Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 29-06-2016 Exécuté par Fabien (administrateur) sur PC (01-07-2016 12:05:46) Exécuté depuis C:\Users\Fabien\Downloads Profils chargés: Fabien (Profils disponibles: Fabien & DefaultAppPool) Platform: Windows 10 Home Version 1511 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Opera) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (QIHU 360 SOFTWARE CO. LIMITED) C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Hercules®) C:\Program Files\Hercules\Audio\DJ Console Series\drivers\amd64\HerculesDJControlMP3.EXE (Microsoft Corporation) C:\Windows\System32\mqsvc.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (SEIKO EPSON CORPORATION) C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RPB.EXE (Microsoft Corporation) C:\ProgramData\SOLIDWORKS Electrical\MSSQL11.TEW_SQLEXPRESS\MSSQL\Binn\sqlservr.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe () C:\Program Files (x86)\Kinoni\EpocCam_and_Barcode_drivers\KinoniSvc.exe () C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe (QIHU 360 SOFTWARE CO. LIMITED) C:\Program Files (x86)\360\Total Security\safemon\QHWatchdog.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe () C:\Program Files (x86)\Kinoni\Remote Desktop\service.exe (Kinoni) C:\Program Files (x86)\Kinoni\Remote Desktop\WindowsServer.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe (Microsoft Corporation) C:\Windows\System32\Speech_OneCore\Common\SpeechRuntime.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Logitech Inc.) C:\Program Files\Logitech\Gaming Software\LWEMon.exe (Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe (Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe () C:\Program Files (x86)\Kinoni\Remote Desktop\KinoniTask.exe (QIHU 360 SOFTWARE CO. LIMITED) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe (Qihu 360 Software Co., Ltd.) C:\Program Files (x86)\360\Total Security\safemon\chrome\360webshield.exe () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech Inc.) HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation) HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [6603520 2016-06-02] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [QHSafeTray] => C:\Program Files (x86)\360\Total Security\safemon\360Tray.exe [345000 2016-06-21] (QIHU 360 SOFTWARE CO. LIMITED) HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe [58640 2016-05-23] (Raptr, Inc) HKLM-x32\...\Run: [KinoniTask] => C:\Program Files (x86)\Kinoni\Remote Desktop\KinoniTask.exe [113152 2016-06-22] () HKU\S-1-5-21-2203991344-1884976120-328000680-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2917456 2016-06-15] (Valve Corporation) HKU\S-1-5-21-2203991344-1884976120-328000680-1000\...\Run: [EPSON Stylus DX7400 Series] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATICDE.EXE [213504 2007-04-12] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-2203991344-1884976120-328000680-1000\...\MountPoints2: {8612e8db-34a7-11e6-9c62-74d02b92d17e} - "H:\HiSuiteDownLoader.exe" HKU\S-1-5-21-2203991344-1884976120-328000680-1000\...\MountPoints2: {ba94117b-3a22-11e6-9c66-74d02b92d17e} - "F:\HiSuiteDownLoader.exe" HKU\S-1-5-21-2203991344-1884976120-328000680-1000\...\MountPoints2: {c77348b9-f1d4-11e5-9c30-74d02b92d17e} - "H:\HiSuiteDownLoader.exe" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SOLIDWORKS 2016 Démarrage rapide.lnk [2016-02-06] ShortcutTarget: SOLIDWORKS 2016 Démarrage rapide.lnk -> C:\Windows\Installer\{768F3B65-1695-47B7-9002-B11400CB111D}\NewShortcut2_87EDF6C81D0A4B7B84F42FE0C6A9D608.exe (Flexera Software LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Téléchargement en arrière-plan de SOLIDWORKS.lnk [2016-02-06] ShortcutTarget: Téléchargement en arrière-plan de SOLIDWORKS.lnk -> C:\Program Files (x86)\Common Files\Gestionnaire d'installation SOLIDWORKS\BackgroundDownloading\sldBgDwld.exe (Dassault Systèmes SolidWorks Corp.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 89.2.0.10 Tcpip\..\Interfaces\{a2f86fbc-b6b0-4619-b114-7b99755b158b}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{b3962579-5baf-47f0-ac73-7a1af6d40eeb}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{ef5154bb-b4a8-4400-bb0a-5815a64c1609}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{ef5154bb-b4a8-4400-bb0a-5815a64c1609}: [DhcpNameServer] 89.2.0.10 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <======= ATTENTION HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com SearchScopes: HKLM -> DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = SearchScopes: HKLM-x32 -> DefaultScope la valeur est absente BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-06-10] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2016-04-10] (Oracle Corporation) BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-20] (Google Inc.) BHO: SafeMon Class -> {B69F34DD-F0F9-42DC-9EDD-957187DA688D} -> C:\Program Files (x86)\360\Total Security\safemon\safemon64.dll [2016-06-21] (Qihu 360 Software Co., Ltd.) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-06-10] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2016-04-10] (Oracle Corporation) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2016-06-10] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-07-16] (Oracle Corporation) BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-20] (Google Inc.) BHO-x32: SafeMon Class -> {B69F34DD-F0F9-42DC-9EDD-957187DA688D} -> C:\Program Files (x86)\360\Total Security\safemon\safemon.dll [2016-06-21] (Qihu 360 Software Co., Ltd.) BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2016-06-10] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-07-16] (Oracle Corporation) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-12-20] (Google Inc.) Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-20] (Google Inc.) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-06-10] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-06-10] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-06-10] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-06-10] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\Fabien\AppData\Roaming\Mozilla\Firefox\Profiles\ioirgq5h.default FF NetworkProxy: "backup.ftp", "" FF NetworkProxy: "backup.ftp_port", 0 FF NetworkProxy: "backup.socks", "" FF NetworkProxy: "backup.socks_port", 0 FF NetworkProxy: "backup.ssl", "" FF NetworkProxy: "backup.ssl_port", 0 FF NetworkProxy: "ftp", "localhost " FF NetworkProxy: "ftp_port", 8118 FF NetworkProxy: "gopher", "" FF NetworkProxy: "gopher_port", 0 FF NetworkProxy: "share_proxy_settings", true FF NetworkProxy: "socks", "localhost " FF NetworkProxy: "socks_port", 8118 FF NetworkProxy: "ssl", "localhost " FF NetworkProxy: "ssl_port", 8118 FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_22_0_0_192.dll [2016-06-27] () FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll [2014-09-01] (EA Digital Illusions CE AB) FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [2014-12-03] (EA Digital Illusions CE AB) FF Plugin: @java.com/DTPlugin,version=10.79.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2016-04-10] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.79.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2016-04-10] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_192.dll [2016-06-27] () FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll [2014-09-01] (EA Digital Illusions CE AB) FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2014-12-03] (EA Digital Illusions CE AB) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-03-12] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-03-12] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-07-16] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-07-16] (Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-06-10] (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-06-10] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2013-02-05] (Microsoft Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [Pas de fichier] FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-03-24] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-03-24] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2013-12-09] (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-05-27] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-2203991344-1884976120-328000680-1000: sony.com/MediaGoDetector -> C:\Program Files (x86)\Sony\Media Go\npMediaGoDetector.dll [2014-07-10] (Sony Network Entertainment International LLC) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2016-05-27] (Adobe Systems Inc.) FF Extension: Tamper Data Icon Redux - C:\Users\Fabien\AppData\Roaming\Mozilla\Firefox\Profiles\ioirgq5h.default\extensions\tamperdataiconredux@frizzip.com.xpi [2016-06-26] FF Extension: Tamper Data - C:\Users\Fabien\AppData\Roaming\Mozilla\Firefox\Profiles\ioirgq5h.default\extensions\{9c51bd27-6ed8-4000-a2bf-36cb95c0c947}.xpi [2016-06-26] FF Extension: 360 Internet Protection - C:\Program Files (x86)\360\Total Security\safemon\webprotection_firefox [2016-06-27] FF HKLM-x32\...\Firefox\Extensions: [WebProtection@360safe.com] - C:\Program Files (x86)\360\Total Security\safemon\webprotection_firefox Chrome: ======= CHR HomePage: Profile 1 -> hxxp://www.google.fr/ CHR StartupUrls: Profile 1 -> "hxxp://www.google.fr/" CHR Profile: C:\Users\Fabien\AppData\Local\Google\Chrome\User Data\Profile 1 CHR Extension: (Google Slides) - C:\Users\Fabien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-07] CHR Extension: (Angry Birds) - C:\Users\Fabien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj [2015-02-07] CHR Extension: (Google Docs) - C:\Users\Fabien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-07] CHR Extension: (Google Drive) - C:\Users\Fabien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Fabien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2015-10-23] CHR Extension: (YouTube) - C:\Users\Fabien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24] CHR Extension: (GeoGebra Math Apps) - C:\Users\Fabien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bnbaboaihhkjoaolfnfoablhllahjnee [2016-05-23] CHR Extension: (Recherche Google) - C:\Users\Fabien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-28] CHR Extension: (Google Sheets) - C:\Users\Fabien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-07] CHR Extension: (Horloge) - C:\Users\Fabien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gdkjifoifglkpcdffkenpinlbjgephlo [2015-02-07] CHR Extension: (Google Docs hors connexion) - C:\Users\Fabien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15] CHR Extension: (AdBlock) - C:\Users\Fabien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-06-30] CHR Extension: (360 Internet Protection) - C:\Users\Fabien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\glcimepnljoholdmjchkloafkggfoijh [2016-05-19] CHR Extension: (Psykogif) - C:\Users\Fabien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jkjoklgdmjnffhmmllncmleongbhpdok [2015-02-07] CHR Extension: (Vérificateur de messages Google) - C:\Users\Fabien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2015-02-07] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Fabien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-01] CHR Extension: (Télécharger des vidéos – FVD Downloader) - C:\Users\Fabien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nocpfkkbaekckhcoekockfbidpcjgkbd [2016-01-29] CHR Extension: (Real-Debrid extension) - C:\Users\Fabien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oefkkgfcahbeccgckjgbnfclcmnjgidg [2016-04-02] CHR Extension: (Gmail) - C:\Users\Fabien\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-28] CHR HKLM-x32\...\Chrome\Extension: [hglljpndoeopcpehilglkbnincooinnb] - C:\Users\Fabien\AppData\Local\Flvto Plugin for Google Chrome\the_extension.crx [2013-08-30] CHR HKLM-x32\...\Chrome\Extension: [ihenkjeihefokohmemphikjnjbmegdik] - "C:\Program Files (x86)\Sony\Media Go\MediaGoDetector.crx" ==================== Services (Avec liste blanche) ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [936728 2016-05-05] () S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1863688 2016-05-14] () R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2944768 2016-06-10] (Microsoft Corporation) R2 HerculesDJControlMP3; C:\Program Files\Hercules\Audio\DJ Console Series\drivers\amd64\HerculesDJControlMP3.EXE [50688 2014-03-04] (Hercules®) [Fichier non signé] R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15344 2013-01-31] (Intel Corporation) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [Fichier non signé] R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [731648 2013-02-13] (Intel(R) Corporation) [Fichier non signé] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) S2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21184 2015-11-20] (Microsoft Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-03-12] (Intel Corporation) R2 KinoniRemoteDesktop; C:\Program Files (x86)\Kinoni\Remote Desktop\service.exe [81920 2016-06-22] () [Fichier non signé] R2 KinoniSvc; C:\Program Files (x86)\Kinoni\EpocCam_and_Barcode_drivers\KinoniSvc.exe [537088 2016-03-18] () [Fichier non signé] S2 MSSQL$SQLEXPRESS; c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [69964448 2015-04-03] (Microsoft Corporation) R2 MSSQL$TEW_SQLEXPRESS; c:\ProgramData\SOLIDWORKS Electrical\MSSQL11.TEW_SQLEXPRESS\MSSQL\Binn\sqlservr.exe [191064 2012-02-11] (Microsoft Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2122248 2016-06-11] (Electronic Arts) R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [76152 2015-10-12] () R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76152 2016-05-10] () R2 QHActiveDefense; C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe [913832 2016-06-21] (QIHU 360 SOFTWARE CO. LIMITED) S3 SolidWorks Licensing Service; C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe [79360 2015-02-02] (SolidWorks) [Fichier non signé] S4 SQLAgent$SQLEXPRESS; c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [441512 2015-04-03] (Microsoft Corporation) S4 SQLAgent$TEW_SQLEXPRESS; c:\ProgramData\SOLIDWORKS Electrical\MSSQL11.TEW_SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [597080 2012-02-11] (Microsoft Corporation) S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Fichier non signé] S3 Te.Service; C:\Program Files (x86)\Windows Kits\10\Testing\Runtimes\TAEF\Wex.Services.exe [137216 2015-11-19] (Microsoft Corporation) [Fichier non signé] S3 VSStandardCollectorService140; C:\Program Files (x86)\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe [56040 2015-11-19] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation) S2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.1.6.0\WsAppService.exe [388608 2016-01-28] (Wondershare) [Fichier non signé] S2 HuaweiHiSuiteService64.exe; "C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe" -/service [X] ===================== Pilotes (Avec liste blanche) ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 360AntiHacker; C:\Windows\System32\Drivers\360AntiHacker64.sys [151784 2016-06-21] (360.cn) S3 360AvFlt; C:\Windows\System32\DRIVERS\360AvFlt.sys [77904 2015-12-11] (360.cn) S3 360AvFlt; C:\Windows\SysWOW64\DRIVERS\360AvFlt.sys [77904 2015-12-11] (360.cn) R1 360Box64; C:\Windows\System32\DRIVERS\360Box64.sys [330472 2016-06-21] (360.cn) S3 360Camera; C:\Windows\System32\Drivers\360Camera64.sys [40520 2014-08-21] (360.cn) R1 360FsFlt; C:\Windows\System32\DRIVERS\360FsFlt.sys [370768 2016-05-18] (360.cn) S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [23240 2016-03-21] (Advanced Micro Devices, Inc.) R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [62152 2014-10-28] (Advanced Micro Devices, Inc.) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2016-05-05] () R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [101376 2016-06-02] (Advanced Micro Devices) R1 BAPIDRV; C:\Windows\System32\DRIVERS\BAPIDRV64.sys [182352 2016-05-18] (360.cn) S3 dc1-controller; C:\Windows\system32\DRIVERS\dc1-controller.sys [57344 2015-10-30] (Microsoft Corp.) R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2013-11-11] (Disc Soft Ltd) S3 hitmanpro37; C:\WINDOWS\system32\drivers\hitmanpro37.sys [49584 2016-05-13] () U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2016-05-25] (Huawei Technologies Co., Ltd.) R2 IntelHaxm; C:\Windows\system32\DRIVERS\IntelHaxm.sys [96776 2015-11-16] (Intel Corporation) R3 Kinonih; C:\Windows\System32\drivers\kinonih.sys [32256 2016-05-18] (Kinoni) R1 LUMDriver; C:\Windows\system32\drivers\LUMDriver.sys [24848 2008-01-02] (IBM) S3 MarvinBus; C:\Windows\System32\DRIVERS\MarvinBus64.sys [261120 2005-09-23] (Pinnacle Systems GmbH) [Fichier non signé] R2 npf; C:\Windows\System32\drivers\npf.sys [36600 2015-06-01] (Riverbed Technology, Inc.) R0 PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [56336 2012-06-22] (Corel Corporation) S4 RsFx0200; C:\Windows\System32\DRIVERS\RsFx0200.sys [334936 2012-02-11] (Microsoft Corporation) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [589824 2015-10-30] (Realtek ) R3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [216064 2015-10-30] (Microsoft Corporation) U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [28272 2016-05-11] () S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation) R3 WinDriver6; C:\Windows\system32\drivers\windrvr6.sys [254976 2015-03-26] (Jungo) S3 WsAudioDevice_383; C:\Windows\system32\drivers\VirtualAudio.sys [31080 2015-07-30] (Wondershare) R2 XilinxPC4Driver; C:\Windows\System32\drivers\xpc4drvr.sys [27384 2015-03-26] (Xilinx, Inc.) U3 idsvc; pas de ImagePath ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2016-07-01 12:05 - 2016-07-01 12:06 - 00026858 _____ C:\Users\Fabien\Downloads\FRST.txt 2016-07-01 12:05 - 2016-07-01 12:05 - 02390016 _____ (Farbar) C:\Users\Fabien\Downloads\FRST64.exe 2016-07-01 12:05 - 2016-07-01 12:05 - 00000000 ____D C:\FRST 2016-06-30 21:47 - 2016-06-30 21:47 - 58387544 _____ (DDD Group Plc.) C:\Users\Fabien\Downloads\TriDef-3D-7.0-Installer.exe 2016-06-30 21:47 - 2016-06-30 21:47 - 00002455 _____ C:\Users\Public\Desktop\TriDef 3D.lnk 2016-06-30 21:47 - 2016-06-30 21:47 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TriDef 2016-06-30 21:47 - 2016-06-30 21:47 - 00000000 ____D C:\ProgramData\DDD 2016-06-30 21:47 - 2016-06-30 21:47 - 00000000 ____D C:\Program Files (x86)\TriDef 2016-06-30 21:46 - 2016-06-30 21:46 - 20116832 _____ (DDD Group Plc.) C:\Users\Fabien\Downloads\TriDef-SmartCam-1.6.6-Installer.exe 2016-06-30 21:30 - 2016-06-30 21:37 - 00000000 ____D C:\Users\Fabien\Documents\TrinusVR 2016-06-30 21:30 - 2016-06-30 21:30 - 11181192 _____ (Kinoni) C:\Users\Fabien\Downloads\KinoniStreamer_1_50.exe 2016-06-30 21:30 - 2016-06-30 21:30 - 00002175 _____ C:\Users\Public\Desktop\Kinoni Streamer.lnk 2016-06-30 21:19 - 2016-06-30 21:19 - 00000000 ____D C:\Users\Fabien\Desktop\Perception 2016-06-30 21:18 - 2016-06-30 21:18 - 15102082 _____ C:\Users\Fabien\Downloads\perception_2016_05_06_v4_alpha_release.zip 2016-06-30 21:17 - 2016-06-30 21:17 - 00001076 _____ C:\Users\Public\Desktop\TrinusVR.lnk 2016-06-30 21:17 - 2016-06-30 21:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TrinusVR 2016-06-30 21:17 - 2016-06-30 21:17 - 00000000 ____D C:\Program Files (x86)\TrinusVR 2016-06-30 21:16 - 2016-06-30 21:17 - 14152104 _____ (Odd Sheep Ltd. ) C:\Users\Fabien\Downloads\TGsetup.exe 2016-06-30 21:06 - 2016-06-30 21:06 - 00515530 _____ C:\Users\Fabien\Downloads\VR_Streamer.zip 2016-06-30 21:04 - 2016-06-30 21:07 - 00000000 ____D C:\Program Files (x86)\Riftcat 2016-06-30 21:04 - 2016-06-30 21:04 - 02552264 _____ (Riftcat) C:\Users\Fabien\Downloads\RiftCatInstaller.exe 2016-06-30 21:04 - 2016-06-30 21:04 - 00000990 _____ C:\Users\Public\Desktop\Riftcat.lnk 2016-06-30 21:04 - 2016-06-30 21:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Riftcat 2016-06-30 20:49 - 2016-06-30 20:52 - 00226488 _____ C:\Users\Fabien\Desktop\ZHPDiag.txt 2016-06-30 20:37 - 2016-06-30 20:37 - 02216960 _____ C:\Users\Fabien\Downloads\ZHPDiag3.exe 2016-06-30 18:12 - 2016-06-30 18:12 - 00119799 _____ C:\Users\Fabien\Downloads\scs_extractor.zip 2016-06-30 18:10 - 2016-06-30 18:10 - 00235152 _____ C:\Users\Fabien\Downloads\scs_extractor.exe 2016-06-30 16:49 - 2016-06-30 16:49 - 00001708 _____ C:\Users\Fabien\Desktop\Photoshop.lnk 2016-06-30 16:45 - 2016-06-30 21:59 - 00000000 ____D C:\Users\Fabien\Documents\American Truck Simulator 2016-06-30 16:43 - 2016-06-30 21:25 - 00001985 _____ C:\Users\Fabien\Desktop\American Truck Simulator.lnk 2016-06-30 16:43 - 2016-06-30 16:43 - 00000000 ____D C:\Users\Fabien\AppData\Roaming\American Truck Simulator_Uninstall 2016-06-30 16:43 - 2016-06-30 16:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics 2016-06-30 16:37 - 2016-06-30 16:37 - 06186800 _____ C:\Users\Fabien\Downloads\07_Heavy_Haul_truck-skin_pack.scs 2016-06-30 16:30 - 2016-06-30 16:35 - 895098013 _____ C:\Users\Fabien\Downloads\[R.G. Mechanics] American Truck Simulator.rar 2016-06-30 16:06 - 2016-06-30 16:08 - 00281084 _____ C:\WINDOWS\Minidump\063016-39234-01.dmp 2016-06-30 16:06 - 2016-06-30 16:06 - 1049318525 _____ C:\WINDOWS\MEMORY.DMP 2016-06-30 16:06 - 2016-06-30 16:06 - 00000000 ____D C:\WINDOWS\Minidump 2016-06-30 16:05 - 2016-06-30 16:05 - 00000000 ____D C:\Users\Fabien\AppData\Roaming\iZ3D Driver 2016-06-30 16:05 - 2016-06-30 16:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iZ3D Driver 2016-06-30 16:05 - 2016-06-30 16:05 - 00000000 ____D C:\ProgramData\iZ3D Driver 2016-06-30 16:05 - 2016-06-30 16:05 - 00000000 ____D C:\Program Files (x86)\iZ3D Driver 2016-06-30 16:05 - 2010-10-06 18:00 - 00190464 _____ C:\WINDOWS\SysWOW64\PCGW32.DLL 2016-06-30 11:02 - 2016-06-11 01:33 - 00385536 _____ C:\Users\Fabien\Desktop\HEMPUS MENU v1.4.pmx 2016-06-30 11:02 - 2016-06-11 01:25 - 07526912 _____ (Alexander Blade) C:\Users\Fabien\Desktop\HEMPUSHOOKV.dll 2016-06-30 11:02 - 2016-03-23 23:08 - 00218624 _____ (Alexander Blade) C:\Users\Fabien\Desktop\dinput8.dll 2016-06-28 20:50 - 2016-06-28 21:13 - 00013030 _____ C:\PDOXUSRS.NET 2016-06-28 20:49 - 1999-11-12 05:11 - 00183808 _____ C:\WINDOWS\SysWOW64\BDEADMIN.CPL 2016-06-28 20:49 - 1999-01-20 05:01 - 00210032 _____ C:\WINDOWS\SysWOW64\DBCLIENT.DLL 2016-06-27 21:55 - 2016-06-30 16:03 - 00000000 ____D C:\Program Files (x86)\TriDef 3D 2016-06-27 21:55 - 2016-06-27 21:55 - 00000000 ____D C:\ProgramData\TriDef 3D 2016-06-26 18:15 - 2016-06-26 18:15 - 00000000 ____D C:\Users\Fabien\AppData\Local\IntugameServerUI 2016-06-26 18:15 - 2016-06-26 18:15 - 00000000 ____D C:\Users\Fabien\AppData\Local\Intugame_Ltd 2016-06-26 17:45 - 2016-06-26 17:45 - 00000000 ____D C:\Users\Fabien\AppData\Roaming\Google.Apis.Auth 2016-06-26 17:45 - 2016-06-26 17:45 - 00000000 ____D C:\ProgramData\Kinoni 2016-06-26 17:39 - 2016-06-30 21:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kinoni 2016-06-26 17:39 - 2016-06-30 13:54 - 00000000 ____D C:\Program Files (x86)\Kinoni 2016-06-26 17:33 - 2016-06-26 17:33 - 00000000 ____D C:\Users\Fabien\AppData\Local\Odd_Sheep_Ltd 2016-06-25 16:56 - 2016-06-25 16:57 - 00000000 ____D C:\WINDOWS\SysWOW64\directx 2016-06-22 19:12 - 2016-06-22 19:13 - 00000000 ____D C:\Program Files (x86)\Fallout 4 2016-06-18 23:05 - 2016-06-18 23:05 - 00003962 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1466283905 2016-06-18 23:05 - 2016-06-18 23:05 - 00001204 _____ C:\Users\Public\Desktop\Opera.lnk 2016-06-18 23:05 - 2016-06-18 23:05 - 00001204 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk 2016-06-18 23:05 - 2016-06-18 23:05 - 00000000 ____D C:\Users\Fabien\AppData\Roaming\Opera Software 2016-06-18 23:05 - 2016-06-18 23:05 - 00000000 ____D C:\Users\Fabien\AppData\Local\Opera Software 2016-06-18 23:04 - 2016-06-18 23:05 - 00000000 ____D C:\Program Files (x86)\Opera 2016-06-18 21:27 - 2016-06-18 21:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\ClockworkMod 2016-06-18 21:27 - 2016-06-18 21:27 - 00000000 ____D C:\Program Files (x86)\ClockworkMod 2016-06-18 21:25 - 2016-06-18 21:25 - 00000000 ____D C:\Users\Fabien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Android SDK Tools 2016-06-18 21:20 - 2016-05-25 12:53 - 00126592 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\hw_cdcacm.sys 2016-06-18 21:20 - 2016-05-25 12:53 - 00018816 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_usbccgpfilter.sys 2016-06-18 21:18 - 2016-05-25 12:53 - 00223232 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\hw_quusbmdm.sys 2016-06-18 21:00 - 2010-02-19 01:00 - 01533512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudfupdate_01007.dll 2016-06-18 21:00 - 2010-02-19 01:00 - 01490656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdfcoinstaller01007.dll 2016-06-18 21:00 - 2010-02-19 01:00 - 00708168 _____ (Microsoft Corporation) C:\WINDOWS\system32\winusbcoinstaller.dll 2016-06-18 16:00 - 2016-06-29 19:11 - 00001812 _____ C:\Users\Fabien\Desktop\GTA V.lnk 2016-06-16 18:53 - 2016-06-16 18:59 - 00000000 _____ C:\WINDOWS\system32\ScriptHookV.dll 2016-06-16 18:53 - 2016-06-16 18:58 - 00000000 _____ C:\WINDOWS\system32\ScriptHookVDotNet.dll 2016-06-15 18:33 - 2016-05-28 08:13 - 01401024 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2016-06-15 18:33 - 2016-05-28 08:13 - 00290496 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2016-06-15 18:33 - 2016-05-28 08:13 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2016-06-15 18:33 - 2016-05-28 08:13 - 00046784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2016-06-15 18:33 - 2016-05-28 07:25 - 04268880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll 2016-06-15 18:33 - 2016-05-28 07:23 - 00388384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll 2016-06-15 18:33 - 2016-05-28 07:23 - 00312160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswsock.dll 2016-06-15 18:33 - 2016-05-28 07:22 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-06-15 18:33 - 2016-05-28 07:22 - 04387680 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll 2016-06-15 18:33 - 2016-05-28 07:22 - 00428896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2016-06-15 18:33 - 2016-05-28 07:20 - 00430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll 2016-06-15 18:33 - 2016-05-28 07:18 - 00357216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswsock.dll 2016-06-15 18:33 - 2016-05-28 07:09 - 00501600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll 2016-06-15 18:33 - 2016-05-28 07:08 - 00693600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll 2016-06-15 18:33 - 2016-05-28 07:07 - 03675512 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-06-15 18:33 - 2016-05-28 07:07 - 02921880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-06-15 18:33 - 2016-05-28 07:07 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2016-06-15 18:33 - 2016-05-28 07:07 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2016-06-15 18:33 - 2016-05-28 07:07 - 00808288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2016-06-15 18:33 - 2016-05-28 07:07 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2016-06-15 18:33 - 2016-05-28 07:07 - 00331616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2016-06-15 18:33 - 2016-05-28 07:06 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-06-15 18:33 - 2016-05-28 07:06 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2016-06-15 18:33 - 2016-05-28 07:06 - 00730344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll 2016-06-15 18:33 - 2016-05-28 07:06 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe 2016-06-15 18:33 - 2016-05-28 07:06 - 00254656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe 2016-06-15 18:33 - 2016-05-28 07:05 - 04515264 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-06-15 18:33 - 2016-05-28 07:04 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2016-06-15 18:33 - 2016-05-28 07:04 - 00431296 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll 2016-06-15 18:33 - 2016-05-28 07:04 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2016-06-15 18:33 - 2016-05-28 06:58 - 01996640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-06-15 18:33 - 2016-05-28 06:58 - 00379232 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2016-06-15 18:33 - 2016-05-28 06:57 - 02548944 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll 2016-06-15 18:33 - 2016-05-28 06:57 - 02195632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll 2016-06-15 18:33 - 2016-05-28 06:57 - 01594416 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2016-06-15 18:33 - 2016-05-28 06:57 - 01372312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2016-06-15 18:33 - 2016-05-28 06:57 - 00649792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2016-06-15 18:33 - 2016-05-28 06:57 - 00636304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2016-06-15 18:33 - 2016-05-28 06:57 - 00577376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-06-15 18:33 - 2016-05-28 06:57 - 00546456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2016-06-15 18:33 - 2016-05-28 06:57 - 00521664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2016-06-15 18:33 - 2016-05-28 06:57 - 00316256 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2016-06-15 18:33 - 2016-05-28 06:35 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdlrecover.exe 2016-06-15 18:33 - 2016-05-28 06:35 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll 2016-06-15 18:33 - 2016-05-28 06:35 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsdport.sys 2016-06-15 18:33 - 2016-05-28 06:31 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdlrecover.exe 2016-06-15 18:33 - 2016-05-28 06:31 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll 2016-06-15 18:33 - 2016-05-28 06:29 - 22379008 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-06-15 18:33 - 2016-05-28 06:29 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2016-06-15 18:33 - 2016-05-28 06:28 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2016-06-15 18:33 - 2016-05-28 06:27 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll 2016-06-15 18:33 - 2016-05-28 06:27 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll 2016-06-15 18:33 - 2016-05-28 06:26 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe 2016-06-15 18:33 - 2016-05-28 06:26 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll 2016-06-15 18:33 - 2016-05-28 06:26 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll 2016-06-15 18:33 - 2016-05-28 06:25 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2016-06-15 18:33 - 2016-05-28 06:24 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll 2016-06-15 18:33 - 2016-05-28 06:24 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll 2016-06-15 18:33 - 2016-05-28 06:22 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2016-06-15 18:33 - 2016-05-28 06:22 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys 2016-06-15 18:33 - 2016-05-28 06:22 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll 2016-06-15 18:33 - 2016-05-28 06:22 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll 2016-06-15 18:33 - 2016-05-28 06:22 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll 2016-06-15 18:33 - 2016-05-28 06:22 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll 2016-06-15 18:33 - 2016-05-28 06:21 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrokerLib.dll 2016-06-15 18:33 - 2016-05-28 06:21 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2016-06-15 18:33 - 2016-05-28 06:20 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2016-06-15 18:33 - 2016-05-28 06:19 - 24605696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-06-15 18:33 - 2016-05-28 06:19 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2016-06-15 18:33 - 2016-05-28 06:18 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-06-15 18:33 - 2016-05-28 06:18 - 07977472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2016-06-15 18:33 - 2016-05-28 06:18 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll 2016-06-15 18:33 - 2016-05-28 06:18 - 00591360 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll 2016-06-15 18:33 - 2016-05-28 06:18 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2016-06-15 18:33 - 2016-05-28 06:18 - 00380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll 2016-06-15 18:33 - 2016-05-28 06:18 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll 2016-06-15 18:33 - 2016-05-28 06:17 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-06-15 18:33 - 2016-05-28 06:17 - 00963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll 2016-06-15 18:33 - 2016-05-28 06:17 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll 2016-06-15 18:33 - 2016-05-28 06:17 - 00173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll 2016-06-15 18:33 - 2016-05-28 06:16 - 19344384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-06-15 18:33 - 2016-05-28 06:16 - 00690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2016-06-15 18:33 - 2016-05-28 06:16 - 00684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll 2016-06-15 18:33 - 2016-05-28 06:16 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll 2016-06-15 18:33 - 2016-05-28 06:16 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2016-06-15 18:33 - 2016-05-28 06:16 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys 2016-06-15 18:33 - 2016-05-28 06:15 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2016-06-15 18:33 - 2016-05-28 06:15 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2016-06-15 18:33 - 2016-05-28 06:15 - 00794624 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2016-06-15 18:33 - 2016-05-28 06:15 - 00535040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll 2016-06-15 18:33 - 2016-05-28 06:15 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2016-06-15 18:33 - 2016-05-28 06:14 - 18674176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-06-15 18:33 - 2016-05-28 06:14 - 01716736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll 2016-06-15 18:33 - 2016-05-28 06:14 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll 2016-06-15 18:33 - 2016-05-28 06:14 - 00965632 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2016-06-15 18:33 - 2016-05-28 06:14 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2016-06-15 18:33 - 2016-05-28 06:14 - 00606208 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2016-06-15 18:33 - 2016-05-28 06:14 - 00499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll 2016-06-15 18:33 - 2016-05-28 06:13 - 00990208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2016-06-15 18:33 - 2016-05-28 06:13 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll 2016-06-15 18:33 - 2016-05-28 06:13 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2016-06-15 18:33 - 2016-05-28 06:13 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2016-06-15 18:33 - 2016-05-28 06:13 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll 2016-06-15 18:33 - 2016-05-28 06:12 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll 2016-06-15 18:33 - 2016-05-28 06:12 - 00614400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2016-06-15 18:33 - 2016-05-28 06:12 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll 2016-06-15 18:33 - 2016-05-28 06:11 - 01445888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll 2016-06-15 18:33 - 2016-05-28 06:11 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll 2016-06-15 18:33 - 2016-05-28 06:11 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll 2016-06-15 18:33 - 2016-05-28 06:11 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll 2016-06-15 18:33 - 2016-05-28 06:11 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2016-06-15 18:33 - 2016-05-28 06:11 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2016-06-15 18:33 - 2016-05-28 06:09 - 01073152 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2016-06-15 18:33 - 2016-05-28 06:08 - 13385728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-06-15 18:33 - 2016-05-28 06:08 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2016-06-15 18:33 - 2016-05-28 06:06 - 12128256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-06-15 18:33 - 2016-05-28 06:06 - 07200256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2016-06-15 18:33 - 2016-05-28 06:06 - 01339904 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2016-06-15 18:33 - 2016-05-28 06:05 - 03994624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2016-06-15 18:33 - 2016-05-28 06:05 - 03664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2016-06-15 18:33 - 2016-05-28 06:05 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2016-06-15 18:33 - 2016-05-28 06:05 - 01797120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2016-06-15 18:33 - 2016-05-28 06:04 - 06973952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2016-06-15 18:33 - 2016-05-28 06:03 - 05323776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2016-06-15 18:33 - 2016-05-28 06:03 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2016-06-15 18:33 - 2016-05-28 06:03 - 02609664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2016-06-15 18:33 - 2016-05-28 06:03 - 01185280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationFramework.dll 2016-06-15 18:33 - 2016-05-28 06:03 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2016-06-15 18:33 - 2016-05-28 06:02 - 03590144 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-06-15 18:33 - 2016-05-28 06:02 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2016-06-15 18:33 - 2016-05-28 06:02 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll 2016-06-15 18:33 - 2016-05-28 06:01 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2016-06-15 18:33 - 2016-05-28 06:01 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2016-06-15 18:33 - 2016-05-28 06:01 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-06-15 18:33 - 2016-05-28 06:00 - 05660160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-06-15 18:33 - 2016-05-28 06:00 - 03585536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll 2016-06-15 18:33 - 2016-05-28 06:00 - 02635776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2016-06-15 18:33 - 2016-05-28 06:00 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2016-06-15 18:33 - 2016-05-28 06:00 - 01730560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-06-15 18:33 - 2016-05-28 06:00 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll 2016-06-15 18:33 - 2016-05-28 06:00 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe 2016-06-15 18:33 - 2016-05-28 05:58 - 07832576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-06-15 18:33 - 2016-05-28 05:58 - 04896256 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-06-15 18:33 - 2016-05-28 05:58 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2016-06-15 18:33 - 2016-05-28 05:58 - 02066432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2016-06-15 18:33 - 2016-05-28 05:58 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll 2016-06-15 18:33 - 2016-05-28 05:57 - 02281472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2016-06-15 18:33 - 2016-05-28 05:55 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2016-06-15 18:32 - 2016-05-28 08:13 - 01184960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2016-06-15 18:32 - 2016-05-28 08:13 - 00514752 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2016-06-15 18:32 - 2016-05-28 07:22 - 00211296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys 2016-06-15 18:32 - 2016-05-28 07:22 - 00118624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys 2016-06-15 18:32 - 2016-05-28 07:16 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2016-06-15 18:32 - 2016-05-28 07:09 - 00170848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.exe 2016-06-15 18:32 - 2016-05-28 07:09 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll 2016-06-15 18:32 - 2016-05-28 07:08 - 00258912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufx01000.sys 2016-06-15 18:32 - 2016-05-28 07:08 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll 2016-06-15 18:32 - 2016-05-28 07:04 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll 2016-06-15 18:32 - 2016-05-28 07:04 - 00111064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll 2016-06-15 18:32 - 2016-05-28 07:04 - 00097096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll 2016-06-15 18:32 - 2016-05-28 07:03 - 00131248 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll 2016-06-15 18:32 - 2016-05-28 06:31 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2016-06-15 18:32 - 2016-05-28 06:29 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll 2016-06-15 18:32 - 2016-05-28 06:29 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxp.dll 2016-06-15 18:32 - 2016-05-28 06:28 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2016-06-15 18:32 - 2016-05-28 06:28 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\FwRemoteSvr.dll 2016-06-15 18:32 - 2016-05-28 06:26 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2016-06-15 18:32 - 2016-05-28 06:26 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe 2016-06-15 18:32 - 2016-05-28 06:24 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2016-06-15 18:32 - 2016-05-28 06:24 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Ndu.sys 2016-06-15 18:32 - 2016-05-28 06:24 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2016-06-15 18:32 - 2016-05-28 06:24 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll 2016-06-15 18:32 - 2016-05-28 06:24 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll 2016-06-15 18:32 - 2016-05-28 06:24 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FwRemoteSvr.dll 2016-06-15 18:32 - 2016-05-28 06:23 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2016-06-15 18:32 - 2016-05-28 06:23 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll 2016-06-15 18:32 - 2016-05-28 06:22 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2016-06-15 18:32 - 2016-05-28 06:22 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2016-06-15 18:32 - 2016-05-28 06:22 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptsvc.dll 2016-06-15 18:32 - 2016-05-28 06:21 - 00550912 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2016-06-15 18:32 - 2016-05-28 06:21 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll 2016-06-15 18:32 - 2016-05-28 06:20 - 00511488 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.dll 2016-06-15 18:32 - 2016-05-28 06:20 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\polstore.dll 2016-06-15 18:32 - 2016-05-28 06:20 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll 2016-06-15 18:32 - 2016-05-28 06:20 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GnssAdapter.dll 2016-06-15 18:32 - 2016-05-28 06:20 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll 2016-06-15 18:32 - 2016-05-28 06:20 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll 2016-06-15 18:32 - 2016-05-28 06:19 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2016-06-15 18:32 - 2016-05-28 06:19 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2016-06-15 18:32 - 2016-05-28 06:19 - 00355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll 2016-06-15 18:32 - 2016-05-28 06:19 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll 2016-06-15 18:32 - 2016-05-28 06:18 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPSECSVC.DLL 2016-06-15 18:32 - 2016-05-28 06:17 - 00485888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\newdev.dll 2016-06-15 18:32 - 2016-05-28 06:17 - 00415232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll 2016-06-15 18:32 - 2016-05-28 06:17 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2016-06-15 18:32 - 2016-05-28 06:17 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2016-06-15 18:32 - 2016-05-28 06:16 - 00291328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\polstore.dll 2016-06-15 18:32 - 2016-05-28 06:16 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll 2016-06-15 18:32 - 2016-05-28 06:15 - 00293888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll 2016-06-15 18:32 - 2016-05-28 06:15 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2016-06-15 18:32 - 2016-05-28 06:14 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll 2016-06-15 18:32 - 2016-05-28 06:14 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2016-06-15 18:32 - 2016-05-28 06:13 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2016-06-15 18:32 - 2016-05-28 06:11 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll 2016-06-15 18:32 - 2016-05-28 06:11 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll 2016-06-15 18:32 - 2016-05-28 06:04 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll 2016-06-15 18:32 - 2016-05-28 06:04 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll 2016-06-15 18:32 - 2016-05-28 06:03 - 00693760 _____ (Microsoft Corporation) C:\WINDOWS\system32\internetmail.dll 2016-06-15 18:32 - 2016-05-28 06:02 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll 2016-06-15 18:32 - 2016-05-28 06:01 - 00111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll 2016-06-15 18:32 - 2016-05-28 06:00 - 02230272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2016-06-15 18:32 - 2016-05-28 06:00 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2016-06-15 18:32 - 2016-05-28 06:00 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll 2016-06-15 18:32 - 2016-05-28 05:59 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll 2016-06-15 18:32 - 2016-05-28 05:53 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll 2016-06-04 22:47 - 2016-06-04 22:49 - 00000000 ____D C:\Users\Fabien\Documents\Rockstar Games 2016-06-04 22:46 - 2016-06-04 22:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games 2016-06-04 18:18 - 2016-06-04 18:18 - 00000000 ____D C:\Users\Fabien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\360 Security Center 2016-06-02 23:14 - 2016-06-02 23:14 - 01243344 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll 2016-06-02 23:14 - 2016-06-02 23:14 - 00462080 _____ C:\WINDOWS\system32\amdmiracast.dll 2016-06-02 23:14 - 2016-06-02 23:14 - 00150544 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll 2016-06-02 23:14 - 2016-06-02 23:14 - 00141280 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll 2016-06-02 23:14 - 2016-06-02 23:14 - 00141280 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll 2016-06-02 23:14 - 2016-06-02 23:14 - 00137136 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll 2016-06-02 23:14 - 2016-06-02 23:14 - 00125288 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll 2016-06-02 23:14 - 2016-06-02 23:14 - 00123776 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll 2016-06-02 23:14 - 2016-06-02 23:14 - 00109856 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll 2016-06-02 23:14 - 2016-06-02 23:14 - 00109856 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll 2016-06-02 23:14 - 2016-06-02 23:14 - 00092328 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll 2016-06-02 23:14 - 2016-06-02 23:14 - 00092328 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll 2016-06-02 23:13 - 2016-06-02 23:13 - 08883384 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll 2016-06-02 23:13 - 2016-06-02 23:13 - 08865344 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll 2016-06-02 23:13 - 2016-06-02 23:13 - 08577456 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll 2016-06-02 23:13 - 2016-06-02 23:13 - 06999496 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll 2016-06-02 23:11 - 2016-06-02 23:11 - 00297216 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amdacpksd.sys 2016-06-02 23:02 - 2016-06-02 23:02 - 48616960 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll 2016-06-02 23:02 - 2016-06-02 23:02 - 00252928 _____ C:\WINDOWS\system32\clinfo.exe 2016-06-02 23:00 - 2016-06-02 23:00 - 00096256 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2016-06-02 23:00 - 2016-06-02 23:00 - 00087040 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2016-06-02 22:58 - 2016-06-02 22:58 - 27433472 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl12cl64.dll 2016-06-02 22:58 - 2016-06-02 22:58 - 08699904 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdvlk64.dll 2016-06-02 22:54 - 2016-06-02 22:54 - 06952448 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdvlk32.dll 2016-06-02 22:44 - 2016-06-02 22:44 - 00103424 _____ (Advanced Micro Devices) C:\WINDOWS\system32\DelayAPO.dll 2016-06-02 22:43 - 2016-06-02 22:43 - 00184320 _____ C:\WINDOWS\system32\amdhdl64.dll 2016-06-02 22:43 - 2016-06-02 22:43 - 00164352 _____ C:\WINDOWS\SysWOW64\amdhdl32.dll 2016-06-02 22:42 - 2016-06-02 22:42 - 30188032 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll 2016-06-02 22:42 - 2016-06-02 22:42 - 00732160 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll 2016-06-02 22:42 - 2016-06-02 22:42 - 00607744 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll 2016-06-02 22:42 - 2016-06-02 22:42 - 00142336 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll 2016-06-02 22:42 - 2016-06-02 22:42 - 00117760 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll 2016-06-02 22:41 - 2016-06-02 22:41 - 06965248 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll 2016-06-02 22:39 - 2016-06-02 22:39 - 00865280 _____ (AMD) C:\WINDOWS\system32\coinst_16.20.dll 2016-06-02 22:38 - 2016-06-02 22:38 - 05643776 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmantle32.dll 2016-06-02 22:38 - 2016-06-02 22:38 - 00717520 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb 2016-06-02 22:38 - 2016-06-02 22:38 - 00717520 _____ C:\WINDOWS\system32\atiapfxx.blb 2016-06-02 22:37 - 2016-06-02 22:37 - 15711744 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll 2016-06-02 22:37 - 2016-06-02 22:37 - 00385536 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe 2016-06-02 22:37 - 2016-06-02 22:37 - 00062464 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll 2016-06-02 22:37 - 2016-06-02 22:37 - 00055808 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll 2016-06-02 22:37 - 2016-06-02 22:37 - 00052224 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll 2016-06-02 22:37 - 2016-06-02 22:37 - 00049152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll 2016-06-02 22:36 - 2016-06-02 22:36 - 14302720 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll 2016-06-02 22:35 - 2016-06-02 22:35 - 24836096 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll 2016-06-02 22:35 - 2016-06-02 22:35 - 00050688 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll 2016-06-02 22:35 - 2016-06-02 22:35 - 00038400 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll 2016-06-02 22:34 - 2016-06-02 22:34 - 00113152 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll 2016-06-02 22:34 - 2016-06-02 22:34 - 00092160 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll 2016-06-02 22:33 - 2016-06-02 22:33 - 08750592 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdxc64.dll 2016-06-02 22:32 - 2016-06-02 22:32 - 03437632 _____ C:\WINDOWS\system32\atiumd6a.cap 2016-06-02 22:31 - 2016-06-02 22:31 - 07160832 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdxc32.dll 2016-06-02 22:31 - 2016-06-02 22:31 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll 2016-06-02 22:31 - 2016-06-02 22:31 - 00274432 _____ C:\WINDOWS\system32\dgtrayicon.exe 2016-06-02 22:31 - 2016-06-02 22:31 - 00258560 _____ C:\WINDOWS\system32\GameManager64.dll 2016-06-02 22:31 - 2016-06-02 22:31 - 00223744 _____ C:\WINDOWS\SysWOW64\GameManager32.dll 2016-06-02 22:31 - 2016-06-02 22:31 - 00212480 _____ C:\WINDOWS\system32\atieah64.exe 2016-06-02 22:30 - 2016-06-02 22:30 - 00588288 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe 2016-06-02 22:30 - 2016-06-02 22:30 - 00306688 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe 2016-06-02 22:30 - 2016-06-02 22:30 - 00270336 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll 2016-06-02 22:30 - 2016-06-02 22:30 - 00230912 _____ C:\WINDOWS\system32\amdgfxinfo64.dll 2016-06-02 22:30 - 2016-06-02 22:30 - 00202752 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll 2016-06-02 22:30 - 2016-06-02 22:30 - 00190464 _____ C:\WINDOWS\SysWOW64\atieah32.exe 2016-06-02 22:30 - 2016-06-02 22:30 - 00093696 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll 2016-06-02 22:28 - 2016-06-02 22:28 - 03471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap 2016-06-02 22:26 - 2016-06-02 22:26 - 00973824 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll 2016-06-02 22:26 - 2016-06-02 22:26 - 00185344 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll 2016-06-02 22:26 - 2016-06-02 22:26 - 00106496 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll 2016-06-02 22:26 - 2016-06-02 22:26 - 00091136 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll 2016-06-02 22:26 - 2016-06-02 22:26 - 00091136 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll 2016-06-02 22:25 - 2016-06-02 22:25 - 00119808 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll 2016-06-02 22:25 - 2016-06-02 22:25 - 00101376 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll 2016-06-02 22:25 - 2016-06-02 22:25 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll 2016-06-02 22:23 - 2016-06-02 22:23 - 00251392 _____ C:\WINDOWS\system32\hsa-thunk64.dll 2016-06-02 22:23 - 2016-06-02 22:23 - 00217088 _____ C:\WINDOWS\SysWOW64\hsa-thunk.dll ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2016-07-01 12:02 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps 2016-07-01 12:02 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-07-01 12:01 - 2015-08-27 12:13 - 00004152 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{CFD38391-0530-4917-B4D2-DA30BDDEE2E1} 2016-07-01 00:24 - 2016-05-05 21:47 - 00000000 ____D C:\Users\Fabien 2016-06-30 21:21 - 2013-11-11 14:58 - 00000000 ____D C:\Users\Fabien\AppData\Local\CrashDumps 2016-06-30 21:10 - 2013-11-09 18:04 - 00000000 ____D C:\Program Files (x86)\Steam 2016-06-30 21:06 - 2013-11-20 22:34 - 00000000 ____D C:\Users\Fabien\AppData\Roaming\ZHP 2016-06-30 21:05 - 2015-07-31 18:34 - 00000000 ____D C:\ProgramData\Package Cache 2016-06-30 18:22 - 2013-11-14 15:49 - 00000000 ____D C:\Users\Fabien\AppData\Local\Windows Live 2016-06-30 16:51 - 2014-12-23 23:39 - 00000132 _____ C:\Users\Fabien\AppData\Roaming\Préférences Adobe PNG Format CC 2016-06-30 16:37 - 2015-01-21 14:50 - 00000000 ____D C:\Games 2016-06-30 16:32 - 2014-01-08 17:30 - 00000000 ____D C:\Users\Fabien\Documents\Mes jeux 2016-06-30 16:25 - 2013-11-20 22:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP 2016-06-30 16:24 - 2016-04-05 19:25 - 00000000 ____D C:\Program Files (x86)\Raptr Inc 2016-06-30 16:24 - 2014-12-14 15:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved 2016-06-30 16:21 - 2014-06-15 18:39 - 00000000 ____D C:\Users\Fabien\AppData\LocalLow\360WD 2016-06-30 16:20 - 2014-11-17 19:17 - 00000000 ____D C:\Program Files (x86)\LibreOffice 4 2016-06-30 16:16 - 2015-07-31 19:07 - 00000000 ____D C:\Users\Fabien\AppData\Local\Packages 2016-06-30 16:15 - 2016-02-18 16:22 - 00000000 ____D C:\Program Files (x86)\GMT-MAX.ORG 2016-06-30 16:15 - 2015-08-26 18:51 - 00000000 ____D C:\2-click run 2016-06-30 16:15 - 2015-02-06 16:03 - 00000000 ____D C:\Users\Fabien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1-click run 2016-06-30 16:14 - 2015-12-24 19:09 - 00000000 ____D C:\Users\Fabien\Documents\Maintenance 2016-06-30 16:07 - 2016-04-10 13:31 - 00000147 _____ C:\HaxLogs.txt 2016-06-30 16:06 - 2016-02-13 15:14 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-06-30 16:06 - 2014-06-15 18:39 - 00000000 _RSHD C:\360SANDBOX 2016-06-30 14:20 - 2015-10-30 08:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI 2016-06-30 14:15 - 2015-11-24 19:56 - 00000000 ____D C:\Program Files (x86)\ZHPFix 2016-06-30 13:43 - 2016-05-05 21:46 - 02578682 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-06-30 13:43 - 2016-02-13 14:49 - 01089210 _____ C:\WINDOWS\system32\perfh00C.dat 2016-06-30 13:43 - 2016-02-13 14:49 - 00260262 _____ C:\WINDOWS\system32\perfc00C.dat 2016-06-30 13:43 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF 2016-06-29 20:41 - 2015-11-17 18:20 - 00358286 _____ C:\Users\Fabien\ZHPCleaner.exe 2016-06-29 20:37 - 2013-11-21 12:15 - 00000000 ____D C:\AdwCleaner 2016-06-29 12:54 - 2013-11-09 18:45 - 00000000 ____D C:\Users\Fabien\AppData\Roaming\vlc 2016-06-28 21:03 - 2013-11-09 17:22 - 00000000 ____D C:\Temp 2016-06-28 20:55 - 2016-05-08 11:18 - 02221568 _____ C:\Users\Fabien\ZHPDiag3.exe 2016-06-27 12:53 - 2016-02-22 19:27 - 00001222 _____ C:\Users\Public\Desktop\360 Total Security.lnk 2016-06-27 12:53 - 2014-06-15 18:42 - 00000000 ____D C:\WINDOWS\Tasks\360Disabled 2016-06-27 12:53 - 2014-06-15 18:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\360 Security Center 2016-06-27 11:54 - 2014-07-13 12:55 - 00000000 ____D C:\Users\Fabien\AppData\Local\Adobe 2016-06-27 11:54 - 2014-01-17 14:32 - 00003978 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2016-06-25 16:57 - 2013-11-20 23:31 - 00000000 ____D C:\WINDOWS\msdownld.tmp 2016-06-25 16:21 - 2014-04-14 14:05 - 00000000 ____D C:\Users\Fabien\AppData\Local\JDownloader v2.0 2016-06-24 21:52 - 2013-11-20 17:54 - 00000000 ____D C:\ProgramData\Origin 2016-06-24 21:48 - 2014-02-10 17:37 - 00348360 _____ C:\WINDOWS\SysWOW64\PnkBstrB.xtr 2016-06-24 21:48 - 2014-02-10 17:33 - 00348360 _____ C:\WINDOWS\SysWOW64\PnkBstrB.exe 2016-06-24 18:43 - 2016-04-10 11:09 - 00000000 ____D C:\adb 2016-06-24 14:57 - 2014-11-05 17:57 - 00000000 ____D C:\Program Files (x86)\Cheat Engine 6.1 2016-06-22 17:47 - 2013-11-17 19:33 - 00000000 ____D C:\Users\Fabien\AppData\Local\Arma 3 2016-06-22 13:08 - 2014-02-10 17:33 - 00348360 _____ C:\WINDOWS\SysWOW64\PnkBstrB.ex0 2016-06-21 20:59 - 2015-04-13 20:15 - 00000000 ____D C:\Program Files\Rockstar Games 2016-06-21 20:59 - 2015-04-13 20:15 - 00000000 ____D C:\Program Files (x86)\Rockstar Games 2016-06-21 11:26 - 2015-10-30 09:24 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2016-06-21 11:23 - 2013-11-10 21:57 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2016-06-21 06:02 - 2014-06-15 18:39 - 00330472 _____ (360.cn) C:\WINDOWS\system32\Drivers\360Box64.sys 2016-06-21 06:02 - 2014-06-15 18:39 - 00151784 _____ (360.cn) C:\WINDOWS\system32\Drivers\360AntiHacker64.sys 2016-06-18 23:51 - 2014-06-15 12:52 - 00000000 ____D C:\Users\Fabien\AppData\Roaming\TS3Client 2016-06-18 21:25 - 2016-04-10 13:17 - 00000000 ____D C:\Users\Fabien\AppData\Local\Android 2016-06-18 21:24 - 2016-03-24 22:23 - 00000000 ____D C:\Users\Fabien\AppData\Local\HiSuite 2016-06-18 21:24 - 2016-03-24 22:23 - 00000000 ____D C:\Program Files (x86)\HiSuite 2016-06-18 18:05 - 2013-11-09 18:21 - 00000000 ____D C:\Users\Fabien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2016-06-18 17:51 - 2014-06-29 15:16 - 00000000 ____D C:\Users\Fabien\AppData\Roaming\SpaceEngineers 2016-06-17 21:38 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache 2016-06-17 21:35 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-06-17 18:29 - 2016-02-13 15:18 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-06-17 18:22 - 2016-02-13 06:10 - 05324576 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-06-16 22:27 - 2015-10-30 09:24 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs 2016-06-16 22:27 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2016-06-16 22:27 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr 2016-06-16 18:31 - 2015-10-29 16:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PoliceMod 2 2016-06-15 18:47 - 2015-03-25 19:47 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-06-15 18:41 - 2014-06-15 18:42 - 142482544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-06-14 20:33 - 2015-10-30 09:26 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2016-06-14 20:33 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2016-06-11 20:14 - 2015-04-18 19:13 - 00000000 ____D C:\Users\Fabien\AppData\Local\LiveGBoost 2016-06-11 19:57 - 2014-06-14 10:22 - 00000000 ____D C:\Program Files (x86)\Origin 2016-06-11 10:48 - 2016-04-09 18:10 - 00000000 ____D C:\Users\Fabien\Documents\recettes 2016-06-10 20:28 - 2015-05-15 14:15 - 00003014 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2016-06-09 21:02 - 2015-12-27 00:22 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-06-08 19:05 - 2015-10-11 14:56 - 00000000 ____D C:\Users\Fabien\AppData\Local\AMD 2016-06-07 20:53 - 2014-12-14 15:18 - 00000000 ____D C:\Users\Fabien\AppData\Roaming\Raptr 2016-06-07 20:52 - 2016-04-05 19:25 - 00000000 ____D C:\Program Files (x86)\VulkanRT 2016-06-07 20:52 - 2015-12-19 19:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings 2016-06-07 20:48 - 2013-12-25 20:15 - 00000000 ____D C:\AMD 2016-06-07 20:35 - 2016-05-05 21:43 - 00000000 ____D C:\Program Files\AMD 2016-06-04 22:46 - 2013-11-09 17:18 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2016-06-04 15:55 - 2013-12-01 18:51 - 00000000 ____D C:\Users\Fabien\AppData\Local\ElevatedDiagnostics 2016-06-02 23:14 - 2016-04-29 21:49 - 00122704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll 2016-06-02 23:14 - 2016-04-01 00:46 - 00166488 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll 2016-06-02 23:14 - 2016-04-01 00:45 - 01512192 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll 2016-06-02 23:13 - 2016-04-01 00:45 - 10700864 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll 2016-06-02 23:13 - 2016-03-31 23:29 - 09798560 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll 2016-06-02 23:08 - 2016-04-01 00:35 - 26990080 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys 2016-06-02 23:01 - 2016-04-29 21:31 - 38098432 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll 2016-06-02 22:58 - 2016-04-29 21:28 - 21600768 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl12cl.dll 2016-06-02 22:45 - 2016-03-01 13:37 - 00101376 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\AtihdWT6.sys 2016-06-02 22:26 - 2016-04-29 20:49 - 00973824 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll 2016-06-02 22:26 - 2016-04-29 20:49 - 00159232 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll 2016-06-02 22:26 - 2016-04-01 00:34 - 01304576 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll 2016-06-02 22:25 - 2016-04-01 00:35 - 00497664 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys ==================== Fichiers à la racine de certains dossiers ======= 2015-01-05 11:22 - 2015-01-05 11:22 - 0000108 _____ () C:\Users\Fabien\AppData\Roaming\52615220.dat 2015-01-26 22:44 - 2015-01-26 22:45 - 0000038 _____ () C:\Users\Fabien\AppData\Roaming\altisrpfr.txt 2015-12-21 21:40 - 2015-12-21 21:40 - 0000001 _____ () C:\Users\Fabien\AppData\Roaming\altisrpfrJSRS.txt 2015-01-26 22:46 - 2015-01-26 22:46 - 0000049 _____ () C:\Users\Fabien\AppData\Roaming\altisrpfrts.txt 2015-09-09 18:42 - 2015-09-09 18:43 - 0000115 _____ () C:\Users\Fabien\AppData\Roaming\LogFile.txt 2014-02-02 02:04 - 2014-02-03 13:43 - 0000589 _____ () C:\Users\Fabien\AppData\Roaming\PC.MTBF.txt 2014-04-25 14:20 - 2014-04-25 15:37 - 0000132 _____ () C:\Users\Fabien\AppData\Roaming\Préfs Format BMP Adobe CS6 2014-05-01 19:12 - 2014-05-02 15:21 - 0000132 _____ () C:\Users\Fabien\AppData\Roaming\Préférences Adobe BMP Format CC 2014-12-23 23:39 - 2016-06-30 16:51 - 0000132 _____ () C:\Users\Fabien\AppData\Roaming\Préférences Adobe PNG Format CC 2015-12-14 17:15 - 2015-12-14 17:15 - 0000005 _____ () C:\Users\Fabien\AppData\Roaming\version.ini 2014-02-02 02:05 - 2014-02-03 18:18 - 0000356 _____ () C:\Users\Fabien\AppData\Roaming\__AvidCloudManager.log 2014-02-02 02:05 - 2014-02-03 00:39 - 0000356 _____ () C:\Users\Fabien\AppData\Roaming\__AvidCloudManagerPrevious.log 2013-11-11 22:56 - 2016-02-01 20:55 - 0008192 _____ () C:\Users\Fabien\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2016-02-03 18:19 - 2016-02-03 18:19 - 1065984 _____ () C:\Users\Fabien\AppData\Local\file__0.localstorage 2014-10-24 18:53 - 2014-10-24 18:53 - 0000000 ___SH () C:\Users\Fabien\AppData\Local\LumaEmu 2014-02-25 23:18 - 2014-02-25 23:18 - 0005395 _____ () C:\Users\Fabien\AppData\Local\recently-used.xbel 2013-11-20 21:34 - 2016-04-12 21:28 - 0007649 _____ () C:\Users\Fabien\AppData\Local\Resmon.ResmonCfg 2016-05-05 21:43 - 2016-05-05 21:43 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Fichiers à déplacer ou supprimer: ==================== C:\Users\Fabien\ZHPCleaner.exe C:\Users\Fabien\ZHPDiag3.exe Certains fichiers dans TEMP: ==================== C:\Users\Fabien\AppData\Local\Temp\HitmanPro.exe Certains de taille zéro octet fichiers/dossiers: ========================== C:\Windows\System32\ScriptHookV.dll C:\Windows\System32\ScriptHookVDotNet.dll ==================== Bamital & volsnap ================= (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2016-06-28 16:05 ==================== Fin de FRST.txt ============================