Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version:29-05-2016 Exécuté par Léo Péron (administrateur) sur LÉO (29-05-2016 08:32:26) Exécuté depuis C:\Users\Léo Péron\Desktop Profils chargés: Léo Péron (Profils disponibles: Léo Péron) Platform: Windows 10 Home Version 1511 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Chrome) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe () C:\ProgramData\DatacardService\HWDeviceService64.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel® Corporation) C:\Program Files\Intel\CAM\bin\CAMService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (devolo AG) C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe () C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe () C:\Program Files (x86)\MediaFire Desktop\bin\MFUsnMonitorService.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe (Qualcomm Atheros) C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe () C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Alienware) C:\Program Files\Alienware\Command Center\AlienFusionService.exe (Dell Inc.) C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe (Dell Products, LP.) C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (CyberLink) C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (Dell Inc.) C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe (Dell Inc.) C:\Program Files\Dell\DellDataVault\DellDataVault.exe Impossible d'accéder au processus -> SftService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.10586.168_none_76587b40265ca57e\TiWorker.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avpui.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Alienware) C:\Program Files\Alienware\Command Center\AWCCServiceController.exe (Nota Inc.) C:\Program Files (x86)\Gyazo\GyStation.exe (Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP ENVY 4520 series\Bin\ScanToPCActivationApp.exe () C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe (Alienware) C:\Program Files\Alienware\Command Center\AlienFusionController.exe (Alienware) C:\Program Files\Alienware\Command Center\AlienwareAlienFXController.exe () C:\Program Files (x86)\Alienware On-Screen Display\AlienwareOn-ScreenDisplay.exe (CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe (Alienware) C:\Program Files\Alienware\Command Center\AlienwareTactXMacroController.exe (Alienware) C:\Program Files\Alienware\Command Center\AWCCApplicationWatcher32.exe (Alienware) C:\Program Files\Alienware\Command Center\AWCCApplicationWatcher64.exe () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (VB-AUDIO Software) C:\Program Files (x86)\VB\Voicemeeter\voicemeeter.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe (Microsoft Corporation) C:\Windows\System32\InstallAgent.exe (Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP ENVY 4520 series\Bin\HPNetworkCommunicatorCom.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8512760 2015-08-04] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1411320 2015-08-04] (Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation) HKLM\...\Run: [Command Center Controllers] => C:\Program Files\Alienware\Command Center\AWCCStartupOrchestrator.exe [13840 2013-11-04] (Alienware) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2685072 2015-05-01] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [StageLightUpdate] => C:\Program Files\Stagelight\StagelightUpdate.exe [1391104 2014-12-01] () HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-03-22] (Adobe Systems Incorporated) HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [15009400 2015-10-14] (Logitech Inc.) HKLM\...\Run: [S.T.R.I.K.E.TE] => C:\Program Files\Mad Catz\S.T.R.I.K.E.TE\STRIKE_TE_Profiler.exe [136704 2015-03-17] (Mad Catz Inc) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2774256 2013-08-13] (Synaptics Incorporated) HKLM-x32\...\Run: [AlienwareOn-ScreenDisplay] => C:\Program Files (x86)\Alienware On-Screen Display\AlienwareOn-ScreenDisplay.exe [4593968 2013-11-15] () HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [590656 2015-05-15] (Razer Inc.) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2313408 2016-04-07] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Andy] => C:\Program Files\Andy\HandyAndy.exe [907144 2015-02-03] () HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1284680 2014-01-17] (CANON INC.) HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [438888 2014-01-15] (CANON INC.) HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5565960 2016-05-06] (LogMeIn Inc.) HKU\S-1-5-21-1953482718-3056900500-735679278-1001\...\Run: [Spotify Web Helper] => C:\Users\Léo Péron\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1959992 2015-03-11] (Spotify Ltd) HKU\S-1-5-21-1953482718-3056900500-735679278-1001\...\Run: [Mobile Partner] => C:\Program Files (x86)\domino\domino HKU\S-1-5-21-1953482718-3056900500-735679278-1001\...\Run: [Spotify] => C:\Users\Léo Péron\AppData\Roaming\Spotify\Spotify.exe [6611512 2015-03-11] (Spotify Ltd) HKU\S-1-5-21-1953482718-3056900500-735679278-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3639280 2015-12-27] (Electronic Arts) HKU\S-1-5-21-1953482718-3056900500-735679278-1001\...\Run: [msnmsgr] => C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe [4272840 2014-03-31] (Microsoft Corporation) HKU\S-1-5-21-1953482718-3056900500-735679278-1001\...\Run: [join.me.launcher] => C:\Users\Léo Péron\AppData\Local\join.me.launcher\join.me.launcher.exe [176560 2015-10-27] (LogMeIn, Inc) HKU\S-1-5-21-1953482718-3056900500-735679278-1001\...\Run: [Gyazo] => C:\Program Files (x86)\Gyazo\GyStation.exe [3586848 2016-02-17] (Nota Inc.) HKU\S-1-5-21-1953482718-3056900500-735679278-1001\...\Run: [HP ENVY 4520 series (NET)] => C:\Program Files\HP\HP ENVY 4520 series\Bin\ScanToPCActivationApp.exe [3651080 2015-03-09] (Hewlett-Packard Development Company, LP) HKU\S-1-5-21-1953482718-3056900500-735679278-1001\...\Run: [Discord] => C:\Users\Léo Péron\AppData\Local\Discord\app-0.0.288\Discord.exe [53430456 2016-04-21] (Hammer & Chisel, Inc.) HKU\S-1-5-21-1953482718-3056900500-735679278-1001\...\Run: [Clownfish] => C:\Program Files (x86)\Clownfish\Clownfish.exe [1368304 2016-03-28] (Bogdan Sharkov) HKU\S-1-5-21-1953482718-3056900500-735679278-1001\...\RunOnce: [Uninstall C:\Users\L�o P�ron\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Léo Péron\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64" HKU\S-1-5-21-1953482718-3056900500-735679278-1001\...\RunOnce: [Uninstall C:\Users\L�o P�ron\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Léo Péron\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\amd64" HKU\S-1-5-21-1953482718-3056900500-735679278-1001\...\RunOnce: [Uninstall C:\Users\L�o P�ron\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Léo Péron\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\amd64" HKU\S-1-5-21-1953482718-3056900500-735679278-1001\...\MountPoints2: {83ba26bd-484e-11e4-824f-806e6f6e6963} - "D:\Setup.exe" AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [176904 2015-07-23] (NVIDIA Corporation) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-04-01] () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-04-01] () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-04-01] () ShellIconOverlayIdentifiers: [1MediaFireIconError] -> {5EE8C634-CDC0-453D-9731-DF0B19F4E807} => C:\Program Files (x86)\MediaFire Desktop\MediaFireIcon3_a7314.dll [2015-04-23] (TODO: ) ShellIconOverlayIdentifiers: [1MediaFireIconReadOnly] -> {7995D0FC-769B-4197-AEC0-991921CB99E1} => C:\Program Files (x86)\MediaFire Desktop\MediaFireIcon5_a7314.dll [2015-04-23] (TODO: ) ShellIconOverlayIdentifiers: [1MediaFireIconSynched] -> {9A3B79CB-D899-40B5-8DBC-20447F1ADC8F} => C:\Program Files (x86)\MediaFire Desktop\MediaFireIcon_a7314.dll [2015-04-23] (TODO: ) ShellIconOverlayIdentifiers: [1MediaFireIconSyncing] -> {C4D81971-6B13-4173-AB21-F83AD20CCC04} => C:\Program Files (x86)\MediaFire Desktop\MediaFireIcon2_a7314.dll [2015-04-23] (TODO: ) ShellIconOverlayIdentifiers: [DBARFileBackuped] -> {831cebdd-6baf-4432-be76-9e0989c14aef} => C:\Program Files (x86)\AlienRespawn\Components\Shell\DBROverlayIconBackuped.dll [2014-12-31] (Softthinks SAS) ShellIconOverlayIdentifiers: [DBARFileNotBackuped] -> {275e4fd7-21ef-45cf-a836-832e5d2cc1b3} => C:\Program Files (x86)\AlienRespawn\Components\Shell\DBROverlayIconNotBackuped.dll [2014-12-31] (Softthinks SAS) ShellIconOverlayIdentifiers: [DBRShellOverlayBackupFile] -> {831CEBDD-6BAF-4432-BE76-9E0989C14AEF} => C:\Program Files (x86)\AlienRespawn\Components\Shell\DBROverlayIconBackuped.dll [2014-12-31] (Softthinks SAS) ShellIconOverlayIdentifiers: [DBRShellOverlayModifiedBackupFile] -> {275E4FD7-21EF-45CF-A836-832E5D2CC1B3} => C:\Program Files (x86)\AlienRespawn\Components\Shell\DBROverlayIconNotBackuped.dll [2014-12-31] (Softthinks SAS) ShellIconOverlayIdentifiers: [MediaFireIconLock] -> {759F3E92-F4E8-4953-8315-238B8B17E0F3} => C:\Program Files (x86)\MediaFire Desktop\MediaFireIcon4_a7314.dll [2015-04-23] (TODO: ) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GoPro Importer.lnk [2015-02-26] ShortcutTarget: GoPro Importer.lnk -> C:\Program Files (x86)\GoPro\Tools\Importer\GoPro Importer.exe (GoPro) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Killer Network Manager.lnk [2014-09-30] ShortcutTarget: Killer Network Manager.lnk -> C:\Windows\Installer\{F9D8E17A-8670-4D39-AFBE-9B599BB85B1A}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe (Flexera Software LLC) Startup: C:\Users\Léo Péron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk [2016-05-06] ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe () Startup: C:\Users\Léo Péron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Voicemeeter (VB-Audio).LNK [2016-02-13] ShortcutTarget: Voicemeeter (VB-Audio).LNK -> C:\Program Files (x86)\VB\Voicemeeter\voicemeeter.exe (VB-AUDIO Software) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{2f17ead1-3397-4724-9a6d-8b71a2a9d76d}: [DhcpNameServer] 192.168.43.1 Tcpip\..\Interfaces\{f971276e-26c0-4a94-b272-be59d704d817}: [DhcpNameServer] 192.168.1.254 Internet Explorer: ================== HKU\S-1-5-21-1953482718-3056900500-735679278-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.live.com/1rewlive4startup/home HKU\S-1-5-21-1953482718-3056900500-735679278-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell13.msn.com/?pc=DCJB HKU\S-1-5-21-1953482718-3056900500-735679278-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.alienwarearena.com/welcome-fr HKU\S-1-5-21-1953482718-3056900500-735679278-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.alienwarearena.com/welcome-fr SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1953482718-3056900500-735679278-1001 -> DefaultScope {74ADF8BE-D846-4971-9848-DD6F35A22E91} URL = hxxp://www.bing.com/search?FORM=WLETDF&PC=WLEM&q={searchTerms}&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-1953482718-3056900500-735679278-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-1953482718-3056900500-735679278-1001 -> {74ADF8BE-D846-4971-9848-DD6F35A22E91} URL = hxxp://www.bing.com/search?FORM=WLETDF&PC=WLEM&q={searchTerms}&src=IE-SearchBox BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23] (CANON INC.) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_45\bin\ssv.dll [2015-05-21] (Oracle Corporation) BHO: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\IEExt\ie_plugin.dll [2015-12-08] (AO Kaspersky Lab) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-21] (Oracle Corporation) BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23] (CANON INC.) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-05-21] (Oracle Corporation) BHO-x32: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll [2015-12-08] (AO Kaspersky Lab) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-21] (Oracle Corporation) Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23] (CANON INC.) Toolbar: HKLM - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\IEExt\ie_plugin.dll [2015-12-08] (AO Kaspersky Lab) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23] (CANON INC.) Toolbar: HKLM-x32 - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll [2015-12-08] (AO Kaspersky Lab) FireFox: ======== FF Plugin: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-05-21] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-05-21] (Oracle Corporation) FF Plugin: @wacom.com/wtPlugin,version=2.1.0.3 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2016-04-07] (Adobe Systems) FF Plugin: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-18] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-18] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-05-21] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-05-21] (Oracle Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN) FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.3 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-05-03] (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2016-04-07] (Adobe Systems) FF Plugin-x32: wacom.com/WacomTabletPlugin -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin HKU\S-1-5-21-1953482718-3056900500-735679278-1001: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF HKLM-x32\...\Firefox\Extensions: [light_plugin_D772DC8D6FAF43A29B25C4EBAA5AD1DE@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\FFExt\light_plugin_firefox FF Extension: Kaspersky Protection - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\FFExt\light_plugin_firefox [2016-05-24] Chrome: ======= CHR HomePage: Default -> hxxp://www.google.com/ CHR StartupUrls: Default -> "hxxp://www.search.ask.com/?o=APN10645A&gct=hp&d=406-484&v=n10249-173&t=4","hxxp://www.sweet-page.com/?type=hppp&ts=1402749142&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1402808098&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1402809314&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1402814730&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1402828298&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1402840777&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1402895504&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1402912620&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1402982504&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403101955&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403108835&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403176039&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403259351&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403280361&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403323396&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403339235&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403351943&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403367208&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403425096&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403431622&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403435576&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403442139&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403451354&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403519741&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403534447&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403583503&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403617230&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403637425&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403671434&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403687510&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403692436&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403717354&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403757709&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403864874&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403889171&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1403940544&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1404015240&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1404118621&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1404125255&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1404211592&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1404230955&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1404277853&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1404362921&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1404452412&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1404487315&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1404536195&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1404556210&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1404574029&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1404628031&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1404706693&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1404715272&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1404797657&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1404883627&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1404903496&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1405087757&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1405143395&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1405148936&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1405156697&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1405527178&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1406100611&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1406367502&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1408891558&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1408939805&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1408947206&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409032369&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409051533&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409065534&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409118194&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409132042&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409205100&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409228529&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409243952&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409249291&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409287550&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409299619&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409316343&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409322203&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409374652&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409420218&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409462397&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409503121&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409550535&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409562805&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409652905&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409669476&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409735911&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409814334&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409822153&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409842438&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX","hxxp://www.sweet-page.com/?type=hppp&ts=1409924934&from=cor&uid=HGSTXHTS541010A9E680_130731JD10001V0VNK2MX" CHR Profile: C:\Users\Léo Péron\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (BetterTTV) - C:\Users\Léo Péron\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2016-05-28] CHR Extension: (YouTube) - C:\Users\Léo Péron\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-05-28] CHR Extension: (Kaspersky Protection) - C:\Users\Léo Péron\AppData\Local\Google\Chrome\User Data\Default\Extensions\eahebamiopdhefndnmappcihfajigkka [2016-05-28] CHR Extension: (DominGo Live Extension) - C:\Users\Léo Péron\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdkbkaknlncjiplhgcaomjkcnhbpkiek [2016-05-28] CHR Extension: (Sword Art Online Kirito Infection) - C:\Users\Léo Péron\AppData\Local\Google\Chrome\User Data\Default\Extensions\nkkboefcmihpaclpbbgaiiidhoheammc [2016-05-28] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Léo Péron\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-05-28] CHR Extension: (Gmail) - C:\Users\Léo Péron\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-05-28] CHR HKLM\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - hxxps://chrome.google.com/webstore/detail/eahebamiopdhefndnmappcihfajigkka CHR HKLM-x32\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - hxxps://chrome.google.com/webstore/detail/eahebamiopdhefndnmappcihfajigkka ==================== Services (Avec liste blanche) ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [694464 2016-04-07] (Adobe Systems Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2021592 2016-04-05] (Adobe Systems, Incorporated) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-19] (Apple Inc.) R2 AVP16.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe [194000 2015-12-08] (Kaspersky Lab ZAO) S3 BRSptStub; C:\ProgramData\BitRaider\BRSptStub.exe [363208 2015-02-05] (BitRaider, LLC) R2 CAMService; C:\Program Files\Intel\CAM\bin\CAMService.exe [1246112 2015-06-03] (Intel® Corporation) R2 DellDataVault; C:\Program Files\Dell\DellDataVault\DellDataVault.exe [2572024 2016-03-11] (Dell Inc.) R2 DellDataVaultWiz; C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe [202488 2016-03-11] (Dell Inc.) R2 DevoloNetworkService; C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe [3645432 2014-07-18] (devolo AG) S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [245544 2016-02-09] (EasyAntiCheat Ltd) R2 ESRV_SVC_WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [414360 2015-09-14] () R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-05-01] (NVIDIA Corporation) R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [351824 2013-02-06] () R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [Fichier non signé] R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [373160 2015-12-19] (Intel Corporation) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [84616 2013-06-28] () R2 Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [Fichier non signé] S3 Intel(R) Capability Licensing Service TCP IP Interface; c:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation) S3 ioloEnergyBooster; C:\Program Files\Alienware\Command Center\ioloEnergyBooster.exe [6145872 2012-11-01] (iolo technologies, LLC) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-18] (Intel Corporation) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [419248 2016-05-06] (LogMeIn, Inc.) R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [193144 2015-10-14] (Logitech Inc.) S3 MediaFire Desktop Updater Service; C:\Program Files (x86)\MediaFire Desktop\bin\UpdaterLocalCOM.exe [210416 2015-09-17] () R2 MF NTFS Monitor; C:\Program Files (x86)\MediaFire Desktop\bin\MFUsnMonitorService.exe [456176 2015-09-17] () S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2015-08-13] () S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [3916368 2016-01-09] (INCA Internet Co., Ltd.) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1884304 2015-05-01] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [22997648 2015-05-01] (NVIDIA Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2104840 2015-12-27] (Electronic Arts) R2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [343040 2013-08-07] (Qualcomm Atheros) [Fichier non signé] R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [187072 2015-02-05] () R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [253776 2013-07-30] (CyberLink) R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [312056 2015-08-04] (Realtek Semiconductor) R2 SupportAssistAgent; C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [31928 2016-04-22] (Dell Inc.) R2 SystemUsageReportSvc_WILLAMETTE; C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe [112792 2015-09-14] () R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7032080 2016-05-12] (TeamViewer GmbH) S3 USER_ESRV_SVC_WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [414360 2015-09-14] () S3 vssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\vssbridge64.exe [144640 2015-07-09] (AO Kaspersky Lab) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation) R2 WTabletServicePro; C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [635160 2014-04-22] (Wacom Technology, Corp.) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3831712 2015-08-13] (Intel® Corporation) ===================== Pilotes (Avec liste blanche) ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AVer330USB; C:\Windows\system32\DRIVERS\AVer330USB.sys [1550464 2014-11-05] (AVerMedia TECHNOLOGIES, Inc.) [Fichier non signé] R1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [75056 2013-02-13] (Qualcomm Atheros, Inc.) S3 BRDriver64_1_3_3_E02B25FC; C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [78088 2015-02-05] (BitRaider) R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91712 2013-03-05] (CyberLink) R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [389816 2015-07-06] (Kaspersky Lab ZAO) R3 DDDriver; C:\Windows\system32\drivers\DDDriver64Dcsa.sys [23760 2015-01-31] (Dell Computer Corporation) R3 DellProf; C:\Windows\system32\drivers\DellProf.sys [24240 2015-05-22] (Dell Computer Corporation) R3 DellRbtn; C:\Windows\System32\drivers\DellRbtn.sys [10752 2013-01-25] (OSR Open Systems Resources, Inc.) S3 ElgatoGC658Y; C:\Windows\System32\Drivers\ElgatoGC658.sys [50288 2012-08-30] (UB658) R0 EMSC; C:\Windows\System32\drivers\EMSC.SYS [17720 2012-07-10] () R0 EMSC; C:\Windows\SysWOW64\drivers\EMSC.SYS [15160 2012-07-10] () R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2016-03-22] (LogMeIn Inc.) S3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [263952 2015-07-14] (Intel Corporation) R3 Ke2200; C:\Windows\System32\drivers\e22w8x64.sys [163536 2013-03-20] (Qualcomm Atheros, Inc.) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [478392 2015-06-22] (Kaspersky Lab ZAO) R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [53432 2015-06-06] (Kaspersky Lab ZAO) R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [70512 2015-06-27] (Kaspersky Lab ZAO) R2 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [77728 2016-04-01] (AO Kaspersky Lab) S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [30328 2015-06-24] (Kaspersky Lab) R3 klflt; C:\Windows\system32\DRIVERS\klflt.sys [181640 2015-12-08] (AO Kaspersky Lab) R1 klhk; C:\Windows\system32\DRIVERS\klhk.sys [238000 2016-05-24] (AO Kaspersky Lab) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [933808 2016-05-24] (AO Kaspersky Lab) R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [49240 2016-05-24] (AO Kaspersky Lab) R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [41656 2015-06-06] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [41656 2015-06-07] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [41352 2015-12-08] (AO Kaspersky Lab) R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [87984 2016-05-24] (AO Kaspersky Lab) R1 Klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [102584 2015-06-16] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [187056 2015-06-23] (Kaspersky Lab ZAO) R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech) R3 LGJoyXlCore; C:\Windows\system32\drivers\LGJoyXlCore.sys [68384 2015-06-11] (Logitech Inc.) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-18] (Intel Corporation) R2 mfmonitor; C:\Windows\System32\DRIVERS\mfmonitor_x64.sys [20696 2015-04-23] (Windows (R) Win 7 DDK provider) R3 NETwNb64; C:\Windows\System32\drivers\Netwbw02.sys [4103920 2015-08-23] (Intel Corporation) R2 NPF_devolo; C:\Windows\sysWOW64\drivers\npf_devolo.sys [34048 2013-03-04] (CACE Technologies) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-05-01] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation) R0 PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [56336 2012-06-22] (Corel Corporation) R3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [39592 2014-12-30] (Razer Inc) R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [37184 2015-02-05] (Razer, Inc.) R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [129600 2014-12-10] (Razer, Inc.) R3 SaiK1113; C:\Windows\system32\DRIVERS\SaiK1113.sys [179904 2014-09-15] (Saitek) R3 SaiMini; C:\Windows\System32\drivers\SaiMini.sys [23968 2014-09-15] (Saitek) R3 SaiNtBus; C:\Windows\system32\drivers\SaiBus.sys [51488 2014-09-15] (Saitek) R3 ScpVBus; C:\Windows\System32\drivers\ScpVBus.sys [39168 2013-05-05] (Scarlet.Crush Productions) R3 semav6msr64; C:\Windows\system32\drivers\semav6msr64.sys [21984 2015-06-04] () R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-08-13] (Synaptics Incorporated) R3 ST_Accel; C:\Windows\system32\DRIVERS\ST_Accel.sys [83456 2013-08-06] (STMicroelectronics) S3 VBAudioVACMME; C:\Windows\system32\DRIVERS\vbaudio_cable64_win7.sys [41192 2013-07-11] (Windows (R) Win 7 DDK provider) R3 VBAudioVMVAIOMME; C:\Windows\system32\DRIVERS\vbaudio_vmvaio64_win7.sys [41192 2015-10-07] (Windows (R) Win 7 DDK provider) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2016-05-29 08:32 - 2016-05-29 08:33 - 00047388 _____ C:\Users\Léo Péron\Desktop\FRST.txt 2016-05-29 08:32 - 2016-05-29 08:32 - 00000000 ____D C:\FRST 2016-05-29 08:31 - 2016-05-29 08:31 - 02383872 _____ (Farbar) C:\Users\Léo Péron\Downloads\FRST64.exe 2016-05-29 08:31 - 2016-05-29 08:31 - 02383872 _____ (Farbar) C:\Users\Léo Péron\Desktop\FRST64.exe 2016-05-28 20:55 - 2016-05-28 20:55 - 00027677 _____ C:\Users\Léo Péron\Desktop\zoek-results.txt 2016-05-28 20:20 - 2016-05-28 20:20 - 01309184 _____ C:\Users\Léo Péron\Downloads\zoek (2).exe 2016-05-28 20:20 - 2016-05-28 20:20 - 01309184 _____ C:\Users\Léo Péron\Desktop\zoek (2).exe 2016-05-28 20:18 - 2016-05-28 20:19 - 01309184 _____ C:\Users\Léo Péron\Desktop\zoek (1).exe 2016-05-28 20:18 - 2016-05-28 20:18 - 01309184 _____ C:\Users\Léo Péron\Downloads\zoek (1).exe 2016-05-28 18:47 - 2016-05-19 17:39 - 00862411 _____ C:\Users\Léo Péron\Desktop\AE-File.aep 2016-05-28 18:44 - 2016-05-28 18:46 - 57328132 _____ C:\Users\Léo Péron\Downloads\Shxrkz Intro Template.rar 2016-05-28 18:27 - 2016-05-28 18:27 - 00000000 ____D C:\Users\Léo Péron\AppData\Local\Red Giant 2016-05-28 18:13 - 2016-05-28 18:13 - 00000000 ____D C:\Users\Léo Péron\Desktop\recon 2016-05-28 17:30 - 2016-05-28 17:35 - 104564639 _____ C:\Users\Léo Péron\Downloads\Recon.rar 2016-05-28 15:21 - 2016-05-28 20:23 - 00024064 _____ C:\WINDOWS\zoek-delete.exe 2016-05-28 14:42 - 2016-05-28 15:09 - 00000000 ____D C:\zoek_backup 2016-05-28 14:42 - 2016-05-28 14:42 - 01309184 _____ C:\Users\Léo Péron\Downloads\zoek.exe 2016-05-28 14:32 - 2016-05-28 14:46 - 283101630 _____ C:\Users\Léo Péron\Downloads\Template 80k.zip 2016-05-28 13:16 - 2016-05-28 13:16 - 00448282 _____ C:\Users\Léo Péron\Desktop\jsuis un cochonmdr.wav 2016-05-28 13:09 - 2016-05-28 18:12 - 00018833 _____ C:\Users\Léo Péron\Desktop\mdr.ods 2016-05-28 13:07 - 2016-05-28 13:07 - 00006227 _____ C:\Users\Léo Péron\Downloads\mdr.ods 2016-05-28 10:20 - 2016-05-28 10:20 - 00005502 _____ C:\Users\Léo Péron\Desktop\cleannn.txt 2016-05-28 10:15 - 2016-05-28 10:15 - 00005499 _____ C:\Users\Léo Péron\Desktop\ZHPCleaner.txt 2016-05-28 10:05 - 2016-05-28 10:05 - 02263552 _____ C:\Users\Léo Péron\Downloads\ZHPCleaner.exe 2016-05-28 10:05 - 2016-05-28 10:05 - 02263552 _____ C:\Users\Léo Péron\Desktop\ZHPCleaner.exe 2016-05-28 10:05 - 2016-05-28 10:05 - 00000881 _____ C:\Users\Léo Péron\Desktop\ZHPCleaner.lnk 2016-05-28 10:03 - 2016-05-28 10:03 - 00001326 _____ C:\Users\Léo Péron\Desktop\mbam.txt 2016-05-28 10:01 - 2016-05-28 10:01 - 00001289 _____ C:\Users\Léo Péron\Desktop\Malwarebytes.txt 2016-05-27 20:06 - 2016-05-27 20:06 - 02023525 _____ C:\Users\Léo Péron\Downloads\Free Lightroom By Lethal.rar 2016-05-27 18:56 - 2016-05-28 08:24 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-05-27 18:56 - 2016-05-27 19:01 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware 2016-05-27 18:56 - 2016-05-27 18:58 - 00001173 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2016-05-27 18:56 - 2016-05-27 18:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2016-05-27 18:56 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2016-05-27 18:56 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2016-05-27 18:56 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2016-05-27 18:54 - 2016-05-27 18:54 - 22851472 _____ (Malwarebytes ) C:\Users\Léo Péron\Desktop\mbam-setup-2.2.1.1043.exe 2016-05-27 18:53 - 2016-05-27 18:54 - 22851472 _____ (Malwarebytes ) C:\Users\Léo Péron\Downloads\mbam-setup-2.2.1.1043.exe 2016-05-27 17:47 - 2016-05-27 17:47 - 00022133 _____ C:\Users\Léo Péron\Desktop\AdwCleaner[C1].txt 2016-05-27 17:37 - 2016-05-27 17:40 - 00000000 ____D C:\AdwCleaner 2016-05-27 17:36 - 2016-05-27 17:37 - 03678272 _____ C:\Users\Léo Péron\Desktop\adwcleaner_5.118.exe 2016-05-27 17:36 - 2016-05-27 17:36 - 03678272 _____ C:\Users\Léo Péron\Downloads\adwcleaner_5.118.exe 2016-05-27 13:58 - 2016-05-27 13:58 - 00200986 _____ C:\Users\Léo Péron\Desktop\ZHPDiag.txt 2016-05-27 13:40 - 2016-05-27 13:40 - 02210304 _____ C:\Users\Léo Péron\Downloads\ZHPDiag3.exe 2016-05-27 13:40 - 2016-05-27 13:40 - 00000871 _____ C:\Users\Léo Péron\Desktop\ZHPDiag.lnk 2016-05-27 13:40 - 2016-05-27 13:40 - 00000210 _____ C:\Users\Léo 2016-05-26 20:25 - 2016-05-26 20:25 - 115189019 _____ C:\Users\Léo Péron\Downloads\Free CC Pack by ReconFX.zip 2016-05-26 13:58 - 2016-05-26 13:58 - 00310897 _____ C:\Users\Léo Péron\Downloads\CC & BG by slimfx.aep 2016-05-25 20:24 - 2016-05-25 20:34 - 286932445 _____ C:\Users\Léo Péron\Downloads\S.V.P 13.0.310 (64-bit) PreCracked.zip 2016-05-25 20:22 - 2016-05-25 20:23 - 00006108 _____ C:\WINDOWS\system32\--traceoff 2016-05-25 20:22 - 2016-05-25 20:22 - 00000000 ____D C:\Users\Léo Péron\AppData\Local\Sony 2016-05-25 20:22 - 2016-05-25 20:22 - 00000000 ____D C:\ProgramData\Sony 2016-05-25 20:22 - 2016-05-25 20:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony 2016-05-25 20:22 - 2016-05-25 20:22 - 00000000 _____ C:\WINDOWS\system32\--debugoff 2016-05-25 20:21 - 2016-05-25 20:21 - 00000000 ____D C:\Users\Léo Péron\AppData\Roaming\Sony 2016-05-25 13:20 - 2016-05-25 13:24 - 106137252 _____ C:\Users\Léo Péron\Downloads\Premium_Pack_-_David_F.zip 2016-05-23 14:10 - 2016-05-23 14:10 - 00043427 _____ C:\Users\Léo Péron\Downloads\chinyen.zip 2016-05-22 19:14 - 2016-05-22 19:14 - 13219914 _____ C:\Users\Léo Péron\Downloads\Rages_Lightroom_v2.zip 2016-05-21 12:10 - 2016-05-21 12:10 - 00002702 _____ C:\Users\Léo Péron\Downloads\Imogen.zip 2016-05-21 10:07 - 2016-05-22 13:31 - 00000000 ____D C:\Users\Léo Péron\Desktop\template 2016-05-21 08:55 - 2016-05-21 08:56 - 34653491 _____ C:\Users\Léo Péron\Downloads\Parkie Takeoff Ballista 3k.rar 2016-05-21 08:55 - 2016-05-21 08:56 - 18946202 _____ C:\Users\Léo Péron\Downloads\Map Smooths.rar 2016-05-18 19:10 - 2016-05-18 19:10 - 08032040 _____ C:\Users\Léo Péron\Downloads\DEX_5K_FREE_LR.zip 2016-05-17 18:33 - 2016-05-17 18:33 - 00265859 _____ C:\Users\Léo Péron\Downloads\sf-tattle-tales.zip 2016-05-17 17:56 - 2016-05-17 17:56 - 00009418 _____ C:\Users\Léo Péron\Desktop\^D2CBB31B8F8DB2A3A9ADDF778D3684113BC77039352341AD12^pimgpsh_thumbnail_win_distr.jpg 2016-05-17 09:12 - 2016-05-17 09:12 - 17697288 _____ C:\Users\Léo Péron\Downloads\extrait (1).avi 2016-05-17 08:21 - 2016-04-26 13:21 - 00812066 _____ C:\Users\Léo Péron\Desktop\HDA.odt 2016-05-16 21:18 - 2016-05-16 21:19 - 28227172 _____ C:\Users\Léo Péron\Downloads\extrait.avi 2016-05-16 19:53 - 2016-05-16 20:50 - 1462441984 _____ C:\Users\Léo Péron\Downloads\flx-thepianist.avi 2016-05-16 12:11 - 2016-01-29 20:27 - 00781829 _____ C:\Users\Léo Péron\Desktop\AEPart.aep 2016-05-16 12:00 - 2016-05-16 12:08 - 213549705 _____ C:\Users\Léo Péron\Downloads\Free Chill Intro Template by LakerArtz.rar 2016-05-16 11:29 - 2016-05-16 11:30 - 23285061 _____ C:\Users\Léo Péron\Downloads\Link ZERO.psd 2016-05-16 09:25 - 2016-05-16 09:25 - 00000062 _____ C:\Users\Léo Péron\Downloads\EIGHT000.txt 2016-05-16 09:03 - 2016-05-16 09:06 - 158380036 _____ C:\Users\Léo Péron\Downloads\Haifisch_Pack.rar 2016-05-15 20:56 - 2016-05-15 20:56 - 00069641 _____ C:\Users\Léo Péron\Downloads\1,000 Likes Holy Shit.rar 2016-05-15 19:04 - 2016-05-15 19:04 - 00031100 _____ C:\Users\Léo Péron\Downloads\sf-tattle-tales.regular.ttf 2016-05-15 14:41 - 2016-05-15 14:43 - 59120421 _____ C:\Users\Léo Péron\Downloads\Digieffects MegaSuite v2.5.1 AE CC 2015 (Win) Fixed Version.rar 2016-05-15 09:18 - 2016-05-15 09:18 - 14685514 _____ C:\Users\Léo Péron\Downloads\Shxrkz LR Free (1).rar 2016-05-14 20:13 - 2016-05-14 20:14 - 08636976 _____ (VB-AUDIO Software) C:\Users\Léo Péron\Downloads\VoicemeeterSetup (1).exe 2016-05-14 20:00 - 2016-05-14 20:00 - 00000000 ____D C:\Users\Léo Péron\AppData\Roaming\TeamViewer 2016-05-14 19:54 - 2016-05-14 19:56 - 09666224 _____ (TeamViewer GmbH) C:\Users\Léo Péron\Downloads\TeamViewer_Setup_fr (1).exe 2016-05-14 18:39 - 2016-05-15 20:41 - 03463074 _____ C:\Users\Léo Péron\Desktop\imogenab.aep 2016-05-14 17:58 - 2016-05-02 19:13 - 00000000 ____D C:\Users\Léo Péron\Desktop\Shxrkz LR Free 2016-05-14 17:55 - 2016-05-14 17:56 - 14685514 _____ C:\Users\Léo Péron\Downloads\Shxrkz LR Free.rar 2016-05-14 15:09 - 2016-05-14 15:10 - 69756846 _____ C:\Users\Léo Péron\Desktop\imogenpromo.mp4 2016-05-14 12:35 - 2016-05-14 14:32 - 00656588 _____ C:\Users\Léo Péron\Desktop\imogen.aep 2016-05-14 10:59 - 2016-05-14 11:34 - 02194570 _____ C:\Users\Léo Péron\Desktop\taku.aep 2016-05-14 10:34 - 2016-05-14 10:34 - 00188535 _____ C:\Users\Léo Péron\Downloads\Coens_Magic_HDRI (1).rar 2016-05-13 20:22 - 2016-05-13 20:51 - 1449488940 _____ C:\Users\Léo Péron\Downloads\the pianiste--www.libertyland.tv.rar 2016-05-13 20:02 - 2016-05-17 09:00 - 00000000 ____D C:\Users\Léo Péron\Desktop\HDA 2016-05-13 19:03 - 2016-05-14 10:35 - 357191752 _____ C:\Users\Léo Péron\Desktop\avalon.psd 2016-05-13 18:58 - 2016-05-13 19:07 - 230723411 _____ C:\Users\Léo Péron\Downloads\ZXE.psd 2016-05-13 13:54 - 2016-05-13 13:54 - 00904780 _____ C:\Users\Léo Péron\Downloads\Tuto (After Effects) - Trapcode Planet.rar 2016-05-13 13:51 - 2016-05-13 18:06 - 01695577 _____ C:\Users\Léo Péron\Desktop\l i n k.aep 2016-05-13 13:18 - 2016-05-13 13:18 - 00029348 _____ C:\Users\Léo Péron\Downloads\,LINK.rar 2016-05-12 18:41 - 2016-05-12 18:44 - 43685548 _____ C:\Users\Léo Péron\Downloads\EQNX 3K FREE TEMPLATE.rar 2016-05-12 12:27 - 2016-05-12 12:27 - 00000997 _____ C:\Users\Public\Desktop\LogMeIn Hamachi.lnk 2016-05-12 12:27 - 2016-05-12 12:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi 2016-05-12 12:27 - 2016-05-12 12:27 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2016-05-10 21:07 - 2016-04-30 08:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2016-05-10 21:07 - 2016-04-30 08:31 - 03591168 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-05-10 21:07 - 2016-04-23 08:12 - 01401024 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2016-05-10 21:07 - 2016-04-23 08:12 - 01184960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2016-05-10 21:07 - 2016-04-23 08:12 - 00713920 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2016-05-10 21:07 - 2016-04-23 08:12 - 00514752 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2016-05-10 21:07 - 2016-04-23 08:12 - 00294592 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2016-05-10 21:07 - 2016-04-23 08:12 - 00190144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2016-05-10 21:07 - 2016-04-23 08:12 - 00046784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2016-05-10 21:07 - 2016-04-23 07:28 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2016-05-10 21:07 - 2016-04-23 07:28 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2016-05-10 21:07 - 2016-04-23 07:24 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-05-10 21:07 - 2016-04-23 07:24 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2016-05-10 21:07 - 2016-04-23 07:24 - 01819208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2016-05-10 21:07 - 2016-04-23 07:24 - 00754664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2016-05-10 21:07 - 2016-04-23 07:12 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2016-05-10 21:07 - 2016-04-23 07:12 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll 2016-05-10 21:07 - 2016-04-23 07:12 - 00413536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe 2016-05-10 21:07 - 2016-04-23 07:11 - 01092464 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2016-05-10 21:07 - 2016-04-23 07:11 - 00498960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2016-05-10 21:07 - 2016-04-23 07:10 - 03673424 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-05-10 21:07 - 2016-04-23 07:10 - 02919832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-05-10 21:07 - 2016-04-23 07:09 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-05-10 21:07 - 2016-04-23 07:09 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2016-05-10 21:07 - 2016-04-23 07:09 - 05240960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2016-05-10 21:07 - 2016-04-23 07:09 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2016-05-10 21:07 - 2016-04-23 07:09 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe 2016-05-10 21:07 - 2016-04-23 07:09 - 00255168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe 2016-05-10 21:07 - 2016-04-23 07:08 - 06605504 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2016-05-10 21:07 - 2016-04-23 07:08 - 04515256 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-05-10 21:07 - 2016-04-23 07:08 - 00725776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll 2016-05-10 21:07 - 2016-04-23 07:07 - 01848072 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2016-05-10 21:07 - 2016-04-23 07:01 - 01996640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-05-10 21:07 - 2016-04-23 07:01 - 00650304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2016-05-10 21:07 - 2016-04-23 07:01 - 00577368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-05-10 21:07 - 2016-04-23 07:01 - 00522176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2016-05-10 21:07 - 2016-04-23 07:00 - 01594920 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2016-05-10 21:07 - 2016-04-23 07:00 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2016-05-10 21:07 - 2016-04-23 07:00 - 01372304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2016-05-10 21:07 - 2016-04-23 06:56 - 00534872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2016-05-10 21:07 - 2016-04-23 06:39 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll 2016-05-10 21:07 - 2016-04-23 06:32 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll 2016-05-10 21:07 - 2016-04-23 06:31 - 13018112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2016-05-10 21:07 - 2016-04-23 06:31 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll 2016-05-10 21:07 - 2016-04-23 06:30 - 22379008 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-05-10 21:07 - 2016-04-23 06:30 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll 2016-05-10 21:07 - 2016-04-23 06:29 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll 2016-05-10 21:07 - 2016-04-23 06:28 - 16984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2016-05-10 21:07 - 2016-04-23 06:26 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll 2016-05-10 21:07 - 2016-04-23 06:26 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll 2016-05-10 21:07 - 2016-04-23 06:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll 2016-05-10 21:07 - 2016-04-23 06:24 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2016-05-10 21:07 - 2016-04-23 06:24 - 00287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2016-05-10 21:07 - 2016-04-23 06:23 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-05-10 21:07 - 2016-04-23 06:22 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-05-10 21:07 - 2016-04-23 06:22 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2016-05-10 21:07 - 2016-04-23 06:21 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2016-05-10 21:07 - 2016-04-23 06:20 - 19344384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-05-10 21:07 - 2016-04-23 06:20 - 18676224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-05-10 21:07 - 2016-04-23 06:20 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2016-05-10 21:07 - 2016-04-23 06:20 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2016-05-10 21:07 - 2016-04-23 06:19 - 07977472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2016-05-10 21:07 - 2016-04-23 06:19 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2016-05-10 21:07 - 2016-04-23 06:19 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2016-05-10 21:07 - 2016-04-23 06:19 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2016-05-10 21:07 - 2016-04-23 06:19 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2016-05-10 21:07 - 2016-04-23 06:18 - 24604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-05-10 21:07 - 2016-04-23 06:18 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll 2016-05-10 21:07 - 2016-04-23 06:18 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2016-05-10 21:07 - 2016-04-23 06:18 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2016-05-10 21:07 - 2016-04-23 06:18 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2016-05-10 21:07 - 2016-04-23 06:18 - 00804352 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2016-05-10 21:07 - 2016-04-23 06:18 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2016-05-10 21:07 - 2016-04-23 06:18 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2016-05-10 21:07 - 2016-04-23 06:18 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll 2016-05-10 21:07 - 2016-04-23 06:18 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2016-05-10 21:07 - 2016-04-23 06:17 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2016-05-10 21:07 - 2016-04-23 06:17 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2016-05-10 21:07 - 2016-04-23 06:17 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll 2016-05-10 21:07 - 2016-04-23 06:16 - 01319424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2016-05-10 21:07 - 2016-04-23 06:16 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2016-05-10 21:07 - 2016-04-23 06:16 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll 2016-05-10 21:07 - 2016-04-23 06:15 - 01073152 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2016-05-10 21:07 - 2016-04-23 06:15 - 00865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2016-05-10 21:07 - 2016-04-23 06:15 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2016-05-10 21:07 - 2016-04-23 06:15 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll 2016-05-10 21:07 - 2016-04-23 06:15 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2016-05-10 21:07 - 2016-04-23 06:15 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2016-05-10 21:07 - 2016-04-23 06:14 - 13383168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-05-10 21:07 - 2016-04-23 06:14 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2016-05-10 21:07 - 2016-04-23 06:14 - 00821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2016-05-10 21:07 - 2016-04-23 06:14 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll 2016-05-10 21:07 - 2016-04-23 06:14 - 00647680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2016-05-10 21:07 - 2016-04-23 06:14 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2016-05-10 21:07 - 2016-04-23 06:14 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll 2016-05-10 21:07 - 2016-04-23 06:13 - 07200256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2016-05-10 21:07 - 2016-04-23 06:13 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2016-05-10 21:07 - 2016-04-23 06:13 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2016-05-10 21:07 - 2016-04-23 06:13 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2016-05-10 21:07 - 2016-04-23 06:13 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll 2016-05-10 21:07 - 2016-04-23 06:10 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-05-10 21:07 - 2016-04-23 06:10 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll 2016-05-10 21:07 - 2016-04-23 06:09 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2016-05-10 21:07 - 2016-04-23 06:09 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2016-05-10 21:07 - 2016-04-23 06:08 - 05324288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2016-05-10 21:07 - 2016-04-23 06:08 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2016-05-10 21:07 - 2016-04-23 06:07 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2016-05-10 21:07 - 2016-04-23 06:07 - 02598912 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2016-05-10 21:07 - 2016-04-23 06:07 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-05-10 21:07 - 2016-04-23 06:06 - 06974464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2016-05-10 21:07 - 2016-04-23 06:05 - 05502976 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2016-05-10 21:07 - 2016-04-23 06:05 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2016-05-10 21:07 - 2016-04-23 06:05 - 02066432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2016-05-10 21:07 - 2016-04-23 06:05 - 01946112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2016-05-10 21:07 - 2016-04-23 06:05 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2016-05-10 21:07 - 2016-04-23 06:05 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll 2016-05-10 21:07 - 2016-04-23 06:04 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2016-05-10 21:07 - 2016-04-23 06:04 - 01731072 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-05-10 21:07 - 2016-04-23 06:03 - 05660160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-05-10 21:07 - 2016-04-23 06:03 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-05-10 21:07 - 2016-04-23 06:03 - 02280960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2016-05-10 21:07 - 2016-04-23 06:03 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2016-05-10 21:07 - 2016-04-23 06:03 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2016-05-10 21:07 - 2016-04-23 06:02 - 07832576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-05-10 21:07 - 2016-04-23 06:02 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2016-05-10 21:07 - 2016-04-23 06:00 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2016-05-10 21:07 - 2016-04-23 06:00 - 00984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2016-05-10 21:06 - 2016-05-06 06:53 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdport.sys 2016-05-10 21:06 - 2016-05-06 06:05 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll 2016-05-10 21:06 - 2016-05-06 06:03 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2016-05-10 21:06 - 2016-05-06 05:53 - 00351232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll 2016-05-10 21:06 - 2016-05-06 05:49 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll 2016-05-10 21:06 - 2016-05-06 05:44 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll 2016-05-10 21:06 - 2016-05-06 05:43 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll 2016-05-10 21:06 - 2016-05-06 05:23 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll 2016-05-10 21:06 - 2016-04-23 08:12 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2016-05-10 21:06 - 2016-04-23 07:26 - 00707608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2016-05-10 21:06 - 2016-04-23 07:24 - 00638816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2016-05-10 21:06 - 2016-04-23 07:24 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys 2016-05-10 21:06 - 2016-04-23 07:24 - 00099680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2016-05-10 21:06 - 2016-04-23 07:22 - 01161120 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2016-05-10 21:06 - 2016-04-23 07:18 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2016-05-10 21:06 - 2016-04-23 07:13 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll 2016-05-10 21:06 - 2016-04-23 07:13 - 00306832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll 2016-05-10 21:06 - 2016-04-23 07:13 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll 2016-05-10 21:06 - 2016-04-23 07:11 - 00696672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll 2016-05-10 21:06 - 2016-04-23 07:11 - 00390496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2016-05-10 21:06 - 2016-04-23 07:11 - 00131424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys 2016-05-10 21:06 - 2016-04-23 07:11 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll 2016-05-10 21:06 - 2016-04-23 07:10 - 00330072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2016-05-10 21:06 - 2016-04-23 07:09 - 00569744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll 2016-05-10 21:06 - 2016-04-23 07:09 - 00565600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2016-05-10 21:06 - 2016-04-23 07:09 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2016-05-10 21:06 - 2016-04-23 07:07 - 01536088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll 2016-05-10 21:06 - 2016-04-23 07:07 - 00204048 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll 2016-05-10 21:06 - 2016-04-23 07:07 - 00183904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll 2016-05-10 21:06 - 2016-04-23 07:06 - 00291360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe 2016-05-10 21:06 - 2016-04-23 07:02 - 00188256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2016-05-10 21:06 - 2016-04-23 07:01 - 00619296 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll 2016-05-10 21:06 - 2016-04-23 07:01 - 00513368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll 2016-05-10 21:06 - 2016-04-23 07:01 - 00393568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2016-05-10 21:06 - 2016-04-23 07:01 - 00217440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2016-05-10 21:06 - 2016-04-23 07:00 - 01776768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2016-05-10 21:06 - 2016-04-23 07:00 - 01522152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2016-05-10 21:06 - 2016-04-23 07:00 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2016-05-10 21:06 - 2016-04-23 07:00 - 00550656 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll 2016-05-10 21:06 - 2016-04-23 07:00 - 00453472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll 2016-05-10 21:06 - 2016-04-23 07:00 - 00058208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwminit.dll 2016-05-10 21:06 - 2016-04-23 06:35 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll 2016-05-10 21:06 - 2016-04-23 06:34 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys 2016-05-10 21:06 - 2016-04-23 06:34 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll 2016-05-10 21:06 - 2016-04-23 06:34 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2016-05-10 21:06 - 2016-04-23 06:33 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll 2016-05-10 21:06 - 2016-04-23 06:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll 2016-05-10 21:06 - 2016-04-23 06:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys 2016-05-10 21:06 - 2016-04-23 06:33 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe 2016-05-10 21:06 - 2016-04-23 06:32 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll 2016-05-10 21:06 - 2016-04-23 06:32 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll 2016-05-10 21:06 - 2016-04-23 06:30 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys 2016-05-10 21:06 - 2016-04-23 06:30 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll 2016-05-10 21:06 - 2016-04-23 06:29 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2016-05-10 21:06 - 2016-04-23 06:29 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll 2016-05-10 21:06 - 2016-04-23 06:29 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\filecrypt.sys 2016-05-10 21:06 - 2016-04-23 06:29 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe 2016-05-10 21:06 - 2016-04-23 06:29 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hmkd.dll 2016-05-10 21:06 - 2016-04-23 06:29 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ByteCodeGenerator.exe 2016-05-10 21:06 - 2016-04-23 06:29 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll 2016-05-10 21:06 - 2016-04-23 06:28 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll 2016-05-10 21:06 - 2016-04-23 06:28 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll 2016-05-10 21:06 - 2016-04-23 06:28 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll 2016-05-10 21:06 - 2016-04-23 06:28 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll 2016-05-10 21:06 - 2016-04-23 06:28 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshbth.dll 2016-05-10 21:06 - 2016-04-23 06:27 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2016-05-10 21:06 - 2016-04-23 06:27 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll 2016-05-10 21:06 - 2016-04-23 06:26 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll 2016-05-10 21:06 - 2016-04-23 06:25 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll 2016-05-10 21:06 - 2016-04-23 06:25 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2016-05-10 21:06 - 2016-04-23 06:25 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll 2016-05-10 21:06 - 2016-04-23 06:25 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll 2016-05-10 21:06 - 2016-04-23 06:24 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2016-05-10 21:06 - 2016-04-23 06:24 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2016-05-10 21:06 - 2016-04-23 06:24 - 00181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll 2016-05-10 21:06 - 2016-04-23 06:24 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll 2016-05-10 21:06 - 2016-04-23 06:24 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll 2016-05-10 21:06 - 2016-04-23 06:23 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2016-05-10 21:06 - 2016-04-23 06:23 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll 2016-05-10 21:06 - 2016-04-23 06:23 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrowserSettingSync.dll 2016-05-10 21:06 - 2016-04-23 06:23 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll 2016-05-10 21:06 - 2016-04-23 06:22 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll 2016-05-10 21:06 - 2016-04-23 06:21 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2016-05-10 21:06 - 2016-04-23 06:20 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll 2016-05-10 21:06 - 2016-04-23 06:20 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll 2016-05-10 21:06 - 2016-04-23 06:20 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2016-05-10 21:06 - 2016-04-23 06:20 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll 2016-05-10 21:06 - 2016-04-23 06:19 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlansec.dll 2016-05-10 21:06 - 2016-04-23 06:19 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BrowserSettingSync.dll 2016-05-10 21:06 - 2016-04-23 06:18 - 00988672 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2016-05-10 21:06 - 2016-04-23 06:18 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2016-05-10 21:06 - 2016-04-23 06:18 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2016-05-10 21:06 - 2016-04-23 06:18 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll 2016-05-10 21:06 - 2016-04-23 06:18 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS 2016-05-10 21:06 - 2016-04-23 06:17 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll 2016-05-10 21:06 - 2016-04-23 06:15 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll 2016-05-10 21:06 - 2016-04-23 06:14 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2016-05-10 21:06 - 2016-04-23 06:12 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll 2016-05-10 21:06 - 2016-04-23 06:07 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2016-05-10 21:06 - 2016-04-23 06:05 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll 2016-05-10 21:06 - 2016-04-23 06:05 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll 2016-05-10 21:06 - 2016-04-23 06:03 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2016-05-10 21:06 - 2016-04-23 06:03 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll 2016-05-10 21:06 - 2016-04-23 06:01 - 04775424 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2016-05-10 21:06 - 2016-04-23 05:45 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2016-05-10 21:06 - 2016-04-23 04:10 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2016-05-10 21:06 - 2016-04-23 04:10 - 00002186 _____ C:\WINDOWS\system32\AppxProvisioning.xml 2016-05-10 21:06 - 2016-04-19 00:30 - 00002186 _____ C:\WINDOWS\SysWOW64\AppxProvisioning.xml 2016-05-10 20:12 - 2016-05-10 20:12 - 01748480 _____ C:\Users\Léo Péron\Downloads\ϟ TAKU P ϟ.mp4 2016-05-10 20:10 - 2016-05-10 20:10 - 01751947 _____ C:\Users\Léo Péron\Downloads\♣ Taku ♣ Inspi. SweemArts.mp4 2016-05-10 19:40 - 2016-05-10 19:54 - 89145705 _____ C:\Users\Léo Péron\Desktop\ez.psd 2016-05-10 18:27 - 2016-05-10 18:27 - 00004286 _____ C:\Users\Léo Péron\Downloads\Faux_logo.ai 2016-05-09 21:14 - 2016-05-09 21:14 - 15448773 _____ C:\Users\Léo Péron\Desktop\filepanda.psd 2016-05-09 18:31 - 2016-05-09 18:59 - 123447012 _____ C:\Users\Léo Péron\Desktop\TAKUHEADER.psd 2016-05-09 12:39 - 2016-05-09 12:39 - 04076212 _____ C:\Users\Léo Péron\Downloads\Free HDRI.zip 2016-05-08 20:04 - 2016-05-07 16:44 - 00768166 _____ C:\Users\Léo Péron\Desktop\cam.c4d 2016-05-08 19:58 - 2016-05-08 19:58 - 363040014 _____ C:\Users\Léo Péron\Downloads\shop (1).zip 2016-05-08 18:53 - 2016-05-08 18:53 - 00017005 _____ C:\Users\Léo Péron\Downloads\beech (1).zip 2016-05-08 15:51 - 2016-05-09 18:07 - 02818890 _____ C:\Users\Léo Péron\Desktop\linktuto.c4d 2016-05-08 14:10 - 2016-05-08 14:10 - 363040014 _____ C:\Users\Léo Péron\Downloads\shop.zip 2016-05-07 12:00 - 2016-05-07 12:01 - 46895296 _____ C:\Users\Léo Péron\Downloads\ϟ SYPEFX ϟ Happy Birthday bro - 20in1 ♥.mp4 2016-05-06 12:01 - 2016-05-06 12:01 - 00001749 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rainmeter.lnk 2016-05-06 12:01 - 2016-05-06 12:01 - 00000000 ____D C:\Users\Léo Péron\Documents\Rainmeter 2016-05-06 12:01 - 2016-05-06 12:01 - 00000000 ____D C:\Users\Léo Péron\AppData\Roaming\Rainmeter 2016-05-06 12:01 - 2016-05-06 12:01 - 00000000 ____D C:\Program Files\Rainmeter 2016-05-06 12:00 - 2016-05-06 12:01 - 02403384 _____ C:\Users\Léo Péron\Downloads\Rainmeter-3.3.1.exe 2016-05-06 11:58 - 2016-05-06 11:59 - 00000000 ____D C:\Users\Léo Péron\Desktop\wallpaper 2016-05-06 11:53 - 2016-05-06 11:54 - 19972391 _____ C:\Users\Léo Péron\Downloads\Skins.rar 2016-05-05 18:39 - 2016-05-05 18:39 - 00030091 _____ C:\Users\Léo Péron\Downloads\HomemadeDigieffectsDamage.ffx 2016-05-05 17:33 - 2016-05-05 17:35 - 71146512 _____ C:\Users\Léo Péron\Downloads\Smoz [C4D By StingFX].rar 2016-05-02 19:31 - 2016-05-02 19:31 - 00996826 _____ C:\Users\Léo Péron\Downloads\SkypeVoiceChanger1-2.zip 2016-05-02 19:30 - 2016-05-02 19:30 - 00813320 _____ (Shark Labs) C:\Users\Léo Péron\Downloads\CFSetup429 (1).exe 2016-05-02 19:30 - 2016-05-02 19:30 - 00693426 _____ C:\Users\Léo Péron\Downloads\clownfish_portable_429.zip 2016-05-02 19:29 - 2016-05-02 19:29 - 00813320 _____ (Shark Labs) C:\Users\Léo Péron\Downloads\CFSetup429.exe 2016-05-01 13:53 - 2016-05-05 07:37 - 00000000 ____D C:\Users\Léo Péron\Documents\Overwatch 2016-05-01 13:48 - 2016-05-01 13:48 - 00001171 _____ C:\Users\Public\Desktop\Overwatch.lnk 2016-05-01 13:48 - 2016-05-01 13:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overwatch 2016-04-30 21:51 - 2016-05-28 14:42 - 00000000 ____D C:\Program Files (x86)\Overwatch 2016-04-30 21:49 - 2016-04-30 21:49 - 00000000 ____D C:\ProgramData\Battle.net 2016-04-30 21:15 - 2016-05-28 18:54 - 00000000 ____D C:\Users\Léo Péron\AppData\Local\Battle.net 2016-04-30 21:15 - 2016-04-30 21:15 - 00001221 _____ C:\Users\Public\Desktop\Battle.net.lnk 2016-04-30 21:15 - 2016-04-30 21:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net 2016-04-30 21:13 - 2016-04-30 21:15 - 00000000 ____D C:\Users\Léo Péron\AppData\Roaming\Battle.net 2016-04-30 21:05 - 2016-05-28 18:34 - 00000000 ____D C:\Program Files (x86)\Battle.net 2016-04-30 21:03 - 2016-04-30 21:03 - 03012080 _____ (Blizzard Entertainment) C:\Users\Léo Péron\Downloads\Battle.net-Setup.exe 2016-04-30 21:00 - 2016-04-30 21:00 - 00003378 _____ C:\WINDOWS\System32\Tasks\{789C3729-0493-4F67-A4AB-5CF0F8FC4E92} 2016-04-29 18:32 - 2016-04-29 18:32 - 13070002 _____ C:\Users\Léo Péron\Downloads\smozs lightkit 2k16.lib4d 2016-04-29 12:49 - 2016-04-29 12:51 - 61547161 _____ C:\Users\Léo Péron\Downloads\Thanks for 400 Likes D.rar ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2016-05-29 08:32 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-05-29 08:31 - 2014-10-10 11:46 - 00000000 ____D C:\Users\Léo Péron\AppData\Roaming\Skype 2016-05-29 08:30 - 2014-10-10 11:39 - 00004160 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{8685DD3B-8E3B-4FF1-AE5E-20124DCC5FCD} 2016-05-29 08:26 - 2016-04-01 16:07 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2016-05-29 08:26 - 2015-05-21 14:01 - 00001080 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2016-05-29 08:26 - 2014-10-10 11:24 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2016-05-29 08:26 - 2014-10-10 11:15 - 00000000 __SHD C:\Users\Léo Péron\IntelGraphicsProfiles 2016-05-28 22:21 - 2015-10-07 18:19 - 00003329 _____ C:\Users\Léo Péron\AppData\Roaming\VoiceMeeterDefault.xml 2016-05-28 21:22 - 2015-07-16 08:33 - 00001084 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2016-05-28 21:02 - 2014-09-30 05:38 - 00000000 ____D C:\Program Files (x86)\AlienRespawn 2016-05-28 20:50 - 2016-02-13 15:14 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-05-28 20:49 - 2015-10-30 08:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI 2016-05-28 19:19 - 2015-06-11 20:07 - 00000000 ____D C:\ProgramData\boost_interprocess 2016-05-28 18:05 - 2015-01-28 10:22 - 00000000 ____D C:\Users\Léo Péron\AppData\Roaming\TS3Client 2016-05-28 17:43 - 2014-11-09 15:35 - 00000000 ____D C:\Program Files (x86)\Hearthstone 2016-05-28 15:35 - 2016-04-01 16:28 - 01851820 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-05-28 15:35 - 2016-02-13 14:49 - 00826538 _____ C:\WINDOWS\system32\perfh00C.dat 2016-05-28 15:35 - 2016-02-13 14:49 - 00156300 _____ C:\WINDOWS\system32\perfc00C.dat 2016-05-28 15:35 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF 2016-05-28 15:34 - 2014-10-28 14:01 - 00000000 ____D C:\Users\Léo Péron\AppData\Local\LogMeIn Hamachi 2016-05-28 15:30 - 2016-04-01 16:11 - 00000000 ____D C:\Users\Léo Péron 2016-05-28 14:40 - 2015-04-03 20:22 - 00000000 ____D C:\Program Files (x86)\Heroes of the Storm 2016-05-28 14:31 - 2015-03-31 15:54 - 00000000 ____D C:\Users\Léo Péron\AppData\Local\Adobe 2016-05-28 13:16 - 2014-10-24 11:55 - 00000000 ____D C:\Users\Léo Péron\AppData\Roaming\Audacity 2016-05-28 10:42 - 2015-11-16 18:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lightshot 2016-05-28 10:22 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps 2016-05-28 10:16 - 2016-02-13 06:10 - 05063816 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-05-28 10:15 - 2015-05-15 16:59 - 00000000 ____D C:\Users\Léo Péron\AppData\Roaming\ZHP 2016-05-27 13:54 - 2014-09-30 05:40 - 00000000 ____D C:\Temp 2016-05-27 12:57 - 2015-03-31 16:01 - 00000000 ___RD C:\Users\Léo Péron\Creative Cloud Files 2016-05-27 12:55 - 2015-03-22 19:19 - 00000000 ____D C:\Users\Léo Péron\Tracing 2016-05-25 17:44 - 2014-11-11 20:40 - 00000000 ____D C:\Program Files (x86)\Steam 2016-05-24 17:23 - 2015-10-30 08:28 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM 2016-05-24 17:21 - 2016-04-01 17:01 - 00933808 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klif.sys 2016-05-24 17:21 - 2016-04-01 17:01 - 00238000 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klhk.sys 2016-05-24 17:21 - 2015-12-08 01:24 - 00087984 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klwfp.sys 2016-05-24 17:21 - 2015-06-11 19:35 - 00049240 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klim6.sys 2016-05-20 17:03 - 2015-05-21 14:01 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-05-18 14:47 - 2016-04-01 16:57 - 00002421 _____ C:\Users\Léo Péron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2016-05-18 14:47 - 2015-06-22 11:35 - 00000000 ___RD C:\Users\Léo Péron\OneDrive 2016-05-17 09:13 - 2014-10-15 16:20 - 00008704 _____ C:\Users\Léo Péron\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2016-05-16 21:50 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache 2016-05-15 13:58 - 2014-10-21 10:44 - 00000000 ____D C:\Users\Léo Péron\AppData\Roaming\.minecraft 2016-05-14 20:01 - 2016-02-13 15:17 - 00000000 ____D C:\Program Files (x86)\TeamViewer 2016-05-14 20:00 - 2016-02-13 15:17 - 00001114 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk 2016-05-14 14:17 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-05-14 08:24 - 2014-10-15 16:20 - 00000000 ____D C:\Users\Léo Péron\AppData\Local\LooksBuilder 2016-05-13 13:23 - 2015-05-21 14:02 - 00002272 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-05-13 13:01 - 2015-02-12 13:38 - 00000000 ____D C:\ProgramData\SupportAssistAgent 2016-05-12 12:30 - 2016-02-13 15:18 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-05-11 21:57 - 2015-10-30 09:26 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2016-05-11 21:57 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2016-05-11 20:21 - 2016-02-13 15:01 - 00000000 ____D C:\Program Files\Windows Journal 2016-05-11 20:21 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\oobe 2016-05-11 20:21 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser 2016-05-11 20:21 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Provisioning 2016-05-11 20:21 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr 2016-05-11 13:32 - 2015-10-30 09:24 - 00015703 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml 2016-05-11 13:29 - 2014-10-11 08:37 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-05-11 13:17 - 2015-07-16 08:34 - 00004142 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2016-05-11 13:17 - 2015-05-21 14:01 - 00003910 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2016-05-11 13:05 - 2014-10-11 08:37 - 139319312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-05-10 21:09 - 2015-05-21 14:02 - 00003972 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2016-05-07 11:37 - 2016-01-07 14:40 - 00001650 _____ C:\Users\Léo Péron\Desktop\Photoshop - Raccourci.lnk 2016-05-06 16:23 - 2016-04-22 17:58 - 00000000 ____D C:\Users\Léo Péron\Desktop\LETTERPACK 2016-05-05 13:07 - 2015-05-29 17:18 - 00000000 ___RD C:\Users\Léo Péron\Desktop\Gfx.Vfx 2016-05-03 12:44 - 2014-10-10 11:15 - 00000000 ____D C:\Users\Léo Péron\AppData\Local\Packages 2016-05-02 19:31 - 2014-11-08 09:30 - 00000000 ____D C:\Users\Léo Péron\AppData\Local\SkypeFx 2016-05-01 08:43 - 2015-09-23 16:10 - 00000000 ____D C:\ProgramData\CanonIJPLM 2016-04-30 09:17 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\NDF ==================== Fichiers à la racine de certains dossiers ======= 2015-09-06 10:54 - 2015-09-26 18:53 - 0000034 _____ () C:\Users\Léo Péron\AppData\Roaming\AdobeWLCMCache.dat 2014-10-15 13:05 - 2015-06-22 11:25 - 0002342 _____ () C:\Users\Léo Péron\AppData\Roaming\LÉO.MTBF.txt 2015-07-16 16:32 - 2015-07-16 16:32 - 0000112 _____ () C:\Users\Léo Péron\AppData\Roaming\Préfs JP2K CS6 2015-03-17 18:05 - 2015-03-17 18:10 - 0012800 _____ () C:\Users\Léo Péron\AppData\Roaming\Settings.cfg 2015-10-07 18:19 - 2016-05-28 22:21 - 0003329 _____ () C:\Users\Léo Péron\AppData\Roaming\VoiceMeeterDefault.xml 2014-10-15 13:05 - 2015-06-22 11:34 - 0001089 _____ () C:\Users\Léo Péron\AppData\Roaming\__AvidCloudManager.log 2014-10-15 13:05 - 2015-06-21 11:41 - 0001089 _____ () C:\Users\Léo Péron\AppData\Roaming\__AvidCloudManagerPrevious.log 2015-06-07 11:42 - 2015-06-14 08:22 - 0001456 _____ () C:\Users\Léo Péron\AppData\Local\Adobe Enregistrer pour le Web 13.0 Prefs 2014-10-15 16:20 - 2016-05-17 09:13 - 0008704 _____ () C:\Users\Léo Péron\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2015-06-10 13:27 - 2015-06-10 13:27 - 0010544 _____ () C:\Users\Léo Péron\AppData\Local\recently-used.xbel 2015-11-16 18:24 - 2015-11-16 18:24 - 0000003 _____ () C:\Users\Léo Péron\AppData\Local\updater.log 2015-11-16 18:24 - 2015-11-16 18:24 - 0000424 _____ () C:\Users\Léo Péron\AppData\Local\UserProducts.xml 2016-04-21 12:38 - 2016-04-21 12:38 - 0000057 _____ () C:\ProgramData\Ament.ini 2015-04-07 19:20 - 2015-04-07 19:20 - 0740775 _____ () C:\ProgramData\AndyDrivers.zip 2016-04-01 16:07 - 2016-04-01 16:07 - 0000000 ____H () C:\ProgramData\DP45977C.lfl 2014-09-30 05:31 - 2014-09-30 05:32 - 0000121 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log 2014-09-30 05:27 - 2014-09-30 05:28 - 0000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log 2014-09-30 05:28 - 2014-09-30 05:30 - 0000111 _____ () C:\ProgramData\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}.log 2014-09-30 05:30 - 2014-09-30 05:31 - 0000108 _____ () C:\ProgramData\{B46BEA36-0B71-4A4E-AE41-87241643FA0A}.log 2014-09-30 05:27 - 2014-09-30 05:27 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log ==================== Bamital & volsnap ================= (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2016-05-22 20:15 ==================== Fin de FRST.txt ============================