Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x86) Version: 03-10-2016 Exécuté par thierry (administrateur) sur THIERRY (04-10-2016 16:24:34) Exécuté depuis C:\Users\thierry\Downloads Profils chargés: thierry (Profils disponibles: thierry) Platform: Microsoft Windows 10 Professionnel Version 1511 (X86) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Edge) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (AMD) C:\Windows\System32\atieclxx.exe (SurfRight B.V.) C:\Program Files\HitmanPro\hmpsched.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Antivirus\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Antivirus\avguard.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe () C:\Windows\System32\NMSAccessU.exe (Malwarebytes) C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe (Malwarebytes) C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe (Steganos Software GmbH) C:\Program Files\Steganos Online Shield\OnlineShieldService.exe (TomTom) C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe (TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe (Google Inc.) C:\Program Files\Google\Update\1.3.31.5\GoogleCrashHandler.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Antivirus\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Antivirus\avgnt.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe (Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x86__8wekyb3d8bbwe\Microsoft.Photos.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.23941.0_x86__8wekyb3d8bbwe\Video.UI.exe () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1608.2213.0_x86__8wekyb3d8bbwe\Calculator.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Farbar) C:\Users\thierry\Downloads\FRST(1).exe ==================== Registre (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe [7545088 2015-06-24] (Realtek Semiconductor) HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.) HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [2311112 2015-07-23] (Logitech, Inc.) HKLM\...\Run: [avgnt] => C:\Program Files\Avira\Antivirus\avgnt.exe [830064 2016-09-15] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [SSBkgdUpdate] => C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [210472 2006-10-25] (Nuance Communications, Inc.) HKLM\...\Run: [PaperPort PTD] => C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe [30248 2007-05-08] (Nuance Communications, Inc.) HKLM\...\Run: [IndexSearch] => C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe [46632 2007-05-08] (Nuance Communications, Inc.) HKLM\...\Run: [PPort11reminder] => "C:\Program Files\ScanSoft\PaperPort\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\Ereg.ini HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\x86\CLIStart.exe [748744 2015-11-04] (Advanced Micro Devices, Inc.) HKLM\...\Run: [Avira SystrayStartTrigger] => C:\Program Files\Avira\Launcher\Avira.SystrayStartTrigger.exe [60136 2016-08-19] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [164152 2016-09-09] (Apple Inc.) HKLM\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2015-07-02] (Logitech, Inc.) HKU\S-1-5-21-2807656418-178127624-1379146843-1001\...\Run: [TomTomHOME.exe] => C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe [248176 2015-07-13] (TomTom) HKU\S-1-5-21-2807656418-178127624-1379146843-1001\...\Run: [CCleaner Monitoring] => D:\Program Files\CCleaner\CCleaner.exe [6453528 2015-07-17] (Piriform Ltd) HKU\S-1-5-21-2807656418-178127624-1379146843-1001\...\Run: [iCloudServices] => C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2016-07-08] (Apple Inc.) HKU\S-1-5-21-2807656418-178127624-1379146843-1001\...\Run: [ApplePhotoStreams] => C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [67896 2016-07-08] (Apple Inc.) HKU\S-1-5-21-2807656418-178127624-1379146843-1001\...\Run: [iCloudDrive] => C:\Program Files\Common Files\Apple\Internet Services\iCloudDrive.exe [110392 2016-07-08] (Apple Inc.) HKU\S-1-5-21-2807656418-178127624-1379146843-1001\...\Run: [LinkMagic for magicolor 2590MF] => [X] HKU\S-1-5-21-2807656418-178127624-1379146843-1001\...\Run: [ISUSPM] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [213936 2006-03-20] (Macrovision Corporation) HKU\S-1-5-21-2807656418-178127624-1379146843-1001\...\Run: [ApowersoftScreenRecorder] => C:\Program Files\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe [3330712 2016-03-18] (Apowersoft) HKU\S-1-5-21-2807656418-178127624-1379146843-1001\...\Run: [nppApplication] => "C:\Users\thierry\AppData\Roaming\NotepadPlusPlusApp\nppApplication.exe" HKU\S-1-5-21-2807656418-178127624-1379146843-1001\...\Run: [001d4454] => C:\Users\thierry\AppData\Local\Temp\world-super-ext.exe <===== ATTENTION Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\STK02N 2.3 PNP Monitor.lnk [2016-05-23] ShortcutTarget: STK02N 2.3 PNP Monitor.lnk -> C:\Windows\STK02N\STK02NM.exe (Syntek Ltd.) GroupPolicy: Restriction - Chrome <======= ATTENTION ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{0c10d952-1efd-4693-bf7e-a70ba60883d6}: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{a948deeb-72e2-4be2-ae5a-d991f4844ac6}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKU\S-1-5-21-2807656418-178127624-1379146843-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.fr/ SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2016-05-17] (Google Inc.) BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2015-07-23] (Logitech, Inc.) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2016-05-17] (Google Inc.) Toolbar: HKU\S-1-5-21-2807656418-178127624-1379146843-1001 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2016-05-17] (Google Inc.) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-02] (Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-02] (Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-02] (Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-02] (Microsoft Corporation) FireFox: ======== FF DefaultProfile: es9re0ow.default FF ProfilePath: C:\Users\thierry\AppData\Roaming\TomTom\HOME\Profiles\i521fe5v.default [2016-05-27] FF Extension: (Map status indicator) - C:\Program Files\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com [2015-09-18] [non signé] FF ProfilePath: C:\Users\thierry\AppData\Roaming\Mozilla\Firefox\Profiles\es9re0ow.default [2016-10-04] FF Homepage: Mozilla\Firefox\Profiles\es9re0ow.default -> hxxps://news.sfr.fr/actualites/ FF Extension: (Avira Browser Safety) - C:\Users\thierry\AppData\Roaming\Mozilla\Firefox\Profiles\es9re0ow.default\Extensions\abs@avira.com [2016-10-03] FF Extension: (Browser Exels) - C:\Users\thierry\AppData\Roaming\Mozilla\Firefox\Profiles\es9re0ow.default\Extensions\browsermodulecorp@browcorporation.org.xpi [2016-10-04] FF Extension: (Google Translator for Firefox) - C:\Users\thierry\AppData\Roaming\Mozilla\Firefox\Profiles\es9re0ow.default\Extensions\translator@zoli.bod.xpi [2016-04-27] FF HKLM\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2015-08-11] [non signé] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_23_0_0_162.dll [2016-09-15] () FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google) FF Plugin: @google.com/zxwebplugin -> C:\Windows\system32\nptvswebplugin.dll [2014-10-29] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50709.0\npctrl.dll [2016-07-11] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> D:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-10-02] (Microsoft Corporation) FF Plugin: @tenvis.com/vlc,version=2.1.5 -> C:\Program Files\TENVIS EasySetup\plug-in\LT\LT_Trd_Lib\npvlc.dll [2014-07-23] (VideoLAN) FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-07] (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-07] (Google Inc.) FF Plugin: @videolan.org/vlc,version=2.2.1 -> d:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-06-30] (Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default [2016-10-04] CHR Extension: (Google Docs) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-08-07] CHR Extension: (Google Drive) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-02] CHR Extension: (YouTube) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-03] CHR Extension: (Recherche Google) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-02] CHR Extension: (Google Sheets) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-08-07] CHR Extension: (Bureau à distance Google Chrome) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2016-07-05] CHR Extension: (Google Docs hors connexion) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-04-11] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-11] CHR Extension: (Fast search) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbdpajcdgknpendpmecafmopknefafha [2016-10-04] CHR Extension: (Gmail) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-08-07] CHR Extension: (Chrome Media Router) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-08-04] ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [284872 2015-11-04] (Advanced Micro Devices, Inc.) S2 AntiVirMailService; C:\Program Files\Avira\Antivirus\avmailc7.exe [989696 2016-09-15] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files\Avira\Antivirus\sched.exe [470600 2016-09-15] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files\Avira\Antivirus\avguard.exe [470600 2016-09-15] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files\Avira\Antivirus\avwebg7.exe [1454720 2016-09-15] (Avira Operations GmbH & Co. KG) R2 Avira.ServiceHost; C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe [324304 2016-08-19] (Avira Operations GmbH & Co. KG) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2129088 2016-09-25] (Microsoft Corporation) R2 HitmanProScheduler; C:\Program Files\HitmanPro\hmpsched.exe [113632 2016-10-04] (SurfRight B.V.) R2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes) R2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes) R2 NMSAccess; C:\WINDOWS\system32\NMSAccessU.exe [71096 2009-01-12] () R2 Online Shield Starter Service; C:\Program Files\Steganos Online Shield\OnlineShieldService.exe [345136 2015-07-09] (Steganos Software GmbH) R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [7032080 2016-05-12] (TeamViewer GmbH) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [280376 2015-10-30] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23264 2016-09-07] (Microsoft Corporation) ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\i386\AODDriver2.sys [50400 2014-02-11] (Advanced Micro Devices) R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [120968 2016-07-28] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [149760 2016-07-28] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [44208 2015-12-15] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\WINDOWS\system32\DRIVERS\avnetflt.sys [66872 2016-06-08] (Avira Operations GmbH & Co. KG) S3 EsgScanner; C:\WINDOWS\System32\DRIVERS\EsgScanner.sys [19984 2016-10-04] () R3 LEqdUsb; C:\WINDOWS\System32\Drivers\LEqdUsb.Sys [52368 2015-06-18] (Logitech, Inc.) R3 LHidEqd; C:\WINDOWS\System32\Drivers\LHidEqd.Sys [20240 2015-06-18] (Logitech, Inc.) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [24448 2016-03-10] (Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [170200 2016-10-04] (Malwarebytes) R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [53120 2016-03-10] (Malwarebytes Corporation) R3 MTsensor; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [5810 2004-08-13] () R3 rt640x86; C:\WINDOWS\System32\drivers\rt640x86.sys [494080 2015-10-30] (Realtek ) S3 tap0901; C:\WINDOWS\system32\DRIVERS\tap0901.sys [35288 2013-11-22] (The OpenVPN Project) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [37400 2015-10-30] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [246104 2015-10-30] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [98648 2015-10-30] (Microsoft Corporation) S3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [163328 2015-10-30] (Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2016-10-04 16:24 - 2016-10-04 16:24 - 00018077 _____ C:\Users\thierry\Downloads\FRST.txt 2016-10-04 16:24 - 2016-10-04 16:24 - 00000000 ____D C:\FRST 2016-10-04 16:23 - 2016-10-04 16:24 - 01754624 _____ (Farbar) C:\Users\thierry\Downloads\FRST(1).exe 2016-10-04 16:23 - 2016-10-04 16:23 - 01754624 _____ (Farbar) C:\Users\thierry\Downloads\FRST.exe 2016-10-04 15:56 - 2016-10-04 15:56 - 00448512 _____ (OldTimer Tools) C:\Users\thierry\Downloads\TFC.exe 2016-10-04 15:37 - 2016-10-04 15:38 - 00388608 _____ (Trend Micro Inc.) C:\Users\thierry\Downloads\HijackThis.exe 2016-10-04 15:33 - 2016-10-04 15:35 - 00000000 ____D C:\AdwCleaner 2016-10-04 15:32 - 2016-10-04 15:33 - 03861056 _____ C:\Users\thierry\Downloads\adwcleaner_6.020.exe 2016-10-04 15:32 - 2016-10-04 15:32 - 00000148 _____ C:\Users\thierry\Desktop\Nouveau document texte (2).txt 2016-10-04 15:27 - 2016-10-04 15:27 - 00000405 _____ C:\DelFix.txt 2016-10-04 15:14 - 2016-10-04 15:14 - 00509384 _____ (Mozilla Corporation) C:\Users\thierry\Downloads\firefox.exe 2016-10-04 15:14 - 2016-10-04 15:14 - 00001186 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2016-10-04 15:14 - 2016-10-04 15:14 - 00001174 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2016-10-04 15:14 - 2016-10-04 15:14 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service 2016-10-04 15:14 - 2016-10-04 15:14 - 00000000 ____D C:\Program Files\Mozilla Firefox 2016-10-04 15:13 - 2016-10-04 15:14 - 43721008 _____ C:\Users\thierry\Downloads\Firefox-Setup-49-0-1-FR.exe 2016-10-04 15:01 - 2016-10-04 15:01 - 00000290 __RSH C:\Users\thierry\ntuser.pol 2016-10-04 14:54 - 2016-10-04 14:54 - 00001572 __RSH C:\ProgramData\ntuser.pol 2016-10-04 14:53 - 2016-10-04 14:53 - 00001046 _____ C:\Users\thierry\Desktop\Play Travian.lnk 2016-10-04 14:53 - 2016-10-04 14:53 - 00001044 _____ C:\Users\thierry\Desktop\Play WarThunder.lnk 2016-10-04 14:53 - 2016-10-04 14:53 - 00000000 ____D C:\Users\thierry\ReportSender 2016-10-04 14:53 - 2016-10-04 14:53 - 00000000 ____D C:\Users\thierry\AppData\Local\YTBMusicBox 2016-10-04 14:53 - 2016-10-04 14:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YTB Music Box 2016-10-04 14:53 - 2016-10-04 14:53 - 00000000 ____D C:\Program Files\YTBMusicBox 2016-10-04 14:52 - 2016-10-04 14:52 - 00000000 ____D C:\Users\thierry\Downloads\Reimage_Pc_Repair_2016_Crack_License_Key_Full_Do 2016-10-04 14:51 - 2016-10-04 14:51 - 03000244 _____ C:\Users\thierry\Downloads\Reimage_Pc_Repair_2016_Crack_License_Key_Full_Do.zip 2016-10-04 14:44 - 2016-10-04 14:45 - 00604928 _____ (Reimage) C:\Users\thierry\Downloads\ReimageRepair.exe 2016-10-04 14:35 - 2016-10-04 14:35 - 410711850 _____ C:\WINDOWS\MEMORY.DMP 2016-10-04 14:35 - 2016-10-04 14:35 - 00148676 _____ C:\WINDOWS\Minidump\100416-10640-01.dmp 2016-10-04 14:35 - 2016-10-04 14:35 - 00000000 ____D C:\WINDOWS\Minidump 2016-10-04 14:34 - 2016-10-04 15:04 - 00012872 _____ (SurfRight B.V.) C:\WINDOWS\system32\bootdelete.exe 2016-10-04 14:14 - 2016-10-04 14:34 - 00001308 _____ C:\WINDOWS\system32\.crusader 2016-10-04 14:04 - 2016-10-04 14:31 - 00000000 ____D C:\Program Files\HitmanPro 2016-10-04 14:04 - 2016-10-04 14:04 - 00002010 _____ C:\Users\Public\Desktop\HitmanPro.lnk 2016-10-04 14:04 - 2016-10-04 14:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro 2016-10-04 14:03 - 2016-10-04 15:07 - 00000000 ____D C:\ProgramData\HitmanPro 2016-10-04 11:26 - 2016-10-04 11:26 - 00019984 _____ C:\WINDOWS\system32\Drivers\EsgScanner.sys 2016-10-04 11:04 - 2016-10-04 11:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 2016-10-04 10:59 - 2016-10-04 10:59 - 00000000 ____D C:\Users\thierry\AppData\Roaming\BrowserModule 2016-10-04 10:58 - 2016-10-04 11:09 - 00000000 ____D C:\Users\thierry\AppData\Roaming\NotepadPlusPlusApp 2016-10-02 22:37 - 2016-10-02 22:39 - 00000000 ____D C:\Users\thierry\Desktop\Nouveau dossier 2016-10-01 20:36 - 2016-10-01 20:36 - 00000353 _____ C:\Users\thierry\Desktop\recu_paiement_1475344367.txt 2016-09-27 20:10 - 2016-10-04 10:35 - 00001763 _____ C:\Users\thierry\Documents\starburn.txt 2016-09-27 20:10 - 2016-09-27 20:10 - 00000000 ____D C:\ProgramData\Wondershare 2016-09-27 20:06 - 2016-10-04 10:36 - 00000000 ____D C:\Users\thierry\Documents\Wondershare Filmora 2016-09-27 20:06 - 2016-09-27 20:06 - 00000000 ____D C:\Users\thierry\AppData\Local\Wondershare 2016-09-27 20:03 - 2016-09-27 20:06 - 00000000 ____D C:\Users\Public\Documents\Wondershare 2016-09-26 10:12 - 2016-09-26 10:17 - 00000000 ____D C:\Users\thierry\Desktop\xs 2016-09-25 09:49 - 2016-09-25 09:49 - 00085744 _____ (Microsoft Corporation) C:\WINDOWS\system32\vcruntime140.dll 2016-09-25 09:46 - 2016-09-25 09:46 - 00244504 _____ (Microsoft Corporation) C:\WINDOWS\system32\concrt140.dll 2016-09-25 09:45 - 2016-09-25 09:45 - 00443632 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp140.dll 2016-09-25 09:45 - 2016-09-25 09:45 - 00271104 _____ (Microsoft Corporation) C:\WINDOWS\system32\vccorlib140.dll 2016-09-23 11:32 - 2016-09-23 11:32 - 00000000 ____D C:\Users\thierry\Desktop\site 2016-09-23 11:08 - 2016-09-23 11:08 - 00003817 _____ C:\Users\thierry\Desktop\index10.php 2016-09-19 17:11 - 2016-10-02 20:06 - 00001822 _____ C:\Users\Public\Desktop\iTunes.lnk 2016-09-19 17:11 - 2016-10-02 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2016-09-19 17:11 - 2016-09-19 17:11 - 00000000 ____D C:\Program Files\iTunes 2016-09-19 17:11 - 2016-09-19 17:11 - 00000000 ____D C:\Program Files\iPod 2016-09-19 17:08 - 2016-09-19 17:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud 2016-09-19 08:43 - 2016-09-19 08:43 - 00000000 ____D C:\Users\thierry\AppData\Local\TempOfficeC2RC789DA25-3619-48A0-8B5D-E483AED08547 2016-09-16 03:26 - 2016-09-07 07:39 - 01862000 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2016-09-16 03:26 - 2016-09-07 07:39 - 01051584 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2016-09-16 03:26 - 2016-09-07 07:39 - 00601744 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2016-09-16 03:26 - 2016-09-07 07:39 - 00138960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll 2016-09-16 03:26 - 2016-09-07 07:37 - 00100704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys 2016-09-16 03:26 - 2016-09-07 07:24 - 00355672 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2016-09-16 03:26 - 2016-09-07 07:22 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2016-09-16 03:26 - 2016-09-07 07:12 - 00727752 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2016-09-16 03:26 - 2016-09-07 07:08 - 00042920 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe 2016-09-16 03:26 - 2016-09-07 07:07 - 01951848 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll 2016-09-16 03:26 - 2016-09-07 06:31 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll 2016-09-16 03:26 - 2016-09-07 06:30 - 18676224 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-09-16 03:26 - 2016-09-07 06:29 - 19350016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-09-16 03:26 - 2016-09-07 06:29 - 00439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll 2016-09-16 03:26 - 2016-09-07 06:28 - 01762816 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll 2016-09-16 03:26 - 2016-09-07 06:28 - 00385536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll 2016-09-16 03:26 - 2016-09-07 06:27 - 00957440 _____ (Microsoft Corporation) C:\WINDOWS\system32\srmclient.dll 2016-09-16 03:26 - 2016-09-07 06:27 - 00481792 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx.dll 2016-09-16 03:26 - 2016-09-07 06:26 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2016-09-16 03:26 - 2016-09-07 06:26 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe 2016-09-16 03:26 - 2016-09-07 06:26 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2016-09-16 03:26 - 2016-09-07 06:26 - 00501760 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2016-09-16 03:26 - 2016-09-07 06:25 - 01526272 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2016-09-16 03:26 - 2016-09-07 06:25 - 00952320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2016-09-16 03:26 - 2016-09-07 06:24 - 01028608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2016-09-16 03:26 - 2016-09-07 06:24 - 00785920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll 2016-09-16 03:26 - 2016-09-07 06:22 - 12134400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-09-16 03:26 - 2016-09-07 06:21 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsFilt.dll 2016-09-16 03:26 - 2016-09-07 06:19 - 03663360 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-09-16 03:26 - 2016-09-07 06:19 - 03555840 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe 2016-09-16 03:26 - 2016-09-07 06:18 - 01735680 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2016-09-16 03:26 - 2016-09-07 06:17 - 01902592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2016-09-16 03:26 - 2016-09-07 06:17 - 00854016 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll 2016-09-16 03:26 - 2016-09-07 06:15 - 05659136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-09-16 03:26 - 2016-09-07 06:15 - 01900544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2016-09-16 03:26 - 2016-09-07 06:15 - 01626112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2016-09-16 03:26 - 2016-09-07 06:15 - 01249280 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll 2016-09-16 03:26 - 2016-09-07 06:14 - 06743040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2016-09-16 03:26 - 2016-09-07 06:11 - 03065344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe 2016-09-16 03:26 - 2016-09-07 06:09 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll 2016-09-16 03:26 - 2016-09-07 03:15 - 00445765 _____ C:\WINDOWS\system32\ApnDatabase.xml 2016-09-16 03:25 - 2016-09-07 07:41 - 00229216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2016-09-16 03:25 - 2016-09-07 07:40 - 01561392 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2016-09-16 03:25 - 2016-09-07 07:40 - 00876504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2016-09-16 03:25 - 2016-09-07 07:40 - 00771120 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2016-09-16 03:25 - 2016-09-07 07:39 - 05794144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-09-16 03:25 - 2016-09-07 07:39 - 00927080 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2016-09-16 03:25 - 2016-09-07 07:39 - 00845568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2016-09-16 03:25 - 2016-09-07 07:39 - 00628440 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2016-09-16 03:25 - 2016-09-07 07:39 - 00545432 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2016-09-16 03:25 - 2016-09-07 07:39 - 00354144 _____ (Microsoft Corporation) C:\WINDOWS\system32\halmacpi.dll 2016-09-16 03:25 - 2016-09-07 07:39 - 00354144 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2016-09-16 03:25 - 2016-09-07 07:37 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll 2016-09-16 03:25 - 2016-09-07 07:35 - 01174368 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2016-09-16 03:25 - 2016-09-07 07:35 - 00433504 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll 2016-09-16 03:25 - 2016-09-07 07:33 - 02885680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll 2016-09-16 03:25 - 2016-09-07 07:33 - 02026736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2016-09-16 03:25 - 2016-09-07 07:33 - 00986976 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2016-09-16 03:25 - 2016-09-07 07:33 - 00023776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2016-09-16 03:25 - 2016-09-07 07:25 - 00310112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe 2016-09-16 03:25 - 2016-09-07 07:24 - 02180128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2016-09-16 03:25 - 2016-09-07 07:24 - 01349632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2016-09-16 03:25 - 2016-09-07 07:24 - 01334680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2016-09-16 03:25 - 2016-09-07 07:24 - 01118200 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll 2016-09-16 03:25 - 2016-09-07 07:24 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll 2016-09-16 03:25 - 2016-09-07 07:24 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2016-09-16 03:25 - 2016-09-07 07:24 - 00709176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2016-09-16 03:25 - 2016-09-07 07:24 - 00511312 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2016-09-16 03:25 - 2016-09-07 07:24 - 00501600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll 2016-09-16 03:25 - 2016-09-07 07:24 - 00496360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmdev.dll 2016-09-16 03:25 - 2016-09-07 07:24 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2016-09-16 03:25 - 2016-09-07 07:23 - 00104800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys 2016-09-16 03:25 - 2016-09-07 07:22 - 02937384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-09-16 03:25 - 2016-09-07 07:22 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2016-09-16 03:25 - 2016-09-07 07:22 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2016-09-16 03:25 - 2016-09-07 07:21 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-09-16 03:25 - 2016-09-07 07:21 - 05240952 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2016-09-16 03:25 - 2016-09-07 07:21 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-09-16 03:25 - 2016-09-07 07:21 - 01300016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe 2016-09-16 03:25 - 2016-09-07 07:21 - 00613112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll 2016-09-16 03:25 - 2016-09-07 07:21 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2016-09-16 03:25 - 2016-09-07 07:20 - 05598832 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2016-09-16 03:25 - 2016-09-07 07:20 - 01355336 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2016-09-16 03:25 - 2016-09-07 07:20 - 01337680 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2016-09-16 03:25 - 2016-09-07 07:20 - 00836752 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2016-09-16 03:25 - 2016-09-07 07:20 - 00633192 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll 2016-09-16 03:25 - 2016-09-07 07:20 - 00569744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll 2016-09-16 03:25 - 2016-09-07 07:20 - 00036136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrameHost.exe 2016-09-16 03:25 - 2016-09-07 07:19 - 00995296 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe 2016-09-16 03:25 - 2016-09-07 07:19 - 00549728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys 2016-09-16 03:25 - 2016-09-07 07:19 - 00510872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2016-09-16 03:25 - 2016-09-07 07:19 - 00505136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2016-09-16 03:25 - 2016-09-07 07:19 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll 2016-09-16 03:25 - 2016-09-07 07:19 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2016-09-16 03:25 - 2016-09-07 07:13 - 02186856 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2016-09-16 03:25 - 2016-09-07 07:13 - 01865584 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2016-09-16 03:25 - 2016-09-07 07:12 - 02195632 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll 2016-09-16 03:25 - 2016-09-07 07:12 - 01712992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-09-16 03:25 - 2016-09-07 07:12 - 01522152 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2016-09-16 03:25 - 2016-09-07 07:12 - 01174008 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2016-09-16 03:25 - 2016-09-07 07:11 - 00381784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2016-09-16 03:25 - 2016-09-07 07:11 - 00180064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2016-09-16 03:25 - 2016-09-07 07:10 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\FileHistory.exe 2016-09-16 03:25 - 2016-09-07 07:08 - 28083144 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsRaw.dll 2016-09-16 03:25 - 2016-09-07 07:08 - 01861984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2016-09-16 03:25 - 2016-09-07 07:07 - 00403920 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.dll 2016-09-16 03:25 - 2016-09-07 07:07 - 00253080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll 2016-09-16 03:25 - 2016-09-07 06:47 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll 2016-09-16 03:25 - 2016-09-07 06:47 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2016-09-16 03:25 - 2016-09-07 06:46 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\olepro32.dll 2016-09-16 03:25 - 2016-09-07 06:43 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcl.dll 2016-09-16 03:25 - 2016-09-07 06:42 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll 2016-09-16 03:25 - 2016-09-07 06:42 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll 2016-09-16 03:25 - 2016-09-07 06:41 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll 2016-09-16 03:25 - 2016-09-07 06:41 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll 2016-09-16 03:25 - 2016-09-07 06:40 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2016-09-16 03:25 - 2016-09-07 06:40 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll 2016-09-16 03:25 - 2016-09-07 06:39 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll 2016-09-16 03:25 - 2016-09-07 06:39 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecureTimeAggregator.dll 2016-09-16 03:25 - 2016-09-07 06:39 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll 2016-09-16 03:25 - 2016-09-07 06:39 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll 2016-09-16 03:25 - 2016-09-07 06:38 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll 2016-09-16 03:25 - 2016-09-07 06:38 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll 2016-09-16 03:25 - 2016-09-07 06:38 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmprovhost.exe 2016-09-16 03:25 - 2016-09-07 06:38 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MTConfig.sys 2016-09-16 03:25 - 2016-09-07 06:37 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAuto.dll 2016-09-16 03:25 - 2016-09-07 06:37 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll 2016-09-16 03:25 - 2016-09-07 06:37 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\fodhelper.exe 2016-09-16 03:25 - 2016-09-07 06:37 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceassociation.dll 2016-09-16 03:25 - 2016-09-07 06:37 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAgent.dll 2016-09-16 03:25 - 2016-09-07 06:36 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll 2016-09-16 03:25 - 2016-09-07 06:36 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsetup.dll 2016-09-16 03:25 - 2016-09-07 06:36 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll 2016-09-16 03:25 - 2016-09-07 06:36 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2016-09-16 03:25 - 2016-09-07 06:36 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll 2016-09-16 03:25 - 2016-09-07 06:36 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwcfg.dll 2016-09-16 03:25 - 2016-09-07 06:36 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll 2016-09-16 03:25 - 2016-09-07 06:35 - 09324032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmploc.DLL 2016-09-16 03:25 - 2016-09-07 06:35 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbemcomn.dll 2016-09-16 03:25 - 2016-09-07 06:35 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp 2016-09-16 03:25 - 2016-09-07 06:35 - 00205312 _____ (Microsoft Corporation) C:\WINDOWS\system32\oemlicense.dll 2016-09-16 03:25 - 2016-09-07 06:35 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbceip.dll 2016-09-16 03:25 - 2016-09-07 06:35 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcshext.dll 2016-09-16 03:25 - 2016-09-07 06:35 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\vsstrace.dll 2016-09-16 03:25 - 2016-09-07 06:35 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CheckNetIsolation.exe 2016-09-16 03:25 - 2016-09-07 06:34 - 00300032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcbase.dll 2016-09-16 03:25 - 2016-09-07 06:34 - 00267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2016-09-16 03:25 - 2016-09-07 06:34 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll 2016-09-16 03:25 - 2016-09-07 06:34 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDist.dll 2016-09-16 03:25 - 2016-09-07 06:34 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\cic.dll 2016-09-16 03:25 - 2016-09-07 06:34 - 00125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdrsvc.dll 2016-09-16 03:25 - 2016-09-07 06:34 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdshext.dll 2016-09-16 03:25 - 2016-09-07 06:34 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll 2016-09-16 03:25 - 2016-09-07 06:33 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll 2016-09-16 03:25 - 2016-09-07 06:33 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2016-09-16 03:25 - 2016-09-07 06:33 - 00290304 _____ (Microsoft Corporation) C:\WINDOWS\system32\WmpDui.dll 2016-09-16 03:25 - 2016-09-07 06:33 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll 2016-09-16 03:25 - 2016-09-07 06:33 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\prnntfy.dll 2016-09-16 03:25 - 2016-09-07 06:33 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll 2016-09-16 03:25 - 2016-09-07 06:33 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountCloudAP.dll 2016-09-16 03:25 - 2016-09-07 06:33 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll 2016-09-16 03:25 - 2016-09-07 06:33 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Geolocation.dll 2016-09-16 03:25 - 2016-09-07 06:33 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll 2016-09-16 03:25 - 2016-09-07 06:32 - 06529024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll 2016-09-16 03:25 - 2016-09-07 06:32 - 00581632 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll 2016-09-16 03:25 - 2016-09-07 06:32 - 00465408 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2016-09-16 03:25 - 2016-09-07 06:32 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2016-09-16 03:25 - 2016-09-07 06:32 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll 2016-09-16 03:25 - 2016-09-07 06:32 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\azroleui.dll 2016-09-16 03:25 - 2016-09-07 06:32 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3ui.dll 2016-09-16 03:25 - 2016-09-07 06:32 - 00260096 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll 2016-09-16 03:25 - 2016-09-07 06:32 - 00213504 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll 2016-09-16 03:25 - 2016-09-07 06:32 - 00173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll 2016-09-16 03:25 - 2016-09-07 06:31 - 09920512 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-09-16 03:25 - 2016-09-07 06:31 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\system32\certmgr.dll 2016-09-16 03:25 - 2016-09-07 06:31 - 01496064 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe 2016-09-16 03:25 - 2016-09-07 06:31 - 00753664 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll 2016-09-16 03:25 - 2016-09-07 06:31 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll 2016-09-16 03:25 - 2016-09-07 06:31 - 00541184 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe 2016-09-16 03:25 - 2016-09-07 06:31 - 00453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdmTmpl.dll 2016-09-16 03:25 - 2016-09-07 06:31 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\authfwcfg.dll 2016-09-16 03:25 - 2016-09-07 06:31 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2016-09-16 03:25 - 2016-09-07 06:31 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll 2016-09-16 03:25 - 2016-09-07 06:31 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack_win.dll 2016-09-16 03:25 - 2016-09-07 06:31 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll 2016-09-16 03:25 - 2016-09-07 06:31 - 00246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll 2016-09-16 03:25 - 2016-09-07 06:31 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll 2016-09-16 03:25 - 2016-09-07 06:31 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll 2016-09-16 03:25 - 2016-09-07 06:30 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2016-09-16 03:25 - 2016-09-07 06:30 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll 2016-09-16 03:25 - 2016-09-07 06:30 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\filemgmt.dll 2016-09-16 03:25 - 2016-09-07 06:30 - 00425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WalletService.dll 2016-09-16 03:25 - 2016-09-07 06:30 - 00395776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll 2016-09-16 03:25 - 2016-09-07 06:30 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2016-09-16 03:25 - 2016-09-07 06:30 - 00309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPSECSVC.DLL 2016-09-16 03:25 - 2016-09-07 06:30 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll 2016-09-16 03:25 - 2016-09-07 06:30 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe 2016-09-16 03:25 - 2016-09-07 06:29 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll 2016-09-16 03:25 - 2016-09-07 06:29 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll 2016-09-16 03:25 - 2016-09-07 06:29 - 00283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll 2016-09-16 03:25 - 2016-09-07 06:29 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2016-09-16 03:25 - 2016-09-07 06:29 - 00242688 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll 2016-09-16 03:25 - 2016-09-07 06:29 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsExt.dll 2016-09-16 03:25 - 2016-09-07 06:29 - 00230912 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2016-09-16 03:25 - 2016-09-07 06:28 - 04143104 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMM.dll 2016-09-16 03:25 - 2016-09-07 06:28 - 01226752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll 2016-09-16 03:25 - 2016-09-07 06:28 - 00879616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll 2016-09-16 03:25 - 2016-09-07 06:28 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll 2016-09-16 03:25 - 2016-09-07 06:28 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2016-09-16 03:25 - 2016-09-07 06:28 - 00674816 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll 2016-09-16 03:25 - 2016-09-07 06:28 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcsecproc_ssp.dll 2016-09-16 03:25 - 2016-09-07 06:28 - 00638976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmIndexer.dll 2016-09-16 03:25 - 2016-09-07 06:28 - 00611840 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2016-09-16 03:25 - 2016-09-07 06:28 - 00604160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2016-09-16 03:25 - 2016-09-07 06:28 - 00525312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll 2016-09-16 03:25 - 2016-09-07 06:28 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll 2016-09-16 03:25 - 2016-09-07 06:28 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2016-09-16 03:25 - 2016-09-07 06:28 - 00413696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WLanConn.dll 2016-09-16 03:25 - 2016-09-07 06:28 - 00413184 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll 2016-09-16 03:25 - 2016-09-07 06:28 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2016-09-16 03:25 - 2016-09-07 06:28 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll 2016-09-16 03:25 - 2016-09-07 06:28 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\das.dll 2016-09-16 03:25 - 2016-09-07 06:28 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys 2016-09-16 03:25 - 2016-09-07 06:28 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll 2016-09-16 03:25 - 2016-09-07 06:28 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2016-09-16 03:25 - 2016-09-07 06:28 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysdm.cpl 2016-09-16 03:25 - 2016-09-07 06:28 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll 2016-09-16 03:25 - 2016-09-07 06:28 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2016-09-16 03:25 - 2016-09-07 06:28 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2016-09-16 03:25 - 2016-09-07 06:27 - 01746944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00824832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00792576 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00651776 _____ (Microsoft Corporation) C:\WINDOWS\system32\comuid.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00525824 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmsdk.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSSync.dll 2016-09-16 03:25 - 2016-09-07 06:27 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll 2016-09-16 03:25 - 2016-09-07 06:26 - 01915392 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAJApi.dll 2016-09-16 03:25 - 2016-09-07 06:26 - 01588224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2016-09-16 03:25 - 2016-09-07 06:26 - 01537536 _____ (Microsoft Corporation) C:\WINDOWS\system32\pla.dll 2016-09-16 03:25 - 2016-09-07 06:26 - 01508352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmsipc.dll 2016-09-16 03:25 - 2016-09-07 06:26 - 01223168 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe 2016-09-16 03:25 - 2016-09-07 06:26 - 01117184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2016-09-16 03:25 - 2016-09-07 06:26 - 01035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrame.dll 2016-09-16 03:25 - 2016-09-07 06:26 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2016-09-16 03:25 - 2016-09-07 06:26 - 00826368 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2016-09-16 03:25 - 2016-09-07 06:26 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll 2016-09-16 03:25 - 2016-09-07 06:26 - 00740352 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2016-09-16 03:25 - 2016-09-07 06:26 - 00738816 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl 2016-09-16 03:25 - 2016-09-07 06:26 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll 2016-09-16 03:25 - 2016-09-07 06:26 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2016-09-16 03:25 - 2016-09-07 06:26 - 00706048 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll 2016-09-16 03:25 - 2016-09-07 06:26 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2016-09-16 03:25 - 2016-09-07 06:26 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll 2016-09-16 03:25 - 2016-09-07 06:26 - 00645632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll 2016-09-16 03:25 - 2016-09-07 06:26 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll 2016-09-16 03:25 - 2016-09-07 06:26 - 00482816 _____ (Microsoft Corporation) C:\WINDOWS\system32\duser.dll 2016-09-16 03:25 - 2016-09-07 06:26 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2016-09-16 03:25 - 2016-09-07 06:26 - 00233984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2016-09-16 03:25 - 2016-09-07 06:25 - 06296064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2016-09-16 03:25 - 2016-09-07 06:25 - 04404736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2016-09-16 03:25 - 2016-09-07 06:25 - 02578432 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll 2016-09-16 03:25 - 2016-09-07 06:25 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2016-09-16 03:25 - 2016-09-07 06:25 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2016-09-16 03:25 - 2016-09-07 06:25 - 01401856 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2016-09-16 03:25 - 2016-09-07 06:25 - 01388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2016-09-16 03:25 - 2016-09-07 06:25 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll 2016-09-16 03:25 - 2016-09-07 06:25 - 01228800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll 2016-09-16 03:25 - 2016-09-07 06:25 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2016-09-16 03:25 - 2016-09-07 06:25 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll 2016-09-16 03:25 - 2016-09-07 06:25 - 01043456 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe 2016-09-16 03:25 - 2016-09-07 06:25 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll 2016-09-16 03:25 - 2016-09-07 06:25 - 00759808 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2016-09-16 03:25 - 2016-09-07 06:25 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll 2016-09-16 03:25 - 2016-09-07 06:25 - 00509952 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe 2016-09-16 03:25 - 2016-09-07 06:25 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2016-09-16 03:25 - 2016-09-07 06:25 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\licensingdiag.exe 2016-09-16 03:25 - 2016-09-07 06:24 - 03695104 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll 2016-09-16 03:25 - 2016-09-07 06:24 - 01276928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll 2016-09-16 03:25 - 2016-09-07 06:24 - 01070592 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagperf.dll 2016-09-16 03:25 - 2016-09-07 06:24 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2016-09-16 03:25 - 2016-09-07 06:24 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2016-09-16 03:25 - 2016-09-07 06:24 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll 2016-09-16 03:25 - 2016-09-07 06:24 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2016-09-16 03:25 - 2016-09-07 06:24 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll 2016-09-16 03:25 - 2016-09-07 06:24 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2016-09-16 03:25 - 2016-09-07 06:23 - 01562112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmc.exe 2016-09-16 03:25 - 2016-09-07 06:23 - 01364480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll 2016-09-16 03:25 - 2016-09-07 06:23 - 01309696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdc.dll 2016-09-16 03:25 - 2016-09-07 06:23 - 00980480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcsecproc.dll 2016-09-16 03:25 - 2016-09-07 06:22 - 12585472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2016-09-16 03:25 - 2016-09-07 06:22 - 02106368 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll 2016-09-16 03:25 - 2016-09-07 06:22 - 01987072 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2016-09-16 03:25 - 2016-09-07 06:22 - 01552896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll 2016-09-16 03:25 - 2016-09-07 06:22 - 00778240 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll 2016-09-16 03:25 - 2016-09-07 06:22 - 00694272 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll 2016-09-16 03:25 - 2016-09-07 06:22 - 00628224 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe 2016-09-16 03:25 - 2016-09-07 06:21 - 02527232 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2016-09-16 03:25 - 2016-09-07 06:21 - 01183744 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll 2016-09-16 03:25 - 2016-09-07 06:21 - 01063936 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpedit.dll 2016-09-16 03:25 - 2016-09-07 06:21 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2016-09-16 03:25 - 2016-09-07 06:20 - 03196928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2016-09-16 03:25 - 2016-09-07 06:20 - 01044992 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll 2016-09-16 03:25 - 2016-09-07 06:20 - 00900096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe 2016-09-16 03:25 - 2016-09-07 06:20 - 00742400 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2016-09-16 03:25 - 2016-09-07 06:20 - 00683008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll 2016-09-16 03:25 - 2016-09-07 06:20 - 00581632 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll 2016-09-16 03:25 - 2016-09-07 06:20 - 00401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\StikyNot.exe 2016-09-16 03:25 - 2016-09-07 06:19 - 06471168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe 2016-09-16 03:25 - 2016-09-07 06:19 - 05325824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2016-09-16 03:25 - 2016-09-07 06:19 - 04078592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll 2016-09-16 03:25 - 2016-09-07 06:19 - 02798080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2016-09-16 03:25 - 2016-09-07 06:19 - 02102272 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll 2016-09-16 03:25 - 2016-09-07 06:19 - 01801216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2016-09-16 03:25 - 2016-09-07 06:19 - 01072128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll 2016-09-16 03:25 - 2016-09-07 06:19 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr 2016-09-16 03:25 - 2016-09-07 06:19 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll 2016-09-16 03:25 - 2016-09-07 06:19 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll 2016-09-16 03:25 - 2016-09-07 06:18 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2016-09-16 03:25 - 2016-09-07 06:18 - 02973696 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-09-16 03:25 - 2016-09-07 06:18 - 01635840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll 2016-09-16 03:25 - 2016-09-07 06:18 - 01609728 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistSvc.dll 2016-09-16 03:25 - 2016-09-07 06:18 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll 2016-09-16 03:25 - 2016-09-07 06:18 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll 2016-09-16 03:25 - 2016-09-07 06:17 - 03459584 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll 2016-09-16 03:25 - 2016-09-07 06:17 - 02880512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll 2016-09-16 03:25 - 2016-09-07 06:17 - 02679808 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll 2016-09-16 03:25 - 2016-09-07 06:17 - 02062336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2016-09-16 03:25 - 2016-09-07 06:17 - 01931776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2016-09-16 03:25 - 2016-09-07 06:17 - 01502208 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-09-16 03:25 - 2016-09-07 06:17 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2016-09-16 03:25 - 2016-09-07 06:16 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2016-09-16 03:25 - 2016-09-07 06:16 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2016-09-16 03:25 - 2016-09-07 06:16 - 03671040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2016-09-16 03:25 - 2016-09-07 06:16 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2016-09-16 03:25 - 2016-09-07 06:16 - 02361856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcndmgr.dll 2016-09-16 03:25 - 2016-09-07 06:16 - 02217984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll 2016-09-16 03:25 - 2016-09-07 06:16 - 02155008 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2016-09-16 03:25 - 2016-09-07 06:16 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2016-09-16 03:25 - 2016-09-07 06:16 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2016-09-16 03:25 - 2016-09-07 06:16 - 01194496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll 2016-09-16 03:25 - 2016-09-07 06:16 - 01123328 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll 2016-09-16 03:25 - 2016-09-07 06:16 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2016-09-16 03:25 - 2016-09-07 06:16 - 00925184 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2016-09-16 03:25 - 2016-09-07 06:16 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll 2016-09-16 03:25 - 2016-09-07 06:16 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsDocumentTargetPrint.dll 2016-09-16 03:25 - 2016-09-07 06:16 - 00232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe 2016-09-16 03:25 - 2016-09-07 06:16 - 00232448 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe 2016-09-16 03:25 - 2016-09-07 06:15 - 02772480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2016-09-16 03:25 - 2016-09-07 06:15 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll 2016-09-16 03:25 - 2016-09-07 06:15 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll 2016-09-16 03:25 - 2016-09-07 06:15 - 01448960 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll 2016-09-16 03:25 - 2016-09-07 06:15 - 00835072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2016-09-16 03:25 - 2016-09-07 06:15 - 00812544 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2016-09-16 03:25 - 2016-09-07 06:15 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll 2016-09-16 03:25 - 2016-09-07 06:15 - 00748032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2016-09-16 03:25 - 2016-09-07 06:15 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguagesCpl.dll 2016-09-16 03:25 - 2016-09-07 06:15 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll 2016-09-16 03:25 - 2016-09-07 06:14 - 03483648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2016-09-16 03:25 - 2016-09-07 06:14 - 02553856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2016-09-16 03:25 - 2016-09-07 06:14 - 02519552 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll 2016-09-16 03:25 - 2016-09-07 06:14 - 02177024 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2016-09-16 03:25 - 2016-09-07 06:14 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2016-09-16 03:25 - 2016-09-07 06:14 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2016-09-16 03:25 - 2016-09-07 06:14 - 01708032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll 2016-09-16 03:25 - 2016-09-07 06:14 - 00737792 _____ (Microsoft Corporation) C:\WINDOWS\system32\pmcsnap.dll 2016-09-16 03:25 - 2016-09-07 06:12 - 02632192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll 2016-09-16 03:25 - 2016-09-07 06:12 - 02180096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll 2016-09-16 03:25 - 2016-09-07 06:12 - 01075200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2016-09-16 03:25 - 2016-09-07 06:12 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2016-09-16 03:25 - 2016-09-07 06:12 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll 2016-09-16 03:25 - 2016-09-07 06:11 - 01106944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll 2016-09-16 03:25 - 2016-09-07 06:10 - 00942592 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2016-09-16 03:25 - 2016-09-07 06:10 - 00712704 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll 2016-09-16 03:25 - 2016-09-07 06:10 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\certca.dll 2016-09-16 03:25 - 2016-09-07 06:10 - 00438784 _____ (Microsoft Corporation) C:\WINDOWS\system32\DbgModel.dll 2016-09-16 03:25 - 2016-09-07 06:09 - 00824832 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2016-09-16 03:25 - 2016-09-07 06:09 - 00183296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys 2016-09-16 03:25 - 2016-09-07 06:09 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\msobjs.dll 2016-09-16 03:25 - 2016-08-03 08:27 - 01303744 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2016-09-16 03:25 - 2016-08-03 08:27 - 00081088 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2016-09-16 03:25 - 2016-08-03 08:27 - 00045760 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2016-09-16 03:25 - 2016-08-03 07:52 - 00083808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2016-09-16 03:25 - 2016-08-03 07:52 - 00034088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll 2016-09-16 03:25 - 2016-08-03 07:34 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll 2016-09-16 03:25 - 2016-08-03 07:33 - 00051128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll 2016-09-16 03:25 - 2016-08-03 07:32 - 00413024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2016-09-16 03:25 - 2016-08-03 07:32 - 00260448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2016-09-16 03:25 - 2016-08-03 07:30 - 00255168 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe 2016-09-16 03:25 - 2016-08-03 07:28 - 00139616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2016-09-16 03:25 - 2016-08-03 07:21 - 00483680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-09-16 03:25 - 2016-08-03 07:21 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2016-09-16 03:25 - 2016-08-03 07:18 - 00346464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys 2016-09-16 03:25 - 2016-08-03 06:57 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdlrecover.exe 2016-09-16 03:25 - 2016-08-03 06:48 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll 2016-09-16 03:25 - 2016-08-03 06:48 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll 2016-09-16 03:25 - 2016-08-03 06:47 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2016-09-16 03:25 - 2016-08-03 06:44 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2016-09-16 03:25 - 2016-08-03 06:44 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll 2016-09-16 03:25 - 2016-08-03 06:44 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll 2016-09-16 03:25 - 2016-08-03 06:43 - 00180736 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2016-09-16 03:25 - 2016-08-03 06:43 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthserv.dll 2016-09-16 03:25 - 2016-08-03 06:42 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll 2016-09-16 03:25 - 2016-08-03 06:41 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2016-09-16 03:25 - 2016-08-03 06:40 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll 2016-09-16 03:25 - 2016-08-03 06:39 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2016-09-16 03:25 - 2016-08-03 06:37 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2016-09-16 03:25 - 2016-08-03 06:37 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll 2016-09-16 03:25 - 2016-08-03 06:35 - 00396288 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2016-09-16 03:25 - 2016-08-03 06:35 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2016-09-16 03:25 - 2016-08-03 06:35 - 00178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtutil.exe 2016-09-16 03:25 - 2016-08-03 06:33 - 01152512 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2016-09-16 03:25 - 2016-08-03 06:32 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2016-09-16 03:25 - 2016-08-03 06:31 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2016-09-16 03:07 - 2016-09-16 03:07 - 00000000 ____D C:\Users\thierry\AppData\Local\TempOfficeC2R8AA4610A-8B72-4652-9823-11BD751D1331 2016-09-15 07:13 - 2016-09-15 07:13 - 00001171 _____ C:\Users\Public\Desktop\Avira Launcher.lnk ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2016-10-04 16:24 - 2015-08-06 13:09 - 00000000 ____D C:\Users\thierry\Documents\Fichiers Outlook 2016-10-04 15:47 - 2015-08-06 16:21 - 00170200 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-10-04 15:40 - 2015-10-30 17:07 - 01153316 _____ C:\WINDOWS\system32\perfh00C.dat 2016-10-04 15:40 - 2015-10-30 17:07 - 00254584 _____ C:\WINDOWS\system32\perfc00C.dat 2016-10-04 15:40 - 2015-08-07 06:48 - 00005430 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-10-04 15:36 - 2015-09-12 09:29 - 00000000 ___RD C:\Users\thierry\iCloudDrive 2016-10-04 15:36 - 2015-08-06 09:22 - 00001076 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2016-10-04 15:35 - 2015-12-11 13:47 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-10-04 15:35 - 2015-10-30 07:13 - 00786432 ___SH C:\WINDOWS\system32\config\BBI 2016-10-04 15:17 - 2016-08-01 13:37 - 00000000 ____D C:\Users\thierry\Desktop\cz 2016-10-04 15:17 - 2015-10-15 19:15 - 00000000 ____D C:\Users\thierry\Documents\ConvertXToDVD 2016-10-04 15:17 - 2015-08-07 23:08 - 00000000 ____D C:\Users\thierry\Desktop\JEEP 2016-10-04 15:17 - 2015-08-07 05:10 - 00000000 ____D C:\Users\thierry\Desktop\site.fr 2016-10-04 15:01 - 2015-12-11 13:41 - 00000000 ____D C:\Users\thierry 2016-10-04 14:54 - 2013-08-22 10:17 - 00000000 ____D C:\WINDOWS\system32\GroupPolicy 2016-10-04 14:43 - 2015-09-15 18:13 - 00000000 ____D C:\Users\thierry\AppData\Local\CrashDumps 2016-10-04 11:39 - 2016-05-24 11:02 - 00000000 ____D C:\Users\thierry\AppData\Roaming\TeamViewer 2016-10-04 11:39 - 2015-10-30 07:47 - 00000000 ____D C:\WINDOWS\INF 2016-10-04 11:39 - 2015-08-08 00:32 - 00000000 ____D C:\Users\thierry\AppData\Roaming\VSO 2016-10-04 11:14 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\Globalization 2016-10-04 11:04 - 2016-02-10 12:34 - 00000000 ____D C:\Program Files\Microsoft Office 2016-10-04 11:03 - 2015-12-11 13:40 - 00345176 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-10-04 08:29 - 2015-10-30 07:48 - 00000000 ___HD C:\Program Files\WindowsApps 2016-10-04 08:29 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-10-04 07:12 - 2015-08-06 11:15 - 00000622 _____ C:\Users\thierry\Desktop\Météo Cernay (68).website 2016-10-02 15:48 - 2015-10-15 19:13 - 00001041 _____ C:\Users\thierry\AppData\Roaming\vso_ts_preview.xml 2016-10-02 12:30 - 2015-08-07 09:26 - 00000000 ____D C:\Users\thierry\AppData\Roaming\vlc 2016-10-02 05:56 - 2015-10-30 07:48 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2016-10-02 05:56 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2016-10-02 05:56 - 2015-08-07 07:16 - 00002450 _____ C:\Users\thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2016-10-02 05:56 - 2015-08-07 07:14 - 00000000 ___RD C:\Users\thierry\OneDrive 2016-10-02 05:56 - 2015-08-06 15:09 - 00000000 ____D C:\Program Files\Common Files\DESIGNER 2016-10-02 03:28 - 2015-10-15 19:39 - 00000000 ____D C:\Users\thierry\AppData\Roaming\dvdcss 2016-09-29 17:20 - 2015-08-06 09:43 - 00000000 ___RD C:\Users\thierry\Desktop\divers 2016-09-29 08:41 - 2015-08-07 05:23 - 00002216 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-09-29 08:41 - 2015-08-07 05:23 - 00002204 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-09-29 03:07 - 2015-08-06 11:10 - 00000531 _____ C:\Users\thierry\Desktop\Annonces.website 2016-09-27 20:06 - 2015-08-06 09:01 - 00000000 ____D C:\Users\thierry\AppData\Local\AMD 2016-09-25 08:37 - 2015-08-07 04:50 - 00000000 ___RD C:\Users\thierry\Desktop\licence-meteo 2016-09-23 12:06 - 2015-08-07 04:44 - 00000000 ____D C:\Users\thierry\AppData\Roaming\FileZilla 2016-09-23 11:31 - 2016-04-16 17:56 - 00060851 _____ C:\Users\thierry\Desktop\ajax-dashboard.php 2016-09-21 09:00 - 2015-08-06 11:11 - 00000613 _____ C:\Users\thierry\Desktop\Météo Cernay.com.website 2016-09-19 17:39 - 2015-09-12 09:30 - 00000000 ____D C:\Users\thierry\AppData\Local\8231AC4B-7BAB-4E6C-91B1-2AB0C37E379D.aplzod 2016-09-19 17:11 - 2015-08-07 04:34 - 00000000 ____D C:\Program Files\Common Files\Apple 2016-09-19 08:59 - 2015-10-30 07:39 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-09-19 08:58 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\appraiser 2016-09-19 08:53 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\NDF 2016-09-19 08:36 - 2015-08-06 11:10 - 00000446 _____ C:\Users\thierry\Desktop\clients.o2switch.fr.website 2016-09-18 20:55 - 2015-10-30 07:13 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM 2016-09-17 15:50 - 2016-02-10 12:39 - 00002472 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk 2016-09-17 15:50 - 2015-08-06 08:49 - 00000000 ____D C:\Users\thierry\AppData\Local\Packages 2016-09-16 03:44 - 2015-08-07 07:14 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-09-16 03:43 - 2015-09-11 20:37 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2016-09-16 03:42 - 2015-10-30 07:48 - 00000000 ___SD C:\WINDOWS\system32\F12 2016-09-16 03:42 - 2015-10-30 07:48 - 00000000 ___RD C:\WINDOWS\PrintDialog 2016-09-16 03:42 - 2015-10-30 07:48 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2016-09-16 03:42 - 2015-10-30 07:48 - 00000000 ___RD C:\WINDOWS\DevicesFlow 2016-09-16 03:42 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\oobe 2016-09-16 03:42 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\migwiz 2016-09-16 03:42 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2016-09-16 03:42 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Windows Defender 2016-09-16 03:42 - 2015-10-30 07:15 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2016-09-16 03:32 - 2015-08-06 09:25 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-09-16 03:28 - 2015-08-06 09:25 - 141747376 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-09-16 03:27 - 2015-09-11 20:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2016-09-16 03:26 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2016-09-16 03:17 - 2015-08-07 09:28 - 00001002 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2016-09-15 11:31 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\Macromed 2016-09-15 11:31 - 2015-08-07 09:28 - 00000000 ____D C:\Users\thierry\AppData\Local\Adobe 2016-09-15 07:15 - 2016-03-17 19:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2016-09-15 07:13 - 2015-12-11 13:40 - 00000000 ____D C:\ProgramData\Package Cache 2016-09-07 03:00 - 2015-10-30 07:49 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2016-09-07 03:00 - 2015-10-30 07:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl ==================== Fichiers à la racine de certains dossiers ======= 2015-10-15 19:13 - 2016-01-14 23:45 - 0007887 _____ () C:\Users\thierry\AppData\Roaming\pcouffin.cat 2015-10-15 19:13 - 2016-01-14 23:45 - 0001144 _____ () C:\Users\thierry\AppData\Roaming\pcouffin.inf 2015-10-15 19:13 - 2016-01-14 23:45 - 0000055 _____ () C:\Users\thierry\AppData\Roaming\pcouffin.log 2015-10-15 19:13 - 2016-10-02 15:48 - 0001041 _____ () C:\Users\thierry\AppData\Roaming\vso_ts_preview.xml 2015-12-11 13:41 - 2015-12-11 13:41 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Certains fichiers dans TEMP: ==================== C:\Users\thierry\AppData\Local\Temp\avgnt.exe ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2016-02-16 23:46 ==================== Fin de FRST.txt ============================