cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-10-2017
Ran by Benali SARI (administrator) on LAPTOP-R9HDGQCK (20-10-2017 23:41:35)
Running from C:\Users\Benali SARI\Downloads
Loaded Profiles: Benali SARI (Available Profiles: defaultuser0 & Benali SARI)
Platform: Windows 10 Home Version 1607 14393.1770 (X64) Language: English (United Kingdom)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\119750.inf_amd64_0e9d45c5bf201ae2\igfxCUIService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\119750.inf_amd64_0e9d45c5bf201ae2\IntelCpHDCPSvc.exe
(Realtek Semiconductor Corp.) C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTDevMgr.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe
() C:\ProgramData\MobileBrServ\mbbService.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\119750.inf_amd64_0e9d45c5bf201ae2\IntelCpHeciSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(McAfee, Inc.) C:\Program Files\mcafee\MfeAV\MfeAVSvc.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\VSCore_15_7\mcapexe.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\mcsvchost\McSvHost.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\CSP\2.5.312.0\McCSPServiceHost.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe
(HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(HP Inc.) C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe
(HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(CyberLink) C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\119750.inf_amd64_0e9d45c5bf201ae2\igfxEM.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDTouch.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(WinZip Computing, S.L.) C:\Program Files (x86)\WinZip\WzPreloader.exe
(HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe
(HP) C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe
(HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\SkypeHost.exe
() C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1705.1301.0_x64__8wekyb3d8bbwe\Calculator.exe
(Intel Security, Inc.) C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Corporation) C:\Windows\HelpPane.exe
(McAfee, Inc.) C:\Program Files\mcafee\vul\McVulCtr.exe
(McAfee, Inc.) C:\Program Files\mcafee\vul\McVulAlert.exe
(HP) C:\Program Files (x86)\HP\Shared\hpqwmiex.exe
(Realtek Semiconductor Corporation) C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTServer.exe
(HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\McUICnt.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.13610.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
() C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.17083.18321.0_x64__8wekyb3d8bbwe\Music.UI.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(McAfee LLC.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => FILES\REALTEK\AUDIO\HDA\RTKNGUI64.EXE" -S
HKLM\...\Run: [RtHDVBg_Session] => FILES\REALTEK\AUDIO\HDA\RAVBG64.EXE" /SESSION
HKLM\...\Run: [StartCN] => FILES\AMD\CNEXT\CNEXT\RADEONSETTINGS.EXE" ATLOGON
HKLM\...\Run: [ETDCtrl] => FILES%\ELANTECH\ETDCTRL.EXE
HKLM\...\Run: [BtServer] => FILES (X86)\REALTEK\REALTEK BLUETOOTH\BTSERVER.EXE"
HKLM\...\Run: [AdobeAAMUpdater-1.0] => FILES (X86)\COMMON FILES\ADOBE\OOBE\PDAPP\UWA\UPDATERSTARTUPUTILITY.EXE"
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [705784 2016-06-20] (HP Inc.)
HKLM-x32\...\Run: [HPRadioMgr] => C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe [324488 2016-08-02] (HP)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation)
HKU\S-1-5-21-2424798183-2298373094-3797251247-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-2424798183-2298373094-3797251247-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27832272 2017-08-25] (Skype Technologies S.A.)
HKU\S-1-5-21-2424798183-2298373094-3797251247-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9856176 2017-09-20] (Piriform Ltd)
HKU\S-1-5-21-2424798183-2298373094-3797251247-1001\...\Run: [uTorrent] => C:\Users\Benali SARI\AppData\Roaming\uTorrent\uTorrent.exe [1982144 2017-09-29] (BitTorrent Inc.)
HKU\S-1-5-21-2424798183-2298373094-3797251247-1001\...\MountPoints2: {494fda6b-7d31-11e7-9454-28565a944ea2} - "F:\AutoRun.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP JumpStart Launch.lnk [2017-04-21]
ShortcutTarget: HP JumpStart Launch.lnk -> c:\Windows\Installer\{B90CB0DE-2E60-41C4-9857-466EB98192BF}\HPlogo_blue.ico ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Notifications de Mises à jour.lnk [2017-10-13]
ShortcutTarget: Notifications de Mises à jour.lnk -> C:\Program Files (x86)\WinZip\WZUpdateNotifier.exe (WinZip Computing, S.L.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WinZip Préchargeur.lnk [2017-10-13]
ShortcutTarget: WinZip Préchargeur.lnk -> C:\Program Files (x86)\WinZip\WzPreloader.exe (WinZip Computing, S.L.)
GroupPolicy: Restriction - Chrome <==== ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.8.1 192.168.8.1
Tcpip\..\Interfaces\{305af4af-5c07-4ace-a89c-e13e2df4d4c9}: [DhcpNameServer] 192.168.8.1 192.168.8.1
Tcpip\..\Interfaces\{49ffbac0-9038-47ad-b8d7-38ccf5aeacaa}: [DhcpNameServer] 192.168.8.1 192.168.8.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com?pc=HCTE
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com?pc=HCTE
HKU\S-1-5-21-2424798183-2298373094-3797251247-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-2424798183-2298373094-3797251247-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com?pc=HCTE
SearchScopes: HKLM -> {313757FF-FA03-4883-A154-A4FAF0506B1D} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {313757FF-FA03-4883-A154-A4FAF0506B1D} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-2424798183-2298373094-3797251247-1001 -> {313757FF-FA03-4883-A154-A4FAF0506B1D} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2016-08-05] (HP Inc.)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO-x32: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-08-05] (HP Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-09-06] (McAfee, Inc.)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2017-09-25] (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll [2017-09-25] (McAfee, Inc.)

FireFox:
========
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF Extension: (McAfee WebAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2017-07-20]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: (McAfee Anti-Spam Thunderbird Extension) - C:\Program Files\McAfee\MSK [2017-09-15] [not signed]
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2017-09-25] ()
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2017-09-25] ()
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-08-09] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-08-09] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)

Chrome:
=======
CHR NewTab: Default -> Active:"chrome-extension://pmhlmkffjggpegjfalceaojhjclhjbbc/start/index.html"
CHR Profile: C:\Users\Benali SARI\AppData\Local\Google\Chrome\User Data\Default [2017-10-20]
CHR Extension: (Slides) - C:\Users\Benali SARI\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Docs) - C:\Users\Benali SARI\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Google Drive) - C:\Users\Benali SARI\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-10-13]
CHR Extension: (YouTube) - C:\Users\Benali SARI\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-10-13]
CHR Extension: (Handy Tab) - C:\Users\Benali SARI\AppData\Local\Google\Chrome\User Data\Default\Extensions\clgckgfbhciacomhlchmgdnplmdiadbj [2017-10-20]
CHR Extension: (Sheets) - C:\Users\Benali SARI\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Google Docs hors connexion) - C:\Users\Benali SARI\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-10-13]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Benali SARI\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-10-13]
CHR Extension: (Gmail) - C:\Users\Benali SARI\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-10-13]
CHR Extension: (Chrome Media Router) - C:\Users\Benali SARI\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-10-13]
CHR Extension: (Game of Thrones HD Wallpapers New Tab Theme) - C:\Users\Benali SARI\AppData\Local\Google\Chrome\User Data\Default\Extensions\pmhlmkffjggpegjfalceaojhjclhjbbc [2017-10-15]
CHR Profile: C:\Users\Benali SARI\AppData\Local\Google\Chrome\User Data\System Profile [2017-10-13]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [clgckgfbhciacomhlchmgdnplmdiadbj] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [125656 2016-09-20] (Realtek Semiconductor Corp.)
S3 ClientAnalyticsService; C:\Program Files\Common Files\McAfee\ClientAnalytics\Legacy\McClientAnalytics.exe [1511728 2017-08-10] (McAfee, Inc.)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-08-09] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2017-08-09] (Dropbox, Inc.)
R2 esifsvc; C:\windows\system32\Intel\DPTF\esif_uf.exe [2208888 2016-09-23] (Intel Corporation)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144616 2016-10-14] (ELAN Microelectronics Corp.)
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [641520 2017-02-22] (McAfee, Inc.)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1268736 2016-10-05] (HP Inc.) [File not signed]
R2 HPJumpStartBridge; C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [471040 2017-05-23] (HP Inc.)
R3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-04] (HP)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [323952 2017-09-27] (HP Inc.)
R2 HPWMISVC; c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [631800 2016-06-20] (HP Inc.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [17976 2016-09-20] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [987432 2016-07-26] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [177440 2016-08-30] (Intel Corporation)
R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [590880 2017-09-06] (McAfee, Inc.)
R2 McAPExe; C:\Program Files\Common Files\McAfee\VSCore_15_7\McApExe.exe [994280 2017-09-14] (McAfee, Inc.)
S3 McAWFwk; c:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [419096 2016-04-01] (McAfee, Inc.)
R2 McBootDelayStartSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [641520 2017-02-22] (McAfee, Inc.)
R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\2.5.312.0\\McCSPServiceHost.exe [2139832 2017-05-31] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [641520 2017-02-22] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [641520 2017-02-22] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [641520 2017-02-22] (McAfee, Inc.)
R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe [242640 2017-06-21] (McAfee, Inc.)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [394704 2017-06-21] (McAfee, Inc.)
R3 mfevtp; C:\windows\system32\mfevtps.exe [350160 2017-06-21] (McAfee, Inc.)
R2 Mobile Broadband HL Service; C:\ProgramData\MobileBrServ\mbbservice.exe [242264 2015-09-23] ()
R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1546904 2017-08-17] (McAfee, Inc.)
S3 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [641520 2017-02-22] (McAfee, Inc.)
R2 PEFService; C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe [1046456 2017-09-24] (Intel Security, Inc.)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [614664 2016-03-23] (CyberLink)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [314624 2016-09-02] (Realtek Semiconductor)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347320 2017-04-28] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2017-08-08] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdkmdag; C:\windows\System32\DriverStore\FileRepository\c0306875.inf_amd64_ab6584c19704aa5d\atikmdag.sys [26542592 2016-09-13] (Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\windows\System32\DriverStore\FileRepository\c0306875.inf_amd64_ab6584c19704aa5d\atikmpag.sys [502272 2016-09-13] (Advanced Micro Devices, Inc.)
R3 cfwids; C:\windows\System32\drivers\cfwids.sys [77800 2017-06-26] (McAfee, Inc.)
R3 dg_ssudbus; C:\windows\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd.)
R3 dptf_cpu; C:\windows\System32\drivers\dptf_cpu.sys [66624 2016-09-23] (Intel Corporation)
R3 esif_lf; C:\windows\system32\DRIVERS\esif_lf.sys [350272 2016-09-23] (Intel Corporation)
R3 ETDSMBus; C:\windows\System32\drivers\ETDSMBus.sys [32856 2016-10-14] (ELAN Microelectronic Corp.)
S3 HipShieldK; C:\windows\System32\drivers\HipShieldK.sys [209608 2017-08-07] (McAfee, Inc.)
R3 mfeaack; C:\windows\System32\drivers\mfeaack.sys [487408 2017-06-26] (McAfee, Inc.)
R3 mfeavfk; C:\windows\System32\drivers\mfeavfk.sys [355312 2017-06-26] (McAfee, Inc.)
U3 mfeavfk01; no ImagePath
S0 mfeelamk; C:\windows\System32\drivers\mfeelamk.sys [84544 2017-06-26] (McAfee, Inc.)
R3 mfefirek; C:\windows\System32\drivers\mfefirek.sys [506352 2017-06-26] (McAfee, Inc.)
R0 mfehidk; C:\windows\System32\drivers\mfehidk.sys [933360 2017-06-26] (McAfee, Inc.)
R3 mfencbdc; C:\windows\System32\DRIVERS\mfencbdc.sys [504792 2017-06-27] (McAfee LLC.)
S3 mfencrk; C:\windows\System32\DRIVERS\mfencrk.sys [108504 2017-06-27] (McAfee LLC.)
R3 mfeplk; C:\windows\System32\drivers\mfeplk.sys [116208 2017-06-26] (McAfee, Inc.)
R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [111608 2017-02-14] (McAfee, Inc.)
R0 mfewfpk; C:\windows\System32\drivers\mfewfpk.sys [253424 2017-06-26] (McAfee, Inc.)
S3 NetAdapterCx; C:\windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 rt640x64; C:\windows\System32\drivers\rt640x64.sys [943112 2016-08-25] (Realtek )
R3 RtkBtFilter; C:\windows\system32\DRIVERS\RtkBtfilter.sys [723920 2017-07-20] (Realtek Semiconductor Corporation)
S3 RTSUER; C:\windows\system32\Drivers\RtsUer.sys [418784 2016-08-30] (Realsil Semiconductor Corporation)
R3 RTWlanE; C:\windows\System32\drivers\rtwlane.sys [6895984 2017-08-17] (Realtek Semiconductor Corporation )
R3 ssudmdm; C:\windows\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\windows\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
S3 WdFilter; C:\windows\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
R3 WirelessButtonDriver64; C:\windows\system32\DRIVERS\WirelessButtonDriver64.sys [32832 2016-08-01] (HP)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-10-20 23:41 - 2017-10-20 23:42 - 000024643 _____ C:\Users\Benali SARI\Downloads\FRST.txt
2017-10-20 23:41 - 2017-10-20 23:41 - 000000000 ____D C:\FRST
2017-10-20 23:40 - 2017-10-20 23:41 - 002402816 _____ (Farbar) C:\Users\Benali SARI\Downloads\FRST64.exe
2017-10-20 23:39 - 2017-10-20 23:39 - 001799168 _____ (Farbar) C:\Users\Benali SARI\Downloads\FRST.exe
2017-10-20 23:33 - 2017-10-20 23:33 - 000000498 _____ C:\DelFix.txt
2017-10-20 21:29 - 2017-10-20 21:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2017-10-20 19:02 - 2017-10-20 19:02 - 000012177 _____ C:\Users\Benali SARI\Downloads\vice-principals-s02e05-french-hdtv (1).torrent
2017-10-17 16:21 - 2017-10-17 16:21 - 971045439 _____ C:\windows\MEMORY.DMP
2017-10-17 16:21 - 2017-10-17 16:21 - 000821908 _____ C:\windows\Minidump\101717-44765-01.dmp
2017-10-17 16:04 - 2017-10-17 16:49 - 380355376 ____R C:\Users\Benali SARI\Downloads\[ Torrent9.tv ] Lucifer.S02E18.FiNAL.FRENCH.HDTV.XViD-EXTREME.avi
2017-10-17 16:03 - 2017-10-17 16:54 - 561163500 ____R C:\Users\Benali SARI\Downloads\[ Torrent9.tv ] The.Deuce.S01E06.FRENCH.HDTV.XViD-EXTREME.avi
2017-10-17 16:03 - 2017-10-17 16:39 - 376228364 ____R C:\Users\Benali SARI\Downloads\[ Torrent9.tv ] Lucifer.S02E17.FRENCH.HDTV.XViD-EXTREME.avi
2017-10-17 16:03 - 2017-10-17 16:32 - 245127610 ____R C:\Users\Benali SARI\Downloads\[ Torrent9.tv ] Vice.Principals.S02E05.FRENCH.HDTV.XViD-EXTREME.avi
2017-10-17 16:02 - 2017-10-17 16:02 - 000024232 _____ C:\Users\Benali SARI\Downloads\the-deuce-s01e06-french-hdtv.torrent
2017-10-17 16:02 - 2017-10-17 16:02 - 000017336 _____ C:\Users\Benali SARI\Downloads\lucifer-s02e18-final-french-hdtv.torrent
2017-10-17 16:02 - 2017-10-17 16:02 - 000017170 _____ C:\Users\Benali SARI\Downloads\lucifer-s02e17-french-hdtv.torrent
2017-10-17 16:02 - 2017-10-17 16:02 - 000012177 _____ C:\Users\Benali SARI\Downloads\vice-principals-s02e05-french-hdtv.torrent
2017-10-16 15:05 - 2017-10-16 15:05 - 000017090 _____ C:\Users\Benali SARI\Downloads\fear-the-walking-dead-s03e16-final-french-hdtv.torrent
2017-10-16 15:05 - 2017-10-16 15:05 - 000016924 _____ C:\Users\Benali SARI\Downloads\fear-the-walking-dead-s03e15-french-hdtv.torrent
2017-10-15 17:49 - 2017-10-16 16:28 - 1471953170 ____R C:\Users\Benali SARI\Downloads\[ Torrent9.tv ] War.for.the.Planet.of.the.Apes.2017.FRENCH.BDRip.XviD-GZR.avi
2017-10-15 16:10 - 2017-10-15 16:10 - 000058845 _____ C:\Users\Benali SARI\Downloads\la-planete-des-singes-suprematie-french-dvdrip-2017.torrent
2017-10-15 16:09 - 2017-10-15 16:09 - 000031005 _____ C:\Users\Benali SARI\Downloads\the-arena-french-dvdrip-2017.torrent
2017-10-15 16:09 - 2017-10-15 16:09 - 000030598 _____ C:\Users\Benali SARI\Downloads\the-babysitter-french-webrip-2017.torrent
2017-10-13 22:07 - 2017-10-13 22:07 - 008841249 _____ C:\Users\Benali SARI\Desktop\GCAW 2017 Plan BY Sheraton Dammam Hotel.pptx
2017-10-13 19:44 - 2017-10-13 19:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2017-10-13 19:44 - 2017-10-13 19:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2017-10-13 19:43 - 2017-10-13 19:44 - 104801688 _____ (Microsoft Corporation) C:\Users\Benali SARI\Downloads\languagepack2010sp1-kb2460043-x64-fullfile-fr-fr.exe
2017-10-13 19:43 - 2017-10-13 19:43 - 000000000 ____D C:\windows\PCHEALTH
2017-10-13 19:43 - 2017-10-13 19:43 - 000000000 ____D C:\Program Files (x86)\Microsoft Synchronization Services
2017-10-13 19:43 - 2017-10-13 19:43 - 000000000 ____D C:\Program Files (x86)\Microsoft Sync Framework
2017-10-13 19:43 - 2017-10-13 19:43 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2017-10-13 19:42 - 2017-10-13 19:42 - 000000000 ____D C:\windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2017-10-13 19:41 - 2017-10-13 20:12 - 000000000 ____D C:\windows\SHELLNEW
2017-10-13 19:41 - 2017-10-13 19:41 - 000000000 ____D C:\Users\Benali SARI\AppData\Local\Microsoft Help
2017-10-13 19:41 - 2017-10-13 19:41 - 000000000 ____D C:\Program Files\Microsoft Office
2017-10-13 19:41 - 2017-10-13 19:41 - 000000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8
2017-10-13 19:41 - 2017-10-13 19:41 - 000000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2017-10-13 19:40 - 2017-10-13 19:48 - 000000000 ____D C:\Users\Benali SARI\Desktop\MS Office 2010
2017-10-13 19:40 - 2017-10-13 19:40 - 000000000 __RHD C:\MSOCache
2017-10-13 17:17 - 2017-10-13 17:17 - 126925120 ____C (Microsoft Corporation) C:\windows\system32\MRT-KB890830.exe
2017-10-13 17:13 - 2017-09-18 05:59 - 000341344 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2017-10-13 17:13 - 2017-09-18 05:52 - 001845512 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfmp4srcsnk.dll
2017-10-13 17:13 - 2017-09-18 05:52 - 001360464 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfnetsrc.dll
2017-10-13 17:13 - 2017-09-18 05:52 - 001277856 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfasfsrcsnk.dll
2017-10-13 17:13 - 2017-09-18 05:52 - 000981888 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfnetcore.dll
2017-10-13 17:13 - 2017-09-18 05:31 - 000156672 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDeviceRegistration.dll
2017-10-13 17:13 - 2017-09-18 05:29 - 000184320 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserMgrProxy.dll
2017-10-13 17:13 - 2017-09-18 05:28 - 000237056 _____ (Microsoft Corporation) C:\windows\SysWOW64\SyncSettings.dll
2017-10-13 17:13 - 2017-09-18 05:27 - 004615168 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.dll
2017-10-13 17:13 - 2017-09-18 05:26 - 000538112 _____ (Microsoft Corporation) C:\windows\SysWOW64\PCPTpm12.dll
2017-10-13 17:13 - 2017-09-18 05:26 - 000431616 _____ (Microsoft Corporation) C:\windows\SysWOW64\efswrt.dll
2017-10-13 17:13 - 2017-09-18 05:26 - 000298496 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Internal.Management.dll
2017-10-13 17:13 - 2017-09-18 05:26 - 000284672 _____ (Microsoft Corporation) C:\windows\SysWOW64\apprepsync.dll
2017-10-13 17:13 - 2017-09-18 05:26 - 000125952 _____ (Microsoft Corporation) C:\windows\SysWOW64\apprepapi.dll
2017-10-13 17:13 - 2017-09-18 05:25 - 002333184 _____ (Microsoft Corporation) C:\windows\SysWOW64\WsmSvc.dll
2017-10-13 17:13 - 2017-09-18 05:24 - 000819200 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppContracts.dll
2017-10-13 17:13 - 2017-09-18 05:24 - 000755200 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2017-10-13 17:13 - 2017-09-18 05:23 - 000857600 _____ (Microsoft Corporation) C:\windows\SysWOW64\EmailApis.dll
2017-10-13 17:13 - 2017-09-18 05:23 - 000816640 _____ (Microsoft Corporation) C:\windows\SysWOW64\NaturalLanguage6.dll
2017-10-13 17:13 - 2017-09-18 05:23 - 000297472 _____ (Microsoft Corporation) C:\windows\SysWOW64\SearchProtocolHost.exe
2017-10-13 17:13 - 2017-09-18 05:23 - 000238080 _____ (Microsoft Corporation) C:\windows\SysWOW64\AboveLockAppHost.dll
2017-10-13 17:13 - 2017-09-18 05:20 - 002641920 _____ (Microsoft Corporation) C:\windows\SysWOW64\tquery.dll
2017-10-13 17:13 - 2017-09-18 05:20 - 000343040 _____ (Microsoft Corporation) C:\windows\SysWOW64\PlayToDevice.dll
2017-10-13 17:13 - 2017-09-18 05:17 - 000641024 _____ (Microsoft Corporation) C:\windows\SysWOW64\MCRecvSrc.dll
2017-10-13 17:13 - 2017-09-18 05:14 - 002997760 _____ (Microsoft Corporation) C:\windows\SysWOW64\win32kfull.sys
2017-10-13 17:13 - 2017-09-18 05:14 - 002740224 _____ (Microsoft Corporation) C:\windows\SysWOW64\msftedit.dll
2017-10-13 17:13 - 2017-09-18 05:14 - 002649600 _____ (Microsoft Corporation) C:\windows\SysWOW64\CertEnroll.dll
2017-10-13 17:13 - 2017-09-18 05:14 - 001988096 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssrch.dll
2017-10-13 17:13 - 2017-09-18 05:14 - 001599488 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2017-10-13 17:13 - 2017-09-18 05:14 - 001556992 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Immersive.dll
2017-10-13 17:13 - 2017-09-18 05:14 - 001170944 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Speech.dll
2017-10-13 17:13 - 2017-09-18 05:14 - 000827904 _____ (Microsoft Corporation) C:\windows\SysWOW64\twinui.appcore.dll
2017-10-13 17:13 - 2017-09-18 05:14 - 000675840 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Networking.dll
2017-10-13 17:13 - 2017-09-18 05:14 - 000542208 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Networking.Connectivity.dll
2017-10-13 17:13 - 2017-09-18 05:13 - 001013248 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Web.Http.dll
2017-10-13 17:13 - 2017-09-18 05:13 - 000773120 _____ (Microsoft Corporation) C:\windows\SysWOW64\SearchIndexer.exe
2017-10-13 17:13 - 2017-09-18 05:13 - 000751104 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2017-10-13 17:13 - 2017-09-18 05:13 - 000598528 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Web.dll
2017-10-13 17:13 - 2017-09-18 05:13 - 000589312 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Sensors.dll
2017-10-13 17:13 - 2017-09-18 05:11 - 000783360 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSWorkspace.dll
2017-10-13 17:13 - 2017-09-18 05:11 - 000450048 _____ (Microsoft Corporation) C:\windows\SysWOW64\TpmCoreProvisioning.dll
2017-10-13 17:13 - 2017-09-15 01:49 - 001202936 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfmpeg2srcsnk.dll
2017-10-13 17:13 - 2017-09-15 01:31 - 000328192 _____ (Microsoft Corporation) C:\windows\SysWOW64\daxexec.dll
2017-10-13 17:13 - 2017-09-15 01:30 - 000098304 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2017-10-13 17:13 - 2017-03-04 09:28 - 000224256 _____ (Microsoft Corporation) C:\windows\SysWOW64\ExSMime.dll
2017-10-13 17:13 - 2017-03-04 09:24 - 000088576 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDeviceRegistration.Ngc.dll
2017-10-13 17:13 - 2017-03-04 09:23 - 000299520 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDataAccountApis.dll
2017-10-13 17:13 - 2017-03-04 09:18 - 000567808 _____ (Microsoft Corporation) C:\windows\SysWOW64\ChatApis.dll
2017-10-13 17:13 - 2017-03-04 09:00 - 000862208 _____ (Microsoft Corporation) C:\windows\SysWOW64\SettingSyncCore.dll
2017-10-13 17:13 - 2017-03-04 09:00 - 000711680 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Search.dll
2017-10-13 17:12 - 2017-09-18 06:27 - 000218976 _____ (Microsoft Corporation) C:\windows\SysWOW64\offlinesam.dll
2017-10-13 17:12 - 2017-09-18 06:09 - 002213760 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2017-10-13 17:12 - 2017-09-18 06:05 - 000497424 _____ (Microsoft Corporation) C:\windows\SysWOW64\dnsapi.dll
2017-10-13 17:12 - 2017-09-18 06:04 - 001706488 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2017-10-13 17:12 - 2017-09-18 06:04 - 000918304 _____ (Microsoft Corporation) C:\windows\SysWOW64\ucrtbase.dll
2017-10-13 17:12 - 2017-09-18 06:03 - 000791272 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2017-10-13 17:12 - 2017-09-18 06:02 - 007213464 _____ (Microsoft Corporation) C:\windows\system32\windows.storage.dll
2017-10-13 17:12 - 2017-09-18 06:02 - 001860288 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Store.dll
2017-10-13 17:12 - 2017-09-18 06:00 - 001072248 _____ (Microsoft Corporation) C:\windows\system32\mfnetcore.dll
2017-10-13 17:12 - 2017-09-18 05:59 - 022220864 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2017-10-13 17:12 - 2017-09-18 05:59 - 008173672 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Protection.PlayReady.dll
2017-10-13 17:12 - 2017-09-18 05:59 - 004260072 _____ (Microsoft Corporation) C:\windows\system32\mfcore.dll
2017-10-13 17:12 - 2017-09-18 05:59 - 001983408 _____ (Microsoft Corporation) C:\windows\system32\mfmp4srcsnk.dll
2017-10-13 17:12 - 2017-09-18 05:59 - 001702392 _____ (Microsoft Corporation) C:\windows\system32\mfasfsrcsnk.dll
2017-10-13 17:12 - 2017-09-18 05:55 - 005722320 _____ (Microsoft Corporation) C:\windows\SysWOW64\windows.storage.dll
2017-10-13 17:12 - 2017-09-18 05:55 - 001431240 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Store.dll
2017-10-13 17:12 - 2017-09-18 05:54 - 001980768 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6.dll
2017-10-13 17:12 - 2017-09-18 05:52 - 020967840 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2017-10-13 17:12 - 2017-09-18 05:52 - 006672680 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2017-10-13 17:12 - 2017-09-18 05:52 - 004023560 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfcore.dll
2017-10-13 17:12 - 2017-09-18 05:51 - 000178016 _____ (Microsoft Corporation) C:\windows\SysWOW64\basecsp.dll
2017-10-13 17:12 - 2017-09-18 05:49 - 001435896 _____ (Microsoft Corporation) C:\windows\SysWOW64\user32.dll
2017-10-13 17:12 - 2017-09-18 05:49 - 001412128 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32full.dll
2017-10-13 17:12 - 2017-09-18 05:49 - 001260784 _____ (Microsoft Corporation) C:\windows\SysWOW64\msctf.dll
2017-10-13 17:12 - 2017-09-18 05:48 - 000117792 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2017-10-13 17:12 - 2017-09-18 05:34 - 000095232 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDataTimeUtil.dll
2017-10-13 17:12 - 2017-09-18 05:33 - 000135168 _____ (Microsoft Corporation) C:\windows\SysWOW64\t2embed.dll
2017-10-13 17:12 - 2017-09-18 05:33 - 000119808 _____ (Microsoft Corporation) C:\windows\system32\UserDataTimeUtil.dll
2017-10-13 17:12 - 2017-09-18 05:32 - 000041472 _____ (Microsoft Corporation) C:\windows\system32\Drivers\BasicRender.sys
2017-10-13 17:12 - 2017-09-18 05:31 - 006288384 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.dll
2017-10-13 17:12 - 2017-09-18 05:31 - 000519168 _____ (Microsoft Corporation) C:\windows\SysWOW64\ngccredprov.dll
2017-10-13 17:12 - 2017-09-18 05:31 - 000239104 _____ (Microsoft Corporation) C:\windows\system32\MusNotification.exe
2017-10-13 17:12 - 2017-09-18 05:31 - 000123904 _____ (Microsoft Corporation) C:\windows\system32\mssprxy.dll
2017-10-13 17:12 - 2017-09-18 05:30 - 000232448 _____ (Microsoft Corporation) C:\windows\SysWOW64\scksp.dll
2017-10-13 17:12 - 2017-09-18 05:30 - 000147456 _____ (Microsoft Corporation) C:\windows\SysWOW64\VCardParser.dll
2017-10-13 17:12 - 2017-09-18 05:28 - 000406016 _____ (Microsoft Corporation) C:\windows\SysWOW64\dsreg.dll
2017-10-13 17:12 - 2017-09-18 05:27 - 000719872 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WdiWiFi.sys
2017-10-13 17:12 - 2017-09-18 05:27 - 000590336 _____ (Microsoft Corporation) C:\windows\system32\efswrt.dll
2017-10-13 17:12 - 2017-09-18 05:27 - 000349184 _____ (Microsoft Corporation) C:\windows\system32\SearchProtocolHost.exe
2017-10-13 17:12 - 2017-09-18 05:27 - 000295424 _____ (Microsoft Corporation) C:\windows\system32\updatehandlers.dll
2017-10-13 17:12 - 2017-09-18 05:26 - 000367104 _____ (Microsoft Corporation) C:\windows\SysWOW64\FirewallAPI.dll
2017-10-13 17:12 - 2017-09-18 05:26 - 000283136 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb10.sys
2017-10-13 17:12 - 2017-09-18 05:25 - 000461824 _____ (Microsoft Corporation) C:\windows\SysWOW64\webio.dll
2017-10-13 17:12 - 2017-09-18 05:24 - 007626240 _____ (Microsoft Corporation) C:\windows\SysWOW64\twinui.dll
2017-10-13 17:12 - 2017-09-18 05:24 - 000713216 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srv2.sys
2017-10-13 17:12 - 2017-09-18 05:24 - 000409600 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srv.sys
2017-10-13 17:12 - 2017-09-18 05:23 - 000636928 _____ (Microsoft Corporation) C:\windows\SysWOW64\winhttp.dll
2017-10-13 17:12 - 2017-09-18 05:23 - 000287744 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptngc.dll
2017-10-13 17:12 - 2017-09-18 05:22 - 001323008 _____ (Microsoft Corporation) C:\windows\SysWOW64\wsp_fs.dll
2017-10-13 17:12 - 2017-09-18 05:22 - 001137664 _____ (Microsoft Corporation) C:\windows\SysWOW64\wsp_health.dll
2017-10-13 17:12 - 2017-09-18 05:20 - 000284160 _____ (Microsoft Corporation) C:\windows\system32\AboveLockAppHost.dll
2017-10-13 17:12 - 2017-09-18 05:19 - 002750976 _____ (Microsoft Corporation) C:\windows\SysWOW64\mispace.dll
2017-10-13 17:12 - 2017-09-18 05:19 - 000549376 _____ (Microsoft Corporation) C:\windows\system32\usocore.dll
2017-10-13 17:12 - 2017-09-18 05:19 - 000303616 _____ (Microsoft Corporation) C:\windows\SysWOW64\mcbuilder.exe
2017-10-13 17:12 - 2017-09-18 05:19 - 000161792 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpchttp.dll
2017-10-13 17:12 - 2017-09-18 05:18 - 008077312 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll
2017-10-13 17:12 - 2017-09-18 05:18 - 007470592 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll
2017-10-13 17:12 - 2017-09-18 05:18 - 001145344 _____ (Microsoft Corporation) C:\windows\system32\EmailApis.dll
2017-10-13 17:12 - 2017-09-18 05:17 - 003401216 _____ (Microsoft Corporation) C:\windows\system32\tquery.dll
2017-10-13 17:12 - 2017-09-18 05:16 - 004596224 _____ (Microsoft Corporation) C:\windows\system32\xpsrchvw.exe
2017-10-13 17:12 - 2017-09-18 05:16 - 003520512 _____ (Microsoft Corporation) C:\windows\SysWOW64\xpsrchvw.exe
2017-10-13 17:12 - 2017-09-18 05:15 - 002538496 _____ (Microsoft Corporation) C:\windows\system32\mssrch.dll
2017-10-13 17:12 - 2017-09-18 05:15 - 002370048 _____ (Microsoft Corporation) C:\windows\system32\wlansvc.dll
2017-10-13 17:12 - 2017-09-18 05:14 - 006474752 _____ (Microsoft Corporation) C:\windows\SysWOW64\mspaint.exe
2017-10-13 17:12 - 2017-09-18 05:14 - 002682880 _____ (Microsoft Corporation) C:\windows\SysWOW64\netshell.dll
2017-10-13 17:12 - 2017-09-18 05:14 - 002483712 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2017-10-13 17:12 - 2017-09-18 05:14 - 000903680 _____ (Microsoft Corporation) C:\windows\system32\SearchIndexer.exe
2017-10-13 17:12 - 2017-09-18 05:14 - 000765440 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Sensors.dll
2017-10-13 17:12 - 2017-09-18 05:14 - 000657408 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2017-10-13 17:12 - 2017-09-18 05:14 - 000392192 _____ (Microsoft Corporation) C:\windows\system32\wuuhext.dll
2017-10-13 17:12 - 2017-09-18 05:13 - 000886272 _____ (Microsoft Corporation) C:\windows\SysWOW64\aadtb.dll
2017-10-13 17:12 - 2017-09-18 05:13 - 000164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\netprofm.dll
2017-10-13 17:12 - 2017-09-18 05:12 - 000532992 _____ (Microsoft Corporation) C:\windows\system32\TpmCoreProvisioning.dll
2017-10-13 17:12 - 2017-09-15 02:05 - 001302136 _____ (Microsoft Corporation) C:\windows\system32\mfmpeg2srcsnk.dll
2017-10-13 17:12 - 2017-09-15 01:59 - 000096064 _____ (Microsoft Corporation) C:\windows\SysWOW64\dmcmnutils.dll
2017-10-13 17:12 - 2017-09-15 01:52 - 000136032 _____ (Microsoft Corporation) C:\windows\SysWOW64\CloudExperienceHostUser.dll
2017-10-13 17:12 - 2017-09-15 01:34 - 000108544 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidbth.sys
2017-10-13 17:12 - 2017-09-15 01:32 - 000326144 _____ (Microsoft Corporation) C:\windows\system32\CertEnrollUI.dll
2017-10-13 17:12 - 2017-09-15 01:32 - 000127488 _____ (Microsoft Corporation) C:\windows\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2017-10-13 17:12 - 2017-09-15 01:30 - 000291840 _____ (Microsoft Corporation) C:\windows\SysWOW64\CertEnrollUI.dll
2017-10-13 17:12 - 2017-09-15 01:30 - 000194560 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSWB7.dll
2017-10-13 17:12 - 2017-09-15 01:30 - 000185344 _____ (Microsoft Corporation) C:\windows\SysWOW64\authz.dll
2017-10-13 17:12 - 2017-09-15 01:30 - 000172032 _____ (Microsoft Corporation) C:\windows\SysWOW64\dinput8.dll
2017-10-13 17:12 - 2017-09-15 01:28 - 000311296 _____ (Microsoft Corporation) C:\windows\SysWOW64\Wldap32.dll
2017-10-13 17:12 - 2017-09-15 01:28 - 000136192 _____ (Microsoft Corporation) C:\windows\SysWOW64\dinput.dll
2017-10-13 17:12 - 2017-09-15 01:27 - 000662528 _____ (Microsoft Corporation) C:\windows\SysWOW64\netlogon.dll
2017-10-13 17:12 - 2017-09-15 01:26 - 001167360 _____ (Microsoft Corporation) C:\windows\SysWOW64\certutil.exe
2017-10-13 17:12 - 2017-09-15 01:26 - 000636928 _____ (Microsoft Corporation) C:\windows\SysWOW64\SmartcardCredentialProvider.dll
2017-10-13 17:12 - 2017-09-15 01:26 - 000359424 _____ (Microsoft Corporation) C:\windows\SysWOW64\certreq.exe
2017-10-13 17:12 - 2017-09-15 01:25 - 000529920 _____ (Microsoft Corporation) C:\windows\SysWOW64\StructuredQuery.dll
2017-10-13 17:12 - 2017-09-15 01:18 - 003299840 _____ (Microsoft Corporation) C:\windows\system32\mstsc.exe
2017-10-13 17:12 - 2017-09-15 01:15 - 003106304 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstsc.exe
2017-10-13 17:12 - 2017-09-14 05:04 - 000640512 _____ (Microsoft Corporation) C:\windows\SysWOW64\mswstr10.dll
2017-10-13 17:12 - 2017-09-14 05:04 - 000345088 _____ (Microsoft Corporation) C:\windows\SysWOW64\msexcl40.dll
2017-10-13 17:12 - 2017-09-14 05:04 - 000008704 _____ (Microsoft Corporation) C:\windows\SysWOW64\msjint40.dll
2017-10-13 17:12 - 2017-03-04 09:25 - 000748544 _____ (Microsoft Corporation) C:\windows\system32\ChatApis.dll
2017-10-13 17:12 - 2017-03-04 09:23 - 001184256 _____ (Microsoft Corporation) C:\windows\system32\Unistore.dll
2017-10-13 17:12 - 2017-03-04 09:16 - 000368128 _____ (Microsoft Corporation) C:\windows\SysWOW64\puiobj.dll
2017-10-13 17:11 - 2017-09-18 06:09 - 000133984 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2017-10-13 17:11 - 2017-09-18 06:08 - 000998920 _____ (Microsoft Corporation) C:\windows\system32\ucrtbase.dll
2017-10-13 17:11 - 2017-09-18 06:05 - 001177688 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2017-10-13 17:11 - 2017-09-18 06:05 - 000172536 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2017-10-13 17:11 - 2017-09-18 06:01 - 000431456 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rdbss.sys
2017-10-13 17:11 - 2017-09-18 06:01 - 000223072 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb20.sys
2017-10-13 17:11 - 2017-09-18 05:56 - 000057408 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2017-10-13 17:11 - 2017-09-18 05:35 - 000372736 _____ (Microsoft Corporation) C:\windows\system32\RDXTaskFactory.dll
2017-10-13 17:11 - 2017-09-18 05:32 - 000028672 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll
2017-10-13 17:11 - 2017-09-18 05:29 - 000411136 _____ (Microsoft Corporation) C:\windows\system32\NgcCtnr.dll
2017-10-13 17:11 - 2017-09-18 05:29 - 000187904 _____ (Microsoft Corporation) C:\windows\system32\VCardParser.dll
2017-10-13 17:11 - 2017-09-18 05:28 - 000536064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\nwifi.sys
2017-10-13 17:11 - 2017-09-18 05:28 - 000140288 _____ (Microsoft Corporation) C:\windows\system32\AppointmentActivation.dll
2017-10-13 17:11 - 2017-09-18 05:28 - 000105984 _____ (Microsoft Corporation) C:\windows\system32\ngcpopkeysrv.dll
2017-10-13 17:11 - 2017-09-18 05:27 - 000641024 _____ (Microsoft Corporation) C:\windows\system32\ngccredprov.dll
2017-10-13 17:11 - 2017-09-18 05:27 - 000463360 _____ (Microsoft Corporation) C:\windows\system32\wlansec.dll
2017-10-13 17:11 - 2017-09-18 05:26 - 000805888 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2017-10-13 17:11 - 2017-09-18 05:26 - 000384000 _____ (Microsoft Corporation) C:\windows\system32\cryptngc.dll
2017-10-13 17:11 - 2017-09-18 05:26 - 000265216 _____ (Microsoft Corporation) C:\windows\system32\dnsrslvr.dll
2017-10-13 17:11 - 2017-09-18 05:24 - 013107712 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2017-10-13 17:11 - 2017-09-18 05:21 - 018364928 _____ (Microsoft Corporation) C:\windows\SysWOW64\edgehtml.dll
2017-10-13 17:11 - 2017-09-18 05:20 - 019414016 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2017-10-13 17:11 - 2017-09-18 05:18 - 012204032 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2017-10-13 17:11 - 2017-09-18 05:18 - 008114688 _____ (Microsoft Corporation) C:\windows\system32\Chakra.dll
2017-10-13 17:11 - 2017-09-18 05:18 - 000330752 _____ (Microsoft Corporation) C:\windows\system32\NgcCtnrSvc.dll
2017-10-13 17:11 - 2017-09-18 05:17 - 001783296 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2017-10-13 17:11 - 2017-09-18 05:16 - 004743168 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2017-10-13 17:11 - 2017-09-18 05:15 - 006065152 _____ (Microsoft Corporation) C:\windows\SysWOW64\Chakra.dll
2017-10-13 17:11 - 2017-09-18 05:15 - 002800128 _____ (Microsoft Corporation) C:\windows\system32\netshell.dll
2017-10-13 17:11 - 2017-09-18 05:15 - 000701952 _____ (Microsoft Corporation) C:\windows\system32\Windows.Networking.Connectivity.dll
2017-10-13 17:11 - 2017-09-18 05:14 - 003663360 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2017-10-13 17:11 - 2017-09-18 05:14 - 001518080 _____ (Microsoft Corporation) C:\windows\system32\win32kbase.sys
2017-10-13 17:11 - 2017-09-18 05:14 - 000983552 _____ (Microsoft Corporation) C:\windows\system32\ngcsvc.dll
2017-10-13 17:11 - 2017-09-18 05:14 - 000908800 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Search.dll
2017-10-13 17:11 - 2017-09-18 05:12 - 000998912 _____ (Microsoft Corporation) C:\windows\system32\TSWorkspace.dll
2017-10-13 17:11 - 2017-09-18 05:12 - 000439296 _____ (Microsoft Corporation) C:\windows\system32\wksprt.exe
2017-10-13 17:11 - 2017-09-15 01:30 - 000456192 _____ (Microsoft Corporation) C:\windows\system32\puiobj.dll
2017-10-13 17:11 - 2017-09-15 01:22 - 000987648 _____ (Microsoft Corporation) C:\windows\system32\termsrv.dll
2017-10-13 17:11 - 2017-09-15 01:18 - 000273920 _____ (Microsoft Corporation) C:\windows\system32\umrdp.dll
2017-10-13 17:11 - 2017-09-15 01:16 - 000068608 _____ (Microsoft Corporation) C:\windows\system32\Drivers\npfs.sys
2017-10-13 17:10 - 2017-09-18 06:17 - 001564512 _____ (Microsoft Corporation) C:\windows\system32\appraiser.dll
2017-10-13 17:10 - 2017-09-18 06:17 - 000245600 _____ (Microsoft Corporation) C:\windows\system32\offlinesam.dll
2017-10-13 17:10 - 2017-09-18 06:17 - 000136032 _____ (Microsoft Corporation) C:\windows\system32\acmigration.dll
2017-10-13 17:10 - 2017-09-18 06:09 - 007780192 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2017-10-13 17:10 - 2017-09-18 06:09 - 000646688 _____ (Microsoft Corporation) C:\windows\system32\dnsapi.dll
2017-10-13 17:10 - 2017-09-18 06:08 - 002253664 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ntfs.sys
2017-10-13 17:10 - 2017-09-18 06:05 - 000168800 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2017-10-13 17:10 - 2017-09-18 06:04 - 000404832 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2017-10-13 17:10 - 2017-09-18 06:01 - 002446704 _____ (Microsoft Corporation) C:\windows\system32\msxml6.dll
2017-10-13 17:10 - 2017-09-18 06:01 - 000624048 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys
2017-10-13 17:10 - 2017-09-18 05:59 - 000241504 _____ (Microsoft Corporation) C:\windows\system32\CloudExperienceHost.dll
2017-10-13 17:10 - 2017-09-18 05:58 - 001600632 _____ (Microsoft Corporation) C:\windows\system32\sppobjs.dll
2017-10-13 17:10 - 2017-09-18 05:58 - 000206688 _____ (Microsoft Corporation) C:\windows\system32\basecsp.dll
2017-10-13 17:10 - 2017-09-18 05:57 - 001566552 _____ (Microsoft Corporation) C:\windows\system32\gdi32full.dll
2017-10-13 17:10 - 2017-09-18 05:57 - 001460696 _____ (Microsoft Corporation) C:\windows\system32\user32.dll
2017-10-13 17:10 - 2017-09-18 05:57 - 001415712 _____ (Microsoft Corporation) C:\windows\system32\msctf.dll
2017-10-13 17:10 - 2017-09-18 05:36 - 022570496 _____ (Microsoft Corporation) C:\windows\system32\edgehtml.dll
2017-10-13 17:10 - 2017-09-18 05:33 - 000057856 _____ (Microsoft Corporation) C:\windows\system32\TransliterationRanker.dll
2017-10-13 17:10 - 2017-09-18 05:32 - 000054272 _____ (Microsoft Corporation) C:\windows\system32\jpninputrouter.dll
2017-10-13 17:10 - 2017-09-18 05:32 - 000054272 _____ (Microsoft Corporation) C:\windows\system32\EmojiDS.dll
2017-10-13 17:10 - 2017-09-18 05:31 - 000069120 _____ (Microsoft Corporation) C:\windows\system32\RuleBasedDS.dll
2017-10-13 17:10 - 2017-09-18 05:30 - 000262656 _____ (Microsoft Corporation) C:\windows\system32\jpnranker.dll
2017-10-13 17:10 - 2017-09-18 05:30 - 000257536 _____ (Microsoft Corporation) C:\windows\system32\scksp.dll
2017-10-13 17:10 - 2017-09-18 05:30 - 000196096 _____ (Microsoft Corporation) C:\windows\system32\UserDeviceRegistration.dll
2017-10-13 17:10 - 2017-09-18 05:30 - 000174592 _____ C:\windows\system32\IHDS.dll
2017-10-13 17:10 - 2017-09-18 05:30 - 000131584 _____ (Microsoft Corporation) C:\windows\system32\VocabRoamingHandler.dll
2017-10-13 17:10 - 2017-09-18 05:30 - 000117760 _____ (Microsoft Corporation) C:\windows\system32\StaticDictDS.dll
2017-10-13 17:10 - 2017-09-18 05:30 - 000101888 _____ (Microsoft Corporation) C:\windows\system32\UserDeviceRegistration.Ngc.dll
2017-10-13 17:10 - 2017-09-18 05:30 - 000095232 _____ (Microsoft Corporation) C:\windows\system32\chxranker.dll
2017-10-13 17:10 - 2017-09-18 05:29 - 009129984 _____ (Microsoft Corporation) C:\windows\system32\twinui.dll
2017-10-13 17:10 - 2017-09-18 05:29 - 000414720 _____ (Microsoft Corporation) C:\windows\system32\ChsStrokeDS.dll
2017-10-13 17:10 - 2017-09-18 05:29 - 000231424 _____ (Microsoft Corporation) C:\windows\system32\shutdownux.dll
2017-10-13 17:10 - 2017-09-18 05:28 - 000414720 _____ (Microsoft Corporation) C:\windows\system32\ChtHkStrokeDS.dll
2017-10-13 17:10 - 2017-09-18 05:28 - 000335872 _____ (Microsoft Corporation) C:\windows\system32\ChsPinyinRanker.dll
2017-10-13 17:10 - 2017-09-18 05:28 - 000290816 _____ (Microsoft Corporation) C:\windows\system32\MtfDecoder.dll
2017-10-13 17:10 - 2017-09-18 05:28 - 000043520 _____ (Microsoft Corporation) C:\windows\system32\TpmTasks.dll
2017-10-13 17:10 - 2017-09-18 05:27 - 000626176 _____ (Microsoft Corporation) C:\windows\system32\PCPTpm12.dll
2017-10-13 17:10 - 2017-09-18 05:27 - 000497152 _____ (Microsoft Corporation) C:\windows\system32\ChxAPDS.dll
2017-10-13 17:10 - 2017-09-18 05:27 - 000480768 _____ (Microsoft Corporation) C:\windows\system32\msimeChsPinyinMainDS.dll
2017-10-13 17:10 - 2017-09-18 05:27 - 000469504 _____ (Microsoft Corporation) C:\windows\system32\ChxHAPDS.dll
2017-10-13 17:10 - 2017-09-18 05:27 - 000422400 _____ (Microsoft Corporation) C:\windows\system32\ChtCangjieDS.dll
2017-10-13 17:10 - 2017-09-18 05:27 - 000410624 _____ (Microsoft Corporation) C:\windows\system32\ChtQuickDS.dll
2017-10-13 17:10 - 2017-09-18 05:27 - 000407552 _____ (Microsoft Corporation) C:\windows\system32\Windows.Internal.Management.dll
2017-10-13 17:10 - 2017-09-18 05:27 - 000379904 _____ (Microsoft Corporation) C:\windows\system32\apprepsync.dll
2017-10-13 17:10 - 2017-09-18 05:27 - 000336384 _____ (Microsoft Corporation) C:\windows\system32\jpndecoder.dll
2017-10-13 17:10 - 2017-09-18 05:27 - 000329728 _____ (Microsoft Corporation) C:\windows\system32\chxinputrouter.dll
2017-10-13 17:10 - 2017-09-18 05:27 - 000326656 _____ (Microsoft Corporation) C:\windows\system32\domgmt.dll
2017-10-13 17:10 - 2017-09-18 05:27 - 000310784 _____ (Microsoft Corporation) C:\windows\system32\SyncSettings.dll
2017-10-13 17:10 - 2017-09-18 05:27 - 000268800 _____ (Microsoft Corporation) C:\windows\system32\UserMgrProxy.dll
2017-10-13 17:10 - 2017-09-18 05:27 - 000147456 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll
2017-10-13 17:10 - 2017-09-18 05:26 - 002716672 _____ (Microsoft Corporation) C:\windows\system32\WsmSvc.dll
2017-10-13 17:10 - 2017-09-18 05:26 - 000562176 _____ (Microsoft Corporation) C:\windows\system32\webio.dll
2017-10-13 17:10 - 2017-09-18 05:26 - 000481792 _____ (Microsoft Corporation) C:\windows\system32\dsreg.dll
2017-10-13 17:10 - 2017-09-18 05:26 - 000396800 _____ (Microsoft Corporation) C:\windows\system32\tpmvsc.dll
2017-10-13 17:10 - 2017-09-18 05:26 - 000176128 _____ (Microsoft Corporation) C:\windows\system32\apprepapi.dll
2017-10-13 17:10 - 2017-09-18 05:25 - 001914368 _____ (Microsoft Corporation) C:\windows\system32\wsp_fs.dll
2017-10-13 17:10 - 2017-09-18 05:25 - 000425984 _____ (Microsoft Corporation) C:\windows\system32\aadcloudap.dll
2017-10-13 17:10 - 2017-09-18 05:25 - 000148992 _____ (Microsoft Corporation) C:\windows\system32\TabSvc.dll
2017-10-13 17:10 - 2017-09-18 05:25 - 000105984 _____ (Microsoft Corporation) C:\windows\system32\RjvMDMConfig.dll
2017-10-13 17:10 - 2017-09-18 05:24 - 002103808 _____ (Microsoft Corporation) C:\windows\system32\wlidsvc.dll
2017-10-13 17:10 - 2017-09-18 05:24 - 001589760 _____ (Microsoft Corporation) C:\windows\system32\msdtctm.dll
2017-10-13 17:10 - 2017-09-18 05:24 - 001584640 _____ (Microsoft Corporation) C:\windows\system32\wsp_health.dll
2017-10-13 17:10 - 2017-09-18 05:23 - 000442368 _____ (Microsoft Corporation) C:\windows\system32\PlayToDevice.dll
2017-10-13 17:10 - 2017-09-18 05:22 - 004749824 _____ (Microsoft Corporation) C:\windows\system32\SettingsHandlers_nt.dll
2017-10-13 17:10 - 2017-09-18 05:22 - 003291648 _____ (Microsoft Corporation) C:\windows\system32\mispace.dll
2017-10-13 17:10 - 2017-09-18 05:22 - 000883712 _____ (Microsoft Corporation) C:\windows\system32\samsrv.dll
2017-10-13 17:10 - 2017-09-18 05:22 - 000352256 _____ (Microsoft Corporation) C:\windows\system32\mcbuilder.exe
2017-10-13 17:10 - 2017-09-18 05:22 - 000198144 _____ (Microsoft Corporation) C:\windows\system32\rpchttp.dll
2017-10-13 17:10 - 2017-09-18 05:20 - 023677952 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2017-10-13 17:10 - 2017-09-18 05:20 - 000937984 _____ (Microsoft Corporation) C:\windows\system32\MCRecvSrc.dll
2017-10-13 17:10 - 2017-09-18 05:19 - 001060352 _____ (Microsoft Corporation) C:\windows\system32\AppContracts.dll
2017-10-13 17:10 - 2017-09-18 05:19 - 000519168 _____ (Microsoft Corporation) C:\windows\system32\netprofmsvc.dll
2017-10-13 17:10 - 2017-09-18 05:18 - 001010176 _____ (Microsoft Corporation) C:\windows\system32\enterprisecsps.dll
2017-10-13 17:10 - 2017-09-18 05:18 - 000956416 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentExtensions.desktop.dll
2017-10-13 17:10 - 2017-09-18 05:18 - 000932864 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2017-10-13 17:10 - 2017-09-18 05:17 - 002279424 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentServer.dll
2017-10-13 17:10 - 2017-09-18 05:16 - 001484800 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2017-10-13 17:10 - 2017-09-18 05:15 - 003202048 _____ (Microsoft Corporation) C:\windows\system32\msftedit.dll
2017-10-13 17:10 - 2017-09-18 05:15 - 002919936 _____ (Microsoft Corporation) C:\windows\system32\CertEnroll.dll
2017-10-13 17:10 - 2017-09-18 05:15 - 001692160 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentExtensions.onecore.dll
2017-10-13 17:10 - 2017-09-18 05:15 - 001282048 _____ (Microsoft Corporation) C:\windows\system32\wwansvc.dll
2017-10-13 17:10 - 2017-09-18 05:15 - 001231360 _____ (Microsoft Corporation) C:\windows\system32\dosvc.dll
2017-10-13 17:10 - 2017-09-18 05:15 - 000893952 _____ (Microsoft Corporation) C:\windows\system32\MPSSVC.dll
2017-10-13 17:10 - 2017-09-18 05:14 - 003615744 _____ (Microsoft Corporation) C:\windows\system32\win32kfull.sys
2017-10-13 17:10 - 2017-09-18 05:14 - 002897408 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2017-10-13 17:10 - 2017-09-18 05:14 - 002321408 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2017-10-13 17:10 - 2017-09-18 05:14 - 001328640 _____ (Microsoft Corporation) C:\windows\system32\Windows.Web.Http.dll
2017-10-13 17:10 - 2017-09-18 05:14 - 001040896 _____ (Microsoft Corporation) C:\windows\system32\NaturalLanguage6.dll
2017-10-13 17:10 - 2017-09-18 05:14 - 000971264 _____ (Microsoft Corporation) C:\windows\system32\twinui.appcore.dll
2017-10-13 17:10 - 2017-09-18 05:14 - 000913920 _____ (Microsoft Corporation) C:\windows\system32\Windows.Networking.dll
2017-10-13 17:10 - 2017-09-18 05:14 - 000817664 _____ (Microsoft Corporation) C:\windows\system32\winhttp.dll
2017-10-13 17:10 - 2017-09-18 05:14 - 000799744 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2017-10-13 17:10 - 2017-09-18 05:14 - 000774656 _____ (Microsoft Corporation) C:\windows\system32\Windows.Web.dll
2017-10-13 17:10 - 2017-09-18 05:14 - 000650752 _____ (Microsoft Corporation) C:\windows\system32\RDXService.dll
2017-10-13 17:10 - 2017-09-18 05:13 - 001726976 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Immersive.dll
2017-10-13 17:10 - 2017-09-18 05:13 - 001121280 _____ (Microsoft Corporation) C:\windows\system32\aadtb.dll
2017-10-13 17:10 - 2017-09-18 05:13 - 000924672 _____ (Microsoft Corporation) C:\windows\system32\Windows.Networking.BackgroundTransfer.dll
2017-10-13 17:10 - 2017-09-18 05:11 - 000151552 _____ (Microsoft Corporation) C:\windows\system32\trie.dll
2017-10-13 17:10 - 2017-09-18 05:11 - 000108032 _____ (Microsoft Corporation) C:\windows\system32\MTFFuzzyDS.dll
2017-10-13 17:10 - 2017-09-18 05:11 - 000064512 _____ (Microsoft Corporation) C:\windows\system32\MTFSpellcheckDS.dll
2017-10-13 17:10 - 2017-09-15 02:14 - 000119328 _____ (Microsoft Corporation) C:\windows\system32\dmcmnutils.dll
2017-10-13 17:10 - 2017-09-15 01:32 - 000210432 _____ (Microsoft Corporation) C:\windows\system32\dinput8.dll
2017-10-13 17:10 - 2017-09-15 01:32 - 000162304 _____ (Microsoft Corporation) C:\windows\system32\dinput.dll
2017-10-13 17:10 - 2017-09-15 01:31 - 000463872 _____ (Microsoft Corporation) C:\windows\system32\daxexec.dll
2017-10-13 17:10 - 2017-09-15 01:29 - 000352256 _____ (Microsoft Corporation) C:\windows\system32\Wldap32.dll
2017-10-13 17:10 - 2017-09-15 01:25 - 000821248 _____ (Microsoft Corporation) C:\windows\system32\comuid.dll
2017-10-13 17:10 - 2017-09-15 01:24 - 000981504 _____ (Microsoft Corporation) C:\windows\system32\Windows.Security.Authentication.OnlineId.dll
2017-10-13 17:10 - 2017-09-15 01:23 - 000560128 _____ (Microsoft Corporation) C:\windows\system32\AppReadiness.dll
2017-10-13 17:10 - 2017-09-15 01:22 - 000820736 _____ (Microsoft Corporation) C:\windows\system32\netlogon.dll
2017-10-13 17:10 - 2017-09-15 01:22 - 000634368 _____ (Microsoft Corporation) C:\windows\system32\StructuredQuery.dll
2017-10-13 17:10 - 2017-09-15 01:20 - 002852864 _____ (Microsoft Corporation) C:\windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-10-13 17:10 - 2017-09-15 01:19 - 001421824 _____ (Microsoft Corporation) C:\windows\system32\certutil.exe
2017-10-13 17:10 - 2017-09-15 01:19 - 000928256 _____ (Microsoft Corporation) C:\windows\system32\SmartcardCredentialProvider.dll
2017-10-13 17:10 - 2017-03-04 10:10 - 000360040 _____ (Microsoft Corporation) C:\windows\system32\SystemSettingsAdminFlows.exe
2017-10-13 17:10 - 2017-03-04 09:11 - 001643008 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Speech.dll
2017-10-13 17:10 - 2017-03-04 09:07 - 001064448 _____ (Microsoft Corporation) C:\windows\system32\SettingSyncCore.dll
2017-10-13 17:09 - 2017-09-18 05:32 - 000177152 _____ (Microsoft Corporation) C:\windows\system32\t2embed.dll
2017-10-13 17:09 - 2017-09-18 05:28 - 000289792 _____ (Microsoft Corporation) C:\windows\system32\DeveloperOptionsSettingsHandlers.dll
2017-10-13 17:09 - 2017-09-18 05:27 - 000525824 _____ (Microsoft Corporation) C:\windows\system32\FirewallAPI.dll
2017-10-13 17:09 - 2017-09-18 05:26 - 000686592 _____ (Microsoft Corporation) C:\windows\system32\dsregcmd.exe
2017-10-13 17:09 - 2017-09-18 05:13 - 000203264 _____ (Microsoft Corporation) C:\windows\system32\netprofm.dll
2017-10-13 17:09 - 2017-09-15 01:32 - 000250880 _____ (Microsoft Corporation) C:\windows\system32\MSWB7.dll
2017-10-13 17:09 - 2017-09-15 01:31 - 000280576 _____ (Microsoft Corporation) C:\windows\system32\authz.dll
2017-10-13 17:09 - 2017-09-15 01:24 - 000433152 _____ (Microsoft Corporation) C:\windows\system32\certreq.exe
2017-10-13 16:33 - 2017-10-13 16:33 - 000000000 ____D C:\Users\Benali SARI\Downloads\Activateur durée illimitée pour Office 2010
2017-10-13 16:31 - 2017-10-13 16:31 - 000002429 _____ C:\Users\Benali SARI\Downloads\activateur-duree-illimitee-pour-office-2010.torrent
2017-10-13 16:19 - 2017-10-13 16:19 - 000002882 _____ C:\windows\System32\Tasks\CCleanerSkipUAC
2017-10-13 16:19 - 2017-10-13 16:19 - 000000870 _____ C:\Users\Public\Desktop\CCleaner.lnk
2017-10-13 16:19 - 2017-10-13 16:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2017-10-13 16:19 - 2017-10-13 16:19 - 000000000 ____D C:\Program Files\CCleaner
2017-10-13 16:18 - 2017-10-13 16:19 - 009809688 _____ (Piriform Ltd) C:\Users\Benali SARI\Downloads\ccsetup535.exe
2017-10-13 15:59 - 2017-10-13 15:59 - 008956296 _____ C:\Users\Benali SARI\Downloads\KMSAuto_Net_2016_v1.4.9_Portable_TrucNet.com.rar
2017-10-13 15:48 - 2017-10-13 15:48 - 000000000 ____D C:\Users\Benali SARI\AppData\Roaming\WinRAR
2017-10-13 15:48 - 2017-10-13 15:48 - 000000000 ____D C:\Users\Benali SARI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2017-10-13 15:48 - 2017-10-13 15:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2017-10-13 15:48 - 2017-10-13 15:48 - 000000000 ____D C:\Program Files (x86)\WinRAR
2017-10-13 15:36 - 2017-10-13 15:36 - 000000000 ____D C:\ProgramData\UniqueId
2017-10-13 15:36 - 2016-03-12 12:26 - 000000000 ____D C:\Users\Benali SARI\Downloads\Office 2016 Setup + Crack
2017-10-13 15:35 - 2017-10-13 15:45 - 000000000 ____D C:\Users\Benali SARI\AppData\Local\WinZip
2017-10-13 15:35 - 2017-10-13 15:36 - 000000000 ____D C:\ProgramData\WinZip
2017-10-13 15:35 - 2017-10-13 15:35 - 000003654 _____ C:\windows\System32\Tasks\WinZipBackGroundToolsTask
2017-10-13 15:35 - 2017-10-13 15:35 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Notifications de Mises à jour.lnk
2017-10-13 15:35 - 2017-10-13 15:35 - 000002208 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Outils d’arrière-plan WinZip.lnk
2017-10-13 15:35 - 2017-10-13 15:35 - 000002180 _____ C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk
2017-10-13 15:35 - 2017-10-13 15:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip 21.0
2017-10-13 15:35 - 2017-10-13 15:35 - 000000000 ____D C:\Program Files (x86)\WinZip
2017-10-13 15:16 - 2017-10-13 15:16 - 000002341 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-10-13 15:14 - 2017-10-20 23:09 - 000004180 _____ C:\windows\System32\Tasks\User_Feed_Synchronization-{C18161CE-7A00-496F-99BB-D2BC993FF4B3}
2017-10-13 15:11 - 2017-10-13 15:11 - 000000258 __RSH C:\Users\Benali SARI\ntuser.pol
2017-10-13 14:41 - 2017-10-13 14:41 - 000000000 ____D C:\Users\Benali SARI\AppData\Roaming\ssn
2017-10-13 14:41 - 2017-10-13 14:41 - 000000000 ____D C:\Users\Benali SARI\AppData\Roaming\BrowserModule
2017-10-13 14:39 - 2017-10-13 14:39 - 000000000 ____D C:\Program Files (x86)\zTWnHlzwjSUn
2017-10-13 14:37 - 2017-10-13 14:37 - 000000000 ____D C:\Users\Benali SARI\Documents\mirage
2017-10-13 14:36 - 2017-10-13 14:36 - 000000000 ____D C:\Users\Public\Documents\XMUpdate
2017-10-13 14:26 - 2017-10-13 14:27 - 002865152 _____ C:\Users\Benali SARI\Downloads\KMSPico 10.2.1 [DazGang].iso
2017-10-13 14:23 - 2017-10-13 14:38 - 000000258 __RSH C:\ProgramData\ntuser.pol
2017-10-13 13:57 - 2017-10-13 13:57 - 000249001 _____ C:\Users\Benali SARI\Downloads\GCAW 2017 Champion Presentation (5).pptx
2017-10-12 17:04 - 2017-10-12 17:24 - 734688932 ____R C:\Users\Benali SARI\Downloads\[ Torrent9.tv ] Annabelle.2.Creation.2017.FRENCH.BDRip.XviD-GZR.avi
2017-10-12 17:02 - 2017-10-12 17:02 - 000030714 _____ C:\Users\Benali SARI\Downloads\annabelle-2-la-creation-du-mal-french-dvdrip-2017.torrent
2017-10-11 12:36 - 2017-10-11 13:07 - 577248424 ____R C:\Users\Benali SARI\Downloads\[ Torrent9.tv ] The.Deuce.S01E05.FRENCH.HDTV.XviD-ZT.avi
2017-10-11 12:36 - 2017-10-11 12:36 - 000024703 _____ C:\Users\Benali SARI\Downloads\the-deuce-s01e05-french-hdtv.torrent
2017-10-10 13:41 - 2017-10-10 14:53 - 367250682 ____R C:\Users\Benali SARI\Downloads\[ Torrent9.tv ] Lucifer.S02E16.FRENCH.HDTV.XviD-ZT.avi
2017-10-10 13:41 - 2017-10-10 13:41 - 000030680 _____ C:\Users\Benali SARI\Downloads\bienvenue-au-gondwana-french-dvdrip-2017.torrent
2017-10-10 13:40 - 2017-10-10 13:40 - 000030576 _____ C:\Users\Benali SARI\Downloads\the-arena-french-webrip-2017.torrent
2017-10-10 13:40 - 2017-10-10 13:40 - 000016701 _____ C:\Users\Benali SARI\Downloads\lucifer-s02e15-french-hdtv.torrent
2017-10-10 13:40 - 2017-10-10 13:40 - 000016681 _____ C:\Users\Benali SARI\Downloads\lucifer-s02e16-french-hdtv.torrent
2017-10-10 13:40 - 2017-10-10 13:40 - 000012689 _____ C:\Users\Benali SARI\Downloads\vice-principals-s02e04-french-hdtv.torrent
2017-10-09 23:04 - 2017-10-09 23:34 - 000000000 ____D C:\Users\Benali SARI\Downloads\[ Torrent9.tv ] NRJ Party Hits 2017
2017-10-09 23:00 - 2017-10-09 23:00 - 000026185 _____ C:\Users\Benali SARI\Downloads\nrj-party-hits-2017.torrent
2017-10-09 16:15 - 2017-10-09 16:15 - 000016655 _____ C:\Users\Benali SARI\Downloads\fear-the-walking-dead-s03e14-french-hdtv.torrent
2017-10-07 00:03 - 2017-10-07 00:03 - 000028971 _____ C:\Users\Benali SARI\Downloads\hot-bot-french-webrip-2017.torrent
2017-10-05 10:54 - 2017-10-05 10:54 - 000000000 ____D C:\Users\Benali SARI\AppData\LocalLow\Adobe
2017-10-04 15:21 - 2017-10-04 16:21 - 732340550 ____R C:\Users\Benali SARI\Downloads\[ Torrent9.tv ] Boys.Will.Be.Boys.2016.FRENCH.WEBRip.XviD-STR4NGE.avi
2017-10-04 15:08 - 2017-10-04 15:08 - 000016701 _____ C:\Users\Benali SARI\Downloads\lucifer-s02e14-french-hdtv (1).torrent
2017-10-04 15:07 - 2017-10-04 15:07 - 000030616 _____ C:\Users\Benali SARI\Downloads\boys-will-be-boys-french-webrip-2017.torrent
2017-10-04 15:06 - 2017-10-05 10:10 - 577373554 ____R C:\Users\Benali SARI\Downloads\[ Torrent9.tv ] The.Deuce.S01E04.FRENCH.720p.HDTV.XviD-ZT.avi
2017-10-04 15:05 - 2017-10-04 15:58 - 577414606 ____R C:\Users\Benali SARI\Downloads\[ Torrent9.tv ] The.Deuce.S01E03.FRENCH.HDTV.XviD-ZT.avi
2017-10-03 16:20 - 2017-10-04 15:39 - 575487194 ____R C:\Users\Benali SARI\Downloads\[ Torrent9.tv ] The.Deuce.S01E02.FRENCH.HDTV.XviD-ZT.avi
2017-10-03 16:20 - 2017-10-03 18:03 - 733958568 ____R C:\Users\Benali SARI\Downloads\[ Torrent9.tv ] The.Deuce.S01E01.FRENCH.HDTV.XviD-ZT.avi
2017-10-03 16:20 - 2017-10-03 16:20 - 000016721 _____ C:\Users\Benali SARI\Downloads\lucifer-s02e13-french-hdtv.torrent
2017-10-03 16:19 - 2017-10-03 16:19 - 000030663 _____ C:\Users\Benali SARI\Downloads\the-deuce-s01e01-french-hdtv.torrent
2017-10-03 16:19 - 2017-10-03 16:19 - 000024708 _____ C:\Users\Benali SARI\Downloads\the-deuce-s01e04-french-hdtv.torrent
2017-10-03 16:19 - 2017-10-03 16:19 - 000024703 _____ C:\Users\Benali SARI\Downloads\the-deuce-s01e03-french-hdtv.torrent
2017-10-03 16:19 - 2017-10-03 16:19 - 000024623 _____ C:\Users\Benali SARI\Downloads\the-deuce-s01e02-french-hdtv.torrent
2017-10-03 16:19 - 2017-10-03 16:19 - 000016701 _____ C:\Users\Benali SARI\Downloads\lucifer-s02e14-french-hdtv.torrent
2017-10-03 16:18 - 2017-10-03 16:18 - 000058720 _____ C:\Users\Benali SARI\Downloads\spider-man-homecoming-french-dvdrip-2017.torrent
2017-10-02 23:31 - 2017-10-02 23:31 - 000016715 _____ C:\Users\Benali SARI\Downloads\fear-the-walking-dead-s03e13-french-hdtv.torrent
2017-10-02 23:31 - 2017-10-02 23:31 - 000012691 _____ C:\Users\Benali SARI\Downloads\vice-principals-s02e02-french-hdtv.torrent
2017-10-02 23:31 - 2017-10-02 23:31 - 000012691 _____ C:\Users\Benali SARI\Downloads\vice-principals-s02e01-french-hdtv.torrent
2017-10-02 23:31 - 2017-10-02 23:31 - 000012671 _____ C:\Users\Benali SARI\Downloads\vice-principals-s02e03-french-hdtv.torrent
2017-10-02 23:29 - 2017-10-02 23:29 - 000030487 _____ C:\Users\Benali SARI\Downloads\sleepless-french-webrip-2017.torrent
2017-09-29 17:01 - 2017-09-29 17:01 - 000031031 _____ C:\Users\Benali SARI\Downloads\going-to-brazil-french-dvdrip-2017 (1).torrent
2017-09-29 17:00 - 2017-09-29 17:00 - 000031031 _____ C:\Users\Benali SARI\Downloads\going-to-brazil-french-dvdrip-2017.torrent
2017-09-29 14:49 - 2017-09-29 14:50 - 000058860 _____ C:\Users\Benali SARI\Downloads\spider-man-homecoming-french-webrip-2017.torrent
2017-09-28 16:58 - 2017-09-28 16:58 - 000016681 _____ C:\Users\Benali SARI\Downloads\lucifer-s02e12-french-hdtv.torrent
2017-09-28 16:58 - 2017-09-28 16:58 - 000016661 _____ C:\Users\Benali SARI\Downloads\lucifer-s02e11-french-hdtv.torrent
2017-09-28 16:57 - 2017-09-28 16:57 - 000030663 _____ C:\Users\Benali SARI\Downloads\the-house-french-dvdrip-2017.torrent
2017-09-28 16:57 - 2017-09-28 16:57 - 000030600 _____ C:\Users\Benali SARI\Downloads\le-retour-de-chucky-french-dvdrip-2017.torrent
2017-09-26 11:53 - 2017-09-26 20:07 - 000000000 ____D C:\Users\Benali SARI\Downloads\[ Torrent9.info ] Shakira - El Dorado (2017)
2017-09-26 11:52 - 2017-09-26 11:52 - 000012448 _____ C:\Users\Benali SARI\Downloads\shakira-el-dorado-2017.torrent
2017-09-21 20:42 - 2017-09-21 22:15 - 577479708 ____R C:\Users\Benali SARI\Downloads\[ Torrent9.tv ] The.Handmaids.Tale.S01E01.FRENCH.HDTV.XviD-ZT.avi

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2017-10-20 23:10 - 2017-08-10 12:56 - 000004034 _____ C:\windows\System32\Tasks\Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse
2017-10-20 22:41 - 2016-07-29 15:32 - 000000000 ____D C:\windows\system32\SleepStudy
2017-10-20 22:26 - 2017-08-09 23:45 - 000000000 ____D C:\Users\Benali SARI\AppData\Roaming\vlc
2017-10-20 22:19 - 2017-08-09 23:05 - 000000000 ____D C:\Users\Benali SARI\AppData\Roaming\uTorrent
2017-10-20 21:30 - 2017-08-10 12:56 - 000004222 _____ C:\windows\System32\Tasks\Intel Security DAT Reputation (AMCore) Post DAT update endpoint safety pulse
2017-10-20 00:21 - 2017-08-09 23:47 - 000003304 _____ C:\windows\System32\Tasks\HPCeeScheduleForBenali SARI
2017-10-20 00:21 - 2017-08-09 23:47 - 000000388 _____ C:\windows\Tasks\HPCeeScheduleForBenali SARI.job
2017-10-19 15:40 - 2016-07-16 14:36 - 000000000 ____D C:\windows\CbsTemp
2017-10-17 16:28 - 2017-08-11 12:47 - 000000000 ____D C:\Users\Benali SARI\AppData\Roaming\Skype
2017-10-17 16:25 - 2017-08-09 21:45 - 000000000 __SHD C:\Users\Benali SARI\IntelGraphicsProfiles
2017-10-17 16:25 - 2017-08-09 21:41 - 000000000 ____D C:\Users\Benali SARI
2017-10-17 16:21 - 2017-09-19 09:56 - 000000000 ____D C:\windows\Minidump
2017-10-17 16:21 - 2016-07-29 15:32 - 005081200 _____ C:\windows\system32\FNTCACHE.DAT
2017-10-17 16:21 - 2016-07-29 15:32 - 000000006 ____H C:\windows\Tasks\SA.DAT
2017-10-16 22:40 - 2017-08-09 22:55 - 000000000 ____D C:\Users\Benali SARI\AppData\Local\Hewlett-Packard
2017-10-16 19:05 - 2017-08-14 18:45 - 000000000 ____D C:\Users\Benali SARI\AppData\Roaming\WhatsApp
2017-10-16 15:18 - 2017-08-14 18:45 - 000002279 _____ C:\Users\Benali SARI\Desktop\WhatsApp.lnk
2017-10-16 15:18 - 2017-08-14 18:45 - 000000000 ____D C:\Users\Benali SARI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp
2017-10-16 15:17 - 2017-08-14 18:45 - 000000000 ____D C:\Users\Benali SARI\AppData\Local\WhatsApp
2017-10-16 15:17 - 2017-08-14 18:45 - 000000000 ____D C:\Users\Benali SARI\AppData\Local\SquirrelTemp
2017-10-15 20:04 - 2016-07-16 14:47 - 000000000 ____D C:\windows\rescache
2017-10-14 16:54 - 2016-07-16 14:45 - 000000000 ____D C:\windows\INF
2017-10-13 20:15 - 2017-08-26 08:54 - 005732290 _____ C:\Users\Benali SARI\Desktop\2tripadvisor sheraton dammam hotel.pptx
2017-10-13 20:12 - 2016-07-16 14:47 - 000000199 _____ C:\windows\win.ini
2017-10-13 20:12 - 2016-07-16 14:47 - 000000000 ____D C:\windows\AppReadiness
2017-10-13 20:07 - 2017-08-10 11:19 - 000000000 ____D C:\Program Files\rempl
2017-10-13 20:06 - 2016-07-29 15:37 - 001257168 _____ C:\windows\system32\PerfStringBackup.INI
2017-10-13 20:00 - 2016-07-29 15:33 - 000000000 __RHD C:\Users\Public\AccountPictures
2017-10-13 19:58 - 2016-07-16 09:04 - 000786432 _____ C:\windows\system32\config\BBI
2017-10-13 19:57 - 2016-07-16 14:47 - 000000000 ___RD C:\windows\ImmersiveControlPanel
2017-10-13 19:57 - 2016-07-16 14:47 - 000000000 ____D C:\windows\system32\oobe
2017-10-13 19:57 - 2016-07-16 14:47 - 000000000 ____D C:\windows\ShellExperiences
2017-10-13 19:53 - 2016-07-29 15:38 - 000000000 ____D C:\Program Files (x86)\MSBuild
2017-10-13 19:43 - 2016-11-01 09:54 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2017-10-13 19:42 - 2016-07-16 14:47 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2017-10-13 17:21 - 2017-08-10 22:02 - 000000000 ____D C:\windows\system32\MRT
2017-10-13 17:16 - 2017-08-10 22:01 - 126925120 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe
2017-10-13 17:11 - 2016-07-16 14:47 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-10-13 16:27 - 2016-07-29 16:23 - 000000000 ____D C:\windows\Panther
2017-10-13 15:16 - 2017-08-09 22:10 - 000002353 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-10-13 14:53 - 2016-11-01 17:32 - 000026408 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2017-10-13 14:52 - 2016-11-01 17:32 - 001081856 _____ (Microsoft Corporation) C:\windows\system32\Chakradiag.dll
2017-10-13 14:52 - 2016-11-01 17:32 - 000244816 _____ (Microsoft Corporation) C:\windows\system32\mfps.dll
2017-10-13 14:38 - 2016-07-16 14:47 - 000000000 ___HD C:\windows\system32\GroupPolicy
2017-10-13 14:29 - 2017-04-21 21:36 - 000000000 ____D C:\Program Files (x86)\McAfee
2017-10-13 13:58 - 2017-08-09 21:45 - 000000000 ____D C:\Users\Benali SARI\AppData\Local\Packages
2017-10-13 01:27 - 2016-07-16 14:49 - 000835576 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2017-10-13 01:27 - 2016-07-16 14:49 - 000177656 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2017-10-11 12:55 - 2016-07-16 14:47 - 000000000 ___HD C:\Program Files\WindowsApps
2017-10-07 00:40 - 2017-04-21 21:38 - 000003142 _____ C:\windows\System32\Tasks\McAfeeLogon
2017-09-30 22:08 - 2017-08-23 08:53 - 000000000 ___RD C:\Program Files (x86)\Skype
2017-09-30 22:08 - 2017-08-23 08:53 - 000000000 ____D C:\ProgramData\Skype
2017-09-28 22:43 - 2016-11-01 17:03 - 000014848 _____ (Hewlett-Packard) C:\windows\HPCUST2.exe
2017-09-28 22:43 - 2016-08-23 22:10 - 000000000 ____D C:\SWSETUP
2017-09-21 10:08 - 2017-08-11 12:49 - 000003390 _____ C:\windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2424798183-2298373094-3797251247-1001
2017-09-21 10:08 - 2017-08-09 21:50 - 000002392 _____ C:\Users\Benali SARI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-09-21 10:08 - 2017-08-09 21:50 - 000000000 ___RD C:\Users\Benali SARI\OneDrive

==================== Files in the root of some directories =======

2017-08-09 21:45 - 2017-10-20 23:36 - 002766824 _____ () C:\Users\Benali SARI\AppData\Local\BTServer.log

Some files in TEMP:
====================
2017-10-12 13:01 - 2017-10-12 13:01 - 000971460 _____ () C:\Users\Benali SARI\AppData\Local\Temp\setup.dll

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\explorer.exe => File is digitally signed
C:\windows\SysWOW64\explorer.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\SysWOW64\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\SysWOW64\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\SysWOW64\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\dnsapi.dll => File is digitally signed
C:\windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2017-10-16 18:41

==================== End of FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité