Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 22-01-2017 Exécuté par dylan_figqf (ATTENTION: L'utilisateur n'est pas administrateur) sur DESKTOP-CI9KH15 (22-01-2017 18:27:08) Exécuté depuis C:\Users\dylan_figqf\Downloads Profils chargés: dylan & dylan_figqf (Profils disponibles: dylan & dylan_figqf) Platform: Windows 10 Home Version 1607 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Edge) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) Impossible d'accéder au processus -> smss.exe Impossible d'accéder au processus -> csrss.exe Impossible d'accéder au processus -> wininit.exe Impossible d'accéder au processus -> csrss.exe Impossible d'accéder au processus -> services.exe Impossible d'accéder au processus -> winlogon.exe Impossible d'accéder au processus -> lsass.exe Impossible d'accéder au processus -> svchost.exe Impossible d'accéder au processus -> svchost.exe Impossible d'accéder au processus -> dwm.exe Impossible d'accéder au processus -> svchost.exe Impossible d'accéder au processus -> svchost.exe Impossible d'accéder au processus -> svchost.exe Impossible d'accéder au processus -> svchost.exe Impossible d'accéder au processus -> atiesrxx.exe Impossible d'accéder au processus -> svchost.exe Impossible d'accéder au processus -> atieclxx.exe Impossible d'accéder au processus -> svchost.exe Impossible d'accéder au processus -> svchost.exe Impossible d'accéder au processus -> RtkAudioService64.exe Impossible d'accéder au processus -> svchost.exe Impossible d'accéder au processus -> RAVBg64.exe Impossible d'accéder au processus -> RAVBg64.exe Impossible d'accéder au processus -> svchost.exe Impossible d'accéder au processus -> spoolsv.exe Impossible d'accéder au processus -> svchost.exe Impossible d'accéder au processus -> mDNSResponder.exe Impossible d'accéder au processus -> svchost.exe Impossible d'accéder au processus -> AppleMobileDeviceService.exe Impossible d'accéder au processus -> mfevtps.exe Impossible d'accéder au processus -> AdminService.exe Impossible d'accéder au processus -> mcsacore.exe Impossible d'accéder au processus -> mfemms.exe Impossible d'accéder au processus -> PEFService.exe Impossible d'accéder au processus -> ModuleCoreService.exe Impossible d'accéder au processus -> dasHost.exe Impossible d'accéder au processus -> svchost.exe Impossible d'accéder au processus -> svchost.exe Impossible d'accéder au processus -> McTkSchedulerService.exe Impossible d'accéder au processus -> MBAMService.exe Impossible d'accéder au processus -> mfevtps.exe Impossible d'accéder au processus -> WmiPrvSE.exe Impossible d'accéder au processus -> SearchIndexer.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe (Microsoft Corporation) C:\Windows\System32\Speech_OneCore\Common\SpeechRuntime.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.11.474\SSScheduler.exe (Microsoft Corporation) C:\Program Files\Microsoft Office\Office16\ONENOTEM.EXE Impossible d'accéder au processus -> iPodService.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe Impossible d'accéder au processus -> mfefire.exe Impossible d'accéder au processus -> mfefire.exe Impossible d'accéder au processus -> mcapexe.exe Impossible d'accéder au processus -> McSvHost.exe Impossible d'accéder au processus -> svchost.exe Impossible d'accéder au processus -> WUDFHost.exe Impossible d'accéder au processus -> McCSPServiceHost.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (CyberLink) C:\Program Files (x86)\CyberLink\CyberLink Media Suite\Power2Go8\CLMLSvc_P2G8.exe Impossible d'accéder au processus -> AdaptiveSleepService.exe Impossible d'accéder au processus -> DCCService.exe Impossible d'accéder au processus -> DFSSvc.exe Impossible d'accéder au processus -> DeliveryService.exe Impossible d'accéder au processus -> DellUpService.exe (Dell Inc.) C:\Program Files (x86)\Dell Update\DellUpTray.exe Impossible d'accéder au processus -> ed2k.exe Impossible d'accéder au processus -> IAStorDataMgrSvc.exe Impossible d'accéder au processus -> PRSvc.exe Impossible d'accéder au processus -> RichVideo.exe Impossible d'accéder au processus -> NASvc.exe (Dell) C:\Program Files\Dell\Dell Foundation Services\DFS.Common.Agent.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.16112.10211.0_x64__8wekyb3d8bbwe\Music.UI.exe () C:\Program Files\WindowsApps\Microsoft.AgeCastles_1.21.35.0_x86__8wekyb3d8bbwe\CastlesClient_s.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11610.1001.23.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe Impossible d'accéder au processus -> DbxSvc.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\McUICnt.exe Impossible d'accéder au processus -> fontdrvhost.exe Impossible d'accéder au processus -> McAfee.TrueKey.Service.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\SyncServer.exe Impossible d'accéder au processus -> McClientAnalytics.exe (BitTorrent Inc.) C:\Users\dylan_figqf\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.) C:\Users\dylan_figqf\AppData\Roaming\uTorrent\updates\3.4.9_43085\utorrentie.exe (BitTorrent Inc.) C:\Users\dylan_figqf\AppData\Roaming\uTorrent\updates\3.4.9_43085\utorrentie.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.7812.42257.0_x64__8wekyb3d8bbwe\HxCalendarAppImm.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.7812.42257.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.16112.10221.0_x64__8wekyb3d8bbwe\Video.UI.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (Microsoft Corporation) C:\Windows\System32\browser_broker.exe (Microsoft Corporation) C:\Windows\System32\InstallAgent.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe Impossible d'accéder au processus -> SearchProtocolHost.exe Impossible d'accéder au processus -> SearchFilterHost.exe ==================== Registre (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [8027016 2016-09-16] (Advanced Micro Devices, Inc.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8783616 2015-12-31] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_MAXX6] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1410168 2015-12-31] (Realtek Semiconductor) HKLM\...\Run: [WavesSvc] => C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [714672 2015-09-25] (Waves Audio Ltd.) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322120 2016-04-28] (Intel Corporation) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176440 2016-12-06] (Apple Inc.) HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [2776528 2016-12-14] (Malwarebytes) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [26287016 2017-01-06] (Dropbox, Inc.) HKU\S-1-5-21-667621686-1365627708-3436319961-1002\...\Run: [uTorrent] => C:\Users\dylan_figqf\AppData\Roaming\uTorrent\uTorrent.exe [1979072 2016-12-21] (BitTorrent Inc.) HKU\S-1-5-21-667621686-1365627708-3436319961-1002\...\Run: [AudialsNotifier] => C:\Program Files (x86)\Music Recorder\Music Recorder 2016\AudialsNotifier.exe HKU\S-1-5-21-667621686-1365627708-3436319961-1002\...\MountPoints2: {4c7816a7-650b-11e6-b58e-806e6f6e6963} - "D:\autorun.exe" HKU\S-1-5-21-667621686-1365627708-3436319961-1002\...\MountPoints2: {d569c617-87ca-11e6-b5a1-40490f8e6a64} - "F:\setup.exe" HKU\S-1-5-21-667621686-1365627708-3436319961-1002\...\MountPoints2: {dce19807-99d2-11e6-b5a4-f48e389c4498} - "G:\SETUP.EXE" HKU\S-1-5-18\...\Policies\system: [DisableLockWorkstation] 0 Lsa: [Notification Packages] scecli C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter ShellExecuteHooks: Pas de nom - {8D0D5A52-AB35-11E6-8696-64006A5CFC23} - C:\Users\dylan\AppData\Roaming\Gabukjibsy\Uqight.dll -> Pas de fichier ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> Pas de fichier ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> Pas de fichier ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> Pas de fichier ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.8.0.dll [2017-01-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.8.0.dll [2017-01-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.8.0.dll [2017-01-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.8.0.dll [2017-01-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.8.0.dll [2017-01-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.8.0.dll [2017-01-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.8.0.dll [2017-01-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.8.0.dll [2017-01-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.8.0.dll [2017-01-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.8.0.dll [2017-01-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.8.0.dll [2017-01-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.8.0.dll [2017-01-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.8.0.dll [2017-01-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.8.0.dll [2017-01-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.8.0.dll [2017-01-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.8.0.dll [2017-01-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.8.0.dll [2017-01-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.8.0.dll [2017-01-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.8.0.dll [2017-01-06] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.8.0.dll [2017-01-06] (Dropbox, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2016-12-24] ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.474\SSScheduler.exe (McAfee, Inc.) Startup: C:\Users\dylan_figqf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Envoyer à OneNote.lnk [2016-12-24] ShortcutTarget: Envoyer à OneNote.lnk -> C:\Program Files\Microsoft Office\Office16\ONENOTEM.EXE (Microsoft Corporation) Startup: C:\Users\dylan_figqf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2016-10-02] ShortcutTarget: MEGAsync.lnk -> C:\Users\dylan_figqf\AppData\Local\MEGAsync\MEGAsync.exe (Pas de fichier) GroupPolicy: Restriction <======= ATTENTION ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: 0.0.0.1 mssplus.mcafee.com Tcpip\Parameters: [DhcpNameServer] 80.10.46.232 Tcpip\..\Interfaces\{8b398254-ce02-43cc-a7d7-23f4b97fa5d2}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{bfeeeb24-7a7e-4de7-a3f8-5faf12d62f37}: [DhcpNameServer] 80.10.46.232 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-667621686-1365627708-3436319961-1002\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-667621686-1365627708-3436319961-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell17win10.msn.com/?pc=DCTE URLSearchHook: [S-1-5-21-667621686-1365627708-3436319961-1001] ATTENTION => URLSearchHook par défaut est absent SearchScopes: HKLM -> DefaultScope {27CE9071-482E-438E-8521-D38586A5757F} URL = SearchScopes: HKLM-x32 -> DefaultScope {27CE9071-482E-438E-8521-D38586A5757F} URL = BHO: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2016-10-24] (McAfee, Inc.) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2015-07-31] (Microsoft Corporation) BHO-x32: True Key Helper -> {0F4B8786-5502-4803-8EBC-F652A1153BB6} -> C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2017-01-10] (Intel Security) BHO-x32: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2016-10-24] (McAfee, Inc.) BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2015-07-31] (Microsoft Corporation) Toolbar: HKLM-x32 - True Key - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2017-01-10] (Intel Security) Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2016-10-24] (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2016-10-24] (McAfee, Inc.) Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2016-10-24] (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2016-10-24] (McAfee, Inc.) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2016-11-18] (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll [2016-11-18] (McAfee, Inc.) Edge: ====== Edge HomeButtonPage: HKU\S-1-5-21-667621686-1365627708-3436319961-1002 -> hxxps://www.google.fr/ FireFox: ======== FF ProfilePath: C:\Users\dylan_figqf\AppData\Roaming\Mozilla\Firefox\Profiles\5viv3f1c.default-1481447425257 [2017-01-21] FF Homepage: Mozilla\Firefox\Profiles\5viv3f1c.default-1481447425257 -> hxxps://www.google.fr/ FF Extension: (Français Language Pack) - C:\Users\dylan_figqf\AppData\Roaming\Mozilla\Firefox\Profiles\5viv3f1c.default-1481447425257\Extensions\langpack-fr@firefox.mozilla.org [2016-12-11] [non signé] FF Extension: (Türkçe (TR) Language Pack) - C:\Users\dylan_figqf\AppData\Roaming\Mozilla\Firefox\Profiles\5viv3f1c.default-1481447425257\Extensions\langpack-tr@firefox.mozilla.org [2016-12-11] [non signé] FF Extension: (Ukrainian (UA) Language Pack) - C:\Users\dylan_figqf\AppData\Roaming\Mozilla\Firefox\Profiles\5viv3f1c.default-1481447425257\Extensions\langpack-uk@firefox.mozilla.org [2016-12-11] [non signé] FF Extension: (Chinese Simplified (zh-CN) Language Pack) - C:\Users\dylan_figqf\AppData\Roaming\Mozilla\Firefox\Profiles\5viv3f1c.default-1481447425257\Extensions\langpack-zh-CN@firefox.mozilla.org [2016-12-11] [non signé] FF Extension: (Traditional Chinese (zh-TW) Language Pack) - C:\Users\dylan_figqf\AppData\Roaming\Mozilla\Firefox\Profiles\5viv3f1c.default-1481447425257\Extensions\langpack-zh-TW@firefox.mozilla.org [2016-12-11] [non signé] FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi FF Extension: (McAfee WebAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2016-12-19] FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: (McAfee Anti-Spam Thunderbird Extension) - C:\Program Files\McAfee\MSK [2016-12-20] [non signé] FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml [2016-08-19] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_24_0_0_194.dll [2017-01-22] () FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2016-11-18] () FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_24_0_0_194.dll [2017-01-22] () FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2016-11-18] () FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation) Chrome: ======= CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdaptiveSleepService; C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [155016 2016-09-16] () R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-09-22] (Apple Inc.) R2 AtherosSvc; C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\adminservice.exe [323152 2015-06-08] (Windows (R) Win 7 DDK provider) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-09-20] (Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-09-20] (Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [51504 2017-01-06] (Dropbox, Inc.) R2 Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [132472 2016-09-09] (Dell Inc.) R2 Dell Foundation Services; C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe [97616 2016-11-30] (Dell) R2 DellUpdate; C:\Program Files (x86)\Dell Update\DellUpService.exe [229376 2016-05-02] (Dell Inc.) S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1467072 2016-08-29] (Disc Soft Ltd) R2 ed2kidle; C:\Program Files (x86)\amuleC1\ed2k.exe [237568 2016-11-16] (hxxp://www.amule.org/) [Fichier non signé] R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [603752 2016-10-14] (McAfee, Inc.) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18504 2016-04-28] (Intel Corporation) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-03] (Macrovision Corporation) [Fichier non signé] R3 lmhosts; C:\WINDOWS\System32\svchost.exe [44496 2016-07-16] (Microsoft Corporation) R3 lmhosts; C:\WINDOWS\SysWOW64\svchost.exe [38792 2016-07-16] (Microsoft Corporation) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4317648 2016-12-14] (Malwarebytes) R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [187840 2016-10-24] (McAfee, Inc.) R2 McAPExe; C:\Program Files\Common Files\McAfee\VSCore_15_5\McAPExe.exe [963176 2016-10-07] (McAfee, Inc.) S3 McAWFwk; C:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [354664 2016-03-03] (McAfee, Inc.) R2 McBootDelayStartSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [603752 2016-10-14] (McAfee, Inc.) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.474\McCHSvc.exe [329480 2016-12-14] (McAfee, Inc.) R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\2.2.351.0\\McCSPServiceHost.exe [1934968 2016-10-17] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [603752 2016-10-14] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [603752 2016-10-14] (McAfee, Inc.) S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [1307752 2016-10-20] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [603752 2016-10-14] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [603752 2016-10-14] (McAfee, Inc.) R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [242704 2016-09-08] (McAfee, Inc.) R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [384016 2016-09-08] (McAfee, Inc.) R3 mfevtp; C:\Windows\system32\mfevtps.exe [331280 2016-09-08] (McAfee, Inc.) R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1473128 2016-10-07] (McAfee, Inc.) S3 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [603752 2016-10-14] (McAfee, Inc.) R2 NlaSvc; C:\WINDOWS\System32\svchost.exe [44496 2016-07-16] (Microsoft Corporation) R2 NlaSvc; C:\WINDOWS\SysWOW64\svchost.exe [38792 2016-07-16] (Microsoft Corporation) R2 nsi; C:\WINDOWS\system32\svchost.exe [44496 2016-07-16] (Microsoft Corporation) R2 nsi; C:\WINDOWS\SysWOW64\svchost.exe [38792 2016-07-16] (Microsoft Corporation) R2 PEFService; C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe [1041512 2016-09-08] (Intel Security, Inc.) R2 Product Registration; C:\Program Files\Dell\Dell Product Registration\PRSvc.exe [80208 2016-09-22] (Dell) R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [253776 2015-09-02] (CyberLink) R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [309368 2015-12-31] (Realtek Semiconductor) R2 TrueKey; C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe [995800 2017-01-05] (McAfee, Inc.) R2 TrueKeyScheduler; C:\Program Files\TrueKey\McTkSchedulerService.exe [16248 2017-01-05] (McAfee, Inc.) S3 TrueKeyServiceHelper; C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe [86864 2017-01-05] (McAfee, Inc.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation) S2 0115031484326291mcinstcleanup; C:\WINDOWS\TEMP\011503~1.EXE -cleanup -nolog [X] S2 InstallerService; C:\Program Files\TrueKey\Mcafee.TrueKey.InstallerService.exe -originalversion 4.4.127.0 [X] ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 amdkmdag; C:\WINDOWS\System32\DriverStore\FileRepository\c0307259.inf_amd64_e75a0a5e82450920\atikmdag.sys [26568856 2016-10-26] (Advanced Micro Devices, Inc.) R3 amdkmdap; C:\WINDOWS\System32\DriverStore\FileRepository\c0307259.inf_amd64_e75a0a5e82450920\atikmpag.sys [536592 2016-10-26] (Advanced Micro Devices, Inc.) R3 athr; C:\WINDOWS\System32\drivers\athw10x.sys [4325808 2016-07-28] (Qualcomm Atheros Communications, Inc.) R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT6.sys [102912 2015-05-28] (Advanced Micro Devices) R3 cfwids; C:\WINDOWS\System32\drivers\cfwids.sys [88120 2016-09-09] (McAfee, Inc.) R1 CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [91912 2013-11-12] (CyberLink) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.) R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2016-09-24] (Disc Soft Ltd) R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2016-09-24] (Disc Soft Ltd) R1 f0d4497f7c4eee9fe35872f5247ba0e7; C:\WINDOWS\system32\drivers\f0d4497f7c4eee9fe35872f5247ba0e7.sys [74952 2016-12-01] (R0ISMC) <==== ATTENTION S3 HipShieldK; C:\WINDOWS\System32\drivers\HipShieldK.sys [216704 2016-08-02] (McAfee, Inc.) R0 MBAMSwissArmy; C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [250816 2017-01-21] (Malwarebytes) R3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [477752 2016-09-09] (McAfee, Inc.) R3 mfeavfk; C:\WINDOWS\System32\drivers\mfeavfk.sys [364088 2016-09-09] (McAfee, Inc.) S0 mfeelamk; C:\WINDOWS\System32\drivers\mfeelamk.sys [85656 2016-09-09] (McAfee, Inc.) R3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [512056 2016-09-09] (McAfee, Inc.) R0 mfehidk; C:\WINDOWS\System32\drivers\mfehidk.sys [884792 2016-09-09] (McAfee, Inc.) R3 mfencbdc; C:\WINDOWS\System32\DRIVERS\mfencbdc.sys [527496 2016-09-09] (McAfee, Inc.) S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [109336 2016-09-09] (McAfee, Inc.) R3 mfeplk; C:\WINDOWS\System32\drivers\mfeplk.sys [110136 2016-09-09] (McAfee, Inc.) R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [46240 2016-06-06] (McAfee, Inc.) R0 mfewfpk; C:\WINDOWS\System32\drivers\mfewfpk.sys [252984 2016-09-09] (McAfee, Inc.) S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] () R2 npf; C:\WINDOWS\system32\drivers\npf.sys [36600 2016-10-19] (Riverbed Technology, Inc.) S3 PVUSB; C:\WINDOWS\System32\drivers\CESG64.sys [63808 2007-02-19] (CASIO COMPUTER CO.,LTD.) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [936192 2016-03-22] (Realtek ) R3 RtlWlanu; C:\WINDOWS\System32\drivers\rtwlanu.sys [3042520 2014-01-16] (Realtek Semiconductor Corporation ) S3 RtlWlanu_OldIC; C:\WINDOWS\System32\drivers\rtwlanu_oldIC.sys [3814400 2016-07-16] (Realtek Semiconductor Corporation ) R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [402136 2015-06-13] (Realsil Semiconductor Corporation) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation) S3 dbx; system32\DRIVERS\dbx.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-01-22 18:16 - 2017-01-22 18:16 - 00000000 ____D C:\Users\dylan_figqf\Downloads\FRST-OlderVersion 2017-01-22 12:38 - 2017-01-22 12:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee 2017-01-22 10:39 - 2017-01-22 10:39 - 00022452 _____ C:\Users\dylan_figqf\Documents\commpte rendu.txt 2017-01-21 22:33 - 2017-01-21 22:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2017-01-21 16:43 - 2017-01-21 16:43 - 00058674 _____ C:\Users\dylan_figqf\Downloads\radin-french-dvdrip-2017.torrent 2017-01-21 13:56 - 2017-01-21 13:56 - 00015061 _____ C:\Users\dylan_figqf\Downloads\TPMP fait du ski ! 20-01-2017.torrent 2017-01-21 12:30 - 2017-01-21 12:30 - 00114580 _____ C:\Users\dylan_figqf\Downloads\debarquement-immediat-french-dvdrip-2016.torrent 2017-01-21 12:29 - 2017-01-21 12:29 - 00115491 _____ C:\Users\dylan_figqf\Downloads\tu-ne-tueras-point-french-dvdscr-2017.torrent 2017-01-21 12:26 - 2017-01-21 12:26 - 00361009 _____ C:\Users\dylan_figqf\Downloads\radin-french-bluray-720p-2017.torrent 2017-01-20 22:27 - 2017-01-20 22:27 - 00024842 _____ C:\Users\dylan\Documents\rapport.txt 2017-01-15 10:55 - 2017-01-21 21:47 - 00250816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2017-01-15 10:55 - 2017-01-15 10:55 - 00176064 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMChameleon.sys 2017-01-15 10:55 - 2017-01-15 10:55 - 00102856 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2017-01-15 10:55 - 2017-01-15 10:55 - 00091584 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2017-01-15 10:55 - 2017-01-15 10:55 - 00043968 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2017-01-15 10:54 - 2017-01-15 10:54 - 54199488 _____ (Malwarebytes ) C:\Users\dylan_figqf\Downloads\mb3-setup-35891.35891-3.0.5.1299.exe 2017-01-15 10:54 - 2017-01-15 10:54 - 00001914 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2017-01-15 10:54 - 2017-01-15 10:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2017-01-15 10:54 - 2017-01-15 10:54 - 00000000 ____D C:\ProgramData\Malwarebytes 2017-01-15 10:54 - 2017-01-15 10:54 - 00000000 ____D C:\Program Files\Malwarebytes 2017-01-15 10:54 - 2016-12-14 12:55 - 00077416 _____ C:\WINDOWS\system32\Drivers\mbae64.sys 2017-01-14 10:47 - 2017-01-14 10:47 - 00000000 ____D C:\Users\dylan_figqf\Documents\CPY_SAVES 2017-01-14 10:46 - 2017-01-14 10:46 - 00001681 _____ C:\Users\dylan_figqf\Desktop\Far Cry Primal.lnk 2017-01-14 10:37 - 2017-01-14 10:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Far Cry Primal 2017-01-14 10:26 - 2017-01-14 10:36 - 00000000 ____D C:\Program Files (x86)\Far Cry Primal 2017-01-13 19:35 - 2016-12-21 06:09 - 00263472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll 2017-01-13 19:35 - 2016-12-21 06:02 - 03892864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2017-01-13 19:35 - 2016-12-21 06:02 - 01852720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2017-01-13 19:35 - 2016-12-21 06:02 - 01360464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll 2017-01-13 19:35 - 2016-12-21 06:02 - 01277344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll 2017-01-13 19:35 - 2016-12-21 06:02 - 01201872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2017-01-13 19:35 - 2016-12-21 06:02 - 00980832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll 2017-01-13 19:35 - 2016-12-21 06:01 - 20969928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2017-01-13 19:35 - 2016-12-21 05:46 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe 2017-01-13 19:35 - 2016-12-21 05:43 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll 2017-01-13 19:35 - 2016-12-21 05:41 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll 2017-01-13 19:35 - 2016-12-21 05:40 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll 2017-01-13 19:35 - 2016-12-21 05:40 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll 2017-01-13 19:35 - 2016-12-21 05:40 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll 2017-01-13 19:35 - 2016-12-21 05:40 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2017-01-13 19:35 - 2016-12-21 05:39 - 01300480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll 2017-01-13 19:35 - 2016-12-21 05:39 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe 2017-01-13 19:35 - 2016-12-21 05:38 - 00866816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll 2017-01-13 19:35 - 2016-12-21 05:35 - 04612608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2017-01-13 19:35 - 2016-12-21 05:34 - 07626752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2017-01-13 19:35 - 2016-12-21 05:30 - 05398016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll 2017-01-13 19:35 - 2016-12-21 05:30 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll 2017-01-13 19:35 - 2016-12-21 05:27 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll 2017-01-13 19:35 - 2016-12-21 05:26 - 01155072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVP9DEC.dll 2017-01-13 19:35 - 2016-12-21 05:25 - 07469056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2017-01-13 19:35 - 2016-12-21 05:25 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe 2017-01-13 19:35 - 2016-12-21 05:24 - 06044160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2017-01-13 19:35 - 2016-12-21 05:24 - 00886272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll 2017-01-13 19:35 - 2016-12-21 05:22 - 01883648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2017-01-13 19:35 - 2016-12-21 05:22 - 00860672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2017-01-13 19:35 - 2016-12-14 06:21 - 02206496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2017-01-13 19:35 - 2016-12-14 06:08 - 00341344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2017-01-13 19:35 - 2016-12-14 06:06 - 00509792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2017-01-13 19:35 - 2016-12-14 06:01 - 01557808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2017-01-13 19:35 - 2016-12-14 05:45 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys 2017-01-13 19:35 - 2016-12-14 05:42 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSCard.dll 2017-01-13 19:35 - 2016-12-14 05:36 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll 2017-01-13 19:35 - 2016-12-14 05:35 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2017-01-13 19:35 - 2016-12-14 05:35 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2017-01-13 19:35 - 2016-12-14 05:35 - 00553984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll 2017-01-13 19:35 - 2016-12-14 05:32 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll 2017-01-13 19:35 - 2016-12-14 05:22 - 02998272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2017-01-13 19:35 - 2016-12-14 05:22 - 02748416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll 2017-01-13 19:35 - 2016-08-02 05:30 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2017-01-13 19:34 - 2016-12-21 06:59 - 00218976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll 2017-01-13 19:34 - 2016-12-21 05:41 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2017-01-13 19:34 - 2016-12-21 05:35 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll 2017-01-13 19:34 - 2016-12-21 05:33 - 19413504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2017-01-13 19:34 - 2016-12-21 05:32 - 19417600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2017-01-13 19:34 - 2016-12-21 05:24 - 05061120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2017-01-13 19:34 - 2016-12-21 05:24 - 03733504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll 2017-01-13 19:34 - 2016-12-14 06:01 - 00382784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll 2017-01-13 19:34 - 2016-12-14 06:01 - 00076984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll 2017-01-13 19:34 - 2016-12-14 05:46 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll 2017-01-13 19:34 - 2016-12-14 05:40 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudBackupSettings.dll 2017-01-13 19:34 - 2016-12-14 05:40 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.UI.Logon.ProxyStub.dll 2017-01-13 19:34 - 2016-12-14 05:38 - 13869056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2017-01-13 19:34 - 2016-12-14 05:38 - 00213504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.CredDialogController.dll 2017-01-13 19:34 - 2016-12-14 05:32 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll 2017-01-13 19:34 - 2016-11-02 13:01 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2017-01-13 19:31 - 2016-12-21 08:49 - 00328008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll 2017-01-13 19:31 - 2016-12-21 08:42 - 22224480 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2017-01-13 19:31 - 2016-12-21 08:41 - 01600632 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2017-01-13 19:31 - 2016-12-21 08:14 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe 2017-01-13 19:31 - 2016-12-21 08:09 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneBackupHandler.dll 2017-01-13 19:31 - 2016-12-21 08:09 - 00363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll 2017-01-13 19:31 - 2016-12-21 08:08 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll 2017-01-13 19:31 - 2016-12-21 08:08 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2017-01-13 19:31 - 2016-12-21 08:08 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll 2017-01-13 19:31 - 2016-12-21 08:08 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2017-01-13 19:31 - 2016-12-21 08:07 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2017-01-13 19:31 - 2016-12-21 08:06 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll 2017-01-13 19:31 - 2016-12-21 08:06 - 00260608 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe 2017-01-13 19:31 - 2016-12-21 08:06 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll 2017-01-13 19:31 - 2016-12-21 08:05 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll 2017-01-13 19:31 - 2016-12-21 08:05 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2017-01-13 19:31 - 2016-12-21 08:01 - 09131008 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2017-01-13 19:31 - 2016-12-21 07:59 - 01908224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2017-01-13 19:31 - 2016-12-21 07:55 - 08129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2017-01-13 19:31 - 2016-12-21 07:55 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2017-01-13 19:31 - 2016-12-21 07:51 - 08075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2017-01-13 19:31 - 2016-12-21 07:49 - 02691072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2017-01-13 19:31 - 2016-12-21 07:49 - 01062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2017-01-13 19:31 - 2016-12-21 07:47 - 01121280 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll 2017-01-13 19:31 - 2016-12-14 06:23 - 00404832 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2017-01-13 19:31 - 2016-12-14 06:19 - 00584544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2017-01-13 19:31 - 2016-12-14 06:17 - 00319288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll 2017-01-13 19:31 - 2016-12-14 06:14 - 01694712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2017-01-13 19:31 - 2016-12-14 05:46 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2017-01-13 19:31 - 2016-12-14 05:43 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ScDeviceEnum.dll 2017-01-13 19:31 - 2016-12-14 05:42 - 00352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll 2017-01-13 19:31 - 2016-12-14 05:40 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\certprop.dll 2017-01-13 19:31 - 2016-12-14 05:39 - 00837632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll 2017-01-13 19:31 - 2016-12-14 05:39 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll 2017-01-13 19:31 - 2016-12-14 05:37 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll 2017-01-13 19:31 - 2016-12-14 05:36 - 01002496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2017-01-13 19:31 - 2016-12-14 05:36 - 00539648 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2017-01-13 19:31 - 2016-12-14 05:26 - 00932864 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2017-01-13 19:31 - 2016-12-14 05:26 - 00869888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2017-01-13 19:31 - 2016-12-14 05:25 - 02009600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll 2017-01-13 19:31 - 2016-12-14 05:24 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2017-01-13 19:31 - 2016-12-14 05:23 - 03134976 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll 2017-01-13 19:31 - 2016-12-14 05:22 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2017-01-13 19:31 - 2016-12-14 05:22 - 01513472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2017-01-13 19:31 - 2016-12-14 05:22 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2017-01-13 19:31 - 2016-12-14 05:21 - 03616768 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2017-01-13 19:30 - 2016-12-21 09:08 - 00245600 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll 2017-01-13 19:30 - 2016-12-21 09:08 - 00136032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll 2017-01-13 19:30 - 2016-12-21 09:04 - 07816032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2017-01-13 19:30 - 2016-12-21 08:46 - 00624048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2017-01-13 19:30 - 2016-12-21 08:43 - 04130440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2017-01-13 19:30 - 2016-12-21 08:43 - 01454504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll 2017-01-13 19:30 - 2016-12-21 08:43 - 01071736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll 2017-01-13 19:30 - 2016-12-21 08:43 - 00092512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2017-01-13 19:30 - 2016-12-21 08:42 - 01988560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2017-01-13 19:30 - 2016-12-21 08:42 - 01702392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll 2017-01-13 19:30 - 2016-12-21 08:42 - 01300600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2017-01-13 19:30 - 2016-12-21 08:42 - 00241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll 2017-01-13 19:30 - 2016-12-21 08:37 - 00455520 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2017-01-13 19:30 - 2016-12-21 08:15 - 22563840 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2017-01-13 19:30 - 2016-12-21 08:13 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll 2017-01-13 19:30 - 2016-12-21 08:12 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll 2017-01-13 19:30 - 2016-12-21 08:10 - 00234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll 2017-01-13 19:30 - 2016-12-21 08:08 - 01292288 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll 2017-01-13 19:30 - 2016-12-21 08:08 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2017-01-13 19:30 - 2016-12-21 08:06 - 06285312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2017-01-13 19:30 - 2016-12-21 08:05 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll 2017-01-13 19:30 - 2016-12-21 08:00 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll 2017-01-13 19:30 - 2016-12-21 07:59 - 00883712 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2017-01-13 19:30 - 2016-12-21 07:58 - 23678464 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2017-01-13 19:30 - 2016-12-21 07:57 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsettingsprovider.dll 2017-01-13 19:30 - 2016-12-21 07:56 - 00947712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVP9DEC.dll 2017-01-13 19:30 - 2016-12-21 07:56 - 00936960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll 2017-01-13 19:30 - 2016-12-21 07:54 - 05511680 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2017-01-13 19:30 - 2016-12-21 07:53 - 06664192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe 2017-01-13 19:30 - 2016-12-21 07:53 - 04474368 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll 2017-01-13 19:30 - 2016-12-21 07:53 - 01692672 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2017-01-13 19:30 - 2016-12-21 07:51 - 05611008 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2017-01-13 19:30 - 2016-12-21 07:51 - 02275840 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2017-01-13 19:30 - 2016-12-21 07:50 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2017-01-13 19:30 - 2016-12-21 07:49 - 04149248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2017-01-13 19:30 - 2016-12-14 06:41 - 01235296 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2017-01-13 19:30 - 2016-12-14 06:41 - 00590960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2017-01-13 19:30 - 2016-12-14 06:34 - 02482280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2017-01-13 19:30 - 2016-12-14 06:33 - 01356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe 2017-01-13 19:30 - 2016-12-14 06:14 - 00418952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2017-01-13 19:30 - 2016-12-14 06:14 - 00089416 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll 2017-01-13 19:30 - 2016-12-14 05:48 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll 2017-01-13 19:30 - 2016-12-14 05:42 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSCard.dll 2017-01-13 19:30 - 2016-12-14 05:42 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.UI.Logon.ProxyStub.dll 2017-01-13 19:30 - 2016-12-14 05:41 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2017-01-13 19:30 - 2016-12-14 05:40 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll 2017-01-13 19:30 - 2016-12-14 05:40 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll 2017-01-13 19:30 - 2016-12-14 05:39 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.CredDialogController.dll 2017-01-13 19:30 - 2016-12-14 05:38 - 17188864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2017-01-13 19:30 - 2016-12-14 05:38 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudBackupSettings.dll 2017-01-13 19:30 - 2016-12-14 05:35 - 00600576 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll 2017-01-13 19:30 - 2016-12-14 05:24 - 01005568 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll 2017-01-13 19:30 - 2016-12-14 05:23 - 01231872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2017-01-13 19:30 - 2016-12-14 05:22 - 00707584 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2017-01-13 19:30 - 2016-11-02 12:00 - 00534096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2017-01-13 19:30 - 2016-11-02 11:28 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll 2017-01-13 19:30 - 2016-11-02 11:22 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2017-01-13 19:30 - 2016-11-02 11:21 - 00942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2017-01-13 19:29 - 2016-12-14 06:18 - 00715104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys 2017-01-13 19:29 - 2016-12-14 06:18 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2017-01-08 22:29 - 2017-01-08 22:29 - 00127911 _____ C:\Users\dylan_figqf\Downloads\Shortcut.txt 2017-01-08 22:26 - 2017-01-22 18:24 - 00044470 _____ C:\Users\dylan_figqf\Downloads\Addition.txt 2017-01-08 22:24 - 2017-01-22 18:27 - 00031916 _____ C:\Users\dylan_figqf\Downloads\FRST.txt 2017-01-08 22:24 - 2017-01-22 18:16 - 02420736 _____ (Farbar) C:\Users\dylan_figqf\Downloads\FRST64.exe 2017-01-08 22:15 - 2017-01-22 18:27 - 00000000 ____D C:\FRST 2017-01-08 13:00 - 2017-01-08 13:02 - 00000000 ____D C:\Users\dylan_figqf\Downloads\Far.Cry.Primal-CPY 2017-01-06 01:04 - 2017-01-06 01:04 - 00051504 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe 2017-01-06 00:48 - 2017-01-06 00:48 - 00075888 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys 2017-01-06 00:48 - 2017-01-06 00:48 - 00075888 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys 2017-01-06 00:48 - 2017-01-06 00:48 - 00075888 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys 2017-01-02 18:53 - 2017-01-02 18:53 - 00017616 _____ C:\Users\dylan_figqf\Downloads\amifldrv64.sys 2017-01-02 18:49 - 2017-01-02 18:52 - 07558336 _____ C:\Users\dylan_figqf\Downloads\Inspiron_3650_3250_Vostro_3650_3653_3250_3.3.8.exe 2017-01-02 17:00 - 2017-01-02 18:49 - 00000000 ____D C:\Users\dylan_figqf\AppData\Local\Deployment 2017-01-02 17:00 - 2017-01-02 17:00 - 00000000 ____D C:\Users\dylan_figqf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dell 2017-01-02 17:00 - 2017-01-02 17:00 - 00000000 ____D C:\Users\dylan_figqf\AppData\Local\Apps\2.0 2016-12-31 12:39 - 2016-12-31 12:39 - 00040598 _____ C:\Users\dylan_figqf\Downloads\Cest Quoi Cette Famille 2016 French AC3 1080p HDLight x264.GHT.mkv.torrent 2016-12-30 20:29 - 2016-12-30 20:30 - 00000000 ____D C:\Users\dylan_figqf\AppData\Roaming\PhotoFiltre 2016-12-29 11:08 - 2016-12-29 11:16 - 00000000 ____D C:\Users\dylan_figqf\Downloads\FS17_chellington17 2016-12-29 11:08 - 2016-12-17 16:18 - 372958554 _____ C:\Users\dylan_figqf\Downloads\FS17_chellington17.zip 2016-12-28 19:25 - 2016-12-28 19:39 - 00000000 ____D C:\Users\dylan_figqf\Downloads\FS17_coldboroughParkFarm (neige) 2016-12-28 19:24 - 2016-12-23 20:40 - 331112516 _____ C:\Users\dylan_figqf\Downloads\FS17_coldboroughParkFarm.zip 2016-12-27 18:59 - 2016-12-27 20:31 - 00000000 ____D C:\Users\dylan_figqf\Downloads\FS17_Lossberg (neige) 2016-12-27 18:29 - 2016-12-23 20:16 - 631977932 _____ C:\Users\dylan_figqf\Downloads\FS17_Lossberg.zip 2016-12-27 15:53 - 2016-12-27 15:53 - 00000000 ____D C:\Users\dylan_figqf\AppData\Local\GIANTSPackageRegistry 2016-12-27 15:53 - 2016-12-27 15:53 - 00000000 ____D C:\Users\dylan_figqf\AppData\Local\GIANTS Editor 64bit 7.0.5 2016-12-27 15:50 - 2016-12-27 15:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIANTS Software 2016-12-27 15:50 - 2016-12-27 15:50 - 00000000 ____D C:\Program Files\GIANTS Software 2016-12-27 15:43 - 2016-12-27 15:52 - 08338576 _____ (GIANTS Software GmbH ) C:\Users\dylan_figqf\Downloads\GIANTS_Editor_7.0.5_win64.exe 2016-12-26 19:23 - 2016-12-26 19:23 - 00034027 _____ C:\Users\dylan_figqf\Documents\iTunes Library.itl.old 2016-12-24 21:01 - 2016-12-24 21:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus 2016-12-24 17:35 - 2016-12-24 17:35 - 00000000 ____D C:\Users\dylan_figqf\Documents\Blocs-notes OneNote ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-01-22 18:27 - 2016-09-24 10:50 - 00000000 ____D C:\Users\dylan_figqf\AppData\Roaming\uTorrent 2017-01-22 18:13 - 2016-09-24 09:33 - 00000000 ____D C:\Users\dylan_figqf\AppData\Local\Packages 2017-01-22 17:12 - 2016-10-08 03:12 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2017-01-22 14:48 - 2016-07-16 12:47 - 00000000 ___HD C:\Program Files\WindowsApps 2017-01-22 14:48 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\AppReadiness 2017-01-22 12:36 - 2016-08-18 07:07 - 00000000 ____D C:\ProgramData\McAfee 2017-01-22 10:35 - 2016-12-20 10:54 - 00000000 ____D C:\Users\dylan_figqf\AppData\LocalLow\uTorrent 2017-01-22 01:33 - 2016-10-14 19:58 - 00001002 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2017-01-22 01:33 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed 2017-01-22 01:33 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\Macromed 2017-01-22 01:18 - 2016-10-14 19:58 - 00000000 ____D C:\Program Files\TrueKey 2017-01-22 01:17 - 2016-10-14 20:22 - 00001241 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\True Key.lnk 2017-01-21 23:03 - 2016-10-08 03:21 - 00000000 ____D C:\Users\dylan_figqf 2017-01-21 22:33 - 2016-08-18 06:54 - 00000000 ____D C:\Program Files (x86)\Dropbox 2017-01-21 21:47 - 2016-10-08 03:41 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-01-21 21:42 - 2016-10-08 03:21 - 00000000 ____D C:\Users\dylan 2017-01-21 21:42 - 2016-10-08 03:16 - 00065536 _____ C:\WINDOWS\system32\spu_storage.bin 2017-01-21 21:38 - 2016-10-31 13:48 - 00000000 ____D C:\Program Files (x86)\Enigma Software Group 2017-01-21 19:49 - 2016-09-24 09:36 - 00002427 _____ C:\Users\dylan_figqf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-01-21 19:49 - 2016-09-24 09:36 - 00000000 ___RD C:\Users\dylan_figqf\OneDrive 2017-01-20 22:27 - 2016-09-20 20:22 - 00000000 ___RD C:\Users\dylan\OneDrive 2017-01-20 22:22 - 2016-09-20 20:22 - 00002409 _____ C:\Users\dylan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-01-20 22:19 - 2016-10-09 10:49 - 00000000 ____D C:\Program Files (x86)\Steam 2017-01-20 22:18 - 2016-10-31 19:32 - 00000000 ____D C:\Users\dylan\AppData\Roaming\Skype 2017-01-20 22:17 - 2016-09-20 20:19 - 00000000 ____D C:\Users\dylan\AppData\Local\Packages 2017-01-20 22:16 - 2016-08-18 07:31 - 00000000 __RHD C:\Users\Public\AccountPictures 2017-01-20 20:43 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\rescache 2017-01-20 19:31 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\LiveKernelReports 2017-01-20 19:31 - 2016-07-16 12:45 - 00000000 ____D C:\WINDOWS\INF 2017-01-15 19:30 - 2016-11-19 22:34 - 00000000 ____D C:\Users\dylan_figqf\Desktop\Nero 2017-01-15 15:29 - 2016-12-04 20:23 - 00000000 ____D C:\WINDOWS\system32\SSL 2017-01-15 10:29 - 2016-10-08 03:12 - 00338328 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2017-01-14 23:39 - 2016-07-16 12:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2017-01-14 23:39 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2017-01-14 23:39 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\oobe 2017-01-14 23:39 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\ShellExperiences 2017-01-14 23:39 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\Provisioning 2017-01-14 10:47 - 2016-09-24 09:55 - 00000000 ____D C:\Users\dylan_figqf\Documents\My Games 2017-01-13 19:48 - 2016-10-01 02:27 - 00000000 ____D C:\WINDOWS\system32\MRT 2017-01-13 19:46 - 2016-10-01 02:27 - 135657872 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2017-01-13 19:46 - 2016-07-16 12:36 - 00000000 ____D C:\WINDOWS\CbsTemp 2017-01-08 17:26 - 2016-10-29 16:56 - 00000000 ____D C:\Users\dylan\AppData\Roaming\Apple Computer 2017-01-07 20:21 - 2016-12-17 17:11 - 00001824 _____ C:\Users\Public\Desktop\iTunes.lnk 2017-01-07 20:21 - 2016-12-17 17:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2017-01-07 14:32 - 2016-11-25 20:52 - 00000000 ____D C:\Users\dylan\GAME 2017-01-02 12:45 - 2016-10-14 20:22 - 00000000 ____D C:\Users\dylan_figqf\AppData\Local\tkdata 2016-12-30 20:29 - 2016-10-08 03:21 - 00000000 ____D C:\Users\dylan_figqf\AppData\Roaming 2016-12-30 20:18 - 2016-12-04 15:13 - 00001114 _____ C:\Users\dylan\Desktop\PhotoFiltre.lnk 2016-12-29 22:12 - 2016-10-08 03:21 - 00524288 ___SH C:\Users\dylan_figqf\NTUSER.DAT{d3d94cef-8d04-11e6-b7cb-e1f7a1037812}.TMContainer00000000000000000002.regtrans-ms 2016-12-29 22:12 - 2016-10-08 03:21 - 00524288 ___SH C:\Users\dylan\NTUSER.DAT{d3d94cef-8d04-11e6-b7cb-e1f7a1037812}.TMContainer00000000000000000002.regtrans-ms 2016-12-29 22:12 - 2016-10-08 03:21 - 00524288 ___SH C:\Users\dylan\NTUSER.DAT{d3d94cef-8d04-11e6-b7cb-e1f7a1037812}.TMContainer00000000000000000001.regtrans-ms 2016-12-29 22:12 - 2016-10-08 03:21 - 00065536 ___SH C:\Users\dylan\NTUSER.DAT{d3d94cef-8d04-11e6-b7cb-e1f7a1037812}.TM.blf 2016-12-29 21:49 - 2016-10-08 03:21 - 00000000 ___SD C:\Users\dylan_figqf\AppData\Roaming\Microsoft 2016-12-29 14:33 - 2016-07-16 07:04 - 00000000 ____D C:\WINDOWS\system32\CatRoot 2016-12-28 20:33 - 2016-12-22 23:17 - 00016384 _____ C:\Users\dylan_figqf\Documents\iTunes Library Extras.itdb 2016-12-28 11:19 - 2016-10-09 16:45 - 00000000 ____D C:\Users\dylan_figqf\Documents\Enregistrements audio 2016-12-27 15:21 - 2016-10-08 03:21 - 00000000 ____D C:\Users\dylan_figqf\AppData\Local\Microsoft 2016-12-27 11:23 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\FxsTmp 2016-12-26 14:35 - 2016-10-26 11:53 - 00001767 _____ C:\Users\dylan_figqf\Desktop\Farming Simulator 17.lnk 2016-12-26 12:45 - 2016-08-18 06:39 - 01978980 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-12-26 12:45 - 2016-07-16 23:40 - 00787252 _____ C:\WINDOWS\system32\perfh00C.dat 2016-12-26 12:45 - 2016-07-16 23:40 - 00162628 _____ C:\WINDOWS\system32\perfc00C.dat 2016-12-26 12:45 - 2016-07-16 12:49 - 00812914 _____ C:\WINDOWS\system32\perfh009.dat 2016-12-26 12:45 - 2016-07-16 12:49 - 00212738 _____ C:\WINDOWS\system32\perfc009.dat 2016-12-25 19:39 - 2016-11-25 20:32 - 00000000 ____D C:\Users\dylan_figqf\AppData\Local\Nero 2016-12-24 21:01 - 2016-10-15 20:01 - 00002011 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk 2016-12-24 21:01 - 2016-10-15 20:01 - 00000000 ____D C:\Program Files\McAfee Security Scan 2016-12-24 21:01 - 2016-07-16 12:47 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp 2016-12-24 21:01 - 2015-10-30 08:24 - 00000859 _____ C:\WINDOWS\system32\Drivers\etc\hosts 2016-12-23 22:23 - 2016-12-04 20:09 - 00000000 ____D C:\Program Files (x86)\Apowersoft 2016-12-23 00:13 - 2016-11-10 22:05 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2016-12-23 00:13 - 2016-11-10 22:05 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl ==================== Fichiers à la racine de certains dossiers ======= 2016-12-04 13:06 - 2016-11-23 14:37 - 0000570 _____ () C:\Users\dylan_figqf\AppData\Local\TroubleshooterConfig.json 2016-10-08 03:17 - 2016-10-08 03:17 - 0000000 ____H () C:\ProgramData\DP45977C.lfl 2016-08-18 06:57 - 2016-08-18 07:01 - 0000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log 2016-08-18 07:06 - 2016-08-18 07:06 - 0000105 _____ () C:\ProgramData\{32C8E300-BDB4-4398-92C2-E9B7D8A233DB}.log 2016-08-18 07:04 - 2016-08-18 07:04 - 0000100 _____ () C:\ProgramData\{6BADCD73-E925-46F7-A295-FF2448632728}.log 2016-08-18 07:06 - 2016-08-18 07:06 - 0000098 _____ () C:\ProgramData\{CEF5334F-B91A-4327-ACAE-AA50DCE3F995}.log Fichiers à déplacer ou supprimer: ==================== C:\Windows\Tasks\{53097C26-40DF-99D9-3D77-4C1DE0BCACC5}.job Certains fichiers dans TEMP: ==================== 2016-12-10 14:24 - 2016-12-01 16:45 - 0986648 _____ (BlueStack Systems, Inc.) C:\Users\dylan\AppData\Local\Temp\BluestacksUninstaller.exe 2016-12-10 14:24 - 2016-12-01 16:44 - 0187416 _____ (BlueStack Systems) C:\Users\dylan\AppData\Local\Temp\HD-LibraryHandler.dll 2016-12-10 14:24 - 2016-12-01 16:42 - 0246808 _____ (BlueStack Systems) C:\Users\dylan\AppData\Local\Temp\HD-Logger-Native.dll 2016-12-28 18:44 - 2016-07-16 12:42 - 0616048 _____ (Microsoft Corporation) C:\Users\dylan\AppData\Local\Temp\kernel32.dll 2016-11-25 19:53 - 2016-07-16 12:42 - 0616048 _____ (Microsoft Corporation) C:\Users\dylan_figqf\AppData\Local\Temp\kernel32.dll 2016-10-23 23:01 - 2016-06-25 18:55 - 4235264 _____ (New Technology Studio) C:\Users\dylan_figqf\AppData\Local\Temp\ovi-uninstall.exe 2005-12-22 01:07 - 2005-12-22 01:07 - 15884288 ___SH (Frontier Developments Ltd) C:\Users\dylan_figqf\AppData\Local\Temp\RCT3plus.exe 2016-11-26 19:50 - 2016-11-26 19:50 - 0012305 _____ () C:\Users\dylan_figqf\AppData\Local\Temp\SIntf16.dll 2016-11-26 19:50 - 2016-11-26 19:50 - 0020016 _____ () C:\Users\dylan_figqf\AppData\Local\Temp\SIntf32.dll 2016-11-26 19:50 - 2016-11-26 19:50 - 0024744 _____ () C:\Users\dylan_figqf\AppData\Local\Temp\SIntfNT.dll ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement ATTENTION: ==> Impossible d'accéder au BCD. L'utilisateur n'est pas administrateur ==================== Fin de FRST.txt ============================