Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version:04-09-2015 Exécuté par Gate10000 (administrateur) sur GATE10000-PC (05-09-2015 08:21:56) Exécuté depuis C:\Users\Gate10000\Downloads Profils chargés: Gate10000 (Profils disponibles: Gate10000 & killbow & DefaultAppPool) Platform: Windows 10 Pro (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Edge) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Nero AG) C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe () C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Microsoft Corporation) C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe () C:\Program Files (x86)\HTC\HTC Sync Manager\HTC Sync\adb.exe (NVIDIA Corporation) C:\Users\Gate10000\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (Microsoft Corporation) C:\Windows\System32\browser_broker.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Microsoft Corporation) C:\Users\Gate10000\AppData\Local\Microsoft\OneDrive\OneDrive.exe () C:\ProgramData\DataFile\DV.exe (Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Agent.exe (Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Service.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-Network.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-BlockDevice.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-SharedFolder.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8492800 2015-06-24] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634872 2015-08-17] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [10801944 2014-07-28] (Logitech Inc.) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [592704 2015-07-08] (Razer Inc.) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291648 2013-10-15] (Intel Corporation) HKLM-x32\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe [904824 2015-07-13] (BlueStack Systems, Inc.) HKLM-x32\...\Run: [PowerDVD14Agent] => C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe [795672 2014-11-04] (CyberLink Corp.) HKU\S-1-5-21-2838338355-3909933524-1641243125-1000\...\Run: [OneDrive] => C:\Users\Gate10000\AppData\Local\Microsoft\OneDrive\OneDrive.exe [404064 2015-08-24] (Microsoft Corporation) HKU\S-1-5-21-2838338355-3909933524-1641243125-1000\...\Run: [DV] => C:\ProgramData\DataFile\DV.exe [209920 2015-08-09] () HKU\S-1-5-21-2838338355-3909933524-1641243125-1000\...\RunOnce: [Uninstall C:\Users\Gate10000\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Gate10000\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64" HKU\S-1-5-21-2838338355-3909933524-1641243125-1000\...\RunOnce: [Uninstall C:\Users\Gate10000\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Gate10000\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64" ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gate10000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gate10000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gate10000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gate10000\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll [2013-09-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gate10000\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll [2013-09-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gate10000\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll [2013-09-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gate10000\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll [2013-09-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Gate10000\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll [2013-09-10] (Dropbox, Inc.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{04621c16-ebfe-4b5c-bb83-b6d8e9a18a43}: [DhcpNameServer] 192.168.0.1 Internet Explorer: ================== HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm HKU\S-1-5-21-2838338355-3909933524-1641243125-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://ca.msn.com/defaultf.aspx?ocid=iehp HKU\S-1-5-21-2838338355-3909933524-1641243125-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130856318852738163&GUID=3BF88C42-6D91-4878-ACA5-5AE4B3615EA3 DPF: HKLM-x32 {166B1BCA-3F9C-11CF-8075-444553540000} hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab Handler-x32: intu-ir2013 - {B275FD97-299B-40A2-BC39-B96DFA40E50D} - D:\Program Files (x86)\ImpotRapide 2013\ic2013pp.dll [2013-11-27] (Intuit Canada, a general partnership/une société en nom collectif.) FireFox: ======== FF ProfilePath: C:\Users\Gate10000\AppData\Roaming\Mozilla\Firefox\Profiles\hbham943.default-1441135862610 FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll [2015-08-14] () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-14] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1212152.dll [2014-05-30] (Adobe Systems, Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-08-07] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-08-07] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-15] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-15] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.2.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin-x32: @zylom.com/ZylomGamesPlayer -> C:\ProgramData\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll [2006-09-26] (Zylom) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-07-03] (Adobe Systems Inc.) Chrome: ======= CHR dev: Chrome dev build détecté(e)! <======= ATTENTION CHR HomePage: Default -> hxxp://www.google.com/ CHR Profile: C:\Users\Gate10000\AppData\Local\Google\Chrome\User Data\Default CHR HKLM\...\Chrome\Extension: [Äÿ] - CHR HKU\S-1-5-21-2838338355-3909933524-1641243125-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [Äÿ] - CHR HKLM-x32\...\Chrome\Extension: [Äÿ] - ==================== Services (Avec liste blanche) ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [437880 2015-07-13] (BlueStack Systems, Inc.) R3 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [417400 2015-07-13] (BlueStack Systems, Inc.) R3 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [822904 2015-07-13] (BlueStack Systems, Inc.) S3 Disc Soft Bus Service; c:\Program Files (x86)\DAEMON Tools Ultra\DiscSoftBusService.exe [723192 2013-11-14] (Disc Soft Ltd) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155192 2015-08-17] (NVIDIA Corporation) R2 HTCMonitorService; C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2014-04-02] (Nero AG) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation) R2 MDM; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872 2006-10-26] (Microsoft Corporation) [Fichier non signé] R2 MSMQ; C:\Windows\system32\mqsvc.exe [26112 2015-08-05] (Microsoft Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872504 2015-08-17] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544568 2015-08-17] (NVIDIA Corporation) R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [166912 2013-10-17] () [Fichier non signé] R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [187048 2015-06-23] () S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [84480 2015-08-05] (Microsoft Corporation) R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [578560 2015-08-05] (Microsoft Corporation) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation) ===================== Pilotes (Avec liste blanche) ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [145528 2015-07-13] (BlueStack Systems) S3 dtscsibus; C:\Windows\System32\DRIVERS\dtscsibus.sys [29696 2014-12-25] (Disc Soft Ltd) S3 HtcVCom32; C:\Windows\System32\DRIVERS\HtcVComV64.sys [121800 2010-03-08] (QUALCOMM Incorporated) [Fichier non signé] R1 ISODrive; C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys [115448 2013-11-21] (EZB Systems, Inc.) R3 MQAC; C:\Windows\System32\drivers\mqac.sys [175104 2015-08-05] (Microsoft Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19576 2015-08-17] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [587264 2015-07-10] (Realtek ) S3 RzDxgk; C:\Windows\system32\drivers\RzDxgk.sys [129472 2014-04-10] (Razer, Inc.) R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [37184 2015-06-12] (Razer, Inc.) R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [129472 2015-06-26] (Razer, Inc.) S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] () S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation) R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation) R2 {C5F942FD-1110-4664-86CE-0C6BDA305235}; C:\Program Files (x86)\CyberLink\PowerDVD14\Common\NavFilter\000.fcl [32456 2014-11-04] (CyberLink Corp.) U3 idsvc; pas de ImagePath S3 VBoxNetFlt; \SystemRoot\system32\DRIVERS\VBoxNetFlt.sys [X] S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X] U3 wpcsvc; pas de ImagePath ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2015-09-05 08:20 - 2015-09-05 08:20 - 00016148 _____ C:\WINDOWS\system32\GATE10000-PC_Gate10000_HistoryPrediction.bin 2015-09-05 08:01 - 2015-09-05 08:01 - 00016148 _____ C:\WINDOWS\system32\GATE10000-PC_killbow_HistoryPrediction.bin 2015-09-05 07:42 - 2015-09-05 08:21 - 00001088 _____ C:\Users\Gate10000\Desktop\FRST64 - Raccourci.lnk 2015-09-05 07:41 - 2015-09-05 07:41 - 02188800 _____ (Farbar) C:\Users\Gate10000\Downloads\FRST64 (2).exe 2015-09-04 20:35 - 2015-09-04 20:35 - 00123661 _____ C:\Users\Gate10000\Desktop\FRST.txt 2015-09-04 20:35 - 2015-09-04 20:35 - 00061940 _____ C:\Users\Gate10000\Desktop\Addition.txt 2015-09-04 20:33 - 2015-09-05 08:22 - 00016524 _____ C:\Users\Gate10000\Downloads\FRST.txt 2015-09-04 20:33 - 2015-09-05 07:58 - 00065357 _____ C:\Users\Gate10000\Downloads\Addition.txt 2015-09-04 20:32 - 2015-09-05 08:22 - 00000000 ____D C:\FRST 2015-09-04 20:30 - 2015-09-05 07:46 - 02188800 _____ (Farbar) C:\Users\Gate10000\Downloads\FRST64.exe 2015-09-04 20:30 - 2015-09-04 20:31 - 02188800 _____ (Farbar) C:\Users\Gate10000\Downloads\FRST64 (1).exe 2015-09-04 20:27 - 2015-09-04 20:27 - 221962922 _____ C:\WINDOWS\MEMORY.DMP 2015-09-04 20:27 - 2015-09-04 20:27 - 00266320 _____ C:\WINDOWS\Minidump\090415-5484-01.dmp 2015-09-03 07:10 - 2015-09-03 07:10 - 00003204 _____ C:\Users\Gate10000\Desktop\ZHPFixReport.txt 2015-09-02 19:54 - 2015-09-02 19:54 - 00097280 _____ C:\Users\Gate10000\Desktop\ZHPDiag.txt 2015-09-02 19:52 - 2015-09-02 19:52 - 01917952 _____ C:\Users\Gate10000\ZHPDiag3.exe 2015-09-02 19:40 - 2015-09-04 03:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2015-09-02 19:40 - 2015-09-02 19:40 - 00001175 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2015-09-02 19:40 - 2015-09-02 19:40 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware 2015-09-02 19:40 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-09-02 19:40 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-09-02 19:40 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2015-09-02 19:38 - 2015-09-02 19:39 - 24345872 _____ (Malwarebytes Corporation ) C:\Users\Gate10000\Downloads\mbam-setup-2.1.8.1057 (1).exe 2015-09-02 19:30 - 2015-09-05 08:18 - 00002298 _____ C:\Users\Gate10000\Desktop\ZHPCleaner.txt 2015-09-02 19:28 - 2015-09-05 08:12 - 00000921 _____ C:\Users\Gate10000\Desktop\ZHPCleaner.lnk 2015-09-02 19:27 - 2015-09-02 19:28 - 01941504 _____ C:\Users\Gate10000\Desktop\ZHPCleaner (4).exe 2015-09-02 19:27 - 2015-09-02 19:27 - 01941504 _____ C:\Users\Gate10000\Downloads\ZHPCleaner (3).exe 2015-09-02 19:26 - 2015-09-02 19:26 - 00009751 _____ C:\Users\Gate10000\Desktop\AdwCleaner[C14].txt 2015-09-02 19:21 - 2015-09-02 19:21 - 00001194 _____ C:\Users\Gate10000\Downloads\adwcleaner_5.005 (2) - Raccourci ().lnk 2015-09-02 19:20 - 2015-09-02 19:20 - 00001194 _____ C:\Users\Gate10000\Downloads\adwcleaner_5.005 (1) - Raccourci.lnk 2015-09-02 19:08 - 2015-09-02 19:08 - 01654272 _____ C:\Users\Gate10000\Downloads\adwcleaner_5.005 (3).exe 2015-09-02 18:53 - 2015-09-02 18:53 - 01654272 _____ C:\Users\Gate10000\Downloads\adwcleaner_5.005 (2).exe 2015-09-02 18:52 - 2015-09-02 19:21 - 01654272 _____ C:\Users\Gate10000\Downloads\adwcleaner_5.005 (1).exe 2015-09-02 18:52 - 2015-09-02 18:52 - 01654272 _____ C:\Users\Gate10000\Desktop\adwcleaner_5.005 (1).exe 2015-09-02 18:26 - 2015-09-02 18:26 - 00000000 ____D C:\Users\killbow\AppData\Local\Publishers 2015-09-02 18:17 - 2015-09-02 18:17 - 00467237 _____ C:\Users\Gate10000\Desktop\rapport malware txt.txt 2015-09-02 17:05 - 2015-09-02 17:05 - 00000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2015-09-02 16:42 - 2015-09-02 16:42 - 00000017 _____ C:\Users\Gate10000\AppData\Local\resmon.resmoncfg 2015-09-02 06:35 - 2015-09-02 19:41 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-09-02 06:35 - 2015-09-02 06:35 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-09-02 06:34 - 2015-09-02 06:34 - 24345872 _____ (Malwarebytes Corporation ) C:\Users\Gate10000\Downloads\mbam-setup-2.1.8.1057.exe 2015-09-01 21:06 - 2015-09-01 21:06 - 00000069 _____ C:\WINDOWS\system32\TaskScheduler.log 2015-09-01 20:06 - 2015-09-02 18:02 - 00001916 _____ C:\Users\Public\Desktop\ZHPFix.lnk 2015-09-01 20:05 - 2015-09-01 20:05 - 03521472 _____ (Nicolas Coolman ) C:\Users\Gate10000\Downloads\ZHPFix (2).exe 2015-09-01 20:03 - 2015-09-01 20:05 - 03521472 _____ (Nicolas Coolman ) C:\Users\Gate10000\Downloads\ZHPFix (1).exe 2015-09-01 20:01 - 2015-09-01 20:02 - 03521472 _____ (Nicolas Coolman ) C:\Users\Gate10000\Downloads\ZHPFix.exe 2015-09-01 19:43 - 2015-09-01 19:43 - 01265501 _____ C:\Users\killbow\Downloads\01.wmv 2015-09-01 19:42 - 2015-09-01 19:42 - 01350221 _____ C:\Users\killbow\Downloads\003.wmv 2015-09-01 18:05 - 2015-09-01 18:05 - 00105787 _____ C:\Users\Gate10000\Downloads\ZHPDiag (2).txt 2015-09-01 17:50 - 2015-09-01 17:50 - 00105787 _____ C:\Users\Gate10000\Downloads\ZHPDiag (1).txt 2015-09-01 17:22 - 2015-09-01 17:22 - 00105787 _____ C:\Users\Gate10000\Downloads\ZHPDiag.txt 2015-09-01 15:40 - 2015-09-01 15:40 - 01915392 _____ C:\Users\Gate10000\Downloads\ZHPDiag3.exe 2015-09-01 15:22 - 2015-09-01 15:22 - 00000000 ____D C:\Users\killbow\Desktop\Anciennes données de Firefox 2015-09-01 15:19 - 2015-09-01 15:19 - 00000000 ____D C:\Users\killbow\AppData\Local\Mozilla 2015-09-01 15:01 - 2015-09-01 15:01 - 00000000 ____D C:\Users\killbow\AppData\Local\PeerDistRepub 2015-09-01 14:49 - 2015-09-01 14:51 - 00002887 _____ C:\Users\killbow\Desktop\ZHPCleaner.txt 2015-09-01 14:27 - 2015-09-01 14:28 - 01654272 _____ C:\Users\Gate10000\Downloads\adwcleaner_5.005(1).exe 2015-08-31 20:32 - 2015-08-31 20:32 - 01654272 _____ C:\Users\Gate10000\Downloads\adwcleaner_5.005.exe 2015-08-31 19:42 - 2015-08-31 19:42 - 00000010 _____ C:\Users\Public\Documents\test.txt 2015-08-31 19:24 - 2015-09-05 07:52 - 00000000 ____D C:\Users\killbow\AppData\Local\HTC MediaHub 2015-08-31 19:24 - 2015-08-31 19:24 - 00000000 ____D C:\Users\killbow\AppData\Local\Razer 2015-08-31 19:24 - 2015-08-31 19:24 - 00000000 ____D C:\Users\killbow\AppData\Local\CyberLink 2015-08-31 19:24 - 2015-08-31 19:24 - 00000000 ____D C:\Users\killbow\AppData\Local\Apple Computer 2015-08-31 19:23 - 2015-08-31 19:23 - 00000000 ____D C:\Users\killbow\AppData\Local\VirtualStore 2015-08-31 19:17 - 2015-08-31 19:17 - 00000000 ____D C:\Users\killbow\AppData\Local\SecureWebUpdate 2015-08-31 19:16 - 2015-08-31 19:16 - 00000000 ____D C:\Users\killbow\AppData\Local\MicrosoftEdge 2015-08-29 21:42 - 2015-08-29 21:42 - 00929953 _____ C:\WINDOWS\unins000.exe 2015-08-29 21:42 - 2015-08-29 21:42 - 00001151 _____ C:\WINDOWS\unins000.dat 2015-08-29 21:42 - 2015-08-29 21:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\(Default) 2015-08-29 21:16 - 2015-08-20 02:07 - 08019296 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-08-29 21:16 - 2015-08-20 02:06 - 00609592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2015-08-29 21:16 - 2015-08-20 02:02 - 22324656 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2015-08-29 21:16 - 2015-08-20 01:57 - 00077400 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2015-08-29 21:16 - 2015-08-20 01:26 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2015-08-29 21:16 - 2015-08-20 01:21 - 21875200 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2015-08-29 21:16 - 2015-08-20 01:21 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll 2015-08-29 21:16 - 2015-08-20 01:16 - 20857848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2015-08-29 21:16 - 2015-08-20 01:13 - 02235904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2015-08-29 21:16 - 2015-08-20 00:31 - 18806272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2015-08-29 21:16 - 2015-08-18 03:56 - 02498808 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2015-08-29 21:16 - 2015-08-18 03:55 - 00373072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS 2015-08-29 21:16 - 2015-08-18 03:54 - 01396064 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2015-08-29 21:16 - 2015-08-18 03:27 - 01771592 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2015-08-29 21:16 - 2015-08-18 03:24 - 00963920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2015-08-29 21:16 - 2015-08-18 03:13 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll 2015-08-29 21:16 - 2015-08-18 03:13 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll 2015-08-29 21:16 - 2015-08-18 03:12 - 02225664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2015-08-29 21:16 - 2015-08-18 03:07 - 02226688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2015-08-29 21:16 - 2015-08-18 03:04 - 01234944 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe 2015-08-29 21:16 - 2015-08-18 03:04 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2015-08-29 21:16 - 2015-08-18 02:59 - 01294336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll 2015-08-29 21:16 - 2015-08-18 02:59 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnApi.dll 2015-08-29 21:16 - 2015-08-18 02:58 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll 2015-08-29 21:16 - 2015-08-18 02:58 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWCN.dll 2015-08-29 21:16 - 2015-08-18 02:58 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWCN.dll 2015-08-29 21:16 - 2015-08-18 02:58 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnNetsh.dll 2015-08-29 21:16 - 2015-08-18 02:57 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll 2015-08-29 21:16 - 2015-08-18 02:56 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll 2015-08-29 21:16 - 2015-08-18 02:55 - 02178560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2015-08-29 21:16 - 2015-08-18 02:54 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll 2015-08-29 21:16 - 2015-08-18 02:54 - 00247296 _____ C:\WINDOWS\system32\facecredentialprovider.dll 2015-08-29 21:16 - 2015-08-18 02:52 - 01888768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2015-08-29 21:16 - 2015-08-18 02:50 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2015-08-29 21:16 - 2015-08-18 02:49 - 01061888 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2015-08-29 21:16 - 2015-08-18 02:49 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll 2015-08-29 21:16 - 2015-08-18 02:49 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll 2015-08-29 21:16 - 2015-08-18 02:36 - 01226752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wcnwiz.dll 2015-08-29 21:16 - 2015-08-18 02:35 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WcnApi.dll 2015-08-29 21:16 - 2015-08-18 02:35 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWCN.dll 2015-08-29 21:16 - 2015-08-18 02:34 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll 2015-08-29 21:16 - 2015-08-18 02:29 - 01593344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2015-08-29 21:16 - 2015-08-18 02:26 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll 2015-08-29 21:16 - 2015-08-18 00:44 - 00008847 _____ C:\WINDOWS\system32\ResPriHMImageList 2015-08-27 17:06 - 2015-08-31 18:26 - 01941504 _____ C:\Users\killbow\ZHPCleaner.exe 2015-08-26 18:02 - 2015-08-26 18:02 - 00002130 _____ C:\Users\killbow\AppData\Roaming\Microsoft\Windows\Start Menu\Winfix 10 Pro.lnk 2015-08-26 18:02 - 2015-08-26 18:02 - 00000000 ____D C:\Users\killbow\AppData\Roaming\JV Update 2015-08-26 12:00 - 2015-08-26 12:00 - 01605632 _____ C:\Users\Gate10000\Downloads\adwcleaner_5.003.exe 2015-08-26 11:13 - 2015-08-26 11:13 - 01605632 _____ C:\Users\killbow\Downloads\adwcleaner_5.003.exe 2015-08-26 10:10 - 2015-09-01 14:57 - 00000919 _____ C:\Users\killbow\Desktop\ZHPCleaner.lnk 2015-08-26 10:10 - 2015-09-01 14:57 - 00000000 ____D C:\Users\killbow\AppData\Roaming\ZHP 2015-08-26 10:09 - 2015-08-26 10:10 - 01930752 _____ C:\Users\killbow\Downloads\ZHPCleaner.exe 2015-08-24 20:55 - 2015-09-05 08:16 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log 2015-08-24 20:54 - 2015-09-03 07:11 - 00628514 _____ C:\WINDOWS\PFRO.log 2015-08-24 17:26 - 2015-09-02 18:02 - 00002128 _____ C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk 2015-08-24 17:23 - 2015-08-07 07:07 - 00112944 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2015-08-24 17:23 - 2015-08-07 00:27 - 06883632 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2015-08-24 17:23 - 2015-08-07 00:27 - 00385144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2015-08-24 17:23 - 2015-08-07 00:27 - 00062584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2015-08-24 17:23 - 2015-08-07 00:05 - 00573048 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe 2015-08-24 17:23 - 2015-08-03 05:22 - 05133709 _____ C:\WINDOWS\system32\nvcoproc.bin 2015-08-24 17:22 - 2015-08-07 07:07 - 42840184 _____ C:\WINDOWS\system32\nvcompiler.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 37819184 _____ C:\WINDOWS\SysWOW64\nvcompiler.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 22551672 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 18564728 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 16638896 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 15627520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 14935968 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 13663424 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 12186176 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 02352248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 02104440 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 01898288 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6435560.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 01567576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 01558832 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6435560.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 01177016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 01063032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 01061168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 01000088 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 00985392 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 00931960 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 00787200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 00632848 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 00408184 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 00387536 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 00376440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 00364152 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 00339576 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 00316120 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 00176904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 00155792 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 00150832 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 00128696 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 00040280 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll 2015-08-24 17:22 - 2015-08-07 07:07 - 00034100 _____ C:\WINDOWS\system32\nvinfo.pb 2015-08-24 17:18 - 2015-08-17 19:29 - 01756608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll 2015-08-24 17:18 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll 2015-08-24 17:18 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll 2015-08-24 17:18 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll 2015-08-24 17:17 - 2015-08-11 00:52 - 00069416 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll 2015-08-24 17:12 - 2015-08-24 17:12 - 00135846 _____ C:\Users\killbow\Downloads\automate.zip 2015-08-24 17:12 - 2015-08-24 17:12 - 00000000 ____D C:\Users\killbow\AppData\Roaming\WinRAR 2015-08-24 15:31 - 2015-08-24 15:31 - 00001468 _____ C:\ProgramData\tempimage.bmp 2015-08-18 20:30 - 2015-08-13 00:33 - 24593408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-08-18 20:30 - 2015-08-13 00:07 - 19323392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-08-18 20:30 - 2015-08-11 05:23 - 16706560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2015-08-18 20:30 - 2015-08-11 04:57 - 13024768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2015-08-18 20:30 - 2015-08-02 22:18 - 08613200 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2015-08-18 20:30 - 2015-08-02 21:56 - 06878256 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2015-08-18 20:29 - 2015-08-13 00:22 - 02093056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll 2015-08-18 20:29 - 2015-08-13 00:20 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2015-08-18 20:29 - 2015-08-12 23:53 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2015-08-18 20:29 - 2015-08-11 06:04 - 04532304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2015-08-18 20:29 - 2015-08-11 06:04 - 02462648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2015-08-18 20:29 - 2015-08-11 06:04 - 01087296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2015-08-18 20:29 - 2015-08-11 06:03 - 00442208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2015-08-18 20:29 - 2015-08-11 06:02 - 00554744 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll 2015-08-18 20:29 - 2015-08-11 06:02 - 00292856 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe 2015-08-18 20:29 - 2015-08-11 06:02 - 00080720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys 2015-08-18 20:29 - 2015-08-11 05:57 - 03622256 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-08-18 20:29 - 2015-08-11 05:52 - 00993104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2015-08-18 20:29 - 2015-08-11 05:50 - 01643872 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2015-08-18 20:29 - 2015-08-11 05:40 - 04048808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2015-08-18 20:29 - 2015-08-11 05:40 - 02151208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2015-08-18 20:29 - 2015-08-11 05:40 - 00918320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2015-08-18 20:29 - 2015-08-11 05:38 - 00454000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll 2015-08-18 20:29 - 2015-08-11 05:37 - 00243800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe 2015-08-18 20:29 - 2015-08-11 05:31 - 02880032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-08-18 20:29 - 2015-08-11 05:26 - 00845664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2015-08-18 20:29 - 2015-08-11 05:21 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll 2015-08-18 20:29 - 2015-08-11 05:21 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll 2015-08-18 20:29 - 2015-08-11 05:20 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2015-08-18 20:29 - 2015-08-11 05:19 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll 2015-08-18 20:29 - 2015-08-11 05:18 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll 2015-08-18 20:29 - 2015-08-11 05:16 - 02416640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2015-08-18 20:29 - 2015-08-11 05:14 - 00404480 _____ C:\WINDOWS\system32\diagtrack_wininternal.dll 2015-08-18 20:29 - 2015-08-11 05:13 - 00413184 _____ C:\WINDOWS\system32\diagtrack_win.dll 2015-08-18 20:29 - 2015-08-11 05:11 - 02446336 _____ C:\WINDOWS\system32\InputService.dll 2015-08-18 20:29 - 2015-08-11 05:11 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe 2015-08-18 20:29 - 2015-08-11 05:10 - 00778752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2015-08-18 20:29 - 2015-08-11 05:10 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-08-18 20:29 - 2015-08-11 05:10 - 00293376 _____ C:\WINDOWS\system32\TextInputFramework.dll 2015-08-18 20:29 - 2015-08-11 05:09 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll 2015-08-18 20:29 - 2015-08-11 05:08 - 00893440 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll 2015-08-18 20:29 - 2015-08-11 05:08 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll 2015-08-18 20:29 - 2015-08-11 05:07 - 01178112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2015-08-18 20:29 - 2015-08-11 05:07 - 00593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2015-08-18 20:29 - 2015-08-11 05:07 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeParserTask.exe 2015-08-18 20:29 - 2015-08-11 05:06 - 07523328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2015-08-18 20:29 - 2015-08-11 05:06 - 02662400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2015-08-18 20:29 - 2015-08-11 05:05 - 03527168 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2015-08-18 20:29 - 2015-08-11 05:05 - 00996352 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2015-08-18 20:29 - 2015-08-11 05:05 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationGeofences.dll 2015-08-18 20:29 - 2015-08-11 05:05 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll 2015-08-18 20:29 - 2015-08-11 05:05 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPermissions.dll 2015-08-18 20:29 - 2015-08-11 05:05 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll 2015-08-18 20:29 - 2015-08-11 05:03 - 02558976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2015-08-18 20:29 - 2015-08-11 05:02 - 03588096 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2015-08-18 20:29 - 2015-08-11 05:02 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2015-08-18 20:29 - 2015-08-11 05:02 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll 2015-08-18 20:29 - 2015-08-11 05:01 - 01334784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2015-08-18 20:29 - 2015-08-11 05:00 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2015-08-18 20:29 - 2015-08-11 05:00 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll 2015-08-18 20:29 - 2015-08-11 04:59 - 01106432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll 2015-08-18 20:29 - 2015-08-11 04:59 - 00642560 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll 2015-08-18 20:29 - 2015-08-11 04:59 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2015-08-18 20:29 - 2015-08-11 04:59 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tetheringclient.dll 2015-08-18 20:29 - 2015-08-11 04:58 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll 2015-08-18 20:29 - 2015-08-11 04:57 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll 2015-08-18 20:29 - 2015-08-11 04:51 - 01916928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2015-08-18 20:29 - 2015-08-11 04:51 - 01823232 _____ C:\WINDOWS\SysWOW64\InputService.dll 2015-08-18 20:29 - 2015-08-11 04:50 - 00420352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe 2015-08-18 20:29 - 2015-08-11 04:50 - 00200704 _____ C:\WINDOWS\SysWOW64\TextInputFramework.dll 2015-08-18 20:29 - 2015-08-11 04:50 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll 2015-08-18 20:29 - 2015-08-11 04:49 - 00586752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2015-08-18 20:29 - 2015-08-11 04:49 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-08-18 20:29 - 2015-08-11 04:48 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll 2015-08-18 20:29 - 2015-08-11 04:47 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll 2015-08-18 20:29 - 2015-08-11 04:45 - 01820672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2015-08-18 20:29 - 2015-08-11 04:43 - 02748416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2015-08-18 20:29 - 2015-08-11 04:42 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2015-08-18 20:29 - 2015-08-11 04:40 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2015-08-18 20:29 - 2015-08-11 04:40 - 01112064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2015-08-18 20:29 - 2015-08-11 04:39 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2015-08-18 20:29 - 2015-08-11 04:38 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll 2015-08-18 20:29 - 2015-08-08 03:29 - 01822280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2015-08-18 20:29 - 2015-08-08 03:19 - 00608936 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2015-08-18 20:29 - 2015-08-08 03:01 - 01533496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2015-08-18 20:29 - 2015-08-08 02:48 - 00539728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2015-08-18 20:29 - 2015-08-08 02:40 - 00365056 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2015-08-18 20:29 - 2015-08-08 02:24 - 02415104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2015-08-18 20:29 - 2015-08-08 02:24 - 01679360 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2015-08-18 20:29 - 2015-08-08 02:15 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2015-08-18 20:29 - 2015-08-08 02:00 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2015-08-18 20:29 - 2015-08-05 23:17 - 00237392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdyboost.sys 2015-08-18 20:29 - 2015-08-05 23:17 - 00200528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2015-08-18 20:29 - 2015-08-05 22:22 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys 2015-08-18 20:29 - 2015-08-05 00:49 - 00783112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2015-08-18 20:29 - 2015-08-05 00:29 - 00644128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2015-08-18 20:29 - 2015-08-05 00:00 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll 2015-08-18 20:29 - 2015-08-04 23:54 - 01274880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2015-08-18 20:29 - 2015-08-04 23:47 - 01383424 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2015-08-18 20:29 - 2015-08-04 23:39 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActionCenter.dll 2015-08-18 20:29 - 2015-08-04 00:07 - 00102752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys 2015-08-18 20:29 - 2015-08-04 00:06 - 00583128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2015-08-18 20:29 - 2015-08-04 00:06 - 00243248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2015-08-18 20:29 - 2015-08-03 23:23 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll 2015-08-18 20:29 - 2015-08-03 22:59 - 01212416 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll 2015-08-18 20:29 - 2015-08-03 22:47 - 00898560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll 2015-08-18 20:29 - 2015-08-02 22:32 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll 2015-08-18 20:29 - 2015-08-02 22:28 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NotificationObjFactory.dll 2015-08-18 20:29 - 2015-08-02 22:19 - 00505696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2015-08-18 20:29 - 2015-08-02 22:19 - 00393568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2015-08-18 20:29 - 2015-08-02 22:18 - 01983840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2015-08-18 20:29 - 2015-08-02 22:18 - 00594472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll 2015-08-18 20:29 - 2015-08-02 22:18 - 00046432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpiowin32.sys 2015-08-18 20:29 - 2015-08-02 22:17 - 00516960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2015-08-18 20:29 - 2015-08-02 22:17 - 00052264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys 2015-08-18 20:29 - 2015-08-02 22:12 - 00801632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2015-08-18 20:29 - 2015-08-02 21:49 - 00700256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2015-08-18 20:29 - 2015-08-02 21:31 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2015-08-18 20:29 - 2015-08-02 21:30 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll 2015-08-18 20:29 - 2015-08-02 21:24 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2015-08-18 20:29 - 2015-08-02 21:24 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll 2015-08-18 20:29 - 2015-08-02 21:24 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll 2015-08-18 20:29 - 2015-08-02 21:23 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll 2015-08-18 20:29 - 2015-08-02 21:22 - 01601536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2015-08-18 20:29 - 2015-08-02 21:22 - 01008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll 2015-08-18 20:29 - 2015-08-02 21:22 - 00317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll 2015-08-18 20:29 - 2015-08-02 21:21 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll 2015-08-18 20:29 - 2015-08-02 21:19 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe 2015-08-18 20:29 - 2015-08-02 21:19 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe 2015-08-18 20:29 - 2015-08-02 21:18 - 12503552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-08-18 20:29 - 2015-08-02 21:18 - 03780096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2015-08-18 20:29 - 2015-08-02 21:18 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll 2015-08-18 20:29 - 2015-08-02 21:18 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkStatus.dll 2015-08-18 20:29 - 2015-08-02 21:15 - 01290752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2015-08-18 20:29 - 2015-08-02 21:15 - 00595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2015-08-18 20:29 - 2015-08-02 21:15 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll 2015-08-18 20:29 - 2015-08-02 21:15 - 00384000 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll 2015-08-18 20:29 - 2015-08-02 21:15 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll 2015-08-18 20:29 - 2015-08-02 21:14 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll 2015-08-18 20:29 - 2015-08-02 21:12 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll 2015-08-18 20:29 - 2015-08-02 21:12 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll 2015-08-18 20:29 - 2015-08-02 21:11 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll 2015-08-18 20:29 - 2015-08-02 21:10 - 01162240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2015-08-18 20:29 - 2015-08-02 21:06 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe 2015-08-18 20:29 - 2015-08-02 21:03 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll 2015-08-18 20:29 - 2015-08-02 21:02 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll 2015-08-18 20:29 - 2015-08-02 21:02 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2015-08-18 20:29 - 2015-08-02 21:01 - 11262464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-08-18 20:29 - 2015-08-02 20:59 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll 2015-08-16 08:19 - 2015-09-05 07:23 - 00004176 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{86B7472F-1D57-490F-A760-2FCF60FDF9BC} 2015-08-16 00:54 - 2015-08-16 00:54 - 00000000 ____D C:\Users\killbow\AppData\Roaming\Macromedia 2015-08-16 00:53 - 2015-08-16 00:54 - 00000000 ____D C:\Users\killbow\AppData\Roaming\Mozilla 2015-08-16 00:49 - 2015-08-16 00:52 - 00000000 ___HD C:\$SysReset 2015-08-14 21:24 - 2015-08-14 21:24 - 00000000 ____D C:\WINDOWS\PCHEALTH 2015-08-14 21:21 - 2015-07-28 10:59 - 132483416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2015-08-09 18:54 - 2015-08-24 15:27 - 00000000 ____D C:\Users\killbow\AppData\Roaming\Media Player Classic 2015-08-09 18:52 - 2015-09-04 03:22 - 00000000 ____D C:\Users\DefaultAppPool 2015-08-09 18:52 - 2015-08-09 18:52 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini 2015-08-09 18:52 - 2015-08-09 18:52 - 00000000 _SHDL C:\Users\DefaultAppPool\Voisinage réseau 2015-08-09 18:52 - 2015-08-09 18:52 - 00000000 _SHDL C:\Users\DefaultAppPool\Voisinage d'impression 2015-08-09 18:52 - 2015-08-09 18:52 - 00000000 _SHDL C:\Users\DefaultAppPool\Modèles 2015-08-09 18:52 - 2015-08-09 18:52 - 00000000 _SHDL C:\Users\DefaultAppPool\Menu Démarrer 2015-08-09 18:52 - 2015-08-09 18:52 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Mes vidéos 2015-08-09 18:52 - 2015-08-09 18:52 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Mes images 2015-08-09 18:52 - 2015-08-09 18:52 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Ma musique 2015-08-09 18:52 - 2015-08-09 18:52 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2015-08-09 18:52 - 2015-08-09 18:52 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Historique 2015-08-09 18:52 - 2015-08-06 05:04 - 00000000 ___RD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-09 18:52 - 2015-08-06 05:04 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Local\Microsoft Help 2015-08-09 18:52 - 2015-07-10 07:04 - 00000000 __RSD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-08-09 18:52 - 2015-07-10 07:04 - 00000000 ___RD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-09 18:52 - 2015-07-10 07:04 - 00000000 ___RD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-08-09 18:52 - 2015-07-10 07:04 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-08-09 18:51 - 2015-08-09 18:52 - 00000000 ____D C:\Users\killbow\AppData\Roaming\Winamp 2015-08-09 18:51 - 2015-08-09 18:51 - 00000000 ____D C:\Users\killbow\Documents\CyberLink 2015-08-09 18:51 - 2015-08-09 18:51 - 00000000 ____D C:\Users\killbow\AppData\Roaming\CyberLink 2015-08-09 18:50 - 2015-09-01 19:44 - 00000000 ____D C:\Users\killbow\AppData\Roaming\vlc 2015-08-09 18:50 - 2015-08-19 22:12 - 00002430 _____ C:\Users\killbow\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2015-08-09 18:50 - 2015-08-19 22:12 - 00000000 ___RD C:\Users\killbow\OneDrive 2015-08-09 18:49 - 2015-09-04 20:55 - 00000000 ____D C:\Users\killbow\AppData\Local\Packages 2015-08-09 18:49 - 2015-08-09 18:49 - 00000020 ___SH C:\Users\killbow\ntuser.ini 2015-08-09 18:49 - 2015-08-09 18:49 - 00000000 ____D C:\Users\killbow\Documents\HTC 2015-08-09 18:49 - 2015-08-09 18:49 - 00000000 ____D C:\Users\killbow\AppData\Roaming\Apple Computer 2015-08-09 18:49 - 2015-08-09 18:49 - 00000000 ____D C:\Users\killbow\AppData\Local\TileDataLayer 2015-08-09 18:49 - 2015-08-09 18:49 - 00000000 ____D C:\Users\killbow\.android 2015-08-09 11:02 - 2015-08-24 15:36 - 00344344 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-08-09 10:38 - 2015-09-05 08:07 - 00007014 _____ C:\WINDOWS\system32\PerfStringBackup.TMP 2015-08-09 10:38 - 2015-07-05 06:08 - 00300704 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2015-08-09 10:24 - 2015-08-24 15:30 - 00000000 ____D C:\ProgramData\DataFile 2015-08-09 10:16 - 2015-08-09 11:18 - 01875456 _____ C:\Users\Gate10000\Downloads\ZHPCleaner (2).exe 2015-08-09 10:16 - 2015-08-09 11:04 - 01875456 _____ C:\Users\Gate10000\Downloads\ZHPCleaner (1).exe 2015-08-09 09:55 - 2015-08-09 09:55 - 00000000 _____ C:\WINDOWS\SysWOW64\Number of results 2015-08-09 09:21 - 2015-08-09 09:21 - 00000000 ____D C:\WINDOWS\system32\hiic 2015-08-09 09:21 - 2015-08-09 09:21 - 00000000 _____ C:\dummy.htm 2015-08-07 20:22 - 2015-09-02 18:02 - 00000790 _____ C:\Users\Gate10000\Desktop\Windroy.lnk 2015-08-07 20:22 - 2015-08-07 20:22 - 00000000 ____D C:\Windroy 2015-08-07 20:22 - 2015-08-07 20:22 - 00000000 ____D C:\Users\Gate10000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windroy 2015-08-07 20:20 - 2015-08-07 20:21 - 83252212 _____ (Windroy, Inc. ) C:\Users\Gate10000\Downloads\windroy_20140113.exe 2015-08-07 19:46 - 2015-08-07 19:46 - 01873920 _____ C:\Users\Gate10000\Downloads\ZHPCleaner.exe 2015-08-07 19:42 - 2015-09-05 08:10 - 01948160 _____ C:\Users\Gate10000\ZHPCleaner.exe 2015-08-07 19:29 - 2015-08-07 19:29 - 02248704 _____ C:\Users\Gate10000\Downloads\AdwCleaner-4.208.exe 2015-08-07 17:42 - 2015-08-07 17:43 - 00161572 _____ C:\Users\Gate10000\genymotion-log.zip 2015-08-07 17:41 - 2015-08-07 19:37 - 00000000 ____D C:\Users\Gate10000\AppData\Local\Genymobile 2015-08-07 08:38 - 2015-08-07 08:39 - 132197656 _____ (Genymobile ) C:\Users\Gate10000\Downloads\genymotion-2.5.3-vbox.exe 2015-08-06 23:23 - 2015-09-04 20:27 - 00000000 ____D C:\WINDOWS\Minidump 2015-08-06 16:42 - 2015-09-02 18:02 - 00001742 _____ C:\Users\Gate10000\AppData\Roaming\Microsoft\Windows\Start Menu\BlueStacks.lnk 2015-08-06 16:42 - 2015-09-02 18:02 - 00001718 _____ C:\Users\Gate10000\Desktop\BlueStacks.lnk 2015-08-06 16:41 - 2015-08-06 16:42 - 00000000 ____D C:\ProgramData\BlueStacksGameManager 2015-08-06 16:31 - 2015-08-06 16:35 - 264550032 _____ (BlueStack Systems Inc.) C:\Users\Gate10000\Downloads\BlueStacks-Installer.exe 2015-08-06 16:30 - 2015-08-06 16:31 - 14246072 _____ (BlueStack Systems Inc.) C:\Users\Gate10000\Downloads\BlueStacks-ThinInstaller (1).exe 2015-08-06 14:40 - 2015-08-24 21:07 - 00000000 ____D C:\Users\Gate10000\AppData\Local\Comms 2015-08-06 14:32 - 2015-09-05 07:55 - 00004180 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{78F4B48D-7C71-4D39-A945-D9304A2B1407} 2015-08-06 14:30 - 2015-08-06 14:30 - 00000000 ____D C:\Users\Gate10000\AppData\Roaming\Opera Software 2015-08-06 14:30 - 2015-08-06 14:30 - 00000000 ____D C:\Users\Gate10000\AppData\Local\Opera Software 2015-08-06 14:29 - 2013-10-16 00:05 - 00450642 ____R C:\WINDOWS\system32\Drivers\etc\hp.bak 2015-08-06 14:28 - 2015-08-07 19:45 - 00000000 ____D C:\Users\Gate10000\AppData\Local\MicrosoftEdge 2015-08-06 14:28 - 2015-08-06 14:58 - 00000000 ____D C:\Program Files\015 2015-08-06 14:28 - 2015-08-06 14:47 - 00000000 ____D C:\Program Files\13 2015-08-06 14:28 - 2015-08-06 14:40 - 00000000 ____D C:\Program Files (x86)\Opera 2015-08-06 14:28 - 2015-08-06 14:28 - 14246072 _____ (BlueStack Systems Inc.) C:\Users\Gate10000\Downloads\BlueStacks-ThinInstaller.exe 2015-08-06 14:28 - 2015-08-06 14:28 - 00000102 _____ C:\Users\Gate10000\Desktop\BlueStacks.url 2015-08-06 14:22 - 2015-08-06 22:09 - 00000000 ____D C:\Users\Gate10000\Downloads\BlueStacks 2015-08-06 06:01 - 2015-08-06 06:01 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2015-08-06 05:32 - 2015-08-06 05:32 - 00000000 ____D C:\Users\Gate10000\AppData\Local\PeerDistRepub 2015-08-06 05:13 - 2015-09-02 18:02 - 00002436 _____ C:\Users\Gate10000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2015-08-06 05:13 - 2015-08-24 17:14 - 00000000 ___RD C:\Users\Gate10000\OneDrive 2015-08-06 05:13 - 2015-08-06 05:13 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2015-08-06 05:13 - 2015-07-09 20:39 - 04847104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll 2015-08-06 05:13 - 2015-07-09 20:36 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons0009.dll 2015-08-06 05:13 - 2015-07-09 20:28 - 06358016 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll 2015-08-06 05:13 - 2015-07-09 20:25 - 05739520 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll 2015-08-06 05:13 - 2015-07-09 20:25 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll 2015-08-06 05:12 - 2015-09-02 18:02 - 00001051 _____ C:\Users\Gate10000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fonctionnalités optionnelles.lnk 2015-08-06 05:11 - 2015-08-06 18:55 - 00000000 ____D C:\Users\Gate10000\AppData\Local\Packages 2015-08-06 05:11 - 2015-08-06 05:11 - 00000020 ___SH C:\Users\Gate10000\ntuser.ini 2015-08-06 05:11 - 2015-08-06 05:11 - 00000000 ____D C:\Users\Gate10000\AppData\Local\TileDataLayer 2015-08-06 05:11 - 2015-08-06 05:11 - 00000000 ____D C:\Users\Gate10000\AppData\Local\Publishers 2015-08-06 05:08 - 2015-08-06 05:08 - 00000000 _SHDL C:\Users\Default\Voisinage réseau 2015-08-06 05:08 - 2015-08-06 05:08 - 00000000 _SHDL C:\Users\Default\Voisinage d'impression 2015-08-06 05:08 - 2015-08-06 05:08 - 00000000 _SHDL C:\Users\Default\Modèles 2015-08-06 05:08 - 2015-08-06 05:08 - 00000000 _SHDL C:\Users\Default\Menu Démarrer 2015-08-06 05:08 - 2015-08-06 05:08 - 00000000 _SHDL C:\Users\Default\Documents\Mes vidéos 2015-08-06 05:08 - 2015-08-06 05:08 - 00000000 _SHDL C:\Users\Default\Documents\Mes images 2015-08-06 05:08 - 2015-08-06 05:08 - 00000000 _SHDL C:\Users\Default\Documents\Ma musique 2015-08-06 05:08 - 2015-08-06 05:08 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2015-08-06 05:08 - 2015-08-06 05:08 - 00000000 _SHDL C:\Users\Default\AppData\Local\Historique 2015-08-06 05:08 - 2015-08-06 05:08 - 00000000 _SHDL C:\Users\Default User\Documents\Mes vidéos 2015-08-06 05:08 - 2015-08-06 05:08 - 00000000 _SHDL C:\Users\Default User\Documents\Mes images 2015-08-06 05:08 - 2015-08-06 05:08 - 00000000 _SHDL C:\Users\Default User\Documents\Ma musique 2015-08-06 05:08 - 2015-08-06 05:08 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2015-08-06 05:08 - 2015-08-06 05:08 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Historique 2015-08-06 05:08 - 2015-08-06 05:08 - 00000000 __SHD C:\Recovery 2015-08-06 05:04 - 2015-09-02 18:02 - 00001540 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2015-08-06 05:04 - 2015-08-06 05:04 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help 2015-08-06 05:04 - 2015-08-06 05:04 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help 2015-08-06 05:03 - 2015-08-06 05:03 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines 2015-08-06 05:03 - 2015-07-10 06:59 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2015-08-06 05:02 - 2015-09-05 08:10 - 00000000 ____D C:\Users\Gate10000 2015-08-06 05:02 - 2015-09-04 20:30 - 00000000 ____D C:\Users\killbow 2015-08-06 05:02 - 2015-09-01 21:44 - 00000000 ___RD C:\Users\killbow\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-06 05:02 - 2015-08-06 05:11 - 00000000 ___RD C:\Users\Gate10000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-06 05:02 - 2015-08-06 05:02 - 00000000 _SHDL C:\Users\killbow\Voisinage réseau 2015-08-06 05:02 - 2015-08-06 05:02 - 00000000 _SHDL C:\Users\killbow\Voisinage d'impression 2015-08-06 05:02 - 2015-08-06 05:02 - 00000000 _SHDL C:\Users\killbow\Modèles 2015-08-06 05:02 - 2015-08-06 05:02 - 00000000 _SHDL C:\Users\killbow\Menu Démarrer 2015-08-06 05:02 - 2015-08-06 05:02 - 00000000 _SHDL C:\Users\killbow\Documents\Mes vidéos 2015-08-06 05:02 - 2015-08-06 05:02 - 00000000 _SHDL C:\Users\killbow\Documents\Mes images 2015-08-06 05:02 - 2015-08-06 05:02 - 00000000 _SHDL C:\Users\killbow\Documents\Ma musique 2015-08-06 05:02 - 2015-08-06 05:02 - 00000000 _SHDL C:\Users\killbow\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2015-08-06 05:02 - 2015-08-06 05:02 - 00000000 _SHDL C:\Users\Gate10000\Voisinage réseau 2015-08-06 05:02 - 2015-08-06 05:02 - 00000000 _SHDL C:\Users\Gate10000\Voisinage d'impression 2015-08-06 05:02 - 2015-08-06 05:02 - 00000000 _SHDL C:\Users\Gate10000\Modèles 2015-08-06 05:02 - 2015-08-06 05:02 - 00000000 _SHDL C:\Users\Gate10000\Menu Démarrer 2015-08-06 05:02 - 2015-08-06 05:02 - 00000000 _SHDL C:\Users\Gate10000\Documents\Mes vidéos 2015-08-06 05:02 - 2015-08-06 05:02 - 00000000 _SHDL C:\Users\Gate10000\Documents\Mes images 2015-08-06 05:02 - 2015-08-06 05:02 - 00000000 _SHDL C:\Users\Gate10000\Documents\Ma musique 2015-08-06 05:02 - 2015-08-06 05:02 - 00000000 _SHDL C:\Users\Gate10000\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2015-08-06 05:02 - 2015-08-06 05:02 - 00000000 _SHDL C:\Users\Gate10000\AppData\Local\Historique 2015-08-06 05:02 - 2015-07-10 07:04 - 00000000 __RSD C:\Users\killbow\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-08-06 05:02 - 2015-07-10 07:04 - 00000000 __RSD C:\Users\Gate10000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-08-06 05:02 - 2015-07-10 07:04 - 00000000 ___RD C:\Users\killbow\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-06 05:02 - 2015-07-10 07:04 - 00000000 ___RD C:\Users\killbow\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-08-06 05:02 - 2015-07-10 07:04 - 00000000 ___RD C:\Users\Gate10000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-06 05:02 - 2015-07-10 07:04 - 00000000 ___RD C:\Users\Gate10000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-08-06 05:02 - 2015-07-10 07:04 - 00000000 ____D C:\Users\killbow\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-08-06 05:02 - 2015-07-10 07:04 - 00000000 ____D C:\Users\Gate10000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-08-06 05:01 - 2015-09-05 08:20 - 00000000 ____D C:\ProgramData\NVIDIA 2015-08-06 05:01 - 2015-08-24 17:24 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2015-08-06 05:01 - 2015-08-07 00:27 - 03491960 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2015-08-06 05:01 - 2015-08-07 00:27 - 02558768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2015-08-06 05:01 - 2015-08-07 00:27 - 00937776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe 2015-08-06 05:01 - 2015-08-06 14:49 - 00000000 ____D C:\Program Files (x86)\Razer 2015-08-06 05:01 - 2015-08-06 14:45 - 00000000 ____D C:\ProgramData\Razer 2015-08-06 05:01 - 2015-08-06 05:03 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2015-08-06 05:01 - 2015-08-06 05:03 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2015-08-06 05:01 - 2015-08-06 05:01 - 02027078 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2015-08-06 05:01 - 2015-08-06 05:01 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2015-08-06 05:01 - 2015-08-06 05:01 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2015-08-06 05:01 - 2015-08-06 05:01 - 00000000 ____D C:\WINDOWS\system32\DAX2 2015-08-06 05:01 - 2015-08-06 05:01 - 00000000 ____D C:\Program Files\Realtek ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2015-09-05 08:20 - 2015-07-10 08:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-09-05 08:20 - 2014-07-25 21:47 - 00000000 ____D C:\Users\Gate10000\AppData\Local\HTC MediaHub 2015-09-05 08:19 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\sru 2015-09-05 08:19 - 2015-07-10 05:05 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2015-09-05 08:18 - 2015-05-22 15:26 - 00000000 ____D C:\Users\Gate10000\AppData\Roaming\ZHP 2015-09-05 08:15 - 2013-11-20 23:32 - 00001002 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2015-09-05 07:51 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-09-05 07:33 - 2014-06-03 16:16 - 00000000 ____D C:\Program Files\CCleaner 2015-09-04 03:22 - 2015-07-10 12:29 - 00000000 ____D C:\Program Files\Windows Journal 2015-09-04 03:22 - 2015-07-10 07:04 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-09-04 03:22 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\registration 2015-09-04 03:22 - 2015-07-10 07:04 - 00000000 ____D C:\Program Files\Windows NT 2015-09-04 03:22 - 2015-07-10 05:05 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2015-09-04 03:22 - 2009-07-14 01:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-09-02 19:53 - 2015-05-22 15:26 - 00000911 _____ C:\Users\Gate10000\Desktop\ZHPDiag.lnk 2015-09-02 19:23 - 2015-07-10 07:04 - 00000000 ____D C:\Program Files\Common Files\System 2015-09-02 19:23 - 2014-06-03 16:11 - 00000000 ____D C:\AdwCleaner 2015-09-02 19:20 - 2014-09-11 19:52 - 00002342 _____ C:\Users\Gate10000\Desktop\OpenHardwareMonitor - Raccourci.lnk 2015-09-02 18:11 - 2015-07-10 06:55 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-09-02 18:02 - 2015-06-15 15:15 - 00002199 _____ C:\Users\Public\Desktop\CyberLink PowerDVD 14.lnk 2015-09-02 18:02 - 2015-05-22 14:36 - 00001122 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2015-09-02 18:02 - 2015-05-22 14:36 - 00001116 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2015-09-02 18:02 - 2015-04-26 12:16 - 00002429 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2015-09-02 18:02 - 2015-04-26 12:16 - 00002041 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk 2015-09-02 18:02 - 2015-03-26 18:20 - 00001064 _____ C:\Users\Public\Desktop\VLC media player.lnk 2015-09-02 18:02 - 2014-12-25 10:58 - 00001005 _____ C:\Users\Public\Desktop\UltraISO.lnk 2015-09-02 18:02 - 2014-12-25 01:30 - 00001987 _____ C:\Users\Public\Desktop\DAEMON Tools Ultra.lnk 2015-09-02 18:02 - 2014-12-25 01:24 - 00000000 ____D C:\Users\Public\Documents\DAEMON Tools Ultra 2.1.0.0187 2015-09-02 18:02 - 2014-08-30 12:46 - 00002318 _____ C:\Users\Public\Desktop\Aiseesoft Blu-ray Player.lnk 2015-09-02 18:02 - 2014-07-25 21:47 - 00002025 _____ C:\Users\Public\Desktop\HTC Sync Manager.lnk 2015-09-02 18:02 - 2014-06-03 19:18 - 00001448 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2015-09-02 18:02 - 2014-05-08 23:06 - 00001209 _____ C:\Users\Gate10000\Desktop\cmd - Raccourci.lnk 2015-09-02 18:02 - 2014-01-10 18:37 - 00001350 _____ C:\Users\Gate10000\Desktop\monopoly - Raccourci.lnk 2015-09-02 18:02 - 2013-10-16 22:15 - 00000651 _____ C:\Users\Gate10000\Desktop\Movies - Raccourci.lnk 2015-09-02 18:02 - 2013-10-16 22:15 - 00000642 _____ C:\Users\Gate10000\Desktop\Games - Raccourci.lnk 2015-09-02 18:02 - 2013-10-16 20:37 - 00000466 _____ C:\Users\Gate10000\Desktop\Disque local (D).lnk 2015-09-02 18:02 - 2013-10-15 23:57 - 00002735 _____ C:\Users\Gate10000\Desktop\Microsoft Office Word 2007.lnk 2015-09-02 18:02 - 2013-10-15 23:57 - 00002693 _____ C:\Users\Gate10000\Desktop\Microsoft Office Excel 2007.lnk 2015-09-02 18:02 - 2013-10-15 23:56 - 00002681 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Nouveau document Microsoft Office.lnk 2015-09-02 18:02 - 2013-10-15 23:56 - 00002677 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Ouvrir un document Microsoft Office.lnk 2015-09-02 18:02 - 2013-10-15 23:52 - 00000977 _____ C:\Users\Public\Desktop\Winamp.lnk 2015-09-02 18:02 - 2013-10-15 23:50 - 00001232 _____ C:\Users\Gate10000\Desktop\ConvertXtoDVD 4.lnk 2015-09-02 18:02 - 2013-10-15 23:50 - 00001166 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 8.lnk 2015-09-02 18:02 - 2013-10-15 23:50 - 00001160 _____ C:\Users\Public\Desktop\TeamViewer 8.lnk 2015-09-02 18:02 - 2013-10-15 23:30 - 00000000 ____D C:\Program Files (x86)\Adobe 2015-09-02 18:02 - 2013-10-15 23:01 - 00000481 _____ C:\Users\Gate10000\Desktop\Système.lnk 2015-09-02 18:02 - 2013-10-15 21:50 - 00000497 _____ C:\Users\Gate10000\Desktop\Windows Update.lnk 2015-09-02 09:18 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\rescache 2015-09-02 07:37 - 2014-01-10 18:26 - 00000000 ____D C:\Program Files (x86)\Zylom Games 2015-09-02 07:35 - 2014-06-20 08:21 - 00000000 ____D C:\Program Files (x86)\Zenimax Online 2015-09-02 07:34 - 2014-12-25 13:32 - 00000000 ____D C:\Program Files (x86)\Nero 2015-09-02 07:34 - 2014-12-25 13:31 - 00000000 ____D C:\ProgramData\Nero 2015-09-01 20:06 - 2015-05-25 18:45 - 00000000 ____D C:\Program Files (x86)\ZHPFix 2015-09-01 20:06 - 2015-05-22 15:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP 2015-09-01 20:00 - 2014-08-19 18:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-09-01 15:31 - 2015-05-29 22:22 - 00000000 ____D C:\Users\Gate10000\Desktop\Anciennes données de Firefox 2015-08-31 19:23 - 2014-06-24 09:32 - 00000000 ____D C:\Users\killbow\AppData\Local\NVIDIA Corporation 2015-08-31 19:16 - 2014-06-24 09:32 - 00000000 ____D C:\Users\killbow\AppData\Local\NVIDIA 2015-08-31 18:26 - 2015-07-03 11:51 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-08-29 21:58 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\oobe 2015-08-29 21:58 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\appraiser 2015-08-26 11:43 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\LiveKernelReports 2015-08-24 21:13 - 2015-05-22 14:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-08-24 21:11 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\NDF 2015-08-24 17:26 - 2014-06-03 19:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2015-08-24 15:27 - 2015-08-05 23:59 - 00000000 ___DC C:\WINDOWS\Panther 2015-08-19 08:31 - 2015-07-10 07:04 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-19 08:31 - 2015-07-10 07:04 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-19 08:31 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2015-08-17 19:30 - 2014-06-03 19:18 - 01423120 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll 2015-08-17 19:30 - 2014-06-02 14:17 - 01316184 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll 2015-08-17 19:29 - 2014-06-03 19:18 - 01710568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2015-08-14 21:24 - 2013-10-15 23:54 - 00000000 ____D C:\ProgramData\Microsoft Help 2015-08-14 21:23 - 2013-10-15 21:56 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-08-14 21:15 - 2013-11-20 23:32 - 00003976 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2015-08-11 15:52 - 2015-08-05 03:40 - 11174544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys 2015-08-11 00:52 - 2015-07-31 09:38 - 00072504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll 2015-08-11 00:52 - 2015-07-31 09:38 - 00050472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys 2015-08-09 09:21 - 2015-07-10 07:00 - 00680256 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2015-08-09 09:21 - 2015-07-10 07:00 - 00534064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2015-08-08 11:38 - 2015-07-10 07:06 - 00794088 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-08-08 11:38 - 2015-07-10 07:06 - 00179688 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2015-08-07 19:41 - 2015-05-29 22:38 - 00000000 ____D C:\Users\Gate10000\AppData\Roaming\Skype 2015-08-07 19:41 - 2015-05-29 22:38 - 00000000 ____D C:\ProgramData\Skype 2015-08-07 19:39 - 2015-08-05 16:48 - 00000000 ____D C:\Users\Gate10000\VirtualBox VMs 2015-08-07 19:39 - 2015-08-05 16:39 - 00000000 ____D C:\Program Files\Andy 2015-08-07 19:36 - 2015-08-05 16:48 - 00000000 ____D C:\Users\Gate10000\.VirtualBox 2015-08-07 19:22 - 2014-10-29 18:18 - 00000000 ____D C:\ProgramData\BlueStacksSetup 2015-08-07 19:22 - 2013-10-16 20:34 - 00000000 ____D C:\Users\Gate10000\AppData\Roaming\Media Player Classic 2015-08-07 17:15 - 2009-07-13 22:34 - 00000498 _____ C:\WINDOWS\win.ini 2015-08-07 07:07 - 2015-08-05 03:40 - 17926480 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll 2015-08-07 07:07 - 2015-08-05 03:40 - 15328296 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll 2015-08-07 07:07 - 2015-08-05 03:40 - 12609072 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll 2015-08-07 07:07 - 2015-08-05 03:40 - 03462776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2015-08-07 07:07 - 2015-08-05 03:40 - 03059856 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2015-08-07 07:07 - 2015-08-05 03:40 - 00204648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys 2015-08-07 07:07 - 2014-06-27 22:06 - 00105264 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2015-08-07 04:08 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\appcompat 2015-08-06 16:42 - 2015-05-14 07:21 - 00000000 ____D C:\Program Files (x86)\BlueStacks 2015-08-06 16:37 - 2015-07-10 07:04 - 00000000 __RHD C:\Users\Public\Libraries 2015-08-06 16:36 - 2014-10-29 18:19 - 00000000 ____D C:\ProgramData\BlueStacks 2015-08-06 14:50 - 2014-01-10 23:16 - 00000000 ____D C:\ProgramData\Package Cache 2015-08-06 14:36 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\restore 2015-08-06 05:13 - 2015-07-10 12:24 - 00000000 ____D C:\WINDOWS\OCR 2015-08-06 05:11 - 2015-07-10 07:04 - 00000000 ___RD C:\WINDOWS\PurchaseDialog 2015-08-06 05:11 - 2015-07-10 07:04 - 00000000 ___RD C:\WINDOWS\PrintDialog 2015-08-06 05:11 - 2015-07-10 07:04 - 00000000 ___RD C:\WINDOWS\MiracastView 2015-08-06 05:11 - 2015-07-10 07:04 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2015-08-06 05:11 - 2014-08-30 17:50 - 00000434 _____ C:\WINDOWS\BRWMARK.INI 2015-08-06 05:11 - 2014-08-30 17:50 - 00000027 _____ C:\WINDOWS\BRPP2KA.INI 2015-08-06 05:08 - 2015-07-10 05:05 - 00000000 __RHD C:\Users\Default 2015-08-06 05:07 - 2015-08-05 16:19 - 00003414 _____ C:\WINDOWS\System32\Tasks\{AF4E559C-8781-4947-AE51-E2759B7125B4} 2015-08-06 05:07 - 2015-07-10 07:04 - 00000000 __RSD C:\WINDOWS\Media 2015-08-06 05:07 - 2014-12-25 10:53 - 00003996 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2015-08-06 05:07 - 2014-07-27 14:04 - 00016154 _____ C:\WINDOWS\diagerr.xml 2015-08-06 05:07 - 2014-07-27 14:04 - 00015879 _____ C:\WINDOWS\diagwrn.xml 2015-08-06 05:06 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\spool 2015-08-06 05:04 - 2015-08-05 23:55 - 00000000 ____D C:\Program Files (x86)\MSBuild 2015-08-06 05:04 - 2015-08-05 16:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Andy 2015-08-06 05:04 - 2015-07-10 12:29 - 00000000 ____D C:\WINDOWS\ShellNew 2015-08-06 05:04 - 2015-07-10 05:05 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM 2015-08-06 05:04 - 2015-06-15 15:15 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 14 2015-08-06 05:04 - 2015-03-26 18:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2015-08-06 05:04 - 2014-12-25 10:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraISO 2015-08-06 05:04 - 2014-12-25 01:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Ultra 2015-08-06 05:04 - 2014-08-16 08:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech 2015-08-06 05:04 - 2014-06-27 21:44 - 00000000 ____D C:\Users\Gate10000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-08-06 05:04 - 2013-10-15 23:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2015-08-06 05:04 - 2013-10-15 23:52 - 00000000 ____D C:\Users\Gate10000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Détection de l'application Winamp 2015-08-06 05:04 - 2013-10-15 23:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamp 2015-08-06 05:04 - 2013-10-15 23:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VSO 2015-08-06 05:04 - 2013-10-15 23:45 - 00000000 ____D C:\Users\Gate10000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-08-06 05:04 - 2013-10-15 23:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-08-06 05:04 - 2013-10-15 23:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack 2015-08-06 05:04 - 2009-07-13 23:20 - 00000000 ____D C:\Users\Default.migrated 2015-08-06 05:03 - 2015-07-10 12:23 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep 2015-08-06 05:03 - 2015-07-10 09:19 - 00000000 ____D C:\WINDOWS\DigitalLocker 2015-08-06 05:03 - 2015-07-10 07:04 - 00000000 __SHD C:\Program Files\Windows Sidebar 2015-08-06 05:03 - 2015-07-10 07:04 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar 2015-08-06 05:03 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz 2015-08-06 05:03 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\SysWOW64\IME 2015-08-06 05:03 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\IME 2015-08-06 05:03 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\schemas 2015-08-06 05:03 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\Cursors 2015-08-06 05:03 - 2015-07-10 07:04 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-08-06 05:03 - 2014-08-30 12:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aiseesoft 2015-08-06 05:03 - 2014-07-25 21:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HTC 2015-08-06 05:03 - 2014-03-19 13:15 - 00000000 ____D C:\WINDOWS\system32\appmgmt 2015-08-06 05:03 - 2014-01-10 17:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zylom Games 2015-08-06 05:03 - 2013-10-17 15:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2015-08-06 05:03 - 2013-10-15 23:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2005 2015-08-06 05:03 - 2013-10-15 23:32 - 00000000 ____D C:\WINDOWS\SysWOW64\Adobe 2015-08-06 05:03 - 2009-07-14 01:32 - 00000000 ____D C:\Program Files\DVD Maker 2015-08-06 05:02 - 2015-08-05 16:48 - 00000000 ____D C:\Users\Gate10000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Andy 2015-08-06 05:02 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\system32\Recovery 2015-08-06 05:02 - 2014-08-28 18:51 - 00000000 ____D C:\Users\Gate10000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ZAM Network LLC 2015-08-06 05:01 - 2015-07-10 07:04 - 00000000 ____D C:\WINDOWS\Help 2015-08-06 04:48 - 2009-07-14 00:45 - 00035440 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-08-06 04:48 - 2009-07-14 00:45 - 00035440 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-08-06 04:46 - 2015-07-10 13:02 - 00000000 ___HD C:\$Windows.~BT ==================== Fichiers à la racine de certains dossiers ======= 2015-09-02 16:42 - 2015-09-02 16:42 - 0000017 _____ () C:\Users\Gate10000\AppData\Local\resmon.resmoncfg 2015-08-24 15:31 - 2015-08-24 15:31 - 0001468 _____ () C:\ProgramData\tempimage.bmp Fichiers à déplacer ou supprimer: ==================== C:\Users\Gate10000\ZHPCleaner.exe C:\Users\Gate10000\ZHPDiag3.exe C:\Users\killbow\ZHPCleaner.exe ==================== Bamital & volsnap ================= (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll [2015-07-10 07:00] - [2015-08-09 09:21] - 0680256 ____A (Microsoft Corporation) AD6E2BF530C7884691F6FE7B1F2B2785 C:\WINDOWS\SysWOW64\dnsapi.dll [2015-07-10 07:00] - [2015-08-09 09:21] - 0534064 ____A (Microsoft Corporation) 3B83B024038C1962B42D373931AF9478 C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2015-09-02 08:44 ==================== Fin de FRST.txt ============================