2017-09-05 05:30 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2017-09-14 00:48 - 2017-09-05 05:27 - 000090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\datamarketsvc.dll
2017-09-14 00:48 - 2017-09-05 05:24 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dinput.dll
2017-09-14 00:48 - 2017-09-05 05:24 - 000109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dab.dll
2017-09-14 00:48 - 2017-09-05 05:22 - 000213504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dinput8.dll
2017-09-14 00:48 - 2017-09-05 05:21 - 000422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2017-09-14 00:48 - 2017-09-05 05:20 - 007337472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2017-09-14 00:48 - 2017-09-05 05:20 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2017-09-14 00:48 - 2017-09-05 05:19 - 005776384 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsDesktopEngine.exe
2017-09-14 00:48 - 2017-09-05 05:18 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2017-09-14 00:48 - 2017-09-05 05:15 - 004396032 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2017-09-14 00:48 - 2017-09-05 05:15 - 001736704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2017-09-14 00:48 - 2017-09-05 05:14 - 002006528 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2017-09-14 00:47 - 2017-09-05 06:20 - 001057824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2017-09-14 00:47 - 2017-09-05 06:18 - 000212384 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2017-09-14 00:47 - 2017-09-05 06:15 - 003116184 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2017-09-14 00:47 - 2017-09-05 05:24 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2017-09-14 00:47 - 2017-09-05 05:23 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2017-09-14 00:47 - 2017-09-05 05:19 - 001085440 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2017-09-14 00:47 - 2017-09-05 05:18 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\cldapi.dll
2017-09-14 00:47 - 2017-09-05 05:16 - 002680320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2017-09-14 00:47 - 2017-09-05 05:14 - 002177024 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2017-09-14 00:46 - 2017-09-05 06:13 - 000064680 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidapi.dll
2017-09-14 00:46 - 2017-09-05 05:26 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2017-09-14 00:46 - 2017-09-05 05:20 - 000412160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2017-09-14 00:45 - 2017-09-05 06:24 - 000923040 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2017-09-14 00:45 - 2017-09-05 06:16 - 000872472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2017-09-14 00:45 - 2017-09-05 05:18 - 000864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2017-09-14 00:43 - 2017-09-05 06:30 - 000287648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2017-09-14 00:43 - 2017-09-05 06:21 - 000189344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2017-09-14 00:43 - 2017-09-05 05:28 - 000039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\buttonconverter.sys
2017-09-14 00:43 - 2017-09-05 05:26 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys
2017-09-14 00:43 - 2017-09-05 05:26 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys
2017-09-14 00:41 - 2017-09-05 05:10 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthHFSrv.dll
2017-09-11 03:45 - 2017-09-11 03:45 - 000000000 ____D C:\Users\PTAH\Documents\DVDFab Media Player
2017-09-11 03:12 - 2017-09-11 03:12 - 000000000 ____D C:\Users\PTAH\Documents\DVDFab Passkey
2017-09-08 13:53 - 2017-09-08 13:53 - 000000000 ____D C:\Users\Public\Documents\Logishrd
2017-09-05 13:02 - 2017-03-17 21:00 - 001722880 ____N (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons000d.dll
2017-09-05 13:02 - 2017-03-17 20:55 - 000164864 ____N (Microsoft Corporation) C:\WINDOWS\system32\NlsData000d.dll
2017-09-05 13:02 - 2017-03-17 20:53 - 002294784 ____N (Microsoft Corporation) C:\WINDOWS\system32\MLS7.dll
2017-09-05 13:02 - 2017-03-17 20:44 - 001722880 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons000d.dll
2017-09-05 13:02 - 2017-03-17 20:40 - 000128000 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData000d.dll
2017-09-05 13:02 - 2017-03-17 20:38 - 002242048 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\MLS7.dll
2017-08-31 23:25 - 2017-08-31 23:25 - 000001098 _____ C:\Users\PTAH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fonctionnalités optionnelles.lnk
2017-08-31 22:43 - 2017-08-31 22:52 - 008182736 _____ (Malwarebytes) C:\Users\PTAH\Downloads\adwcleaner_7.0.2.1.exe
2017-08-31 22:35 - 2017-10-08 11:54 - 000000000 ____D C:\Users\PTAH\Downloads\Classic Menu Office pour 2010 et 2013 5.85 Entreprise Inclus Serial - Majax31
2017-08-31 22:30 - 2017-11-11 21:53 - 000000000 ____D C:\Users\PTAH\Documents\Fichiers Outlook
2017-08-31 21:21 - 2017-08-31 21:21 - 000000000 __RHD C:\MSOCache
2017-08-31 11:36 - 2017-09-23 06:02 - 000000000 ____D C:\Users\PTAH\Documents\MEGAsync Downloads
2017-08-31 11:35 - 2017-08-31 11:36 - 000000000 ___RD C:\Users\PTAH\Documents\MEGAsync
2017-08-31 11:34 - 2017-08-31 11:34 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync
2017-08-28 21:15 - 2017-08-28 21:15 - 000000000 ____D C:\Users\Administrateur\AppData\LocalLow\AMD
2017-08-28 11:13 - 2017-11-20 00:56 - 000000000 ___RD C:\Users\Administrateur\OneDrive

==================== Trois mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2017-11-22 05:08 - 2017-06-02 04:53 - 000000000 ____D C:\Users\PTAH\Downloads\Hammam De Ptah
2017-11-20 08:54 - 2017-05-17 07:21 - 002974592 _____ C:\Users\PTAH\ZHPCleaner.exe
2017-11-20 02:47 - 2017-04-17 17:52 - 000000000 ____D C:\AdwCleaner
2017-11-16 01:49 - 2015-08-27 23:23 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2017-11-16 01:49 - 2015-08-27 23:20 - 000000000 ____D C:\ProgramData\install_clap
2017-11-13 23:58 - 2017-05-30 15:52 - 000000929 _____ C:\Users\PTAH\Desktop\Devilallla et Nephtys.txt
2017-11-11 21:04 - 2015-08-27 23:20 - 000000000 ____D C:\ProgramData\Temp
2017-11-09 19:06 - 2015-07-16 16:54 - 002790786 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-11-07 14:54 - 2015-08-27 23:17 - 000000000 ____D C:\Program Files (x86)\Lenovo
2017-11-05 20:11 - 2017-08-15 01:43 - 000000000 ____D C:\Users\PTAH\Desktop\10 Novembre 2017
2017-10-29 17:12 - 2015-08-27 23:39 - 000000000 ____D C:\ProgramData\Lenovo
2017-10-27 16:05 - 2015-07-16 16:49 - 000000000 __RHD C:\Users\Public\AccountPictures
2017-10-25 06:19 - 2017-04-17 19:33 - 000000000 ____D C:\Users\PTAH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo
2017-10-23 09:50 - 2017-07-22 04:08 - 000000000 ____D C:\Users\PTAH\Desktop\SCORPIO-AGUILA

==================== Fichiers à la racine de certains dossiers =======

2017-05-17 07:21 - 2017-11-20 08:54 - 002974592 _____ () C:\Users\PTAH\ZHPCleaner.exe
2017-10-06 17:18 - 2017-05-09 17:02 - 000000002 _____ () C:\Users\PTAH\AppData\Roaming\paclan.ini
2017-10-06 17:18 - 2017-09-16 07:08 - 000000004 _____ () C:\Users\PTAH\AppData\Roaming\pacsound.dll
2017-10-04 14:53 - 2017-11-21 19:44 - 000186475 _____ () C:\Users\PTAH\AppData\Local\BTServer.log
2017-10-27 13:31 - 2017-10-27 13:31 - 000000017 _____ () C:\Users\PTAH\AppData\Local\resmon.resmoncfg

==================== Bamital & volsnap ======================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement
C:\WINDOWS\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement

LastRegBack: 2017-11-17 21:13

==================== Fin de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité