cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version:27-08-2015
Exécuté par babeth (administrateur) sur MON_PC (28-08-2015 11:18:13)
Exécuté depuis C:\Users\elisabeth guillien\Desktop
Profils chargés: babeth (Profils disponibles: babeth)
Platform: Windows 10 Home (X64) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: "C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe" "%1")
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE
() C:\Program Files (x86)\TOSHIBA\Password Utility\GFNEXSrv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
(CybelSoft) C:\Program Files\ma-config.com\MaConfigAgent.exe
(TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Teco\TecoService.exe
(Time Lapse Solutions) C:\ProgramData\cxYdOcKylWT\XBMTPwqE.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
(Toshiba Europe GmbH) C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Microsoft Corporation) C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
() C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Teco\TecoResident.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe
(SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
() C:\Program Files (x86)\Maxthon\Modules\MxDock\MxDock.exe
(Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
(Smartbar) C:\Users\elisabeth guillien\AppData\Local\Smartbar\Application\Smartbar.exe
(Microsoft Corporation) C:\Users\elisabeth guillien\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Wondershare) C:\Program Files (x86)\Wondershare\MobileGo for Android\MobileGoService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe
(IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
(Visicom Media Inc.) C:\ProgramData\Search Protection\SearchProtection.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
() C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe


==================== Registre (Avec liste blanche) ===========================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13885696 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [HotKeysCmds] => "C:\WINDOWS\system32\hkcmd.exe"
HKLM\...\Run: [Persistence] => "C:\WINDOWS\system32\igfxpers.exe"
HKLM\...\Run: [TCrdMain] => C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2565544 2012-11-01] ()
HKLM\...\Run: [TODDMain] => C:\Program Files (x86)\TOSHIBA\System Setting\TODDMain.exe [213136 2012-08-05] ()
HKLM\...\Run: [TecoResident] => C:\Program Files\TOSHIBA\Teco\TecoResident.exe [169896 2012-08-14] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [356776 2012-07-11] (TOSHIBA Corporation)
HKLM\...\Run: [SRS Premium Sound HD] => C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe [2172816 2012-10-22] (SRS Labs, Inc.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3954368 2015-08-02] (Synaptics Incorporated)
HKLM-x32\...\Run: [Intel AppUp(R) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [156000 2012-12-18] (Intel Corporation)
HKLM-x32\...\Run: [TPUReg] => C:\Program Files (x86)\TOSHIBA\Password Utility\TosPU.exe [7152640 2012-12-05] (Pegatron Corporation)
HKLM-x32\...\Run: [mobilegeni daemon] => C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
HKLM-x32\...\Run: [fst_fr_35] => [X]
HKLM-x32\...\Run: [Search Protection] => C:\ProgramData\Search Protection\SearchProtection.exe [944224 2013-06-26] (Visicom Media Inc.)
HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [448856 2014-11-17] (DivX, LLC)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [1985824 2013-07-25] (Wondershare)
HKLM-x32\...\Run: [Wondershare Helper Compact] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [1985824 2013-07-25] (Wondershare)
HKLM-x32\...\Run: [NPSStartup] => [X]
HKLM-x32\...\Run: [gmsd_fr_34] => [X]
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [6109776 2015-08-18] (AVAST Software)
HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2014-01-10] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\SysWOW64\OneDriveSetup.exe [7805120 2015-07-10] (Microsoft Corporation)
HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\SysWOW64\OneDriveSetup.exe [7805120 2015-07-10] (Microsoft Corporation)
HKU\S-1-5-21-4050669261-292766531-4265836775-1001\...\Run: [MxDock] => C:\Program Files (x86)\Maxthon\Modules\MxDock\MxDock.exe [2685752 2014-02-14] ()
HKU\S-1-5-21-4050669261-292766531-4265836775-1001\...\Run: [Wondershare Helper Compact] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [1985824 2013-07-25] (Wondershare)
HKU\S-1-5-21-4050669261-292766531-4265836775-1001\...\Run: [Browser Infrastructure Helper] => C:\Users\elisabeth guillien\AppData\Local\Smartbar\Application\Smartbar.exe [29696 2014-08-27] (Smartbar)
HKU\S-1-5-21-4050669261-292766531-4265836775-1001\...\Run: [OneDrive] => C:\Users\elisabeth guillien\AppData\Local\Microsoft\OneDrive\OneDrive.exe [382144 2015-08-02] (Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\MobileGo Service.lnk [2014-03-08]
ShortcutTarget: MobileGo Service.lnk -> C:\Program Files (x86)\Wondershare\MobileGo for Android\MobileGoService.exe (Wondershare)
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\elisabeth guillien\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64\FileSyncShell64.dll [2015-08-02] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\elisabeth guillien\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64\FileSyncShell64.dll [2015-08-02] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\elisabeth guillien\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64\FileSyncShell64.dll [2015-08-02] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-08-18] (AVAST Software)
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\elisabeth guillien\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\FileSyncShell.dll [2015-08-02] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\elisabeth guillien\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\FileSyncShell.dll [2015-08-02] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\elisabeth guillien\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\FileSyncShell.dll [2015-08-02] (Microsoft Corporation)
GroupPolicy: Stratégie de groupe sur Chrome détecté(e) <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Stratégie de restriction <======= ATTENTION

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

HKU\S-1-5-21-4050669261-292766531-4265836775-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Stratégie de restriction <======= ATTENTION
ProxyEnable: [S-1-5-21-4050669261-292766531-4265836775-1001] => Proxy est activé.
ProxyServer: [S-1-5-21-4050669261-292766531-4265836775-1001] => http=127.0.0.1:10970
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://start.qone8.com/?type=hp&ts=1383388141&from=tugs&uid=TOSHIBAXMQ01ABF032_33D1C341TXX33D1C341T
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://start.qone8.com/web/?type=ds&ts=1383388141&from=tugs&uid=TOSHIBAXMQ01ABF032_33D1C341TXX33D1C341T&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://start.qone8.com/?type=hp&ts=1383388141&from=tugs&uid=TOSHIBAXMQ01ABF032_33D1C341TXX33D1C341T
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://start.qone8.com/web/?type=ds&ts=1383388141&from=tugs&uid=TOSHIBAXMQ01ABF032_33D1C341TXX33D1C341T&q={searchTerms}
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StLKYZZHUxozG7WbG8M4ZbpPFmdMWnjfINoIA4sOKPBRAHVOcAHkz0bURgcyARNpMqy5ebFffgrAUwTqom7hGBUBegvrbLywJynZsJMzkMsEzl2taOEpUz1rQgPUItZG42cMXV6ouxQFDIJD_PY7X-ctgJNg7-WP8pRZVIk2ImSt62IoqX7ZxgbNnb8FPTe8-b_6ndqDgT_g,,
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StLKYZZHUxozG7WbG8M4ZbpPFmdMWnjfINoIA4sOKPBRAHVOcAHkz0bURgcyARNpMqy5ebFffgrAUwTqom7hGBUBegvrbLywJynZsJMzkAqXWJNtpQL2m6MrQfm6SeoHUmLjMRHSJiSUV66SJ8EW81G6zv7onybvu5k7d8klgZPp_92r8awTSRZ_XCMiienbQ_dehQPBI4zA,,&q={searchTerms}
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StLKYZZHUxozG7WbG8M4ZbpPFmdMWnjfINoIA4sOKPBRAHVOcAHkz0bURgcyARNpMqy5ebFffgrAUwTqom7hGBUBegvrbLywJynZsJMzkAqXWJNtpQL2m6MrQfm6SeoHUmLjMRHSJiSUV66SJ8EW81G6zv7onybvu5k7d8klgZPp_92r8awTSRZ_XCMiienbQ_dehQPBI4zA,,&q={searchTerms}
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
HKU\S-1-5-21-4050669261-292766531-4265836775-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
HKU\S-1-5-21-4050669261-292766531-4265836775-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.com/?trackid=sp-006
HKU\S-1-5-21-4050669261-292766531-4265836775-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxps://www.google.com/?trackid=sp-006
HKU\S-1-5-21-4050669261-292766531-4265836775-1001\Software\Microsoft\Internet Explorer\Main,Start Default_Page_URL = hxxp://search.certified-toolbar.com?si=75087&st=home&tid=8679&ver=5.1&ts=1384880616642&tguid=75087-8679-1384880616642-978BB0835F6C626BFE6633E08AD85F95
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://start.qone8.com/web/?type=ds&ts=1383388141&from=tugs&uid=TOSHIBAXMQ01ABF032_33D1C341TXX33D1C341T&q={searchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://start.qone8.com/web/?type=ds&ts=1383388141&from=tugs&uid=TOSHIBAXMQ01ABF032_33D1C341TXX33D1C341T&q={searchTerms}
SearchScopes: HKLM -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=tugumsd&cd=2XzuyEtN2Y1L1Qzu0CtD0DzyyCtBzztC0BtBzz0E0C0B0DyBtN0D0Tzu0CyCyDzytN1L2XzutBtFtBtFyEtFyBtAtCtN1L1Czu2Z2Y1N2Y1H1B1Q&cr=1209246211&ir=
SearchScopes: HKLM-x32 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKLM-x32 -> {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StLKYZZHUxozG7WbG8M4ZbpPFmdMWnjfINoIA4sOKPBRAHVOcAHkz0bURgcyARNpMqy5ebFffgrAUwTqom7hGBUBegvrbLywJynZsJMzkAqXWJNtpQL2m6MrQfm6SeoHUmLjMRHSJiSUV66SJ8EW81G6zv7onybvu5k7d8klgZPp_92r8awTSRZ_XCMiienbQ_dehQPBI4zA,,&q={searchTerms}
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StLKYZZHUxozG7WbG8M4ZbpPFmdMWnjfINoIA4sOKPBRAHVOcAHkz0bURgcyARNpMqy5ebFffgrAUwTqom7hGBUBegvrbLywJynZsJMzkAqXWJNtpQL2m6MrQfm6SeoHUmLjMRHSJiSUV66SJ8EW81G6zv7onybvu5k7d8klgZPp_92r8awTSRZ_XCMiienbQ_dehQPBI4zA,,&q={searchTerms}
SearchScopes: HKU\.DEFAULT -> {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StLKYZZHUxozG7WbG8M4ZbpPFmdMWnjfINoIA4sOKPBRAHVOcAHkz0bURgcyARNpMqy5ebFffgrAUwTqom7hGBUBegvrbLywJynZsJMzkAqXWJNtpQL2m6MrQfm6SeoHUmLjMRHSJiSUV66SJ8EW81G6zv7onybvu5k7d8klgZPp_92r8awTSRZ_XCMiienbQ_dehQPBI4zA,,&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4050669261-292766531-4265836775-1001 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4050669261-292766531-4265836775-1001 -> {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StLKYZZHUxozG7WbG8M4ZbpPFmdMWnjfINoIA4sOKPBRAHVOcAHkz0bURgcyARNpMqy5ebFffgrAUwTqom7hGBUBegvrbLywJynZsJMzkAqXWJNtpQL2m6MrQfm6SeoHUmLjMRHSJiSUV66SJ8EW81G6zv7onybvu5k7d8klgZPp_92r8awTSRZ_XEFF7aFujciDXbVl2IgQ,,&q={searchTerms}
SearchScopes: HKU\S-1-5-21-4050669261-292766531-4265836775-1001 -> {5EE06119-D48E-4280-A6D3-60AD1B701BEB} URL =
SearchScopes: HKU\S-1-5-21-4050669261-292766531-4265836775-1001 -> {7DE7A043-149A-EB67-59D9-1FE89B8A8024} URL =
SearchScopes: HKU\S-1-5-21-4050669261-292766531-4265836775-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?trackid=sp-006&q={searchTerms}
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll [2015-06-27] (IObit)
BHO: Pas de nom -> {11111111-1111-1111-1111-110311121155} -> Pas de fichier
BHO: Pas de nom -> {11111111-1111-1111-1111-110411051194} -> Pas de fichier
BHO: Pas de nom -> {31ad400d-1b06-4e33-a59a-90c2c140cba0} -> Pas de fichier
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-08-18] (AVAST Software)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Pas de nom -> {11111111-1111-1111-1111-110311121155} -> Pas de fichier
BHO-x32: Pas de nom -> {31ad400d-1b06-4e33-a59a-90c2c140cba0} -> Pas de fichier
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-05-31] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-08-18] (AVAST Software)
BHO-x32: Pas de nom -> {aab803bd-f01b-423a-a89a-60af476e9f12} -> Pas de fichier
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Pas de nom -> {ccb24e92-62c4-4c53-95d2-65f9eed476bc} -> Pas de fichier
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-31] (Oracle Corporation)
Toolbar: HKLM - Pas de nom - {ccb24e92-62c4-4c53-95d2-65f9eed476bc} - Pas de fichier
Toolbar: HKLM - Pas de nom - {ae07101b-46d4-4a98-af68-0333ea26e113} - Pas de fichier
Toolbar: HKLM-x32 - Pas de nom - {ccb24e92-62c4-4c53-95d2-65f9eed476bc} - Pas de fichier
Toolbar: HKLM-x32 - Pas de nom - {ae07101b-46d4-4a98-af68-0333ea26e113} - Pas de fichier
Toolbar: HKU\S-1-5-21-4050669261-292766531-4265836775-1001 -> Pas de nom - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Pas de fichier
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{8728af72-17b0-4c7c-a036-c596cf4e17b1}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{a8c1cfcc-884b-4019-bca7-52bd0c413400}: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll [2015-08-12] ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-12] ()
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [2014-05-22] (DivX, LLC.)
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll [2014-11-21] (DivX, LLC)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-07] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-07] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-05-31] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-05-31] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=1.1.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-03-17] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-4050669261-292766531-4265836775-1001: @lightspark.github.com/Lightspark;version=1 -> C:\Program Files (x86)\Lightspark 0.5.3-git\nplightsparkplugin.dll Pas de fichier
FF HKLM-x32\...\Firefox\Extensions: [speedtest4354@BestOffers] - C:\Users\elisabeth guillien\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers
FF Extension: Speed Test (4354) - C:\Users\elisabeth guillien\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers [2013-12-19]
FF HKLM-x32\...\Firefox\Extensions: [freegames4357@BestOffers] - C:\Users\elisabeth guillien\AppData\Roaming\Mozilla\Extensions\freegames4357@BestOffers
FF Extension: Free Games (4357) - C:\Users\elisabeth guillien\AppData\Roaming\Mozilla\Extensions\freegames4357@BestOffers [2013-12-19]
FF HKLM-x32\...\Firefox\Extensions: [ext@MediaPlayerV1alpha733.net] - C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha733\ff
FF HKLM-x32\...\Firefox\Extensions: [ext@MediaWatchV1home8076.net] - C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home8076\ff
FF HKLM-x32\...\Firefox\Extensions: [ext@MediaBuzzV1mode5694.net] - C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode5694\ff
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-12-26]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF HKU\S-1-5-21-4050669261-292766531-4265836775-1001\...\Firefox\Extensions: [speedtest4354@BestOffers] - C:\Users\elisabeth guillien\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers
FF HKU\S-1-5-21-4050669261-292766531-4265836775-1001\...\Firefox\Extensions: [freegames4357@BestOffers] - C:\Users\elisabeth guillien\AppData\Roaming\Mozilla\Extensions\freegames4357@BestOffers
FF Extension: Pas de nom - C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha733\ff [non trouvé(e)]
FF Extension: Pas de nom - C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home8076\ff [non trouvé(e)]
FF Extension: Pas de nom - C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode5694\ff [non trouvé(e)]

Chrome:
=======
CHR Profile: C:\Users\elisabeth guillien\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Avast SafePrice) - C:\Users\elisabeth guillien\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2015-01-28]
CHR Extension: (Avast Online Security) - C:\Users\elisabeth guillien\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-12-26]
CHR Extension: (Google Wallet) - C:\Users\elisabeth guillien\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-06]
CHR HKLM\...\Chrome\Extension: [dmibjfmphcpfoacbchialfobiohmhged] - C:\Users\ELISAB~1\AppData\Roaming\PRINTA~1\printatreeChrome.crx
CHR HKLM\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\ELISAB~1\AppData\Local\mysearchdial_speedial_v9.0.2.crx [2013-10-20]
CHR HKU\S-1-5-21-4050669261-292766531-4265836775-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [dmibjfmphcpfoacbchialfobiohmhged] - C:\Users\ELISAB~1\AppData\Roaming\PRINTA~1\printatreeChrome.crx
CHR HKU\S-1-5-21-4050669261-292766531-4265836775-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\ELISAB~1\AppData\Local\mysearchdial_speedial_v9.0.2.crx [2013-10-20]
CHR HKLM-x32\...\Chrome\Extension: [bgligpfldpdmdbdkgikcpmpdkahbifoc] - C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home8076\ch\MediaWatchV1home8076.crx
CHR HKLM-x32\...\Chrome\Extension: [dghncoeocefmhkhiphdgikkamjeglbfh] -
CHR HKLM-x32\...\Chrome\Extension: [dmibjfmphcpfoacbchialfobiohmhged] - C:\Users\ELISAB~1\AppData\Roaming\PRINTA~1\printatreeChrome.crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-07-20]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-07-20]
CHR HKLM-x32\...\Chrome\Extension: [ifohbjbgfchkkfhphahclmkpgejiplfo] - \User Data\Default\Extensions\newtab.crx [2013-09-02]
CHR HKLM-x32\...\Chrome\Extension: [kbjlipmgfoamgjaogmbihaffnpkpjajp] - C:\Program Files (x86)\Nosibay\Bubble Dock\extensions\GCSurfMatch.crx
CHR HKLM-x32\...\Chrome\Extension: [okdgkpomoildkbebhankmndjnfehpphb] - C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode5694\ch\MediaBuzzV1mode5694.crx
CHR HKLM-x32\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\ELISAB~1\AppData\Local\mysearchdial_speedial_v9.0.2.crx [2013-10-20]

==================== Services (Avec liste blanche) ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-08-18] (AVAST Software)
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [326144 2015-07-10] (Microsoft Corporation)
S3 CDPSvc; C:\Windows\System32\CDPSvc.dll [134144 2015-07-10] (Microsoft Corporation)
R2 CoreMessagingRegistrar; C:\Windows\system32\coremessaging.dll [808856 2015-08-02] (Microsoft Corporation)
R2 CoreMessagingRegistrar; C:\Windows\SysWOW64\coremessaging.dll [510976 2015-08-02] (Microsoft Corporation)
S3 diagnosticshub.standardcollector.service; C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [27136 2015-07-10] (Microsoft Corporation)
S3 DmEnrollmentSvc; C:\Windows\system32\Windows.Internal.Management.dll [267776 2015-07-10] (Microsoft Corporation)
S3 DmEnrollmentSvc; C:\Windows\SysWOW64\Windows.Internal.Management.dll [193024 2015-07-10] (Microsoft Corporation)
S3 embeddedmode; C:\Windows\System32\embeddedmodesvc.dll [87040 2015-07-10] (Microsoft Corporation)
S3 EntAppSvc; C:\Windows\system32\EnterpriseAppMgmtSvc.dll [275456 2015-07-10] (Microsoft Corporation)
R2 GFNEXSrv; C:\Program Files (x86)\TOSHIBA\Password Utility\GFNEXSrv.exe [156672 2011-10-13] () [Fichier non signé]
S3 icssvc; C:\Windows\System32\tetheringservice.dll [148992 2015-08-02] (Microsoft Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [319888 2015-07-11] (Intel Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856 2012-06-27] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation)
R3 lfsvc; C:\Windows\SysWOW64\lfsvc.dll [22528 2015-07-10] (Microsoft Corporation)
R3 LicenseManager; C:\Windows\system32\LicenseManagerSvc.dll [21504 2015-07-10] (Microsoft Corporation)
R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2909472 2015-07-30] (IObit)
R2 MaConfigAgent; C:\Program Files\ma-config.com\MaConfigAgent.exe [2818896 2014-01-20] (CybelSoft)
S2 MapsBroker; C:\Windows\System32\moshost.dll [62464 2015-07-10] (Microsoft Corporation)
S2 OneSyncSvc; C:\Windows\System32\APHostService.dll [296960 2015-07-10] (Microsoft Corporation)
R2 OneSyncSvc_Session2; C:\WINDOWS\system32\svchost.exe [39856 2015-07-10] (Microsoft Corporation)
R2 OneSyncSvc_Session2; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 PimIndexMaintenanceSvc; C:\Windows\System32\PimIndexMaintenance.dll [289280 2015-07-10] (Microsoft Corporation)
R3 PimIndexMaintenanceSvc_Session2; C:\WINDOWS\system32\svchost.exe [39856 2015-07-10] (Microsoft Corporation)
R3 PimIndexMaintenanceSvc_Session2; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 RetailDemo; C:\Windows\system32\RDXService.dll [988672 2015-08-02] (Microsoft Corporation)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [201872 2012-12-05] (Realtek Semiconductor)
S3 SensorDataService; C:\Windows\System32\SensorDataService.exe [1031680 2015-08-02] (Microsoft Corporation)
R3 StateRepository; C:\Windows\system32\windows.staterepository.dll [2674176 2015-07-10] (Microsoft Corporation)
R3 StateRepository; C:\Windows\SysWOW64\windows.staterepository.dll [2049024 2015-07-10] (Microsoft Corporation)
R3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [116088 2013-07-18] (Toshiba Europe GmbH)
S3 UnistoreSvc; C:\Windows\System32\unistore.dll [1203200 2015-08-02] (Microsoft Corporation)
S3 UnistoreSvc; C:\Windows\SysWOW64\unistore.dll [925696 2015-08-02] (Microsoft Corporation)
R3 UnistoreSvc_Session2; C:\WINDOWS\System32\svchost.exe [39856 2015-07-10] (Microsoft Corporation)
R3 UnistoreSvc_Session2; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 UserDataSvc; C:\Windows\System32\userdataservice.dll [1420288 2015-08-02] (Microsoft Corporation)
R3 UserDataSvc_Session2; C:\WINDOWS\system32\svchost.exe [39856 2015-07-10] (Microsoft Corporation)
R3 UserDataSvc_Session2; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 vmicvmsession; C:\Windows\System32\ICSvc.dll [506880 2015-07-10] (Microsoft Corporation)
S3 WalletService; C:\Windows\system32\WalletService.dll [504320 2015-07-10] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
S3 XblAuthManager; C:\Windows\System32\XblAuthManager.dll [918016 2015-07-10] (Microsoft Corporation)
S3 XblGameSave; C:\Windows\System32\XblGameSave.dll [1149440 2015-07-10] (Microsoft Corporation)
R2 XBMTPwqE; C:\ProgramData\cxYdOcKylWT\XBMTPwqE.exe [2733936 2014-12-24] (Time Lapse Solutions)
S3 XboxNetApiSvc; C:\Windows\system32\XboxNetApiSvc.dll [1019392 2015-07-10] (Microsoft Corporation)

===================== Pilotes (Avec liste blanche) ==========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-08-18] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [90968 2015-08-18] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-08-18] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-08-18] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1048344 2015-08-18] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [447944 2015-08-18] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [150672 2015-08-18] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [274808 2015-08-18] (AVAST Software)
R3 CompositeBus; C:\Windows\System32\DriverStore\FileRepository\compositebus.inf_amd64_98334ba6e76853ba\CompositeBus.sys [39936 2015-07-10] (Microsoft Corporation)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3436896 2015-07-10] (QLogic Corporation)
R1 FileCrypt; C:\Windows\System32\drivers\filecrypt.sys [83968 2015-07-10] (Microsoft Corporation)
S3 genericusbfn; C:\Windows\System32\drivers\genericusbfn.sys [20992 2015-07-10] (Microsoft Corporation)
R1 GpuEnergyDrv; C:\Windows\System32\drivers\gpuenergydrv.sys [8192 2015-07-10] (Microsoft Corporation)
S3 ibbus; C:\Windows\System32\drivers\ibbus.sys [424800 2015-07-10] (Mellanox)
S3 IoQos; C:\Windows\System32\drivers\ioqos.sys [26624 2015-07-10] (Microsoft Corporation)
S0 LSI_SAS3i; C:\Windows\System32\drivers\lsi_sas3i.sys [99168 2015-07-10] (Avago Technologies)
S3 ma-config_amd64; C:\Program Files\ma-config.com\Drivers\ma-config_amd64.sys [17568 2013-10-23] (CybelSoft)
S3 mlx4_bus; C:\Windows\System32\drivers\mlx4_bus.sys [705376 2015-07-10] (Mellanox)
S3 ndfltr; C:\Windows\System32\drivers\ndfltr.sys [76128 2015-07-10] (Mellanox)
R2 npf; C:\Windows\System32\drivers\npf.sys [35344 2011-02-11] (CACE Technologies, Inc.)
R2 PEGAGFN; C:\Program Files (x86)\TOSHIBA\Password Utility\PEGAGFN.sys [14344 2009-09-11] (PEGATRON)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [587264 2015-07-10] (Realtek )
R3 rtwlane_13; C:\Windows\System32\drivers\rtwlane_13.sys [3749888 2015-07-10] (Realtek Semiconductor Corporation )
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [51392 2015-08-02] (Synaptics Incorporated)
R2 storqosflt; C:\Windows\System32\drivers\storqosflt.sys [61952 2015-07-10] (Microsoft Corporation)
R3 swenum; C:\Windows\System32\DriverStore\FileRepository\swenum.inf_amd64_2a699e44676b7781\swenum.sys [17760 2015-07-10] (Microsoft Corporation)
R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [54424 2015-07-29] (Toshiba Corporation)
S3 UcmCx0101; C:\Windows\System32\Drivers\UcmCx.sys [61952 2015-07-10] (Microsoft Corporation)
S3 UcmUcsi; C:\Windows\System32\drivers\UcmUcsi.sys [46080 2015-08-02] (Microsoft Corporation)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
R0 WindowsTrustedRT; C:\Windows\System32\drivers\WindowsTrustedRT.sys [106520 2015-07-10] (Microsoft Corporation)
R0 WindowsTrustedRTProxy; C:\Windows\System32\drivers\WindowsTrustedRTProxy.sys [17944 2015-07-10] (Microsoft Corporation)
S3 WinMad; C:\Windows\System32\drivers\winmad.sys [26976 2015-07-10] (Mellanox)
S3 WinVerbs; C:\Windows\System32\drivers\winverbs.sys [59232 2015-07-10] (Mellanox)
S3 xboxgip; C:\Windows\System32\drivers\xboxgip.sys [222720 2015-07-10] (Microsoft Corporation)
S3 xinputhid; C:\Windows\System32\drivers\xinputhid.sys [25600 2015-07-10] (Microsoft Corporation)
R1 {442ad619-2fad-4d96-9434-49e6d1c6e280}Gw64; C:\Windows\System32\drivers\{442ad619-2fad-4d96-9434-49e6d1c6e280}Gw64.sys [48792 2014-12-23] (StdLib)
R1 {a3683581-618c-4715-bb65-8cadd4684acf}Gw64; C:\Windows\System32\drivers\{a3683581-618c-4715-bb65-8cadd4684acf}Gw64.sys [48784 2014-12-24] (StdLib)
R1 {fc89d816-ed34-4c31-b975-2722ed8a31a3}Gw64; C:\Windows\System32\drivers\{fc89d816-ed34-4c31-b975-2722ed8a31a3}Gw64.sys [48784 2014-12-24] (StdLib)
S1 SABKUTIL; \??\C:\Program Files (x86)\SuperAdBlocker.com\Super Ad Blocker\SABKUTIL.sys [X]
S3 SABProcEnum; \??\C:\Program Files (x86)\SuperAdBlocker.com\Super Ad Blocker\SABProcEnum.sys [X]
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois - Créés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2015-08-28 11:18 - 2015-08-28 11:19 - 00036888 _____ C:\Users\elisabeth guillien\Desktop\FRST.txt
2015-08-28 11:18 - 2015-08-28 11:18 - 00000000 ____D C:\FRST
2015-08-28 11:16 - 2015-08-28 11:16 - 02186752 _____ (Farbar) C:\Users\elisabeth guillien\Desktop\FRST64.exe
2015-08-28 11:08 - 2015-08-28 11:08 - 19648448 _____ (Microsoft Corporation) C:\Users\elisabeth guillien\Desktop\MediaCreationToolx64.exe
2015-08-28 10:05 - 2015-08-28 10:05 - 00016148 _____ C:\WINDOWS\system32\MON_PC_babeth_HistoryPrediction.bin
2015-08-26 21:53 - 2015-08-26 21:53 - 32884560 _____ (Maxthon International ltd.) C:\Users\elisabeth guillien\Desktop\mxnitro1.0.1.3000_cc8a6485653fa5a52ba6d0896d0a2afc.exe
2015-08-26 10:14 - 2015-08-26 10:14 - 00000000 ___RD C:\Users\elisabeth guillien\3D Objects
2015-08-26 09:48 - 2015-08-26 09:50 - 00000000 ____D C:\Program Files (x86)\SuperAdBlocker.com
2015-08-26 09:48 - 2015-08-26 09:48 - 00000000 ____D C:\WINDOWS\SysWOW64\URTTemp
2015-08-26 09:48 - 2015-08-26 09:48 - 00000000 ____D C:\Users\elisabeth guillien\AppData\Roaming\SuperAdBlocker.com
2015-08-26 09:37 - 2015-08-26 09:39 - 00000000 ___RD C:\Users\elisabeth guillien\Desktop\ 
2015-08-18 12:58 - 2015-08-18 12:58 - 00000000 ____D C:\Users\elisabeth guillien\Desktop\ONDA
2015-08-18 12:53 - 2015-08-18 12:53 - 00378880 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2015-08-18 12:53 - 2015-08-18 12:53 - 00043112 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2015-08-14 08:55 - 2015-08-14 09:06 - 00000000 ____D C:\Users\elisabeth guillien\Documents\DOSSIER SANTE
2015-08-11 21:35 - 2015-08-11 21:35 - 00232293 _____ C:\Users\elisabeth guillien\Documents\SFR Mail.htm
2015-08-11 21:35 - 2015-08-11 21:35 - 00000000 ____D C:\Users\elisabeth guillien\Documents\SFR Mail_files
2015-08-04 15:01 - 2015-08-04 15:01 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2015-08-03 10:24 - 2015-08-03 10:24 - 00000000 ____D C:\Users\elisabeth guillien\AppData\Local\NetworkTiles
2015-08-02 18:39 - 2015-08-02 18:39 - 00000144 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-08-02 18:38 - 2015-08-02 18:38 - 00000290 __RSH C:\ProgramData\ntuser.pol
2015-08-02 18:34 - 2015-08-10 11:34 - 00000000 ____D C:\Users\elisabeth guillien\AppData\Local\MicrosoftEdge
2015-08-02 16:54 - 2015-08-02 16:54 - 00428224 _____ (Synaptics Incorporated) C:\WINDOWS\SysWOW64\SynCom.dll
2015-08-02 16:54 - 2015-08-02 16:54 - 00261312 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPCo32.dll
2015-08-02 16:54 - 2015-08-02 16:54 - 00051392 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_Intel_Aux.sys
2015-08-02 16:54 - 2015-08-02 16:54 - 00050880 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_AMDASF_Aux.sys
2015-08-02 16:50 - 2015-08-02 16:34 - 00000000 ___DC C:\WINDOWS\Panther
2015-08-02 16:50 - 2015-08-02 16:00 - 00000000 __SHD C:\Recovery
2015-08-02 16:45 - 2015-08-02 16:45 - 00000000 ____D C:\Windows.old
2015-08-02 16:44 - 2015-08-02 16:44 - 00002465 _____ C:\Users\elisabeth guillien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-08-02 16:44 - 2015-08-02 16:44 - 00000000 ___RD C:\Users\elisabeth guillien\OneDrive
2015-08-02 16:43 - 2015-08-02 16:43 - 24591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 22320576 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 21873152 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 20854232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 19333632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 18810368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 16710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 14241792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 13024256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 12589056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 12502016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 11552768 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 11260928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 09885184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 08020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 07569408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 07523328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 07051264 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 06488312 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 06305792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 06101504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 05118024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 05076480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 04791296 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 04760576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 04611584 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 04532304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 04398080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 04350464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 04169728 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 04047288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 03780096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 03687936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 03620736 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 03589632 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-08-02 16:43 - 2015-08-02 16:43 - 03579904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 03443200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 03362816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 03248640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 03248128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 02878000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 02741760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 02661376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 02646528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 02606080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 02558976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 02498808 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 02462136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 02446336 _____ C:\WINDOWS\system32\InputService.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 02416640 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 02415616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 02235904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 02224128 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 02207744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 02178560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 02150696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 02147592 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 02116960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2015-08-02 16:43 - 2015-08-02 16:43 - 02112512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01983328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2015-08-02 16:43 - 2015-08-02 16:43 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01914880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01890304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01867672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01823232 _____ C:\WINDOWS\SysWOW64\InputService.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01822280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01820672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01793024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01773056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01769568 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01680896 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01643872 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01611264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01601024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01593856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01591856 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01562968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01561360 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01533496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01521664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01420288 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01418240 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 01417216 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01411072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01396576 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-08-02 16:43 - 2015-08-02 16:43 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01365072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01356368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01334784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01294352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2015-08-02 16:43 - 2015-08-02 16:43 - 01290752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01274880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01203200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01203200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01201664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01177600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01169408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01168736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-08-02 16:43 - 2015-08-02 16:43 - 01161728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01135312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 01123400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 01112064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01101792 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01085776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01067520 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01061888 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01043968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 01031680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 01018568 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2015-08-02 16:43 - 2015-08-02 16:43 - 00991584 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00988672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00980832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2015-08-02 16:43 - 2015-08-02 16:43 - 00966424 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00962400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00934752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys
2015-08-02 16:43 - 2015-08-02 16:43 - 00925696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00916800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00902656 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00869376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00858624 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00858408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00850432 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00845664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00832512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00823336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00808856 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00801632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00799232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00783112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00762896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00750592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00713312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00700256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00695136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00677888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00658568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00643616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00632168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00630160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00607008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00606392 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00601344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-08-02 16:43 - 2015-08-02 16:43 - 00594472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efscore.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00584544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00578048 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00569344 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00565088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2015-08-02 16:43 - 2015-08-02 16:43 - 00562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00542720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00539216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00527952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00521568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00520704 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00518144 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00516960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2015-08-02 16:43 - 2015-08-02 16:43 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00507696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00505696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2015-08-02 16:43 - 2015-08-02 16:43 - 00505344 _____ C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00501008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00498016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys
2015-08-02 16:43 - 2015-08-02 16:43 - 00485888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00477696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00445240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00425824 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00420352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00412672 _____ C:\WINDOWS\system32\diagtrack_win.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00407616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00403968 _____ C:\WINDOWS\system32\diagtrack_wininternal.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00384000 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00365056 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00335248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00325984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2015-08-02 16:43 - 2015-08-02 16:43 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV2.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00303616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemcpl.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00290312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00289248 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\systemcpl.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00265480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00253440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00243760 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00242264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00242176 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00208736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumsvc.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\OmaDmAgent.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00181088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srumsvc.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sendmail.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00097128 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00082616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcd.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\setbcdlocale.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spbcd.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2015-08-02 16:43 - 2015-08-02 16:43 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\unenrollhook.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00061280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2015-08-02 16:43 - 2015-08-02 16:43 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmprc.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys
2015-08-02 16:43 - 2015-08-02 16:43 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hmkd.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00032768 _____ C:\WINDOWS\system32\LicenseManagerApi.dll
2015-08-02 16:43 - 2015-08-02 16:43 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\calc.exe
2015-08-02 16:43 - 2015-08-02 16:43 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2015-08-02 16:39 - 2015-08-02 16:39 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2015-08-02 16:38 - 2015-08-02 16:38 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2015-08-02 16:36 - 2015-08-02 16:36 - 00000000 ____D C:\Users\elisabeth guillien\AppData\Local\Publishers
2015-08-02 16:35 - 2015-08-02 16:37 - 00000000 ____D C:\Users\elisabeth guillien\AppData\Local\Comms
2015-08-02 16:35 - 2015-08-02 16:35 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2015-08-02 16:35 - 2015-08-02 16:35 - 00000000 ____D C:\Program Files\Reference Assemblies
2015-08-02 16:35 - 2015-08-02 16:35 - 00000000 ____D C:\Program Files\MSBuild
2015-08-02 16:35 - 2015-08-02 16:35 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2015-08-02 16:35 - 2015-08-02 16:35 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-08-02 16:34 - 2015-08-02 16:34 - 00000451 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-08-02 16:34 - 2015-08-02 16:34 - 00000020 ___SH C:\Users\elisabeth guillien\ntuser.ini
2015-08-02 16:34 - 2015-08-02 16:34 - 00000000 ____D C:\Users\elisabeth guillien\AppData\Local\TileDataLayer
2015-08-02 16:34 - 2015-06-17 19:10 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-08-02 16:34 - 2015-06-17 19:10 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-02 16:34 - 2015-06-17 19:10 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2015-08-02 16:34 - 2015-05-29 22:07 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2015-08-02 16:34 - 2015-05-29 22:07 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-08-02 16:34 - 2015-05-29 22:07 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2015-08-02 16:31 - 2015-08-02 16:31 - 00000000 _SHDL C:\Users\Default\Voisinage réseau
2015-08-02 16:31 - 2015-08-02 16:31 - 00000000 _SHDL C:\Users\Default\Voisinage d'impression
2015-08-02 16:31 - 2015-08-02 16:31 - 00000000 _SHDL C:\Users\Default\Modèles
2015-08-02 16:31 - 2015-08-02 16:31 - 00000000 _SHDL C:\Users\Default\Menu Démarrer
2015-08-02 16:31 - 2015-08-02 16:31 - 00000000 _SHDL C:\Users\Default\Documents\Mes vidéos
2015-08-02 16:31 - 2015-08-02 16:31 - 00000000 _SHDL C:\Users\Default\Documents\Mes images
2015-08-02 16:31 - 2015-08-02 16:31 - 00000000 _SHDL C:\Users\Default\Documents\Ma musique
2015-08-02 16:31 - 2015-08-02 16:31 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2015-08-02 16:31 - 2015-08-02 16:31 - 00000000 _SHDL C:\Users\Default\AppData\Local\Historique
2015-08-02 16:31 - 2015-08-02 16:31 - 00000000 _SHDL C:\Users\Default User\Documents\Mes vidéos
2015-08-02 16:31 - 2015-08-02 16:31 - 00000000 _SHDL C:\Users\Default User\Documents\Mes images
2015-08-02 16:31 - 2015-08-02 16:31 - 00000000 _SHDL C:\Users\Default User\Documents\Ma musique
2015-08-02 16:31 - 2015-08-02 16:31 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2015-08-02 16:31 - 2015-08-02 16:31 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Historique
2015-08-02 16:20 - 2015-08-27 10:27 - 01839260 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-08-02 16:16 - 2015-07-10 12:59 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2015-08-02 16:09 - 2015-08-02 16:09 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-08-02 16:09 - 2015-08-02 16:09 - 00000000 ____D C:\Users\Default\AppData\Roaming\ProductData
2015-08-02 16:09 - 2015-08-02 16:09 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2015-08-02 16:09 - 2015-08-02 16:09 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2015-08-02 16:09 - 2015-08-02 16:09 - 00000000 ____D C:\Users\Default User\AppData\Roaming\ProductData
2015-08-02 16:09 - 2015-08-02 16:09 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2015-08-02 16:09 - 2015-08-02 16:09 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2015-08-02 16:03 - 2015-08-02 16:03 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2015-08-02 16:01 - 2015-08-26 10:14 - 00000000 ____D C:\Users\elisabeth guillien
2015-08-02 16:01 - 2015-08-02 16:34 - 00000000 ___RD C:\Users\elisabeth guillien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-02 16:01 - 2015-08-02 16:03 - 00000000 ___RD C:\Users\elisabeth guillien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-08-02 16:01 - 2015-08-02 16:01 - 00000000 _SHDL C:\Users\elisabeth guillien\Voisinage réseau
2015-08-02 16:01 - 2015-08-02 16:01 - 00000000 _SHDL C:\Users\elisabeth guillien\Voisinage d'impression
2015-08-02 16:01 - 2015-08-02 16:01 - 00000000 _SHDL C:\Users\elisabeth guillien\Modèles
2015-08-02 16:01 - 2015-08-02 16:01 - 00000000 _SHDL C:\Users\elisabeth guillien\Menu Démarrer
2015-08-02 16:01 - 2015-08-02 16:01 - 00000000 _SHDL C:\Users\elisabeth guillien\Documents\Mes vidéos
2015-08-02 16:01 - 2015-08-02 16:01 - 00000000 _SHDL C:\Users\elisabeth guillien\Documents\Mes images
2015-08-02 16:01 - 2015-08-02 16:01 - 00000000 _SHDL C:\Users\elisabeth guillien\Documents\Ma musique
2015-08-02 16:01 - 2015-08-02 16:01 - 00000000 _SHDL C:\Users\elisabeth guillien\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2015-08-02 16:01 - 2015-08-02 16:01 - 00000000 _SHDL C:\Users\elisabeth guillien\AppData\Local\Historique
2015-08-02 16:01 - 2015-07-10 13:04 - 00000000 __RSD C:\Users\elisabeth guillien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
2015-08-02 16:01 - 2015-07-10 13:04 - 00000000 ___RD C:\Users\elisabeth guillien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-08-02 16:01 - 2015-07-10 13:04 - 00000000 ____D C:\Users\elisabeth guillien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-08-02 15:57 - 2015-08-02 15:57 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2015-08-02 15:57 - 2015-08-02 15:57 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2015-08-02 15:57 - 2015-08-02 15:57 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2015-08-02 15:57 - 2015-08-02 15:57 - 00000000 ____D C:\WINDOWS\system32\SRSLabs
2015-08-02 15:57 - 2015-08-02 15:57 - 00000000 ____D C:\Program Files\Synaptics
2015-08-02 15:57 - 2015-08-02 15:57 - 00000000 ____D C:\Program Files\Realtek
2015-08-02 15:57 - 2015-07-11 00:29 - 00064000 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2015-08-02 15:57 - 2015-07-11 00:29 - 00060416 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2015-08-02 15:56 - 2015-08-02 16:04 - 00000000 ____D C:\Program Files\Intel
2015-08-02 15:52 - 2015-08-02 15:53 - 00027032 _____ C:\WINDOWS\system32\NetSetupMig.log
2015-08-02 15:51 - 2015-08-25 10:26 - 00019894 _____ C:\WINDOWS\PFRO.log
2015-07-29 09:40 - 2015-07-30 20:31 - 00051712 ___SH C:\Users\elisabeth guillien\Desktop\Thumbs.db
2015-07-29 06:54 - 2015-07-29 06:54 - 00054424 _____ (Toshiba Corporation) C:\WINDOWS\system32\Drivers\Thotkey.sys

==================== Un mois - Modifiés - fichiers et dossiers ========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2015-08-28 10:50 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\sru
2015-08-28 10:21 - 2015-01-29 23:26 - 00001002 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-08-28 10:05 - 2013-12-29 18:27 - 00000360 _____ C:\WINDOWS\Tasks\bench-sys.job
2015-08-28 09:03 - 2013-12-29 18:27 - 00000360 _____ C:\WINDOWS\Tasks\bench-S-1-5-21-4050669261-292766531-4265836775-1001.job
2015-08-28 06:52 - 2013-12-19 03:02 - 00004184 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{F2761206-4D94-4107-9E6D-5701BAC2135A}
2015-08-28 05:59 - 2013-11-20 12:59 - 00001342 _____ C:\WINDOWS\Tasks\Feven 1.7-updater.job
2015-08-28 05:58 - 2013-11-20 12:58 - 00001872 _____ C:\WINDOWS\Tasks\Feven 1.7-firefoxinstaller.job
2015-08-28 05:58 - 2013-11-20 12:58 - 00001244 _____ C:\WINDOWS\Tasks\Feven 1.7-codedownloader.job
2015-08-28 05:58 - 2013-11-20 12:58 - 00001144 _____ C:\WINDOWS\Tasks\Feven 1.7-enabler.job
2015-08-28 05:58 - 2013-11-20 12:57 - 00001948 _____ C:\WINDOWS\Tasks\Feven 1.7-chromeinstaller.job
2015-08-27 22:26 - 2013-12-05 09:34 - 00000000 ____D C:\ProgramData\ProductData
2015-08-27 21:04 - 2015-07-10 12:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-08-27 18:00 - 2015-05-14 08:18 - 00000484 _____ C:\WINDOWS\Tasks\ParetoLogic Registration3.job
2015-08-27 17:45 - 2015-04-10 10:27 - 00002948 _____ C:\WINDOWS\System32\Tasks\AutoKMS
2015-08-27 17:45 - 2015-03-31 10:14 - 00000288 _____ C:\WINDOWS\Tasks\AutoKMS.job
2015-08-27 10:27 - 2015-07-10 18:24 - 00821020 _____ C:\WINDOWS\system32\perfh00C.dat
2015-08-27 10:27 - 2015-07-10 18:24 - 00154350 _____ C:\WINDOWS\system32\perfc00C.dat
2015-08-27 10:24 - 2015-05-14 08:17 - 00000510 _____ C:\WINDOWS\Tasks\ParetoLogic Update Version3 Startup Task.job
2015-08-26 10:13 - 2015-06-27 12:17 - 00002484 _____ C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_babeth
2015-08-26 10:13 - 2015-06-27 12:17 - 00000294 _____ C:\WINDOWS\Tasks\Uninstaller_SkipUac_babeth.job
2015-08-25 17:43 - 2015-07-10 14:22 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log
2015-08-25 17:42 - 2015-07-10 14:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-08-25 17:42 - 2015-07-10 11:05 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-08-25 10:32 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-08-19 11:16 - 2015-07-14 11:38 - 00000000 ___RD C:\Users\elisabeth guillien\Documents\indemnités journ accident travail
2015-08-18 13:48 - 2014-12-24 17:12 - 00000000 __SHD C:\Users\elisabeth guillien\AppData\Local\EmieUserList
2015-08-18 13:48 - 2014-12-24 17:12 - 00000000 __SHD C:\Users\elisabeth guillien\AppData\Local\EmieSiteList
2015-08-18 13:48 - 2013-08-24 15:01 - 00000000 ____D C:\Program Files (x86)\Google
2015-08-18 12:53 - 2014-12-26 11:19 - 00004006 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update
2015-08-18 12:53 - 2014-12-26 11:17 - 01048344 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys
2015-08-18 12:53 - 2014-12-26 11:17 - 00447944 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2015-08-18 12:53 - 2014-12-26 11:17 - 00274808 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2015-08-18 12:53 - 2014-12-26 11:17 - 00150672 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2015-08-18 12:53 - 2014-12-26 11:17 - 00093528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2015-08-18 12:53 - 2014-12-26 11:17 - 00090968 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2015-08-18 12:53 - 2014-12-26 11:17 - 00065224 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2015-08-18 12:53 - 2014-12-26 11:17 - 00028656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2015-08-18 11:14 - 2015-07-10 14:20 - 00017138 _____ C:\WINDOWS\setupact.log
2015-08-12 15:21 - 2015-01-29 23:26 - 00003988 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-08-09 17:01 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\restore
2015-08-03 10:27 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\appcompat
2015-08-02 18:37 - 2015-07-10 14:20 - 00355816 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-08-02 18:27 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2015-08-02 16:59 - 2013-08-21 21:37 - 00000000 ____D C:\Users\elisabeth guillien\AppData\Local\Packages
2015-08-02 16:55 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\Registration
2015-08-02 16:54 - 2015-06-12 04:34 - 01813392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WdfCoInstaller01011.dll
2015-08-02 16:54 - 2015-06-12 04:34 - 00773312 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynCOM.dll
2015-08-02 16:54 - 2015-06-12 04:34 - 00624832 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\SynTP.sys
2015-08-02 16:54 - 2015-06-12 04:34 - 00277696 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPAPI.dll
2015-08-02 16:54 - 2015-06-12 04:34 - 00051392 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_Intel.sys
2015-08-02 16:50 - 2015-07-10 13:04 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2015-08-02 16:44 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe
2015-08-02 16:44 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2015-08-02 16:44 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-08-02 16:44 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\Provisioning
2015-08-02 16:44 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2015-08-02 16:44 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\system32\Dism
2015-08-02 16:43 - 2015-07-10 13:06 - 00792568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-08-02 16:43 - 2015-07-10 13:06 - 00178168 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-08-02 16:40 - 2013-08-21 21:37 - 00000000 ____D C:\Users\elisabeth guillien\AppData\Local\VirtualStore
2015-08-02 16:36 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2015-08-02 16:36 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\PrintDialog
2015-08-02 16:36 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\MiracastView
2015-08-02 16:35 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2015-08-02 16:35 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2015-08-02 16:35 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\MUI
2015-08-02 16:33 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\rescache
2015-08-02 16:31 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Windows NT
2015-08-02 16:31 - 2015-07-10 11:05 - 00000000 __RHD C:\Users\Default
2015-08-02 16:31 - 2013-12-19 00:49 - 00036198 _____ C:\WINDOWS\diagwrn.xml
2015-08-02 16:31 - 2013-12-19 00:49 - 00036198 _____ C:\WINDOWS\diagerr.xml
2015-08-02 16:28 - 2013-12-18 23:53 - 00013721 _____ C:\WINDOWS\comsetup.log
2015-08-02 16:27 - 2015-05-14 08:18 - 00003240 _____ C:\WINDOWS\System32\Tasks\ParetoLogic Registration3
2015-08-02 16:27 - 2015-05-14 08:17 - 00003362 _____ C:\WINDOWS\System32\Tasks\ParetoLogic Update Version3
2015-08-02 16:27 - 2015-05-14 08:17 - 00003028 _____ C:\WINDOWS\System32\Tasks\ParetoLogic Update Version3 Startup Task
2015-08-02 16:27 - 2015-05-14 08:17 - 00002656 _____ C:\WINDOWS\System32\Tasks\PC Health Advisor Defrag
2015-08-02 16:27 - 2015-05-14 08:17 - 00002642 _____ C:\WINDOWS\System32\Tasks\PC Health Advisor
2015-08-02 16:27 - 2014-12-26 11:50 - 00003384 _____ C:\WINDOWS\System32\Tasks\avastBCLRestartS-1-5-21-4050669261-292766531-4265836775-1001
2015-08-02 16:27 - 2014-12-25 10:24 - 00003996 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2015-08-02 16:27 - 2014-12-24 17:18 - 00002918 _____ C:\WINDOWS\System32\Tasks\APSnotifierPP3
2015-08-02 16:27 - 2014-12-24 17:17 - 00002920 _____ C:\WINDOWS\System32\Tasks\APSnotifierPP1
2015-08-02 16:27 - 2014-12-24 17:17 - 00002918 _____ C:\WINDOWS\System32\Tasks\APSnotifierPP2
2015-08-02 16:27 - 2014-01-15 22:05 - 00003596 _____ C:\WINDOWS\System32\Tasks\{32BC62D8-A644-42E4-9369-64007735E10E}
2015-08-02 16:27 - 2013-12-29 18:27 - 00003340 _____ C:\WINDOWS\System32\Tasks\bench-sys
2015-08-02 16:27 - 2013-12-29 18:27 - 00003320 _____ C:\WINDOWS\System32\Tasks\bench-S-1-5-21-4050669261-292766531-4265836775-1001
2015-08-02 16:27 - 2013-12-19 01:04 - 00023208 _____ C:\WINDOWS\system32\emptyregdb.dat
2015-08-02 16:27 - 2013-12-12 14:45 - 00003506 _____ C:\WINDOWS\System32\Tasks\AmiUpdXp
2015-08-02 16:27 - 2013-11-20 12:59 - 00004456 _____ C:\WINDOWS\System32\Tasks\Feven 1.7-updater
2015-08-02 16:27 - 2013-11-20 12:58 - 00004358 _____ C:\WINDOWS\System32\Tasks\Feven 1.7-codedownloader
2015-08-02 16:27 - 2013-11-20 12:58 - 00004258 _____ C:\WINDOWS\System32\Tasks\Feven 1.7-enabler
2015-08-02 16:27 - 2013-08-21 21:46 - 00003708 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4050669261-292766531-4265836775-1001
2015-08-02 16:27 - 2013-04-26 08:19 - 00003704 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4050669261-292766531-4265836775-500
2015-08-02 16:22 - 2015-07-10 13:04 - 00000000 __RHD C:\Users\Public\Libraries
2015-08-02 16:12 - 2015-07-10 18:28 - 00000000 ____D C:\WINDOWS\ShellNew
2015-08-02 16:12 - 2015-07-10 18:23 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep
2015-08-02 16:12 - 2015-07-10 11:05 - 00065536 ___SH C:\WINDOWS\system32\config\ELAM
2015-08-02 16:12 - 2015-06-01 11:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Flash Player Pro
2015-08-02 16:12 - 2015-02-09 00:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ma-config.com
2015-08-02 16:12 - 2015-01-29 23:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-08-02 16:12 - 2014-12-24 16:54 - 00000000 ____D C:\WINDOWS\SysWOW64\codecruby32
2015-08-02 16:12 - 2014-01-26 23:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn
2015-08-02 16:12 - 2014-01-16 09:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SocialDownloader
2015-08-02 16:12 - 2014-01-04 00:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX
2015-08-02 16:12 - 2014-01-04 00:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xvid
2015-08-02 16:12 - 2014-01-04 00:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter
2015-08-02 16:12 - 2013-12-19 02:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Folder Colorizer
2015-08-02 16:12 - 2013-12-06 15:25 - 00000000 ____D C:\WINDOWS\system32\log
2015-08-02 16:12 - 2013-10-27 12:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2015-08-02 16:12 - 2013-09-05 16:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-08-02 16:12 - 2013-09-04 15:54 - 00000000 ____D C:\Users\elisabeth guillien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maxthon Cloud Browser
2015-08-02 16:12 - 2013-09-03 08:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2015-08-02 16:12 - 2013-04-26 08:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SRS Labs
2015-08-02 16:12 - 2013-02-17 21:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel AppUp(R) center
2015-08-02 16:12 - 2013-02-17 20:20 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA
2015-08-02 16:09 - 2015-07-10 13:05 - 00004362 _____ C:\WINDOWS\DtcInstall.log
2015-08-02 16:09 - 2013-08-22 15:36 - 00000000 ____D C:\Users\Default.migrated
2015-08-02 16:06 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2015-08-02 16:06 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2015-08-02 16:06 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2015-08-02 16:06 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2015-08-02 16:06 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\spool
2015-08-02 16:06 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\oobe
2015-08-02 16:06 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2015-08-02 16:06 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\IME
2015-08-02 16:06 - 2014-01-15 21:55 - 00000000 ____D C:\WINDOWS\SysWOW64\SearchProtect
2015-08-02 16:06 - 2013-09-02 15:06 - 00000000 __SHD C:\WINDOWS\SysWOW64\AI_RecycleBin
2015-08-02 16:06 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2015-08-02 16:06 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2015-08-02 16:06 - 2013-04-26 08:34 - 00000000 ____D C:\WINDOWS\SysWOW64\sda
2015-08-02 16:05 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\MediaViewer
2015-08-02 16:04 - 2015-07-10 15:19 - 00000000 ____D C:\WINDOWS\DigitalLocker
2015-08-02 16:04 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\InputMethod
2015-08-02 16:04 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\Cursors
2015-08-02 16:04 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-08-02 16:04 - 2014-03-08 16:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
2015-08-02 16:04 - 2013-09-06 11:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics
2015-08-02 16:04 - 2013-09-06 11:04 - 00000000 ____D C:\Program Files (x86)\IObit
2015-08-02 16:04 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\ADFS
2015-08-02 16:04 - 2013-04-26 08:28 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2015-08-02 16:04 - 2013-02-17 20:20 - 00000000 ____D C:\Program Files (x86)\TOSHIBA
2015-08-02 16:04 - 2013-02-17 20:19 - 00000000 ____D C:\ProgramData\PRICache
2015-08-02 16:03 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\Recovery
2015-08-02 16:03 - 2013-08-22 17:36 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy
2015-08-02 16:02 - 2013-12-05 09:33 - 00000000 ____D C:\Users\elisabeth guillien\AppData\Roaming\IObit
2015-08-02 16:00 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2015-08-02 15:21 - 2013-12-19 01:04 - 01579500 _____ C:\WINDOWS\WindowsUpdate (1).log
2015-08-02 15:11 - 2015-07-10 19:02 - 00000000 ___HD C:\$Windows.~BT

==================== Fichiers à la racine de certains dossiers =======

2013-09-02 21:52 - 2014-12-24 16:57 - 0003918 _____ () C:\Users\elisabeth guillien\AppData\Roaming\Bubble Dock.boostrap.log
2013-09-02 21:52 - 2014-12-24 16:57 - 0035274 _____ () C:\Users\elisabeth guillien\AppData\Roaming\Bubble Dock.installation.log
2013-10-04 21:02 - 2015-02-04 23:11 - 0000227 _____ () C:\Users\elisabeth guillien\AppData\Roaming\WB.CFG
2014-01-01 13:02 - 2014-01-01 13:02 - 0000005 _____ () C:\Users\elisabeth guillien\AppData\Roaming\WBPU-Q5-TTL.DAT
2013-10-04 21:02 - 2014-01-31 11:02 - 0000005 _____ () C:\Users\elisabeth guillien\AppData\Roaming\WBPU-TTL.DAT
2014-12-24 16:52 - 2014-12-24 16:52 - 0000097 _____ () C:\Users\elisabeth guillien\AppData\Roaming\WindApp.boostrap.log
2014-12-24 16:57 - 2014-12-24 16:57 - 0000078 _____ () C:\Users\elisabeth guillien\AppData\Roaming\WindApp.installation.log
2013-10-20 16:46 - 2013-10-20 16:46 - 0423709 _____ () C:\Users\elisabeth guillien\AppData\Local\mysearchdial_speedial_v9.0.2.crx
2014-01-06 10:46 - 2014-01-06 10:46 - 0007605 _____ () C:\Users\elisabeth guillien\AppData\Local\Resmon.ResmonCfg

Certains fichiers dans TEMP:
====================
C:\Users\ADMINI~1\AppData\Local\Temp\PresentationCore.dll
C:\Users\ADMINI~1\AppData\Local\Temp\PresentationFramework.dll
C:\Users\ADMINI~1\AppData\Local\Temp\ReachFramework.dll
C:\Users\ADMINI~1\AppData\Local\Temp\UIAutomationProvider.dll
C:\Users\ADMINI~1\AppData\Local\Temp\UIAutomationTypes.dll
C:\Users\ADMINI~1\AppData\Local\Temp\WindowsBase.dll
C:\Users\ADMINI~1\AppData\Local\Temp\WindowsFormsIntegration.dll


==================== Bamital & volsnap =================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement
C:\WINDOWS\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement


LastRegBack: 2015-08-24 13:15

==================== Fin de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité